|
cve-2022-4995
|
Weaver E-cology 9.0 File Upload RCE via uploaderOperate.jsp |
CRITICAL
|
9.8
|
0.69%
|
cvelistv5 |
2026-09-16 |
|
cve-2019-25765
|
ASP-CMS SQL Injection via commentList.asp id Parameter |
HIGH
|
7.5
|
0.59%
|
cvelistv5 |
2026-09-10 |
|
cve-2026-58231
|
Improper Authorization in SAP Commerce Cloud (Data Hub Adapter) |
CRITICAL
|
10.0
|
1.71%
|
cvelistv5 |
2026-08-17 |
|
cve-2021-30120
|
Kaseya VSA before 9.5.7 allows attackers to bypass the 2FA requirement |
CRITICAL
|
9.9
|
5.70%
|
cvelistv5 |
2026-08-14 |
|
cve-2021-30119
|
Authenticated Authenticated reflective XSS in Kaseya VSA <= v9.5.6 |
MEDIUM
|
5.4
|
50.32%
|
cvelistv5 |
2026-08-14 |
|
cve-2023-33538
|
TP-Link Multiple Routers Command Injection Vulnerability |
HIGH
|
N/A
|
41.61%
|
cvelistv5 |
2025-06-16 |
|
cve-2026-68820
|
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
HIGH
|
7.0
|
6.18%
|
cvelistv5 |
2026-08-16 |
|
cve-2026-26190
|
Milvus Allows Unauthenticated Access to Restful API on Metrics Port (9091) Leads to Critical System Compromise |
CRITICAL
|
9.8
|
36.91%
|
cvelistv5 |
2026-06-17 |
|
cve-2026-55040
|
Microsoft SharePoint Server Security Feature Bypass Vulnerability |
CRITICAL
|
9.1
|
50.59%
|
cvelistv5 |
2026-08-19 |
|
cve-2026-59310
|
vCenter directory-traversal vulnerability |
CRITICAL
|
9.8
|
50.38%
|
cvelistv5 |
2026-08-19 |
|
cve-2021-21983
|
Arbitrary file write vulnerability in vRealize Operations Manager API (CVE-2021-21983) prior to 8.4 may allow an auth... |
MEDIUM
|
6.5
|
68.56%
|
cvelistv5 |
2026-08-12 |
|
cve-2026-20349
|
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Denial of Service Vulnerability |
HIGH
|
8.6
|
2.21%
|
cvelistv5 |
2026-09-16 |
|
cve-2026-68820
|
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
HIGH
|
7.0
|
6.18%
|
cvelistv5 |
2026-08-16 |
|
cve-2026-33497
|
Langflow: /profile_pictures/{folder_name}/{file_name} endpoint file reading |
HIGH
|
7.5
|
19.58%
|
cvelistv5 |
2026-06-17 |
|
cve-2026-49049
|
CVE-2026-49049 |
HIGH
|
7.5
|
0.99%
|
cvelistv5 |
|
|
cve-2025-2505
|
Age Gate <= 3.5.3 - Unauthenticated Local PHP File Inclusion via 'lang' |
CRITICAL
|
9.8
|
4.88%
|
cvelistv5 |
2026-06-17 |
|
cve-2026-72898
|
Metabase SQL injection via password reset endpoint |
CRITICAL
|
10.0
|
94.22%
|
cvelistv5 |
2026-08-12 |
|
cve-2026-68820
|
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
HIGH
|
7.0
|
6.18%
|
cvelistv5 |
2026-08-16 |
|
cve-2026-20349
|
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Denial of Service Vulnerability |
HIGH
|
8.6
|
2.21%
|
cvelistv5 |
2026-09-16 |
|
cve-2026-72898
|
Metabase SQL injection via password reset endpoint |
CRITICAL
|
10.0
|
94.22%
|
cvelistv5 |
2026-08-12 |
|
cve-2017-10271
|
Oracle Corporation WebLogic Server Remote Code Execution Vulnerability |
CRITICAL
|
N/A
|
99.99%
|
cvelistv5 |
2022-02-10 |
|
cve-2023-3722
|
CVE-2023-3722 |
HIGH
|
8.6
|
3.86%
|
cvelistv5 |
|
|
cve-2026-55450
|
CVE-2026-55450 |
CRITICAL
|
9.3
|
1.19%
|
cvelistv5 |
|
|
cve-2026-2652
|
Authentication Bypass in mlflow/mlflow |
HIGH
|
8.6
|
20.78%
|
cvelistv5 |
2026-06-17 |
|
cve-2018-14013
|
Synacor Zimbra Collaboration Suite Collaboration before 8.8.11 has XSS in the AJAX and html web clients. |
MEDIUM
|
6.1
|
7.44%
|
cvelistv5 |
2026-06-17 |
|
cve-2013-3821
|
CVE-2013-3821 |
HIGH
|
N/A
|
6.90%
|
cvelistv5 |
|
|
cve-2025-20282
|
Cisco ISE API Unauthenticated Remote Code Execution Vulnerability |
CRITICAL
|
10.0
|
27.50%
|
cvelistv5 |
2026-06-17 |
|
cve-2026-8037
|
OS Command Injection Remote Code Execution Vulnerability in Progress LoadMaster, ECS Connection Manager, Object Scale Connection Manager & MOVEit WAF |
CRITICAL
|
9.6
|
99.57%
|
cvelistv5 |
2026-08-10 |
|
cve-2026-63077
|
In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent polling protocol |
CRITICAL
|
9.8
|
86.52%
|
cvelistv5 |
2026-08-06 |
|
cve-2026-28409
|
WeGIA Vulnerable to Remote Code Execution (RCE) via OS Command Injection |
CRITICAL
|
10.0
|
3.31%
|
cvelistv5 |
2026-06-17 |