CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: Severity: High
10,000 result(s) · page 486 of 500
CVE-2026-18607
HIGH

A security vulnerability has been detected in Wavlink WN572, WN570H, WN573, WN529, WN530, WN531, WN535, etc. WN529, WN530, WN531, WN535, WN536, WN551, WN557 and NU516 up to 2026060...

CVSS 8.8 2026-08-03
CVE-2026-18606
HIGH

A weakness has been identified in Razer RzUpdateService 1.10.14.0. Affected by this vulnerability is an unknown functionality of the file C:\Program Files (x86)\Razer\RzUpdateEngin...

CVSS 7.8 2026-08-03
CVE-2026-18605
HIGH

A security flaw has been discovered in CheckMAL AppCheck Pro 3.1.43.10. Affected is an unknown function in the library AppCheckD.sys of the component Kernel Mini-Filter Driver. Per...

CVSS 7 2026-08-03
CVE-2026-18568
HIGH

XML::Sig versions from 0.29 before 0.72 for Perl allow signature verification bypass because verify returns true when every signature was skipped before any cryptographic check. v...

CVSS 7.5 Xml\ \ 2026-08-03
CVE-2026-67609
HIGH

Telenia Software TVox 26.5.3 and prior 26.x versions, and 24.9.21 and prior 24.x versions, contain a privilege escalation vulnerability that allows attackers with access to the apa...

CVSS 7.8 2026-08-03
CVE-2026-69097
HIGH

GitPython before 3.1.53 fails to properly escape section names in git config files, allowing attackers to inject arbitrary configuration directives through malicious submodule name...

CVSS 7.3 Gitpython_project gitpython 2026-08-03
CVE-2026-69096
HIGH

OpenWrt luci-app-dockerman (LuCI master and openwrt-25.12 snapshots containing the ucode docker_rpc.uc RPC backend after the JS/ucode conversion) contains an OS command injection v...

CVSS 8.8 2026-08-03
CVE-2026-69095
HIGH

OpenWrt luci-app-bmx7 before commit 5890760a454dad2cb00389dba2cdc5e779e0ffdd contains a path traversal vulnerability in the bmx7-info CGI script that allows unauthenticated attacke...

CVSS 7.5 2026-08-03
CVE-2026-69091
HIGH

Admidio before 5.0.11 contains an authentication bypass vulnerability in the forum module when configured in login-only mode. The access control logic in modules/forum.php fails to...

CVSS 7.5 2026-08-03
CVE-2026-69089
HIGH

Grav CMS 2.0.10 contains a path traversal vulnerability in ImageMedium::watermark(), which passes its unsanitized $image argument to RocketTheme\Toolbox\ResourceLocator\UniformReso...

CVSS 7.5 2026-08-03
CVE-2026-69088
HIGH

Grav CMS versions 2.0.7 through 2.0.10 fail to validate fully-qualified static method calls (Class::method) in blueprint dynamic-field directives because Blueprint::isSafeDynamicCa...

CVSS 8.1 2026-08-03
CVE-2026-69086
HIGH

SiYuan versions before v3.7.3 fail to validate the avID parameter on all code branches in attribute-view read endpoints, allowing attackers to construct traversal paths that escape...

CVSS 7.7 2026-08-03
CVE-2026-68587
HIGH

SiYuan versions before v3.7.3 contain an information disclosure vulnerability in the getHeadingDeleteTransaction, getHeadingLevelTransaction, and getHeadingInsertTransaction endpoi...

CVSS 8.6 2026-08-03
CVE-2026-68586
HIGH

SiYuan before v3.7.3 fails to apply publish-access filters to the getBacklinkDoc and getBackmentionDoc content endpoints (/api/ref/getBacklinkDoc and /api/ref/getBackmentionDoc). W...

CVSS 8.6 2026-08-03
CVE-2026-68584
HIGH

SiYuan versions before v3.7.3 contain an authentication bypass vulnerability in publish mode where content-returning endpoints getHeadingChildrenDOM, getHeading*Transaction, and ge...

CVSS 8.6 2026-08-03
CVE-2026-67608
HIGH

Telenia Software TVox 26.5.3 and prior 26.x versions, and 24.9.21 and prior 24.x versions, contain an OS command injection vulnerability in action_audio.php that allows authenticat...

CVSS 7.2 2026-08-03
CVE-2026-18642
HIGH

Deserialization of untrusted data vulnerability in TUBITAK BILGEM Software Technologies Research Institute eta-otp-lock allows Object Injection. This issue affects eta-otp-lock: b...

CVSS 7.8 2026-08-03
CVE-2026-18600
HIGH

A vulnerability has been found in GL.iNet GL-MT3000 up to 4.4.5. This affects the function network.switch_info/network.switch_status of the file /usr/lib/oui-httpd/rpc/network of t...

CVSS 8.8 2026-08-03
CVE-2026-18092
HIGH

Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass via XML signature wrapping because new_from_xml reads assertion identity with document-wide XPath instead ...

CVSS 8.1 Timlegge net\ 2026-08-03
CVE-2026-18089
HIGH

Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass by verifying responses against the response-embedded certificate in verify_xml when no trust anchor is con...

CVSS 7.5 Timlegge net\ 2026-08-03
1 484 485 486 487 488 500
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.