AISLE CVE Discoveries

CVEs our AI-native engine discovered in the world's most audited code, responsibly disclosed to maintainers.

306CVEs Assigned
155High/Critical Severity
89Projects Secured

CVE-2026-24908

openemr
10.0

SQL injection in the Patient REST API via the _sort parameter

Feb 25, 2026View details →

CVE-2026-24898

openemr
10.0

Unauthenticated MedEx API token disclosure via the callback endpoint

Mar 3, 2026View details →

CVE-2025-10230

Samba
10.0

Unauthenticated command injection via NetBIOS names in the WINS server hook script

Nov 7, 2025View details →

CVE-2026-40472

hackage-server
9.9

Stored XSS via package metadata rendered unescaped in href attributes

Apr 23, 2026View details →

CVE-2026-44170

MariaDB
9.8

Argument injection in the CONNECT engine's curl command line via the table HTTP attribute

Jun 12, 2026View details →

CVE-2026-42010

GnuTLS
9.8

Authentication bypass via NUL character in RSA-PSK usernames

May 7, 2026View details →

CVE-2026-29167

Apache HTTP Server
9.8

Use-after-free in mod_ldap with per-directory configuration

Jun 8, 2026View details →

CVE-2026-28808

OTP
9.8

Authentication bypass for ScriptAlias CGI scripts via a mod_auth/mod_cgi path mismatch

Apr 7, 2026View details →

CVE-2026-28474

nextcloud-talk
9.8

Allowlist bypass via spoofed actor.name display names in the Nextcloud Talk plugin

Mar 5, 2026View details →

CVE-2026-28470

OpenClaw
9.8

Exec allowlist bypass via command substitution inside double-quoted strings

Mar 5, 2026View details →

CVE-2026-28391

OpenClaw
9.8

Command injection via cmd.exe metacharacters in allowlist-gated exec requests

Mar 5, 2026View details →

CVE-2026-25560

WeKan
9.8

LDAP filter injection via unescaped usernames during authentication

Feb 7, 2026View details →

CVE-2026-25241

pearweb
9.8

Unauthenticated SQL injection in the /get/<package>/<version> endpoint

Feb 3, 2026View details →

CVE-2026-25240

pearweb
9.8

SQL injection in user::maintains() via role filters interpolated into an IN() clause

Feb 3, 2026View details →

CVE-2026-25238

pearweb
9.8

SQL injection in bug subscription deletion via a crafted email value

Feb 3, 2026View details →

CVE-2026-25237

pearweb
9.8

PHP code execution via preg_replace /e in bug update email handling

Feb 3, 2026View details →

CVE-2026-25236

pearweb
9.8

SQL injection in Damblan_Karma via unsafe literal substitution in an IN() list

Feb 3, 2026View details →

CVE-2026-25234

pearweb
9.8

SQL injection in category deletion via the category id

Feb 3, 2026View details →

CVE-2026-10536

curl
9.8

Use-after-free in HTTP/2 stream-dependency handling after curl_easy_reset()

Jul 16, 2026View details →

CVE-2026-8925

curl
9.8

Double free of the GSASL context during SASL authentication cleanup

Jul 16, 2026View details →

CVE-2026-2757

Firefox
9.8

Incorrect boundary conditions in the WebRTC audio/video component

Feb 24, 2026View details →

CVE-2026-1963

WeKan
9.8

Improper access control in the attachment storage move operation

Feb 5, 2026View details →

CVE-2026-1962

WeKan
9.8

Improper access control in the attachment migration routine

Feb 5, 2026View details →

CVE-2025-14321

Firefox
9.8

Use-after-free in the WebRTC signaling component

Dec 9, 2025View details →

CVE-2025-11624

wolfSSH
9.8

Stack buffer overwrite when processing oversized file handles in the SFTP server

Oct 21, 2025View details →

CVE-2026-40471

hackage-server
9.6

Missing CSRF protection allows cross-site package uploads and admin actions

Apr 23, 2026View details →

CVE-2026-28446

OpenClaw
9.4

Inbound allowlist bypass in the voice-call extension via empty or suffix-matched caller IDs

Mar 5, 2026View details →

CVE-2026-23941

OTP
9.4

Request smuggling via first-wins Content-Length parsing in inets httpd

Mar 13, 2026View details →

CVE-2026-65049

Ninja Forms
9.3

Site-scoped capability check in nf_delete_all_data enables network-wide data deletion

Jul 22, 2026View details →

CVE-2026-65048

Ninja Forms
9.3

Unauthenticated stored XSS via crafted Repeatable Fieldset submission indexes

Jul 22, 2026View details →

CVE-2026-33845

GnuTLS
9.1

Out-of-bounds read via integer underflow when reassembling zero-length DTLS fragments

Apr 30, 2026View details →

CVE-2026-25233

pearweb
9.1

Roadmap authorization bypass via an operator precedence bug in the role check

Feb 3, 2026View details →

CVE-2026-8926

curl
9.1

Password for another .netrc user sent when the URL specifies only a username

Jul 16, 2026View details →

CVE-2026-32118

openemr
9.0

Stored XSS in the Graphical Pain Map (clickmap) encounter form

Mar 11, 2026View details →

CVE-2026-64835

FFmpeg
8.8

Out-of-bounds read and write in the ADX audio decoder via a mid-stream channel layout change

Jul 23, 2026View details →

CVE-2026-64832

FFmpeg
8.8

Double free in the NVDEC hardware decoder when no decoder surfaces remain

Jul 23, 2026View details →

CVE-2026-64831

FFmpeg
8.8

Stack buffer overflow in the Vulkan HEVC decoder via oversized vps_num_hrd_parameters

Jul 23, 2026View details →

CVE-2026-64830

FFmpeg
8.8

Heap buffer overflow in the VobSub subtitle demuxer via excessive distinct stream IDs

Jul 23, 2026View details →

CVE-2026-59851

libssh
8.8

Missing Kerberos principal check in the gssapi-keyex path allows login as arbitrary users

Jul 24, 2026View details →

CVE-2026-39461

FreeBSD
8.8

Stack buffer overflow in libcasper via file descriptors exceeding FD_SETSIZE in select()

May 21, 2026View details →

CVE-2026-33918

openemr
8.8

Missing authorization on get_claim_file.php lets any user download and delete claim files

Mar 25, 2026View details →

CVE-2026-26323

OpenClaw
8.8

Command injection in the update-clawtributors maintainer script via commit author emails

Feb 19, 2026View details →

CVE-2026-25859

WeKan
8.8

Insufficient permission checks allow non-admin users to run migration operations

Feb 7, 2026View details →

CVE-2026-23627

openemr
8.8

SQL injection in the Immunization module via the patient_id parameter

Feb 25, 2026View details →

CVE-2026-6638

PostgreSQL
8.8

SQL injection in logical replication via crafted table names at REFRESH PUBLICATION

May 14, 2026View details →

CVE-2026-6473

PostgreSQL
8.8

Integer wraparound undersizes allocations, letting unprivileged users write out of bounds

May 14, 2026View details →

CVE-2026-5136

Foreman
8.8

Privilege escalation to administrator via unvalidated usergroup role assignments

Jul 16, 2026View details →

CVE-2026-2206

WeKan
8.8

Improper access control in the fixDuplicateLists admin repair method

Feb 8, 2026View details →
CTA background

Meet the system that responds
faster than you can say CVE.