CVE search
401,020 resultsCVE-2026-55251MEDIUMNetBox Device Type Library: Arbitrary Code Execution on CI Runner Through Malicious requirements.txt, .pre-commit-hooks-config.yaml, and .gitmodules FilesEPSS 0.1%CVE-2026-103484HIGHpgvector buffer overflow in IVFFlat index buildEPSS 0.4%CVE-2026-102628CRITICALCadmos LTI exposure of sensitive information via debug modeEPSS 0.3%CVE-2026-100251MEDIUMWormhole.app SSRFEPSS 0.3%CVE-2026-93832MEDIUMA component of one of the Motorola system applications was
exported without permission, allowing for the revocation of runtime permissions
fEPSS 0.1%CVE-2026-102671MEDIUMJoyland AI WebView accepts invalid SSL certificatesEPSS 0.1%CVE-2026-102670MEDIUMJoyland AI enables HTTPEPSS 0.1%CVE-2026-102669MEDIUMJoyland AI hostname checking disabledEPSS 0.2%CVE-2026-54049HIGHSakai Conversations has a Stored XSS IssueEPSS 0.3%CVE-2026-102668MEDIUMJoyland AI accepts TLS certificates without validationEPSS 0.1%CVE-2026-102667CRITICALJoyland AI WebView command injectionEPSS 0.2%CVE-2026-82358HIGHRT-Labs AB C-Open CANopen SDO Server Write Protection BypassEPSS 0.2%CVE-2026-102666MEDIUMJoyland AI hard-coded credentials for push notificationsEPSS 0.2%CVE-2026-82357HIGHRT-Labs AB C-Open CANopen NULL pointer dereferenceEPSS 0.3%CVE-2026-71542HIGHGetSimple CMS: Stored Cross-Site Scripting (XSS) via the "title" parameter in admin/components.phpEPSS 0.4%CVE-2026-71426HIGHGetSimple CMS: Authenticated Stored Local File Inclusion (LFI) via page "template" fieldEPSS 0.3%CVE-2026-70650HIGHGetSimple CMS: Authenticated Stored XSS in backup viewer (backup-edit.php) via output decoding of page meta fields and contentEPSS 0.3%CVE-2026-56662CRITICALGetSimple CMS: Missing CSRF protection in UpdateCE allows forging a privileged server-side update requestEPSS 0.2%CVE-2026-56661HIGHGetSimple CMS: Server-Side Request Forgery in the UpdateCE update endpointEPSS 0.3%CVE-2026-56660CRITICALGetSimple CMS: CSRF, SSRF, and Unrestricted Zip ExtractionEPSS 0.5%