Advanced Threat Data Export
Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.
Data export is locked. Upgrade your package to enable filtering and downloading.
π Premium Features
π Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-49756 Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in wojtekmach Req allows multipart parameter smuggling via attack... | UNKNOWN | ????? | ????? | NVD | 4 days ago |
| CVE-2026-36789 Shenzhen Tenda Technology Co., Ltd Tenda AC1206 v15.03.06.23 was discovered to contain multiple stack overflows in the fromGstDhcpSetSer function via ... | HIGH | ????? | ????? | NVD | 4 days ago |
| CVE-2026-48488 phpMyFAQ is an open source FAQ web application. Prior to version 4.1.4, attachment passwords are hashed using SHA-1, a cryptographically broken algori... | UNKNOWN | ????? | ????? | NVD | 4 days ago |
| CVE-2026-11528 A vulnerability was found in Tenda AC18 15.03.05.05. The affected element is the function sub_45304 of the file /goform/getRebootStatus of the compone... | HIGH | ????? | ????? | NVD | 4 days ago |
| CVE-2026-11524 A vulnerability has been found in Tenda W20E 15.11.0.6. Impacted is the function modifyWifiFilterRules of the file /goform/modifyWifiFilterRules of th... | HIGH | ????? | ????? | NVD | 4 days ago |
| CVE-2026-11523 A flaw has been found in Tenda W20E 15.11.0.6. This issue affects the function formPortalAuth of the file /goform/PortalAuth of the component Web Mana... | HIGH | ????? | ????? | NVD | 4 days ago |
| CVE-2026-11522 A vulnerability was detected in Tenda W20E 15.11.0.6. This vulnerability affects the function formSetPortMirror of the file /goform/setPortMirror. Per... | HIGH | ????? | ????? | NVD | 4 days ago |
| CVE-2026-11521 A security vulnerability has been detected in Mohammed-eid35 bank-management-system-springboot up to 7b9bcc65ad7df3db29af71aed9bb500e5f24d948. This af... | MEDIUM | ????? | ????? | NVD | 4 days ago |
| CVE-2026-43973 Uncontrolled Resource Consumption vulnerability in ninenines gun (gun_http module) allows a malicious server to exhaust client memory via unbounded HT... | UNKNOWN | ????? | ????? | NVD | 4 days ago |
| CVE-2026-43972 Origin Validation Error vulnerability in ninenines gun (gun_http2 module) allows cross-origin cookie injection via unvalidated HTTP/2 PUSH_PROMISE aut... | UNKNOWN | ????? | ????? | NVD | 4 days ago |
| CVE-2026-43974 Unexpected Status Code or Return Value vulnerability in ninenines gun (gun_http module) allows a malicious HTTP server to force the client into raw pr... | UNKNOWN | ????? | ????? | NVD | 4 days ago |
| CVE-2026-25558 QloApps through 1.7.0 contains a stored cross-site scripting vulnerability in the admin file manager that allows authenticated administrators to injec... | MEDIUM | ????? | ????? | NVD | 4 days ago |
| CVE-2026-11520 A weakness has been identified in SourceCodester Inventory System 1.0. Affected by this issue is some unknown functionality of the file header.php. Th... | LOW | ????? | ????? | NVD | 4 days ago |
| CVE-2026-11519 A security flaw has been discovered in SourceCodester Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file /Pr... | MEDIUM | ????? | ????? | NVD | 4 days ago |
| CVE-2026-11518 A vulnerability was identified in SourceCodester Inventory System 1.0. Affected is an unknown function of the file /users.php of the component User Ma... | MEDIUM | ????? | ????? | NVD | 4 days ago |
| CVE-2026-11577 A flaw was found in Keycloak. A limited administrator can exploit an improper access control vulnerability in the POST /admin/realms/{realm}/partialIm... | HIGH | ????? | ????? | NVD | 4 days ago |
| CVE-2026-11517 A vulnerability was determined in UTT HiPER 2610G up to 3.0.0-171107. This impacts the function strcpy of the file /goform/formConfigDnsFilterGlobal. ... | HIGH | ????? | ????? | NVD | 4 days ago |
| CVE-2026-11516 A vulnerability was found in UTT HiPER 2610G up to 3.0.0-171107. This affects the function strcpy of the file /goform/formNatStaticMap. Performing a m... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-49235 When Routinator encounters a file via RRDP using a specifically crafted Document Type Definition, Routinator crashes. | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-49234 When sending a specifically crafted non-UTF-8 string as select-asn query parameter to the /api/v1/origins endpoint, Routinator crashes.
This only af... | HIGH | ????? | ????? | NVD | 5 days ago |