02 Telemetry
FEED: ACQUIRING
03 Severity mix
WINDOW: T-30D
04 Latest published
FEED: ACQUIRING
01 Search consoleIDX: 384,508
The CVE corpus, on scope in milliseconds.
384,508 records · updated every 15 minutes
02 Telemetry
FEED: LIVETotal CVEs384,508
New today0
Known-exploited (KEV)1,685
Sync lag43 MIN
03 Severity mix
WINDOW: T-30D
CRITICAL 15%HIGH 46%MEDIUM 36%LOW 4%NONE 0%
04 Latest published
LAST 15 / 15-MIN SYNCCVE IDCVSSSeverityKEVSummaryVendor / ProductPublished
CVE-2026-558605.9Medium—5.9MediumMariaDB Connector/R2DBC: Cleartext password disclosure to a man-in-the-middle server (clear-text auth plugins not gated on a secure transport)mariadb-corporation mariadb-connector-r2dbc org.mariadb r2dbc-mariadb5 HR AGO CVE-2026-558595.9Medium—5.9MediumMariaDB Connector/R2DBC: Inappropriate Encoding for Output Context and Improper Encoding or Escaping of Output in org.mariadb:r2dbc-mariadbmariadb-corporation mariadb-connector-r2dbc org.mariadb r2dbc-mariadb5 HR AGO CVE-2026-558585.9Medium—5.9MediumMariaDB Connector/J: Inappropriate Encoding for Output Context in org.mariadb.jdbc:mariadb-java-clientmariadb-corporation mariadb-connector-j5 HR AGO CVE-2026-558575.9Medium—5.9MediumMariaDB Connector/J: Cleartext Transmission of Sensitive Information and Insufficiently Protected Credentialsmariadb-corporation mariadb-connector-j5 HR AGO CVE-2026-558565.9Medium—5.9MediumMariaDB Connector/J: Cleartext password disclosure to a MITM on the initial-handshakemariadb-corporation mariadb-connector-j5 HR AGO CVE-2026-558488.6High—8.6Highmapfish-print: XXE on MapFish Print allows reading arbitrary files of certain typesmapfish mapfish-print mapfish org.mapfish.print.print-lib mapfish org.mapfish.print.print-servlet5 HR AGO CVE-2026-557853.7Low—3.7Lowfree5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKAfree5gc free5gc5 HR AGO CVE-2026-557847.5High—7.5Highfree5GC AUSF authentication contexts can be overwritten by concurrent requests for the same SUPIfree5gc free5gc5 HR AGO CVE-2026-557795.4Medium—5.4MediumSilverstripe Versioned: XSS in archive admin restoresilverstripe silverstripe-versioned5 HR AGO CVE-2026-558675.3Medium—5.3MediumGraylog token revocation endpoint allows authenticated users to delete other users’ access tokensgraylog2 graylog2-server5 HR AGO CVE-2026-558417.5High—7.5HighGraylog: Fortigate syslog message parser can be exploited to modify or delete fields from the original messagegraylog2 graylog2-server5 HR AGO CVE-2026-557648.7High—8.7HighKlever-Go: SFT add-quantity `int64` overflow bypasses a finite per-nonce MaxSupplyklever-io klever-go5 HR AGO CVE-2026-558556.5Medium—6.5MediumMariaDB Connector/Node.js: Possible SQL injection in Buffer parameter escaping under big5/gbk/sjis/cp932/gb18030 client charsetsmariadb-corporation mariadb-connector-nodejs5 HR AGO CVE-2026-558545.9Medium—5.9MediumMariaDB Connector/Node.js: Cleartext Transmission of Sensitive Information and Insufficiently Protected Credentials in mariadbmariadb-corporation mariadb-connector-nodejs5 HR AGO CVE-2026-220562.3Low—2.3LowCVE-2026-22056 Denial of Service Vulnerability in StorageGRID (formerly StorageGRID Webscale)netapp storagegrid6 HR AGO 05 Recently added to KEV
SRC: CISAKEVCVE-2023-49105An issue was discovered in ownCloud owncloud/core before 10.13.1. An attacker can access, modify, or delete any file without authentication if the username of a victim is known, and the victim has noAdded 2026-08-27