1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 10, 2026, 6:25 AM 16,373 active 1,443 known exploited

Catalog summary

16,373

Active CVEs

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 10, 2026, 6:25 AM 16,373 active 1,443 known exploited

Catalog summary

16,373

Active CVEs

8,468

Critical + high

1,443

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 4,901–4,950 of 16,373 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-14760Low
    radareorg radare2 regprofile disasm.c r_core_seek_arch_bits use after free
    CVSS 3.3
    radareorg/radare2generic
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 9, 2026View HOL analysis
  2. CVE-2026-14759Low
    radareorg radare2 RBinJava Line Number Table class.c r_bin_java_inner_classes_attr_calc_size heap-based overflow
    CVSS 3.3
    radareorg/radare2generic
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 9, 2026View HOL analysis
  3. CVE-2026-14758Low
    radareorg radare2 hexpairs cmd_anal.inc.c cmd_anal_opcode integer overflow
    CVSS 3.3
    radareorg/radare2generic
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 9, 2026View HOL analysis
  4. CVE-2026-14757Medium
    radareorg radare2 cmd_anal.inc core_anal_bytes integer overflow
    CVSS 5.3
    radareorg/radare2generic
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  5. CVE-2026-12386Low
    Buffer Overflow in TUBITAK BILGEM's Pardus Pen
    CVSS 3.9
    TUBITAK BILGEM Software Technologies Research Institute/Pardus Pengeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026 Fix availableView HOL analysis
  6. CVE-2026-14756High
    code-projects Hotel and Tourism Reservation Tour Management add_tour.php sql injection
    CVSS 7.3
    code-projects/Hotel and Tourism Reservationgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  7. CVE-2026-12250High
    Sensitive Data Exposure in TUBITAK BILGEM's Pardus Domain Joiner
    CVSS 7.9
    TUBITAK BILGEM Software Technologies Research Institute/Pardus Domain Joinergeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026 Fix availableView HOL analysis
  8. CVE-2026-14755High
    code-projects Hotel and Tourism Reservation Reservations Management reservations.php sql injection
    CVSS 7.3
    code-projects/Hotel and Tourism Reservationgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  9. CVE-2026-14754High
    code-projects Hotel and Tourism Reservation add_room.php sql injection
    CVSS 7.3
    code-projects/Hotel and Tourism Reservationgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  10. CVE-2026-14753High
    mjperpinosa stumasy Note Handler/Assignment notes authorization
    CVSS 7.3
    mjperpinosa/stumasygeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  11. CVE-2026-14752Low
    mjperpinosa stumasy add_into_dictionary.php add_definition cross site scripting
    CVSS 3.5
    mjperpinosa/stumasygeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  12. CVE-2026-14751Medium
    mjperpinosa stumasy search_scratch_data.php search_scratch_data sql injection
    CVSS 6.3
    mjperpinosa/stumasygeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  13. CVE-2026-14750High
    mjperpinosa stumasy accessing_dictionary_authorization.php accessing_dictionary_authorization sql injection
    CVSS 7.3
    mjperpinosa/stumasygeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  14. CVE-2026-14749High
    mjperpinosa stumasy calculate.php eval code injection
    CVSS 7.3
    mjperpinosa/stumasygeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  15. CVE-2026-14748Medium
    AIAnytime Awesome-MCP-Server mcp-wiki/wiki-summary server.py server-side request forgery
    CVSS 6.3
