🔔 Premium Features
🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-93597 ArcadeDB versions before 26.9.1 fail to validate IPv6 transition addresses in the SSRF guard used by IMPORT DATABASE and server commands. Authenticate... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93596 ArcadeDB before 26.9.1 (com.arcadedb:arcadedb-engine <= 26.8.1) fails to bind the authenticated principal onto the DatabaseAsyncTransaction async w... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93595 ArcadeDB before 26.9.1 contains an access control bypass vulnerability in the query_database tool exposed through the AI chat endpoints. The tool exec... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93594 ArcadeDB (Maven artifact com.arcadedb:arcadedb-engine) through 26.8.1 enforces its per-type/per-record access-control rules only in LocalBucket, keyed... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93593 ArcadeDB before 26.9.1 fails to enforce security-group types ACL entries for TimeSeries types because the ACL resolver builds permissions from bucket ... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93592 vLLM versions before 0.28.0 fail to validate the lower bound of token IDs in the /v1/embeddings and /pooling endpoints, allowing unauthenticated attac... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93591 SiYuan versions before 3.8.3 contain an SQL injection vulnerability in the graph.go query2Stmt function where tag values are concatenated raw into SQL... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93590 ImageMagick before 7.1.2-31 contains a policy bypass vulnerability in the UHDR encoder that fails to perform policy checks during buffer allocation fo... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93589 ImageMagick before 7.1.2-31 and 6.9.13-56 contains a division-by-zero flaw in the FLIF encoder. An incorrect value for ticks per second in the image b... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93588 ImageMagick before 7.1.2-31 and before 6.9.13-56 contains a NULL pointer dereference in the PNM coder. When the coder reaches a memory (resource) limi... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93587 ImageMagick before 7.1.2-31 and before 6.9.13-56 contains a policy bypass in the PCD (and, per the upstream advisory, CUBE and HALD) coder: when a spe... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93586 ImageMagick before 7.1.2-31 and before 6.9.13-56 contains a use-after-free vulnerability in the ImagesToBlob method, caused by a pointer that is not u... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2023-5778 Improper handling of length parameter inconsistency vulnerability in ABB Freelance Controller DCP, ABB Freelance Controller AC700, ABB Freelance Contr... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93504 A vulnerability has been found in SveltyCMS 0.0.6. This affects an unknown part of the file src/routes/api/[...path]/+server.ts of the component User ... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93492 A flaw was found in Netty's HTTP/2 HpackEncoder. A remote attacker can exploit this by sending HTTP/2 SETTINGS frames with a very large MAX_HEADE... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93491 A flaw was found in Netty's HttpServerCodec. A remote, unauthenticated attacker can exploit this vulnerability by pipelining HTTP/1.1 requests on... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93488 A flaw was found in Netty. SpdySessionHandler accepts an unlimited number of concurrent remote-initiated streams because localConcurrentStreams defaul... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-28199 An authenticated user with access to the NetBackup Flex OS management
shell could read arbitrary files from the underlying operating system by
suppl... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-21806 HCL BigFix Service Management is affected by an Administrative Session Concurrency vulnerability. The application allows multiple simultaneous authent... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-28198 An authenticated, low-privileged user with access to the NetBackup Flex
OS management shell could bypass the cryptographic signature
verification st... | HIGH | ????? | ????? | NVD | 1 day ago |