OCTOBER 7, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

150,787 records on file
Page 1655 of 5,027
CVE ID Score Description
2mo ago
7.3

A code injection vulnerability in the SecuSUITE Server Web Administration Portal of SecuSUITE versions 5.0.420 and earlier could allow an attacker to potentially inject script commands or other executable content into the server that would run with root privilege.

2mo ago
7.2

Azure Database for PostgreSQL Flexible Server Extension Elevation of Privilege Vulnerability

Exploit 2mo ago
7.8

Illustrator versions 28.7.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Exploit 2mo ago
7.8

Illustrator versions 28.7.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Exploit 2mo ago
7.8

Illustrator versions 28.7.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Exploit 2mo ago
7.8

After Effects versions 23.6.9, 24.6.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Exploit 2mo ago
7.8

After Effects versions 23.6.9, 24.6.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Exploit 2mo ago
7.8

After Effects versions 23.6.9, 24.6.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Exploit 2mo ago
7.8

Illustrator versions 28.7.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

2mo ago
7.2

Azure Database for PostgreSQL Flexible Server Extension Elevation of Privilege Vulnerability

2mo ago
7.5

An improper verification of cryptographic signature vulnerability [CWE-347] in FortiClient MacOS version 7.4.0, version 7.2.4 and below, version 7.0.10 and below, version 6.4.10 and below may allow a local authenticated attacker to swap the installer with a malicious package via a race condition during the installation process.

2mo ago
8.2

A privilege context switching error vulnerability [CWE-270] in FortiClient Windows version 7.2.4 and below, version 7.0.12 and below, 6.4 all versions may allow an authenticated user to escalate their privileges via lua auto patch scripts.

2mo ago
7.3

A untrusted search path in Fortinet FortiClientWindows versions 7.4.0, versions 7.2.4 through 7.2.0, versions 7.0.12 through 7.0.0 allows an attacker to run arbitrary code via DLL hijacking and social engineering.

2mo ago
7.5

A client-side enforcement of server-side security in Fortinet FortiAnalyzer-BigData at least version 7.4.0 and 7.2.0 through 7.2.6 and 7.0.1 through 7.0.6 and 6.4.5 through 6.4.7 and 6.2.5, FortiManager version 7.4.0 through 7.4.1 and 7.2.0 through 7.2.4 and 7.0.0 through 7.0.11 and 6.4.0 through 6.4.14, FortiAnalyzer version 7.4.0 through 7.4.1 and 7.2.0 through 7.2.4 and 7.0.0 through 7.0.11 and 6.4.0 through 6.4.14 allows attacker to improper access control via crafted requests.

2mo ago
7.5

A session fixation in Fortinet FortiOS version 7.4.0 through 7.4.3 and 7.2.0 through 7.2.7 and 7.0.0 through 7.0.13 allows attacker to execute unauthorized code or commands via phishing SAML authentication link.

KEV Exploit 2mo ago
8

Limited remote code execution with privilege of a NetworkService Account access in Citrix Session Recording if the attacker is an authenticated user on the same intranet as the session recording server

KEV 2mo ago
8

Privilege escalation to NetworkService Account access in Citrix Session Recording when an attacker is an authenticated user in the same Windows Active Directory domain as the session recording server domain

2mo ago
7.3

Authentication bypass by assumed-immutable data on airlift.microsoft.com allows an authorized attacker to elevate privileges over a network.

2mo ago
7.8

Microsoft PC Manager Elevation of Privilege Vulnerability

Exploit 2mo ago
8.8

Visual Studio Code Python Extension Remote Code Execution Vulnerability

2mo ago
7.1

Visual Studio Code Remote Extension Elevation of Privilege Vulnerability

Exploit 2mo ago
8.1

TorchGeo Remote Code Execution Vulnerability

2mo ago
7.8

Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability

Exploit 2mo ago
7.8

Microsoft.SqlServer.XEvent.Configuration.dll Remote Code Execution Vulnerability

2mo ago
7.5

Microsoft Exchange Server Spoofing Vulnerability

KEV 2mo ago
8.8

Windows Task Scheduler Elevation of Privilege Vulnerability

2mo ago
7.5

Microsoft Word Security Feature Bypass Vulnerability

Exploit 2mo ago
7.8

Microsoft Office Graphics Remote Code Execution Vulnerability

Exploit 2mo ago
7.8

Microsoft Office Graphics Remote Code Execution Vulnerability

Exploit 2mo ago
7.8

Microsoft Excel Remote Code Execution Vulnerability