Vulnerability Database & Cybersecurity Intelligence Platform

Real-time CVE vulnerability tracking, CVSS scoring, CISA KEV alerts, and EPSS data to protect your infrastructure from emerging threats.

Vulnerability Statistics

239,157
Total CVEs
11,206
Critical
38,684
High
52,405
Medium
4,260
Low
6,593
Last 30 Days

Critical Vulnerabilities

Highest priority threats requiring immediate attention

@fastify/middie versions 9.3.1 and earlier do not register inherited middleware directly on child plugin engine instances. When a Fastify application registers authentication middleware in a parent scope and then registers…

Apr 16, 2026
View Details

The goodoneuz/pay-uz Laravel package (

Apr 16, 2026
View Details

The Riaxe Product Customizer plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.1.2. The plugin registers an unauthenticated AJAX action ('wp_ajax_nopriv_install-imprint') that maps…

Apr 16, 2026
View Details

MailGates/MailAudit developed by Openfind has a Stack-based Buffer Overflow vulnerability, allowing unauthenticated remote attackers to control the program's execution flow and execute arbitrary code.

Apr 16, 2026
View Details

Creolabs Gravity before 0.9.6 contains a heap buffer overflow vulnerability in the gravity_vm_exec function that allows attackers to write out-of-bounds memory by crafting scripts with many string literals at global…

Apr 16, 2026
View Details

Complete Security Platform

All the tools you need to monitor, analyze, and respond to vulnerabilities

Latest Published Vulnerabilities

Most recently added CVEs to our database

A Denial of Service (DoS) vulnerability exists in the Protobuf PHP library during the parsing of untrusted input. Maliciously structured…

Apr 16, 2026

Zohocorp ManageEngine Log360 versions 13000 through 13013 are vulnerable to authentication bypass on certain actions due to improper filter configuration.

Apr 16, 2026

SourceCodester Payroll Management and Information System v1.0 is vulnerable to SQL Injection in the file /payroll/view_employee.php.

Apr 16, 2026

SourceCodester Payroll Management and Information System v1.0 is vulnerable to SQL Injection in the file /payroll/view_account.php?emp_id=.

Apr 16, 2026

SourceCodester Vehicle Parking Area Management System v1.0 is vulnerable to SQL Injection in the file /parking/manage_park.php.

Apr 16, 2026

SourceCodester Vehicle Parking Area Management System v1.0 is vulnerable to SQL Injection in the file /parking/manage_location.php.

Apr 16, 2026

Most Affected Vendors & Products

Vendors and products with the highest number of reported vulnerabilities

Protect Your Infrastructure

Explore our comprehensive CVE vulnerability database and stay informed about the latest threats.