    AIAnytime/Awesome-MCP-Servergeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  16. CVE-2026-14747High
    code-projects Real State Services addprojectsale.php sql injection
    CVSS 7.3
    code-projects/Real State Servicesgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  17. CVE-2026-14746High
    code-projects Real State Services addprojectrent.php sql injection
    CVSS 7.3
    code-projects/Real State Servicesgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  18. CVE-2026-14745High
    code-projects Real State Services single-list_rent.php sql injection
    CVSS 7.3
    code-projects/Real State Servicesgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  19. CVE-2026-14744High
    code-projects Real State Services normalHomeRent.php sql injection
    CVSS 7.3
    code-projects/Real State Servicesgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  20. CVE-2026-14743High
    code-projects Real State Services normalHomeSale.php sql injection
    CVSS 7.3
    code-projects/Real State Servicesgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  21. CVE-2026-14742Low
    langchain-ai langgraph Task Result Cache _cache.py _freeze weak hash
    CVSS 3.1
    langchain-ai/langgraphgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  22. CVE-2026-14738Low
    exo-explore exo Vision Feature Cache vision.py _image_cache_key weak hash
    CVSS 3.7
    exo-explore/exogeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  23. CVE-2026-14737High
    Hanwang e-Face General Management Platform querySysAuthStr.do sql injection
    CVSS 7.3
    Hanwang/e-Face General Management Platformgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  24. CVE-2026-14736High
    Ruijie RG-UAC user_auth_commit.php unrestricted upload
    CVSS 7.3
    Ruijie/RG-UACgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  25. CVE-2026-14735High
    code-projects Smart Parking System parkings.php sql injection
    CVSS 7.3
    code-projects/Smart Parking Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  26. CVE-2026-14734High
    SourceCodester Class and Exam Timetabling System edit_product.php sql injection
    CVSS 7.3
    SourceCodester/Class and Exam Timetabling Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  27. CVE-2026-14733High
    SourceCodester Class and Exam Timetabling System edit_coursea.php sql injection
    CVSS 7.3
    SourceCodester/Class and Exam Timetabling Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  28. CVE-2026-14732High
    SourceCodester Class and Exam Timetabling System edit_exam.php sql injection
    CVSS 7.3
    SourceCodester/Class and Exam Timetabling Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  29. CVE-2026-14731Medium
    itsourcecode Hospital Management System patientreport.php sql injection
    CVSS 6.3
    itsourcecode/Hospital Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  30. CVE-2026-14730Medium
    itsourcecode Hospital Management System patientprofile.php sql injection
    CVSS 6.3
    itsourcecode/Hospital Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  31. CVE-2026-14725Medium
    SourceCodester Online Boat Reservation System session expiration
    CVSS 6.3
    SourceCodester/Online Boat Reservation Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  32. CVE-2026-14723Medium
    AD-Security AD_Miner Cache analyse_cache.py request_a deserialization
    CVSS 5.3
    AD-Security/AD_Minergeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  33. CVE-2026-14722High
    tiddly-gittly TidGi-Desktop Git Repository Import loadWikiTiddlersWithSubWikis.ts code injection
    CVSS 7.3
    tiddly-gittly/TidGi-Desktopgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  34. CVE-2026-14721High
