Vulnerability search
Batch lookup →4 matches
- CVE-2026-3644Incomplete control character validation in http.cookieshighEPSS 0.5%79.37.539.4%2026-03-19 01:04 UTC
- CVE-2026-4519webbrowser.open() allows leading dashes in URLshighEPSS 0.3%66.33.323.4%2026-03-25 01:05 UTC
- CVE-2026-6019BaseCookie.js_output() does not neutralize embedded charactersmediumEPSS 0.2%44.06.113.5%2026-04-29 01:10 UTC
- CVE-2025-13462tarfile: Skip DIRTYPE normalization during GNU LONGNAME/LONGLINK handlinglowEPSS 0.2%37.43.35.9%2026-03-25 01:05 UTC