CVE Find is a real-time vulnerability database indexing 351 170 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 1622 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-8838 |
2026-05-18 21h16 +00:00 |
Unsafe use of Python's eval() on server-received data in the vector_in() function in amazon-redshift... Code Injection |
9.8 |
Critical |
|
CVE-2026-25244 |
2026-05-18 21h16 +00:00 |
WebdriverIO is a test automation framework for unit, e2e and component testing using WebDriver, WebD... OS Command Injection |
9.8 |
Critical |
|
CVE-2026-22810 |
2026-05-18 21h16 +00:00 |
Joplin is an open source note-taking and to-do application that organises notes and lists into noteb... |
8.2 |
High |
|
CVE-2026-27130 |
2026-05-18 20h58 +00:00 |
Dokploy is a free, self-hostable Platform as a Service (PaaS). Versions 0.26.6 and below have OS com... OS Command Injection |
9.9 |
Critical |
|
CVE-2026-8836 |
2026-05-18 18h45 +00:00 |
A vulnerability was found in lwIP up to 2.2.1. Affected is the function snmp_parse_inbound_frame of ... Overflow |
9.3 |
Critical |
|
CVE-2026-45495 |
2026-05-18 18h17 +00:00 |
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability... Code InjectionOverflow |
8.8 |
High |
|
CVE-2026-45230 |
2026-05-18 18h17 +00:00 |
DumbAssets through 1.0.11 contains a path traversal vulnerability in the POST /api/delete-file endpo... Directory Traversal |
9.1 |
Critical |
|
CVE-2026-42822 |
2026-05-18 18h17 +00:00 |
Improper authentication in Azure Local Disconnected Operations allows an unauthorized attacker to el... Authorization problems |
10 |
Critical |
|
CVE-2026-41085 |
2026-05-18 17h16 +00:00 |
Thermo Fisher Scientific Torrent Suite Dx through 5.14.2 has a privilege escalation vulnerability th... Improper Privilege Management |
8.8 |
High |
|
CVE-2025-57282 |
2026-05-18 16h16 +00:00 |
ngrok v4.3.3 and 5.0.0-beta.2 is vulnerable to Command Injection.... Command Injection |
8.8 |
High |