Search Results (354083 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-44797 1 Nautobot 1 Nautobot 2026-05-28 8.5 High
Nautobot is a Network Source of Truth and Network Automation Platform. Prior to 2.4.33 and 3.1.2, Nautobot's Webhook data model and associated feature set could be configured by users with sufficient access to perform requests to various hosts and IP addresses that should not be permitted, allowing for various behaviors similar to server-side request forgery (SSRF). This vulnerability is fixed in 2.4.33 and 3.1.2.
CVE-2022-27799 3 Adobe, Apple, Microsoft 6 Acrobat, Acrobat Dc, Acrobat Reader and 3 more 2026-05-28 N/A
Acrobat Reader DC versions 22.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 (and earlier) are affected by a use-after-free vulnerability in the processing of the acroform event that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
CVE-2021-43243 1 Microsoft 1 Vp9 Video Extensions 2026-05-28 5.5 Medium
VP9 Video Extensions Information Disclosure Vulnerability
CVE-2021-26333 1 Amd 2 Chipset Driver, Psp Driver 2026-05-28 5.5 Medium
An information disclosure vulnerability exists in AMD Platform Security Processor (PSP) chipset driver. The discretionary access control list (DACL) may allow low privileged users to open a handle and send requests to the driver resulting in a potential data leak from uninitialized physical pages.
CVE-2025-5039 1 Autodesk 10 3ds Max, Autocad, Autocad Lt and 7 more 2026-05-28 7.8 High
A maliciously crafted binary file, when present while loading files in certain Autodesk applications, could lead to execution of arbitrary code in the context of the current process due to an untrusted search path being utilized.
CVE-2021-22926 5 Haxx, Netapp, Oracle and 2 more 26 Curl, Active Iq Unified Manager, Clustered Data Ontap and 23 more 2026-05-28 7.5 High
libcurl-using applications can ask for a specific client certificate to be used in a transfer. This is done with the `CURLOPT_SSLCERT` option (`--cert` with the command line tool).When libcurl is built to use the macOS native TLS library Secure Transport, an application can ask for the client certificate by name or with a file name - using the same option. If the name exists as a file, it will be used instead of by name.If the appliction runs with a current working directory that is writable by other users (like `/tmp`), a malicious user can create a file name with the same name as the app wants to use by name, and thereby trick the application to use the file based cert instead of the one referred to by name making libcurl send the wrong client certificate in the TLS connection handshake.
CVE-2020-15368 1 Asrock 2 Rgb Driver, Rgb Driver Firmware 2026-05-28 6.1 Medium
AsrDrv103.sys in the ASRock RGB Driver does not properly restrict access from user space, as demonstrated by triggering a triple fault via a request to zero CR3.
CVE-2026-4944 2026-05-28 N/A
vllm-project/vllm version 0.14.1 contains a vulnerability where the `trust_remote_code=True` parameter is hardcoded in two model implementation files (`vllm/model_executor/models/nemotron_vl.py` and `vllm/model_executor/models/kimi_k25.py`). This bypasses the user's explicit `--trust-remote-code=False` setting, enabling remote code execution via malicious HuggingFace model repositories. This issue is an incomplete fix for CVE-2025-66448 and CVE-2026-22807, as it affects separate code paths in model implementation files. Deployments loading NemotronVL or KimiK25 models are particularly impacted.
CVE-2026-48896 1 Joomla 1 Joomla\! 2026-05-28 7.5 High
Insufficient state checks lead to a vector that allows to bypass 2FA checks.
CVE-2026-45078 1 Element-hq 1 Synapse 2026-05-28 N/A
Synapse is an open source Matrix homeserver implementation. Prior to 1.152.1, local authenticated users can cause Synapse to starve other requests of CPU and lead to other requests failing, causing other users to be denied service. This vulnerability is fixed in 1.152.1.
CVE-2021-22897 5 Haxx, Netapp, Oracle and 2 more 30 Curl, Cloud Backup, H300e and 27 more 2026-05-28 5.3 Medium
curl 7.61.0 through 7.76.1 suffers from exposure of data element to wrong session due to a mistake in the code for CURLOPT_SSL_CIPHER_LIST when libcurl is built to use the Schannel TLS library. The selected cipher set was stored in a single "static" variable in the library, which has the surprising side-effect that if an application sets up multiple concurrent transfers, the last one that sets the ciphers will accidentally control the set used by all transfers. In a worst-case scenario, this weakens transport security significantly.
CVE-2026-48897 1 Joomla 2 Joomla!, Joomla\! 2026-05-28 7.5 High
Insufficient state checks lead to a vector that allows to bypass 2FA checks.
CVE-2021-31944 1 Microsoft 1 3d Viewer 2026-05-28 5 Medium
3D Viewer Information Disclosure Vulnerability
CVE-2021-31942 1 Microsoft 1 3d Viewer 2026-05-28 7.8 High
3D Viewer Remote Code Execution Vulnerability
CVE-2021-28465 1 Microsoft 1 Web Media Extensions 2026-05-28 7.8 High
Web Media Extensions Remote Code Execution Vulnerability
CVE-2026-32847 2026-05-28 7.5 High
DeepCode through commit c991dc2 contains a path traversal vulnerability in the SPA catch-all route in new_ui/backend/main.py that allows unauthenticated attackers to read arbitrary files by supplying percent-encoded path segments to the GET /{full_path:path} endpoint. Attackers can bypass Starlette's path normalization by encoding slashes as %2F and dots as %2E%2E, causing the joined path to traverse outside FRONTEND_DIST and exposing sensitive files such as SSH private keys, TLS certificates, and application secrets with a single HTTP request.
CVE-2021-28464 1 Microsoft 1 Vp9 Video Extensions 2026-05-28 7.8 High
VP9 Video Extensions Remote Code Execution Vulnerability
CVE-2026-48901 1 Joomla 2 Joomla!, Joomla\! 2026-05-28 7.5 High
The InputFilter::getInstance() method omitted a security sensitive parameter from the instance cache key.
CVE-2026-45021 1 Kumahq 1 Kuma 2026-05-28 N/A
Kuma is a modern Envoy-based service mesh that can run on every cloud across both Kubernetes and VMs. Prior to 2.7.25, 2.9.15, 2.11.13, 2.12.10, and 2.13.5, the default kuma-cp config leaks the admin bootstrap token and signing keys to any webpage the operator visits while the control plane is reachable from their browser. CorsAllowedDomains: [".*"] reflects any Origin, and LocalhostIsAdmin: true promotes requests from 127.0.0.1 to mesh-system:admin. A cross-origin fetch() from a malicious page returns the admin JWT and signing material. This vulnerability is fixed in 2.7.25, 2.9.15, 2.11.13, 2.12.10, and 2.13.5.
CVE-2021-1721 2 Microsoft, Redhat 7 .net, .net Core, Powershell Core and 4 more 2026-05-28 6.5 Medium
.NET Core and Visual Studio Denial of Service Vulnerability