    UTT HiPER 1250GW Web Endpoint ConfigWirelessBase_5g stack-based overflow
    CVSS 8.8
    UTT/HiPER 1250GWgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  35. CVE-2026-14719High
    SourceCodester Onlne Examination & Learning Management System Registration Endpoint register.php privileges management
    CVSS 7.3
    SourceCodester/Onlne Examination & Learning Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  36. CVE-2026-14781Medium
    Keycloak-services: keycloak-services: oidc email_verified claim incorrectly applied to userinfo email
    CVSS 4.8
    Affected software not mappedEcosystem not listed
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  37. CVE-2026-14717Medium
    itsourcecode Hospital Management System patientlogin.php sql injection
    CVSS 6.3
    itsourcecode/Hospital Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  38. CVE-2026-14716Medium
    nextlevelbuilder GoClaw WebSocket RPC router.go MethodRouter.Handle authorization
    CVSS 6.3
    nextlevelbuilder/GoClawgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  39. CVE-2026-14714Medium
    zhayujie chatgpt-on-wechat CowAgent wx Endpoint common.py verify_server missing authentication
    CVSS 6.5
    zhayujie/chatgpt-on-wechat CowAgentgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  40. CVE-2026-14713High
    SourceCodester Pizzafy E-Commerce System ajax.php confirm_order sql injection
    CVSS 7.3
    SourceCodester/Pizzafy E-Commerce Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  41. CVE-2026-14706Medium
    code-projects Online Examination Quiz Creation Feature update.php sql injection
    CVSS 6.3
    code-projects/Online Examinationgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  42. CVE-2026-14705High
    code-projects Online Examination head.php sql injection
    CVSS 7.3
    code-projects/Online Examinationgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  43. CVE-2026-14704Medium
    stephen-kruger bluebox cross site scripting
    CVSS 4.3
    stephen-kruger/blueboxgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  44. CVE-2026-14703Medium
    itsourcecode Hospital Management System patientorder.php sql injection
    CVSS 6.3
    itsourcecode/Hospital Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  45. CVE-2026-14702Low
    zcaceres markdownify-mcp webpage-to-markdown Markdownify.ts saveToTempFile random values
    CVSS 2.5
    zcaceres/markdownify-mcpgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  46. CVE-2026-14701Medium
    code-projects Internship Management System Password Change Endpoint change_password.php sql injection
    CVSS 6.3
    code-projects/Internship Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  47. CVE-2026-14700High
    code-projects Internship Management System Employer Login Endpoint login.php sql injection
    CVSS 7.3
    code-projects/Internship Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  48. CVE-2026-14699Low
    zcaceres markdownify-mcp Markdownify.ts assertPathAllowed symlink
    CVSS 3.3
    zcaceres/markdownify-mcpgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  49. CVE-2026-14698Medium
    SourceCodester Syllabus-Aligned Learning Management and Examination System upload_files.php unrestricted upload
    CVSS 6.3
    SourceCodester/Syllabus-Aligned Learning Management and Examination Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  50. CVE-2026-14695High
    SourceCodester Multi-Vendor Online Grocery Management System Registration Users.php save_client sql injection
    CVSS 7.3
    SourceCodester/Multi-Vendor Online Grocery Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
Page 99 of 328
Previous979899100101Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard

