Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

47180
Total
3801
Critical
14071
High
13766
Medium
CVE ID Severity Score Description Published
CVE-2026-19748 LOW 3.7 A security vulnerability has been detected in Tenda CH7, CH7G, CH10, CP3, CP3 Pro, CP7, TC3B14C, TC3B15C, TC3T14C and TC3T15C up to 20260625. Affected is … Aug 13, 2026
CVE-2026-19483 HIGH 7.1 IBM Storage Scale 5.2.3.0 through 5.2.3.8, and 6.0.0.0 through 6.0.1.0 Secrets may be disclosed in log files in IBM Storage Scale Management GUI The admin … Aug 13, 2026
CVE-2026-19297 CRITICAL 9.1 IBM Langflow OSS 1.0.0 through 1.9.6 could allow a remote attacker to obtain unauthorized access to user accounts due to improper restriction of excessive authentication … Aug 13, 2026
CVE-2026-18741 MEDIUM 4.8 Worksuite SaaS versions prior to 6.0.14 contains a stored cross-site scripting vulnerability in the Asset Management module that allows authenticated administrators to inject arbitrary JavaScript … Aug 13, 2026
CVE-2026-18715 MEDIUM 6.5 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to improper processing of XML external entities. Aug 13, 2026
CVE-2026-18671 MEDIUM 6.5 IBM i 7.6, 7.5, 7.4, and 7.3 could allow an authenticated attacker to force a NetServer server thread exception, caused by an integer overflow during … Aug 13, 2026
CVE-2026-18511 HIGH 7.3 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to generate a stack-based buffer overflow in the Native IBM i JSSE … Aug 13, 2026
CVE-2026-18509 HIGH 8.2 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to gain privilege escalation via the Navigator for i debugger. This could … Aug 13, 2026
CVE-2026-18249 HIGH 8.4 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to gain elevated privileges due to improper validation of pointers read from … Aug 13, 2026
CVE-2026-18193 HIGH 8.9 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to bypass security restrictions due to improper validation of user-controlled addresses. Aug 13, 2026
CVE-2026-18101 HIGH 8.8 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to gain elevated privileges due to improper management of thread authority swaps. Aug 13, 2026
CVE-2026-18086 MEDIUM 4.5 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to execute arbitrary code or cause a denial of service due to improper … Aug 13, 2026
CVE-2026-18077 HIGH 7.5 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to a stack-based buffer overflow. Aug 13, 2026
CVE-2026-18068 MEDIUM 4.3 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to obtain sensitive information due to a byte-count and element-count confusion. Aug 13, 2026
CVE-2026-18020 MEDIUM 5.3 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to an off-by-one error in bounds … Aug 13, 2026
CVE-2026-17649 MEDIUM 5.3 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to obtain sensitive information due to an out-of-bounds read. Aug 13, 2026
CVE-2026-17502 HIGH 8.6 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to an out-of-bounds write. Aug 13, 2026
CVE-2026-17482 CRITICAL 9.8 IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arbitrary code due to improper control of file paths. Aug 13, 2026
CVE-2026-17481 HIGH 8.8 IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arbitrary code due to improper output neutralization for logs. Aug 13, 2026
CVE-2026-17476 MEDIUM 4.8 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to an improper buffer write. Aug 13, 2026
CVE-2026-17473 HIGH 7.5 IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to read arbitrary files due to improper limitation of a pathname to a restricted … Aug 13, 2026
CVE-2026-17468 MEDIUM 5.3 IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to forge valid session tokens due to the use of a hardcoded cryptographic key. Aug 13, 2026
CVE-2026-17438 MEDIUM 4.4 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to obtain sensitive information or modify data due to improper privilege management. Aug 13, 2026
CVE-2026-17272 HIGH 8.2 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to a buffer overflow. Aug 13, 2026
CVE-2026-17226 MEDIUM 5.4 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information or cause a denial of service due to … Aug 13, 2026