CVE Find is a real-time vulnerability database indexing 340 897 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 1705 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-5128 |
2026-03-30 09h18 +00:00 |
A sensitive information exposure vulnerability exists in ArthurFiorette steam-trader 2.1.1. An unaut... |
10 |
Critical |
|
CVE-2025-15379 |
2026-03-30 08h16 +00:00 |
A command injection vulnerability exists in MLflow's model serving container initialization code, sp... Command Injection |
10 |
Critical |
|
CVE-2026-5105 |
2026-03-30 04h16 +00:00 |
A vulnerability was detected in Totolink A3300R 17.0.0cu.557_b20221024. The affected element is the ... Command Injection |
8.8 |
High |
|
CVE-2025-15036 |
2026-03-30 02h16 +00:00 |
A path traversal vulnerability exists in the `extract_archive_to_dir` function within the `mlflow/py... |
9.6 |
Critical |
|
CVE-2026-4946 |
2026-03-29 19h35 +00:00 |
Ghidra versions prior to 12.0.3 improperly process annotation directives embedded in automatically e... OS Command Injection |
8.8 |
High |
|
CVE-2026-0562 |
2026-03-29 17h49 +00:00 |
A critical security vulnerability in parisneo/lollms versions up to 2.2.0 allows any authenticated u... Authorization problems |
8.3 |
High |
|
CVE-2026-34005 |
2026-03-29 17h02 +00:00 |
In Sofia on Xiongmai DVR/NVR (AHB7008T-MH-V2 and NBD7024H-P) 4.03.R11 devices, root OS command injec... OS Command Injection |
8.8 |
High |
|
CVE-2026-5046 |
2026-03-29 14h15 +00:00 |
A flaw has been found in Tenda FH1201 1.2.0.14(408). Affected is the function formWrlExtraSet of the... Overflow |
8.7 |
High |
|
CVE-2026-33573 |
2026-03-29 13h17 +00:00 |
OpenClaw before 2026.3.11 contains an authorization bypass vulnerability in the gateway agent RPC th... |
8.8 |
High |
|
CVE-2026-33572 |
2026-03-29 13h17 +00:00 |
OpenClaw before 2026.2.17 creates session transcript JSONL files with overly broad default permissio... |
8.4 |
High |