CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: Severity: High
10,000 result(s) · page 468 of 500
CVE-2026-15991
HIGH

The File Manager plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the connector function in all versions from 6.0 - 6.9. Th...

CVSS 8.8 2026-08-06
CVE-2026-18991
HIGH

A security vulnerability has been detected in nanocoai NanoClaw up to 2.0.64. This affects an unknown part of the file container/agent-runner/src/mcp-tools/core.ts of the component...

CVSS 7.3 2026-08-06
CVE-2026-18990
HIGH

A vulnerability was detected in letta-ai LettaBot 0.2.0. Impacted is an unknown function of the file src/api/server.ts of the component API Status Route. The manipulation results i...

CVSS 7.3 2026-08-06
CVE-2026-18973
HIGH

A vulnerability has been found in heshengtao super-agent-party up to 0.4.1. The impacted element is the function sanitize_proxy_url of the file server.py of the component extension...

CVSS 7.3 2026-08-06
CVE-2026-67872
HIGH

An issue in Systerel S2OPC 1.7.3 allows a remote attacker to cause a denial of service via the event monitored-item queue resize handling

CVSS 7.5 2026-08-06
CVE-2026-67871
HIGH

Buffer Overflow vulnerability in Systerel S2OPC 1.7.3 allows a remote attacker to cause a denial of service via the AddNodes, address_space_bs.c, sopc_node_mgt_helper_internal.c, a...

CVSS 7.5 2026-08-06
CVE-2026-67869
HIGH

Buffer Overflow vulnerability in open62541 v1.5.5 allows a remote attacker to cause a denial of service via the Service_Call validates input arguments against runtime-resolved Inpu...

CVSS 7.5 2026-08-06
CVE-2026-18970
HIGH

A flaw has been found in Rongzhitong Visual Integrated Command and Dispatch Platform up to 20260617. The affected element is an unknown function of the file /dm/dispatch/user/findA...

CVSS 7.3 2026-08-06
CVE-2026-18969
HIGH

A vulnerability was detected in Rongzhitong Visual Integrated Command and Dispatch Platform up to 20260617. Impacted is an unknown function of the file /dm/dispatch/userinfo/upload...

CVSS 7.3 2026-08-06
CVE-2026-67867
HIGH

Buffer Overflow vulnerability in Systerel S2OPC 1.7.3 allows a remote attacker to cause a denial of service via the Alarm/Conditions wrapper when processing PublishResponse EventNo...

CVSS 7.5 2026-08-05
CVE-2026-67866
HIGH

Buffer Overflow vulnerability in Systerel S2OPC 1.7.3 allows a remote attacker to cause a denial of service via the LockedStaMac_ProcessMsg_DeleteMonitoredItemsResponse and SOPC_St...

CVSS 7.5 2026-08-05
CVE-2026-67863
HIGH

In open62541 1.5.5, a server-side use-after-free exists in the local MonitoredItem callback path. The issue occurs when UA_Subscription_localPublish continues to use the current UA...

CVSS 7.5 2026-08-05
CVE-2026-19024
HIGH

NULL pointer dereference in H5Pget_fill_value in HDF5 before 2.3.0 allows attackers to cause a denial of service via a dataset whose version 1 or 2 fill value message has the "defi...

CVSS 8.2 2026-08-05
CVE-2026-71321
HIGH

Nuxt is an open-source web development framework for Vue.js. From 3.1.0 until 3.21.10 and 4.5.1, the internal island renderer endpoint `/__nuxt_island/...` decodes and hashes attac...

CVSS 7.5 2026-08-05
CVE-2026-71320
HIGH

Nuxt is an open-source web development framework for Vue.js. From 3.4.0 until 3.21.10 and 4.5.1, an attacker can inject a template key through /__nuxt_island/ props into a dynamic ...

CVSS 8.1 2026-08-05
CVE-2026-67865
HIGH

S2OPC 1.7.3 contains an out-of-bounds read in RepublishResponse handling. This allows a remote attacker to cause a denial of service

CVSS 7.5 2026-08-05
CVE-2026-67864
HIGH

An issue in open62541 v.1.5.5 and before allows a remote attacker to cause a denial of service via the NodeManagement type-instantiation logic component

CVSS 7.5 2026-08-05
CVE-2026-71316
HIGH

Nuxt is an open-source web development framework for Vue.js. From 4.4.0 until 4.5.1, runtime cache:nuxt:payload entries for /<page>/_payload.json can be returned before route middl...

CVSS 7.5 2026-08-05
CVE-2025-63822
HIGH

SirenGPS Android Application 2.19.44 is vulnerable to Incorrect Access Control. An authenticated attacker can manipulate user identifier parameters to bypass authorization controls...

CVSS 8.1 2026-08-05
CVE-2026-71315
HIGH

Nuxt is an open-source web development framework for Vue.js. From 3.21.7 until 3.21.10 and 4.5.1, mixed-case routeRules keys can fail to match case-folded lookups when router.optio...

CVSS 8.2 2026-08-05
1 466 467 468 469 470 500
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.