CVE Find is a real-time vulnerability database indexing 357 349 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 2055 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-7870 |
2026-06-11 16h16 +00:00 |
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a user to gain elevated privileges due to an unqualified li... |
8.8 |
High |
|
CVE-2026-11839 |
2026-06-11 16h16 +00:00 |
Unrestricted upload of file with dangerous type vulnerability in Başarsoft Information Technologies... File Inclusion |
9.9 |
Critical |
|
CVE-2026-38581 |
2026-06-11 14h16 +00:00 |
SQL Injection vulnerability in damasac thaipalliative_lte through version 3.0 allows remote attacker... SQL Injection |
9.8 |
Critical |
|
CVE-2026-7852 |
2026-06-11 13h16 +00:00 |
Unrestricted upload of file with dangerous type vulnerability in Limatek System Inc. LimRAD NAC allo... File Inclusion |
9.8 |
Critical |
|
CVE-2026-6552 |
2026-06-11 12h16 +00:00 |
GitLab has remediated an issue in GitLab EE affecting all versions from 15.5 before 18.10.8, 18.11 b... Authorization problems |
8.7 |
High |
|
CVE-2026-10087 |
2026-06-11 12h16 +00:00 |
GitLab has remediated an issue in GitLab EE affecting all versions from 17.1 before 18.10.8, 18.11 b... Cross-site Scripting |
8.7 |
High |
|
CVE-2026-40999 |
2026-06-11 07h16 +00:00 |
When WS-Addressing is used with non-anonymous ReplyTo or FaultTo addresses, Spring WS may initiate o... Server-Side Request Forgery - SSRF |
8.6 |
High |
|
CVE-2026-40998 |
2026-06-11 07h16 +00:00 |
Jaxp13XPathTemplate evaluated XPath expressions for StreamSource and SAXSource inputs using a code p... |
8.2 |
High |
|
CVE-2026-40994 |
2026-06-11 07h16 +00:00 |
Wss4jSecurityInterceptor initialized its BSP (WS-I Basic Security Profile) compliance flag so that i... |
8.2 |
High |
|
CVE-2026-35273 |
2026-06-11 02h25 +00:00 |
Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Upda... |
9.8 |
Critical |