CVE Find is a real-time vulnerability database indexing 350 949 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 1945 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-45315 |
2026-05-15 22h16 +00:00 |
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. P... Cross-site ScriptingFile Inclusion |
8.7 |
High |
|
CVE-2026-44570 |
2026-05-15 22h16 +00:00 |
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. P... Authorization problems |
8.3 |
High |
|
CVE-2026-45672 |
2026-05-15 21h16 +00:00 |
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. P... Authorization problems |
8.8 |
High |
|
CVE-2026-45401 |
2026-05-15 21h16 +00:00 |
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. P... Server-Side Request Forgery - SSRF |
8.5 |
High |
|
CVE-2026-45400 |
2026-05-15 21h16 +00:00 |
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. P... Server-Side Request Forgery - SSRF |
8.5 |
High |
|
CVE-2026-8696 |
2026-05-15 20h52 +00:00 |
radare2 6.1.5 contains a use-after-free vulnerability in the gdbr_pids_list() function within the GD... Memory Corruption |
8.7 |
High |
|
CVE-2026-45331 |
2026-05-15 20h16 +00:00 |
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. P... Server-Side Request Forgery - SSRF |
8.5 |
High |
|
CVE-2026-44552 |
2026-05-15 20h16 +00:00 |
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. P... |
8.7 |
High |
|
CVE-2026-44551 |
2026-05-15 20h16 +00:00 |
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. P... Authorization problems |
9.1 |
Critical |
|
CVE-2026-46364 |
2026-05-15 19h17 +00:00 |
phpMyFAQ before 4.1.2 contains an unauthenticated SQL injection vulnerability in BuiltinCaptcha::gar... SQL Injection |
9.8 |
Critical |