Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

21,780 of 57,566 · Page 179/436
6.0
CVE-2026-0857

Cleartext Storage of Sensitive Information in Memory vulnerability in Mesalvo Meona Client Launcher Component, Mesalvo M

6.0
CVE-2026-42998

An issue was discovered in OpenStack Keystone before 29.0.2. The Keystone application credential authentication plugin d

6.0
CVE-2026-42999

An issue was discovered in OpenStack Keystone before 29.0.2. The Keystone RBAC policy enforcer in enforce_call unconditi

6.0
CVE-2026-43000

An issue was discovered in OpenStack Keystone before 29.0.2. When combined with an application credential impersonation

6.0
CVE-2026-44394

An issue was discovered in OpenStack Keystone before 29.0.2. The Keystone federated token rescoping mechanism does not p

6.0
CVE-2026-25620

An encrypted password command injection vulnerability exists in the Captive Portal application framework of Arista Edge

6.0
CVE-2026-25621

A Reports application infrastructure vulnerability exists in Arista Edge Threat Management - Arista Next Generation Fire

6.0
CVE-2026-25622

A Captive Portal Custom Handler command injection vulnerability exists in Arista Edge Threat Management - Arista Next Ge

6.0
CVE-2026-25623

An input validation command execution vulnerability exists in the browser management pipeline of Arista Edge Threat Mana

6.0
CVE-2026-28262

Dell iDRAC Tools, versions prior to 11.4.1.0, contains an Improper Link Resolution Before File Access ('Link Following')

6.0
CVE-2026-46768

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: VMSVGA device). The supported v

6.0
CVE-2026-46825

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: VMSVGA device). The supported v

6.0
CVE-2026-46877

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: VMSVGA device). The supported v

6.0
CVE-2026-55748

OpenStack Horizon before 25.7.4 produces scripts for OpenStack RC file downloading that may have a crafted project name

6.0
CVE-2026-20246

A vulnerability in the vmadmin CLI of Cisco Umbrella Virtual Appliance could allow an authenticated, local attacker to e

6.0
CVE-2025-2669

IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8, 5.0, 5.1, 5.2, 5.3 could allow a pri

6.0
CVE-2026-7253

IBM Sterling B2B Integrator and IBM Sterling File Gateway are vulnerable to SQL injection. A privileged user could send

6.0
CVE-2026-44273

Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain a Use of Default Credentials vulnerability. A high

6.0
CVE-2026-47375

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, an authenticated user with columnAdd perm

6.0
CVE-2026-8659

OS Command Injection vulnerability in Rapid7 InsightConnect SQLmap Plugin on Linux allows authenticated attackers to exe

6.0
CVE-2026-8663

OS Command Injection vulnerability in Rapid7 InsightConnect RPM Plugin on Linux allows authenticated attackers to execut

6.0
CVE-2026-8664

OS Command Injection vulnerability in Rapid7 InsightConnect Finger Plugin on Linux allows authenticated attackers to exe

6.0
CVE-2026-8658

OS Command Injection vulnerability in Rapid7 InsightConnect Tcpdump Plugin on Linux allows authenticated attackers to ex

6.0
CVE-2026-48529

GitHub MCP Server is GitHub's official MCP Server. From 0.22.0 until 1.1.2, when running in HTTP mode with --lockdown-mo

6.0
CVE-2026-13752

Improper neutralization of parameters in Snowflake CLI versions prior to 3.19 allowed unintended SQL execution. An attac

6.0
CVE-2026-13773

IBM WebSphere Extreme Scale 8.6.1.0 through 8.6.1.6 Approximately 50 generated CORBA stub classes in WebSphere eXtreme S

6.0
CVE-2026-53449

Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.0, the psd print sessions dump CLI co

6.0
CVE-2026-58638

Missing cryptographic step in Windows Boot Loader allows an authorized attacker to bypass a security feature locally.

6.0
CVE-2026-10587

A potential out-of-bounds write vulnerability could allow a local privileged attacker to modify power management setting

6.0
CVE-2026-10589

A potential out of bounds write vulnerability could allow a local privileged attacker to execute code in System Manageme

6.0
CVE-2026-47041

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version th

6.0
CVE-2026-60265

Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that ar

6.0
CVE-2026-60626

Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Installation Security). T

6.0
CVE-2026-44276

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Exposure of Sensitive Information to an Unauth

6.0
CVE-2026-20467

In apusys, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalatio

6.0
CVE-2026-20468

In apusys, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of

6.0
CVE-2026-20469

In trusted_mem, there is a possible escalation of privilege due to improper input validation. This could lead to local e

6.0
CVE-2026-20473

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privileg

6.0
CVE-2026-20474

In display, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of

6.0
CVE-2026-20475

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o

6.0
CVE-2026-20477

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o

6.0
CVE-2026-20481

In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation

6.0
CVE-2026-20485

In HFRP, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p

6.0
CVE-2026-20497

In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation

6.0
CVE-2026-20498

In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local es

6.0
CVE-2026-70603

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.6,

6.0
CVE-2026-45415

Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.3

6.0
CVE-2026-33922

A path traversal vulnerability was discovered in the Offline archives functionality of the local web interface due to in

6.0
CVE-2026-69108

A vulnerability has been identified in Siemens License Server (SLS) (All versions < V5.1). The affected application is v

6.0
CVE-2026-66455

Subscriber Broken Access Control in ReactPress <= 3.4.0 versions.

Scan for 2026 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started