CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: Severity: Medium
10,000 result(s) · page 485 of 500
CVE-2026-56302
MEDIUM

Capgo before 12.128.2 contains an unsecured images bucket lacking any row level security controls, allowing unauthenticated attackers to read, insert, and delete stored app icons. ...

CVSS 6.5 2026-06-24
CVE-2026-56262
MEDIUM

Crawl4AI before 0.8.7 contains an authentication bypass vulnerability in the monitor router endpoints that allows unauthenticated attackers to access destructive operations. Remote...

CVSS 6.5 Kidocode crawl4ai 2026-06-24
CVE-2026-13163
MEDIUM

Open redirect vulnerability (CWE-601) in the _safe_redirect function of the click-tracking endpoint (/c/<token>/) in Mailerup <1.0.0 on all platforms allows remote unauthenticated ...

CVSS 5.3 2026-06-24
CVE-2026-13150
MEDIUM

Server-Side Request Forgery (SSRF) (CWE-918) in the PDF generation endpoint GET /api/reports/{id}/pdf (backend/main.py) in ccyl13 Pentestify 1.0.0 and lower allows remote attackers...

CVSS 6.9 2026-06-24
CVE-2026-11968
MEDIUM

Argument Injection in TortoiseGitBlame via Malicious Git History Filenames Leads to Arbitrary File Write in TortoiseGit

CVSS 5.5 2026-06-24
CVE-2026-52944
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix FSCTL permission bypass by adding a permission check for FSCTL_SET_SPARSE FSCTL_SET_SPARSE in fsctl...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52941
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net/smc: avoid NULL deref of conn->lnk in smc_msg_event tracepoint The smc_msg_event tracepoint class, shared ...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52940
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: tun: zero the whole vnet header in tun_put_user() tun_put_user() declares an on-stack struct virtio_net_hdr_v1...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52939
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net/rds: fix NULL deref in rds_ib_send_cqe_handler() on masked atomic completion rds_ib_xmit_atomic() always p...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52938
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix NULL pointer dereference in bpf_sk_storage_clone and diag paths bpf_selem_unlink_nofail() sets SDATA(...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52937
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: tap: fix stack info leak in tap_ioctl() SIOCGIFHWADDR In the SIOCGIFHWADDR path, tap_ioctl() copies 16 bytes o...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52936
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: crypto: jitterentropy - replace long-held spinlock with mutex jent_kcapi_random() serializes the shared jitter...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52930
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ipc/shm: serialize orphan cleanup with shm_nattch updates shm_destroy_orphaned() walks the shm idr under shm_i...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52928
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: af_unix: Reject SIOCATMARK on non-stream sockets SIOCATMARK reports whether the receive queue is at the urgent...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52926
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: batman-adv: clear current gateway during teardown batadv_gw_node_free() removes the gateway list entries durin...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52925
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: vrf: Fix a potential NPD when removing a port from a VRF RCU readers that identified a net device as a VRF por...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52921
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: stop hash:* range iteration at end The following hash set variants: hash:ip,mark hash:ip,po...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52916
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: batman-adv: frag: disallow unicast fragment in fragment batadv_frag_skb_buffer() is called by batadv_batman_sk...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-52913
MEDIUM

In the Linux kernel, the following vulnerability has been resolved: batman-adv: v: stop OGMv2 on disabled interface When a batadv_hard_iface is disabled, its mesh_iface pointer i...

CVSS 5.5 Linux linux_kernel 2026-06-24
CVE-2026-9620
MEDIUM

The WP Latest Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via crafted image src attributes in post content in versions up to, and including, 5.0.11. Thi...

CVSS 6.4 2026-06-24
1 483 484 485 486 487 500
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.