NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-19485 A Predictable Resource Name vulnerability in BigQuery Import Staging in Google Cloud Vertex AI Search for Commerce versions prior to 2026-04-27 on Goo... 2026-08-26 9.3 NETWORK CRITICAL NVD
CVE-2025-61165 An arbitrary file upload vulnerability in the /v1/my_drive/batch_upload component of cohere North AI v1.1.5 allows attackers to exeute arbitrary code ... 2026-08-26 9.8 NETWORK CRITICAL NVD
CVE-2025-61164 Cohere North AI v1.1.5 was discovered to contain an information leak via the WebSocket Endpoint. 2026-08-26 7.5 NETWORK HIGH NVD
CVE-2025-61163 Cohere North AI v1.1.5 was discovered to contain excessively permissive cross-domain policy with untrusted domains. This occurs via the server failing... 2026-08-26 9.8 NETWORK CRITICAL NVD
CVE-2025-61162 Incorrect access control in Cohere North AI v1.1.5 allows attackers to arbitrarily overwrite user info via a crafted request to the /api/internal/v1/u... 2026-08-26 7.5 NETWORK HIGH NVD
CVE-2026-76784 Multiple TP-Link Kasa smart home devices contain insufficient cryptographic protections in the local device communication protocol. An adjacent networ... 2026-08-26 8.7 ADJACENT HIGH NVD
CVE-2026-58474 whichllm before 0.5.16 contains a code injection vulnerability in the run and snippet commands that allows a remote attacker who controls a HuggingFac... 2026-08-26 8.8 NETWORK HIGH NVD
CVE-2026-54256 Winter CMS is a content management system built on the Laravel PHP framework. In versions up to and including 1.2.12, the backend FileUpload form widg... 2026-08-26 5.4 NETWORK MEDIUM NVD
CVE-2026-47841 An application using Spring Security's WebAuthn support may be vulnerable to user verification bypass when using a distributed HTTP session store. Spr... 2026-08-26 7.4 NETWORK HIGH NVD
CVE-2026-47837 Missing Authentication for Critical Function vulnerability in Spring Spring Cloud Config allows Webhook requests to Spring Cloud Config Server's /moni... 2026-08-26 6.8 NETWORK MEDIUM NVD
CVE-2026-47836 The base directory (spring.cloud.config.server.svn.basedir) used by the Spring Cloud Config Server to clone SVN repositories to is susceptible to time... 2026-08-26 7.2 LOCAL HIGH NVD
CVE-2026-32639 Winter CMS is a content management system built on the Laravel PHP framework. In versions up to and including 1.2.12, the CMS section's Theme Editor A... 2026-08-26 6.8 NETWORK MEDIUM NVD
CVE-2026-32593 Winter CMS is a content management system built on the Laravel PHP framework. In versions up to and including 1.2.12, the backend Filter widget is vul... 2026-08-26 5.9 NETWORK MEDIUM NVD
CVE-2025-56798 Cross-Site Request Forgery (CSRF) vulnerability in Lime Technology, Inc.'s Unraid OS version 6.12.14 and earlier allows remote attackers to escalate p... 2026-08-26 8.8 NETWORK HIGH NVD
CVE-2025-29419 CTFd v3.7.6 was discovered to be vulnerable to a man-in-the-middle attack. 2026-08-26 N/A None None NVD