Filter and search through 392,208 vulnerabilities
| CVE ID | Description | CVSS | Priority | Trend | Exploit | Patch |
|---|---|---|---|---|---|---|
| CVE-2026-23845 | ### Server-Side Request Forgery (SSRF) via HTML Check CSS Download The HTML Check feature (`/api/v1/message/{ID}/html-check`) is designed to analyze ... | 5.8 | 277 | Neutral | No |
| Yes |
| CVE-2026-23844 | Whisper Money is a personal finance application. Versions prior to 0.1.5 have an insecure direct object reference vulnerability. A user can update/cre... | 0.0 | 0 | Neutral | No | No |
| CVE-2026-23843 | teklifolustur_app is a web-based PHP application that allows users to create, manage, and track quotes for their clients. Prior to commit dd082a134a22... | 7.1 | 313 | Neutral | No | No |
| CVE-2026-23842 | ### Summary ChatterBot versions up to 1.2.10 are vulnerable to a denial-of-service condition caused by improper database session and connection pool m... | 7.5 | 386 | Neutral | No | Yes |
| CVE-2026-23841 | Movary is a web application to track, rate and explore your movie watch history. Due to insufficient input validation, attackers can trigger cross-sit... | 9.3 | 577 | Neutral | No | No |
| CVE-2026-23840 | Movary is a web application to track, rate and explore your movie watch history. Due to insufficient input validation, attackers can trigger cross-sit... | 9.3 | 577 | Neutral | No | No |
| CVE-2026-23839 | Movary is a web application to track, rate and explore your movie watch history. Due to insufficient input validation, attackers can trigger cross-sit... | 9.3 | 577 | Neutral | No | No |
| CVE-2026-23838 | Tandoor Recipes is a recipe manager than can be installed with the Nix package manager. Starting in version 23.05 and prior to version 26.05, when usi... | 0.0 | 0 | Neutral | No | No |
| CVE-2026-23837 | MyTube is a self-hosted downloader and player for several video websites. A vulnerability present in version 1.7.65 and poetntially earlier versions a... | 9.8 | 596 | Neutral | No | No |
| CVE-2026-23836 | HotCRP is conference review software. A problem introduced in April 2024 in version 3.1 led to inadequately sanitized code generation for HotCRP formu... | 9.9 | 593 | Neutral | No | No |
| CVE-2026-23833 | ### Summary An integer overflow in the API component's protobuf decoder allows denial-of-service attacks when API encryption is not used. ### Details... | 0.0 | 0 | Neutral | No | Yes |
| CVE-2026-23831 | ## Summary Rekor’s cose v0.0.1 entry implementation can panic on attacker-controlled input when canonicalizing a proposed entry with an empty `spec.m... | 5.3 | 124 | Neutral | No | Yes |
| CVE-2026-23829 | # Vulnerability Report: SMTP Header Injection via Regex Bypass **Vulnerable Code:** `mailpit/internal/smtpd/smtpd.go` ## Executive Summary Mailpit's... | 5.3 | 124 | Neutral | No | Yes |
| CVE-2026-23800 | Incorrect Privilege Assignment vulnerability in Modular DS modular-connector allows Privilege Escalation.This issue affects Modular DS: from 2.5.2 bef... | 10.0 | 591 | Neutral | No | Yes |
| CVE-2026-23769 | lucy-xss-filter before commit e5826c0 allows an attacker to execute malicious JavaScript due to improper sanitization caused by misconfigured default ... | 6.1 | 272 | Neutral | No | Yes |
| CVE-2026-23768 | lucy-xss-filter before commit 7c1de6d allows an attacker to induce server-side HEAD requests to arbitrary URLs when the ObjectSecurityListener or Embe... | 6.1 | 293 | Neutral | No | Yes |
| CVE-2026-23766 | Istio through 1.28.2 allows iptables rule injection for changing firewall behavior via the traffic.sidecar.istio.io/excludeInterfaces annotation. NOTE... | 4.1 | 107 | Neutral | No | No |
| CVE-2026-23764 | VB-Audio Voicemeeter, Voicemeeter Banana, and Voicemeeter Potato (versions ending in 1.1.1.9, 2.1.1.9, and 3.1.1.9 and earlier, respectively), as well... | 0.0 | 0 | Neutral | No | No |
| CVE-2026-23763 | VB-Audio Matrix and Matrix Coconut (versions ending in 1.0.2.2 and 2.0.2.2 and earlier, respectively), contain a local privilege escalation vulnerabil... | 0.0 | 0 | Neutral | No | No |
| CVE-2026-23762 | VB-Audio Voicemeeter, Voicemeeter Banana, and Voicemeeter Potato (versions ending in 1.1.1.9, 2.1.1.9, and 3.1.1.9 and earlier, respectively), as well... | 0.0 | 0 | Neutral | No | No |