|
CVE-2026-18554
|
|
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain...
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain...
|
High
|
Cwe 22
Path Traversal
Ibm
Database
+1
|
2 weeks ago
|
|
CVE-2026-17179
|
|
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to cause a...
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to cause a...
|
High
|
Denial of Service
Cwe 78
Ibm
Command Injection
+1
|
2 weeks ago
|
|
CVE-2026-17177
|
|
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to cause a denial of service...
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to cause a denial of service...
|
High
|
Denial of Service
Cwe 674
Ibm
Db2
+1
|
2 weeks ago
|
|
CVE-2026-17175
|
|
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain...
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain...
|
High
|
Cwe 287
Ibm
Remote File Inclusion
Db2 Mirror For I
|
2 weeks ago
|
|
CVE-2026-17081
|
|
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to write arbitrary files due...
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to write arbitrary files due...
|
High
|
Cwe 22
Ibm
Database
Path Traversal
+1
|
2 weeks ago
|
|
CVE-2026-16879
|
|
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to bypass...
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to bypass...
|
High
|
Cwe 285
Ibm
Db2
Authentication Bypass
+1
|
2 weeks ago
|
|
CVE-2026-16708
|
|
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to obtain sensitive...
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to obtain sensitive...
|
High
|
Cwe 15
Ibm
Db2 Mirror For I
|
2 weeks ago
|
|
CVE-2026-72642
|
|
The native inference process that Elasticsearch uses to evaluate uploaded machine learning models...
The native inference process that Elasticsearch uses to evaluate uploaded machine learning models...
|
High
|
Cwe 823
Elasticsearch
Ai Ml
Remote Code Execution
|
2 weeks ago
|
|
CVE-2026-18692
|
|
An issue in MongoDB Server's handling of timeseries bucket lifecycle could allow an authenticated...
An issue in MongoDB Server's handling of timeseries bucket lifecycle could allow an authenticated...
|
High
|
Cwe 416
MongoDB
Use After Free
|
2 weeks ago
|
|
CVE-2026-18691
|
|
An issue in MongoDB Server's intra-cluster connection setup could allow a party with suitable...
An issue in MongoDB Server's intra-cluster connection setup could allow a party with suitable...
|
High
|
Cwe 757
MongoDB
Credential Leak
Authentication Bypass
|
2 weeks ago
|
|
CVE-2026-17346
|
|
The fix for CVE-2026-12044 in pgAdmin 4 9.16 hardened qtLiteral and switched sixteen COMMENT ON /...
The fix for CVE-2026-12044 in pgAdmin 4 9.16 hardened qtLiteral and switched sixteen COMMENT ON /...
|
High
|
Cwe 89
PostgreSQL
Sql Injection
Pgadmin
+1
|
4 weeks ago
|
|
CVE-2026-18022
|
|
Integer wraparound in IVFFlat index build in pgvector before 0.8.6 allows a database user to...
Integer wraparound in IVFFlat index build in pgvector before 0.8.6 allows a database user to...
|
High
|
Cwe 190
Cwe 787
Pgvector
Integer Overflow
+2
|
1 month ago
|
|
CVE-2026-66373
|
|
Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE,...
Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE,...
|
High
|
Remote Code Execution
Cwe 415
Redis
|
1 month ago
|
|
CVE-2024-58368
|
|
SurrealDB versions before 1.1.0 fail to properly parse the ID, DB, and NS headers in HTTP REST...
SurrealDB versions before 1.1.0 fail to properly parse the ID, DB, and NS headers in HTTP REST...
|
High
|
Cwe 248
Surrealdb
HTTP
Denial of Service
|
1 month ago
|
|
CVE-2024-58366
|
|
SurrealDB before 1.1.1 contains a format string vulnerability in the rquickjs Exception:...
SurrealDB before 1.1.1 contains a format string vulnerability in the rquickjs Exception:...
|
High
|
Cwe 134
Surrealdb
Remote Code Execution
Delskayn
+1
|
1 month ago
|
|
CVE-2024-58362
|
|
SurrealDB before 1.5.5 (and 2.0.0-beta before 2.0.0-beta.3) accepts an arbitrary object in the...
SurrealDB before 1.5.5 (and 2.0.0-beta before 2.0.0-beta.3) accepts an arbitrary object in the...
|
High
|
Cwe 75
Remote Code Execution
Surrealdb
Rpc Api
|
1 month ago
|
|
CVE-2023-54366
|
|
SurrealDB before 1.0.1 sets default table permissions to FULL instead of NONE, allowing SELECT,...
SurrealDB before 1.0.1 sets default table permissions to FULL instead of NONE, allowing SELECT,...
|
High
|
Cwe 276
Surrealdb
Privilege Escalation
|
1 month ago
|
|
CVE-2025-2902
|
|
Improper Authorization Vulnerability of Maintenance Utility in Hitachi Virtual Storage Platform.
...
Improper Authorization Vulnerability of Maintenance Utility in Hitachi Virtual Storage Platform.
...
|
High
|
Cwe 862
Improper Authorization
|
2 months ago
|
|
CVE-2026-47835
|
|
Vulnerability in CVE-2026-47835 (CVE-2026-47835)
vulnerability in CVE-2026-47835 (CVE-2026-47835). Confidential information can be exposed externally.
|
High
|
Cwe 943
Spring
Elasticsearch
Opensearch
+4
|
2 months ago
|
|
CVE-2026-11933
|
|
Post-authentication use-after-free in server-side JavaScript BSON-to-array conversion
Post-authentication use-after-free in server-side JavaScript BSON-to-array conversion
|
High
|
JavaScript
Denial of Service
Cwe 787
MongoDB
+2
|
2 months ago
|
|
CVE-2026-11824
|
|
SQLite before 3.53.2 Heap Buffer Overflow via FTS5 fts5ChunkIterate
SQLite before 3.53.2 Heap Buffer Overflow via FTS5 fts5ChunkIterate
|
High
|
Cwe 122
SQLite
Buffer Overflow
|
2 months ago
|
|
CVE-2026-11822
|
|
SQLite before 3.53.2 Memory Corruption in FTS5 Extension
SQLite before 3.53.2 Memory Corruption in FTS5 Extension
|
High
|
Cwe 122
SQLite
Buffer Overflow
|
2 months ago
|
|
CVE-2026-11400
|
|
AWS-JDBC Wrapper: Privilege Escalation in Aurora PostgreSQL instance
AWS-JDBC Wrapper: Privilege Escalation in Aurora PostgreSQL instance
|
High
|
AWS
Amazon
Cloud
Cwe 426
+4
|
2 months ago
|
|
CVE-2026-11401
|
|
AWS Advanced Go Wrapper has Privilege Escalation in Aurora PostgreSQL instance
AWS Advanced Go Wrapper has Privilege Escalation in Aurora PostgreSQL instance
|
High
|
Cwe 426
AWS
Go
Privilege Escalation
|
2 months ago
|
|
CVE-2021-2351
|
|
Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1 and 19c. Difficult to exploit vulnerability allows unau...
Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1 and 19c. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise Advanced Networking Option. Su...
|
High
|
C
Cwe 327
Cwe 384
Oracle
+113
|
5 years ago
|