CVE search

369,490 results
CVE-2026-8804MEDIUMCleartext Storage of Sensitive Information for Puppet Resource APIEPSS 0.1%CVE-2026-14544CRITICALHplip: incomplete fix for cve-2026-8631EPSS 0.6%CVE-2026-9148HIGHComments <= 7.6.56 - Unauthenticated Stored Cross-Site Scripting via 'Website' FieldEPSS 0.3%CVE-2026-9230MEDIUMQuiz and Survey Master (QSM) <= 11.1.4 - Missing Authorization to Authenticated (Contributor+) Arbitrary Quiz Modification and Email Reroute via Leaked Nonce from /quiz/structureEPSS 0.3%CVE-2026-8351MEDIUMRTMKit <= 2.0.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via Advanced Heading Widget 'Background Text' ParameterEPSS 0.2%CVE-2026-9547HIGHSSH improper host validationEPSS 0.5%CVE-2026-9546HIGHsending old refererEPSS 0.7%CVE-2026-9545HIGHexposing HTTP/3 early dataEPSS 0.4%CVE-2026-9080HIGHUAF after pause in socket callbackEPSS 0.5%CVE-2026-9079CRITICALstale proxy password leakEPSS 1.1%CVE-2026-8932HIGHincomplete mTLS config matching in conn reuseEPSS 0.4%CVE-2026-8927CRITICALenv-set cross-proxy Digest auth state leakEPSS 0.8%CVE-2026-8926CRITICALpassword leak with netrc and user in URLEPSS 0.6%CVE-2026-8925CRITICALSASL double-freeEPSS 1.1%CVE-2026-8924CRITICALtrailing dot domain super cookieEPSS 0.6%CVE-2026-8458MEDIUMwrong reuse for different servicesEPSS 0.5%CVE-2026-8286HIGHwrong STARTTLS connection reuseEPSS 0.5%CVE-2026-12064HIGHproto-default skips SSH verificationEPSS 0.6%CVE-2026-11856CRITICALcross-origin Digest auth state leakEPSS 1.1%CVE-2026-11586HIGHWS Auto-PONG memory exhaustionEPSS 0.9%