Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.5 HIGH
CVE-2026-7221 — TencentCloudBase CloudBase-MCP open-url API Endpoint interactive-server.ts openUrl server…

A vulnerability was found in TencentCloudBase CloudBase-MCP up to 2.17.0. Affected is the function openUrl of the file mcp/src/interactive-server.ts of the component open-url API Endpoint. The manipu…

Remote | Server-Side Request Forgery
Apr 28, 2026 Apr 29, 2026
Apr 28, 2026
Apr 29, 2026
7.5 HIGH
CVE-2026-7220 — jackwrichards FastlyMCP fastly_cli Tool fastly-mcp.mjs os command injection

A vulnerability has been found in jackwrichards FastlyMCP up to 6f3d0b0e654fc51076badc7fa16c03c461f95620. This impacts an unknown function of the file fastly-mcp.mjs of the component fastly_cli Tool.…

Remote | Injection
Apr 28, 2026 Apr 29, 2026
Apr 28, 2026
Apr 29, 2026
8.3 HIGH
CVE-2026-7219 — Totolink N300RT formIpQoS buffer overflow

A flaw has been found in Totolink N300RT 3.4.0-B20250430. This affects an unknown function of the file /boafrm/formIpQoS. Executing a manipulation of the argument entry_name can lead to buffer overfl…

n300rt_firmware | Remote | Memory Corruption
Apr 28, 2026 Apr 28, 2026
Apr 28, 2026
Apr 28, 2026
Showing 20 of 6563 Results