Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
26383
Total
1955
Critical
7969
High
8219
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-12822 | MEDIUM | 5.3 | A vulnerability was identified in langflow-ai langflow up to 1.9.3. This affects an unknown function of the component Bundle URL Loader. The manipulation leads to … | Jun 22, 2026 |
| CVE-2026-12821 | MEDIUM | 6.3 | A vulnerability was determined in FlowiseAI Flowise up to 3.1.2. The impacted element is an unknown function of the file packages/components/nodes/documentloaders/S3/S3.ts of the component S3 … | Jun 22, 2026 |
| CVE-2026-12815 | MEDIUM | 6.3 | A vulnerability has been found in coollabsio coolify 4.0.0. Impacted is an unknown function of the component Image Name Handler. Such manipulation leads to os … | Jun 22, 2026 |
| CVE-2026-12845 | UNKNOWN | — | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this … | Jun 21, 2026 |
| CVE-2026-12814 | MEDIUM | 6.3 | A flaw has been found in Comfast CF-WR631AX V3 up to 2.7.0.8. This issue affects the function system of the file /cgi-bin/mbox-config?section=ping_config of the component … | Jun 21, 2026 |
| CVE-2026-12813 | MEDIUM | 6.3 | A vulnerability was detected in activepieces up to 0.83.0. This vulnerability affects the function handleUrlFile in the library packages/server/engine/src/lib/variables/processors/file.ts of the component File URL Handler. … | Jun 21, 2026 |
| CVE-2026-12812 | LOW | 3.5 | A security vulnerability has been detected in Radware Cyber Controller up to 10.11.0. This affects an unknown part of the component HTML Report Generation. The … | Jun 21, 2026 |
| CVE-2026-12811 | MEDIUM | 4.3 | A weakness has been identified in kortix-ai suna up to 0.8.38. Affected by this issue is the function router.replace/router.push of the file apps/frontend/src/app/auth/page.tsx of the … | Jun 21, 2026 |
| CVE-2026-12810 | MEDIUM | 6.3 | A security flaw has been discovered in Edimax BR-6478AC V2 1.23. Affected by this vulnerability is the function mp of the file /goform/mp of the … | Jun 21, 2026 |
| CVE-2026-12809 | MEDIUM | 6.3 | A vulnerability was identified in Edimax BR-6478AC V2 1.23. Affected is the function wiz_5in1_redirect of the file /goform/wiz_5in1_redirect of the component POST Request Handler. Such … | Jun 21, 2026 |
| CVE-2026-12808 | MEDIUM | 6.3 | A vulnerability was determined in Edimax BR-6478AC V2 1.23. This impacts the function stainfo of the file /goform/stainfo of the component POST Request Handler. This … | Jun 21, 2026 |
| CVE-2026-12807 | MEDIUM | 6.3 | A vulnerability was found in Edimax BR-6478AC V2 1.23. This affects the function setWAN of the file /goform/setWAN of the component POST Request Handler. The … | Jun 21, 2026 |
| CVE-2026-12806 | HIGH | 8.8 | A vulnerability has been found in Edimax BR-6478AC V2 1.23. The impacted element is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey of the component POST … | Jun 21, 2026 |
| CVE-2026-12805 | MEDIUM | 6.3 | A flaw has been found in OFFIS DCMTK up to 3.7.0. The affected element is the function XMLNode::parseFile in the library ofstd/libsrc/ofxml.cc. Executing a manipulation … | Jun 21, 2026 |
| CVE-2026-12804 | MEDIUM | 4.3 | A vulnerability was detected in lemonldap-ng up to 2.23.0. Impacted is an unknown function in the library lemonldap-ng-portal/lib/Lemonldap/NG/Portal/CDC.pm of the component SAML Common Domain Cookie … | Jun 21, 2026 |
| CVE-2026-56412 | MEDIUM | 4.9 | libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking for various calls from within handlers in cases of … | Jun 21, 2026 |
| CVE-2026-56411 | MEDIUM | 6.9 | xmlwf in libexpat before 2.8.2 has an integer overflow in endDoctypeDecl via NOTATION declarations. | Jun 21, 2026 |
| CVE-2026-56410 | MEDIUM | 6.9 | xmlwf in libexpat before 2.8.2 has an integer overflow in resolveSystemId. | Jun 21, 2026 |
| CVE-2026-56409 | MEDIUM | 6.5 | xmlwf in libexpat before 2.8.2 has an integer overflow for the output filename when -d outputDir is used. | Jun 21, 2026 |
| CVE-2026-56408 | MEDIUM | 6.9 | libexpat before 2.8.2 has an integer overflow in copyString. | Jun 21, 2026 |
| CVE-2026-56407 | MEDIUM | 6.9 | libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen. | Jun 21, 2026 |
| CVE-2026-56406 | MEDIUM | 6.9 | libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse. | Jun 21, 2026 |
| CVE-2026-56405 | MEDIUM | 6.9 | libexpat before 2.8.2 has an integer overflow in getAttributeId. | Jun 21, 2026 |
| CVE-2026-56404 | MEDIUM | 6.9 | libexpat before 2.8.2 has an integer overflow in addBinding. | Jun 21, 2026 |
| CVE-2026-56403 | MEDIUM | 6.9 | libexpat before 2.8.2 has an integer overflow in storeAtts. | Jun 21, 2026 |