NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-47185 Frappe is a full-stack web application framework. Prior to 16.18.0, the Workspace Save API accepts a controlled workspace identifier from any authenti... 2026-08-06 5.1 NETWORK MEDIUM NVD
CVE-2026-45573 Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.32.0.rc2, when VAPID delivery i... 2026-08-06 6.4 NETWORK MEDIUM NVD
CVE-2026-45572 Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.32.0.rc2, an administrator with... 2026-08-06 4.8 NETWORK MEDIUM NVD
CVE-2026-45415 Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.32.0.rc2, the /admin/csv_census... 2026-08-06 6.0 NETWORK MEDIUM NVD
CVE-2026-45414 Decidim is a participatory democracy framework. Prior to 0.31.5 and in 0.32.0.rc1 before 0.32.0.rc2, JWT-backed API authentication is not bound to the... 2026-08-06 8.5 NETWORK HIGH NVD
CVE-2026-45378 Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.32.0.rc2, the identity-document... 2026-08-06 7.5 NETWORK HIGH NVD
CVE-2026-43632 llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in llama-server affecting six tokenization endpoints (/tokeniz... 2026-08-06 8.1 NETWORK HIGH NVD
CVE-2026-43631 llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in the vocab pointer of llama-server when the --sleep-idle-sec... 2026-08-06 8.1 NETWORK HIGH NVD
CVE-2026-43630 llama.cpp builds b5702 through b7653 contain an out-of-bounds read vulnerability in the recurrent memory state restore path that allows attackers with... 2026-08-06 6.5 NETWORK MEDIUM NVD
CVE-2026-43629 llama.cpp builds b4882 through b9058 contain a heap buffer overflow vulnerability in the KV cache state restore path where the state_read_data() funct... 2026-08-06 8.1 NETWORK HIGH NVD
CVE-2026-43628 llama.cpp builds b3978 through b9058 contain an integer underflow and out-of-bounds read vulnerability in the DRY sampler that allows unauthenticated ... 2026-08-06 7.8 LOCAL HIGH NVD
CVE-2026-43627 llama.cpp builds b1283 through b9058 contain an integer overflow vulnerability in the llama_batch_init() function where unchecked multiplications in m... 2026-08-06 7.8 LOCAL HIGH NVD
CVE-2026-41861 Path Traversal in BOSH-Ecosystem / BOSH allows an IaaS-metadata attacker to make the agent write a root-owned file with partially attacker-controlled ... 2026-08-06 4.2 ADJACENT_NETWORK MEDIUM NVD
CVE-2026-3418 The System REST API accepts user-supplied file uploads without enforcing sufficient validation on the file type or destination, allowing files to be w... 2026-08-06 9.1 NETWORK CRITICAL NVD
CVE-2026-3415 The XML and schema validation functionalities within the SchemaValidator Mediator process XML input as part of validation flows. Under certain conditi... 2026-08-06 8.7 NETWORK HIGH NVD