CVE Find est une base de données de vulnérabilités en temps réel, indexant 351 240 failles de sécurité (CVE) issues de MITRE, NVD, CISA KEV, CWE et CAPEC. 1602 nouvelles CVE ont été publiées ces 7 derniers jours.
Données agrégées depuis : MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Publié | Description | Score | Gravité | |
|---|---|---|---|---|---|
CVE-2026-2611 |
2026-05-19 10h16 +00:00 |
In MLflow version 3.9.0, the MLflow Assistant feature introduced improper origin validation in its /... |
9.6 |
Critique |
|
CVE-2026-4885 |
2026-05-19 08h16 +00:00 |
The Piotnet Addons for Elementor Pro plugin for WordPress is vulnerable to arbitrary file upload due... File Inclusion |
9.8 |
Critique |
|
CVE-2026-27648 |
2026-05-19 04h16 +00:00 |
in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre-insta... Overflow |
8.8 |
Haute |
|
CVE-2026-25781 |
2026-05-19 04h16 +00:00 |
in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS and it cannot be recovered.... Overflow |
8.4 |
Haute |
|
CVE-2026-8838 |
2026-05-18 21h16 +00:00 |
Unsafe use of Python's eval() on server-received data in the vector_in() function in amazon-redshift... Code Injection |
9.8 |
Critique |
|
CVE-2026-25244 |
2026-05-18 21h16 +00:00 |
WebdriverIO is a test automation framework for unit, e2e and component testing using WebDriver, WebD... OS Command Injection |
9.8 |
Critique |
|
CVE-2026-22810 |
2026-05-18 21h16 +00:00 |
Joplin is an open source note-taking and to-do application that organises notes and lists into noteb... |
8.2 |
Haute |
|
CVE-2026-27130 |
2026-05-18 20h58 +00:00 |
Dokploy is a free, self-hostable Platform as a Service (PaaS). Versions 0.26.6 and below have OS com... OS Command Injection |
9.9 |
Critique |
|
CVE-2026-8836 |
2026-05-18 18h45 +00:00 |
A vulnerability was found in lwIP up to 2.2.1. Affected is the function snmp_parse_inbound_frame of ... Overflow |
9.3 |
Critique |
|
CVE-2026-45495 |
2026-05-18 18h17 +00:00 |
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability... Code InjectionOverflow |
8.8 |
Haute |