Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
48891
Total
3931
Critical
14494
High
14248
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-72750 | UNKNOWN | — | n8n before 1.123.67, 2.31.5, and 2.32.1 contains a SQL injection vulnerability in the Snowflake node's Execute Query operation, which interpolates expression values directly into the … | Aug 11, 2026 |
| CVE-2026-72749 | UNKNOWN | — | n8n before 1.123.67, 2.31.5, and 2.32.1 contains a prototype pollution vulnerability in the Edit Fields (Set) node. The node assigns output fields via a dot-notation … | Aug 11, 2026 |
| CVE-2026-72748 | CRITICAL | 9.1 | AVideo contains an unauthenticated arbitrary file write vulnerability in the aVideoEncoderChunk.json.php endpoint that allows remote attackers to write up to 4 GB of arbitrary content … | Aug 11, 2026 |
| CVE-2026-72747 | HIGH | 7.2 | AVideo fails to sanitize the phone field during user registration, allowing unauthenticated attackers to inject malicious JavaScript that persists in the database. When administrators visit … | Aug 11, 2026 |
| CVE-2026-72746 | HIGH | 7.5 | FreeRDP before 3.30.0 contains a server-side authentication bypass in the RDSTLS handshake. When a server is configured with RdstlsSecurity = TRUE, the handshake dispatches inbound … | Aug 11, 2026 |
| CVE-2026-72745 | HIGH | 7.5 | FreeRDP before 3.30.0 contains an out-of-bounds vulnerability in kerberos_DecryptMessage() (winpr/libwinpr/sspi/Kerberos/kerberos.c). The 16-bit EC (extra count) field of a peer-supplied GSS Wrap token (RFC 4121) is … | Aug 11, 2026 |
| CVE-2026-72744 | MEDIUM | 6.2 | Nuxt versions >= 4.4.7 and < 4.5.1, and >= 3.21.7 and < 3.21.10, contain an information disclosure vulnerability in the development server's Chrome DevTools workspace … | Aug 11, 2026 |
| CVE-2026-69109 | HIGH | 7.5 | A vulnerability has been identified in Siemens License Server (SLS) (All versions < V5.3). The affected application is vulnerable to a path traversal vulnerability due … | Aug 11, 2026 |
| CVE-2026-69108 | MEDIUM | 6.0 | A vulnerability has been identified in Siemens License Server (SLS) (All versions < V5.1). The affected application is vulnerable to a local privilege escalation due … | Aug 11, 2026 |
| CVE-2026-64629 | HIGH | 7.8 | A vulnerability has been identified in Parasolid V38.0 (All versions < V38.0.235), Parasolid V38.1 (All versions < V38.1.230). The affected applications contains an out of … | Aug 11, 2026 |
| CVE-2026-59701 | HIGH | 7.8 | A vulnerability has been identified in Simcenter Femap (All versions < V2606.0001). The affected applications contains an out of bounds read vulnerability while parsing specially … | Aug 11, 2026 |
| CVE-2026-59700 | HIGH | 7.8 | A vulnerability has been identified in Simcenter Femap (All versions < V2606.0001). The affected applications contains an out of bounds read vulnerability while parsing specially … | Aug 11, 2026 |
| CVE-2026-59693 | MEDIUM | 4.3 | A vulnerability has been identified in Desigo DXR2 (All versions < V01.21.233.16-7862), Desigo PXC3 (All versions < V01.21.233.16-7862), Desigo PXC4 (All versions < V02.21.194.36-2715), Desigo … | Aug 11, 2026 |
| CVE-2026-59086 | HIGH | 7.8 | A vulnerability has been identified in Simcenter Nastran (All versions < V2606). The affected applications contain a stack overflow vulnerability while parsing specially strings as … | Aug 11, 2026 |
| CVE-2026-58115 | CRITICAL | 10.0 | A vulnerability has been identified in SIMATIC IoT2050 Advanced (6ES7647-0BA00-1YA2) (All versions < V4.3.4.1 running Industrial OS with Node-RED installed). Affected devices do not enforce … | Aug 11, 2026 |
| CVE-2026-57263 | MEDIUM | 6.8 | A vulnerability has been identified in LOGO! Soft Comfort (All versions < V9). The project password feature in the affected products stores the password as … | Aug 11, 2026 |
| CVE-2026-57262 | MEDIUM | 6.8 | A vulnerability has been identified in LOGO! Soft Comfort (All versions < V9). Affected products use a static, hardcoded AES master key to encrypt project … | Aug 11, 2026 |
| CVE-2026-50064 | HIGH | 7.8 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The … | Aug 11, 2026 |
| CVE-2026-50063 | HIGH | 7.8 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The … | Aug 11, 2026 |
| CVE-2026-50062 | HIGH | 7.8 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The … | Aug 11, 2026 |
| CVE-2026-50061 | HIGH | 7.8 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The … | Aug 11, 2026 |
| CVE-2026-50060 | HIGH | 7.8 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The … | Aug 11, 2026 |
| CVE-2026-50059 | HIGH | 7.8 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The … | Aug 11, 2026 |
| CVE-2026-50058 | HIGH | 7.8 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The … | Aug 11, 2026 |
| CVE-2026-18972 | CRITICAL | 9.6 | An authenticated attacker can spoof another GUI user's identity by sending their request with the custom header \"Grpc-Metadata-USER\". This can lead to an account takeover … | Aug 11, 2026 |