CVE.report
CVE.report is the most up-to-date database of common vulnerabilities and exposures. Information is pulled in from several sources and processed in to a mobile friendly, easy to use page. Use the site to quickly check for vulnerabilities in products such as operating systems, applications, hardware, networks, databases, browsers, e-mail clients and more.
CVEs provide a unique and common naming scheme for publicly known cyber security vulnerabilities in order to quickly identify and share these vulnerabilities. You can use the search below to look for vulnerabilities based on product, vendor, or common tags
The form you will see after following this link allows you to fill out the various variables in the CVSS scoring system and receive the corresponding score. The description of each of the variables is also included for additional information.
cve.report now provides a free read-only JSON API for CVE details. Each record combines the CVE Program JSON record, NVD enrichment, KEV, and EPSS when available.
Recent CVEs
| CVE | Description | Updated |
|---|---|---|
| CVE-2026-19965 json | A vulnerability was determined in automad up to 2.0.0-beta.32. This vulnerability affects the function requestPasswordResetTo... | |
| CVE-2026-19964 json | A vulnerability was found in Jij-Inc Jij-MCP-Server 0.1.0. This affects the function PythonREPL.run of the file jij_mcp/pytho... | |
| CVE-2026-19963 json | A vulnerability has been found in Edimax EW-7478APC 1.04. Affected by this issue is the function stainfo of the file /goform/... | |
| CVE-2026-19962 json | A flaw has been found in Edimax EW-7478APC 1.04. Affected by this vulnerability is the function setWAN of the file /goform/se... | |
| CVE-2026-19961 json | A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of the file /goform/formWlS... | |
| CVE-2026-19960 json | A security vulnerability has been detected in Edimax EW-7478APC 1.04. This impacts the function formWlbasic of the file /gofo... | |
| CVE-2026-19959 json | A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetup of the file /goform/for... | |
| CVE-2026-19958 json | A security flaw has been discovered in iatsiuk pptr-mcp up to 0.2.7. The impacted element is the function executeCode of the ... | |
| CVE-2026-11973 json | The WP-Lister Lite for eBay plugin for WordPress is vulnerable to generic SQL Injection via the 'orderby' parameter in all ve... | |
| CVE-2026-19957 json | A vulnerability was identified in graphlit graphlit-mcp-server 1.0.1. This affects the function fetch of the file src/tools.t... | |
| CVE-2026-19956 json | A vulnerability has been found in gomarble-ai facebook-ads-mcp-server 0.1.0. The impacted element is the function fetch_pagin... | |
| CVE-2026-19955 json | A vulnerability was detected in TrailDB 0.6. Impacted is the function tdb_open of the file /src/tdb.c of the component TOC Va... | |
| CVE-2025-7195 json | Early versions of Operator-SDK provided an insecure method to allow operator containers to run in environments that used a ra... | |
| CVE-2026-71331 json | Integer overflow or wraparound in Microsoft Azure Attestation service and Device Health Attestation Service allows an unautho... | |
| CVE-2026-70347 json | Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-70346 json | Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-70345 json | Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-70344 json | Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-70330 json | Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-70307 json | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-70306 json | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an... | |
| CVE-2026-70304 json | Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-68820 json | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-68819 json | Buffer over-read in Windows Network File System allows an unauthorized attacker to deny service over a network. | |
| CVE-2026-66802 json | Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Azure Attestation se... | |
| CVE-2026-66799 json | Heap-based buffer overflow in Windows Key Guard allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65814 json | Heap-based buffer overflow in Windows Storage Port Driver allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65799 json | Integer overflow or wraparound in Windows DNS allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65798 json | Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65797 json | Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65796 json | Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a network. | |
| CVE-2026-65795 json | No cwe for this issue in Windows DNS allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65794 json | Buffer over-read in Windows SMB Client allows an unauthorized attacker to disclose information over a network. | |
| CVE-2026-65791 json | Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a network. | |
| CVE-2026-65790 json | Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65789 json | Use after free in Windows DNS allows an unauthorized attacker to execute code over a network. | |
| CVE-2026-65787 json | Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65786 json | Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65784 json | Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally. | |
| CVE-2026-65775 json | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65774 json | Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65773 json | Improper access control in Windows Kernel allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65681 json | Null pointer dereference in Windows iSCSI Target Service allows an unauthorized attacker to deny service over a network. | |
