CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: Severity: High
10,000 result(s) · page 487 of 500
CVE-2026-18599
HIGH

A flaw has been found in GL.iNet GL-MT3000 up to 4.4.5. The impacted element is the function logread.set_config of the file /usr/lib/oui-httpd/rpc/logread of the component Logread ...

CVSS 8 2026-08-03
CVE-2026-18598
HIGH

A vulnerability was detected in GL.iNet GL-MT3000 up to 4.4.5. The affected element is the function logread.get_system_log of the file /usr/lib/oui-httpd/rpc/logread of the compone...

CVSS 8.8 2026-08-03
CVE-2026-69082
HIGH

CTI-Transmute contained a cross-site request forgery vulnerability in the administrative user deletion functionality. The /account/delete/<id> endpoint accepted HTTP GET requests f...

CVSS 8.8 2026-08-03
CVE-2026-69079
HIGH

CTI-Transmute contains an uncontrolled resource-consumption vulnerability in the unauthenticated /activity_timeline endpoint. The endpoint accepts a user-controlled days query para...

CVSS 8.7 2026-08-03
CVE-2026-69078
HIGH

CTI-Transmute is affected by a server-side request forgery vulnerability in the evaluation report PDF-generation functionality. User-controlled CTI content, including conversion n...

CVSS 8.8 2026-08-03
CVE-2026-0392
HIGH

eParakstītājs 3.0 for Windows before version 1.10.0 retrieves and executes its automatic updates over a channel that is not authenticated or integrity-protected. On each launch the...

CVSS 7.3 2026-08-03
CVE-2026-21555
HIGH

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVSS 7.5 2026-08-03
CVE-2026-21554
HIGH

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVSS 7.5 2026-08-03
CVE-2026-21553
HIGH

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVSS 7.5 2026-08-03
CVE-2026-21552
HIGH

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVSS 7.5 2026-08-03
CVE-2026-21551
HIGH

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVSS 7.5 2026-08-03
CVE-2026-21550
HIGH

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVSS 7.5 2026-08-03
CVE-2026-21549
HIGH

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVSS 7.5 2026-08-03
CVE-2026-21548
HIGH

In nr modem, there is a possible improper input validation. This could lead to remote denial of service with System execution privileges needed.

CVSS 7.5 2026-08-03
CVE-2026-4793
HIGH

An incorrect default permissions vulnerability in Synology Assistant before 7.0.7-50095 allows local users to read or write arbitrary files and conduct denial-of-service during ins...

CVSS 7.3 Synology assistant 2026-08-03
CVE-2026-18587
HIGH

A flaw has been found in Wavlink WL-NU516U1 708c073-mt7628. The impacted element is an unknown function of the component Config Import. Executing a manipulation of the argument Pas...

CVSS 7.5 2026-08-03
CVE-2026-16572
HIGH

The LogMyTrip WordPress plugin through 1.9 does not sanitize and escape a value taken from a cookie before using it in a SQL query, allowing unauthenticated users to perform SQL in...

CVSS 8.6 2026-08-03
CVE-2026-16539
HIGH

The sm page duplicator WordPress plugin through 1.0.0 does not sanitise and escape a stored value before using it in a SQL statement when duplicating a page, allowing users with th...

CVSS 8.1 2026-08-03
CVE-2025-15672
HIGH

The ChamaWP WordPress plugin before 1.0.13 does not properly validate user input before passing it to a PHP deserialization function, allowing unauthenticated attackers to inject ...

CVSS 8.1 2026-08-03
CVE-2026-14682
HIGH

In Bouncy Castle for Java before 1.85, Possible OOM from unbounded up-front allocation on a definite-length read. This issue also affects Bouncy Castle for Java LTS before 2.73.12,...

CVSS 7.5 Bouncycastle bc-java 2026-08-03
1 485 486 487 488 489 500
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.