Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.5 HIGH
CVE-2026-6596 — langflow-ai langflow API Endpoint endpoints.py create_upload_file unrestricted upload

A security flaw has been discovered in langflow-ai langflow up to 1.1.0. This issue affects the function create_upload_file of the file src/backend/base/Langflow/api/v1/endpoints.py of the component …

langflow | Remote | Misconfiguration
Apr 20, 2026 Apr 29, 2026
Apr 20, 2026
Apr 29, 2026
7.5 HIGH
CVE-2026-6595 — ProjectsAndPrograms School Management System HTTP GET Parameter buslocation.php sql injec…

A vulnerability was identified in ProjectsAndPrograms School Management System up to 6b6fae5426044f89c08d0dd101c7fa71f9042a59. This vulnerability affects unknown code of the file buslocation.php of t…

school_management_system | Remote | Injection
Apr 20, 2026 Apr 29, 2026
Apr 20, 2026
Apr 29, 2026
Showing 20 of 6422 Results