Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
49732
Total
4014
Critical
14766
High
14490
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-20273 | HIGH | 8.6 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security … | Aug 05, 2026 |
| CVE-2026-20272 | CRITICAL | 9.8 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security … | Aug 05, 2026 |
| CVE-2026-20271 | HIGH | 8.6 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security … | Aug 05, 2026 |
| CVE-2026-20270 | HIGH | 8.6 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security … | Aug 05, 2026 |
| CVE-2026-20269 | HIGH | 8.6 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security … | Aug 05, 2026 |
| CVE-2026-20268 | HIGH | 8.6 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security … | Aug 05, 2026 |
| CVE-2026-20267 | CRITICAL | 9.0 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security … | Aug 05, 2026 |
| CVE-2026-20263 | HIGH | 8.6 | A vulnerability in the Blocks Extensible Exchange Protocol (BEEP) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial … | Aug 05, 2026 |
| CVE-2026-20200 | HIGH | 8.8 | A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with low privileges to execute arbitrary commands on the … | Aug 05, 2026 |
| CVE-2026-20198 | MEDIUM | 4.8 | A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) … | Aug 05, 2026 |
| CVE-2026-20124 | HIGH | 7.7 | A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software could allow an authenticated, remote attacker to cause an affected … | Aug 05, 2026 |
| CVE-2026-20028 | MEDIUM | 5.0 | A vulnerability in the network driver of Cisco Terminal Service (TS) Agent could allow an authenticated, remote attacker to bypass firewall rules that are associated … | Aug 05, 2026 |
| CVE-2026-18927 | MEDIUM | 6.3 | A vulnerability was determined in imranrisal-dev Student-Management-System 18ea7904c339e0c7b0234724a79c939ce6191def/a8d43a29aaf267e7ca97171d6dbb44057bcd7f8c. This affects the function storeProfileImage of the file student_profile_pic.php of the component Shared Upload Helper. Executing a … | Aug 05, 2026 |
| CVE-2026-17630 | HIGH | 7.2 | IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote attacker to execute arbitrary code due to improper validation of configuration parameters. | Aug 05, 2026 |
| CVE-2026-17626 | HIGH | 8.8 | IBM Langflow OSS 1.0.0 through 1.10.3 Langflow could allow an authenticated attacker to read, modify, or expose sensitive host files via Docker-based MCP servers due … | Aug 05, 2026 |
| CVE-2026-17623 | HIGH | 8.8 | IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary commands due to improper validation of the command field in … | Aug 05, 2026 |
| CVE-2026-17617 | HIGH | 8.5 | IBM Application Gateway Operator 22.2 through 26.06 is vulnerable to Server-Side Request Forgery (SSRF) due to insufficient validation of URLs specified in custom resources. | Aug 05, 2026 |
| CVE-2026-14587 | UNKNOWN | — | Neo4j's Bolt modern handshake decoder treats an overlong capability bit mask the same way it treats a truncated bit mask. When an unauthenticated client sends … | Aug 05, 2026 |
| CVE-2026-9203 | HIGH | 8.5 | A server-side request forgery vulnerability in Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user with low-privileged roles to bypass protections for cloud … | Aug 05, 2026 |
| CVE-2026-9195 | CRITICAL | 9.3 | A cross-site scripting vulnerability in the Query Console of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows a remote attacker who lures an authenticated administrator … | Aug 05, 2026 |
| CVE-2026-9193 | CRITICAL | 9.9 | An improper privilege management vulnerability in the Hadoop integration of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user with a low-privileged Hadoop … | Aug 05, 2026 |
| CVE-2026-9192 | CRITICAL | 9.8 | An authentication bypass vulnerability in the ODBC App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an unauthenticated remote attacker to bypass password … | Aug 05, 2026 |
| CVE-2026-9190 | CRITICAL | 9.1 | An HTTP request smuggling vulnerability in the HTTP App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows a remote attacker to bypass authentication … | Aug 05, 2026 |
| CVE-2026-8709 | CRITICAL | 9.9 | An improper privilege management vulnerability in the REST API document patch operation of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user with … | Aug 05, 2026 |
| CVE-2026-8400 | HIGH | 8.1 | IBM WebSphere Application Server 8.5, and 9.0 and IBM WebSphere Application Server - Liberty Continuous delivery has a flaw in the ORB component in IBM … | Aug 05, 2026 |