Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

57,566 results · Page 723/1152
6.3
CVE-2026-19958

A security flaw has been discovered in iatsiuk pptr-mcp up to 0.2.7. The impacted element is the function executeCode of

6.3
CVE-2026-19967

A security flaw has been discovered in Open Asset Import Library Assimp 17c12da. Impacted is the function Assimp::Compre

6.3
CVE-2026-19970

A vulnerability was detected in Open Asset Import Library Assimp 17c12da. This affects the function Assimp::MDLImporter:

6.3
CVE-2026-19972

A vulnerability has been found in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the fi

6.3
CVE-2026-19973

A vulnerability was found in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unknown f

6.3
CVE-2026-19984

A flaw has been found in jkawamoto mcp-florence2 up to 0.3.13. Affected by this issue is the function get_images of the

6.3
CVE-2026-19994

A vulnerability was found in Webkul Bagisto up to 2.4.4. Affected by this issue is some unknown functionality of the fil

6.3
CVE-2026-19999

A security vulnerability has been detected in Open Asset Import Library Assimp Assimp 17c12da. The affected element is t

6.3
CVE-2026-20000

A vulnerability was detected in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function

6.3
CVE-2026-74842

A vulnerability was found in Kira-Pgr PromptShopMCP up to 5bc0cd17358e19a5415d11a531088170d7b81452. Affected is the func

6.3
CVE-2026-10527

Mattermost versions 11.7.x <= 11.7.6, 10.11.x <= 10.11.21, 11.8.x <= 11.8.3 fails to reconcile SchemeAdmin flags with a

6.3
CVE-2026-16048

Mattermost versions 11.8.x <= 11.8.2, 11.7.x <= 11.7.6, 10.11.x <= 10.11.21 fail to restrict channel member role assignm

6.3
CVE-2026-74858

A vulnerability has been found in jae-jae fetcher-mcp up to 0.3.9. Impacted is the function fetch_url/fetch_urls of the

6.3
CVE-2026-75054

In JetBrains IntelliJ IDEA before 2026.2.1 sSRF was possible via the OpenAPI preview proxy in untrusted projects

6.3
CVE-2026-75011

A flaw has been found in kylecui NetForensicMCP 2.1.0. Impacted is the function execAsync of the file index.js. Executin

6.3
CVE-2026-75086

A vulnerability has been found in itsourcecode Hospital Management System 1.0. The impacted element is an unknown functi

6.3
CVE-2026-75087

A vulnerability was found in itsourcecode Hospital Management System 1.0. This affects an unknown function of the file /

6.3
CVE-2026-75088

A vulnerability was determined in itsourcecode Hospital Management System 1.0. This impacts an unknown function of the f

6.3
CVE-2024-14045

A weakness has been identified in OpenBoxes up to 0.9.2. This vulnerability affects unknown code of the file grails-app/

6.3
CVE-2024-14046

A security vulnerability has been detected in OpenBoxes up to 0.9.1. This issue affects the function DocumentController

6.3
CVE-2026-75845

ArcadeDB versions 26.4.2 through 26.7.3 contain an authorization bypass vulnerability in the set_server_setting MCP serv

6.3
CVE-2026-68568

Subscriber Privilege Escalation in MasterStudy LMS <= 3.7.41 versions.

6.3
CVE-2026-75032

A flaw was found in BlueZ. Insufficient validation of packet length fields in GetFolderItems responses within the Audio/

6.3
CVE-2026-61696

Forem is open source software for building communities. In versions before commit 92eacd16a82cf9007ba8e16a2258b42e3b53ca

6.3
CVE-2026-55162

Lemur manages TLS certificate creation. Prior to 1.9.2, lemur/certificates/verify.py accepted CRL Distribution Point and

6.3
CVE-2026-55163

Lemur manages TLS certificate creation. Prior to 1.9.2, PUT /api/1/roles/ in lemur/roles/views.py:298 authorized updates

6.3
CVE-2026-70667

Lemur manages TLS certificate creation. Prior to 1.9.3, _validate_revocation_url in lemur/certificates/verify.py checked

6.3
CVE-2026-47721

FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, POST /api/scheduler and DELETE

6.3
CVE-2026-75876

A security vulnerability has been detected in xianrendzw EasyReport up to 2.0.17.0522_Beta. Affected by this issue is so

6.3
CVE-2026-61139

Vulnerability in the Oracle Public Sector Financials (International) product of Oracle E-Business Suite (component: Auth

6.3
CVE-2026-62558

Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and C

6.3
CVE-2026-70693

Vulnerability in the Oracle Agile Engineering Data Management product of Oracle Supply Chain (component: Engineering Com

6.3
CVE-2026-70753

Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Server). The supported

6.3
CVE-2026-70775

Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: User Interface). Supported ve

6.3
CVE-2026-70991

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (comp

6.3
CVE-2026-71103

Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor

6.3
CVE-2026-75978

A security vulnerability has been detected in xianrendzw EasyReport up to 2.0.17.0522_Beta. The affected element is the

6.3
CVE-2026-75979

A vulnerability was found in xianrendzw EasyReport up to 2.0.17.0522_Beta. Affected is the function execSqlText/previewS

6.3
CVE-2026-76226

Renovate versions from 43.65.0 before 43.102.11 contain a remote code execution vulnerability in bazel-module and bazeli

6.3
CVE-2026-76239

Stigmem before 0.9.0a11 fails to validate the delivery_address parameter when creating webhook subscriptions, allowing a

6.3
CVE-2026-62670

Grav Flex Objects Plugin allows you to build custom collections of objects. Prior to 1.4.3, the Grav Flex Objects Admin

6.3
CVE-2026-55482

Snipe-IT is an IT asset/license management system. Prior to 8.4.1, a non-superadmin can use app/Http/Controllers/Assets/

6.3
CVE-2026-63187

Logto is the modern, open-source auth infrastructure for SaaS and AI apps. From 1.40.1 until 1.41.0, Logto's .github/wor

6.3
CVE-2026-76785

A security flaw has been discovered in amirsanni Mini-Inventory-and-Sales-Management-System 0.1. Affected is the functio

6.3
CVE-2026-76800

A flaw has been found in DeDeCMS 3. Affected by this vulnerability is an unknown functionality of the file /include/dial

6.3
CVE-2026-76991

A vulnerability was found in itsourcecode Hospital Management System 1.0. This affects an unknown part of the file /view

6.3
CVE-2026-76997

A weakness has been identified in SourceCodester Simple Online Food Ordering System 1.0. The affected element is an unkn

6.3
CVE-2026-76999

A vulnerability was detected in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. This affec

6.3
CVE-2026-77025

A weakness has been identified in itsourcecode Hospital Management System 1.0. This affects an unknown part of the file

6.3
CVE-2026-72844

The Lean 4 kernel does not verify that the structure named in a projection expression matches the type of the value bein

Scan for 2026 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started