Browse 331,966+ CVEs from NVD & CNNVD with AI-powered analysis, AI-generated PoCs, KEV/EPSS tracking, and daily security intelligence. Filter by vendor, product, severity, or CWE.
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-5084 | WebDyne::Session versions through 2.075 for Perl generates the session id insecurely | ASPEER | WebDyne::Session | - | - | 2026-05-11 06:37:19 | Deep Dive |
| CVE-2026-43500 | rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present | Linux | Linux | - | - | 2026-05-11 06:26:46 | Deep Dive |
| CVE-2026-6433 | Custom CSS JS PHP <= 2.0.7 - Unauthenticated SQL Injection to RCE | Unknown | Custom css-js-php | - | - | 2026-05-11 06:00:01 | Deep Dive |
| CVE-2026-1677 | net: TLS 1.2 connections allowed on TLS 1.3 sockets | zephyrproject-rtos | Zephyr | Medium | 5.3 | 2026-05-11 05:52:12 | Deep Dive |
| CVE-2026-8276 | bettercap MySQL Server mysql_server.go integer coercion | - | bettercap | Low | 3.7 | 2026-05-11 05:15:11 | Deep Dive |
| CVE-2026-8275 | bettercap zerogod IPP Service zerogod_ipp_primitives.go ippReadChunkedBody integer coercion | - | bettercap | Low | 3.7 | 2026-05-11 05:00:19 | Deep Dive |
| CVE-2026-8274 | npitre cramfs-tools Directory cramfsck.c do_directory path traversal | npitre | cramfs-tools | Medium | 5.3 | 2026-05-11 04:45:11 | Deep Dive |
| CVE-2026-8273 | D-Link DNS-320 system_mgr.cgi cgi_merge_user os command injection | D-Link | DNS-320 | Medium | 4.7 | 2026-05-11 04:30:10 | Deep Dive |
| CVE-2026-8272 | D-Link DNS-320 webfile_mgr.cgi chown os command injection | D-Link | DNS-320 | Medium | 4.7 | 2026-05-11 04:15:10 | Deep Dive |
| CVE-2026-8271 | D-Link DNS-320 network_mgr.cgi cgi_upnp_edit os command injection | D-Link | DNS-320 | Medium | 4.7 | 2026-05-11 04:00:11 | Deep Dive |
| CVE-2026-8270 | Open5GS SMF ogs_nas_parse_qos_rules denial of service | - | Open5GS | Medium | 4.3 | 2026-05-11 03:45:09 | Deep Dive |
| CVE-2026-8269 | Open5GS SMF smf_nsmf_handle_create_sm_context denial of service | - | Open5GS | Medium | 4.3 | 2026-05-11 03:30:09 | Deep Dive |
| CVE-2026-8268 | Open5GS SMF OpenAPI_list_create denial of service | - | Open5GS | Medium | 4.3 | 2026-05-11 03:15:09 | Deep Dive |
| CVE-2026-8267 | Open5GS SMF smf_nsmf_handle_created_data_in_vsmf denial of service | - | Open5GS | Medium | 4.3 | 2026-05-11 03:00:13 | Deep Dive |
| CVE-2026-8266 | Open5GS SMF gsm-build.c gsm_build_pdu_session_establishment_accept denial of service | - | Open5GS | Medium | 4.3 | 2026-05-11 02:45:08 | Deep Dive |
| CVE-2026-8265 | Tenda AC6 httpd getLogFile get_log_file os command injection | Tenda | AC6 | Medium | 4.7 | 2026-05-11 02:30:14 | Deep Dive |
| CVE-2026-8264 | Tenda AC6 httpd WifiApScan formWifiApScan os command injection | Tenda | AC6 | Medium | 6.3 | 2026-05-11 02:15:10 | Deep Dive |
| CVE-2026-8263 | Tenda AC6 httpd WifiExtraSet fromSetWirelessRepeat os command injection | Tenda | AC6 | Medium | 4.7 | 2026-05-11 02:00:17 | Deep Dive |
| CVE-2026-8262 | Devs Palace ERP Online chart-save cross site scripting | Devs Palace | ERP Online | Low | 2.4 | 2026-05-11 01:45:11 | Deep Dive |
| CVE-2026-8261 | Squirrel sqobject.cpp Load heap-based overflow | - | Squirrel | Medium | 5.9 | 2026-05-11 01:30:11 | Deep Dive |