| CVE-2026-65679 json | Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a network. | |
| CVE-2026-65678 json | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65671 json | Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-65662 json | Out-of-bounds read in Windows GDI allows an authorized attacker to disclose information locally. | |
| CVE-2026-62908 json | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows a... | |
| CVE-2026-62894 json | Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62893 json | Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a network. | |
| CVE-2026-62892 json | Use after free in Capability Access Management Service (camsvc) allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62890 json | Heap-based buffer overflow in Windows GDI+ allows an authorized attacker to execute code locally. | |
| CVE-2026-62889 json | Double free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network... | |
| CVE-2026-62887 json | Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally. | |
| CVE-2026-62885 json | Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62883 json | Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62881 json | Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62880 json | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62878 json | Stack-based buffer overflow in Windows DNS allows an unauthorized attacker to execute code over a network. | |
| CVE-2026-62877 json | Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62876 json | Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62823 json | Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network. | |
| CVE-2026-62822 json | Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker to execute code over a network. | |
| CVE-2026-62820 json | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an unauthor... | |
| CVE-2026-62819 json | Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthorized access to v... | |
| CVE-2026-62818 json | Use after free in Active Directory Certificate Services (AD CS) allows an authorized attacker to execute code over a network. | |
| CVE-2026-62817 json | Out-of-bounds write in Windows DNS allows an unauthorized attacker to execute code over an adjacent network. | |
| CVE-2026-62816 json | Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code ov... | |
| CVE-2026-62814 json | Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an... | |
| CVE-2026-62812 json | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevat... | |
| CVE-2026-62807 json | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevat... | |
| CVE-2026-62803 json | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevat... | |
| CVE-2026-62800 json | Heap-based buffer overflow in Windows SMB Server allows an authorized attacker to execute code over a network. | |
| CVE-2026-62797 json | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62796 json | Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally. | |
| CVE-2026-62795 json | Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a... | |
| CVE-2026-62793 json | Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally. | |
| CVE-2026-62792 json | Stack-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to execute code over a network. | |
| CVE-2026-62790 json | Heap-based buffer overflow in Windows SMB Server allows an authorized attacker to execute code over a network. | |
| CVE-2026-62787 json | Use after free in Windows DNS allows an authorized attacker to execute code over a network. | |
| CVE-2026-62786 json | Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally. | |
| CVE-2026-62785 json | Heap-based buffer overflow in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute... | |
| CVE-2026-62784 json | Heap-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to execute cod... | |
| CVE-2026-62783 json | Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges lo... | |
| CVE-2026-62782 json | Out-of-bounds read in Windows SMB Client allows an unauthorized attacker to disclose information over a network. | |
| CVE-2026-62781 json | Heap-based buffer overflow in RPC Runtime allows an unauthorized attacker to execute code over a network. | |
| CVE-2026-62778 json | Use after free in Windows DNS allows an unauthorized attacker to elevate privileges over a network. | |
| CVE-2026-62777 json | Missing authentication for critical function in Windows License Manager allows an authorized attacker to elevate privileges l... | |
| CVE-2026-62776 json | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevat... | |
| CVE-2026-62774 json | Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62773 json | Use after free in Windows Kerberos allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62771 json | Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges loca... | |
| CVE-2026-62770 json | Heap-based buffer overflow in Windows Shell allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62769 json | Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62768 json | Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62761 json | Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevat... | |
| CVE-2026-62758 json | Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges lo... | |
| CVE-2026-62757 json | Improper verification of cryptographic signature in Windows Schannel allows an unauthorized attacker to bypass a security fea... | |
| CVE-2026-62755 json | Stack-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally. | |
| CVE-2026-62754 json | Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally. |