SEPTEMBER 20, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

378,050 records on file
Page 1079 of 12,602
CVE ID Score Description
1mo ago
4.3

Insufficient ui warning of dangerous operations in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

1mo ago
5.4

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

1mo ago
6.8

Relative path traversal in Microsoft Edge for Android allows an unauthorized attacker to disclose information locally.

Exploit 1mo ago
9.6

Gitea Actions Artifacts V4 signed URL HMAC ambiguity allows cross-repository artifact read and cross-task upload-state write

Exploit 1mo ago
8.9

Permanent Fork PR Workflow Approval Gate Bypass

Exploit 1mo ago
7.7

LFS authentication bypass via malformed SSH sub-verb allows unauthorized read access to private repositories

Exploit 1mo ago
9.8

Improper authorization on OAuth sign-in callback silently re-enables administrator-disabled accounts

Exploit 1mo ago
7.5

Unauthenticated ReDoS via CODEOWNERS pattern matching allows denial of service

Exploit 1mo ago
7.5

Notification API leaks private issue metadata after access revocation

Exploit 1mo ago
6.5

SSRF via HTTP Redirect in Repository Migration

1mo ago
6.2

Absolute path traversal in Microsoft Edge for Android allows an unauthorized attacker to disclose information locally.

1mo ago
7.5

Time-of-check time-of-use (toctou) race condition in Microsoft Edge for Android allows an unauthorized attacker to execute code over a network.

1mo ago
7.2

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

1mo ago
7.1

Exposure of private personal information to an unauthorized actor in Microsoft Edge for Android allows an unauthorized attacker to disclose information over a network.

1mo ago
7.1

Exposure of private personal information to an unauthorized actor in Microsoft Edge for Android allows an unauthorized attacker to disclose information over a network.

1mo ago
8.3

Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network.

1mo ago
7.5

Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

1mo ago
8.1

External control of file name or path in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

1mo ago
7.5

Improper input validation in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

1mo ago
6.1

Operation on a resource after expiration or release in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.

1mo ago
7.5

Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

1mo ago
9

Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

1mo ago
8.3

Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

1mo ago
8.3

Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

1mo ago
8.1

Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

1mo ago
8.3

Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

1mo ago
8.3

Improper authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

1mo ago
8.1

Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

1mo ago
8.1

Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

1mo ago
5.4

Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.