Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
6.5 MEDIUM
CVE-2026-8081 — router-for-me CLIProxyAPI api_tools.go server-side request forgery

A vulnerability has been found in router-for-me CLIProxyAPI 6.9.29. Affected by this issue is some unknown functionality of the file internal/api/handlers/management/api_tools.go of the component API…

cliproxyapi | Remote | Server-Side Request Forgery
May 07, 2026 May 12, 2026
May 07, 2026
May 12, 2026
9.8 CRITICAL
CVE-2026-37709 — Snipe-IT Insecure Permissions Code Execution Vulnerability

Insecure Permissions vulnerability in grokability snipe-it v.8.4.0 and before and fixed after 2026-03-10 commit 676a9958 allows a remote attacker to execute arbitrary code via the app/Http/Controller…

snipe-it | Remote | Misconfiguration
May 07, 2026 May 12, 2026
May 07, 2026
May 12, 2026
Showing 20 of 7162 Results