CVE Find is a real-time vulnerability database indexing 382 138 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 3545 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-76838 |
2026-08-24 18h17 +00:00 |
Hi.Events validates a webhook destination only when it is registered, never when it is used. NoInter... Server-Side Request Forgery - SSRF |
8.5 |
High |
|
CVE-2026-76836 |
2026-08-24 18h17 +00:00 |
AzuraCast exposes the Liquidsoap custom configuration fields through an endpoint that does not requi... Code InjectionAuthorization problems |
8.8 |
High |
|
CVE-2026-76835 |
2026-08-24 18h17 +00:00 |
OAuth2 Proxy honours a client-supplied X-Forwarded-Uri header when deciding whether a request may sk... |
9.1 |
Critical |
|
CVE-2026-76073 |
2026-08-24 18h17 +00:00 |
Label Studio does not scope the annotation detail endpoint to the requesting user's organization. An... Authorization problems |
8.8 |
High |
|
CVE-2026-71933 |
2026-08-24 18h17 +00:00 |
Multiple DrayTek VigorSwitch models contain unauthorized operation vulnerabilities in multiple syslo... Authorization problems |
9.1 |
Critical |
|
CVE-2026-71921 |
2026-08-24 18h17 +00:00 |
Multiple DrayTek VigorSwitch models contain a pre-authentication command injection vulnerability in ... OS Command Injection |
9.8 |
Critical |
|
CVE-2026-71914 |
2026-08-24 18h17 +00:00 |
Multiple DrayTek VigorAP models contain a command injection vulnerability in the dray_apm component.... OS Command Injection |
9.8 |
Critical |
|
CVE-2026-77915 |
2026-08-24 17h18 +00:00 |
rConfig 8.0.0 before 8.2.13 contains an authentication bypass vulnerability that allows unauthentica... Authorization problems |
9.8 |
Critical |
|
CVE-2026-19685 |
2026-08-24 17h17 +00:00 |
NetworkManager did not apply the private_user restriction to the 802-1x.ca-path and phase2-ca-path d... Authorization problems |
9.8 |
Critical |
|
CVE-2025-36940 |
2026-08-24 17h17 +00:00 |
Use-After-Free vulnerability in a zircon kernel pager proxy (Fuchsia), which could lead to a Privile... Memory Corruption |
8.8 |
High |