Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

34313
Total
2675
Critical
10128
High
10348
Medium
CVE ID Severity Score Description Published
CVE-2026-4364 MEDIUM 5.4 IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and IBM Verify Identity Access 11.0 through 11.0.2 … Apr 01, 2026
CVE-2026-4101 HIGH 8.1 IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and IBM Verify Identity Access 11.0 through 11.0.2 … Apr 01, 2026
CVE-2026-34873 UNKNOWN An issue was discovered in Mbed TLS 3.5.0 through 4.0.0. Client impersonation can occur while resuming a TLS 1.3 session. Apr 01, 2026
CVE-2026-34545 UNKNOWN OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From version 3.4.0 to … Apr 01, 2026
CVE-2026-34544 UNKNOWN OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From version 3.4.0 to … Apr 01, 2026
CVE-2026-34543 UNKNOWN OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From version 3.4.0 to … Apr 01, 2026
CVE-2026-34531 MEDIUM 6.5 Flask-HTTPAuth provides Basic, Digest and Token HTTP authentication for Flask routes. Prior to version 4.8.1, in a situation where the client makes a request to … Apr 01, 2026
CVE-2026-34530 MEDIUM 6.9 File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to version 2.62.2, the SPA … Apr 01, 2026
CVE-2026-34529 HIGH 7.6 File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to version 2.62.2, the EPUB … Apr 01, 2026
CVE-2026-34528 HIGH 8.1 File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to version 2.62.2, the signupHandler … Apr 01, 2026
CVE-2026-34525 UNKNOWN AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, multiple Host headers were allowed in aiohttp. This issue has … Apr 01, 2026
CVE-2026-34520 UNKNOWN AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, the C parser (the default for most installs) accepted null … Apr 01, 2026
CVE-2026-34519 UNKNOWN AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, an attacker who controls the reason parameter when creating a … Apr 01, 2026
CVE-2026-34518 UNKNOWN AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, when following redirects to a different origin, aiohttp drops the … Apr 01, 2026
CVE-2026-34517 UNKNOWN AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, for some multipart form fields, aiohttp read the entire field … Apr 01, 2026
CVE-2026-34516 UNKNOWN AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, a response with an excessive number of multipart headers may … Apr 01, 2026
CVE-2026-34515 UNKNOWN AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, on Windows the static resource handler may expose information about … Apr 01, 2026
CVE-2026-34514 UNKNOWN AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, an attacker who controls the content_type parameter in aiohttp could … Apr 01, 2026
CVE-2026-34513 UNKNOWN AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, an unbounded DNS cache could result in excessive memory usage … Apr 01, 2026
CVE-2026-2862 MEDIUM 5.3 IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and IBM Verify Identity Access 11.0 through 11.0.2 … Apr 01, 2026
CVE-2026-2475 LOW 3.1 IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and IBM Verify Identity Access 11.0 through 11.0.2 … Apr 01, 2026
CVE-2026-22815 UNKNOWN AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, insufficient restrictions in header/trailer handling could cause uncapped memory usage. … Apr 01, 2026
CVE-2026-1491 MEDIUM 5.3 IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and IBM Verify Identity Access 11.0 through 11.0.2 … Apr 01, 2026
CVE-2026-1345 HIGH 7.3 IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and IBM Verify Identity Access 11.0 through 11.0.2 … Apr 01, 2026
CVE-2025-36373 MEDIUM 4.1 IBM DataPower Gateway 10.6CD 10.6.1.0 through 10.6.5.0 and IBM DataPower Gateway 10.5.0 10.5.0.0 through 10.5.0.20 and IBM DataPower Gateway 10.6.0 10.6.0.0 through 10.6.0.8 IBM DataPower … Apr 01, 2026