CVE Find is a real-time vulnerability database indexing 391 631 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 4345 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-90711 |
2026-09-15 07h16 +00:00 |
proxy-addr is a Node.js module that determines a request's client address behind trusted reverse pro... |
9.1 |
Critical |
|
CVE-2026-91003 |
2026-09-15 05h45 +00:00 |
A flaw has been found in D-Link DI-8300 16.07. The affected element is the function rzgl_asp of the ... Overflow |
9.4 |
Critical |
|
CVE-2026-91001 |
2026-09-15 05h15 +00:00 |
A security flaw has been discovered in D-Link DI-8400 16.07. This affects the function ddns_asp of t... Overflow |
9.4 |
Critical |
|
CVE-2026-91771 |
2026-09-15 02h16 +00:00 |
Weights & Biases wandb before 0.29.0 fails to validate the file name from server responses in the Fi... Directory Traversal |
8.8 |
High |
|
CVE-2026-91751 |
2026-09-15 01h16 +00:00 |
Flextype CMS through 1.0.0-alpha.3 fails to properly validate id and new_id parameters in the Entrie... Directory Traversal |
8.3 |
High |
|
CVE-2026-90843 |
2026-09-15 01h16 +00:00 |
A security vulnerability has been detected in SabyasachiRana WebMap up to 8b95fe4dc301a3c09ddf145b89... Command InjectionOS Command Injection |
8.3 |
High |
|
CVE-2026-90847 |
2026-09-15 01h00 +00:00 |
A vulnerability was determined in EFM ipTIME C200E 1.094. The impacted element is an unknown functio... OS Command InjectionCommand Injection |
9.4 |
Critical |
|
CVE-2026-91200 |
2026-09-14 23h19 +00:00 |
DevSpace through 6.3.21 fails to reject parent-directory segments in tar entry names from the in-pod... Directory Traversal |
8.8 |
High |
|
CVE-2026-12944 |
2026-09-14 22h16 +00:00 |
IBM Langflow OSS 1.0.0 through 1.10.0 can allow attackers to execute arbitrary Python code with root... Server-Side Request Forgery - SSRF |
9.6 |
Critical |
|
CVE-2026-65414 |
2026-09-14 21h17 +00:00 |
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS... Overflow |
9.8 |
Critical |