NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-61477 An injection vulnerability was found in libvirt's virtual network driver. The network XML parser does not strip newline characters from DNS TXT record... 2026-08-07 2.3 LOCAL LOW NVD
CVE-2026-37171 A lack of tenant separation in SuperTokens Inc. SuperTokens Core v6.0.0 to v11.4.0 allows an authenticated party in one tenant to access sessions, dat... 2026-08-07 5.9 NETWORK MEDIUM NVD
CVE-2026-16637 OPeNDAP Hyrax allows SSRF and credential disclosure via unvalidated HTTP redirects that bypass the AllowedHosts allowlist and leak Earthdata headers (... 2026-08-07 6.5 NETWORK MEDIUM NVD
CVE-2026-15570 An improper restriction of URL schemes and destinations in the SmartCenter browserseturl command in the Telefunken TE24553B45V2DZ Smart TV running on ... 2026-08-07 7.1 ADJACENT HIGH NVD
CVE-2026-66838 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in elixir-ecto postgrex allows SQL Injection via th... 2026-08-07 5.9 LOCAL MEDIUM NVD
CVE-2026-66494 Joomla Extension - joomshaper.com - Unauthenticated stored XSS in Shapes API endpoint SP Page Builder < 6.7.0 - An unauthenticated attacker can store ... 2026-08-07 8.7 NETWORK HIGH NVD
CVE-2026-56794 Dell OpenManage Server Administrator, versions prior to 11.1.0.2, contains a Relative Path Traversal vulnerability. A low privileged attacker with rem... 2026-08-07 6.5 NETWORK MEDIUM NVD
CVE-2026-56793 Dell OpenManage Server Administrator, versions prior to 11.1.0.2, contains an Improper Authentication vulnerability. An unauthenticated attacker with ... 2026-08-07 7.7 NETWORK HIGH NVD
CVE-2026-48094 The ShareOpenly WordPress plugin prior to version 1.2.1 contains a Cross-Site Scripting vulnerability caused by the absence of WordPress's `esc_url()`... 2026-08-07 5.3 NETWORK MEDIUM NVD
CVE-2026-15816 A flaw was found in dracut. The die() error-handling function writes its message into a shell script under the initramfs emergency-hook directory with... 2026-08-07 7.5 ADJACENT_NETWORK HIGH NVD
CVE-2026-71560 Out-of-bounds Read vulnerability in Apache Fory C++ deserialization. This issue affects Apache Fory C++ versions from 0.14.0 before 1.5.0 when deseri... 2026-08-07 9.1 NETWORK CRITICAL NVD
CVE-2026-71559 Deserialization of Untrusted Data vulnerability in the Go implementation of Apache Fory allows an attacker to cause a denial of service by supplying c... 2026-08-07 7.5 NETWORK HIGH NVD
CVE-2026-71558 Heap type confusion vulnerability in Apache Fory C++ deserialization. This issue affects Apache Fory C++ versions from 0.14.0 before 1.5.0. A crafted... 2026-08-07 9.8 NETWORK CRITICAL NVD
CVE-2026-54218 Use of hard-coded cryptographic key vulnerability in Tobit Laboratories AG TeamDavid's Webbox. For users created locally in David, passwords are store... 2026-08-07 8.8 NETWORK HIGH NVD
CVE-2026-54217 Tobit Laboratories AG TeamDavid's Webbox application is vulnerable to a stored XSS vulnerability. An attacker can send an email containing malicious ... 2026-08-07 5.3 NETWORK MEDIUM NVD