Skip to main content

CWE archive

CWE-404 CVEs

Programmatic archive

750 CVEs tagged with CWE-4042 Critical, 181 High, 336 Medium, 231 Low, 0 Unrated.

CVE-2026-17501

Published Jul 27, 2026

A flaw has been found in ggml-org llama.cpp e15efe0. This vulnerability affects the function transform of the file common/json-schema-to-grammar.cpp of the component JSON-Schema-t…

CVSS 6.9 · Medium
evidence mentions
7
Buzz score
27.3

CVE-2026-17500

Published Jul 27, 2026

A vulnerability was detected in ggml-org llama.cpp d006858/e15efe0. This affects the function _visit_pattern of the file common/json-schema-to-grammar.cpp. The manipulation result…

CVSS 6.9 · Medium
evidence mentions
7
Buzz score
27.3

CVE-2026-38763

Published Jul 22, 2026

An issue in Unistal Systems Pvt. Ltd.Protegent 360 v2.0.0.4 allows a local attacker to cause a denial of service via the function sub_13828

CVSS 5.5 · Medium
evidence mentions
2
Buzz score
21.0

CVE-2026-61187

Published Jul 21, 2026

Vulnerability in the Oracle Agile Engineering Data Management product of Oracle Supply Chain (component: Install). The supported version that is affected is 6.2.1. Easily exploi…

CVSS 2.8 · Low
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-61028

Published Jul 21, 2026

Vulnerability in the Oracle Inventory Management product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Dif…

CVSS 1.9 · Low
evidence mentions
1
Buzz score
11.9

CVE-2026-60896

Published Jul 21, 2026

Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Difficul…

CVSS 3.6 · Low
evidence mentions
1
Buzz score
11.9

CVE-2026-60624

Published Jul 21, 2026

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 9.7.0-9.7.1. Easily exploitable vulnerability all…

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-60397

Published Jul 21, 2026

Vulnerability in Oracle GoldenGate (component: Admin Server Executable). Supported versions that are affected are 19.1.0.0.0-19.30.0.0, 21.3-21.21 and 23.4-23.26.1. Easily explo…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2026-15690

Published Jul 14, 2026

A vulnerability was identified in open62541 up to 1.5.5. Affected by this issue is the function responseReadNamespacesArray of the file src/client/ua_client_connect.c of the compo…

CVSS 1.3 · Low
evidence mentions
6
Buzz score
26.0

CVE-2026-15276

Published Jul 9, 2026

A flaw has been found in pdeljanov Symphonia up to 0.6.0. This vulnerability affects unknown code of the component Metadata Handler. This manipulation causes denial of service. Th…

CVSS 1.9 · Low
evidence mentions
7
Buzz score
27.3

CVE-2026-15274

Published Jul 9, 2026

A vulnerability was detected in lo48576 fbxcel up to 0.9.0. This affects an unknown part of the file src/pull_parser/v7400/parser.rs of the component Node Header Handler. The mani…

CVSS 1.9 · Low
evidence mentions
7
Buzz score
27.3

CVE-2026-15184

Published Jul 9, 2026

A vulnerability was found in GNU LibreDWG up to 0.13.4. The impacted element is the function dwg_next_entity of the file src/dwg.c of the component DWG File Handler. Performing a…

CVSS 1.9 · Low
evidence mentions
9
Buzz score
34.5

CVE-2026-59725

Published Jul 8, 2026

Socket.IO enables bidirectional and low-latency communication for every platform. From 4.1.0 before 6.6.7, Engine.IO protocol v4 polling transport does not properly close the HTTP…

CVSS 7.5 · High
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2026-14801

Published Jul 6, 2026

A security vulnerability has been detected in GPAC 26.03-DEV-rev342-g80071f700-master. The impacted element is the function txtin_probe_duration of the file src/filters/load_text.…

CVSS 4.8 · Medium
evidence mentions
7
Buzz score
27.3

CVE-2026-14790

Published Jul 6, 2026

A flaw has been found in GPAC 26.02.0. This affects the function nhmldump_send_frame of the file src/filters/write_nhml.c of the component Media File Handler. Executing a manipula…

CVSS 1.9 · Low
evidence mentions
7
Buzz score
27.3

CVE-2026-14651

Published Jul 4, 2026

A vulnerability has been found in connorskees grass up to 0.13.4. The impacted element is the function grass_compiler::selector::extend/grass_compiler::evaluate::visitor. The mani…

CVSS 1.9 · Low
evidence mentions
6
Buzz score
26.0

CVE-2026-14650

Published Jul 4, 2026

A flaw has been found in connorskees grass up to 0.13.4. The affected element is the function grass_compiler::raw_to_parse_error of the component UTF-8 Character Handler. Executin…

CVSS 1.9 · Low
evidence mentions
6
Buzz score
26.0

CVE-2026-14629

Published Jul 4, 2026

A flaw has been found in RT-Thread up to 5.2.2. Affected is the function read/write/sys_ioctl of the file components/lwp/lwp_syscall.c of the component Parameter Handler. Executin…

CVSS 2.1 · Low
evidence mentions
7
Buzz score
27.3

CVE-2026-14626

Published Jul 4, 2026

A weakness has been identified in NousResearch hermes-agent up to 2026.4.30. The impacted element is the function AIAgent.run_conversation of the file run_agent.py of the componen…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
24.4

CVE-2026-14624

Published Jul 4, 2026

A vulnerability was identified in omec-project amf up to 2.0.2/2.1.1. Impacted is an unknown function of the file /go/src/amf/ngap/handler.go of the component NGSetupRequest Handl…

CVSS 2.1 · Low
evidence mentions
8
Buzz score
28.5

CVE-2026-14623

Published Jul 4, 2026

A vulnerability was determined in omec-project amf up to 2.1.1. This issue affects the function RRCInactiveTransitionReport of the component NGAP Message Handler. Executing a mani…

CVSS 2.1 · Low
evidence mentions
8
Buzz score
28.5

CVE-2026-14618

Published Jul 4, 2026

A vulnerability was detected in Open5GS up to 2.7.7. Affected by this vulnerability is the function amf_nnrf_handle_nf_discover of the file src/amf/nnrf-handler.c of the component…

CVSS 2.1 · Low
evidence mentions
8
Buzz score
28.5

CVE-2026-12575

Published Jul 1, 2026

DVP80ES3 with  Improper Resource Shutdown or Release vulnerability.

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2026-13523

Published Jun 29, 2026

A weakness has been identified in GPAC up to 26.02.0. This affects an unknown part of the file src/utils/base_encoding.c of the component ISOBMFF Parser. Executing a manipulation…

CVSS 1.9 · Low
evidence mentions
8
Buzz score
28.5

CVE-2026-13491

Published Jun 28, 2026

A vulnerability was detected in 78 xiaozhi-esp32 up to 2.2.6. This vulnerability affects the function Application::GetInstance of the file main/protocols/mqtt_protocol.cc of the c…

CVSS 2.9 · Low
evidence mentions
8
Buzz score
28.5
Showing 1-25 of 750 CVEsPage 1 of 30