Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

50089
Total
4047
Critical
14897
High
14637
Medium
CVE ID Severity Score Description Published
CVE-2026-66300 MEDIUM 5.0 SNOMED International Snowstorm contains a reflected XSS vulnerability within the "Web Route" redirection functionality. An attacker can inject arbitrary JavaScript which will execute upon a … Aug 04, 2026
CVE-2026-49435 CRITICAL 9.8 Keysight IxChariot Endpoint and associated products contain a stack-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet and execute arbitrary code … Aug 04, 2026
CVE-2026-47781 UNKNOWN PDM is a Python package and dependency manager. In versions up to and including 2.26.9, PDM automatically loads project-local plugins from a .pdm-plugins directory during … Aug 04, 2026
CVE-2026-47764 UNKNOWN pdm is a Python package and dependency manager supporting the latest PEP standards. Versions prior to 2.27.0 are vulnerable to path traversal through write_to_fs. InstallDestination.write_to_fs() … Aug 04, 2026
CVE-2026-13229 UNKNOWN Zammad 7.1.0 contains an authenticated improper authorization vulnerability in the ticket article attachment cloning endpoint. Aug 04, 2026
CVE-2026-0163 CRITICAL 9.8 In multiple functions of vpu_ioctl.c, there is a possible use after free due to a use after free. This could lead to remote escalation of … Aug 04, 2026
CVE-2017-20242 CRITICAL 9.8 Keysight IxChariot Endpoint before 9.5.102 contains a stack-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet to crash the endpoint or … Aug 04, 2026
CVE-2017-20241 CRITICAL 9.8 Keysight IxChariot Endpoint before 9.5.102 contains a heap-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet to crash the endpoint or … Aug 04, 2026
CVE-2026-70470 UNKNOWN Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise validatePythonCodeForDataFrame in packages/components/src/pythonCodeValidator.ts can be … Aug 04, 2026
CVE-2026-69264 UNKNOWN Prior to 3.1.3, Flowise CSVAgent interpolates an attacker-controlled segment of the csvFile data URI directly into a Python source-code template that is then executed by … Aug 04, 2026
CVE-2026-47763 UNKNOWN pdm is a Python package and dependency manager supporting the latest PEP standards. In versions prior to 2.27.0, pdm writes several project-local state or configuration … Aug 04, 2026
CVE-2026-47623 HIGH 8.2 NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to … Aug 04, 2026
CVE-2026-47622 MEDIUM 5.3 NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause the generation of error messages that contain sensitive information. A successful exploit of … Aug 04, 2026
CVE-2026-47621 MEDIUM 6.5 NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race condition in the LoRA manager singleton initialization. A successful exploit of … Aug 04, 2026
CVE-2026-47620 MEDIUM 6.5 NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race condition in the LoRA manager singleton initialization. A successful exploit of … Aug 04, 2026
CVE-2026-47619 MEDIUM 6.6 NVIDIA Dynamo for Linux examples and recipes contain a vulnerability where an attacker could cause a system failure. A successful exploit of this vulnerability might … Aug 04, 2026
CVE-2026-47618 HIGH 7.5 NVIDIA Dynamo for Linux contains a vulnerability in the Rust multimodal media fetcher where an attacker could cause server-side request forgery. A successful exploit of … Aug 04, 2026
CVE-2026-47617 HIGH 7.5 NVIDIA Dynamo for Linux contains a vulnerability in the multimodal media fetcher where an attacker may cause server-side request forgery via DNS rebinding. A successful … Aug 04, 2026
CVE-2026-47616 HIGH 7.5 NVIDIA Dynamo for Linux contains a vulnerability in the multimodal media fetcher where an attacker may cause server-side request forgery. A successful exploit of this … Aug 04, 2026
CVE-2026-47615 HIGH 7.5 NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause server-side request forgery by supplying a crafted URL in a multimodal request. A … Aug 04, 2026
CVE-2026-47614 HIGH 7.5 NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause server-side request forgery. A successful exploit of this vulnerability might lead to information … Aug 04, 2026
CVE-2026-47613 HIGH 7.5 NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause improper limitation of a pathname to a restricted directory by supplying a crafted … Aug 04, 2026
CVE-2026-47612 HIGH 7.5 NVIDIA Dynamo for Linux contains a vulnerability in the image loading component where an attacker may cause improper limitation of a pathname to a restricted … Aug 04, 2026
CVE-2026-47487 MEDIUM 4.4 NVIDIA Triton Inference Server for Linux contains a vulnerability where a user could cause files outside the model repository to be read, written to, or … Aug 04, 2026
CVE-2026-24255 HIGH 7.5 NVIDIA Dynamo for Linux contains a vulnerability in the multimodal embedding cache, where an attacker could cause a hash collision by submitting images that share … Aug 04, 2026