CVE Find is a real-time vulnerability database indexing 358 435 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 1086 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-56012 |
2026-06-18 14h02 +00:00 |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i... SQL Injection |
8.5 |
High |
|
CVE-2026-12569 |
2026-06-18 00h11 +00:00 |
A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill PDMlink and ... |
9.3 |
Critical |
|
CVE-2026-48768 |
2026-06-17 23h13 +00:00 |
TypeBot is a chatbot builder tool. In versions 3.16.1 and earlier, POST /api/blocks/file-input/v3/ge... Directory TraversalCross-site Scripting |
9.3 |
Critical |
|
CVE-2026-55200 |
2026-06-17 19h03 +00:00 |
libssh2 through 1.11.1, fixed in commit 7acf3df contains an out-of-bounds write vulnerability in ssh... |
9.2 |
Critical |
|
CVE-2026-48797 |
2026-06-16 23h35 +00:00 |
Backpropagate is a Python library for fine-tuning large language models on a single GPU. In versions... Authorization problems |
9.3 |
Critical |
|
CVE-2026-22313 |
2026-06-16 20h16 +00:00 |
The device has a webserver that exposes a REST API authenticated with a token on the management netw... OS Command Injection |
9.1 |
Critical |
|
CVE-2026-22312 |
2026-06-16 20h16 +00:00 |
The device has a webserver that exposes a REST API authenticated with a constant token. The unauthen... |
8.6 |
High |
|
CVE-2026-53853 |
2026-06-16 19h17 +00:00 |
OpenClaw before 2026.5.12 contains an argument pattern validation bypass in the exec allowlist that ... Authorization problems |
8.3 |
High |
|
CVE-2026-53843 |
2026-06-16 19h17 +00:00 |
OpenClaw before 2026.5.26 contains an authorization bypass vulnerability where a surviving pairing-s... Authorization problems |
8.8 |
High |
|
CVE-2026-53776 |
2026-06-16 17h16 +00:00 |
Perry before 0.5.1166 contains a JWT validation vulnerability that allows remote attackers to bypass... Authorization problems |
9.1 |
Critical |