8,468

Critical + high

1,443

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 4,901–4,950 of 16,373 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-14760Low
    radareorg radare2 regprofile disasm.c r_core_seek_arch_bits use after free
    CVSS 3.3
    radareorg/radare2generic
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 9, 2026View HOL analysis
  2. CVE-2026-14759Low
    radareorg radare2 RBinJava Line Number Table class.c r_bin_java_inner_classes_attr_calc_size heap-based overflow
    CVSS 3.3
    radareorg/radare2generic
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 9, 2026View HOL analysis
  3. CVE-2026-14758Low
    radareorg radare2 hexpairs cmd_anal.inc.c cmd_anal_opcode integer overflow
    CVSS 3.3
    radareorg/radare2generic
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 9, 2026View HOL analysis
  4. CVE-2026-14757Medium
    radareorg radare2 cmd_anal.inc core_anal_bytes integer overflow
    CVSS 5.3
    radareorg/radare2generic
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  5. CVE-2026-12386Low
    Buffer Overflow in TUBITAK BILGEM's Pardus Pen
    CVSS 3.9
    TUBITAK BILGEM Software Technologies Research Institute/Pardus Pengeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026 Fix availableView HOL analysis
  6. CVE-2026-14756High
    code-projects Hotel and Tourism Reservation Tour Management add_tour.php sql injection
    CVSS 7.3
    code-projects/Hotel and Tourism Reservationgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  7. CVE-2026-12250High
    Sensitive Data Exposure in TUBITAK BILGEM's Pardus Domain Joiner
    CVSS 7.9
    TUBITAK BILGEM Software Technologies Research Institute/Pardus Domain Joinergeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026 Fix availableView HOL analysis
  8. CVE-2026-14755High
    code-projects Hotel and Tourism Reservation Reservations Management reservations.php sql injection
    CVSS 7.3
    code-projects/Hotel and Tourism Reservationgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  9. CVE-2026-14754High
    code-projects Hotel and Tourism Reservation add_room.php sql injection
    CVSS 7.3
    code-projects/Hotel and Tourism Reservationgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  10. CVE-2026-14753High
    mjperpinosa stumasy Note Handler/Assignment notes authorization
    CVSS 7.3
    mjperpinosa/stumasygeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  11. CVE-2026-14752Low
    mjperpinosa stumasy add_into_dictionary.php add_definition cross site scripting
    CVSS 3.5
    mjperpinosa/stumasygeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  12. CVE-2026-14751Medium
    mjperpinosa stumasy search_scratch_data.php search_scratch_data sql injection
    CVSS 6.3
    mjperpinosa/stumasygeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  13. CVE-2026-14750High
    mjperpinosa stumasy accessing_dictionary_authorization.php accessing_dictionary_authorization sql injection
    CVSS 7.3
    mjperpinosa/stumasygeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  14. CVE-2026-14749High
    mjperpinosa stumasy calculate.php eval code injection
    CVSS 7.3
    mjperpinosa/stumasygeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  15. CVE-2026-14748Medium
    AIAnytime Awesome-MCP-Server mcp-wiki/wiki-summary server.py server-side request forgery
    CVSS 6.3
    AIAnytime/Awesome-MCP-Servergeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  16. CVE-2026-14747High
    code-projects Real State Services addprojectsale.php sql injection
    CVSS 7.3
    code-projects/Real State Servicesgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  17. CVE-2026-14746High
    code-projects Real State Services addprojectrent.php sql injection
    CVSS 7.3
    code-projects/Real State Servicesgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  18. CVE-2026-14745High
    code-projects Real State Services single-list_rent.php sql injection
    CVSS 7.3
    code-projects/Real State Servicesgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  19. CVE-2026-14744High
    code-projects Real State Services normalHomeRent.php sql injection
    CVSS 7.3
    code-projects/Real State Servicesgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  20. CVE-2026-14743High
    code-projects Real State Services normalHomeSale.php sql injection
    CVSS 7.3
    code-projects/Real State Servicesgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  21. CVE-2026-14742Low
    langchain-ai langgraph Task Result Cache _cache.py _freeze weak hash
    CVSS 3.1
    langchain-ai/langgraphgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  22. CVE-2026-14738Low
    exo-explore exo Vision Feature Cache vision.py _image_cache_key weak hash
    CVSS 3.7
    exo-explore/exogeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  23. CVE-2026-14737High
    Hanwang e-Face General Management Platform querySysAuthStr.do sql injection
    CVSS 7.3
    Hanwang/e-Face General Management Platformgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  24. CVE-2026-14736High
    Ruijie RG-UAC user_auth_commit.php unrestricted upload
    CVSS 7.3
    Ruijie/RG-UACgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  25. CVE-2026-14735High
    code-projects Smart Parking System parkings.php sql injection
    CVSS 7.3
    code-projects/Smart Parking Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  26. CVE-2026-14734High
