Advanced Threat Data Export
Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.
Data export is locked. Upgrade your package to enable filtering and downloading.
🔔 Premium Features
🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-59893 sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, SQL_REGEX in sqlparse/keywords.py and the per-position loop in sqlparse/lex... | HIGH | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-50772 An issue in Squirro Cognitive Search < 3.14.2 allows a remote attacker to execute arbitrary code via a crafted payload to the password reset functi... | UNKNOWN | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-50771 Cross Site Scripting vulnerability in Squirro Cognitive Search < 3.14.2 allows a remote attacker to execute arbtirary code via the Email Notificati... | MEDIUM | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-51346 SQL Injection vulnerability in StudIP 6.0.x before 6.0.3 and 5.4.x before 5.4.12 allows a remote attacker to execute arbitrary code and obtain sensiti... | CRITICAL | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-50770 An issue in Squirro Cognitive Search before v.3.14.2 allows a remote attacker to escalate privileges via a crafted request. | UNKNOWN | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-50769 The CRM+ application before and including version 2025.6 from Brainformatik is vulnerable to SQL Injection (time-based) vulnerability. The check confl... | UNKNOWN | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-50768 File Upload vulnerability in T-Systems International GmbH ImageMaster Version: 9.14.2.8.1 allows a remote attacker to execute arbitrary code via the a... | CRITICAL | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-48053 Kolibri is an offline-first education platform. Prior to version 0.19.4, several Kolibri API endpoints accept an unvalidated `baseurl` parameter and f... | MEDIUM | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-46345 compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the `-o/--output` argument in `trestle a... | HIGH | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-33437 Stirling-PDF is a locally hosted web application that facilitates various operations on PDF files. Prior to 2.0.0, the Get Info workflow in app/core/s... | HIGH | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-75011 A flaw has been found in kylecui NetForensicMCP 2.1.0. Impacted is the function execAsync of the file index.js. Executing a manipulation of the argume... | MEDIUM | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-12553 HP has identified a potential vulnerability in HP Web Jetadmin (WJA) that may allow an unauthenticated actor to read from or write to arbitrary files ... | UNKNOWN | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-74238 TIER IV Nebula through 1.2.0 contains an out-of-bounds read vulnerability in the Vlp32Decoder::unpack() function that allows unauthenticated remote at... | HIGH | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-73523 COVESA Open1722 through 0.9.2 contains an integer truncation vulnerability in acf-can-listener.c that allows unauthenticated remote attackers to cause... | HIGH | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-71980 Belledonne Communications bcg729 through 1.1.2 contains an out-of-bounds read vulnerability in the decodeSIDframe() function in src/cng.c that allows ... | HIGH | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-54284 sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, TokenList construction and string conversion in sqlparse/sql.py repeatedly ... | UNKNOWN | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-55090 Fix: PR #7905 (ether/etherpad).
`getHTMLFromAtext` in `src/node/utils/ExportHtml.ts` interpolates values from the `exportHtmlAdditionalTagsWithData` ... | HIGH | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-55062 ### Summary
Path Traversal vulnerability in hook filename handling allows attackers to access and manipulate arbitrary files outside the hooks directo... | MEDIUM | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-55061 ### Summary
The uniget CLI has a command injection vulnerability in [hooks.go](vscode-file://vscode-app/app/extra/vscode/resources/app/out/vs/code/ele... | MEDIUM | ????? | ????? | NVD | 10 hours ago |
| CVE-2026-71979 INDI (Instrument Neutral Distributed Interface) indiserver through 2.2.4.2, fixed in commit 96bbd7f, contains a stack buffer overflow vulnerability th... | HIGH | ????? | ????? | NVD | 10 hours ago |