CVE search

370,100 results
CVE-2026-44042LOWUltraVNC repeater wi_uudecode off-by-one in base64 decode boundary checkEPSS 0.4%CVE-2026-20463MEDIUMIn Modem, there is a possible escalation of privilege due to a permissions bypass. This could lead to local escalation of privilege if a malEPSS 0.1%CVE-2026-20462MEDIUMIn Telephony, there is a possible memory corruption due to a heap buffer overflow. This could lead to local escalation of privilege if a malEPSS 0.1%CVE-2026-20461MEDIUMIn Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial of service, if a UE has coEPSS 0.2%CVE-2026-20460MEDIUMIn Modem, there is a possible information disclosure due to improper input validation. This could lead to remote information disclosure, if EPSS 0.2%CVE-2026-20459MEDIUMIn Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connecEPSS 0.2%CVE-2026-20458HIGHIn Modem, there is a possible memory corruption due to a missing bounds check. This could lead to remote escalation of privilege, if a UE haEPSS 0.2%CVE-2026-20457MEDIUMIn Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connecEPSS 0.2%CVE-2026-14191HIGHWinRAR / UnRAR RAR5 recovery-volume (.rev) out-of-bounds heap write in RecVolumes5::ReadHeaderEPSS 0.3%CVE-2026-57963MEDIUMChat UI manipulation by injectionEPSS 0.2%CVE-2026-57962MEDIUMDenial-of-service via malicious LDAP address-book serverEPSS 0.2%CVE-2026-53488CRITICALcontainerd CRI plugin: — image-config `LABEL` flows to restart-monitor `binary://` logger: host-root command execution from an image pullEPSS 0.2%CVE-2026-41579LOWrunc: Malicious image with /dev symlink can trigger limited host filesystem integrity violationsEPSS 0.2%CVE-2026-38891HIGHAn improper input validation in the gazebo_ros_diff_drive.cpp component of gazebo_plugins v3.9.0 allows attackers to cause a Denial of ServiEPSS 0.3%CVE-2026-52186CRITICALSQL Injection vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to execute arbitrary code via the gohead/subEPSS 0.5%CVE-2026-52190HIGHBuffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the goheaEPSS 0.5%CVE-2026-36909MEDIUMA NULL pointer dereference in the AP4_TkhdAtom::GetTrackId() function of Aleksoid1978 MPC-BE before commit 4341cb3 allows attackers to causeEPSS 0.1%CVE-2026-36911MEDIUMA division-by-zero vulnerability in the CStreamSwitcherOutputPin::DecideBufferSize function of Aleksoid1978 MPC-BE before commit 4341cb3 allEPSS 0.1%CVE-2026-51946MEDIUMSQL Injection vulnerability in GoAdminGroup GoAdmin (last release v1.2.26) allows a remote attacker to execute arbitrary code and obtain senEPSS 0.3%CVE-2026-36912HIGHA NULL pointer dereference in the AP4_AtomSampleTable::GetSample() function of Aleksoid1978 MPC-BE before commit 4341cb3 allows attackers toEPSS 0.3%