    SourceCodester Class and Exam Timetabling System edit_product.php sql injection
    CVSS 7.3
    SourceCodester/Class and Exam Timetabling Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  27. CVE-2026-14733High
    SourceCodester Class and Exam Timetabling System edit_coursea.php sql injection
    CVSS 7.3
    SourceCodester/Class and Exam Timetabling Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  28. CVE-2026-14732High
    SourceCodester Class and Exam Timetabling System edit_exam.php sql injection
    CVSS 7.3
    SourceCodester/Class and Exam Timetabling Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  29. CVE-2026-14731Medium
    itsourcecode Hospital Management System patientreport.php sql injection
    CVSS 6.3
    itsourcecode/Hospital Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  30. CVE-2026-14730Medium
    itsourcecode Hospital Management System patientprofile.php sql injection
    CVSS 6.3
    itsourcecode/Hospital Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  31. CVE-2026-14725Medium
    SourceCodester Online Boat Reservation System session expiration
    CVSS 6.3
    SourceCodester/Online Boat Reservation Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  32. CVE-2026-14723Medium
    AD-Security AD_Miner Cache analyse_cache.py request_a deserialization
    CVSS 5.3
    AD-Security/AD_Minergeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  33. CVE-2026-14722High
    tiddly-gittly TidGi-Desktop Git Repository Import loadWikiTiddlersWithSubWikis.ts code injection
    CVSS 7.3
    tiddly-gittly/TidGi-Desktopgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  34. CVE-2026-14721High
    UTT HiPER 1250GW Web Endpoint ConfigWirelessBase_5g stack-based overflow
    CVSS 8.8
    UTT/HiPER 1250GWgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  35. CVE-2026-14719High
    SourceCodester Onlne Examination & Learning Management System Registration Endpoint register.php privileges management
    CVSS 7.3
    SourceCodester/Onlne Examination & Learning Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  36. CVE-2026-14781Medium
    Keycloak-services: keycloak-services: oidc email_verified claim incorrectly applied to userinfo email
    CVSS 4.8
    Affected software not mappedEcosystem not listed
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  37. CVE-2026-14717Medium
    itsourcecode Hospital Management System patientlogin.php sql injection
    CVSS 6.3
    itsourcecode/Hospital Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  38. CVE-2026-14716Medium
    nextlevelbuilder GoClaw WebSocket RPC router.go MethodRouter.Handle authorization
    CVSS 6.3
    nextlevelbuilder/GoClawgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  39. CVE-2026-14714Medium
    zhayujie chatgpt-on-wechat CowAgent wx Endpoint common.py verify_server missing authentication
    CVSS 6.5
    zhayujie/chatgpt-on-wechat CowAgentgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  40. CVE-2026-14713High
    SourceCodester Pizzafy E-Commerce System ajax.php confirm_order sql injection
    CVSS 7.3
    SourceCodester/Pizzafy E-Commerce Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  41. CVE-2026-14706Medium
    code-projects Online Examination Quiz Creation Feature update.php sql injection
    CVSS 6.3
    code-projects/Online Examinationgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  42. CVE-2026-14705High
    code-projects Online Examination head.php sql injection
    CVSS 7.3
    code-projects/Online Examinationgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  43. CVE-2026-14704Medium
    stephen-kruger bluebox cross site scripting
    CVSS 4.3
    stephen-kruger/blueboxgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  44. CVE-2026-14703Medium
    itsourcecode Hospital Management System patientorder.php sql injection
    CVSS 6.3
    itsourcecode/Hospital Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
  45. CVE-2026-14702Low
    zcaceres markdownify-mcp webpage-to-markdown Markdownify.ts saveToTempFile random values
    CVSS 2.5
    zcaceres/markdownify-mcpgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  46. CVE-2026-14701Medium
    code-projects Internship Management System Password Change Endpoint change_password.php sql injection
    CVSS 6.3
    code-projects/Internship Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  47. CVE-2026-14700High
    code-projects Internship Management System Employer Login Endpoint login.php sql injection
    CVSS 7.3
    code-projects/Internship Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  48. CVE-2026-14699Low
    zcaceres markdownify-mcp Markdownify.ts assertPathAllowed symlink
    CVSS 3.3
    zcaceres/markdownify-mcpgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  49. CVE-2026-14698Medium
    SourceCodester Syllabus-Aligned Learning Management and Examination System upload_files.php unrestricted upload
    CVSS 6.3
    SourceCodester/Syllabus-Aligned Learning Management and Examination Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 6, 2026View HOL analysis
  50. CVE-2026-14695High
    SourceCodester Multi-Vendor Online Grocery Management System Registration Users.php save_client sql injection
    CVSS 7.3
    SourceCodester/Multi-Vendor Online Grocery Management Systemgeneric
    PublishedJul 5, 2026First seen at HOL Jul 5, 2026Updated Jul 7, 2026View HOL analysis
Page 99 of 328
Previous979899100101Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard