CVE-2026-71555 Medium 4.1

PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. From 2.1.0 until 4.14.1, PILOS does not send a Cross-Origin-Opener-P

06 Aug 2026, 21:51 UTC View advisory →
CVE-2026-71554 Medium 5.3

h2 is a pure-Python implementation of a HTTP/2 protocol stack. Versions up to and including 4.4.0 accept request header blocks containing more than one Hos

06 Aug 2026, 21:46 UTC View advisory →
CVE-2026-71502 Medium 5.1

CTI-Transmute contains a stored cross-site scripting vulnerability caused by insufficient neutralization of Vue template expression delimiters in server-re

06 Aug 2026, 20:30 UTC View advisory →
CVE-2026-71498 Medium 5.1

node-re2 provides RE2 regular expression bindings for Node.js. Prior to version 1.26.1, passing a Buffer whose final bytes form a truncated (incomplete) mu

06 Aug 2026, 21:26 UTC View advisory →
CVE-2026-71497 Medium 4.7

jsoup is a Java library for working with real-world HTML. From 1.14.3 until 1.23.1, jsoup's HTML parser could incorrectly handle a malformed tag name endin

06 Aug 2026, 21:09 UTC View advisory →
CVE-2026-71488 High 7.5

league/commonmark is a PHP library for parsing and rendering CommonMark Markdown. From 0.6.0 until 2.9.0, specially crafted Markdown lines can cause the pa

06 Aug 2026, 20:37 UTC View advisory →
CVE-2026-71478 Medium 6.1

league/commonmark is a PHP library for parsing and rendering CommonMark Markdown. From 1.5.0 until 2.9.0, the AttributesExtension's href and src unsafe-lin

06 Aug 2026, 20:30 UTC View advisory →
CVE-2026-71476 High 8.7

Nx is a monorepo solution for TypeScript and polyglot codebases. From version 20.8.0 until 22.7.7 and 23.0.2, the Nx self-hosted HTTP remote cache extracts

06 Aug 2026, 20:07 UTC View advisory →
CVE-2026-71447 Medium 6.9

AIL Project contains a stored cross-site scripting vulnerability in the translation controls displayed for chat messages and forum posts. The affected temp

06 Aug 2026, 17:04 UTC View advisory →
CVE-2026-71446 Medium 6.9

AIL Framework contains a stored cross-site scripting vulnerability in the crawler domain view. Crawled URLs were embedded directly into the JavaScript oncl

06 Aug 2026, 16:57 UTC View advisory →
CVE-2026-71445 High 8.2

AIL Framework contained a reflected cross-site scripting vulnerability in the /tag/add_tags endpoint. When an error occurred while processing a tag operati

06 Aug 2026, 16:48 UTC View advisory →
CVE-2026-71439 Medium 5.3

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. From version 11.6.0 until 11.16.1, Mermaid Radar Di

06 Aug 2026, 20:01 UTC View advisory →
CVE-2026-71438 Low 2.4

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. Prior to 10.9.8 and 11.16.1, Mermaid's configuratio

06 Aug 2026, 19:59 UTC View advisory →
CVE-2026-71437 Medium 6.5

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. From version 11.5.0 until 11.16.1, Mermaid Architec

06 Aug 2026, 19:51 UTC View advisory →
CVE-2026-71436 Medium 5.3

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. From version 10.6.0 until 10.9.8 and 11.16.1, Merma

06 Aug 2026, 19:49 UTC View advisory →
CVE-2026-71435 Medium 6.1

Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.74.3 and 6.24.2, the default ("automagic") form notification email render

06 Aug 2026, 19:37 UTC View advisory →
CVE-2026-71434 Medium 5.3

Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.74.3 and 6.24.2, public frontend forms did not enforce the file upload re

06 Aug 2026, 19:34 UTC View advisory →
CVE-2026-71433 Medium 5.3

LangGraph Checkpoint Postgres and SQLite Checkpoint are the Postgres and SQLite implementations of LangGraph's checkpoint saver. Prior to 3.1.1, the langgr

06 Aug 2026, 19:03 UTC View advisory →
CVE-2026-71430 Medium 6.2

node-re2 provides RE2 regular expression bindings for Node.js. Prior to version 1.25.1, the WrappedRE2::Replace function built its replacement result and p

06 Aug 2026, 21:19 UTC View advisory →
CVE-2026-71327 High 7.6

Traefik is an open source HTTP reverse proxy and load balancer. From 3.0.0 until 3.6.25 and 3.7.10, Traefik's Kubernetes Gateway API provider in pkg/provid

06 Aug 2026, 16:38 UTC View advisory →
CVE-2026-71326 Low 2.1

Traefik is an open source HTTP reverse proxy and load balancer. From 3.6.11 until 3.6.25 and 3.7.10, Traefik's BasicAuth middleware in pkg/middlewares/auth

06 Aug 2026, 16:34 UTC View advisory →
CVE-2026-71325 Medium 4.8

Traefik is an open-source edge router that makes publishing services a fun and easy experience. Prior to 2.11.54, 3.6.25, and 3.7.10, cross-namespace @kube

06 Aug 2026, 16:24 UTC View advisory →
CVE-2026-71324 High 7

Traefik is an open source HTTP reverse proxy and load balancer. Prior to 2.11.53, 3.6.24, and 3.7.9, Traefik's default HTTP reverse proxy forwards a plain

06 Aug 2026, 15:56 UTC View advisory →
CVE-2026-71321 High 7.5

Nuxt is an open-source web development framework for Vue.js. From 3.1.0 until 3.21.10 and 4.5.1, the internal island renderer endpoint `/__nuxt_island/...`

05 Aug 2026, 21:42 UTC View advisory →
CVE-2026-71320 High 8.1

Nuxt is an open-source web development framework for Vue.js. From 3.4.0 until 3.21.10 and 4.5.1, an attacker can inject a template key through /__nuxt_isla

05 Aug 2026, 21:29 UTC View advisory →
CVE-2026-71319 Critical 9.6

Nuxt is an open-source web development framework for Vue.js. Prior to 3.3.1, Nuxt DevTools (development mode only) exposes a bidirectional RPC channel over

05 Aug 2026, 21:26 UTC View advisory →
CVE-2026-71318 Medium 4.8

Nuxt is an open-source web development framework for Vue.js. From 3.1.0 until 3.21.10 and 4.5.1, an attacker can supply a top-level `as` prop to the /__nux

05 Aug 2026, 21:21 UTC View advisory →
CVE-2026-71316 High 7.5

Nuxt is an open-source web development framework for Vue.js. From 4.4.0 until 4.5.1, runtime cache:nuxt:payload entries for //_payload.json can be returned

05 Aug 2026, 21:14 UTC View advisory →
CVE-2026-71315 High 8.2

Nuxt is an open-source web development framework for Vue.js. From 3.21.7 until 3.21.10 and 4.5.1, mixed-case routeRules keys can fail to match case-folded

05 Aug 2026, 21:05 UTC View advisory →
CVE-2026-71314 High 7.5

Nuxt is an open-source web development framework for Vue.js. From 3.1.0 until 3.21.10 and 4.5.1, an unauthenticated attacker can use a server island v-for

05 Aug 2026, 20:58 UTC View advisory →
CVE-2026-71313 Medium 6.9

rclone is a command-line program to sync files and directories to and from different cloud storage providers. From v1.51.0 until v1.75.0, the local backend

05 Aug 2026, 20:47 UTC View advisory →
CVE-2026-71312 High 8

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to v1.75.0, rclone interpolates remote

05 Aug 2026, 20:37 UTC View advisory →
CVE-2026-71311 Medium 6.4

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.75.0, a valid but nondefault FTP f

05 Aug 2026, 20:33 UTC View advisory →
CVE-2026-71310 Medium 5.9

rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.75.0, the shared HTTP CONNECT help

05 Aug 2026, 20:17 UTC View advisory →
CVE-2026-71309 High 8.6

rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.40.0 until 1.75.0, rclone serve restic

05 Aug 2026, 20:13 UTC View advisory →
CVE-2026-71294 High 7.7

Cotonti CMS's Comments plugin deserializes user-supplied data without restricting the classes that may be instantiated. In plugins/comments/controllers/act

05 Aug 2026, 12:38 UTC View advisory →
CVE-2026-71293 Medium 6.2

Statamic CMS's user-augmentation resolver, AugmentedUser::get() in src/Auth/AugmentedUser.php, contains an explicit case for the `two_factor_recovery_codes

05 Aug 2026, 12:38 UTC View advisory →
CVE-2026-71292 High 7.2

Subrion CMS's admin grid sorting helper, _gridGetSorting() in includes/classes/ia.base.controller.admin.php, whitelists the `dir` (ASC/DESC) request parame

05 Aug 2026, 12:38 UTC View advisory →
CVE-2026-71291 High 8.8

Bolt CMS renders content field values through Twig's full application-level Environment with no SandboxExtension registered anywhere in the codebase. In sr

05 Aug 2026, 12:38 UTC View advisory →
CVE-2026-71289 Critical 9.8

The NASA-AMMOS Asynchronous Network Management System (ANMS) reference implementation's default docker-compose.yml publishes the amp-manager service's REST

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71288 High 8.8

Koha's guided report builder (reports/guided_reports.pl) reads the `order_by` CGI parameter and, for each value, a dynamically-named `{order}_ovalue` param

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71287 High 8.8

Cacti's sanitize_sql_column() (lib/functions.php) sanitizes user-supplied ORDER BY column names using the regex `preg_replace('/[^a-zA-Z0-9_().]/', '', $co

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71286 Medium 6.1

The render-template component of ember-dynamic-render-template (addon/components/render-template.js) passes its `templateString` property directly into Emb

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71285 High 8.1

Uptime Kuma's Matomo analytics integration (server/analytics/matomo-analytics.js) injects the admin-configurable Matomo `siteId` value as a bare, unquoted

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71284 High 7.2

Fledge's backup-restore upload handler, upload_backup() (python/fledge/services/core/api/backup_restore.py), takes the first extracted tar member's filenam

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71283 Medium 4.9

Fledge's backup-restore upload handler, upload_backup() (python/fledge/services/core/api/backup_restore.py), calls tarfile.extractall(temp_path) on an admi

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71282 Medium 6.5

ChirpStack's SQLite-backend device tag filtering (chirpstack/src/storage/device.rs, in both get_count() and list()) interpolates the user-supplied tag KEY

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71281 High 8.8

Hugging Face peft's LoRA-GA and CorDA initialization modules (src/peft/tuners/lora/corda.py lines ~102 and ~163, and src/peft/tuners/lora/loraga.py line ~1

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71280 High 8.5

go-shiori's DownloadBookmark() (internal/core/download.go) fetches a caller-supplied bookmark URL using a plain http.Client with no custom DialContext or d

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71279 High 8.1

Zigbee2MQTT's ExternalJSExtension.getFilePath() (lib/extension/externalJS.ts) joins a `name` parameter received via an MQTT message (topic zigbee2mqtt/brid

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71278 Critical 9.8

rust-iot-platform allows creating a "calc rule" via POST /calc-rule/create (api/src/controller/calc_rule_router.rs) containing an arbitrary `script` field.

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71277 Critical 9.1

rust-iot-platform's AuthToken request-guard implementation (api/src/main.rs) only checks whether the Authorization HTTP header is present, and never valida

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71276 High 7.1

Magistrala (formerly Mainflux)'s message-readers API reads a `format` value from the HTTP query string (readers/api/http/transport.go) with no validation a

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71275 Medium 5.4

OpenBK7231T's http_fn_ota_exec() (src/httpserver/http_fns.c) reflects the `host` query parameter directly into an HTML response via hprintf255(request, "OT

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71274 High 8.5

OpenBK7231T's CHANNEL_SetLabel() (src/cmnds/cmd_channels.c) stores channel labels received via the MQTT SetChannelLabel command using strdup() with no HTML

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71273 Medium 6.5

OpenBK7231T's /cfg_wifi_set endpoint (src/httpserver/http_fns.c) accepts configuration changes via a plain GET request with no CSRF token. If the `web_admi

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71272 High 8.5

Memos' webhook dispatch function safeDialContext() (internal/webhook/webhook.go) resolves the target hostname via net.DefaultResolver.LookupHost() and vali

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71271 High 8.5

Memos' webhook URL validation, isReservedIP() (internal/webhook/validate.go), checks a candidate IP against a reservedCIDRs list that omits 0.0.0.0/8 and n

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71270 High 8.6

Stirling-PDF's POST /api/v1/convert/url/pdf endpoint (ConvertWebsiteToPDF.java) was not updated with the CustomHtmlSanitizer/SsrfProtectionService SSRF pro

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71269 High 7.2

Node-RED's local-filesystem library storage module (getLibraryEntry() and saveLibraryEntry() in packages/node_modules/@node-red/runtime/lib/storage/localfi

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71268 Critical 9.9

OpenPLC Runtime v3's compile_program() function (webserver/openplc.py) parses `(*FILE:path content*)` directives from uploaded Structured Text (.st) progra

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71267 Critical 9.8

microtar's mtar_write_file_header() and mtar_write_dir_header() functions (src/microtar.c) copy a caller-supplied entry name into the 100-byte `name` field

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71266 High 7.8

tinyobjloader-c's tinyobj_parse_and_index_mtl_file() (tinyobj_loader_c.h) reads each line of a .mtl material file into a fixed 4096-byte stack buffer `line

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71265 High 7.5

Domoticz's MochadTCP::MatchLine() handler for MOCHAD_RFSEC messages (hardware/MochadTCP.cpp) copies network-received data from the up-to-1028-byte m_mochad

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71264 High 8.2

WLED's GET /json/cfg endpoint (registered in wled00/wled_server.cpp) calls serveJson() with no settings-PIN check, unlike the /edit endpoint which explicit

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71263 Critical 9.1

The LINUXTCP port of FreeModbus contains an off-by-one bounds check in xMBPortTCPPool() (demo/LINUXTCP/port/porttcp.c). The check `if (usTCPFrameBytesLeft

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71262 Critical 9.8

IoTSharp BlobStorageController.cs lacks the [Authorize] attribute applied to every other controller in the application (DevicesController, CustomersControl

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71261 High 7.8

dr_libs dr_wav.h (all versions through current master) contains an integer overflow in W64 CUE chunk metadata parsing. In drwav__metadata_process_chunk(),

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71260 Medium 6.5

ESPHome through 2026.7.0-dev discloses plaintext passwords via its web_server component. In WebServer::text_json_() (esphome/components/web_server/web_serv

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71259 High 8.6

ESPHome through 2026.7.0-dev contains an operator-precedence bug in the cv.url() validator in esphome/config_validation.py: `if parsed.scheme and parsed.ne

05 Aug 2026, 12:26 UTC View advisory →
CVE-2026-71256 Critical 9.8

nanoMODBUS through v1.23.0 contains an out-of-bounds stack read leading to a wild-pointer write in nmbs_read_device_identification_basic() / recv_read_devi

05 Aug 2026, 11:44 UTC View advisory →
CVE-2026-71255 High 8.6

nanoMODBUS through v1.23.0 contains an out-of-bounds write in the Modbus client-side recv_read_device_identification_res() function (FC 0x2B/MEI 0x0E, Read

05 Aug 2026, 11:44 UTC View advisory →
CVE-2026-71254 Critical 9.8

nanoMODBUS through v1.23.0 contains an out-of-bounds write in the Modbus server-side handle_read_file_record() function (FC 0x14, Read File Record) in nano

05 Aug 2026, 11:44 UTC View advisory →
CVE-2026-71252 High 8.2

toner-management's admin state-changing handlers (add.php, edit.php, delete.php under admin/toners, admin/toner-brands, admin/printers, and related admin s

05 Aug 2026, 10:57 UTC View advisory →
CVE-2026-71251 Medium 6.5

Akaunting's shared download route (app/Http/Controllers/Common/Uploads.php::download(), reachable at uploads/{id}/download behind only generic auth middlew

05 Aug 2026, 10:57 UTC View advisory →
CVE-2026-71250 Medium 4.3

Firefly III's webhook URL validator (IsValidWebhookUrl.php) filters most private/reserved IPv4 ranges but contains an explicit early-return that allows any

05 Aug 2026, 10:57 UTC View advisory →
CVE-2026-71249 Medium 6.1

299Ko's public contact form (plugin/contact/controllers/ContactController.php, home()) sets raw POST field values (name, firstname, email, message) into th

05 Aug 2026, 10:57 UTC View advisory →
CVE-2026-71248 Critical 9.8

Inventory-Management-System-PHP's login.php constructs its authentication query via direct string concatenation of raw POST parameters: $sql = "select * fr

05 Aug 2026, 10:57 UTC View advisory →
CVE-2026-71247 Medium 6.5

Documenso's sign-field-with-token.ts, used by the live document-signing UI, allows a recipient with the ASSISTANT role to fetch and complete fields belongi

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71246 Medium 4.3

Pixelfed's SearchController (behind the auth middleware) accepts a URL via its remote-search parameters and fetches it server-side through ActivityPubFetch

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71245 High 7.1

Mautic's getLeadIdsByFieldValueAction (LeadBundle/Controller/AjaxController.php) reads a field parameter from the request, sanitizes it only with InputHelp

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71244 Medium 6.5

Paperless-ngx's MailAccountViewSet.test() action, when called with an existing account's ID and a masked password field, reuses the stored password, accoun

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71243 High 8.8

The backmeup npm package assembles shell command strings by directly concatenating its option values (name, source, destination, filter) - e.g. cmd = "mkdi

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71242 High 8.2

Crater's NotePolicy checks only a blanket Bouncer ability (manage-all-notes / view-all-notes) with no company-ownership comparison, unlike InvoicePolicy an

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71241 High 7.5

Book-Management-System's Flask API endpoints /student, /record, /books, /find_stu_book, and /find_not_return_book are missing the @login_required decorator

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71240 Medium 4.3

DjangoCRM's toggle_default_sorting view is the only route in common/urls.py that is not wrapped in login_required or staff_member_required, and it redirect

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71239 High 8.1

DjangoCRM's massmail module renders user-controlled EmlMessage fields (subject, content) through Django's Template() constructor with no sanitization, in a

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71238 Critical 9.1

DjangoCRM ships with its Django SECRET_KEY hardcoded directly in the committed webcrm/settings.py rather than read from an environment variable. Since this

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71237 Critical 9.8

Miantang/IoT-PHP's index.php implements a POST /userlogin route that reads the password directly from $_POST['pwd'] with no sanitization and concatenates i

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71236 High 8.7

Grocy's API request-body parser (controllers/Api/BaseApiController.php, GetParsedAndFilteredRequestBody) purifies incoming field values with HTMLPurifier,

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71235 High 8.8

Magistrala's Rules Engine allows authenticated users to create rules with embedded Go or Lua scripts executed server-side when IoT messages arrive. The Go

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71234 High 7.5

Documize Community's attachment download route (domain/attachment/endpoint.go, Download function, registered via AddPublic with no auth middleware) accepts

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71233 High 8.7

InvoiceNinja v5-stable renders an invoice or quote's "terms" field in the client portal using Laravel Blade's raw output directive {!! $entity->terms !!} (

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71232 High 7.2

MacCMS10's admin template editor (application/admin/controller/Template.php) blocks dangerous PHP functions in template content via a blacklist regex, but

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71231 Critical 9.8

IOTSmartHome's gui/login.php checkCookie() function builds an authentication query as SELECT * FROM users WHERE ID='' after base64-decoding the client-supp

05 Aug 2026, 10:56 UTC View advisory →
CVE-2026-71227 Medium 5.1

A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AIO-enab

05 Aug 2026, 12:42 UTC View advisory →
CVE-2026-71226 High 7.3

Memory Corruption via Uncanceled AIO Requests on Error: libkcapi's one-shot AIO path can return an error before all submitted IOCBs are drained, allowing l

05 Aug 2026, 12:37 UTC View advisory →
CVE-2026-71225 Medium 6.5

A flaw was found in libkcapi. When performing one-shot symmetric cipher operations on large inputs (over 64 KiB) in stateful modes such as Counter (CTR) or

05 Aug 2026, 12:16 UTC View advisory →
CVE-2026-71201 Medium 5

In OpenStack Ironic through 38.0.0, a project reader that makes a crafted request to Ironic can return Portgroups assigned to Nodes owned or leased by anot

05 Aug 2026, 06:19 UTC View advisory →
CVE-2026-71192 Medium 6

In OpenStack Swift through 2.38.0, the S3API middleware does not sanitize Swift-native control headers (X-Copy-From, X-Copy-From-Account) from S3 API reque

05 Aug 2026, 05:05 UTC View advisory →
CVE-2026-71191 Medium 6

In OpenStack Swift through 2.38.0, S3API middleware does not enforce that semantic x-amz-* headers are covered by the SigV4 signature on presigned URL requ

05 Aug 2026, 05:01 UTC View advisory →
CVE-2026-71190 High 8.7

In OpenStack Swift through 2.38.0, the proxy server Accept header parser contains a regular expression vulnerable to catastrophic backtracking (ReDoS). The

05 Aug 2026, 04:54 UTC View advisory →
CVE-2026-70646 High 7.5

aiosend is a synchronous and asynchronous Crypto Pay API client. Pror to version 3.0.7, `WebhookHandler.feed_update()` deserializes the entire request body

06 Aug 2026, 14:38 UTC View advisory →
CVE-2026-70640 High 7.3

llama.cpp builds b1886 through b7445 contain a race condition use-after-free vulnerability in the LLaMA-Android JNI wrapper where bench_1model() and free_1

06 Aug 2026, 15:38 UTC View advisory →
CVE-2026-70639 Medium 6.8

llama.cpp builds b1886 through b7445 contain a null pointer dereference vulnerability in the LLaMA-Android JNI wrapper where the bench_1model() function fa

06 Aug 2026, 15:37 UTC View advisory →
CVE-2026-70638 High 8.5

llama.cpp builds b1886 through b7445 contain an integer overflow vulnerability in the LLaMA-Android JNI wrapper where the new_1batch() function multiplies

06 Aug 2026, 15:35 UTC View advisory →
CVE-2026-70637 High 8.2

LightFTP through 2.4 contains multiple data race vulnerabilities in ftpserv.c that allow anonymous attackers to cause undefined behavior by issuing LIST fo

06 Aug 2026, 14:15 UTC View advisory →
CVE-2026-70636 High 8.7

Flowise through 3.1.4 contains an authentication bypass vulnerability that allows unauthenticated attackers to access the OAuth2 credential refresh endpoin

06 Aug 2026, 21:31 UTC View advisory →
CVE-2026-70635 High 7.1

TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-of-bounds read vulnerability that allows authenticated attackers to cause query-result

06 Aug 2026, 16:54 UTC View advisory →
CVE-2026-70634 High 7.2

TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-of-bounds read in the Dictionary compression reverse row iterator (tsl/src/compression

06 Aug 2026, 16:53 UTC View advisory →
CVE-2026-70633 High 7.1

TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-of-bounds read vulnerability in the Gorilla compression reverse row iterator that allo

06 Aug 2026, 16:51 UTC View advisory →
CVE-2026-70632 High 8.5

FFmpeg versions from 4.4 up to, but not including, 9.0 contain an out-of-bounds heap write vulnerability in the native GoPro CineForm HD (CFHD) decoder tha

06 Aug 2026, 21:26 UTC View advisory →
CVE-2026-70631 Medium 6.8

FFmpeg versions from 0.5 up to, but not including, 9.0 contain an uninitialized heap memory disclosure vulnerability in the native TIFF decoder in libavcod

06 Aug 2026, 21:25 UTC View advisory →
CVE-2026-70630 Medium 6.8

FFmpeg versions from 3.0 up to, but not including, 9.0 contain an uninitialized heap memory read vulnerability in the native Screenpresso decoder (libavcod

06 Aug 2026, 21:25 UTC View advisory →
CVE-2026-70629 Medium 6.8

FFmpeg versions from 3.0 up to, but not including, 9.0 contain an uninitialized heap memory read vulnerability in the native RSCC decoder (libavcodec/rscc.

06 Aug 2026, 21:25 UTC View advisory →
CVE-2026-70628 High 8.5

FFmpeg versions from 0.5 up to, but not including, 9.0 contain a signed integer overflow vulnerability in the DVB subtitle parser in libavcodec/dvbsub_pars

06 Aug 2026, 21:24 UTC View advisory →
CVE-2026-70620 Medium 6.1

Odysseus before commit 87babb5 contains a server-side request forgery vulnerability that allows admin-privileged attackers to direct the server to probe in

04 Aug 2026, 21:16 UTC View advisory →
CVE-2026-70619 High 8.7

Odysseus before commit bf325f6 contains a missing authorization vulnerability that allows authenticated non-admin users to manage server-wide embedding bac

04 Aug 2026, 21:21 UTC View advisory →
CVE-2026-70618 Medium 5.3

Spacebar Server before commit 51da17c contains a missing authorization vulnerability that allows any authenticated user to enumerate complete guild members

05 Aug 2026, 19:57 UTC View advisory →
CVE-2026-70617 High 8.6

Spacebar Server before commit dcfd910 contains a missing authorization vulnerability that allows any authenticated attacker to add themselves to arbitrary

05 Aug 2026, 19:53 UTC View advisory →
CVE-2026-70616 High 7.1

boringproxy through 0.10.0 contains a resource exhaustion vulnerability that allows any authenticated user to permanently exhaust server file descriptors,

05 Aug 2026, 19:37 UTC View advisory →
CVE-2026-70615 High 8.5

boringproxy through 0.10.0 contains a newline injection vulnerability that allows authenticated low-privileged users with tunnel-creation permission to inj

05 Aug 2026, 19:34 UTC View advisory →
CVE-2026-70612 Medium 5.4

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8, 40.9.0, 41.2.1, and 42.0.0-beta.3,

05 Aug 2026, 17:56 UTC View advisory →
CVE-2026-70611 Medium 6.9

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.9, 40.9.2, 41.2.1, and 42.0.0-beta.3,

05 Aug 2026, 17:49 UTC View advisory →
CVE-2026-70610 Medium 5.4

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.9, 40.9.2, 41.2.2, and 42.0.0-beta.4,

05 Aug 2026, 17:41 UTC View advisory →
CVE-2026-70609 Medium 5.7

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.7, 40.9.0, 41.2.0, and 42.0.0-beta.1,

05 Aug 2026, 17:32 UTC View advisory →
CVE-2026-70608 High 7.2

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.10, 41.10.3, and 42.0.1, a sandboxed

05 Aug 2026, 17:27 UTC View advisory →
CVE-2026-70607 Medium 5.3

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8, 40.9.0, 41.2.1, and 42.0.0-beta.3,

05 Aug 2026, 16:24 UTC View advisory →
CVE-2026-70606 Medium 5.9

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 40.10.6, 41.9.1, 42.5.1, and 43.0.0, when

05 Aug 2026, 16:07 UTC View advisory →
CVE-2026-70605 Medium 5.9

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8, 40.9.0, 41.2.1, and 42.0.0-beta.3,

05 Aug 2026, 16:04 UTC View advisory →
CVE-2026-70604 High 7.4

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.10, 40.9.3, 41.4.0, and 42.0.0, a cus

05 Aug 2026, 15:59 UTC View advisory →
CVE-2026-70603 Medium 6

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.6, 40.9.0, 41.1.1, and 42.0.0-beta.1,

05 Aug 2026, 15:56 UTC View advisory →
CVE-2026-70602 Medium 6.6

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8, 40.9.0, 41.2.1, and 42.0.0-beta.3,

05 Aug 2026, 15:54 UTC View advisory →
CVE-2026-70601 High 7.5

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.9, 40.9.2, 41.2.2, and 42.0.0-beta.5,

05 Aug 2026, 15:45 UTC View advisory →
CVE-2026-70600 Low 3.1

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8, 40.9.0, 41.2.1, and 42.0.0-beta.3,

05 Aug 2026, 15:40 UTC View advisory →
CVE-2026-70599 Medium 5.9

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.7, 40.9.0, 41.2.0, and 42.0.0-beta.1,

05 Aug 2026, 15:36 UTC View advisory →
CVE-2026-70598 Low 3.9

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.10, 40.9.0, 41.2.1, and 42.0.0-beta.3

05 Aug 2026, 15:27 UTC View advisory →
CVE-2026-70597 Medium 6.3

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8, 40.9.0, 41.2.1, and 42.0.0-beta.3,

05 Aug 2026, 15:21 UTC View advisory →
CVE-2026-70596 Medium 4.3

Ghost is a Node.js content management system. From 4.9.0 until 6.54.1, an input validation issue allowed any staff user to create a post with content in fe

05 Aug 2026, 14:40 UTC View advisory →
CVE-2026-70595 Medium 4

Ghost is a Node.js content management system. From 6.26.0 until 6.54.1, a validation issue allowed some functionality, such as Webmentions, to be abused by

05 Aug 2026, 14:37 UTC View advisory →
CVE-2026-70594 Medium 6.7

Ghost is a Node.js content management system. From 2.2.0 until 6.54.1, Ghost Admin did not invalidate existing sessions on login which could have allowed f

04 Aug 2026, 21:53 UTC View advisory →
CVE-2026-70593 Medium 6.6

Ghost is a Node.js content management system. From 0.10.0 until 6.54.1, a vulnerability in custom themes allowed a staff user to write files outside of the

04 Aug 2026, 21:49 UTC View advisory →
CVE-2026-70592 Medium 5.5

Ghost is a Node.js content management system. From 1.20.1 until 6.54.1, an Administrator-level user could remotely overwrite certain files on the filesyste

04 Aug 2026, 21:41 UTC View advisory →
CVE-2026-70591 Medium 4.1

Ghost is a Node.js content management system. From 0.10.0 until 6.54.1, a Server-Side Request Forgery in Ghost Admin image fetching allowed any staff-level

04 Aug 2026, 21:37 UTC View advisory →
CVE-2026-70590 Medium 4.8

Ghost is a Node.js content management system. Prior to 6.54.1, any staff-level user was able to leak the hashed passwords of other staff users through the

04 Aug 2026, 21:27 UTC View advisory →
CVE-2026-70589 Medium 4.8

Ghost is a Node.js content management system. From 4.22.0 until 6.54.1, a missing validation check allowed users to redeem subscription offers that were no

04 Aug 2026, 21:11 UTC View advisory →
CVE-2026-70588 Medium 5

Ghost is a Node.js content management system. From 5.26.0 until 6.54.1, the Universal Import feature in Ghost Admin failed to properly sanitize imported co

04 Aug 2026, 21:03 UTC View advisory →
CVE-2026-70559 High 8.7

Dinky's SysConfigController.getAll() handler for GET /api/sysConfig/getAll carries a method-level @SaIgnore annotation that short-circuits the class-level

06 Aug 2026, 19:36 UTC View advisory →
CVE-2026-70558 Critical 9.3

Dinky's POST /download/uploadFromRsByLocal handler passes the caller-supplied path parameter directly to new File(path) and file.transferTo(dest) with no p

06 Aug 2026, 19:30 UTC View advisory →
CVE-2026-70557 High 7.1

diboot-core's POST /common/load-related-data endpoint resolves caller-supplied field names to any @TableField column of any entity and returns those values

06 Aug 2026, 19:16 UTC View advisory →
CVE-2026-70556 Medium 5.1

Hubzilla 11.2.1 contains a cross-site request forgery vulnerability in the OAuth2 /authorize endpoint handled by Zotlabs\Module\Authorize::post() that allo

06 Aug 2026, 12:10 UTC View advisory →
CVE-2026-70554 Critical 9.3

MaxSite CMS contains a PHP object injection vulnerability that allows unauthenticated attackers to execute arbitrary code by passing attacker-controlled se

04 Aug 2026, 20:11 UTC View advisory →
CVE-2026-70553 Critical 9.3

MaxSite CMS contains a remote code execution vulnerability that allows unauthenticated attackers to inject arbitrary PHP code into the application configur

04 Aug 2026, 19:37 UTC View advisory →
CVE-2026-70552 Critical 9.3

MaxSite CMS 109.5 and earlier contains an authentication bypass vulnerability in the AJAX dispatcher that allows unauthenticated attackers to access admin-

04 Aug 2026, 19:28 UTC View advisory →
CVE-2026-70494 High 8.1

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.10.0 until 0.11.0, the DELETE /api/v1/folders/{id} handler in

04 Aug 2026, 20:58 UTC View advisory →
CVE-2026-70493 Medium 6.5

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.0, the built-in knowledge search path in backen

04 Aug 2026, 20:56 UTC View advisory →
CVE-2026-70492 High 8.7

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.10.0 until 0.11.0, src/lib/components/chat/Messages/Markdown/K

04 Aug 2026, 20:53 UTC View advisory →
CVE-2026-70491 Medium 6.5

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. In 0.10.2 and earlier, the GET /api/v1/tools/, GET /api/v1/tools/list

04 Aug 2026, 20:51 UTC View advisory →
CVE-2026-70490 Medium 6.3

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.8 until 0.11.0, the terminal WebSocket route in backend/open

04 Aug 2026, 20:44 UTC View advisory →
CVE-2026-70489 Medium 6.5

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 until 0.11.0, automation recurrence parsing in backend/ope

04 Aug 2026, 20:42 UTC View advisory →
CVE-2026-70488 Medium 4.3

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.0, the sync cleanup endpoint authorized write a

04 Aug 2026, 20:35 UTC View advisory →
CVE-2026-70487 Medium 5.3

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.8 until 0.11.0, inline direct model metadata accepted client

04 Aug 2026, 20:16 UTC View advisory →
CVE-2026-70486 High 8.2

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 until 0.11.0, the terminal file-preview serveUrl iframe br

04 Aug 2026, 20:01 UTC View advisory →
CVE-2026-70485 High 7.1

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 until 0.11.0, Open WebUI checked whether a user-supplied U

04 Aug 2026, 19:59 UTC View advisory →
CVE-2026-70484 Medium 4.3

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.7.0 until 0.11.0, the legacy chat-completions features block t

04 Aug 2026, 19:56 UTC View advisory →
CVE-2026-70483 Low 3.1

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.0, DELETE /api/v1/chats/{id} cancelled a chat's

04 Aug 2026, 19:54 UTC View advisory →
CVE-2026-70482 High 8.1

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.0 until 0.11.0, when ENABLE_OAUTH_TOKEN_EXCHANGE=True, /oaut

04 Aug 2026, 19:51 UTC View advisory →
CVE-2026-70481 Medium 5.4

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.5.0 until 0.11.0, the standard channel message update and dele

04 Aug 2026, 19:45 UTC View advisory →
CVE-2026-70480 Medium 4.1

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.6.34 until 0.11.0, Open WebUI renders vega and vega-lite fence

04 Aug 2026, 19:43 UTC View advisory →
CVE-2026-70479 High 7.7

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.0, with WEB_LOADER_ENGINE=playwright, the Playw

04 Aug 2026, 19:40 UTC View advisory →
CVE-2026-70478 Critical 9.2

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the POST /api/v1/oauth2-credential/refresh/:creden

04 Aug 2026, 19:37 UTC View advisory →
CVE-2026-70477 Critical 9.5

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, a prompt injection sent to a chatflow using a CSV

04 Aug 2026, 19:29 UTC View advisory →
CVE-2026-70476 High 8.3

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, several organization billing endpoints in packages

04 Aug 2026, 19:23 UTC View advisory →
CVE-2026-70475 High 7.1

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the PUT /api/v1/executions/:id endpoint in package

04 Aug 2026, 19:18 UTC View advisory →
CVE-2026-70474 High 7.6

Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flowise has three OAuth2 credential end

04 Aug 2026, 18:01 UTC View advisory →
CVE-2026-70473 High 8.3

Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flowise GET /api/v1/upsert-history retu

04 Aug 2026, 17:56 UTC View advisory →
CVE-2026-70472 High 7.1

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise openai-assistants-vector-store endpoints a

04 Aug 2026, 17:46 UTC View advisory →
CVE-2026-70471 High 7.1

Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flowise injects $vars into the code exe

04 Aug 2026, 17:43 UTC View advisory →
CVE-2026-70470 Critical 9.5

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise validatePythonCodeForDataFrame in packages

04 Aug 2026, 17:30 UTC View advisory →
CVE-2026-70448 High 7.1

Jenkins Ivy Report Plugin 1.2 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks when processing Ivy report files.

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70447 Medium 4.3

Missing permission checks in Jenkins AWS CodeBuild Plugin 0.59 and earlier allow attackers with Overall/Read permission to enumerate credentials IDs of cre

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70446 Medium 4.3

Missing permission checks in Jenkins CodeSonar Plugin 3.6.0 and earlier allow attackers with Overall/Read permission to enumerate credentials IDs of creden

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70445 Unscored

Missing permission checks in Jenkins Sauce OnDemand Plugin 2.2.0 and earlier allow attackers with Overall/Read permission to enumerate credentials IDs of c

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70444 Medium 4.3

A missing permission check in Jenkins Violation Comments to GitLab Plugin 2.62.0 and earlier allows attackers with Overall/Read permission to enumerate cre

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70443 Medium 4.3

Jenkins Horreum Plugin 0.16.162.v33b_4a_a_b_5f828 and earlier does not set the appropriate context for credentials lookup, allowing attackers with Item/Con

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70442 Medium 4.3

Jenkins Google Chat Notification Plugin 166.ve6b_de280f2e8 and earlier does not set the appropriate context for credentials lookup, allowing attackers with

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70441 Medium 5.4

Jenkins Summary Display Plugin 1.15 and earlier does not escape the job name in a JavaScript context in build report pages, resulting in a stored cross-sit

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70440 Medium 5.4

Jenkins Qualys Container Scanning Connector Plugin 1.8.0.5 and earlier does not escape user-controlled field values in a JavaScript context, resulting in a

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70439 Medium 6.5

Jenkins XML Job to Job DSL Plugin 0.1.13 and earlier does not perform permission checks, allowing attackers lacking appropriate permissions to invoke the c

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70438 Unscored

A missing permission check in Jenkins Parameterized Remote Trigger Plugin 3.2.2 and earlier allows attackers with Overall/Read permission to enumerate cred

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70437 Unscored

Jenkins Webhook Secret Credentials Provider Plugin 16.v0cfa_f0215cf5 and earlier does not use a constant-time comparison function when checking whether the

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70436 Unscored

Jenkins External Workspace Manager Plugin 1.4.1 and earlier does not perform a permission check (1.4.0 and earlier) or performs an improper permission chec

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70435 Unscored

A missing permission check in Jenkins SCM-Manager Plugin 1.11.1 and earlier allows attackers with Overall/Read permission to connect to an attacker-specifi

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70434 Unscored

A cross-site request forgery (CSRF) vulnerability in Jenkins SCM-Manager Plugin 1.11.1 and earlier allows attackers to connect to an attacker-specified URL

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70433 Unscored

Missing permission checks in Jenkins HCL AppScan Plugin 1.8.3 and earlier allow attackers with Overall/Read permission to enumerate credentials IDs of cred

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70432 High 8.8

A cross-site request forgery (CSRF) vulnerability in Jenkins Multijob Plugin 669.v9d96a_d9c71b_0 and earlier allows attackers to execute arbitrary code in

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70431 High 8.8

Jenkins Multijob Plugin 669.v9d96a_d9c71b_0 and earlier provides Groovy scripting features that do not integrate with Script Security Plugin, allowing atta

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70430 Unscored

Jenkins 2.575 and earlier, LTS 2.568.1 and earlier does not restrict the types of objects that can be instantiated as part of the project naming strategy c

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70429 Unscored

Jenkins 2.575 and earlier, LTS 2.568.1 and earlier handles case-insensitivity in user names and group names inconsistently, allowing attackers able to crea

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70428 Medium 4.3

Jenkins 2.575 and earlier, LTS 2.568.1 and earlier improperly identifies file paths attempting path traversal in file parameter names, allowing attackers w

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70427 Medium 4.3

Jenkins 2.575 and earlier, LTS 2.568.1 and earlier does not safely handle symbolic links with effectively empty names during the extraction of `.tar` and `

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70426 Critical 9

In Remoting 3384.v60d89463d9e0 and earlier, except 3355.3357.v931d3c992987, included in Jenkins 2.575 and earlier, LTS 2.568.1 and earlier, the JEP-200 cla

05 Aug 2026, 17:40 UTC View advisory →
CVE-2026-70375 Unscored

HashBrown CMS through 1.4.6 contains an OS Command Injection vulnerability (CWE-78) in the Git deployer component. GitDeployer.pullRepo() in src/Server/Ent

05 Aug 2026, 05:46 UTC View advisory →
CVE-2026-70374 Unscored

HashBrown CMS through 1.4.6 contains an OS Command Injection vulnerability (CWE-78) in the media upload thumbnail generation routine. Media.generateThumbna

05 Aug 2026, 05:46 UTC View advisory →
CVE-2026-70373 Medium 6.5

Koha's reports/issues_stats.pl (the circulation statistics report) builds its calculation query in sub calculate by concatenating several user-controlled r

04 Aug 2026, 13:00 UTC View advisory →
CVE-2026-70372 Medium 6.5

Koha's reports/bor_issues_top.pl builds dynamic SQL in sub calculate by concatenating several user-controlled request parameters directly into the query st

04 Aug 2026, 13:00 UTC View advisory →
CVE-2026-70371 Medium 6.5

Koha's reports/issues_avg_stats.pl builds dynamic SQL in sub calculate by concatenating several user-controlled request parameters directly into the query

04 Aug 2026, 13:00 UTC View advisory →
CVE-2026-70370 Medium 6.5

Koha's reports/catalogue_stats.pl builds dynamic SQL in sub calculate by interpolating the user-controlled Line and Column request parameters directly into

04 Aug 2026, 13:00 UTC View advisory →
CVE-2026-70369 Medium 6.5

Koha's reports/acquisitions_stats.pl builds its per-cell statistics query in sub calculate by interpolating the user-controlled Filter request parameters d

04 Aug 2026, 12:59 UTC View advisory →
CVE-2026-70368 Medium 6.5

A stack-based out-of-bounds read vulnerability exists in the "s_vlog" function of stunnel, when handling oversized log messages via "vsnprintf". A remote a

04 Aug 2026, 13:52 UTC View advisory →
CVE-2026-70367 Medium 5.4

A Server-Side Request Forgery (SSRF) bypass vulnerability exists in “stunnel” 5.79 and lower when configured in SOCKS proxy mode. This flaw allows a client

04 Aug 2026, 13:52 UTC View advisory →
CVE-2026-70332 Critical 9.6

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.

06 Aug 2026, 23:22 UTC View advisory →
CVE-2026-69704 High 7

Atals-Livre contains a SQL injection vulnerability that allows attackers to manipulate database queries by passing unsanitized input through a GET paramete

04 Aug 2026, 18:47 UTC View advisory →
CVE-2026-69703 Critical 9.3

Atlas-Livre contains an improper access control vulnerability in the admin controllers under Espace_admin/controleur/ that allows unauthenticated attackers

04 Aug 2026, 18:41 UTC View advisory →
CVE-2026-69702 High 7.1

SnailJob 1.7.0 contains a denial of service vulnerability in the FuryUtil.deserialize helper that allows authenticated attackers to crash the server by sup

04 Aug 2026, 17:45 UTC View advisory →
CVE-2026-69264 Critical 9.4

Prior to 3.1.3, Flowise CSVAgent interpolates an attacker-controlled segment of the csvFile data URI directly into a Python source-code template that is th

04 Aug 2026, 17:22 UTC View advisory →
CVE-2026-69263 High 8.7

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the mitigation for CVE-2025-8943 blocked -y and --

04 Aug 2026, 16:54 UTC View advisory →
CVE-2026-69262 High 7.1

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, `DELETE /api/v1/chatflows/:id` authorized requests

04 Aug 2026, 16:50 UTC View advisory →
CVE-2026-69259 Critical 9.4

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the SQLite Record Manager node in packages/compone

04 Aug 2026, 16:05 UTC View advisory →
CVE-2026-69258 High 8.8

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the unauthenticated POST /api/v1/prediction/:id en

04 Aug 2026, 15:56 UTC View advisory →
CVE-2026-69257 High 7.6

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise's HTTP security module httpSecurity.ts did

04 Aug 2026, 15:51 UTC View advisory →
CVE-2026-69256 Critical 9.4

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the CSVAgent node allowed users to provide Python

04 Aug 2026, 15:45 UTC View advisory →
CVE-2026-69255 Critical 9.2

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the CSVAgent in packages/components/nodes/agents/C

04 Aug 2026, 15:39 UTC View advisory →
CVE-2026-69254 Critical 9.4

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, executeJavaScriptCode() accepted caller-provided n

04 Aug 2026, 15:28 UTC View advisory →
CVE-2026-69253 Critical 9

Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to version 3.1.3, several custom-tool components

04 Aug 2026, 15:13 UTC View advisory →
CVE-2026-69252 High 7.2

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the /api/v1/files route was protected only by the

04 Aug 2026, 14:53 UTC View advisory →
CVE-2026-69251 Critical 9

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise record manager and agent memory nodes allo

04 Aug 2026, 14:27 UTC View advisory →
CVE-2026-69250 High 8.5

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the OAuth2 token refresh endpoint POST /api/v1/oau

04 Aug 2026, 14:20 UTC View advisory →
CVE-2026-69249 High 8.7

python-cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 49.0.0, when resolving invalid cert

03 Aug 2026, 21:26 UTC View advisory →
CVE-2026-69248 Medium 6.9

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 49.0.0, if an intermediate constrained CA

03 Aug 2026, 21:21 UTC View advisory →
CVE-2026-69247 High 8.2

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 44.0.0 until 50.0.0, pkcs7_decrypt_der, pkcs7_

03 Aug 2026, 21:16 UTC View advisory →
CVE-2026-69246 High 7.2

Guzzle is an extensible PHP HTTP client. Prior to 7.15.2 and 8.0.1, Guzzle gives a transport the request URI as text and supplies the Host header separatel

03 Aug 2026, 21:07 UTC View advisory →
CVE-2026-69245 Medium 6.5

Guzzle is an extensible PHP HTTP client. Prior to 7.15.2 and 8.0.1, SetCookie::matchesDomain() gives every subdomain of a cookie Domain that cookie unless

03 Aug 2026, 21:05 UTC View advisory →
CVE-2026-69244 High 7.1

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.3, an out-of-bounds heap read could occur in the C response p

03 Aug 2026, 20:50 UTC View advisory →
CVE-2026-69243 Medium 6.3

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.2, the HTTP parsers were vulnerable to a request smuggling at

03 Aug 2026, 20:45 UTC View advisory →
CVE-2026-69240 Critical 9.8

Sequelize is a Node.js ORM tool. Prior to 6.37.4, SQL injection is possible with strings only if dialect is set to oracle. The escape function defined in s

03 Aug 2026, 20:28 UTC View advisory →
CVE-2026-69198 Medium 6.9

ip-address is a library for parsing and manipulating IPv4 and IPv6 addresses in JavaScript. From 10.1.1 until 10.2.2, every special-use classification meth

03 Aug 2026, 19:59 UTC View advisory →
CVE-2026-69192 High 7.7

ip-address is a library for parsing and manipulating IPv4 and IPv6 addresses in JavaScript. Prior to 10.3.1, Address4 accepts an octet written with a leadi

03 Aug 2026, 19:56 UTC View advisory →
CVE-2026-69185 High 7.5

Socket.IO enables bidirectional and low-latency communication for every platform. Prior to 4.2.7, 3.4.5, and 3.3.6, a specially crafted Socket.IO packet ca

03 Aug 2026, 19:09 UTC View advisory →
CVE-2026-69153 Medium 6.3

PostCSS takes a CSS file and provides an API to analyze and modify its rules by transforming the rules into an Abstract Syntax Tree. Prior to 8.5.19, if fr

03 Aug 2026, 16:56 UTC View advisory →
CVE-2026-69152 High 7.5

The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.18, 2.1.4, 3.0.6, and 5.0.9, expand() does not

03 Aug 2026, 16:33 UTC View advisory →
CVE-2026-69151 High 7.6

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.27, 21.2.

03 Aug 2026, 16:23 UTC View advisory →
CVE-2026-69149 High 8.6

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.27, 21.2.

03 Aug 2026, 16:14 UTC View advisory →
CVE-2026-69125 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67321. Reason: This candidate is a duplicate of CVE-2026-67321. Notes: All CVE users sh

07 Aug 2026 View advisory →
CVE-2026-69124 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67320. Reason: This candidate is a duplicate of CVE-2026-67320. Notes: All CVE users sh

07 Aug 2026 View advisory →
CVE-2026-69123 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67319. Reason: This candidate is a duplicate of CVE-2026-67319. Notes: All CVE users sh

07 Aug 2026 View advisory →
CVE-2026-69111 High 8.7

Milvus through 2.6.22 and 3.0.0 contains an unauthenticated denial of service vulnerability that allows remote attackers to terminate service components by

05 Aug 2026, 19:18 UTC View advisory →
CVE-2026-69110 Critical 9.3

OpenCode Studio before 2.4.4 contains a missing authentication vulnerability that allows unauthenticated remote attackers to read arbitrary files within th

04 Aug 2026, 15:30 UTC View advisory →
CVE-2026-69100 High 8.7

LAMP Rapid Development Platform through 5.6.2, fixed in commit 84b0c27, contains a remote code execution vulnerability in GlueFactory that executes unsandb

04 Aug 2026, 15:20 UTC View advisory →
CVE-2026-69098 Critical 9.3

kotaemon through 0.12.0 contains an insecure deserialization vulnerability in the check_connection endpoint that allows unauthenticated attackers to instan

04 Aug 2026, 15:15 UTC View advisory →
CVE-2026-69097 High 7.3

GitPython before 3.1.53 fails to properly escape section names in git config files, allowing attackers to inject arbitrary configuration directives through

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69096 High 8.7

OpenWrt luci-app-dockerman (LuCI master and openwrt-25.12 snapshots containing the ucode docker_rpc.uc RPC backend after the JS/ucode conversion) contains

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69095 High 8.7

OpenWrt luci-app-bmx7 before commit 5890760a454dad2cb00389dba2cdc5e779e0ffdd contains a path traversal vulnerability in the bmx7-info CGI script that allow

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69094 Medium 5.3

Admidio before 5.0.11 contains an insecure direct object reference vulnerability in the save_temporary mode of mylist_function.php that allows authenticate

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69093 High 7.1

Admidio before 5.0.11 does not validate the adm_csrf_token in modules/category-report/preferences.php, which performs persistent Category Report configurat

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69092 Medium 6.9

Admidio versions before 5.0.11 contain a reflected cross-site scripting vulnerability in the SSO/SAML endpoint that echoes unencoded exception messages to

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69091 High 8.7

Admidio before 5.0.11 contains an authentication bypass vulnerability in the forum module when configured in login-only mode. The access control logic in m

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69090 Medium 6.9

Admidio before 5.0.11 fails to validate target organization membership in role handlers, allowing authenticated role administrators to delete, activate, de

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69089 High 8.7

Grav CMS 2.0.10 contains a path traversal vulnerability in ImageMedium::watermark(), which passes its unsanitized $image argument to RocketTheme\Toolbox\Re

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69088 High 8.6

Grav CMS versions 2.0.7 through 2.0.10 fail to validate fully-qualified static method calls (Class::method) in blueprint dynamic-field directives because B

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69087 High 7.1

The Grav form plugin (getgrav/grav-plugin-form) before 9.1.13 contains an open redirect vulnerability. Since v9.1.11, the redirect process action evaluates

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69086 High 8.3

SiYuan versions before v3.7.3 fail to validate the avID parameter on all code branches in attribute-view read endpoints, allowing attackers to construct tr

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69085 Critical 9.9

SiYuan before v3.7.3 contains a SQL injection vulnerability in the /api/filetree/searchDocs endpoint, where the caller-supplied keyword parameter is concat

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69084 Critical 9.9

SiYuan versions <= v3.7.2 expose the /api/search/searchEmbedBlock endpoint, which passes a client-supplied SQL statement verbatim to the main read-write si

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69083 Critical 9.9

SiYuan versions before v3.7.3 contain SQL injection vulnerabilities in the fullTextSearchAssetContent endpoint reachable by unauthenticated users and publi

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-69082 High 8.8

CTI-Transmute contained a cross-site request forgery vulnerability in the administrative user deletion functionality. The /account/delete/ endpoint accepte

03 Aug 2026, 09:43 UTC View advisory →
CVE-2026-69079 High 8.7

CTI-Transmute contains an uncontrolled resource-consumption vulnerability in the unauthenticated /activity_timeline endpoint. The endpoint accepts a user-c

03 Aug 2026, 09:22 UTC View advisory →
CVE-2026-69078 High 8.8

CTI-Transmute is affected by a server-side request forgery vulnerability in the evaluation report PDF-generation functionality. User-controlled CTI content

03 Aug 2026, 09:14 UTC View advisory →
CVE-2026-69075 Medium 6.9

FlowIntel is affected by a stored cross-site scripting vulnerability through multiple user-controlled or administrator-controlled fields. Persisted values—

03 Aug 2026, 08:46 UTC View advisory →
CVE-2026-68981 High 8.8

Apache NiFi 1.5.0 through 2.10.0 support gzip-encoded HTTP requests for the application REST API using a Jersey encoding filter. The framework enforced a c

03 Aug 2026, 19:59 UTC View advisory →
CVE-2026-68980 Low 2.3

Apache NiFi 2.0.0 through 2.10.0 support creating, reading, and deleting Assets associated with Parameter Contexts through the REST API. The framework auth

03 Aug 2026, 19:58 UTC View advisory →
CVE-2026-68979 Medium 5.9

Apache NiFI 1.10.0 through 2.10.0 provide a Parameter Context update REST API method that does not enforce authorization checking on components referencing

03 Aug 2026, 19:56 UTC View advisory →
CVE-2026-68948 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67318. Reason: This candidate is a duplicate of CVE-2026-67318. Notes: All CVE users sh

07 Aug 2026 View advisory →
CVE-2026-68947 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67317. Reason: This candidate is a duplicate of CVE-2026-67317. Notes: All CVE users sh

07 Aug 2026 View advisory →
CVE-2026-68946 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67315. Reason: This candidate is a duplicate of CVE-2026-67315. Notes: All CVE users sh

07 Aug 2026 View advisory →
CVE-2026-68945 High 8.8

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 20.3.27, 21.2.

03 Aug 2026, 15:58 UTC View advisory →
CVE-2026-68944 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67316. Reason: This candidate is a duplicate of CVE-2026-67316. Notes: All CVE users sh

07 Aug 2026 View advisory →
CVE-2026-68943 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67314. Reason: This candidate is a duplicate of CVE-2026-67314. Notes: All CVE users sh

07 Aug 2026 View advisory →
CVE-2026-68942 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67313. Reason: This candidate is a duplicate of CVE-2026-67313. Notes: All CVE users sh

07 Aug 2026 View advisory →
CVE-2026-68941 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-67312. Reason: This candidate is a duplicate of CVE-2026-67312. Notes: All CVE users sh

07 Aug 2026 View advisory →
CVE-2026-68930 Medium 6.5

Russh is a Rust SSH client & server library. Prior to 0.62.5, russh dispatches channel-scoped Handler callbacks for recipient channel IDs that were never o

03 Aug 2026, 15:34 UTC View advisory →
CVE-2026-68869 Unscored

This CVE ID was assigned in error. Upon further review, the reported issue does not represent a security vulnerability and does not require a CVE record.

04 Aug 2026 View advisory →
CVE-2026-68823 Critical 9.1

Exposed dangerous method or function in Azure Confidential Ledger allows an authorized attacker to execute code over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-68771 Critical 9.3

ComfyUI v0.23.0 contains an unsafe deserialization vulnerability in the LoadTrainingDataset node that allows unauthenticated remote attackers to execute ar

31 Jul 2026, 21:16 UTC View advisory →
CVE-2026-68770 Critical 9.3

sentence-transformers contains a security control bypass vulnerability that allows attackers to achieve arbitrary code execution by exploiting a logic flaw

31 Jul 2026, 20:56 UTC View advisory →
CVE-2026-68750 High 8.2

Inefficient Algorithmic Complexity vulnerability in the traversal engine in rrrene html_sanitize_ex allows an unauthenticated remote attacker to exhaust se

06 Aug 2026, 14:50 UTC View advisory →
CVE-2026-68749 High 8.2

Inefficient Regular Expression Complexity vulnerability in the CSS scrubber in rrrene html_sanitize_ex allows an unauthenticated remote attacker to exhaust

06 Aug 2026, 14:50 UTC View advisory →
CVE-2026-68747 Low 2.3

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in the CSS scrubber in rrrene html_sanitiz

06 Aug 2026, 14:50 UTC View advisory →
CVE-2026-68746 High 7.7

Not Failing Securely ('Failing Open') vulnerability in livebook-dev livebook allows an unauthenticated network client to obtain full access to a Livebook s

05 Aug 2026, 19:43 UTC View advisory →
CVE-2026-68744 Low 3.3

A flaw was found in SSSD. The sss_nss_protocol_fill_initgr() function in the NSS responder pre-allocates reply space for all group entries but does not shr

04 Aug 2026, 05:28 UTC View advisory →
CVE-2026-68743 Medium 5.5

A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining buffer

04 Aug 2026, 18:37 UTC View advisory →
CVE-2026-68742 Medium 5.5

A flaw was found in SSSD. The sss_nss_protocol_parse_addr() function in the NSS responder does not validate the addrlen field against the remaining packet

03 Aug 2026, 09:53 UTC View advisory →
CVE-2026-68587 Critical 9.2

SiYuan versions before v3.7.3 contain an information disclosure vulnerability in the getHeadingDeleteTransaction, getHeadingLevelTransaction, and getHeadin

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-68586 Critical 9.2

SiYuan before v3.7.3 fails to apply publish-access filters to the getBacklinkDoc and getBackmentionDoc content endpoints (/api/ref/getBacklinkDoc and /api/

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-68585 Medium 6.9

SiYuan versions before v3.7.3 contain a metadata disclosure vulnerability in the /api/block/getBlockInfo endpoint that returns document root metadata inclu

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-68584 Critical 9.2

SiYuan versions before v3.7.3 contain an authentication bypass vulnerability in publish mode where content-returning endpoints getHeadingChildrenDOM, getHe

03 Aug 2026, 13:20 UTC View advisory →
CVE-2026-68583 Medium 5.1

luci-app-adblock-fast before 1.2.4-4 contains a stored cross-site scripting vulnerability in the blocklist name field that allows lower-privileged users to

02 Aug 2026, 12:15 UTC View advisory →
CVE-2026-68582 Critical 9.3

Vikunja versions >= 0.24.0 and <= 2.3.0 contain a broken object level authorization (BOLA) vulnerability in the task-collection endpoint (GET /api/v1/proje

02 Aug 2026, 12:15 UTC View advisory →
CVE-2026-68581 High 8.6

Vikunja versions 0.22.0 through 2.3.0 fail to validate the principal type in API token management. Because user IDs and link-share IDs are independent nume

02 Aug 2026, 12:15 UTC View advisory →
CVE-2026-68580 High 7.7

FreeRDP before 3.29.0 contains integer overflow vulnerabilities in the audio input redirection channel (audin) across ALSA, sndio, WinMM, and OpenSL ES bac

02 Aug 2026, 12:15 UTC View advisory →
CVE-2026-68579 High 8.7

FreeRDP before 3.30.0 (<= 3.29.0) contains a heap-based buffer overflow in the Windows clipboard client's CliprdrStream_Read function (client/Windows/wf_cl

02 Aug 2026, 12:15 UTC View advisory →
CVE-2026-68578 High 7.7

ArcadeDB versions before 26.7.3 fail to bind the authenticated principal in the MCP HTTP transport, causing all engine permission checks to silently pass a

02 Aug 2026, 12:15 UTC View advisory →
CVE-2026-68577 Unscored

Reserved via standalone CLI outside the OSIM flaw workflow; releasing so the CVE ID can be properly reserved and linked through OSIM when the flaw is worke

01 Aug 2026 View advisory →
CVE-2026-68576 Unscored

Reserved via standalone CLI outside the OSIM flaw workflow; releasing so the CVE ID can be properly reserved and linked through OSIM when the flaw is worke

01 Aug 2026 View advisory →
CVE-2026-68575 Unscored

Reserved via standalone CLI outside the OSIM flaw workflow; releasing so the CVE ID can be properly reserved and linked through OSIM when the flaw is worke

01 Aug 2026 View advisory →
CVE-2026-68574 Unscored

Reserved via standalone CLI outside the OSIM flaw workflow; releasing so the CVE ID can be properly reserved and linked through OSIM when the flaw is worke

01 Aug 2026 View advisory →
CVE-2026-68563 Medium 5.5

A flaw was found in ansible-collection-redhat-leapp. When a remediation task is executed with elevated privileges and the `leapp_old_postgresql_data` optio

30 Jul 2026, 21:13 UTC View advisory →
CVE-2026-68562 Medium 6.2

A flaw was found in ansible-collection-redhat-leapp. An attacker with privileged write access to a managed node's Leapp report content can manipulate it. W

30 Jul 2026, 21:13 UTC View advisory →
CVE-2026-68503 Critical 9.8

LazyOwn RedTeam/APT Framework is an AI-powered C2 and red-team operations framework. Prior to 0.2.154, LazyOwn ships default C2 credentials LazyOwn and Laz

30 Jul 2026, 20:39 UTC View advisory →
CVE-2026-68502 Critical 9.8

LazyOwn RedTeam/APT Framework is an AI-powered C2 and red-team operations framework. Prior to 0.2.154, LazyOwn's lazyc2.py registers an unauthenticated Soc

30 Jul 2026, 20:38 UTC View advisory →
CVE-2026-68501 Medium 6.5

Sylius Mollie Plugin provides Mollie payment integration for Sylius applications. Prior to 2.2.8, 3.2.4, and 3.3.1, Sylius Mollie Plugin's GET /{_locale}/t

30 Jul 2026, 20:27 UTC View advisory →
CVE-2026-68500 High 7.5

Sylius Mollie Plugin provides Mollie payment integration for Sylius applications. Prior to 2.2.8, 3.2.4, and 3.3.1, Sylius Mollie Plugin's POST /{_locale}/

30 Jul 2026, 20:15 UTC View advisory →
CVE-2026-68499 Medium 6.2

re2 provides Node.js bindings for Google's RE2 regular expression engine. Prior to 1.25.2, re2's String.prototype.match implementation with a global RE2 pa

30 Jul 2026, 20:07 UTC View advisory →
CVE-2026-68494 High 8.7

The fix released in jackson-core 2.18.6 and 2.21.1 for CVE-2026-18401 (GHSA-72hv-8253-57qq, number length constraint bypass in the non-blocking parser) is

04 Aug 2026, 14:39 UTC View advisory →
CVE-2026-68481 High 7.5

In Apache CXF's DefaultEncryptingOAuthDataProvider, revoked access tokens still decrypt successfully, and TokenIntrospectionService reports active:true. Th

06 Aug 2026, 11:22 UTC View advisory →
CVE-2026-68480 Unscored

In the Linux kernel, the following vulnerability has been resolved: x86/bugs: Make Safe-RET robust against interrupt injection An attacker injecting interr

06 Aug 2026, 17:36 UTC View advisory →
CVE-2026-68080 Unscored

It was not possible to govern the rate at which the broker would respond to an echo flow, enabling an authenticated attacker to cause excessive resource us

05 Aug 2026, 05:51 UTC View advisory →
CVE-2026-68079 Critical 9.8

In Apache CXF's DefaultEncryptingCodeDataProvider, a captured authorization code can be redeemed an unlimited number of times due to a flaw in the implemen

06 Aug 2026, 11:22 UTC View advisory →
CVE-2026-68078 Unscored

It was not possible to govern the maximum number of transfer frames per incoming delivery, enabling an authenticated attacker to cause excessive resource u

05 Aug 2026, 05:43 UTC View advisory →
CVE-2026-68077 Unscored

An authenticated attacker can craft a disposition frame with large or illegal ranges causing excessive CPU usage due to naive range handling, leading to de

05 Aug 2026, 05:41 UTC View advisory →
CVE-2026-68075 Unscored

An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service. This issue affects Apache Qpid Br

05 Aug 2026, 05:36 UTC View advisory →
CVE-2026-68074 Unscored

A pre-authentication attacker could leverage unbounded symbol value caching to cause resource exhaustion leading to denial of service. This issue affects A

05 Aug 2026, 05:19 UTC View advisory →
CVE-2026-68073 Unscored

A pre-authentication attacker could leverage type nesting to cause a StackOverflowError potentially leading to denial of service. This issue affects Apache

05 Aug 2026, 05:32 UTC View advisory →
CVE-2026-68060 Unscored

A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential denial of service. This issue affe

05 Aug 2026, 05:26 UTC View advisory →
CVE-2026-67623 High 8.6

Mistral Vibe before 2.23.3 contains a remote code execution vulnerability that allows attackers to execute arbitrary commands by embedding a malicious core

05 Aug 2026, 13:27 UTC View advisory →
CVE-2026-67622 High 8.5

Flowise through 3.1.4 contains an insecure direct object reference vulnerability in the OpenAI Assistants integration that allows authenticated attackers t

06 Aug 2026, 21:31 UTC View advisory →
CVE-2026-67621 High 7.2

Flowise through 3.1.4 contains a missing authorization vulnerability that allows authenticated workspace members to perform unauthorized document store ope

06 Aug 2026, 21:31 UTC View advisory →
CVE-2026-67618 High 7.1

marimo before 0.23.15 contains a configuration injection vulnerability that allows notebook authors to exfiltrate operator API keys by embedding a maliciou

04 Aug 2026, 14:30 UTC View advisory →
CVE-2026-67617 Medium 4.8

Microweber CMS through 2.0.20 contains a stored cross-site scripting vulnerability in the content tagging system that allows admin-authenticated attackers

03 Aug 2026, 21:53 UTC View advisory →
CVE-2026-67616 Medium 5.3

Camaleon CMS through 2.9.2, fixed in commit 88ab703, contains a missing authorization vulnerability on the drafts endpoint that allows any authenticated lo

03 Aug 2026, 21:40 UTC View advisory →
CVE-2026-67612 Medium 4.8

OpenEMR through 8.2.0 contains a stored cross-site scripting vulnerability in the patient portal template system that allows authenticated administrators t

03 Aug 2026, 16:06 UTC View advisory →
CVE-2026-67611 High 8.6

OpenEMR through 8.2.0 contains an authentication bypass vulnerability that allows attackers with valid credentials to circumvent multi-factor authenticatio

03 Aug 2026, 16:04 UTC View advisory →
CVE-2026-67610 High 8.6

OpenEMR through 8.2.0 contains an improper authentication vulnerability in the OAuth2 dynamic client registration endpoint that allows unauthenticated atta

03 Aug 2026, 16:02 UTC View advisory →
CVE-2026-67609 High 8.5

Telenia Software TVox 26.5.3 and prior 26.x versions, and 24.9.21 and prior 24.x versions, contain a privilege escalation vulnerability that allows attacke

03 Aug 2026, 13:32 UTC View advisory →
CVE-2026-67608 High 8.6

Telenia Software TVox 26.5.3 and prior 26.x versions, and 24.9.21 and prior 24.x versions, contain an OS command injection vulnerability in action_audio.ph

03 Aug 2026, 13:30 UTC View advisory →
CVE-2026-67607 High 8.2

LightFTP 2.3.1 contains a race condition vulnerability that allows remote attackers to crash the server by racing a fresh connection that reuses the FTP co

31 Jul 2026, 15:59 UTC View advisory →
CVE-2026-67599 High 8.6

ClearOS 7.9 contains an OS command injection vulnerability in the Log Viewer component that allows authenticated attackers to execute arbitrary commands by

03 Aug 2026, 19:05 UTC View advisory →
CVE-2026-67598 Critical 9.1

Emlog Pro through 2.6.23 contains a disabled TLS certificate validation vulnerability in include/service/ai.php that allows network-adjacent attackers to i

03 Aug 2026, 19:02 UTC View advisory →
CVE-2026-67596 Medium 6.9

CSL 1010 M2M 3G WiFi Module firmware through 2.2.1.4 contains a weak encryption vulnerability that allows unauthenticated attackers to recover all stored s

30 Jul 2026, 14:59 UTC View advisory →
CVE-2026-67594 Critical 9.3

Spikster through commit e1cdf8c contains a missing authentication vulnerability that allows unauthenticated remote attackers to access all API routes by ex

30 Jul 2026, 19:14 UTC View advisory →
CVE-2026-67592 Unscored

It was not possible to govern the maximum number of transfer frames per incoming delivery, enabling an authenticated attacker to cause excessive resource u

05 Aug 2026, 05:44 UTC View advisory →
CVE-2026-67591 Unscored

An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service. This issue affects Apache Qpid Pr

05 Aug 2026, 05:38 UTC View advisory →
CVE-2026-67590 Unscored

A pre-authentication attacker could leverage type nesting to cause a StackOverflowError potentially leading to denial of service. This issue affects Apache

05 Aug 2026, 05:33 UTC View advisory →
CVE-2026-67589 Unscored

A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential denial of service. This issue affe

05 Aug 2026, 05:28 UTC View advisory →
CVE-2026-67588 Unscored

A pre-authentication attacker could leverage unbounded symbol value caching to cause resource exhaustion leading to denial of service. This issue affects A

05 Aug 2026, 05:21 UTC View advisory →
CVE-2026-67555 Unscored

It was not possible to govern the maximum number of transfer frames per incoming delivery, enabling an authenticated attacker to cause excessive resource u

05 Aug 2026, 05:43 UTC View advisory →
CVE-2026-67554 Unscored

An authenticated attacker can craft a disposition frame with large or illegal ranges causing excessive CPU usage due to naive range handling, leading to de

05 Aug 2026, 05:41 UTC View advisory →
CVE-2026-67553 Unscored

An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service. This issue affects Apache Qpid Pr

05 Aug 2026, 05:37 UTC View advisory →
CVE-2026-67552 Unscored

A pre-authentication attacker could leverage type nesting to cause a StackOverflowError potentially leading to denial of service. This issue affects Apache

05 Aug 2026, 05:32 UTC View advisory →
CVE-2026-67551 Unscored

pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential denial of service. This issue affect

05 Aug 2026, 05:27 UTC View advisory →
CVE-2026-67550 Medium 5.7

re2 provides Node.js bindings for Google's RE2 regular expression engine. Prior to 1.25.2, re2 validates lastIndex against the UTF-8 byte length of a subje

30 Jul 2026, 19:59 UTC View advisory →
CVE-2026-67531 Critical 9.3

FrontMCP is a TypeScript-first framework for the Model Context Protocol (MCP). Prior to 1.5.7, the sandboxed codecall:execute tool exposes live host Zod sc

05 Aug 2026, 22:54 UTC View advisory →
CVE-2026-67530 Medium 6.4

WACRM is a self-hostable CRM template for WhatsApp. In 0.7.0 and earlier, the automation send_webhook action in src/lib/automations/engine.ts and its valid

30 Jul 2026, 19:38 UTC View advisory →
CVE-2026-67529 Medium 4.3

OpenProject is open-source, web-based project management software. Prior to 17.6.0, GET /api/v3/time_entries and GET /api/v3/cost_entries rendered _links.w

30 Jul 2026, 19:29 UTC View advisory →
CVE-2026-67528 Medium 4.3

OpenProject is open-source, web-based project management software. Prior to 17.6.0, GET /api/v3/custom_options/:id resolved CustomOption records by global

30 Jul 2026, 19:24 UTC View advisory →
CVE-2026-67527 High 7.6

OpenProject is open-source, web-based project management software. Prior to 17.6.0, PATCH /api/v3/work_packages/{id} accepted _links.fileLinks and allowed

30 Jul 2026, 19:19 UTC View advisory →
CVE-2026-67465 Unscored

A pre-authentication attacker could leverage unbounded symbol value caching to cause resource exhaustion leading to denial of service. This issue affects A

05 Aug 2026, 05:21 UTC View advisory →
CVE-2026-67434 High 7.3

PHP_CodeSniffer tokenizes PHP files and detects violations of a defined set of coding standards. Prior to versions 3.13.6 and 4.0.2, PHP_CodeSniffer contai

06 Aug 2026, 21:31 UTC View advisory →
CVE-2026-67422 High 7.5

pymdown-extensions is a collection of extensions for the Python Markdown library. In versions up to and including 11.0, four inline processors (caret, tild

06 Aug 2026, 20:26 UTC View advisory →
CVE-2026-67357 High 7.7

ArcadeDB versions before 26.7.3 contain an information disclosure vulnerability in the MCP get_server_settings tool that leaks the arcadedb.ha.clusterToken

02 Aug 2026, 12:15 UTC View advisory →
CVE-2026-67356 High 8.7

ArcadeDB before 26.7.3 binds the real LocalDatabase object into JavaScript trigger contexts with HostAccess.ALL, allowing schema-admins to call getSecurity

02 Aug 2026, 12:15 UTC View advisory →
CVE-2026-67355 High 8.2

guzzlehttp/guzzle versions before 7.15.1 fail to preserve host-only cookie scope, storing the request host in the Domain field instead of marking cookies a

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67354 High 8.2

guzzlehttp/guzzle versions before 7.15.1 contain an information disclosure vulnerability in RedirectMiddleware. When the optional allow_redirects.referer s

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67353 Medium 6.9

guzzlehttp/guzzle versions before 7.15.1 contain a denial of service vulnerability in the CookieJar that accepts unlimited Set-Cookie header fields with no

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67352 Medium 6.8

luci-app-https-dns-proxy contains a stored cross-site scripting vulnerability in the resolver_url parameter that allows authenticated users to inject activ

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67351 High 8.7

Serendipity before 2.6.1 contains an authentication context confusion vulnerability where password validation and session loading operate independently wit

30 Jul 2026, 13:57 UTC View advisory →
CVE-2026-67350 Low 2.1

Serendipity before 2.6.1 contains an open redirect vulnerability in exit.php that allows unauthenticated attackers to redirect users to arbitrary external

31 Jul 2026, 14:19 UTC View advisory →
CVE-2026-67349 High 8.7

OpenCost before 1.121.0 fails to authenticate the GET /helmValues endpoint, exposing base64-decoded HELM_VALUES environment variable containing cloud provi

30 Jul 2026, 14:40 UTC View advisory →
CVE-2026-67348 High 8.6

Julep contains an insecure direct object reference vulnerability in the get_execution_details endpoint that allows authenticated tenants to read another te

30 Jul 2026, 14:40 UTC View advisory →
CVE-2026-67347 Medium 6.1

Vendure through 3.7.1, fixed in commit f67ef5f, contains a cross-channel authorization bypass vulnerability in stock-location.service.ts and asset.service.

30 Jul 2026, 14:40 UTC View advisory →
CVE-2026-67346 High 7.7

Swarms through 6.8.1, fixed in commit 8b0fc9e, contains a server-side request forgery vulnerability in the _is_safe_url function that fails to validate hos

30 Jul 2026, 14:39 UTC View advisory →
CVE-2026-67345 High 8.5

MaxKey through 4.1.12, fixed in commit ddbb72f, contains an insufficient redirect URI validation vulnerability in DefaultRedirectResolver.hostMatches() tha

30 Jul 2026, 14:39 UTC View advisory →
CVE-2026-67344 High 8.5

ArcadeDB before 26.7.2 fails to enforce the UPDATE_SCHEMA database permission on the ALTER TYPE ... CUSTOM and ALTER TYPE ... BUCKETSELECTIONSTRATEGY SQL o

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67343 High 8.7

ArcadeDB versions before 26.7.2 fail to properly redact the cluster token in the GET /api/v1/server endpoint, allowing authenticated users to retrieve the

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67342 Critical 9.3

ArcadeDB versions before 26.7.2 contain an authorization bypass vulnerability in HTTP handlers for time series, batch, Prometheus, and Grafana endpoints th

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67341 Critical 9.3

ArcadeDB versions before 26.7.2 fail to enforce scripting authorization checks on the SQL DEFINE FUNCTION statement with LANGUAGE js. Attackers with databa

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67340 Critical 9.3

ArcadeDB before 26.7.2 (arcadedb-engine) allows trigger scripts to look up host classes in java.lang.* (via Java.type) because ScriptTriggerExecutor adds j

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67339 Medium 6.9

guzzlehttp/guzzle versions before 7.14.2 fail to properly isolate Proxy-Authorization headers from origin servers in cURL handlers. Attackers can capture p

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67338 Medium 5.1

JupyterLab before 4.5.9 contains a stored cross-site scripting vulnerability in the Extension Manager that fails to validate URI protocols in package metad

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67337 High 7.1

better-auth versions before 1.4.9 contain a two-factor authentication bypass vulnerability when session.cookieCache is enabled. Attackers with valid primar

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67336 Critical 9.4

better-auth versions before 1.6.11 contain insecure cryptographic defaults in the oidcProvider and mcp plugins that advertise the none algorithm and accept

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67335 Medium 6

better-auth versions before 1.6.2 fail to validate the OAuth state parameter against the stored nonce when using cookie-backed state storage without PKCE.

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67334 Medium 5.1

better-auth versions before 1.6.11 fail to delete cached sessions when removing users via admin, anonymous, or SCIM endpoints when secondaryStorage is conf

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67333 Medium 5.1

better-auth before 1.6.13 (and pre-release builds 1.7.0-beta.0 through 1.7.0-beta.3) fail to validate the scheme of redirect_uris registered via the deprec

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67332 Medium 5.3

@better-auth/oauth-provider before 1.7.0-beta.4 fails to bind access-token audience to the authorization grant, allowing clients to request tokens for unre

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67331 High 8.7

better-auth SCIM versions from 1.5.0 before 1.7.0-beta.4 fail to bind non-organization SCIM providers to their creator by default, allowing authenticated u

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67330 Critical 9.4

@better-auth/scim (a better-auth plugin) versions >= 1.4.0-beta.27 through <= 1.6.21 and >= 1.7.0-beta.0 through <= 1.7.0-beta.9 contain an authorization b

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67329 High 7.1

@better-auth/stripe versions >= 1.4.11 and < 1.6.21, and >= 1.7.0-beta.0 and < 1.7.0-beta.10, contain an authorization bypass in organization subscription

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67328 High 8.6

@better-auth/sso versions before 1.6.21 contain multiple authentication bypass vulnerabilities in SSO provider handling that allow attackers to sign in as

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67327 High 8.7

better-auth versions >= 1.1.3 and < 1.6.22 (and pre-release versions >= 1.7.0-beta.0 and < 1.7.0-beta.10) are vulnerable to account takeover via pre-accoun

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67326 High 7.3

GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section he

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67325 High 8.7

GitPython before 3.1.51 contains an incomplete command injection blocklist that fails to account for git's long-option prefix abbreviation feature. Attacke

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67324 Critical 9.3

GitPython 3.1.50 fails to recognize joined short-option forms such as -u (the short form of --upload-pack=) when enforcing its default unsafe-option gate.

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67323 High 8.6

GitPython before 3.1.51 fails to guard against dangerous Git options passed as keyword arguments in Repo.archive() and git.ls_remote(), allowing command in

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67322 High 8.7

GitPython before 3.1.52 is vulnerable to environment-variable exfiltration in Repo.clone_from(). The caller-supplied remote URL is passed through Git.polis

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67321 Medium 6.9

axios before 0.33.0 contains an incomplete depth-limit bypass in toFormData.js when serializing objects with top-level keys ending in '{}'. Attackers who c

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67320 High 8.3

axios in a Node.js deployment using the HTTP adapter can route requests through an attacker-controlled proxy. axios hardens merged request configuration by

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67319 Medium 6.3

axios before 0.33.0 (and 1.x before 1.18.0) can consume inherited properties from nested request option objects when the JavaScript process's Object.protot

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67318 Medium 6.3

axios versions >=1.13.0 (Node.js HTTP adapter) fail to enforce the configured maxBodyLength limit on streamed request bodies when requests are sent with ht

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67317 Medium 6.3

axios versions 1.7.0 before 1.18.0 fail to enforce maxBodyLength for WHATWG ReadableStream request bodies in the fetch adapter when Content-Length cannot b

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67316 Medium 6.3

axios is vulnerable to read-side prototype-pollution gadgets that can alter request construction when Object.prototype has already been polluted by a separ

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67315 Medium 6.9

axios versions 1.15.0 before 1.18.0 fail to recognize 0.0.0.0 as a loopback address in shouldBypassProxy.js, allowing requests to 0.0.0.0 to bypass NO_PROX

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67314 Medium 6.3

axios versions >=1.15.2 and <1.18.0 contain prototype-pollution read-side gadgets in Basic auth subfield handling (lib/adapters/http.js and lib/helpers/res

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67313 Medium 6.3

axios versions 0.28.0 and later contain uncontrolled recursion in formDataToJSON when processing FormData field names with deeply nested bracket segments.

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67312 Medium 6.3

axios versions from 0.28.0 before 0.33.0 and from 1.0.0 before 1.18.0 contain uncontrolled recursion in formDataToJSON (exposed as axios.formToJSON() and u

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67311 High 8.2

Budibase before 3.38.1 contains a server-side request forgery vulnerability in the REST datasource integration that fails to validate HTTP redirects agains

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67310 Medium 5.3

OpenRemote (org.openremote:openremote) versions <= 1.26.2 contain an insecure direct object reference vulnerability in the setAssetLinks endpoint of AlarmR

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67309 High 7.8

Traefik versions >= v3.7.0 and <= v3.7.7 contain a path traversal vulnerability in the Kubernetes Ingress NGINX provider's RewriteTarget middleware (genera

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67308 Medium 5.3

Wazuh workflows before 44bf114 contain a shell injection vulnerability in GitHub Actions that allows attackers to execute arbitrary commands by submitting

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67307 High 7

Wazuh 5.0.0-beta1 (fixed in 5.0.0-beta3) does not validate or override the cluster_name and cluster_node fields in inventory-sync Start FlatBuffer messages

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67306 Medium 5.3

FreeRDP versions 3.28.0 and earlier contain an out-of-bounds read vulnerability in the RDP6 planar RLE bitmap decoder functions planar_decompress_plane_rle

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67305 Critical 9.4

FreeRDP Windows client before 3.29.0 contains a heap buffer overflow vulnerability in the clipboard virtual channel when processing CLIPRDR_FILE_CONTENTS_R

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67304 High 8.7

FreeRDP before 3.29.0 contains a null pointer dereference vulnerability in smartcard device control request cleanup when reader-state decoding fails. Attac

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67303 Medium 5.3

FreeRDP before 3.29.0 contains a reachable assertion (WINPR_ASSERT(OutputBufferLength == BytesReturned)) in serial_process_irp_device_control() in channels

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67302 Medium 5.3

FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains a divide-by-zero vulnerability in the rdpecam camera redirection client. ecam_dev_process_star

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67301 High 8.7

FreeRDP before 3.29.0 contains out-of-bounds read vulnerabilities in the async update message proxy for the PolygonSC and PolygonCB primary drawing orders.

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67300 High 8.7

FreeRDP before 3.29.0 contains client-side heap use-after-free vulnerabilities in the async update message proxy for RAIL WINDOW_STATE_ORDER and NOTIFY_ICO

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67299 High 8.7

FreeRDP before 3.29.0 contains a client-side heap use-after-free in the async update message proxy for WINDOW_ICON_ORDER when AsyncUpdate is enabled (e.g.

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67298 High 8.7

FreeRDP versions 3.28.0 and earlier contain a heap buffer overflow in the server-side RAIL channel handler (rail_server_handle_messages() in channels/rail/

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67297 High 8.7

FreeRDP before 3.29.0 fails to enforce the RESPONSE_SIZE_LIMIT when processing Transfer-Encoding: chunked HTTP responses in http_response_recv_body(). Atta

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67296 High 8.7

FreeRDP before 3.29.0 contains a denial of service vulnerability in the RDPEI server channel handler that fails to validate maximum PDU body length before

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67295 Medium 5.3

FreeRDP before 3.29.0 fails to properly validate server-supplied RDPDR paths in drive redirection, allowing attackers to access prefix-sibling paths outsid

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67294 Critical 9.3

FreeRDP before 3.29.0 improperly validates the Extended Key Usage (EKU) purpose of the peer certificate during client-side server TLS authentication. In x5

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67293 Critical 9.3

FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains an improper certificate hostname validation vulnerability. The TLS hostname matcher (tls_match

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67292 Critical 9.3

FreeRDP before 3.29.0 contains a buffer over-disclosure vulnerability in the gateway WebSocket transport (libfreerdp/core/gateway/websocket.c). The client'

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67291 High 8.7

FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains a heap out-of-bounds read in update_process_glyph_fragments()/glyph_cache_fragment_put() in li

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67290 High 8.7

FreeRDP before 3.29.0 contains a heap out-of-bounds read vulnerability in the TSMF FFmpeg decoder when parsing AVC1 MPEG2VIDEOINFO media types with insuffi

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67289 Critical 9.3

FreeRDP before 3.29.0 (affected versions <= 3.28.0) does not validate CRLF and control characters in the server-controlled RDP redirection TargetNetAddress

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67288 High 8.7

FreeRDP before 3.29.0 contains a null pointer dereference vulnerability in smartcard cache request decoders that accept NULL NDR pointers for LookupName in

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-67261 Critical 9.8

Dell Virtual Storage Integrator for VMware vSphere Client, versions prior to 10.11.1.0, contain(s) an OS Command Injection vulnerability in the IAPI compon

06 Aug 2026, 13:50 UTC View advisory →
CVE-2026-67208 Critical 9.3

Juggle through 1.6.0 contains a remote code execution vulnerability that allows unauthenticated remote attackers to execute arbitrary OS commands by connec

30 Jul 2026, 19:17 UTC View advisory →
CVE-2026-67207 High 8.7

Wolf CMS through 0.8.3.1 contains an authorization bypass vulnerability in BackupRestoreController that allows authenticated non-administrative users to ac

30 Jul 2026, 19:30 UTC View advisory →
CVE-2026-67206 High 8.7

Wolf CMS through 0.8.3.1 contains a remote code execution vulnerability in FileManagerController that allows authenticated attackers to create arbitrary PH

30 Jul 2026, 19:27 UTC View advisory →
CVE-2026-67200 High 8.7

Perspective 5.0.0 contains a path traversal vulnerability that allows unauthenticated remote attackers to read arbitrary files from the server filesystem b

04 Aug 2026, 14:04 UTC View advisory →
CVE-2026-67199 High 7.1

Perspective 5.0.0 contains a denial of service vulnerability that allows remote attackers to block the server event loop indefinitely by submitting a craft

04 Aug 2026, 14:04 UTC View advisory →
CVE-2026-67198 High 8.7

Perspective 5.0.0 contains a denial-of-service vulnerability in the VirtualServer protocol dispatcher that allows unauthenticated remote attackers to crash

04 Aug 2026, 14:04 UTC View advisory →
CVE-2026-67196 Medium 5.1

Perspective 5.0.0 contains a cross-site scripting vulnerability in the built-in Debug plugin that allows attackers to inject arbitrary HTML and JavaScript

04 Aug 2026, 14:03 UTC View advisory →
CVE-2026-67195 High 8.7

Perspective 5.0.0 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary operating system commands by su

04 Aug 2026, 14:03 UTC View advisory →
CVE-2026-66909 Critical 9.8

Apache CXF's JMS transport deserializes the body of any inbound JMS ObjectMessage using native Java deserialization, with no type restrictions in place. An

06 Aug 2026, 10:23 UTC View advisory →
CVE-2026-66902 Unscored

Google::Auth versions before 0.06 for Perl run a command named in an external_account credentials JSON via an ungated system call. The Pluggable subclass r

04 Aug 2026, 20:49 UTC View advisory →
CVE-2026-66901 Unscored

Google::Auth versions before 0.09 for Perl allow server side request forgery and credential exfiltration via unvalidated URLs taken from the credentials JS

04 Aug 2026, 20:49 UTC View advisory →
CVE-2026-66885 Medium 6.8

Cross-Site Request Forgery (CSRF) vulnerability in livebook-dev livebook allows an attacker to authenticate a victim's browser session under the attacker's

05 Aug 2026, 19:44 UTC View advisory →
CVE-2026-66884 Low 2.1

Cross-Site Request Forgery vulnerability in Erlang Ecosystem Foundation oidcc_plug (Oidcc.Plug.AuthorizationCallback module) allows an attacker to make a v

04 Aug 2026, 11:45 UTC View advisory →
CVE-2026-66883 Medium 6.3

Improper Handling of Case Sensitivity vulnerability in Erlang Ecosystem Foundation oidcc_plug (Oidcc.Plug.Authorize module) renders the user agent session

04 Aug 2026, 11:46 UTC View advisory →
CVE-2026-66881 High 7

Relative Path Traversal vulnerability in livebook-dev livebook allows an attacker-authored notebook to write a file with attacker-controlled content to an

05 Aug 2026, 19:43 UTC View advisory →
CVE-2026-66843 Low 2.3

Inclusion of Functionality from Untrusted Control Sphere vulnerability in the HTML5 scrubber in rrrene html_sanitize_ex allows a remote attacker to load a

06 Aug 2026, 14:48 UTC View advisory →
CVE-2026-66839 High 8.4

NetKids iMark, provided by Integrated Systems Technologies, Inc., contains an Unquoted Search Path or Element vulnerability (CWE-428). An authenticated att

05 Aug 2026, 04:26 UTC View advisory →
CVE-2026-66829 Low 2.3

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in the HTML5 scrubber in rrrene html_sanitize_ex allows a remote attacker to force visito

06 Aug 2026, 14:49 UTC View advisory →
CVE-2026-66825 Medium 6.9

Pivotick contains a cross-site scripting vulnerability in the sidebar property-list component. Values associated with link-like properties, such as url, ur

27 Jul 2026, 20:20 UTC View advisory →
CVE-2026-66824 Critical 9.2

A stored cross-site scripting vulnerability existed in the capture tree visualization page. The application embedded the serialized capture tree directly i

27 Jul 2026, 19:58 UTC View advisory →
CVE-2026-66803 Critical 10

Improper access control in Azure Cosmos DB allows an unauthorized attacker to execute code over a network.

30 Jul 2026, 20:28 UTC View advisory →
CVE-2026-66759 High 7.1

A flaw was found in the file-icns plugin in GIMP. When applying a decompressed mask during ICNS image processing, the plugin reads from the mask data buffe

27 Jul 2026, 19:12 UTC View advisory →
CVE-2026-66758 High 7.8

A flaw was found in the file-fits plugin in GIMP. When processing a FITS image file, the plugin calculates memory allocation sizes using signed 32-bit inte

27 Jul 2026, 19:07 UTC View advisory →
CVE-2026-66757 Medium 5.5

A flaw was found in the file-sgi plugin in GIMP. When processing an RLE-compressed SGI image, the plugin allocates memory for a row table. The image header

27 Jul 2026, 19:07 UTC View advisory →
CVE-2026-66756 Medium 6.9

Improper Protection of Alternate Path vulnerability in Apache Tika. This issue affects Apache Tika: from 4.0.0-alpha-1 before 4.0.0-beta-1. Users are recom

30 Jul 2026, 19:18 UTC View advisory →
CVE-2026-66755 Medium 5.9

Relative Path Traversal in the ISA-Tab parser in Apache Software Foundation Apache Tika from 1.8 through 3.3.1, and 4.0.0-alpha-1, allows an attacker who c

30 Jul 2026, 19:16 UTC View advisory →
CVE-2026-66747 Critical 9.3

Zbtlink router firmware ships an embedded remote-control implant, ENDLESSDOORS, present in every published build across the product line. It is the open-so

05 Aug 2026, 10:50 UTC View advisory →
CVE-2026-66733 High 8.7

Sonic 3 A.I.R. before commit 2492d18 contains an unbounded memory allocation vulnerability in ReceivedPacketCache::enqueuePacket() that allows unauthentica

06 Aug 2026, 12:58 UTC View advisory →
CVE-2026-66732 High 8.3

Sonic 3 A.I.R. before commit 2492d18 contains a missing source address validation vulnerability in ConnectionManager where established connections are reso

06 Aug 2026, 12:53 UTC View advisory →
CVE-2026-66731 High 8.7

facil.io 0.7.5 through 0.7.6 contains a denial-of-service vulnerability in the HTTP/1.1 chunked transfer encoding parser that allows unauthenticated remote

27 Jul 2026, 16:57 UTC View advisory →
CVE-2026-66730 High 8.7

facil.io 0.6.0 through 0.7.6 contains a denial-of-service vulnerability in the multipart body parser that allows an unauthenticated remote attacker to perm

27 Jul 2026, 16:55 UTC View advisory →
CVE-2026-66729 High 8.7

facil.io 0.6.0 through 0.7.6 contains an integer underflow vulnerability in the multipart MIME body parser that allows unauthenticated remote attackers to

27 Jul 2026, 16:52 UTC View advisory →
CVE-2026-66720 High 7.1

The GOOSE subscriber component improperly validates the UTC timestamp field in unauthenticated IEC 61850 GOOSE (EtherType 0x88B8) Layer-2 multicast message

30 Jul 2026, 22:46 UTC View advisory →
CVE-2026-66712 High 7.5

Unauthenticated Broken Access Control in Simple Membership <= 4.7.8 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66711 High 7.1

Subscriber Cross Site Scripting (XSS) in WooCommerce Multilingual & Multicurrency <= 5.5.6 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66710 High 8.1

Unauthenticated Local File Inclusion in e2pdf <= 1.32.40 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66709 Critical 9.1

Shop manager Remote Code Execution (RCE) in CTX Feed <= 6.6.42 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66708 High 8.2

Unauthenticated Broken Access Control in Total Upkeep <= 1.17.2 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66707 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Facebook for WooCommerce <= 3.7.5 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66706 Medium 5.9

Author Cross Site Scripting (XSS) in Subscribe to Comments <= 2.3.1 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66705 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Facebook for WordPress <= 5.2.1 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66703 Medium 6.5

Contributor Cross Site Scripting (XSS) in MailOptin <= 1.2.78.0 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66702 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Rank Math SEO <= 1.0.274.1 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66701 Medium 5.3

Unauthenticated Broken Access Control in Profile Builder <= 3.16.5 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66699 Medium 5.3

Custom role Broken Access Control in Dokan <= 5.0.10 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66696 Medium 4.3

Contributor Sensitive Data Exposure in Gutenberg Blocks by Kadence Blocks <= 3.7.8 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66695 Medium 6.5

Unauthenticated Path Traversal in W3 Total Cache <= 2.10.2 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66694 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Thrive Architect <= 10.9.3.1 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66692 Medium 4.3

Customer Insecure Direct Object References (IDOR) in Colissimo Officiel : Méthodes de livraison pour WooCommerce <= 2.10.0 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66690 High 7.1

Unauthenticated Cross Site Scripting (XSS) in GiveWP <= 4.16.5 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66688 Medium 6.5

Contributor Cross Site Scripting (XSS) in Ultimate Addons for Elementor <= 1.45.2 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66686 Medium 6.5

Unauthenticated Cross Site Request Forgery (CSRF) in Plugins Garbage Collector (Database Cleanup) <= 0.14 versions.

06 Aug 2026, 14:28 UTC View advisory →
CVE-2026-66685 Medium 5.3

Unauthenticated Sensitive Data Exposure in Featured Video Plus <= 2.3.3 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66684 Medium 5.3

Unauthenticated Sensitive Data Exposure in Export Import Menus <= 1.9.2 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66683 Medium 5.3

Unauthenticated Sensitive Data Exposure in Custom CSS and JavaScript <= 2.0.16 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66681 Medium 4.3

Unauthenticated Cross Site Request Forgery (CSRF) in Theme My Login <= 7.1.14 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66678 Medium 4.3

Contributor Broken Access Control in Advanced Custom Fields: Font Awesome Field <= 6.1.1 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66665 Critical 10

Unauthenticated Arbitrary File Upload in Type Hub <= 2.0.6 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66664 High 7.1

Unauthenticated Cross Site Scripting (XSS) in SEO Plugin by Squirrly SEO <= 14.2.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66663 High 7.1

Unauthenticated Cross Site Scripting (XSS) in WP Data Access <= 5.5.79 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66662 Critical 9.8

Unauthenticated Privilege Escalation in Frontend Admin by DynamiApps <= 3.29.10 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66477 Medium 5.3

Unauthenticated Broken Access Control in Gillion <= 4.13 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66476 Medium 4.9

Administrator Arbitrary File Deletion in Easy Digital Downloads <= 3.6.9 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66475 Medium 5.9

Shop manager Cross Site Scripting (XSS) in Checkout Field Editor for WooCommerce – Checkout Manager <= 3.0.5 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66474 Medium 4.3

Unauthenticated Cross Site Request Forgery (CSRF) in Insert Headers and Footers Code – HT Script <= 1.1.8 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66473 High 7.5

Unauthenticated Broken Access Control in Xendit Payment <= 7.1.0 versions.

27 Jul 2026, 22:43 UTC View advisory →
CVE-2026-66470 High 7.1

Subscriber Broken Access Control in Frontend Admin by DynamiApps <= 3.29.10 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66457 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Events Manager <= 7.4.1 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66452 Medium 6.5

Unauthenticated Broken Access Control in Legal Text Connector of the IT-Recht Kanzlei <= 1.0.13 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66451 Medium 6.5

Unauthenticated Broken Authentication in WP Event SOlution <= 4.1.9 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66448 Medium 6.5

Contributor Cross Site Scripting (XSS) in Gallery PhotoBlocks <= 1.3.3 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66447 Critical 9.3

Unauthenticated SQL Injection in WordPress File Upload <= 5.1.7 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66445 Medium 6.5

Contributor Cross Site Scripting (XSS) in Open User Map <= 1.4.46 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66442 Medium 5.4

Subscriber Broken Access Control in YayPricing <= 3.5.6 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66440 High 7.1

Unauthenticated Cross Site Scripting (XSS) in WPIDE – File Manager & Code Editor <= 3.5.7 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66439 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Advanced AJAX Product Filters <= 3.2.0.3 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66438 Medium 5.3

Unauthenticated Sensitive Data Exposure in Exclusive Addons Elementor <= 2.8.0 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66437 Medium 4.9

Contributor Server Side Request Forgery (SSRF) in Feedzy <= 5.2.4 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66434 Medium 6.5

Contributor Cross Site Scripting (XSS) in Photonic Gallery & Lightbox for Flickr, SmugMug & Others <= 3.33 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66433 Medium 6.5

Contributor Cross Site Scripting (XSS) in Location Weather <= 3.0.6 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66428 Medium 4.3

Unauthenticated Cross Site Request Forgery (CSRF) in WP Google Review Slider <= 18.4 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66427 High 7.6

Administrator SQL Injection in WP Google Review Slider <= 18.4 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-66425 Medium 6.5

Unauthenticated Broken Authentication in Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder <= 1.9.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-66421 High 8.8

OpenClaw Dashboard contains a stored cross-site scripting vulnerability that allows unauthenticated remote attackers to execute arbitrary JavaScript in the

30 Jul 2026, 22:16 UTC View advisory →
CVE-2026-66420 High 8.6

MeshCentral 1.1.21 contains a cross-site WebSocket hijacking protection bypass vulnerability that allows unauthenticated remote attackers to hijack authent

30 Jul 2026, 21:52 UTC View advisory →
CVE-2026-66418 Critical 9.3

OpenClaw Dashboard v3.0.0 contains a stored cross-site scripting vulnerability that allows unauthenticated remote attackers to inject arbitrary HTML and sc

30 Jul 2026, 20:55 UTC View advisory →
CVE-2026-66416 High 8.6

Leantime 3.6.2 contains a cross-site request forgery vulnerability that allows unauthenticated attackers to perform state-changing actions on behalf of aut

30 Jul 2026, 17:00 UTC View advisory →
CVE-2026-66415 High 8.4

Leantime 3.6.2 contains a server-side request forgery and local file inclusion vulnerability that allows authenticated attackers to read internal resources

30 Jul 2026, 16:49 UTC View advisory →
CVE-2026-66414 Medium 5.1

Leantime 3.6.2 contains an open redirect vulnerability in the Login controller that allows unauthenticated attackers to redirect authenticated users to arb

30 Jul 2026, 16:36 UTC View advisory →
CVE-2026-66402 Critical 9.3

FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains multiple TLS certificate identity validation weaknesses in tls_verify_certificate(), tls_match

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-66401 Low 2.4

FreeRDP before 3.29.0 contains an out-of-bounds heap read vulnerability in the UVC H.264 extension-unit parser that fails to validate descriptor length bef

01 Aug 2026, 12:22 UTC View advisory →
CVE-2026-66399 High 8.5

phpMyFAQ before 4.1.6 contains a privilege escalation vulnerability in GroupController::updateMembers() that allows administrators with only group-manageme

27 Jul 2026, 15:43 UTC View advisory →
CVE-2026-66398 Critical 9.4

phpMyFAQ before v4.1.6 contains a remote code execution vulnerability in the configuration API that allows authenticated administrators with CONFIGURATION_

27 Jul 2026, 15:43 UTC View advisory →
CVE-2026-66397 High 8.6

phpMyFAQ before 4.1.6 fails to validate path traversal sequences in the existing_image field during category updates, allowing authenticated attackers to d

27 Jul 2026, 15:43 UTC View advisory →
CVE-2026-66396 Critical 9.3

SiYuan before v3.7.2 fails to escape the title-img Individual Attribute List value when rendering Gallery and Kanban cover images, allowing stored cross-si

27 Jul 2026, 15:43 UTC View advisory →
CVE-2026-66395 Critical 9.4

SiYuan desktop before v3.7.2 contains a reflected cross-site scripting vulnerability in the bazaar plugin readme handler that allows attackers to execute a

27 Jul 2026, 15:43 UTC View advisory →
CVE-2026-66394 Critical 9.3

SiYuan before v3.7.3 contains stored and reflected cross-site scripting vulnerabilities in SVG sanitization that allows authenticated attackers to execute

27 Jul 2026, 15:43 UTC View advisory →
CVE-2026-66391 Medium 6.5

Use of Insufficiently Random Values, Protection Mechanism Failure vulnerability in Apache Wicket. This issue affects Apache Wicket: from 9.0.0 through 9.23

27 Jul 2026, 16:45 UTC View advisory →
CVE-2026-66390 Medium 6.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache Wicket. This issue affects Apache Wicket: from

27 Jul 2026, 16:39 UTC View advisory →
CVE-2026-66370 Medium 4.8

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in the HTML5 scrubber in rrrene html_sanitize_ex allows an unauthenticated remote attacke

06 Aug 2026, 14:49 UTC View advisory →
CVE-2026-66369 High 7.1

The GOOSE parser contains an off-by-one boundary-handling flaw that can be triggered by a single unauthenticated Layer-2 multicast frame on the process bus

30 Jul 2026, 22:45 UTC View advisory →
CVE-2026-66364 High 7.1

The GOOSE payload parser contains a boundary handling flaw that can be triggered by a single unauthenticated Layer 2 multicast frame on the process bus. Wh

30 Jul 2026, 22:33 UTC View advisory →
CVE-2026-66360 High 8.7

The ISO Presentation layer contains a flaw in the handling of specific parameters during normal mode negotiation. A missing length check in the processing

30 Jul 2026, 22:25 UTC View advisory →
CVE-2026-66349 Medium 6.9

The MMS server connection handler contains a flaw in its processing of BER-encoded request data. When an MMS confirmed request PDU containing an extended B

30 Jul 2026, 22:31 UTC View advisory →
CVE-2026-66344 Medium 5.4

NetKids iMark, provided by Integrated Systems Technologies, Inc., contains an Uncontrolled Search Path Element vulnerability (CWE-427). An authenticated at

05 Aug 2026, 04:25 UTC View advisory →
CVE-2026-66326 Medium 6.5

Missing authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

03 Aug 2026, 22:58 UTC View advisory →
CVE-2026-66325 Medium 6.1

Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

03 Aug 2026, 22:57 UTC View advisory →
CVE-2026-66322 High 7.1

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

03 Aug 2026, 22:57 UTC View advisory →
CVE-2026-66321 High 7.4

Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a net

03 Aug 2026, 22:51 UTC View advisory →
CVE-2026-66318 High 8.1

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.

03 Aug 2026, 22:51 UTC View advisory →
CVE-2026-66317 Medium 5.4

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering over a network.

03 Aug 2026, 22:57 UTC View advisory →
CVE-2026-66316 Medium 5.4

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

03 Aug 2026, 22:53 UTC View advisory →
CVE-2026-66315 High 7.5

Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

03 Aug 2026, 22:53 UTC View advisory →
CVE-2026-66314 Medium 6.5

Time-of-check time-of-use (toctou) race condition in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network

03 Aug 2026, 22:53 UTC View advisory →
CVE-2026-66313 Medium 6.8

Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering locally.

03 Aug 2026, 22:53 UTC View advisory →
CVE-2026-66312 Medium 6.5

Buffer over-read in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network.

03 Aug 2026, 22:53 UTC View advisory →
CVE-2026-66311 Medium 6.2

Missing authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering locally.

03 Aug 2026, 22:57 UTC View advisory →
CVE-2026-66310 High 7.7

External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information locally.

03 Aug 2026, 22:53 UTC View advisory →
CVE-2026-66300 Low 2.3

SNOMED International Snowstorm contains a reflected XSS vulnerability within the "Web Route" redirection functionality. An attacker can inject arbitrary Ja

04 Aug 2026, 18:51 UTC View advisory →
CVE-2026-66298 High 8.6

Origin Validation Error vulnerability in livebook-dev livebook allows untrusted notebook output JavaScript to trigger session-wide keyboard shortcuts, incl

05 Aug 2026, 19:44 UTC View advisory →
CVE-2026-66297 Medium 5

Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) vulnerability in livebook-dev livebook allows command injection in

05 Aug 2026, 19:43 UTC View advisory →
CVE-2026-66296 Medium 5.1

Improper Neutralization of Input During Web Page Generation (XSS) vulnerability in lud oaskit allows reflected cross-site scripting via the default HTML er

03 Aug 2026, 19:04 UTC View advisory →
CVE-2026-66277 Unscored

It was not possible to govern the maximum number of transfer frames per incoming delivery, enabling an authenticated attacker to cause excessive resource u

05 Aug 2026, 05:42 UTC View advisory →
CVE-2026-66276 Unscored

An authenticated attacker can craft a disposition frame with large or illegal ranges causing excessive CPU usage due to naive range handling, leading to de

05 Aug 2026, 05:39 UTC View advisory →
CVE-2026-66275 Unscored

An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service. This issue affects Apache Qpid Pr

05 Aug 2026, 05:34 UTC View advisory →
CVE-2026-66274 Unscored

A pre-authentication attacker could leverage type nesting to cause a StackOverflowError potentially leading to denial of service. This issue affects Apache

05 Aug 2026, 05:29 UTC View advisory →
CVE-2026-66273 Unscored

A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential denial of service. This issue affe

05 Aug 2026, 05:23 UTC View advisory →
CVE-2026-66257 Unscored

A pre-authentication attacker could leverage unbounded symbol value caching to cause resource exhaustion leading to denial of service. This issue affects A

05 Aug 2026, 05:18 UTC View advisory →
CVE-2026-66066 Critical 9.5

Action Pack is a framework for handling and responding to web requests. In versions prior to 7.2.3.2, 8.0.5.1 and 8.1.3.1, Active Storage does not disable

30 Jul 2026, 18:32 UTC View advisory →
CVE-2026-66065 High 8.4

Ouroboros is a local-first runtime for AI coding agents that records their actions and applies user-defined policies to constrain behavior. Versions prior

03 Aug 2026, 20:20 UTC View advisory →
CVE-2026-66053 Medium 5.9

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift Python bindings. This issue affects Apache Thrift: before 0.24.0. User

27 Jul 2026, 11:18 UTC View advisory →
CVE-2026-66050 High 8.7

NitroShare Desktop through 0.3.4 contains a path traversal vulnerability in its LAN file transfer server that allows unauthenticated attackers on the same

27 Jul 2026, 14:19 UTC View advisory →
CVE-2026-66031 Medium 5.1

Ekushey Project Manager CRM through version 5.0 contains a stored cross-site scripting vulnerability that allows authenticated client users to inject arbit

27 Jul 2026, 18:09 UTC View advisory →
CVE-2026-66030 Medium 5.1

Ekushey Project Manager CRM through version 5.0 ccontains a stored cross-site scripting vulnerability that allows authenticated client users to inject arbi

27 Jul 2026, 18:06 UTC View advisory →
CVE-2026-66029 Medium 5.1

Ekushey Project Manager CRM through version 5.0 contains a stored cross-site scripting vulnerability that allows authenticated client users to inject arbit

27 Jul 2026, 18:02 UTC View advisory →
CVE-2026-66028 High 7.1

Ekushey Project Manager CRM through version 5.0 contains a missing uniqueness constraint vulnerability that allows authenticated administrators to create d

27 Jul 2026, 18:00 UTC View advisory →
CVE-2026-66018 Medium 6.5

Build readers can access another repository's environment properties. A caller with read access to an ordinary repository can select a readable repository

27 Jul 2026, 19:31 UTC View advisory →
CVE-2026-66015 High 7.2

An authenticated privilege-escalation vulnerability in JFrog Platform may be exploited under admin-provisioned account conditions. Successful exploitation

27 Jul 2026, 19:33 UTC View advisory →
CVE-2026-66014 High 8.8

JFrog Artifactory contains an authentication handling weakness in internal request processing that, under specific conditions, may allow an attacker to esc

27 Jul 2026, 19:29 UTC View advisory →
CVE-2026-65986 High 8.5

CVAT is an open source interactive video and image annotation tool for computer vision. Versions 2.5.0 through 2.66.0 contain a XSS vulnerability that can

04 Aug 2026, 20:13 UTC View advisory →
CVE-2026-65981 High 7.1

Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.15.0, a server using --mobility authenticates a resumed REFRESH request wit

31 Jul 2026, 21:00 UTC View advisory →
CVE-2026-65925 Medium 6.5

A user with JFrog Artifactory Cargo remote repository read access could make Artifactory request unintended URLs and return the response.

27 Jul 2026, 19:35 UTC View advisory →
CVE-2026-65924 Medium 6.5

JFrog Artifactory support for Terraform remote repositories was found to be susceptible to Server-Side Request Forgery (SSRF). An authenticated user - or,

27 Jul 2026, 19:36 UTC View advisory →
CVE-2026-65923 Medium 6.8

A URL validation weakness in JFrog Artifactory Ansible repository handling could allow a user, under specific repository access conditions, to cause uninte

27 Jul 2026, 19:43 UTC View advisory →
CVE-2026-65922 High 7.1

An authorization weakness in JFrog Artifactory internal metadata handling could allow a user with limited repository access to write to restricted internal

27 Jul 2026, 19:44 UTC View advisory →
CVE-2026-65921 High 8.8

A path validation weakness in archive extraction/write handling allows entries with traversal sequences to be written outside the intended build artifacts

27 Jul 2026, 19:27 UTC View advisory →
CVE-2026-65894 High 8.7

This vulnerability exists in CP PLUS EZ-P21 IP Camera due to improper authentication of HTTP endpoints. A remote attacker could exploit this vulnerability

27 Jul 2026, 07:16 UTC View advisory →
CVE-2026-65893 High 7

This vulnerability exists in CP PLUS EZ-P21 IP Camera due to an insecure debug feature enabled in the firmware. An attacker with physical access could expl

27 Jul 2026, 07:12 UTC View advisory →
CVE-2026-65879 Unscored

Joomla Extension - joomshaper.com - Unauthenticated mail relay via a hardcoded, product-wide secret in SP Page Builder < 6.7.1 - A hardcoded secret allowed

27 Jul 2026, 12:55 UTC View advisory →
CVE-2026-65878 High 8.3

Joomla Extension - joomshaper.com - Authenticated arbitrary file delete in SP Page Builder < 6.7.1- Improper path validation and ACL checks lead to a file

27 Jul 2026, 12:54 UTC View advisory →
CVE-2026-65877 High 8.2

Joomla Extension - joomshaper.com - Authenticated SQL injection in SP Page Builder < 6.7.1 - Improper validation of various parameters in the media manager

27 Jul 2026, 12:56 UTC View advisory →
CVE-2026-65876 Critical 9.2

Joomla Extension - joomshaper.com - Unauthenticated SQL injection in SP Page Builder < 6.7.1 - Improper validation of catid parameters in the loadMoreArtic

27 Jul 2026, 13:00 UTC View advisory →
CVE-2026-65875 Medium 5.1

BaserCMS provided by baserCMS Users Community contains a CSV file injection vulnerability. If a user downloads and opens a CSV file containing malicious co

03 Aug 2026, 00:13 UTC View advisory →
CVE-2026-65841 Medium 5.3

Jodit Editor is a WYSIWYG editor with a built-in file browser & image editor. Prior to 4.13.6, Jodit's clean-html denyTags filter does not normalize foreig

31 Jul 2026, 19:16 UTC View advisory →
CVE-2026-65835 Medium 6.6

Capsule is a multi-tenancy and policy-based framework for Kubernetes. From 0.13.0 until 0.13.8, after the incomplete CVE-2026-22872 fix, TenantResource Raw

30 Jul 2026, 19:53 UTC View advisory →
CVE-2026-65834 Medium 6.8

Capsule is a multi-tenancy and policy-based framework for Kubernetes. Prior to 0.13.8, CapsuleConfiguration.Spec.NodeMetadata.ForbiddenLabels.Regex and Cap

30 Jul 2026, 19:48 UTC View advisory →
CVE-2026-65804 Medium 6.1

Improper control of generation of code ('code injection') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a net

03 Aug 2026, 22:57 UTC View advisory →
CVE-2026-65802 High 7.4

External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose information over a network.

03 Aug 2026, 22:57 UTC View advisory →
CVE-2026-65766 Critical 9.2

Joomla Extension - joomshaper.com - Unauthenticated SQL injection in SP Page Builder < 6.7.1 - Improper validation of order parameters in the Dynamic Conte

27 Jul 2026, 12:55 UTC View advisory →
CVE-2026-65765 Medium 6.9

Joomla Extension - phoca.cz - Path Traversal vulnerability in Phoca Commander 1.0.0-6.1.1 - Improper limitation of paths for save and download actions lead

27 Jul 2026, 08:01 UTC View advisory →
CVE-2026-65764 Medium 5.1

Joomla Extension - phoca.cz - Reflected XSS vulnerability in Phoca Commander 5.0.0-6.1.1 - Improper validation of user inputs lead to a reflective XSS vuln

27 Jul 2026, 07:57 UTC View advisory →
CVE-2026-65668 High 8.8

Improper access control in Microsoft Purview eDiscovery allows an authorized attacker to elevate privileges over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-65667 Critical 10

Missing authorization in Microsoft Teams allows an unauthorized attacker to elevate privileges over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-65650 Medium 4.3

Elgg before 7.0.0 does not check image dimensions to prevent denial of service via a large avatar upload.

22 Jul 2026, 17:07 UTC View advisory →
CVE-2026-65636 Low 2.1

Improper Neutralization of CRLF Sequences vulnerability in ufirstgroup ymlr (Elixir.Ymlr module) allows attackers to inject arbitrary content into generate

31 Jul 2026, 13:29 UTC View advisory →
CVE-2026-65635 High 8.3

Improper Isolation or Compartmentalization vulnerability in malach-it boruta (Elixir.Boruta.Openid module) allows attackers to register OpenID Connect clie

30 Jul 2026, 14:17 UTC View advisory →
CVE-2026-65618 Medium 6.5

Improper URL validation when handling specific URLs, allows an attacker, under certain conditions, to make unauthorized requests from JFrog Artifactory, po

27 Jul 2026, 19:32 UTC View advisory →
CVE-2026-65617 High 8.8

A deserialization weakness in JFrog Artifactory package handling could allow a low-privileged user to impact confidentiality, integrity, and availability u

27 Jul 2026, 19:37 UTC View advisory →
CVE-2026-65616 High 8.8

Incorrect authorization validation in refresh token signature allows non-admin users to obtain a signed JFrog administrator token.

27 Jul 2026, 19:34 UTC View advisory →
CVE-2026-65603 High 8.7

The Grav Login plugin (grav-plugin-login) versions <= 3.8.11 contain a privilege escalation flaw in the authenticated profile self-update handler (processU

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65602 Medium 5.3

Traefik 3.6.0 through 3.6.22 and 3.7.0 through 3.7.6 fail to enforce the crossProviderNamespaces allowlist for IngressRouteTCP service serversTransport ref

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65601 Medium 5.3

Traefik versions 3.7.0 through 3.7.6 contain a namespace confusion vulnerability in the Kubernetes Gateway API provider. When resolving HTTPRoute.spec.rule

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65600 High 7.8

Traefik versions <= v2.11.51, >= v3.6.0 <= v3.6.22, and >= v3.7.0 <= v3.7.6 contain an authentication bypass via path traversal in the ReplacePathRegex mid

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65599 Medium 5.1

n8n versions before 1.123.64, 2.29.8, and 2.30.1 contain a credential exposure vulnerability: when configured with a Google Service Account key, the full P

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65598 High 8.9

n8n before 1.123.64, 2.29.8, and 2.30.1 contains a TOCTOU race condition in the Git node's clone operation that allows authenticated users to bypass path r

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65597 High 8.2

n8n before 1.123.64, 2.x before 2.29.8, and before 2.30.1 contains a DOM-based cross-site scripting vulnerability in the HTML preview, which renders execut

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65596 Medium 5.1

n8n before 1.123.64, 2.29.8, and 2.30.1 fails to enforce the "Allowed HTTP Request Domains" restriction on HTTP-based credentials (Header Auth, Basic Auth,

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65595 High 8.9

n8n before 2.30.1 and 2.29.8 assigns all Public API key scopes to JWTs issued through the Token Exchange module regardless of the acting user's role. On in

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65594 Medium 5.1

n8n before 2.29.8 and 2.30.x before 2.30.1 (affected from 2.27.0, when the OAuth 2.1 consent and token-issuance flow was introduced) does not verify that t

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65593 Medium 6.3

n8n versions before 1.123.64 contain a server-side request forgery vulnerability in the dynamic-node-parameters endpoints that lack authorization scopes. A

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65592 High 8.4

n8n before 1.123.64, 2.29.8, and 2.30.1 contains a stored DOM cross-site scripting vulnerability in the Resource Locator component, which passes the workfl

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65591 High 8.9

n8n contains a sanitizer bypass vulnerability in the legacy expression evaluator's computed-member handler. An authenticated user with workflow create or m

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65590 Medium 5.5

n8n before 2.29.8 and 2.30.x before 2.30.1 does not enforce shell sandbox restrictions on Linux and Windows in the @n8n/computer-use package (sandboxing wa

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65589 Medium 5.1

n8n versions before 1.123.64 fail to properly mask custom HTTP header credentials in LLM sub-node execution data, writing plaintext API keys and secrets to

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65583 Critical 9.1

Apache CXF’s OIDC relying-party token validation could accept self-issued ID tokens without enforcing required claim checks (issuer/subject/audience/time a

06 Aug 2026, 11:23 UTC View advisory →
CVE-2026-65581 Critical 9.8

Unauthenticated PHP Object Injection in AI ANN <= 1.29.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65579 Critical 9.8

Unauthenticated PHP Object Injection in Agricola <= 1.21.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65578 Critical 9.8

Unauthenticated PHP Object Injection in Agora <= 1.9 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65577 Critical 9.8

Unauthenticated PHP Object Injection in Advice <= 1.18.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65576 Critical 9.8

Unauthenticated PHP Object Injection in Adrena <= 1.2.14 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65575 Critical 9.8

Unauthenticated PHP Object Injection in Accalia <= 1.5.3 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65574 Critical 9.8

Unauthenticated PHP Object Injection in Abogado <= 1.18 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65573 Critical 9.8

Unauthenticated PHP Object Injection in Abelle <= 1.22 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65572 Critical 9.8

Unauthenticated PHP Object Injection in A.Williams <= 1.3.1 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65571 Critical 9.8

Unauthenticated PHP Object Injection in 69 Clothing <= 1.2.11.1 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65570 High 8.1

Unauthenticated Bypass Vulnerability in Login with phone number <= 1.8.70 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65569 High 8.5

Subscriber SQL Injection in WP Job Portal <= 2.5.6 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65568 Medium 5

Contributor Broken Access Control in Visual Composer Website Builder <= 45.15.0 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-65567 Medium 5.3

Unauthenticated Broken Access Control in Event Tickets <= 5.29.0.1 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-65565 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Survey Maker <= 5.2.3.3 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65564 Medium 5.3

Unauthenticated Sensitive Data Exposure in MapPress Maps for WordPress <= 2.97.6 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-65563 Medium 5.9

Author Cross Site Scripting (XSS) in Orbit Fox by ThemeIsle <= 3.0.7 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-65562 Medium 6.5

Contributor Cross Site Scripting (XSS) in BetterDocs <= 4.6.2 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-65561 Medium 6.5

Contributor Cross Site Scripting (XSS) in WordPress Social Login and Register <= 7.8.0 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-65560 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Houzez Property Feed <= 2.5.48 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65559 High 7.2

Shop manager Privilege Escalation in Order Delivery Date for WooCommerce <= 4.6.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65558 Medium 5.4

Unauthenticated Server Side Request Forgery (SSRF) in AffiliateX <= 2.3.5 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-65557 Medium 5.9

Shop manager Cross Site Scripting (XSS) in Abandoned Cart Lite for WooCommerce <= 6.8.0 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-65556 Critical 9.8

Unauthenticated PHP Object Injection in WPBruiser {no- Captcha anti-Spam} <= 3.1.43 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65554 High 7.1

Subscriber Broken Access Control in AnsPress – Question and answer 4.4.4 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65553 Critical 10

Unauthenticated Remote Code Execution (RCE) in Spider Analyser – WordPress搜索引擎蜘蛛分析插件 <= 2.1.3 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65552 Critical 9.8

Subscriber PHP Object Injection in Export User Data <= 2.2.6 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65551 High 7.5

Missing Authorization vulnerability in Soflyy Breakdance allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Breakd

06 Aug 2026, 12:47 UTC View advisory →
CVE-2026-65549 High 7.2

Author PHP Object Injection in Jeg Kit for Elementor <= 3.2.10 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65548 Critical 9.9

Contributor Remote Code Execution (RCE) in Betheme <= 28.4.2 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65547 High 8.5

Subscriber SQL Injection in Creative Mail <= 1.6.9 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65546 Critical 9.3

Unauthenticated SQL Injection in Qode Tours <= 3.1.3.1 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65545 High 7.1

Unauthenticated Cross Site Scripting (XSS) in AI Engine <= 3.6.8 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65544 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Super Socializer <= 7.14.5 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65543 High 7.5

Subscriber Sensitive Data Exposure in Vimeo <= 1.2.2 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65542 High 8.8

Unauthenticated Broken Authentication in Super Socializer <= 7.14.5 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65541 High 7.3

Unauthenticated Broken Access Control in Staff Training <= 1.0.7 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65523 High 7.5

Unauthenticated Insecure Direct Object References (IDOR) in Formidable Forms Signature Online Contract Automation <= 2.0.1 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65520 Critical 9.3

Unauthenticated SQL Injection in WP OAuth Server <= 6.2.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65517 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Easy PayPal Buy Now Button <= 2.0.4 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65515 High 7.1

Unauthenticated Cross Site Scripting (XSS) in AffiliateWP <= 2.35.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65513 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Simply Schedule Appointments <= 1.6.12.10 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65509 High 7.1

Unauthenticated Cross Site Scripting (XSS) in wpDataTables <= 7.5.1 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65508 Critical 9.3

Unauthenticated SQL Injection in Simply Schedule Appointments <= 1.6.12.10 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65507 Critical 9.8

Unauthenticated Privilege Escalation in AIWU <= 1.5.6 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65504 High 7.5

Unauthenticated Broken Access Control in BOX NOW Delivery Croatia <= 3.3.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65502 Medium 5.3

Unauthenticated Bypass Vulnerability in Element Pack Elementor Addons <= 8.7.13 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-65448 Medium 6.5

Unauthenticated Cross Site Scripting (XSS) in Anti Spam and list cleaner – AcyChecker <= 1.8.1 versions.

27 Jul 2026, 22:44 UTC View advisory →
CVE-2026-65447 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Contest Gallery <= 30.0.6 versions.

27 Jul 2026, 22:44 UTC View advisory →
CVE-2026-65446 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Kali Forms <= 2.4.18 versions.

27 Jul 2026, 22:44 UTC View advisory →
CVE-2026-65445 Medium 6.5

Unauthenticated Broken Access Control in Ad Invalid Click Protector (AICP) <= 1.3.0 versions.

27 Jul 2026, 22:44 UTC View advisory →
CVE-2026-65443 High 7.1

Unauthenticated Cross Site Scripting (XSS) in BackWPup <= 5.7.4 versions.

27 Jul 2026, 22:44 UTC View advisory →
CVE-2026-65442 High 7.2

Unauthenticated Server Side Request Forgery (SSRF) in FormCraft <= 3.9.15 versions.

27 Jul 2026, 22:44 UTC View advisory →
CVE-2026-65441 High 7.1

Unauthenticated Cross Site Scripting (XSS) in GiveWP <= 4.16.3 versions.

27 Jul 2026, 22:44 UTC View advisory →
CVE-2026-65440 High 7.1

Unauthenticated Cross Site Scripting (XSS) in GetGenie <= 4.4.3 versions.

27 Jul 2026, 22:44 UTC View advisory →
CVE-2026-65439 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Ultimate Addons for Contact Form 7 <=3.5.45 versions.

27 Jul 2026, 22:44 UTC View advisory →
CVE-2026-65438 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Message Filter for Contact Form 7 <= 1.6.3.9 versions.

27 Jul 2026, 22:44 UTC View advisory →
CVE-2026-65437 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Spam protection, AntiSpam, FireWall by CleanTalk <= 6.82 versions.

27 Jul 2026, 22:44 UTC View advisory →
CVE-2026-65436 Medium 6.8

Editor Arbitrary File Deletion in Kirki <= 6.0.13 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-65435 Medium 6.5

Unauthenticated Broken Access Control in Thrive Leads Version <= 10.9.2 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-65434 Medium 6.5

Subscriber Sensitive Data Exposure in ЮKassa для WooCommerce <= 2.16.1 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-65433 Medium 6.5

Subscriber Broken Access Control in RT Mega Menu – Mega Menu Builder for Elementor & Gutenberg <= 1.5.1 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-65432 High 7.5

Apache CXF reads a top-level WSDL through its hardened StaxUtils path, which disables XML DTDs and external entities. However, any or referenced from that

06 Aug 2026, 10:26 UTC View advisory →
CVE-2026-65423 High 8.7

An integer overflow in the UA_Variant arrayDimensions product computation in open62541 may allow a remote attacker to trigger an out-of-bounds write.

30 Jul 2026, 21:59 UTC View advisory →
CVE-2026-65421 High 7.1

The MMS BER decoder contains a flaw in decoding fixed-width BER fields (boolean/integer): an attacker-supplied length value is not validated, causing a rea

30 Jul 2026, 22:35 UTC View advisory →
CVE-2026-65400 High 7.1

An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1.

06 Aug 2026, 18:17 UTC View advisory →
CVE-2026-65321 Critical 9.3

PyAthena prior to 3.35.4 contains a sql injection vulnerability that allows unauthenticated attackers to inject arbitrary SQL by exploiting improper quote-

02 Aug 2026, 14:56 UTC View advisory →
CVE-2026-65313 High 8.1

A provisioning script used when installing HIPASE-250 (formerly 250 SCALA) engineering workstations sets a fixed, hard-coded x11vnc password. Because the s

31 Jul 2026, 07:34 UTC View advisory →
CVE-2026-65311 Medium 5.3

The HTTP server component of ANDRITZ HIPASE-250 (formerly 250 SCALA) in affected versions exposes an undocumented endpoint that changes the server's loggin

31 Jul 2026, 07:30 UTC View advisory →
CVE-2026-65310 High 7.5

ANDRITZ HIPASE-250 (formerly 250 SCALA), in the default configuration of affected versions, exposes its data and configuration endpoint without any authent

31 Jul 2026, 07:26 UTC View advisory →
CVE-2026-65309 High 7.5

ANDRITZ HIPASE-250 (formerly 250 SCALA) in affected versions stores and transmits user passwords using a reversible format instead of a one-way password ha

31 Jul 2026, 07:17 UTC View advisory →
CVE-2026-65016 High 7.7

n8n versions before 1.123.64, 2.29.8, and 2.30.1 contain a privilege escalation vulnerability in Enterprise SSO instance-role provisioning. The provisionin

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65015 High 7.2

n8n versions before 2.30.1 contain a privilege escalation vulnerability in the AI Agents feature where the node-execution tool lacks proper authorization c

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65014 Medium 6.3

n8n before 2.28.0 (and before 2.27.4 on the 2.27.x branch) registers the DELETE /${restEndpoint}/test-webhook/:id endpoint before authentication middleware

22 Jul 2026, 11:21 UTC View advisory →
CVE-2026-65013 High 8.7

Onlook through 0.2.32, fixed in commit 423e2e9, contains a broken object level authorization vulnerability that allows authenticated attackers to access an

22 Jul 2026, 16:14 UTC View advisory →
CVE-2026-65012 Medium 6.3

InvokeAI before 6.13.7 contains an unauthenticated directory enumeration vulnerability in the GET /api/v2/models/scan_folder endpoint that accepts attacker

22 Jul 2026, 16:13 UTC View advisory →
CVE-2026-65011 Medium 5.3

Graylog2 Server before commit 46a2eeb contains a missing per-entity permission check in the POST /events/definitions/{definitionId}/duplicate endpoint that

22 Jul 2026, 16:13 UTC View advisory →
CVE-2026-64993 Medium 6.8

Dell RVTools versions prior to 4.8.1, contains an improper certificate validation vulnerability in the collector. A remote unauthenticated attacker could p

06 Aug 2026, 13:38 UTC View advisory →
CVE-2026-64958 High 7.5

An incomplete fix for CVE-2026-50645 means that it is still possible to perform a denial of service attack on Apache CXF by sending a message with many att

06 Aug 2026, 10:13 UTC View advisory →
CVE-2026-64870 Medium 5.3

MaxKB is an open-source AI assistant for enterprise. In versions 2.0.0 through 2.10.4-lts, UpdateStoreTool.update_tool passes caller-supplied download_url

30 Jul 2026, 17:01 UTC View advisory →
CVE-2026-64835 High 8.7

FFmpeg versions 4.4 through 8.1.2 contain an out-of-bounds memory access vulnerability in the ADX audio decoder within libavcodec/adxdec.c that allows atta

22 Jul 2026, 17:24 UTC View advisory →
CVE-2026-64834 High 8.7

FFmpeg versions 0.6.3 through 8.1.2 contain an infinite loop vulnerability in the RTP/ASF demuxer within libavformat/rtpdec_asf.c that allows remote attack

22 Jul 2026, 17:06 UTC View advisory →
CVE-2026-64833 High 7.1

FFmpeg versions 0.7.1 through 8.1.2 contain an out-of-bounds read vulnerability in the S/PDIF muxer that allows attackers to access memory beyond buffer bo

22 Jul 2026, 17:03 UTC View advisory →
CVE-2026-64832 High 8.7

FFmpeg versions 4.4 through 8.1.2 contain a double-free vulnerability in the NVIDIA NVDEC hardware decoder within libavcodec/nvdec.c that allows attackers

22 Jul 2026, 17:01 UTC View advisory →
CVE-2026-64831 High 8.7

FFmpeg versions 8.0 through 8.1.2 contains a stack buffer overflow vulnerability in the Vulkan HEVC hardware decoder that allows remote attackers to overwr

22 Jul 2026, 16:35 UTC View advisory →
CVE-2026-64830 High 8.7

FFmpeg versions 2.1 through 8.1.2 contains a heap buffer overflow vulnerability in the VobSub subtitle demuxer that allows attackers to corrupt adjacent he

22 Jul 2026, 16:33 UTC View advisory →
CVE-2026-64829 Critical 9.1

Question2Answer through 1.8.8 contains a session invalidation vulnerability that allows attackers with a previously obtained remember-me cookie to retain a

22 Jul 2026, 19:57 UTC View advisory →
CVE-2026-64828 Medium 5.3

Froiden TableTrack through 1.3.10 contains a stored cross-site scripting vulnerability that allows unauthenticated attackers to inject arbitrary HTML and J

22 Jul 2026, 15:39 UTC View advisory →
CVE-2026-64827 Critical 9.3

Telenia Software TVox 26.5.3 and prior 26.x versions, and 24.9.21 and prior 24.x versions, contain an authentication bypass vulnerability in set_env.php wh

03 Aug 2026, 13:26 UTC View advisory →
CVE-2026-64816 High 7.1

RapidRAW before 1.6.0 does not validate the lutPath field in preset files before passing it to File::open() in lut_processing.rs. On Windows, a UNC path in

30 Jul 2026, 21:32 UTC View advisory →
CVE-2026-64798 Unscored

Persistent URL login keys were also generated using a non-cryptographic random generator with insufficient entropy.

22 Jul 2026, 20:41 UTC View advisory →
CVE-2026-64797 Unscored

IP Login trusted forwarded client-IP headers without requiring a configured trusted proxy. Attackers could spoof the IP used for automatic login and potent

22 Jul 2026, 20:44 UTC View advisory →
CVE-2026-64796 Unscored

Free did not require both the article creator and last modifier to be Super Users before executing article PHP. Pro did not consistently enforce configured

22 Jul 2026, 20:42 UTC View advisory →
CVE-2026-64795 Unscored

Tag-provided custom HTML, module content/title overrides and decoded modal or tooltip values could execute unsafe markup. A content author could inject Jav

22 Jul 2026, 20:41 UTC View advisory →
CVE-2026-64794 Unscored

User tags, filters and conditions allowed access to insufficiently restricted user fields. Crafted content could expose authentication-related data, raw us

22 Jul 2026, 20:45 UTC View advisory →
CVE-2026-64793 Unscored

Content tags could use ignore flags or property overrides to render restricted or unpublished articles or modules. A content author could thereby expose co

22 Jul 2026, 20:45 UTC View advisory →
CVE-2026-64792 Unscored

Smart Search indexing could render generated content using the indexing administrator’s identity instead of a public guest. Restricted or administrator-onl

22 Jul 2026, 20:40 UTC View advisory →
CVE-2026-64791 Unscored

Administrator routes and install/update/uninstall processing did not consistently enforce component-management and installation permissions. An unauthorize

22 Jul 2026, 20:40 UTC View advisory →
CVE-2026-64783 Unscored

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visio

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64776 Unscored

The issue was addressed with improved bounds checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64775 Unscored

A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Son

27 Jul 2026, 20:11 UTC View advisory →
CVE-2026-64774 Unscored

An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64772 Unscored

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tah

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64771 Unscored

A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tahoe 26.6, tvO

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64770 Unscored

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sono

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64769 Unscored

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sono

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64768 Unscored

An out-of-bounds read issue was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sono

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64767 Unscored

A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A remote

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64766 Unscored

An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64765 Unscored

An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64764 Unscored

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sono

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64763 Unscored

An out-of-bounds write issue was addressed by removing the vulnerable code. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS So

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64762 Unscored

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An a

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64758 Unscored

The issue was addressed with improved bounds checks. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 2

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64757 Unscored

A memory corruption issue was addressed with improved state management. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, vis

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64755 Unscored

An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.6 and iPadOS 26.6. An app may be able to access sensitiv

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64754 Unscored

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sono

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64751 Unscored

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionO

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64749 Unscored

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tahoe 26.6, visionOS 26

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64747 Unscored

A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8,

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64746 Unscored

An authorization issue was addressed with improved validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visionOS 26.6, watchOS 26

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64745 Unscored

This issue was addressed with additional restrictions on the lock screen. This issue is fixed in macOS Sequoia 15.7.8, macOS Tahoe 26.6. A person with phys

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64744 Unscored

An information leakage was addressed with additional validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64743 Unscored

An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64742 Unscored

This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in iOS 26.6 and iPadOS 26.6, tvOS 26.6, visionOS 26.

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64741 Unscored

A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.6 and iPadOS 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. An

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64740 Unscored

A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequ

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64739 Unscored

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sono

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64738 Unscored

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A malic

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64737 Unscored

An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A

27 Jul 2026, 20:15 UTC View advisory →
CVE-2026-64735 Unscored

An inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, m

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64734 Unscored

The issue was addressed with improved checks. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6,

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64733 Unscored

This issue was addressed with improved data protection. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchO

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64732 Unscored

This issue was addressed through improved state management. This issue is fixed in iOS 26.6 and iPadOS 26.6. An attacker with physical access may be able t

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64731 Unscored

A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Tahoe 26.6. A malicious app may be able to

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64730 Unscored

The issue was addressed with improved UI. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64729 Unscored

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionO

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64728 Unscored

A permissions issue was addressed with improved validation. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visi

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64727 Unscored

A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS Tahoe 26.6, tvOS 26.6. An app may be able to cause unexpec

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64726 Unscored

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64725 Unscored

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sono

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64724 Unscored

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Ta

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64723 Unscored

A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64722 Unscored

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tahoe 26.

27 Jul 2026, 20:11 UTC View advisory →
CVE-2026-64721 Unscored

This issue was addressed through improved state management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, mac

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64720 Unscored

A race condition was addressed with improved state handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, watchOS 26.6. An

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64719 Unscored

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6,

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64718 Unscored

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64716 Unscored

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Ta

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64713 Unscored

This issue was addressed with improved checks. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, wa

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64711 Unscored

This issue was addressed with additional entitlement checks. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, ma

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64710 Unscored

A privacy issue was addressed by removing sensitive data. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64709 Unscored

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Ta

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64708 Unscored

A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app m

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64707 Unscored

A permissions issue was addressed with improved validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, mac

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64704 Unscored

A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64703 Unscored

A use after free issue was addressed with improved memory management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64702 Unscored

An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64700 Unscored

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 1

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64699 Unscored

A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64698 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be ab

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64697 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be ab

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64696 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A remote user ma

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64695 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A remote user ma

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-64694 Unscored

An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An ap

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64693 Unscored

A type confusion issue was addressed with improved checks. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macO

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64692 Unscored

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-64691 Unscored

A buffer overflow was addressed with improved size validation. This issue is fixed in macOS Tahoe 26.6. An app may be able to cause unexpected system termi

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-64677 Medium 5.9

Anki is a program for creating and reviewing flashcards. Prior to 25.09.3, endpoints in Anki's local HTTP server do not adequately constrain requested medi

06 Aug 2026, 17:21 UTC View advisory →
CVE-2026-64665 High 8.1

Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.74.1 and 6.24.0, when OAuth login was enabled with a provider that does n

06 Aug 2026, 19:25 UTC View advisory →
CVE-2026-64664 Medium 4.3

Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.74.1 and 6.24.0, an authenticated Control Panel user could use an endpoin

06 Aug 2026, 19:22 UTC View advisory →
CVE-2026-64663 Medium 6.5

Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.74.1 and 6.24.0, manipulating user-supplied input incorporated into Antle

06 Aug 2026, 19:28 UTC View advisory →
CVE-2026-64662 Medium 6.5

Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.74.1 and 6.24.0, an authenticated Control Panel user could view content f

06 Aug 2026, 19:30 UTC View advisory →
CVE-2026-64655 Low 2.1

GitHub CLI (gh) is GitHub’s official command line tool. Prior to 2.97.0, gh attestation verify builds the certificate Subject Alternative Name matcher from

06 Aug 2026, 18:41 UTC View advisory →
CVE-2026-64654 Medium 5.3

GitHub CLI (gh) is GitHub's official command line tool. Prior to version 2.97.0, multiple GitHub CLI commands printed externally controlled gist, API, pull

06 Aug 2026, 18:27 UTC View advisory →
CVE-2026-64653 Medium 5.1

GitHub CLI (gh) is GitHub’s official command line tool. Prior to 2.97.0, some HTTP request URLs interpolate variable path components without percent encodi

06 Aug 2026, 17:51 UTC View advisory →
CVE-2026-64652 Low 3.3

GitHub CLI (gh) is GitHub's official command line tool. Prior to version 2.97.0, gh auth status masked only the characters after the last underscore in cer

06 Aug 2026, 17:45 UTC View advisory →
CVE-2026-64651 Medium 6.3

The `@ai-sdk/harness-opencode` tool connects HarnessAgent to OpenCode through a sandboxed bridge. Prior to version 1.0.28, the tool relay authorizes reques

20 Jul 2026, 20:26 UTC View advisory →
CVE-2026-64650 Medium 6.3

The `@ai-sdk/harness-opencode` tool is an HarnessV1 adapter backed by @openai/codex-sdk, which drives the codex command line interface. Prior to version 1.

20 Jul 2026, 20:27 UTC View advisory →
CVE-2026-64649 High 8.3

Next.js is a React framework for building full-stack web applications. In versions 14.1.1 through 15.5.20 and 16.0.0 through 16.2.10, when a Server Action

27 Jul 2026, 19:27 UTC View advisory →
CVE-2026-64648 Medium 6

Next.js is a React framework for building full-stack web applications. In versions 12.0.0 through 15.5.20 and 16.0.0 through 16.2.10, a server-side fetch w

27 Jul 2026, 19:20 UTC View advisory →
CVE-2026-64647 Medium 6.3

Next.js is a React framework for building full-stack web applications. In versions 12.0.0 through 15.5.20 and 16.0.0 through 16.2.10, a server-side fetch w

27 Jul 2026, 19:11 UTC View advisory →
CVE-2026-64646 Medium 6.3

Next.js is a React framework for building full-stack web applications. In versions 13.0.0 through 15.5.20 and 16.0.0 through 16.2.10, requests targeting Ne

27 Jul 2026, 18:54 UTC View advisory →
CVE-2026-64645 High 8.3

Next.js is a React framework for building full-stack web applications. In versions 12.0.0 through 15.5.20 and 16.0.0 through 16.2.10, a rewrites() or redir

27 Jul 2026, 17:37 UTC View advisory →
CVE-2026-64644 Medium 6.3

Next.js is a React framework for building full-stack web applications. In versions 15.5.0 through 15.5.20 and 16.0.0 through 16.2.10, when self-hosting Nex

27 Jul 2026, 17:54 UTC View advisory →
CVE-2026-64643 Medium 6.3

Next.js is a React framework for building full-stack web applications. In versions 12.0.0 through 15.5.20 and 16.0.0 through 16.2.10, Next.js applications

27 Jul 2026, 17:48 UTC View advisory →
CVE-2026-64642 High 8.3

Next.js is a React framework for building full-stack web applications. In versions 16.0.0 through 16.2.10, crafted requests targeting Next.js applications

27 Jul 2026, 17:45 UTC View advisory →
CVE-2026-64641 High 8.2

Next.js is a React framework for building full-stack web applications. In versions 13.0.0 through 15.5.20 and 16.0.0 through 16.2.10, crafted requests targ

27 Jul 2026, 17:40 UTC View advisory →
CVE-2026-64640 Medium 5.3

Apache Polaris did not consistently validate storage locations supplied during table and view registration. An authenticated principal with permission to r

06 Aug 2026, 09:08 UTC View advisory →
CVE-2026-64634 High 8.4

A vulnerability allowing local privilege escalation to the Reporter service context.

04 Aug 2026, 15:56 UTC View advisory →
CVE-2026-64633 Critical 10

A vulnerability allowing remote unauthenticated code execution on the agent host.

04 Aug 2026, 15:56 UTC View advisory →
CVE-2026-64631 High 8.6

A vulnerability allowing a low-privileged user to inject SQL and extract database contents.

04 Aug 2026, 15:56 UTC View advisory →
CVE-2026-64630 Medium 5.3

A vulnerability allowing a low-privileged user to retrieve report data outside the scope of a shared report link.

04 Aug 2026, 15:56 UTC View advisory →
CVE-2026-64626 Medium 5.3

AVideo versions from commit 0dbadbca through latest master contain a server-side request forgery vulnerability in the encoder download-by-URL flow due to a

20 Jul 2026, 21:50 UTC View advisory →
CVE-2026-64625 Critical 9.3

AVideo before 29.0 contains an incomplete fix for CVE-2026-45578 where execAsync() re-wraps escaped commands in double-quoted sh -c, allowing command subst

20 Jul 2026, 21:50 UTC View advisory →
CVE-2026-64624 High 8.5

FreeRDP before 3.28.0 treats lines beginning with forward slash in RDP files as raw command-line options, exposing the entire CLI parser surface to untrust

20 Jul 2026, 21:50 UTC View advisory →
CVE-2026-64623 High 8.8

Network-AI before 5.13.4 contains an improper cryptographic signature verification vulnerability in APSAdapter where the default local verifier accepts any

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-64622 Critical 9.3

Network-AI (npm: network-ai) versions 5.12.2 through 5.13.3 fail to apply the configured authorization check (checkAuth/secret) to the ApprovalInbox GET re

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-64621 Critical 9.3

FreeRDP before 3.28.0 (affected 3.x through 3.27.1) contains a double-free vulnerability in freerdp_client_rdp_file_apply_to_settings() (client/common/file

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-64620 Critical 9.3

FreeRDP before 3.28.0 (affected <=3.27.1) contains a heap-based buffer overflow in crypto_rsa_common() (libfreerdp/crypto/crypto.c). The function writes th

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-64619 High 8.7

FileCodeBox before 2.4 contains a rate-limit bypass vulnerability in the IPRateLimit class that allows unauthenticated attackers to circumvent request thro

20 Jul 2026, 18:50 UTC View advisory →
CVE-2026-64612 High 7.5

A flaw was found in libcupsfilters and cups-filters. The PNG image reading function creates a libpng reader without installing an error recovery handler, c

20 Jul 2026, 17:33 UTC View advisory →
CVE-2026-64607 Medium 5.3

HttpClient based on the classic i/o model fails to correctly release the underlying connection back to the connection manager if it encounters an invalid o

31 Jul 2026, 10:12 UTC View advisory →
CVE-2026-64604 Unscored

In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updatin

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64603 Unscored

In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2f

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64602 Unscored

In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoun

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64601 Unscored

In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64600 Unscored

In the Linux kernel, the following vulnerability has been resolved: xfs: resample the data fork mapping after cycling ILOCK xfs_reflink_fill_{cow_hole,dela

23 Jul 2026, 05:46 UTC View advisory →
CVE-2026-64599 Unscored

In the Linux kernel, the following vulnerability has been resolved: crypto: amlogic - avoid double cleanup in meson_crypto_probe() When meson_allocate_chan

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64598 Unscored

In the Linux kernel, the following vulnerability has been resolved: smb/client: Fix error code in smb2_aead_req_alloc() The "*num_sgs" variable is a u32 so

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64597 Unscored

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_close() replay A response-bearing attempt can retu

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64596 Unscored

In the Linux kernel, the following vulnerability has been resolved: libfs: set SB_I_NOEXEC and SB_I_NODEV by default in init_pseudo() Since commit 1e7ab6f6

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64595 Unscored

In the Linux kernel, the following vulnerability has been resolved: HID: hid-lenovo-go: cancel cfg_setup work in hid_go_cfg_remove() hid_go_cfg_probe() ini

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64594 Unscored

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: initialize reset_work at allocation time ffs_fs_kill_sb() unconditio

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64593 Unscored

In the Linux kernel, the following vulnerability has been resolved: btrfs: do not trim a device which is not writeable [BUG] There is a bug report that btr

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64592 Unscored

In the Linux kernel, the following vulnerability has been resolved: riscv: mm: Unconditionally sfence.vma for spurious fault Svvptc does not guarantee that

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64591 Unscored

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Avoid WARNING in sva unbind path The Intel IOMMU driver allows SVA on devic

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64590 Unscored

In the Linux kernel, the following vulnerability has been resolved: dma-buf/udmabuf: skip redundant cpu sync to fix cacheline EEXIST warning When CONFIG_DM

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64589 Unscored

In the Linux kernel, the following vulnerability has been resolved: i2c: core: fix NULL-deref on adapter registration failure If adapter registration ever

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64588 Unscored

In the Linux kernel, the following vulnerability has been resolved: fuse-uring: fix data races on ring->ready On weakly-ordered architectures, the store to

06 Aug 2026, 07:13 UTC View advisory →
CVE-2026-64587 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: arc: emac: quiesce interrupts before requesting IRQ Normal RX/TX interru

06 Aug 2026, 07:06 UTC View advisory →
CVE-2026-64586 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: drain bus_reset work on device removal brcmf_fw_crashed() and the debug

06 Aug 2026, 07:06 UTC View advisory →
CVE-2026-64585 Unscored

In the Linux kernel, the following vulnerability has been resolved: can: esd_usb: kill anchored URBs before freeing netdevs esd_usb_disconnect() frees each

06 Aug 2026, 07:06 UTC View advisory →
CVE-2026-64584 Unscored

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_midi: cancel pending IN work before freeing the midi object The f_midi d

06 Aug 2026, 07:06 UTC View advisory →
CVE-2026-64583 Unscored

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: udc: bdc: free IRQ and drain func_wake_notify before teardown The Broadcom

06 Aug 2026, 07:06 UTC View advisory →
CVE-2026-64582 Unscored

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix a use-after-free problem in rxe_mmap rxe_mmap() removes a rxe_mmap_info s

05 Aug 2026, 11:25 UTC View advisory →
CVE-2026-64581 Unscored

In the Linux kernel, the following vulnerability has been resolved: xfrm: fix sk_dst_cache double-free in xfrm_user_policy() xfrm_user_policy() clears the

05 Aug 2026, 08:09 UTC View advisory →
CVE-2026-64580 Unscored

In the Linux kernel, the following vulnerability has been resolved: xfrm6: clear dst.dev on error to avoid double netdev_put in xfrm6_fill_dst() On the err

05 Aug 2026, 08:09 UTC View advisory →
CVE-2026-64579 Unscored

In the Linux kernel, the following vulnerability has been resolved: xfrm: policy: preallocate inexact bins before xfrm_hash_rebuild reinsert xfrm_hash_rebu

05 Aug 2026, 08:09 UTC View advisory →
CVE-2026-64578 Unscored

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate compound request size before reading StructureSize2 When ksmbd validate

05 Aug 2026, 08:09 UTC View advisory →
CVE-2026-64577 Unscored

In the Linux kernel, the following vulnerability has been resolved: gtp: check skb_pull_data() return in gtp1u_send_echo_resp() gtp1u_send_echo_resp() igno

05 Aug 2026, 08:09 UTC View advisory →
CVE-2026-64576 Unscored

In the Linux kernel, the following vulnerability has been resolved: nexthop: initialize extack in nh_res_bucket_migrate() nh_res_bucket_migrate() passes an

05 Aug 2026, 08:09 UTC View advisory →
CVE-2026-64575 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: tcp: fix double sock release on batch realloc bpf_iter_tcp_batch() releases the cu

05 Aug 2026, 08:09 UTC View advisory →
CVE-2026-64574 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: tear down new links on vif update error path When ieee80211_vif_update_

05 Aug 2026, 08:08 UTC View advisory →
CVE-2026-64573 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: fix NVM tag length underflow in TLV parser In the TLV_TYPE_NVM branch o

05 Aug 2026, 08:08 UTC View advisory →
CVE-2026-64572 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipv4: fib: free fib_alias with kfree_rcu() on insert error path fib_table_insert() publ

05 Aug 2026, 08:08 UTC View advisory →
CVE-2026-64571 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: p54: validate RX frame length in p54_rx_eeprom_readback() p54_rx_eeprom_readback(

05 Aug 2026, 08:08 UTC View advisory →
CVE-2026-64570 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix fils_discovery double free on alloc failure ieee80211_set_fils_disc

05 Aug 2026, 08:08 UTC View advisory →
CVE-2026-64569 Unscored

In the Linux kernel, the following vulnerability has been resolved: mpls: fix NULL deref in mpls_valid_fib_dump_req() on CONFIG_INET=n On CONFIG_INET=n bui

05 Aug 2026, 08:08 UTC View advisory →
CVE-2026-64568 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix unsol_bcast_probe_resp double free on alloc failure ieee80211_set_u

05 Aug 2026, 08:08 UTC View advisory →
CVE-2026-64567 Unscored

In the Linux kernel, the following vulnerability has been resolved: btrfs: reject free space cache with more entries than pages When loading a v1 free spac

05 Aug 2026, 08:08 UTC View advisory →
CVE-2026-64566 Unscored

In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: propagate SKBFL_SHARED_FRAG in iptfs_skb_add_frags() When iptfs_skb_add_fr

05 Aug 2026, 08:06 UTC View advisory →
CVE-2026-64565 Unscored

In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix heap-buffer-overflow in ims_pcu_process_data() The `ims_pcu_proces

04 Aug 2026, 06:23 UTC View advisory →
CVE-2026-64564 Unscored

In the Linux kernel, the following vulnerability has been resolved: sctp: don't free the ASCONF's own transport in DEL-IP processing sctp_process_asconf()

04 Aug 2026, 06:23 UTC View advisory →
CVE-2026-64563 Unscored

In the Linux kernel, the following vulnerability has been resolved: rhashtable: clear stale iter->p on table restart rhashtable_walk_start_check() has two

04 Aug 2026, 06:23 UTC View advisory →
CVE-2026-64562 Unscored

In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Hide shadow VMCS right after VMCLEAR free_nested() frees the shadow VMCS whi

04 Aug 2026, 06:23 UTC View advisory →
CVE-2026-64561 Unscored

In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Check for invalid/obsolete root *after* making MMU pages available Check for

04 Aug 2026, 06:23 UTC View advisory →
CVE-2026-64555 Unscored

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Fix SPSR_EL2 restore in kvm_hyp_handle_mops() kvm_hyp_handle_mops() res

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64554 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: fix stale prevhdr pointer in br_ip6_fragment() br_ip6_fragment() get

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64553 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: psample: fix info leak in PSAMPLE_ATTR_DATA psample open codes nla_put() presumabl

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64552 Unscored

In the Linux kernel, the following vulnerability has been resolved: virtio-net: fix len check in receive_big() receive_big() bounds the device-announced le

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64551 Unscored

In the Linux kernel, the following vulnerability has been resolved: sctp: validate STALE_COOKIE cause length before reading staleness When an ERROR chunk w

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64550 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: validate MAP frame length before ingress parsing When ingress dea

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64549 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: bpa10x: avoid OOB read of revision string in bpa10x_setup() bpa10x_setup() s

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64548 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: reject overflowing copy + len in bpf_msg_push_data() When the scatterlist

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64547 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: usb: net1080: validate packet_len before pad-byte access in rx_fixup For an even p

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64546 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/edid: fix OOB read in drm_parse_tiled_block() drm_parse_tiled_block() casts the Dis

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64545 Unscored

In the Linux kernel, the following vulnerability has been resolved: net, bpf: check master for NULL in xdp_master_redirect() xdp_master_redirect() derefere

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64544 Unscored

In the Linux kernel, the following vulnerability has been resolved: crypto: asymmetric_keys - fix OOB read in pefile_digest_pe_contents pefile_digest_pe_co

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64543 Unscored

In the Linux kernel, the following vulnerability has been resolved: tipc: fix use-after-free of the discoverer in tipc_disc_rcv() bearer_disable() frees b-

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64542 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipv6: ndisc: fix NULL deref in accept_untracked_na() accept_untracked_na() re-fetches t

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64541 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/smc: fix UAF in smc_cdc_rx_handler() by pinning the socket smc_cdc_rx_handler() loo

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64540 Unscored

In the Linux kernel, the following vulnerability has been resolved: usbnet: gl620a: fix out-of-bounds read in genelink_rx_fixup() genelink_rx_fixup() split

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64539 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: eir: Fix stack OOB write when prepending the Flags AD eir_create_adv_data()

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64538 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix null-ptr-deref in fib6_nh_mtu_change(). fib6_nh_mtu_change() re-fetches idev

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64537 Unscored

In the Linux kernel, the following vulnerability has been resolved: bridge: cfm: reject invalid CCM interval at configuration time ccm_tx_work_expired() re

27 Jul 2026, 20:10 UTC View advisory →
CVE-2026-64207 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/sched: dualpi2: fix GSO backlog accounting When DualPI2 splits a GSO skb into N seg

20 Jul 2026, 16:27 UTC View advisory →
CVE-2026-64206 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: cancel pending_rx_work before taking conn->lock l2cap_conn_del() take

20 Jul 2026, 16:27 UTC View advisory →
CVE-2026-64205 Unscored

In the Linux kernel, the following vulnerability has been resolved: i2c: i801: fix hardware state machine corruption in error path A severe livelock and su

20 Jul 2026, 16:27 UTC View advisory →
CVE-2026-64194 Unscored

Net::DNS versions through 1.55 for Perl allow Denial of Service via deep DNS compression pointer chains. Net::DNS::DomainName::decode follows RFC 1035 comp

20 Jul 2026, 17:55 UTC View advisory →
CVE-2026-64193 Unscored

Net::DNS versions through 1.55 for Perl allow remote execution injection via EDNS EXTENDED ERROR. Net::DNS::RR::OPT::EXTENDED_ERROR::_decompose parses the

20 Jul 2026, 17:54 UTC View advisory →
CVE-2026-64192 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Reject BPF_MAP_TYPE_INODE_STORAGE creation if BPF LSM is uninitialized When CONFIG

20 Jul 2026, 16:27 UTC View advisory →
CVE-2026-64191 Unscored

In the Linux kernel, the following vulnerability has been resolved: i2c: stub: Reject I2C block transfers with invalid length The I2C_SMBUS_I2C_BLOCK_DATA

20 Jul 2026, 16:27 UTC View advisory →
CVE-2026-64190 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: team: fix NULL pointer dereference in team_xmit during mode change __team_change_m

20 Jul 2026, 16:27 UTC View advisory →
CVE-2026-64189 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: fix race between dump and ip_set_list resize The release path of ip_s

20 Jul 2026, 16:27 UTC View advisory →
CVE-2026-64188 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: fix endpoint use-after-free in rmnet_dellink() rmnet_dellink() re

20 Jul 2026, 16:27 UTC View advisory →
CVE-2026-64187 Unscored

In the Linux kernel, the following vulnerability has been resolved: xfs: fail recovery on a committed log item with no regions If the first op of a transac

20 Jul 2026, 16:27 UTC View advisory →
CVE-2026-63771 Medium 6

Adminer before 5.4.3 contains a cookie injection vulnerability that allows attackers to manipulate cookie attributes by injecting arbitrary values through

20 Jul 2026, 18:57 UTC View advisory →
CVE-2026-63770 High 8.2

Glance through 0.8.5 contains an IP address spoofing vulnerability in the authentication handler that allows unauthenticated attackers to bypass brute-forc

20 Jul 2026, 19:02 UTC View advisory →
CVE-2026-63769 Medium 6.3

Huginn through 2022.08.18 contains a server-side request forgery vulnerability in the fetch_url method of ScenarioImport that allows authenticated users to

20 Jul 2026, 19:05 UTC View advisory →
CVE-2026-63768 Medium 5.3

cal.diy through 6.2.0 contains an open redirect vulnerability in the conferencing OAuth callback endpoint that allows attackers to redirect users to arbitr

20 Jul 2026, 19:08 UTC View advisory →
CVE-2026-63767 Critical 9.3

ktransformers through 0.6.3, fixed in commit def0f93, contains an unauthenticated pickle deserialization vulnerability that allows remote attackers to exec

20 Jul 2026, 19:13 UTC View advisory →
CVE-2026-63766 Critical 9.3

GPT-SoVITS through 20250606v2pro contains an OS command injection vulnerability in webui.py where ASR, slice, denoise, and uvr5 functions interpolate unsan

20 Jul 2026, 19:18 UTC View advisory →
CVE-2026-63763 High 7.5

SurrealDB before 2.5.0 and before 3.0.0-beta.3 contains a confused deputy privilege escalation vulnerability. Unprivileged users (e.g., those with the data

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63762 Medium 6

SurrealDB before v2.6.1 (and before v3.0.0-beta.3) contains a denial of service vulnerability in its embedded JavaScript scripting engine, which is enabled

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63761 Medium 5.3

SurrealDB before 3.1.0 silently substitutes the ES384 algorithm when a JWT access method is configured with ALGORITHM ES512 (DEFINE ACCESS ... TYPE JWT ALG

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63760 High 8.7

SurrealDB before 3.1.0 fails to enforce the configured recursion depth limit in the value and JSON parser when processing nested braces, brackets, or paren

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63759 High 7.1

SurrealDB before 3.1.0 fails to enforce recursion depth limits in the type/kind parser when processing nested type annotations. Authenticated attackers can

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63758 Medium 5.3

SurrealDB versions before 3.1.0 contain an authorization bypass vulnerability in the KILL statement that allows authenticated database users to terminate o

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63757 High 8.7

SurrealDB versions before 3.1.0 contain a session hijacking vulnerability where the HTTP /rpc sessions method returns attached session UUIDs without authen

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63756 Critical 9.2

SurrealDB versions before 3.1.0 contain a time-of-check/time-of-use race condition in the HTTP /rpc endpoint that allows unauthenticated requests to inheri

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63755 High 7.1

SurrealDB before 3.1.0 evaluates user-supplied WHERE clauses in SELECT statements (and SET/MERGE/CONTENT/PATCH clauses in UPDATE, UPSERT, INSERT ON DUPLICA

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63754 High 7.1

SurrealDB versions before 3.1.0 contain a denial of service vulnerability where malicious LIVE queries with WHERE clauses that evaluate to errors cause all

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63753 Medium 5.3

SurrealDB before 3.1.0 fails to refresh authentication state in LIVE SELECT subscriptions when session state changes. Attackers can continue receiving real

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63752 Medium 5.3

SurrealDB before 3.1.0 contains an authorization bypass vulnerability in the RELATE statement that allows authenticated users with CREATE permission to ove

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63751 Medium 5.3

SurrealDB versions before 3.1.0 contain a field-level permission bypass vulnerability in JSON Patch operations that allows authenticated users to read prot

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63750 Medium 6.9

SurrealDB versions before 3.1.0 fail to apply the SURREAL_WEBSOCKET_MAX_MESSAGE_SIZE limit to anonymous /sql WebSocket connections, allowing attackers to b

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63749 Medium 5.3

SurrealDB versions before 3.1.0 contain an authentication bypass vulnerability in LIVE SELECT subscriptions where permission expressions referencing $value

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63748 Medium 5.3

SurrealDB versions before 3.1.0 contain an information disclosure vulnerability where authenticated users with UPDATE access can read field values hidden b

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63747 High 8.7

SurrealDB versions before 3.1.0 contain a denial of service vulnerability in the RPC use handler that panics when db is set without a namespace. Unauthenti

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63746 High 7.1

SurrealDB versions before 3.1.0 fail to enforce table SELECT permissions when traversing graph edges or back-references. Authenticated users can read recor

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63745 Medium 5.3

SurrealDB versions before 3.1.0 contain an authorization bypass vulnerability where authenticated users can spoof composite record-id field values by writi

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63744 Medium 5.1

SurrealDB before 3.1.5 contains a server-side request forgery vulnerability in the JWKS fetcher that follows HTTP redirects without re-validating redirect

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63743 Medium 5.3

SurrealDB before 3.1.0 contains a capability bypass vulnerability in HTTP redirect handling that allows authenticated users to circumvent port-scoped --den

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63742 Medium 5.3

SurrealDB versions before 3.1.0 contain a field-level SELECT permission bypass vulnerability in indexed COUNT fast paths. Attackers can execute COUNT queri

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63741 Medium 6.9

SurrealDB versions before 3.1.0 fail to validate DEFINE NAMESPACE or DEFINE DATABASE permissions when processing USE NS and USE DB statements. Unauthentica

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63740 High 7.1

SurrealDB versions before 3.1.4 fail to properly enforce SELECT permissions on array elements (field.*) for record users, leaking denied array elements ins

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63739 High 8.3

SurrealDB before 3.1.5 contains an arbitrary file read vulnerability in the DEFINE ANALYZER mapper filter that allows database users with EDITOR or OWNER r

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63738 Medium 5.3

SurrealDB versions 3.1.0 before 3.1.5 fail to enforce field-level SELECT permissions when records are accessed through graph-edge or back-reference travers

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63737 High 7.1

SurrealDB versions before 3.1.5 contain a denial of service vulnerability where authenticated users can crash the server with queries containing long chain

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63736 Medium 5.1

SurrealDB before 3.2.0 contains a server-side request forgery vulnerability in the JWKS fetcher that validates only the URL hostname string against allow-l

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63735 High 8.6

SurrealDB versions before 3.2.0 fail to validate namespace and database scope in custom API routes, allowing authenticated users to invoke endpoints in dif

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63734 Medium 6.9

SurrealDB versions before 3.2.0 contain a denial of service vulnerability in the SurrealML header parser that allows authenticated Owner-role users to cras

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63733 Medium 5.3

SurrealDB versions before 3.2.0 contain a permissions bypass vulnerability where data-modifying statements within PERMISSIONS clauses execute with enforcem

20 Jul 2026, 12:04 UTC View advisory →
CVE-2026-63731 Medium 6.3

HyperDX before 2.31.0 contains a server-side request forgery vulnerability that allows authenticated team members to direct the server to arbitrary interna

20 Jul 2026, 18:45 UTC View advisory →
CVE-2026-63730 Medium 5.3

HyperDX before 2.31.0 contains a server-side request forgery vulnerability that allows authenticated team members to direct the server to make requests to

20 Jul 2026, 18:44 UTC View advisory →
CVE-2026-63729 Medium 6.8

The SyncTeX parser (synctex_parser.c) shipped with TeX Live and embedded by downstream consumers such as GNOME Evince contains a heap use-after-free vulner

21 Jul 2026, 01:35 UTC View advisory →
CVE-2026-63728 High 8.1

Gitleaks prior to 8.30.1 contains a template injection vulnerability that allows attackers who can supply or influence report templates to read arbitrary e

20 Jul 2026, 23:32 UTC View advisory →
CVE-2026-63725 High 8.6

sysPass's FileBackupService::doBackupFiles() in lib/SP/Services/Backup/FileBackupService.php around line 388 builds a tar shell command by string-concatena

06 Aug 2026, 17:34 UTC View advisory →
CVE-2026-63687 Critical 9.1

Apache CXF's JwtRequestCodeFilter copies all claims from a signed request JWT into the authorization parameter map without excluding security-sensitive par

06 Aug 2026, 11:23 UTC View advisory →
CVE-2026-63685 Unscored

Administrator routes and replacement requests did not consistently require Super User permission and a valid token. An unauthorized backend user or CSRF at

22 Jul 2026, 20:43 UTC View advisory →
CVE-2026-63684 Unscored

Administrator actions, editor popups and import/export requests lacked consistent token, item-permission and input-validation checks. Unauthorized backend

22 Jul 2026, 20:39 UTC View advisory →
CVE-2026-63683 Unscored

IP and GeoIP conditions trusted spoofable forwarded headers, allowing remote clients to bypass location-based rules.

22 Jul 2026, 20:42 UTC View advisory →
CVE-2026-63637 High 8.6

Dgraph is an open source distributed GraphQL database. Prior to 25.3.8, maybeQuoteArg in graphql/resolve/query_rewriter.go passes regexp filter strings int

06 Aug 2026, 20:20 UTC View advisory →
CVE-2026-63563 Medium 6.9

Sharp and Toshiba Tec MFPs (multifunction printers) for a certain market have been shipped with the user authentication feature disabled in the initial con

03 Aug 2026, 07:57 UTC View advisory →
CVE-2026-63559 High 8.7

An integer overflow in the UA_Variant arrayDimensions product computation in open62541 may allow a remote attacker to read out-of-bounds heap memory, poten

30 Jul 2026, 21:47 UTC View advisory →
CVE-2026-63550 High 7.1

The MMS BER decoder contains a boundary-handling flaw in the processing of certain fields within confirmed-request messages. When a crafted BER-encoded ele

30 Jul 2026, 22:43 UTC View advisory →
CVE-2026-63545 Low 2.4

Sharp and Toshiba Tec MFPs (multifunction printers) caches data internally when printing, and leave them uncleared. They may be accessed later by other use

03 Aug 2026, 07:57 UTC View advisory →
CVE-2026-63508 Critical 10

Missing authentication for critical function in Microsoft Planetary Computer Pro allows an unauthorized attacker to elevate privileges over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-63457 Medium 6.5

A potential denial of service vulnerability exists in HPE Integrated Lights-Out 6 (iLO 6) prior to v1.78.

05 Aug 2026, 18:11 UTC View advisory →
CVE-2026-63456 Critical 9.8

Multiple vulnerabilities in the REST API interface of HPE Networking SD-WAN Orchestrator could allow an unauthenticated remote attacker to bypass web authe

04 Aug 2026, 16:41 UTC View advisory →
CVE-2026-63455 Critical 9.8

Multiple vulnerabilities in the REST API interface of HPE Networking SD-WAN Orchestrator could allow an unauthenticated remote attacker to bypass web authe

04 Aug 2026, 16:40 UTC View advisory →
CVE-2026-63429 High 8.6

HeyForm is an open-source form builder. Prior to version 3.0.0-rc.9, `POST /api/upload` has no authentication guard, no global guard, no form-context valid

20 Jul 2026, 15:54 UTC View advisory →
CVE-2026-63428 Medium 5.8

HeyForm is an open-source form builder. Prior to version 3.0.0-rc.9, `completeSubmission` accepts a `hiddenFields: [{id, name, value}]` array from the subm

20 Jul 2026, 15:50 UTC View advisory →
CVE-2026-63397 High 7.1

remorses/genql before version 6.3.4 allows an authenticated attacker with control of the GraphQL schema that is passed to genql to inject arbitrary JavaScr

16 Jul 2026, 19:14 UTC View advisory →
CVE-2026-63362 High 8.2

An unsigned integer underflow in the PubSub signature verification path in open62541 may allow a remote attacker to cause a denial of service via a crafted

30 Jul 2026, 22:01 UTC View advisory →
CVE-2026-63309 Medium 5.3

SurrealDB before 3.1.5 fail to apply field-level SELECT permissions to ORDER BY clauses, allowing authenticated users to leak the relative ordering of rest

17 Jul 2026, 16:14 UTC View advisory →
CVE-2026-63308 Medium 5.3

Helm through 4.2.3, fixed in commit ba6c9a2, contains a denial of service vulnerability in the Files.Lines template helper in pkg/engine/files.go that allo

17 Jul 2026, 16:14 UTC View advisory →
CVE-2026-63307 High 7.1

Chat2DB before 5.3.0 contains an insecure direct object reference vulnerability in the GET /api/connection/datasource/{id} endpoint. The handler calls data

17 Jul 2026, 16:13 UTC View advisory →
CVE-2026-63306 Critical 9.2

stoatchat before 0.13.5 contains an unauthenticated server-side request forgery vulnerability in the /proxy and /embed endpoints that accept arbitrary URLs

16 Jul 2026, 12:19 UTC View advisory →
CVE-2026-63305 Critical 9.2

AVideo through 29.0 contains an OS command injection vulnerability in the ffmpeg.json.php endpoint where notifyCode and callback parameters are concatenate

16 Jul 2026, 12:19 UTC View advisory →
CVE-2026-63304 Critical 9.2

AVideo through 29.0 contains an OS command injection vulnerability in plugin/API/standAlone/functions.php where the listFFmpegProcesses() function interpol

16 Jul 2026, 12:19 UTC View advisory →
CVE-2026-63281 Unscored

Stored condition values could also execute HTML/JavaScript in administrator summaries.

22 Jul 2026, 20:40 UTC View advisory →
CVE-2026-63280 Unscored

Conditions administration did not consistently enforce tokens and component/mapped-item permissions.

22 Jul 2026, 20:43 UTC View advisory →
CVE-2026-63265 Unscored

Privileged Regular Labs AJAX endpoints did not consistently require valid CSRF tokens, matching component/item permissions and trusted server-generated for

22 Jul 2026, 20:44 UTC View advisory →
CVE-2026-63264 Medium 5.3

The Joomla extension JoomShopping is vulnerable to an reflected XSS vulnerability in the product frontend controller.

22 Jul 2026, 08:32 UTC View advisory →
CVE-2026-63252 High 8.7

In Eclipse Milo versions 0.6.0 through 1.1.4, UASC server transport handlers fail to release retained partial message chunks when a channel disconnects, al

04 Aug 2026, 12:03 UTC View advisory →
CVE-2026-63248 Medium 6.9

In Eclipse Milo versions 0.6.0 through 1.1.4, OPC UA server diagnostics nodes do not enforce access authorization. An anonymous client can enable diagnosti

04 Aug 2026, 12:07 UTC View advisory →
CVE-2026-63226 Medium 6.9

Printers and Multifunction Printers (MFPs) provided by Ricoh Company, Ltd. do not implement restrictions on SSH port forwarding, allowing to connect to arb

23 Jul 2026, 05:28 UTC View advisory →
CVE-2026-63223 Critical 9.8

CodeIgniter is a PHP full-stack web framework. Prior to 4.7.4, the is_image and mime_in upload validation rules do not independently enforce a safe client

31 Jul 2026, 04:10 UTC View advisory →
CVE-2026-63222 High 7.5

CodeIgniter is a PHP full-stack web framework. Prior to 4.7.4, calling UploadedFile::move() without a second argument uses the client-provided filename wit

31 Jul 2026, 04:06 UTC View advisory →
CVE-2026-63221 Critical 9.4

CodeIgniter is a PHP full-stack web framework. From 4.3.0 through 4.7.3, Query Builder deleteBatch() substitutes bound values from where() conditions into

31 Jul 2026, 04:03 UTC View advisory →
CVE-2026-63220 Medium 4.8

CodeIgniter is a PHP full-stack web framework. In versions prior to 4.7.4, IncomingRequest::isSecure() trusted the X-Forwarded-Proto and Front-End-Https he

31 Jul 2026, 03:50 UTC View advisory →
CVE-2026-63175 High 7.1

PlaywrightCapture stored capture-specific configuration and runtime data as mutable class-level variables rather than instance-level variables. Consequentl

15 Jul 2026, 21:26 UTC View advisory →
CVE-2026-63108 High 7.7

Roo Code through 3.54.0 contains a command injection vulnerability in the auto-approve execute feature that allows attackers to bypass allowlist/denylist e

20 Jul 2026, 18:24 UTC View advisory →
CVE-2026-63107 Medium 6.3

LimeSurvey through 6.17.10 and 7.0.4 contains a server-side request forgery vulnerability in the REST API survey template endpoint that allows authenticate

20 Jul 2026, 18:14 UTC View advisory →
CVE-2026-63102 Medium 5.3

rConfig Core before 8.2.8 contains a privilege escalation vulnerability that allows authenticated users to assign arbitrary roles to any account by submitt

20 Jul 2026, 15:31 UTC View advisory →
CVE-2026-63101 High 8.7

Open Event Server through 1.19.1 contains a missing authentication vulnerability that allows unauthenticated attackers to export the complete member roster

17 Jul 2026, 15:51 UTC View advisory →
CVE-2026-63100 High 7.1

Maybe through 0.6.0 contains a missing authorization vulnerability that allows authenticated low-privilege member-role users to access and modify global ho

17 Jul 2026, 15:45 UTC View advisory →
CVE-2026-63099 High 7.1

TheHive through 4.1.24 contains a broken object-level authorization vulnerability in the attachment download endpoints that allows any authenticated user t

17 Jul 2026, 15:39 UTC View advisory →
CVE-2026-63098 Medium 6.9

TheHive through 4.1.24 contains an unauthenticated information disclosure vulnerability that allows unauthenticated attackers to retrieve sensitive configu

17 Jul 2026, 15:38 UTC View advisory →
CVE-2026-63097 Medium 5.3

Dendrite through 0.13.8 contains an improper access control vulnerability in the syncapi /context endpoint (syncapi/routing/context.go) that allows authent

17 Jul 2026, 15:32 UTC View advisory →
CVE-2026-63096 Medium 6.9

Dendrite through 0.13.8 contains a server-side request forgery vulnerability that allows unauthenticated attackers to cause the server to open outbound TLS

17 Jul 2026, 15:30 UTC View advisory →
CVE-2026-63095 High 7.1

Dendrite through 0.13.8 contains an improper authorization vulnerability in the Matrix Client-Server API that allows any authenticated local user to delete

17 Jul 2026, 15:27 UTC View advisory →
CVE-2026-63094 High 7.6

SigNoz through 0.133.0 contains an open redirect vulnerability in the SSO authentication flow that allows unauthenticated attackers to steal session tokens

17 Jul 2026, 14:22 UTC View advisory →
CVE-2026-63093 High 8.7

Cursor for Windows version 3.2.16 contains a binary planting vulnerability that allows remote attackers to achieve arbitrary code execution by placing a ma

17 Jul 2026, 14:23 UTC View advisory →
CVE-2026-63091 High 7.1

ProFTPD before 1.3.9c and 1.3.10rc3 contains a signed integer overflow vulnerability in the mod_sftp module's SCP size-record parser that allows authentica

20 Jul 2026, 14:22 UTC View advisory →
CVE-2026-63090 High 8.7

ProFTPD before 1.3.9c and 1.3.10rc3 contains a heap-based buffer overflow vulnerability in the mod_sftp module that allows authenticated low-privilege atta

20 Jul 2026, 14:22 UTC View advisory →
CVE-2026-63089 Critical 9

WireGuard Easy through 15.3.0, fixed in commit 66b292b, contains a cryptographically weak one-time link token generation vulnerability that allows unauthen

16 Jul 2026, 19:28 UTC View advisory →
CVE-2026-63088 High 7.7

stoatchat before 0.14.0 contains a server-side request forgery (SSRF) vulnerability that allows unauthenticated network-accessible attackers to bypass the

16 Jul 2026, 16:40 UTC View advisory →
CVE-2026-63087 Critical 9.3

Grafana OnCall through 1.16.11 contains an unauthenticated access vulnerability that allows remote attackers to obtain a valid PluginAuthToken by sending a

16 Jul 2026, 16:03 UTC View advisory →
CVE-2026-63086 Medium 6.9

text-generation-inference through 3.3.7 contains a server-side request forgery (SSRF) vulnerability in the OpenAI-compatible multimodal chat completions en

16 Jul 2026, 15:59 UTC View advisory →
CVE-2026-63085 High 8.7

Axelor Open Platform versions 8.x prior to 8.2.2 contains an authorization bypass vulnerability that allows authenticated non-admin users to escalate privi

16 Jul 2026, 15:56 UTC View advisory →
CVE-2026-63082 Medium 5.3

Perfect Support Ticketing & Document Management System through 1.7 contains a broken access control vulnerability that allows authenticated attackers with

16 Jul 2026, 15:35 UTC View advisory →
CVE-2026-63081 Medium 5.1

Perfect Support Ticketing & Document Management System through 1.7 contains a stored cross-site scripting vulnerability that allows authenticated attackers

16 Jul 2026, 15:33 UTC View advisory →
CVE-2026-63077 Critical 9.8

In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent polling protocol

27 Jul 2026, 16:44 UTC View advisory →
CVE-2026-63071 Unscored

Improper Isolation or Compartmentalization vulnerability in Apache Syncope. An administrator with adequate entitlements for Implementations can create a ma

20 Jul 2026, 14:19 UTC View advisory →
CVE-2026-63048 Critical 9.4

The Joomla extension Page Builder CK is vulnerable to an authenticated arbitrary file upload, leading to RCE.

22 Jul 2026, 07:15 UTC View advisory →
CVE-2026-63047 High 7.5

The Joomla extension Events Booking prior version 5.0-5.8.1 did not properly verify that an actor is allowed to download invoice information.

22 Jul 2026, 07:05 UTC View advisory →
CVE-2026-63035 High 7.2

A heap use-after-free vulnerability in the TransferSubscriptions service in open62541 may allow an authenticated attacker to cause a denial of service or p

30 Jul 2026, 21:56 UTC View advisory →
CVE-2026-63033 Medium 6.9

A crafted IEC 60870-5-104 I-frame with a declared object count exceeding what fits in the ASDU body causes InformationObject_ParseObjectAddress to read one

30 Jul 2026, 22:54 UTC View advisory →
CVE-2026-63030 Critical 9.8

WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion issue which, combined with the author__not_in

17 Jul 2026, 19:14 UTC View advisory →
CVE-2026-62999 High 7.5

Copier is a library and CLI app for rendering project templates. From 9.5.0 through 9.16.0, percent-encoded parent-directory segments or encoded path separ

31 Jul 2026, 19:41 UTC View advisory →
CVE-2026-62994 Low 3.7

CoreDNS is a DNS server written in Go. From 1.9.4 until 1.14.5, a network DNS client allowed to request AXFR for a CoreDNS zone can trigger a panic when Co

16 Jul 2026, 19:39 UTC View advisory →
CVE-2026-62963 High 8.7

Centrifugo is an open-source scalable real-time messaging server. Prior to 6.8.4, Centrifugo unidirectional WebSocket transport with uni_websocket.compress

16 Jul 2026, 19:34 UTC View advisory →
CVE-2026-62959 High 8.2

Coturn is a free open source implementation of TURN and STUN Server. From 4.5.2 through 4.14.0, when Coturn is started with --acme-redirect and exposes a p

31 Jul 2026, 19:57 UTC View advisory →
CVE-2026-62948 Critical 9.6

OpenWrt is a Linux operating system targeting embedded devices. Prior to 25.12.5, odhcpd writes a DHCPv6 client FQDN option 39 hostname into /tmp/odhcpd.le

15 Jul 2026, 17:50 UTC View advisory →
CVE-2026-62947 Medium 4.9

OpenWrt is a Linux operating system targeting embedded devices. Prior to 25.12.5, the cgi-download handler in cgi-io authorizes the requested path against

15 Jul 2026, 17:55 UTC View advisory →
CVE-2026-62927 High 8.7

In Eclipse Milo versions 1.0.0 through 1.1.4, the Call service dispatches the original mixed batch to address-space handlers after calculating authorizatio

04 Aug 2026, 11:57 UTC View advisory →
CVE-2026-62918 High 7.5

Improper verification of cryptographic signature in Microsoft Teams allows an unauthorized attacker to perform spoofing over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-62896 Critical 9.6

Improper authentication in Microsoft Teams allows an authorized attacker to elevate privileges over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-62873 Critical 9.8

Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-62870 High 8.8

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code over a network.

03 Aug 2026, 22:58 UTC View advisory →
CVE-2026-62857 High 8.8

Fedify is a TypeScript library for building federated server apps powered by ActivityPub. From version 1.2.0 through the affected 1.9, 1.10, 2.0, 2.1, 2.2,

06 Aug 2026, 21:04 UTC View advisory →
CVE-2026-62845 Medium 4.7

Kamaji is the Hosted Control Plane Manager for Kubernetes. Prior to 26.7.4-edge, the PostgreSQL and MySQL datastore drivers build DDL statements by interpo

30 Jul 2026, 21:10 UTC View advisory →
CVE-2026-62843 Medium 6.8

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. From 2.63.6 to 2.6

15 Jul 2026, 15:42 UTC View advisory →
CVE-2026-62836 High 8.7

Improper restriction of communication channel to intended endpoints in Azure SQL Managed Instance allows an unauthorized attacker to elevate privileges ove

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-62830 Critical 9.9

Missing authorization in Azure SRE Agent allows an authorized attacker to elevate privileges over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-62826 Medium 4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perfor

16 Jul 2026, 22:02 UTC View advisory →
CVE-2026-62764 Medium 5.7

Improper Handling of Insufficient Privileges vulnerability in Apache Accumulo. An authenticated, but low-privileged user without system permissions may iss

17 Jul 2026, 08:35 UTC View advisory →
CVE-2026-62685 High 8.1

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.17,

15 Jul 2026, 15:47 UTC View advisory →
CVE-2026-62683 Low 3.1

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.17,

15 Jul 2026, 15:40 UTC View advisory →
CVE-2026-62663 High 7.5

Banks generates meaningful LLM prompts using a simple template language. In versions prior to 2.4.4, all four media filters (image, audio, video, document)

30 Jul 2026, 16:16 UTC View advisory →
CVE-2026-62659 Medium 4.3

A security flaw was discovered in the NETGEAR WAX333 Access Point that could allow someone already logged in and connected to the local network to make una

14 Jul 2026, 17:48 UTC View advisory →
CVE-2026-62658 Medium 4.7

A security flaw was discovered in certain NETGEAR Nighthawk RAX series routers that could allow someone already logged in to the device to run unauthorized

14 Jul 2026, 17:46 UTC View advisory →
CVE-2026-62657 Medium 4.9

A security flaw in the router's certificate validation process was discovered in the NETGEAR XR1000 Gaming Router and certain Nighthawk models that could a

14 Jul 2026, 17:46 UTC View advisory →
CVE-2026-62656 Medium 5.4

A security flaw was found in certain NETGEAR RAX models that could allow a logged-in user to send specially crafted requests to the router and run unauthor

14 Jul 2026, 17:46 UTC View advisory →
CVE-2026-62655 Medium 5.7

A security flaw was found in certain NETGEAR Orbi models that could allow an unauthorized user to cause the device to stop responding or restart unexpected

14 Jul 2026, 17:46 UTC View advisory →
CVE-2026-62644 Medium 6.4

In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, the password plugin of the Roundcube Webmail was subject to username spoofing via session data,

14 Jul 2026, 15:55 UTC View advisory →
CVE-2026-62643 High 7.2

In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, insufficient Cascading Style Sheets (CSS) sanitization in HTML e-mail messages may lead to SSRF

14 Jul 2026, 15:51 UTC View advisory →
CVE-2026-62642 Medium 4.3

In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, an infinite loop was discovered in the TNEF decoder, which may lead to denial of service upon op

14 Jul 2026, 15:49 UTC View advisory →
CVE-2026-62641 Medium 4.3

In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, the TNEF decoder was subject to denial of service via a crafted compressed-RTF size.

14 Jul 2026, 15:46 UTC View advisory →
CVE-2026-62422 Critical 10

In JetBrains YouTrack before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 authentication bypass via direct datab

14 Jul 2026, 10:17 UTC View advisory →
CVE-2026-62418 Unscored

Low-privileged authenticated Server-Side Request Forgery (SSRF) vulnerability in Apache Syncope via Connectors and Resources check. This issue affects Apac

20 Jul 2026, 14:27 UTC View advisory →
CVE-2026-62416 Medium 6.9

Network Scanner Tool and Network Scanner Tool Lite provided by Sharp Corporation, with the initial configuration, require no authentication and accept file

03 Aug 2026, 07:58 UTC View advisory →
CVE-2026-62414 Unscored

The Joomla extension Page Builder CK does not properly apply access control to frontend page list views.

20 Jul 2026, 18:34 UTC View advisory →
CVE-2026-62393 Unscored

Improper Handling of Insufficient Permissions or Privileges vulnerability in Apache Kylin. Improper authorization in job information retrieval, where an at

14 Jul 2026, 12:19 UTC View advisory →
CVE-2026-62392 High 8.8

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Apache Kylin. A backend API may bring job confi

14 Jul 2026, 12:18 UTC View advisory →
CVE-2026-62391 High 8.1

The security fix for CVE-2025-66518 is incomplete. Any client who can access to Apache Kyuubi Server via Kyuubi frontend protocols can bypass server-side c

31 Jul 2026, 09:58 UTC View advisory →
CVE-2026-62390 Critical 9.8

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Kylin. A backend API refreshing table catalog

14 Jul 2026, 12:09 UTC View advisory →
CVE-2026-62389 High 8.7

ws before 8.21.1 contains a memory exhaustion vulnerability in lib/receiver.js where the fragment guard only triggers when fragment count reaches maxFragme

15 Jul 2026, 17:04 UTC View advisory →
CVE-2026-62387 High 7.1

The Grav API plugin (getgrav/grav-plugin-api) before 1.0.0-rc.16 shipped Access-Control-Allow-Origin: * as its default CORS configuration on all responses,

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62386 High 8.2

The Grav API plugin (getgrav/grav-plugin-api) before 1.0.0-rc.16 accepts JWT access tokens through the ?token= URL query parameter on every API route (JwtA

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62378 Critical 9

RustFS Console is a web management console for the RustFS distributed file system. From 0.1.7 until 0.1.10, the RustFS Console components/object/preview-mo

15 Jul 2026, 16:50 UTC View advisory →
CVE-2026-62361 Medium 5.5

listmonk is a standalone, self-hosted, newsletter and mailing list manager. Prior to 6.2.0, listmonk’s GET /api/subscribers/export endpoint injects the use

15 Jul 2026, 20:56 UTC View advisory →
CVE-2026-62355 Medium 5.4

TDengine is an open source, time-series database optimized for Internet of Things devices. Prior to 3.4.1.15, a Data Reader admin_user on a TDengine Cloud

15 Jul 2026, 18:51 UTC View advisory →
CVE-2026-62354 High 7.7

Authorization handling for Parameter Context validation requests in Apache NiFi 1.10.0 through 2.10.0 allows clients with read access to submit proposed Pa

03 Aug 2026, 19:57 UTC View advisory →
CVE-2026-62353 Medium 5.4

TDengine is a time-series database optimized for Internet of Things devices. Prior to 3.4.1.14, source/libs/parser/src/parTokenizer.c tGetToken() increment

15 Jul 2026, 19:08 UTC View advisory →
CVE-2026-62351 High 7.5

TDengine is a time-series database optimized for Internet of Things devices. Prior to 3.4.1.15, source/libs/transport/src/transComm.c transDecompressMsg()

15 Jul 2026, 19:08 UTC View advisory →
CVE-2026-62350 High 7.2

TDengine is an open source, time-series database optimized for Internet of Things devices. Prior to 3.4.1.15, a user with create udf privilege could upload

15 Jul 2026, 18:54 UTC View advisory →
CVE-2026-62349 High 8.3

TDengine is an open source, time-series database optimized for Internet of Things devices. In 3.4.1.6 and earlier, source/libs/parser/src/parUtil.c trimStr

15 Jul 2026, 18:55 UTC View advisory →
CVE-2026-62348 Medium 5.4

TDengine is a time-series database optimized for Internet of Things devices. Prior to 3.4.1.15, TDengine Enterprise allowed an authenticated low-privilege

15 Jul 2026, 19:07 UTC View advisory →
CVE-2026-62328 High 8.7

9Router through version 0.4.41 contain an unauthenticated information disclosure vulnerability that allows remote attackers to access sensitive user data b

13 Jul 2026, 21:37 UTC View advisory →
CVE-2026-62327 Critical 9.3

9Router through version 0.4.41 contain an unauthenticated information disclosure vulnerability that allows remote attackers to retrieve plaintext API keys

13 Jul 2026, 21:37 UTC View advisory →
CVE-2026-62324 Medium 5.4

Jodit Editor is a WYSIWYG editor with a built-in file browser & image editor. Prior to 4.12.31, Jodit's sanitizeHTMLElement method fails to use isDangerous

31 Jul 2026, 19:08 UTC View advisory →
CVE-2026-62323 Medium 6.3

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, ViewerSessionValidation uses only the session-id prefix of a WOPI access to

31 Jul 2026, 03:43 UTC View advisory →
CVE-2026-62314 Medium 5.8

Anubis is a Web AI Firewall Utility that challenges users' connections in order to protect upstream resources from scraper bots. From 1.22.0 until 1.26.0-p

15 Jul 2026, 21:18 UTC View advisory →
CVE-2026-62312 High 8.8

9Router is an AI router & token saver. Prior to 0.5.2, 9Router allows a remote authenticated attacker to achieve arbitrary code execution on the host opera

15 Jul 2026, 20:53 UTC View advisory →
CVE-2026-62309 High 7.5

CoreDNS is a DNS server written in Go. Prior to 1.14.4, a single 28-byte UDP datagram can crash the CoreDNS process when the proxyproto plugin is enabled b

16 Jul 2026, 19:42 UTC View advisory →
CVE-2026-62299 Medium 5.3

CoreDNS is a DNS server written in Go. Prior to 1.14.5, the CoreDNS rewrite plugin supports edns0 rewrite rules with an optional revert flag, and two respo

16 Jul 2026, 19:44 UTC View advisory →
CVE-2026-62294 Medium 5.1

Flameshot is powerful yet simple to use screenshot software. Prior to 14.0.0, the Open With feature wrote screenshots to a predictable temporary path and f

15 Jul 2026, 14:20 UTC View advisory →
CVE-2026-62290 High 7.3

cert-manager adds certificates and certificate issuers as resource types in Kubernetes clusters, and simplifies the process of obtaining, renewing and usin

16 Jul 2026, 19:37 UTC View advisory →
CVE-2026-62287 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61873. Reason: This candidate is a duplicate of CVE-2026-61873. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62248 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61438. Reason: This candidate is a duplicate of CVE-2026-61438. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62246 High 8.5

Kamaji is the Hosted Control Plane Manager for Kubernetes. Prior to 26.7.4-edge, Kamaji derives a TenantControlPlane datastore schema, database user, and e

30 Jul 2026, 21:06 UTC View advisory →
CVE-2026-62242 High 7.7

Spring Boot Admin Server before 4.1.2 contains a server-side request forgery vulnerability that allows unauthenticated attackers to register instances with

13 Jul 2026, 21:04 UTC View advisory →
CVE-2026-62241 Critical 9.3

clawvet self-hosted API server (apps/api) before 0.7.5 hard-codes a fallback JWT secret ('clawvet-dev-secret-change-me') in auth.ts and ships it as the def

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62240 High 8.3

CrewAI before 1.15.1 contains a server-side request forgery vulnerability in the validate_url function that performs one-shot DNS resolution and blocklist

13 Jul 2026, 21:04 UTC View advisory →
CVE-2026-62239 Medium 5.3

FlashAttention through 2.8.3.post1, fixed in commit 0816ef1, contains a symlink attack vulnerability in the download_and_copy() function within hopper/setu

13 Jul 2026, 21:03 UTC View advisory →
CVE-2026-62238 High 7.2

OpenRemote before 1.26.0 contain an authenticated SQL injection vulnerability in the datapoint crosstab export endpoint that constructs PostgreSQL queries

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62237 Medium 6

Grav before 2.0.4 contains a regular expression denial of service (ReDoS) vulnerability in the regex_replace filter and function, which are allowlisted in

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62236 Low 2.3

grav-plugin-login before 3.8.11 contains a cross-site request forgery (CSRF) vulnerability in the login.regenerate2FASecret frontend task, which regenerate

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62235 Low 2.3

Grav Flex-Objects before version 1.4.3 contains a broken access control vulnerability in the admin-next REST API that allows authenticated users with only

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62234 High 8.4

Grav before 2.0.4 fails to restrict cURL protocols in webhook dispatch, allowing authenticated users with api.webhooks.write permission to create webhooks

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62233 High 8.7

grav-plugin-api before 1.0.6 fails to validate super-admin status in createApiKey, generate2fa, and disable2fa endpoints, allowing non-super api.users.writ

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62232 Critical 9.1

Grav before 2.0.4 contains a two-factor authentication bypass vulnerability in the login plugin where the regenerate2FASecret task checks only user existen

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62231 High 8.6

The Grav API plugin (getgrav/grav-plugin-api) before 1.0.6 contains an authorization bypass: API keys can be created with a restricted scopes array, but th

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62230 High 8.7

Grav before 2.0.4 ships a default .htaccess (and reference webserver-configs/htaccess.txt) whose rules blocking access to sensitive file types (.yaml, .php

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62229 High 7.7

OpenClaw before 2026.5.18 contain an authorization bypass vulnerability in exec allowlist glob matching that allows lower-trust callers to execute actions

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62228 High 7.7

OpenClaw before 2026.6.5 contain an authorization bypass vulnerability in node exec approvals that allows lower-trust callers to execute actions beyond the

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62227 Medium 4.9

OpenClaw 2026.4.14 before 2026.5.26 contain a server-side request forgery vulnerability in browser snapshot routes that fail to validate post-navigation de

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62226 Medium 5.1

OpenClaw 2026.3.28 before 2026.5.19 contain an authorization bypass vulnerability in the browser act route that fails to properly validate current-tab URL

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62225 Low 2.3

OpenClaw versions before 2026.5.18 contain an authorization bypass vulnerability in skill command dispatch that allows lower-trust callers to execute or pe

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62224 Low 2.3

OpenClaw MS Teams before 2026.5.12 contain an authorization bypass vulnerability where the allowFrom feature binds to mutable display names. Attackers with

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62223 High 7.7

OpenClaw before 2026.5.18 contain an authorization bypass vulnerability in the device-pair approval feature that allows lower-trust callers to execute acti

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62222 High 7.1

OpenClaw before 2026.5.22 contain a vulnerability in setup-mode discovery that allows loading of untrusted workspace plugins. Attackers with lower-trust ca

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62221 Low 2.3

OpenClaw 2026.5.12 before 2026.5.26 contain an incorrect authorization vulnerability in the ClickClack allowFrom feature. When the affected feature is enab

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62220 Medium 6.3

OpenClaw 2026.2.25 before 2026.5.26 allow a lower-trust caller or configured input path to bypass non-browser rate limits on WebSocket authentication attem

17 Jul 2026, 00:07 UTC View advisory →
CVE-2026-62219 Medium 6

OpenClaw 2026.2.12 before 2026.5.26 contain an authorization bypass vulnerability in the hooks allowedAgentIds validation. A lower-trust caller or configur

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62218 High 8.7

OpenClaw 2026.1.20 before 2026.5.27 contain an authorization bypass vulnerability in the device.pair.approve feature that allows lower-trust callers to byp

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62217 High 7.7

OpenClaw 2026.5.14-beta.1 before 2026.5.27 contain an authorization flaw in the QQBot exec approvals feature. When the feature is enabled and reachable, a

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62216 Low 2.3

OpenClaw 2026.4.20 before 2026.5.28 contain a policy bypass in the QQBot media upload feature. A lower-trust caller or configured input path could cause th

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62215 Medium 5.1

OpenClaw versions before 2026.6.5 contain an authentication bypass vulnerability in HTTP Canvas responses that allows lower-trust callers to forge trusted

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62214 Medium 6

OpenClaw versions before 2026.5.28 Bot Framework contains an improper input validation vulnerability that allows lower-trust callers to expose bot tokens a

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62213 Medium 6

OpenClaw versions before 2026.5.27 contain a token leakage vulnerability in MS Teams outbound requests that allows lower-trust callers to expose Bot Framew

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62212 Medium 5.1

OpenClaw before 2026.5.28 contains a race condition in the MS Teams safeFetch DNS rebinding check. When the affected feature is enabled and reachable, a lo

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62211 Medium 4.1

OpenClaw versions before 2026.6.1 contain a credential redaction bypass vulnerability in the trajectory export feature that allows lower-trust callers to a

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62210 Medium 6

OpenClaw versions before 2026.6.1 contain a denial of service vulnerability where remote media URLs can trigger slow-read attacks that exhaust gateway work

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62209 High 7.6

OpenClaw versions 2026.5.10-beta.1 before 2026.6.5 contain an authorization bypass in the ClickClack agent-mode dispatch feature, which could ignore the to

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62208 Medium 6

OpenClaw before 2026.6.5 could forward Authorization headers during MCP SSE redirects. When the affected feature is enabled and reachable, a lower-trust ca

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62207 High 7.7

OpenClaw versions before 2026.6.5 contain an authentication bypass vulnerability that allows lower-trust callers to reach admin-scoped tools. Attackers can

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62206 Medium 6

OpenClaw versions before 2026.6.9 contain a missing authorization vulnerability in Discord moderation actions. In affected versions, a lower-trust caller o

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62205 Medium 6

OpenClaw versions 2026.4.12-beta.1 before 2026.6.6 contain a missing-authorization vulnerability in the MS Teams message actions feature. When the affected

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62203 High 7.7

OpenClaw versions before 2026.6.6 contain an environment variable filtering vulnerability in host exec that fails to properly sanitize rustup startup varia

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62202 High 7.7

OpenClaw versions 2026.6.1 before 2026.6.9 contain a privilege escalation vulnerability in isolated cron jobs that allows lower-trust callers to regain den

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62201 Medium 4.9

OpenClaw versions before 2026.6.6 contain a network policy bypass vulnerability in the sandbox exec-server that allows lower-trust callers to reach interna

17 Jul 2026, 00:06 UTC View advisory →
CVE-2026-62200 High 8.7

OpenClaw versions before 2026.6.1 contain a flaw in host exec environment filtering that could allow Git ext transport to be abused. When the affected feat

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62199 High 8.7

OpenClaw versions before 2026.6.6 contain a flaw in host exec environment filtering that can miss interpreter startup variables. When the affected feature

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62198 Medium 5.3

OpenClaw versions 2026.5.28 before 2026.6.6 contain an authorization bypass vulnerability in native web search that allows lower-trust callers to perform a

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62197 Medium 6.3

OpenClaw before 2026.6.6 contains a policy bypass vulnerability in browser CDP discovery that accepts blocked WebSocket URLs. Attackers with lower-trust ac

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62196 High 8.7

OpenClaw versions 2026.3.22 before 2026.6.6 contain an authorization bypass vulnerability where WhatsApp group IDs can satisfy elevated sender allowlists.

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62195 High 8.7

OpenClaw versions 2026.5.20 before 2026.6.6 contain an authorization bypass vulnerability in the MCP loopback feature that allows lower-trust callers to ex

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62194 High 8.7

OpenClaw versions 2026.5.20 before 2026.6.9 contain a privilege escalation vulnerability in plugin install commands that allows lower-trust callers to exec

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62193 Medium 6.9

OpenClaw versions 2026.6.5 before 2026.6.9 contain a vulnerability in the plugin install wrappers that could skip the install policy (authorization) check.

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62192 High 7.2

OpenClaw versions 2026.6.6 before 2026.6.9 contain an authorization bypass vulnerability in Discord guild actions that allows lower-trust callers to perfor

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62191 High 7.1

OpenClaw versions 2026.6.6 before 2026.6.9 contain an authorization bypass vulnerability in message mutation handling that allows lower-trust callers to pe

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62190 High 8.7

OpenClaw versions before 2026.6.9 contain an authorization bypass vulnerability in the flock wrapper that allows lower-trust callers to execute or persist

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62189 High 7.6

OpenClaw versions before 2026.6.9 contain a symlink following vulnerability in the mirror sync feature that allows lower-trust callers to perform actions r

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62188 High 8.6

OpenClaw @openclaw/feishu versions 2026.6.6 and earlier contain an incorrect authorization vulnerability in which the Feishu permission tools could ignore

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62187 High 8.6

OpenClaw Feishu tools (npm package @openclaw/feishu) in versions <= 2026.6.6 could ignore per-account disablement. A lower-trust caller or a configured inp

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62186 High 7.2

OpenClaw versions before 2026.6.8 contain an authorization bypass vulnerability in OpenAI-compatible HTTP model overrides that allows lower-trust callers t

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62185 High 8.6

Argo CD Helm Chart before 10.0.0 fails to install network policies by default, allowing any pod on a cluster to access repo-server and other Argo APIs. Att

13 Jul 2026, 21:31 UTC View advisory →
CVE-2026-62184 High 8.7

luci-app-banip contains a log parsing vulnerability where the awk-based parser extracts the first IPv4 address from log lines regardless of field position,

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-62183 Unscored

Improper Privilege Management vulnerability in Apache Syncope. When: * the all-Java user workflow adapter is configured, or * the Flowable user workflow ad

20 Jul 2026, 14:23 UTC View advisory →
CVE-2026-62180 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61440. Reason: This candidate is a duplicate of CVE-2026-61440. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62178 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61427. Reason: This candidate is a duplicate of CVE-2026-61427. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62177 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-60085. Reason: This candidate is a duplicate of CVE-2026-60085. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62175 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-60091. Reason: This candidate is a duplicate of CVE-2026-60091. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62174 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61435. Reason: This candidate is a duplicate of CVE-2026-61435. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62173 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61433. Reason: This candidate is a duplicate of CVE-2026-61433. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62172 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61436. Reason: This candidate is a duplicate of CVE-2026-61436. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62169 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61430. Reason: This candidate is a duplicate of CVE-2026-61430. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62168 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61443. Reason: This candidate is a duplicate of CVE-2026-61443. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62165 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61446. Reason: This candidate is a duplicate of CVE-2026-61446. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62164 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-60087. Reason: This candidate is a duplicate of CVE-2026-60087. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-62147 Medium 6.5

The Tempo Operator's gateway component failed to consistently apply namespace-scoped redaction on some query API response paths when query RBAC was enabled

13 Jul 2026, 11:43 UTC View advisory →
CVE-2026-62145 High 7.5

A vulnerability in Check Point Gaia Portal allows an authenticated attacker with read-only Gaia Portal privileges to execute commands with root privileges.

22 Jul 2026, 13:53 UTC View advisory →
CVE-2026-62144 Critical 9.1

An authentication bypass vulnerability in Check Point Security Management and Multi-Domain Security Management allows an unauthenticated remote attacker to

22 Jul 2026, 13:53 UTC View advisory →
CVE-2026-62143 High 8.3

A Server-Side Request Forgery (SSRF) protection bypass existed in the html_to_markdown expansion module of misp-modules. The module attempts to prevent req

13 Jul 2026, 07:52 UTC View advisory →
CVE-2026-61985 Medium 5.3

Missing Authorization vulnerability in magepeopleteam Car Rental Manager car-rental-manager allows Exploiting Incorrectly Configured Access Control Securit

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-61983 Medium 5.3

Missing Authorization vulnerability in andy_moyle Church Admin church-admin allows Exploiting Incorrectly Configured Access Control Security Levels.This is

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-61982 High 7.1

Unauthenticated Cross Site Scripting (XSS) in SiteGuard WP Plugin <= 1.8.6 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-61977 Medium 5.3

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Crocoblock JetSearch jet-search allows Retrieve Embedded Sensit

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-61976 Medium 5.3

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Crocoblock JetBlocks For Elementor jet-blocks allows Retrieve E

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-61975 Medium 5.3

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Crocoblock JetReviews jet-reviews allows Retrieve Embedded Sens

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-61971 Low 2.7

Authorization Bypass Through User-Controlled Key vulnerability in Cozmoslabs User Profile Picture metronet-profile-picture allows Exploiting Incorrectly Co

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-61970 Medium 4.9

Server-Side Request Forgery (SSRF) vulnerability in Themeisle Auto Featured Image (Auto Post Thumbnail) auto-post-thumbnail allows Server Side Request Forg

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-61968 Medium 5.4

Missing Authorization vulnerability in Saad Iqbal myCred mycred allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-61964 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Ninja Tables <= 5.2.9 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-61963 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Media LIbrary Assistant <= 3.38 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-61961 High 7.1

Unauthenticated Cross Site Scripting (XSS) in EmbedPress <= 4.5.6 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-61959 Medium 6.5

Subscriber Cross Site Scripting (XSS) in Business Directory <= 6.4.24 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-61958 Medium 5.4

Missing Authorization vulnerability in Saad Iqbal License Manager for WooCommerce license-manager-for-woocommerce allows Exploiting Incorrectly Configured

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-61957 High 7.1

Unauthenticated Cross Site Scripting (XSS) in miniorange otp verification <= 5.5.1 versions.

27 Jul 2026, 22:43 UTC View advisory →
CVE-2026-61956 High 7.1

Cross-Site Request Forgery (CSRF) vulnerability in hamsalam ووسلام – همگام سازی ووکامرس و باسلام sync-basalam allows Cross Site Request Forgery.This issue

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-61955 High 7.6

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Hannan گرویتی فرم فارسی persian-gravity-forms allows

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-61953 High 7.2

Unauthenticated Server Side Request Forgery (SSRF) in Simple Link Directory Pro <= 15.0.6 versions.

27 Jul 2026, 22:43 UTC View advisory →
CVE-2026-61952 Medium 4.9

Missing Authorization vulnerability in Jose Vega WooCommerce Bulk Edit Products – WP Sheet Editor woo-bulk-edit-products allows Exploiting Incorrectly Conf

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-61901 Unscored

The Joomla extension Hikashop is vulnerable to an open redirect.

20 Jul 2026, 18:33 UTC View advisory →
CVE-2026-61900 Critical 10

The Joomla extension JDownloads is vulnerable to an unauthenticated file upload, leading to full RCE.

20 Jul 2026, 18:34 UTC View advisory →
CVE-2026-61893 Medium 6.9

A crafted IEC 60870-5-104 I-frame with TypeID 104 (C_TS_NA_1) and an inflated object count causes TestCommand_getFromBuffer to read one byte past the end o

30 Jul 2026, 22:58 UTC View advisory →
CVE-2026-61891 High 7.5

In Eclipse Theia versions up to and including 1.73.1, the `@theia/filesystem` backend exposes HTTP file-download endpoints (`GET /file`, `GET /files/`, `PU

05 Aug 2026, 11:03 UTC View advisory →
CVE-2026-61873 High 7.2

Grav before 9.1.8 contains an arbitrary file write vulnerability in the Form plugin's process.save.filename parameter, which is validated against path trav

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61872 Low 2

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the TIFF encoder when an invalid tiff:tile-geometry is specified. Supplying malformed t

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61871 Medium 6.3

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the ICON decoder that occurs when a memory allocation fails. Processing a crafted ICON

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61870 Low 2.1

ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the VIFF encoder when memory allocation fails. Attackers can trigger allocation failure

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61869 Low 2.1

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the MIFF encoder that occurs when a memory allocation fails during MIFF image processin

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61868 Medium 6.3

ImageMagick before 7.1.2-26 and 6.9.x before 6.9.13-51 contains a memory leak in the YUV decoder that occurs when opening of the blob fails. Repeated trigg

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61867 Low 2.1

ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the TIFF encoder when memory allocation fails. Attackers can trigger allocation failure

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61866 Low 2.1

ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the JNG encoder when a blob cannot be opened. Attackers can trigger the memory leak by

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61865 Low 2.1

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the hough lines operation: when a specific operation fails, a small memory leak occurs.

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61864 Low 2.1

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in color transformation to the log colorspace: when the operation fails, a small amount of

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61863 Low 2.1

ImageMagick before 7.1.2-26 (and 6.x before 6.9.13-51) contains a memory leak in the TIFF encoder that occurs when a temporary file cannot be created, resu

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61862 Low 2.1

ImageMagick before 7.1.2-26 and 6.9.13-51 contains an information disclosure vulnerability: when a profile is displayed with the identify command and the p

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61861 Medium 6.3

ImageMagick before 7.1.2-26 contains a use-after-free vulnerability in the FormatMagickCaption method when memory allocation fails. Attackers can trigger m

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61860 Medium 6.3

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a use-after-free vulnerability that occurs when freetype initialization fails: the method does not exit

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61859 Medium 4.8

ImageMagick before 7.1.2-26 and 6.9.13-x before 6.9.13-51 contains a policy bypass vulnerability in the -script operation due to missing security policy ch

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61858 Medium 4.8

ImageMagick before 7.1.2-26 contains a policy bypass vulnerability in the APNG encoder and external delegates due to missing validation checks. Attackers c

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61857 Medium 6.3

ImageMagick before 7.1.2-26 contains a heap use-after-free vulnerability caused by missing null check when parsing XMP profiles. Attackers can craft malici

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61841 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61449. Reason: This candidate is a duplicate of CVE-2026-61449. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-61839 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61451. Reason: This candidate is a duplicate of CVE-2026-61451. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-61836 High 8.6

Directus is a real-time API and App dashboard for managing SQL database content. Prior to 12.0.0, when response caching is enabled, the cache-key derivatio

15 Jul 2026, 14:17 UTC View advisory →
CVE-2026-61835 High 7.7

Directus is a real-time API and App dashboard for managing SQL database content. Prior to 12.0.0, the SSRF protection on Directus's file-import-from-URL fe

15 Jul 2026, 14:16 UTC View advisory →
CVE-2026-61829 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61452. Reason: This candidate is a duplicate of CVE-2026-61452. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-61828 High 8.5

Nixpkgs is a collection of software packages that can be installed with the Nix package manager. Prior to the 25.11 and 26.05 channel fixes, the NixOS modu

15 Jul 2026, 14:52 UTC View advisory →
CVE-2026-61740 Critical 9.3

LightRAG provides simple and fast retrieval-augmented generation. Prior to 1.5.4, when LightRAG is deployed with LIGHTRAG_API_KEY set but AUTH_ACCOUNTS uns

15 Jul 2026, 14:14 UTC View advisory →
CVE-2026-61736 Critical 9.3

LightRAG provides simple and fast retrieval-augmented generation. Prior to 1.5.4, the server defaults to CORS_ORIGINS=* combined with allow_credentials=Tru

15 Jul 2026, 14:12 UTC View advisory →
CVE-2026-61718 Medium 5.4

bunkerweb is an Open-source and next-generation Web Application Firewall (WAF). From 1.6.2 until 1.6.12, the BunkerWeb web UI BiscuitMiddleware authorizati

16 Jul 2026, 19:15 UTC View advisory →
CVE-2026-61710 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61453. Reason: This candidate is a duplicate of CVE-2026-61453. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-61692 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61454. Reason: This candidate is a duplicate of CVE-2026-61454. Notes: All CVE users sh

14 Jul 2026 View advisory →
CVE-2026-61684 High 8.8

FastGPT is a knowledge-based AI application platform. In 4.15.0-beta4, FastGPT plugin invoke reverse-call endpoints under /api/invoke/* authenticate only b

15 Jul 2026, 14:28 UTC View advisory →
CVE-2026-61646 Medium 6.3

FastGPT is a knowledge-based AI application platform. Prior to 4.15.0-beta5, FastGPT's shared SSRF guard validates only the initial request URL before hand

15 Jul 2026, 14:32 UTC View advisory →
CVE-2026-61644 High 7.7

FastGPT is a knowledge-based AI application platform. From 4.14.17 until 4.15.0-beta5, the POST /api/core/chat/record/getCollectionQuote endpoint authentic

15 Jul 2026, 14:30 UTC View advisory →
CVE-2026-61643 Medium 5.9

FastGPT is a knowledge-based AI application platform. From 4.14.17 until 4.15.0-beta5, an authenticated FastGPT user can save a workflow node that points t

15 Jul 2026, 17:03 UTC View advisory →
CVE-2026-61632 Medium 5.3

PyMdown Extensions is a set of extensions for the Python-Markdown markdown project. In versions up to and including 10.21.3, the b64 extension is vulnerabl

06 Aug 2026, 20:59 UTC View advisory →
CVE-2026-61613 High 7.7

Cursor is a code editor built for programming with AI. Prior to the Cloud Agent fix on 03/31/2026, browser-enabled Cursor Cloud Agent sessions allowed atta

15 Jul 2026, 14:18 UTC View advisory →
CVE-2026-61606 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-61457. Reason: This candidate is a duplicate of CVE-2026-61457. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-61605 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-58655. Reason: This candidate is a duplicate of CVE-2026-58655. Notes: All CVE users sh

16 Jul 2026 View advisory →
CVE-2026-61536 High 7.5

Banks generates meaningful LLM prompts using a simple template language. In versions prior to 2.4.3, banks parses Tool JSON objects from the rendered body

30 Jul 2026, 16:50 UTC View advisory →
CVE-2026-61526 Medium 6.1

AdonisJS HTTP Server is a package for handling HTTP requests in the AdonisJS framework. In versions 8.0.0-next.0 through 8.2.0 and 9.0.0 through 9.0.2, the

30 Jul 2026, 20:55 UTC View advisory →
CVE-2026-61524 High 8.6

WebsiteBaker CMS before 2.13.10 contains an unrestricted file upload vulnerability in the module installation feature that allows authenticated administrat

03 Aug 2026, 17:19 UTC View advisory →
CVE-2026-61523 High 8.6

WebsiteBaker CMS before 2.13.10 contains a code injection vulnerability in the Droplets editor that allows authenticated administrators to inject arbitrary

03 Aug 2026, 17:18 UTC View advisory →
CVE-2026-61520 Medium 6.3

Simple Machines Forum 2.1 prior to commit 4bf35cf and 3.0 prior to commit b4d23df contains a server-side request forgery vulnerability in the image proxy t

14 Jul 2026, 20:17 UTC View advisory →
CVE-2026-61515 Critical 9.3

Puwell IP Camera firmware versions 2.x through 4.x contains an unauthenticated command injection vulnerability that allows remote attackers to execute arbi

04 Aug 2026, 13:59 UTC View advisory →
CVE-2026-61514 Critical 9.3

Puwell IP Camera firmware versions 2.x through 4.x contains an authentication bypass vulnerability that allows unauthenticated attackers to access device f

04 Aug 2026, 14:00 UTC View advisory →
CVE-2026-61511 Critical 9.3

vBulletin 5.x through 5.7.5 and 6.x through 6.2.1 contains an eval injection vulnerability in the vB5_Template_Runtime::runMaths() method within the templa

27 Jul 2026, 12:39 UTC View advisory →
CVE-2026-61505 Medium 6.9

Rejetto HFS 3.0.0 through 3.2.0 allows path traversal through the lang query parameter, permitting a remote unauthenticated attacker to read certain JSON f

13 Jul 2026, 17:23 UTC View advisory →
CVE-2026-61504 Medium 5.1

Rejetto HFS 3.0.0 through 3.2.0 does not escape file names in its fallback "basic" web listing, and this listing can be forced by any browser via the ?get=

13 Jul 2026, 17:23 UTC View advisory →
CVE-2026-61503 Medium 6.9

Rejetto HFS 3.0.0 through 3.2.0 returns observably different responses from its login endpoint depending on whether the submitted username exists. A remote

13 Jul 2026, 17:23 UTC View advisory →
CVE-2026-61502 Medium 5.1

Rejetto HFS 3.0.0 through 3.2.0 accepts state-changing API requests via the GET method and exempts GET requests from its anti-CSRF header check. A remote a

13 Jul 2026, 17:22 UTC View advisory →
CVE-2026-61501 Medium 5.3

Rejetto HFS 3.0.0 through 3.2.0 renders log entries in the administration panel as HTML without sanitization. A remote unauthenticated attacker can submit

13 Jul 2026, 17:22 UTC View advisory →
CVE-2026-61500 Critical 9.3

Rejetto HFS 3.0.0 through 3.2.0 derives its session-cookie signing key from the non-cryptographic Math.random() generator and discloses outputs of the same

13 Jul 2026, 17:21 UTC View advisory →
CVE-2026-61498 Critical 9.3

Vitec Flamingo 4.12.2 contains an unauthenticated OS command injection vulnerability in the admin/ajax/gen_graphs.php endpoint that allows remote unauthent

13 Jul 2026, 13:12 UTC View advisory →
CVE-2026-61492 Low 3.5

In JetBrains YouTrack before 2026.2.17394 stored XSS via article titles in digest emails was possible

10 Jul 2026, 14:19 UTC View advisory →
CVE-2026-61466 Critical 9.1

In Apache CXF's OAuth2 Dynamic Client Registration endpoint, the authorization server accepts and stores the `scope` value supplied in the client registrat

06 Aug 2026, 11:24 UTC View advisory →
CVE-2026-61465 Medium 4.8

ImageMagick before 7.1.2-26 and 6.9.13-51 is missing a check for the allowed memory allocation limit in matrix-backed operations such as -canny. An attacke

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61464 Low 1

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a heap-based buffer over-write vulnerability that occurs when running an X11 import with a crafted windo

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61463 High 8.7

Shiori contains a privilege escalation vulnerability in the account update endpoint that allows authenticated users to modify the owner field without autho

13 Jul 2026, 17:22 UTC View advisory →
CVE-2026-61462 Critical 9.2

mcp-gitlab contains a path traversal vulnerability in the job_id parameter of build/index.js that allows attackers to redirect GitLab API requests to arbit

13 Jul 2026, 17:17 UTC View advisory →
CVE-2026-61461 High 8.7

Dify before 1.16.0-rc1 contains a SQL injection vulnerability in the MyScale vector store backend that allows attackers to execute arbitrary SQL by supplyi

10 Jul 2026, 18:10 UTC View advisory →
CVE-2026-61460 High 8.7

Krayin CRM through 2.2.3 contains an insecure direct object reference vulnerability in LeadController, PersonController, OrganizationController, QuoteContr

10 Jul 2026, 18:24 UTC View advisory →
CVE-2026-61459 Critical 9.3

MCP Server Kubernetes before 3.9.0 contains an argument injection vulnerability in structured tools (kubectl_get, kubectl_describe, kubectl_delete) that al

10 Jul 2026, 18:34 UTC View advisory →
CVE-2026-61458 High 8.7

PasswordPusher before 2.9.2 contains a brute-force vulnerability in the POST /p/:token/access endpoint that lacks route-specific rate limiting and per-push

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-61457 Medium 5.3

The Grav API plugin (getgrav/grav-plugin-api) before 1.0.3 contains a file upload extension bypass in the API media controller. HandlesMediaUploads::valida

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61456 Medium 5.1

The Grav API plugin (getgrav/grav-plugin-api) before 1.0.3 fails to sanitize SVG files uploaded through the POST /api/v1/media endpoint. The HandlesMediaUp

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-61455 High 7.1

Grav before 2.0.1 contains a decompression bomb vulnerability in ZipArchiver::extract() that lacks limits on uncompressed size, file count, and nesting dep

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-61454 High 8.7

The Grav Admin2 plugin (getgrav/grav-plugin-admin2) before 2.0.4 embeds a global JavaScript variable window.__GRAV_CONFIG__ in the Admin2 SPA bootstrap pag

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61453 Medium 5.1

Grav v2.0.0 contains a cross-site scripting vulnerability (fixed in 2.0.1). The XSS blueprint validator (Security::detectXss()) runs on raw page content be

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61452 Medium 6.9

The Grav API plugin (getgrav/grav-plugin-api) before 2.0.4 contains an improper session invalidation vulnerability where JWT access tokens are issued witho

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61451 Critical 9.4

The Grav API plugin (grav-plugin-api) before 1.0.4 does not validate the origin of the client-supplied admin_base_url field in the POST /api/v1/auth/forgot

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61450 High 7.1

Grav before 2.0.2 contains a Twig sandbox bypass that allows a page author (any admin.pages user, or anyone able to write to user/pages) to exfiltrate conf

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-61449 High 7.1

Grav 2.0.1 contains a decompression-bomb size-cap bypass in ZipArchiver and GPM\Installer. The size bound introduced in 2.0.1 sums the uncompressed size de

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61448 Low 2.1

Parse Server is affected by a stored cross-site scripting (XSS) vulnerability in versions >= 9.0.0, < 9.10.0-alpha.2 and <= 8.6.83. When an uploaded file's

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61447 Critical 10

PraisonAI before 1.6.78 contains a remote code execution vulnerability in CodeAgent._execute_python() that executes LLM-generated Python code without AST v

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61446 High 8.6

PraisonAI (praisonaiagents) before 1.6.78 contains a remote code execution vulnerability in the plugin manager, which loads and executes arbitrary Python (

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61445 Critical 9.4

PraisonAI before 4.6.78 contains arbitrary file write and command execution vulnerabilities in the AICoder component due to missing path validation and com

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61444 Critical 9.4

PraisonAI versions before 4.6.78 contain a code injection vulnerability in deploy/api.py where the agents_file parameter is directly interpolated into an f

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-61443 High 8.6

PraisonAI before 1.6.78 contains a remote code execution vulnerability in SkillTools.run_skill_script() that executes scripts without path containment vali

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61442 High 7.1

PraisonAI Platform (praisonai-platform) before 0.1.9 fails to enforce owner/admin authorization on the PATCH routes for projects, issues, and agents, which

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61441 High 7.1

PraisonAI Platform (praisonai-platform) before 0.1.9 improperly authorizes deletion of issue dependencies. The DELETE dependency route accepts either endpo

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-61440 High 7.1

PraisonAI Platform before 0.1.9 fails to properly authorize label and issue-label mutations, allowing workspace members to rename and recolor shared labels

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61439 High 8.7

PraisonAI versions before 4.6.78 contain a prompt injection defense misconfiguration where the block threshold defaults to CRITICAL severity, allowing HIGH

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61438 High 7

PraisonAI before 4.6.78 contains a remote code execution vulnerability in JobWorkflowExecutor._exec_inline_python() due to insufficient AST validation of w

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61437 High 8.5

PraisonAI (pip package praisonaiagents) before 1.6.78 contains an unsafe dynamic module loading vulnerability in AgentFlow._resolve_pydantic_class (src/pra

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-61436 High 8.8

PraisonAI before 4.6.78 fails to verify Svix webhook signatures in AgentMail webhook mode, allowing unauthenticated attackers to forge message.received eve

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61435 High 8.8

PraisonAI before 4.6.78 contains an authentication bypass in the Call API agent invocation endpoints (src/praisonai/praisonai/api/agent_invoke.py) when PRA

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61434 High 8.7

PraisonAI versions before 4.6.78 contain an allowlist bypass vulnerability in shell command execution that allows attackers to execute restricted commands

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-61433 High 8.5

PraisonAI before 4.6.78 fails to safely encode deployment configuration values when generating Python source code for API servers. Attackers can inject arb

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61432 Medium 6.9

PraisonAI (praisonaiagents) before 1.6.78 contains a path traversal vulnerability in the FastContext feature (praisonaiagents.context.fast). FastContextAge

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-61431 Medium 6.8

PraisonAI before 4.6.78 contains a path traversal vulnerability in ContextGatherer that fails to validate include paths in .praisoncontext and .praisonincl

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-61430 High 8.4

PraisonAI before 1.6.78 contains a server-side request forgery vulnerability in the web_crawl tool that validates hostnames at check time but re-resolves t

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61429 High 8.4

PraisonAI versions before 1.6.78 contain a server-side request forgery vulnerability in the Crawl4AI/Chromium backend that allows attackers to bypass SSRF

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61428 Medium 6.9

PraisonAI AgentMail versions before 4.6.78 lack signature verification in webhook mode, allowing unauthenticated attackers to inject messages with spoofed

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61427 Medium 6.9

PraisonAI before 4.6.78 exposes the MCP HTTP-stream transport without authentication by default: the CLI --api-key option defaults to None, and the server

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-61426 High 8.8

PraisonAI before 1.7.3 contains an insecure default configuration that binds to all interfaces with no API key requirement and wildcard CORS. Unauthenticat

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-61425 Critical 9.4

The Joomla extension Gridbox is vulnerable an authenticated bypass, potentially leading to full admin access.

20 Jul 2026, 18:45 UTC View advisory →
CVE-2026-61424 Critical 10

The Joomla extension DJ-Classifieds is vulnerable to an unauthenticated file upload, leading to full RCE.

20 Jul 2026, 18:34 UTC View advisory →
CVE-2026-61392 Medium 5.3

There is a information disclosure vulnerability in some Hikvision cameras, allowing unauthenticated attackers to obtain partial information from the device

22 Jul 2026, 11:03 UTC View advisory →
CVE-2026-61391 High 7.2

There is a stack-based buffer overflow vulnerability in some Hikvision cameras, which may allow authenticated attackers to cause device malfunction by send

22 Jul 2026, 11:02 UTC View advisory →
CVE-2026-61390 High 7.7

There is a heap buffer overflow vulnerability in some Hikvision cameras, which may allow unauthenticated attackers to cause device malfunction by sending s

22 Jul 2026, 11:02 UTC View advisory →
CVE-2026-61389 High 7.3

An out-of-bounds write vulnerability in the Productivity Suite allows a local attacker to trigger kernel memory corruption via a crafted IOCTL request, pot

16 Jul 2026, 20:00 UTC View advisory →
CVE-2026-61387 Medium 6.9

In Eclipse Milo versions 1.0.0 through 1.1.4, monitored-item quota accounting is not exception-safe: if item creation fails with an unchecked error, the se

04 Aug 2026, 11:52 UTC View advisory →
CVE-2026-61378 Medium 6.8

A divide-by-zero vulnerability in the Productivity Suite allows a local attacker to cause a division by zero leading to a system crash.

16 Jul 2026, 20:30 UTC View advisory →
CVE-2026-61372 High 7.5

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache Jena Fuseki. This issue affects Apache Jena Fuseki:

03 Aug 2026, 15:41 UTC View advisory →
CVE-2026-61246 High 8.8

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions tha

22 Jul 2026, 22:24 UTC View advisory →
CVE-2026-60455 High 8.8

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions tha

22 Jul 2026, 22:24 UTC View advisory →
CVE-2026-60439 High 8.8

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions tha

22 Jul 2026, 22:24 UTC View advisory →
CVE-2026-60373 High 8.8

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions tha

22 Jul 2026, 22:24 UTC View advisory →
CVE-2026-60372 Critical 9.8

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions tha

22 Jul 2026, 22:24 UTC View advisory →
CVE-2026-60371 High 8

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions tha

22 Jul 2026, 22:24 UTC View advisory →
CVE-2026-60370 High 7.5

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions tha

22 Jul 2026, 22:24 UTC View advisory →
CVE-2026-60369 Critical 9.9

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions tha

22 Jul 2026, 22:24 UTC View advisory →
CVE-2026-60368 High 8.8

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions tha

22 Jul 2026, 22:24 UTC View advisory →
CVE-2026-60367 Critical 9.8

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions tha

22 Jul 2026, 22:24 UTC View advisory →
CVE-2026-60366 Critical 10

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions tha

22 Jul 2026, 22:23 UTC View advisory →
CVE-2026-60140 Medium 6.9

An out-of-bounds read vulnerability in the Productivity Suite allows a local attacker to trigger kernel memory corruption by sending a crafted IOCTL reques

16 Jul 2026, 20:03 UTC View advisory →
CVE-2026-60137 Medium 5.9

WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter of WP_Query, which could a

17 Jul 2026, 19:14 UTC View advisory →
CVE-2026-60125 Medium 5.3

MISP’s importModule() path used getEnabledModule() to resolve a single import module by name, but this lookup did not enforce the per-organisation module r

08 Jul 2026, 13:36 UTC View advisory →
CVE-2026-60124 Medium 5.3

An authorization bypass in MISP’s EventsController::importModule() allowed authenticated users or read-only API keys with event view access to persist data

08 Jul 2026, 13:30 UTC View advisory →
CVE-2026-60121 Critical 9.3

Vitec Flamingo 4.12.2 contains an unauthenticated OS command injection vulnerability in the admin/ajax/ping.php endpoint that allows remote attackers to ex

13 Jul 2026, 13:11 UTC View advisory →
CVE-2026-60119 Medium 5.1

Hi.Events before 1.11.0 contains a cross-site scripting vulnerability that allows authenticated attackers with event creation or edit permissions to inject

14 Jul 2026, 15:44 UTC View advisory →
CVE-2026-60118 Medium 6.9

Hi.Events before 1.11.0 contains a missing server-side visibility enforcement vulnerability that allows unauthenticated attackers to purchase hidden ticket

14 Jul 2026, 15:42 UTC View advisory →
CVE-2026-60114 High 8.7

Sustainable Irrigation Platform (SIP) through version 5.2.16 contains a path traversal vulnerability that allows attackers with access to the restore funct

14 Jul 2026, 14:37 UTC View advisory →
CVE-2026-60105 High 7.7

Monsta FTP before 2.14.5 contains a server-side request forgery vulnerability in the fetchRemoteFile action caused by an incomplete IP blocklist check in t

08 Jul 2026, 21:02 UTC View advisory →
CVE-2026-60104 Critical 9.3

Bitwarden Server before 2026.6.0 does not verify that the email in a POST /auth-requests/admin-request body belongs to the authenticated caller, allowing a

08 Jul 2026, 19:34 UTC View advisory →
CVE-2026-60103 Medium 6.8

Blender 3.0.0 through 5.1.2 contains an out-of-bounds read vulnerability that allows attackers to trigger a crash or read adjacent heap memory by supplying

13 Jul 2026, 17:44 UTC View advisory →
CVE-2026-60102 High 7.7

Horde Virtual File System (VFS) API before 3.0.1 contains an OS command injection vulnerability in the Horde_Vfs_Smb driver where the _escapeShellCommand()

08 Jul 2026, 16:25 UTC View advisory →
CVE-2026-60092 Medium 5.1

AVideo (Meet plugin) through commit e8d6119f3cb1b849149906efeb0a41fc024f59f8 contains a stored cross-site scripting vulnerability in the Meet plugin's getM

08 Jul 2026, 13:51 UTC View advisory →
CVE-2026-60091 Medium 6.9

PraisonAI before 4.6.78 contains an unauthenticated server-side request forgery vulnerability in the Jobs API /api/v1/runs endpoint. The webhook_url parame

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-60090 Critical 9.3

PraisonAI before 4.6.78 fails to validate the caller-controlled dimension argument in the PGVector and Cassandra knowledge-store create_collection() backen

11 Jul 2026, 13:01 UTC View advisory →
CVE-2026-60089 Medium 6.9

PraisonAI (pip package praisonaiagents) before 1.6.78 automatically loads defaults from a project-local .praisonai/config.toml when constructing an Agent,

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-60088 Medium 6.8

PraisonAI before 4.6.78 fails to validate file path references in custom command templates, allowing attackers to read files outside the workspace. Attacke

11 Jul 2026, 13:00 UTC View advisory →
CVE-2026-60087 Medium 6.9

PraisonAI before 1.6.78 caches tool approval decisions by tool name only, allowing attackers to reuse initial approvals for subsequent calls with arbitrary

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-60086 Medium 6.9

PraisonAI before 4.6.78 contains a prompt injection defense bypass vulnerability where the injection defense only blocks threats classified as CRITICAL, re

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-60085 High 8.7

PraisonAI before 4.6.78 contains an unenforced security policy vulnerability in the default Subprocess Sandbox backend where blocked_commands, blocked_path

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-60082 Unscored

DBI versions before 1.651 for Perl do not enforce statement handle consistency with the row. When the statement handle had no fields but the source row was

14 Jul 2026, 15:35 UTC View advisory →
CVE-2026-60081 Unscored

DBI::ProfileData versions before 1.651 for Perl do not limit the path index. The path index column of profile dump files is used to allocate an array of da

14 Jul 2026, 15:34 UTC View advisory →
CVE-2026-60075 Unscored

Date::Manip versions through 6.99 for Perl allow CPU exhaustion via quadratic backtracking in the unanchored time substitution in _parse_time. _parse_time

30 Jul 2026, 13:42 UTC View advisory →
CVE-2026-60074 Unscored

Date::Manip versions through 6.99 for Perl return corrupted dates via non-ASCII decimal digits that pass the numeric range tests in check. The parse regexe

30 Jul 2026, 13:42 UTC View advisory →
CVE-2026-60073 Medium 5.2

An out-of-bounds read in the Productivity Suite allows a physical attacker to control the length of data sent to a USB device. This can lead to a system cr

16 Jul 2026, 20:22 UTC View advisory →
CVE-2026-60065 Medium 6.3

When NGINX Plus is configured to use the Message Queuing Telemetry Transport (MQTT) filter module (ngx_stream_mqtt_filter_module), unauthenticated attacker

15 Jul 2026, 14:33 UTC View advisory →
CVE-2026-60063 High 7.3

An out-of-bounds write vulnerability in the Productivity Suite allows a local attacker to trigger kernel memory corruption via a crafted IOCTL request, pot

16 Jul 2026, 19:59 UTC View advisory →
CVE-2026-60062 Medium 5.3

The NGINX Agent config_dirs directive allows a low-privileged attacker to gain limited read and write access to files outside of the designated secure dire

15 Jul 2026, 14:33 UTC View advisory →
CVE-2026-60060 Medium 5.1

Improper Handling of Length Parameter Inconsistency (CWE-130) vulnerability exists in TTSSH2 plugin of Tera Term provided by TeraTerm Project. When Tera Te

17 Jul 2026, 04:13 UTC View advisory →
CVE-2026-60053 Unscored

Insufficient Session Expiration vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.1. Administrative API keys remained usable af

05 Aug 2026, 15:13 UTC View advisory →
CVE-2026-60034 Critical 9.4

The Joomla extension JMedia is vulnerable to a stored XSS vulnerability. Unsanitised SVG uploads served without nosniff, leading to stored/reflected XSS.

20 Jul 2026, 18:11 UTC View advisory →
CVE-2026-60033 Medium 5.1

The Joomla extension JMedia is vulnerable to an SSRF vulnerability. Remote-URL download could target internal/reserved addresses.

20 Jul 2026, 18:10 UTC View advisory →
CVE-2026-60032 Critical 9.4

The Joomla extension JMedia is vulnerable to an authenticated arbitrary file upload, leading to RCE. Executable uploads/writes possible (incl. polyglot fil

20 Jul 2026, 18:09 UTC View advisory →
CVE-2026-60031 Medium 6.9

The Joomla extension Quix Page Builder Pro is vulnerable to an information disclosure. Raw exceptions reflected in AJAX handler responses.

20 Jul 2026, 18:12 UTC View advisory →
CVE-2026-60030 High 8.7

The Joomla extension Quix Page Builder Pro is vulnerable to an improper access control. Authenticated users could upload media files regardless of their me

20 Jul 2026, 18:11 UTC View advisory →
CVE-2026-60029 Medium 5.1

The Joomla extension Quix Page Builder Pro is vulnerable to an authenticated stored XSS vulnerability. Authenticated builder users could break out of id/cl

20 Jul 2026, 18:11 UTC View advisory →
CVE-2026-60028 High 8.6

The Joomla extension Quix Page Builder Pro is vulnerable to an authenticated stored XSS vulnerability. Authenticated builder user could inject scripts, fir

20 Jul 2026, 18:09 UTC View advisory →
CVE-2026-60027 High 8.7

The Joomla extension Quix Page Builder Pro is vulnerable to a unauthenticated path traversal via form elements. Unauthenticated users frontend users are al

20 Jul 2026, 18:14 UTC View advisory →
CVE-2026-60026 High 8.9

The Joomla extension Quix Page Builder Pro is vulnerable to an authenticated PHP code execution. Authenticated builder user (core.create/core.edit) could i

20 Jul 2026, 18:11 UTC View advisory →
CVE-2026-60025 Unscored

The Joomla extension Events Booking prior version 5.8.0 had an frontend file upload endpoint that lacked CSRF protection.

17 Jul 2026, 15:44 UTC View advisory →
CVE-2026-60024 Unscored

The Joomla extension Events Booking prior version 5.8.0 did by default allow unauthenticated users to upload media assets.

17 Jul 2026, 15:47 UTC View advisory →
CVE-2026-60023 Unscored

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.1. Deleted or pend

05 Aug 2026, 15:12 UTC View advisory →
CVE-2026-60011 Medium 6.9

Sharp and Toshiba Tec MFPs (multifunction printers) fail to properly authorize requests to directly access certain image data stored to the affected produc

03 Aug 2026, 07:56 UTC View advisory →
CVE-2026-60009 High 8.8

In Eclipse Theia versions up to and including 1.73.1, the `@theia/filesystem` backend binds `POST /file-upload` in every filesystem-enabled deployment. The

05 Aug 2026, 10:59 UTC View advisory →
CVE-2026-60007 Critical 9.1

In Eclipse Milo versions 0.6.0 through 1.1.4, username-token processing returns distinguishable errors for invalid RSA PKCS#1 v1.5 padding and other authen

04 Aug 2026, 11:55 UTC View advisory →
CVE-2026-60005 High 8.8

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_slice_module module. When the slice directive and unnamed regex captures are configur

15 Jul 2026, 15:04 UTC View advisory →
CVE-2026-60002 High 7.7

ssh in OpenSSH before 10.4 can have a use-after-free when a server changes its host key during a key re-exchange. (This outcome occurs only on the client s

08 Jul 2026, 00:17 UTC View advisory →
CVE-2026-60001 Medium 6.5

sshd in OpenSSH before 10.4 does not always honor the minimum authentication delay.

08 Jul 2026, 00:16 UTC View advisory →
CVE-2026-60000 Low 3.7

sshd in OpenSSH before 10.4 allows remote attackers to cause a denial of service (resource consumption from excessive authentication attempts) because MaxA

08 Jul 2026, 00:14 UTC View advisory →
CVE-2026-59999 Medium 5.9

In sshd in OpenSSH before 10.4, DisableForwarding=yes was supposed to take precedence over PermitTunnel=yes, but did not.

08 Jul 2026, 00:13 UTC View advisory →
CVE-2026-59998 Medium 4.8

sshd in OpenSSH before 10.4 has an undocumented security-relevant behavior: GSSAPIStrictAcceptorCheck has no value if the server is in Windows Active Direc

08 Jul 2026, 00:11 UTC View advisory →
CVE-2026-59997 Medium 4.2

internal-sftp in sshd in OpenSSH before 10.4 recognizes only the first 9 command-line arguments, which can be important if a later command-line argument wo

08 Jul 2026, 00:09 UTC View advisory →
CVE-2026-59996 Medium 4.2

scp in OpenSSH before 10.4 may place a file in the parent directory of an intended directory when the copy occurs between two remote destinations.

08 Jul 2026, 00:07 UTC View advisory →
CVE-2026-59995 Medium 4.2

sftp in OpenSSH before 10.4 does not properly constrain the location of downloaded files when "sftp server:/path ." is used with an attacker-controlled ser

08 Jul 2026, 00:04 UTC View advisory →
CVE-2026-59955 High 7.5

Apollo is a reliable configuration management system suitable for microservice configuration management scenarios. Prior to 2.5.2, Apollo ConfigService may

15 Jul 2026, 16:26 UTC View advisory →
CVE-2026-59954 High 7.5

Apollo is a reliable configuration management system suitable for microservice configuration management scenarios. Prior to 2.5.2, Apollo ConfigService may

15 Jul 2026, 16:27 UTC View advisory →
CVE-2026-59950 High 7.6

The MCP Python SDK, called mcp on PyPI, is a Python implementation of the Model Context Protocol (MCP). Prior to 1.28.1, the deprecated mcp.server.websocke

15 Jul 2026, 20:08 UTC View advisory →
CVE-2026-59948 High 7

Composer is a dependency Manager for the PHP language. Prior to 2.2.29 and 2.10.2, a maliciously crafted package from an untrusted repository other than Pa

08 Jul 2026, 19:33 UTC View advisory →
CVE-2026-59947 Medium 4.7

Composer is a dependency Manager for the PHP language. Prior to 2.2.29 and 2.10.2, when Composer is run with -vvv debug verbosity, it could print a credent

08 Jul 2026, 19:33 UTC View advisory →
CVE-2026-59946 Medium 6.1

Composer is a dependency Manager for the PHP language. Prior to 2.2.29 and 2.10.2, a Composer package bin entry containing .. path segments can resolve out

08 Jul 2026, 19:32 UTC View advisory →
CVE-2026-59939 High 7.5

httplib2 is a comprehensive HTTP client library for Python. Prior to 0.32.0, httplib2 performs unbounded decompression of HTTP response bodies encoded with

08 Jul 2026, 19:34 UTC View advisory →
CVE-2026-59938 Medium 6.9

pypdf is a free and open-source pure-python PDF library. Prior to 6.14.0, an attacker can craft a PDF with declared image size values that are much too lar

08 Jul 2026, 17:24 UTC View advisory →
CVE-2026-59937 Medium 6.9

pypdf is a free and open-source pure-python PDF library. Prior to 6.14.0, an attacker can craft a PDF with repeated malformed cross-reference streams that

08 Jul 2026, 17:25 UTC View advisory →
CVE-2026-59936 High 8.7

pypdf is a free and open-source pure-python PDF library. Prior to 6.14.1, an attacker can craft a PDF with a page content stream containing a not terminate

08 Jul 2026, 19:34 UTC View advisory →
CVE-2026-59935 High 8.7

pypdf is a free and open-source pure-python PDF library. Prior to 6.14.2, an attacker can craft a PDF with a page content stream containing a not terminate

08 Jul 2026, 19:34 UTC View advisory →
CVE-2026-59930 Medium 4.3

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, the toc plugin and TableOfContents directive generate heading IDs as predic

08 Jul 2026, 16:13 UTC View advisory →
CVE-2026-59929 Medium 6.1

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, the safe_url filter in src/mistune/renderers/html.py blocks only javascript

08 Jul 2026, 16:20 UTC View advisory →
CVE-2026-59928 High 7.5

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, a Markdown document containing many repeated or distinct reference-link def

08 Jul 2026, 16:23 UTC View advisory →
CVE-2026-59927 Medium 5.3

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, the Include directive in src/mistune/directives/include.py detects only dir

08 Jul 2026, 16:24 UTC View advisory →
CVE-2026-59926 Medium 5.3

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.2.1, render_admonition() in src/mistune/directives/admonition.py concatenates th

08 Jul 2026, 16:16 UTC View advisory →
CVE-2026-59925 High 7.5

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, long sequences of well-formed double-asterisk or triple-asterisk emphasis p

08 Jul 2026, 16:18 UTC View advisory →
CVE-2026-59924 Medium 5.9

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, Include.parse() joins and normalizes user-supplied include paths without ve

08 Jul 2026, 16:22 UTC View advisory →
CVE-2026-59923 Medium 6.1

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, HTMLRenderer.safe_url() does not block percent-encoded javascript URIs, all

08 Jul 2026, 16:14 UTC View advisory →
CVE-2026-59922 High 7.5

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, a run of closed tilde, equals-sign, or caret marker pairs around a characte

08 Jul 2026, 16:12 UTC View advisory →
CVE-2026-59913 High 7.8

Dell Display and Peripheral Manager (DDPM Mac), versions prior to 2.3.0.1005, contain a Missing Authentication for Critical Function vulnerability. A low p

03 Aug 2026, 17:57 UTC View advisory →
CVE-2026-59912 High 7.8

Dell Display and Peripheral Manager (DDPM Mac), versions prior to 2.3.0.1005, contain an Improper Access Control vulnerability. A low privileged attacker w

03 Aug 2026, 17:53 UTC View advisory →
CVE-2026-59897 Medium 4.8

Hono is a Web application framework that provides support for any JavaScript runtime. From 4.3.3 before 4.12.27, the AWS API Gateway v1 adapter can drop a

08 Jul 2026, 16:06 UTC View advisory →
CVE-2026-59896 Medium 6.5

Hono is a Web application framework that provides support for any JavaScript runtime. From 4.11.8 before 4.12.27, hono/jsx did not isolate context values p

08 Jul 2026, 16:08 UTC View advisory →
CVE-2026-59895 Medium 6.1

Hono is a Web application framework that provides support for any JavaScript runtime. From 4.0.0 before 4.12.27, cx() in hono/css composes class names from

08 Jul 2026, 16:09 UTC View advisory →
CVE-2026-59892 High 7.5

OpenTelemetry JavaScript is the OpenTelemetry JavaScript client. Prior to 2.9.0, @opentelemetry/propagator-jaeger decodes incoming uber-trace-id and uberct

08 Jul 2026, 16:03 UTC View advisory →
CVE-2026-59891 Critical 9.6

sigstore-js provides JavaScript libraries for interacting with Sigstore services. Prior to 0.7.1, getRegistryCredentials() reads credentials from the Docke

14 Jul 2026, 16:54 UTC View advisory →
CVE-2026-59890 Medium 6.1

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. Prior to 83.0.0, FileList applied MANIFEST.i

08 Jul 2026, 16:02 UTC View advisory →
CVE-2026-59889 Medium 6.5

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.18.0 until 2.18.9, 2.21.5, 2.22.

14 Jul 2026, 19:57 UTC View advisory →
CVE-2026-59888 Medium 6.5

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.15.0 until 2.18.8, 2.21.4, and 3

14 Jul 2026, 16:44 UTC View advisory →
CVE-2026-59887 High 7.5

linkify-it is a links recognition library with full Unicode support. Prior to 5.0.2, the mailto: schema validator used by .test() and .match() can be invok

08 Jul 2026, 15:58 UTC View advisory →
CVE-2026-59886 High 7.5

pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.4, the univ.Real type converted its mantissa, base, and exponent value to a Python float using e

14 Jul 2026, 16:38 UTC View advisory →
CVE-2026-59885 High 7.5

pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.4, the BER, CER, and DER decoders process OBJECT IDENTIFIER and RELATIVE-OID values in quadratic

14 Jul 2026, 16:40 UTC View advisory →
CVE-2026-59884 High 7.5

pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.4, the BER decoder shared by the CER and DER codecs parses long-form tags by accumulating contin

14 Jul 2026, 16:41 UTC View advisory →
CVE-2026-59883 Medium 4.7

Guzzle is an extensible PHP HTTP client. Prior to 7.12.3, CookieJar did not restrict cookies scoped to IP-address or bare-numeric Domain values to the exac

08 Jul 2026, 15:56 UTC View advisory →
CVE-2026-59882 Medium 4.2

guzzlehttp/psr7 is a PSR-7 HTTP message library implementation in PHP. Prior to 2.12.3, Uri::assertValidHost() does not reject URI host components containi

08 Jul 2026, 15:50 UTC View advisory →
CVE-2026-59881 Medium 6.9

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.2, the WebSocket client accepts and decompresses frames with

30 Jul 2026, 17:34 UTC View advisory →
CVE-2026-59880 High 8.7

Immutable.js provides many Persistent Immutable data structures. Prior to 4.3.9 and 5.1.8, Immutable.Map and Immutable.Set keep keys that share the same 32

08 Jul 2026, 15:44 UTC View advisory →
CVE-2026-59879 High 8.7

Immutable.js provides many Persistent Immutable data structures. Prior to 4.3.9 and 5.1.8, List#set, List#setSize, List#setIn, List#updateIn, and the funct

08 Jul 2026, 15:47 UTC View advisory →
CVE-2026-59877 Medium 5.3

protobufjs compiles protobuf definitions into JavaScript (JS) functions. Prior to 7.6.5 and 8.6.6, protobufjs parsed option names by advancing through sche

08 Jul 2026, 15:28 UTC View advisory →
CVE-2026-59876 Medium 4.8

protobufjs compiles protobuf definitions into JavaScript (JS) functions. From 8.2.0 until 8.6.5, the protobufjs Text Format extension parsed string-keyed m

08 Jul 2026, 15:31 UTC View advisory →
CVE-2026-59875 Medium 5.3

node-tar is a tar archive manipulation library for Node.js. Prior to 7.5.17, node-tar does not strip NUL bytes from PAX path and linkpath records in src/pa

08 Jul 2026, 15:20 UTC View advisory →
CVE-2026-59874 High 8.7

node-tar is a tar archive manipulation library for Node.js. Prior to 7.5.18, tar.replace accepts a checksum-valid tar header with a negative base-256 encod

08 Jul 2026, 15:23 UTC View advisory →
CVE-2026-59873 Critical 9.2

node-tar is a tar archive manipulation library for Node.js. Prior to 7.5.19, node-tar does not enforce hard upper bounds on total decompressed data, entry

08 Jul 2026, 15:22 UTC View advisory →
CVE-2026-59871 Medium 5.3

node-tar is a tar archive manipulation library for Node.js. Prior to 7.5.18, node-tar coerces all-digit PAX path and linkpath values in src/pax.ts to JavaS

08 Jul 2026, 15:25 UTC View advisory →
CVE-2026-59870 Medium 5.3

js-yaml is a JavaScript YAML parser and dumper. From 5.0.0 before 5.2.1, YAML11_SCHEMA support for the !!omap tag in src/tag/sequence/omap.ts uses omapTag.

08 Jul 2026, 15:13 UTC View advisory →
CVE-2026-59869 High 7.5

js-yaml is a JavaScript YAML parser and dumper. From 3.0.0 before 3.15.0 and from 4.0.0 before 4.3.0, js-yaml can spend quadratic CPU time parsing a docume

08 Jul 2026, 15:15 UTC View advisory →
CVE-2026-59868 Medium 5.3

js-yaml is a JavaScript YAML parser and dumper. From 5.0.0 before 5.2.0, when merge keys are enabled, js-yaml can spend quadratic CPU time parsing a docume

08 Jul 2026, 15:18 UTC View advisory →
CVE-2026-59867 High 7.1

Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.32.5, Kiota resolved OpenAPI $ref values by fetching remote http(s) URLs and reading local

16 Jul 2026, 14:48 UTC View advisory →
CVE-2026-59866 Critical 9.3

Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.32.5, Kiota emitted x-ms-kiota-info clientClassName and clientNamespaceName values without

16 Jul 2026, 14:46 UTC View advisory →
CVE-2026-59865 Critical 9.3

Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.32.5, `kiota info` read x-ms-kiota-info.languagesInformation..dependencyInstallCommand plu

16 Jul 2026, 14:43 UTC View advisory →
CVE-2026-59864 Critical 9.3

Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.32.5, `kiota plugin add` and `kiota plugin generate` (with `-t APIPlugin`) emitted attacke

16 Jul 2026, 14:45 UTC View advisory →
CVE-2026-59863 High 7

Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.32.5, Kiota honored a poisoned .kiota/workspace.json workspace configuration without valid

16 Jul 2026, 14:42 UTC View advisory →
CVE-2026-59862 High 7.5

Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.32.0, Kiota's Python generator let attacker-controlled enum value descriptions from x-ms-e

16 Jul 2026, 14:38 UTC View advisory →
CVE-2026-59861 High 7.5

Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.32.0, Kiota's Ruby generator embedded OpenAPI default fields, property names, and other sc

16 Jul 2026, 14:36 UTC View advisory →
CVE-2026-59860 High 8.7

Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.32.3, Kiota is affected by a code-generation injection vulnerability in the C# XML documen

16 Jul 2026, 14:34 UTC View advisory →
CVE-2026-59859 High 8.7

Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.32.4, Kiota's PHP generator embedded OpenAPI description, default fields, property names,

16 Jul 2026, 14:40 UTC View advisory →
CVE-2026-59841 Medium 6.9

A improper restriction of communication channel to intended endpoints vulnerability in Fortinet FortiSIEMWindowsAgent 7.4.0 through 7.4.1 may allow attacke

14 Jul 2026, 15:15 UTC View advisory →
CVE-2026-59840 Medium 4.1

A buffer over-read vulnerability in Fortinet FortiOS 7.6.0 through 7.6.2, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions, FortiProxy 7.6.0 through 7

14 Jul 2026, 15:19 UTC View advisory →
CVE-2026-59839 Medium 5

A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiOS 7.6.0 through 7.6.6, FortiOS 7.4.0 throu

14 Jul 2026, 15:19 UTC View advisory →
CVE-2026-59838 Medium 5.3

A improper neutralization of script-related html tags in a web page (basic xss) vulnerability in Fortinet FortiSIEM 7.4.0, FortiSIEM 7.3.0 through 7.3.4, F

15 Jul 2026, 13:43 UTC View advisory →
CVE-2026-59837 Medium 5.9

A stack-based buffer overflow vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2 all versions, FortiPAM 1.8.0 through 1.8.2, FortiPAM 1.7 a

14 Jul 2026, 15:06 UTC View advisory →
CVE-2026-59836 Medium 6.7

A improper certificate validation vulnerability in Fortinet FortiClientEMS 7.4.3 through 7.4.5, FortiClientEMS 7.4.0 through 7.4.1, FortiClientEMS 7.2 all

14 Jul 2026, 15:15 UTC View advisory →
CVE-2026-59835 High 7.7

A exposure of resource to wrong sphere vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.2, FortiSandbox 4.4.3 through 4.4.8 may allow an unauthenti

14 Jul 2026, 15:12 UTC View advisory →
CVE-2026-59822 High 8.8

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.84.0, LiteLLM's MCP Streamable HTTP endpoint allowed an un

08 Jul 2026, 19:32 UTC View advisory →
CVE-2026-59821 Low 2.1

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.82.0-stable, LiteLLM's Custom Code Guardrails production c

08 Jul 2026, 19:14 UTC View advisory →
CVE-2026-59820 Medium 6.1

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.83.7-stable, LiteLLM Skills archive extraction did not suf

08 Jul 2026, 19:32 UTC View advisory →
CVE-2026-59819 Low 2.1

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.83.10-stable, LiteLLM's /health/test_connection endpoint r

08 Jul 2026, 19:33 UTC View advisory →
CVE-2026-59818 Medium 6.5

etcd is a distributed key-value store for the data of a distributed system. Prior to 3.5.32 and 3.6.13, when etcd is configured with --listen-client-http-u

08 Jul 2026, 21:00 UTC View advisory →
CVE-2026-59807 High 8.9

Composio SDK before 0.2.32-beta.283 contains a path validation bypass vulnerability that allows attackers to read and exfiltrate sensitive files by exploit

08 Jul 2026, 19:43 UTC View advisory →
CVE-2026-59806 Medium 4.9

Gradio before 6.20.0 contains an open redirect and server-side request forgery vulnerability that allows attackers to redirect users to arbitrary URLs or p

08 Jul 2026, 19:43 UTC View advisory →
CVE-2026-59805 High 7.1

Gumroad before 2026.07.06.2 contains a broken access control vulnerability in the PurchasesController that allows authenticated sellers to manipulate purch

08 Jul 2026, 19:43 UTC View advisory →
CVE-2026-59804 High 7.6

Midscene Bridge Server through 1.10.3, fixed in commit 86f4118, contains a missing authentication and CORS misconfiguration vulnerability that allows unaut

08 Jul 2026, 19:42 UTC View advisory →
CVE-2026-59803 High 8.7

rpcx through 1.9.3, fixed in commit 047aec1, contains a denial-of-service vulnerability in protocol.Message.Decode (protocol/message.go). When a message ha

08 Jul 2026, 19:42 UTC View advisory →
CVE-2026-59802 Medium 6.3

PasswordPusher before 2.8.1 accepts data URI schemes in URL push payloads due to insufficient validation in the valid_url function. Attackers can create ma

08 Jul 2026, 19:42 UTC View advisory →
CVE-2026-59801 Critical 9.3

9Router through version 0.4.41 contains an unauthenticated access vulnerability that allows remote attackers to interact with provider management API endpo

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-59800 Critical 9.2

9Router before 0.4.44 contains an OS command injection vulnerability in the unauthenticated POST /api/tunnel/tailscale-install endpoint (this route is not

07 Jul 2026, 18:19 UTC View advisory →
CVE-2026-59796 High 8.1

In JetBrains TeamCity before 2026.1.2 pipeline modification was possible due to improper permission checks

10 Jul 2026, 14:18 UTC View advisory →
CVE-2026-59795 High 8.1

In JetBrains TeamCity before 2026.1.2 stored XSS via unauthenticated agent registration was possible

10 Jul 2026, 14:18 UTC View advisory →
CVE-2026-59794 High 7.3

In JetBrains TeamCity before 2026.1.2 stored XSS on the cloud profile page was possible via agent-reported data

10 Jul 2026, 14:18 UTC View advisory →
CVE-2026-59793 High 8.8

In JetBrains TeamCity before 2026.1.2 arbitrary file access was possible via the Perforce VCS integration

10 Jul 2026, 14:18 UTC View advisory →
CVE-2026-59792 Critical 9.6

In JetBrains IntelliJ IDEA before 2026.1.4, 2026.2 code execution via path traversal in project workspace ID handling was possible

10 Jul 2026, 14:18 UTC View advisory →
CVE-2026-59791 Low 3.5

In JetBrains YouTrack before 2026.2.17012 cSS injection via Mermaid diagram rendering was possible

10 Jul 2026, 14:18 UTC View advisory →
CVE-2026-59776 High 7

Missing Cryptographic Step (CWE-325) vulnerability exists in certain FeliCa IC chips shipped in or before 2017. If the vulnerability is exploited, informat

21 Jul 2026, 03:06 UTC View advisory →
CVE-2026-59762 High 8.7

When an HTTP/2 profile is configured on a virtual server, undisclosed requests can cause an increase in memory resource utilization. Impact: System perform

15 Jul 2026, 14:33 UTC View advisory →
CVE-2026-59733 High 8.8

Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.74.4, rclone serve restic --privat

14 Jul 2026, 21:38 UTC View advisory →
CVE-2026-59732 Medium 5

Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.74.4, rclone archive extract can w

14 Jul 2026, 21:36 UTC View advisory →
CVE-2026-59731 High 8.2

Astro is a web framework for content-driven websites. Version 6.4.7 performs authorization decisions on a partially decoded pathname after reaching the ite

08 Jul 2026, 16:27 UTC View advisory →
CVE-2026-59730 Low 2.1

Astro is a web framework for content-driven websites. In versions 8.1.0 through 11.0.1, when trailingSlash: 'always' is configured, the @astrojs/node stand

27 Jul 2026, 20:00 UTC View advisory →
CVE-2026-59729 Medium 5.1

Astro is a web framework for content-driven websites. Versions prior to 7.0.6 are vulnerable to XSS through unescaped spread attribute names in renderHTMLE

27 Jul 2026, 19:38 UTC View advisory →
CVE-2026-59728 Medium 4.3

Astro is a web framework for content-driven websites. In versions 1.0.0 through 4.0.18, the source.title and enclosure.type item fields in packages/astro-r

27 Jul 2026, 19:54 UTC View advisory →
CVE-2026-59727 Low 2.1

Astro is a web framework for content-driven websites. In versions 3.10.0 through 7.0.3, when a transition:persist, transition:scope, or transition:persist-

27 Jul 2026, 19:42 UTC View advisory →
CVE-2026-59725 High 7.5

Socket.IO enables bidirectional and low-latency communication for every platform. From 4.1.0 before 6.6.7, Engine.IO protocol v4 polling transport does not

08 Jul 2026, 15:37 UTC View advisory →
CVE-2026-59724 High 7.5

Socket.IO enables bidirectional and low-latency communication for every platform. From 6.5.0 before 6.6.7, Engine.IO servers with WebTransport enabled can

08 Jul 2026, 15:35 UTC View advisory →
CVE-2026-59723 High 8.8

Cline is an autonomous coding agent as an SDK, IDE extension, or CLI assistant. Prior to 3.0.30, the Cline Hub dashboard server launched by the cline dashb

08 Jul 2026, 22:25 UTC View advisory →
CVE-2026-59709 Medium 5.3

Ghostfolio's PUT /api/v1/portfolio/holding/:dataSource/:symbol/tags endpoint fails to verify Access.permissions field when processing the Impersonation-Id

07 Jul 2026, 14:12 UTC View advisory →
CVE-2026-59708 High 8.7

The GET /api/v1/public/:accessId/portfolio endpoint in ghostfolio accepts private access IDs without validating granteeUserId filtering, allowing unauthent

07 Jul 2026, 18:38 UTC View advisory →
CVE-2026-59707 Critical 9.2

LocalAI contains an unauthenticated server-side request forgery vulnerability in the POST /models/apply endpoint that allows attackers to fetch arbitrary i

07 Jul 2026, 20:37 UTC View advisory →
CVE-2026-59706 Critical 9.2

mem0 contains unauthenticated config API endpoints that expose LLM API keys in plaintext and allow server-side request forgery via attacker-controlled olla

07 Jul 2026, 21:02 UTC View advisory →
CVE-2026-59705 Critical 9.3

mem0's openmemory/api component contains an unauthenticated access vulnerability that allows unauthenticated attackers to read, write, and delete arbitrary

07 Jul 2026, 22:11 UTC View advisory →
CVE-2026-59704 High 7.1

Cap's GET /api/video/ai endpoint fails to validate user ownership or membership before returning private video AI metadata including titles, summaries, and

07 Jul 2026, 22:18 UTC View advisory →
CVE-2026-59703 High 8.7

repomix contains a local file inclusion vulnerability in the git clone endpoint that allows unauthenticated attackers to read arbitrary local git repositor

08 Jul 2026, 14:55 UTC View advisory →
CVE-2026-59702 Critical 9.2

repomix contains a server-side request forgery vulnerability in the POST /api/pack endpoint that allows unauthenticated attackers to make arbitrary outboun

08 Jul 2026, 15:07 UTC View advisory →
CVE-2026-59695 High 8.3

Improper Validation of Specified Quantity in Input in ZenHive mpp allows an unauthenticated remote client to drain the fee-payer wallet in a single request

17 Jul 2026, 10:11 UTC View advisory →
CVE-2026-59694 High 8.3

Improper Validation of Specified Quantity in Input in ZenHive mpp allows an unauthenticated remote client to inflate the fee-payer's gas cost per payment b

17 Jul 2026, 10:11 UTC View advisory →
CVE-2026-59690 High 8

A Missing Authorization vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, MOVEit WAF, and Multi Tenan

27 Jul 2026, 12:26 UTC View advisory →
CVE-2026-59689 High 8

An Incorrect Authorization vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows an

27 Jul 2026, 12:25 UTC View advisory →
CVE-2026-59688 High 8.4

An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows an au

27 Jul 2026, 12:24 UTC View advisory →
CVE-2026-59687 High 8.4

An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows an au

27 Jul 2026, 12:23 UTC View advisory →
CVE-2026-59686 High 8.4

An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows an au

27 Jul 2026, 12:22 UTC View advisory →
CVE-2026-59676 Medium 5.8

A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in seunshare of selinux policycoreutils allows a user calling seunshare that is running i

23 Jul 2026, 06:40 UTC View advisory →
CVE-2026-59675 High 7.5

When API audit logging is enabled, the middleware reads the entire HTTP request body into memory without enforcing a size limit on login endpoints. Because

05 Aug 2026, 07:49 UTC View advisory →
CVE-2026-59674 High 7.1

A UNIX Symbolic Link (Symlink) Following vulnerability in openSUSE Tumbleweed suricata package allows the suricata user to escalate to root. This issue aff

14 Jul 2026, 07:32 UTC View advisory →
CVE-2026-59652 Medium 6.9

In Bouncy Castle for Java before 1.85, LDAP filter injection in legacy jdk1.4 LDAPStoreHelper.

03 Aug 2026, 00:39 UTC View advisory →
CVE-2026-59651 High 7.1

In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue also affects Bouncy Castle for Java LT

03 Aug 2026, 00:41 UTC View advisory →
CVE-2026-59650 Critical 9.3

In Bouncy Castle for Java before 1.85, MTI/A0 DH agreement exponentiates unvalidated peer value. This issue also affects Bouncy Castle for Java LTS before

03 Aug 2026, 00:42 UTC View advisory →
CVE-2026-59649 High 8.7

In Bouncy Castle for Java before 1.85, OpenPGP user-attribute subpacket length bounded only by JVM max memory. This issue also affects Bouncy Castle for Ja

03 Aug 2026, 00:44 UTC View advisory →
CVE-2026-59648 Medium 6.9

In Bouncy Castle for Java before 1.85, OpenPGP Argon2 S2K honours attacker-chosen memory and passes. This issue also affects Bouncy Castle for Java LTS bef

03 Aug 2026, 00:45 UTC View advisory →
CVE-2026-59647 Medium 6.9

In Bouncy Castle for Java before 1.85, CRMF/CMP password-MAC honours unbounded iteration count. This issue also affects Bouncy Castle for Java LTS before 2

03 Aug 2026, 00:46 UTC View advisory →
CVE-2026-59646 High 8.7

In Bouncy Castle for Java before 1.85, DTLS handshake reassembler allocates buffer from unchecked 24-bit length. This issue also affects Bouncy Castle for

03 Aug 2026, 00:48 UTC View advisory →
CVE-2026-59645 High 8.7

In Bouncy Castle for Java before 1.85, OER parser recurses without depth limit on self-referential IEEE 1609.2 schema. This issue also affects Bouncy Castl

03 Aug 2026, 00:49 UTC View advisory →
CVE-2026-59644 High 8.7

In Bouncy Castle for Java before 1.85, MLS hash-ratchet honours arbitrary 32-bit generation counter from sender.

03 Aug 2026, 00:50 UTC View advisory →
CVE-2026-59643 High 8.7

In Bouncy Castle for Java before 1.85, OpenPGP inline-signature policy failures silently ignored. This issue also affects Bouncy Castle for Java FIPS (BC-F

03 Aug 2026, 00:51 UTC View advisory →
CVE-2026-59642 High 8.7

In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Jav

03 Aug 2026, 00:53 UTC View advisory →
CVE-2026-59641 High 8.7

In Bouncy Castle for Java before 1.85, S/MIME validator trusts signer-asserted signingTime for path validation. This issue also affects Bouncy Castle for J

03 Aug 2026, 00:54 UTC View advisory →
CVE-2026-59640 High 8.7

In Bouncy Castle for Java before 1.85, OpenPGP CFB quick-check oracle active on symmetric/session-key paths. This issue also affects Bouncy Castle for Java

03 Aug 2026, 00:55 UTC View advisory →
CVE-2026-59639 High 8.7

In Bouncy Castle for Java before 1.85, CMS verifySignatures returns true for SignedData with zero signers. This issue also affects Bouncy Castle for Java L

03 Aug 2026, 00:56 UTC View advisory →
CVE-2026-59638 Critical 9.3

In Bouncy Castle for Java before 1.85, JSSE hostname verifier CN-fallback enabled by default despite documented opt-in. This issue also affects Bouncy Cast

03 Aug 2026, 00:57 UTC View advisory →
CVE-2026-59560 Medium 6.5

Subscriber Broken Access Control in FundEngine <= 1.7.8 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59559 Medium 6.5

Subscriber Cross Site Scripting (XSS) in RT Mega Menu – Mega Menu Builder for Elementor & Gutenberg <= 1.5.1 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59558 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Booking Calendar <= 11.4.2 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59557 Medium 6.5

Unauthenticated Broken Access Control in Events Made Easy <= 3.1.3 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59556 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Dynamic Pricing With Discount Rules for WooCommerce <= 4.5.11 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59553 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Product Feed Manager <= 7.6.1 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59552 High 7.2

Unauthenticated Server Side Request Forgery (SSRF) in 3D Flipbook PDF Viewer & Embedder <= 1.4.2 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59551 High 8.5

Subscriber SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59550 Critical 9.3

Unauthenticated SQL Injection in AWP Classifieds <= 4.4.7 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59549 Critical 9.3

Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59548 High 7.5

Unauthenticated Sensitive Data Exposure in Byteflows Travel & Hotel Booking <= 1.0.0 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59546 High 7.4

Subscriber Broken Authentication in Hide My WP Ghost <= 7.0.06 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59539 High 7.5

Subscriber Insecure Direct Object References (IDOR) in Paid Member Subscriptions <= 3.0.7 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59538 Critical 9.3

Unauthenticated SQL Injection in GamiPress <= 7.9.7 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59537 High 7.6

Administrator SQL Injection in Sender – Newsletter, SMS and Email Marketing Automation for WooCommerce <= 2.10.22 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59536 High 7.5

Unauthenticated Broken Access Control in CoCart – Headless ecommerce <= 4.8.4 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59535 High 7.3

Unauthenticated Broken Access Control in Thrive Product Manager <= 10.9.2 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59534 High 7.5

Unauthenticated Broken Access Control in Post My CF7 Form <= 6.2.0 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59533 Critical 9.3

Unauthenticated SQL Injection in Relevanssi Light <= 1.2.2 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59532 High 7.5

Unauthenticated Other Vulnerability Type in Booking and Rental Manager <= 2.7.2 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59531 High 7.5

Unauthenticated Unknown in Falcon – WordPress Optimizations & Tweaks <= 2.10.0 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59530 High 7.5

Unauthenticated Broken Access Control in Stripe For WooCommerce <= 4.0.7 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59529 High 7.5

Unauthenticated Sensitive Data Exposure in Ebook Store <= 6.19 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59528 High 7.5

Subscriber Sensitive Data Exposure in ShipTime: Discounted Shipping Rates <= 1.1.1 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59527 Critical 9.3

Unauthenticated SQL Injection in MapSVG <= 8.14.0 versions.

27 Jul 2026, 13:59 UTC View advisory →
CVE-2026-59523 Medium 6.5

Missing Authorization vulnerability in NSquared Simply Schedule Appointments simply-schedule-appointments allows Exploiting Incorrectly Configured Access C

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-59521 High 7.2

Deserialization of Untrusted Data vulnerability in ShapedPlugin LLC Real Testimonials testimonial-free allows Object Injection.This issue affects Real Test

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-59518 Critical 9.8

Deserialization of Untrusted Data vulnerability in wpWax Directorist directorist allows Object Injection.This issue affects Directorist: from n/a through <

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-59516 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Room 34 Creative Services, LLC ICS Calendar ics-calen

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-59515 Critical 9.3

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sergey AIWU ai-copilot-content-generator allows Blind

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-59310 Critical 9.8

VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to vCenter may exploit this issue t

30 Jul 2026, 12:19 UTC View advisory →
CVE-2026-59309 Critical 9.8

VMware vCenter contains an authentication bypass vulnerability in the VMware Directory Service. A malicious actor with network access to vCenter may exploi

30 Jul 2026, 12:19 UTC View advisory →
CVE-2026-59262 High 7.1

AFFiNE's histories GraphQL field fails to validate Doc.Read permission before exposing document edit history, allowing authenticated workspace members to r

08 Jul 2026, 15:44 UTC View advisory →
CVE-2026-59261 High 8.4

OpenClaw before 2026.5.28 contains a credential exposure vulnerability where workspace dotenv files can override provider credentials. Attackers with lower

08 Jul 2026, 16:01 UTC View advisory →
CVE-2026-59259 Medium 6

n8n before versions 1.123.61, 2.27.4, and 2.28.1 contains a permission bypass vulnerability in external secrets handling caused by a mismatch between the s

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-59258 High 7.2

immich before 3.0.3 contains a broken access control vulnerability in the PUT /albums/:id/user/:userId endpoint that allows shared album editors to modify

15 Jul 2026, 17:03 UTC View advisory →
CVE-2026-59257 Medium 5.3

n8n before 1.123.61, 2.x before 2.27.4, and 2.28.x before 2.28.1 contains a SQL injection vulnerability in the legacy MySQL v1 node's executeQuery operatio

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-59255 High 7.1

BloodHound through 9.4.0, fixed in commit 8f79035, contains a missing authorization vulnerability in the custom-nodes API endpoints that allows any authent

15 Jul 2026, 17:03 UTC View advisory →
CVE-2026-59254 Medium 6.3

n8n before 2.28.1 contains an information disclosure vulnerability where external secrets are incorrectly resolved in workflow node expressions outside cre

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-59253 Medium 5.3

n8n before 2.28.0 contains an improper authorization vulnerability allowing authenticated users to assign workflows to folders in other projects. Attackers

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-59252 High 8.2

Improper Validation of Specified Quantity in Input in ZenHive mpp allows an unauthenticated remote client to drain the fee-payer wallet, resulting in denia

17 Jul 2026, 10:11 UTC View advisory →
CVE-2026-59251 High 8.7

Allocation of resources without limits in Erlang/OTP public_key certificate path validation allows a remote unauthenticated attacker to cause denial of ser

27 Jul 2026, 15:30 UTC View advisory →
CVE-2026-59250 High 8.3

Classic buffer overflow in the Erlang/OTP megaco flex scanner C driver allows a remote unauthenticated attacker to corrupt the driver's memory (and potenti

27 Jul 2026, 15:25 UTC View advisory →
CVE-2026-59249 Medium 6.3

Inconsistent interpretation of HTTP requests (HTTP response smuggling) vulnerability in elixir-mint mint allows a malicious HTTP/1 server to desynchronize

16 Jul 2026, 11:39 UTC View advisory →
CVE-2026-59246 Medium 6.3

Allocation of resources without limits vulnerability in elixir-mint mint allows a remote HTTP/2 server to exhaust memory on the client host and cause a den

14 Jul 2026, 08:37 UTC View advisory →
CVE-2026-59245 Unscored

In the Apache Airflow FAB auth manager, a DAG whose `dag_id` is `DAGs` collided with the global all-DAGs permission resource name produced by `resource_nam

13 Jul 2026, 15:05 UTC View advisory →
CVE-2026-59240 Medium 6.9

The vulnerability involves an Insecure Direct Object Reference (IDOR) in the `DeleteNotificationController::delete()` method at endpoint `GET /notification

27 Jul 2026, 21:37 UTC View advisory →
CVE-2026-59239 High 8.6

Stored Cross-site Scripting (CWE-79) in the email module in Roskus Prospero Flow CRM before 5.4.4 allows a remote, authenticated low-privileged user to exe

27 Jul 2026, 17:56 UTC View advisory →
CVE-2026-59238 Medium 6.9

Stored Cross-site Scripting (CWE-79) in the client-side report rendering functions (renderPreview, renderEditor, renderAuditData in js/app.js) in maalfer P

20 Jul 2026, 13:58 UTC View advisory →
CVE-2026-59237 Medium 6.9

Authorization Bypass Through User-Controlled Key (CWE-639) in the Order and OrderItem REST API controllers in Roskus Prospero Flow CRM before 5.5.3 allows

16 Jul 2026, 14:35 UTC View advisory →
CVE-2026-59236 Medium 6.9

Authorization Bypass Through User-Controlled Key (CWE-639) in the Excel import handlers (CustomerImport, LeadImport, ProductImport) in Roskus Prospero Flow

15 Jul 2026, 11:09 UTC View advisory →
CVE-2026-59235 High 8.7

Missing Authorization (CWE-862) in BankAccountListController (app/Http/Controllers/Api/BankAccount/BankAccountListController.php), exposed at GET /api/bank

15 Jul 2026, 10:38 UTC View advisory →
CVE-2026-59232 Medium 5.3

Cross-site Scripting in the lead index view in Roskus Prospero Flow CRM before 5.3.7 allows authenticated users holding the create or update lead permissio

31 Jul 2026, 16:00 UTC View advisory →
CVE-2026-59231 Medium 5.3

Server-Side Request Forgery in the PDF export component in maalfer Pentestify before 1.1.0 allows authenticated users to cause outbound HTTP GET requests f

31 Jul 2026, 15:06 UTC View advisory →
CVE-2026-59205 High 7.5

Pillow is a Python imaging library. Prior to 12.3.0, Pillow's ImageCms.ImageCmsTransform.apply(im, imOut) API can trigger controlled native heap corruption

14 Jul 2026, 15:48 UTC View advisory →
CVE-2026-59204 High 8.7

Pillow is a Python imaging library. From 8.2.0 through 12.2.0, src/libImaging/Jpeg2KDecode.c accumulates total_component_width across every tile in a JPEG2

14 Jul 2026, 15:38 UTC View advisory →
CVE-2026-59203 Medium 5.3

Pillow is a Python imaging library. From 12.0.0 through 12.2.0, Pillow's EPS parser in PIL/EpsImagePlugin.py accepts a negative byte count in the %%BeginBi

14 Jul 2026, 15:43 UTC View advisory →
CVE-2026-59200 High 7.5

Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser.PdfStream.decode() in PIL/PdfParser.py calls zlib.decompress() with bufsize set to t

14 Jul 2026, 16:09 UTC View advisory →
CVE-2026-59199 High 7.5

Pillow is a Python imaging library. Prior to 12.3.0, Pillow public image coordinate APIs can trigger a native heap out-of-bounds write when given coordinat

14 Jul 2026, 15:42 UTC View advisory →
CVE-2026-59198 Medium 6.5

Pillow is a Python imaging library. From 5.2.0 until 12.3.0, Pillow's TGA RLE encoder reads past its packed row buffer when saving a mode 1 image with TGA

14 Jul 2026, 16:07 UTC View advisory →
CVE-2026-59197 High 8.2

Pillow is a Python imaging library. Prior to 12.3.0, Pillow's public rank-filter API can trigger a native heap out-of-bounds write when given a very large

14 Jul 2026, 16:25 UTC View advisory →
CVE-2026-59193 Medium 6.9

Grav is a file-based Web platform. Prior to 2.0.0, an authenticated admin.super user can crash Grav or fill the disk by uploading a specially crafted ZIP a

10 Jul 2026, 16:35 UTC View advisory →
CVE-2026-59190 High 8.7

grav-plugin-admin is an HTML user interface that provides a way to configure Grav and create and modify pages. In 1.10.52 and earlier, an authenticated att

10 Jul 2026, 16:33 UTC View advisory →
CVE-2026-59180 Low 3.1

Apprise is an open source library which allows you to send a notification to almost all of the most popular notification services available. Prior to 1.11.

10 Jul 2026, 16:02 UTC View advisory →
CVE-2026-59173 Unscored

Uncontrolled Resource Consumption vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.0.0 through 9.1.13, from 10.0.0

18 Jul 2026, 12:52 UTC View advisory →
CVE-2026-59162 Medium 6.9

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. Prior to 2.11.0, Excelize parses shared-string cell values with str

10 Jul 2026, 15:51 UTC View advisory →
CVE-2026-59161 High 8.7

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. Prior to 2.11.0, the streaming worksheet reader used by Rows and Ge

10 Jul 2026, 15:47 UTC View advisory →
CVE-2026-59155 Medium 6.9

Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. Prior to 2.2.5, the GET /api/v1/ddns and GET /api/v1/notifi

10 Jul 2026, 21:31 UTC View advisory →
CVE-2026-59154 Medium 4.3

Wekan is open source kanban built with Meteor. Prior to 9.64, Wekan has a cross-board authorization bypass in the direct Meteor collection allow rules for

10 Jul 2026, 15:45 UTC View advisory →
CVE-2026-59153 Low 2.1

Anki is a program for creating and reviewing flashcards. Prior to 25.09.3, Anki launches a local HTTP server to serve media files and web pages for parts o

07 Jul 2026, 21:11 UTC View advisory →
CVE-2026-59151 Critical 9.6

Prowler is a cloud security platform. Prior to 5.30.3, Prowler's SAML authentication flow trusted the email domain asserted in a SAMLResponse when deciding

10 Jul 2026, 17:50 UTC View advisory →
CVE-2026-59118 Critical 9.3

Improper authorization in Microsoft Power Apps allows an unauthorized attacker to elevate privileges over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-59117 High 7.5

Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code over a network.

16 Jul 2026, 21:56 UTC View advisory →
CVE-2026-59115 Critical 9.9

'.../...//' in Microsoft Entra Provisioning Service (SyncFabric) allows an authorized attacker to elevate privileges over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-59102 Low 2.1

Forgejo before 15.0.3 contains a stored cross-site scripting vulnerability that allows authenticated attackers to execute arbitrary JavaScript in other use

02 Jul 2026, 19:44 UTC View advisory →
CVE-2026-59101 Medium 6.9

AutoBangumi before 3.2.8 contains a server-side request forgery (SSRF) vulnerability that allows unauthenticated remote attackers to probe internal network

02 Jul 2026, 19:43 UTC View advisory →
CVE-2026-59100 Low 2.3

LobeChat through 2.2.9 contains a broken object level authorization vulnerability that allows authenticated attackers to access and modify other users' cha

02 Jul 2026, 19:43 UTC View advisory →
CVE-2026-59099 Critical 9.3

Apereo CAS 7.3.0 before 8.0.0-RC6 contains a cryptographic vulnerability that allows remote unauthenticated attackers to recover plaintext conversation sta

02 Jul 2026, 19:42 UTC View advisory →
CVE-2026-59098 High 7.1

LobeChat through 2.2.9 contains a broken access control vulnerability in the retrieval-augmented-generation semantic search functionality that allows authe

02 Jul 2026, 19:42 UTC View advisory →
CVE-2026-59097 Medium 6.9

Taiga before 6.10.2 contains a missing authorization vulnerability that allows unauthenticated remote attackers to create default due-date records in any p

02 Jul 2026, 19:42 UTC View advisory →
CVE-2026-59096 High 8.2

Dapr Sentry's OIDC discovery endpoint derives the issuer and jwks_uri of the /.well-known/openid-configuration document from the request Host, honoring an

02 Jul 2026, 19:41 UTC View advisory →
CVE-2026-59095 High 8.3

LobeChat before 2.2.10-canary.18 contains a server-side request forgery vulnerability that allows authenticated attackers to direct internal HTTP requests

02 Jul 2026, 19:41 UTC View advisory →
CVE-2026-59094 High 8.7

Pathway through 0.31.1, fixed in commit d09722e, document store applies a caller-supplied glob pattern to indexed document paths using a hand-written recur

02 Jul 2026, 19:40 UTC View advisory →
CVE-2026-59093 High 8.7

Weaviate before 1.38.0 does not verify that a principal performing an RBAC role assignment holds the permissions granted by the assigned role. The assignRo

02 Jul 2026, 19:40 UTC View advisory →
CVE-2026-59092 High 7

JuiceFS through 1.3.1, fixed in commit a46979c, contains an authentication bypass vulnerability that allows unauthenticated remote attackers to access sens

02 Jul 2026, 19:39 UTC View advisory →
CVE-2026-59084 Critical 9.1

Insufficient Technical Documentation vulnerability in Apache Tomcat since the requirements to securely configure the EncryptInterceptor were not clearly do

14 Jul 2026, 08:24 UTC View advisory →
CVE-2026-59083 Critical 9.1

Improper Handling of URL Encoding (Hex Encoding) vulnerability in Apache Tomcat's rewrite valve allowed security constraint bypass for some configurations.

14 Jul 2026, 08:13 UTC View advisory →
CVE-2026-58662 High 8.7

Improper Validation of Specified Quantity in Input, Out-of-bounds Read vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: befor

27 Jul 2026, 11:17 UTC View advisory →
CVE-2026-58661 Medium 5.3

n8n before 2.28.0 (and before 1.123.58 on the 1.x branch) contains a disk space exhaustion vulnerability in the data-table file upload endpoint. The per-re

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-58660 High 7.2

Kanboard through 1.2.52, fixed in commit 564cc30, BoardAjaxController save() method (used by the kanban board drag-and-drop endpoint) validates the caller'

15 Jul 2026, 17:03 UTC View advisory →
CVE-2026-58659 High 8.4

PyTorch Lightning through 2.6.5, fixed in commit d710d68, contains a remote code execution vulnerability in the _load_state function that imports and execu

15 Jul 2026, 17:02 UTC View advisory →
CVE-2026-58658 High 8.8

GPUStack through 2.2.1, fixed in commit 4e20551, contains an unauthenticated information disclosure vulnerability that allows unauthenticated attackers to

15 Jul 2026, 17:00 UTC View advisory →
CVE-2026-58657 Medium 4.8

Grav before 2.0.0 (affected through 2.0.0-rc.9 and the 2.0 branch) contains a stored CSS injection vulnerability in the Markdown image resize() media actio

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-58656 High 8.7

Grav API plugin before v1.0.0-rc.16 accepts JWT tokens via the ?token= URL query parameter and responds with Access-Control-Allow-Origin: *, allowing unaut

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-58655 High 8.7

The bundled Grav Flex Objects plugin (getgrav/grav-plugin-flex-objects) before 1.4.0 contains a stored server-side template injection vulnerability. When r

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-58654 Medium 5.3

The Grav API plugin (getgrav/grav-plugin-api) 1.0.0 contains an unrestricted file upload vulnerability in the avatar upload endpoint (/api/v1/users/user/av

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-58653 Medium 5.3

PraisonAI before 0.1.7 fails to validate that project_id in issue create and update request bodies belongs to the URL workspace. An attacker can create iss

02 Jul 2026, 12:34 UTC View advisory →
CVE-2026-58652 High 7.7

luci-app-travelmate (and the travelmate package) contain a privilege-escalation flaw: a LuCI/rpcd session holding the luci-app-travelmate write ACL is gran

02 Jul 2026, 12:28 UTC View advisory →
CVE-2026-58647 High 8

Improper neutralization of input during web page generation ('cross-site scripting') in Power BI allows an authorized attacker to perform spoofing over a n

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58644 Critical 9.8

Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58643 Medium 6.1

Improper neutralization of input during web page generation ('cross-site scripting') in Windows Admin Center allows an unauthorized attacker to perform spo

16 Jul 2026, 21:57 UTC View advisory →
CVE-2026-58640 High 7.3

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58638 Medium 6

Missing cryptographic step in Windows Boot Loader allows an authorized attacker to bypass a security feature locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58637 High 7

Use after free in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58636 High 7.8

Improper link resolution before file access ('link following') in Window PC Manager allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58635 High 7.8

Improper neutralization of special elements used in a command ('command injection') in Windows Narrator Braille allows an authorized attacker to elevate pr

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58634 High 7.8

Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58633 High 7.8

Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58632 High 7.8

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58631 High 7.8

Improper authorization in Windows Admin Center allows an authorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58629 High 7

Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58628 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Networking allows an authorized attacker to

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58627 High 7.5

Uncontrolled resource consumption in Windows DHCP Server allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58626 High 8.8

Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58624 Medium 5.4

Improper input validation in sshd-git in Apache MINA SSHD. Apache MINA SSHD is a Java library for client-side and server-side SSH. Component org.apache.ssh

20 Jul 2026, 20:27 UTC View advisory →
CVE-2026-58619 High 7

Use after free in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58618 High 7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58617 High 8.1

Improper access control in Microsoft 365 Copilot for iOS allows an unauthorized attacker to elevate privileges over a network.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58614 Medium 5.5

Out-of-bounds read in Windows Kernel allows an authorized attacker to bypass a security feature locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58613 High 7.8

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58610 High 7.8

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58609 High 7.8

Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58608 High 8.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Print Spooler Components allows an authorized attack

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58602 High 7.8

Use after free in Windows Kernel Mode Driver allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58601 High 7.8

Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58598 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to eleva

16 Jul 2026, 21:57 UTC View advisory →
CVE-2026-58595 High 8.1

Improper restriction of rendered ui layers or frames in Microsoft Bing App for IOS allows an unauthorized attacker to perform spoofing over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58594 High 8.8

Integer overflow or wraparound in Windows RDP allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58591 Unscored

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Colorbox allows Cross-Site Scripting (XSS). Th

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-58590 Unscored

Missing Authorization vulnerability in Drupal FlowDrop allows Forceful Browsing. This issue affects FlowDrop versions: from 0.0.0 to 1.6.0.

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-58589 Unscored

Missing Authorization vulnerability in Drupal FlowDrop allows Forceful Browsing. This issue affects FlowDrop versions: from 0.0.0 to 1.6.0.

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-58588 Unscored

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Drupal Canvas allows Cross-Site Scripting (XSS

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-58587 Unscored

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Drupal Canvas allows Cross-Site Scripting (XSS

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-58583 High 8.4

FluxInk (formerly Sunia SPB Peripheral) Color Management Driver (TcnPeripheral64.sys) 1.0.7.2 allows local privilege escalation for a standard user account

07 Jul 2026, 20:33 UTC View advisory →
CVE-2026-58580 Medium 6

LobeChat through 2.2.9 server-database deployments are vulnerable to broken object-level authorization in MessageModel. The updateMessagePlugin, updatePlug

02 Jul 2026, 19:39 UTC View advisory →
CVE-2026-58579 Medium 5.1

RAGFlow before 0.26.3 stores an agent pipeline (DSL) node name without sanitization: the agent update endpoint normalizes the submitted DSL via normalize_d

02 Jul 2026, 19:38 UTC View advisory →
CVE-2026-58578 High 7.1

LobeChat before version 2.2.10-canary.15 contains a regular expression denial of service (ReDoS) vulnerability that allows authenticated attackers to block

02 Jul 2026, 19:38 UTC View advisory →
CVE-2026-58559 Medium 6.5

DoS vulnerability in the vibration service. Impact: Successful exploitation of this vulnerability may affect availability.

15 Jul 2026, 12:42 UTC View advisory →
CVE-2026-58558 High 7.8

Permission control vulnerability in the file system. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

15 Jul 2026, 12:40 UTC View advisory →
CVE-2026-58557 Medium 4.8

Design defect vulnerability in Expedition mode. Impact: Successful exploitation of this vulnerability may affect availability.

15 Jul 2026, 12:31 UTC View advisory →
CVE-2026-58556 Medium 5.1

Permission control vulnerability in the Bluetooth module. Impact: Successful exploitation of this vulnerability may affect availability.

15 Jul 2026, 12:38 UTC View advisory →
CVE-2026-58555 Medium 6.6

Permission bypass vulnerability in the card module. Impact: Successful exploitation of this vulnerability may affect availability.

15 Jul 2026, 12:18 UTC View advisory →
CVE-2026-58554 Medium 6.6

Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

15 Jul 2026, 12:23 UTC View advisory →
CVE-2026-58553 Medium 4

Out-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

15 Jul 2026, 12:16 UTC View advisory →
CVE-2026-58552 Medium 5.1

Out-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

15 Jul 2026, 12:13 UTC View advisory →
CVE-2026-58551 Medium 5.1

Out-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

15 Jul 2026, 12:11 UTC View advisory →
CVE-2026-58550 Medium 4

Out-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

15 Jul 2026, 12:06 UTC View advisory →
CVE-2026-58549 Medium 4

Out-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.

15 Jul 2026, 12:04 UTC View advisory →
CVE-2026-58547 Medium 5.5

Heap-based buffer overflow in Universal Plug and Play (upnp.dll) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58546 Medium 6.5

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58545 Medium 5.5

Improper access control in Windows Kernel allows an authorized attacker to bypass a security feature locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58544 High 7

Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58543 Medium 6.3

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to el

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58542 High 7.8

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58541 High 7.8

Access of resource using incompatible type ('type confusion') in Windows DWM allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58540 High 7.8

Improper authorization in Windows Installer allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58539 Medium 6.5

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58538 High 7.8

Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-58537 High 7.8

Use after free in Microsoft NAT Helper Components (ipnathlp.dll) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58536 High 7.8

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58535 Medium 6.5

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-58534 High 8.8

Heap-based buffer overflow in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58533 Medium 6.5

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-58532 High 7.8

Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58531 High 7.5

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB allows an authorized attacker to elevate privile

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58530 High 7.8

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-58529 High 7.1

Out-of-bounds read in Active Directory Federation Services (AD FS) allows an authorized attacker to disclose information over a network.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-58528 Medium 6.8

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-58527 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate pri

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-58526 High 7

Use after free in Windows Storage allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58525 High 8.2

Improper access control in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security feature over a network.

08 Jul 2026, 20:43 UTC View advisory →
CVE-2026-58519 Medium 6.9

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in The Wikimedia Foundation Mediawiki - Cargo Extension

01 Jul 2026, 03:59 UTC View advisory →
CVE-2026-58518 Medium 6.9

Cross-Site request forgery (CSRF) vulnerability in The Wikimedia Foundation Mediawiki - RedirectManager Extension allows Cross Site Request Forgery. This i

01 Jul 2026, 03:52 UTC View advisory →
CVE-2026-58503 Medium 6.9

Frappe is a full-stack web application framework. Prior to 16.16.0 and 15.106.0, user enumeration could be performed via the reset_password endpoint. This

10 Jul 2026, 21:12 UTC View advisory →
CVE-2026-58501 Medium 5.9

Zeep is a Python SOAP client. From 4.0.0 before 4.3.3, Settings.forbid_external is defined but not enforced when parsing WSDL or XSD documents, allowing tr

08 Jul 2026, 19:31 UTC View advisory →
CVE-2026-58500 High 8.2

MCP Appium is an MCP server that provides AI assistants with tools to automate mobile app testing on Android and iOS. In versions prior to 1.85.10, the cre

13 Jul 2026, 21:17 UTC View advisory →
CVE-2026-58499 High 8.2

EverOS is a memory runtime for agents. Prior to 1.0.1, EverOS is vulnerable to path traversal in the POST /api/v1/memory/add ingestion endpoint because the

10 Jul 2026, 20:53 UTC View advisory →
CVE-2026-58494 Medium 6.5

Wasmtime is a runtime for WebAssembly. Prior to 24.0.11, 36.0.12, 45.0.3, and 46.0.1, wasmtime-wasi hard-link creation and renaming check directory permiss

08 Jul 2026, 20:22 UTC View advisory →
CVE-2026-58493 Medium 5.1

grav-plugin-database is the database plugin for Grav CMS. Prior to 1.2.0, Database::__call builds PDO DSN strings by directly concatenating user-configurab

10 Jul 2026, 16:24 UTC View advisory →
CVE-2026-58492 Critical 9.2

grav-plugin-database is the database plugin for Grav CMS. Prior to 1.2.0, the PDO::tableExists method interpolates its table argument directly into a raw S

10 Jul 2026, 16:22 UTC View advisory →
CVE-2026-58489 Medium 6.8

HedgeDoc is an open source, real-time collaborative markdown notes application. Prior to 1.11.0, the GitHub Gist export flow created an OAuth2 state value

13 Jul 2026, 22:34 UTC View advisory →
CVE-2026-58488 Medium 6.9

HedgeDoc is an open source, real-time, collaborative, markdown notes application. Versions prior to 1.11.0 allowed attackers to circumvent the rate-limitin

13 Jul 2026, 21:43 UTC View advisory →
CVE-2026-58487 Medium 5.1

HedgeDoc is an open source, real-time, collaborative, markdown notes application. Prior to version 1.11.0, due to unsafe handling of the local-part of regi

13 Jul 2026, 21:59 UTC View advisory →
CVE-2026-58486 High 8.3

HedgeDoc is an open source, real-time, collaborative, markdown notes application. Prior to version 1.11.0, HedgeDoc was vulnerable to a YAML alias bomb due

13 Jul 2026, 22:12 UTC View advisory →
CVE-2026-58484 High 7.1

Network-AI is a TypeScript/Node.js multi-agent orchestrator. Prior to version 5.12.2, `EnvironmentManager.listBackups()` reads each backup's `_manifest.jso

20 Jul 2026, 17:00 UTC View advisory →
CVE-2026-58482 Medium 5.9

Network-AI, a TypeScript/Node.js multi-agent orchestrator, has a shipped, exported, documented feature called `ApprovalInbox` (`lib/approval-inbox.ts`). It

20 Jul 2026, 16:38 UTC View advisory →
CVE-2026-58481 Medium 6.5

Network-AI is a TypeScript/Node.js multi-agent orchestrator. Prior to version 5.12.2, `AgentRuntime` promises scoped file access under a configured sandbox

20 Jul 2026, 16:30 UTC View advisory →
CVE-2026-58480 Critical 9.2

Blocksy Companion Pro plugin for WordPress before 2.1.47 contains an unauthenticated arbitrary file upload vulnerability that allows attackers to upload ex

08 Jul 2026, 13:05 UTC View advisory →
CVE-2026-58479 Critical 9.2

Sustainable Irrigation Platform (SIP) through version 5.2.16 contains a command injection vulnerability in the optional cli_control plugin that allows unau

14 Jul 2026, 14:44 UTC View advisory →
CVE-2026-58478 Medium 6.3

Sustainable Irrigation Platform (SIP) through version 5.2.16 contains a server-side request forgery (SSRF) vulnerability that allows unauthenticated attack

14 Jul 2026, 14:41 UTC View advisory →
CVE-2026-58477 High 8.8

Sustainable Irrigation Platform (SIP) through version 5.2.16 contains a mass assignment vulnerability that allows unauthenticated attackers to overwrite se

14 Jul 2026, 14:39 UTC View advisory →
CVE-2026-58476 High 7

Sustainable Irrigation Platform (SIP) through version 5.2.16 contains a cross-site request forgery vulnerability that allows remote attackers to perform st

14 Jul 2026, 14:25 UTC View advisory →
CVE-2026-58475 Medium 5.3

Sustainable Irrigation Platform (SIP) through version 5.2.16 contains a stored cross-site scripting vulnerability that allows unauthenticated attackers to

14 Jul 2026, 14:19 UTC View advisory →
CVE-2026-58473 Critical 9.3

Cognee before 1.2.0 contains an improper access control vulnerability that allows unauthenticated attackers to overwrite the global LLM provider configurat

07 Jul 2026, 20:34 UTC View advisory →
CVE-2026-58472 Medium 6

GNU Wget through 1.25.0, fixed in commit dd692d9, contains a heap buffer overflow vulnerability in the html_quote_string() function in src/convert.c that a

07 Jul 2026, 19:50 UTC View advisory →
CVE-2026-58471 Medium 6

GNU Wget through 1.25.0, fixed in commit c2640fe, contains a heap buffer overflow vulnerability in the convert_fname() function within src/url.c that allow

07 Jul 2026, 19:47 UTC View advisory →
CVE-2026-58470 Medium 6.9

GNU Wget through 1.25.0, fixed in commit 43d3ba9, contains an integer overflow vulnerability in the parse_content_range() function within src/http.c that a

07 Jul 2026, 19:45 UTC View advisory →
CVE-2026-58469 High 8.7

GNU Wget through 1.25.0, fixed in commit 37a40fc, contains a heap buffer underread vulnerability in the clean_metalink_string() function within src/metalin

07 Jul 2026, 19:43 UTC View advisory →
CVE-2026-58468 Medium 5.1

NocoBase through 2.1.20 contains a server-side request forgery vulnerability in the serverRequest wrapper that allows authenticated administrators to issue

07 Jul 2026, 19:27 UTC View advisory →
CVE-2026-58467 High 8.2

Cockpit CMS before release 364 contains a path traversal and local file inclusion vulnerability that allows unauthenticated attackers to read arbitrary fil

02 Jul 2026, 20:04 UTC View advisory →
CVE-2026-58466 Critical 9.3

AutoBangumi before 3.2.8 contains a hard-coded default credentials vulnerability that allows unauthenticated attackers to authenticate as the administrator

02 Jul 2026, 19:56 UTC View advisory →
CVE-2026-58465 High 8.7

Eclipse Wakaama before snapshot/2026-05-26 contains an unbounded memory allocation vulnerability in the CoAP Block1 handler within coap/block.c that allows

02 Jul 2026, 17:55 UTC View advisory →
CVE-2026-58461 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

15 Jul 2026 View advisory →
CVE-2026-58460 High 7

react-native-receive-sharing-intent contains a path traversal vulnerability that allows a co-resident malicious application to write files outside the inte

02 Jul 2026, 20:10 UTC View advisory →
CVE-2026-58455 Critical 9.2

Dockwatch through 0.6.567 contains an unauthenticated OS command injection vulnerability that allows remote attackers to execute arbitrary shell commands b

02 Jul 2026, 15:12 UTC View advisory →
CVE-2026-58450 Medium 5.3

Invoice Ninja through 5.13.26 contains an open redirect vulnerability in the client portal login that allows unauthenticated attackers to redirect authenti

30 Jun 2026, 21:07 UTC View advisory →
CVE-2026-58449 Critical 9.3

txtai through 9.10.0, fixed in commit 11b32da, exposes an API /reindex endpoint whose function body parameter is resolved through txtai.util.Resolver, whic

30 Jun 2026, 21:06 UTC View advisory →
CVE-2026-58448 High 7.1

yudao-cloud before 2026.06 contains a broken access control vulnerability in the BPM module that allows any authenticated user to access arbitrary process

30 Jun 2026, 21:06 UTC View advisory →
CVE-2026-58447 High 7.1

Invidious through 2.20260626.0, fixed in commit 77ad416, contains a broken object level authorization vulnerability that allows authenticated attackers to

30 Jun 2026, 21:05 UTC View advisory →
CVE-2026-58446 Medium 6.9

Presenton before 0.8.8-beta bundles an MCP server that, on server/Docker deployments configured with session authentication (AUTH_USERNAME/AUTH_PASSWORD),

30 Jun 2026, 21:05 UTC View advisory →
CVE-2026-58414 Medium 5.5

Network-AI is a TypeScript/Node.js multi-agent orchestrator. Prior to version 5.12.2, `EnvironmentManager.backup()` recursively collects files using `_coll

20 Jul 2026, 16:28 UTC View advisory →
CVE-2026-58413 Medium 6.1

Network-AI is a TypeScript/Node.js multi-agent orchestrator. Prior to version 5.12.2, `EnvironmentManager.restore(env, backupId)` computes the backup path

20 Jul 2026, 16:26 UTC View advisory →
CVE-2026-58411 High 7

ChurchCRM is an open-source church management system. Prior to version 7.4.0, Cross-Site Scripting (XSS) vulnerabilities were identified due to insufficien

13 Jul 2026, 21:05 UTC View advisory →
CVE-2026-58410 High 7.1

ChurchCRM is an open-source church management system. Prior to version 7.4.0, there was an authorization flaw in the family-scoped endpoints which allowed

13 Jul 2026, 20:26 UTC View advisory →
CVE-2026-58409 Critical 9.1

ChurchCRM is an open-source church management system. Prior to version 7.4.0, an authenticated administrator can achieve Remote Code Execution (RCE) on the

13 Jul 2026, 20:05 UTC View advisory →
CVE-2026-58408 Medium 6.5

ChurchCRM is an open-source church management system. Prior to version 7.4.0, a low-privileged user can bypass the /admin/export UI and exfiltrate the enti

13 Jul 2026, 19:43 UTC View advisory →
CVE-2026-58407 Unscored

Please submit CVE requests for each vulnerability.

14 Jul 2026 View advisory →
CVE-2026-58389 High 8.7

Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Rust bindings. This issue affects Apache Thrift: before 0.24.0. Users a

27 Jul 2026, 11:14 UTC View advisory →
CVE-2026-58384 High 7.3

A flaw was found in GIMP's PSD parser. An integer overflow in read_RLE_channel() can cause an undersized heap allocation for the RLE row-length table, afte

07 Jul 2026, 07:44 UTC View advisory →
CVE-2026-58381 Medium 6.1

A flaw was found in GIMP's PSP file format parser. A double-free condition occurs in the read_layer_block() function when processing a specially crafted PS

02 Jul 2026, 19:45 UTC View advisory →
CVE-2026-58377 High 8.6

JeecgBoot through 3.9.2 contains a broken access control vulnerability that allows authenticated low-privilege users to perform full create, read, update,

30 Jun 2026, 15:59 UTC View advisory →
CVE-2026-58376 High 7.2

Dolibarr through 23.0.3, fixed in commit 14db36e, contains a sql injection vulnerability that allows authenticated API users to exfiltrate arbitrary databa

30 Jun 2026, 15:59 UTC View advisory →
CVE-2026-58375 High 8.7

JimuReport through 2.5.0 exposes the POST /jmreport/auto/export endpoint without authentication: the handler is annotated @JimuNoLoginRequired, so JimuRepo

30 Jun 2026, 15:58 UTC View advisory →
CVE-2026-58374 Medium 6.5

In hostapd before 2.12, a missing bounds check in AP-mode Wi-Fi 7 (IEEE 802.11be) Multi-Link Operation (MLO) association request processing allows an unaut

30 Jun 2026, 12:35 UTC View advisory →
CVE-2026-58373 Medium 5.3

CVAT before 2.69.0 contains an improper authorization vulnerability in QualityReportViewSet.get_queryset that allows authenticated attackers to enumerate q

30 Jun 2026, 15:58 UTC View advisory →
CVE-2026-58372 High 7.2

SeaweedFS before 4.34 contains a path traversal vulnerability in the S3 gateway DeleteMultipleObjectsHandler that allows authenticated S3 principals with w

30 Jun 2026, 15:57 UTC View advisory →
CVE-2026-58371 Low 2.3

SeaweedFS before 4.30 reflects the callback query parameter verbatim into responses served with Content-Type application/javascript in the shared writeJson

30 Jun 2026, 15:57 UTC View advisory →
CVE-2026-58370 Critical 9.2

Woodpecker before 3.15.0 matches the ApprovalAllowedUsers bypass list against pipeline.Author. For the GitLab forge driver, pipeline.Author is populated fr

30 Jun 2026, 15:57 UTC View advisory →
CVE-2026-58369 Medium 6.9

Woodpecker before 3.15.0 registers the /api/orgs/lookup/*org_full_name endpoint without authentication middleware, and the LookupOrg handler unconditionall

30 Jun 2026, 15:56 UTC View advisory →
CVE-2026-58319 Critical 9.1

Certain Apache Doris FE HTTP REST administrative APIs were accessible without proper authentication. An unauthenticated attacker with network access to the

14 Jul 2026, 09:36 UTC View advisory →
CVE-2026-58317 Medium 5.1

Unsigned to Signed Conversion Error (CWE-196) vulnerability exists in TTSSH2 plugin of Tera Term provided by TeraTerm Project. When Tera Term attempts to e

17 Jul 2026, 04:14 UTC View advisory →
CVE-2026-58302 High 8.4

rtapi_app in linuxcnc-uspace in LinuxCNC before 2.9.9 allows privilege escalation. It is installed SUID root and loads shared library modules via dlopen()

30 Jun 2026, 01:09 UTC View advisory →
CVE-2026-58281 High 8.3

Deserialization of untrusted data in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.

11 Jul 2026, 20:55 UTC View advisory →
CVE-2026-58279 Medium 6.5

Missing authorization in Azure CycleCloud allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-58277 High 8.8

Improper authorization in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-58266 Medium 6.5

Anki is a program for creating and reviewing flashcards. Prior to 25.09.4, Anki's webview-based pages communicate with the Rust backend using an internal l

07 Jul 2026, 21:13 UTC View advisory →
CVE-2026-58254 Medium 5.3

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.3 and 2.12.8, message trace destination che

08 Jul 2026, 19:56 UTC View advisory →
CVE-2026-58253 High 8.8

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.0, 2.12.7, and 2.11.16, when no_auth_user w

08 Jul 2026, 19:43 UTC View advisory →
CVE-2026-58252 Medium 6.5

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.0, 2.12.7, and 2.11.16, an authenticated us

08 Jul 2026, 19:46 UTC View advisory →
CVE-2026-58251 Medium 6.5

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.0, 2.12.7, and 2.11.16, an authenticated us

08 Jul 2026, 19:40 UTC View advisory →
CVE-2026-58250 High 7.5

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.12.8 and 2.11.17, an unauthenticated peer with

08 Jul 2026, 19:48 UTC View advisory →
CVE-2026-58233 High 7.6

SAP Change and Transport System Attach Tool (ctsattach) allows an authenticated attacker to supply a specially crafted archive file which, when processed b

14 Jul 2026, 00:21 UTC View advisory →
CVE-2026-58229 High 8.2

Allocation of resources without limits vulnerability in elixir-mint mint allows a remote HTTP server to exhaust memory on the client host and cause a denia

14 Jul 2026, 08:36 UTC View advisory →
CVE-2026-58228 Medium 5.1

Cross-site scripting vulnerability in phoenixframework phoenix_live_view allows an attacker to bypass URL scheme validation and execute JavaScript in a vic

13 Jul 2026, 18:04 UTC View advisory →
CVE-2026-58227 High 8.7

The Erlang/OTP ssl application does not detect cycles when reconstructing an incomplete peer certificate chain during a TLS or DTLS handshake. In ssl_certi

27 Jul 2026, 14:39 UTC View advisory →
CVE-2026-58225 Low 2.1

SQL Injection vulnerability in elixir-ecto postgrex allows an attacker who can influence a LISTEN channel name to inject SQL into the reconnect replay quer

10 Jul 2026, 10:51 UTC View advisory →
CVE-2026-58222 High 8.8

A security flaw combining LDAP filter injection and improper authorization checks was found in Samba Active Directory Domain Controller (AD DC). When proce

30 Jul 2026, 15:11 UTC View advisory →
CVE-2026-58218 Medium 5.3

A flaw was found in Samba's internal DNS server where unauthenticated TKEY registration requests were added to the TKEY name cache before being rejected. A

30 Jul 2026, 14:01 UTC View advisory →
CVE-2026-58216 Medium 5.3

An out-of-bounds read flaw was found in Samba's Kerberos Key Distribution Center's (KDC) password change (kpasswd) service. When processing malformed ASN.1

30 Jul 2026, 15:40 UTC View advisory →
CVE-2026-58214 Medium 4.3

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.3 and 2.12.12, an authenticated MQTT client

08 Jul 2026, 20:06 UTC View advisory →
CVE-2026-58213 High 7.1

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.1 and 2.12.9, an MQTT client could include

08 Jul 2026, 19:52 UTC View advisory →
CVE-2026-58212 Unscored

Further research determined the issue is not a vulnerability based on CNA Rule 4.1.12 The act of updating Product dependencies MUST NOT be determined to be

09 Jul 2026 View advisory →
CVE-2026-58211 Medium 5.4

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.3 and 2.12.12, a client could be registered

08 Jul 2026, 20:16 UTC View advisory →
CVE-2026-58210 High 7.5

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.3 and 2.12.12, an unauthenticated MQTT clie

08 Jul 2026, 20:13 UTC View advisory →
CVE-2026-58209 Medium 4.3

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.3 and 2.12.12, MQTT retained message delive

08 Jul 2026, 20:12 UTC View advisory →
CVE-2026-58208 Medium 6.8

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.3 and 2.12.12, a WebSocket listener could r

08 Jul 2026, 20:17 UTC View advisory →
CVE-2026-58207 High 7.7

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.3 and 2.12.12, a client able to send accoun

08 Jul 2026, 20:15 UTC View advisory →
CVE-2026-58195 High 8.8

Agentic-Flow is an AI agent orchestration platform. Prior to 2.0.14, agentic-flow MCP server tools in src/mcp/standalone-stdio.ts, src/mcp/fastmcp/servers/

17 Jul 2026, 18:47 UTC View advisory →
CVE-2026-58192 High 8.6

Appium is a cross-platform automation framework for all kinds of apps, built on top of the W3C WebDriver protocol. Prior to 1.1.6, the Appium storage plugi

08 Jul 2026, 20:56 UTC View advisory →
CVE-2026-58191 Medium 6.5

Appium is a cross-platform automation framework for all kinds of apps, built on top of the W3C WebDriver protocol. Prior to 10.7.0, Appium's base-driver un

08 Jul 2026, 20:57 UTC View advisory →
CVE-2026-58176 High 7.1

RuoYi-Vue-Plus through 5.6.2, fixed in commit 88d03d9, exposes workflow task management endpoints under /workflow/task (FlwTaskController) without any perm

30 Jun 2026, 15:56 UTC View advisory →
CVE-2026-58174 Medium 6

Hermes WebUI before 0.51.521 validates the workspace of an imported session under the active named profile but constructs the Session object without settin

30 Jun 2026, 15:55 UTC View advisory →
CVE-2026-58173 Medium 6

Vibe-Trading before 0.1.10 contains a path traversal vulnerability that allows attackers to write files outside the intended memory root directory by suppl

30 Jun 2026, 15:55 UTC View advisory →
CVE-2026-58172 Critical 9.3

Ocelot through 24.1.0, fixed in commit f156fd4, contains a security control bypass vulnerability that allows denied clients to circumvent IP-based access r

30 Jun 2026, 15:54 UTC View advisory →
CVE-2026-58171 Low 2.3

Vibe-Trading before 0.1.10 constructs the swarm run directory by joining a caller-supplied run identifier onto the runs base directory without validation i

30 Jun 2026, 15:54 UTC View advisory →
CVE-2026-58170 High 7.2

Vibe-Trading before 0.1.10 builds the proposal file path by joining a caller-supplied proposal identifier onto the broker proposals directory without sanit

30 Jun 2026, 15:53 UTC View advisory →
CVE-2026-58169 High 7.7

Vibe-Trading before 0.1.10 contains a DNS rebinding authentication bypass vulnerability that allows remote attackers to bypass bearer-token authentication

30 Jun 2026, 15:52 UTC View advisory →
CVE-2026-58168 High 7.7

DeepTutor before version 1.4.10 contains an authorization bypass vulnerability that allows low-privilege users to invoke unrestricted MCP tools due to the

30 Jun 2026, 15:52 UTC View advisory →
CVE-2026-58167 High 7.1

Nightingale (n9e) before 9.0.0-beta.2 exposes full datasource configurations, including plaintext database passwords, HTTP bearer tokens, HTTP basic-auth p

30 Jun 2026, 15:51 UTC View advisory →
CVE-2026-58166 High 8.8

OpenBMB ChatDev through 2.2.0, fixed in commit 4fd4da6, contains a path traversal vulnerability that allows unauthenticated remote attackers to write or de

30 Jun 2026, 15:51 UTC View advisory →
CVE-2026-58165 High 8.7

OpenZiti through 2.0.0, fixed in commit 3027fdf, contains a privilege escalation vulnerability that allows authenticated non-admin identities with fine-gra

30 Jun 2026, 15:49 UTC View advisory →
CVE-2026-58149 Unscored

The Joomla extension Events Booking is vulnerable to an unauthenticated user enumeration that allows to retrieve account usernames and email addresses.

17 Jul 2026, 15:45 UTC View advisory →
CVE-2026-58148 High 8.7

The Joomla extension ChronoForms is vulnerable to an unauthenticated stored XSS vulnerability.

17 Jul 2026, 15:48 UTC View advisory →
CVE-2026-58139 Medium 6

The DuckDB AWS extension for DuckDB contains a security policy bypass vulnerability that allows any database user with SQL execution permissions to extract

03 Aug 2026, 19:45 UTC View advisory →
CVE-2026-58138 Critical 9.3

Orkes Conductor 3.21.21 before 3.30.2 contains an unauthenticated remote code execution vulnerability that allows remote attackers to execute arbitrary OS

30 Jun 2026, 18:44 UTC View advisory →
CVE-2026-58116 Critical 9.3

LLaMA-Factory through 0.9.5 contains a remote code execution vulnerability that allows attackers with WebUI access to execute arbitrary Python code by supp

30 Jun 2026, 12:54 UTC View advisory →
CVE-2026-58102 Unscored

Crypt::OpenSSL::X509 versions before 2.1.3 for Perl allow a heap out-of-bounds read via a long certificate extension OID in hv_exts. When building the exte

13 Jul 2026, 22:22 UTC View advisory →
CVE-2026-58101 Unscored

Crypt::OpenSSL::X509 versions before 2.1.3 for Perl allow denial of service via NULL pointer dereference. X509V3_EXT_d2i(ext) returns NULL when an extensio

13 Jul 2026, 22:17 UTC View advisory →
CVE-2026-58080 High 8.8

In Eclipse Milo versions 1.0.0 through 1.1.4, `OpcUaServerConfig.copy()` fails to preserve a configured `RoleMapper`. On servers that rely on role permissi

04 Aug 2026, 12:05 UTC View advisory →
CVE-2026-58078 High 8.7

The Joomla extension Quix Page Builder Pro is vulnerable to an unauthenticated SQL injection.

16 Jul 2026, 08:14 UTC View advisory →
CVE-2026-58077 High 8.7

The Joomla extension 4Analytics is vulnerable to an unauthenticated stored XSS. A specially crafted unauthenticated request may result in website takeover

15 Jul 2026, 09:01 UTC View advisory →
CVE-2026-58075 High 8.7

A vulnerability allowing an unauthenticated attacker to read arbitrary files from the host, which can be further leveraged toescalate privileges locally.

04 Aug 2026, 15:56 UTC View advisory →
CVE-2026-58074 High 8.6

A vulnerability allowing a high-privileged user to execute arbitrary code on the server.

04 Aug 2026, 15:56 UTC View advisory →
CVE-2026-58073 Critical 9.5

A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to impersonate a managed agent andobtain that agent's credentials.

04 Aug 2026, 15:56 UTC View advisory →
CVE-2026-58072 Critical 9

A vulnerability in Veeam Service Provider Console allowing arbitrary file write on the management server, which can lead to remotecode execution.

04 Aug 2026, 15:56 UTC View advisory →
CVE-2026-58071 High 8.2

A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to access the proxied appliance API asPortal Administrator during a

04 Aug 2026, 15:56 UTC View advisory →
CVE-2026-58067 High 8.7

A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to exhaust host memory and cause adenial of service.

04 Aug 2026, 15:56 UTC View advisory →
CVE-2026-58065 Unscored

The Apache Airflow Git provider runs its git-over-SSH operations with `StrictHostKeyChecking=no` by default, disabling SSH host-key verification. An attack

13 Jul 2026, 15:00 UTC View advisory →
CVE-2026-58063 Medium 5.3

In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue also affects Bouncy Castle for Java L

03 Aug 2026, 02:29 UTC View advisory →
CVE-2026-58062 Critical 9.3

In Bouncy Castle for Java before 1.85, Stapled OCSP response accepted without binding to the checked certificate. This issue also affects Bouncy Castle for

03 Aug 2026, 02:35 UTC View advisory →
CVE-2026-58061 High 8.7

In Bouncy Castle for Java before 1.85, CCM-family modes write plaintext to caller buffer before tag check. This issue also affects Bouncy Castle for Java L

03 Aug 2026, 02:36 UTC View advisory →
CVE-2026-58060 High 8.7

In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This issue also affects Bouncy Castle for

03 Aug 2026, 02:37 UTC View advisory →
CVE-2026-58059 High 8.7

In Bouncy Castle for Java before 1.85, Quadratic-time escaping when stringifying X.500 distinguished names. This issue also affects Bouncy Castle for Java

03 Aug 2026, 02:41 UTC View advisory →
CVE-2026-58058 Medium 6.9

Nmap through 7.99 does not keep the IPv6 extension-header walk within the captured packet in ipv6_get_data_primitive (libnetutil/netutil.cc), so the pointe

28 Jun 2026, 01:32 UTC View advisory →
CVE-2026-58057 Low 2.3

Flowise before 3.1.3 validates Custom MCP stdio environment variables against a denylist using a case-sensitive comparison, so on Windows, where environmen

28 Jun 2026, 01:32 UTC View advisory →
CVE-2026-58056 High 7.2

RustDesk gates incoming control messages on per-capability flags rather than on the session's authorized connection type, and a file-transfer session does

28 Jun 2026, 01:32 UTC View advisory →
CVE-2026-58055 Medium 6.3

nghttp2's nghttpx proxy through 1.69.0 forwards an HTTP/1.1 Upgrade request that also carries a Content-Length header and body onto reusable keep-alive bac

28 Jun 2026, 01:32 UTC View advisory →
CVE-2026-58054 High 8.6

MyBB 1.8.40 does not restrict which usergroup a limited Admin Control Panel user may assign when creating or editing users; the user module offers the Admi

28 Jun 2026, 01:32 UTC View advisory →
CVE-2026-58053 Critical 9.4

Gitea act_runner with the Docker backend (through act 0.262.0) passes a workflow's container.options string to the Docker job container's HostConfig and, w

28 Jun 2026, 01:32 UTC View advisory →
CVE-2026-58052 Medium 4.8

7-Zip for Windows through 26.02 fails to preserve the Mark-of-the-Web when extracting a crafted RAR5 archive, because its guard that suppresses an archive-

28 Jun 2026, 01:32 UTC View advisory →
CVE-2026-58051 High 8.3

libssh2 through 1.11.1 grows its publickey list with SSH2_REALLOC but does not zero-initialize new entries before parsing populates them, so a parse failur

28 Jun 2026, 01:32 UTC View advisory →
CVE-2026-58050 High 8.3

libssh2 through 1.11.1 reads an attacker-controlled 32-bit attribute count from a publickey-subsystem response and uses it in the allocation num_attrs * si

28 Jun 2026, 01:32 UTC View advisory →
CVE-2026-58049 High 8.8

FFmpeg's RASC video decoder (decode_dlta in libavcodec/rasc.c) performs 32-bit reads and writes at the row cursor before the NEXT_LINE row-boundary check a

28 Jun 2026, 01:32 UTC View advisory →
CVE-2026-58048 Critical 9.4

Improper preservation of SQL mode when renaming databases in cPanel allows execution of SQL in root context.

31 Jul 2026, 16:35 UTC View advisory →
CVE-2026-58047 Medium 5.6

HTTP Smuggling in cPanel allows potential leak of credentials.

31 Jul 2026, 16:35 UTC View advisory →
CVE-2026-58045 Medium 6.2

A flaw in Node.js allows a spoofed `TypedArray` `byteLength` to trigger a reachable assertion in the synchronous `node:zlib` APIs, causing the entire proce

04 Aug 2026, 00:49 UTC View advisory →
CVE-2026-58044 Low 3.7

A flaw in Node.js HTTP client can cause a request desynchronization for Node.js-based forwarding proxies that rebuild outbound headers from the visible `In

04 Aug 2026, 00:49 UTC View advisory →
CVE-2026-58042 Medium 5.9

A flaw in Node.js can cause dns.resolveAny() Aborts the Node.js Process When a DNS Response Contains More Than 256 A Records. Repeated triggering of this c

04 Aug 2026, 00:49 UTC View advisory →
CVE-2026-58041 Medium 5.3

A flaw in Node.js node:sqlite allows a stale StatementSyncIterator created through DatabaseSync#createTagStore() to continue executing a cached prepared st

04 Aug 2026, 00:49 UTC View advisory →
CVE-2026-58039 Low 3.3

A flaw in Node.js Permission Model enforcement allows process.report writes (and overwrites) files outside --allow-fs-write paths. This can lead to confide

31 Jul 2026, 00:18 UTC View advisory →
CVE-2026-58023 Medium 6.9

Out-of-bounds Read vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to ver

27 Jul 2026, 11:12 UTC View advisory →
CVE-2026-58016 High 7.5

A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new_for_xml() in the gio/gdbusintrospection.c file when processing malformed D

30 Jun 2026, 13:02 UTC View advisory →
CVE-2026-58015 Medium 5.9

A flaw was found in GLib. The D-Bus client-side implementation of the DBUS_COOKIE_SHA1 SASL authentication mechanism does not validate the cookie_context p

30 Jun 2026, 13:02 UTC View advisory →
CVE-2026-58014 High 7.3

A flaw was found in GLib. An off-by-one error can occur in the g_key_file_get_locale_string_list function in the gkeyfile.c file when loading a key file wi

30 Jun 2026, 12:57 UTC View advisory →
CVE-2026-58013 Medium 6.5

A flaw was found in GLib. A buffer over-read can occur in g_io_channel_read_line_backend() in the giochannel.c file when a custom line terminator with a le

30 Jun 2026, 12:57 UTC View advisory →
CVE-2026-58012 Medium 6.5

A flaw was found in GLib. A buffer over-read can occur in the g_regex_replace function when used with the `G_REGEX_RAW` compile flag and case-change replac

30 Jun 2026, 12:57 UTC View advisory →
CVE-2026-58011 Medium 6.5

A flaw was found in GLib. An out-of-bounds read of only 2 bytes can occur in the g_date_time_get_ymd function in the glib/gdatetime.c file when an invalid

30 Jun 2026, 12:57 UTC View advisory →
CVE-2026-58010 Medium 6.5

A flaw was found in GLib. An off-by-one error can occur in the gvs_tuple_is_normal function in the glib/gvariant-serialiser.c file when doing an alignment

30 Jun 2026, 12:57 UTC View advisory →
CVE-2026-58000 High 8.7

luci-proto-openvpn through 0.11.1, fixed in commit e4ff45e, contains a command injection vulnerability in the generateKey ubus method where the cl_meta par

29 Jun 2026, 18:16 UTC View advisory →
CVE-2026-57999 High 7.7

luci-app-tailscale-community contains a command injection vulnerability in the tailscale.do_login RPC method that allows authenticated users to execute arb

29 Jun 2026, 18:16 UTC View advisory →
CVE-2026-57997 Medium 6.3

Strapi users-permissions plugin fails to restrict JWT algorithms when plugin::users-permissions.jwt.algorithm is not explicitly configured, allowing accept

29 Jun 2026, 21:16 UTC View advisory →
CVE-2026-57996 High 8.7

phpMyFAQ before 4.1.5 contains a privilege escalation vulnerability in the user/add API endpoint that allows non-SuperAdmin administrators to create SuperA

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-57995 High 8.7

phpMyFAQ before 4.1.5 contains a privilege escalation vulnerability in GroupController::updatePermissions that allows GROUP_EDIT administrators to grant ar

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-57994 Medium 6.9

phpMyFAQ before 4.1.5 applies inconsistent active=yes and publication-date filtering across its public FAQ API endpoints, allowing unauthenticated attacker

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-57982 Medium 6.5

Use of uninitialized resource in Windows RDP allows an authorized attacker to disclose information over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57980 Medium 5.4

Authentication bypass using an alternate path or channel in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering over a net

17 Jul 2026, 21:29 UTC View advisory →
CVE-2026-57979 Medium 6.5

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-57976 Medium 6.5

Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-57973 Medium 6.3

Time-of-check time-of-use (toctou) race condition in Windows Subsystem for Linux allows an authorized attacker to perform tampering locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57969 High 8.8

Missing authentication for critical function in Azure CycleCloud allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-57968 High 7.8

Buffer over-read in Windows Subsystem for Linux allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57966 Medium 4.4

A path traversal vulnerability was found in spice-vdagent. This flaw allows a malicious or compromised SPICE host to write arbitrary files to any location

29 Jun 2026, 07:53 UTC View advisory →
CVE-2026-57965 Medium 5.1

A flaw was found in spice-vdagent. A malicious or compromised SPICE host can trigger an integer overflow by sending a specially crafted message. This vulne

29 Jun 2026, 07:53 UTC View advisory →
CVE-2026-57963 Unscored

An attacker who can send HTML chat messages (via Matrix or XMPP) can inject arbitrary styled content, phishing links, and CSS that manipulates the chat UI.

01 Jul 2026, 00:58 UTC View advisory →
CVE-2026-57962 Unscored

A malicious LDAP server, which a Thunderbird user is configured to query for address-book autocomplete, can stash arbitrarily large amounts of attacker-sup

01 Jul 2026, 00:58 UTC View advisory →
CVE-2026-57961 Medium 5.1

phpMyFAQ before 4.1.5 contains a potential authenticated path traversal vulnerability in the concatenatePaths() function within src/phpMyFAQ/Export/Pdf/Wra

10 Jul 2026, 13:58 UTC View advisory →
CVE-2026-57960 High 8.3

Hi.Events through 1.9.0 public check-in list endpoints use short_id as sole access control, allowing unauthenticated access to retrieve full attendee lists

29 Jun 2026, 17:24 UTC View advisory →
CVE-2026-57959 High 8.2

Hi.Events through 1.9.0 contains a promo code validation vulnerability where reservation validates usage count before asynchronous UpdateEventStatisticsJob

29 Jun 2026, 17:24 UTC View advisory →
CVE-2026-57958 Medium 5.1

Mixpost through 2.6.0 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to execute arbitrary JavaScript in auth

29 Jun 2026, 17:23 UTC View advisory →
CVE-2026-57957 Low 2.3

Papermark through 0.22.0 contains a cross-origin resource sharing (CORS) misconfiguration vulnerability that allows unauthenticated remote attackers to per

29 Jun 2026, 17:23 UTC View advisory →
CVE-2026-57956 Medium 6.1

SigNoz through 0.130.1 contains a broken access control vulnerability that allows authenticated users to access other organizations' alert rules by supplyi

29 Jun 2026, 17:22 UTC View advisory →
CVE-2026-57955 High 8.3

SigNoz through 0.130.1 contains a SQL injection vulnerability that allows authenticated attackers to execute arbitrary ClickHouse queries by injecting URL-

29 Jun 2026, 17:22 UTC View advisory →
CVE-2026-57954 Medium 5.3

Elide through 7.1.17 fails to enforce @ReadPermission on client-supplied sort expressions in SortingImpl.getValidSortingRules, allowing attackers to sort c

29 Jun 2026, 17:21 UTC View advisory →
CVE-2026-57953 Medium 5.3

Mythic before 3.4.0.60 contains an authorization bypass vulnerability that allows authenticated spectator-role users to perform unauthorized write operatio

29 Jun 2026, 17:21 UTC View advisory →
CVE-2026-57952 Medium 6

Mythic before 3.4.0.60 contains an authorization bypass vulnerability in four REST endpoints (c2profile_config_check_webhook, c2profile_redirect_rules_webh

29 Jun 2026, 17:21 UTC View advisory →
CVE-2026-57951 High 7.1

Mythic before 3.4.0.60 contains a broken hasura permission filter on the payload_build_step table with an always-satisfied _or condition that bypasses oper

29 Jun 2026, 17:20 UTC View advisory →
CVE-2026-57950 High 8.6

ruoyi-vue-pro through 2026.05, fixed in commit 5d1fd70 contains a broken access control vulnerability in ErpSaleOrderController that allows attackers with

29 Jun 2026, 17:20 UTC View advisory →
CVE-2026-57949 High 7.1

ruoyi-vue-pro through 2026.05, fixed in commit c779a47, contains a missing authorization vulnerability in the CRM module's GET /admin-api/crm/follow-up-rec

29 Jun 2026, 17:19 UTC View advisory →
CVE-2026-57948 High 7.6

Pinpoint through version 3.1.0 contains an insecure session management vulnerability that allows attackers to access the pinpointJwt session cookie due to

29 Jun 2026, 17:19 UTC View advisory →
CVE-2026-57947 Medium 6.3

Pinpoint through 3.1.0 contains a server-side request forgery vulnerability in the webhook registration endpoint that allows authenticated users to registe

29 Jun 2026, 17:18 UTC View advisory →
CVE-2026-57946 Medium 6.3

Invidious before version 2.20260626.0 contains a broken access control vulnerability that allows unauthenticated attackers to retrieve private playlist con

29 Jun 2026, 17:18 UTC View advisory →
CVE-2026-57945 Medium 5.3

PhotoPrism before 260601-a7d098548 contains a broken access control vulnerability that allows authenticated non-admin users to modify other users' profile

29 Jun 2026, 17:18 UTC View advisory →
CVE-2026-57943 Medium 6

LibrePhotos before 1.0.0 contains a broken object level authorization vulnerability in the SetPhotosShared endpoint that allows authenticated users to gran

29 Jun 2026, 17:17 UTC View advisory →
CVE-2026-57942 Medium 6.9

LibreTranslate through 1.9.7, fixed in commit 397fd22, contains an IP spoofing vulnerability in the get_remote_address() function that allows unauthenticat

29 Jun 2026, 17:17 UTC View advisory →
CVE-2026-57940 Low 2.1

HTMLy 3.1.1 contains a Server-Side Request Forgery (SSRF) vulnerability in the RSS feed import functionality. The function get_feed() in system/admin/admin

26 Jun 2026, 13:08 UTC View advisory →
CVE-2026-57926 Low 2.6

In JetBrains YouTrack before 2026.2.16593 the websandbox bridge was vulnerable to a prototype pollution attack

26 Jun 2026, 12:38 UTC View advisory →
CVE-2026-57925 Medium 4.3

In JetBrains YouTrack before 2026.2.16593 improper access control allowed reading saved queries and tags

26 Jun 2026, 12:38 UTC View advisory →
CVE-2026-57924 Medium 4.3

In JetBrains YouTrack before 2026.2.16593 default role configuration exposed excessive user profile details

26 Jun 2026, 12:38 UTC View advisory →
CVE-2026-57923 Medium 5.3

In JetBrains YouTrack before 2026.2.16593 improper authorisation in the app configurations endpoint allowed modifying project settings

26 Jun 2026, 12:38 UTC View advisory →
CVE-2026-57922 Low 3.1

In JetBrains YouTrack before 2026.2.16593 project settings disclosure via the MCP was possible

26 Jun 2026, 12:38 UTC View advisory →
CVE-2026-57921 Medium 4.3

In JetBrains YouTrack before 2026.2.16593 improper access control allowed reading users' private data via the comment templates endpoint

26 Jun 2026, 12:38 UTC View advisory →
CVE-2026-57920 High 7.7

Peplink InControl 2 through 2.14.2 before 2026-06-03 allows use of a semicolon to bypass access-control rules for certain /rest/o/{orgId} endpoints.

26 Jun 2026, 12:20 UTC View advisory →
CVE-2026-57918 High 7.1

libnfs through 6.0.2 before 935b8db has an xid integer underflow in READ_IOVEC in rpc_read_from_socket in lib/socket.c during a connection to a crafted NFS

26 Jun 2026, 10:54 UTC View advisory →
CVE-2026-57917 Medium 4.8

proCertum SmartSign parses external XML entities from arbitrary crafted signature files, enabling SSRF and potentially allowing the reading of local files,

27 Jul 2026, 10:29 UTC View advisory →
CVE-2026-57916 Medium 4.6

proCertum SmartSign opens Certificate Practice Statement (CPS) URI without schema validation. An attacker can prepare arbitrary certificate with CPS URI po

27 Jul 2026, 10:29 UTC View advisory →
CVE-2026-57915 High 7.3

It is possible to bypass the Kerberos pre-authentication check in Apache Kerby by sending a PA-DATA with an unrecognized or unsupported type. Users are rec

26 Jun 2026, 12:09 UTC View advisory →
CVE-2026-57914 Medium 6.5

By sending a deeply nested ASN1 structure to a Apache Kerby client or service, it's possible to trigger a StackOverFlow Exception which can lead to denial

26 Jun 2026, 11:28 UTC View advisory →
CVE-2026-57913 High 7.5

Johnson & Johnson Audit Tracking Management System (ATMS) before 2026-04-21 allows viewing of meeting minutes and transcripts.

26 Jun 2026, 10:06 UTC View advisory →
CVE-2026-57912 High 7.5

Johnson & Johnson Campus Recruiting before 2025-10-31 allows viewing of data provided by recruited students, and notes entered about students by interviewe

26 Jun 2026, 10:04 UTC View advisory →
CVE-2026-57898 Critical 9

In Eclipse BaSyx Java Server SDK versions 2.0.0-milestone-05 to 2.0.0-milestone-12, deployments using the MongoDB backend are vulnerable to an unauthentica

14 Jul 2026, 07:51 UTC View advisory →
CVE-2026-57896 Medium 6.9

An out-of-bounds read vulnerability in the Productivity Suite allows a local attacker to trigger kernel memory corruption by sending a crafted IOCTL reques

16 Jul 2026, 20:06 UTC View advisory →
CVE-2026-57895 High 8.5

Incorrect default permissions issue exists in Pupsman versions prior to 3.9.0. An attacker can place a malicious executable in the installation folder, whi

08 Jul 2026, 04:38 UTC View advisory →
CVE-2026-57881 Critical 9.8

An unauthenticated stack-based buffer overflow vulnerability exists in vlsvr in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is

26 Jun 2026, 07:17 UTC View advisory →
CVE-2026-57880 Critical 9.8

An unauthenticated stack-based buffer overflow vulnerability exists in ssvr in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is

26 Jun 2026, 07:17 UTC View advisory →
CVE-2026-57879 Critical 9.8

An unauthenticated stack-based buffer overflow vulnerability exists in ssvr in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is

26 Jun 2026, 07:17 UTC View advisory →
CVE-2026-57878 Critical 9.8

An unauthenticated stack-based buffer overflow vulnerability exists in thttpd in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability i

26 Jun 2026, 07:17 UTC View advisory →
CVE-2026-57877 High 8.6

An unauthenticated format string vulnerability exists in vlsvr in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is caused by imp

26 Jun 2026, 07:17 UTC View advisory →
CVE-2026-57876 High 7.5

An unauthenticated out-of-bounds write vulnerability exists in onvif.cgi in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is cau

26 Jun 2026, 07:17 UTC View advisory →
CVE-2026-57875 High 7.5

An unauthenticated NULL pointer dereference vulnerability exists in the HTTP request parsing logic of multiple CGI components in GeoVision GV-LPC2011 and G

26 Jun 2026, 07:17 UTC View advisory →
CVE-2026-57874 High 7.5

An unauthenticated buffer overflow vulnerability exists in IEEE8021x_upload.cgi in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability

26 Jun 2026, 07:17 UTC View advisory →
CVE-2026-57873 High 7.5

An unauthenticated NULL pointer dereference vulnerability exists in IEEE8021x_upload.cgi in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vuln

26 Jun 2026, 07:17 UTC View advisory →
CVE-2026-57872 High 7.5

An unauthenticated directory traversal vulnerability exists in get_fcont.cgi in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is

26 Jun 2026, 07:17 UTC View advisory →
CVE-2026-57862 High 8.4

Kanboard 1.2.52 and prior contains a server-side request forgery vulnerability that allows authenticated users to bypass SSRF protections by supplying hexa

30 Jul 2026, 15:26 UTC View advisory →
CVE-2026-57860 High 8.4

ForgeCode (tailcallhq/forgecode), an AI pair-programming CLI, automatically loads and executes the MCP servers defined in a repository's .mcp.json file on

17 Jul 2026, 16:16 UTC View advisory →
CVE-2026-57859 High 7.7

e107 prior to version 2.3.8 contains a code execution vulnerability in the e_array deserialization handler that allows an attacker with out-of-band databas

30 Jul 2026, 13:41 UTC View advisory →
CVE-2026-57857 Medium 5.1

The Flow Payment plugin for WordPress (flow.cl) version 3.0.8 is vulnerable to reflected cross-site scripting on the WooCommerce checkout page. When the pl

18 Jul 2026, 20:33 UTC View advisory →
CVE-2026-57856 High 8.7

Cockpit CMS contains a path traversal vulnerability in the Bucket file storage API (/system/buckets/api). The api() method in modules/System/Controller/Buc

13 Jul 2026, 22:41 UTC View advisory →
CVE-2026-57855 High 8.7

Cockpit CMS contains a missing authorization vulnerability in the Bucket file storage API (/system/buckets/api). The api() method in modules/System/Control

13 Jul 2026, 22:33 UTC View advisory →
CVE-2026-57852 Medium 6.3

Grav CMS scheduler-webhook plugin contains an authentication bypass vulnerability that allows unauthenticated remote attackers to trigger configured schedu

20 Jul 2026, 22:09 UTC View advisory →
CVE-2026-57851 High 8.5

MSI Feature Manager contains a local privilege escalation vulnerability in the KernCoreLib64.sys kernel driver that allows any locally logged-on user to pe

07 Jul 2026, 16:02 UTC View advisory →
CVE-2026-57850 High 8.7

RustDesk before 1.4.9 does not enforce a session's authorized connection scope on the server side, so a peer granted a limited session type (FileTransfer,

10 Jul 2026, 19:53 UTC View advisory →
CVE-2026-57848 Medium 6.8

Stoat for Android exports the chat.stoat.activities.ShareTargetActivity component (reachable to any process on the device via the android.intent.action.SEN

18 Jul 2026, 19:15 UTC View advisory →
CVE-2026-57833 High 8.6

The Joomla extension 4Analytics is vulnerable to an unauthenticated stored XSS in relation to the AI analysis feature.

15 Jul 2026, 08:59 UTC View advisory →
CVE-2026-57832 High 8.7

The Joomla extension EDocman is vulnerable to an unauthenticated SQL injection.

15 Jul 2026, 08:09 UTC View advisory →
CVE-2026-57831 High 8.7

The Joomla extension DP Calendar is vulnerable to an unauthenticated SQL injection.

15 Jul 2026, 08:08 UTC View advisory →
CVE-2026-57830 High 8.8

The Joomla extension Helix Ultimate is vulnerable to an unauthenticated arbitrary file deletion.

13 Jul 2026, 07:30 UTC View advisory →
CVE-2026-57829 High 8.7

The Joomla extension Helix Ultimate is vulnerable to an unauthenticated stored XSS.

13 Jul 2026, 07:28 UTC View advisory →
CVE-2026-57828 Critical 9

The Joomla extension Phoca Downloads is vulnerable to an authenticated arbitrary file upload that allows registered users uploading executable files and le

11 Jul 2026, 09:27 UTC View advisory →
CVE-2026-57827 Critical 10

The Joomla extension RSFiles is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full RCE.

11 Jul 2026, 09:29 UTC View advisory →
CVE-2026-57821 High 8.1

A SQL Injection vulnerability exists in Apache Fineract's Office Search API (GET /api/v1/offices) in versions up to and including 1.14.0. The orderBy reque

15 Jul 2026, 09:20 UTC View advisory →
CVE-2026-57819 High 7.5

Apache CXF allows to set a limit on the number of form parameters in a JAX-RS message via the "maxFormParameterCount" configuration option. However, no def

06 Aug 2026, 10:12 UTC View advisory →
CVE-2026-57818 High 8.1

A race condition in JCacheCodeDataProvider allows an attacker to redeem a single authorization code multiple times via concurrent requests, resulting in th

06 Aug 2026, 11:24 UTC View advisory →
CVE-2026-57817 High 8.1

The OpenID Connect Core 1.0 specification mandates that the RP MUST validate the `c_hash` parameter when operating in the Hybrid Flow. If an Apache CXF RP

06 Aug 2026, 10:24 UTC View advisory →
CVE-2026-57816 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FunnelKit Funnel Builder by FunnelKit funnel-builder

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57815 High 7.5

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPMU DEV - Your All-in-One WordPress Platform Forminator fo

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57814 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPMU DEV - Your All-in-One WordPress Platform Formina

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57813 Critical 9.8

Incorrect Privilege Assignment vulnerability in properfraction MailOptin mailoptin allows Privilege Escalation.This issue affects MailOptin: from n/a throu

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57812 Medium 6.5

Missing Authorization vulnerability in NSquared Simply Schedule Appointments simply-schedule-appointments allows Exploiting Incorrectly Configured Access C

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57811 Critical 10

Improper Control of Generation of Code ('Code Injection') vulnerability in Realtyna Realtyna Organic IDX plugin real-estate-listing-realtyna-wpl allows Rem

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57810 High 8.5

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saad Iqbal APIExperts Square for WooCommerce woosquar

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57807 Critical 9.8

Authentication Bypass Using an Alternate Path or Channel vulnerability in miniOrange Security Software Pvt Ltd. OAuth Single Sign On - SSO (OAuth Client) a

10 Jul 2026, 20:35 UTC View advisory →
CVE-2026-57805 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Tonda tonda allows P

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57804 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in CodexThemes TheGem Theme Elements

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57803 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Struktur Core strukt

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57802 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Struktur struktur al

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57801 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes SetSail setsail allo

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57800 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Edge-Themes Overworld overworld al

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57799 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in uxper Nuss nuss allows PHP Local F

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57798 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in SaurabhSharma NewsPlus Shortcodes

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57797 Medium 4.3

Missing Authorization vulnerability in ThemeMove EduMall edumall allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57796 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in VLThemes Leedo leedo allows PHP Lo

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57795 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in themelexus Kitchor kitchor allows

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57794 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in uxper Golo Framework golo-framewor

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57793 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Elated-Themes Flow flow allows PHP

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57792 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mikado-Themes Dør dor allows PHP L

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57791 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Brook brook allows PHP L

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57790 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Billey billey allows PHP

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57789 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in jwsthemes Aqua aqua allows PHP Loc

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57788 High 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Edge-Themes Aalto aalto allows PHP

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57787 High 8.5

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CreativeWS CWS SVGicons cws-svgicons allows Blind SQL

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57786 High 8.8

Cross-Site Request Forgery (CSRF) vulnerability in purethemes WorkScout-Core workscout-core allows Authentication Bypass.This issue affects WorkScout-Core:

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57783 Medium 6.5

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in merkulove Speaker speaker allows Stored XSS.This issu

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57782 Medium 5.3

Missing Authorization vulnerability in PressTigers Universal Clocks universal-clocks allows Exploiting Incorrectly Configured Access Control Security Level

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57781 Medium 5.3

Missing Authorization vulnerability in Sovlix MeetingHub meetinghub allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affe

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57780 Medium 6.5

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Plugin Envision Envision Page Builder envision-page-b

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57779 Medium 5.3

Missing Authorization vulnerability in themebeez Fascinate fascinate allows Exploiting Incorrectly Configured Access Control Security Levels.This issue aff

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57778 Medium 5.3

Missing Authorization vulnerability in wpdevart Booking calendar, Appointment Booking System booking-calendar allows Exploiting Incorrectly Configured Acce

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57776 Medium 5.3

Missing Authorization vulnerability in vowelweb VW Wedding vw-wedding allows Exploiting Incorrectly Configured Access Control Security Levels.This issue af

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57774 Medium 5.3

Missing Authorization vulnerability in vowelweb VW Food Corner vw-food-corner allows Exploiting Incorrectly Configured Access Control Security Levels.This

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57773 High 7.6

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Zorem Advanced Shipment Tracking for WooCommerce woo-

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57772 High 8.5

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Inventory WP Inventory Manager wp-inventory-manage

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57771 High 8.5

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Milan Petrovic GD Rating System gd-rating-system allo

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57770 Critical 9.8

Deserialization of Untrusted Data vulnerability in ThemeGoods Grand Photography grandphotography allows Object Injection.This issue affects Grand Photograp

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57768 High 8.2

Incorrect Privilege Assignment vulnerability in favethemes Houzez Login Register houzez-login-register allows Privilege Escalation.This issue affects Houze

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57766 High 8.8

Unauthenticated Cross Site Request Forgery (CSRF) in WPIDE – File Manager & Code Editor <= 3.5.6 versions.

02 Jul 2026, 11:16 UTC View advisory →
CVE-2026-57765 High 8.5

Contributor SQL Injection in WP EasyCart <= 5.9.0 versions.

02 Jul 2026, 11:16 UTC View advisory →
CVE-2026-57764 Medium 6.5

Contributor Cross Site Scripting (XSS) in Surbma | Yoast SEO Breadcrumb Shortcode <= 1.2 versions.

02 Jul 2026, 11:16 UTC View advisory →
CVE-2026-57763 Medium 6.5

Contributor Cross Site Scripting (XSS) in Structured Content <= 1.7.0 versions.

02 Jul 2026, 11:16 UTC View advisory →
CVE-2026-57762 Medium 5.9

Author Cross Site Scripting (XSS) in Simple URLs <= 151 versions.

02 Jul 2026, 11:16 UTC View advisory →
CVE-2026-57761 High 7.1

Unauthenticated Cross Site Request Forgery (CSRF) in SEOWP <= 3.12.2 versions.

02 Jul 2026, 11:16 UTC View advisory →
CVE-2026-57760 Medium 5.3

Missing Authorization vulnerability in Sendcloud Sendcloud Shipping allows Exploiting Incorrectly Configured Access Control Security Levels. This issue aff

02 Jul 2026, 11:33 UTC View advisory →
CVE-2026-57759 High 8.8

Unauthenticated Cross Site Request Forgery (CSRF) in ProfileGrid <= 5.9.9.7 versions.

02 Jul 2026, 11:16 UTC View advisory →
CVE-2026-57758 High 7.1

Unauthenticated Cross Site Request Forgery (CSRF) in Permalink Manager for WooCommerce <= 1.0.8.2 versions.

02 Jul 2026, 11:16 UTC View advisory →
CVE-2026-57757 High 7.1

Unauthenticated Cross Site Request Forgery (CSRF) in pCloud WP Backup <= 2.0.2 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57756 High 8.5

Contributor SQL Injection in nicen-localize-image <= 1.4.9 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57755 Medium 6.5

Contributor Cross Site Scripting (XSS) in Mosaic Gallery – Advanced Gallery <= 1.2.0 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57754 Medium 6.5

Contributor Cross Site Scripting (XSS) in Livemesh Addons for WPBakery Page Builder <= 3.9.4 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57753 Medium 5.3

Unauthenticated Sensitive Data Exposure in Kit (formerly ConvertKit) for WooCommerce <= 2.1.5 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57752 High 8.5

Contributor SQL Injection in iNET Webkit 1.2.4 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57751 High 8.1

Unauthenticated Cross Site Request Forgery (CSRF) in Heateor Social Login <= 1.1.39 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57750 Medium 5.3

Unauthenticated Broken Access Control in ez Form Calculator Premium <= 2.14.1.2 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57749 High 7.5

Contributor Local File Inclusion in SportsPress Pro <= 2.7.29 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57748 High 7.5

Contributor Local File Inclusion in Shopify <= 1.0.0 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57747 Medium 6.5

Unauthenticated Cross Site Request Forgery (CSRF) in Booked <= 3.0.0 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57746 High 7.1

Subscriber Broken Access Control in Booked <= 3.0.0 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57745 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in stmcan RT-Theme 18 | Extensions rt18-extensions allow

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57744 Critical 9.8

Deserialization of Untrusted Data vulnerability in stmcan RT-Theme 18 | Extensions rt18-extensions allows Object Injection.This issue affects RT-Theme 18 |

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57743 High 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in stmcan RT-Theme 18 | Extensions rt

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57741 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AcyMailing Newsletter Team AcyMailing SMTP Newsletter

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57740 High 7.1

Missing Authorization vulnerability in AcyMailing Newsletter Team AcyMailing SMTP Newsletter acymailing allows Exploiting Incorrectly Configured Access Con

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57739 Critical 9.3

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AcyMailing Newsletter Team AcyMailing SMTP Newsletter

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57738 Critical 9.8

Deserialization of Untrusted Data vulnerability in axiomthemes 777 triple-seven allows Object Injection.This issue affects 777: from n/a through <= 1.13.0.

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57734 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tagDiv tagDiv Composer td-composer allows Reflected X

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57733 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tagDiv tagDiv Cloud Library td-cloud-library allows D

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57732 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tagDiv tagDiv Opt-In Builder td-subscription allows D

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57731 Medium 6.5

Contributor Broken Access Control in Flatsome <= 3.20.5 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57730 Medium 4.3

Subscriber Broken Access Control in Flatsome <= 3.20.5 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57729 High 7.5

Missing Authorization vulnerability in UX-themes Flatsome flatsome allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affec

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57728 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in UX-themes Flatsome flatsome allows Reflected XSS.This

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57727 High 7.5

Missing Authorization vulnerability in Themeum Kirki kirki allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Kirki

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57726 Critical 9.3

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeum Kirki kirki allows Blind SQL Injection.This i

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57725 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeum Kirki kirki allows Stored XSS.This issue affe

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57724 Critical 9.8

Deserialization of Untrusted Data vulnerability in Themeum Kirki kirki allows Object Injection.This issue affects Kirki: from n/a through <= 6.0.12.

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57719 Critical 10

Unrestricted Upload of File with Dangerous Type vulnerability in CodeRevolution Aimogen Pro aimogen-pro allows Using Malicious Files.This issue affects Aim

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57718 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Unlimited Elements Unlimited Elements For Elementor (

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57715 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPManageNinja Fluent CRM fluent-crm allows Reflected

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57714 Critical 9.3

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LatePoint LatePoint latepoint allows Blind SQL Inject

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57713 High 8.8

Deserialization of Untrusted Data vulnerability in Marcus (aka @msykes) Events Manager events-manager allows Object Injection.This issue affects Events Man

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57712 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPZOOM WPZOOM Portfolio wpzoom-portfolio allows Refle

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57711 Medium 6.5

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PSM Plugins SupportCandy supportcandy allows Stored X

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57710 Critical 9.9

Unrestricted Upload of File with Dangerous Type vulnerability in quantumcloud WoowBot Pro Max woowbot-pro-max allows Using Malicious Files.This issue affec

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57709 High 8.6

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WP Swings Membership For WooCommerce membership-for-woocomm

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57708 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CRM Perks Contact Form Entries contact-form-entries a

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57707 Critical 9.3

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in quantumcloud Simple Business Directory Pro simple-bus

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57706 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dokan, Inc. Dokan dokan-lite allows Reflected XSS.Thi

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57705 High 7.5

Missing Authorization vulnerability in Nexcess Event Tickets event-tickets allows Exploiting Incorrectly Configured Access Control Security Levels.This iss

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57702 Critical 9.3

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Melograno Venture Studio Amelia ameliabooking allows

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57700 Critical 10

Unrestricted Upload of File with Dangerous Type vulnerability in Daan.Dev OMGF Pro allows Using Malicious Files. This issue affects OMGF Pro: from n/a thro

25 Jun 2026, 17:29 UTC View advisory →
CVE-2026-57698 Medium 6.5

Authentication Bypass Using an Alternate Path or Channel vulnerability in VillaTheme Abandoned Cart Recovery for WooCommerce woo-abandoned-cart-recovery al

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57697 High 7.5

Authentication Bypass Using an Alternate Path or Channel vulnerability in Metagauss ProfileGrid profilegrid-user-profiles-groups-and-communities allows Pas

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57695 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dan Rossiter Document Gallery document-gallery allows

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57694 Medium 6.5

Authorization Bypass Through User-Controlled Key vulnerability in Themeum Tutor LMS tutor allows Exploiting Incorrectly Configured Access Control Security

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57693 Medium 6.5

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spacetime Ad Inserter ad-inserter allows Exploiting I

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57691 Medium 5.8

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Eli Anti-Malware Security and Brute-Force Firewall go

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57690 Medium 4.3

Unauthenticated Cross Site Request Forgery (CSRF) in Werkstatt <= 4.7.2 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57689 Medium 4.3

Subscriber Broken Access Control in Werkstatt <= 4.7.2 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57688 High 8.2

Unauthenticated Broken Access Control in POS Entegratör <= 3.7.103 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57687 High 8.5

Contributor SQL Injection in Custom Field Template <= 2.7.8 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57686 High 7.1

Unauthenticated Cross Site Scripting (XSS) in WowAddons <= 1.6.14 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57685 Medium 4.3

Subscriber Broken Access Control in Martfury - WooCommerce Marketplace WordPress Theme <= 3.2.8 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57684 Medium 6.5

Contributor Cross Site Scripting (XSS) in TheFox <= 3.9.70 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57683 Critical 9.3

Unauthenticated SQL Injection in WP Fast Total Search <= 1.80.280 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57682 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Simple Link Directory <= 15.0.5 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57681 Medium 6.4

Subscriber Server Side Request Forgery (SSRF) in GeoDirectory <= 2.8.161 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57680 Medium 6.5

Unauthenticated Insecure Direct Object References (IDOR) in Kirki <= 6.0.11 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57679 Critical 9.3

Unauthenticated SQL Injection in GeekyBot <= 1.2.5 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57678 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemePunch Slider Revolution allows Reflected XSS. Th

02 Jul 2026, 11:32 UTC View advisory →
CVE-2026-57677 Critical 9.8

Unauthenticated PHP Object Injection in Novalnet Payment Gateway for WooCommerce <= 12.10.3 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57676 Medium 4.3

Authorization Bypass Through User-Controlled Key vulnerability in Matteo Manna Simple User Avatar allows Exploiting Incorrectly Configured Access Control S

29 Jun 2026, 08:19 UTC View advisory →
CVE-2026-57675 High 7.1

Unauthenticated Cross Site Scripting (XSS) in WP Photo Album Plus <= 9.2.02.004 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57674 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Timetics <= 1.0.58 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57673 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Optimole <= 4.2.7 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57672 High 7.1

Unauthenticated Cross Site Scripting (XSS) in wpDataTables <= 6.5.1.1 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57671 High 7.1

Unauthenticated Cross Site Scripting (XSS) in perfmatters <= 2.6.4 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57670 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Google Maps CP <= 1.2.5 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57669 Medium 6.5

Subscriber Broken Access Control in Advanced Contact form 7 DB <= 2.0.9 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57668 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Basix NEX-Forms nex-forms-express-wp-form-builder all

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57667 High 8.5

Sales Representative SQL Injection in Groundhogg <= 4.5 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57665 Medium 5.3

Unauthenticated Insecure Direct Object References (IDOR) in GravityView <= 3.0.0 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57664 Medium 4.3

Unauthenticated Sensitive Data Exposure in Bopo – WooCommerce Product Bundle Builder <= 1.1.6 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57663 High 8.5

Contributor SQL Injection in Recipe Maker For Your Food Blog from Zip Recipes <= 8.2.7 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57662 High 8.5

Contributor SQL Injection in Contest Gallery <= 30.0.0 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57661 Medium 5.4

Subscriber Broken Access Control in WPComplete <= 2.9.5.5 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57660 Medium 5.3

Unauthenticated Broken Access Control in Booking and Rental Manager <= 2.7.1 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57659 High 8.8

Unauthenticated Cross Site Request Forgery (CSRF) in Paid Memberships Pro - Add Member From Admin <= 0.7.2 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57658 Critical 9.1

Administrator Arbitrary File Upload in TemplateSpare <= 4.2.0 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57657 Medium 4.3

Unauthenticated Cross Site Request Forgery (CSRF) in Gmail SMTP <= 1.2.3.19 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57656 Medium 5.9

Author Cross Site Scripting (XSS) in Hester Core <= 1.1.8 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57655 High 8.2

Unauthenticated Cross Site Request Forgery (CSRF) in Child Theme Wizard <= 1.4 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57654 Medium 6.5

Affiliate Broken Access Control in Affiliates Manager <= 2.9.49 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57653 High 8.5

Contributor SQL Injection in WP Job Portal <= 2.5.2 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57652 Medium 5.3

Unauthenticated Insecure Direct Object References (IDOR) in JS Help Desk <= 3.1.0 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57651 Medium 6.5

Contributor Cross Site Scripting (XSS) in Ghost Kit <= 3.6.0 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57650 Medium 6.5

Contributor Cross Site Scripting (XSS) in Magazine Blocks <= 1.8.3 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57649 Medium 4.3

Subscriber Broken Access Control in Shoppable Images Lite <= 1.3 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57648 Medium 4.3

Contributor Broken Access Control in Nelio Content <= 4.3.4 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57647 High 7.5

Contributor Local File Inclusion in Panorama Viewer – 360 Degree Image + Video Viewer <= 1.6.1 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57646 Medium 5.4

Subscriber Insecure Direct Object References (IDOR) in Majestic Support <= 1.1.7 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57645 High 8.1

newsletters_subscribers Broken Access Control in Newsletters <= 4.13 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57644 High 8.5

Contributor SQL Injection in Restaurant Menu by MotoPress <= 2.4.10 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57643 High 8.5

Contributor SQL Injection in WP Post Author <= 3.9.1 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57642 High 8.5

Contributor SQL Injection in Gallery <= 4.7.8 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57641 Medium 6.5

Unauthenticated Cross Site Request Forgery (CSRF) in Real Estate 7 <= 3.5.9 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57640 Medium 4.3

Subscriber Broken Access Control in MasterStudy LMS <= 3.7.30 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57638 Medium 6.5

Contributor Cross Site Scripting (XSS) in Fluent Booking <= 2.1.0 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57637 Medium 4.3

Unauthenticated Cross Site Request Forgery (CSRF) in Abandoned Cart Lite for WooCommerce <= 6.8.0 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57636 High 8.5

Contributor SQL Injection in wpForo Forum <= 3.0.9 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57635 Medium 6.5

Unauthenticated Cross Site Request Forgery (CSRF) in FunnelKit Payment Gateway for Stripe WooCommerce <= 1.14.0.3 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57634 Medium 4.3

Contributor Insecure Direct Object References (IDOR) in PPWP <= 1.9.19 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57633 Medium 5.3

Unauthenticated Sensitive Data Exposure in WCBoost – Products Compare <= 1.1.0 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57632 Medium 5.4

Subscriber Broken Access Control in Email Marketing for WooCommerce by Omnisend <= 1.19.0 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57631 High 7.6

Administrator SQL Injection in Popup box <= 6.0.1 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57630 Medium 5.3

Unauthenticated Insecure Direct Object References (IDOR) in Blocksy Companion Pro <= 2.1.46 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57629 Medium 6.5

Contributor Cross Site Scripting (XSS) in StatCounter <= 2.1.1 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57628 High 7.6

Administrator SQL Injection in WP All Import <= 4.0.1 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57627 Medium 4.9

Subscriber Server Side Request Forgery (SSRF) in Kirki <= 6.0.11 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57625 Critical 9.6

Unauthenticated Cross Site Scripting (XSS) in Admin and Site Enhancements (ASE) Pro <= 8.8.5 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57624 Critical 10

Unauthenticated Remote Code Execution (RCE) in Blocksy Companion Pro <= 2.1.46 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57623 Critical 9

Unauthenticated Arbitrary Code Execution in W3 Total Cache <= 2.9.4 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57622 Medium 4.3

Subscriber Broken Access Control in WPCafe <= 3.0.14 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57621 Critical 9.8

Unauthenticated PHP Object Injection in Booktics <= 1.0.21 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57620 Medium 6.5

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tim Strifler Exclusive Addons Elementor allows Stored

26 Jun 2026, 11:41 UTC View advisory →
CVE-2026-57619 Medium 6.5

Contributor Sensitive Data Exposure in Elementor Website Builder <= 4.1.3 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-57618 Medium 6.5

Contributor Cross Site Scripting (XSS) in Neve PRO <= 3.1.2 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57617 Medium 6.5

Contributor Cross Site Scripting (XSS) in SeedProd Pro < 6.19.5 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57600 High 7.5

Insufficient validation of input parameters in the firmware of some Hikvision cameras allows unauthenticated attackers to retrieve partial sensitive data.

22 Jul 2026, 11:01 UTC View advisory →
CVE-2026-57599 Medium 6.6

There is a privilege escalation vulnerability in some Hikvision cameras. Due to incorrect permission allocation in the device program, attackers can escala

22 Jul 2026, 11:00 UTC View advisory →
CVE-2026-57589 High 7.4

sys/kern/sysv_sem.c in OpenBSD through 7.9 has a use-after-free allowing local privilege escalation to root. This is a context switch use-after-free after

25 Jun 2026, 00:33 UTC View advisory →
CVE-2026-57588 Low 1.6

A SQL injection vulnerability in Nessus allows an attacker to craft a malicious scan result file that, when imported by a privileged user, injects maliciou

25 Jun 2026, 13:47 UTC View advisory →
CVE-2026-57587 Low 2.1

A SQL injection vulnerability in Nessus allows a remote, unauthenticated attacker who controls reverse DNS records for a scanned host to inject malicious S

25 Jun 2026, 13:47 UTC View advisory →
CVE-2026-57585 High 7.5

MessagePack is the serializer implementation for Python msgpack.org. Prior to 1.2.1, there is an Out-of-bounds read/crash on Unpacker reuse after a caught

30 Jun 2026, 21:36 UTC View advisory →
CVE-2026-57584 High 8.7

Phalcon is a high-performance, full-stack PHP framework. Prior to 5.15.0, every Phalcon MVC application built with a default router registers a built-in ro

10 Jul 2026, 21:04 UTC View advisory →
CVE-2026-57575 Medium 6.9

Misskey is an open source, federated social media platform. Prior to 2026.6.0, Misskey contains a Server-Side Request Forgery (SSRF) vulnerability in URL p

10 Jul 2026, 20:54 UTC View advisory →
CVE-2026-57574 High 7.4

Misskey is an open source, federated social media platform. Prior to 2026.6.0, Misskey contains a vulnerability in Time-based One-Time Password (TOTP) auth

10 Jul 2026, 20:55 UTC View advisory →
CVE-2026-57536 Medium 6.3

Our payment integration with Mollie did not properly validate payment status responses. An attacker could use a successful payment status response from one

25 Jun 2026, 14:08 UTC View advisory →
CVE-2026-57535 Low 2.1

Content injected to PDF rendering contexts could, in many places, include HTML content including tags. If the src attribute of these images pointed to an U

25 Jun 2026, 14:29 UTC View advisory →
CVE-2026-57534 Low 2.1

Malicious HTML content could be injected into the content of a page in the pretix-pages plugin.

25 Jun 2026, 14:11 UTC View advisory →
CVE-2026-57533 Low 2.1

Malicious HTML content could be injected into the page pretix shows when redirection to an untrusted page occurs. Since this page has a Content-Security-Po

25 Jun 2026, 14:31 UTC View advisory →
CVE-2026-57532 High 8.8

Malicious HTML content contained in the layout specification of a PDF ticket or badge layout was executed when the PDF editor is opened in the browser. Thi

25 Jun 2026, 14:32 UTC View advisory →
CVE-2026-57527 High 8.7

Zed Attack Proxy (ZAP) ViewState add-on before version 4 contains an insecure deserialization vulnerability that allows attackers who control a proxied web

26 Jun 2026, 14:43 UTC View advisory →
CVE-2026-57525 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

30 Jun 2026 View advisory →
CVE-2026-57523 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

30 Jun 2026 View advisory →
CVE-2026-57522 Low 2.3

Bitwarden Server before 2026.5.0 contains a JSON injection vulnerability in IntegrationTemplateProcessor.ReplaceTokens(), which substitutes user-controlled

25 Jun 2026, 19:09 UTC View advisory →
CVE-2026-57521 Medium 5.3

Bitwarden Server before 2026.5.0 contains a broken access control vulnerability that allows any authenticated user to access arbitrary organization billing

25 Jun 2026, 19:09 UTC View advisory →
CVE-2026-57520 High 7.1

Bitwarden Server before 2026.5.0 contains a privilege escalation vulnerability that allows authenticated Custom users with ManageUsers permission to remove

25 Jun 2026, 19:08 UTC View advisory →
CVE-2026-57518 High 8.7

Pagekit CMS 1.0.18 contains a privilege escalation vulnerability that allows authenticated users with the 'user: manage users' permission to escalate privi

26 Jun 2026, 15:58 UTC View advisory →
CVE-2026-57498 Critical 9.6

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.474, Coolify's API controllers cons

29 Jun 2026, 20:12 UTC View advisory →
CVE-2026-57495 High 8.2

AgenticMail gives AI agents real email addresses and phone numbers. In @agenticmail/claudecode prior to version 0.2.39, @agenticmail/codex prior to version

20 Jul 2026, 22:09 UTC View advisory →
CVE-2026-57494 High 7.1

AgenticMail gives AI agents real email addresses and phone numbers. In @agenticmail/api prior to version 0.9.64, a low-privileged authenticated AgenticMail

20 Jul 2026, 22:01 UTC View advisory →
CVE-2026-57481 Low 2.3

Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 9.9.1-alpha.13 and 8.6.83, a LiveQuery sub

08 Jul 2026, 20:54 UTC View advisory →
CVE-2026-57480 High 8.7

Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 9.9.1-alpha.12 and 8.6.82, deeply nested $

08 Jul 2026, 20:53 UTC View advisory →
CVE-2026-57476 Medium 6.3

Deloitte AI Assist for Customer exposed unauthenticated API endpoints that allowed an attacker with knowledge of additional parameters to read from or inje

10 Jul 2026, 17:10 UTC View advisory →
CVE-2026-57475 Medium 6.9

Deloitte AI Assist for Customer accepted unauthenticated POST requests through public-facing API endpoints that allowed a remote attacker to make limited a

10 Jul 2026, 17:10 UTC View advisory →
CVE-2026-57474 Medium 6.9

Deloitte AI Assist for Customer disclosed some configuration information through public-facing API endpoints that accepted unauthenticated requests. This i

10 Jul 2026, 17:10 UTC View advisory →
CVE-2026-57473 Medium 5.8

A vulnerability exists in the netclient and factory services of Reolink Home Hub (versions prior to v3.3.0.456_26031911) due to the possibility of brute-fo

26 Jun 2026, 10:47 UTC View advisory →
CVE-2026-57456 High 8.4

Vim is an open source, command line text editor. Prior to 9.2.0699, Vim's Python omni-completion (runtime/autoload/python3complete.vim and the legacy pytho

25 Jun 2026, 15:16 UTC View advisory →
CVE-2026-57455 Medium 4

Vim is an open source, command line text editor. Prior to 9.2.0698, the single-byte branch of spell_soundfold_sofo() in src/spell.c translates a word throu

25 Jun 2026, 15:22 UTC View advisory →
CVE-2026-57454 Medium 6.8

Vim is an open source, command line text editor. From 9.2.0320 until 9.2.0679, a crafted undo or swap file can store a virtual-text property whose offset a

25 Jun 2026, 15:24 UTC View advisory →
CVE-2026-57453 Medium 6.5

Vim is an open source, command line text editor. From 9.1.1784 until 9.2.0678, when the bundled zip plugin autoload/zip.vim falls back to PowerShell to bro

25 Jun 2026, 15:26 UTC View advisory →
CVE-2026-57452 Medium 5.5

Vim is an open source, command line text editor. Prior to 9.2.0671, when Vim opens a file encrypted with the VimCrypt~04! or VimCrypt~05! method (xchacha20

25 Jun 2026, 15:27 UTC View advisory →
CVE-2026-57451 Medium 5.3

Vim is an open source, command line text editor. Prior to 9.2.0670, get_text_props() in src/textprop.c reads a uint16 property count stored inline after a

25 Jun 2026, 15:28 UTC View advisory →
CVE-2026-57439 Medium 5

CyberChef is a web app for encryption, encoding, compression, and data analysis. Prior to 11.2.0, the Series Chart operation accepts __proto__ as a key whi

08 Jul 2026, 14:58 UTC View advisory →
CVE-2026-57438 Low 2.2

Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, XInclude substitution performed by Nokogiri::XML::Node#

25 Jun 2026, 14:39 UTC View advisory →
CVE-2026-57437 Low 1.7

Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, Nokogiri::XML::XPathContext did not keep its source doc

25 Jun 2026, 14:34 UTC View advisory →
CVE-2026-57436 Low 1.7

Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, Nokogiri::XML::Document#root= validated only that the n

25 Jun 2026, 14:33 UTC View advisory →
CVE-2026-57435 Low 1.7

Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, Nokogiri’s CRuby native extension could leave a Ruby wr

25 Jun 2026, 14:32 UTC View advisory →
CVE-2026-57434 Low 1.7

Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, Nokogiri contains a bug when calling certain methods on

25 Jun 2026, 14:32 UTC View advisory →
CVE-2026-57433 Unscored

Storable versions before 3.41 for Perl have a signed integer overflow when deserializing a crafted SX_HOOK record. retrieve_hook_common reads a signed 32-b

13 Jul 2026, 15:37 UTC View advisory →
CVE-2026-57432 Unscored

Perl versions through 5.43.10 have an integer overflow in S_measure_struct leading to an out-of-bounds heap read in pack and unpack. S_measure_struct adds

13 Jul 2026, 15:38 UTC View advisory →
CVE-2026-57431 Medium 6.5

Author Cross Site Scripting (XSS) in Featured Image <= 2.1 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57430 Medium 4.3

Contributor Broken Access Control in SEOPress PRO <= 9.1.1 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57429 Medium 6.5

Contributor Broken Access Control in Slim SEO <= 4.6.2 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-57426 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Modula - PRO <= 2.10.8 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57424 Medium 6.5

Missing Authorization vulnerability in knitpay Razorpay Payment Links for WooCommerce rzp-woocommerce allows Exploiting Incorrectly Configured Access Contr

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57423 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Kofi Mokome Message Filter for Contact Form 7 cf7-mes

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57422 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VillaTheme Bopo – WooCommerce Product Bundle Builder

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57421 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CRM Perks CRM Perks Forms crm-perks-forms allows Refl

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57420 Medium 6.5

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Netrr Author Box WP Lens author-box-for-divi allows S

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57419 Medium 6.5

Missing Authorization vulnerability in Fahad Mahmood Stock Locations for WooCommerce stock-locations-for-woocommerce allows Exploiting Incorrectly Configur

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57418 Medium 6.5

Missing Authorization vulnerability in BoldGrid Client Invoicing by Sprout Invoices sprout-invoices allows Exploiting Incorrectly Configured Access Control

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57417 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RexTheme Cart Lift cart-lift allows Stored XSS.This i

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57416 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SiteGround SiteGround Email Marketing siteground-emai

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57415 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Codemenschen Gift Vouchers gift-voucher allows Stored

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57414 Medium 6.5

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in QuantumCloud ChatBot for eCommerce – WoowBot woowbot-

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57413 Medium 6.4

Server-Side Request Forgery (SSRF) vulnerability in bdthemes Instant Image Generator ai-image allows Server Side Request Forgery.This issue affects Instant

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57412 Medium 6.5

Missing Authorization vulnerability in Codemenschen Gift Vouchers gift-voucher allows Exploiting Incorrectly Configured Access Control Security Levels.This

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57411 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Aman CF7 Views – Complete Entry Management for Contac

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57410 High 8.8

Incorrect Privilege Assignment vulnerability in MailerPress Team MailerPress mailerpress allows Privilege Escalation.This issue affects MailerPress: from n

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57409 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RealMag777 Active Products Tables for WooCommerce pro

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57408 Medium 6.5

Missing Authorization vulnerability in peachpayments Peach Payments Gateway wc-peach-payments-gateway allows Exploiting Incorrectly Configured Access Contr

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57407 High 7.2

Server-Side Request Forgery (SSRF) vulnerability in WP Swings PDF Generator for WordPress pdf-generator-for-wp allows Server Side Request Forgery.This issu

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57406 Medium 6.5

Missing Authorization vulnerability in Roxnor FundEngine wp-fundraising-donation allows Exploiting Incorrectly Configured Access Control Security Levels.Th

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57405 High 7.1

Missing Authorization vulnerability in themehunk Open Shop open-shop allows Exploiting Incorrectly Configured Access Control Security Levels.This issue aff

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57404 Medium 6.5

Missing Authorization vulnerability in magepeopleteam Booking and Rental Manager booking-and-rental-manager-for-woocommerce allows Exploiting Incorrectly C

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57403 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Milan Petrovic GD Security Headers gd-security-header

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57402 Medium 6.5

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpdesk Flexible Refund and Return Order for WooCommer

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57401 Critical 9.9

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Brainstorm Force SureDash suredash allows Path Traversal.Th

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57400 Medium 6.5

Missing Authorization vulnerability in WP Swings Event Tickets Manager for WooCommerce event-tickets-manager-for-woocommerce allows Exploiting Incorrectly

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57399 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Proxy & VPN Blocker Proxy & VPN Blocker proxy-vpn-blo

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57398 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebCodingPlace Real Estate Manager Pro real-estate-ma

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57396 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Flintop Free Gifts for WooCommerce free-gifts-for-woo

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57395 Medium 6.5

Missing Authorization vulnerability in Themefic Tourfic tourfic allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57394 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tribulant Software Newsletters newsletters-lite allow

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57393 Medium 6.5

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in EDGARROJAS WooCommerce PDF Invoice Builder woo-pdf-invoice-buil

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57392 Medium 6.5

Missing Authorization vulnerability in Themefic Tourfic tourfic allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57391 Medium 6.5

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tangible Loops & Logic tangible-loops-and-logic allow

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57390 Medium 6.5

Missing Authorization vulnerability in EDGARROJAS Extra Product Options Builder for WooCommerce additional-product-fields-for-woocommerce allows Exploiting

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57389 High 8.6

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Adrian Tobey Groundhogg groundhogg allows Path Traversal.Th

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57388 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themefic Hydra Booking hydra-booking allows Stored XS

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57387 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in picu picu picu allows Stored XSS.This issue affects p

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57386 High 8.8

Incorrect Privilege Assignment vulnerability in Kodezen LLC aBlocks ablocks allows Privilege Escalation.This issue affects aBlocks: from n/a through < 2.9.

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57385 High 8.5

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in appsbd Vitepos vitepos-lite allows Blind SQL Injectio

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57383 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in eyecix JobSearch wp-jobsearch allows Stored XSS.This

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57382 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mitchell Bennis Simple File List simple-file-list all

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57381 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Property Hive PropertyHive propertyhive allows Reflec

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57380 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in hupe13 Extensions for Leaflet Map extensions-leaflet-

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57379 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPPOOL FormyChat social-contact-form allows Stored XS

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57378 High 7.5

Missing Authorization vulnerability in Phil Kurth Advanced Forms advanced-forms allows Exploiting Incorrectly Configured Access Control Security Levels.Thi

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57377 Medium 6.5

Missing Authorization vulnerability in WPXPO WowAddons product-addons allows Exploiting Incorrectly Configured Access Control Security Levels.This issue af

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57376 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Element Invader ElementInvader Addons for Elementor e

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57375 Medium 6.5

Missing Authorization vulnerability in FluxBuilder MStore API mstore-api allows Exploiting Incorrectly Configured Access Control Security Levels.This issue

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57372 High 7.2

Server-Side Request Forgery (SSRF) vulnerability in denishua WPJAM Basic wpjam-basic allows Server Side Request Forgery.This issue affects WPJAM Basic: fro

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57371 High 8.8

Deserialization of Untrusted Data vulnerability in denishua WPJAM Basic wpjam-basic allows Object Injection.This issue affects WPJAM Basic: from n/a throug

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57369 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themifyme Themify Builder themify-builder allows Refl

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57368 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NooTheme Jobmonster noo-jobmonster allows Reflected X

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57366 High 7.1

Unauthenticated Cross Site Scripting (XSS) in WPAdverts <= 2.3.1 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57365 Medium 6.5

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Hitesh Chandwani reCAPTCHA (v2 & v3) for Asgaros Foru

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57364 Medium 6.5

Improper Validation of Specified Quantity in Input vulnerability in WPDeveloper Better Payment – Instant Payments, Donations, Fundraising with Subscription

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57363 High 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in QuantumCloud ChatBot chatbot allows Stored XSS.This i

13 Jul 2026, 08:41 UTC View advisory →
CVE-2026-57362 High 7.1

Unauthenticated Cross Site Scripting (XSS) in ChatBot <= 8.3.2 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57361 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Survey Maker <= 5.2.2.5 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57360 High 7.1

Unauthenticated Cross Site Scripting (XSS) in eCommerce Product Catalog <= 3.5.4 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57359 High 7.1

Unauthenticated Cross Site Scripting (XSS) in ReviewX <= 2.3.10 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57358 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Customize My Account for WooCommerce <= 4.3.9 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57357 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Search Atlas SEO <= 2.6.6 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57356 High 7.1

Unauthenticated Cross Site Scripting (XSS) in MC Woocommerce Wishlist <= 1.9.19 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57355 Medium 6.5

Subscriber Broken Access Control in Classified Listing <= 5.4.2 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57354 Medium 6.5

Subscriber Cross Site Scripting (XSS) in JetReviews <= 3.0.0.1 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57353 Medium 6.5

Subscriber Broken Access Control in Link Whisper Premium <= 2.9.0 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57352 Medium 4.8

Unauthenticated Broken Authentication in ALD – Dropshipping and Fulfillment for AliExpress and WooCommerce <= 2.2.0 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57351 High 7.1

Unauthenticated Cross Site Scripting (XSS) in HandL UTM Grabber <= 2.9.2 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57350 High 7.1

Unauthenticated Cross Site Scripting (XSS) in WP Debugging <= 2.12.2 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57349 High 7.1

Unauthenticated Cross Site Scripting (XSS) in WPeMatico RSS Feed Fetcher <= 2.8.17 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57348 High 7.2

Unauthenticated Server Side Request Forgery (SSRF) in Paid Member Subscriptions <= 3.0.4 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57347 Medium 6.5

Subscriber Sensitive Data Exposure in Hotel Booking Lite <= 6.0.3 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57346 High 7.1

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Epiphyt Embed Privacy allows Path Traversal. This issue aff

29 Jun 2026, 09:50 UTC View advisory →
CVE-2026-57345 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Internal Links Manager <= 3.0.3 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57344 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Classified Listing <= 5.4.2 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57343 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Real Estate 7 <= 3.5.9 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57342 Medium 6.5

Subscriber Cross Site Scripting (XSS) in ShortPixel Adaptive Images <= 3.11.3 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-57341 Medium 6.5

Unauthenticated Insecure Direct Object References (IDOR) in Colissimo Officiel : Méthodes de livraison pour WooCommerce <= 2.9.0 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57340 Medium 6.5

Unauthenticated Broken Access Control in Japanized For WooCommerce <= 2.9.12 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57339 Medium 6.6

Unauthenticated Broken Access Control in Business Directory <= 6.4.23 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57338 High 7.1

Unauthenticated Cross Site Scripting (XSS) in ARForms <= 7.1.2 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57337 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Landing Page Builder <= 1.5.3.5 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57336 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Jobify <= 4.3.2 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57335 Medium 6.5

Subscriber Broken Access Control in Ads by WPQuads <= 3.0.3 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57334 Medium 6.5

Unauthenticated Broken Access Control in WP User Frontend <= 4.3.7 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57333 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Link Whisper Free <= 0.9.4 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57332 High 7.1

Subscriber Broken Access Control in Wallet System for WooCommerce <= 2.7.6 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57331 Critical 9.9

Performer Arbitrary File Deletion in Paid Videochat Turnkey Site <= 7.4.8 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57330 Medium 6.5

Subscriber Cross Site Scripting (XSS) in MasterStudy LMS <= 3.7.27 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57329 Medium 6.5

Subscriber Cross Site Scripting (XSS) in WooCommerce Designer Pro <= 1.9.34 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57328 Medium 6.5

Subscriber Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57327 Medium 6.3

Subscriber Broken Access Control in MainWP <= 6.1.1 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57326 Medium 6.5

Unauthenticated Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57325 High 7.1

Unauthenticated Cross Site Scripting (XSS) in NanoMag <= 1.8 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57324 Medium 6.5

Unauthenticated Broken Access Control in GIFT4U <= 1.0.10 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57323 Medium 5.8

Unauthenticated Broken Access Control in Flash & HTML5 Video <= 2.11.0 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57322 High 7.1

Unauthenticated Cross Site Scripting (XSS) in weMail <= 2.1.2 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57321 High 7.1

Contributor Arbitrary File Deletion in H5P <= 1.17.7 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57320 High 7.1

Unauthenticated Cross Site Scripting (XSS) in BEAR <= 1.1.8 versions.

29 Jun 2026, 13:36 UTC View advisory →
CVE-2026-57319 High 7.1

Unauthenticated Cross Site Scripting (XSS) in FOX <= 1.4.8 versions.

26 Jun 2026, 14:53 UTC View advisory →
CVE-2026-57318 Medium 6.5

Subscriber Sensitive Data Exposure in Site Reviews <= 8.0.11 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-57317 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Simply Schedule Appointments <= 1.6.12.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-57316 Medium 6.5

Subscriber Sensitive Data Exposure in GetGenie <= 4.4.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-57315 High 8.5

Contributor Remote Code Execution (RCE) in Blocksy Companion Pro <= 2.1.45 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-57314 High 7.1

Unauthenticated Cross Site Scripting (XSS) in SureCart <= 4.3.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-57313 Medium 6.5

Subscriber Cross Site Scripting (XSS) in SureCart <= 4.2.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-57312 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Everest Forms <= 3.4.8 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-57311 Medium 5.3

Windu CMS does not validate types of uploaded files. An authenticated attacker can upload arbitrary files, including PHP. This can lead to Remote Code Exec

20 Jul 2026, 12:53 UTC View advisory →
CVE-2026-57310 Medium 6.3

Windu CMS uses hashing algorithm based on MD5 and SHA1 with static salt to store user passwords. This allows an attacker who obtain password hash to decode

20 Jul 2026, 12:52 UTC View advisory →
CVE-2026-57309 Critical 9.3

A Blind SQL injection vulnerability has been identified in Windu CMS. A remote unauthenticated attacker is able to inject SQL syntax into URL path in HTTP

20 Jul 2026, 12:52 UTC View advisory →
CVE-2026-57308 Unscored

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Syncope. An administrator with adequate entitl

20 Jul 2026, 14:21 UTC View advisory →
CVE-2026-57307 Medium 4.2

A missing permission check in Jenkins Zowe zDevOps Plugin 1.1.3.50.ve350c9b_450b_1 and earlier allows attackers with Overall/Read permission to connect to

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57306 Medium 4.2

A cross-site request forgery (CSRF) vulnerability in Jenkins Zowe zDevOps Plugin 1.1.3.50.ve350c9b_450b_1 and earlier allows attackers to connect to an att

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57305 Medium 5.4

A cross-site request forgery (CSRF) vulnerability in Jenkins Assembla Plugin 1.4 and earlier allows attackers to connect to an attacker-specified URL using

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57304 Medium 5.4

A missing permission check in Jenkins Assembla Plugin 1.4 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57303 High 7.1

Jenkins Assembla Plugin 1.4 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks, allowing attackers able to control

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57302 Medium 4.3

Jenkins FitNesse Plugin 1.36 and earlier stores passwords unencrypted in job config.xml files on the Jenkins controller, where they can be viewed by users

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57301 High 8.8

Jenkins OWASP ZAP Plugin 1.0.7 and earlier performs build operations on the Jenkins controller rather than the assigned agent, allowing attackers with Item

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57300 Medium 4.3

A missing permission check in Jenkins MCP Server Plugin 0.177.v629fdb_2557fe and earlier allows attackers with Item/Read permission to read the Pipeline re

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57299 Unscored

Missing permission checks in Jenkins Contrast Continuous Application Security Plugin 3.11 and earlier allow attackers with Overall/Read permission to enume

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57298 Medium 5.4

A cross-site request forgery (CSRF) vulnerability in Jenkins Contrast Continuous Application Security Plugin 3.11 and earlier allows attackers to have Jenk

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57297 Unscored

A missing permission check in Jenkins Contrast Continuous Application Security Plugin 3.11 and earlier allows attackers with Overall/Read permission to con

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57296 High 8.8

Jenkins External Workspace Manager Plugin 1.3.2 and earlier does not reject path traversal sequences in the custom workspace path provided to the exwsAlloc

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57295 Medium 5.4

A cross-site request forgery (CSRF) vulnerability in Jenkins EC2 Fleet Plugin 4.2.3.539.v8fedff2a_81c3 and earlier allows attackers to connect to an attack

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57294 Medium 5.4

A missing permission check in Jenkins EC2 Fleet Plugin 4.2.3.539.v8fedff2a_81c3 and earlier allows attackers with Overall/Read permission to connect to an

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57293 Medium 4.3

An incorrect permission check in Jenkins Gitee Plugin 1288.v18b_deb_c9069b_ and earlier allows attackers with global Item/Configure permission (while lacki

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57292 Medium 5.4

A cross-site request forgery (CSRF) vulnerability in Jenkins Gitee Plugin 1288.v18b_deb_c9069b_ and earlier allows attackers to connect to an attacker-spec

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57291 Medium 5.4

Missing permission checks in Jenkins Gitee Plugin 1288.v18b_deb_c9069b_ and earlier allow attackers with Overall/Read permission to connect to an attacker-

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57290 Medium 4.3

A cross-site request forgery (CSRF) vulnerability in Jenkins Priority Sorter Plugin 936.v2c01c6b_84449 and earlier allows attackers to overwrite the global

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57289 Medium 4.8

Jenkins Bitbucket Push and Pull Request Plugin 3.3.8 and earlier unconditionally disables SSL/TLS certificate and hostname validation for connections sendi

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57288 Low 3.7

Jenkins Active Directory Plugin 2.41.1 and earlier does not escape the user name before building the LDAP search filter in the Windows native (ADSI) authen

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57287 Medium 4.3

Jenkins Job Configuration History Plugin 1356.ve360da_6c523a_ and earlier does not redact the encrypted values of secrets when displaying historical job an

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57286 Medium 4.3

A missing permission check in Jenkins Git Parameter Plugin 462.vdcf3df2ed2ca_ and earlier allows attackers with Item/Read permission to obtain information

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57285 Medium 4.3

A missing permission check in Jenkins GitHub Branch Source Plugin 1967.1969.v205fd594c821 and earlier allows attackers with Overall/Read permission to obta

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57284 Medium 4.3

Jenkins Pipeline: Groovy Plugin 4331.v9d06ed4658ff and earlier does not restrict the types that can be instantiated through the Pipeline Snippet Generator,

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57283 Medium 4.3

A cross-site request forgery (CSRF) vulnerability in Jenkins Pipeline: Groovy Plugin 4331.v9d06ed4658ff and earlier allows attackers to instantiate types r

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57282 Medium 5

Jenkins Git client Plugin 6.6.0 and earlier does not correctly escape the workspace directory name when it is embedded into a generated SSH wrapper script,

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57281 High 7.5

Jenkins Script Security Plugin 1402.v94c9ce464861 and earlier does not reject Groovy AST transformation annotations carrying an extensions member, allowing

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57280 High 8.8

Jenkins Script Security Plugin 1402.v94c9ce464861 and earlier does not intercept the implicit type casts applied to the elements of typed for-each loops in

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-57260 High 7.8

The application opened a PDF file containing an abnormal Unity 3D object. During parsing, the application incorrectly resolved a portion of the abnormal ob

08 Jul 2026, 07:35 UTC View advisory →
CVE-2026-57259 Medium 6.5

The input file does not need to be strictly in a structurally valid PDF format. Instead, after reviewing the content, the original document disguised as a

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57258 Medium 6.1

The PRC file header parsing logic trusts the constructed file structure description information, assumes that the underlying array contains elements and re

08 Jul 2026, 07:35 UTC View advisory →
CVE-2026-57257 Medium 6.1

During the PRC parsing stage, there is a lack of boundary verification for the PRC entity index, which leads to an out-of-bounds read of the entity array.

08 Jul 2026, 07:35 UTC View advisory →
CVE-2026-57256 High 7.8

When the application opens a PDF and executes JavaScript, it performs abnormal operations on the list box field, and this operation is repeated after the f

08 Jul 2026, 07:35 UTC View advisory →
CVE-2026-57255 Medium 6.1

The application opens a PDF containing an abnormal color space whose attributes reference a valid but semantically malformed function. The function's outpu

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57254 High 7.8

There is an abnormal annotation within the PDF that is referenced by other objects. When the application parses the PDF, it fails to perform proper type ch

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57253 Medium 6.1

An abnormal image object causes the renderer to enter the wrong processing branch. When converting the scan lines, an invalid image buffer pointer is used,

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57252 High 7.8

When the application opens a PDF file, during the process of JavaScript deleting pages and removing attachment annotations, it will cause the attachment pa

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57251 High 7.8

The application opens a PDF, but the cloud-like appearance of the construction process lacks proper setting of an upper limit and consistency checks. Out-o

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57250 High 7.8

When the application opens a PDF and JavaScript resets the form fields, the script re-enters the interface. The underlying native object is damaged, but th

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57249 High 7.8

After the application opened the PDF file, the script first reset the annotation status, then triggered the reset form event by additional action. During t

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57248 High 7.8

When the application opens a PDF file and JavaScript writes annotation attributes, there is a lack of sufficient object type and argument checks. As a resu

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57247 High 7.8

The application re-enters the document structure via field processing and deletes the current page, and then continues using the field objects obtained bef

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57246 High 7.8

When dealing with abnormally constructed objects, there is a lack of argument validation; JavaScript triggers signature verification, but the signature plu

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57245 High 7.8

When the application opens a PDF, traverses and builds the annotation elements related to hyperlinks, it fails to validate the abnormal annotation relation

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57244 High 7.8

After JavaScript resetting the form, the synchronization process lacks re-entry protection and object lifecycle verification, resulting in the failure of t

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57243 Medium 6.1

During the process of page opening and form formatting, a JavaScript reentrancy results in an inconsistent document status. Subsequently, with outdated pag

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57242 High 7.8

The application opens the PDF, and JavaScript modifies the form. However, the related objects on the page lack complete lifecycle management and null value

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57241 Medium 6.1

The application opens the PDF, and JavaScript performs operations on the page and the document, causing the page-related objects within the application to

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57240 High 7.8

When the application opens a PDF file and JavaScript deletes the PDF fields, the subsequent logic still uses the old field pointers, resulting in invalid p

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57239 High 8.2

The user-controllable executable files will be directly executed by high-privilege processes, allowing low-privilege users to have the opportunity to eleva

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57238 High 7.8

After the application opened the PDF, JavaScript deleted the form field object. Subsequently, it attempted to access the invalid object, which caused the a

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57237 High 7.8

When the application opens a PDF and JavaScript modifies the properties of form fields, it causes the state of the underlying objects referenced by the pro

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-57236 Low 1.7

Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, calling Document#encoding= with an invalid encoding (e.

25 Jun 2026, 14:29 UTC View advisory →
CVE-2026-57235 Medium 6.3

Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, Nokogiri::XML::NodeSet#[] (and its alias #slice) checke

25 Jun 2026, 14:31 UTC View advisory →
CVE-2026-57234 Low 2.6

Nokogiri is an open source XML and HTML library for the Ruby programming language. Prior to 1.19.4, the NONET parse option, which Nokogiri turns on by defa

25 Jun 2026, 14:30 UTC View advisory →
CVE-2026-57232 Low 3.1

Contao is an Open Source CMS. From 5.3.35 through 5.3.47 and from 5.7.0-RC1 through 5.7.8, the Feed Reader front-end module passes configured RSS feed URLs

31 Jul 2026, 18:29 UTC View advisory →
CVE-2026-57231 High 7.5

Podman is a tool for managing OCI containers and pods. From 1.8.1 until 5.8.4, a container image that contains a environment variable with just a key and n

26 Jun 2026, 16:29 UTC View advisory →
CVE-2026-57230 Medium 5.4

OpenReplay is a self-hosted session replay suite. Prior to 1.27.0, the session search and analytics API in enterprise editions with multi-tenancy enabled b

10 Jul 2026, 20:47 UTC View advisory →
CVE-2026-57221 Medium 5.3

RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, RabbitMQ does not perform authorization checks on passive queue.

10 Jul 2026, 20:24 UTC View advisory →
CVE-2026-57220 High 7.5

RabbitMQ is a messaging and streaming broker. Prior to 4.2.6, the RabbitMQ stream listener does not enforce the configured stream frame-size limit while as

10 Jul 2026, 20:19 UTC View advisory →
CVE-2026-57219 High 8.7

RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, the obsolete GET /api/auth endpoint can disclose the OAuth 2 cli

10 Jul 2026, 20:22 UTC View advisory →
CVE-2026-57218 Medium 4.9

RabbitMQ is a messaging and streaming broker. Prior to 4.2.6, RabbitMQ AMQP 0-9-1 allows an existing consumer to keep receiving messages after OAuth token

10 Jul 2026, 20:21 UTC View advisory →
CVE-2026-57217 High 7

RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.21, 4.1.11, and 4.2.6, RabbitMQ topic authorization can allow restricted topic writes a

10 Jul 2026, 20:25 UTC View advisory →
CVE-2026-57216 Medium 6.8

RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, AMQP 0-9-1, AMQP 1.0, and Stream Protocol authentication can all

10 Jul 2026, 20:20 UTC View advisory →
CVE-2026-57215 High 7

RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, RabbitMQ allows foreign bindings to amq.rabbitmq.reply-to destin

10 Jul 2026, 20:23 UTC View advisory →
CVE-2026-57214 High 7.1

RabbitMQ is a messaging and streaming broker. Prior to 4.2.5, the RabbitMQ management UI renders the x-internal-purpose queue or exchange argument into an

10 Jul 2026, 20:18 UTC View advisory →
CVE-2026-57213 Medium 5.7

RabbitMQ is a messaging and streaming broker. Prior to 3.13.14, 4.0.19, 4.1.10, and 4.2.5, the rabbitmq_federation_management plugin renders the consumer_t

10 Jul 2026, 20:14 UTC View advisory →
CVE-2026-57212 High 7.1

RabbitMQ is a messaging and streaming broker. Prior to 3.13.14, 4.0.19, 4.1.10, and 4.2.5, the rabbitmq_management HTTP API accepts oversized valid JSON bo

10 Jul 2026, 20:15 UTC View advisory →
CVE-2026-57211 Medium 6.5

RabbitMQ is a messaging and streaming broker. Prior to 4.1.11 and 4.2.6 on Windows, the RabbitMQ management plugin static file handler rabbit_mgmt_wm_stati

10 Jul 2026, 20:16 UTC View advisory →
CVE-2026-57206 High 8.6

SimpleChat is a secure AI conversation application with personal and group workspaces for document-grounded interactions. Prior to 0.241.206, several plugi

16 Jul 2026, 15:17 UTC View advisory →
CVE-2026-57205 Medium 4.3

SimpleChat is a secure AI conversation application with personal and group workspaces for document-grounded interactions. Prior to 0.241.203, the authentic

16 Jul 2026, 15:12 UTC View advisory →
CVE-2026-57204 Medium 6.9

pypdf is a free and open-source pure-python PDF library. Prior to 6.13.3, a maliciously crafted PDF can cause DoS. An attacker who uses this vulnerability

30 Jun 2026, 21:59 UTC View advisory →
CVE-2026-57172 High 8.3

DataEase is an open source data visualization and analysis tool. Prior to 2.10.24, ShareSecretManage uses a hardcoded default share link signature key, all

07 Jul 2026, 20:33 UTC View advisory →
CVE-2026-57167 Medium 5.1

PeerTube is an ActivityPub-federated video streaming platform. Prior to 8.2.2, server-side-rendered video watch pages embed a schema.org JSON-LD block by J

10 Jul 2026, 16:37 UTC View advisory →
CVE-2026-57158 Medium 5.1

FreeRDP is a free implementation of the Remote Desktop Protocol. From 3.21.0 before 3.28.0, FreeRDP clients using the GFX pipeline contain an incomplete fi

10 Jul 2026, 19:49 UTC View advisory →
CVE-2026-57157 Medium 6.5

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0, FreeRDP server implementations with the MS-RDPECAM camera device enumerat

10 Jul 2026, 19:51 UTC View advisory →
CVE-2026-57156 High 8.6

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0 on 32-bit builds, FreeRDP clients contain an integer overflow in update_re

10 Jul 2026, 19:52 UTC View advisory →
CVE-2026-57108 High 7.5

Access of resource using incompatible type ('type confusion') in .NET Core allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57107 High 7.8

Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-57102 High 8.8

Inclusion of functionality from untrusted control sphere in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57101 High 7.1

Improper neutralization of input during web page generation ('cross-site scripting') in Visual Studio Code allows an unauthorized attacker to bypass a secu

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57100 Critical 9.9

Server-side request forgery (ssrf) in Microsoft Entra Provisioning Service (SyncFabric) allows an authorized attacker to elevate privileges over a network.

02 Jul 2026, 22:18 UTC View advisory →
CVE-2026-57097 Medium 6.4

Untrusted search path in Microsoft XML allows an unauthorized attacker to bypass a security feature with a physical attack.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-57096 High 7.8

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57095 Medium 6.2

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an unauthorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57094 High 8.8

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57093 High 7

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57092 Critical 9.9

Use after free in Windows VMSwitch allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57091 High 7.8

Stack-based buffer overflow in Windows File History Service allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57090 High 8.8

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57089 High 7.5

Use after free in Windows SMB Server Network Transport Driver (srvnet.sys) allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57088 High 7.8

Improper access control in Extensible Storage Engine (ESENT) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57087 High 8.8

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57085 Medium 5.5

Out-of-bounds read in Windows Print Spooler Components allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57084 Medium 5.5

Use of uninitialized resource in Windows File Explorer allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57083 Medium 5.5

Use of uninitialized resource in Microsoft Windows Codecs Library allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-57082 Medium 5.9

Net::BitTorrent versions through 2.0.1 for Perl generate the MSE Diffie-Hellman private key with a non-cryptographic PRNG. The MSE (Message Stream Encrypti

30 Jun 2026, 11:05 UTC View advisory →
CVE-2026-57081 High 7.5

Net::BitTorrent versions through 2.0.1 for Perl allow remote memory exhaustion via deeply nested bencoded input. bdecode recurses once per nested list or d

30 Jun 2026, 11:05 UTC View advisory →
CVE-2026-57080 High 7.5

Net::BitTorrent versions through 2.0.1 for Perl allow remote memory exhaustion via an uncapped peer-wire message-length prefix. The peer-wire framing in _p

30 Jun 2026, 11:04 UTC View advisory →
CVE-2026-57079 Medium 5.3

Net::BitTorrent versions through 2.0.1 for Perl write files outside the download directory via path traversal in peer-supplied metadata. Net::BitTorrent va

30 Jun 2026, 11:04 UTC View advisory →
CVE-2026-57077 Unscored

YAML::Syck versions before 1.47 for Perl allow an out-of-bounds read via an unbounded newline scan in newline_len. In the bundled libsyck newline_len and i

16 Jul 2026, 21:41 UTC View advisory →
CVE-2026-57076 Unscored

YAML::Syck versions before 1.47 for Perl allow a heap use-after-free via an anchor name reused as an anchors-table key in syck_hdlr_add_anchor. In the bund

16 Jul 2026, 21:40 UTC View advisory →
CVE-2026-57075 Unscored

YAML::Syck versions before 1.47 for Perl allow an out-of-bounds read via a signed-char lookup-table index in syck_base64dec. The base64 decoder in the bund

16 Jul 2026, 21:39 UTC View advisory →
CVE-2026-57074 Unscored

XML::Bare versions through 0.53 for Perl have an unbounded character lookahead. The parserc_parse function attempts to check for multicharacter strings suc

16 Jul 2026, 16:15 UTC View advisory →
CVE-2026-57073 Unscored

HTML::Bare versions through 0.04 for Perl have an unbounded character lookahead. The parserc_parse function attempts to check for multicharacter strings su

16 Jul 2026, 16:15 UTC View advisory →
CVE-2026-57062 Low 2.9

CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes-ICVlen is supposed to be 12 b

23 Jun 2026, 17:26 UTC View advisory →
CVE-2026-57053 Medium 4

GNU libidn before 1.44 is prone to out-of-bounds reads of uninitialized memory in the ToUnicode APIs because of mishandling in idna_to_unicode_internal. Th

23 Jun 2026, 16:40 UTC View advisory →
CVE-2026-56968 Low 3.7

GNU SASL before 2.2.4 lacks sanitization of a short challenge in _gsasl_ntlm_client_step in the NTLM client, which could result in memory disclosure via a

23 Jun 2026, 16:18 UTC View advisory →
CVE-2026-56877 Medium 6.3

The SCORM lab launch endpoint in Skillable (scorm.skillable.com) through 2026-07-13 does not validate the client-supplied userId parameter against the auth

13 Jul 2026, 21:51 UTC View advisory →
CVE-2026-56876 High 8.6

extract-zip does not validate symlink targets when extracting zip archives. When processing a malicious zip file containing a symlink with a relative path

26 Jun 2026, 16:44 UTC View advisory →
CVE-2026-56848 High 7.5

A flaw in Node.js HTTP/2 handling allows `nghttp2_session_mem_send()` to be called re-entrantly while `nghttp2_session_mem_recv()` is executing, resulting

04 Aug 2026, 15:57 UTC View advisory →
CVE-2026-56846 High 7.5

A flaw in Node.js HTTP/2 handling can cause HTTP/2 retained header blocks evade maxSessionMemory and enable remote memory exhaustion. This vulnerability af

04 Aug 2026, 00:49 UTC View advisory →
CVE-2026-56845 High 7.5

An unauthenticated path traversal (LFI) vulnerability exists under /custom-sounds/ when CustomSounds storage is configured to FileSystem. By including ../

04 Aug 2026, 00:43 UTC View advisory →
CVE-2026-56843 Critical 9.9

Incorrect authorization in the XML-RPC API of WebPros Plesk before 18.0.78.4 allows a low-privileged authenticated customer to look up domains they do not

08 Jul 2026, 00:15 UTC View advisory →
CVE-2026-56842 High 7.5

A malicious actor with access to the network and under certain conditions could exploit an Incorrect Authorization vulnerability found in UniFi Network App

02 Jul 2026, 14:50 UTC View advisory →
CVE-2026-56841 High 8.8

A malicious actor with access to the network and low privileges could exploit an authenticated SQL Injection vulnerability found in UniFi Protect Applicati

02 Jul 2026, 14:50 UTC View advisory →
CVE-2026-56823 Medium 5.4

AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to , the `POST /api/integr

26 Jun 2026, 16:02 UTC View advisory →
CVE-2026-56815 High 7.4

pwnlift before d7a9544, in a privileged deployment, contains a symlink following vulnerability in the upload handler in Components/Pages/Home.razor.

23 Jun 2026, 13:57 UTC View advisory →
CVE-2026-56814 Medium 6.9

Plug.Parsers.MULTIPART, the multipart request-body parser used to handle file uploads and multipart forms, does not enforce its :length budget against all

10 Jul 2026, 11:14 UTC View advisory →
CVE-2026-56813 Low 2.1

Improper Neutralization of Parameter/Argument Delimiters vulnerability in elixir-plug plug allows an attacker to inject or override HTTP cookie attributes.

10 Jul 2026, 12:51 UTC View advisory →
CVE-2026-56812 Medium 6.3

Improper Check for Unusual or Exceptional Conditions vulnerability in phoenixframework phoenix (Presence JavaScript client) allows an attacker with ordinar

07 Jul 2026, 15:22 UTC View advisory →
CVE-2026-56811 High 8.7

Allocation of Resources Without Limits or Throttling vulnerability in phoenixframework phoenix (Phoenix.Socket module) allows an unauthenticated attacker t

07 Jul 2026, 15:09 UTC View advisory →
CVE-2026-56790 High 7

CANBoat through 6.22, fixed in commit a5a22b7, contains an off-by-one global buffer overflow in the searchForPgn() function in analyzer/pgn.c that allows r

25 Jun 2026, 18:14 UTC View advisory →
CVE-2026-56789 High 7.1

RTKLIB through 2.4.3 contains a heap buffer overflow vulnerability in the readrnxobsb function in src/rinex.c that allows attackers to trigger memory corru

25 Jun 2026, 18:14 UTC View advisory →
CVE-2026-56788 Medium 4.8

RTKLIB through 2.4.3 contains an out-of-bounds read vulnerability in getcodepri function when processing unrecognized RINEX observation codes, allowing att

25 Jun 2026, 18:13 UTC View advisory →
CVE-2026-56787 Medium 6.9

RTKLIB through 2.4.3 contains an off-by-one out-of-bounds read vulnerability in the decode_ssr3 function at src/rtcm3.c:1446 that allows remote attackers t

25 Jun 2026, 18:12 UTC View advisory →
CVE-2026-56786 Critical 9.3

RTKLIB through 2.4.3 contains an out-of-bounds write vulnerability in decode_type1033 function that fails to clamp length counters to destination buffer si

25 Jun 2026, 18:11 UTC View advisory →
CVE-2026-56785 High 8.4

FlatPress versions prior to commit 10be83c, contains a stored cross-site scripting vulnerability in comment and contact forms where name, URL, and email fi

23 Jun 2026, 22:09 UTC View advisory →
CVE-2026-56784 High 8.6

OpenRemote before 1.25.0 contains an insecure direct object reference (IDOR) vulnerability in the bulk alarm deletion endpoint that allows authenticated us

23 Jun 2026, 12:13 UTC View advisory →
CVE-2026-56783 High 7.1

Parseable before 2.9.2 contains an information disclosure vulnerability in the notification-target API endpoints that returns webhook tokens and basic-auth

29 Jun 2026, 17:16 UTC View advisory →
CVE-2026-56782 Critical 9.3

Gorse before 0.5.10 contains an authentication bypass vulnerability in the /api/dump and /api/restore endpoints that allows unauthenticated attackers to ac

29 Jun 2026, 17:16 UTC View advisory →
CVE-2026-56781 Medium 6.9

Teable before 2026-06-15T04-43-24Z.1912 contains an improper access control vulnerability that allows anonymous attackers to access hidden field data by su

29 Jun 2026, 17:15 UTC View advisory →
CVE-2026-56780 High 7.7

Modoboa before 2.9.0 contains an insecure direct object reference vulnerability in the PUT /api/v1/accounts/{pk}/password/ endpoint that allows domain admi

29 Jun 2026, 17:14 UTC View advisory →
CVE-2026-56779 Medium 5.3

MaxKB before 2.10.0 contains a server-side request forgery vulnerability in tool creation and update endpoints that allows authenticated users to make arbi

25 Jun 2026, 18:11 UTC View advisory →
CVE-2026-56778 Medium 5.3

n8n before 2.25.7 and 2.26.x before 2.26.2 contains an authorization bypass in the Public API execution retry endpoint, which authorizes access using the w

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-56777 Medium 5.3

n8n before 2.25.7 and 2.26.x before 2.26.2 contains an abstract syntax tree (AST) security validator bypass in the Python Code node. An authenticated user

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56776 Medium 5.3

n8n before 1.123.55, 2.25.7, and 2.26.2 contains an authorization bypass in the POST /workflows/{workflowId}/test-runs/new endpoint, which authorizes acces

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-56775 Medium 5.3

n8n before 1.123.55, 2.25.7, and 2.26.2 contains an authorization vulnerability in three mutating evaluation test-run endpoints that authorize state-changi

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-56774 Medium 5.3

Kanboard through 1.2.52, fixed in commit 928c68a, UserViewController::removeSession fails to validate the session id parameter before passing it to Remembe

25 Jun 2026, 18:10 UTC View advisory →
CVE-2026-56773 High 8.7

Teable's v2 REST API controller lacks @Permissions metadata on ORPC endpoints, allowing any authenticated user to bypass authorization checks. Attackers ca

26 Jun 2026, 14:38 UTC View advisory →
CVE-2026-56772 Medium 5.3

NewsBlur before 14.5.0 contains a broken access control vulnerability that allows authenticated users to read private notification feeds by supplying arbit

25 Jun 2026, 18:08 UTC View advisory →
CVE-2026-56771 Medium 6.3

NewsBlur before version 14.5.0 contains a server-side request forgery vulnerability in the add_url endpoint that allows authenticated users to make arbitra

25 Jun 2026, 18:07 UTC View advisory →
CVE-2026-56770 High 8.7

libais through 0.15 VdmStream::AddLine uses an unchecked sentinel value as a vector index when processing AIS sentences with empty or out-of-range sequenti

25 Jun 2026, 18:06 UTC View advisory →
CVE-2026-56769 Medium 6.3

Huly Platform through 0.7.423, fixed in commit 68cbf8a contains an authenticated server-side request forgery vulnerability in the /import endpoint of front

25 Jun 2026, 18:05 UTC View advisory →
CVE-2026-56768 High 8.7

Seahub before 13.0.23 does not enforce SHARE_LINK_LOGIN_REQUIRED on GET /api/v2.1/share-link-zip-task/, allowing unauthenticated users to bypass authentica

25 Jun 2026, 18:05 UTC View advisory →
CVE-2026-56767 High 8.7

Maxun before 0.0.42 contains a cross-tenant insecure direct object reference vulnerability in storage and webhook API handlers that allows authenticated us

25 Jun 2026, 18:03 UTC View advisory →
CVE-2026-56766 High 8.6

Hydra through 9.7, fixed in commit 9cc84c2, contains a stack buffer overflow in NTLM authentication across SMTP, POP3, IMAP, NNTP, HTTP, HTTP-Proxy, and HT

25 Jun 2026, 18:01 UTC View advisory →
CVE-2026-56765 Critical 9.3

Vikunja before 2.2.1 contains an authorization flaw where the LinkSharing.ReadAll endpoint exposes share hashes to users with read access, enabling permiss

10 Jul 2026, 13:57 UTC View advisory →
CVE-2026-56764 Medium 6.3

Hono before 4.11.10 contains a timing attack vulnerability in the basicAuth and bearerAuth middlewares due to non-constant-time string comparison in the ti

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-56763 Medium 6.3

Hono before 4.12.7 allows __proto__ key in parseBody with dot option enabled, permitting specially crafted form field names to create objects with __proto_

11 Jul 2026, 13:00 UTC View advisory →
CVE-2026-56762 Medium 6.9

Hono before 4.12.12 does not validate cookie names on the write path in the setCookie(), serialize(), and serializeSigned() functions, allowing invalid cha

23 Jun 2026, 12:13 UTC View advisory →
CVE-2026-56761 Medium 5.3

hono before 4.12.14 contains an html injection vulnerability in jsx server-side rendering that allows attackers to inject unintended html by using malforme

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56758 Medium 6.9

The ACSE layer contains a flaw in the processing of AARQ PDUs during MMS connection establishment. When parsing certain fields within the calling AP title,

30 Jul 2026, 22:29 UTC View advisory →
CVE-2026-56748 High 8.7

Improper validation of symbolic links in the Pack Git import feature in Cribl Stream before 4.18.2 allows a remote authenticated attacker with Pack import

27 Jul 2026, 19:27 UTC View advisory →
CVE-2026-56747 High 8.7

Improper control of generation of code in the JSON Pointer-to-accessor compiler in Cribl Stream before 4.18.2 allows a remote authenticated attacker with e

27 Jul 2026, 19:22 UTC View advisory →
CVE-2026-56743 Medium 5.4

Cilium is a networking, observability, and security solution. From 1.19.0 to 1.19.4, standard Kubernetes NetworkPolicy specifications using CIDR-based ipBl

15 Jul 2026, 19:15 UTC View advisory →
CVE-2026-56742 Medium 5.9

Cilium is a networking, observability, and security solution. Prior to 1.17.17, 1.18.11, and 1.19.5, Cilium clusters using Gateway API allow users with per

15 Jul 2026, 19:14 UTC View advisory →
CVE-2026-56741 High 7.5

JLine is a Java library for handling console input. Prior to 3.30.14, 4.0.16, and 4.2.1, the JLine3 Telnet server remote-telnet module does not apply an up

17 Jul 2026, 21:15 UTC View advisory →
CVE-2026-56740 High 7.5

JLine is a Java library for handling console input. Prior to 3.30.14, 4.0.16, and 4.2.1, the JLine3 Telnet server remote-telnet module does not limit the n

17 Jul 2026, 21:17 UTC View advisory →
CVE-2026-56701 High 7.1

Grav before 2.0.0-beta.2 contains an XML external entity injection vulnerability in SVG file upload processing that allows authenticated attackers to read

23 Jun 2026, 12:13 UTC View advisory →
CVE-2026-56700 Critical 9.3

Grav CMS before 2.0.0-beta.2 contains multiple code-execution vulnerabilities. Three unsafe unserialize() calls - in Scheduler\JobQueue, Framework\Cache\Ad

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56699 Critical 10

Wazuh Manager before 5.0.0-beta3 fails to escape the DataValue.index field when constructing OpenSearch bulk requests, allowing enrolled agents to inject a

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-56698 Medium 5.3

Nuxt versions 4.0.0 before 4.4.7 and 3.x before 3.21.7 fail to validate script-capable URLs in the navigateTo open option, allowing client-side script exec

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56697 Medium 5.3

Nuxt versions 4.0.0 before 4.4.7 and 3.x before 3.21.7 accept protocol-relative paths such as //evil.com in the reloadNuxtApp function; these pass the scri

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56696 Medium 5.3

OpenHarness /issue and /pr_comments slash commands lack remote_invocable=False protection, allowing remote channel senders to write attacker-controlled Mar

23 Jun 2026, 15:36 UTC View advisory →
CVE-2026-56695 High 7.1

OpenHarness ohmo gateway /resume and /summary slash commands default remote_invocable to True, allowing admitted remote senders to enumerate and load arbit

23 Jun 2026, 15:36 UTC View advisory →
CVE-2026-56694 Medium 5.3

NanoClaw before 2.1.0 contains a privilege escalation vulnerability in the channel-registration approval flow where handleChannelApprovalResponse fails to

23 Jun 2026, 15:35 UTC View advisory →
CVE-2026-56693 Medium 6.8

NanoClaw before 2.1.17 contains a privilege escalation vulnerability in the create_agent delivery-action handler that performs privileged central-database

23 Jun 2026, 15:35 UTC View advisory →
CVE-2026-56692 Medium 6.8

NanoClaw before 2.1.17 contains a symlink following vulnerability in forwardAttachedFiles that allows container-controlled agents to exfiltrate host-readab

23 Jun 2026, 15:34 UTC View advisory →
CVE-2026-56690 High 8.5

Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulner

10 Jul 2026, 11:43 UTC View advisory →
CVE-2026-56689 High 7.7

Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulner

10 Jul 2026, 11:51 UTC View advisory →
CVE-2026-56688 Critical 9.1

Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

10 Jul 2026, 11:57 UTC View advisory →
CVE-2026-56687 High 7.8

Dell ThinOS 10, versions prior to 2605_10.2100, contain an Obsolete Feature in UI vulnerability. A low privileged attacker with local access could potentia

15 Jul 2026, 17:33 UTC View advisory →
CVE-2026-56679 High 8.7

9Router is an AI router & token saver. Prior to 0.5.4, the PATCH /api/settings endpoint writes the entire request body to persistent settings without a fie

15 Jul 2026, 20:50 UTC View advisory →
CVE-2026-56678 Medium 6.4

9Router is an AI router & token saver. Prior to 0.5.6, the Kiro API-key validation endpoint POST /api/oauth/kiro/api-key builds an upstream URL using a use

15 Jul 2026, 20:51 UTC View advisory →
CVE-2026-56676 High 7.4

9Router is an AI router & token saver. Prior to 0.5.2, 9router validates image URLs by resolving the host before fetching, but open-sse/translator/concerns

10 Jul 2026, 15:30 UTC View advisory →
CVE-2026-56675 High 8.3

9Router is an AI router & token saver. Prior to 0.5.2, 9router treats loopback requests as trusted and allows /v1/* access without an API key, so a same-ho

10 Jul 2026, 15:39 UTC View advisory →
CVE-2026-56673 High 7.5

ComfyUI is a modular diffusion model GUI, API, and backend with a graph-and-node interface. Prior to 0.28.0, folder_paths.get_annotated_filepath and exists

31 Jul 2026, 04:46 UTC View advisory →
CVE-2026-56672 High 8.2

ComfyUI is a node-based diffusion model GUI, API, and backend. Prior to 0.28.0, GET /userdata/{file} served user-controlled HTML and SVG files with extensi

31 Jul 2026, 04:27 UTC View advisory →
CVE-2026-56671 High 7.5

ComfyUI is a modular diffusion model GUI, api and backend with a graph/nodes interface. Prior to 0.28.0, get_model_preview in app/model_manager.py joins an

31 Jul 2026, 04:21 UTC View advisory →
CVE-2026-56670 High 8.2

ComfyUI is a modular diffusion model GUI, api and backend with a graph/nodes interface. Prior to 0.28.0, the /view endpoint served uploaded SVG files inlin

31 Jul 2026, 04:17 UTC View advisory →
CVE-2026-56669 High 7.5

Elysia is a Typescript framework for request validation, type inference, OpenAPI documentation, and client-server communication. Prior to 1.4.29, Elysia us

08 Jul 2026, 20:25 UTC View advisory →
CVE-2026-56668 High 8.1

ZITADEL is an open source identity management platform. Prior to 4.15.3, ZITADEL's OAuth2 Token Exchange endpoint for urn:ietf:params:oauth:grant-type:toke

10 Jul 2026, 17:46 UTC View advisory →
CVE-2026-56667 High 7.3

ZITADEL is an open source identity management platform. Prior to 4.15.3, ZITADEL Login V2 OIDC and SAML FailedPrecondition error paths return loginSettings

10 Jul 2026, 17:25 UTC View advisory →
CVE-2026-56666 Medium 4.8

ZITADEL is an open source identity management platform. Prior to 4.15.3, ZITADEL's external identity provider handler checks that the local user's email is

10 Jul 2026, 17:37 UTC View advisory →
CVE-2026-56665 Medium 4.2

ZITADEL is an open source identity management platform. Prior to 3.4.12 and 4.15.2, ZITADEL is an open source identity management platform. From 3.0.0-rc.1

10 Jul 2026, 17:22 UTC View advisory →
CVE-2026-56664 Medium 4.2

ZITADEL is an open source identity management platform. Prior to 3.4.12 and 4.15.2, ZITADEL's external JWT Identity Provider validation in internal/idp/pro

10 Jul 2026, 17:21 UTC View advisory →
CVE-2026-56663 High 8.5

AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.52, an authenticate

26 Jun 2026, 16:04 UTC View advisory →
CVE-2026-56650 High 7.8

Heap-based buffer overflow in Windows Network File System allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56649 Medium 5.9

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Network File System allows an unauthorized attacker

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56648 High 7.5

Time-of-check time-of-use (toctou) race condition in Windows Network File System allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56647 High 8.8

Integer overflow or wraparound in Windows Remote Access Service Infrastructure allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56644 High 7.8

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56643 High 7.8

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56642 High 8.8

Stack-based buffer overflow in Microsoft Fabric Data Warehouse allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56624 High 7.3

Improper certificate validation in Apache MINA SSHD (server-side). Apache MINA SSHD is a Java library for client-side and server-side SSH. Server-side Open

20 Jul 2026, 20:28 UTC View advisory →
CVE-2026-56623 High 7.1

Path traversal on Windows in Apache MINA SSHD component sshd-git. Apache MINA SSHD is a Java library for client-side and server-side SSH. A git server impl

20 Jul 2026, 20:29 UTC View advisory →
CVE-2026-56609 Medium 4.8

HCL iControl is affected by Weak SSL/TLS Version Supported vulnerability. It was observed that the application was using weak TLS versions such as TLS 1.0

03 Aug 2026, 11:26 UTC View advisory →
CVE-2026-56608 Low 3.7

HCL iControl is affected by Missing Access Control vulnerability. The application failed to enforce proper granular access controls, allowing users to acce

03 Aug 2026, 11:25 UTC View advisory →
CVE-2026-56571 Low 3.7

HCL iControl was affected by Improper Error Handling vulnerabilities. It involves Out of memory, null pointer exceptions, system call failure, database una

31 Jul 2026, 15:13 UTC View advisory →
CVE-2026-56570 Low 3.7

HCL iControl was affected by Auto complete Enabled vulnerabilities. It involves expose sensitive information such as: Valid usernames, Email addresses used

31 Jul 2026, 14:59 UTC View advisory →
CVE-2026-56569 Medium 4

HCL iControl was affected by Sensitive Data Exposure vulnerabilities. It involves the public exposure of internal configuration files due to improper web s

31 Jul 2026, 14:57 UTC View advisory →
CVE-2026-56568 Low 3.7

HCL iControl was affected by Information Exposure Through Verbose Client-Side API Error Messages vulnerabilities. It involves application displays raw serv

31 Jul 2026, 14:54 UTC View advisory →
CVE-2026-56567 Medium 5.1

HCL iControl v4.3.0 was affected by Security Misconfiguration vulnerabilities. It involves the public exposure of internal configuration files due to impro

31 Jul 2026, 14:52 UTC View advisory →
CVE-2026-56538 Low 3.5

An endpoint in HCL Connections is vulnerable to information disclosure. In certain scenarios this might lead to disclosing sensitive information to unautho

27 Jul 2026, 11:55 UTC View advisory →
CVE-2026-56537 Low 3.5

HCL Connections is vulnerable to information disclosure which could allow a user to obtain sensitive information they are not entitled to, caused by improp

27 Jul 2026, 11:51 UTC View advisory →
CVE-2026-56457 Medium 4.3

HCL DevOps Deploy / HCL Launch is susceptible to an exposure of sensitive information vulnerability in output logs. This exposure could allow an attacker w

29 Jun 2026, 13:18 UTC View advisory →
CVE-2026-56456 Medium 5.3

HCL DFXAnalytics is affected by an Internal File Path Disclosure vulnerability. The application dashboard inadvertently leaks sensitive information regardi

16 Jul 2026, 13:15 UTC View advisory →
CVE-2026-56455 Medium 5.3

HCL DFXAnalytics is affected by a Buffer Overflow vulnerability that can lead to a Denial of Service (DoS). The application fails to properly validate inpu

16 Jul 2026, 13:13 UTC View advisory →
CVE-2026-56454 Medium 5.9

HCL DFXAnalytics is affected by a Deprecated Protocol vulnerability due to the use of TLS 1.0 and TLS 1.1. These legacy protocols contain numerous cryptogr

16 Jul 2026, 13:08 UTC View advisory →
CVE-2026-56453 Medium 5.5

HCL DFXAnalytics is affected by an Account Takeover via Response Manipulation vulnerability. A remote attacker can intercept and alter the contents of the

16 Jul 2026, 13:06 UTC View advisory →
CVE-2026-56452 High 7.5

Path traversal in the sshd-scp component of Apache MINA SSHD. Apache MINA SSHD is a Java library for client-side and server-side SSH. The implementation of

20 Jul 2026, 20:26 UTC View advisory →
CVE-2026-56451 Critical 10

A vulnerability has been identified in Opcenter X (All versions < V2604). Affected applications do not properly validate the algorithm specified in the JSO

14 Jul 2026, 09:19 UTC View advisory →
CVE-2026-56450 Medium 5.1

AIL did not restrict repeated failed attempts to verify a two-factor authentication (OTP) code. An attacker who had reached the 2FA verification step, such

22 Jun 2026, 13:02 UTC View advisory →
CVE-2026-56448 High 8.3

A path traversal vulnerability exists in AIL Framework before the release containing commit 0041456af25da0cdea1c1c4624e46baff2731d8f. An authenticated AIL

22 Jun 2026, 12:54 UTC View advisory →
CVE-2026-56447 Critical 9.3

MISP allowed an authenticated site administrator to set the Kafka_rdkafka_config setting to an arbitrary filesystem path. MISP subsequently parsed the refe

22 Jun 2026, 12:39 UTC View advisory →
CVE-2026-56446 High 8.7

MISP allowed a site administrator to configure an arbitrary filesystem path for the NDJSON error log used by JsonLogTool. Because log entries can include a

22 Jun 2026, 12:31 UTC View advisory →
CVE-2026-56445 High 8.8

The qrscp application's C-STORE handler uses a specific instance from attacker-supplied DICOM datasets directly in os.path.join() without sanitization, all

25 Jun 2026, 20:46 UTC View advisory →
CVE-2026-56444 Medium 5.9

In NLnet Labs Unbound 1.20.0 up to and including 1.25.1, when Unbound is configured with 'serve-expired: yes' and 'serve-expired-client-timeout > discard-t

22 Jul 2026, 13:10 UTC View advisory →
CVE-2026-56437 High 8.4

Uncontrolled search path element issue exists in Pupsman versions prior to 3.9.0. If a crafted DLL file is placed in the same folder as the affected instal

08 Jul 2026, 04:38 UTC View advisory →
CVE-2026-56434 High 8.3

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_ssi_module module. This vulnerability may exist when the Server-Side Includes (SSI),

15 Jul 2026, 14:33 UTC View advisory →
CVE-2026-56428 High 8.1

The SSH service on BSH ELP (Electronic Platform) modules contains a platform-specific vulnerability due to an improperly secured default configuration. An

30 Jul 2026, 13:11 UTC View advisory →
CVE-2026-56425 Critical 9.3

The Azure Active Directory (AAD) authentication implementation contained multiple weaknesses in its OAuth 2.0 authorization flow that could allow attackers

22 Jun 2026, 12:25 UTC View advisory →
CVE-2026-56424 High 7.1

MISP core contained multiple broken access-control flaws where authorization checks were performed against the wrong entity, or where ownership/editability

22 Jun 2026, 12:17 UTC View advisory →
CVE-2026-56423 Critical 9.4

MISP Core contained broken access-control checks in the bulk deletion flows for Event Reports and Sharing Groups. The affected deleteSelection handlers aut

22 Jun 2026, 11:56 UTC View advisory →
CVE-2026-56422 Critical 9.4

Multiple MISP core controllers and model capture paths accepted client-controlled request fields such as primary keys (id) and ownership/scope foreign keys

22 Jun 2026, 11:43 UTC View advisory →
CVE-2026-56416 Medium 4.8

In NLnet Labs Unbound up to and including version 1.25.1, when the validator builds the canonical RDATA form for an RRSIG-covered PX/RP/MINFO/SOA RRset, it

22 Jul 2026, 13:10 UTC View advisory →
CVE-2026-56415 Critical 10

Storage Concentrator (SC & SCVM) contains a command injection vulnerability within the debug.pl script that is reachable without authentication. A remote a

30 Jun 2026, 22:40 UTC View advisory →
CVE-2026-56414 High 8.6

A vulnerability exists in H.View IP cameras certificate-related upload interfaces allow authenticated users to store arbitrary file content to fixed, persi

26 Jun 2026, 23:00 UTC View advisory →
CVE-2026-56413 Critical 10

Storage Concentrator (SC & SCVM) contains a command injection vulnerability in the ms_service.pl service, which listens on TCP port 9000 by default and acc

30 Jun 2026, 22:50 UTC View advisory →
CVE-2026-56412 Medium 4.9

libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking for various calls from within handl

21 Jun 2026, 15:58 UTC View advisory →
CVE-2026-56411 Medium 6.9

xmlwf in libexpat before 2.8.2 has an integer overflow in endDoctypeDecl via NOTATION declarations.

21 Jun 2026, 15:56 UTC View advisory →
CVE-2026-56410 Medium 6.9

xmlwf in libexpat before 2.8.2 has an integer overflow in resolveSystemId.

21 Jun 2026, 15:55 UTC View advisory →
CVE-2026-56409 Medium 6.5

xmlwf in libexpat before 2.8.2 has an integer overflow for the output filename when -d outputDir is used.

21 Jun 2026, 15:52 UTC View advisory →
CVE-2026-56408 Medium 6.9

libexpat before 2.8.2 has an integer overflow in copyString.

21 Jun 2026, 15:51 UTC View advisory →
CVE-2026-56407 Medium 6.9

libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen.

21 Jun 2026, 15:49 UTC View advisory →
CVE-2026-56406 Medium 6.9

libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse.

21 Jun 2026, 15:48 UTC View advisory →
CVE-2026-56405 Medium 6.9

libexpat before 2.8.2 has an integer overflow in getAttributeId.

21 Jun 2026, 15:47 UTC View advisory →
CVE-2026-56404 Medium 6.9

libexpat before 2.8.2 has an integer overflow in addBinding.

21 Jun 2026, 15:45 UTC View advisory →
CVE-2026-56403 Medium 6.9

libexpat before 2.8.2 has an integer overflow in storeAtts.

21 Jun 2026, 15:43 UTC View advisory →
CVE-2026-56402 High 7.1

NanoClaw before 2.1.17 contains a privilege escalation vulnerability in the handleApprovalsResponse function that fails to verify responder role authorizat

23 Jun 2026, 15:34 UTC View advisory →
CVE-2026-56401 High 7.1

Wazuh wazuh-modulesd before 5.0.0-beta3 contains a null pointer dereference vulnerability in inventory_sync FlatBuffer DataValue handling. An enrolled agen

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-56400 Critical 9

open-webui before 0.3.14 contains a cross-origin resource sharing misconfiguration allowing arbitrary origins with allow_origins=* and authenticated reques

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-56399 Medium 5.3

Open WebUI before 0.6.27 contains a server-side request forgery vulnerability in the /api/v1/retrieval/process/web endpoint that allows authenticated users

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56398 High 8.5

Open WebUI before 0.9.5 contains a stored cross-site scripting vulnerability in the OAuth authentication flow where the picture claim URL MIME type is infe

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-56379 None 0

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawi

23 Jun 2026, 12:13 UTC View advisory →
CVE-2026-56377 Medium 4.8

ImageMagick before 7.1.2-24 contains an incorrect policy check that allows attackers to create or truncate files disallowed by security policies. Remote at

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56376 Medium 6.3

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a heap use-after-free in the meta coder: when memory allocation fails, a single byte is written to a sta

23 Jun 2026, 12:13 UTC View advisory →
CVE-2026-56375 Medium 4.8

ImageMagick through 7.1.2-18 contains a memory leak vulnerability in the ASHLAR coder when an action fails. Attackers can trigger failed actions to exhaust

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-56374 Medium 4.8

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the FTXT encoder due to missing boundary checks when parsing ftxt:format. Remo

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-56373 Medium 6.3

ImageMagick before 7.1.2-15 contains a use-after-free vulnerability in the PDB decoder that uses a stale pointer when memory allocation fails. Attackers ca

10 Jul 2026, 13:57 UTC View advisory →
CVE-2026-56372 Medium 4.8

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the magnify operation that allows attackers to read out of bounds memory. An u

11 Jul 2026, 13:00 UTC View advisory →
CVE-2026-56371 None 0

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a memory leak in coders/txt.c when processing TXT files with texture attributes: the texture object allo

23 Jun 2026, 12:13 UTC View advisory →
CVE-2026-56370 Medium 4.8

ImageMagick before 7.1.2-19 contains an out-of-bounds access vulnerability in ConnectedComponentsImage() when processing connected-components artifacts wit

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56369 Medium 6.3

ImageMagick before 7.1.2-22 contains an information disclosure vulnerability in the PasskeyEncipherImage method due to AES-CTR nonce reuse. Attackers can e

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56368 Medium 6.3

ImageMagick before 7.1.2-15 contains a memory leak vulnerability in multiple coders that write raw pixel data where allocated objects are not properly free

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56366 Medium 4.8

ImageMagick before 7.1.2-18 contains a memory leak vulnerability in the META reader when processing APP1JPEG input paths. Attackers can trigger this memory

10 Jul 2026, 13:57 UTC View advisory →
CVE-2026-56365 Medium 6.3

ImageMagick before 7.1.2-19 contains a memory leak vulnerability in the PNG encoder when writing MNG images. Attackers can trigger the encoder failure cond

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56364 Low 1.8

ImageMagick before 7.1.2-13 contains a memory leak vulnerability in LoadOpenCLDeviceBenchmark() function when parsing malformed OpenCL device profile XML f

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56363 Medium 4.8

ImageMagick before 7.1.2-22 contains a division by zero vulnerability in binomial kernel processing that allows attackers to cause denial of service. An at

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56362 Low 2.1

ImageMagick before 7.1.2-15 contains a heap-buffer-overflow read vulnerability in GetPixelIndex caused by OpenPixelCache updating image channel metadata be

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-56361 Medium 4.8

ImageMagick before 7.1.2-19 contains an off-by-one error in morphology validation allowing out-of-bounds heap buffer reads. Attackers can trigger heap buff

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56360 Medium 6.3

n8n before versions 1.123.18 and 2.6.2 fails to verify HMAC-SHA256 signatures on Zendesk webhooks in the ZendeskTrigger node. Attackers who know the webhoo

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-56359 Medium 4.8

n8n before 2.8.0 contains a cross-site scripting vulnerability in the credential management flow where authenticated users can inject malicious JavaScript

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-56358 Medium 5.1

n8n before 1.123.25 (1.x) and before 2.11.2 (2.x), with the fix also included in 2.12.0, contains a stored cross-site scripting vulnerability in the Form T

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56357 Medium 6.3

n8n before 1.123.15 and 2.5.0 contains a webhook forgery vulnerability in the GitHub Webhook Trigger node that fails to implement HMAC-SHA256 signature ver

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56356 Medium 5.1

n8n contains a stored cross-site scripting vulnerability in the Chat Trigger node's Custom CSS field due to a misconfiguration of the sanitize-html library

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56354 Medium 5.1

n8n before 1.123.24, 2.10.4, and 2.12.0 (across its 1.x and 2.x branches) contains cross-site scripting and open redirect vulnerabilities in the Form Node

10 Jul 2026, 13:57 UTC View advisory →
CVE-2026-56353 Medium 6.3

n8n contains an authentication bypass in the Chat Trigger node when configured with n8n User Auth (a non-default configuration). In affected releases — bef

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-56352 Medium 5.3

n8n before 2.19.3 contains a file path restriction bypass in the legacy ExecuteWorkflow node's localFile source option, which reads workflow files from dis

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-56351 Medium 5.3

n8n before version 2.4.0 contains a sql injection vulnerability in MySQL, PostgreSQL, and Microsoft SQL nodes that allows authenticated users to inject arb

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56350 Medium 6

n8n before 2.8.0 contains an authentication bypass vulnerability allowing authenticated SSO users to disable SSO enforcement through the API. Attackers can

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56349 Medium 6.3

n8n before version 2.10.0 contains an input validation vulnerability in the Guardrail node that allows attackers to bypass default guardrail instructions.

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-56348 Medium 5.3

n8n before 2.20.0 contains a credential exfiltration vulnerability in the POST /rest/dynamic-node-parameters/options endpoint that allows authenticated use

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56339 High 8.7

Capgo (Cap-go/capgo) before 12.128.2 contains an information disclosure vulnerability in the Supabase PostgREST SECURITY DEFINER RPC function public.rescin

15 Jul 2026, 11:25 UTC View advisory →
CVE-2026-56338 Medium 6.9

Capgo before 12.128.2 contains a denial of service vulnerability in the /auth/v1/otp endpoint that prevents email verification for two-factor authenticatio

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56337 Medium 6.9

Capgo before 12.128.2 contains an information disclosure vulnerability in the public.exist_app_v2 RPC function that allows unauthenticated attackers to enu

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56335 High 7.1

Capgo before 12.128.2 contains an authorization bypass vulnerability where write-scoped API keys can directly mutate protected channel configuration fields

10 Jul 2026, 13:57 UTC View advisory →
CVE-2026-56334 Medium 5.3

Capgo before 12.128.2 lacks an UPDATE row-level security policy for the build_requests table, preventing API-key and anonymous access from persisting build

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56333 Medium 5.3

Capgo before 12.128.2 contains a server-side validation bypass vulnerability in organization security settings that allows authenticated org admins to pers

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56331 Medium 6.9

Capgo before 12.128.2 contains improper error handling in the /private/accept_invitation endpoint that returns HTTP 500 instead of safe 4xx errors when mag

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56329 Medium 5.3

Capgo before 12.128.2 contains a cross-tenant preview namespace collision vulnerability caused by non-bijective decoding of double underscores to dots in p

10 Jul 2026, 13:57 UTC View advisory →
CVE-2026-56328 High 7.1

Capgo before 12.128.2 allows multiple public channels for the same app and platform to coexist simultaneously, while unnamed /updates requests without defa

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56327 Medium 6.9

Capgo before 12.128.2 contains an information disclosure vulnerability in the public.invite_user_to_org RPC function that allows unauthenticated attackers

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56326 Medium 5.3

Nuxt versions 4.0.0 before 4.4.7 and 3.x before 3.21.7 contain a server-side open redirect vulnerability in navigateTo that fails to properly validate path

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56324 High 8.8

Capgo before 12.128.2 contains a rate limit bypass vulnerability in the channel_self endpoint that allows attackers to circumvent rate limiting by rotating

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56323 High 8.7

Capgo before 12.128.2 contains an information disclosure vulnerability in the /functions/v1/channel_self endpoint that allows unauthenticated attackers to

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56322 High 8.7

Capgo before 12.128.2 contains an information disclosure vulnerability in the unauthenticated /updates endpoint that resolves the defaultChannel parameter

23 Jun 2026, 12:13 UTC View advisory →
CVE-2026-56321 Medium 6.9

Capgo (backend Supabase edge functions) before 12.128.2 does not apply the global authentication middleware to the GET /private/role_bindings/:org_id endpo

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56320 High 7.1

Capgo before 12.128.2 contains an authorization flaw in POST /private/create_device that accepts a caller-supplied org_id parameter without validating it m

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56318 Medium 6.9

Capgo before 12.128.2 contains an information disclosure vulnerability in the /private/validate_password_compliance endpoint that returns different error r

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56315 Critical 9.3

picklescan before 1.0.4 fails to block at least seven Python standard library modules (including uuid, _osx_support, _aix_support, _pyrepl.pager, and imapl

23 Jun 2026, 12:13 UTC View advisory →
CVE-2026-56314 High 7.1

Capgo before 12.128.12 fails to filter deleted app versions when joining channels during /updates resolution, allowing deleted bundles to remain selectable

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56312 Medium 6.9

Capgo before 12.128.2 contains an improper validation vulnerability in the accept_invitation endpoint that creates user accounts before captcha validation

10 Jul 2026, 13:57 UTC View advisory →
CVE-2026-56311 Medium 6.9

Capgo before 12.128.2 contains an authorization bypass vulnerability in the public.get_current_plan_max_org RPC function that allows unauthenticated attack

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56310 Medium 5.3

Cap-go before 12.128.2 contains an authorization bypass vulnerability in the GET /organization/members endpoint that allows org-limited API keys to bypass

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56309 Medium 5.3

Capgo before 12.128.2 fails to enforce plan/quota restrictions on the /files/upload/attachments endpoint, allowing plan-blocked apps to create publicly rea

10 Jul 2026, 13:57 UTC View advisory →
CVE-2026-56306 Medium 5.3

Capgo before 12.128.2 contains a weak parsing vulnerability in the x-limited-key-id header that allows attackers to bypass subkey enforcement by submitting

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56305 High 8.7

Capgo before 12.128.2 contains an authentication bypass vulnerability in the password change endpoint that allows attackers to change user passwords withou

10 Jul 2026, 13:57 UTC View advisory →
CVE-2026-56303 High 8.7

Capgo before 12.128.2 contains an information disclosure vulnerability in the find_apikey_by_value PostgreSQL function marked SECURITY DEFINER and executab

11 Jul 2026, 13:00 UTC View advisory →
CVE-2026-56302 Medium 6.9

Capgo before 12.128.2 contains an unsecured images bucket lacking any row level security controls, allowing unauthenticated attackers to read, insert, and

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56301 Medium 6.8

Nuxt 4.0.0 before 4.4.7 and 3.18.0 before 3.21.7, when running the development server (nuxt dev) on Linux, binds the vite-node IPC server to an abstract-na

23 Jun 2026, 12:13 UTC View advisory →
CVE-2026-56300 High 8.7

Capgo before 12.128.2 contains unauthenticated security definer RPC functions get_user_id and get_org_perm_for_apikey that expose API key validity oracles

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56298 Medium 5.3

Capgo before 12.128.2 fails to strip EXIF metadata from images uploaded via the app information endpoint, exposing sensitive geolocation data. Attackers ca

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-56297 High 8.3

FreeRDP before 3.22.0 contains a use-after-free vulnerability in dvcman_channel_close and dvcman_call_on_receive due to improper synchronization of channel

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-56296 Medium 6.9

Cap-go before 12.128.2 contains an information disclosure vulnerability in the public.transfer_app RPC function that returns distinct error messages for ex

11 Jul 2026, 13:00 UTC View advisory →
CVE-2026-56293 Medium 5.3

Capgo before 12.128.2 contains an authorization flaw in transfer_app() that fails to update deploy_history.owner_org when transferring applications between

08 Jul 2026, 13:49 UTC View advisory →
CVE-2026-56290 Critical 10

The Joomla extension Page Builder CK is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full RCE

29 Jun 2026, 14:31 UTC View advisory →
CVE-2026-56287 High 8.1

A boolean-based SQL Injection vulnerability exists in Apache Fineract's Client Search API (GET /api/v1/clients) in versions up to and including 1.14.0. The

15 Jul 2026, 09:19 UTC View advisory →
CVE-2026-56286 High 7

Capgo before 12.128.2 contains an authentication bypass vulnerability in the account deletion endpoint that allows deletion without password re-authenticat

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56285 High 7.7

Nitter's /video media proxy endpoint fails to validate target URLs against Twitter/X domains and uses a hardcoded default HMAC key, allowing unauthenticate

29 Jun 2026, 17:13 UTC View advisory →
CVE-2026-56284 Medium 6.9

Capgo (Cap-go/capgo) before 12.128.2 contains an information disclosure vulnerability in the Supabase PostgREST RPC function public.get_total_metrics(org_i

08 Jul 2026, 13:48 UTC View advisory →
CVE-2026-56283 Medium 4.8

Capgo before 12.128.2 contains an html injection vulnerability in the organization settings endpoint that allows attackers to inject malicious HTML content

08 Jul 2026, 13:48 UTC View advisory →
CVE-2026-56280 High 7.1

Cap-go before 12.128.2 contains a privilege inversion vulnerability in GET /build/logs/:jobId that allows read-only API key holders to cancel running nativ

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56279 High 8.7

Capgo before 12.128.2 contains an information disclosure vulnerability in the get_orgs_v7(userid) RPC function that remains publicly invokable despite inte

10 Jul 2026, 13:57 UTC View advisory →
CVE-2026-56278 Critical 9.3

Flowise before 3.1.0 (affected versions 3.0.13 and earlier) uses a weak hardcoded default secret ('flowise') for the express-session middleware when the EX

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56277 Medium 6.9

Flowise before 3.1.2 sets Access-Control-Allow-Origin to a hardcoded wildcard (*) on its text-to-speech (TTS) generation endpoint (packages/server/src/cont

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56275 Medium 6

Flowise before 3.1.0 contains a server-side request forgery vulnerability in the Execute Flow node that allows attackers to bypass security validation by p

23 Jun 2026, 12:13 UTC View advisory →
CVE-2026-56274 High 8.7

Flowise before 3.1.2 contains multiple OS command injection vulnerabilities in the Custom MCP Server feature due to incomplete command-flag validation and

23 Jun 2026, 12:13 UTC View advisory →
CVE-2026-56273 Medium 4.9

Flowise before 3.1.0 contains a path traversal vulnerability in Faiss and SimpleStore vector store implementations that accept unsanitized basePath paramet

08 Jul 2026, 13:48 UTC View advisory →
CVE-2026-56272 Medium 5.6

Flowise before 3.0.13 uses bcrypt with default salt rounds of 5, providing only 32 iterations instead of the OWASP-recommended minimum of 10 rounds. Attack

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56270 High 8.7

Flowise before 3.1.0 (versions 3.0.13 and earlier) contains a missing authentication vulnerability in the /api/v1/loginmethod endpoint that allows unauthen

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56269 Medium 4.3

Flowise before 3.1.0 (npm package flowise, versions 3.0.13 and earlier) uses a weak hardcoded default value 'Secre$t' for the TOKEN_HASH_SECRET environment

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56268 Medium 5.3

Flowise before 3.1.2 contains an information disclosure vulnerability in the /api/v1/chatflows/apikey/:apikey endpoint. When the keyonly query parameter is

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56266 Critical 9.2

Crawl4AI before 0.8.7 contains a server-side request forgery vulnerability in the /crawl, /crawl/stream, /md, and /llm endpoints that fetch arbitrary user-

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56264 Critical 9.2

Crawl4AI before 0.8.7 contains an arbitrary JavaScript execution vulnerability in the Docker API server's /execute_js endpoint, which accepts and executes

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56263 Medium 5.3

Crawl4AI before 0.8.7 contains a stored cross-site scripting vulnerability in the monitor dashboard that renders crawl URLs and error messages via innerHTM

23 Jun 2026, 12:13 UTC View advisory →
CVE-2026-56262 Medium 6.9

Crawl4AI before 0.8.7 contains an authentication bypass vulnerability in the monitor router endpoints that allows unauthenticated attackers to access destr

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56261 Critical 9.2

Crawl4AI before 0.8.7 contains a server-side request forgery (SSRF) vulnerability in the Docker API server's /crawl/job and /llm/job endpoints, which accep

10 Jul 2026, 13:57 UTC View advisory →
CVE-2026-56258 Critical 9.2

Crawl4AI before 0.8.8 contains an arbitrary file write vulnerability in the screenshot and PDF endpoints that allows unauthenticated attackers to write fil

23 Jun 2026, 12:12 UTC View advisory →
CVE-2026-56257 High 7.1

Capgo before 12.128.2 allows direct patching of public.apps.owner_org through PostgREST, bypassing the transfer_app() workflow and creating split-brain own

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56256 High 7.1

Capgo before 12.128.2 enforces mandatory two-factor authentication only at the UI level. Sensitive Organization (ORG) management API endpoints (e.g., editi

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56255 Medium 5.3

Capgo before 12.128.2 contains a denial of service vulnerability in the POST /app/demo endpoint that allows authenticated users with org write permissions

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56254 High 8.3

In @capgo/capacitor-updater (Cap-go/capgo) before 12.128.2, the end-to-end encryption scheme distributes the private key to each device that downloads the

10 Jul 2026, 13:57 UTC View advisory →
CVE-2026-56250 High 8.7

Capgo before 12.128.2 allows upload-scoped API keys to modify the mutable app_versions.r2_path field through PostgREST, enabling retargeting to arbitrary R

08 Jul 2026, 13:48 UTC View advisory →
CVE-2026-56249 High 7.2

Capgo before 12.128.2 contains an authorization bypass vulnerability in the channel creation endpoint that allows authenticated users to overwrite existing

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56248 High 8.7

Cap-go capgo (capgo-backend) before 12.128.12 contains an unauthenticated denial-of-service vulnerability arising from the audit_logs table's Row-Level Sec

23 Jun 2026, 12:12 UTC View advisory →
CVE-2026-56247 High 8.7

Capgo before 12.128.2 allows org admins to assign org-scoped RBAC roles at app scope without validating role scope compatibility, including to pending invi

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56246 High 7.2

Capgo before 12.128.2 contains a broken access control vulnerability in the organization management API where a scoped API key (limited_to_orgs) inherits i

08 Jul 2026, 13:48 UTC View advisory →
CVE-2026-56245 High 8.8

Supabase Capgo before 12.128.2 contains an authorization bypass vulnerability in the SECURITY DEFINER record_build_time RPC function that allows unauthenti

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56244 High 7.1

Capgo before 12.128.2 allows non-admin API keys to read webhook signing secrets via Supabase REST due to insufficient row-level security policies on the we

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56243 High 8.6

Capgo before 12.128.2 contains a security control bypass vulnerability where the PostgREST/RLS plane accepts plaintext API keys through the capgkey header

23 Jun 2026, 12:12 UTC View advisory →
CVE-2026-56240 Medium 5.3

Capgo before 12.128.12 contains a billing authorization bypass vulnerability in the plan_valid calculation that allows organizations with exhausted or expi

11 Jul 2026, 13:00 UTC View advisory →
CVE-2026-56237 Critical 9.3

Capgo before 12.128.2 contains a broken authentication vulnerability in its API key generation mechanism. API keys are exposed in frontend requests, and th

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56234 Medium 6.9

Capgo before 12.128.2 contains a credential validation vulnerability in the POST /functions/v1/private/validate_password_compliance endpoint that is callab

23 Jun 2026, 12:12 UTC View advisory →
CVE-2026-56233 High 8.7

Capgo before 12.128.2 contains a path traversal vulnerability in the builder upload proxy that allows authenticated users with build permissions to bypass

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56232 High 8.7

Capgo before 12.128.2 fails to enforce limited_to_orgs and limited_to_apps constraints on subkeys provided via x-limited-key-id header in middlewareKey fun

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56231 High 7.2

Capgo before 12.128.2 contains a broken object level authorization (BOLA) vulnerability in the POST /build/start/:jobId and POST /build/cancel/:jobId endpo

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56230 High 8.7

Capgo before 12.128.2 contains a broken object level authorization vulnerability in middlewareKey() that accepts the client-controlled x-limited-key-id hea

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56226 High 8.7

Capgo (Cap-go/capgo) before 12.128.2 exposes the Supabase PostgREST RPC function public.get_orgs_v6(userid uuid), which is SECURITY DEFINER and granted to

08 Jul 2026, 13:48 UTC View advisory →
CVE-2026-56225 High 8.7

Capgo before 12.128.2 contains an authorization bypass vulnerability in its public API key management handlers (get/put/delete/post). API keys created with

23 Jun 2026, 12:12 UTC View advisory →
CVE-2026-56224 Medium 5.1

Capgo console.capgo.app/login before 12.128.2 accepts access_token and refresh_token in URL query parameters, automatically authenticating users without co

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56223 Critical 9.3

Capgo before 12.128.2 contains a cross-domain SSO account takeover vulnerability in the provision-user endpoint that allows attackers to merge arbitrary vi

24 Jun 2026, 11:53 UTC View advisory →
CVE-2026-56222 High 8.6

Capgo before 12.128.2 contains an authorization bypass vulnerability in POST /private/role_bindings that fails to verify app_id ownership during app-scoped

23 Jun 2026, 12:12 UTC View advisory →
CVE-2026-56221 High 7.1

Cap-go before 12.128.2 contains multiple SQL injection vulnerabilities in cloudflare.ts where user-controlled values from API request bodies are interpolat

22 Jun 2026, 21:04 UTC View advisory →
CVE-2026-56220 High 7.1

Capgo before 12.128.2 contains an authorization bypass vulnerability in the public.manifest INSERT policy that allows read-only org members to insert OTA m

08 Jul 2026, 13:48 UTC View advisory →
CVE-2026-56219 High 8.7

Capgo before 12.128.2 contains a NULL-auth bypass vulnerability in the public.get_org_user_access_rbac function that allows unauthenticated attackers to re

30 Jun 2026, 22:08 UTC View advisory →
CVE-2026-56217 Medium 5.3

Capgo before 12.128.2 contains a policy bypass vulnerability in app_versions update enforcement that allows app-scoped API keys to downgrade encrypted bund

08 Jul 2026, 13:48 UTC View advisory →
CVE-2026-56197 High 8.8

Improper neutralization of special elements used in a command ('command injection') in Windows Admin Center allows an authorized attacker to execute code o

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56196 High 8.8

Relative path traversal in Windows Admin Center allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56195 Medium 5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56194 High 8.8

Heap-based buffer overflow in Windows Network File System allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56193 High 7.1

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-56192 Medium 5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56190 Critical 9.8

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56189 High 7.8

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56188 Critical 9.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Server Network driver allows an unauthorized attacke

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56187 High 7

Use after free in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56186 High 8.1

Out-of-bounds read in Windows Schannel allows an authorized attacker to disclose information over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56185 Medium 6.5

Improper authentication in Windows Admin Center allows an authorized attacker to disclose information over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-56184 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56183 High 7

Use after free in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56182 High 7.8

Integer overflow or wraparound in Windows NTFS allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56181 High 8.3

Origin validation error in Windows Network Address Translation (NAT) allows an unauthorized attacker to perform spoofing over an adjacent network.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-56178 Medium 5.5

Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56176 High 7.8

Out-of-bounds read in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56175 High 7.8

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56173 High 7

Use after free in Windows WebView allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56171 High 7.1

Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthorized attacker to disclose information over a network.

17 Jul 2026, 21:34 UTC View advisory →
CVE-2026-56170 High 7.5

Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-56169 High 8.1

Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-56168 Medium 6.5

Null pointer dereference in Windows SMB Server allows an authorized attacker to deny service over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56164 Medium 5.3

Missing authentication for critical function in Microsoft Office SharePoint allows an unauthorized attacker to elevate privileges over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-56162 Critical 10

Improper authentication in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-56161 Critical 9.6

Improper access control in Azure Logic Apps allows an authorized attacker to disclose information over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-56159 Critical 9.8

Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56157 Medium 5.4

Improper access control in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56156 High 7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-56155 High 7.8

Insufficient granularity of access control in Active Directory Federation Services (AD FS) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-56130 Low 2

"Remember me" cookie age is not verified on the server. This potentially allows an attacker to intercept a valid cookie and reuse it indefinitely, even aft

25 Jun 2026, 08:44 UTC View advisory →
CVE-2026-56129 Medium 6.8

Generic IO & Memory Access driver for PCs provided by TOSHIBA CORPORATION and Dynabook Inc. exposes its IOCTL with insufficient access control. A logged-in

25 Jun 2026, 07:03 UTC View advisory →
CVE-2026-56124 High 8.7

phpUploader before 2.0.2 contains an unauthenticated information disclosure vulnerability that allows remote attackers to access the full contents of the u

29 Jun 2026, 13:47 UTC View advisory →
CVE-2026-56123 Critical 9.2

socat versions 1.8.0.0 through 1.8.1.1 contain a heap-based buffer overflow vulnerability that allows a malicious SOCKS5 proxy server to overwrite adjacent

25 Jun 2026, 15:43 UTC View advisory →
CVE-2026-56122 High 8.7

Winstone Servlet Engine through 0.9.10 contains a path traversal vulnerability that allows unauthenticated attackers to read arbitrary files by sending HTT

25 Jun 2026, 13:34 UTC View advisory →
CVE-2026-56121 Critical 9.3

Feast before 0.63.0 contains an unsafe deserialization vulnerability that allows unauthenticated or unauthorized attackers to achieve remote code execution

24 Jun 2026, 14:49 UTC View advisory →
CVE-2026-56120 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as it's a duplicate of CVE-2026-56784.

23 Jun 2026, 20:54 UTC View advisory →
CVE-2026-56119 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

25 Jun 2026 View advisory →
CVE-2026-56118 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

25 Jun 2026 View advisory →
CVE-2026-56117 Medium 5.7

dhcpcd through 10.3.2, fixed in commit 78ea09e, contains a heap use-after-free vulnerability in the control socket handling within src/control.c that allow

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-56116 High 7.1

dhcpcd through 10.3.2, fixed in commit 708b4a5, contains a memory leak vulnerability in the IPv6 Router Advertisement route information handling that allow

23 Jun 2026, 16:11 UTC View advisory →
CVE-2026-56115 Medium 6

dhcpcd through 10.3.2, fixed in commit 2f00c7b, contains a one-byte stack out-of-bounds write vulnerability in dhcp6_makemessage() in src/dhcp6.c that allo

23 Jun 2026, 16:08 UTC View advisory →
CVE-2026-56114 Medium 6

dhcpcd through 10.3.2, fixed in commit 2f00c7b, contains a one-byte stack out-of-bounds write vulnerability in dhcp6_makemessage() in src/dhcp6.c that allo

23 Jun 2026, 16:08 UTC View advisory →
CVE-2026-56113 Medium 6

dhcpcd through 10.3.2, fixed in commit 5733d3c, contains a heap use-after-free vulnerability that allows unauthenticated same-link attackers to crash the d

23 Jun 2026, 16:05 UTC View advisory →
CVE-2026-56111 High 8.3

Marlin Firmware through 2.1.2.7, fixed in commit 1f255d1, when built with MESH_BED_LEVELING enabled, contains an out-of-bounds write vulnerability in the M

24 Jun 2026, 14:31 UTC View advisory →
CVE-2026-56109 High 7

The Advanced Linux Sound Architecture (ALSA) library before 1.2.16.1 contains a double-free vulnerability in parse_def() in src/conf.c that allows attacker

22 Jun 2026, 15:58 UTC View advisory →
CVE-2026-56104 Critical 9.1

Chainlit before 2.10.1 contains a session hijacking vulnerability that allows unauthenticated attackers to restore and inherit authenticated user sessions

22 Jun 2026, 14:17 UTC View advisory →
CVE-2026-56091 High 8.2

When using Apache Shiro with the shiro-guice module in a web servlet context, a specially crafted HTTP request may cause an authentication bypass. This vul

25 Jun 2026, 08:45 UTC View advisory →
CVE-2026-56087 Medium 6.1

Dell ThinOS 10, versions prior to 2605_10.2100 contain a Protection Mechanism Failure vulnerability. An attacker with physical access could potentially exp

15 Jul 2026, 17:28 UTC View advisory →
CVE-2026-56086 High 8.8

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.

08 Jul 2026, 13:34 UTC View advisory →
CVE-2026-56072 High 7.1

Unauthenticated Cross Site Scripting (XSS) in WoodMart <= 8.5.3 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56071 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Forminator <= 1.53.1 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-56070 Critical 9.3

Unauthenticated SQL Injection in Advance Product Search <= 1.4.4 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56069 High 7.5

Unauthenticated Insecure Direct Object References (IDOR) in Toolset Forms <= 2.6.24 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56068 Critical 9.3

Unauthenticated SQL Injection in JetEngine <= 3.8.10.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56067 Critical 9.3

Unauthenticated SQL Injection in JetSmartFilters <= 3.8.3 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56066 Medium 5.8

Unauthenticated Arbitrary File Deletion in ShortPixel Adaptive Images <= 3.11.4 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56064 High 8.5

Subscriber SQL Injection in Tourfic <= 2.22.5 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56063 High 8.3

Unauthenticated Broken Access Control in MailChimp Block <= 1.1.15 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56062 Critical 9.3

Unauthenticated SQL Injection in Quotes llama <= 3.1.5 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56061 High 7.5

Unauthenticated Broken Access Control in Subscriptions for WooCommerce <= 1.9.5 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56060 High 7.5

Unauthenticated Sensitive Data Exposure in Print Invoice & Delivery Notes for WooCommerce <= 7.1.1 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56059 Critical 9.9

Subscriber Arbitrary File Upload in Travel Booking <= 2.2.5 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56058 Critical 9.9

Subscriber Arbitrary File Upload in Quform <= 2.23.0 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56057 Critical 9.8

Subscriber PHP Object Injection in Uncanny Automator Pro <= 7.3.0.6 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56055 High 8.8

Subscriber PHP Object Injection in RealHomes <= 4.5.3 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56054 High 7.7

Subscriber Arbitrary File Deletion in JS Help Desk <= 3.1.1 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-56053 High 8.8

Subscriber PHP Object Injection in EventPrime <= 4.3.4.1 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-56052 High 7.6

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in FunnelKit Funnel Builder by FunnelKit allows Blind SQ

24 Jun 2026, 07:23 UTC View advisory →
CVE-2026-56051 High 7.1

Unauthenticated Cross Site Scripting (XSS) in TablePress <= 3.3.1 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-56050 Medium 6.5

Improper Access Control vulnerability in Themeisle PPOM for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels. This issue

25 Jun 2026, 13:34 UTC View advisory →
CVE-2026-56049 High 8.5

Contributor Remote Code Execution (RCE) in Post Snippets <= 4.0.19 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-56048 Medium 6.5

Unauthenticated Insecure Direct Object References (IDOR) in Payment Gateway Based Fees and Discounts for WooCommerce <= 3.0.0 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56047 High 7.1

Unauthenticated Cross Site Scripting (XSS) in perfmatters <= 2.6.3 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56046 Medium 6.5

Subscriber Cross Site Scripting (XSS) in ListingPro <= 2.9.11 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56045 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Automatic < 3.135.1 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56044 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Blog2Social <= 8.9.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56043 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Customer Reviews for WooCommerce <= 5.110.1 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56042 High 7.1

Customer Cross Site Scripting (XSS) in Advanced Order Export For WooCommerce <= 4.0.9 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-56041 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Responsive Lightbox <= 2.7.6 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56040 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Gutenverse Form <= 2.4.7 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56039 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Quick Interest Slider <= 3.1.6 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56038 High 8.8

Contributor Privilege Escalation in Frisbii Pay <= 1.8.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56037 High 8.8

Deserialization of Untrusted Data vulnerability in Themify Themify Popup allows Object Injection. This issue affects Themify Popup: from n/a through 1.4.3.

02 Jul 2026, 11:30 UTC View advisory →
CVE-2026-56036 Critical 9.3

Unauthenticated SQL Injection in 워드프레스 결제 심플페이 <= 5.5.6 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56035 High 8.6

Unauthenticated Multiple Vulnerabilities in BitFire Security <= 5.0.3 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56034 Critical 9.3

Unauthenticated SQL Injection in Library Management System <= 3.5.7 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56033 Critical 9.8

Unauthenticated Privilege Escalation in Dokan Pro <= 5.0.4 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56032 Critical 9.8

Subscriber PHP Object Injection in Buddyboss Platform <= 3.0.4 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56031 High 8.1

Unauthenticated PHP Object Injection in Uncanny Automator <= 7.3.1.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56030 Critical 9.8

Unauthenticated Privilege Escalation in Paytium <= 5.0.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56029 High 7.5

Unauthenticated Broken Authentication in CorvusPay WooCommerce Payment Gateway <= 2.7.4 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56028 Critical 9.8

Unauthenticated Privilege Escalation in Easy Elements for Elementor – Addons & Website Templates <= 1.4.9 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56027 Critical 9.9

Customer Arbitrary File Upload in Booster for WooCommerce <= 8.0.1 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56026 Medium 6.4

Subscriber Server Side Request Forgery (SSRF) in utm.codes <= 1.9.0 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56025 High 7.5

Unauthenticated Broken Access Control in Paymob for WooCommerce <= 4.1.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56023 Medium 5.4

Customer Broken Access Control in UPI QR Code Payment Gateway for WooCommerce <= 1.6.2 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-56018 High 7.5

JavaScript::Minifier::XS versions before 0.16 for Perl leak memory on every call to minify(), allowing unbounded memory growth. In JsMinify (XS.xs) the cle

29 Jun 2026, 19:38 UTC View advisory →
CVE-2026-56017 High 7.5

JavaScript::Minifier::XS versions before 0.16 for Perl crash with a NULL pointer dereference when the first meaningful token of the input is a slash. The r

29 Jun 2026, 19:38 UTC View advisory →
CVE-2026-56014 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Master Slider <= 3.11.2 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-56013 Medium 6.5

Unauthenticated Insecure Direct Object References (IDOR) in License Manager for WooCommerce <= 3.0.15 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-56011 High 7.1

Unauthenticated Cross Site Scripting (XSS) in MapPress Maps for WordPress <= 2.97.3 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56010 High 8.8

Subscriber Privilege Escalation in Abandoned Cart Pro for WooCommerce <= 10.4.0 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56008 High 8.8

Contributor Privilege Escalation in Fusion Builder <= 3.15.4 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-56006 High 7.1

Unauthenticated Cross Site Scripting (XSS) in H5P <= 1.17.6 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-56005 High 7.1

Subscriber Cross Site Scripting (XSS) in WP Activity Log <= 5.6.3.1 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-56004 Critical 10

A shellcode injection in the mercurial handler of the obs tar_scm source service before version 0.12.4 could be used by attackers able to provide a _servic

02 Jul 2026, 14:54 UTC View advisory →
CVE-2026-56003 High 8.5

A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 b

08 Jul 2026, 09:25 UTC View advisory →
CVE-2026-56002 High 8.5

A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8 allows attackers authenticated as X client to execute cod

08 Jul 2026, 09:12 UTC View advisory →
CVE-2026-56001 High 8.5

A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the X Ser

08 Jul 2026, 08:49 UTC View advisory →
CVE-2026-56000 Critical 9

Local attackers with a X connection able to provide GLX commit to the X server xorg-server before 21.2.24 and xwayland before 24.1.13 could cause a Heap Us

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-55999 High 8.5

Local attackers with a X connection able to provide PCX fonts to the X server xorg-server before 21.2.24 and xwayland before 24.1.13 could cause a heap buf

08 Jul 2026, 08:07 UTC View advisory →
CVE-2026-55998 Medium 5.3

The endpoint /v3/import/{token}_{clusterId}.yaml retrieves the cluster object before validating the token. When a valid cluster ID references a cluster tha

05 Aug 2026, 07:51 UTC View advisory →
CVE-2026-55997 High 8.8

Rancher issues long-lived registration tokens to authenticate nodes and agents joining a downstream cluster. These tokens were stored and exposed in plaint

05 Aug 2026, 07:53 UTC View advisory →
CVE-2026-55996 Medium 4.3

A denial-of-service vulnerability was identified in multiple TLS listeners in Rancher. Both the cattle-cluster-agent component running in downstream cluste

05 Aug 2026, 07:46 UTC View advisory →
CVE-2026-55991 Medium 5.9

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, a remote unauthenticated client can trigger a libngtcp2 assertion (if compiled with assertions on)

22 Jul 2026, 13:10 UTC View advisory →
CVE-2026-55990 Medium 5.9

In NLnet Labs Unbound 1.7.0 up to and including 1.25.1, when the 'dnscrypt:' clause lists more 'dnscrypt-provider-cert:' files than there are matching 'dns

22 Jul 2026, 13:10 UTC View advisory →
CVE-2026-55980 Medium 5.5

A denial-of-service vulnerability in CatchPulse could allow an attacker to conduct a stack buffer overrun attack, leading to a denial-of-service condition.

06 Aug 2026, 09:23 UTC View advisory →
CVE-2026-55979 Medium 5.2

An improper access control check in CatchPulse's named pipe communication interface could allow an attacker to invoke CatchPulse functions. This is limited

06 Aug 2026, 09:20 UTC View advisory →
CVE-2026-55978 High 8.4

An improper access control vulnerability in CatchPulse could allow a non-administrative local attacker to connect to an unrestricted kernel filter communic

06 Aug 2026, 09:18 UTC View advisory →
CVE-2026-55975 High 8.6

A vulnerability exists in H.View IP cameras that could allow an authenticated user to supply unsanitized XML fields to the device's certificate generation

26 Jun 2026, 22:58 UTC View advisory →
CVE-2026-55973 High 7.5

In NLnet Labs Unbound 1.23.0 up to and including 1.25.1, when 'dns-error-reporting: yes' is set, the EDNS Report-Channel option (code 18) from the last ups

22 Jul 2026, 13:09 UTC View advisory →
CVE-2026-55971 Critical 9.3

Heap-based Buffer Overflow vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade t

27 Jul 2026, 11:11 UTC View advisory →
CVE-2026-55970 Medium 6.9

Buffer Over-read vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version

27 Jul 2026, 11:09 UTC View advisory →
CVE-2026-55969 High 8.7

Integer Overflow or Wraparound vulnerability in Apache Thrift C++, c_glib, Go, netstd, Delphi and Haxe bindings. This issue affects Apache Thrift: before 0

27 Jul 2026, 11:07 UTC View advisory →
CVE-2026-55968 High 8.7

Inefficient Algorithmic Complexity, Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Node.js bindings. This issue affect

27 Jul 2026, 11:06 UTC View advisory →
CVE-2026-55967 Low 2

AES-GCM encryption/decryption with extremely large cumulative single message sizes (>64 GiB) were not properly rejected by the streaming APIs, allowing cou

25 Jun 2026, 16:53 UTC View advisory →
CVE-2026-55964 Medium 6.3

Chain intermediate CA:TRUE without keyCertSign accepted as a signing CA. Intermediate CA certificates are required to have the keyCertSign key usage when a

25 Jun 2026, 19:30 UTC View advisory →
CVE-2026-55962 Medium 6

TLS 1.3 post-handshake authentication (PHA) issue where a server could accept a client's Finished message without the client having sent a Certificate and

25 Jun 2026, 21:12 UTC View advisory →
CVE-2026-55961 High 8.2

wolfSSL_PKCS7_verify() returning success for a degenerate (certs-only) PKCS#7 object that contains no signer. Such an object has empty signerInfos, so the

25 Jun 2026, 16:51 UTC View advisory →
CVE-2026-55960 High 8.2

Un-negotiated Raw Public Key (RFC 7250) accepted in place of an X.509 certificate, bypassing chain validation. A raw public key has no chain, so ParseCertR

25 Jun 2026, 19:31 UTC View advisory →
CVE-2026-55958 High 8.3

Out-of-bounds write in the Renesas TSIP TLS 1.3 transcript buffer. In tsip_StoreMessage() the capacity check guarding the fixed message bag (MSGBAG_SIZE) s

25 Jun 2026, 19:35 UTC View advisory →
CVE-2026-55957 Unscored

Missing Critical Step in Authentication vulnerability in Apache Tomcat when the JNDIRealm was configured to authenticate binds using GSSAPI allowed attacke

29 Jun 2026, 20:47 UTC View advisory →
CVE-2026-55956 Unscored

Improper Authorization vulnerability in Apache Tomcat leads to security constraints specified for the default servlet ignoring any method or method omissio

29 Jun 2026, 20:46 UTC View advisory →
CVE-2026-55955 Unscored

Improper Authentication vulnerability in Apache Tomcat allowed a replay attack against the EncryptionInterceptor in the cluster component. This issue affec

29 Jun 2026, 20:44 UTC View advisory →
CVE-2026-55954 Critical 9.1

Authentication Bypass by Spoofing vulnerability in ueberauth ueberauth_apple allows account takeover via unvalidated ID token claims. The Ueberauth.Strateg

14 Jul 2026, 15:08 UTC View advisory →
CVE-2026-55953 Critical 9.1

The Erlang/OTP ssl TLS 1.2 (and earlier) and DTLS client does not verify that the cipher suite selected by the server in ServerHello was among the suites o

27 Jul 2026, 15:21 UTC View advisory →
CVE-2026-55952 High 8.2

The Erlang/OTP ssl application does not validate that the PSK identity list and binder list carried in a TLS 1.3 ClientHello pre-shared key extension have

02 Jul 2026, 16:06 UTC View advisory →
CVE-2026-55950 High 8.7

Time-of-check Time-of-use (TOCTOU) race condition vulnerability in Erlang/OTP ssl (dtls_packet_demux module) allows an unauthenticated remote attacker to c

02 Jul 2026, 16:06 UTC View advisory →
CVE-2026-55949 High 7.8

Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55948 High 7.8

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-55947 High 7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55944 Critical 9.8

Deserialization of untrusted data in Microsoft Dynamics NAV allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55899 High 7.8

Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-55898 Medium 6.1

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55895 Medium 5.7

Vim is an open source, command line text editor. Prior to 9.2.0663, a Vimscript code injection vulnerability exists in s:NetrwLocalRmFile() in the netrw pl

25 Jun 2026, 15:31 UTC View advisory →
CVE-2026-55892 Medium 5.5

Vim is an open source, command line text editor. Prior to 9.2.0662, the dump_prefixes() function in src/spell.c walks a spell-file prefix trie iteratively

25 Jun 2026, 15:32 UTC View advisory →
CVE-2026-55890 Medium 4.8

Grav is a file-based Web platform. Prior to 2.0.0-rc.9, Grav's incomplete fix for stored XSS through the Markdown media attribute action (CVE-2026-42841) l

10 Jul 2026, 16:17 UTC View advisory →
CVE-2026-55885 Medium 6.8

Grav is a file-based Web platform. Prior to 1.7.53, an authenticated administrator with backup permissions can download a ZIP archive containing the full G

10 Jul 2026, 16:13 UTC View advisory →
CVE-2026-55884 Critical 9.2

Tilt defines dev environments as code for microservice apps on Kubernetes. From 0.20.8 through 0.37.3, the Tilt HUD HTTP server registers handlers on a gor

10 Jul 2026, 21:36 UTC View advisory →
CVE-2026-55883 High 8.3

Tilt defines dev environments as code for microservice apps on Kubernetes. From 0.24.0 through 0.37.3, the Tilt HUD WebSocket at /ws/view is gated by a CSR

10 Jul 2026, 21:38 UTC View advisory →
CVE-2026-55882 High 8.3

Tilt defines dev environments as code for microservice apps on Kubernetes. From 0.19.5 through 0.37.3, the Tilt HUD server mounts Go net/http/pprof handler

10 Jul 2026, 21:37 UTC View advisory →
CVE-2026-55881 High 7.1

OpenReplay is a self-hosted session replay suite. From 1.22.0 before 1.27.0, getFirstMob returned 15-second presigned S3 download URLs for a session's DOM-

10 Jul 2026, 20:44 UTC View advisory →
CVE-2026-55880 High 7.1

OpenReplay is a self-hosted session replay suite. In 1.27.0 and earlier, three dashboard and note mutation functions ran their SQL without the ownership pr

10 Jul 2026, 20:42 UTC View advisory →
CVE-2026-55879 Critical 9.3

OpenReplay is a self-hosted session replay suite. From 1.24.0 before 1.25.0, the OpenReplay tracking SDK accepts custom event names and captured page URLs

10 Jul 2026, 20:39 UTC View advisory →
CVE-2026-55878 High 7.8

Symfony UX is a JavaScript ecosystem for Symfony. From 2.32.0 before 2.36.1 and from 3.0.0 before 3.2.0, the ux:install console command installs files from

08 Jul 2026, 21:30 UTC View advisory →
CVE-2026-55877 Medium 6.1

Symfony UX is a JavaScript ecosystem for Symfony. From 2.17.0 before 2.36.1 and from 3.0.0 before 3.2.0, the ux_icon() Twig function is marked is_safe=['ht

08 Jul 2026, 21:32 UTC View advisory →
CVE-2026-55874 High 7.7

SeaweedFS is a distributed storage system. Prior to 4.34, the S3 API gateway does not reject dot-dot path segments in the X-Amz-Copy-Source header used by

08 Jul 2026, 14:43 UTC View advisory →
CVE-2026-55873 Medium 4.3

SeaweedFS is a distributed storage system. In versions 4.08 through 4.33, requests signed with SigV4 service s3tables are routed to the S3Tables management

08 Jul 2026, 14:48 UTC View advisory →
CVE-2026-55852 High 8.6

Frappe is a full-stack web application framework. Prior to 16.23.0 and 15.112.0, TarSlip RCE was possible in Package Import because tarfile members were no

10 Jul 2026, 21:28 UTC View advisory →
CVE-2026-55849 High 8.5

@cyclonedx/cyclonedx-npm creates CycloneDX Software Bill of Materials from npm projects. From 2.1.0 before 5.0.0, the CLI passes user-supplied --workspace

08 Jul 2026, 21:10 UTC View advisory →
CVE-2026-55844 High 7.5

Home Assistant is open source home automation software that puts local control and privacy first. Prior to 2025.5.0, The iOS companion app ignores the SSID

29 Jun 2026, 14:19 UTC View advisory →
CVE-2026-55843 High 7

Snipe-IT is an IT asset/license management system. Prior to 8.6.0, UsersController::update() passes a missing permission request field through NormalizePer

10 Jul 2026, 18:33 UTC View advisory →
CVE-2026-55838 Medium 4.3

RustFS is a distributed object storage system built in Rust. In 1.0.0-beta.7 and earlier, the real-time metrics endpoint at /rustfs/admin/v3/metrics is acc

26 Jun 2026, 19:57 UTC View advisory →
CVE-2026-55833 High 7.5

Netty is a network application framework for development of protocol servers and clients. Prior to 4.1.136.Final and 4.2.16.Final, Netty SPDY header decodi

20 Jul 2026, 23:18 UTC View advisory →
CVE-2026-55831 High 7.5

Netty is a network application framework for development of protocol servers and clients. Prior to 4.1.136.Final and 4.2.16.Final, Netty's SPDY SETTINGS de

20 Jul 2026, 23:00 UTC View advisory →
CVE-2026-55830 High 8.3

RestrictedPython is a tool that helps to define a subset of the Python language which allows to provide a program input into a trusted environment. Prior t

08 Jul 2026, 21:16 UTC View advisory →
CVE-2026-55827 High 7.5

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.1, FreeRDP clients launched with the non-default /cache:codec:rfx option pas

10 Jul 2026, 19:47 UTC View advisory →
CVE-2026-55825 Low 3.1

Contao is an Open Source CMS. In versions 5.7.0 through 5.7.6, an authenticated backend user who can access one job can request an attachment identifier co

31 Jul 2026, 19:07 UTC View advisory →
CVE-2026-55824 Low 2.6

Contao is an Open Source CMS. In versions 4.13.40 through 5.3.46 and 5.7.0-RC1 through 5.7.6, the crawler leaks auth credentials to external hosts. Contao'

31 Jul 2026, 19:04 UTC View advisory →
CVE-2026-55810 Unscored

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Plotly.js Graphing allows Object Injection. This iss

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-55809 Unscored

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Flag attendance field allows Object Injection. This

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-55808 Unscored

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Drupal core allows Cross-Site Scripting (XSS).

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-55807 Unscored

Server-Side Request Forgery (SSRF) vulnerability in Drupal Drupal core allows Server Side Request Forgery. This issue affects Drupal core versions: from 0.

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-55806 Unscored

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Drupal Drupal core allows Content Spoofing. This issue affects Drupal core versions: f

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-55804 Unscored

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Drupal core allows Object Injection. This issue affe

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-55803 Unscored

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Drupal core allows Object Injection. This issue affe

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-55789 High 8.5

Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 1.41.0, Logto's self-hosted SAML application IdP built the signed SAML

10 Jul 2026, 19:55 UTC View advisory →
CVE-2026-55783 Low 2.4

NanaZip is the 7-Zip derivative intended for the modern Windows experience. Prior to 6.5.1749.0, NanaZip's seven in-house IInArchive handlers in NanaZip.Co

10 Jul 2026, 16:48 UTC View advisory →
CVE-2026-55782 Low 2.4

NanaZip is the 7-Zip derivative intended for the modern Windows experience. Prior to 6.5.1749.0, NanaZip's WebAssembly archive handler in NanaZip.Codecs.Ar

10 Jul 2026, 16:46 UTC View advisory →
CVE-2026-55781 Low 2.4

NanaZip is the 7-Zip derivative intended for the modern Windows experience. Prior to 6.5.1749.0, NanaZip's UFS and FFS image handler in NanaZip.Codecs.Arch

10 Jul 2026, 16:50 UTC View advisory →
CVE-2026-55780 Low 2.4

NanaZip is the 7-Zip derivative intended for the modern Windows experience. Prior to 6.5.1749.0, NanaZip's .NET single-file bundle handler in NanaZip.Codec

10 Jul 2026, 16:49 UTC View advisory →
CVE-2026-55778 Low 2.1

Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 9.9.1-alpha.11 and 8.6.81, the default fil

08 Jul 2026, 20:50 UTC View advisory →
CVE-2026-55777 Medium 5.3

GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the browser. Prior to 1.11, the parse_io

30 Jul 2026, 20:37 UTC View advisory →
CVE-2026-55773 High 8.8

CedarJava is an open source Java implementation of the Cedar policy language, used for fine-grained authorization decisions. In versions prior to 2.3.6, 3.

13 Jul 2026, 19:17 UTC View advisory →
CVE-2026-55772 High 8.8

CedarJava is an open source Java implementation of the Cedar policy language, used for fine-grained authorization decisions. In versions prior to 2.3.6, 3.

13 Jul 2026, 18:44 UTC View advisory →
CVE-2026-55771 High 8.8

CedarJava is an open source Java implementation of the Cedar policy language, used for fine-grained authorization decisions. In versions prior to 4.9.0, th

13 Jul 2026, 19:28 UTC View advisory →
CVE-2026-55768 High 8.7

GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the browser. Prior to version 1.11, the

30 Jul 2026, 20:34 UTC View advisory →
CVE-2026-55767 Medium 5.8

Guzzle is an extensible PHP HTTP client. Prior to 7.12.1, CookieJar incorrectly accepts cookies with a dot-only Domain attribute and whitespace-padded vari

23 Jun 2026, 15:05 UTC View advisory →
CVE-2026-55766 Medium 4.8

guzzlehttp/psr7 is a PSR-7 HTTP message library implementation in PHP. Prior to 2.12.1, guzzlehttp/psr7 did not reject CR/LF characters in certain first-pa

23 Jun 2026, 15:07 UTC View advisory →
CVE-2026-55762 High 8.1

Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.1, 8.4.4, 8.3.6, 8.2.6, 8.1.6, 8.0.7, and 7.10.13, the POST

24 Jun 2026, 21:08 UTC View advisory →
CVE-2026-55761 High 7.1

Portainer Community Edition is a lightweight service delivery platform for containerized applications that can be used to manage Docker, Swarm, Kubernetes

08 Jul 2026, 15:03 UTC View advisory →
CVE-2026-55760 High 7.5

Handlebars.java provides logic-less and semantic Mustache templates with Java. Prior to 4.5.2, applications that pass user-controlled input to Handlebars.c

08 Jul 2026, 19:31 UTC View advisory →
CVE-2026-55759 High 7.4

Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.1, 8.4.4, 8.3.6, 8.2.6, 8.1.6, 8.0.7, and 7.10.13, Rocket.C

24 Jun 2026, 21:07 UTC View advisory →
CVE-2026-55737 Medium 5.1

Signed to Unsigned Conversion Error and Out-of-bounds Write vulnerability in Erlang OTP erts allows an attacker who can supply a crafted Erlang external te

27 Jul 2026, 15:13 UTC View advisory →
CVE-2026-55736 Medium 5.9

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in ash-project ash allows a user to set the value of a private

23 Jun 2026, 18:21 UTC View advisory →
CVE-2026-55735 High 8.2

Improper Verification of Cryptographic Signature in ueberauth guardian allows an unauthenticated attacker to revoke a victim's session with a forged token.

01 Aug 2026, 18:46 UTC View advisory →
CVE-2026-55734 Medium 6.9

Allocation of Resources Without Limits or Throttling vulnerability in ueberauth guardian (Guardian.Permissions module) allows a denial of service via BEAM

01 Aug 2026, 18:46 UTC View advisory →
CVE-2026-55733 Medium 6.9

Allocation of Resources Without Limits or Throttling in ueberauth guardian allows denial of service via unbounded atom creation from attacker-controlled bi

01 Aug 2026, 18:46 UTC View advisory →
CVE-2026-55726 Medium 6.9

The Azure Blob Storage container used for Gardyn device logs is publicly listable without authentication. A malicious user would be able to access any devi

02 Jul 2026, 23:49 UTC View advisory →
CVE-2026-55723 High 8.7

When NGINX Ingress Controller is configured with Custom Resource Definitions (CRDs) or Ingress annotations, an injection vulnerability exists in the config

15 Jul 2026, 14:33 UTC View advisory →
CVE-2026-55721 Critical 9.2

Storage Concentrator (SC & SCVM) is vulnerable to SQL injection through cookie values processed by the login.pl and debug.pl scripts. The cookie value is i

30 Jun 2026, 22:36 UTC View advisory →
CVE-2026-55717 Medium 5.9

In NLnet Labs Unbound 1.10.0 up to and including 1.25.1, when 'serve-expired: yes' is set together with a 'response-ip: redirect' /'response-ip-data: CNAME

22 Jul 2026, 13:09 UTC View advisory →
CVE-2026-55708 Low 3.1

In NLnet Labs Unbound 1.6.0 up to and including 1.25.1, the 'view_local_data' and 'view_local_datas' commands of 'unbound-control' create a bare local zone

22 Jul 2026, 13:09 UTC View advisory →
CVE-2026-55707 High 7.1

In OpenStack Neutron before 28.0.2, the subnetpool onboarding API does not verify ownership of the target subnets. An authenticated user can onboard subnet

05 Aug 2026, 04:44 UTC View advisory →
CVE-2026-55700 High 7.1

pnpm is a package manager. From 11.3.0 until 11.5.3, `pnpm stage download` derived a local filename from registry-controlled package name and version field

25 Jun 2026, 16:47 UTC View advisory →
CVE-2026-55699 Medium 6.5

pnpm is a package manager. Prior to 10.34.2 and 11.5.3, Manifest bin object keys such as "", ".", and ".." passed pnpm's bin-name guard. When a malicious p

25 Jun 2026, 16:44 UTC View advisory →
CVE-2026-55698 High 8.8

pnpm is a package manager. Prior to 10.34.2 and 11.5.3, pnpm can persist package-manager bootstrap metadata in the first YAML document of pnpm-lock.yaml. B

25 Jun 2026, 16:43 UTC View advisory →
CVE-2026-55697 High 7.5

pnpm is a package manager. Prior to 10.34.2 and 11.5.3, pnpm can install configDependencies declared in pnpm-workspace.yaml before command dispatch. Before

25 Jun 2026, 16:42 UTC View advisory →
CVE-2026-55693 Medium 5.7

Vim is an open source, command line text editor. Prior to 9.2.0653, the tree_count_words() function in src/spellfile.c fills in the word-count fields of a

25 Jun 2026, 15:34 UTC View advisory →
CVE-2026-55687 High 7.5

ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. Versions 6.0.1, 5.5.4, 5.4.4, 5.3.5, and possibly prior contain an out-of-bounds w

10 Jul 2026, 15:59 UTC View advisory →
CVE-2026-55686 Medium 5.3

Podman is a tool for managing OCI containers and pods. From 3.0.0 until 5.7.1, running a malicious container image where the WORKDIR path contains a symlin

26 Jun 2026, 16:30 UTC View advisory →
CVE-2026-55685 High 8.7

React Router is a router for React. In versions 7.0.0 through 7.17.0, the manifest endpoint could be accessed via unauthenticated targeted requests that wo

27 Jul 2026, 21:45 UTC View advisory →
CVE-2026-55677 High 7.5

Echo is a Go web framework. Prior to 4.15.3 and 5.2.0, Echo's router and static file handler disagree on URL path decoding. The router matches routes using

26 Jun 2026, 16:15 UTC View advisory →
CVE-2026-55672 High 7.4

ZITADEL is an open source identity management platform. Prior to 3.4.12 and 4.15.2, ZITADEL's OAuth2 and OIDC CodeExchange, RefreshToken, and device token

10 Jul 2026, 17:19 UTC View advisory →
CVE-2026-55671 Low 2.3

ZITADEL is an open source identity management platform. From 4.0.0-rc.1 through 4.15.1, ZITADEL's HTTP notification channels, OIDC BackChannel Logout, and

10 Jul 2026, 17:17 UTC View advisory →
CVE-2026-55670 Low 2.3

ZITADEL is an open source identity management platform. Prior to 4.15.1, ZITADEL's event store validation can retain the original resource owner for a dele

10 Jul 2026, 17:15 UTC View advisory →
CVE-2026-55669 Medium 4.2

ZITADEL is an open source identity management platform. Prior to 3.4.12 and 4.15.2, ZITADEL's external JWT Identity Provider validates a token's signature

10 Jul 2026, 16:58 UTC View advisory →
CVE-2026-55668 Medium 6.3

File Browser provides a web file managing interface. Prior to 2.63.16, ScopedFs validates the nearest existing ancestor of a dangling symlink as in scope a

08 Jul 2026, 14:55 UTC View advisory →
CVE-2026-55667 High 8.2

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.16,

25 Jun 2026, 17:32 UTC View advisory →
CVE-2026-55666 Critical 9.3

Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.1, 8.4.4, 8.3.6, 8.2.6, 8.1.6, 8.0.7, and 7.10.13, in apps/

24 Jun 2026, 21:06 UTC View advisory →
CVE-2026-55665 High 8.5

Grist is spreadsheet software using Python as its formula language. Prior to 1.7.15, Grist contained two cross-site scripting vulnerabilities where an atta

10 Jul 2026, 20:58 UTC View advisory →
CVE-2026-55664 Medium 4.3

Grist is spreadsheet software using Python as its formula language. Prior to 1.7.15, the GET /forms endpoint read table and column metadata without applyin

10 Jul 2026, 20:59 UTC View advisory →
CVE-2026-55659 High 7.7

Grist is spreadsheet software using Python as its formula language. Prior to 1.7.15, several server-rendered Grist pages embedded user-controlled values in

10 Jul 2026, 20:57 UTC View advisory →
CVE-2026-55655 Medium 5

A flaw was found in OpenSSH. A local unprivileged attacker on a Linux client host can hijack client-side X11 forwarding connections. This is possible by pr

23 Jun 2026, 03:36 UTC View advisory →
CVE-2026-55654 Low 3.7

A flaw was found in OpenSSH. This vulnerability, a heap out-of-bounds read, occurs during the cleanup of GSSAPI (Generic Security Service Application Progr

23 Jun 2026, 03:37 UTC View advisory →
CVE-2026-55653 Medium 4.3

A flaw was found in OpenSSH. A malicious SSH server can exploit a double free vulnerability in the Diffie-Hellman Group Exchange (DH-GEX) client path. This

23 Jun 2026, 03:36 UTC View advisory →
CVE-2026-55652 Critical 9.8

Wekan is open source kanban built with Meteor. Prior to 9.46, header-login with HEADER_LOGIN_TRUSTED_IPS uses getRequestIp() in server/lib/headerLoginAuth.

15 Jul 2026, 21:15 UTC View advisory →
CVE-2026-55651 High 7.1

Easy!Appointments is a self hosted appointment scheduler. In version 1.5.2, an Excessive Data Exposure vulnerability in the customers search endpoint allow

14 Jul 2026, 15:31 UTC View advisory →
CVE-2026-55647 Medium 5.1

DataEase is an open source data visualization and analysis tool. Prior to 2.10.24, dashboard text components render stored component content with Vue v-htm

07 Jul 2026, 20:37 UTC View advisory →
CVE-2026-55645 Medium 6.5

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the processing of Client Control PDUs. During the RDP conne

20 Jul 2026, 16:51 UTC View advisory →
CVE-2026-55641 High 8.2

9Router is an AI router & token saver. Prior to 0.5.2, 9router determines whether a /v1 LLM proxy request is local by reading the client-controlled Host he

10 Jul 2026, 15:36 UTC View advisory →
CVE-2026-55639 Medium 5.3

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the parsing of Client Security Data within the Client MCS C

20 Jul 2026, 17:14 UTC View advisory →
CVE-2026-55638 High 8.6

9Router is an AI router & token saver. Prior to 0.5.2, 9router protects /v1, /v1beta, /api/v1, and /api/v1beta in src/dashboardGuard.js but omits /codex be

10 Jul 2026, 15:38 UTC View advisory →
CVE-2026-55635 High 8.7

DataEase is an open source data visualization and analysis tool. Prior to 2.10.24, chart quota and Y-axis filters embed attacker-controlled filter values d

07 Jul 2026, 20:35 UTC View advisory →
CVE-2026-55633 High 8.7

DataEase is an open source data visualization and analysis tool. Prior to 2.10.24, a bypass of the H2 zip protocol and file dropper fix allows an authentic

07 Jul 2026, 20:27 UTC View advisory →
CVE-2026-55631 High 7.2

DataEase is an open source data visualization and analysis tool. Prior to 2.10.24, the font management module allows authenticated users to submit an arbit

07 Jul 2026, 20:24 UTC View advisory →
CVE-2026-55629 High 8.7

Whistle is an HTTP, HTTP2, HTTPS, and WebSocket debugging proxy. Prior to 2.10.3, lib/service/service.js handles GET /cgi-bin/temp/get by reading req.query

16 Jul 2026, 19:12 UTC View advisory →
CVE-2026-55626 High 8

xrdp is an open source RDP server. In versions 0.10.6 and prior, when an authenticated user session is initialized using the Xvnc backend over UNIX domain

20 Jul 2026, 17:11 UTC View advisory →
CVE-2026-55611 None 0

AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. From 1.11.1 until 1.14.1, userI

24 Jun 2026, 17:17 UTC View advisory →
CVE-2026-55608 Medium 4.2

n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. Prior to 2.57.4, multi-tenant HTTP mode

15 Jul 2026, 20:35 UTC View advisory →
CVE-2026-55607 High 7.7

Claude Code is an agentic coding tool. From 2.1.38 until 2.1.163, Claude Code's worktree handling allowed creation of worktrees named ".git" and navigation

29 Jun 2026, 14:04 UTC View advisory →
CVE-2026-55603 High 7.5

http-proxy-middleware is node.js http-proxy middleware. From 3.0.4 until 3.0.7 and 4.1.1, fixRequestBody() is the library's documented helper for re-emitti

22 Jun 2026, 20:07 UTC View advisory →
CVE-2026-55602 Medium 6.9

http-proxy-middleware is node.js http-proxy middleware. From 0.16.0 until 2.0.10, 3.0.6, and 4.1.0, http-proxy-middleware documents router proxy-table entr

22 Jun 2026, 15:58 UTC View advisory →
CVE-2026-55599 Medium 5.8

phpseclib is a PHP secure communications library. From 0.1.1 until 1.0.30, 2.0.55, and 3.0.54, when an application validates an untrusted X.509 certificate

22 Jun 2026, 20:00 UTC View advisory →
CVE-2026-55596 High 8.7

Plate is a rich-text editor with AI and shadcn/ui. From 53.0.0 until 53.1.4, the media embed renderer trusts serialized provider or sourceUrl metadata in u

08 Jul 2026, 20:27 UTC View advisory →
CVE-2026-55592 Low 3.9

Dashy is a self-hostable personal dashboard. Prior to 4.3.7, Dashy's workspace view trusts the url query parameter and assigns it directly to an iframe sou

07 Jul 2026, 20:48 UTC View advisory →
CVE-2026-55583 High 7.6

Twenty is an open-source CRM (customer relationship management) platform. Prior to 2.9.0, Twenty was vulnerable to a cross-workspace insecure direct object

24 Jun 2026, 19:21 UTC View advisory →
CVE-2026-55579 Critical 9.8

Pheditor is a single-file editor and file manager written in PHP. From version 2.0.1 to before version 2.0.6, Pheditor ships with a hardcoded default passw

27 Jul 2026, 17:54 UTC View advisory →
CVE-2026-55578 High 8.8

Pheditor is a single-file editor and file manager written in PHP. From version 2.0.1 to before version 2.0.6, the terminal feature in Pheditor uses an inco

27 Jul 2026, 17:54 UTC View advisory →
CVE-2026-55576 High 8.8

MaaAssistantArknights is a one-click tool for daily Arknights tasks. In the current dev-v2 workflow, .github/workflows/release-preparation.yml inlined atta

15 Jul 2026, 21:02 UTC View advisory →
CVE-2026-55575 High 8.2

LiquidJS is a Shopify / GitHub Pages compatible template engine in pure JavaScript. Prior to 10.27.1, the pop array filter at src/filters/array.ts allocate

08 Jul 2026, 19:32 UTC View advisory →
CVE-2026-55570 Critical 9

SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, it does not escape the untrusted fields (name, version, author, description)

24 Jun 2026, 21:24 UTC View advisory →
CVE-2026-55568 Medium 5.9

Guzzle is an extensible PHP HTTP client. Prior to 7.12.1, in certain configurations, traffic expected to be protected by TLS on the hop to the proxy is tra

23 Jun 2026, 14:54 UTC View advisory →
CVE-2026-55550 High 7.1

NextCRM is open-source customer relationship management (CRM) software. The CRM product catalog is an organization-wide business object. Normal application

20 Jul 2026, 21:02 UTC View advisory →
CVE-2026-55548 Medium 4.3

Yamcs is a mission control framework. Prior to 5.12.8 and 5.13.2, the PacketsApi.exportPackets endpoint in yamcs-core/src/main/java/org/yamcs/http/api/Pack

16 Jul 2026, 16:09 UTC View advisory →
CVE-2026-55544 High 7.6

NextCRM is open-source customer relationship management (CRM) software. In version 0.12.1, the MCP campaign tools expose campaign read and write operations

20 Jul 2026, 20:57 UTC View advisory →
CVE-2026-55542 Low 1.3

Snipe-IT is an IT asset/license management system. Prior to version 8.6.1, Snipe-IT S3 signature image retrieval lacks authorization before temporary URL.

08 Jul 2026, 20:32 UTC View advisory →
CVE-2026-55524 High 7.5

PraisonAI is a multi-agent teams system. In versions prior to 1.6.58, the web_crawl tool performs its SSRF check only on the initially supplied URL, allowi

05 Aug 2026, 19:58 UTC View advisory →
CVE-2026-55523 High 7.7

PraisonAI is a multi-agent teams system. In versions 1.5.128 through 1.6.57, the praisonaiagents.tools.web_crawl_tools.web_crawl() function is vulnerable t

05 Aug 2026, 19:26 UTC View advisory →
CVE-2026-55522 High 7.8

PraisonAI is a multi-agent teams system. In versions 3.9.26 through 4.6.57 of praiseonai and 0.12.12 through 1.6.57 of praiseonaiagents, the workflow "incl

05 Aug 2026, 19:01 UTC View advisory →
CVE-2026-55518 Critical 9.6

Avo is a framework to create admin panels for Ruby on Rails apps. Prior to 3.32.1 and 4.0.0.beta.51, Avo's association attach workflow checks attach_? in t

17 Jul 2026, 20:51 UTC View advisory →
CVE-2026-55517 Medium 4.3

Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.7.5, a Deno program that opens a client WebSocket connection could be crashed by the

23 Jun 2026, 17:24 UTC View advisory →
CVE-2026-55516 High 7.7

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, PATCH or PUT /api/v1/maintenances/{maintenance_id} checks access to the current maintena

10 Jul 2026, 18:31 UTC View advisory →
CVE-2026-55515 Medium 5

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, the unaccepted-assets report delete endpoint authorizes only reports.view and deletes Ch

10 Jul 2026, 19:36 UTC View advisory →
CVE-2026-55502 High 7.1

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, POST /api/v4/admin/policy/oauth/signin requires only Admin.Read even though

31 Jul 2026, 03:35 UTC View advisory →
CVE-2026-55501 High 7.3

9Router is an AI router & token saver. Prior to 0.4.80, the dashboard login rate limiter in src/lib/auth/loginLimiter.js derives the client identity from t

10 Jul 2026, 15:23 UTC View advisory →
CVE-2026-55500 Critical 9.9

9Router is an AI router & token saver. Prior to 0.4.80, the /api/settings/database endpoint allows full database export (containing all credentials, API ke

10 Jul 2026, 15:28 UTC View advisory →
CVE-2026-55499 Medium 4.3

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, a single-file share event-stream subscription resolves the share root to th

31 Jul 2026, 03:34 UTC View advisory →
CVE-2026-55497 Medium 6.5

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, the built-in thumbnail and avatar image decoders limit compressed file size

31 Jul 2026, 03:28 UTC View advisory →
CVE-2026-55496 Medium 4.3

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, GET /api/v4/user/search calls SearchActive without adding a StatusActive pr

31 Jul 2026, 03:23 UTC View advisory →
CVE-2026-55495 Medium 4.3

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, the WOPI PUT_RELATIVE handler passes X-WOPI-SuggestedTarget to URI.JoinRaw

31 Jul 2026, 02:58 UTC View advisory →
CVE-2026-55490 Medium 6.5

OpenWrt is a Linux operating system targeting embedded devices. Before v25.12.5, an integer underflow in handle_send_a() of the Emergency Access Daemon all

07 Jul 2026, 21:08 UTC View advisory →
CVE-2026-55488 High 7.7

motionEye (mEye) is an online interface for a piece of software called "motion," which is a video surveillance program with motion detection. Versions prio

24 Jun 2026, 15:03 UTC View advisory →
CVE-2026-55487 High 7.5

pnpm is a package manager. Prior to 10.34.2 and 11.5.3, the generic peer-suffix normalizer also stripped parenthesized text from git, URL, tarball, file, a

25 Jun 2026, 16:41 UTC View advisory →
CVE-2026-55481 Medium 6.2

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, default.blade.php renders header_color and related branding color settings inside a CSS

10 Jul 2026, 19:45 UTC View advisory →
CVE-2026-55479 Medium 5.3

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, the legacy single-seat license checkin flow authorizes the action with the checkout perm

10 Jul 2026, 19:40 UTC View advisory →
CVE-2026-55478 Medium 5.3

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, POST /api/v1/kits/{kit_id}/licenses checks whether the caller can edit kits but does not

10 Jul 2026, 18:34 UTC View advisory →
CVE-2026-55477 High 7.2

3X-UI is a web control panel for managing Xray-core servers. Prior to 3.3.1, an authenticated administrator can abuse the database import functionality to

25 Jun 2026, 15:00 UTC View advisory →
CVE-2026-55476 Medium 5.3

Snipe-IT is an IT asset/license management system. Prior to 8.6.0, POST /account/request/{itemType}/{itemId}/{cancel_by_admin?}/{requestingUser?} accepts c

10 Jul 2026, 18:35 UTC View advisory →
CVE-2026-55475 Medium 5.7

Snipe-IT is an IT asset/license management system. Prior to 8.6.1, the Importer API endpoint allows a user with CSV import capabilities and a valid API key

10 Jul 2026, 19:43 UTC View advisory →
CVE-2026-55474 High 7.1

Snipe-IT is an IT asset/license management system. Prior to 8.5.0, ActionlogController::displaySig concatenates the route filename parameter into a private

10 Jul 2026, 18:29 UTC View advisory →
CVE-2026-55472 Medium 4.3

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, when Full Multiple Companies Support and scope_locations_fmcs are enabled, the API locat

10 Jul 2026, 18:36 UTC View advisory →
CVE-2026-55471 High 8.7

HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.10, org.hl7.fhir.utilities.XsltUtilit

08 Jul 2026, 21:28 UTC View advisory →
CVE-2026-55470 High 7.5

HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.10, the fix for CVE-2026-45367 incomp

08 Jul 2026, 21:27 UTC View advisory →
CVE-2026-55469 Medium 6.5

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, an authenticated user with import and assets.update permissions can place a path travers

10 Jul 2026, 19:42 UTC View advisory →
CVE-2026-55466 Medium 6.2

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, UploadFileRequest sanitizes SVG content only when PHP finfo reports image/svg+xml and Up

10 Jul 2026, 19:37 UTC View advisory →
CVE-2026-55464 Medium 4.8

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, CommonMark escapes raw HTML but does not sanitize javascript: URIs in Markdown hyperlink

10 Jul 2026, 18:40 UTC View advisory →
CVE-2026-55462 Medium 4.3

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, UsersController::show() and printInventory() authorize only user viewing before loading

10 Jul 2026, 19:35 UTC View advisory →
CVE-2026-55461 Medium 6.1

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, the user edit flow stores url()->previous() from the attacker-controlled Referer header

10 Jul 2026, 19:41 UTC View advisory →
CVE-2026-55460 High 7.1

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, an authenticated non-admin user with users.view and users.edit but without users.delete

10 Jul 2026, 18:39 UTC View advisory →
CVE-2026-55455 Medium 5.3

Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 2.1, the outbound HTTP host filter applied by WebClientUtils (used b

24 Jun 2026, 21:36 UTC View advisory →
CVE-2026-55454 Critical 9.9

Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 2.1, the bundled Caddy reverse-proxy's admin API — which has no auth

24 Jun 2026, 21:38 UTC View advisory →
CVE-2026-55452 Medium 4.8

Snipe-IT is an IT asset/license management system. Prior to 8.5.0, Actionlog::logaction() stores the request User-Agent header and ReportsController::postA

10 Jul 2026, 19:40 UTC View advisory →
CVE-2026-55450 Critical 9.3

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.1, unauthenticated users can upload any amount of data to the s

23 Jun 2026, 16:17 UTC View advisory →
CVE-2026-55448 Medium 6.3

mise manages dev tools like node, python, cmake, and terraform. From 2026.3.15 until 2026.6.4, mise loads github.credential_command from local project conf

26 Jun 2026, 16:46 UTC View advisory →
CVE-2026-55447 Critical 9.6

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.2, by controlling a files that are digested into the RAG, an at

23 Jun 2026, 16:21 UTC View advisory →
CVE-2026-55446 High 7.5

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.0.19, an attacker can send a /api/v1/files/upload/ request withou

23 Jun 2026, 16:26 UTC View advisory →
CVE-2026-55445 Critical 9.3

Qinglong is a timed task management platform supporting Python3, JavaScript, Shell, and Typescript. Prior to 2.20.1, the init guard middleware in back/load

15 Jul 2026, 21:20 UTC View advisory →
CVE-2026-55443 Medium 5.1

LangChain is a framework for building agents and LLM-powered applications. Prior to 1.3.9, several LangChain components that resolve filesystem paths or ex

22 Jun 2026, 17:21 UTC View advisory →
CVE-2026-55441 High 8.6

mise manages dev tools like node, python, cmake, and terraform. Prior to 2026.6.4, mise's trust feature gates config files (mise.toml, .tool-versions) thro

26 Jun 2026, 16:48 UTC View advisory →
CVE-2026-55440 Medium 6.5

Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior to 3.0.7, the COMMAND_RESULTS handler in ufo/server/ws/h

16 Jul 2026, 15:35 UTC View advisory →
CVE-2026-55439 Medium 5.5

Halo is an open source website building tool. Prior to 2.24.3, a path traversal vulnerability in the backup download endpoint allows authenticated administ

25 Jun 2026, 15:57 UTC View advisory →
CVE-2026-55438 Medium 5.8

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.17, 2.32.7, 2.33.8, and 2.34.2, Coder's subdo

08 Jul 2026, 00:31 UTC View advisory →
CVE-2026-55437 Medium 5.4

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.17, 2.32.7, 2.33.8, and 2.34.2, the `AgentLog

08 Jul 2026, 00:29 UTC View advisory →
CVE-2026-55436 High 7.4

Coder allows organizations to provision remote development environments via Terraform. Starting in version 2.30.0 and prior to versions 2.32.7, 2.33.8, and

08 Jul 2026, 00:26 UTC View advisory →
CVE-2026-55435 Medium 5.4

Coder allows organizations to provision remote development environments via Terraform. Starting in version 2.30.0 and prior to versions 2.32.7, 2.33.8, and

07 Jul 2026, 17:37 UTC View advisory →
CVE-2026-55434 Medium 6.5

Coder allows organizations to provision remote development environments via Terraform. Starting in version 2.33.0 and prior to versions 2.33.8 and 2.34.2,

07 Jul 2026, 20:14 UTC View advisory →
CVE-2026-55433 Medium 5.4

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7, 2.33.8, and 2.34.2, the devcontain

08 Jul 2026, 00:22 UTC View advisory →
CVE-2026-55432 Medium 5.4

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7, 2.33.8, and 2.34.2, the `CreateSub

08 Jul 2026, 00:20 UTC View advisory →
CVE-2026-55431 High 7.7

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7, 2.33.8, and 2.34.2, `coder open ap

08 Jul 2026, 00:10 UTC View advisory →
CVE-2026-55430 Medium 5.8

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7, 2.33.8, and 2.34.2, the workspace

08 Jul 2026, 00:03 UTC View advisory →
CVE-2026-55429 High 8.7

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7, 2.33.8, and 2.34.2, `UpsertWorkspa

08 Jul 2026, 00:00 UTC View advisory →
CVE-2026-55428 High 8.2

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7, 2.33.8, and 2.34.2, the tailnet co

07 Jul 2026, 23:57 UTC View advisory →
CVE-2026-55427 High 8.3

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7, 2.33.8, and 2.34.2, `coder config-

07 Jul 2026, 23:55 UTC View advisory →
CVE-2026-55423 Medium 6.1

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.7.0, the logout button does not clear the session. The previous u

23 Jun 2026, 16:27 UTC View advisory →
CVE-2026-55418 High 8.6

FastGPT is an open source AI knowledge base platform. Prior to v4.15.0-beta5, two FastGPT file handlers authorize an unrelated resource and then sign or re

07 Jul 2026, 21:18 UTC View advisory →
CVE-2026-55417 Medium 6.9

Chevereto is a self-hosted media-sharing platform. Starting in version 3.7.5 and prior to version 4.5.4, when a user enables the private profile option, vi

07 Jul 2026, 20:02 UTC View advisory →
CVE-2026-55413 Critical 9.4

ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI agents. Prior to 3.20.178-lts, any

25 Jun 2026, 16:03 UTC View advisory →
CVE-2026-55412 High 8.3

ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI agents. Prior to 3.20.178-lts, ther

25 Jun 2026, 16:07 UTC View advisory →
CVE-2026-55411 Medium 6.8

ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI agents. Prior to 3.20.1780-lts, the

25 Jun 2026, 16:08 UTC View advisory →
CVE-2026-55410 Medium 6.7

NocoBase is an AI-powered no-code/low-code platform for building business applications and enterprise solutions. Prior to 2.1.19, NocoBase @nocobase/plugin

15 Jul 2026, 20:19 UTC View advisory →
CVE-2026-55409 High 7.6

Filament is a collection of full-stack components for accelerated Laravel development. From 3.0.0 until 3.3.53, a disabled RichEditor field rendered its ra

22 Jun 2026, 21:47 UTC View advisory →
CVE-2026-55408 High 8.4

Koodo Reader is an ebook reader. In version 2.3.0 and earlier, Koodo Reader is vulnerable to remote code execution through malicious EPUB files because the

07 Jul 2026, 21:02 UTC View advisory →
CVE-2026-55407 Medium 6.3

Buffa is a pure-Rust Protocol Buffers implementation with first-class protobuf editions support. Prior to 0.8.0, the decode_unknown_field function in buffa

16 Jul 2026, 15:57 UTC View advisory →
CVE-2026-55406 Medium 5.9

Buffa is a pure-Rust Protocol Buffers implementation with first-class protobuf editions support. Prior to 0.7.0, a soundness bug in the OwnedView type allo

16 Jul 2026, 15:54 UTC View advisory →
CVE-2026-55405 High 7.6

LangChain4j is a Java library for building LLM-powered applications on the JVM. Prior to 1.2.1-beta8, 1.5.1-beta11, 1.11.8-beta19, and 1.16.3-beta26, the M

10 Jul 2026, 20:33 UTC View advisory →
CVE-2026-55404 High 7.5

yt-dlp and youtube-dl are command-line audio/video downloaders. Prior to 2026.7.4, the --write-link, --write-url-link, and --write-desktop-link options can

08 Jul 2026, 19:36 UTC View advisory →
CVE-2026-55399 Medium 5.1

CVE-2026-55399 is a resource exhaustion vulnerability in the Secure Access publisher prior to 14.55. Attackers with valid credentials to the Secure Access

15 Jul 2026, 20:20 UTC View advisory →
CVE-2026-55398 Medium 6.9

CVE-2026-55398 is a memory management vulnerability in Secure Access clients and servers prior to 14.55. Attackers with intimate knowledge of and total con

15 Jul 2026, 20:17 UTC View advisory →
CVE-2026-55388 High 8.1

piscina is a node.js worker pool implementation. Prior to 6.0.0-rc.2, 5.2.0, and 4.9.3, piscina's constructor and run() paths read the filename option via

22 Jun 2026, 16:50 UTC View advisory →
CVE-2026-55377 High 8.1

Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 1.41.0, Logto's Account Center step-up check accepted any active verifi

10 Jul 2026, 19:57 UTC View advisory →
CVE-2026-55370 Medium 6.4

Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 1.41.0, Logto's existing TOTP verification accepted a successfully used

10 Jul 2026, 19:56 UTC View advisory →
CVE-2026-55276 Unscored

Always-Incorrect Control Flow Implementation vulnerability in Apache Tomcat meant that special roles and empty authorisation constraints were not included

29 Jun 2026, 20:42 UTC View advisory →
CVE-2026-55255 Critical 9.9

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.2, an Insecure Direct Object Reference (IDOR) vulnerability in

23 Jun 2026, 16:28 UTC View advisory →
CVE-2026-55254 Medium 4.8

NCalc is a fast, lightweight expression evaluator for .NET. Prior to 6.1.1, the factorial operator implementation in src/NCalc.Core/Helpers/MathHelper.cs p

17 Jul 2026, 19:55 UTC View advisory →
CVE-2026-55249 Medium 6.3

@rtk-ai/rtk-rewrite transparently rewrites shell commands executed via OpenClaw's exec tool to their RTK equivalents. In 1.0.0, the @rtk-ai/rtk-rewrite Ope

23 Jun 2026, 18:33 UTC View advisory →
CVE-2026-55242 High 8.8

ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.111.0 and 16.22.0, an authenticated user with a standard operational role

15 Jul 2026, 15:38 UTC View advisory →
CVE-2026-55238 Medium 5.3

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a vulnerability concerning the processing of RDP Confirm Active PDU, where during the

20 Jul 2026, 17:05 UTC View advisory →
CVE-2026-55234 High 8.5

Wekan is open source kanban built with Meteor. Prior to 9.37, Wekan DDP update allow rules in server/permissions/cards.js, server/permissions/lists.js, and

15 Jul 2026, 21:13 UTC View advisory →
CVE-2026-55233 High 7.5

OpenResty is a high performance web platform. From 1.29.2.1 to before 1.29.2.5, an out-of-bounds write vulnerability exists in the upstream PROXY protocol

10 Jul 2026, 19:59 UTC View advisory →
CVE-2026-55229 High 7.5

Gotenberg is a Docker-powered stateless API for PDF files. Prior to 8.34.0, Gotenberg's /forms/libreoffice/convert endpoint allows a specially crafted docu

10 Jul 2026, 20:35 UTC View advisory →
CVE-2026-55223 Medium 6.3

c3p0 is a JDBC Connection pooling library. In versions prior to 0.14.0, c3p0 in combination with other libraries, can compose to a "sink" for deserializati

30 Jun 2026, 22:56 UTC View advisory →
CVE-2026-55219 Medium 5.3

Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.5, the credit payment implementation in a

20 Jul 2026, 20:20 UTC View advisory →
CVE-2026-55213 High 7.5

h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3. Prior to commit edd7a120bfc4af11ac0cbebce2a43cc1f93f9af1, when h2o processes a QPACK in

10 Jul 2026, 20:49 UTC View advisory →
CVE-2026-55206 High 8.7

py7zr is a Python-based library and utility to support 7zip archive compression, decompression, encryption and decryption. Prior to 1.1.3, PackInfo._read()

08 Jul 2026, 20:32 UTC View advisory →
CVE-2026-55195 High 8.7

py7zr is a Python-based library and utility to support 7zip archive compression, decompression, encryption and decryption. Prior to 1.1.3, py7zr's Worker.d

08 Jul 2026, 20:30 UTC View advisory →
CVE-2026-55189 High 7.7

RustFS is a distributed object storage system built in Rust. From 1.0.0-alpha.1 until 1.0.0-beta.9, when the FTP frontend is enabled, the FTP read and prob

26 Jun 2026, 19:59 UTC View advisory →
CVE-2026-55188 High 8.2

RustFS is a distributed object storage system built in Rust. From 1.0.0-alpha.1 until 1.0.0-beta.9, RustFS contains an authorization bypass in the bucket r

26 Jun 2026, 20:03 UTC View advisory →
CVE-2026-55187 Medium 5.8

Mailpit is an email testing tool and API for developers. Prior to 1.30.2, the remediation shipped for CVE-2026-27808 is incomplete because the tools.IsInte

10 Jul 2026, 21:43 UTC View advisory →
CVE-2026-55180 Medium 6.5

pnpm is a package manager. Prior to 10.34.2 and 11.5.3, pnpm and pacquet expanded ${ENV_VAR} placeholders from repository-controlled .npmrc and pnpm-worksp

25 Jun 2026, 17:00 UTC View advisory →
CVE-2026-55175 High 7.5

Spinnaker is an open source, multi-cloud continuous delivery platform. Prior to versions 2026.1.1, 2026.0.3, 2025.4.4, and 2025.3.4 on their respective rel

10 Jul 2026, 21:52 UTC View advisory →
CVE-2026-55173 High 8.1

WWBN AVideo is an open source video platform. Versions 29.0 and below remain vulnerable to OS command injection because the fix for CVE-2026-33482 was inco

16 Jul 2026, 20:41 UTC View advisory →
CVE-2026-55145 Medium 6.3

Improper neutralization of special elements used in a command ('command injection') in Outlook Copilot allows an authorized attacker to perform tampering o

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55144 High 7.1

Missing cryptographic step in Windows CryptoAPI allows an authorized attacker to perform tampering locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-55142 Medium 5.5

Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55141 High 7.8

Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55140 High 7.8

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55139 Medium 5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55138 Medium 5.5

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55137 High 7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55136 High 7.8

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55135 Medium 4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perfor

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55134 High 7.8

Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55133 High 7.8

Heap-based buffer overflow in Microsoft Office OneNote allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55132 High 7.8

Double free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55131 High 7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55130 High 7.8

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55129 High 7.8

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55128 High 7.8

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55127 High 7.8

Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55126 High 7.3

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perfor

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55125 High 7.8

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55124 Medium 5.5

Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55123 High 7.8

Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55122 High 7.1

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55121 Medium 5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:10 UTC View advisory →
CVE-2026-55120 High 7.8

Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55119 High 8.1

A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Talk Application to e

02 Jul 2026, 14:50 UTC View advisory →
CVE-2026-55118 High 8.3

A malicious actor with access to the network,low privileges and under certain conditions could exploit an Improper Access Control vulnerability found in Un

02 Jul 2026, 14:50 UTC View advisory →
CVE-2026-55117 High 8.6

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Access Application to access files on the host dev

02 Jul 2026, 14:50 UTC View advisory →
CVE-2026-55116 Critical 9

A malicious actor with access to the network and under certain network configurations could exploit an Improper Access Control vulnerability found in certa

02 Jul 2026, 14:50 UTC View advisory →
CVE-2026-55115 Critical 9.9

A malicious actor with access to the network and low privileges could exploit a Server-Side Request Forgery (SSRF) in UniFi Protect Application to escalate

02 Jul 2026, 14:50 UTC View advisory →
CVE-2026-55114 High 8.8

A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Network Application t

02 Jul 2026, 14:50 UTC View advisory →
CVE-2026-55113 High 7.5

A malicious actor with access to the network could exploit a Server-Side Request Forgery (SSRF) vulnerability found in UniFi Talk Application to execute a

02 Jul 2026, 14:50 UTC View advisory →
CVE-2026-55112 High 7.5

A malicious actor with access to the network and low privileges and under certain conditions could exploit an Improper Access Control vulnerability found i

02 Jul 2026, 14:50 UTC View advisory →
CVE-2026-55111 High 7.5

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Protect Floodlight devices to access files on the

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-55110 High 7.5

A malicious actor who lures an authenticated user to a malicious page could exploit a Cross-Origin Resource Sharing (CORS) misconfiguration found in UniFi

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-55100 High 8.7

hashi-vault-js is a Node.js module for interacting with the HashiCorp Vault API. Prior to 0.5.2, src/Vault.js concatenates unencoded identifier values incl

31 Jul 2026, 17:03 UTC View advisory →
CVE-2026-55092 High 7

Trivy is a security scanner. Prior to 0.71.1, when Trivy downloads an OCI artifact, it uses the org.opencontainers.image.title annotation from the artifact

25 Jun 2026, 16:26 UTC View advisory →
CVE-2026-55079 Medium 4.9

Coder allows organizations to provision remote development environments via Terraform. Starting in version 2.24.0 and prior to versions 2.29.7, 2.32.7, 2.3

07 Jul 2026, 23:50 UTC View advisory →
CVE-2026-55078 Medium 6.5

Coder allows organizations to provision remote development environments via Terraform. Starting in version 2.17.0 and prior to versions 2.29.7, 2.32.7, 2.3

07 Jul 2026, 22:47 UTC View advisory →
CVE-2026-55077 High 7.2

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7, 2.33.8, and 2.34.2, the `PUT /api/

07 Jul 2026, 22:44 UTC View advisory →
CVE-2026-55076 High 7.4

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7, 2.33.8, and 2.34.2, Coder's OIDC c

07 Jul 2026, 22:23 UTC View advisory →
CVE-2026-55075 High 7.4

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7, 2.32.7, 2.33.8, and 2.34.2, two flaws in C

07 Jul 2026, 21:33 UTC View advisory →
CVE-2026-55069 High 8.7

Kestra is an open-source, event-driven orchestration platform. Prior to 1.3.24, this vulnerability exists in the BasicAuth authentication component of the

26 Jun 2026, 20:50 UTC View advisory →
CVE-2026-55058 High 7.8

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55057 Medium 5.5

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55056 High 7.8

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55055 High 7.8

Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55054 Medium 6.5

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55053 High 7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55052 High 8.8

Missing authorization in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55051 Medium 6.5

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55050 Medium 5.5

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55049 High 7.8

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55048 High 7.8

Integer overflow or wraparound in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55047 Medium 5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55046 Medium 5.5

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55045 High 8.4

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55044 High 7.8

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55043 High 7.8

Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55042 Medium 5.5

Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55041 High 7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55040 Critical 9.1

Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-55039 High 7.8

Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55038 High 7.8

Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55037 High 7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55036 High 7.8

Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55035 Medium 5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55034 High 7.3

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perfor

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55033 High 7.8

Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55032 High 7.8

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55031 High 7.8

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55030 Medium 4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perfor

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55029 High 7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55028 Medium 5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55027 Medium 5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55026 Medium 6.2

Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55025 High 7.8

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55024 High 7.8

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55023 Medium 5.5

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55022 High 7.8

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55021 High 7.3

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perfor

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55020 Medium 4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perfor

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55019 Medium 4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perfor

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55018 High 7.8

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55017 High 7.8

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55016 Medium 4.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perfor

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55014 High 7.8

Improper access control in Windows Remote Help Defense allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-55012 High 7.8

Integer overflow or wraparound in Microsoft Defender allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-55011 High 7.8

Integer underflow (wrap or wraparound) in Microsoft Defender allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-55010 Critical 9.8

Heap-based buffer overflow in Minecraft Bedrock Dedicated Server allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-55009 High 7.8

Deserialization of untrusted data in Microsoft Exchange Server allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-55008 Critical 9.6

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker to perfor

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-55006 High 7.8

Insufficient granularity of access control in Microsoft Exchange Server allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-55005 High 8.8

Heap-based buffer overflow in Microsoft Exchange Server allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-55004 High 7.8

Double free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-55003 Medium 6.5

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-55002 High 7.8

External control of file name or path in SQL Server allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-55001 High 7.8

Improper certificate validation in Windows Active Directory allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-55000 Medium 6.4

Use after free in Windows USB Print Driver allows an unauthorized attacker to elevate privileges with a physical attack.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54999 High 8.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an unauthorized attacker to execute co

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54998 High 8.8

Incorrect authorization in Microsoft Exchange Online allows an authorized attacker to elevate privileges over a network.

02 Jul 2026, 22:18 UTC View advisory →
CVE-2026-54997 Medium 5.5

Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54996 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to el

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54995 High 8.1

Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54993 High 7.8

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54992 High 8.4

Heap-based buffer overflow in Windows Message Queuing Queue Manager allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54991 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to el

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54990 Critical 9.8

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54989 High 7

Use after free in Quality Windows Audio/Video Experience (QWAVE) service allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54988 Medium 6.1

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-54987 High 7.8

Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54986 High 7.8

Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54983 High 7.5

Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54982 High 8.8

Integer underflow (wrap or wraparound) in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent net

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54919 High 7.4

cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. In affected Mbed TLS backend versions from 0.31.0 through 0.46.1 and wolf

10 Jul 2026, 16:06 UTC View advisory →
CVE-2026-54917 High 7.8

SeaweedFS is a distributed storage system for object storage (S3), file systems, and Iceberg tables. Prior to 4.30, the S3 API gateway and the Iceberg REST

25 Jun 2026, 18:41 UTC View advisory →
CVE-2026-54911 Medium 6.5

UltraJSON is a fast JSON encoder and decoder written in pure C with bindings for Python 3.7+. Prior to 5.13.0, ujson.dumps() (or ujson.dump() or ujson.enco

22 Jun 2026, 20:53 UTC View advisory →
CVE-2026-54910 High 7.7

FileBrowser Quantum is a free, self-hosted, web-based file manager. Prior to version 1.4.3-beta, the `subtitlesHandler` endpoint (`GET /api/media/subtitles

20 Jul 2026, 14:20 UTC View advisory →
CVE-2026-54909 Medium 5.3

pion/stun is a Go implementation of STUN. Prior to 3.1.3, XORMappedAddress.GetFromAs can panic while parsing a malformed short XOR-MAPPED-ADDRESS attribute

31 Jul 2026, 22:03 UTC View advisory →
CVE-2026-54906 Low 2.1

concurrent-ruby is a modern concurrency tools for Ruby. Prior to 1.3.7, Concurrent::ReadWriteLock#release_write_lock does not verify that the calling threa

24 Jun 2026, 15:46 UTC View advisory →
CVE-2026-54905 Low 2

concurrent-ruby is a modern concurrency tools for Ruby. Prior to 1.3.7, Concurrent::ReentrantReadWriteLock can incorrectly grant a write lock after one thr

24 Jun 2026, 15:42 UTC View advisory →
CVE-2026-54904 High 8.2

concurrent-ruby is a modern concurrency tools for Ruby. Prior to 1.3.7, Concurrent::AtomicReference#update can enter a permanent busy retry loop when the c

24 Jun 2026, 15:44 UTC View advisory →
CVE-2026-54903 Medium 6.3

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.2, Oj.load is vulnerable to heap corruption wh

30 Jun 2026, 23:42 UTC View advisory →
CVE-2026-54902 Medium 6.3

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. Prior to version 3.17.2, is vulnerable to Use-After-Free when in SAJ mod

30 Jun 2026, 23:40 UTC View advisory →
CVE-2026-54901 Medium 6.3

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.2, Oj::Parser in usual mode does not mark arra

30 Jun 2026, 23:36 UTC View advisory →
CVE-2026-54900 Medium 6.3

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.2, when in usual mode with create_id enabled,

30 Jun 2026, 23:34 UTC View advisory →
CVE-2026-54899 Medium 6.3

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. Prior to version 3.17.2, disabling symbol_keys on a reused Oj::Parser in

30 Jun 2026, 23:03 UTC View advisory →
CVE-2026-54898 Low 2.1

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.2,Oj::Parser#parse is vulnerable to a heap use

30 Jun 2026, 23:24 UTC View advisory →
CVE-2026-54897 Low 2.1

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. Prior to 3.17.2, Oj::Doc iterators (each_value, each_child, each_leaf) w

30 Jun 2026, 23:22 UTC View advisory →
CVE-2026-54896 Low 2.1

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.2, when in object mode, Oj.dump is vulnerable

30 Jun 2026, 23:20 UTC View advisory →
CVE-2026-54894 Medium 6.9

Allocation of Resources Without Limits or Throttling in ueberauth guardian allows denial of service via unbounded atom creation from attacker-influenced bi

01 Aug 2026, 18:46 UTC View advisory →
CVE-2026-54892 High 8.7

Inefficient algorithmic complexity in Plug's nested-parameter decoder allows an unauthenticated remote attacker to cause denial of service. Plug.Conn.Query

23 Jun 2026, 12:31 UTC View advisory →
CVE-2026-54891 Medium 6.3

Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in Erlang/OTP ssl (tls_gen_connection module) allows

02 Jul 2026, 16:06 UTC View advisory →
CVE-2026-54890 High 8.2

Integer Underflow (Wrap or Wraparound) vulnerability in erlang otp erlang/otp (erts modules), erlang otp erts (erts modules) allows Forced Integer Overflow

27 Jul 2026, 15:39 UTC View advisory →
CVE-2026-54889 Medium 5.1

Improper Neutralization of Input During Web Page Generation (XSS) vulnerability in leandrocp mdex allows cross-site scripting via unsanitized URL schemes i

29 Jun 2026, 19:10 UTC View advisory →
CVE-2026-54888 Medium 6.9

Uncontrolled Recursion vulnerability in leandrocp mdex allows denial of service via deeply nested Markdown input. mdex converts between an Elixir %MDEx.Doc

29 Jun 2026, 19:10 UTC View advisory →
CVE-2026-54887 Medium 6.3

Use of Default Cryptographic Key vulnerability in Erlang/OTP ssl (DTLS server) allows predictable DTLS cookie computation during the startup window, enabli

02 Jul 2026, 16:06 UTC View advisory →
CVE-2026-54886 Medium 5.3

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Erlang OTP ssh (ssh_sftpd module) allows an authenticated SFTP user to render an SF

02 Jul 2026, 16:06 UTC View advisory →
CVE-2026-54885 Medium 6.9

Server-Side Request Forgery vulnerability in malach-it Boruta allows an unauthenticated remote attacker to cause the OAuth/OpenID authorization server to i

30 Jul 2026, 14:16 UTC View advisory →
CVE-2026-54876 High 7.5

Issue summary: A malicious TLS server can cause a memory leak in a TLS client that has enabled OCSP response checking by sending an OCSP response that cont

05 Aug 2026, 13:59 UTC View advisory →
CVE-2026-54849 Critical 9.3

Unauthenticated SQL Injection in Premmerce Wishlist for WooCommerce <= 1.1.11 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-54848 High 8.3

Insertion of Sensitive Information Into Sent Data vulnerability in Saad Iqbal APIExperts Square for WooCommerce allows Retrieve Embedded Sensitive Data. Th

25 Jun 2026, 13:26 UTC View advisory →
CVE-2026-54847 High 7.5

Unauthenticated Broken Access Control in Stylish Cost Calculator <= 8.3.9 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54846 High 7.5

Unauthenticated Broken Access Control in Syncee Premium Dropshipping & Wholesale <= 1.0.27 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54845 High 8.1

Unauthenticated Local File Inclusion in MDTF <= 1.3.8 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-54844 High 7.5

Unauthenticated Broken Access Control in CheckView Automated Testing <= 2.1.0 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-54843 Critical 9.3

Unauthenticated SQL Injection in MDTF <= 1.3.7 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-54842 High 8.1

Missing Authorization vulnerability in Royal Plugins Royal MCP allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects

25 Jun 2026, 13:16 UTC View advisory →
CVE-2026-54841 High 7.5

Unauthenticated Sensitive Data Exposure in Vitepos <= 3.4.2 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-54840 High 7.3

Unauthenticated Broken Access Control in Newsletters <= 4.13 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54839 High 7.5

Unauthenticated Sensitive Data Exposure in Trinity Backup – Backup, Migrate, Restore, Clone & Schedule Backups <= 2.0.9 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54838 High 8.5

Subscriber SQL Injection in WC Vendors Marketplace <= 2.6.8 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-54837 High 7.5

Unauthenticated Broken Access Control in Intranet & Private Site – All-In-One Intranet <= 1.8.1 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54836 Critical 9.3

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in YMC Filter allows SQL Injection. This issue affects Y

25 Jun 2026, 13:17 UTC View advisory →
CVE-2026-54835 High 7.5

Unauthenticated Broken Access Control in Five Star Restaurant Menu <= 2.5.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54834 High 7.5

Unauthenticated Sensitive Data Exposure in Object Cache 4 everyone <= 2.3.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54833 High 7.4

Unauthenticated Backdoor in Enable CORS <= 2.0.3 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54832 High 7.5

Unauthenticated Broken Access Control in Gutenverse Companion <= 2.5.0 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54831 Critical 9.3

Unauthenticated SQL Injection in GeoDirectory <= 2.8.162 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54830 High 7.5

Unauthenticated Broken Access Control in Five Star Restaurant Reservations <= 2.7.19 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-54829 High 7.5

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Jacob N. Breetvelt WP Photo Album Plus allows Blind S

25 Jun 2026, 13:25 UTC View advisory →
CVE-2026-54828 High 7.5

Unauthenticated Broken Access Control in Motors <= 1.4.109 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-54827 Critical 9.3

Unauthenticated SQL Injection in Real Estate 7 <= 3.5.9 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54826 High 7.6

Subscriber Insecure Direct Object References (IDOR) in SupportCandy <= 3.4.6 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54825 Critical 9.3

Unauthenticated SQL Injection in wpDataTables <= 7.4 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54824 High 7.5

Unauthenticated Sensitive Data Exposure in Ads by WPQuads <= 3.0.3 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54823 Critical 9.9

Contributor Remote Code Execution (RCE) in Widget Options <= 4.2.3 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-54822 High 8.5

Subscriber SQL Injection in SALESmanago & Leadoo <= 3.11.2 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-54821 High 7.4

Subscriber Sensitive Data Exposure in Visual Link Preview <= 2.3.1 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-54820 Critical 9.3

Unauthenticated SQL Injection in JetBooking <= 4.0.4.1 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-54787 Low 3.1

sigstore-go is a Go library for Sigstore signing and verification. Prior to 1.2.1, sigstore-go does not check a bundle signing timestamp against the validi

31 Jul 2026, 21:58 UTC View advisory →
CVE-2026-54785 Medium 6.2

gemini-bridge is a lightweight MCP server bridging AI agents to Google's Gemini AI via the official CLI. From 1.0.0 until 1.3.1, consult_gemini_with_files

31 Jul 2026, 22:31 UTC View advisory →
CVE-2026-54784 High 7.4

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. In version 1.9.0, CoreWCF SPNEGO SecurityContextToken negotia

08 Jul 2026, 22:18 UTC View advisory →
CVE-2026-54783 High 7.4

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, CoreWCF WS-Security endorsing and s

08 Jul 2026, 22:16 UTC View advisory →
CVE-2026-54782 Critical 10

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, CoreWCF SAML 1.1 and SAML 2.0 token

08 Jul 2026, 22:20 UTC View advisory →
CVE-2026-54781 High 7.4

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, CoreWCF SAML token validation does

08 Jul 2026, 22:19 UTC View advisory →
CVE-2026-54780 Low 3.7

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, the CoreWCF WS-Security 1.0 receive

08 Jul 2026, 22:15 UTC View advisory →
CVE-2026-54779 Medium 5.9

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, CoreWCF SAML token replay protectio

08 Jul 2026, 22:07 UTC View advisory →
CVE-2026-54778 Medium 6.2

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, CoreWCF UnixDomainSocket POSIX peer

08 Jul 2026, 22:11 UTC View advisory →
CVE-2026-54777 Medium 6.5

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, CoreWCF NetNamedPipe transport acce

08 Jul 2026, 22:01 UTC View advisory →
CVE-2026-54776 Medium 4.4

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, a CoreWCF service hosted on Unix Do

08 Jul 2026, 22:04 UTC View advisory →
CVE-2026-54775 Medium 6.5

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, a CoreWCF service listening on a Ka

08 Jul 2026, 22:13 UTC View advisory →
CVE-2026-54774 High 7.4

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, SamlSerializer skips final Signatur

08 Jul 2026, 22:17 UTC View advisory →
CVE-2026-54773 Medium 5.9

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, CoreWCF WS-Security signature verif

08 Jul 2026, 22:09 UTC View advisory →
CVE-2026-54772 High 7.5

CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. Prior to 1.8.1 and 1.9.1, an unauthenticated remote attacker

08 Jul 2026, 22:06 UTC View advisory →
CVE-2026-54768 Medium 6.9

WPGraphQL provides a GraphQL API for WordPress sites. From 2.0.0 until 2.15.1, the deprecated user field on SendPasswordResetEmailPayload lets an unauthent

31 Jul 2026, 22:24 UTC View advisory →
CVE-2026-54762 Medium 5.9

Traefik is an HTTP reverse proxy and load balancer. From 3.7.0-ea.1 until 3.7.5, there is a medium severity vulnerability in Traefik's Kubernetes Ingress N

23 Jun 2026, 19:17 UTC View advisory →
CVE-2026-54761 Medium 6

Traefik is an HTTP reverse proxy and load balancer. Prior to 3.6.21 and 3.7.5, there is a high severity vulnerability in Traefik's Kubernetes Gateway provi

23 Jun 2026, 19:15 UTC View advisory →
CVE-2026-54759 High 8.7

SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, Lute's HTML sanitizer does not remove elements. Combined with the SiYuan Ele

24 Jun 2026, 21:21 UTC View advisory →
CVE-2026-54753 Medium 5.9

Nx is a monorepo solution for TypeScript and polyglot codebases. From 17.0.4 until 22.7.2 and 23.0.0-beta.2, the local HTTP server started by nx graph sent

26 Jun 2026, 18:13 UTC View advisory →
CVE-2026-54737 High 7.3

@phun-ky/defaults-deep is a library like lodash defaultsDeep with array preservation and no lodash dependency. Prior to 2.0.5, defaultsDeep() recursively m

31 Jul 2026, 17:48 UTC View advisory →
CVE-2026-54736 High 8.2

Phalcon is a high-performance, full-stack PHP framework. Prior to 5.14.1, Phalcon\Encryption\Crypt::decrypt compares the attacker-supplied HMAC tag against

10 Jul 2026, 21:02 UTC View advisory →
CVE-2026-54733 Critical 9.3

The Microsoft 365 and Microsoft Entra ID Plugins for Moodle provide Office 365 and Azure Active Directory integration for Moodle. Prior to 4.5.6, 5.0.5, an

16 Jul 2026, 14:52 UTC View advisory →
CVE-2026-54729 High 8.7

DSSRF is a Node.js library that provides a wide range of utilities and advanced SSRF defense checks. Prior to 1.0.5, is_url_safe can treat localhost as saf

31 Jul 2026, 16:58 UTC View advisory →
CVE-2026-54728 Medium 6.1

bunkerweb is an Open-source and next-generation Web Application Firewall (WAF). Prior to BunkerWeb 1.6.12 and BunkerWeb PRO 0.57, authenticated Host header

16 Jul 2026, 19:18 UTC View advisory →
CVE-2026-54725 Critical 9.6

vault-secrets-webhook is a Kubernetes mutating webhook that makes direct secret injection into Pods possible. Prior to 1.23.1, parseVaultConfig() in pkg/we

31 Jul 2026, 17:45 UTC View advisory →
CVE-2026-54722 High 8.7

DSSRF is a Node.js library that provides a wide range of utilities and advanced SSRF defense checks. Prior to 1.0.4, is_url_safe in src/helpers.ts strips t

30 Jul 2026, 16:27 UTC View advisory →
CVE-2026-54717 Medium 5.4

Silverstripe CMS is an open source content management system. Prior to 6.2.1, page breadcrumbs in the CMS are vulnerable to cross-site scripting when viewe

06 Aug 2026, 20:27 UTC View advisory →
CVE-2026-54715 High 7.1

GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the browser. In version 1.10.2, parse_br

30 Jul 2026, 20:23 UTC View advisory →
CVE-2026-54714 Medium 6.1

Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 1.41.0, @logto/core reflected the SAML RelayState, SAMLResponse, and ac

10 Jul 2026, 19:54 UTC View advisory →
CVE-2026-54707 Medium 5.4

OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network. Prior to

31 Jul 2026, 16:28 UTC View advisory →
CVE-2026-54706 Medium 4.8

OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network. Prior to

31 Jul 2026, 16:30 UTC View advisory →
CVE-2026-54699 High 7.7

Warp is an agentic development environment. From 0.2024.03.12.08.02.stable_01 until 0.2026.05.06.15.42.stable_01, Warp contains an OS command injection vul

24 Jun 2026, 17:26 UTC View advisory →
CVE-2026-54698 Medium 6

Hasura is an open-source product that provides users GraphQL or REST APIs. Prior to 2.49.2 and 2.45.5, a user can use a where clause on a table computed fi

07 Jul 2026, 21:29 UTC View advisory →
CVE-2026-54696 Low 3.7

Ruby JSON is a JSON implementation for Ruby. Versions 2.9.0 through 2.19.8 are vulnerable to heap buffer overflow when the JSON generator is provided with

30 Jun 2026, 22:05 UTC View advisory →
CVE-2026-54686 Medium 4.3

Warp is an agentic development environment. From 0.2021.04.25.23.05.stable_00 until 0.2026.05.06.15.42.stable_01, Warp accepted certain state-mutating term

24 Jun 2026, 17:28 UTC View advisory →
CVE-2026-54685 Medium 5.3

FileBrowser Quantum is a free, self-hosted, web-based file manager. Prior to version 1.3.2-beta, the `/api/auth/login` authentication endpoint does not exe

20 Jul 2026, 14:17 UTC View advisory →
CVE-2026-54684 High 7

jadx is a Dex to Java decompiler. From 1.5.2 to 1.5.5, a malicious .xapk file can cause jadx to write attacker-controlled archive entry contents outside th

14 Jul 2026, 21:46 UTC View advisory →
CVE-2026-54679 Medium 6.9

jq is a command-line JSON processor. Prior to 1.8.2, on 32bit system, jvp_string_append has a chance of integer/multiple overflowing and then causing a mas

25 Jun 2026, 17:16 UTC View advisory →
CVE-2026-54673 High 8.2

electron-updater allows for automatic updates for Electron apps. Prior to 9.7.0, the HTTP redirect handler (HttpExecutor.prepareRedirectUrlOptions) only st

30 Jun 2026, 22:11 UTC View advisory →
CVE-2026-54672 High 7.8

electron-updater allows for automatic updates for Electron apps. Prior to 26.15.0, AppImage targets built by app-builder-lib could use an empty path compon

30 Jun 2026, 22:15 UTC View advisory →
CVE-2026-54665 Medium 6.3

Apache NiFi 0.0.1 through 2.9.0 support building qualified URLs from one of several HTTP request headers that provide an alternative to the standard Host h

22 Jun 2026, 07:34 UTC View advisory →
CVE-2026-54652 High 8.1

Frigate is an open source network video recorder. In version 0.17.1, the GET /api/logs/{service} endpoint allows any authenticated user including the viewe

08 Jul 2026, 14:52 UTC View advisory →
CVE-2026-54651 Medium 6.9

pypdf is a free and open-source pure-python PDF library. Prior to 6.13.1, an attacker who uses this vulnerability can craft a PDF which leads to an infinit

22 Jun 2026, 20:28 UTC View advisory →
CVE-2026-54639 High 8.8

Style Dictionary, a build system for creating cross-platform styles, has a prototype pollution vulnerability starting in version 4.3.0 and prior to version

24 Jun 2026, 00:17 UTC View advisory →
CVE-2026-54636 Critical 9

Dokku is a docker-powered PaaS. Prior to 0.38.7, the cron plugin utilizes commands in the app.json file to manage system cron running as the Dokku user. An

26 Jun 2026, 16:23 UTC View advisory →
CVE-2026-54607 High 7.7

FastGPT is a knowledge-based AI application platform. Prior to 4.15.0-beta4, the HTTP-tool OpenAPI schema importer validates only the top-level URL before

07 Jul 2026, 21:20 UTC View advisory →
CVE-2026-54602 High 7.1

FastGPT is a knowledge-based AI application platform. Prior to 4.15.0, GET /api/core/ai/record/getRecord authenticates the caller but loads LLM request and

07 Jul 2026, 21:24 UTC View advisory →
CVE-2026-54601 Medium 6.3

FastGPT is an open source AI knowledge base platform. From 4.14.17 to before 4.15.0-beta4, FastGPT allows an authenticated tenant user to call POST /api/co

07 Jul 2026, 21:16 UTC View advisory →
CVE-2026-54592 High 7.5

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.3, Oj::Doc#each_child, when invoked recursivel

30 Jun 2026, 23:16 UTC View advisory →
CVE-2026-54591 High 8.1

AsyncSSH is a Python package which provides an asynchronous client and server implementation of the SSHv2 protocol on top of the Python asyncio framework.

08 Jul 2026, 20:33 UTC View advisory →
CVE-2026-54590 Medium 5.9

AsyncSSH is a Python package which provides an asynchronous client and server implementation of the SSHv2 protocol on top of the Python asyncio framework.

08 Jul 2026, 20:36 UTC View advisory →
CVE-2026-54588 Critical 9.6

Poweradmin is a web-based DNS administration tool for PowerDNS server. Versions prior to 4.2.4 and 4.3.3 use the attacker-controlled `HTTP_HOST` request he

23 Jun 2026, 22:09 UTC View advisory →
CVE-2026-54573 Medium 5.3

Outline is a service that allows for collaborative documentation. Prior to 1.8.0, the AuthenticationHelper.canAccess function uses ctx.originalUrl to verif

25 Jun 2026, 15:59 UTC View advisory →
CVE-2026-54572 High 7.5

Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.74.4, with -l/--links, rclone seri

14 Jul 2026, 21:37 UTC View advisory →
CVE-2026-54568 Medium 4.3

Microsoft UFO open-source framework for intelligent automation across devices and platforms. From 3.0.0 until 3.0.6, a client connected to the UFO WebSocke

16 Jul 2026, 15:32 UTC View advisory →
CVE-2026-54563 High 7.1

Cloudreve is a self-hosted file management and sharing system. Prior to 4.16.1, a Cloudreve WebDAV account rooted at a configured folder can send paths suc

15 Jul 2026, 14:38 UTC View advisory →
CVE-2026-54562 Medium 6.5

Cloudreve is a self-hosted file management and sharing system. Prior to 4.16.1, Cloudreve's remote download workflow accepts user-supplied URLs at POST /ap

15 Jul 2026, 14:37 UTC View advisory →
CVE-2026-54560 High 7.6

Cloudreve is a self-hosted file management and sharing system. From 4.12.0 until 4.16.1, Cloudreve's OAuth access tokens are issued without the OAuth clien

15 Jul 2026, 14:40 UTC View advisory →
CVE-2026-54557 Medium 5.5

mise manages dev tools like node, python, cmake, and terraform. Prior to 2026.6.1, the mise HTTP backend builds its install symlink destination from the ra

26 Jun 2026, 16:47 UTC View advisory →
CVE-2026-54555 High 7.8

rtk filters and compresses command outputs before they reach your LLM context. Prior to 0.42.2, the permission splitter did not conservatively split or rej

23 Jun 2026, 19:05 UTC View advisory →
CVE-2026-54540 High 8.8

Pheditor is a single-file editor and file manager written in PHP. Prior to version 2.0.5, there is an authenticated terminal command whitelist bypass. The

27 Jul 2026, 17:53 UTC View advisory →
CVE-2026-54538 High 7.5

xrdp is an open source RDP server. In versions 0.10.6 and prior, a n issue was discovered where the software fails to properly validate the totalLength fie

20 Jul 2026, 16:57 UTC View advisory →
CVE-2026-54531 Medium 6.9

pypdf is a free and open-source pure-python PDF library. Prior to 6.13.0, an attacker who uses this vulnerability can craft a PDF which leads to an infinit

22 Jun 2026, 20:26 UTC View advisory →
CVE-2026-54530 Medium 6.9

pypdf is a free and open-source pure-python PDF library. Prior to 6.13.0, an attacker who uses this vulnerability can craft a PDF which leads to an infinit

22 Jun 2026, 20:25 UTC View advisory →
CVE-2026-54528 High 7.1

JupyterLab Git is a Git extension for JupyterLab. Prior to 0.54.0, jupyterlab-git uses fnmatch.fnmatchcase() in GitHandler.prepare() in jupyterlab_git/hand

08 Jul 2026, 21:04 UTC View advisory →
CVE-2026-54527 Critical 9.3

JupyterLab Git is a Git extension for JupyterLab. From 0.30.0b3 before 0.54.0, the PlainTextDiff.ts createHeader() method passes Git filenames directly to

08 Jul 2026, 21:03 UTC View advisory →
CVE-2026-54526 High 8.9

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Prior to 3.7.15 and 4.0.6, the allow-list

16 Jul 2026, 19:07 UTC View advisory →
CVE-2026-54522 Low 2.1

MessagePack for Ruby is an implementation of the MessagePack binary serialization format. Prior to 1.8.2, MessagePack::Buffer#clear in ext/msgpack/buffer.c

30 Jul 2026, 16:33 UTC View advisory →
CVE-2026-54518 Medium 6.5

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, Unw

23 Jun 2026, 21:02 UTC View advisory →
CVE-2026-54517 Medium 5.3

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, in

23 Jun 2026, 20:47 UTC View advisory →
CVE-2026-54516 Medium 5.3

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, POJ

23 Jun 2026, 20:48 UTC View advisory →
CVE-2026-54515 Medium 5.3

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.8.0 until 2.18.9, 2.21.5, and 3.

23 Jun 2026, 20:50 UTC View advisory →
CVE-2026-54514 Medium 5.3

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.0.0 until 2.18.8, 2.21.4, and 3.

23 Jun 2026, 20:51 UTC View advisory →
CVE-2026-54513 High 8.1

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.10.0 until 2.18.8, 2.21.4, and 3

23 Jun 2026, 20:53 UTC View advisory →
CVE-2026-54512 High 8.1

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.10.0 until 2.18.8, 2.21.4, and 3

23 Jun 2026, 20:56 UTC View advisory →
CVE-2026-54502 Medium 6.3

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.2, Oj.dump is vulnerable to a stack-based buff

30 Jun 2026, 23:10 UTC View advisory →
CVE-2026-54500 Medium 5.3

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.3, Oj.load in :object mode reads uninitialized

30 Jun 2026, 23:08 UTC View advisory →
CVE-2026-54499 High 7.5

Stanza is a Stanford NLP Python library for tokenization, sentence segmentation, NER, and parsing of many human languages. Prior to 1.12.2, Stanza model lo

08 Jul 2026, 22:23 UTC View advisory →
CVE-2026-54498 High 8.7

view_component is a framework for building reusable, testable, and encapsulated view components in Ruby on Rails. From 4.0.0 until 4.12.0, ViewComponent::B

17 Jul 2026, 20:46 UTC View advisory →
CVE-2026-54497 Medium 6.8

view_component is a framework for building reusable, testable, and encapsulated view components in Ruby on Rails. From 4.0.0 until 4.12.0, ViewComponent::B

17 Jul 2026, 20:45 UTC View advisory →
CVE-2026-54496 Critical 9.3

ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad 5.0.0, halo2_gadgets 0.5.0, orchard 0.14.0, zcash_primitives 0.28.0, and zcashd 6.20.0, the

17 Jul 2026, 16:59 UTC View advisory →
CVE-2026-54490 Medium 6.3

websocket-driver is a WebSocket protocol handler with pluggable I/O. Prior to 0.7.5, if this library is used with the permessage-deflate extension, a WebSo

17 Jul 2026, 20:54 UTC View advisory →
CVE-2026-54489 Critical 9.1

Dell Virtual Storage Integrator for VMware vSphere Client, versions prior to 10.11.1.0, contain(s) a Sensitive Information Disclosure vulnerability. An una

06 Aug 2026, 13:54 UTC View advisory →
CVE-2026-54479 Medium 6.9

The WebSocket backend uses charging station identifiers to uniquely associate sessions but allows multiple endpoints to connect using the same session iden

25 Jun 2026, 20:56 UTC View advisory →
CVE-2026-54478 Low 3.7

In NLnet Labs Unbound 1.18.0 up to and including 1.25.1, when Unbound listens on a 'proxy-protocol-port' interface with 'answer-cookie: yes', the RFC 9018

22 Jul 2026, 13:09 UTC View advisory →
CVE-2026-54477 Medium 5.1

The admin panel lacks standard security headers, enabling clickjacking and cross-site scripting attacks.

02 Jul 2026, 23:52 UTC View advisory →
CVE-2026-54475 High 7.5

Missing Authorization vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ. Apache ActiveMQ Classic temporary destinations are exp

30 Jun 2026, 09:48 UTC View advisory →
CVE-2026-54470 Medium 5.3

Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior contain(s) an Improper Restriction of XML External Entity Reference vulnerability. A low privile

10 Jul 2026, 12:20 UTC View advisory →
CVE-2026-54469 High 8.8

Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior, contain(s) a Deserialization of Untrusted Data vulnerability. A low privileged attacker with re

10 Jul 2026, 12:14 UTC View advisory →
CVE-2026-54468 Medium 6.5

Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior, contain(s) a path traversal vulnerability. A low privileged attacker with remote access could p

10 Jul 2026, 12:09 UTC View advisory →
CVE-2026-54466 Critical 9.2

websocket-driver is a WebSocket protocol handler with pluggable I/O. Prior to 0.7.5, the frame format in draft versions of the WebSocket protocol includes

17 Jul 2026, 20:53 UTC View advisory →
CVE-2026-54465 Medium 6.3

websocket-driver is a WebSocket protocol handler with pluggable I/O. Prior to 0.8.1, when websocket-driver is used to implement a WebSocket server on top o

17 Jul 2026, 20:06 UTC View advisory →
CVE-2026-54464 Medium 6.3

### Impact If this library is used in tandem with the `permessage-deflate` extension, a WebSocket server or client can be made to accept messages that are

17 Jul 2026, 20:03 UTC View advisory →
CVE-2026-54463 Medium 6.9

websocket-driver is a WebSocket protocol handler with pluggable I/O. Prior to 0.8.1, draft versions of the WebSocket protocol in websocket-driver include a

17 Jul 2026, 20:05 UTC View advisory →
CVE-2026-54458 Critical 9.6

WWBN AVideo is an open source video platform. Versions prior to 29.0 contain a stored DOM Cross-Site Scripting vulnerability in the YPTSocket plugin. Any u

15 Jul 2026, 21:33 UTC View advisory →
CVE-2026-54448 Medium 6.9

Trivy is a security scanner. Prior to 0.71.0, when Trivy scans a Helm chart archive (.tgz), its custom tar unpacker reads each entry with io.ReadAll(tr) an

25 Jun 2026, 16:27 UTC View advisory →
CVE-2026-54443 Medium 5.9

Dashy is a self-hostable personal dashboard. From 1.9.4 until 3.2.0, the Dashy RSS Widget in src/components/Widgets/RssFeed.vue does not sanitize RSS item

15 Jul 2026, 18:19 UTC View advisory →
CVE-2026-54433 High 7.2

In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, there is Stored Cross-Site Scripting (XSS) via a crafted plain-text email message. The attacker-

14 Jul 2026, 16:18 UTC View advisory →
CVE-2026-54432 Medium 4.7

Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2 allows Stored Cross-Site Scripting (XSS). The issue occurs because the attachment MIME type is not p

14 Jul 2026, 16:21 UTC View advisory →
CVE-2026-54431 Medium 5.1

In liboauth2 the Demonstrating Proof-of-Possession (DPoP) verifier accepts a proof whose JSON Web Key (jwk) header contains private key material. RFC 9449

02 Jul 2026, 10:30 UTC View advisory →
CVE-2026-54430 Medium 5.1

liboauth2 is vulnerable to Server-Side Request Forgery in oauth2_jose_jwks_aws_alb_resolve() function. The AWS ALB verifier reads both signer and kid from

02 Jul 2026, 10:30 UTC View advisory →
CVE-2026-54429 Medium 6

A vulnerability has been identified in SIMATIC S7-PLCSIM Advanced (All versions). Affected devices do not properly handle high-volume multicast network tra

14 Jul 2026, 09:19 UTC View advisory →
CVE-2026-54409 High 7.5

A malicious actor with access to the network and under certain conditions could exploit an Improper Initialization vulnerability found in UniFi Protect App

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-54408 High 8.6

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Protect Application to bypass authentica

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-54407 High 8.6

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Protect Application to bypass authentica

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-54406 High 8.7

A malicious actor with access to the network and high privileges could exploit a Path Traversal vulnerability found in self-hosted instances of UniFi Netwo

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-54405 High 7.5

A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi Network Application to execute a Denia

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-54404 High 8.8

A malicious actor with access to the network and low privileges could exploit a series of authenticated SQL Injection vulnerabilities found in UniFi OS to

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-54403 High 8.6

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in certain devices running UniFi OS to bypass authenticatio

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-54402 Critical 9.9

A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi OS to execute a Com

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-54401 High 7.7

A malicious actor with access to the network and low privileges could exploit a Server-Side Request Forgery (SSRF) to escalate privileges within such UniFi

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-54400 Critical 9.1

A malicious actor with access to the network and high privileges could exploit an Improper Access Control vulnerability found in UniFi Access Application t

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-54371 High 8.4

attr before version 2.6.0 contains a symlink traversal vulnerability in the getfattr and setfattr utilities that allows local attackers to escalate privile

29 Jun 2026, 12:39 UTC View advisory →
CVE-2026-54370 High 7.2

acl before version 2.4.0 contains a time-of-check to time-of-use (TOCTOU) race condition vulnerability that allows local attackers to escalate privileges b

29 Jun 2026, 12:38 UTC View advisory →
CVE-2026-54369 High 8.4

acl before version 2.4.0 contains a symlink traversal vulnerability in the libacl pathname-based functions acl_get_file(), acl_set_file(), acl_extended_fil

29 Jun 2026, 12:37 UTC View advisory →
CVE-2026-54368 High 8.7

CentreStack before 17.4 contains a SQL injection vulnerability in GladDBFiles.SearchEx() and SearchExUnder() that allows authenticated attackers to execute

30 Jul 2026, 12:26 UTC View advisory →
CVE-2026-54367 High 8.8

CentreStack before 17.2 contains an authentication bypass vulnerability that allows unauthenticated attackers to read, write, or delete arbitrary account s

30 Jul 2026, 12:26 UTC View advisory →
CVE-2026-54366 High 8.7

CentreStack before 17.4 contains an XML external entity (XXE) injection vulnerability that allows unauthenticated attackers to exfiltrate arbitrary files b

30 Jul 2026, 12:25 UTC View advisory →
CVE-2026-54365 High 8.7

CentreStack before 17.3 contains an unauthenticated deserialization vulnerability in GSNamespace.dll that allows unauthenticated attackers to create arbitr

30 Jul 2026, 12:25 UTC View advisory →
CVE-2026-54364 Medium 6.9

CentreStack before 17.4 contains a session variable injection vulnerability that allows unauthenticated attackers to inject arbitrary session variables by

30 Jul 2026, 12:24 UTC View advisory →
CVE-2026-54363 Critical 9.3

CentreStack before 17.5 contains a hardcoded cryptographic key vulnerability that allows unauthenticated attackers to forge arbitrary encrypted tokens by e

30 Jul 2026, 12:24 UTC View advisory →
CVE-2026-54353 High 8.5

Budibase is an open-source low-code platform. Prior to 3.39.9, authenticated users with automation permissions can bypass Budibase's SSRF blacklist through

26 Jun 2026, 20:44 UTC View advisory →
CVE-2026-54352 Critical 9.6

Budibase is an open-source low-code platform. Prior to 3.39.9, `POST /api/pwa/process-zip` at packages/server/src/api/routes/static.ts:24 accepts a builder

26 Jun 2026, 20:32 UTC View advisory →
CVE-2026-54351 High 8.2

Budibase is an open-source low-code platform. Prior to 3.39.9, the webhook trigger endpoint in Budibase is publicly accessible and passes the full HTTP req

26 Jun 2026, 20:45 UTC View advisory →
CVE-2026-54350 Critical 10

Budibase is an open-source low-code platform. Prior to 3.39.12, an unauthenticated visitor of any published Budibase app reads every document of the backin

26 Jun 2026, 20:44 UTC View advisory →
CVE-2026-54344 Medium 4.7

ToolJet is an open-source low-code platform for building internal tools. Prior to 3.20.180, ToolJet's render preview deployment workflow interpolates githu

08 Jul 2026, 15:08 UTC View advisory →
CVE-2026-54341 High 7.5

Dragonfly is an in-memory data store built for modern application workloads. Prior to 1.39.0, a crafted RESTORE payload triggers an out-of-bounds read in D

26 Jun 2026, 16:42 UTC View advisory →
CVE-2026-54340 High 7.5

h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3. Prior to commit 9265bdd, there is an HTTP/2 state amplification issue that combines HPA

16 Jul 2026, 23:29 UTC View advisory →
CVE-2026-54335 Low 3.7

Feathersjs is a framework for creating web APIs and real-time applications with TypeScript or JavaScript. In 5.0.44 and earlier, the _.merge(target, source

17 Jul 2026, 20:56 UTC View advisory →
CVE-2026-54329 High 8.5

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, the Accessories API create path mass-assigns request parameters to the Accessory model w

10 Jul 2026, 18:26 UTC View advisory →
CVE-2026-54328 High 7.3

Pi is a minimal terminal coding harness. From 0.74.0 until 0.78.1, Pi versions with temporary npm or git extension package installs used predictable paths

23 Jun 2026, 19:25 UTC View advisory →
CVE-2026-54327 Low 2.2

Pi is a minimal terminal coding harness. From 0.74.0 until 0.78.1, Pi stored API keys and OAuth credentials in auth.json. A race condition in the file writ

23 Jun 2026, 19:28 UTC View advisory →
CVE-2026-54326 Low 2.5

Pi is a minimal terminal coding harness. From 0.74.0 until 0.78.1, Pi HTML exports render session Markdown into a static HTML file. It did not consistently

23 Jun 2026, 19:26 UTC View advisory →
CVE-2026-54325 Medium 4.4

Pi is a minimal terminal coding harness. Pi before 0.79.0 loaded project-local configuration and resources from a repository's .pi directory without first

23 Jun 2026, 19:22 UTC View advisory →
CVE-2026-54324 Medium 6.5

Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. Prior to 0.185.0, a cross-tenant authorization

23 Jun 2026, 18:07 UTC View advisory →
CVE-2026-54323 Medium 5.9

Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. Prior to 0.185.0, the daemon's git clone implem

23 Jun 2026, 18:06 UTC View advisory →
CVE-2026-54322 High 7.7

Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. Prior to 0.185.0, Daytona's organization role u

23 Jun 2026, 18:07 UTC View advisory →
CVE-2026-54321 High 7

Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. From 0.101.0 until 0.184.0, sandbox previews th

23 Jun 2026, 18:10 UTC View advisory →
CVE-2026-54320 High 8.4

Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. Prior to 0.184.0, organization invitations coul

23 Jun 2026, 18:11 UTC View advisory →
CVE-2026-54319 Medium 4.2

Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. Prior to 0.186, a sandbox volume reference (vol

23 Jun 2026, 18:08 UTC View advisory →
CVE-2026-54318 High 7.1

Home Assistant is open source home automation software that puts local control and privacy first. Prior to 2026.5.3, the LocationSensorManager BroadcastRec

23 Jun 2026, 17:40 UTC View advisory →
CVE-2026-54317 High 7.6

Home Assistant is open source home automation software that puts local control and privacy first. Prior to 2026.6.0, the Konnected integration registers an

23 Jun 2026, 17:39 UTC View advisory →
CVE-2026-54316 Medium 6

Claude Code is an agentic coding tool. From 0.2.54 until 2.1.163, because the hostname huggingface.co was pre-approved as a bare hostname for the WebFetch

23 Jun 2026, 17:06 UTC View advisory →
CVE-2026-54314 Medium 6.3

n8n is an open source workflow automation platform. Prior to 2.24.0, the Compression node's Decompress operation expanded attacker-controlled archives into

23 Jun 2026, 15:33 UTC View advisory →
CVE-2026-54313 Medium 6.5

n8n is an open source workflow automation platform. Prior to 2.24.0, an authenticated user with workflow edit access could supply a malicious filter value

23 Jun 2026, 15:31 UTC View advisory →
CVE-2026-54312 High 7.2

n8n is an open source workflow automation platform. Prior to 2.24.0, an authenticated user with permission to create or modify workflows could achieve glob

23 Jun 2026, 15:33 UTC View advisory →
CVE-2026-54311 Medium 6

n8n is an open source workflow automation platform. Prior to 2.25.7 and 2.26.2, an authenticated user with permission to create or modify workflows could p

23 Jun 2026, 15:41 UTC View advisory →
CVE-2026-54310 Medium 6.5

n8n is an open source workflow automation platform. Prior to 2.25.7 and 2.26.2, an authenticated user with permission to create or modify workflows could s

23 Jun 2026, 15:40 UTC View advisory →
CVE-2026-54309 High 8.8

n8n is an open source workflow automation platform. Prior to 2.25.7 and 2.26.2, when @n8n/mcp-browser is run in HTTP transport mode, the MCP endpoint accep

23 Jun 2026, 15:36 UTC View advisory →
CVE-2026-54308 Medium 6.3

n8n is an open source workflow automation platform. Prior to 2.25.7 and 2.26.2, the MicrosoftAgent365Trigger and StripeTrigger node did not validate that i

23 Jun 2026, 15:42 UTC View advisory →
CVE-2026-54307 High 8.5

n8n is an open source workflow automation platform. Prior to 1.123.55, 2.25.7, and 2.26.2, a member-level user with editor access to a shared workflow coul

23 Jun 2026, 15:47 UTC View advisory →
CVE-2026-54306 Medium 6.3

n8n is an open source workflow automation platform. Prior to 2.25.7 and 2.26.2, a prototype pollution vulnerability allowed a crafted public webhook payloa

23 Jun 2026, 15:43 UTC View advisory →
CVE-2026-54305 High 8.9

n8n is an open source workflow automation platform. Prior to 1.123.55, 2.25.7, and 2.26.2, three EE endpoints used by the Dynamic Credentials feature accep

23 Jun 2026, 15:45 UTC View advisory →
CVE-2026-54304 High 7.1

n8n is an open source workflow automation platform. Prior to 1.123.55, 2.25.7, and 2.26.1, an authenticated user with permission to create or modify workfl

23 Jun 2026, 15:48 UTC View advisory →
CVE-2026-54303 Medium 6.8

n8n is an open source workflow automation platform. Prior to 2.24.0, an endpoint in the Meta and Microsoft Teams trigger nodes reflects a query parameter i

23 Jun 2026, 15:32 UTC View advisory →
CVE-2026-54302 High 7

n8n is an open source workflow automation platform. Prior to 1.123.55, 2.25.7, and 2.26.2, an authenticated user with workflow edit access could inject arb

23 Jun 2026, 15:46 UTC View advisory →
CVE-2026-54301 High 7

n8n is an open source workflow automation platform. Prior to 1.123.55, 2.25.7, and 2.26.2, an authenticated user with workflow edit access could configure

23 Jun 2026, 15:44 UTC View advisory →
CVE-2026-54300 Medium 5.3

@astrojs/netlify is an adapter that allows Astro to deploy your hybrid or server rendered site to Netlify. Prior to 7.0.13, @astrojs/netlify converts Astro

22 Jun 2026, 17:30 UTC View advisory →
CVE-2026-54299 High 7.5

Astro is a web framework. Prior to 6.4.6, Astro SSR apps with prerendered error pages (/404 or /500 using export const prerender = true) fetch those pages

22 Jun 2026, 17:33 UTC View advisory →
CVE-2026-54298 Medium 4.2

Astro is a web framework. Prior to 6.4.6, the spreadAttributes function in Astro's server-side rendering pipeline iterates over object keys and passes them

22 Jun 2026, 17:33 UTC View advisory →
CVE-2026-54297 High 7.5

Faraday is an HTTP client library abstraction layer that provides a common interface over many adapters. From 1.0.0 until 1.10.6 and 2.14.3, Faraday::Neste

24 Jun 2026, 15:50 UTC View advisory →
CVE-2026-54293 High 7.5

NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting research and development in Natural Language

22 Jun 2026, 17:25 UTC View advisory →
CVE-2026-54290 High 7.1

Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, with credentials: true and no explicit origin (the

22 Jun 2026, 17:15 UTC View advisory →
CVE-2026-54289 Medium 4.8

Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, on AWS Lambda@Edge, CloudFront delivers a request h

22 Jun 2026, 17:16 UTC View advisory →
CVE-2026-54288 Medium 6.5

Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, the Body Limit Middleware trusts the request's Cont

22 Jun 2026, 17:18 UTC View advisory →
CVE-2026-54287 Medium 5.3

Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, on AWS Lambda, the ALB single-header response and t

22 Jun 2026, 17:13 UTC View advisory →
CVE-2026-54286 Medium 5.9

Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, on Windows hosts, an encoded backslash (%5C) in the

22 Jun 2026, 17:14 UTC View advisory →
CVE-2026-54285 Medium 5.3

opentelemetry-js is the OpenTelemetry JavaScript Client. Prior to 2.8.0, W3CBaggagePropagator.extract() in @opentelemetry/core does not enforce size limits

22 Jun 2026, 16:52 UTC View advisory →
CVE-2026-54283 High 7.5

Starlette is a lightweight ASGI framework/toolkit. From 0.4.1 until 1.3.1, request.form() accepts max_fields and max_part_size to bound resource consumptio

22 Jun 2026, 16:46 UTC View advisory →
CVE-2026-54282 Low 3.7

Starlette is a lightweight ASGI framework/toolkit. Prior to 1.3.0, the HTTP request path is not validated before being used to reconstruct request.url. Bec

22 Jun 2026, 16:45 UTC View advisory →
CVE-2026-54281 High 8.7

Nest is a framework for building scalable Node.js server-side applications. Prior to 11.1.24, an authentication bypass vulnerability exists in @nestjs/plat

22 Jun 2026, 20:48 UTC View advisory →
CVE-2026-54280 Low 1.7

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, payload resources are not closed correctly when a client d

22 Jun 2026, 16:40 UTC View advisory →
CVE-2026-54279 Low 1.3

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, host-only cookies that are saved with CookieJar.save() and

22 Jun 2026, 16:32 UTC View advisory →
CVE-2026-54278 Medium 6.6

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, during cleanup it is possible for a compressed request bod

22 Jun 2026, 16:38 UTC View advisory →
CVE-2026-54277 Medium 6.6

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, it is possible to bypass the max_line_size check in parts

22 Jun 2026, 16:37 UTC View advisory →
CVE-2026-54276 Medium 6.3

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, DigestAuthMiddleware can send an authentication response a

22 Jun 2026, 16:36 UTC View advisory →
CVE-2026-54275 Low 2.7

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, the server_hostname TLS SNI check can be bypassed when an

22 Jun 2026, 16:34 UTC View advisory →
CVE-2026-54274 Medium 6.6

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payl

22 Jun 2026, 16:33 UTC View advisory →
CVE-2026-54273 Medium 6.6

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, no limit was present on the number of pipelined requests t

22 Jun 2026, 16:41 UTC View advisory →
CVE-2026-54272 Medium 6.9

ip-address is a library for parsing and manipulating IPv4 and IPv6 addresses in JavaScript. Versions 10.1.1 through 10.2.0 are vulnerable to SSRF through m

27 Jul 2026, 17:13 UTC View advisory →
CVE-2026-54271 High 8.2

protobufjs-cli is the command line add-on for protobuf.js. Prior to 1.3.2 and 2.5.0, a previous fix for unsafe name handling in pbjs static / static-module

22 Jun 2026, 16:16 UTC View advisory →
CVE-2026-54270 Medium 5.3

protobufjs compiles protobuf definitions into JavaScript (JS) functions. From 8.2.0 to 8.4.2, protobufjs preserved unknown wire elements in message.$unknow

22 Jun 2026, 16:19 UTC View advisory →
CVE-2026-54269 Medium 5.3

protobufjs compiles protobuf definitions into JavaScript (JS) functions. Prior to 8.6.0 and 7.6.3, protobufjs accepted certain schema-derived names that co

22 Jun 2026, 16:23 UTC View advisory →
CVE-2026-54268 High 8.2

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.1, 21.2.1

22 Jun 2026, 15:31 UTC View advisory →
CVE-2026-54267 High 8.6

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.1, 21.2.1

22 Jun 2026, 15:30 UTC View advisory →
CVE-2026-54266 High 8.8

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.1, 21.2.1

22 Jun 2026, 15:28 UTC View advisory →
CVE-2026-54265 Medium 5.3

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.1, 21.2.1

22 Jun 2026, 15:27 UTC View advisory →
CVE-2026-54264 High 8.3

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.1, 21.2.1

22 Jun 2026, 15:32 UTC View advisory →
CVE-2026-54257 Critical 9.3

Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. From 42.3.1 until 42.3.3, Buffer performs incorrect

23 Jun 2026, 17:08 UTC View advisory →
CVE-2026-54250 Medium 5.8

K3s is a fully conformant production-ready Kubernetes distribution. Prior to 1.35.3+k3s1, 1.34.6+k3s1, v1.33.10+k3s1, a path traversal vulnerability exists

25 Jun 2026, 17:56 UTC View advisory →
CVE-2026-54244 Low 3.5

Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.74.0 and 6.20.3, the Live Preview endpoint for existing entries and terms

17 Jul 2026, 20:22 UTC View advisory →
CVE-2026-54243 Medium 6.1

Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.73.24 and 6.20.1, form submission values in src/Forms/Exporters/CsvExport

17 Jul 2026, 20:24 UTC View advisory →
CVE-2026-54242 Medium 4.9

Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.73.24 and 6.20.1, the Glide image proxy's URL validation in src/Imaging/R

17 Jul 2026, 20:23 UTC View advisory →
CVE-2026-54236 Medium 5.3

vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.23.1rc0, the fix for CVE-2026-22778, which introduced a sanitize_messa

22 Jun 2026, 22:09 UTC View advisory →
CVE-2026-54235 Medium 6.9

vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.23.1rc0, ll temperature validation gates use comparison operators (<,

22 Jun 2026, 21:59 UTC View advisory →
CVE-2026-54233 Medium 6.5

vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.23.1rc0, vLLM's /v1/audio/transcriptions endpoint limits compressed up

22 Jun 2026, 22:10 UTC View advisory →
CVE-2026-54232 High 8.8

vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.22.1, the vLLM Dockerfile is vulnerable to a dependency confusion atta

22 Jun 2026, 22:16 UTC View advisory →
CVE-2026-54226 Medium 6.4

A vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: from 2.6.0 through 2.15.0. Users are recommended to upgrade to version 2.16.0, which

25 Jun 2026, 07:59 UTC View advisory →
CVE-2026-54225 High 7.5

Apache CXF allows to control the maximum attachment size via the "attachment-max-size". Prior to Apache CXF 4.2.3 and 4.1.8 and 3.6.12, there was no defaul

06 Aug 2026, 10:11 UTC View advisory →
CVE-2026-54171 Medium 6.5

Excon is usable, fast, simple HTTP 1.1 for Ruby. Prior to 1.5.0, Excon's RedirectFollower middleware failed to strip additional sensitive headers when foll

17 Jul 2026, 20:09 UTC View advisory →
CVE-2026-54163 Medium 4.7

secure_headers manages application of security headers with many safe defaults. Prior to 7.3.0, secure_headers builds the Content-Security-Policy value by

17 Jul 2026, 20:19 UTC View advisory →
CVE-2026-54159 Critical 10

PrestaShop ps_facetedsearch is a module that adds layered navigation filters. From 3.0.0 until 4.0.4, the ps_facetedsearch module rebuilds selected search

17 Jul 2026, 20:39 UTC View advisory →
CVE-2026-54158 Critical 9.9

SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, the attribute-view (database) cell renderer genAVValueHTML interpolates cell

24 Jun 2026, 21:19 UTC View advisory →
CVE-2026-54157 Critical 9

LobeHub is a work-and-lifestyle space to find, build, and collaborate with agent teammates that grow with you. Prior to 2.1.57, the /webapi/proxy endpoint

23 Jun 2026, 17:43 UTC View advisory →
CVE-2026-54149 High 8.8

MaxKB is an open-source AI assistant for enterprise. Prior to 2.10.0-lts, MaxKB tool import functionality in apps/tools/serializers/tool.py and MCP referen

10 Jul 2026, 15:05 UTC View advisory →
CVE-2026-54132 Medium 6.8

Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical attack.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54131 High 7.8

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-54129 High 7

Use after free in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54128 High 8.4

Use after free in Windows DHCP Client allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-54127 High 7.4

Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-54126 Medium 6.5

Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-54125 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate pri

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-54124 High 7.8

Integer overflow or wraparound in Windows Terminal allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-54122 High 8.4

Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54121 High 8.8

Improper authorization in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-54119 High 7.5

Loop with unreachable exit condition ('infinite loop') in Windows Active Directory allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54118 High 8.8

Deserialization of untrusted data in SQL Server allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-54117 High 8.8

Deserialization of untrusted data in SQL Server allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-54116 Medium 6.5

Access of resource using incompatible type ('type confusion') in SQL Server allows an authorized attacker to disclose information over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-54115 High 7.8

Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-54114 High 7.8

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54112 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to elevate priv

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54111 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to el

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54109 High 7.8

Integer overflow or wraparound in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54108 Medium 6.5

External control of file name or path in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-54107 High 8.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to elevate priv

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-54100 High 8.3

A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. WMCO establishes SSH connections to Windows worker

22 Jun 2026, 12:46 UTC View advisory →
CVE-2026-54099 High 8.8

A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. The WICD CSR auto-approver validates that a Certif

22 Jun 2026, 12:46 UTC View advisory →
CVE-2026-54097 High 7.2

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.6, a

25 Jun 2026, 17:40 UTC View advisory →
CVE-2026-54096 High 8.4

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.7, `

25 Jun 2026, 17:35 UTC View advisory →
CVE-2026-54094 High 7.5

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.14,

25 Jun 2026, 17:37 UTC View advisory →
CVE-2026-54093 Medium 6.8

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.6, f

25 Jun 2026, 17:39 UTC View advisory →
CVE-2026-54092 Medium 6.5

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.6, u

25 Jun 2026, 17:41 UTC View advisory →
CVE-2026-54091 High 7.5

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.6, F

25 Jun 2026, 17:43 UTC View advisory →
CVE-2026-54090 High 8.7

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.33.8, w

25 Jun 2026, 17:51 UTC View advisory →
CVE-2026-54089 Critical 9.1

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Starting with 2.0.

25 Jun 2026, 17:46 UTC View advisory →
CVE-2026-54088 Critical 9.3

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.6, t

25 Jun 2026, 17:49 UTC View advisory →
CVE-2026-54070 High 7.1

SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, renderPackageREADME in kernel/bazaar/readme.go renders a Bazaar package READ

24 Jun 2026, 21:18 UTC View advisory →
CVE-2026-54069 Critical 9.2

SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, SiYuan Note's kernel HTTP server unconditionally trusts all chrome-extension

24 Jun 2026, 21:17 UTC View advisory →
CVE-2026-54068 Medium 5.9

SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, the /api/icon/getDynamicIcon endpoint is explicitly excluded from authentica

24 Jun 2026, 21:15 UTC View advisory →
CVE-2026-54067 Critical 9.9

SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, CSS snippet body containing breaks out of its surrounding tag when renderSni

24 Jun 2026, 21:14 UTC View advisory →
CVE-2026-54066 High 7.5

SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, the patch for CVE-2026-41894 ("Path Traversal via Double URL Encoding") sani

24 Jun 2026, 21:13 UTC View advisory →
CVE-2026-54063 High 7.5

Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets. Prior to 2.11.0, the checkSheet() function in github.com/xuri/excel

10 Jul 2026, 15:53 UTC View advisory →
CVE-2026-54061 Critical 9.1

Dgraph is an open source distributed GraphQL database. Prior to version 25.3.5, Dgraph Alpha exposes the RPCs used for external snapshot import on the publ

08 Jul 2026, 13:23 UTC View advisory →
CVE-2026-54058 High 8.3

Pillow is a Python imaging library. Prior to 12.3.0, when Pillow loads an uncompressed McIdas AREA image from a filename through the mmap raw codec path, a

14 Jul 2026, 16:27 UTC View advisory →
CVE-2026-54052 Critical 9.9

n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. Prior to 2.56.1, in HTTP mode with multi

15 Jul 2026, 20:34 UTC View advisory →
CVE-2026-54051 Critical 9.9

Network-AI is a TypeScript/Node.js multi-agent orchestrator. Prior to version 5.9.1, the agent sandbox gates shell commands behind an allowlist (`SandboxPo

20 Jul 2026, 16:24 UTC View advisory →
CVE-2026-54040 Medium 5.9

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the POST /api/auth/2fa/backup/regenerate endpoint regenerat

25 Jun 2026, 15:45 UTC View advisory →
CVE-2026-54037 Medium 6.5

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the fix for CVE-2025-7105 added forkIpLimiter and forkUserL

25 Jun 2026, 15:49 UTC View advisory →
CVE-2026-54036 Medium 5.3

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the GET /api/auth/2fa/enable endpoint can be called by an a

25 Jun 2026, 15:39 UTC View advisory →
CVE-2026-54033 High 7.7

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, LibreChat allows users to configure custom OpenAI-compatibl

25 Jun 2026, 15:50 UTC View advisory →
CVE-2026-54030 High 8

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.5, LibreChat's MCP OAuth implementation does not validate that the

25 Jun 2026, 15:48 UTC View advisory →
CVE-2026-54029 Medium 5.3

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the DELETE /api/messages/:conversationId/:messageId endpoin

25 Jun 2026, 15:51 UTC View advisory →
CVE-2026-54027 Medium 6.5

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the POST /api/files/images endpoint allows any authenticate

25 Jun 2026, 15:52 UTC View advisory →
CVE-2026-54025 Medium 5.4

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, there is a vulnerability in LibreChat's markdown artifact p

25 Jun 2026, 15:53 UTC View advisory →
CVE-2026-54024 Medium 6.5

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. Prior to 0.8.4-rc1, the fix for CVE-2024-11171 (commit bb58a2d0) added limits:

25 Jun 2026, 15:54 UTC View advisory →
CVE-2026-54022 Medium 5.3

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.8.11, the ydoc:document:join Socket.IO handle

23 Jun 2026, 16:38 UTC View advisory →
CVE-2026-54021 Medium 6.3

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, several direct, index-addressed Ollama p

23 Jun 2026, 16:39 UTC View advisory →
CVE-2026-54020 Medium 6.3

Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. Prior to 0.11.0, Open WebUI resolved a hostname during URL validation

04 Aug 2026, 20:38 UTC View advisory →
CVE-2026-54019 Medium 6.5

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open WebUI added collection-level ACL ch

23 Jun 2026, 16:41 UTC View advisory →
CVE-2026-54018 High 7.7

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, the SafePlaywrightURLLoader implements a

23 Jun 2026, 16:42 UTC View advisory →
CVE-2026-54016 Medium 4.3

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open WebUI has a Broken Object Level Aut

23 Jun 2026, 16:43 UTC View advisory →
CVE-2026-54015 Medium 6.4

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open WebUI's prompt version-history endp

23 Jun 2026, 16:44 UTC View advisory →
CVE-2026-54014 Medium 4.3

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, a path traversal vulnerability exists in

23 Jun 2026, 16:45 UTC View advisory →
CVE-2026-54013 High 7.6

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open WebUI patched SVG XSS in user profi

23 Jun 2026, 16:46 UTC View advisory →
CVE-2026-54012 High 7.1

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open WebUI lets a user who can create, u

23 Jun 2026, 16:47 UTC View advisory →
CVE-2026-54011 High 8.7

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6,Open WebUI renders Mermaid blocks from Ma

23 Jun 2026, 16:47 UTC View advisory →
CVE-2026-54010 High 8.3

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, Open WebUI lets an authenticated user at

23 Jun 2026, 16:48 UTC View advisory →
CVE-2026-54009 Medium 6.5

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, POST /api/chat/completions accepts an im

23 Jun 2026, 16:49 UTC View advisory →
CVE-2026-54008 High 8.5

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, backend/open_webui/utils/oauth.py::_proc

23 Jun 2026, 16:50 UTC View advisory →
CVE-2026-54007 High 7.1

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, the chat message listener allows non-sam

23 Jun 2026, 16:51 UTC View advisory →
CVE-2026-54006 Medium 4.3

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, POST /api/v1/calendars/events/{event_id}

23 Jun 2026, 16:50 UTC View advisory →
CVE-2026-54001 High 7

osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. Prior to 5.23.1, on Windows, a local unprivileged attacker

10 Jul 2026, 14:49 UTC View advisory →
CVE-2026-54000 High 7

osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. Prior to 5.23.1, on Windows, a local unprivileged attacker

10 Jul 2026, 14:51 UTC View advisory →
CVE-2026-53994 High 7.7

ProFTPD mod_sftp contains a heap-based buffer overflow reachable by an authenticated SFTP user. The fxp_packet_read() function accepts the attacker-supplie

18 Jul 2026, 19:30 UTC View advisory →
CVE-2026-53992 Medium 5.1

ProjectSend r2029 contains a reflected cross-site scripting vulnerability in thumbnails-regenerate.php that allows remote attackers to inject arbitrary HTM

05 Aug 2026, 14:54 UTC View advisory →
CVE-2026-53985 High 8.7

Ground Station prior to 0.6.0 contains an unauthenticated denial-of-service vulnerability in the Socket.IO server's service_control event handler that allo

06 Aug 2026, 15:19 UTC View advisory →
CVE-2026-53984 High 8.8

Ground Station prior to 0.6.0 contains an unauthenticated database-destruction and arbitrary-data-injection vulnerability in the Socket.IO server's databas

06 Aug 2026, 15:33 UTC View advisory →
CVE-2026-53983 Critical 9.2

Ground Station prior to 0.6.0 contains an unauthenticated blind server-side request forgery vulnerability in the orbital-source configuration path that all

06 Aug 2026, 15:38 UTC View advisory →
CVE-2026-53977 High 8.7

OpenChamber 1.11.7 contains an authentication bypass vulnerability that allows unauthenticated remote attackers to terminate the server process by sending

06 Aug 2026, 14:43 UTC View advisory →
CVE-2026-53976 Critical 9.3

OpenChamber 1.11.7 contains a path traversal vulnerability in the file-serving endpoints /api/fs/read, /api/fs/stat, and /api/fs/raw that allows unauthenti

06 Aug 2026, 14:24 UTC View advisory →
CVE-2026-53975 Critical 9.3

OpenChamber 1.11.7 contains an unauthenticated remote code execution vulnerability that allows remote attackers to execute arbitrary shell commands by send

06 Aug 2026, 14:06 UTC View advisory →
CVE-2026-53951 High 8.8

Copier is a library and CLI app for rendering project templates. In versions 9.5.0 through 9.15.1, the `trust` setting's prefix match (`copier/_settings.py

08 Jul 2026, 15:26 UTC View advisory →
CVE-2026-53950 High 7.5

@tryghost/activitypub is Ghost’s social/federation client app. Prior to 3.1.0, the ActivityPub client in Ghost was vulnerable to JavaScript injection on po

24 Jun 2026, 18:04 UTC View advisory →
CVE-2026-53949 Medium 5.3

Ghost is a Node.js content management system. From 5.46.1 until 6.21.2, the validation applied to filters on the public API endpoints could be partially by

24 Jun 2026, 18:05 UTC View advisory →
CVE-2026-53948 Medium 5.4

Ghost is a Node.js content management system. From 6.19.4 until 6.21.1, insufficient validation of the client-supplied Content-Type on Ghost's Admin API fi

24 Jun 2026, 18:06 UTC View advisory →
CVE-2026-53947 Medium 5.3

Ghost is a Node.js content management system. From 5.18.0 until 6.21.1, a discrepancy in responses from the members signin endpoints made it possible for a

24 Jun 2026, 18:07 UTC View advisory →
CVE-2026-53946 Medium 5.4

Ghost is a Node.js content management system. From 6.19.4 until 6.21.1, when re-rendering posts, Ghost would refetch missing image dimensions by issuing an

24 Jun 2026, 18:08 UTC View advisory →
CVE-2026-53945 Medium 4

Ghost is a Node.js content management system. From 6.0.9 until 6.21.1, Ghost’s private-IP check for outbound HTTP requests could be bypassed via DNS rebind

24 Jun 2026, 18:09 UTC View advisory →
CVE-2026-53944 Medium 5.8

Ghost is a Node.js content management system. From 6.0.9 until 6.21.1, when making an external request, it is possible to bypass the IP filter that ensures

24 Jun 2026, 18:10 UTC View advisory →
CVE-2026-53943 Critical 9.6

Ghost is a Node.js content management system. From until 6.37.0, when Ghost is behind a shared caching layer that results in cached content being shared be

24 Jun 2026, 18:13 UTC View advisory →
CVE-2026-53935 Medium 6.9

Cilium is a networking, observability, and security solution. Prior to 1.17.16, from 1.18.2 to 1.18.9, and from 1.19.0 to 1.19.3, users with the ability to

07 Jul 2026, 20:44 UTC View advisory →
CVE-2026-53931 Medium 6.9

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the spreadsheet-import endpoint axiosRequestMake could be used as a generic

23 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53930 Medium 5.1

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the base-migration endpoint accepted a caller-supplied URL that the migratio

23 Jun 2026, 19:42 UTC View advisory →
CVE-2026-53929 Medium 5.1

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, with NC_SECURE_ATTACHMENTS=true, an authenticated uploader could deliver .ht

23 Jun 2026, 19:44 UTC View advisory →
CVE-2026-53928 Medium 6.3

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, a stolen refresh token survived a password-forgot flow and could be used to

23 Jun 2026, 20:03 UTC View advisory →
CVE-2026-53927 Medium 5.1

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the spreadsheet-fetch endpoint (axiosRequestMake) accepted URLs whose path c

23 Jun 2026, 20:05 UTC View advisory →
CVE-2026-53926 Medium 6.3

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, revokeAllOAuthTokensByUser in the users service is an empty stub being calle

23 Jun 2026, 20:08 UTC View advisory →
CVE-2026-53925 High 7.8

Glances is an open-source system cross-platform monitoring tool. From 4.0.8 until 4.5.5, the secure_popen() function in glances/secure.py interprets > (fil

25 Jun 2026, 18:03 UTC View advisory →
CVE-2026-53923 Medium 5.3

vLLM is an inference and serving engine for large language models (LLMs). From 0.5.5 until 0.23.1rc0, integer truncation of tensor dimensions in vLLM's GGU

22 Jun 2026, 21:55 UTC View advisory →
CVE-2026-53917 High 7.5

Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Client, Apache ActiveMQ Broker. An authe

30 Jun 2026, 09:49 UTC View advisory →
CVE-2026-53916 High 7.5

Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Stomp. An unauthenticated client that op

30 Jun 2026, 09:49 UTC View advisory →
CVE-2026-53914 Medium 6.7

In JetBrains Kotlin before 2.4.20 code execution was possible via unsafe deserialization in the build cache metadata

26 Jun 2026, 13:01 UTC View advisory →
CVE-2026-53910 Low 2.1

diff3 tool from GNU diffutils is vulnerable to a heap‑based buffer overflow due to multiple signed integer overflows in line‑mapping calculations. Incorrec

22 Jul 2026, 13:42 UTC View advisory →
CVE-2026-53878 Medium 5.3

An issue was discovered in Django 6.0 before 6.0.7 and 5.2 before 5.2.16. `DomainNameValidator` does not prohibit newlines in domain names (unless used via

07 Jul 2026, 14:10 UTC View advisory →
CVE-2026-53877 Medium 6.3

An issue was discovered in Django 6.0 before 6.0.7 and 5.2 before 5.2.16. `django.contrib.gis.gdal.GDALRaster` over-reads its in-memory buffer when constru

07 Jul 2026, 14:10 UTC View advisory →
CVE-2026-53780 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

11 Jul 2026 View advisory →
CVE-2026-53779 High 8.7

WebP Server Go through 0.14.4 contains a path traversal vulnerability on Windows that allows unauthenticated attackers to read files outside the configured

22 Jun 2026, 18:22 UTC View advisory →
CVE-2026-53778 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

23 Jun 2026 View advisory →
CVE-2026-53766 Medium 6.1

Chrome DevTools for agents (chrome-devtools-mcp) lets your coding agent control and inspect a live Chrome browser. From 0.24.0 until 1.1.0, McpContext.vali

24 Jun 2026, 21:29 UTC View advisory →
CVE-2026-53765 Medium 6.1

Chrome DevTools for agents (chrome-devtools-mcp) lets your coding agent control and inspect a live Chrome browser. From 0.20.0 until 1.1.0, The chrome-devt

24 Jun 2026, 21:30 UTC View advisory →
CVE-2026-53755 High 8.6

Crawl4AI is an open-source LLM friendly web crawler & scraper. Prior to 0.8.9, the Docker API server applied its SSRF destination check to the crawl target

23 Jun 2026, 18:15 UTC View advisory →
CVE-2026-53754 High 7.5

Crawl4AI is an open-source LLM friendly web crawler & scraper. Prior to 0.8.8, the Docker API server's SSRF protection (validate_webhook_url / validate_url

23 Jun 2026, 18:16 UTC View advisory →
CVE-2026-53753 Critical 9.8

Crawl4AI is an open-source LLM friendly web crawler & scraper. Prior to 0.8.7, the _safe_eval_expression() function in the computed fields feature uses an

23 Jun 2026, 18:17 UTC View advisory →
CVE-2026-53751 High 8.7

DataEase is an open source data visualization and analysis tool. Prior to 2.10.24, the H2 database JDBC URL validation logic can be bypassed with special U

07 Jul 2026, 20:31 UTC View advisory →
CVE-2026-53730 High 8.7

DataEase is an open source data visualization and analysis tool. Prior to 2.10.24, the /de2api/datasetData/previewSql endpoint lacks the mandatory @DePermi

07 Jul 2026, 20:29 UTC View advisory →
CVE-2026-53729 High 8.7

DataEase is an open source data visualization and analysis tool. Prior to 2.10.24, any authenticated user can download (/exportCenter/download/{id}), delet

07 Jul 2026, 20:23 UTC View advisory →
CVE-2026-53727 High 8.9

css_parser is a Ruby CSS parser. From 2.2.0 until 3.0.0, CssParser::Parser#read_remote_file in lib/css_parser/parser.rb, and therefore load_uri! and the @i

17 Jul 2026, 20:30 UTC View advisory →
CVE-2026-53712 High 8.2

SCRAM (Salted Challenge Response Authentication Mechanism) is part of the family of Simple Authentication and Security Layer (SASL, RFC 4422) authenticatio

17 Jul 2026, 18:19 UTC View advisory →
CVE-2026-53692 Medium 5.9

Redeight CMS version 1.0 uses the MD5 algorithm without a salt to store user passwords. Because MD5 is a cryptographically broken algorithm and lacks salti

30 Jun 2026, 11:20 UTC View advisory →
CVE-2026-53691 High 8.6

An Unrestricted File Upload vulnerability in Redeight CMS version 1.0 allows authenticated attackers to achieve Remote Code Execution via the POST "/admin/

30 Jun 2026, 11:19 UTC View advisory →
CVE-2026-53690 Critical 9.3

An SQL Injection vulnerability exists in Redeight CMS version 1.0 via the "userEmail" parameter in the POST "/admin/index.php" login endpoint. The applicat

30 Jun 2026, 11:19 UTC View advisory →
CVE-2026-53669 Medium 5.1

React Router is a router for React. Versions 6.0.0 through 7.17.0 are vulnerable to Open Redirtect through use of backslashes in and useNavigate. This issu

27 Jul 2026, 22:11 UTC View advisory →
CVE-2026-53668 Medium 6.9

React Router is a router for React. In versions 6.30.2 through 6.30.4 and 7.9.6 through 7.12.0, applications that allow open redirects are vulnerable to XS

27 Jul 2026, 21:42 UTC View advisory →
CVE-2026-53667 Medium 6.9

React Router is a router for React. In versions 7.11.0 through 7.17.0, the RSCErrorHandler is missing protocol validation, allowing for redirects from untr

27 Jul 2026, 21:21 UTC View advisory →
CVE-2026-53666 Medium 6.1

React Router is a router for React. In versions 6.4.0 through 7.17.0, if application code was written in a way that allows attacker-supplied input to overw

27 Jul 2026, 21:14 UTC View advisory →
CVE-2026-53663 Low 3.1

React Router is a router for React. From 7.12.0 until 7.15.1, certain CSRF checks in React Router v7 Framework Mode were insufficient and run on POST reque

22 Jun 2026, 17:39 UTC View advisory →
CVE-2026-53662 Critical 9.6

immich is a high performance self-hosted photo and video management solution. From commit 4ffa26c9 until 4eb1003, a reflected cross-site scripting (XSS) vu

23 Jun 2026, 17:36 UTC View advisory →
CVE-2026-53657 High 8.2

Lima launches Linux virtual machines, typically on macOS, for running containerd. Prior to 2.1.3, on an instance of Lima running with the qemu driver, an a

10 Jul 2026, 15:42 UTC View advisory →
CVE-2026-53655 Medium 6.9

node-tar is a full-featured Tar for Node.js. Prior to 7.5.16, tar (node-tar) applies a PAX extended header's size= record (and other PAX overrides) to the

22 Jun 2026, 14:55 UTC View advisory →
CVE-2026-53653 High 8.7

Grav is a file-based Web platform. Prior to 1.7.53 and 2.0.0-rc.8, Grav allows an unauthenticated visitor to exhaust server memory and CPU by requesting im

10 Jul 2026, 16:12 UTC View advisory →
CVE-2026-53633 Critical 9.8

Vitest is a testing framework powered by Vite. From 3.0.0 until 3.2.5, 4.1.8, and 5.0.0-beta.4, Vitest Browser Mode exposed a cdp() API that forwarded raw

14 Jul 2026, 19:35 UTC View advisory →
CVE-2026-53632 Medium 5.5

launch-editor allows users to open files with line numbers in editor from Node.js. Prior to 2.14.1, the launch-editor NPM package accesses arbitrary paths

22 Jun 2026, 15:54 UTC View advisory →
CVE-2026-53624 Medium 4.8

Fiber is an Express inspired web framework written in Go. Prior to 3.4.0, the helmet middleware in middleware/helmet/helmet.go never sets the Strict-Transp

08 Jul 2026, 19:32 UTC View advisory →
CVE-2026-53622 High 7.8

Traefik is an HTTP reverse proxy and load balancer. Prior to 3.7.3, there is a critical vulnerability in Traefik's HTTP/3 (QUIC) TLS configuration selectio

23 Jun 2026, 19:13 UTC View advisory →
CVE-2026-53599 High 7.5

REDAXO is a PHP-based content management system. From 5.18.2 until 5.21.1, rex_mediapool::isAllowedExtension in redaxo/src/addons/mediapool/lib/mediapool.p

31 Jul 2026, 19:43 UTC View advisory →
CVE-2026-53598 High 7.5

Prompty is a markdown file format (.prompty) for LLM prompts. Prior to 2.0.0-beta.2, Prompty loaders expanded ${file:...} references in .prompty frontmatte

16 Jul 2026, 14:59 UTC View advisory →
CVE-2026-53597 High 8.7

Prompty is a markdown file format (.prompty) for LLM prompts. From 2.0.0-alpha.1 until 2.0.0-beta.3, the @prompty/core TypeScript loader in runtime/typescr

16 Jul 2026, 14:54 UTC View advisory →
CVE-2026-53596 Medium 5.3

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the FreeScout helpdesk application does not en

20 Jul 2026, 20:17 UTC View advisory →
CVE-2026-53595 Critical 9.4

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the public endpoint `POST /user-setup/{hash}/{

20 Jul 2026, 20:14 UTC View advisory →
CVE-2026-53594 Medium 4.9

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. FreeScout's `Manage -> Logs -> App Logs` feature uses the bundled `rap2h

20 Jul 2026, 20:12 UTC View advisory →
CVE-2026-53593 High 8.8

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the denylist that neutralizes dangerous file u

20 Jul 2026, 19:52 UTC View advisory →
CVE-2026-53592 Medium 4.6

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. A Prototype Pollution condition in the `getQueryParam` function `/public

20 Jul 2026, 19:49 UTC View advisory →
CVE-2026-53591 High 8.6

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.223, an unauthenticated attacker can inject message

20 Jul 2026, 19:47 UTC View advisory →
CVE-2026-53577 Medium 6.5

Kestra is an open-source, event-driven orchestration platform. Prior to 1.0.45 and 1.3.21, the previewFileFromExecution endpoint (GET /api/v1/{tenant}/exec

26 Jun 2026, 20:52 UTC View advisory →
CVE-2026-53576 Critical 10

Kestra is an open-source, event-driven orchestration platform. Prior to 1.0.45 and 1.3.21, the authentication filter for the REST API (@Filter("/api/v1/**"

26 Jun 2026, 20:54 UTC View advisory →
CVE-2026-53573 Medium 4.8

GeoNetwork is a catalog application to manage spatially referenced resources. From 3.12.0 until 4.2.16 and 4.4.11, unsafe redirect validation in Geonetwork

31 Jul 2026, 22:16 UTC View advisory →
CVE-2026-53571 High 8.2

Vite is a frontend tooling framework for JavaScript. Prior to 8.0.16, 7.3.5, and 6.4.3, the contents of files that are specified by server.fs.deny can be r

22 Jun 2026, 16:10 UTC View advisory →
CVE-2026-53566 Medium 6.8

Out-of-bounds read vulnerability in Citrix Citrix Secure Access Client for Windows. This issue affects Citrix Secure Access Client for Windows: before 26.6

14 Jul 2026, 13:12 UTC View advisory →
CVE-2026-53565 High 8.5

Improper Privilege Management vulnerability in Citrix Secure Access Client for Windows, Citrix Citrix Endpoint Analysis Client for Windows. This issue affe

14 Jul 2026, 12:49 UTC View advisory →
CVE-2026-53551 Medium 6.9

free5GC is an open-source implementation of the 5G core network. Prior to 1.4.5, the free5GC AUSF (Authentication Server Function) does not validate the su

31 Jul 2026, 20:12 UTC View advisory →
CVE-2026-53550 Medium 5.3

js-yaml is a JavaScript YAML parser and dumper. Prior to 4.2.0, a crafted YAML document can trigger algorithmic CPU exhaustion in js-yaml merge-key process

22 Jun 2026, 14:59 UTC View advisory →
CVE-2026-53540 Low 3.7

Python-Multipart is a streaming multipart parser for Python. Prior to 0.0.31, parse_form() did not validate the Content-Length header before using it to bo

22 Jun 2026, 16:58 UTC View advisory →
CVE-2026-53539 High 7.5

Python-Multipart is a streaming multipart parser for Python. Prior to 0.0.30, when parsing application/x-www-form-urlencoded bodies, QuerystringParser loca

22 Jun 2026, 16:55 UTC View advisory →
CVE-2026-53538 Low 3.7

Python-Multipart is a streaming multipart parser for Python. Prior to 0.0.30, QuerystringParser treated ; as a field separator in application/x-www-form-ur

22 Jun 2026, 16:56 UTC View advisory →
CVE-2026-53537 Low 3.7

Python-Multipart is a streaming multipart parser for Python. Prior to 0.0.30, parse_options_header parsed Content-Disposition (and Content-Type) headers wi

22 Jun 2026, 16:57 UTC View advisory →
CVE-2026-53536 Medium 5.3

Activepieces is an open source AI workflow automation platform. Prior to 0.83.0, the /v1/step-files/signed download endpoint verified the supplied JWT agai

16 Jul 2026, 18:48 UTC View advisory →
CVE-2026-53535 Medium 5.9

Activepieces is an open source AI workflow automation platform. Prior to 0.82.0, the git-sync feature clones a user-configured Git repository into a tempor

16 Jul 2026, 18:52 UTC View advisory →
CVE-2026-53518 High 7.6

Better Auth is an authentication and authorization library for TypeScript. From 1.6.0 until 1.6.11, the @better-auth/oauth-provider POST /oauth2/token endp

15 Jul 2026, 17:17 UTC View advisory →
CVE-2026-53517 High 8.1

Better Auth is an authentication and authorization library for TypeScript. From 1.4.8-beta.7 until 1.6.11, the @better-auth/oauth-provider POST /oauth2/tok

15 Jul 2026, 17:33 UTC View advisory →
CVE-2026-53516 High 8.3

Better Auth is an authentication and authorization library for TypeScript. Prior to 1.6.11, Better Auth's OAuth callback auto-link gate in handleOAuthUserI

15 Jul 2026, 17:13 UTC View advisory →
CVE-2026-53515 High 7.1

Better Auth is an authentication and authorization library for TypeScript. From 1.2.10 until 1.6.11, the @better-auth/sso plugin's POST /sso/register endpo

15 Jul 2026, 17:27 UTC View advisory →
CVE-2026-53514 High 7.7

Better Auth is an authentication and authorization library for TypeScript. Prior to 1.6.11, and in 1.6.14 and later when invitation IDs can be obtained out

15 Jul 2026, 17:30 UTC View advisory →
CVE-2026-53513 Critical 9.6

Better Auth is an authentication and authorization library for TypeScript. Prior to 1.6.11, the @better-auth/sso plugin's POST /sso/register and POST /sso/

15 Jul 2026, 17:15 UTC View advisory →
CVE-2026-53512 Critical 9.1

Better Auth is an authentication and authorization library for TypeScript. Prior to 1.6.11, the legacy oidcProvider and mcp plugins expose OAuth token endp

15 Jul 2026, 17:18 UTC View advisory →
CVE-2026-53511 High 8.5

calibre is an e-book manager. Prior to 9.10.0, a malicious EPUB, OPF, or PDF file can execute arbitrary Python code when its metadata is read by calibre, i

07 Jul 2026, 20:46 UTC View advisory →
CVE-2026-53510 High 8.1

Savon is a Ruby SOAP client. From 0.9.8 until 2.17.2, Savon::Model .all_operations interpolates attacker-controlled WSDL operation names into Ruby source p

31 Jul 2026, 19:38 UTC View advisory →
CVE-2026-53505 High 7.5

Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, Thumbor's filters:proportion() filter does not enforce an upper bound on an

31 Jul 2026, 19:00 UTC View advisory →
CVE-2026-53504 High 7.5

Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, the convolution filter regular expression performs exponential backtracking

31 Jul 2026, 18:57 UTC View advisory →
CVE-2026-53503 High 7.5

Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, Thumbor's filters:convolution(, , ) filter passes the user-controlled value

31 Jul 2026, 18:54 UTC View advisory →
CVE-2026-53502 High 8.7

Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, file_loader decodes percent-encoded path segments after its root-boundary v

31 Jul 2026, 19:03 UTC View advisory →
CVE-2026-53501 High 8.2

Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, Thumbor’s HMAC validation can be bypassed due to the use of Python’s .repla

31 Jul 2026, 18:42 UTC View advisory →
CVE-2026-53500 High 8.2

Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, the ALLOWED_SOURCES configuration passes plain strings to re.match() withou

31 Jul 2026, 18:35 UTC View advisory →
CVE-2026-53488 Critical 9.4

containerd is an open-source container runtime. In versions prior to 1.7.33, 2.3.2, 2.2.5, 2.1.9, and 2.0.10 the CRI plugin propagates labels from an image

01 Jul 2026, 00:11 UTC View advisory →
CVE-2026-53486 Critical 9.1

The decompress package for Node.js extracts archives. Prior to 10.2.1 and 11.1.3, archive extraction can create files and links outside the target director

14 Jul 2026, 20:07 UTC View advisory →
CVE-2026-53483 Critical 9.8

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.

07 Jul 2026, 12:57 UTC View advisory →
CVE-2026-53482 High 7.5

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.

08 Jul 2026, 13:39 UTC View advisory →
CVE-2026-53481 Critical 9.8

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.

07 Jul 2026, 13:02 UTC View advisory →
CVE-2026-53480 Low 2.7

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.

08 Jul 2026, 13:44 UTC View advisory →
CVE-2026-53479 High 7.2

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.

07 Jul 2026, 13:07 UTC View advisory →
CVE-2026-53450 High 7.4

Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.0, coturn rejects loopback peers by default unless allow-loopback-peers

10 Jul 2026, 18:05 UTC View advisory →
CVE-2026-53449 Medium 6

Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.0, the psd print sessions dump CLI command in coturn takes a filename ar

10 Jul 2026, 17:59 UTC View advisory →
CVE-2026-53448 High 7.2

Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.12.0, the coturn HTTPS admin panel passes HTTP query parameters directly in

10 Jul 2026, 17:56 UTC View advisory →
CVE-2026-53447 Medium 6.5

Wekan is open source kanban built with Meteor. Prior to 9.35, the Wekan cloneBoard Meteor method in models/import.js uses caller-supplied sourceBoardId to

15 Jul 2026, 21:12 UTC View advisory →
CVE-2026-53446 Medium 6.2

Wekan is open source kanban built with Meteor. Prior to 9.32, Wekan webhook integration URLs in models/integrations.js are stored from user input and later

15 Jul 2026, 21:10 UTC View advisory →
CVE-2026-53445 High 7.1

Wekan is open source kanban built with Meteor. Prior to 9.32, the Wekan copyBoard Meteor DDP method in server/publications/boards.js copies a board by call

15 Jul 2026, 21:11 UTC View advisory →
CVE-2026-53444 High 7.6

Wekan is open source kanban built with Meteor. Prior to 9.32, Wekan OIDC-related Meteor methods in packages/wekan-oidc/oidc_server.js, server/models/org.js

15 Jul 2026, 21:11 UTC View advisory →
CVE-2026-53434 Unscored

Detection of Error Condition Without Action vulnerability in Apache Tomcat when configuring CRLs for a FFM based connector. This issue affects Apache Tomca

29 Jun 2026, 20:41 UTC View advisory →
CVE-2026-53433 Medium 5.7

fzf is vulnerable to a Denial of Service (DoS) due to inefficient HTTP body processing in the --listen mode due to inefficient HTTP body processing using r

30 Jun 2026, 12:01 UTC View advisory →
CVE-2026-53432 Medium 5.6

fzf is vulnerable to Integer Overflow leading to crash in FuzzyMatchV2 function. When input line length is approximately 2,200,000 bytes and pattern length

30 Jun 2026, 12:01 UTC View advisory →
CVE-2026-53431 Critical 9.1

Authentication Bypass by Capture-replay vulnerability in malach-it Boruta allows an attacker who has obtained a previously valid JWT client assertion to au

30 Jul 2026, 14:17 UTC View advisory →
CVE-2026-53429 Medium 6.9

Missing Release of Memory after Effective Lifetime vulnerability in leandrocp mdex and mdex_native allows an attacker who controls a rendered document to c

29 Jun 2026, 19:07 UTC View advisory →
CVE-2026-53428 Medium 6.9

Memory Allocation with Excessive Size Value vulnerability in leandrocp mdex allows an unauthenticated attacker to cause a denial of service through unbound

29 Jun 2026, 18:52 UTC View advisory →
CVE-2026-53427 Low 2.3

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in leandrocp MDEx allows stored or reflected cross-site

29 Jun 2026, 18:50 UTC View advisory →
CVE-2026-53426 High 8.2

Allocation of Resources Without Limits or Throttling vulnerability in leandrocp MDEx allows Excessive Allocation. MDEx.parse_document/2 accepts a {:json, j

29 Jun 2026, 19:11 UTC View advisory →
CVE-2026-53422 Low 2.3

Observable Response Discrepancy vulnerability in Erlang OTP ssh (ssh_sftpd module) allows an authenticated SFTP user to enumerate the existence of files an

02 Jul 2026, 16:06 UTC View advisory →
CVE-2026-53421 Unscored

Improper Isolation or Compartmentalization vulnerability in Apache Syncope. An administrator with adequate entitlements can achieve remote code execution t

20 Jul 2026, 14:21 UTC View advisory →
CVE-2026-53412 Critical 9.8

Improper Input Validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an unauthenticated us

16 Jul 2026, 21:15 UTC View advisory →
CVE-2026-53411 High 7.8

A time-of-check to time-of-use (TOCTOU) race condition in the installation and uninstallation process of certain Zoom Clients for Windows could allow an au

16 Jul 2026, 21:13 UTC View advisory →
CVE-2026-53410 High 7

A time-of-check to time-of-use (TOCTOU) race condition in the installation and uninstallation process of certain Zoom Clients for Windows could allow an au

16 Jul 2026, 21:11 UTC View advisory →
CVE-2026-53409 High 7.8

Improper Privilege Management in Zoom Rooms for Windows before version 7.1.0 may allow an authenticated user to conduct an escalation of privilege via loca

16 Jul 2026, 21:08 UTC View advisory →
CVE-2026-53405 Unscored

Improper Isolation or Compartmentalization vulnerability in Apache Syncope. An administrator with adequate entitlements can import arbitrary BPMN process d

20 Jul 2026, 14:20 UTC View advisory →
CVE-2026-53404 Unscored

Always-Incorrect Control Flow Implementation vulnerability in Apache Tomcat's rewrite valve meant that if the first condition in an OR chain matched, subse

29 Jun 2026, 20:39 UTC View advisory →
CVE-2026-53366 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipv4: account for fraggap on the paged allocation path In __ip_append_data(), when the

16 Jul 2026, 05:13 UTC View advisory →
CVE-2026-53365 Unscored

In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix zerocopy completion for multi-skb sends When a large message is fragm

13 Jul 2026, 17:33 UTC View advisory →
CVE-2026-53364 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: Fix memory leak in hci_le_big_terminate() hci_le_big_terminate() a

13 Jul 2026, 17:33 UTC View advisory →
CVE-2026-53363 Unscored

In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: preserve shared-frag marker in iptfs_consume_frags() iptfs_consume_frags()

10 Jul 2026, 11:55 UTC View advisory →
CVE-2026-53362 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipv6: account for fraggap on the paged allocation path In __ip6_append_data(), when the

04 Jul 2026, 11:56 UTC View advisory →
CVE-2026-53361 Unscored

In the Linux kernel, the following vulnerability has been resolved: af_unix: Set gc_in_progress to true in unix_gc(). Igor Ushakov reported that unix_gc()

04 Jul 2026, 11:54 UTC View advisory →
CVE-2026-53360 Unscored

In the Linux kernel, the following vulnerability has been resolved: KVM: SEV: Require in-GHCB scratch area if GHCB v2+ is in use As per the GHCB spec, when

04 Jul 2026, 11:53 UTC View advisory →
CVE-2026-53359 Unscored

In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Fix shadow paging use-after-free due to unexpected role Commit 0cb2af2ea66ad

04 Jul 2026, 11:51 UTC View advisory →
CVE-2026-53358 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: use chan timer to close channels in cleanup_listen() l2cap_chan_close

02 Jul 2026, 13:43 UTC View advisory →
CVE-2026-53357 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix UAF in l2cap_sock_cleanup_listen() vs l2cap_conn_del() bt_accept_dequeue

02 Jul 2026, 13:43 UTC View advisory →
CVE-2026-53325 Unscored

In the Linux kernel, the following vulnerability has been resolved: agp/amd64: Fix broken error propagation in agp_amd64_probe() A NULL pointer dereference

29 Jun 2026, 04:53 UTC View advisory →
CVE-2026-53324 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: mana: Use pci_name() for debugfs directory naming Use pci_name(pdev) for the per-d

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53323 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: dsa: remove redundant netdev_lock_ops() from conduit ethtool ops DSA replaces the

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53322 Unscored

In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Clean up DMABUFs before disabling function On device shutdown, make vfio_pci_

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53321 Unscored

In the Linux kernel, the following vulnerability has been resolved: io_uring/napi: cap busy_poll_to 10 msec Currently there's no cap on the maximum amount

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53320 Unscored

In the Linux kernel, the following vulnerability has been resolved: nilfs2: reject zero bd_oblocknr in nilfs_ioctl_mark_blocks_dirty() nilfs_ioctl_mark_blo

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53319 Unscored

In the Linux kernel, the following vulnerability has been resolved: blk-wbt: remove WARN_ON_ONCE from wbt_init_enable_default() wbt_init_enable_default() u

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53318 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7925: prevent NULL pointer dereference in mt7925_tx_check_aggr() Move the

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53317 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921: Place upper limit on station AID Any station configured with an AID

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53316 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/amd/ras: Fix NULL deref in ras_core_ras_interrupt_detected() Fixes a NULL pointer d

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53315 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/amd/ras: Fix NULL deref in ras_core_get_utc_second_timestamp() ras_core_get_utc_sec

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53314 Unscored

In the Linux kernel, the following vulnerability has been resolved: padata: Put CPU offline callback in ONLINE section to allow failure syzbot reported the

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53313 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Avoid NULL dereference in dc_dmub_srv error paths In dc_dmub_srv_log_d

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53312 Unscored

In the Linux kernel, the following vulnerability has been resolved: iommu/riscv: Remove overflows on the invalidation path Since RISC-V supports a sign ext

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53311 Unscored

In the Linux kernel, the following vulnerability has been resolved: fuse: fix uninit-value in fuse_dentry_revalidate() fuse_dentry_revalidate() may be call

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53310 Unscored

In the Linux kernel, the following vulnerability has been resolved: soc/tegra: cbb: Fix cross-fabric target timeout lookup When a fabric receives an error

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53309 Unscored

In the Linux kernel, the following vulnerability has been resolved: ocfs2/dlm: fix off-by-one in dlm_match_regions() region comparison The local-vs-remote

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53308 Unscored

In the Linux kernel, the following vulnerability has been resolved: power: supply: max77705: Free allocated workqueue and fix removal order Use devm interf

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53307 Unscored

In the Linux kernel, the following vulnerability has been resolved: pinctrl: pinconf-generic: Fully validate 'pinmux' property The pinconf_generic_parse_dt

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53306 Unscored

In the Linux kernel, the following vulnerability has been resolved: tty: hvc_iucv: fix off-by-one in number of supported devices MAX_HVC_IUCV_LINES == HVC_

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53305 Unscored

In the Linux kernel, the following vulnerability has been resolved: usb: typec: ps883x: Fix Oops at unbind When trying to unbind a device in order to bind

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53304 Unscored

In the Linux kernel, the following vulnerability has been resolved: scsi: sg: Resolve soft lockup issue when opening /dev/sgX The parameter def_reserved_si

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-53303 Unscored

In the Linux kernel, the following vulnerability has been resolved: f2fs: protect extension_list reading with sb_lock in f2fs_sbi_show() In f2fs_sbi_show()

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53302 Unscored

In the Linux kernel, the following vulnerability has been resolved: crypto: eip93 - fix hmac setkey algo selection eip93_hmac_setkey() allocates a temporar

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53301 Unscored

In the Linux kernel, the following vulnerability has been resolved: reset: amlogic: t7: Fix null reset ops Fix missing reset ops causing kernel null pointe

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53300 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: enetc: fix NTMP DMA use-after-free issue The AI-generated review reported a potent

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53299 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: airoha: Move ndesc initialization at end of airoha_qdma_init_tx() If queue entry l

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53298 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: airoha: Move ndesc initialization at end of airoha_qdma_init_rx_queue() If queue e

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53297 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: mana: Guard mana_remove against double invocation If PM resume fails (e.g., mana_a

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53296 Unscored

In the Linux kernel, the following vulnerability has been resolved: mailbox: mailbox-test: free channels on probe error On probe error, free the previously

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53295 Unscored

In the Linux kernel, the following vulnerability has been resolved: mailbox: add sanity check for channel array Fail gracefully if there is no channel arra

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53294 Unscored

In the Linux kernel, the following vulnerability has been resolved: mailbox: mailbox-test: don't free the reused channel The RX channel can be aliased to t

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53293 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix AMDGPU_INFO_READ_MMR_REG There were multiple issues in that code. First

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53292 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: phonet: do not BUG_ON() in pn_socket_autobind() on failed bind syzbot reported a k

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53291 Unscored

In the Linux kernel, the following vulnerability has been resolved: ALSA: hda/conexant: Fix missing error check for jack detection In cx_probe(), the retur

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53290 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/xe/eustall: Fix drm_dev_put called before stream disable in close In xe_eu_stall_st

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53289 Unscored

In the Linux kernel, the following vulnerability has been resolved: ice: fix NULL pointer dereference in ice_reset_all_vfs() ice_reset_all_vfs() ignores th

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53288 Unscored

In the Linux kernel, the following vulnerability has been resolved: arm64: Reserve an extra page for early kernel mapping The final part of [data, end) seg

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53287 Unscored

In the Linux kernel, the following vulnerability has been resolved: audit: fix incorrect inheritable capability in CAPSET records __audit_log_capset() reco

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53286 Unscored

In the Linux kernel, the following vulnerability has been resolved: idpf: fix double free and use-after-free in aux device error paths When auxiliary_devic

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53285 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Wrap DCN32 phantom-plane allocation in DC_RUN_WITH_PREEMPTION_ENABLED

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53284 Unscored

In the Linux kernel, the following vulnerability has been resolved: btrfs: only release the dirty pages io tree after successful writes [WARNING] With extr

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53283 Unscored

In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Bounds-check devid in __rlookup_amd_iommu() iommu_device_register() walks ev

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53282 Unscored

In the Linux kernel, the following vulnerability has been resolved: x86/kexec: Push kjump return address even for non-kjump kexec The version of purgatory

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53281 Unscored

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Avoid NULL pointer dereference or refcount corruption Commit 60f030f7418d (

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53280 Unscored

In the Linux kernel, the following vulnerability has been resolved: iommu: Fix NULL group->domain dereference in pci_dev_reset_iommu_done() Local sashiko r

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53279 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/gma500/oaktrail_lvds: fix hang on init failure The LVDS init code looks up an I2C a

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53278 Unscored

In the Linux kernel, the following vulnerability has been resolved: arm_mpam: Check whether the config array is allocated before destroying it __destroy_co

26 Jun 2026, 19:40 UTC View advisory →
CVE-2026-53277 Unscored

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation

25 Jun 2026, 08:40 UTC View advisory →
CVE-2026-53276 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix a use-after-free of the hci_conn pointer In iso_sock_rebind_bc(), t

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53275 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: Fix use-after-free when processing MLD queries When processing an MLD quer

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53274 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/smc: fix sleep-inside-lock in __smc_setsockopt() causing local DoS A logic flaw in

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53273 Unscored

In the Linux kernel, the following vulnerability has been resolved: tee: optee: prevent use-after-free when the client exits before the supplicant Commit 7

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53272 Unscored

In the Linux kernel, the following vulnerability has been resolved: erofs: fix use-after-free on sbi->sync_decompress z_erofs_decompress_kickoff() can race

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53271 Unscored

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix NULL-deref of opinfo->conn in oplock/lease break notifiers smb2_oplock_break

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53270 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipvs: clear the svc scheduler ptr early on edit ip_vs_edit_service() while unbinding th

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53269 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: synproxy: add mutex to guard hook reference counting As the synproxy infrast

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53268 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack_irc: fix possible out-of-bounds read When parsing fails after we'v

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53267 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_ct: bail out on template ct in get eval I noticed this issue while looki

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53266 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: make ebt_snat ARP rewrite writable The ebtables SNAT target keeps th

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53265 Unscored

In the Linux kernel, the following vulnerability has been resolved: dm cache policy smq: check allocation under invalidate lock commit 2d1f7b65f5de ("dm ca

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53264 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/sched: act_api: use RCU with deferred freeing for action lifecycle When NEWTFILTER

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53263 Unscored

In the Linux kernel, the following vulnerability has been resolved: 6lowpan: fix off-by-one in multicast context address compression The second memcpy in l

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53262 Unscored

In the Linux kernel, the following vulnerability has been resolved: l2tp: pppol2tp: hold reference to session in pppol2tp_ioctl() pppol2tp_ioctl() read soc

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53261 Unscored

In the Linux kernel, the following vulnerability has been resolved: devlink: Release nested relation on devlink free devlink relation state is normally rel

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53260 Unscored

In the Linux kernel, the following vulnerability has been resolved: tcp: Add preempt_{disable,enable}_nested() in reqsk_queue_hash_req(). syzbot reported a

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53259 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipv6: anycast: insert aca into global hash under idev->lock syzbot reported a splat [1]

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53258 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: fix leak if split 6 GHz scanning fails rdev->int_scan_req is leaked if cfg80211_s

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53257 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: enforce HE/EHT cap/oper consistency Xiang Mei reports that mac80211 cou

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53256 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() rfcomm_get_sock_by_chan

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53255 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: validate advertising TLV before type checks tlv_data_is_valid() reads

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53254 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: validate skb length in MCC handlers The RFCOMM MCC handlers cast skb

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53253 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: bnep: reject short frames before parsing A BNEP peer can send a short BNEP S

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53252 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix memory leak in error path of hci_alloc_dev() Early failures in Bluetooth

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53251 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix not releasing hdev reference on iso_conn_big_sync hci_get_route() r

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53250 Unscored

In the Linux kernel, the following vulnerability has been resolved: xsk: cache csum_start/csum_offset to fix TOCTOU in xsk_skb_metadata() The TX metadata a

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53249 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipv4: restrict IPOPT_SSRR and IPOPT_LSRR options This patch restricts setting Loose Sou

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53248 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: airoha: Fix use-after-free in metadata dst teardown airoha_metadata_dst_free() run

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53247 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: Fix use-after-free in metadata dst teardown mtk_free_dev()

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53246 Unscored

In the Linux kernel, the following vulnerability has been resolved: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing When a listening

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53245 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/802/mrp: fix vector attribute parsing in mrp_pdu_parse_vecattr In mrp_pdu_parse_vec

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53244 Unscored

In the Linux kernel, the following vulnerability has been resolved: VFS: fix possible failure to unlock in nfsd4_create_file() atomic_create() in fs/namei.

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53243 Unscored

In the Linux kernel, the following vulnerability has been resolved: rseq: Fix using an uninitialized stack variable in rseq_exit_user_update() There is an

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53242 Unscored

In the Linux kernel, the following vulnerability has been resolved: ALSA: PCM: Fix wait queue list corruption in snd_pcm_drain() on linked streams snd_pcm_

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53241 Unscored

In the Linux kernel, the following vulnerability has been resolved: ALSA: seq: dummy: fix UMP event stack overread The dummy sequencer port forwards events

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53240 Unscored

In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: fix use-after-free on first_skb in __input_process_payload __input_process

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53239 Unscored

In the Linux kernel, the following vulnerability has been resolved: xfrm: policy: fix use-after-free on inexact bin in xfrm_policy_bysel_ctx() Fix the race

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53238 Unscored

In the Linux kernel, the following vulnerability has been resolved: netlabel: validate unlabeled address and mask attribute lengths netlbl_unlabel_addrinfo

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53237 Unscored

In the Linux kernel, the following vulnerability has been resolved: gpio: mvebu: fix NULL pointer dereference in suspend/resume mvebu_pwm_suspend() and mve

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53236 Unscored

In the Linux kernel, the following vulnerability has been resolved: tcp: restrict SO_ATTACH_FILTER to priv users This patch restricts the use of SO_ATTACH_

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53235 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: add pskb_may_pull() to skb_gro_receive_list() skb_gro_receive_list() calls skb_pul

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53234 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: ibm: emac: Fix use-after-free during device removal The driver was using devm_regi

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53233 Unscored

In the Linux kernel, the following vulnerability has been resolved: netdev: fix double-free in netdev_nl_bind_rx_doit() Sashiko flags that genlmsg_reply()

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53232 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: phy: clean the sfp upstream if phy probing fails Sashiko reported that we don't ca

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53231 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: phy: don't try to setup PHY-driven SFP cages when using genphy We don't have suppo

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53230 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix slab-out-of-bounds in mlx5_query_nic_vport_mac_list mlx5_query_nic_vport_

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53229 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: xsk: Fix DMA and xdp_frame leak on XDP_TX xmit failure In the XSK branch of

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53228 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipv6: sit: reload inner IPv6 header after GSO offloads ipip6_tunnel_xmit() caches the i

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53227 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: fix possible kfree_skb of ERR_PTR After the patch in the "Fixes" tag,

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53226 Unscored

In the Linux kernel, the following vulnerability has been resolved: gpio: rockchip: fix generic IRQ chip leak on remove The driver allocates domain generic

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53225 Unscored

In the Linux kernel, the following vulnerability has been resolved: sctp: fix uninit-value in __sctp_rcv_asconf_lookup() __sctp_rcv_asconf_lookup() in net/

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53224 Unscored

In the Linux kernel, the following vulnerability has been resolved: sctp: validate embedded INIT chunk and address list lengths in cookie sctp_unpack_cooki

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53223 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: guard timestamp cmsgs to real error queue skbs skb_is_err_queue() treats PACKET_OU

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53222 Unscored

In the Linux kernel, the following vulnerability has been resolved: ptp: ocp: fix resource freeing order Commit a60fc3294a37 ("ptp: rework ptp_clock_unregi

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53221 Unscored

In the Linux kernel, the following vulnerability has been resolved: ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup() In vti6_tnl_lookup(), when

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53220 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: revalidate bridge ports ebt_redirect_tg() dereferences br_port_get_rcu() ret

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53219 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: x_tables: avoid leaking percpu counter pointers The native and compat get-en

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53218 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_exthdr: fix register tracking for F_PRESENT flag nft_exthdr_init() passe

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53217 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: sync RX data at the hardware packet offset mvpp2 programs the RX queue pack

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53216 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: limit XDP frame size to the RX buffer mvpp2 has short and long BM pools, an

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53215 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: refill RX buffers before XDP or skb use The RX error path returns the curre

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53214 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix a potential NPD in cleanup_prefix_route() addrconf_get_prefix_route() can ret

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53213 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/vc4: fix krealloc() memory leak Don't just overwrite the original pointer passed to

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53212 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_tunnel: fix use-after-free on object destroy nft_tunnel_obj_destroy() ca

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53211 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_meta_bridge: fix stale stack leak via IIFHWADDR register NFT_META_BRI_II

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53210 Unscored

In the Linux kernel, the following vulnerability has been resolved: tee: shm: fix shm leak in register_shm_helper() register_shm_helper() allocates shm bef

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53209 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend Existing advertisi

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53208 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: reject BR/EDR signaling packets over MTUsig net/bluetooth/l2cap_core.

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53207 Unscored

In the Linux kernel, the following vulnerability has been resolved: mm/memory-failure: fix hugetlb_lock AA deadlock in get_huge_page_for_hwpoison Two concu

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53206 Unscored

In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Add bounds check for firmware runtime memory Validate that the firmware run

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53205 Unscored

In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Add bounds checks for firmware log indices Add validation that read and wri

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53204 Unscored

In the Linux kernel, the following vulnerability has been resolved: firmware: stratix10-rsu: Fix NULL deref on rsu_send_msg() timeout in probe rsu_send_msg

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53203 Unscored

In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Add buffer overflow check in MS get_info_ioctl Add validation that the info

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53202 Unscored

In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Fix signed integer truncation in IPC receive Fix potential buffer overflow

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53201 Unscored

In the Linux kernel, the following vulnerability has been resolved: Revert "drm/xe: Skip exec queue schedule toggle if queue is idle during suspend" This r

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53200 Unscored

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Fix handling of XN[0] when !FEAT_XNX XN has already been extracted from

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53199 Unscored

In the Linux kernel, the following vulnerability has been resolved: hv_netvsc: use kmap_local_page in netvsc_copy_to_send_buf netvsc_copy_to_send_buf() cop

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53198 Unscored

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free of a deferred file_lock on double SMB2_CANCEL A deferred byte

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53197 Unscored

In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: fix ABBA deadlock in iptfs_destroy_state() iptfs_destroy_state() calls hrt

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53196 Unscored

In the Linux kernel, the following vulnerability has been resolved: USB: serial: io_ti: fix heap overflow in get_manuf_info() get_manuf_info() reads le16_t

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53195 Unscored

In the Linux kernel, the following vulnerability has been resolved: USB: serial: io_ti: fix heap overflow in build_i2c_fw_hdr() build_i2c_fw_hdr() allocate

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53194 Unscored

In the Linux kernel, the following vulnerability has been resolved: USB: serial: kl5kusb105: fix bulk-out buffer overflow klsi_105_prepare_write_buffer() i

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53193 Unscored

In the Linux kernel, the following vulnerability has been resolved: ALSA: timer: Forcibly close timer instances at closing When snd_timer object is freed v

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53192 Unscored

In the Linux kernel, the following vulnerability has been resolved: ALSA: timer: Fix UAF at snd_timer_user_params() At releasing a timer object, e.g. when

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53191 Unscored

In the Linux kernel, the following vulnerability has been resolved: io_uring/net: inherit IORING_CQE_F_BUF_MORE across bundle recv retries When a bundle re

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53190 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/virtio: fix dma_fence refcount leak on error in virtio_gpu_dma_fence_wait() dma_fen

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53189 Unscored

In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: update file PMD counter before folio_put() __split_huge_pmd_locked() up

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53188 Unscored

In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Validate the passed in fops for ib_get_ucaps() Sashiko pointed out it is not

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53187 Unscored

In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Validate cpu_id against nr_cpu_ids in DMAH alloc The cpu_id attribute suppli

25 Jun 2026, 08:39 UTC View advisory →
CVE-2026-53186 Unscored

In the Linux kernel, the following vulnerability has been resolved: RDMA/srp: bound SRP_RSP sense copy by the received length srp_process_rsp() copies sens

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53185 Unscored

In the Linux kernel, the following vulnerability has been resolved: zram: fix use-after-free in zram_bvec_write_partial() zram_read_page() picks the sync o

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53184 Unscored

In the Linux kernel, the following vulnerability has been resolved: udp: clear skb->dev before running a sockmap verdict On the UDP receive path skb->dev i

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53183 Unscored

In the Linux kernel, the following vulnerability has been resolved: mptcp: allow subflow rcv wnd to shrink In MPTCP connection, the `window` field in the T

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53182 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: nl80211: reject oversized EMA RNR lists nl80211_parse_rnr_elems() stores the pars

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53181 Unscored

In the Linux kernel, the following vulnerability has been resolved: vsock/vmci: fix sk_ack_backlog leak on failed handshake When vmci_transport_recv_connec

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53180 Unscored

In the Linux kernel, the following vulnerability has been resolved: timers/migration: Fix livelock in tmigr_handle_remote_up() tmigr_handle_remote_cpu() sk

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53179 Unscored

In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix buffer over-read in rtw_update_protection rtw_update_protection

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53178 Unscored

In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: rtw_mlme: add bounds checks before ie_length subtraction Add guards

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53177 Unscored

In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix NULL pointer dereference PCIe errors detected by a Root Port or Downstream

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53176 Unscored

In the Linux kernel, the following vulnerability has been resolved: IB/isert: Reject login PDUs shorter than ISER_HEADERS_LEN In drivers/infiniband/ulp/ise

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53175 Unscored

In the Linux kernel, the following vulnerability has been resolved: inet: frags: fix use-after-free caused by the fqdir_pre_exit() flush On netns teardown,

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53174 Unscored

In the Linux kernel, the following vulnerability has been resolved: ovl: keep err zero after successful ovl_cache_get() ovl_iterate_merged() stores PTR_ERR

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53173 Unscored

In the Linux kernel, the following vulnerability has been resolved: accel/ethosu: fix OOB write in ethosu_gem_cmdstream_copy_and_validate() The command str

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53172 Unscored

In the Linux kernel, the following vulnerability has been resolved: accel/ethosu: fix IFM region index out-of-bounds in command stream parser NPU_SET_IFM_R

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53171 Unscored

In the Linux kernel, the following vulnerability has been resolved: accel/ethosu: fix arithmetic issues in dma_length() dma_length() derives DMA region usa

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53170 Unscored

In the Linux kernel, the following vulnerability has been resolved: accel/ethosu: reject DMA commands with uninitialized length cmd_state_init() initialize

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53169 Unscored

In the Linux kernel, the following vulnerability has been resolved: accel/ethosu: reject NPU_OP_RESIZE commands from userspace NPU_OP_RESIZE is a U85-only

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53168 Unscored

In the Linux kernel, the following vulnerability has been resolved: fuse: reject fuse_notify() pagecache ops on directories The operations FUSE_NOTIFY_STOR

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53167 Unscored

In the Linux kernel, the following vulnerability has been resolved: fuse: limit FUSE_NOTIFY_RETRIEVE to uptodate folios FUSE_NOTIFY_RETRIEVE must be limite

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53166 Unscored

In the Linux kernel, the following vulnerability has been resolved: futex/requeue: Prevent NULL pointer dereference in remove_waiter() on self-deadlock Whe

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53165 Unscored

In the Linux kernel, the following vulnerability has been resolved: iomap: avoid potential null folio->mapping deref during error reporting When a buffered

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53164 Unscored

In the Linux kernel, the following vulnerability has been resolved: iommu/dma: Do not try to iommu_map a 0 length region in swiotlb iommu_dma_iova_link_swi

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53163 Unscored

In the Linux kernel, the following vulnerability has been resolved: locking/rtmutex: Skip remove_waiter() when waiter is not enqueued syzbot triggered the

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53162 Unscored

In the Linux kernel, the following vulnerability has been resolved: memcg: use round-robin victim selection in refill_stock Harry Yoo reported that get_ran

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53161 Unscored

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: fix use-after-free of fastrpc_user in workqueue context There is a race

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53160 Unscored

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: fix use-after-free race in fastrpc_map_create fastrpc_map_lookup returns

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53159 Unscored

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: fix DMA address corruption due to find_vma misuse fastrpc_get_args() use

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53158 Unscored

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Fix NULL pointer dereference in rpmsg callback A NULL pointer dereferenc

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53157 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: phonet: free phonet_device after RCU grace period phonet_device_destroy() removes

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53156 Unscored

In the Linux kernel, the following vulnerability has been resolved: nvmem: core: fix use-after-free bugs in error paths Fix several instances of error path

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53155 Unscored

In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: use correct flags for device private PMD entry Commit 65edfda6f3f2 ("mm

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53154 Unscored

In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: restore reservation on error in hugetlb folio copy paths Two sites in mm/hu

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53153 Unscored

In the Linux kernel, the following vulnerability has been resolved: mm/list_lru: drain before clearing xarray entry on reparent memcg_reparent_list_lrus()

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53152 Unscored

In the Linux kernel, the following vulnerability has been resolved: mmc: dw_mmc-rockchip: Add missing private data for very old controllers The really old

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53151 Unscored

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix the ACK parser to extract the SACK table for parsing Fix modification of the

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53150 Unscored

In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Reject zero-length property entries in validator tb_property_entry_valid()

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53149 Unscored

In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Bound root directory content to block size __tb_property_parse_dir() does

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53148 Unscored

In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Clamp XDomain response data copy to allocation size tb_xdp_properties_requ

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53147 Unscored

In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Validate XDomain request packet size before type cast tb_xdp_handle_reques

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53146 Unscored

In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Limit XDomain response copy to actual frame size tb_xdomain_copy() copies

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53145 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/gem: Try to fix change_handle ioctl, attempt 4 [airlied: just added some comments o

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53144 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix NULL dereference in get_queue_ids() When usr_queue_id_array is NULL and

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53143 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11 The v11 MQD m

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53142 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/xe/display: fix oops in suspend/shutdown without display The xe driver keeps track

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53141 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Fix global performance monitor reference counting In the SET_GLOBAL ioctl, v3d

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53140 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Fix vaddr leak when indirect CSD has zeroed workgroups v3d_rewrite_csd_job_wg_

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53139 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Skip CSD when it has zeroed workgroups A compute shader dispatch encodes its w

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53138 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Bound VBIOS record-chain walk loops [Why & How] All record-chain walk

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53137 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Clamp HDMI HDCP2 rx_id_list read to buffer size [Why & How] During HDC

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53136 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Clamp VBIOS HDMI retimer register count to array size [Why & How] The

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53135 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix NULL deref and buffer over-read in SDP debugfs [Why & How] dp_sdp_

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53134 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_fib: fix stale stack leak via the OIFNAME register For NFT_FIB_RESULT_OI

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53133 Unscored

In the Linux kernel, the following vulnerability has been resolved: RDMA/umem: Fix truncation for block sizes >= 4G When the iommu is used the linearizatio

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53132 Unscored

In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix potential unbounded skb queue virtio_transport_inc_rx_pkt() checks vv

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53131 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: require Ethernet MAC header before using eth_hdr() `ip6t_eui64`, `xt_mac`, t

25 Jun 2026, 08:38 UTC View advisory →
CVE-2026-53130 Unscored

In the Linux kernel, the following vulnerability has been resolved: fs/omfs: reject s_sys_blocksize smaller than OMFS_DIR_START omfs_fill_super() rejects o

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53129 Unscored

In the Linux kernel, the following vulnerability has been resolved: fs/mbcache: cancel shrink work before destroying the cache mb_cache_destroy() calls shr

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53128 Unscored

In the Linux kernel, the following vulnerability has been resolved: drbd: Balance RCU calls in drbd_adm_dump_devices() Make drbd_adm_dump_devices() call rc

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53127 Unscored

In the Linux kernel, the following vulnerability has been resolved: block: fix zones_cond memory leak on zone revalidation error paths When blk_revalidate_

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53126 Unscored

In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: fix disk reference leak in blkcg_maybe_throttle_current() Add the missing p

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53125 Unscored

In the Linux kernel, the following vulnerability has been resolved: md: fix array_state=clear sysfs deadlock When "clear" is written to array_state, md_att

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53124 Unscored

In the Linux kernel, the following vulnerability has been resolved: ublk: reset per-IO canceled flag on each fetch If a ublk server starts recovering devic

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53123 Unscored

In the Linux kernel, the following vulnerability has been resolved: md: wake raid456 reshape waiters before suspend During raid456 reshape, direct IO acros

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53122 Unscored

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix deadlock between reflink and transaction commit when using flushoncommit Whe

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53121 Unscored

In the Linux kernel, the following vulnerability has been resolved: amd-pstate: Fix memory leak in amd_pstate_epp_cpu_init() On failure to set the epp, the

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53120 Unscored

In the Linux kernel, the following vulnerability has been resolved: PCI: use generic driver_override infrastructure When a driver is probed through __drive

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53119 Unscored

In the Linux kernel, the following vulnerability has been resolved: platform/wmi: use generic driver_override infrastructure When a driver is probed throug

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53118 Unscored

In the Linux kernel, the following vulnerability has been resolved: vdpa: use generic driver_override infrastructure When a driver is probed through __driv

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53117 Unscored

In the Linux kernel, the following vulnerability has been resolved: s390/cio: use generic driver_override infrastructure When a driver is probed through __

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53116 Unscored

In the Linux kernel, the following vulnerability has been resolved: s390/ap: use generic driver_override infrastructure When the AP masks are updated via a

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53115 Unscored

In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc: use generic driver_override infrastructure When a driver is probed through

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53114 Unscored

In the Linux kernel, the following vulnerability has been resolved: perf/amd/ibs: Avoid calling perf_allow_kernel() from the IBS NMI handler Calling perf_a

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53113 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix memory leaks in beacon template setup The functions ath11k_mac_setup_

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53112 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwifi: pci: fix possible use-after-free caused by unfinished irq_prepare_bcn_ta

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53111 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: test_run: Fix the null pointer dereference issue in bpf_lwt_xmit_push_encap The bp

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53110 Unscored

In the Linux kernel, the following vulnerability has been resolved: s390/bpf: Zero-extend bpf prog return values and kfunc arguments s390x ABI requires cal

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53109 Unscored

In the Linux kernel, the following vulnerability has been resolved: powerpc/pgtable-frag: Fix bad page state in pte_frag_destroy powerpc uses pt_frag_refco

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53108 Unscored

In the Linux kernel, the following vulnerability has been resolved: powerpc/64s: Fix unmap race with PMD migration entries The following race is possible w

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53107 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: libertas: don't kill URBs in interrupt context Serialization for the TX path was

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53106 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Do not allow deleting local storage in NMI Currently, local storage may deadlock w

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53105 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7925: prevent NULL vif dereference in mt7925_mac_write_txwi Check for a N

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53104 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: Fix memory leak destroying device All MT76 rx queues have an associated pag

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53103 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7925: fix potential deadlock in mt7925_roc_abort_sync roc_abort_sync() ca

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53102 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: Fix memory leak after mt76_connac_mcu_alloc_sta_req() mt76_connac_mcu_alloc

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53101 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921: fix potential deadlock in mt7921_roc_abort_sync roc_abort_sync() ca

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53100 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: fix deadlock in remain-on-channel mt76_remain_on_channel() and mt76_roc_com

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53099 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Switch CONFIG_CFI_CLANG to CONFIG_CFI This was renamed in commit 23ef9d439769 ("kc

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53098 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: fix use-after-free bugs in mt7915_mac_dump_work() When the mt7915 p

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53097 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: fix use-after-free bugs in mt7996_mac_dump_work() When the mt7996 p

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53096 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Use RCU-safe iteration in dev_map_redirect_multi() SKB path The DEVMAP_HASH branch

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53095 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix abuse of kprobe_write_ctx via freplace uprobe programs are allowed to modify s

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53094 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix stale offload->prog pointer after constant blinding When a dev-bound-only BPF

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53093 Unscored

In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Fix error pointer dereference The function brcmf_chip_add_core() can re

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53092 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix linked reg delta tracking when src_reg == dst_reg Consider the case of rX += r

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53091 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: pull headers in qdisc_pkt_len_segs_init() Most ndo_start_xmit() methods expects he

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53090 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix ld_{abs,ind} failure path analysis in subprogs Usage of ld_{abs,ind} instructi

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53089 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix use-after-free in offloaded map/prog info fill When querying info for an offlo

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53088 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: bcmgenet: fix off-by-one in bcmgenet_put_txcb The write_ptr points to the next ope

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53087 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: bcmgenet: fix leaking free_bds While reclaiming the tx queue we fast forward the w

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53086 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: bcmgenet: fix racing timeout handler The bcmgenet_timeout handler tries to take do

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53085 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: fix mm lifecycle in open-coded task_vma iterator The open-coded task_vma iterator

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53084 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: return VMA snapshot from task_vma iterator Holding the per-VMA lock across the BPF

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53083 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix RCU stall in bpf_fd_array_map_clear() Add a missing cond_resched() in bpf_fd_a

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53082 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: hamradio: 6pack: fix uninit-value in sixpack_receive_buf sixpack_receive_buf() doe

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53081 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Enforce regsafe base id consistency for BPF_ADD_CONST scalars When regsafe() compa

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53080 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_fw: fix NULL dereference of "old" filters before change() Like pointed o

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53079 Unscored

In the Linux kernel, the following vulnerability has been resolved: net_sched: fix skb memory leak in deferred qdisc drops When the network stack cleans up

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53078 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix same-register dst/src OOB read and pointer leak in sock_ops When a BPF sock_op

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53077 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/rds: Restrict use of RDS/IB to the initial network namespace Prevent using RDS/IB i

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53076 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix OOB in pcpu_init_value An out-of-bounds read occurs when copying element from

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53075 Unscored

In the Linux kernel, the following vulnerability has been resolved: ppp: require CAP_NET_ADMIN in target netns for unattached ioctls /dev/ppp open is curre

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53074 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: reject short IPv4/IPv6 inputs in bpf_prog_test_run_skb bpf_prog_test_run_skb() cal

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53073 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_ldisc: Clear HCI_UART_PROTO_INIT on error When hci_register_dev() fails

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53072 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER When protocol set

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53071 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: l2cap: Add missing chan lock in l2cap_ecred_reconf_rsp l2cap_ecred_reconf_rs

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53070 Unscored

In the Linux kernel, the following vulnerability has been resolved: sctp: disable BH before calling udp_tunnel_xmit_skb() udp_tunnel_xmit_skb() / udp_tunne

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53069 Unscored

In the Linux kernel, the following vulnerability has been resolved: net, bpf: fix null-ptr-deref in xdp_master_redirect() for down master syzkaller reporte

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53068 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/komeda: fix integer overflow in AFBC framebuffer size check The AFBC framebuffer si

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53067 Unscored

In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: pci-ep-msi: Fix error unwind and prevent double alloc pci_epf_alloc_door

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53066 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/sun4i: backend: fix error pointer dereference The function drm_atomic_get_plane_sta

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53065 Unscored

In the Linux kernel, the following vulnerability has been resolved: ASoC: sti: use managed regmap_field allocations The regmap_field objects allocated at p

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53064 Unscored

In the Linux kernel, the following vulnerability has been resolved: dm cache: fix null-deref with concurrent writes in passthrough mode In passthrough mode

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53063 Unscored

In the Linux kernel, the following vulnerability has been resolved: dm cache: fix write hang in passthrough mode The invalidate_remove() function has incom

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53062 Unscored

In the Linux kernel, the following vulnerability has been resolved: dm cache policy smq: fix missing locks in invalidating cache blocks In passthrough mode

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53061 Unscored

In the Linux kernel, the following vulnerability has been resolved: dm cache: fix dirty mapping checking in passthrough mode switching As mentioned in comm

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53060 Unscored

In the Linux kernel, the following vulnerability has been resolved: dm cache metadata: fix memory leak on metadata abort retry When failing to acquire the

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53059 Unscored

In the Linux kernel, the following vulnerability has been resolved: dm log: fix out-of-bounds write due to region_count overflow The local variable region_

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53058 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/bridge: cadence: cdns-mhdp8546-core: Set the mhdp connector earlier in atomic_enabl

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53057 Unscored

In the Linux kernel, the following vulnerability has been resolved: iommu/riscv: Add IOTINVAL after updating DDT/PDT entries Add riscv_iommu_iodir_iotinval

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53056 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: fix mismatch between power and frequency During DPU runtime suspend, calli

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53055 Unscored

In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/sec2 - prevent req used-after-free for sec During packet transmission

24 Jun 2026, 16:30 UTC View advisory →
CVE-2026-53054 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/msm: Fix VM_BIND UNMAP locking Wrong argument meant that the objs involved in UNMAP

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53053 Unscored

In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Fix clone_alias() to use the original device's devid Currently clone_alias()

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53052 Unscored

In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: qdsp6: topology: check widget type before accessing data Check widget type

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53051 Unscored

In the Linux kernel, the following vulnerability has been resolved: PCI: tegra194: Fix CBB timeout caused by DBI access before core power-on When PERST# is

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53050 Unscored

In the Linux kernel, the following vulnerability has been resolved: quota: Fix race of dquot_scan_active() with quota deactivation dquot_scan_active() can

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53049 Unscored

In the Linux kernel, the following vulnerability has been resolved: gfs2: add some missing log locking Function gfs2_logd() calls the log flushing function

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53048 Unscored

In the Linux kernel, the following vulnerability has been resolved: gfs2: prevent NULL pointer dereference during unmount When flushing out outstanding glo

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53047 Unscored

In the Linux kernel, the following vulnerability has been resolved: efi/capsule-loader: fix incorrect sizeof in phys array reallocation The krealloc() call

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53046 Unscored

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free from async crypto on Qualcomm crypto engine ksmbd_crypt_messa

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53045 Unscored

In the Linux kernel, the following vulnerability has been resolved: memory: tegra124-emc: Fix dll_change check The code checking whether the specified memo

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53044 Unscored

In the Linux kernel, the following vulnerability has been resolved: soc/tegra: cbb: Fix incorrect ARRAY_SIZE in fabric lookup tables Fix incorrect ARRAY_SI

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53043 Unscored

In the Linux kernel, the following vulnerability has been resolved: ocfs2/dlm: validate qr_numregions in dlm_match_regions() Patch series "ocfs2/dlm: fix t

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53042 Unscored

In the Linux kernel, the following vulnerability has been resolved: fwctl: Fix class init ordering to avoid NULL pointer dereference on device removal CXL

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53041 Unscored

In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix listxattr handling when the buffer is full [BUG] If an OCFS2 inode has both

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53040 Unscored

In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate bg_bits during freefrag scan [BUG] A crafted filesystem can trigger an

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53039 Unscored

In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate group add input before caching [BUG] OCFS2_IOC_GROUP_ADD can trigger a

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53038 Unscored

In the Linux kernel, the following vulnerability has been resolved: ima_fs: Correctly create securityfs files for unsupported hash algos ima_tpm_chip->allo

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53037 Unscored

In the Linux kernel, the following vulnerability has been resolved: HID: usbhid: fix deadlock in hid_post_reset() You can build a USB device that includes

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53036 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf, arm64: Fix off-by-one in check_imm signed range check check_imm(bits, imm) is used

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53035 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Fix af_unix iter deadlock bpf_iter_unix_seq_show() may deadlock when lock

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53034 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Fix af_unix null-ptr-deref in proto update unix_stream_connect() sets sk_

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53033 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Take state lock for af_unix iter When a BPF iterator program updates a so

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53032 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix NULL deref in map_kptr_match_type for scalar regs Commit ab6c637ad027 ("bpf: F

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53031 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Validate node_id in arena_alloc_pages() arena_alloc_pages() accepts a plain int no

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53030 Unscored

In the Linux kernel, the following vulnerability has been resolved: i3c: master: renesas: Fix memory leak in renesas_i3c_i3c_xfers() The xfer structure all

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53029 Unscored

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: prevent uninitialized lcn caused by zero len syzbot reported a uninit-value i

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53028 Unscored

In the Linux kernel, the following vulnerability has been resolved: usb: typec: Fix error pointer dereference The variable tps->partner is checked for an e

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53027 Unscored

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix missing run load for vcn0 in attr_data_get_block_locked() When a compress

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53026 Unscored

In the Linux kernel, the following vulnerability has been resolved: NFSD: fix nfs4_file access extra count in nfsd4_add_rdaccess_to_wrdeleg In nfsd4_add_rd

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53025 Unscored

In the Linux kernel, the following vulnerability has been resolved: greybus: raw: fix use-after-free on cdev close This addresses a use-after-free bug when

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53024 Unscored

In the Linux kernel, the following vulnerability has been resolved: greybus: raw: fix use-after-free if write is called after disconnect If a user writes t

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53023 Unscored

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: terminate the cached volume label after UTF-8 conversion ntfs_fill_super() lo

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53022 Unscored

In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-sysman: bound enumeration string aggregation populate_enum_data(

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53021 Unscored

In the Linux kernel, the following vulnerability has been resolved: scsi: target: core: Fix integer overflow in UNMAP bounds check sbc_execute_unmap() chec

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53020 Unscored

In the Linux kernel, the following vulnerability has been resolved: um: Fix potential race condition in TLB sync During the TLB sync, we need to traverse a

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53019 Unscored

In the Linux kernel, the following vulnerability has been resolved: clk: spacemit: ccu_mix: fix inverted condition in ccu_mix_trigger_fc() Fix inverted con

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53018 Unscored

In the Linux kernel, the following vulnerability has been resolved: f2fs: avoid reading already updated pages during GC We found the following issue during

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53017 Unscored

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix data loss caused by incorrect use of nat_entry flag Data loss can occur when

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53016 Unscored

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - copy IV using skcipher ivsize AF_ALG rfc3686-ctr-aes-ccp requests pass an

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53015 Unscored

In the Linux kernel, the following vulnerability has been resolved: erofs: unify lcn as u64 for 32-bit platforms As sashiko reported [1], `lcn` was typed a

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53014 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/sched: act_mirred: fix wrong device for mac_header_xmit check in tcf_blockcast_redi

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53013 Unscored

In the Linux kernel, the following vulnerability has been resolved: macvlan: fix macvlan_get_size() not reserving space for IFLA_MACVLAN_BC_CUTOFF macvlan_

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53012 Unscored

In the Linux kernel, the following vulnerability has been resolved: nexthop: fix IPv6 route referencing IPv4 nexthop syzbot reported a panic [1] [2]. When

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53011 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/sched: taprio: fix use-after-free in advance_sched() on schedule switch In advance_

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53010 Unscored

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in smb2_open during durable reconnect In smb2_open, the call

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53009 Unscored

In the Linux kernel, the following vulnerability has been resolved: ice: fix double-free of tx_buf skb If ice_tso() or ice_tx_csum() fail, the error path i

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53008 Unscored

In the Linux kernel, the following vulnerability has been resolved: ice: fix race condition in TX timestamp ring cleanup Fix a race condition between ice_f

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53007 Unscored

In the Linux kernel, the following vulnerability has been resolved: ice: fix potential NULL pointer deref in error path of ice_set_ringparam() ice_set_ring

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53006 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipv6: fix possible UAF in icmpv6_rcv() Caching saddr and daddr before pskb_pull() is pr

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53005 Unscored

In the Linux kernel, the following vulnerability has been resolved: af_unix: Drop all SCM attributes for SOCKMAP. SOCKMAP can hide inflight fd from AF_UNIX

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53004 Unscored

In the Linux kernel, the following vulnerability has been resolved: sctp: fix OOB write to userspace in sctp_getsockopt_peer_auth_chunks sctp_getsockopt_pe

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53003 Unscored

In the Linux kernel, the following vulnerability has been resolved: pppoe: drop PFC frames RFC 2516 Section 7 states that Protocol Field Compression (PFC)

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53002 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: conntrack: remove sprintf usage Replace it with scnprintf, the buffer sizes

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53001 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: xtables: restrict several matches to inet family This is a partial revert of

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-53000 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nat: use kfree_rcu to release ops Florian Westphal says: "Historically this

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52999 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix out-of-bounds read on option matching In nf_osf_match(),

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52998 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix potential NULL dereference in ttl check The nf_osf_ttl()

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52997 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_dualpi2: drain both C-queue and L-queue in dualpi2_change() Fix dualpi2_

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52996 Unscored

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix durable fd leak on ClientGUID mismatch in durable v2 open ksmbd_lookup_fd_cg

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52995 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/rds: zero per-item info buffer before handing it to visitors rds_for_each_conn_info

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52994 Unscored

In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix MSG_ZEROCOPY pinned-pages accounting virtio_transport_init_zcopy_skb(

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52993 Unscored

In the Linux kernel, the following vulnerability has been resolved: tipc: fix double-free in tipc_buf_append() tipc_msg_validate() can potentially realloca

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52992 Unscored

In the Linux kernel, the following vulnerability has been resolved: fs/adfs: validate nzones in adfs_validate_bblk() Reject ADFS disc records with a zero z

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52991 Unscored

In the Linux kernel, the following vulnerability has been resolved: sched/psi: fix race between file release and pressure write A potential race condition

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52990 Unscored

In the Linux kernel, the following vulnerability has been resolved: fsnotify: fix inode reference leak in fsnotify_recalc_mask() fsnotify_recalc_mask() fai

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52989 Unscored

In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: propagate nvmet_tcp_build_pdu_iovec() errors to its callers Currently, when

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52988 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: join hook list via splice_list_rcu() in commit phase Publish new

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52987 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: avoid double drm_exec_fini() in userq validate When new_addition is true, a

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52986 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_sip: don't use simple_strtoul Replace unsafe port parsing in ep

24 Jun 2026, 16:29 UTC View advisory →
CVE-2026-52985 Unscored

In the Linux kernel, the following vulnerability has been resolved: netdevsim: zero initialize struct iphdr in dummy sk_buff Syzbot reports a KMSAN uninit-

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52984 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/sched: netem: fix queue limit check to include reordered packets The queue limit ch

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52983 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: airoha: fix BQL imbalance in TX path Fix a possible BQL imbalance in airoha_dev_xm

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52982 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: usb: rtl8150: fix use-after-free in rtl8150_start_xmit() syzbot reported a KASAN s

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52981 Unscored

In the Linux kernel, the following vulnerability has been resolved: neigh: let neigh_xmit take skb ownership neigh_xmit always releases the skb, except whe

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52980 Unscored

In the Linux kernel, the following vulnerability has been resolved: sched/fair: Clear rel_deadline when initializing forked entities A yield-triggered cras

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52979 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: psp: check for device unregister when creating assoc psp_assoc_device_get_locked()

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52978 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: psp: require admin permission for dev-set and key-rotate The dev-set and key-rotat

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52977 Unscored

In the Linux kernel, the following vulnerability has been resolved: futex: Prevent lockup in requeue-PI during signal/ timeout wakeup During wait-requeue-p

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52976 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix error cleanup in xe_exec_queue_create_ioctl() Two error handling issues exi

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52975 Unscored

In the Linux kernel, the following vulnerability has been resolved: bonding: 3ad: implement proper RCU rules for port->aggregator syzbot found a data-race

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52974 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: tls: fix strparser anchor skb leak on offload RX setup failure When tls_set_device

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52973 Unscored

In the Linux kernel, the following vulnerability has been resolved: futex: Drop CLONE_THREAD requirement for private default hash alloc Currently need_fute

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52972 Unscored

In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Cap AEAD AD length to 0x80000000 In order to prevent arithmetic overfl

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52971 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: ena: PHC: Fix potential use-after-free in get_timestamp Move the phc->active check

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52970 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_ct: fix missing expect put in obj eval nft_ct_expect_obj_eval() allocate

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52969 Unscored

In the Linux kernel, the following vulnerability has been resolved: KVM: Reject wrapped offset in kvm_reset_dirty_gfn() kvm_reset_dirty_gfn() guards the gf

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52968 Unscored

In the Linux kernel, the following vulnerability has been resolved: KVM: s390: pci: fix GAIT table indexing due to double-scaling pointer arithmetic kvm_s3

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52967 Unscored

In the Linux kernel, the following vulnerability has been resolved: smb/client: fix possible infinite loop and oob read in symlink_data() On 32-bit archite

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52966 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm: Replace old pointer to new idr Commit 5e28b7b94408 introduced a logical error by f

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52965 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/ttm: Fix ttm_bo_swapout() infinite LRU walk on swapout failure When ttm_tt_swapout(

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52964 Unscored

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Bound MIDI 2.0 endpoint descriptor scans The USB MIDI 2.0 endpoint par

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52963 Unscored

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Bound MIDI endpoint descriptor scans snd_usbmidi_get_ms_info() validat

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52962 Unscored

In the Linux kernel, the following vulnerability has been resolved: ceph: fix a buffer leak in __ceph_setxattr() The old_blob in __ceph_setxattr() can stor

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52961 Unscored

In the Linux kernel, the following vulnerability has been resolved: ceph: fix BUG_ON in __ceph_build_xattrs_blob() due to stale blob size The generic/642 t

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52960 Unscored

In the Linux kernel, the following vulnerability has been resolved: ceph: put folios not suitable for writeback The batch holds references to the folios (s

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52959 Unscored

In the Linux kernel, the following vulnerability has been resolved: virt: sev-guest: Do not use host-controlled page order in cleanup path When issuing an

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52958 Unscored

In the Linux kernel, the following vulnerability has been resolved: libceph: Fix potential out-of-bounds access in osdmap_decode() When decoding osd_state

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52957 Unscored

In the Linux kernel, the following vulnerability has been resolved: libceph: Fix potential null-ptr-deref in decode_choose_args() A message of type CEPH_MS

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52956 Unscored

In the Linux kernel, the following vulnerability has been resolved: libceph: Fix potential out-of-bounds access in __ceph_x_decrypt() In __ceph_x_decrypt()

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52955 Unscored

In the Linux kernel, the following vulnerability has been resolved: libceph: Fix potential out-of-bounds access in crush_decode() A message of type CEPH_MS

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52954 Unscored

In the Linux kernel, the following vulnerability has been resolved: libceph: handle rbtree insertion error in decode_choose_args() A message of type CEPH_M

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52953 Unscored

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix oops due to out of scope access Below oops triggers when kill QEMU proc

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52952 Unscored

In the Linux kernel, the following vulnerability has been resolved: iommu: Fix WARN_ON in __iommu_group_set_domain_nofail() due to reset In __iommu_group_s

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52951 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/xe/dma-buf: handle empty bo and UAF races There look to be some nasty races here wh

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52950 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/xe/dma-buf: fix UAF with retry loop Retry doesn't work here, since bo will be freed

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52949 Unscored

In the Linux kernel, the following vulnerability has been resolved: drm/ttm: Fix ttm_bo_shrink() infinite LRU walk on backup failure Apply the same fix as

24 Jun 2026, 16:28 UTC View advisory →
CVE-2026-52948 Unscored

In the Linux kernel, the following vulnerability has been resolved: i2c: dev: prevent integer overflow in I2C_TIMEOUT ioctl While fuzzing with Syzkaller, a

24 Jun 2026, 16:26 UTC View advisory →
CVE-2026-52947 Unscored

In the Linux kernel, the following vulnerability has been resolved: net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove In qrtr_port_r

24 Jun 2026, 16:26 UTC View advisory →
CVE-2026-52946 Unscored

In the Linux kernel, the following vulnerability has been resolved: fs/fcntl: fix SOFTIRQ-unsafe lock order in fasync signaling A SOFTIRQ-safe to SOFTIRQ-u

24 Jun 2026, 16:26 UTC View advisory →
CVE-2026-52945 Unscored

In the Linux kernel, the following vulnerability has been resolved: Revert "wireguard: device: enable threaded NAPI" This reverts commit 933466fc50a8e4eb16

24 Jun 2026, 16:26 UTC View advisory →
CVE-2026-52942 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_log: validate MAC header was set before dumping it The fallback path of d

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52941 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/smc: avoid NULL deref of conn->lnk in smc_msg_event tracepoint The smc_msg_event tr

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52940 Unscored

In the Linux kernel, the following vulnerability has been resolved: tun: zero the whole vnet header in tun_put_user() tun_put_user() declares an on-stack s

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52939 Unscored

In the Linux kernel, the following vulnerability has been resolved: net/rds: fix NULL deref in rds_ib_send_cqe_handler() on masked atomic completion rds_ib

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52938 Unscored

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix NULL pointer dereference in bpf_sk_storage_clone and diag paths bpf_selem_unli

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52937 Unscored

In the Linux kernel, the following vulnerability has been resolved: tap: fix stack info leak in tap_ioctl() SIOCGIFHWADDR In the SIOCGIFHWADDR path, tap_io

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52936 Unscored

In the Linux kernel, the following vulnerability has been resolved: crypto: jitterentropy - replace long-held spinlock with mutex jent_kcapi_random() seria

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52935 Unscored

In the Linux kernel, the following vulnerability has been resolved: xfrm: espintcp: do not reuse an in-progress partial send espintcp keeps a single in-fli

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52934 Unscored

In the Linux kernel, the following vulnerability has been resolved: batman-adv: tvlv: reject oversized TVLV packets batadv_tvlv_container_ogm_append() buil

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52933 Unscored

In the Linux kernel, the following vulnerability has been resolved: io_uring/poll: fix signed comparison in io_poll_get_ownership() io_poll_get_ownership()

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52932 Unscored

In the Linux kernel, the following vulnerability has been resolved: xfrm: ipcomp: Free destination pages on acomp errors Move the out_free_req label up by

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52931 Unscored

In the Linux kernel, the following vulnerability has been resolved: batman-adv: tp_meter: avoid use of uninit sender vars batadv_tp_recv_ack() and batadv_t

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52930 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipc/shm: serialize orphan cleanup with shm_nattch updates shm_destroy_orphaned() walks

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52929 Unscored

In the Linux kernel, the following vulnerability has been resolved: sctp: stream: fully roll back denied add-stream state When ADD_OUT_STREAMS is denied, S

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52928 Unscored

In the Linux kernel, the following vulnerability has been resolved: af_unix: Reject SIOCATMARK on non-stream sockets SIOCATMARK reports whether the receive

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52927 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: ebtables: fix OOB read in compat_mtw_from_user Luxiao Xu says: The function

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52926 Unscored

In the Linux kernel, the following vulnerability has been resolved: batman-adv: clear current gateway during teardown batadv_gw_node_free() removes the gat

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52925 Unscored

In the Linux kernel, the following vulnerability has been resolved: vrf: Fix a potential NPD when removing a port from a VRF RCU readers that identified a

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52924 Unscored

In the Linux kernel, the following vulnerability has been resolved: sctp: purge outqueue on stale COOKIE-ECHO handling sctp_stream_update() is only invoked

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52923 Unscored

In the Linux kernel, the following vulnerability has been resolved: ipc: limit next_id allocation to the valid ID range The checkpoint/restore sysctl path

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52922 Unscored

In the Linux kernel, the following vulnerability has been resolved: batman-adv: dat: handle forward allocation error batadv_dat_forward_data() calls pskb_c

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52921 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: stop hash:* range iteration at end The following hash set variants: h

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52920 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: xt_policy: fix strict mode inbound policy matching match_policy_in() walks s

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52919 Unscored

In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix tp_meter counter underflow during shutdown batadv_tp_sender_shutdown()

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52918 Unscored

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: serialize accept_q access bt_sock_poll() walks the accept queue without sync

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52917 Unscored

In the Linux kernel, the following vulnerability has been resolved: sctp: diag: reject stale associations in dump_one path The SCTP exact sock_diag lookup

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52916 Unscored

In the Linux kernel, the following vulnerability has been resolved: batman-adv: frag: disallow unicast fragment in fragment batadv_frag_skb_buffer() is cal

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52915 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6t_hbh: reject oversized option lists struct ip6t_opts stores at most IP6T

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52914 Unscored

In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix fragment reassembly length accounting batman-adv keeps a running payloa

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52913 Unscored

In the Linux kernel, the following vulnerability has been resolved: batman-adv: v: stop OGMv2 on disabled interface When a batadv_hard_iface is disabled, i

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52912 Unscored

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_queue: hold bridge skb->dev while queued br_pass_frame_up() rewrites skb-

24 Jun 2026, 07:14 UTC View advisory →
CVE-2026-52893 Critical 9.2

Wekan is open source kanban built with Meteor. Prior to 9.32, the Wekan Accounts.onCreateUser hook in server/models/users.js merges OIDC logins into existi

15 Jul 2026, 21:12 UTC View advisory →
CVE-2026-52892 Medium 6.5

Wekan is open source kanban built with Meteor. Prior to 9.32, Wekan REST handlers in server/models/customFields.js use read-level Authentication.checkBoard

15 Jul 2026, 21:08 UTC View advisory →
CVE-2026-52891 Critical 9.9

Wekan is open source kanban built with Meteor. Prior to 9.07, Wekan avatar upload functionality embeds user-supplied filenames into paths later passed to c

15 Jul 2026, 21:08 UTC View advisory →
CVE-2026-52890 High 7.1

Wekan is open source kanban built with Meteor. Prior to 9.31, Wekan allows a logged-in board member to insert an attachment document through the /attachmen

15 Jul 2026, 21:07 UTC View advisory →
CVE-2026-52888 Medium 6.8

NocoBase is an AI-powered no-code/low-code platform for building business applications and enterprise solutions. In 2.0.59 and earlier, NocoBase @nocobase/

15 Jul 2026, 20:13 UTC View advisory →
CVE-2026-52887 Critical 10

NocoBase is an AI-powered no-code/low-code platform for building business applications and enterprise solutions. Prior to 2.0.61, NocoBase @nocobase/plugin

15 Jul 2026, 20:16 UTC View advisory →
CVE-2026-52885 High 7.5

Notepad++ is a free and open-source source code editor. Prior to 8.9.6.4, NppCommands.cpp checks the HMAC of the on-disk shortcuts.xml at the moment a user

26 Jun 2026, 20:19 UTC View advisory →
CVE-2026-52884 High 7.8

Notepad++ is a free and open-source source code editor. In v8.9.6.1, isInTrustedDirectory() does NOT canonicalize the path before checking. It uses a prefi

26 Jun 2026, 20:11 UTC View advisory →
CVE-2026-52870 High 7.6

The MCP Python SDK, called mcp on PyPI, is a Python implementation of the Model Context Protocol (MCP). From 1.23.0 until 1.27.2, default handlers installe

15 Jul 2026, 20:07 UTC View advisory →
CVE-2026-52869 High 7.1

The MCP Python SDK, called mcp on PyPI, is a Python implementation of the Model Context Protocol (MCP). Prior to 1.27.2, the SSE and stateful Streamable HT

15 Jul 2026, 20:06 UTC View advisory →
CVE-2026-52868 High 8.8

An unauthenticated attacker can read worklist records from a directory outside the intended per-AE worklist storage area. In a multi-area deployment, this

30 Jun 2026, 21:06 UTC View advisory →
CVE-2026-52865 High 7.1

When NGINX Ingress Controller processes Ingress or TransportServer resources, an authenticated, remote attacker with permission to create or modify Ingress

15 Jul 2026, 14:33 UTC View advisory →
CVE-2026-52863 Medium 5.9

In NLnet Labs Unbound 1.25.0 up to and including 1.25.1, a fix that makes the 'respip' and 'dns64' modules work together, creates a shallow copy of the vie

22 Jul 2026, 13:09 UTC View advisory →
CVE-2026-52857 Medium 5.5

Wings is the server control plane for Pterodactyl, a free, open-source game server management panel. Prior to 1.13.0, unbounded json, yaml, and xml configu

31 Jul 2026, 16:09 UTC View advisory →
CVE-2026-52856 High 7.5

Wings is the server control plane for Pterodactyl, a free, open-source game server management panel. Prior to 1.13.0, a malformed packet received during th

31 Jul 2026, 16:20 UTC View advisory →
CVE-2026-52855 Critical 9.9

Wings is the server control plane for Pterodactyl, a free, open-source game server management panel. Prior to 1.12.3, {{config.}} placeholders in egg confi

31 Jul 2026, 16:16 UTC View advisory →
CVE-2026-52846 Medium 4.2

Caddy is an extensible server platform that uses TLS by default. Prior to 2.11.4, Caddy’s stripHTML template function cannot reliably remove all HTML tags

23 Jun 2026, 17:47 UTC View advisory →
CVE-2026-52845 High 8.1

Caddy is an extensible server platform that uses TLS by default. Prior to 2.11.4, forward_auth copy_headers deletes the exact client-supplied identity head

23 Jun 2026, 17:52 UTC View advisory →
CVE-2026-52844 High 7.5

Caddy is an extensible server platform that uses TLS by default. Prior to 2.11.4, on Windows, Caddy path matchers treat /private\secret.txt as outside /pri

23 Jun 2026, 17:50 UTC View advisory →
CVE-2026-52843 Critical 9.3

Lightpanda is a headless browser designed for AI and automation. Prior to 0.2.9, Lightpanda fetch() and XMLHttpRequest unconditionally attached session coo

15 Jul 2026, 16:16 UTC View advisory →
CVE-2026-52842 Critical 9.3

Lightpanda is a headless browser designed for AI and automation. Prior to 0.3.1, Lightpanda searched for @ across the entire URL string instead of only the

15 Jul 2026, 16:18 UTC View advisory →
CVE-2026-52841 Low 3.1

Easy!Appointments is a self hosted appointment scheduler. In versions prior to 1.6.0, `Google::oauth` at `application/controllers/Google.php:278` stores it

14 Jul 2026, 15:27 UTC View advisory →
CVE-2026-52840 Low 2.7

Easy!Appointments is a self hosted appointment scheduler. In versions prior to 1.6.0, `Caldav::connect_to_server` at `application/controllers/Caldav.php:60

14 Jul 2026, 15:23 UTC View advisory →
CVE-2026-52839 Low 3.3

Easy!Appointments is a self hosted appointment scheduler. Versions prior to 1.6.0 correctly filter provider-scoped appointments in the `appointments/search

14 Jul 2026, 15:21 UTC View advisory →
CVE-2026-52838 Low 2.6

Easy!Appointments is a self hosted appointment scheduler. Versions prior to 1.6.0 allow administrators to define a custom "booking disabled" message throug

14 Jul 2026, 15:07 UTC View advisory →
CVE-2026-52837 Medium 6.9

Easy!Appointments is a self hosted appointment scheduler. In versions up to and including 1.5.2, the booking reschedule view at `/index.php/booking/resched

14 Jul 2026, 14:48 UTC View advisory →
CVE-2026-52830 Critical 9.4

fast-mcp-telegram is a Telegram MCP Server. Prior to 0.19.1, fast-mcp-telegram validates HTTP Bearer tokens by joining the raw token string into a session-

02 Jul 2026, 20:39 UTC View advisory →
CVE-2026-52816 Medium 5.4

Gogs is an open source self-hosted Git service. Prior to 0.14.3, the Jupyter Notebook (ipynb) sanitizer endpoint at POST /-/api/sanitize_ipynb allows arbit

24 Jun 2026, 20:26 UTC View advisory →
CVE-2026-52815 Medium 5.5

Gogs is an open source self-hosted Git service. Prior to 0.14.3, Gogs has an unauthenticated information disclosure vulnerability. The GET /api/v1/orgs/:or

24 Jun 2026, 20:01 UTC View advisory →
CVE-2026-52814 Medium 5.5

Gogs is an open source self-hosted Git service. Prior to 0.14.3, the Gogs built-in Go SSH server is vulnerable to an unauthenticated, asymmetric Denial of

24 Jun 2026, 20:15 UTC View advisory →
CVE-2026-52813 Critical 10

Gogs is an open source self-hosted Git service. Prior to 0.14.3, organization names containing path traversal sequences (../) are accepted by Gogs, and rep

24 Jun 2026, 20:33 UTC View advisory →
CVE-2026-52812 High 7.1

Gogs is an open source self-hosted Git service. Prior to 0.14.3, Git LFS storage is content-addressed by OID alone (///) but per-repo authorization lives i

24 Jun 2026, 20:32 UTC View advisory →
CVE-2026-52811 Critical 9

Gogs is an open source self-hosted Git service. Prior to 0.14.3, (*Repository).UploadRepoFiles checks for symlinks only on the leaf of the upload target (o

24 Jun 2026, 20:31 UTC View advisory →
CVE-2026-52810 High 7.1

Gogs is an open source self-hosted Git service. Prior to 0.14.3, Git smart HTTP authorizes POST …/git-receive-pack using the client-supplied service query

24 Jun 2026, 20:30 UTC View advisory →
CVE-2026-52809 Medium 6.8

Gogs is an open source self-hosted Git service. Prior to 0.14.3, password-reset tokens are generated using conf.Auth.ActivateCodeLives (the account-activat

24 Jun 2026, 20:29 UTC View advisory →
CVE-2026-52808 High 7.1

Gogs is an open source self-hosted Git service. Prior to 0.14.3, three API endpoints — PATCH /api/v1/repos/:owner/:repo/issue-tracker, PATCH /api/v1/repos/

24 Jun 2026, 20:27 UTC View advisory →
CVE-2026-52807 Medium 4.8

Gogs is an open source self-hosted Git service. Prior to 0.14.3, in new_form.tmpl, milestone names are rendered with Go's default auto-escaping ({{.Name}})

24 Jun 2026, 20:25 UTC View advisory →
CVE-2026-52806 Critical 9.9

Gogs is an open source self-hosted Git service. Prior to 0.14.3, Gogs allows authenticated users to achieve Remote Code Execution (RCE) on the server by cr

24 Jun 2026, 20:21 UTC View advisory →
CVE-2026-52805 High 8.7

Gogs is an open source self-hosted Git service. Prior to 0.14.3, a Server-Side Request Forgery (SSRF) vulnerability exists in the repository migration func

24 Jun 2026, 20:22 UTC View advisory →
CVE-2026-52804 Medium 5.5

Gogs is an open source self-hosted Git service. Prior to 0.14.3, a repository admin collaborator can escalate their privileges to owner-level access by exp

24 Jun 2026, 20:20 UTC View advisory →
CVE-2026-52802 Medium 5.4

Gogs is an open source self-hosted Git service. Prior to 0.14.3, an open redirect vulnerability exists in Gogs where attacker-controlled redirect_to parame

24 Jun 2026, 20:17 UTC View advisory →
CVE-2026-52801 High 8.1

Gogs is an open source self-hosted Git service. Prior to 0.14.3, the Gogs Mirror Settings functionality provide an alternative way from the well protected

24 Jun 2026, 20:18 UTC View advisory →
CVE-2026-52800 High 8.8

Gogs is an open source self-hosted Git service. Prior to 0.14.3, organization team member management can be performed via GET requests without CSRF protect

24 Jun 2026, 20:18 UTC View advisory →
CVE-2026-52799 High 7.5

Gogs is an open source self-hosted Git service. Prior to 0.14.3, GET /attachments/:uuid returns the raw attachment file without verifying whether the reque

24 Jun 2026, 20:19 UTC View advisory →
CVE-2026-52798 High 8.9

Gogs is an open source self-hosted Git service. Prior to 0.14.3, although .ipynb previews are sanitized on the server side via /-/api/sanitize_ipynb, the i

24 Jun 2026, 20:14 UTC View advisory →
CVE-2026-52797 High 8.5

Gogs is an open source self-hosted Git service. Prior to 0.14.0, as an authorized user, an intruder can dictate the value which is passed to the git diff c

24 Jun 2026, 20:35 UTC View advisory →
CVE-2026-52796 Low 3.5

Gogs is an open source self-hosted Git service. Prior to 0.14.3, specially crafted issue index pattern can cause a panic when rendering, resulting in denia

24 Jun 2026, 20:13 UTC View advisory →
CVE-2026-52795 Medium 4.3

Gogs is an open source self-hosted Git service. In 0.14.3 and earlier, any authenticated user can watch a private repository they have no access to, becaus

24 Jun 2026, 20:06 UTC View advisory →
CVE-2026-52794 High 7.5

Sentry is an error tracking and performance monitoring tool. From 24.4.0 until 26.5.2, a Regular Expression Denial of Service (ReDoS) vulnerability exists

24 Jun 2026, 21:26 UTC View advisory →
CVE-2026-52785 Critical 9.9

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, there is a SQL injection in timestamps functionality. OpenPr

26 Jun 2026, 18:54 UTC View advisory →
CVE-2026-52784 High 8.8

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, there is a CSRF on TARGET through /users/:id via POST parame

26 Jun 2026, 18:56 UTC View advisory →
CVE-2026-52783 High 8.2

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, OpenProject's Storages module writes the OneDrive/SharePoint

26 Jun 2026, 18:57 UTC View advisory →
CVE-2026-52782 Critical 9.9

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, there is an IDOR through /projects//settings/project_storage

26 Jun 2026, 18:59 UTC View advisory →
CVE-2026-52781 Medium 6.4

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, the HTML sanitizer grants elements unrestricted data-* attri

26 Jun 2026, 19:00 UTC View advisory →
CVE-2026-52780 Critical 9.6

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, cache store poisoning leads to Remote Code Execution (RCE).

26 Jun 2026, 19:09 UTC View advisory →
CVE-2026-52779 Medium 5.4

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, a cross-project IDOR / authorization context confusion in th

26 Jun 2026, 19:02 UTC View advisory →
CVE-2026-52761 Medium 5.8

ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. From 3.0.0 through 3.0.15, the t:utf8toUnico

10 Jul 2026, 21:40 UTC View advisory →
CVE-2026-52760 Medium 6.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache ActiveMQ, Apache ActiveMQ Web Console. The bro

30 Jun 2026, 09:50 UTC View advisory →
CVE-2026-52747 High 8.6

ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Prior to 3.0.16, the multipart/form-data req

10 Jul 2026, 21:42 UTC View advisory →
CVE-2026-52746 High 7.5

JSONata is a JSON query and transformation language. Prior to 2.2.0, malicious non-matching inputs to the $toMillis function can cause superlinear backtrac

17 Jul 2026, 18:32 UTC View advisory →
CVE-2026-52725 Medium 5.3

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.0-rc.2, 2

22 Jun 2026, 15:18 UTC View advisory →
CVE-2026-52701 Medium 6.5

Unauthenticated Broken Access Control in User Registration <= 5.2.2 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-52690 Medium 5.9

Spoofing replies to Recursor might mark an IP of an authoritative server as not supporting EDNS, causing valdiation of DNSSEC records served by that server

25 Jun 2026, 13:01 UTC View advisory →
CVE-2026-52680 Unscored

Apache Kyuubi REST batch multipart upload handling uses the client-supplied multipart filename when creating a temporary uploaded resource. A remote attack

30 Jul 2026, 16:07 UTC View advisory →
CVE-2026-51386 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2026-46409. Reason: This record is a reservation duplicate of CVE-2026-46409. Notes: All CVE users should refer

21 Jul 2026 View advisory →
CVE-2026-51301 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51299 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51289 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51288 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51287 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51286 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51285 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51284 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51283 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51282 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51281 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51280 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51279 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51278 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51277 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51276 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51265 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51264 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51262 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51258 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51257 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51256 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51255 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51253 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51250 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51249 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51248 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51247 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51246 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51245 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51243 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51242 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51241 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51240 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51239 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51238 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51237 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51236 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51234 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51233 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51232 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51231 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51230 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-51229 Unscored

DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue.

01 Aug 2026 View advisory →
CVE-2026-50750 High 7.5

Denial of Service via Out of Memory vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ, Apache ActiveMQ All. Following the fix for CVE-2026-49270 an

30 Jun 2026, 09:51 UTC View advisory →
CVE-2026-50749 Unscored

Improper Authorization vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.1. Any authenticated user can reject arbitrary pending

05 Aug 2026, 15:11 UTC View advisory →
CVE-2026-50748 Critical 9.9

A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-50747 Critical 9.9

A malicious actor with access to the network and low privileges could exploit a series of authenticated SQL Injection vulnerabilities found in UniFi Talk A

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-50746 Critical 10

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Connect Application to execute a Command

02 Jul 2026, 14:49 UTC View advisory →
CVE-2026-50745 Medium 4.7

A missing sanitisation vulnerability exists with user input in the stats-video.php script. The way URLs to this script were constructed did not follow best

26 Jun 2026, 01:11 UTC View advisory →
CVE-2026-50744 Medium 4.3

A bypass to the admin‑only restriction of the XML‑RPC API in Revive Adserver 6.0.7. The API response for the ox.login method returned a session ID cookie i

26 Jun 2026, 01:11 UTC View advisory →
CVE-2026-50743 Medium 5.4

A CSRF vulnerability exists in the `zone-include.php` script in Revive Adserver 6.0.7. Linking and unlinking banners or campaigns to zones could be trigger

20 Jul 2026, 16:53 UTC View advisory →
CVE-2026-50742 Medium 4.4

A stored XSS vulnerabilities exists in the `maintenance-acl-check.php` and `maintenance-banners-check.php` tools of Revive Adserver 6.0.7. The issue was ca

26 Jun 2026, 01:11 UTC View advisory →
CVE-2026-50741 High 8.8

Bypass to the fix for CVE-2026-34916. Variants of such vectors have been also reported by phucrio and offsetmd. The fix can be bypassed either by sending a

26 Jun 2026, 01:11 UTC View advisory →
CVE-2026-50740 Medium 6.1

A missing sanitisation vulnerability of user input in the zone-include.php script exists in Revive Adserver 6.0.7 and earlier. A low‑privileged user could

26 Jun 2026, 01:11 UTC View advisory →
CVE-2026-50739 Medium 4.3

A bypass for CVE‑2026‑34913 exists with proper ownership validation that had not been applied to the reverse operation of linking campaigns and trackers th

26 Jun 2026, 01:11 UTC View advisory →
CVE-2026-50734 High 7.5

Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ Client, Apache ActiveMQ, Apache ActiveMQ All. An unauthenticated network attac

30 Jun 2026, 09:53 UTC View advisory →
CVE-2026-50722 High 7.5

Libreswan, via the function RSA_authenticate_hash_signature_pkcs1_1_5_rsa(), did not correctly verify the DER encoding of the ASN.1 digest when the IKEv2 A

02 Jul 2026, 21:34 UTC View advisory →
CVE-2026-50721 High 7.5

Libreswan, via the function RSA_authenticate_hash_signature_raw_rsa(), did not correctly verify the length of the authentication hash when the SIG payload

02 Jul 2026, 21:44 UTC View advisory →
CVE-2026-50712 Medium 4.8

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in

24 Jun 2026, 15:26 UTC View advisory →
CVE-2026-50711 Medium 4.6

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in

24 Jun 2026, 15:18 UTC View advisory →
CVE-2026-50710 Medium 4.6

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to unsafe evaluation of user-controlled data in the Num

24 Jun 2026, 15:08 UTC View advisory →
CVE-2026-50709 Medium 4.8

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in

24 Jun 2026, 15:04 UTC View advisory →
CVE-2026-50708 Medium 4.8

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in

24 Jun 2026, 14:58 UTC View advisory →
CVE-2026-50705 Medium 4.6

A Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of untrusted input in the Form Dash

24 Jun 2026, 14:51 UTC View advisory →
CVE-2026-50704 Medium 4.6

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in

24 Jun 2026, 14:46 UTC View advisory →
CVE-2026-50703 Medium 4.8

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in

24 Jun 2026, 14:42 UTC View advisory →
CVE-2026-50701 Medium 5.1

A Reflected Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input

24 Jun 2026, 14:33 UTC View advisory →
CVE-2026-50700 Medium 4.6

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in

24 Jun 2026, 14:27 UTC View advisory →
CVE-2026-50699 Medium 4.6

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev. An authenticated attacker with write access to Auto Repeat

24 Jun 2026, 14:20 UTC View advisory →
CVE-2026-50698 Medium 4.6

A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input bef

24 Jun 2026, 14:17 UTC View advisory →
CVE-2026-50697 High 7.8

Exposure of sensitive information to an unauthorized actor in Windows Common Log File System Driver allows an authorized attacker to elevate privileges loc

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-50696 High 7.5

Heap-based buffer overflow in Windows Internet Key Exchange (IKE) Protocol allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-50695 High 7.5

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-50694 High 8.1

Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-50692 High 8.8

Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50690 Medium 5.5

Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50689 High 7.8

Use after free in Windows Clipboard Server allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50688 High 7.8

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50687 High 8.8

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50686 High 8.1

Access of resource using incompatible type ('type confusion') in Windows OLE allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50685 High 7.5

Double free in Windows DHCP Server allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50684 Medium 4.8

Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized a

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50683 High 8

Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to elevate privileges over an adjacent network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50682 High 7.1

Out-of-bounds read in Windows Active Directory allows an authorized attacker to deny service over a network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50681 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50680 High 8.2

Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50679 High 7.8

Heap-based buffer overflow in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50678 Medium 6.6

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-50677 High 7.8

Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50676 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privi

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50675 High 7.8

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-50674 High 7

Use after free in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50673 High 7.8

Null pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50672 High 7

Use after free in Windows NTFS allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50670 High 8.8

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50669 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to e

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50668 Medium 6.8

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges with a physical attack.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50667 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows NTFS allows an authorized attacker to elevate privil

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50666 High 8.8

Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50665 High 7.8

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-50663 High 8.8

Relative path traversal in Age of Empires II: Definitive Edition Game allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-50661 Medium 6.1

Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50659 Medium 6.5

Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.

14 Jul 2026, 19:40 UTC View advisory →
CVE-2026-50658 High 7

Time-of-check time-of-use (toctou) race condition in Microsoft Defender allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50657 Medium 4.7

Exposure of private personal information to an unauthorized actor in Microsoft Defender allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50655 High 7.8

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50653 High 7.5

Loop with unreachable exit condition ('infinite loop') in Azure Active Directory allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-50652 High 7.5

Deserialization of untrusted data in Azure Active Directory allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-50651 High 7.5

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 19:40 UTC View advisory →
CVE-2026-50650 High 7.8

Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate privileges locally.

14 Jul 2026, 19:29 UTC View advisory →
CVE-2026-50649 High 7.8

Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally.

14 Jul 2026, 19:29 UTC View advisory →
CVE-2026-50648 High 7.5

Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 19:29 UTC View advisory →
CVE-2026-50647 High 7.5

Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50646 High 7.8

Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally.

14 Jul 2026, 19:29 UTC View advisory →
CVE-2026-50574 High 8.3

yt-dlp is a command-line audio/video downloader. Prior to 2026.06.09, if aria2c is used as an external downloader for a fragmented manifest format (such as

23 Jun 2026, 16:09 UTC View advisory →
CVE-2026-50573 Medium 6.8

pnpm is a package manager. Prior to 10.34.0 and 11.4.0, `pnpm install` in non-frozen mode can accept new remote package content after detecting that the do

25 Jun 2026, 16:50 UTC View advisory →
CVE-2026-50562 Critical 9.3

FastGPT is a knowledge-based AI application platform. At commit 22ebfacbb43311e9b73294040ae0eb87390c6bba and earlier, artifacts built from untrusted pull r

15 Jul 2026, 16:55 UTC View advisory →
CVE-2026-50557 Medium 5.3

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.0-rc.2, 2

22 Jun 2026, 15:11 UTC View advisory →
CVE-2026-50556 High 8.6

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.0-rc.2, 2

22 Jun 2026, 15:38 UTC View advisory →
CVE-2026-50555 High 8.6

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.0-rc.2, 2

22 Jun 2026, 15:37 UTC View advisory →
CVE-2026-50551 Critical 9.9

SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, SiYuan contains a stored cross-site scripting (XSS) vulnerability in the Att

24 Jun 2026, 21:20 UTC View advisory →
CVE-2026-50549 Critical 9.3

Cursor is a code editor built for programming with AI. Prior to 3.0, Cursor runs agent terminal commands in a sandbox by default. Before a Write, the agent

25 Jun 2026, 18:47 UTC View advisory →
CVE-2026-50548 Critical 9.3

Cursor is a code editor built for programming with AI. Prior to 3.0, Cursor runs agent terminal commands in a sandbox by default, and the sandbox grants wr

25 Jun 2026, 18:47 UTC View advisory →
CVE-2026-50530 High 7.1

DataEase is an open source data visualization and analysis tool. Prior to 2.10.24, a share mode chart data interface only validates that sceneId matches th

07 Jul 2026, 20:41 UTC View advisory →
CVE-2026-50529 High 8.7

DataEase is an open source data visualization and analysis tool. Prior to 2.10.24, the /de2api/share/proxyInfo share interface generates and returns X-DE-L

07 Jul 2026, 20:39 UTC View advisory →
CVE-2026-50528 High 8.2

Incorrect authorization in .NET allows an unauthorized attacker to bypass a security feature over a network.

14 Jul 2026, 19:29 UTC View advisory →
CVE-2026-50527 High 7.5

Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 19:29 UTC View advisory →
CVE-2026-50526 High 7

Improper link resolution before file access ('link following') in .NET allows an authorized attacker to perform tampering locally.

14 Jul 2026, 19:29 UTC View advisory →
CVE-2026-50525 High 7.5

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 19:29 UTC View advisory →
CVE-2026-50524 High 7.5

Improper validation of specified type of input in .NET Framework allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 19:29 UTC View advisory →
CVE-2026-50522 Critical 9.8

Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-50520 High 8.4

Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code allows an unauthorized attacker to execute code l

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-50518 Critical 9.8

Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50515 Critical 9.9

Deserialization of untrusted data in Azure Service Bus allows an authorized attacker to execute code over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-50510 High 7.8

Improper restriction of names for files and other resources in Github Copilot allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50509 High 7.8

Deserialization of untrusted data in Windows Wireless Wide Area Network Service allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50506 High 7.5

Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-50505 High 7.5

Use after free in Windows Message Queuing allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50504 Medium 6.5

Buffer over-read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50503 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate pri

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50502 High 8

Insufficient granularity of access control in Windows Event Logging Service allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50501 High 7.8

Stack-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50500 High 7.5

Use after free in Windows Netlogon allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50499 High 7.8

Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50498 High 7.8

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50497 Medium 6.5

Off-by-one error in Windows Remote Desktop Protocol allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50496 High 7.5

Out-of-bounds read in Windows Network Policy Server SNMP allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50495 Medium 6.1

Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50494 High 7.8

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50493 High 7.8

Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50492 Medium 6.8

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code with a physical attack.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50491 High 7

Out-of-bounds read in Code Integrity DLL (ci.dll) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50490 High 7

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50489 High 8.8

Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50488 High 7.8

Improper neutralization of special elements used in a command ('command injection') in Windows Clipboard User Service allows an authorized attacker to elev

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50487 High 8.1

Use after free in Microsoft Windows DNS allows an unauthorized attacker to elevate privileges over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50486 High 7.8

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50485 Medium 4.5

Buffer over-read in Windows Hyper-V allows an authorized attacker to deny service over an adjacent network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50484 High 7.8

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50483 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Microsoft Graphics Component allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50482 High 7.3

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50481 Critical 9.9

Modification of assumed-immutable data (maid) in Azure Active Directory allows an authorized attacker to elevate privileges over a network.

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-50480 High 7.8

Heap-based buffer overflow in Windows Web Proxy Auto-Discovery Protocol (WPAD) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50479 High 7.8

Untrusted pointer dereference in Windows USB Hub Driver allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50478 High 7.8

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50477 High 8.8

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50476 High 7.8

Use after free in Microsoft Windows allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50475 Medium 5.5

Buffer over-read in Windows Kernel allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50474 High 8.8

Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50473 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50471 High 7.8

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50470 High 7.5

Out-of-bounds read in Windows Network Policy Server SNMP allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50469 High 7.8

Improper link resolution before file access ('link following') in Windows Projected File System allows an authorized attacker to elevate privileges locally

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50468 Medium 6.5

Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-50467 High 7.8

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50466 High 7.8

Use after free in Windows Brokering File System allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50465 High 7.1

Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50463 High 7.5

Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50462 High 7.8

External control of file name or path in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50461 High 7.8

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50460 High 8.1

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate p

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50459 High 7

Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50458 High 7.8

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50457 High 7.8

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50456 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50455 Medium 5.5

Use of uninitialized resource in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50454 High 7.8

Relative path traversal in Windows User Interface Core allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50453 Medium 6.1

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50452 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate p

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50451 High 7.1

Missing authentication for critical function in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locall

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50450 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Wide Area Network Service allows an authori

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50449 High 7

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50448 High 7.8

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50447 Critical 9.8

Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50445 Medium 6.5

Buffer over-read in Windows RDP allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50444 High 8.8

Missing authentication for critical function in Windows Server Update Service allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50442 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50441 High 7.8

Untrusted pointer dereference in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50440 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Audio Service allows an authorized attacker to eleva

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50439 High 8.1

Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50438 High 8.8

Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50437 Medium 5.5

Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50436 High 7.8

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50435 High 7.8

Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50434 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50433 High 7.8

Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50432 Medium 5.3

Use after free in Windows Virtual Filtering Platform (VFP) allows an authorized attacker to deny service over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50431 Medium 5.5

Windows Quality of Service (QoS) Packet Scheduler Information Disclosure Vulnerability

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50430 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50429 High 8.2

Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50428 High 7.1

Out-of-bounds read in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50427 High 7.8

Use after free in Content Delivery Manager allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50426 Medium 6.8

Relative path traversal in DNS Server allows an authorized attacker to execute code over an adjacent network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50425 High 7.8

Use after free in Windows Internal System User Profile allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50424 High 7.5

Untrusted pointer dereference in Windows Domain Controller allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50423 High 7.8

Improper access control in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50422 High 7.8

Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50421 High 7.8

Access of resource using incompatible type ('type confusion') in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50420 Medium 6.2

Out-of-bounds read in Windows HTTP.sys allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50419 Low 3.3

Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50418 Medium 5.1

Improper access control in Windows System allows an unauthorized attacker to bypass a security feature locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50417 High 7.8

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50416 Low 3.3

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50415 Medium 5.3

Exposure of sensitive information to an unauthorized actor in Windows Media allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50414 High 7.5

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privi

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50413 High 8.8

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50412 High 7.8

Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50411 High 7.5

Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50410 High 7

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50409 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows Overlay Filter allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50408 Medium 5.5

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50407 High 7.8

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50406 High 7

Use after free in Windows Backup Engine allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50405 High 7.8

Insufficient granularity of access control in Windows Filtering Platform (WFP) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50404 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privi

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50403 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate pri

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50402 High 7.8

Incorrect conversion between numeric types in Windows NTFS allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50401 Medium 5.5

Out-of-bounds read in Windows Cloud Files Mini Filter Driver allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50400 High 7.8

Stack-based buffer overflow in Windows App Installer allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50399 High 7.8

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50398 High 8.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privi

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50397 High 7

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50396 High 7

Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50394 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50393 High 7

Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50392 High 7

Use after free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50391 High 7.8

Improper privilege management in Windows Group Policy allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50390 High 7

Access of resource using incompatible type ('type confusion') in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50389 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50388 High 7.8

Out-of-bounds read in Windows NTFS allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50387 High 7.8

Stack-based buffer overflow in Windows GDI allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50386 High 7.8

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50385 High 8.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate pri

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50384 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clip Service allows an authorized attacker to elevat

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50383 Medium 6.1

Buffer over-read in Windows Print Spooler Components allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50382 High 8.8

Untrusted pointer dereference in Windows DirectX allows an authorized attacker to execute code locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50381 Medium 5.5

Access of resource using incompatible type ('type confusion') in Composite Image File System Driver allows an authorized attacker to disclose information l

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50380 Critical 9.6

Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50379 High 7.5

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privi

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50378 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Key Guard allows an authorized attacker to elevate p

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50377 Medium 5.5

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50376 Medium 6.5

Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50375 Medium 6.3

Heap-based buffer overflow in Windows DirectX allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50374 Medium 6.3

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges with a physical attack.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50373 High 7.8

Improper access control in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50372 High 7

Buffer over-read in Windows Redirected Drive Buffering allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50371 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows LUAFV allows an authorized attacker to elevate privi

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50370 High 8.8

Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50369 High 8.8

Use after free in Windows Remote Desktop Services allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50368 High 7.5

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50367 High 7.8

Incorrect access of indexable resource ('range error') in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50366 Medium 6.5

Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service over a network.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50365 High 8

Improper authentication in Windows RPC API allows an unauthorized attacker to elevate privileges over an adjacent network.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50364 High 7.3

Improper link resolution before file access ('link following') in Windows Server Backup allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50363 High 7.8

Heap-based buffer overflow in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50362 High 7.8

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50361 High 7.8

Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50360 High 8.8

Incorrect implementation of authentication algorithm in Windows SMB Server allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50359 High 7

Use after free in Microsoft XML Core Services allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:09 UTC View advisory →
CVE-2026-50358 High 7

Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50357 High 7.8

Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50356 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App Store allows an authorized attacker to

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50355 High 7.5

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50354 High 7.1

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50353 High 7.8

Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50352 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50351 High 7.8

Improper access control in Windows Audio Compression Manager (ACM) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50350 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows Trusted Runtime Interface Driver allows an authorized attacker to disclose informatio

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50348 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate p

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50347 High 7.8

Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50346 High 7.8

Improper authorization in RPC Runtime allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50345 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate pri

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50344 High 7.8

Improper authorization in Windows OLE allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50343 High 7.8

Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50342 High 8.8

Improper access control in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50341 Medium 5.5

Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50340 High 8.5

Use after free in Windows Runtime allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50339 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50338 High 8.2

Improper authentication in Azure Spring Apps allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-50337 High 7.8

Incorrect type conversion or cast in Windows Notification allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50336 High 7.8

Heap-based buffer overflow in Windows Media allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50335 High 7.8

Improper access control in Windows Operating Systems allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50334 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows Notification allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-50333 High 7.8

Missing authentication for critical function in Windows Spaceport.sys allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50332 High 7.8

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50331 High 7.8

Use after free in Windows Application Model allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50330 High 7.5

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to elevate privileges over a network.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50329 High 7.8

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50328 High 7.5

Uncaught exception in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50327 High 7.8

Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50326 High 7.8

Use after free in Windows Unified Consent System allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50325 High 7

Improper access control in Windows Win32K allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50324 Medium 5.9

Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50323 High 7

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50322 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate pri

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50321 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows an authorized attacker to elevate

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50318 High 7.8

Stack-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50317 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Operating Systems allows an authorized attacker to e

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50316 Medium 5.5

Insertion of sensitive information into log file in Windows Kernel allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50315 High 7.8

Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50314 High 7.8

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50313 High 7.8

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50312 Medium 4.7

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50311 High 7.8

Improper access control in Windows Server allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50310 Medium 4.7

Integer overflow or wraparound in Windows Devices Human Interface allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50309 High 7.8

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50308 High 7.8

Integer underflow (wrap or wraparound) in Windows NTFS allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50307 High 7

Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50306 High 7.8

Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50305 High 7.8

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50304 High 7.5

Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50303 Medium 5.5

Use of a cryptographic primitive with a risky implementation in Windows Key Guard allows an authorized attacker to bypass a security feature locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50302 Medium 4.2

Improper certificate validation in Windows Cryptographic Services allows an unauthorized attacker to bypass a security feature over a network.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50301 High 7.8

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-50300 Medium 5.5

Integer underflow (wrap or wraparound) in Windows Kernel allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50299 Medium 6.8

Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to execute code with a physical attack.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-50298 Medium 6.8

Integer overflow or wraparound in Windows Spaceport.sys allows an unauthorized attacker to elevate privileges with a physical attack.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50297 High 7

Improper access control in Windows Win32K allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50296 High 7

Use after free in Graphics Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50295 Medium 5.5

Improper privilege management in Microsoft Windows DNS allows an authorized attacker to bypass a security feature locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50294 Medium 6.2

Exposure of sensitive system information to an unauthorized control sphere in Windows Kernel allows an unauthorized attacker to disclose information locall

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50293 High 7.8

Use after free in Windows Internal Task Bar allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-50289 High 8.7

systeminformation is a System and OS information library for node.js. Prior to 5.31.7, networkInterfaces() on Linux is vulnerable to OS command injection t

17 Jul 2026, 19:42 UTC View advisory →
CVE-2026-50282 Medium 4.9

Craft CMS is a content management system (CMS). Versions 5.0.0-RC1 and above, prior to 5.9.21 and versions 4.0.0-RC1 and above prior to 4.17.14 contain an

02 Jul 2026, 16:15 UTC View advisory →
CVE-2026-50281 High 7.1

Craft CMS is a content management system (CMS). Versions 5.7.0 and above, prior to 5.9.21 contain a mass-assignment flaw in the bulk-duplicate element acti

02 Jul 2026, 16:02 UTC View advisory →
CVE-2026-50274 High 7.5

Datadog dd-trace-go is a Go client library for Datadog application performance monitoring, profiling, and security monitoring. Prior to 2.8.1, Datadog trac

17 Jul 2026, 20:41 UTC View advisory →
CVE-2026-50273 High 7.5

Datadog .NET Tracer is a client library for Datadog APM for .NET applications. Prior to 3.43.0, Datadog tracing libraries that implement W3C baggage propag

17 Jul 2026, 18:01 UTC View advisory →
CVE-2026-50272 High 7.5

dd-trace is the Datadog APM client for Node.js. Prior to 5.100.0, W3C baggage propagation in packages/dd-trace/src/baggage.js and packages/dd-trace/src/ope

17 Jul 2026, 20:28 UTC View advisory →
CVE-2026-50271 High 7.5

Datadog dd-trace-py is the Datadog Python APM client. Prior to 4.8.2, Datadog tracing libraries that implement W3C baggage propagation parse incoming bagga

17 Jul 2026, 20:42 UTC View advisory →
CVE-2026-50269 Low 2.7

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.0, attacker-controlled input included into multipart/payload

22 Jun 2026, 16:30 UTC View advisory →
CVE-2026-50254 High 8.7

An unauthenticated remote attacker can repeatedly send a single crafted connection request to leak memory. Against storescp in its default single-process m

30 Jun 2026, 21:14 UTC View advisory →
CVE-2026-50252 Medium 5.7

In NLnet Labs Unbound 1.4.22 up to and including 1.25.1, UDP source port is randomized and intended to serve as a secret value that increases the entropy o

22 Jul 2026, 13:08 UTC View advisory →
CVE-2026-50251 Medium 5.3

In NLnet Labs Unbound up to and including version 1.25.1, when 'unwanted-reply-threshold' is enabled (set to any value greater than zero), glue records of

22 Jul 2026, 13:08 UTC View advisory →
CVE-2026-50248 Medium 6.5

In NLnet Labs Unbound 1.7.0 up to and including 1.25.1, when an auth/rpz zone has a configured primary hostname that resolves to BOGUS A/AAAA, it is still

22 Jul 2026, 13:08 UTC View advisory →
CVE-2026-50243 Medium 6.3

In NLnet Labs Unbound 1.6.2 up to and including 1.25.1, when Unbound is configured with the 'respip' module in front of the validator together with a 'resp

22 Jul 2026, 13:08 UTC View advisory →
CVE-2026-50229 Unscored

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in the number guess example for Apache Tomcat. This issue affec

29 Jun 2026, 20:36 UTC View advisory →
CVE-2026-50221 Medium 5.3

In OpenStack Swift before 2.37.2, proxy-server does not strip internal update headers (X-Container-Host, X-Container-Device, X-Delete-At-Host, X-Delete-At-

23 Jun 2026, 17:03 UTC View advisory →
CVE-2026-50197 High 7.8

Skipper is an HTTP router and reverse proxy for service composition. Prior to 0.26.10, zalando/skipper's OpenPolicyAgent integration silently bypasses requ

17 Jul 2026, 19:23 UTC View advisory →
CVE-2026-50193 Medium 6.3

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.13.0 until 2.14.0, a potential D

23 Jun 2026, 21:00 UTC View advisory →
CVE-2026-50189 High 8.9

Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 2.1, Appsmith's bundled supervisord exposes an XML-RPC interface on

24 Jun 2026, 21:35 UTC View advisory →
CVE-2026-50185 Low 2

RustCrypto CMOV provides conditional move CPU intrinsics which are guaranteed on major platforms to execute in constant-time and not be rewritten as branch

17 Jul 2026, 18:35 UTC View advisory →
CVE-2026-50184 Medium 5.7

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.0-rc.2, 2

22 Jun 2026, 15:42 UTC View advisory →
CVE-2026-50183 Medium 4.7

WWBN AVideo is an open source video platform. Versions 29.0 and below contain a stored Cross-Site Scripting vulnerability in the YouTubeAPI plugin. The plu

15 Jul 2026, 21:13 UTC View advisory →
CVE-2026-50182 Medium 6.1

WWBN AVideo is an open source video platform. Versions prior to 29.0 contain an unauthenticated Reflected XSS vulnerability through AVideo YouTubeAPI Galle

15 Jul 2026, 21:04 UTC View advisory →
CVE-2026-50179 Medium 4.2

Actual is a local-first personal finance tool. Prior to 26.6.0, exportToCSV and exportQueryToCSV in packages/loot-core/src/server/transactions/export/expor

07 Jul 2026, 20:58 UTC View advisory →
CVE-2026-50178 High 8.7

The Angular Language Service VS Code Extension provides a rich editing experience for Angular templates. the client-side Angular Language Service VS Code e

22 Jun 2026, 15:20 UTC View advisory →
CVE-2026-50176 High 8.7

The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests. This absence of rate limiting may allow an att

25 Jun 2026, 20:58 UTC View advisory →
CVE-2026-50171 High 8.2

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.0-rc.2, 2

22 Jun 2026, 15:49 UTC View advisory →
CVE-2026-50170 High 8.2

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.0-rc.2, 2

22 Jun 2026, 15:39 UTC View advisory →
CVE-2026-50169 Medium 5.7

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.0-rc.2, 2

22 Jun 2026, 15:41 UTC View advisory →
CVE-2026-50168 High 8.8

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.0-rc.2, 2

22 Jun 2026, 15:39 UTC View advisory →
CVE-2026-50163 High 7.1

oras-go is a Go library for managing OCI artifacts. Prior to 2.6.2, ensureLinkPath in content/file/utils.go:262-275 validates a hardlink target relative to

17 Jul 2026, 19:36 UTC View advisory →
CVE-2026-50162 Medium 6.9

oras-go is a Go library for managing OCI artifacts. Prior to 2.6.1, resolveWritePath() in content/file/file.go uses a lexical filepath.Rel check for workin

17 Jul 2026, 19:39 UTC View advisory →
CVE-2026-50159 Medium 5.3

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. Prior to 10.9.8 and 11.16.1, Mermaid is vulnerable

06 Aug 2026, 19:55 UTC View advisory →
CVE-2026-50151 High 7.5

oras-go is a Go library for managing OCI artifacts. Prior to 2.6.1, registry/remote/repository.go in blobStore.completePushAfterInitialPost follows a regis

17 Jul 2026, 19:41 UTC View advisory →
CVE-2026-50148 Critical 10

Metabase is an open-source business intelligence and embedded analytics tool. From 1.54.0 until 1.54.24, 1.55.24, 1.56.25, 1.57.19, 1.58.14, 1.59.10, and 1

15 Jul 2026, 15:18 UTC View advisory →
CVE-2026-50147 High 7.6

Metabase is an open-source business intelligence and embedded analytics tool. From 1.57.0 until 1.57.19.1, 1.58.14.1, 1.59.10, and 1.60.4, an attacker who

15 Jul 2026, 15:21 UTC View advisory →
CVE-2026-50146 High 7.1

Astro is a web framework. Prior to 6.3.3, when a component uses a client:* directive, Astro inserts named slot content into a data-astro-template attribute

22 Jun 2026, 17:31 UTC View advisory →
CVE-2026-50144 High 7.1

ncnn is a high-performance neural network inference framework optimized for the mobile platform. In commit e54f7b1f88434e1d844ea0551b880a1cfb079ce1 and ear

15 Jul 2026, 20:04 UTC View advisory →
CVE-2026-50137 High 8.2

Budibase is an open-source low-code platform. Prior to 3.39.0, an anonymous attacker who knows or can enumerate a workspace id (app_...) and an S3-source d

26 Jun 2026, 20:41 UTC View advisory →
CVE-2026-50136 High 7.4

Budibase is an open-source low-code platform. Prior to 3.39.3, the application server exposes an unauthenticated endpoint that generates S3 PutObject presi

26 Jun 2026, 20:36 UTC View advisory →
CVE-2026-50132 High 7.3

Budibase is an open-source low-code platform. Prior to 3.39.0, `GET /api/chat-links/:instance/:token/handoff` is a public endpoint (no auth required) that

26 Jun 2026, 20:34 UTC View advisory →
CVE-2026-50130 High 8.8

Pi-hole is a DNS sinkhole that protects devices from unwanted content without installing any client-side software. From 6.0 to 6.4.2, a user with code exec

14 Jul 2026, 21:35 UTC View advisory →
CVE-2026-50129 High 7.5

Mastodon is a free, open-source social network server based on ActivityPub. Prior to 4.5.11, 4.4.18, and 4.3.24, a DoS can be triggered by (Uncaught Except

24 Jun 2026, 19:50 UTC View advisory →
CVE-2026-50128 Medium 5.3

Mastodon is a free, open-source social network server based on ActivityPub. From 4.3.0 until 4.5.11 and 4.4.18, Mastodon has a feature to let websites cred

24 Jun 2026, 19:48 UTC View advisory →
CVE-2026-50124 High 7.1

DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase can be exploited by uploading payload.zip through the Excel upl

15 Jul 2026, 19:38 UTC View advisory →
CVE-2026-50110 Critical 9.3

Storage Concentrator (SC & SCVM) contains hardcoded credentials for numerous internal services embedded within a configuration file. While the credentials

30 Jun 2026, 22:54 UTC View advisory →
CVE-2026-50046 Medium 5.9

In NLnet Labs Unbound 1.15.0 up to and including 1.25.1, the TLS server name used for DNS-over-TLS (DoT) forwarded queries is tied to a struct's ('serviced

22 Jul 2026, 13:08 UTC View advisory →
CVE-2026-50045 Medium 5.3

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, a single client query for a deeply nested name under a DNSSEC-signed parent can cause Unbound to s

22 Jul 2026, 13:07 UTC View advisory →
CVE-2026-50040 Medium 5.1

Storage Concentrator (SC & SCVM) is vulnerable to reflected cross-site scripting due to unsanitized content being echoed back in 404 error pages. An attack

30 Jun 2026, 22:27 UTC View advisory →
CVE-2026-50030 High 7.1

DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase SQL preview exposes DatasetDataApi.previewSql/previewSqlCheck t

15 Jul 2026, 19:24 UTC View advisory →
CVE-2026-50023 High 8.3

yt-dlp is a command-line audio/video downloader. Prior to 2026.06.09, a vulnerability exists in yt-dlp that allows a remote attacker to write arbitrary OS-

23 Jun 2026, 16:08 UTC View advisory →
CVE-2026-50021 Medium 6.8

pnpm is a package manager. Prior to 10.34.0 and 11.4.0, pnpm's tarball extraction worker skips integrity verification when the integrity field is absent fr

25 Jun 2026, 16:48 UTC View advisory →
CVE-2026-50019 Medium 6.1

yt-dlp is a command-line audio/video downloader. From 2023.09.24 until 2026.06.09, if curl is used as an external downloader for yt-dlp, cookies may be lea

23 Jun 2026, 16:13 UTC View advisory →
CVE-2026-50017 Medium 6.9

pnpm is a package manager. Prior to 10.34.0 and 11.4.0, pnpm can send user-level unscoped npm authentication credentials to a registry chosen by a reposito

25 Jun 2026, 16:56 UTC View advisory →
CVE-2026-50016 High 8.8

pnpm is a package manager. Prior to 10.34.0 and 11.4.0, pnpm allows a transitive dependency alias from registry package metadata to contain path traversal

25 Jun 2026, 16:53 UTC View advisory →
CVE-2026-50015 High 7.3

pnpm is a package manager. Prior to 10.34.0 and 11.4.0, pnpm's patch application pipeline (@pnpm/patch-package) performs no path validation on file paths e

25 Jun 2026, 16:52 UTC View advisory →
CVE-2026-50014 Medium 6.4

pnpm is a package manager. Prior to 10.34.0 and 11.4.0, pnpm passes the lockfile-controlled git resolution.commit value to git fetch without a -- separator

25 Jun 2026, 16:51 UTC View advisory →
CVE-2026-50012 Medium 5.5

Squid is a caching proxy for the Web. Prior to 7.6, due to an improper input validation bug in cache digest reply handling (peerDigestSwapInMask in src/pee

16 Jul 2026, 16:11 UTC View advisory →
CVE-2026-50007 High 7.2

Actual is an open-source personal finance application. Prior to 26.7.0, a missing authorization issue allows a shared user with user_access on a budget fil

07 Jul 2026, 20:53 UTC View advisory →
CVE-2026-50003 Critical 9.3

A malicious or compromised server can make a DCMTK client using bit-preserving C-GET storage mode write files outside the chosen output directory, using bo

30 Jun 2026, 21:27 UTC View advisory →
CVE-2026-49998 High 8.2

Centrifugo is an open-source scalable real-time messaging server. Prior to 6.8.1, Centrifugo dynamic JWKS endpoint verification could reuse a key for one a

16 Jul 2026, 19:33 UTC View advisory →
CVE-2026-49997 Medium 5.4

SurrealDB is a scalable, distributed, collaborative, document-graph database for the realtime web. Prior to 3.1.0, Document::purge_edges in surrealdb/core/

15 Jul 2026, 16:14 UTC View advisory →
CVE-2026-49991 High 8.6

RustFS is a distributed object storage system built in Rust. In 1.0.0-beta.4, authenticated users with only PutObject permission on their own bucket can ex

26 Jun 2026, 20:01 UTC View advisory →
CVE-2026-49988 Medium 6.8

Repomix is a tool that packs repositories into AI-friendly files. Prior to 1.14.1, the Repomix MCP server attach_packed_output and read_repomix_output flow

15 Jul 2026, 18:05 UTC View advisory →
CVE-2026-49987 High 7.5

Repomix is a tool that packs repositories into AI-friendly files. Prior to 1.14.1, src/core/git/gitCommand.ts execGitShallowClone passes the --remote-branc

15 Jul 2026, 18:06 UTC View advisory →
CVE-2026-49984 High 7.7

Kestra is an open-source, event-driven orchestration platform. Prior to 1.0.45 and 1.3.23, the local internal-storage backend validates user-supplied paths

26 Jun 2026, 20:55 UTC View advisory →
CVE-2026-49983 Medium 5.2

Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.8.1, environment access is gated by the env permission. You can deny it with --deny-e

23 Jun 2026, 17:16 UTC View advisory →
CVE-2026-49981 Medium 6

Twig is a template language for PHP. Prior to 3.27.0, the per-template filter, tag, and function allow-list verdict is computed when a Template instance is

14 Jul 2026, 21:26 UTC View advisory →
CVE-2026-49980 Critical 9.8

Rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.46.0 until 1.74.3, rclone rcd --rc-ser

24 Jun 2026, 17:52 UTC View advisory →
CVE-2026-49979 Medium 5.1

Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 1.99, the POST /api/v1/admin/send-test-email endpoint accepts attack

24 Jun 2026, 21:38 UTC View advisory →
CVE-2026-49978 Medium 6.3

DOMPurify is a DOM-only cross-site scripting sanitizer for HTML, MathML, and SVG. Prior to 3.4.7, DOMPurify IN_PLACE sanitization could skip shadow content

14 Jul 2026, 20:02 UTC View advisory →
CVE-2026-49977 Medium 4.3

tarteaucitron.js is a compliant and accessible cookie banner. Prior to 1.33.0, tarteaucitron.cookie.purge() is called on any element with the purgeBtn clas

17 Jul 2026, 20:21 UTC View advisory →
CVE-2026-49972 High 7.7

Laravel-Mediable before 7.0.0 contains a file upload vulnerability that allows unauthenticated attackers to achieve remote code execution by uploading a fi

13 Jul 2026, 18:16 UTC View advisory →
CVE-2026-49971 Medium 5.3

Laravel-Mediable before 7.0.0 contains a stored cross-site scripting vulnerability that allows authenticated or anonymous users to execute arbitrary JavaSc

13 Jul 2026, 18:13 UTC View advisory →
CVE-2026-49970 High 8.7

Laravel-Mediable before 7.0.0 contains a path traversal vulnerability in the File::sanitizePath() function that allows attackers to write uploaded files to

13 Jul 2026, 18:11 UTC View advisory →
CVE-2026-49969 Medium 5.3

Laravel-Mediable before 7.0.0 contains a server-side request forgery vulnerability that allows remote attackers to issue arbitrary HTTP requests from the s

13 Jul 2026, 18:09 UTC View advisory →
CVE-2026-49946 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

09 Jul 2026 View advisory →
CVE-2026-49945 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

09 Jul 2026 View advisory →
CVE-2026-49944 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

09 Jul 2026 View advisory →
CVE-2026-49877 High 8.1

Improper Authorization vulnerability in Apache ActiveMQ. An authenticated low-privilege Web Console user by default can access /admin/* paths in the Web Co

30 Jun 2026, 09:53 UTC View advisory →
CVE-2026-49876 Medium 6.5

Authenticated SSRF in Gravitino JobManager allows server-side HTTP requests to internal network and cloud metadata endpoints via unvalidated job template U

13 Jul 2026, 08:45 UTC View advisory →
CVE-2026-49869 Critical 10

Kestra is an open-source, event-driven orchestration platform. Prior to 1.0.45 and 1.3.21, AuthenticationFilter in Kestra OSS uses request.getPath().endsWi

26 Jun 2026, 20:58 UTC View advisory →
CVE-2026-49867 Medium 6.3

DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase template static resources let authenticated users submit Templa

15 Jul 2026, 19:41 UTC View advisory →
CVE-2026-49866 High 7.5

libp2p is a JavaScript Implementation of libp2p networking stack. Prior to 16.0.0, @libp2p/gossipsub defaultDecodeRpcLimits set maxIhaveMessageIDs and maxI

08 Jul 2026, 20:47 UTC View advisory →
CVE-2026-49860 Medium 5.2

Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.8.1, when a WebSocket connection was opened, Deno checked the destination hostname ag

23 Jun 2026, 17:15 UTC View advisory →
CVE-2026-49859 Medium 5.2

Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.8.1, when fetch() was called, Deno checked the destination hostname against --deny-ne

23 Jun 2026, 17:14 UTC View advisory →
CVE-2026-49855 High 7.5

Tornado is a Python web framework and asynchronous networking library. Prior to 6.5.6, Tornado gzip decompression routines processed limited-size chunks bu

14 Jul 2026, 20:45 UTC View advisory →
CVE-2026-49854 Medium 5.3

Tornado is a Python web framework and asynchronous networking library. Prior to 6.5.6, the optional native extension tornado.speedups implemented websocket

14 Jul 2026, 20:43 UTC View advisory →
CVE-2026-49853 High 7.7

Tornado is a Python web framework and asynchronous networking library. Prior to 6.5.6, SimpleAsyncHTTPClient shallow-copied redirected requests and removed

14 Jul 2026, 20:41 UTC View advisory →
CVE-2026-49852 High 8.7

joserfc is a Python library that provides an implementation of several JSON Object Signing and Encryption (JOSE) standards. Prior to 1.6.8, joserfc.jwt.dec

17 Jul 2026, 19:14 UTC View advisory →
CVE-2026-49851 High 8.7

Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, Mistune is vulnerable to a CPU exhaustion DoS due to superlinear (approxima

24 Jun 2026, 17:05 UTC View advisory →
CVE-2026-49844 Medium 6.3

Improper encoding of non-finite floating-point values during MapMessage JSON serialization in Apache Log4j API produces output that is not valid JSON. This

10 Jul 2026, 21:14 UTC View advisory →
CVE-2026-49839 High 7.1

jq is a command-line JSON processor. Prior to 1.8.2,` jq --rawfile` can turn a handled oversized-string error into invalid-state reuse and a real heap out-

25 Jun 2026, 17:17 UTC View advisory →
CVE-2026-49835 Medium 5.9

Sigstore Timestamp Authority is a service for issuing RFC 3161 timestamps. Prior to 2.1.0, the global wrapMetrics middleware records raw HTTP request path

17 Jul 2026, 18:16 UTC View advisory →
CVE-2026-49834 Medium 5.9

sigstore-go is a Go library for Sigstore signing and verification. Prior to 1.2.0, a verifier configured with WithTransparencyLog(N>1) or WithSignedCertifi

17 Jul 2026, 19:20 UTC View advisory →
CVE-2026-49808 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kernel allows an authorized attacker to elevate priv

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-49807 Medium 6.2

Exposure of sensitive information to an unauthorized actor in Windows DirectX allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-49806 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to el

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-49805 High 7

Improper access control in Windows Win32K allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-49804 Medium 6.6

Heap-based buffer overflow in Windows USB Video Driver allows an unauthorized attacker to elevate privileges with a physical attack.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-49803 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows AppX Deployment Service allows an authorized attacke

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-49802 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to el

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-49801 Medium 5.5

Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-49800 High 7.8

Integer overflow or wraparound in Windows Web Proxy Auto-Discovery Protocol (WPAD) allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49799 Medium 6.5

Uncontrolled resource consumption in Windows Local Security Authority Subsystem Service (LSASS) allows an authorized attacker to deny service over a networ

14 Jul 2026, 17:06 UTC View advisory →
CVE-2026-49798 Critical 9.3

Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49797 High 7.8

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49796 High 7.8

Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49795 High 8.8

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49794 Medium 4.6

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49793 High 7.8

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49792 High 7.8

Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49791 High 7.1

Improper link resolution before file access ('link following') in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49790 High 7.3

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49789 High 7.3

Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49788 High 7.5

Allocation of resources without limits or throttling in HTTP/2 allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49787 High 7.5

Allocation of resources without limits or throttling in Windows HTTP.sys allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49784 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App Store allows an authorized attacker to

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49783 High 7.8

Improperly implemented security check for standard in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49779 Medium 6.5

Customer Path Traversal in Tax Exempt for WooCommerce <= 1.9.3 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-49746 Unscored

Software installed and run as a non-privileged user may conduct improper GPU system calls to cause OOB read kernel memory access and in certain cases cause

07 Aug 2026, 01:59 UTC View advisory →
CVE-2026-49506 High 7.2

Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulner

25 Jun 2026, 13:23 UTC View advisory →
CVE-2026-49501 Medium 6.7

Dell PowerScale OneFS versions 9.5.0.0 through 9.10.1.7, and versions 9.11.0.0 through 9.13.0.2 contains an Improper Privilege Management vulnerability. A

15 Jul 2026, 10:01 UTC View advisory →
CVE-2026-49499 High 8.8

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) a Generation of Incorrect Security Tokens vulnerability in the IAM. A low privileged

22 Jul 2026, 15:39 UTC View advisory →
CVE-2026-49488 Unscored

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache OpenMeetings. This issue affects Apache OpenMeetings

14 Jul 2026, 12:21 UTC View advisory →
CVE-2026-49487 Medium 6.5

In Apache Airflow before 3.3.0, the REST API task-instance detail and list endpoints returned a deferred task's trigger kwargs without masking. When a defe

07 Jul 2026, 09:19 UTC View advisory →
CVE-2026-49486 High 7.5

The Apache Airflow FTP provider's `FTPSHook.get_conn()` created an `ftplib.FTP_TLS` connection but never called `prot_p()`, so although the control channel

26 Jun 2026, 07:05 UTC View advisory →
CVE-2026-49485 High 7.5

HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.9 and 6.9.4.2, all implementations of

17 Jul 2026, 20:59 UTC View advisory →
CVE-2026-49477 High 7.5

Soup Sieve is a CSS selector library designed to be used with Beautiful Soup 4. Prior to 2.8.4, the CSS selector parser in soupsieve contains a regular exp

14 Jul 2026, 20:51 UTC View advisory →
CVE-2026-49476 High 7.5

Soup Sieve is a CSS selector library designed to be used with Beautiful Soup 4. Prior to 2.8.4, the CSS selector parser in soupsieve allocates unbounded me

14 Jul 2026, 20:53 UTC View advisory →
CVE-2026-49471 High 8.3

Serena is a powerful MCP toolkit for coding that provides semantic retrieval and editing capabilities. Prior to v1.5.2, Serena's built-in web dashboard exp

07 Jul 2026, 20:50 UTC View advisory →
CVE-2026-49468 Critical 9.5

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.84.0, This vulnerability is fixed in 1.84.0.

22 Jun 2026, 20:37 UTC View advisory →
CVE-2026-49465 Medium 6

n8n is an open source workflow automation platform. Prior to 1.123.48, 2.21.8, and 2.22.4, an authenticated user with permission to create or modify workfl

23 Jun 2026, 15:49 UTC View advisory →
CVE-2026-49461 Medium 6.9

pypdf is a free and open-source pure-python PDF library. Prior to 6.12.2, an attacker who uses this vulnerability can craft a PDF which leads to large memo

22 Jun 2026, 20:27 UTC View advisory →
CVE-2026-49460 Medium 5.1

pypdf is a free and open-source pure-python PDF library. Prior to 6.12.2, an attacker who uses this vulnerability can craft a PDF which leads to long runti

22 Jun 2026, 20:28 UTC View advisory →
CVE-2026-49459 Medium 6.1

DOMPurify is a DOM-only cross-site scripting sanitizer for HTML, MathML, and SVG. Prior to 3.4.6, DOMPurify.sanitize(root, { IN_PLACE: true }) could preser

14 Jul 2026, 20:01 UTC View advisory →
CVE-2026-49458 Medium 6.1

DOMPurify is a DOM-only cross-site scripting sanitizer for HTML, MathML, and SVG. Prior to 3.4.6, DOMPurify.sanitize(node, { IN_PLACE: true }) accepted sam

14 Jul 2026, 19:58 UTC View advisory →
CVE-2026-49451 High 7.5

The OpenAPI.NET SDK contains a useful object model for OpenAPI documents in .NET along with common serializers to extract raw OpenAPI JSON and YAML documen

30 Jun 2026, 16:01 UTC View advisory →
CVE-2026-49445 Critical 9.2

Cilium is a networking, observability, and security solution. Prior to 1.17.14, 1.18.8, and 1.19.2, when Cilium L7 functionality is enabled, the embedded o

15 Jul 2026, 19:11 UTC View advisory →
CVE-2026-49444 High 7.1

n8n is an open source workflow automation platform. Prior to 1.123.48, 2.21.8, and 2.22.4, an authenticated user with permission to create or modify workfl

23 Jun 2026, 15:50 UTC View advisory →
CVE-2026-49440 High 7.4

Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.8.1, node:crypto.checkPrime(candidate[, options][, callback]) and crypto.checkPrimeSy

23 Jun 2026, 17:13 UTC View advisory →
CVE-2026-49435 Critical 9.3

Keysight IxChariot Endpoint and associated products contain a stack-based buffer overflow. An unauthenticated remote attacker can send a specially crafted

04 Aug 2026, 18:52 UTC View advisory →
CVE-2026-49434 High 7.5

Improper Input Validation vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ, Apache ActiveMQ All. An attacker that has access to publish or modify e

30 Jun 2026, 09:55 UTC View advisory →
CVE-2026-49432 High 7.5

Improper Input Validation vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Stomp. A remote unauthenticated peer that can reach an exp

30 Jun 2026, 09:54 UTC View advisory →
CVE-2026-49417 Unscored

Second, the audio buffer backing a mapping could be freed when the device was closed even though the mapping remained valid. The freed memory could then be

27 Jun 2026, 08:48 UTC View advisory →
CVE-2026-49416 Unscored

The CONS_HISTORY ioctl handler did not adequately validate the requested history size. A large value caused an integer overflow in the buffer size calculat

27 Jun 2026, 09:25 UTC View advisory →
CVE-2026-49414 Unscored

The ELF image activator cleared per-process ASLR preference flags for setuid binaries after the code that computes the PIE base address, rather than before

27 Jun 2026, 09:22 UTC View advisory →
CVE-2026-49413 Unscored

The Linuxulator determined whether a binary was set-user-ID or set-group-ID by checking the P_SUGID process flag. During execve(2), this flag is not yet se

27 Jun 2026, 09:08 UTC View advisory →
CVE-2026-49412 Unscored

The kernel handler for IPV6_MSFILTER dropped a serializing lock in order to copy the source-filter list from userspace, then reacquired the lock. During th

27 Jun 2026, 09:02 UTC View advisory →
CVE-2026-49411 Medium 6.5

Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.8.0, the Node.js compatibility TCP path checked the permission against the original h

23 Jun 2026, 17:18 UTC View advisory →
CVE-2026-49406 Medium 5.5

Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.7.12, when Deno was run in BYONM mode (nodeModulesDir: "manual"), the module resolver

23 Jun 2026, 17:19 UTC View advisory →
CVE-2026-49402 High 8.1

Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.7.10, Deno's node:child_process implementation provided an escapeShellArg() helper us

23 Jun 2026, 17:20 UTC View advisory →
CVE-2026-49401 High 7.3

Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.7.14, Deno's permission system enforces filesystem and execution restrictions by comp

23 Jun 2026, 17:22 UTC View advisory →
CVE-2026-49394 High 7.1

Frappe is a full-stack web application framework. Prior to 16.19.0, authorization bypass was possible via the update_page endpoint in Workspace because pub

10 Jul 2026, 21:24 UTC View advisory →
CVE-2026-49391 Medium 5.1

Frappe is a full-stack web application framework. Prior to 16.19.0 and 15.109.0, Data Import does not escape imported column headers before rendering previ

06 Aug 2026, 21:36 UTC View advisory →
CVE-2026-49356 Low 3.2

Babel is a compiler for writing next generation JavaScript. Prior to 8.0.0-rc.6 and 7.29.6, @babel/core affected by an arbitrary file read via a sourceMapp

22 Jun 2026, 16:07 UTC View advisory →
CVE-2026-49355 Medium 4.3

OpenProject is open-source, web-based project management software. Prior to 17.4.0, `GET /api/v3/meetings/:meeting_id/agenda_items/:agenda_item_id` disclos

26 Jun 2026, 19:29 UTC View advisory →
CVE-2026-49353 High 7.5

9Router is an AI router & token saver. In 0.4.45 and earlier, 9Router's src/dashboardGuard.js local-only access gate used Host and Origin headers in isLoca

15 Jul 2026, 20:49 UTC View advisory →
CVE-2026-49352 Critical 9.8

9Router is an AI router & token saver. From 0.2.21 until 0.4.44, 9Router used the hardcoded fallback JWT secret 9router-default-secret-change-me in src/app

15 Jul 2026, 20:43 UTC View advisory →
CVE-2026-49331 Medium 6.5

A flaw was found in openshift/oauth-proxy. On paths configured to bypass authentication (skip-auth-regex), the proxy forwards client-supplied identity head

05 Aug 2026, 14:40 UTC View advisory →
CVE-2026-49319 Medium 6.9

Remote Keyless Entry System (RKES), using the 433 MHz key fob bearing FCC ID CWTR53R0 manufactured by ALPS ALPINE CO., LTD., is vulnerable to a roll-back a

25 Jun 2026, 14:11 UTC View advisory →
CVE-2026-49296 Medium 6.5

Before apache-airflow 3.3.0, a user authorized to read one Dag could disclose the source of other Dags co-located in the same source file. `GET /api/v2/dag

07 Jul 2026, 09:18 UTC View advisory →
CVE-2026-49284 High 7.1

SimpleSAMLphp versions before 1.18.6 contain an information disclosure vulnerability. Prior to 2.4.7 and 2.5.2, SimpleSAMLphp's SAML SP ACS path does not e

17 Jul 2026, 19:17 UTC View advisory →
CVE-2026-49279 High 7.7

WWBN AVideo is an open source video platform. Versions 29.0 and below contain a Stored XSS vulnerability through the autoEvalCodeOnHTML parameter in the Me

15 Jul 2026, 20:57 UTC View advisory →
CVE-2026-49278 Medium 6.7

Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, 8.4.2, 8.3.4, 8.2.4, 8.1.5, 8.0.6, 7.13.8, and 7.10.12,

24 Jun 2026, 21:05 UTC View advisory →
CVE-2026-49277 Low 2.3

Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, 8.4.2, 8.3.4, 8.2.4, 8.1.5, 8.0.6, 7.13.8, and 7.10.12,

24 Jun 2026, 21:04 UTC View advisory →
CVE-2026-49247 High 8.8

Jellyfin is an open source self hosted media server. From 10.9.0 until 10.11.10, the POST /ClientLog/Document endpoint accepts the Authorization header's C

24 Jun 2026, 18:18 UTC View advisory →
CVE-2026-49246 Low 1.7

Jellyfin is an open source self hosted media server. Prior to 10.11.10, a specifically crafted MKV file containing forged filename tags can be leveraged to

24 Jun 2026, 18:21 UTC View advisory →
CVE-2026-49241 High 8.7

The Angular Language Service VS Code Extension provides a rich editing experience for Angular templates. Prior to 21.2.4, the client-side Angular Language

22 Jun 2026, 15:16 UTC View advisory →
CVE-2026-49229 High 8.3

Actual is a local-first personal finance app. Prior to 26.6.0, in OpenID multi-user mode, disabling a user only blocks future OpenID login for that identit

07 Jul 2026, 20:59 UTC View advisory →
CVE-2026-49220 Medium 5.7

Jellyfin is an open source self hosted media server. Prior to 10.11.9, a potential XSS attack exists in Jellyfin which can allow a non-privileged user to e

24 Jun 2026, 18:23 UTC View advisory →
CVE-2026-49216 Medium 5.1

Symfony UX is a JavaScript ecosystem for Symfony. From 2.2.0 until 2.36.0 and 3.1.0, the Stimulus controller in symfony/ux-autocomplete renders AJAX respon

17 Jul 2026, 16:15 UTC View advisory →
CVE-2026-49215 Low 2.1

Symfony UX is a JavaScript ecosystem for Symfony. From 2.22.0 until 2.36.0 and 3.1.0, Symfony\UX\LiveComponent\EventListener\LiveComponentSubscriber::isLiv

17 Jul 2026, 16:16 UTC View advisory →
CVE-2026-49213 High 8.1

TypeBot is a chatbot builder tool. Prior to 3.17.2, Typebot's shared SSRF validator in packages/lib/src/ssrf/validateHttpReqUrl.ts can be bypassed with the

10 Jul 2026, 21:33 UTC View advisory →
CVE-2026-49212 Medium 6.9

Symfony UX is a JavaScript ecosystem for Symfony. From 2.8.0 until 2.36.0 and 3.1.0, the HMAC computed by Symfony\UX\LiveComponent\LiveComponentHydrator co

17 Jul 2026, 16:03 UTC View advisory →
CVE-2026-49211 Medium 6.9

Symfony UX is a JavaScript ecosystem for Symfony. From 2.2.0 until 2.36.0 and 3.1.0, Symfony\UX\Autocomplete\Doctrine\EntitySearchUtil::addSearchClause() b

17 Jul 2026, 16:14 UTC View advisory →
CVE-2026-49210 Low 2.3

Symfony UX is a JavaScript ecosystem for Symfony. From 2.8.0 until 2.36.0 and 3.1.0, Symfony\UX\LiveComponent\Util\ChildComponentPartialRenderer::createHtm

17 Jul 2026, 16:09 UTC View advisory →
CVE-2026-49209 Medium 5.3

Symfony UX is a JavaScript ecosystem for Symfony. From 2.5.0 until 2.36.0 and 3.1.0, Symfony\UX\LiveComponent\Controller\BatchActionController::__invoke()

17 Jul 2026, 16:02 UTC View advisory →
CVE-2026-49208 Medium 6.9

Symfony UX is a JavaScript ecosystem for Symfony. From 2.8.0 until 2.36.0 and 3.1.0, when a #[LiveProp] is typed as DateTimeInterface and no explicit forma

17 Jul 2026, 16:10 UTC View advisory →
CVE-2026-49184 High 8.4

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49183 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clipboard Server allows an authorized attacker to el

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49181 High 7.5

Integer underflow (wrap or wraparound) in Windows DHCP Client allows an unauthorized attacker to elevate privileges over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49180 Medium 5.5

Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49178 High 8.8

Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-49177 Medium 5.5

Out-of-bounds read in Windows TCP/IP allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49176 High 7.8

Improper privilege management in Windows WalletService allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49175 High 7.8

Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49174 Medium 6.1

Missing authentication for critical function in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49173 High 7.8

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49172 Critical 9.8

Heap-based buffer overflow in Windows FTP Service allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49171 High 7.5

Use after free in Microsoft Windows Speech allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49170 High 7.8

Insufficient granularity of access control in Windows StateRepository API allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49169 High 8

Use after free in DNS Server allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49168 Medium 6.8

Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to elevate privileges with a physical attack.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49167 Medium 4.7

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49166 High 7.8

Use after free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49165 High 7.1

Use of uninitialized resource in Microsoft Windows App Store allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49164 High 8.1

Heap-based buffer overflow in Active Directory Domain Services allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49163 High 8.8

Improper limitation of a pathname to a restricted directory ('path traversal') in Application Insights Profiler allows an authorized attacker to elevate pr

06 Aug 2026, 22:37 UTC View advisory →
CVE-2026-49162 High 7

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-49158 High 7.5

Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Ruby bindings. This issue affects Apache Thrift: before 0.2

27 Jul 2026, 11:05 UTC View advisory →
CVE-2026-49147 High 7.5

App::Ack versions through 3.10.0 for Perl print unsanitised terminal escape sequences from filenames in several output modes. When ack prints a filename wh

08 Jul 2026, 14:55 UTC View advisory →
CVE-2026-49146 High 7.5

App::Ack versions before 3.10.0 for Perl allow memory exhaustion via an unbounded context value in a project .ackrc. ack searches up the directory hierarch

08 Jul 2026, 14:55 UTC View advisory →
CVE-2026-49145 High 7.5

App::Ack versions through 3.10.0 for Perl read arbitrary files via --files-from in a project .ackrc. ack searches up the directory hierarchy from the curre

08 Jul 2026, 14:55 UTC View advisory →
CVE-2026-49132 Medium 5.1

OPNsense before 26.1.9 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject arbitrary HTML or JavaScript by e

03 Aug 2026, 20:35 UTC View advisory →
CVE-2026-49131 Medium 5.1

OPNsense before 26.1.9 contains a stored cross-site scripting vulnerability that allows authenticated attackers with firewall rule management privileges to

03 Aug 2026, 20:29 UTC View advisory →
CVE-2026-49049 High 7.5

The Helix3 plugin for Joomla exposes an ajax handler task, that allows unauthenticated attackers to delete arbitrary files, write arbitrary JSON files and

29 Jun 2026, 14:34 UTC View advisory →
CVE-2026-49048 Unscored

The Joomla extension JoomCCK exposes a front-end controller task, that builds two SQL statements by directly concatenating a user-supplied request paramete

28 Jun 2026, 18:37 UTC View advisory →
CVE-2026-49033 High 8.4

The application contains a stack-based buffer overflow vulnerability that can be exploited by an attacker to execute arbitrary code.

07 Jul 2026, 21:53 UTC View advisory →
CVE-2026-49005 Low 2.4

The root password hash of the device can be obtained through unencrypted information in the firmware.

07 Aug 2026, 03:36 UTC View advisory →
CVE-2026-49004 Critical 10

The built-in PostgreSQL service on the mobile device suffers from misconfiguration flaws and command injection vulnerabilities. This service listens on a s

05 Aug 2026, 06:19 UTC View advisory →
CVE-2026-48995 Medium 4.8

pnpm is a package manager. Prior to 10.33.4 and 11.0.7, a malicious codeload.github.com server can serve whatever tarball it wants and pnpm will install it

25 Jun 2026, 16:58 UTC View advisory →
CVE-2026-48978 Low 2.1

oras-go is a Go library for managing OCI artifacts. Prior to 2.6.1, auth.Client follows the realm URL from a registry's WWW-Authenticate: Bearer challenge

17 Jul 2026, 19:34 UTC View advisory →
CVE-2026-48958 Medium 6.4

An improper access check allows unauthorized users to create custom fields via webservices endpoints.

07 Jul 2026, 17:32 UTC View advisory →
CVE-2026-48957 Medium 6.4

An improper access check allows unauthorized users to access com_privacy datasets.

07 Jul 2026, 17:30 UTC View advisory →
CVE-2026-48956 Medium 6.4

An improper access check allows users to display a list of modules in the frontend.

07 Jul 2026, 17:31 UTC View advisory →
CVE-2026-48955 Medium 6.4

An improper access check allows unauthorized users to access workflow stage and transition information.

07 Jul 2026, 17:31 UTC View advisory →
CVE-2026-48954 Medium 5.9

Improper validation leads to a generic XSS vector in the language override feature.

07 Jul 2026, 17:29 UTC View advisory →
CVE-2026-48953 Medium 5.9

Lack of escaping leads to an XSS vulnerability in the generic image output layout.

07 Jul 2026, 17:30 UTC View advisory →
CVE-2026-48952 Medium 5.9

Lack of escaping leads to an XSS vulnerability in the update list view of com_installer.

07 Jul 2026, 17:33 UTC View advisory →
CVE-2026-48951 Medium 5.9

Lack of escaping leads to XSS vulnerabilities in modalreturn layouts of various components.

07 Jul 2026, 17:30 UTC View advisory →
CVE-2026-48950 Medium 5.9

Lack of escaping leads to an XSS vulnerability in the file management view of com_templates.

07 Jul 2026, 17:31 UTC View advisory →
CVE-2026-48949 Medium 5.9

Lack of validation leads to an XSS vulnerability in the MFA management views.

07 Jul 2026, 17:29 UTC View advisory →
CVE-2026-48948 Medium 6.4

An improper access check allows user to download vcard exports of com_contact contacts that are inaccessible.

07 Jul 2026, 17:29 UTC View advisory →
CVE-2026-48947 Medium 6.4

An improper access check allows privileged users to overwrite media files without editing permissions.

07 Jul 2026, 17:32 UTC View advisory →
CVE-2026-48946 Medium 6.3

The K2 frontend article-attachment upload path accepts files whose extension is `.php`, and Apache's standard mod_php matches `\.php$` and executes them un

25 Jun 2026, 15:25 UTC View advisory →
CVE-2026-48945 Medium 5.3

The K2 article gallery upload path accepts a zip/tar archive, extracts it under `/media/k2/galleries//`, and only renames image files (gif/jpg/jpeg/png/web

25 Jun 2026, 15:26 UTC View advisory →
CVE-2026-48944 Medium 6.5

The K2 frontend article-save handler accepts an `attachment[N][existing]` POST field that is concatenated with `JPATH_SITE/` and passed to `JFile::copy()`.

25 Jun 2026, 15:24 UTC View advisory →
CVE-2026-48943 Medium 6.5

K2 ≤ 2.24 contains a mass-assignment defect in the K2 system user plugin `plg_user_k2`. A Registered Joomla user, by including the field `K2UserForm=1` in

25 Jun 2026, 15:22 UTC View advisory →
CVE-2026-48942 Medium 6.1

K2 ≤ 2.26 renders the `#__k2_users.image` column directly into HTML `src` attributes via two distinct templates, in both cases without HTML escaping.

25 Jun 2026, 15:23 UTC View advisory →
CVE-2026-48941 Medium 6.5

The K2 frontend `item.checkin` task accepts an unauthenticated `sigProFolder` query parameter and uses it directly to address a `JFolder::delete()` call un

25 Jun 2026, 15:25 UTC View advisory →
CVE-2026-48940 Low 3.4

A Joomla user with K2 "create item" rights (Author tier by default) can submit an article whose `embedVideo` POST field contains a raw `` tag; K2 stores it

25 Jun 2026, 15:26 UTC View advisory →
CVE-2026-48936 Low 3.3

A flaw in Node.js Permission API can cause a local server to be started (via a Unix domain socket), even without the `--allow-net` permission. This vulnera

26 Jun 2026, 01:14 UTC View advisory →
CVE-2026-48935 Low 3.3

A flaw in Node.js Permission API can cause a file metadata to be modified even on a path that was set as read-only with e.g. `--allow-fs-read`. This vulner

26 Jun 2026, 01:14 UTC View advisory →
CVE-2026-48934 Medium 4.3

A flaw in Node.js TLS host verification can cause an attacker to bypass certification validation. This vulnerability affects all supported release lines: *

26 Jun 2026, 01:14 UTC View advisory →
CVE-2026-48933 High 7.5

A flaw in Node.js WebCrypto implementation can crash the process if the input of `subtle.encrypt()` is a multiple of 2GiB. This vulnerability affects all s

26 Jun 2026, 01:14 UTC View advisory →
CVE-2026-48931 Low 3.7

A flaw in Node.js HTTP Agent can cause a client to accept as valid a response that is send before the client has sent the request. This vulnerability affec

22 Jun 2026, 18:59 UTC View advisory →
CVE-2026-48930 Medium 5.6

A flaw in Node.js TLS hostname handling can cause Embedded-nul hostnames can lead to silent authority rebinding due to c-string truncation in resolver bind

26 Jun 2026, 01:14 UTC View advisory →
CVE-2026-48928 Medium 4.2

A inconsistency in Node.js hostname matching can cause a trust-policy bypass in multi-context mTLS setups. This vulnerability affects all supported release

26 Jun 2026, 01:14 UTC View advisory →
CVE-2026-48912 Unscored

Improper Input Validation vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.1. A missing ownership check in the avatar-cleanup

05 Aug 2026, 15:10 UTC View advisory →
CVE-2026-48911 Unscored

Insufficient Verification of Data Authenticity vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.1. A missing authorization che

05 Aug 2026, 15:09 UTC View advisory →
CVE-2026-48910 Medium 6.5

A carefully crafted editing request could trigger an XSS vulnerability on Apache JSPWiki when parsing errors on the markdown renderer, which could allow th

30 Jul 2026, 15:56 UTC View advisory →
CVE-2026-48892 Medium 6.5

The Config API in Apache Airflow surfaced per-key secrets-backend overrides (environment variables like `AIRFLOW__SECRETS__BACKEND_KWARG__SECRET_ID` and `A

07 Jul 2026, 09:16 UTC View advisory →
CVE-2026-48891 Medium 4.3

A bug in Apache Airflow's `/ui/dependencies` scheduling graph endpoint applied the caller's readable-Dag filter to the top-level serialized Dag key but sti

07 Jul 2026, 09:17 UTC View advisory →
CVE-2026-48863 High 7.5

A flaw was found in libsolv. A stack-based buffer overflow vulnerability exists in the PGP verification component due to incorrect length handling when cop

16 Jul 2026, 00:46 UTC View advisory →
CVE-2026-48834 Unscored

Improper Handling of Length Parameter Inconsistency vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.1. Unauthenticated attack

05 Aug 2026, 15:07 UTC View advisory →
CVE-2026-48828 Medium 6.5

The Bulk Variables API in Apache Airflow called the redactor without passing the variable's key, so the key-based `should_hide_value_for_key` check (which

07 Jul 2026, 09:18 UTC View advisory →
CVE-2026-48824 Medium 5.3

Mailpit is an email testing tool and API for developers. Prior to version 1.30.1, the fix for GHSA-fpxj-m5q8-fphw (CVE-2026-45710, "Mailpit: Set a default

20 Jul 2026, 15:02 UTC View advisory →
CVE-2026-48819 Medium 4.8

Hey API is an ecosystem for turning API specifications into production-ready code. Prior to 0.97.3, dist/clients/core/params.ts ships a runtime template co

17 Jul 2026, 19:46 UTC View advisory →
CVE-2026-48816 Medium 6.5

sigstore-js provides JavaScript libraries for interacting with Sigstore services. Prior to 3.1.1, @sigstore/verify derives a transparency-log timestamp fro

14 Jul 2026, 20:39 UTC View advisory →
CVE-2026-48815 High 7.5

sigstore-js provides JavaScript libraries for interacting with Sigstore services. Prior to 4.1.1, the documented certificateOIDs option in sigstore.verify(

14 Jul 2026, 20:27 UTC View advisory →
CVE-2026-48812 High 7.5

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.221, FreeScout's attachment download route skips to

20 Jul 2026, 17:32 UTC View advisory →
CVE-2026-48808 Medium 6

Twig is a template language for PHP. Prior to 3.27.0, the column filter passes the active sandbox state as a boolean but does not forward the current Sourc

14 Jul 2026, 21:27 UTC View advisory →
CVE-2026-48807 High 7.1

Twig is a template language for PHP. Prior to 3.27.0, the sandbox __toString() checks do not fully cover Traversable values passed to join and replace filt

14 Jul 2026, 21:29 UTC View advisory →
CVE-2026-48806 High 7.1

Twig is a template language for PHP. Prior to 3.27.0, ArrayExpression does not guard dynamic mapping keys that are coerced to strings, allowing PHP to invo

14 Jul 2026, 21:28 UTC View advisory →
CVE-2026-48805 Medium 5.3

Twig is a template language for PHP. Prior to 3.27.0, deprecated internal wrappers in src/Resources/core.php do not forward the current sandbox state to Co

14 Jul 2026, 21:26 UTC View advisory →
CVE-2026-48801 High 8.7

linkify-it is a links recognition library with full Unicode support. Prior to 5.0.1, LinkifyIt.prototype.match, the package's primary public API, has O(N²)

14 Jul 2026, 20:03 UTC View advisory →
CVE-2026-48800 High 7.8

Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, the tag text content inside in shortcuts.xml is read by NppXml::value(aNode) (Par

26 Jun 2026, 20:12 UTC View advisory →
CVE-2026-48799 High 7.7

Postiz is an AI social media scheduling tool. Prior to 2.21.8, Postiz fails to verify Nowpayments IPN callback authenticity against the payment provider sh

15 Jul 2026, 16:11 UTC View advisory →
CVE-2026-48795 High 8.6

AdonisJS is a TypeScript-first web framework. From 10.1.3 until 10.1.5 and 11.0.3, AdonisJS @adonisjs/bodyparser incompletely fixed CVE-2026-25754 because

15 Jul 2026, 21:23 UTC View advisory →
CVE-2026-48793 High 8.8

Jellyfin is an open source self hosted media server. Prior to 10.11.10, a potential FFmpeg argument injection vulnerability exists in the subtitle conversi

24 Jun 2026, 18:22 UTC View advisory →
CVE-2026-48789 Medium 4.3

AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. Prior to 1.13.0, on Windows, th

24 Jun 2026, 17:13 UTC View advisory →
CVE-2026-48784 Medium 5.1

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.53, 6.4.41, 7.4.13, and 8.0.13, UrlGenerator

14 Jul 2026, 19:04 UTC View advisory →
CVE-2026-48778 High 7.8

Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, the tag in config.xml is read by NppXml::value() (Parameters.cpp:6430) and stored

26 Jun 2026, 20:21 UTC View advisory →
CVE-2026-48770 Medium 5

Notepad++ is a free and open-source source code editor. Prior to 8.9.6.1, a local process in the same interactive Windows session can send a malformed WM_C

26 Jun 2026, 20:22 UTC View advisory →
CVE-2026-48761 Medium 5.3

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 6.1.0 until 6.4.41, 7.4.13, and 8.0.13, UrlAttribute

14 Jul 2026, 19:21 UTC View advisory →
CVE-2026-48760 Medium 5.3

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 6.1.0 until 6.4.41, 7.4.13, and 8.0.13, UrlSanitizer

14 Jul 2026, 19:11 UTC View advisory →
CVE-2026-48758 Medium 5.4

sigstore-js provides JavaScript libraries for interacting with Sigstore services. Prior to 3.2.1, the preAuthEncoding function in @sigstore/core uses Node.

14 Jul 2026, 20:36 UTC View advisory →
CVE-2026-48747 Medium 6.3

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 7.4.13 and 8.0.13, MailomatRequestParser::valida

14 Jul 2026, 19:16 UTC View advisory →
CVE-2026-48746 Critical 9.1

vLLM is an inference and serving engine for large language models (LLMs). From 0.3.0 until 0.22.0, a vulnerability in ASGI web servers and starlette's trus

22 Jun 2026, 21:57 UTC View advisory →
CVE-2026-48743 High 7.5

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.35.11, 1.36.7, 1.37.3, and 1.38.1, Envoy can translate a

26 Jun 2026, 17:34 UTC View advisory →
CVE-2026-48736 Medium 6.9

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 5.4.0 to 5.4.53, 6.4.41, 7.4.13, and 8.0.13, NoPriva

14 Jul 2026, 19:09 UTC View advisory →
CVE-2026-48732 High 8.8

Warp is an agentic development environment. From 0.2023.03.21.08.02.stable_00 until 0.2026.05.06.15.42.stable_01, Warp contains a command injection issue i

24 Jun 2026, 17:29 UTC View advisory →
CVE-2026-48731 High 7.8

Warp is an agentic development environment. From 0.2024.02.20.08.01.stable_01 until 0.2026.05.06.15.42.stable_01, Warp contains a command injection issue i

24 Jun 2026, 17:30 UTC View advisory →
CVE-2026-48725 High 8.1

Warp is an agentic development environment. From 0.2021.04.25.23.05.stable_00 until 0.2026.05.06.15.42.stable_01, Warp allows terminal output to request ac

24 Jun 2026, 17:22 UTC View advisory →
CVE-2026-48721 High 8.6

Warp is an agentic development environment. From 0.2025.10.08.08.12.stable_00 until 0.2026.05.06.15.42.stable_01, Warp contains a command execution permiss

24 Jun 2026, 17:31 UTC View advisory →
CVE-2026-48720 High 8.8

Warp is an agentic development environment. From 0.2025.03.05.08.02.stable_00 until 0.2026.05.06.15.42.stable_01, Warp accepts non-inline `OSC 1337;File` p

24 Jun 2026, 17:32 UTC View advisory →
CVE-2026-48719 High 8

Warp is an agentic development environment. From 0.2025.08.06.08.12.stable_00 until 0.2026.05.06.15.42.stable_01, Warp contains a command injection in the

24 Jun 2026, 17:33 UTC View advisory →
CVE-2026-48712 High 7.5

protobufjs compiles protobuf definitions into JavaScript (JS) functions. Prior to 7.6.1 and 8.4.1, protobufjs could recurse without a depth limit while con

22 Jun 2026, 16:21 UTC View advisory →
CVE-2026-48706 Medium 5.9

Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.34.0 until 1.35.13, 1.36.9, 1.37.5, and 1.38.3, a vulnerabili

26 Jun 2026, 17:38 UTC View advisory →
CVE-2026-48704 High 8.8

Warp is an agentic development environment. From 0.2023.10.24.08.03.stable_00 until 0.2026.05.06.15.42.stable_01, Warp may open executable local files thro

24 Jun 2026, 17:35 UTC View advisory →
CVE-2026-48703 High 7.8

Warp is an agentic development environment. From 0.2025.04.09.08.11.stable_00 until 0.2026.05.06.15.42.stable_01, Warp contains a command execution policy

24 Jun 2026, 17:25 UTC View advisory →
CVE-2026-48619 Medium 5.3

A flaw in Node.js HTTP/2 client allows a server to send an unlimited number of ORIGIN frames, which could lead to an Out of Memory error on the client. Thi

26 Jun 2026, 01:14 UTC View advisory →
CVE-2026-48618 High 7.7

A flaw in Node.js TLS hostname handling can cause Node.js unicode dot separator handling can lead to tls wildcard-depth authentication bypass due to resolv

26 Jun 2026, 01:14 UTC View advisory →
CVE-2026-48615 Medium 5.9

A flaw in Node.js proxy tunnel error handling could expose proxy credentials in `ERR_PROXY_TUNNEL` error messages. When proxy credentials are embedded in t

26 Jun 2026, 01:14 UTC View advisory →
CVE-2026-48588 Low 2.3

An issue was discovered in Django 6.0 before 6.0.7 and 5.2 before 5.2.16. `UpdateCacheMiddleware` and the `cache_page()` decorator cache responses that var

07 Jul 2026, 14:09 UTC View advisory →
CVE-2026-48586 High 8.7

Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift C++, Java, Python, Go, D, C/GLib bindings. This issue affec

27 Jul 2026, 11:02 UTC View advisory →
CVE-2026-48581 High 7.8

Insufficient granularity of access control in Microsoft Surface allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-48580 Medium 5.5

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-48572 High 7

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Installer allows an authorized attacker to eleva

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-48571 High 7

Use after free in Windows App Installer allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-48564 High 8.8

Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-48561 Critical 9.6

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to execute code ov

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-48529 Medium 6

GitHub MCP Server is GitHub's official MCP Server. From 0.22.0 until 1.1.2, when running in HTTP mode with --lockdown-mode enabled, the RepoAccessCache is

26 Jun 2026, 16:33 UTC View advisory →
CVE-2026-48520 Medium 6.1

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.10.0, the "Shareable Playground" (or "Public Flows" in code) cont

23 Jun 2026, 16:31 UTC View advisory →
CVE-2026-48519 Critical 9.6

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.2, the "Shareable Playground" (or "Public Flows" in code) conta

23 Jun 2026, 16:25 UTC View advisory →
CVE-2026-48517 Medium 6.3

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePack-CSharp's typeless deserialization includes MessagePackSerial

22 Jun 2026, 21:03 UTC View advisory →
CVE-2026-48516 Medium 6.3

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, InterfaceLookupFormatter constructs an internal Dictionary<TKey, IGroupi

22 Jun 2026, 21:09 UTC View advisory →
CVE-2026-48515 Medium 6.3

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePack-CSharp's multi-dimensional array formatters read dimension l

22 Jun 2026, 21:10 UTC View advisory →
CVE-2026-48514 Medium 6.3

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, UnsafeBlitFormatterBase.Deserialize reads an attacker-controlled byteLen

22 Jun 2026, 21:11 UTC View advisory →
CVE-2026-48513 Medium 6.3

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, runtime-generated union deserializers emitted by DynamicUnionResolver do

22 Jun 2026, 21:12 UTC View advisory →
CVE-2026-48512 Medium 6.3

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePack-CSharp's JSON conversion helpers contain multiple recursion

22 Jun 2026, 21:14 UTC View advisory →
CVE-2026-48511 Medium 6.3

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, ExpandoObjectFormatter.Deserialize populates System.Dynamic.ExpandoObjec

22 Jun 2026, 21:14 UTC View advisory →
CVE-2026-48510 Medium 6.3

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, when MessagePack-CSharp decompresses Lz4Block or Lz4BlockArray payloads,

22 Jun 2026, 21:16 UTC View advisory →
CVE-2026-48509 Medium 6.3

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, the parameterless MessagePackInputFormatter() constructor uses default s

22 Jun 2026, 21:16 UTC View advisory →
CVE-2026-48506 High 7.5

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePackReader.TrySkip() recursively descends into nested arrays and

22 Jun 2026, 21:17 UTC View advisory →
CVE-2026-48505 High 7.4

Filament is a collection of full-stack components for accelerated Laravel development. From 4.0.0 until 4.11.5 and 5.6.5, a flaw in the handling of recover

22 Jun 2026, 21:39 UTC View advisory →
CVE-2026-48504 Medium 5.3

OpenTelemetry Rust is the Rust OpenTelemetry implementation. In 0.32.0 and earlier, BaggagePropagator::extract_with_context in opentelemetry_sdk did not en

17 Jul 2026, 20:13 UTC View advisory →
CVE-2026-48502 High 8.2

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, MessagePackReader.ReadDateTime() can allocate stack memory based on an a

22 Jun 2026, 21:18 UTC View advisory →
CVE-2026-48500 Medium 6.5

Filament is a collection of full-stack components for accelerated Laravel development. From 3.0.0 until 3.3.52, 4.11.5, and 5.6.5, any schema can contain a

22 Jun 2026, 21:41 UTC View advisory →
CVE-2026-48499 Critical 9.3

Activepieces is an open source AI workflow automation platform. Prior to 0.84.0, an unsanitized path segment in the Code piece sandbox can let an authentic

30 Jul 2026, 17:10 UTC View advisory →
CVE-2026-48497 Medium 5.9

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.35.11, 1.36.7, 1.37.3, and 1.38.1, in cases where UDP DNS

26 Jun 2026, 17:32 UTC View advisory →
CVE-2026-48493 Medium 5.5

Snipe-IT is an IT asset/license management system. In versions prior to 8.6.0, a user with only users.edit can send a PATCH to /api/v1/users/{their_own_id}

23 Jun 2026, 22:11 UTC View advisory →
CVE-2026-48492 Medium 4.9

Snipe-IT is an IT asset/license management system. Prior to version 8.6.1, the GET /api/v1/{object}/selectlist API endpoint is missing an authorization che

08 Jul 2026, 21:11 UTC View advisory →
CVE-2026-48491 High 7.8

Traefik is an HTTP reverse proxy and load balancer. From 3.7.0 until 3.7.3, there is a high severity vulnerability in Traefik's domain-fronting protection

23 Jun 2026, 19:12 UTC View advisory →
CVE-2026-48489 High 8.7

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.53, 6.4.41, 7.4.13, and 8.0.13, DefaultAuthe

14 Jul 2026, 19:14 UTC View advisory →
CVE-2026-48487 Medium 5.3

Zeroconf is a pure Python implementation of multicast DNS service discovery. Prior to 0.149.16, _read_character_string and _read_string in src/zeroconf/_pr

17 Jul 2026, 18:28 UTC View advisory →
CVE-2026-48399 High 7.5

Adobe Campaign Classic (ACC) is affected by a Violation of Secure Design Principles vulnerability that could result in a Security feature bypass. An attack

03 Aug 2026, 22:37 UTC View advisory →
CVE-2026-48389 High 7.8

DNG SDK versions 1.7.1 2536 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the co

20 Jul 2026, 18:14 UTC View advisory →
CVE-2026-48373 High 7.8

Acrobat Reader is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.

17 Jul 2026, 19:29 UTC View advisory →
CVE-2026-48371 Medium 5.4

Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scrip

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-48370 High 7.8

Media Encoder is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploit

14 Jul 2026, 19:58 UTC View advisory →
CVE-2026-48369 High 7.8

Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploita

14 Jul 2026, 20:04 UTC View advisory →
CVE-2026-48368 High 7.8

Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation

14 Jul 2026, 17:48 UTC View advisory →
CVE-2026-48367 High 7.8

After Effects is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploit

14 Jul 2026, 20:07 UTC View advisory →
CVE-2026-48366 High 7.8

Media Encoder is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploit

14 Jul 2026, 19:58 UTC View advisory →
CVE-2026-48365 High 7.8

Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation

14 Jul 2026, 17:48 UTC View advisory →
CVE-2026-48364 High 8.2

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execu

13 Jul 2026, 20:03 UTC View advisory →
CVE-2026-48363 High 8.2

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execu

13 Jul 2026, 20:03 UTC View advisory →
CVE-2026-48359 Critical 9.6

Adobe Experience Manager is affected by an Improper Restriction of XML External Entity Reference ('XXE') vulnerability that could result in arbitrary code

14 Jul 2026, 19:21 UTC View advisory →
CVE-2026-48358 Critical 9.1

Adobe Commerce is affected by an Improper Encoding or Escaping of Output vulnerability that could result in arbitrary code execution in the context of the

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-48357 Medium 6.2

CAI Content Credentials is affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker cou

14 Jul 2026, 21:33 UTC View advisory →
CVE-2026-48356 Critical 9.6

Adobe Commerce is affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbitrary code execution in the context

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-48355 Medium 5.4

Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malic

14 Jul 2026, 19:20 UTC View advisory →
CVE-2026-48354 Medium 6.2

CAI Content Credentials is affected by an Integer Overflow or Wraparound vulnerability that could result in an application denial-of-service. An attacker c

14 Jul 2026, 21:32 UTC View advisory →
CVE-2026-48353 Medium 5.5

CAI Content Credentials is affected by an Improper Input Validation vulnerability that could lead to arbitrary file system read. An attacker could exploit

14 Jul 2026, 21:32 UTC View advisory →
CVE-2026-48352 High 7.5

CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could

14 Jul 2026, 21:32 UTC View advisory →
CVE-2026-48351 High 7.5

CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could

14 Jul 2026, 21:32 UTC View advisory →
CVE-2026-48350 High 8.6

Animate is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary code

14 Jul 2026, 19:53 UTC View advisory →
CVE-2026-48349 High 8.1

Animate is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploit d

14 Jul 2026, 19:53 UTC View advisory →
CVE-2026-48348 High 7.7

Animate is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploit d

14 Jul 2026, 19:53 UTC View advisory →
CVE-2026-48347 High 7.7

Animate is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could result in arb

14 Jul 2026, 19:53 UTC View advisory →
CVE-2026-48346 High 7.9

Animate is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploitatio

14 Jul 2026, 19:53 UTC View advisory →
CVE-2026-48345 High 8.2

Animate is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could result in arb

14 Jul 2026, 19:53 UTC View advisory →
CVE-2026-48344 High 7.8

Creative Cloud Desktop is affected by a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability that could result in arbitrary code execution in th

14 Jul 2026, 20:21 UTC View advisory →
CVE-2026-48343 High 7.8

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation o

14 Jul 2026, 20:35 UTC View advisory →
CVE-2026-48342 High 7.8

Bridge is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exp

14 Jul 2026, 20:35 UTC View advisory →
CVE-2026-48341 High 7.8

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation o

14 Jul 2026, 20:35 UTC View advisory →
CVE-2026-48340 High 7.8

Bridge is affected by an Untrusted Pointer Dereference vulnerability that could result in arbitrary code execution in the context of the current user. Expl

14 Jul 2026, 20:35 UTC View advisory →
CVE-2026-48339 High 7.8

Bridge is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploita

14 Jul 2026, 20:35 UTC View advisory →
CVE-2026-48338 Medium 6.8

ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrary file

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48337 High 7.8

Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitat

14 Jul 2026, 21:16 UTC View advisory →
CVE-2026-48336 High 7.8

Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitat

14 Jul 2026, 21:16 UTC View advisory →
CVE-2026-48335 High 7.8

Illustrator is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitat

14 Jul 2026, 21:16 UTC View advisory →
CVE-2026-48334 Critical 9.3

Illustrator is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exp

14 Jul 2026, 21:16 UTC View advisory →
CVE-2026-48333 Critical 9.8

Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could exploit t

03 Aug 2026, 22:37 UTC View advisory →
CVE-2026-48332 High 7.7

ColdFusion is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in a Security feature bypass. A low-privileged attacker coul

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48331 Critical 10

Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation. Exploitation of t

03 Aug 2026, 22:37 UTC View advisory →
CVE-2026-48330 Critical 10

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that coul

03 Aug 2026, 22:37 UTC View advisory →
CVE-2026-48329 Low 2.7

ColdFusion is affected by an Insufficient Session Expiration vulnerability that could result in a Security feature bypass. A high-privileged attacker could

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48328 High 7.7

ColdFusion is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. A low-privileged attacker could levera

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48327 Critical 9

ColdFusion is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploi

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48326 Critical 9.9

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that coul

03 Aug 2026, 22:37 UTC View advisory →
CVE-2026-48325 Critical 9.3

ColdFusion is affected by a Missing Authentication for Critical Function vulnerability that could result in arbitrary code execution in the context of the

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48324 Critical 9.1

ColdFusion is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could result in arbitr

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48323 Critical 10

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements Used in a Template Engine vulnerability that could result in arb

03 Aug 2026, 22:37 UTC View advisory →
CVE-2026-48322 Critical 9.6

ColdFusion is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in the c

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48321 Critical 9.3

ColdFusion is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could leverage this vulnerability

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48320 High 8.5

ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts in

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48319 Critical 9.1

ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitrary co

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48318 Critical 9.9

ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrary file

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48317 Critical 9.6

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') vulnerability that co

03 Aug 2026, 22:37 UTC View advisory →
CVE-2026-48315 Critical 9.3

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in

30 Jun 2026, 15:12 UTC View advisory →
CVE-2026-48314 Medium 6.5

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerabi

30 Jun 2026, 15:11 UTC View advisory →
CVE-2026-48313 Critical 9.3

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerabi

30 Jun 2026, 15:12 UTC View advisory →
CVE-2026-48312 Medium 6.8

CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverag

14 Jul 2026, 21:32 UTC View advisory →
CVE-2026-48311 High 7.8

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation o

14 Jul 2026, 20:35 UTC View advisory →
CVE-2026-48310 High 8.6

Adobe Experience Manager is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to

14 Jul 2026, 19:21 UTC View advisory →
CVE-2026-48309 High 7.8

Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation

14 Jul 2026, 17:48 UTC View advisory →
CVE-2026-48308 Medium 5.9

Premiere Pro is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vuln

14 Jul 2026, 20:04 UTC View advisory →
CVE-2026-48307 High 8.8

ColdFusion versions 2025.9, 2023.20 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulner

30 Jun 2026, 15:11 UTC View advisory →
CVE-2026-48302 Medium 6.2

CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could

14 Jul 2026, 21:32 UTC View advisory →
CVE-2026-48298 Medium 6.2

CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An at

14 Jul 2026, 21:32 UTC View advisory →
CVE-2026-48296 Medium 6.2

CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An at

14 Jul 2026, 21:32 UTC View advisory →
CVE-2026-48295 High 7.5

CAI Content Credentials is affected by an Insufficiently Protected Credentials vulnerability that could result in disclosure of sensitive information. An a

14 Jul 2026, 21:33 UTC View advisory →
CVE-2026-48290 High 8.2

CAI Content Credentials is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in arbitrary code execution in the context of t

14 Jul 2026, 21:33 UTC View advisory →
CVE-2026-48287 High 7.4

CAI Content Credentials is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current u

14 Jul 2026, 21:32 UTC View advisory →
CVE-2026-48286 Critical 10

Adobe Campaign Classic (ACC) versions 7.4.3 build 9396 and earlier are affected by an Incorrect Authorization vulnerability that could result in arbitrary

30 Jun 2026, 15:08 UTC View advisory →
CVE-2026-48285 High 8.6

ColdFusion versions 2025.9, 2023.20 and earlier are affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in a Security feature

30 Jun 2026, 15:12 UTC View advisory →
CVE-2026-48284 Critical 9.6

ColdFusion is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Expl

14 Jul 2026, 21:04 UTC View advisory →
CVE-2026-48283 Critical 10

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbit

30 Jun 2026, 15:11 UTC View advisory →
CVE-2026-48282 Critical 10

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerabi

30 Jun 2026, 15:11 UTC View advisory →
CVE-2026-48281 Critical 10

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in

30 Jun 2026, 15:12 UTC View advisory →
CVE-2026-48277 Critical 10

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in

30 Jun 2026, 15:12 UTC View advisory →
CVE-2026-48276 Critical 10

ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Unrestricted Upload of File with Dangerous Type vulnerability that could result in arbit

30 Jun 2026, 15:11 UTC View advisory →
CVE-2026-48275 High 8.6

Illustrator is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploit

14 Jul 2026, 21:16 UTC View advisory →
CVE-2026-48274 High 7.8

After Effects is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploit

14 Jul 2026, 20:07 UTC View advisory →
CVE-2026-48272 High 7.8

Creative Cloud Desktop is affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the

14 Jul 2026, 20:21 UTC View advisory →
CVE-2026-48270 High 7.8

Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploita

14 Jul 2026, 20:04 UTC View advisory →
CVE-2026-48269 High 7.8

Premiere Pro is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Ex

14 Jul 2026, 20:04 UTC View advisory →
CVE-2026-48263 Medium 5.4

Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malic

14 Jul 2026, 19:21 UTC View advisory →
CVE-2026-48262 Medium 5.4

Adobe Experience Manager is affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM

14 Jul 2026, 19:20 UTC View advisory →
CVE-2026-48261 Medium 5.4

Adobe Experience Manager is affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM

14 Jul 2026, 19:20 UTC View advisory →
CVE-2026-48260 Medium 5.4

Adobe Experience Manager is affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM

14 Jul 2026, 19:20 UTC View advisory →
CVE-2026-48259 Critical 9.6

Adobe Experience Manager is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in arbitrary code execution in the context of

14 Jul 2026, 19:21 UTC View advisory →
CVE-2026-48257 Medium 5.4

Adobe Experience Manager is affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM

14 Jul 2026, 19:20 UTC View advisory →
CVE-2026-48255 Medium 5.4

Adobe Experience Manager is affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM

14 Jul 2026, 19:20 UTC View advisory →
CVE-2026-48254 Medium 5.4

Adobe Experience Manager is affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM

14 Jul 2026, 19:20 UTC View advisory →
CVE-2026-48253 Medium 5.4

Adobe Experience Manager is affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the DOM

14 Jul 2026, 19:20 UTC View advisory →
CVE-2026-48252 High 8.6

Adobe Experience Manager is affected by a Missing Authentication for Critical Function vulnerability that could result in a Security feature bypass. An att

14 Jul 2026, 19:20 UTC View advisory →
CVE-2026-48192 Medium 6.8

A vulnerability has been identified in Mendix Studio Pro 10.11 (All versions), Mendix Studio Pro 10.12 (All versions), Mendix Studio Pro 10.13 (All version

30 Jun 2026, 14:30 UTC View advisory →
CVE-2026-48168 Critical 10

PraisonAI is a multi-agent teams system. In versions prior to 4.6.40, the bundled Claude GitHub Actions workflow is vulnerable to command injection because

05 Aug 2026, 18:29 UTC View advisory →
CVE-2026-48167 Medium 6.4

Filament is a collection of full-stack components for accelerated Laravel development. From 4.0.0 until 4.11.5 and 5.6.5, the ImageColumn and ImageEntry co

22 Jun 2026, 21:43 UTC View advisory →
CVE-2026-48166 Medium 5.3

Filament is a collection of full-stack components for accelerated Laravel development. From 4.0.0 until 4.11.5 and 5.6.5, the login page has an observable

22 Jun 2026, 21:40 UTC View advisory →
CVE-2026-48154 Medium 5.9

GoRest is a Golang starter kit built with the Gin framework for prototyping and developing RESTful APIs. In versions prior to 1.12.2 nMemorySecret2FA conta

04 Aug 2026, 19:45 UTC View advisory →
CVE-2026-48145 High 8.2

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users a

27 Jul 2026, 10:59 UTC View advisory →
CVE-2026-48144 Critical 9.1

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.24.0. User

27 Jul 2026, 10:58 UTC View advisory →
CVE-2026-48127 Medium 5.3

Frappe is a full-stack web application framework. Prior to 16.20.0 and 15.110.0, users without write access could attach files to any doctype through file-

10 Jul 2026, 21:23 UTC View advisory →
CVE-2026-48125 Medium 5.3

UAParser.js is a JavaScript library to detect browsers, operating systems, CPUs, and devices from user-agent data. From 2.0.1 until 2.0.10, a regular expre

14 Jul 2026, 20:54 UTC View advisory →
CVE-2026-48121 Medium 6.7

@langchain/langgraph-checkpoint-mongodb provides a LangGraph.js CheckpointSaver implementation that uses MongoDB for storage. Versions 1.3.0 and below are

04 Aug 2026, 16:49 UTC View advisory →
CVE-2026-48115 Medium 6.3

Misskey is an open source, federated social media platform. All Misskey servers running versions 2024.5.0 and later, but prior to 2026.5.4, contain a vulne

03 Aug 2026, 21:21 UTC View advisory →
CVE-2026-48113 High 8.5

Chisel is a TCP/UDP tunnel, transported over HTTP and secured via SSH. In versions prior to 1.11.5, authenticated clients can bypass --authfile ACL restric

03 Aug 2026, 21:05 UTC View advisory →
CVE-2026-48109 High 8.2

MessagePack for C# is a MessagePack serializer for C#. Prior to 2.5.301 and 3.1.7, A vulnerability exists in the optional LZ4 decompression path used by Me

22 Jun 2026, 21:19 UTC View advisory →
CVE-2026-48090 Medium 5.9

Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.37.0 until 1.37.5 and 1.38.3, the HTTP OAuth2 filter (envoy.f

26 Jun 2026, 18:03 UTC View advisory →
CVE-2026-48088 Critical 9.4

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.4, the route `POST /api/te

06 Aug 2026, 21:34 UTC View advisory →
CVE-2026-48087 Critical 9.8

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.2, the registration handle

06 Aug 2026, 21:32 UTC View advisory →
CVE-2026-48086 Critical 9.9

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.2, a TENANT_ADMIN promotes

06 Aug 2026, 21:30 UTC View advisory →
CVE-2026-48085 Critical 9.8

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.1, a fully provisioned Ope

06 Aug 2026, 21:29 UTC View advisory →
CVE-2026-48084 High 7.4

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Versions prior to 1.0.2 don't throttle failed p

06 Aug 2026, 21:18 UTC View advisory →
CVE-2026-48083 Medium 6.5

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.2, the `/api/log` endpoint

06 Aug 2026, 21:16 UTC View advisory →
CVE-2026-48082 Low 3.7

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.6, the bootstrap challenge

06 Aug 2026, 21:14 UTC View advisory →
CVE-2026-48081 High 8.1

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.2, a TENANT_ADMIN can stor

06 Aug 2026, 21:10 UTC View advisory →
CVE-2026-48080 High 8

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.2, the `GET /api/tenants/{

06 Aug 2026, 18:26 UTC View advisory →
CVE-2026-48079 High 7.4

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.2, when a user navigates t

06 Aug 2026, 21:00 UTC View advisory →
CVE-2026-48078 Medium 5.3

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.5, the unauthenticated `/a

06 Aug 2026, 20:56 UTC View advisory →
CVE-2026-48077 Medium 5.3

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.1.0, the GET handler at `/ap

06 Aug 2026, 20:47 UTC View advisory →
CVE-2026-48076 Medium 6.5

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. The new-client booking flow in versions 1.0.1 a

06 Aug 2026, 20:43 UTC View advisory →
CVE-2026-48075 Medium 6.5

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.5, the `add-to-tunnel` end

06 Aug 2026, 20:39 UTC View advisory →
CVE-2026-48074 Low 2.7

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.6, when a TENANT_ADMIN del

06 Aug 2026, 20:27 UTC View advisory →
CVE-2026-48071 Medium 5.8

OpenReception's appointment booking software provides an end-to-end encrypted appointment booking platform. Prior to version 1.0.4, the PIN-type challenge

06 Aug 2026, 18:46 UTC View advisory →
CVE-2026-48069 High 7.5

@grpc/grps-js implements the core functionality of gRPC purely in JavaScript, without a C++ addon. Prior to 1.9.16, 1.10.12, 1.11.4, 1.12.7, 1.13.5, and 1.

14 Jul 2026, 19:42 UTC View advisory →
CVE-2026-48068 High 7.5

@grpc/grps-js implements the core functionality of gRPC purely in JavaScript, without a C++ addon. Prior to 1.9.16, 1.10.12, 1.11.4, 1.12.7, 1.13.5, and 1.

14 Jul 2026, 19:39 UTC View advisory →
CVE-2026-48067 Medium 6.5

Filament is a collection of full-stack components for accelerated Laravel development. From filament/actions 4.0.0 until 4.11.4 and 5.6.4 and from filament

22 Jun 2026, 21:46 UTC View advisory →
CVE-2026-48063 Critical 9.3

Baileys is a cocket-based TS/JavaScript API for WhatsApp Web. In versions prior to both 6.7.22 and 7.0.0-rc12, any Baileys session can be sent a malicious

03 Aug 2026, 20:55 UTC View advisory →
CVE-2026-48062 Critical 9.8

CodeIgniter is a PHP full-stack web framework. Prior to 4.7.3, the ext_in upload validation rule in system/Validation/StrictRules/FileRules.php checked the

17 Jul 2026, 20:36 UTC View advisory →
CVE-2026-48061 Medium 5.9

Litestar is an Asynchronous Server Gateway Interface (ASGI) framework. In versions prior to 2.22.0, an attacker can bypass the allowed hosts validation by

03 Aug 2026, 20:47 UTC View advisory →
CVE-2026-48054 High 8.8

OpenZeppelin Contracts Wizardis a web application to interactively build a contract out of components from OpenZeppelin Contracts. Versions prior to 0.10.9

06 Aug 2026, 21:37 UTC View advisory →
CVE-2026-48052 Medium 5.4

Papra is a minimalistic document management and archiving platform. Prior to version 26.5.0, an authenticated user who is a member of any organization can

27 Jul 2026, 18:00 UTC View advisory →
CVE-2026-48051 Low 3.5

Papra is a minimalistic document management and archiving platform. Prior to version 26.5.0, Papra's webhook delivery system contains an SSRF protection by

27 Jul 2026, 17:59 UTC View advisory →
CVE-2026-48049 Medium 5.3

@hapi/inert provides static file and directory handlers for hapi.js. From 4.0.0 to 7.1.0, @hapi/inert serves static files from a directory configured with

17 Jul 2026, 21:03 UTC View advisory →
CVE-2026-48045 Medium 6.5

Zeroconf is a pure Python implementation of multicast DNS service discovery. Prior to 0.149.12, AsyncListener.handle_query_or_defer retained every truncate

17 Jul 2026, 18:26 UTC View advisory →
CVE-2026-48044 High 7.5

Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.23.0 until 1.35.11, 1.36.7, 1.37.3, and 1.38.1, a vulnerabili

26 Jun 2026, 17:31 UTC View advisory →
CVE-2026-48042 High 7.5

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.35.11, 1.36.7, 1.37.3, and 1.38.1, destructor of JSON Obj

26 Jun 2026, 17:29 UTC View advisory →
CVE-2026-48038 Medium 5.3

joi is a schema description language and data validator for JavaScript. Prior to 17.13.4 and 18.2.1, denial of service is possible via an untrapped excepti

14 Jul 2026, 19:24 UTC View advisory →
CVE-2026-48031 Critical 9.1

go-base is a Go RESTful API Boilerplate template with JWT Authentication, backed by PostgreSQL. In versions prior to 2026-05-18, the JWT signing secret is

03 Aug 2026, 19:05 UTC View advisory →
CVE-2026-48030 Critical 9.9

Pheditor is a single-file editor and file manager written in PHP. From version 2.0.1 to before version 2.0.4, an OS Command Injection vulnerability in the

27 Jul 2026, 17:53 UTC View advisory →
CVE-2026-48029 High 7.1

libheif is a HEIF and AVIF file format decoder and encoder. Versions 1.19.0 through 1.21.2 have a heap OOB read in ImageItem_Grid::decode_grid_tile via iro

22 Jul 2026, 14:13 UTC View advisory →
CVE-2026-48028 Medium 6.5

Mastodon is a free, open-source social network server based on ActivityPub. Prior to 4.5.10, 4.4.17, and 4.3.23, Mastodon's normalization of incoming activ

24 Jun 2026, 19:43 UTC View advisory →
CVE-2026-48022 Medium 6.5

@hapi/wreck is an HTTP client utility. Prior to 18.1.2, Wreck strips credential headers including Authorization, Cookie, and Proxy-Authorization before fol

17 Jul 2026, 21:02 UTC View advisory →
CVE-2026-48020 High 7.8

Traefik is an HTTP reverse proxy and load balancer. Prior to 2.11.48, 3.6.19, and 3.7.3, there is a high severity vulnerability in Traefik's StripPrefix mi

23 Jun 2026, 19:10 UTC View advisory →
CVE-2026-48016 Medium 4.3

Shopware is an open commerce platform. Prior to 6.6.10.18 and 6.7.10.1, the Store API endpoint /store-api/handle-payment in src/Core/Checkout/Payment/Sales

17 Jul 2026, 17:54 UTC View advisory →
CVE-2026-48015 Medium 4.9

Shopware is an open commerce platform. Prior to 6.6.10.18 and 6.7.10.1, SVG files are in the allowed_extensions whitelist in src/Core/Framework/Resources/c

17 Jul 2026, 17:53 UTC View advisory →
CVE-2026-48014 Medium 6.5

Shopware is an open commerce platform. Prior to 6.6.10.18 and 6.7.10.1, the order state transition features /api/_action/order/{orderId}/state/{transition}

17 Jul 2026, 17:56 UTC View advisory →
CVE-2026-48010 Medium 6.5

Shopware is an open commerce platform. Prior to 6.6.10.18 and 6.7.10.1, UserController::upsertUser() in src/Core/Framework/Api/Controller/UserController.ph

17 Jul 2026, 17:55 UTC View advisory →
CVE-2026-48009 Medium 6.8

Shopware is an open commerce platform. Prior to 6.6.10.18 and 6.7.10.1, a low-privilege admin user with user_recovery:read ACL can take over any admin acco

17 Jul 2026, 17:58 UTC View advisory →
CVE-2026-48008 Medium 6.5

Shopware is an open commerce platform. Prior to 6.6.10.18 and 6.7.10.1, a non-admin API user with integration:create ACL privilege can escalate to full adm

17 Jul 2026, 17:47 UTC View advisory →
CVE-2026-48001 Low 3.7

Adobe Commerce is affected by an Information Exposure vulnerability that could lead to a limited disclosure of sensitive information. Exploit depends on co

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-48000 Medium 4.3

Adobe Commerce is affected by an Improper Redirect (Open Redirect) vulnerability that could result in a Security feature bypass. An attacker could construc

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-47999 Medium 4.8

Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scri

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-47998 Medium 5.9

Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vuln

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-47997 Medium 5.9

Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vuln

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-47996 High 7.6

Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. A high-privileged attacker could lev

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-47995 High 8.1

Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a high-privileged attacker to inject malicious scri

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-47994 High 8.7

Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scrip

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-47992 High 7.2

Adobe Commerce is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could result in ar

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-47988 High 8.6

Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vuln

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-47984 High 8.2

Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vuln

14 Jul 2026, 19:44 UTC View advisory →
CVE-2026-47979 Medium 5.5

Media Encoder is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnera

14 Jul 2026, 19:58 UTC View advisory →
CVE-2026-47976 High 7.8

Media Encoder is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploit

14 Jul 2026, 19:58 UTC View advisory →
CVE-2026-47971 High 7.8

Media Encoder is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.

14 Jul 2026, 19:58 UTC View advisory →
CVE-2026-47969 Medium 5.5

Audition is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerabilit

14 Jul 2026, 17:48 UTC View advisory →
CVE-2026-47968 High 7.8

Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation

14 Jul 2026, 17:48 UTC View advisory →
CVE-2026-47967 High 7.8

Audition is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation

14 Jul 2026, 17:48 UTC View advisory →
CVE-2026-47876 Critical 9.3

VMware ESX contains an out-of-bounds write vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileges on

30 Jul 2026, 12:31 UTC View advisory →
CVE-2026-47871 High 8.8

VMware Avi Load Balancer contains a directory traversal vulnerability. Flaws in file path validation allow malicious, authenticated network users to perfor

18 Jul 2026, 08:57 UTC View advisory →
CVE-2026-47870 High 7.1

VMware Avi Load Balancer contains a privilege escalation vulnerability. A malicious authenticated user with network access may be able to execute remote co

18 Jul 2026, 08:57 UTC View advisory →
CVE-2026-47869 High 8.7

VMware Avi Load Balancer contains a remote code execution vulnerability. A malicious authenticated user with network access may be able to inject and execu

18 Jul 2026, 08:57 UTC View advisory →
CVE-2026-47868 High 7.8

VMware Avi Load Balancer contains a local privilege escalation vulnerability. A malicious user with local access may be able to escalate their privileges t

18 Jul 2026, 08:57 UTC View advisory →
CVE-2026-47867 High 8.7

VMware Avi Load Balancer contains a remote code execution vulnerability. A malicious user with network access may be able to access the Avi Control plane a

18 Jul 2026, 08:57 UTC View advisory →
CVE-2026-47866 High 8.3

VMware Avi Load Balancer contains an authorization bypass vulnerability. A malicious actor on the network can access a limited subset of the Avi Control Pl

18 Jul 2026, 08:57 UTC View advisory →
CVE-2026-47865 Critical 9.8

VMware Avi Load Balancer contains an authentication bypass vulnerability. A malicious user with network access may be able to access the Avi Control plane

18 Jul 2026, 08:57 UTC View advisory →
CVE-2026-47840 High 8.3

A network attacker positioned between UAA and its LDAP directory can impersonate the directory using any certificate from any trusted CA, then harvest the

09 Jul 2026, 06:26 UTC View advisory →
CVE-2026-47831 High 7.7

Use of a cryptographically weak random number generator in the GenerateRandomPassword function in bosh-windows-stemcell-builder allows a remote attacker to

09 Jul 2026, 06:26 UTC View advisory →
CVE-2026-47830 High 8.5

Incorrect Permission Assignment in BOSH.Utils.psm1 in BOSH-Ecosystem bosh-windows-stemcell-builder allows low-privilege authenticated users to overwrite C:

09 Jul 2026, 06:25 UTC View advisory →
CVE-2026-47829 High 7.7

Argument Injection in bosh-cli allows a compromised BOSH Director to inject arbitrary OpenSSH options into the locally-spawned ssh process when an operator

09 Jul 2026, 06:25 UTC View advisory →
CVE-2026-47828 High 8.9

During bosh create-env and bosh delete-env, the CLI uploads compiled CPI packages and rendered job templates to the new VM's DAV blobstore over HTTPS witho

09 Jul 2026, 06:07 UTC View advisory →
CVE-2026-47826 High 8.5

The blobs.yml path key traversal vulnerability in the BOSH CLI tool allows an attacker to write arbitrary files and exfiltrate sensitive information. Affec

09 Jul 2026, 05:45 UTC View advisory →
CVE-2026-47781 High 8.4

PDM is a Python package and dependency manager. In versions up to and including 2.26.9, PDM automatically loads project-local plugins from a .pdm-plugins d

04 Aug 2026, 18:42 UTC View advisory →
CVE-2026-47778 Medium 4.4

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.35.11, 1.36.7, 1.37.3, and 1.38.1, a structural flaw was

26 Jun 2026, 17:27 UTC View advisory →
CVE-2026-47775 Medium 6.8

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.35.11, 1.36.7, 1.37.3, and 1.38.1, the OAuth2 HTTP filter

26 Jun 2026, 17:23 UTC View advisory →
CVE-2026-47770 Medium 6.8

jq is a command-line JSON processor. Prior to 1.8.2, comparing two sufficiently deeply nested arrays with the == operator exhausts the C stack on jq's ordi

25 Jun 2026, 17:22 UTC View advisory →
CVE-2026-47767 High 8.3

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 5.4.46 until 5.4.52, 6.4.40, 7.4.12, and 8.0.12, the

14 Jul 2026, 18:38 UTC View advisory →
CVE-2026-47765 High 7.1

Frappe is a full-stack web application framework. Prior to 15.110.0 and 16.20.0, the restore and bulk_restore endpoints do not apply the appropriate docume

06 Aug 2026, 21:25 UTC View advisory →
CVE-2026-47764 High 8.4

pdm is a Python package and dependency manager supporting the latest PEP standards. Versions prior to 2.27.0 are vulnerable to path traversal through write

04 Aug 2026, 17:57 UTC View advisory →
CVE-2026-47763 Medium 6.8

pdm is a Python package and dependency manager supporting the latest PEP standards. In versions prior to 2.27.0, pdm writes several project-local state or

04 Aug 2026, 17:29 UTC View advisory →
CVE-2026-47751 Medium 5.3

Claude Code Action is a general-purpose GitHub action that runs Claude Code on GitHub pull requests and issues. Prior to 1.0.74, because the action checked

16 Jul 2026, 15:59 UTC View advisory →
CVE-2026-47746 High 8.9

Misskey is an open source, federated social media platform. Versions 12.37.0 and later, but prior to 2026.5.4, are vulnerable to timing attacks during JSON

03 Aug 2026, 21:56 UTC View advisory →
CVE-2026-47737 High 7.5

Puma is a Ruby/Rack web server built for parallelism. From 5.5.0 until 7.2.1 and 8.0.2, Puma is vulnerable to source IP spoofing when set_remote_address pr

14 Jul 2026, 19:45 UTC View advisory →
CVE-2026-47736 High 7.5

Puma is a Ruby/Rack web server built for parallelism. From 5.5.0 until 7.2.1 and 8.0.2, when PROXY protocol v1 support is enabled, Puma reads incoming byte

14 Jul 2026, 19:54 UTC View advisory →
CVE-2026-47733 Medium 4.4

Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, the ImageElement component in packages/gazzodown renders

24 Jun 2026, 20:51 UTC View advisory →
CVE-2026-47732 High 7.1

Twig is a template language for PHP. Prior to 3.26.0, several Twig language constructs trigger PHP string coercion on a Stringable operand without consulti

14 Jul 2026, 21:12 UTC View advisory →
CVE-2026-47730 Medium 5.1

Twig is a template language for PHP. From 3.0.0 until 3.26.0, Twig\Profiler\Dumper\HtmlDumper writes Profile::getTemplate() and Profile::getName() into HTM

14 Jul 2026, 21:21 UTC View advisory →
CVE-2026-47729 Medium 6.5

Squid is a caching proxy for the Web. Prior to 7.6, due to an improper validation of syntactic correctness of input in the FTP gateway (src/clients/FtpGate

16 Jul 2026, 16:13 UTC View advisory →
CVE-2026-47703 Medium 6.3

AdGuard Home is a network-wide software for blocking ads and tracking. Prior to 0.107.75, AdGuard Home's client-triggered DoQ forwarding path to a udp:// u

15 Jul 2026, 16:03 UTC View advisory →
CVE-2026-47693 Medium 6.9

Poweradmin is a web-based DNS administration tool for PowerDNS server. Versions prior to 4.2.4 and 4.3.3 are vulnerable to CSV Injection (Formula Injection

23 Jun 2026, 22:07 UTC View advisory →
CVE-2026-47692 Medium 4.8

Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.34.0 until 1.35.13, 1.36.9, 1.37.5, and 1.38.3, PROXY Protoco

26 Jun 2026, 17:59 UTC View advisory →
CVE-2026-47682 High 7.1

CVAT is an open source interactive video and image annotation tool for computer vision. In versions 1.6.0 through 2.64.0, an attacker with write access to

04 Aug 2026, 20:00 UTC View advisory →
CVE-2026-47646 Critical 9.3

Improper neutralization of input during web page generation ('cross-site scripting') in Dynamics 365 Customer Voice allows an unauthorized attacker to perf

08 Jul 2026, 23:24 UTC View advisory →
CVE-2026-47642 High 7.8

Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-47632 High 8.8

Improper certificate validation in Azure Monitor Agent allows an unauthorized attacker to elevate privileges over an adjacent network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-47623 High 8.2

NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause deserialization of untrusted data. A successful exploit of this vulnerabilit

04 Aug 2026, 17:33 UTC View advisory →
CVE-2026-47622 Medium 5.3

NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause the generation of error messages that contain sensitive information. A succe

04 Aug 2026, 17:33 UTC View advisory →
CVE-2026-47621 Medium 6.5

NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race condition in the LoRA manager singleton initialization. A successful

04 Aug 2026, 17:33 UTC View advisory →
CVE-2026-47620 Medium 6.5

NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race condition in the LoRA manager singleton initialization. A successful

04 Aug 2026, 17:32 UTC View advisory →
CVE-2026-47619 Medium 6.6

NVIDIA Dynamo for Linux examples and recipes contain a vulnerability where an attacker could cause a system failure. A successful exploit of this vulnerabi

04 Aug 2026, 17:32 UTC View advisory →
CVE-2026-47618 High 7.5

NVIDIA Dynamo for Linux contains a vulnerability in the Rust multimodal media fetcher where an attacker could cause server-side request forgery. A successf

04 Aug 2026, 17:31 UTC View advisory →
CVE-2026-47617 High 7.5

NVIDIA Dynamo for Linux contains a vulnerability in the multimodal media fetcher where an attacker may cause server-side request forgery via DNS rebinding.

04 Aug 2026, 17:31 UTC View advisory →
CVE-2026-47616 High 7.5

NVIDIA Dynamo for Linux contains a vulnerability in the multimodal media fetcher where an attacker may cause server-side request forgery. A successful expl

04 Aug 2026, 17:30 UTC View advisory →
CVE-2026-47615 High 7.5

NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause server-side request forgery by supplying a crafted URL in a multimodal request

04 Aug 2026, 17:30 UTC View advisory →
CVE-2026-47614 High 7.5

NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause server-side request forgery. A successful exploit of this vulnerability might

04 Aug 2026, 17:26 UTC View advisory →
CVE-2026-47613 High 7.5

NVIDIA Dynamo for Linux contains a vulnerability where an attacker may cause improper limitation of a pathname to a restricted directory by supplying a cra

04 Aug 2026, 17:25 UTC View advisory →
CVE-2026-47612 High 7.5

NVIDIA Dynamo for Linux contains a vulnerability in the image loading component where an attacker may cause improper limitation of a pathname to a restrict

04 Aug 2026, 17:24 UTC View advisory →
CVE-2026-47487 Medium 4.4

NVIDIA Triton Inference Server for Linux contains a vulnerability where a user could cause files outside the model repository to be read, written to, or mo

04 Aug 2026, 17:20 UTC View advisory →
CVE-2026-47482 High 7.5

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause missing release of memory after effective lifetime. A success

14 Jul 2026, 19:50 UTC View advisory →
CVE-2026-47481 Medium 6.5

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause an authentication bypass through an alternative path or chann

14 Jul 2026, 19:49 UTC View advisory →
CVE-2026-47480 High 7.5

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause an uncaught exception. A successful exploit of this vulnerabi

14 Jul 2026, 19:47 UTC View advisory →
CVE-2026-47479 High 7.5

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause uncontrolled resource consumption. A successful exploit of th

14 Jul 2026, 19:46 UTC View advisory →
CVE-2026-47478 High 7.5

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause the use of an expired file descriptor. A successful exploit o

14 Jul 2026, 19:45 UTC View advisory →
CVE-2026-47477 High 7.5

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a stack-based buffer overflow. A successful exploit of this v

14 Jul 2026, 19:45 UTC View advisory →
CVE-2026-47476 High 7.5

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause uncontrolled resource consumption. A successful exploit of th

14 Jul 2026, 19:43 UTC View advisory →
CVE-2026-47475 Medium 6.2

NVIDIA TensorRT-LLM contains a vulnerability in the OpenAI-compatible inference API where an attacker could trigger a reachable assertion in the sampler th

14 Jul 2026, 20:08 UTC View advisory →
CVE-2026-47473 High 7.4

NVIDIA TensorRT-LLM contains a vulnerability where an attacker could cause a write-what-where condition. A successful exploit of this vulnerability might l

14 Jul 2026, 20:03 UTC View advisory →
CVE-2026-47472 High 7.8

NVIDIA TensorRT-LLM contains a vulnerability in its inter-process communication layer where an attacker with local same-user access could cause deserializa

14 Jul 2026, 20:01 UTC View advisory →
CVE-2026-47471 High 7.5

NVIDIA TensorRT-LLM for any platform contains a vulnerability in tensor deserialization, where an attacker could cause a heap based buffer overflow. A succ

14 Jul 2026, 20:02 UTC View advisory →
CVE-2026-47470 Medium 6.2

NVIDIA TensorRT-LLM for any platform contains a vulnerability in the gRPC server chat API endpoint, where an attacker could cause CWE-20 by local attack. A

14 Jul 2026, 20:07 UTC View advisory →
CVE-2026-47429 Critical 9.8

Vitest is a testing framework powered by Vite. Prior to 3.2.5 and 4.1.0, the Vitest UI/API server on Windows used isFileServingAllowed incorrectly for /__v

14 Jul 2026, 19:28 UTC View advisory →
CVE-2026-47428 Critical 9.6

Vitest is a testing framework powered by Vite. From 4.0.17 until 4.1.6 and 5.0.0-beta.3, Vitest Browser Mode served /__vitest_test__/ with the otelCarrier

14 Jul 2026, 19:30 UTC View advisory →
CVE-2026-47423 High 8.2

DOMPurify is a DOM-only cross-site scripting sanitizer for HTML, MathML, and SVG. In 3.4.4, DOMPurify allowed selectedcontent by default, allowing browsers

14 Jul 2026, 19:56 UTC View advisory →
CVE-2026-47422 Medium 5.3

Frappe is a full-stack web application framework. Prior to 15.107.5 and 16.18.2, an endpoint in reportview lacked appropriate permission checks and that ha

10 Jul 2026, 21:09 UTC View advisory →
CVE-2026-47389 High 8.6

Mastodon is a free, open-source social network server based on ActivityPub. Prior to 4.5.10, 4.4.17, and 4.3.23, when using Ruby versions older than 3.4, P

24 Jun 2026, 19:41 UTC View advisory →
CVE-2026-47388 Low 2.3

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, a low-privilege MCP token holder with knowledge of an attachment path could

23 Jun 2026, 20:09 UTC View advisory →
CVE-2026-47387 High 8.4

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the shared form-view submit handler (packages/nc-gui/composables/useSharedFo

23 Jun 2026, 20:11 UTC View advisory →
CVE-2026-47386 Medium 6.3

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, two concurrent token-exchange requests using the same OAuth authorization co

23 Jun 2026, 20:12 UTC View advisory →
CVE-2026-47385 Medium 5.3

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, an authenticated user with base-create permission can attach a SQLite source

23 Jun 2026, 20:13 UTC View advisory →
CVE-2026-47384 Medium 5.3

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, an authenticated user with column-create permission can inject SQL into the

23 Jun 2026, 20:15 UTC View advisory →
CVE-2026-47383 High 7.4

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, an authenticated commenter could store HTML in row comments that executed as

23 Jun 2026, 20:15 UTC View advisory →
CVE-2026-47382 Medium 5.3

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the connection-test endpoint opened a raw TCP socket to the user-supplied da

23 Jun 2026, 20:19 UTC View advisory →
CVE-2026-47381 Medium 6.9

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, a user in one workspace could exercise another workspace's integration throu

23 Jun 2026, 20:17 UTC View advisory →
CVE-2026-47380 Medium 6.3

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, sign-in response timing differed between known and unknown email addresses b

23 Jun 2026, 20:33 UTC View advisory →
CVE-2026-47379 Medium 6.9

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the shared-view password check fell back to strict-equality (===) comparison

23 Jun 2026, 20:17 UTC View advisory →
CVE-2026-47378 Medium 6.9

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, Public shared-view endpoints exposed values from columns that the view owner

23 Jun 2026, 20:34 UTC View advisory →
CVE-2026-47377 Medium 5.1

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, the client-side hashRedirect plugin called window.location.replace() on a pa

23 Jun 2026, 20:35 UTC View advisory →
CVE-2026-47376 Medium 5.1

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, the password-reset page rendered the URL token directly into a JavaScript st

23 Jun 2026, 20:35 UTC View advisory →
CVE-2026-47375 Medium 6

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, an authenticated user with columnAdd permission on a Postgres-backed base ca

23 Jun 2026, 20:36 UTC View advisory →
CVE-2026-47305 High 7.8

Protection mechanism failure in Visual Studio allows an unauthorized attacker to execute code locally.

14 Jul 2026, 18:45 UTC View advisory →
CVE-2026-47304 High 8.1

Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature over a network.

14 Jul 2026, 18:45 UTC View advisory →
CVE-2026-47303 High 8.8

Authentication bypass by assumed-immutable data in ASP.NET Core allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 18:45 UTC View advisory →
CVE-2026-47302 High 7.5

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 18:45 UTC View advisory →
CVE-2026-47301 High 8.8

Improper access control in Microsoft Configuration Manager allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 18:45 UTC View advisory →
CVE-2026-47300 High 8.8

Incorrect implementation of authentication algorithm in ASP.NET Core allows an authorized attacker to elevate privileges over a network.

14 Jul 2026, 18:20 UTC View advisory →
CVE-2026-47296 High 7.8

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges loca

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-47295 High 8.8

Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-47290 High 7.8

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

14 Jul 2026, 17:08 UTC View advisory →
CVE-2026-47282 Medium 6.5

Insufficiently protected credentials in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-47279 Medium 6.9

NocoDB is software for building databases as spreadsheets. Prior to 2026.05.1, the public shared-view relation endpoints accepted a caller-supplied column

23 Jun 2026, 20:18 UTC View advisory →
CVE-2026-47276 Medium 6.5

In nanomq versions 0.24.11 and earlier, a NULL pointer dereference in `properties_parse()` allows an authenticated attacker to crash the NanoMQ broker by s

20 Jul 2026, 16:44 UTC View advisory →
CVE-2026-47275 Low 2.6

In nanomq versions 0.24.11 and earlier, a NULL pointer dereference in `nni_mqttv5_msg_decode_connect()` allows a malicious MQTT broker to crash any connect

20 Jul 2026, 16:43 UTC View advisory →
CVE-2026-47267 High 8.3

Gogs is an open source self-hosted Git service. Prior to 0.14.3, the fix for CVE-2022-1285 prevents adding webooks or running webhooks with URLs with a hos

24 Jun 2026, 20:09 UTC View advisory →
CVE-2026-47255 High 8.2

AgenticMail gives AI agents real email addresses and phone numbers. @agenticmail/api prior to version 0.9.32 and @agenticmail/core prior to version 0.9.10

20 Jul 2026, 21:56 UTC View advisory →
CVE-2026-47242 Medium 5.8

Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to 0.6.5 and 0.5.15, when Net::IMAP#id is called with a ha

22 Jun 2026, 20:19 UTC View advisory →
CVE-2026-47241 Low 2.1

Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to 0.6.5 and 0.5.15, several Net::IMAP commands accept a r

22 Jun 2026, 20:11 UTC View advisory →
CVE-2026-47240 Medium 5.8

Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to 0.6.5 and 0.5.15, several Net::IMAP commands accept a "

22 Jun 2026, 20:17 UTC View advisory →
CVE-2026-47221 Medium 5.9

Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.18.0 until 1.35.13, 1.36.9, 1.37.5, and 1.38.3, the router fi

26 Jun 2026, 17:35 UTC View advisory →
CVE-2026-47220 High 7.5

Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.37.0 until 1.37.5 and 1.38.3, when the %REQUESTED_SERVER_NAME

26 Jun 2026, 18:02 UTC View advisory →
CVE-2026-47214 High 7.1

Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. Prior to 2.94.0, the HTML ba

26 Jun 2026, 15:45 UTC View advisory →
CVE-2026-47212 Medium 6.9

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 6.4.40, 7.4.12, and 8.0.12, TwilioRequestParser:

14 Jul 2026, 19:00 UTC View advisory →
CVE-2026-47211 High 8.4

Ouroboros is a local-first runtime for AI coding agents that records their actions and applies user-defined policies to constrain behavior. In versions pri

03 Aug 2026, 20:01 UTC View advisory →
CVE-2026-47207 Medium 6.5

Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.34.0 until 1.35.13, 1.36.9, 1.37.5, and 1.38.3, Envoy crashes

26 Jun 2026, 17:52 UTC View advisory →
CVE-2026-47206 Low 2.3

Dragonfly is an in-memory data store built for modern application workloads. Prior to 1.39.9, Dragonfly has a RESP Protocol Injection via Lua redis.error_r

26 Jun 2026, 16:39 UTC View advisory →
CVE-2026-47205 Medium 5.9

Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.36.0 until 1.36.9, 1.37.5, and 1.38.3, a Use-After-Free (UAF)

26 Jun 2026, 18:01 UTC View advisory →
CVE-2026-47204 Medium 6.5

Envoy is an open source edge and service proxy designed for cloud-native applications. From 1.26.0 until 1.35.13, 1.36.9, 1.37.5, and 1.38.3, the envoy.fil

26 Jun 2026, 17:37 UTC View advisory →
CVE-2026-47199 Low 2.3

Frappe is a full-stack web application framework. Prior to 16.18.3 and 15.108.0, check_safe_sql_query permitted SELECT INTO OUTFILE queries, which could po

10 Jul 2026, 21:14 UTC View advisory →
CVE-2026-47198 High 8.5

Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.1, the checkout component improperly filt

20 Jul 2026, 20:18 UTC View advisory →
CVE-2026-47194 High 8.6

Frappe is a full-stack web application framework. Prior to 15.108.0 and 16.18.3, temporary magic login link generation can use an attacker-controlled reque

06 Aug 2026, 21:19 UTC View advisory →
CVE-2026-47193 High 7.5

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, the journal diff endpoint discloses hidden historical field

26 Jun 2026, 19:01 UTC View advisory →
CVE-2026-47185 Medium 5.1

Frappe is a full-stack web application framework. Prior to 16.18.0, the Workspace Save API accepts a controlled workspace identifier from any authenticated

06 Aug 2026, 21:08 UTC View advisory →
CVE-2026-47184 Medium 6.5

Zeroconf is a pure Python implementation of multicast DNS service discovery. Prior to 0.149.7, DNSCache._async_add inserted every response record into cach

17 Jul 2026, 18:25 UTC View advisory →
CVE-2026-47183 Medium 6.5

Zeroconf is a pure Python implementation of multicast DNS service discovery. Prior to 0.149.6, DNSIncoming._log_exception_debug and the four QuietLogger ex

17 Jul 2026, 18:22 UTC View advisory →
CVE-2026-47180 Medium 6.5

Zeroconf is a pure Python implementation of multicast DNS service discovery. Prior to 0.149.5, DNSIncoming._decode_labels_at_offset recurses once per DNS-n

17 Jul 2026, 18:21 UTC View advisory →
CVE-2026-47164 High 7.7

Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.36.0, Vaultwarden's SSO login flow checked the IdP email_verified claim only for n

15 Jul 2026, 15:03 UTC View advisory →
CVE-2026-47160 Medium 5.8

Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.36.0, Vaultwarden's /icons/{domain}/icon.png endpoint used src/http_client.rs chec

15 Jul 2026, 15:04 UTC View advisory →
CVE-2026-47159 Medium 6.9

Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.36.0, Vaultwarden's SSO discovery and pre-validation flow returned organization-re

15 Jul 2026, 15:02 UTC View advisory →
CVE-2026-47158 High 8.3

Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.36.0, Vaultwarden's SSO authorization flow did not bind the OAuth state parameter

15 Jul 2026, 15:01 UTC View advisory →
CVE-2026-47155 Medium 6.5

vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.22.0, vLLM's revision pinning controls do not consistently apply to al

22 Jun 2026, 22:20 UTC View advisory →
CVE-2026-47154 High 7.1

In EmberZNet v9.0.2 and earlier, a malformed GetProfileResponse message can trigger out-of-bounds reads while iterating interval entries and terminate the

25 Jun 2026, 13:43 UTC View advisory →
CVE-2026-47153 High 7.1

In EmberZNet v9.0.2 and earlier, a malformed Level Control Step command can terminate the process through a divide-by-zero fault. This command must come fr

25 Jun 2026, 13:42 UTC View advisory →
CVE-2026-47152 High 7.1

In EmberZNet v9.0.2 and earlier, a malformed Level Control Move command can terminate the process through a divide-by-zero fault. This command must come fr

25 Jun 2026, 13:41 UTC View advisory →
CVE-2026-47151 High 7.1

In EmberZNet v9.0.2 and earlier, malformed ClearWeekdaySchedule messages can trigger out-of-bounds writes into Door Lock schedule state. The size and locat

25 Jun 2026, 13:40 UTC View advisory →
CVE-2026-47150 High 7.1

In EmberZNet v9.0.2 and earlier, malformed IAS Zone enrollment messages can trigger an out-of-bounds state-table write and terminate the process. The size

25 Jun 2026, 13:39 UTC View advisory →
CVE-2026-47149 High 7.1

In EmberZNet v9.0.2 and earlier, malformed or out-of-range Door Lock user identifiers can trigger out-of-bounds table reads and terminate the process. Thes

25 Jun 2026, 13:38 UTC View advisory →
CVE-2026-47148 High 7.1

In EmberZNet v9.0.2 and earlier, malformed GetGroupMembership commands can trigger repeated reads past the end of the message payload and terminate the pro

25 Jun 2026, 13:37 UTC View advisory →
CVE-2026-47147 High 7.1

In EmberZNet v9.0.2 and earlier, malformed OTA requests can drive the OTA server parser into out-of-bounds reads. A limited amount of data from RAM is read

25 Jun 2026, 13:36 UTC View advisory →
CVE-2026-47146 High 7.1

In EmberZNet v9.0.2 and earlier, malformed Color Control messages can lead to asserts that terminate the process. These messages must come from a device th

25 Jun 2026, 13:35 UTC View advisory →
CVE-2026-47145 High 7.1

In EmberZNet v9.0.2 and earlier, malformed Color Control messages can lead to asserts that terminate the process. These messages must come from a device th

25 Jun 2026, 13:34 UTC View advisory →
CVE-2026-47144 Medium 5.5

Shamefile is a linter for undocumented linter warnings. Prior to version 0.1.7, a path traversal vulnerability in `shame next` allows an attacker-controlle

20 Jul 2026, 21:49 UTC View advisory →
CVE-2026-47134 Medium 6.9

ClearanceKit intercepts file-system access events on macOS and enforces per-process access policies. The ECDSA private key used to sign the on-disk policy

20 Jul 2026, 21:17 UTC View advisory →
CVE-2026-47133 Medium 6.9

ClearanceKit intercepts file-system access events on macOS and enforces per-process access policies. Prior to version 5.0.10, each table in the on-disk SQL

20 Jul 2026, 21:12 UTC View advisory →
CVE-2026-47130 High 7.1

NextCRM is open-source customer relationship management (CRM) software. Versions prior to 0.12.0 have a Broken Object Level Authorization (BOLA/IDOR) vulne

20 Jul 2026, 20:49 UTC View advisory →
CVE-2026-47129 High 8.1

NextCRM is open-source customer relationship management (CRM) software. Versions prior to 0.12.0 have a Broken Access Control (BAC) vulnerability in the `a

20 Jul 2026, 20:34 UTC View advisory →
CVE-2026-47128 Medium 6.1

nono is software that allows users to run AI agents in a zero-latency sandbox. Prior to version 0.55.0, the nono Landlock/seccomp policies allow access to

20 Jul 2026, 21:46 UTC View advisory →
CVE-2026-47110 High 7.1

Tiptap for PHP before version 2.1.1 contains an input validation vulnerability that allows authenticated attackers to cause a denial of service by submitti

24 Jun 2026, 21:21 UTC View advisory →
CVE-2026-47105 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

01 Jul 2026 View advisory →
CVE-2026-47093 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

25 Jun 2026 View advisory →
CVE-2026-47078 Medium 4.8

Relative Path Traversal vulnerability in Erlang OTP (stdlib zip module) allows writing files outside the intended extraction directory via a crafted zip ar

27 Jul 2026, 15:03 UTC View advisory →
CVE-2026-46752 Critical 10

Redis Lua HEAP overflow in cjson library vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: from 2.0.4 through 2.15.0. Users are recommend

25 Jun 2026, 08:00 UTC View advisory →
CVE-2026-46751 Medium 5.5

A vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: from 2.2.0 through 2.15.0. Users are recommended to upgrade to version 2.16.0, which

25 Jun 2026, 08:01 UTC View advisory →
CVE-2026-46738 Critical 9.1

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attack

22 Jul 2026, 15:34 UTC View advisory →
CVE-2026-46737 Medium 6.7

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attack

22 Jul 2026, 15:49 UTC View advisory →
CVE-2026-46735 High 7.8

Dell Display and Peripheral Manager (DDPM Mac), versions prior to 2.3, contain an Improper Neutralization of Special Elements used in an OS Command ('OS Co

25 Jun 2026, 13:48 UTC View advisory →
CVE-2026-46734 High 7.3

Dell Display and Peripheral Manager (DDPM Mac), versions prior to 2.3, contain an Improper Certificate Validation vulnerability. A low privileged attacker

25 Jun 2026, 13:43 UTC View advisory →
CVE-2026-46733 High 7.8

Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3, contain an Improper Access Control vulnerability. A low privileged attacker with

25 Jun 2026, 13:17 UTC View advisory →
CVE-2026-46732 Medium 6.7

Dell Display and Peripheral Manager (DDPM Mac), versions prior to 2.3, contain a Concurrent Execution using Shared Resource with Improper Synchronization (

25 Jun 2026, 13:36 UTC View advisory →
CVE-2026-46715 Medium 5.3

Flask-Security-Too allows users to add security features to their Flask applicationa. Version 5.8.0's OAuth reauthentication flow can mark a session as fre

20 Jul 2026, 17:10 UTC View advisory →
CVE-2026-46714 Medium 5.1

Misskey is an open source, federated social media platform. IVersions 8.63.0 and later, but prior to 2026.5.4, contain a vulnerability that can cause the M

03 Aug 2026, 21:58 UTC View advisory →
CVE-2026-46713 Critical 9.2

Misskey is an open source, federated social media platform. Versions 12.37.0 and later, but prior to 2026.5.4, contain a vulnerability in the JSON-LD signa

03 Aug 2026, 21:37 UTC View advisory →
CVE-2026-46712 Low 2.3

Misskey is an open source, federated social media platform. Versions 2025.3.2 and later, but prior to 2026.5.4, contain a vulnerability where a lack of pro

03 Aug 2026, 21:29 UTC View advisory →
CVE-2026-46710 High 7.5

Notepad++ is a free and open-source source code editor. From 8.9.4 until 8.9.6, Notepad++ contains a local privilege escalation vulnerability in the instal

26 Jun 2026, 20:16 UTC View advisory →
CVE-2026-46709 High 7.8

Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.234, Tabby inserts dropped file paths from tabby-electron/src/pathDrop.t

15 Jul 2026, 14:59 UTC View advisory →
CVE-2026-46701 High 7.6

Network-AI is a TypeScript/Node.js multi-agent orchestrator. Prior to version 5.4.5, the MCP SSE server defaults to an empty secret (`process.env['NETWORK_

20 Jul 2026, 16:33 UTC View advisory →
CVE-2026-46700 Medium 4.3

Actual is a local-first personal finance tool. Prior to 26.6.0, the GET /secret/:name endpoint in @actual-app/sync-server checks only that the caller has a

07 Jul 2026, 20:56 UTC View advisory →
CVE-2026-46687 High 7.7

Emlog is an open source website building system. In 2.6.13 and earlier, the article publishing interface stores a path-traversal template parameter from ap

16 Jul 2026, 17:01 UTC View advisory →
CVE-2026-46686 High 8.5

Emlog is an open source website building system. In 2.6.13 and earlier, the admin backend user search module's keyword parameter from admin/user.php is pro

16 Jul 2026, 16:59 UTC View advisory →
CVE-2026-46684 Critical 9.5

DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase enterprise token handling can let TokenFilter#doFilter() pass X

15 Jul 2026, 19:41 UTC View advisory →
CVE-2026-46672 Medium 4.6

Actual is a local-first personal finance app. Prior to 26.6.0, @actual-app/cli ships a hand-rolled CSV serializer in packages/cli/src/output.ts used whenev

07 Jul 2026, 20:55 UTC View advisory →
CVE-2026-46671 Medium 4.4

Rust OneNote File Parser is a parser for Microsoft OneNote files implemented in Rust. Prior to version 1.1.1, a maliciously crafted `.onetoc2` table-of-con

20 Jul 2026, 15:56 UTC View advisory →
CVE-2026-46644 Medium 6.9

Symfony Polyfill backports PHP features and provides compatibility layers for extensions and functions. From 1.17.1 until 1.38.1, symfony/polyfill-intl-idn

14 Jul 2026, 20:48 UTC View advisory →
CVE-2026-46640 High 8.7

Twig is a template language for PHP. From 3.15.0 until 3.26.0, _self.() and import-alias dynamic attribute syntax can concatenate an attacker-controlled st

14 Jul 2026, 21:22 UTC View advisory →
CVE-2026-46639 High 7.1

Twig is a template language for PHP. From 3.24.0 until 3.26.0, object-destructuring assignment compiles CoreExtension::getAttribute() with the sandbox argu

14 Jul 2026, 21:13 UTC View advisory →
CVE-2026-46638 Medium 6

Twig is a template language for PHP. Prior to 3.26.0, {% sandbox %}{% include %} can include a template that was previously loaded outside the sandbox with

14 Jul 2026, 21:23 UTC View advisory →
CVE-2026-46637 Medium 5.1

Twig is a template language for PHP. Prior to 3.26.0, several filters in twig/markdown-extra and twig/cssinliner-extra are registered with is_safe => [all]

14 Jul 2026, 21:25 UTC View advisory →
CVE-2026-46635 Medium 5.3

Twig is a template language for PHP. Prior to 3.26.0, the column filter passes object arrays to PHP array_column(), which reads public and magic properties

14 Jul 2026, 21:12 UTC View advisory →
CVE-2026-46634 High 7.7

Twig is a template language for PHP. From 3.9.0 until 3.26.0, template_from_string() compiles an inner template under a synthesized __string_template__ nam

14 Jul 2026, 21:19 UTC View advisory →
CVE-2026-46633 High 8.7

Twig is a template language for PHP. Prior to 3.26.0, Compiler::string() does not escape single quotes when a template name from a {% use %} tag is placed

14 Jul 2026, 21:14 UTC View advisory →
CVE-2026-46629 Medium 5.3

Twig is a template language for PHP. Prior to 3.26.0, twig/intl-extra memoises IntlDateFormatter and NumberFormatter instances in arrays keyed by template-

14 Jul 2026, 21:22 UTC View advisory →
CVE-2026-46628 Medium 5.1

Twig is a template language for PHP. Prior to 3.26.0, the deprecated spaceless filter is registered as safe for HTML, causing Twig autoescaping to emit att

14 Jul 2026, 21:19 UTC View advisory →
CVE-2026-46627 High 7.1

Twig is a template language for PHP. Prior to 3.26.0, the Twig sandbox does not prevent a template from consuming CPU, memory, or wall-clock time, even und

14 Jul 2026, 21:15 UTC View advisory →
CVE-2026-46621 Critical 9.1

Yamcs is a mission control framework. Prior to 5.12.7, the Yamcs script evaluation engine for Python algorithms dynamically compiled and evaluated user-con

16 Jul 2026, 16:07 UTC View advisory →
CVE-2026-46611 Medium 5.3

Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.5, the Glances XML-RPC server (glances -s, implemented in glances/server.py)

25 Jun 2026, 18:00 UTC View advisory →
CVE-2026-46608 High 7.4

Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.5, the Glances XML-RPC server (glances -s) introduced a configurable CORS ori

25 Jun 2026, 18:05 UTC View advisory →
CVE-2026-46607 High 7.8

Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.5, glances/outdated.py uses pickle.load() to read a version-check cache file

25 Jun 2026, 18:04 UTC View advisory →
CVE-2026-46606 High 7.8

Glances is an open-source system cross-platform monitoring tool. Prior to 4.5.5, the Glances KVM/QEMU monitoring engine (glances/plugins/vms/engines/virsh.

25 Jun 2026, 18:02 UTC View advisory →
CVE-2026-46604 Unscored

The TIFF decoder can panic when decoding an invalid image with an out-of-bounds strip offset.

26 Jun 2026, 20:22 UTC View advisory →
CVE-2026-46602 Unscored

The TIFF decoder does not set a limit on the size of tiles in tiled images, permitting a malicious or corrupt image containing a very large tile to cause u

25 Jun 2026, 19:47 UTC View advisory →
CVE-2026-46601 Unscored

The webp decoder can panic when processing a VP8 chunk with dimensions that do not match the canvas size.

25 Jun 2026, 19:47 UTC View advisory →
CVE-2026-46594 Medium 5.1

A reflected cross-site scripting (XSS) vulnerability has been identified in the PHP Jabbers - PHP Poll Script. A malicious attacker can craft a specially c

31 Jul 2026, 11:40 UTC View advisory →
CVE-2026-46593 High 8.6

A SQL injection vulnerability has been identified in the PHP Jabbers - PHP Poll Script. Improper neutralization of input provided by user to pjAdminPolls.c

31 Jul 2026, 11:40 UTC View advisory →
CVE-2026-46582 Low 3.7

In NLnet Labs Unbound 1.6.0 up to and including 1.25.1, a replay of a wildcard rrset as another piece of data, could be briefly considered DNSSEC secure ba

22 Jul 2026, 13:07 UTC View advisory →
CVE-2026-46581 High 7.5

In Eclipse Mojarra versions 2.3 and following, URL handing in `DefaultFaceletFactory` does not properly sanitize and/or block remote URLs, allowing an atta

05 Aug 2026, 11:09 UTC View advisory →
CVE-2026-46562 Critical 9.8

Yamcs is a mission control framework. Prior to 5.12.7, the Nashorn ScriptEngine used to evaluate user-supplied JavaScript algorithm text in yamcs-core/src/

16 Jul 2026, 16:06 UTC View advisory →
CVE-2026-46555 High 7.7

WhatsApp MCP Server is a Model Context Protocol (MCP) server for WhatsApp, enabling Claude to read and send WhatsApp messages. Prior to version 0.2.1, the

20 Jul 2026, 17:06 UTC View advisory →
CVE-2026-46554 Low 2.3

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.4, deleted API tokens continued to authenticate requests until their cache entr

23 Jun 2026, 20:30 UTC View advisory →
CVE-2026-46553 Low 2.1

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, the upload-by-URL path did not enforce NC_ATTACHMENT_FIELD_SIZE against eith

23 Jun 2026, 20:37 UTC View advisory →
CVE-2026-46552 Medium 5.8

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, shared-base sessions were granted the same base-member capabilities as authe

23 Jun 2026, 20:38 UTC View advisory →
CVE-2026-46551 Medium 6.5

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.4, the uploadViaURL path in the v1/v2 attachment API did not enforce NC_ATTACHM

23 Jun 2026, 20:31 UTC View advisory →
CVE-2026-46550 Medium 5.4

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, the refresh-token cookie was set with httpOnly: true but missing both the se

23 Jun 2026, 20:39 UTC View advisory →
CVE-2026-46549 Low 2

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, the OAuth token strategy attached oauth_scope and oauth_granted_resources to

23 Jun 2026, 20:40 UTC View advisory →
CVE-2026-46548 Medium 4.3

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, the request-filtering-agent SSRF protection was non-functional in the four n

23 Jun 2026, 20:41 UTC View advisory →
CVE-2026-46547 Medium 6.1

NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, a reflected XSS vulnerability exists in the Page Leaving Warning page. The n

23 Jun 2026, 20:42 UTC View advisory →
CVE-2026-46516 Medium 4.8

Frogman provides headless FreePBX control. Prior to version 1.6.6, Frogman's chat-console markdown formatter (`assets/js/chat.js`'s `formatMarkdown`) inser

20 Jul 2026, 14:23 UTC View advisory →
CVE-2026-46515 Critical 9.3

Frogman provides headless PBX control through MCP and HTTP API. Prior to 1.6.3, PERM_READ access was sufficient to call fm_list_managers, fm_list_pinsets,

16 Jul 2026, 18:17 UTC View advisory →
CVE-2026-46514 Medium 6.5

Frogman provides headless PBX control through MCP and HTTP API. Prior to 1.6.2, fm_reset_password in Tools/ResetPassword.php:48-53 returned a plaintext pas

16 Jul 2026, 18:11 UTC View advisory →
CVE-2026-46513 High 7.4

Frogman provides headless PBX control through MCP and HTTP API. Prior to 1.6.2, Frogman stored API tokens generated by Tools/CreateApiToken.php:33-36 as ra

16 Jul 2026, 18:14 UTC View advisory →
CVE-2026-46512 Critical 9.9

Frogman provides headless PBX control through MCP and HTTP API. Prior to 1.6.2, fm_dialplan_apply accepted template parameters including greeting, dest, ur

16 Jul 2026, 18:15 UTC View advisory →
CVE-2026-46485 High 8.2

Dashy is a self-hostable personal dashboard. Prior to 4.0.8, Dashy deployments using OIDC can allow unauthenticated users or non-admin authenticated users

15 Jul 2026, 18:08 UTC View advisory →
CVE-2026-46459 Medium 5.3

ICU Scandinavia Boomerang is vulnerable to a missing authentication flaw in its device receiver endpoints. This allows an unauthenticated remote attacker t

15 Jul 2026, 12:51 UTC View advisory →
CVE-2026-46458 High 7.1

ICU Scandinavia Boomerang is vulnerable to an information disclosure flaw where sensitive credential files are exposed via static HTTP. This allows an unau

15 Jul 2026, 12:51 UTC View advisory →
CVE-2026-46428 Critical 9.1

lettre is a a mailer library for Rust. Starting in version 0.10.1 and prior to version 0.11.22, an inverted-boolean bug in lettre's `boring-tls` integratio

20 Jul 2026, 15:37 UTC View advisory →
CVE-2026-46423 Critical 9.3

Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, 8.4.1, 8.3.3, 8.2.3, 8.1.4, 8.0.5, 7.13.7, and 7.10.11,

24 Jun 2026, 20:58 UTC View advisory →
CVE-2026-46421 Critical 9.3

The SAP Cloud Application Programming Model is a tool for building enterprise-grade cloud applications, and cap-js/cds-dbs is the monorepo for SQL database

15 Jul 2026, 18:52 UTC View advisory →
CVE-2026-46420 Medium 5.6

setup-php is a GitHub action to set up PHP with extensions, php.ini configuration, coverage drivers, and tools. From 2.25.0 prior to 2.37.1, shivammathur/s

17 Jul 2026, 19:51 UTC View advisory →
CVE-2026-46417 High 8.8

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 22.0.0-next.12

22 Jun 2026, 15:40 UTC View advisory →
CVE-2026-46415 High 8.2

The Caddy Defender plugin is a middleware for Caddy that allows users to block or manipulate requests based on the client's IP address. Prior to version 0.

20 Jul 2026, 15:05 UTC View advisory →
CVE-2026-46412 Critical 10

@beproduct/nestjs-auth is a NestJS authentication module for BeProduct IDS (Identity Server) with OpenID Connect support. Between 2026-05-11 20:19 UTC and

20 Jul 2026, 14:31 UTC View advisory →
CVE-2026-46410 High 8.7

FileBrowser Quantum is a free, self-hosted, web-based file manager. Versions prior to 1.3.2-stable and 1.4.1-beta may leak some sensitive info, such as sou

20 Jul 2026, 14:15 UTC View advisory →
CVE-2026-46406 Medium 4.4

Claude Code is an agentic coding tool. From 2.1.59 until 2.1.128, the Claude Code /copy command wrote responses to a hardcoded, predictable path (/tmp/clau

29 Jun 2026, 14:03 UTC View advisory →
CVE-2026-46404 Medium 6.8

BigBlueButton is an open-source virtual classroom. Prior to 3.0.23, the presentation URL validation did not properly restrict access to site local and link

16 Jul 2026, 18:04 UTC View advisory →
CVE-2026-46388 Medium 4.4

osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. Prior to 5.23.1, an unprivileged attacker can read the cont

10 Jul 2026, 14:44 UTC View advisory →
CVE-2026-46386 Critical 9.9

OpenProject is open-source, web-based project management software. Prior to , the official openproject/openproject Docker image ships ENV SECRET_KEY_BASE=O

26 Jun 2026, 19:26 UTC View advisory →
CVE-2026-46378 Medium 6.2

Dasel is a command-line tool and library for querying, modifying, and transforming data structures. From 3.0.0 until 3.10.1, the selector lexer matchRegexP

16 Jul 2026, 17:54 UTC View advisory →
CVE-2026-46377 Medium 6.2

Dasel is a command-line tool and library for querying, modifying, and transforming data structures. From 3.0.0 until 3.10.1, the escape sequence handler in

16 Jul 2026, 17:57 UTC View advisory →
CVE-2026-46354 Critical 9.1

Coder allows organizations to provision remote development environments via Terraform. In versions prior tp 2.24.5, 2.29.13, 2.30.8, 2.31.12, 2.32.2, and 2

07 Jul 2026, 21:10 UTC View advisory →
CVE-2026-46353 High 8.1

BigBlueButton is an open-source virtual classroom. Prior to 3.0.21, bbb-web checksum validation could be bypassed when a presentationUploadExternalUrl para

16 Jul 2026, 18:06 UTC View advisory →
CVE-2026-46351 High 8.1

BigBlueButton is an open-source virtual classroom. Prior to 3.0.21, bbb-web generated conference sessionToken values with insufficiently secure randomness

16 Jul 2026, 17:58 UTC View advisory →
CVE-2026-46349 Medium 5.3

Mastodon is a free, open-source social network server based on ActivityPub. Prior to 4.5.10, 4.4.17, and 4.3.23, Mastodon's normalization of incoming activ

24 Jun 2026, 19:40 UTC View advisory →
CVE-2026-46348 High 8.7

Mastodon is a free, open-source social network server based on ActivityPub. Prior to 4.5.10, 4.4.17, and 4.3.23, the list of disallowed IP address ranges w

24 Jun 2026, 19:39 UTC View advisory →
CVE-2026-46341 Medium 6.1

The Apify MCP server enables AI agents to extract data from websites using ready-made scrapers, crawlers, and automation tools available on the Apify Store

16 Jul 2026, 16:54 UTC View advisory →
CVE-2026-46339 Critical 10

9Router is an AI router & token saver. From 0.4.30 until 0.4.37, 9Router's src/proxy.js middleware did not protect /api/cli-tools/* and /api/mcp/*, allowin

15 Jul 2026, 20:41 UTC View advisory →
CVE-2026-46338 Medium 4.3

PyMdown Extensions is a set of extensions for the Python-Markdown markdown project. From 10.0.1 until 10.21.3, pymdownx.snippets uses a string-prefix conta

16 Jul 2026, 18:24 UTC View advisory →
CVE-2026-46336 High 7.1

Manyfold is an open source, self-hosted web application for managing a collection of 3d models, particularly focused on 3d printing. From 0.96.0 until 0.14

16 Jul 2026, 17:04 UTC View advisory →
CVE-2026-46334 High 8.7

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions prior to 3.6.6 and 4.0.0-rc1 contain a denial of service vulnerability in t

04 Aug 2026, 23:50 UTC View advisory →
CVE-2026-45822 Medium 6.6

decode-uri-component through 0.4.1 is vulnerable to denial of service. The decode() function splits input on '%' producing N tokens and calls decodeCompone

30 Jun 2026, 08:05 UTC View advisory →
CVE-2026-45809 High 8.7

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions prior to 3.6.6 and 4.0.0-rc1 contain a denial of service vulnerability in t

04 Aug 2026, 23:30 UTC View advisory →
CVE-2026-45807 High 7.7

Kestra is an open-source, event-driven orchestration platform. Prior to 1.0.43 and 1.3.19, several Kestra API endpoints accept a kestra:// URI from the cli

26 Jun 2026, 20:57 UTC View advisory →
CVE-2026-45806 High 7.7

Penpot is an open-source design tool for design and code collaboration. Prior to 2.15.0, Penpot's remote image import passed the user-controlled url from f

15 Jul 2026, 15:05 UTC View advisory →
CVE-2026-45805 High 8.8

Penpot is an open-source design tool for design and code collaboration. Prior to 2.15.0, Penpot MCP's mcp/packages/server/src/ReplServer.ts bound the ReplS

15 Jul 2026, 15:11 UTC View advisory →
CVE-2026-45804 High 7.5

Diffusers is the a library for pretrained diffusion models. Prior to 0.38.0, Diffusers' DiffusionPipeline.from_pretrained flow can bypass the trust_remote_

15 Jul 2026, 16:05 UTC View advisory →
CVE-2026-45799 High 7.5

Wire provides gRPC and protocol buffers for Android, Kotlin, Swift, and Java. Prior to 6.3.0 and 7.0.0-alpha03, ByteArrayProtoReader32.skipGroup() and Prot

17 Jul 2026, 19:49 UTC View advisory →
CVE-2026-45797 Medium 6.4

HeyForm is an open-source form builder. Prior to version 3.0.0-rc.7, the `/api/upload` endpoint allows unauthenticated file uploads including SVG files. Up

20 Jul 2026, 15:43 UTC View advisory →
CVE-2026-45796 Medium 6.5

Coder allows organizations to provision remote development environments via Terraform. Versions prior tp 2.24.5, 2.29.13, 2.30.8, 2.31.12, 2.32.2, and 2.33

07 Jul 2026, 21:03 UTC View advisory →
CVE-2026-45795 Medium 5.3

The Janssen Project is an open-source identity and access management (IAM) platform. Prior to 2.0.0, jans-auth-server accepts unsigned JWE request objects

16 Jul 2026, 16:35 UTC View advisory →
CVE-2026-45793 High 7.5

Composer is a dependency Manager for the PHP language. Prior to 1.10.28, 2.2.28, and 2.9.8, Composer\IO\BaseIO::loadConfiguration() validates GitHub OAuth

15 Jul 2026, 16:22 UTC View advisory →
CVE-2026-45792 Medium 6.9

rtk filters and compresses command outputs before they reach your LLM context. Prior to 0.32.0, RTK (Rust Token Killer) improperly trusts project-local con

23 Jun 2026, 19:02 UTC View advisory →
CVE-2026-45785 Medium 6.2

OpenMcdf is a fully .NET / C# library to manipulate Compound File Binary File Format files, also known as Structured Storage. In 3.1.3 and earlier, the BST

17 Jul 2026, 20:37 UTC View advisory →
CVE-2026-45784 Medium 5.1

rust-openssl provides OpenSSL bindings for the Rust programming language. From 0.10.50 until 0.10.80, CipherCtxRef::cipher_update_inplace in openssl/src/ci

17 Jul 2026, 20:26 UTC View advisory →
CVE-2026-45757 Low 2.3

Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, 8.4.2, 8.3.4, 8.2.4, 8.1.5, 8.0.6, 7.13.8, and 7.10.12,

24 Jun 2026, 21:01 UTC View advisory →
CVE-2026-45756 High 8.2

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 7.3.0-BETA1 until 7.4.12 and 8.0.12, the JsonPath co

14 Jul 2026, 17:57 UTC View advisory →
CVE-2026-45755 Medium 6.9

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 7.4.12 and 8.0.12, MailtrapRequestParser::doPars

14 Jul 2026, 18:56 UTC View advisory →
CVE-2026-45754 Medium 6.9

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 6.4.40, 7.4.12, and 8.0.12, the Mailjet mailer b

14 Jul 2026, 18:54 UTC View advisory →
CVE-2026-45753 Low 2.1

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 6.1.0-BETA1 until 6.4.40, 7.4.12, and 8.0.12, UrlAtt

14 Jul 2026, 18:21 UTC View advisory →
CVE-2026-45738 High 7.3

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Prior to 3.2.12, 3.3.10, and 3.4.2, Argo CD users with application write access c

15 Jul 2026, 19:54 UTC View advisory →
CVE-2026-45737 Medium 6.3

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. From 3.2.0 until 3.2.12, 3.3.10, and 3.4.2, Argo CD ServerSideDiff can expose Kub

15 Jul 2026, 20:00 UTC View advisory →
CVE-2026-45732 High 8.3

n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7, the OAuth1 and OAuth2 credential reconnect endpoints authorized

23 Jun 2026, 15:52 UTC View advisory →
CVE-2026-45713 High 7.5

Mailpit is an email testing tool and API for developers. Prior to version 1.30.0, the Mailpit SMTP server has a Server.MaxSize int field that controls the

20 Jul 2026, 15:01 UTC View advisory →
CVE-2026-45712 Medium 5.9

Mailpit is an email testing tool and API for developers. Prior to version 1.30.0, the screenshot/print proxy (/proxy?data=…) maintains a package-level asse

20 Jul 2026, 14:59 UTC View advisory →
CVE-2026-45711 Medium 5.9

Mailpit is an email testing tool and API for developers. Prior to version 1.30.0, the mailpit dump --http sub-command downloads every message from a remote

20 Jul 2026, 14:39 UTC View advisory →
CVE-2026-45709 Medium 5.8

Mailpit is an email testing tool and API for developers. The fix for GHSA-6jxm-fv7w-rw5j (CVE-2026-23845, "Server-Side Request Forgery (SSRF) via HTML Chec

20 Jul 2026, 14:37 UTC View advisory →
CVE-2026-45705 Medium 5.3

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions prior to 3.6.6 and 4.0.0-rc1, the find_line_delimiter() function in the

04 Aug 2026, 23:16 UTC View advisory →
CVE-2026-45704 High 7.1

Pimcore is an Open Source Data & Experience Management Platform. Prior to 11.5.17 (LTS) and 12.3.6, CustomReports uses inconsistent authorization between t

17 Jul 2026, 19:12 UTC View advisory →
CVE-2026-45703 Medium 6.4

Pimcore is an Open Source Data & Experience Management Platform. Prior to 11.5.17 (LTS) and 12.3.7, the WordExport export flow in bundles/WordExportBundle/

17 Jul 2026, 18:52 UTC View advisory →
CVE-2026-45695 Critical 9.8

Kopia is a cross-platform backup tool for Windows, macOS, and Linux with fast incremental backups, client-side end-to-end encryption, compression, and data

16 Jul 2026, 15:42 UTC View advisory →
CVE-2026-45692 Medium 5.4

Caddy is an extensible server platform that uses TLS by default. From 2.4.0 until 2.11.3, the authorization layer and the /config traversal layer do not ag

23 Jun 2026, 17:55 UTC View advisory →
CVE-2026-45689 Critical 9.1

Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, 8.4.1, 8.3.3, 8.2.3, 8.1.4, 8.0.5, 7.13.7, and 7.10.11,

24 Jun 2026, 20:57 UTC View advisory →
CVE-2026-45688 Critical 9.1

Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, 8.4.1, 8.3.3, 8.2.3, 8.1.4, 8.0.5, 7.13.7, and 7.10.11,

24 Jun 2026, 20:56 UTC View advisory →
CVE-2026-45687 High 8.5

Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, 8.4.1, 8.3.3, 8.2.3, 8.1.4, 8.0.5, 7.13.7, and 7.10.11,

24 Jun 2026, 20:55 UTC View advisory →
CVE-2026-45677 High 8.7

Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.0, 8.4.1, 8.3.3, 8.2.3, 8.1.4, 8.0.5, 7.13.7, and 7.10.11,

24 Jun 2026, 20:54 UTC View advisory →
CVE-2026-45646 High 7.5

Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-45623 High 7.5

PostCSS takes a CSS file and provides an API to analyze and modify its rules by transforming the rules into an Abstract Syntax Tree. In versions 8.5.11 and

27 Jul 2026, 17:23 UTC View advisory →
CVE-2026-45612 Medium 5.5

rz-libdemangle is a Rizin library for demangling symbols. Prior to 6bf56d3, the Rust demangler in src/rust/rust_v0.c can perform an out-of-bounds read when

16 Jul 2026, 16:34 UTC View advisory →
CVE-2026-45576 High 8.3

zrok is software for sharing web services, files, and network resources. From 0.4.23 until 2.0.3, `zrok2 copy` stores attacker-controlled WebDAV or zrok dr

16 Jul 2026, 16:45 UTC View advisory →
CVE-2026-45573 Medium 6.4

Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.32.0.rc2, when VAPID delivery is ena

06 Aug 2026, 20:14 UTC View advisory →
CVE-2026-45572 Medium 4.8

Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.32.0.rc2, an administrator with land

06 Aug 2026, 20:10 UTC View advisory →
CVE-2026-45568 Critical 9.9

zrok is software for sharing web services, files, and network resources. Prior to 2.0.3, zrok's Python SDK ProxyShare Flask proxy route accepts an absolute

16 Jul 2026, 16:45 UTC View advisory →
CVE-2026-45538 Critical 9.8

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions 4.0.0 and prior, processing a SIP message with a header name longer than

04 Aug 2026, 20:47 UTC View advisory →
CVE-2026-45537 Critical 9.1

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions prior to 3.6.6 and 4.0.0-rc1, the construct_uri() function concatenates

04 Aug 2026, 22:48 UTC View advisory →
CVE-2026-45535 High 8.7

DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase SQL-type datasets store attacker-controlled SQL variable defaul

15 Jul 2026, 19:39 UTC View advisory →
CVE-2026-45534 Critical 9

DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase Redshift datasource connections can load attacker-controlled rs

15 Jul 2026, 19:19 UTC View advisory →
CVE-2026-45533 High 8.3

DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase export-center deletion can accept path traversal sequences such

15 Jul 2026, 19:39 UTC View advisory →
CVE-2026-45499 Critical 9.9

Server-side request forgery (ssrf) in Azure OpenAI allows an authorized attacker to elevate privileges over a network.

02 Jul 2026, 22:18 UTC View advisory →
CVE-2026-45496 Medium 5.5

Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an unauthorized attacker to bypass a security f

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-45419 High 8.5

DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase template saves call TemplateManageService#save, StaticResourceS

15 Jul 2026, 19:21 UTC View advisory →
CVE-2026-45417 High 8.7

DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase datasource connection status checks concatenate configuration.g

15 Jul 2026, 19:20 UTC View advisory →
CVE-2026-45415 Medium 6

Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.32.0.rc2, the /admin/csv_census/cens

06 Aug 2026, 19:33 UTC View advisory →
CVE-2026-45414 High 8.5

Decidim is a participatory democracy framework. Prior to 0.31.5 and in 0.32.0.rc1 before 0.32.0.rc2, JWT-backed API authentication is not bound to the orga

06 Aug 2026, 19:17 UTC View advisory →
CVE-2026-45408 Critical 9

Dokku is a docker-powered PaaS. Prior to 0.38.2, the app name validation regex (^[a-z0-9][^/:_A-Z]*$) permits shell metacharacters. When an authenticated u

26 Jun 2026, 16:19 UTC View advisory →
CVE-2026-45407 Medium 5

Dokku is a docker-powered PaaS. Prior to 0.38.2, the git:auth command creates $DOKKU_ROOT/.netrc using bash's touch command, which applies the default umas

26 Jun 2026, 16:21 UTC View advisory →
CVE-2026-45406 Critical 9

Dokku is a docker-powered PaaS. Prior to 0.38.2, the openresty-vhosts plugin copies files from an app's openresty/http-includes/ git repository directory t

26 Jun 2026, 16:22 UTC View advisory →
CVE-2026-45405 Critical 9

Dokku is a docker-powered PaaS. Prior to 0.38.2, the git:from-archive and certs:add commands extract user-supplied tar/zip archives into temporary director

26 Jun 2026, 16:23 UTC View advisory →
CVE-2026-45378 High 7.5

Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.32.0.rc2, the identity-document veri

06 Aug 2026, 20:15 UTC View advisory →
CVE-2026-45377 Medium 6.5

Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.32.0.rc2, the normal download_your_d

31 Jul 2026, 22:58 UTC View advisory →
CVE-2026-45376 Medium 5.5

Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.32.0.rc2, the GET /admin/organizatio

31 Jul 2026, 22:34 UTC View advisory →
CVE-2026-45368 High 8.4

Kirby is an open-source content management system. In versions prior to 4.9.1 and 5.4.1, the underlying URL methods for the KirbyTags and image blocks comp

16 Jul 2026, 21:49 UTC View advisory →
CVE-2026-45367 High 7.5

HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.7, the FHIRPathEngine implementation

16 Jul 2026, 16:52 UTC View advisory →
CVE-2026-45363 Critical 9.1

ruby-jwt is a Ruby implementation of the RFC 7519 OAuth JSON Web Token standard. Prior to 2.10.3 and 3.2.0, JWT.decode(token, '', true, algorithm: 'HS256')

14 Jul 2026, 21:32 UTC View advisory →
CVE-2026-45337 High 7.6

Better Auth is an authentication and authorization library for TypeScript. From 1.6.0 until 1.6.11, the deviceAuthorization plugin treats any authenticated

15 Jul 2026, 17:31 UTC View advisory →
CVE-2026-45336 Critical 10

HireFlow is a web-based interview management system for managing candidates, scheduling interviews, and tracking hiring progress. In 1.2 and earlier, app.p

16 Jul 2026, 17:03 UTC View advisory →
CVE-2026-45334 Medium 5.3

Kirby is an open-source content management system. In versions prior to 4.9.1 and 5.4.1, the content-locking feature returned lock information without chec

16 Jul 2026, 21:42 UTC View advisory →
CVE-2026-45330 Medium 4.9

Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.32.0.rc2, the identity-document veri

31 Jul 2026, 22:05 UTC View advisory →
CVE-2026-45325 High 8.2

Gestor de Oferta is a web application for managing mobility service offerings. Prior to 20260509.0340.15, @tmlmobilidade/utils has a prototype pollution vu

16 Jul 2026, 16:41 UTC View advisory →
CVE-2026-45320 High 8.7

DataEase is an open source data visualization and analysis tool. Prior to 2.10.23, DataEase dashboard SQL variables such as ${deptId} are processed by Sqlp

15 Jul 2026, 19:40 UTC View advisory →
CVE-2026-45313 High 7.7

Sandboxie-Plus is an open source sandbox-based isolation software for Windows. Prior to 1.17.6, GuiServer::WndHookRegisterSlave in Sandboxie/core/svc/GuiSe

15 Jul 2026, 21:21 UTC View advisory →
CVE-2026-45309 High 8.2

AsyncSSH is a Python package which provides an asynchronous client and server implementation of the SSHv2 protocol on top of the Python asyncio framework.

17 Jul 2026, 18:40 UTC View advisory →
CVE-2026-45305 High 8.7

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.40, 7.4.12, and 8.0.12, Symfony\Comp

14 Jul 2026, 18:50 UTC View advisory →
CVE-2026-45304 High 8.7

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.40, 7.4.12, and 8.0.12, Symfony\Comp

14 Jul 2026, 18:48 UTC View advisory →
CVE-2026-45295 Medium 6.5

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.219, the open tracking endpoint `GET /thread/read/{

20 Jul 2026, 17:21 UTC View advisory →
CVE-2026-45270 High 8.7

CI4MS is a CodeIgniter 4-based content management system skeleton. Prior to version 0.31.9.0, the `Pages` backend module registers the `html_purify` valida

20 Jul 2026, 14:12 UTC View advisory →
CVE-2026-45260 High 8.1

Pimcore is an Open Source Data & Experience Management Platform. Prior to 11.5.17 (LTS) and 12.3.7, Pimcore's WebDAV asset endpoint exposes a MOVE operatio

17 Jul 2026, 19:08 UTC View advisory →
CVE-2026-45259 Unscored

sigqueue(2) was marked as permitted in capability mode with the introduction of Capsicum in 2011, but the implementation of kern_sigqueue did not include a

27 Jun 2026, 08:59 UTC View advisory →
CVE-2026-45258 Unscored

dsp_mmap_single() validated the requested mapping by checking the sum of the user-supplied offset and length against the buffer size. This addition could o

27 Jun 2026, 08:50 UTC View advisory →
CVE-2026-45257 High 7.8

The KTLS receive path decrypted each record in place, assuming that the mbufs holding received data were anonymous and safe to modify. This assumption does

26 Jun 2026, 14:50 UTC View advisory →
CVE-2026-45256 Medium 5.5

When used to deliver a signal to a specific thread, thr_kill2(2) called p_cansignal() to determine whether the operation was permitted but did not check th

26 Jun 2026, 14:43 UTC View advisory →
CVE-2026-45233 High 7.2

HTMLy CMS through 3.1.1 contains a path traversal vulnerability that allows low-privileged authenticated attackers to relocate arbitrary files by supplying

25 Jun 2026, 15:50 UTC View advisory →
CVE-2026-45204 Unscored

Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger OOB access and kernel null pointer dereference in an e

07 Aug 2026, 01:53 UTC View advisory →
CVE-2026-45203 Unscored

Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memory write outside the permitted range

10 Jul 2026, 20:57 UTC View advisory →
CVE-2026-45198 Unscored

Kernel software from a non-secure operating system on a platform with Trusted Execution Environment support, may cause GPU Firmware to boot up using data f

07 Aug 2026, 01:42 UTC View advisory →
CVE-2026-45196 Unscored

Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a GPU register access which can lead to pr

10 Jul 2026, 20:53 UTC View advisory →
CVE-2026-45195 High 7.8

Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memory read or write outside the permitt

26 Jun 2026, 15:18 UTC View advisory →
CVE-2026-45188 Low 2.4

Relative Path Traversal vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: from 1.0.0 through 2.15.0. Users are recommended to upgrade to

25 Jun 2026, 08:01 UTC View advisory →
CVE-2026-45162 High 8

Pimcore is an Open Source Data & Experience Management Platform. Prior to 11.5.17 (LTS) and 12.3.7, multiple Pimcore locations call PHP's unserialize() on

17 Jul 2026, 18:50 UTC View advisory →
CVE-2026-45150 Medium 6.3

Zen is a firefox-based browser. Prior to 1.19.13b, Zen Browser did not provide a persistent, clearly visible security notification when a webpage entered f

15 Jul 2026, 15:35 UTC View advisory →
CVE-2026-45139 Medium 6.5

CI4MS is a CodeIgniter 4-based content management system skeleton. Prior to version 0.31.9.0, the Fileeditor module enforces an extension allowlist (`['css

20 Jul 2026, 13:58 UTC View advisory →
CVE-2026-45135 High 8.1

Caddy is an extensible server platform that uses TLS by default. From 2.7.0 until 2.11.3, the FastCGI transport's splitPos() in modules/caddyhttp/reversepr

23 Jun 2026, 17:56 UTC View advisory →
CVE-2026-45133 High 8.2

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.40, 7.4.12, and 8.0.12, when the par

14 Jul 2026, 18:45 UTC View advisory →
CVE-2026-45112 Medium 6.9

Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings. This issue affects Apache Thrift: from 0.19.0 before 0.2

27 Jul 2026, 10:57 UTC View advisory →
CVE-2026-45103 High 7.5

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions prior to 3.6.6 and 4.0.0-rc1, the TCP message framing layer parses the C

04 Aug 2026, 21:56 UTC View advisory →
CVE-2026-45100 Critical 9.1

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0-beta through 3.6.5 and 4.0.0-beta contain a buffer overflow in the {s

04 Aug 2026, 21:41 UTC View advisory →
CVE-2026-45086 Medium 5.4

Decidim is a participatory democracy framework. From 0.31.1 before 0.31.5 and in 0.32.0.rc1 before 0.32.0.rc2, a participant can directly load /admin/demog

31 Jul 2026, 21:44 UTC View advisory →
CVE-2026-45084 High 8.7

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0 through 3.6.5 contain a denial of service vulnerability in the presen

04 Aug 2026, 21:23 UTC View advisory →
CVE-2026-45077 High 8.3

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.40, 7.4.12, and 8.0.12, the server:l

14 Jul 2026, 17:46 UTC View advisory →
CVE-2026-45075 High 8.3

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 7.4.12 and 8.0.12, method-scoped #[IsGranted], #

14 Jul 2026, 18:40 UTC View advisory →
CVE-2026-45074 High 7.6

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 7.1.0 until 7.4.12 and 8.0.12, Cas2Handler builds th

14 Jul 2026, 17:49 UTC View advisory →
CVE-2026-45073 Medium 6.3

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.40, 7.4.12, and 8.0.12, PdoAdapter::

14 Jul 2026, 18:23 UTC View advisory →
CVE-2026-45072 Low 2

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 6.4.24 until 6.4.40, 7.4.12, and 8.0.12, the develop

14 Jul 2026, 18:11 UTC View advisory →
CVE-2026-45071 High 8.7

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.40, 7.4.12, and 8.0.12, Crawler::add

14 Jul 2026, 18:58 UTC View advisory →
CVE-2026-45070 Medium 6.3

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.40, 7.4.12, and 8.0.12, Symfony\Comp

14 Jul 2026, 18:25 UTC View advisory →
CVE-2026-45069 High 8.8

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 6.4.40, 7.4.12, and 8.0.12, OidcTokenHandler::ve

14 Jul 2026, 18:46 UTC View advisory →
CVE-2026-45068 High 8.7

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.40, 7.4.12, and 8.0.12, SendmailTran

14 Jul 2026, 19:02 UTC View advisory →
CVE-2026-45067 Medium 6.3

### Description `Symfony\Component\Mime\Address` is the value-object every Symfony Mailer address (to/cc/bcc/from/reply-to) flows through; its constructor

14 Jul 2026, 17:41 UTC View advisory →
CVE-2026-45066 Low 2.3

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 6.1.0-BETA1 until 6.4.40, 7.4.12, and 8.0.12, HtmlSa

14 Jul 2026, 17:53 UTC View advisory →
CVE-2026-45065 Low 2.3

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.40, 7.4.12, and 8.0.12, UrlGenerator

14 Jul 2026, 17:43 UTC View advisory →
CVE-2026-45064 Low 2.3

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. From 6.1.0-BETA1 until 6.4.40, 7.4.12, and 8.0.12, UrlSan

14 Jul 2026, 18:35 UTC View advisory →
CVE-2026-45063 Critical 9.1

Symfony is a PHP framework for web and console applications and a set of reusable PHP components. Prior to 5.4.52, 6.4.40, 7.4.12, and 8.0.12, X509Authenti

14 Jul 2026, 18:28 UTC View advisory →
CVE-2026-45045 Medium 5.3

Fiber is an Express inspired web framework written in Go. Prior to 3.3.0 and 2.52.14, the BalancerForward proxy helper in middleware/proxy/proxy.go uses He

08 Jul 2026, 19:26 UTC View advisory →
CVE-2026-45034 Critical 9.2

PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet files. Prior to 1.30.5, CVE-2026-34084 was patched by the helper File::prohibitWra

22 Jun 2026, 20:32 UTC View advisory →
CVE-2026-44986 Critical 9.9

Penpot is an open-source design tool for design and code collaboration. Prior to 2.14.5, Penpot exposed teams_invitations.clj invitation tokens from create

15 Jul 2026, 15:08 UTC View advisory →
CVE-2026-44982 High 7.2

CrowdSec offers crowdsourced protection against malicious IPs. From 1.5.0 until 1.7.8, pkg/appsec/request.go NewParsedRequestFromRequest allocated a reques

16 Jul 2026, 19:50 UTC View advisory →
CVE-2026-44981 High 8.2

CrowdSec offers crowdsourced protection against malicious IPs. From 1.7.0 until 1.7.8, the LAPI router used gin-contrib/gzip with DefaultDecompressHandle g

16 Jul 2026, 19:47 UTC View advisory →
CVE-2026-44979 Medium 6.3

@hapi/wreck is an HTTP client utility. Prior to 18.1.1, when @hapi/wreck follows a 3xx redirect to a different hostname, only the Authorization and Cookie

17 Jul 2026, 21:01 UTC View advisory →
CVE-2026-44978 Medium 5.3

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a heap out-of-bounds read vulnerability within the FIPS-specific receive paths. This v

20 Jul 2026, 16:56 UTC View advisory →
CVE-2026-44974 High 7.7

@hapi/content provided HTTP Content-* headers parsing. Prior to 6.0.2, Content.disposition() retained the last occurrence of each duplicate parameter while

17 Jul 2026, 20:11 UTC View advisory →
CVE-2026-44970 Low 3.1

dbt-mcp is a Model Context Protocol server for interacting with dbt. Prior to 1.17.1, DefaultUsageTracker.emit_tool_called_event() in src/dbt_mcp/tracking/

16 Jul 2026, 17:49 UTC View advisory →
CVE-2026-44969 Low 2.5

dbt-mcp is a Model Context Protocol server for interacting with dbt. Prior to 1.17.1, DbtMCP.call_tool() in src/dbt_mcp/mcp/server.py logged the raw argume

16 Jul 2026, 17:49 UTC View advisory →
CVE-2026-44968 Medium 6.3

dbt-mcp is a Model Context Protocol server for interacting with dbt. Prior to 1.17.1, _run_dbt_command() in src/dbt_mcp/dbt_cli/tools.py appended unsanitiz

16 Jul 2026, 17:48 UTC View advisory →
CVE-2026-44961 None 0

The XML‑RPC API addUser method has a validation bypass introduced in the fix for CVE‑2025‑55129. As a result, API users could create usernames that enabled

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-44960 None 0

A stored XSS can be exploited by leveraging the usernames as an attack vector. When an admin user viewed the audit log details for affected entries, any ma

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-44959 High 8.8

A missing validation of user input exists when saving delivery limitations in Revive Adserver 6.0.6 and earlier. A low‑privileged user could add an unexpec

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-44958 Medium 5.4

An access control bypass allows an advertiser‑level user to activate or deactivate a banner in Revive Adserver 6.0.6 and earlier, even when such permission

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-44957 Medium 4.3

A missing access control check when invoking various modify methods in the XML‑RPC API of Revive Adserver 6.0.6 and earlier. The API allowed entities to be

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-44956 None 0

Low‑privileged users could use their Full Name as a vector for a stored XSS attack. The name is included in system‑generated emails, whose content is store

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-44949 High 7

A Rancher FleetWorkspace admission path allowed side effects to occur in the Rancher webhook handler for versions 0.7.0 up to 0.7.10, 0.8.0 up to 0.8.7, 0.

30 Jun 2026, 14:41 UTC View advisory →
CVE-2026-44948 Medium 5.3

A path traversal vulnerability was found in Fleet's ImageScan subsystem in Rancher Fleet 0.12.0 up to 0.12.16, 0.13.0 up to 0.13.12, 0.14.0 up to 0.14.7 an

30 Jun 2026, 15:12 UTC View advisory →
CVE-2026-44947 Medium 6.9

A missing clean-up in the legacy Project Role Template Binding (PRTB) reconciler in Rancher versions 2.13.0 up to 2.13.7 and 2.14.0 up to 2.14.3 allowed us

30 Jun 2026, 14:21 UTC View advisory →
CVE-2026-44946 Critical 9.5

A SAML authentication replay vulnerability in Rancher's Assertion Consumer Service (ACS) handler did not enforce one-time use of SAML assertion, potentiall

30 Jun 2026, 12:14 UTC View advisory →
CVE-2026-44945 Critical 9.1

A privilege escalation vulnerability exists in Rancher's impersonation middleware (pkg/auth/requests/impersonate.go). An authenticated Rancher user with th

05 Aug 2026, 10:00 UTC View advisory →
CVE-2026-44941 High 8.4

A relative path traversal in the "keyhint" option in repomd.xml parsing of libzypp before 17.38.12 can be used by attackers able to supply a malicious repo

02 Jul 2026, 15:19 UTC View advisory →
CVE-2026-44938 High 8.8

A vulnerability has been identified in Fleet's agent-side deployer, which did not filter security-sensitive keys from namespaceLabels in fleet.yaml (or Bun

07 Jul 2026, 13:05 UTC View advisory →
CVE-2026-44935 Critical 9.9

Missing validation of "valuesFrom" references in Helm Deployer of SUSE Rancher Fleet 0.15 before 0.15.2, 0.14 before 0.14.6, 0.13 before 0.13.11 and 0.12 b

02 Jul 2026, 16:00 UTC View advisory →
CVE-2026-44914 High 7.5

Apache NiFi 1.12.0 through 2.9.0 are missing authorization when replacing Process Groups that include extension components with specific Required Permissio

22 Jun 2026, 07:38 UTC View advisory →
CVE-2026-44913 Medium 5.2

Improper escaping of database table names in the CaptureChangeMySQL Processor included with Apache NiFi 1.2.0 through 2.9.0 allows for injecting SQL comman

22 Jun 2026, 07:36 UTC View advisory →
CVE-2026-44911 Low 2.3

Authorization handling for component configuration verification requests in Apache NiFi 1.15.0 through 2.9.0 allows clients with read access to submit prop

22 Jun 2026, 07:37 UTC View advisory →
CVE-2026-44891 High 7.5

Netty is a network application framework for development of protocol servers and clients. Prior to 4.1.136.Final and 4.2.16.Final, io.netty.handler.codec.s

17 Jul 2026, 20:16 UTC View advisory →
CVE-2026-44889 Medium 6.1

WebOb provides objects for HTTP requests and responses. Prior to 1.8.10, the normalization of the HTTP Location header during a redirect is vulnerable to a

22 Jun 2026, 21:30 UTC View advisory →
CVE-2026-44877 Medium 6.5

An unauthenticated remote disclosure vulnerability has been identified in HPE Networking Instant On 1830, 1930, and 1960 Switches. Successful exploitation

07 Jul 2026, 19:03 UTC View advisory →
CVE-2026-44840 High 7.5

Dgraph is an open source distributed GraphQL database. Prior to version 25.3.4, the `checkUserPassword` GraphQL query in Dgraph is vulnerable to DQL (Dgrap

08 Jul 2026, 13:27 UTC View advisory →
CVE-2026-44806 Medium 5.3

Missing release of memory after effective lifetime in Windows Cryptographic Services allows an unauthorized attacker to deny service over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-44800 High 7.8

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-44795 High 8.8

Spinnaker is an open source, multi-cloud continuous delivery platform. Prior to 2026.1.0, 2026.0.3, 2025.4.4, and 2025.3.3, unsafe YAML processing bypasses

10 Jul 2026, 21:49 UTC View advisory →
CVE-2026-44792 High 8.9

n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7, an attacker with write access to the git repository connected to

23 Jun 2026, 15:55 UTC View advisory →
CVE-2026-44791 Critical 9.4

n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7, an authenticated user with permission to create or modify workfl

23 Jun 2026, 15:54 UTC View advisory →
CVE-2026-44790 Critical 9.4

n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7, an authenticated user with permission to create or modify workfl

23 Jun 2026, 15:53 UTC View advisory →
CVE-2026-44789 Critical 9.4

n8n is an open source workflow automation platform. Prior to 1.123.43, 2.22.1, and 2.20.7, an authenticated user with permission to create or modify workfl

23 Jun 2026, 15:52 UTC View advisory →
CVE-2026-44771 Medium 4.3

SAP S/4HANA Draft operation does not perform necessary authorization checks for an authenticated user, a restricted user could access information within th

14 Jul 2026, 00:21 UTC View advisory →
CVE-2026-44770 Medium 4.3

SAP Create Single Payment does not perform necessary authorization checks for an authenticated user, a restricted user could access specific entity set key

14 Jul 2026, 00:21 UTC View advisory →
CVE-2026-44769 Medium 5.5

SAP S/4HANA application Project Management (PPM-PRO) allows an attacker with high privileges to execute crafted database queries, exposing the backend data

14 Jul 2026, 00:21 UTC View advisory →
CVE-2026-44768 Medium 4.1

SAP CRM WebClient UI allows an attacker to inject and execute malicious scripts in the context of the application due to the absence of a Content Security

14 Jul 2026, 00:20 UTC View advisory →
CVE-2026-44767 Medium 6.1

setThemeRoot() failed to enforce the sap-allowed-theme-origins allowlist. An attacker-controlled absolute cross-origin URL could be stored and used directl

14 Jul 2026, 00:22 UTC View advisory →
CVE-2026-44761 Critical 9.1

SAP Commerce Cloud could retain a sample OAuth2 client with publicly documented sample credentials originating from sample configuration provided in SAP He

14 Jul 2026, 00:20 UTC View advisory →
CVE-2026-44760 Medium 4.7

Due to a Cross-Site Scripting (XSS) vulnerability, applications based on Business Server Pages framework in SAP NetWeaver Application Server ABAP reflects

14 Jul 2026, 00:20 UTC View advisory →
CVE-2026-44759 Medium 6.1

SAP NetWeaver Enterprise Portal allows an unauthenticated attacker to inject malicious scripts into a URL parameter. The scripts are reflected in the serve

14 Jul 2026, 00:20 UTC View advisory →
CVE-2026-44753 Low 3.7

SAP HANA Database (user self service tools) allows an unauthenticated user to send specially crafted requests that produce distinguishable responses, enabl

14 Jul 2026, 00:19 UTC View advisory →
CVE-2026-44752 High 8.2

SAP NetWeaver Application Server Java allows an unauthenticated attacker to inject malicious JavaScript through crafted URLs. When a victim accesses such a

14 Jul 2026, 00:19 UTC View advisory →
CVE-2026-44747 Critical 9.9

SAP NetWeaver Application Server ABAP allows an authenticated attacker to leverage logical errors in memory management to cause a memory corruption that co

14 Jul 2026, 00:19 UTC View advisory →
CVE-2026-44745 High 8.1

SAP Approuter does not properly validate incoming request headers during the OAuth2 login flow under certain configurations. This allows an unauthenticated

14 Jul 2026, 00:18 UTC View advisory →
CVE-2026-44739 High 8.7

Pimcore is an Open Source Data & Experience Management Platform. Prior to 11.5.17 (LTS) and 12.3.6, the columnConfigAction endpoint in bundles/CustomReport

17 Jul 2026, 19:10 UTC View advisory →
CVE-2026-44736 Medium 6.5

OpenProject is open-source, web-based project management software. Prior to 17.4.0, the GET /api/v3/relations endpoint allows any authenticated user to ret

26 Jun 2026, 19:27 UTC View advisory →
CVE-2026-44735 Medium 6.5

OpenProject is open-source, web-based project management software. Prior to 17.3.2 and 17.4.0, the GET /api/v3/shares endpoint returns share details for AL

26 Jun 2026, 19:32 UTC View advisory →
CVE-2026-44734 Medium 6.5

OpenProject is open-source, web-based project management software. Prior to 17.3.2 and 17.4.0, a Missing Authorization vulnerability exists in OpenProject'

26 Jun 2026, 19:33 UTC View advisory →
CVE-2026-44733 Medium 5.9

OpenProject is open-source, web-based project management software. Prior to 17.3.2 and 17.4.0, Business Logic Error on OpenProject through PATCH request to

26 Jun 2026, 19:47 UTC View advisory →
CVE-2026-44732 Medium 4.3

OpenProject is open-source, web-based project management software. Prior to 17.3.2 and 17.4.0, OpenProject exposes a document update endpoint used to modif

26 Jun 2026, 19:39 UTC View advisory →
CVE-2026-44731 Medium 4.3

OpenProject is open-source, web-based project management software. Prior to 17.3.2 and 17.4.0, the web application's meetings filter feature leaks whether

26 Jun 2026, 19:41 UTC View advisory →
CVE-2026-44727 Critical 9.3

Jupyter Server is the backend for Jupyter web applications. Prior to 2.20, the nbconvert HTTP handlers in jupyter_server render user-authored notebook HTML

22 Jun 2026, 19:56 UTC View advisory →
CVE-2026-44726 High 7.4

Deno is a JavaScript, TypeScript, and WebAssembly runtime. From 2.0.0 until 2.7.8, a flaw in Deno's Node.js tls compatibility layer could cause a TLS clien

23 Jun 2026, 17:24 UTC View advisory →
CVE-2026-44722 Medium 6.2

pyzipper is a replacement for Python's zipfile that can read and write AES encrypted zip files. Prior to 0.4.0, a Python operator precedence bug in pyzippe

17 Jul 2026, 16:42 UTC View advisory →
CVE-2026-44696 Medium 5.7

OpenProject is open-source, web-based project management software. Prior to 17.4.0, OpenProject's rich text (markdown) rendering pipeline uses Sanitize::Co

26 Jun 2026, 19:30 UTC View advisory →
CVE-2026-44690 High 7.5

In NLnet Labs Unbound 1.7.0 up to and including 1.25.1, insufficient validation of the RRSIG.Labels field combined with premature cache writes during RFC 8

22 Jul 2026, 13:06 UTC View advisory →
CVE-2026-44687 Low 3.7

In NLnet Labs Unbound 1.13.2 up to and including 1.25.1, stub or forward zones where the name is below an intermediate labed below a DNSSEC signed zone cou

22 Jul 2026, 13:06 UTC View advisory →
CVE-2026-44632 Critical 9.1

Yamcs is a mission control framework. Prior to 5.12.7, a server-side code injection vulnerability existed in the Yamcs algorithm evaluation engine org.yamc

16 Jul 2026, 16:05 UTC View advisory →
CVE-2026-44628 High 8.7

An unauthenticated attacker can crash the worklist server with a single crafted query when the server has a valid Called AE Title / storage directory, the

30 Jun 2026, 20:54 UTC View advisory →
CVE-2026-44622 Medium 6.9

Charging station authentication identifiers are publicly accessible via web-based mapping platforms.

25 Jun 2026, 20:53 UTC View advisory →
CVE-2026-44621 Medium 5.9

With NLnet Labs Unbound up to and including version 1.25.1, applications using libunbound and configured with 'unwanted-reply-threshold', could eventually

22 Jul 2026, 13:06 UTC View advisory →
CVE-2026-44617 Unscored

LDAP filter injection vulnerability in Apache Zeppelin. LdapRealm used RFC 4514 distinguished-name escaping when constructing LDAP search filters instead o

30 Jul 2026, 15:22 UTC View advisory →
CVE-2026-44616 Unscored

LDAP injection vulnerability in Apache Zeppelin. ActiveDirectoryGroupRealm constructed LDAP search filters without escaping user-controlled input, allowing

30 Jul 2026, 15:21 UTC View advisory →
CVE-2026-44615 Medium 6.5

Path traversal vulnerability in Apache Zeppelin. When FileSystemNotebookRepo is configured, an authenticated attacker with permission to rename a note, or

31 Jul 2026, 11:05 UTC View advisory →
CVE-2026-44613 Unscored

Cross-Site Request Forgery (CSRF) vulnerability in Apache Zeppelin. The default CORS configuration allowed cross-origin state-changing requests and accepte

30 Jul 2026, 15:19 UTC View advisory →
CVE-2026-44605 Medium 5.5

A flaw was found in the RPM Package Manager (RPM). A local user could be affected by a heap buffer overflow vulnerability when processing a specially craft

05 Aug 2026, 17:29 UTC View advisory →
CVE-2026-44596 Medium 6.5

Yamcs is a mission control framework. Prior to 5.12.7, the authentication endpoint POST /auth/token in yamcs-core, handled by yamcs-core/src/main/java/org/

16 Jul 2026, 16:04 UTC View advisory →
CVE-2026-44595 Medium 4.3

Yamcs is a mission control framework. Prior to 5.12.7, the IAM API endpoints listUsers, getUser, listGroups, and getGroup in yamcs-core did not enforce the

16 Jul 2026, 16:02 UTC View advisory →
CVE-2026-44585 Medium 5.4

Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.0, the ticket creation endpoint accepts a

20 Jul 2026, 20:04 UTC View advisory →
CVE-2026-44584 Medium 4.3

Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.0, the email update functionality fails t

20 Jul 2026, 19:58 UTC View advisory →
CVE-2026-44583 Medium 5.3

Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.0, the PayPal webhook endpoint /extension

20 Jul 2026, 20:01 UTC View advisory →
CVE-2026-44512 Medium 5.5

Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From 1.9.0 before 1.22.0, onnx.version_converter.convert_ver

08 Jul 2026, 19:32 UTC View advisory →
CVE-2026-44510 Medium 6.5

Rsync is a file-copying tool that uses a delta-transfer algorithm to synchronize remote and local files. In versions prior to 3.4.3, the receiver-side out-

20 Jul 2026, 21:03 UTC View advisory →
CVE-2026-44509 Medium 6.3

Rsync is a file-copying tool that uses a delta-transfer algorithm to synchronize remote and local files. In versions prior to 3.4.3, previous bug fixes for

20 Jul 2026, 20:27 UTC View advisory →
CVE-2026-44508 High 8.1

Rsync is a file-copying tool that uses a delta-transfer algorithm to synchronize remote and local files. In versions prior to 3.4.3, the receiver's compres

20 Jul 2026, 20:30 UTC View advisory →
CVE-2026-44507 Medium 4.8

Rsync is a file-copying tool that uses a delta-transfer algorithm to synchronize remote and local files. In versions prior to 3.4.3, when using a daemon co

20 Jul 2026, 20:29 UTC View advisory →
CVE-2026-44454 High 8.1

Coder allows organizations to provision remote development environments via Terraform. Prior to versions 2.29.7 and 2.30.2, the `dotfiles` registry module

07 Jul 2026, 20:16 UTC View advisory →
CVE-2026-44453 High 7.5

h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3. Prior to commit 6b5370d, h2o is vulnerable to a Denial of Service attack when calling a

16 Jul 2026, 23:04 UTC View advisory →
CVE-2026-44452 Medium 5.9

h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3. Prior to commit 8dc37cb, when h2o receives a ClientHello message over TLS or QUIC and i

16 Jul 2026, 22:54 UTC View advisory →
CVE-2026-44436 High 7.5

Quicly is an IETF QUIC protocol implementation intended primarily for use within the H2O HTTP server. Prior to commit 8b178e6, Quicly is vulnerable to a De

16 Jul 2026, 22:44 UTC View advisory →
CVE-2026-44435 High 7.5

Quicly is an IETF QUIC protocol implementation intended primarily for use within the H2O HTTP server. Prior to commit 937d0e9, an assertion failure is rais

16 Jul 2026, 22:39 UTC View advisory →
CVE-2026-44434 Medium 5.3

Quicly is an IETF QUIC protocol implementation intended primarily for use within the H2O HTTP server. Prior to commit dccf5d4, Quicly was vulnerable to sta

16 Jul 2026, 22:34 UTC View advisory →
CVE-2026-44433 Medium 5.3

Quicly is an IETF QUIC protocol implementation intended primarily for use within the H2O HTTP server. Prior to commit 8b178e6, an adversarial peer could se

16 Jul 2026, 22:23 UTC View advisory →
CVE-2026-44383 High 8.7

Multiple connections to the backend using the same charging station ID are allowed, which could allow an attacker to deploy multiple instances of malicious

10 Jul 2026, 22:11 UTC View advisory →
CVE-2026-44332 Medium 5.3

Fiber is an Express inspired web framework written in Go. Prior to 3.3.0, the default Authorizer function in the BasicAuth middleware in middleware/basicau

08 Jul 2026, 19:32 UTC View advisory →
CVE-2026-44311 Medium 5.4

Fabric.js is a Javascript HTML5 canvas library. Prior to 7.4.0, a potential Cross-Site Scripting (XSS) vulnerability exists in Fabric.js due to improper es

22 Jun 2026, 20:50 UTC View advisory →
CVE-2026-44276 Medium 6

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the R

22 Jul 2026, 15:13 UTC View advisory →
CVE-2026-44274 High 7.8

Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Improper Link Resolution Before File Access vulnerability. A low privileged attack

22 Jun 2026, 18:47 UTC View advisory →
CVE-2026-44273 Medium 6

Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain a Use of Default Credentials vulnerability. A high privileged attacker with local acc

22 Jun 2026, 18:51 UTC View advisory →
CVE-2026-44272 High 8.8

Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection

22 Jun 2026, 18:56 UTC View advisory →
CVE-2026-44271 High 8.1

Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection

22 Jun 2026, 19:00 UTC View advisory →
CVE-2026-44251 Medium 6.5

Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 3.0.0 and above, prior to 4.14.5, a size_t intege

17 Jul 2026, 00:01 UTC View advisory →
CVE-2026-44231 Critical 9.1

RT is an open source, enterprise-grade issue and ticket tracking system. Versions prior to 5.0.10, 6.0.0 and above, prior to 6.0.3 contain an information d

20 Jul 2026, 19:20 UTC View advisory →
CVE-2026-44230 Medium 6.1

RT is an open source, enterprise-grade issue and ticket tracking system. Versions 5.0.4 up to (but not including) 5.0.10, and 6.0.0 up to (but not includin

20 Jul 2026, 19:25 UTC View advisory →
CVE-2026-44229 Medium 5.4

RT is an open source, enterprise-grade issue and ticket tracking system. Versions 5.0.0 and 6.0.0 and above, prior to both 5.0.10 and 6.0.3 contain a Cross

20 Jul 2026, 19:18 UTC View advisory →
CVE-2026-44228 Medium 5.4

RT is an open source, enterprise-grade issue and ticket tracking system. Versions 6.0.0 and above, prior to 6.0.3, contain a stored Cross-Site Scripting (X

20 Jul 2026, 17:34 UTC View advisory →
CVE-2026-44227 Medium 6.1

RT is an open source, enterprise-grade issue and ticket tracking system. Versions 6.0.0 and above, prior to 6.0.3 contain a reflected Cross-Site Scripting

20 Jul 2026, 17:32 UTC View advisory →
CVE-2026-44192 Medium 6.6

A flaw was found in the Ansible Lightspeed Model Context Protocol (MCP) server. This vulnerability, known as path traversal, allows an attacker to manipula

22 Jul 2026, 12:06 UTC View advisory →
CVE-2026-44191 High 7.8

A flaw was found in the Visual Studio Code Ansible Lightspeed extension. This command injection vulnerability (CWE-78) arises from improper handling of the

22 Jul 2026, 12:11 UTC View advisory →
CVE-2026-44190 High 7.8

A flaw was found in the Ansible Lightspeed Visual Studio Code extension. This Command Injection vulnerability (CWE-78) allows a remote attacker to execute

22 Jul 2026, 12:06 UTC View advisory →
CVE-2026-44189 High 7.8

A flaw was found in the Visual Studio Code Ansible Lightspeed extension's AnsiblePlaybookRunProvider. This command injection vulnerability allows an attack

22 Jul 2026, 12:06 UTC View advisory →
CVE-2026-44187 Low 3.3

A flaw was found in the Ansible Lightspeed extension for Visual Studio Code. This vulnerability allows an attacker with local access to the workstation, or

22 Jul 2026, 12:06 UTC View advisory →
CVE-2026-44182 Critical 10

Jupyter Enterprise Gateway launches remote Jupyter Notebook kernels across distributed clusters like Apache Spark, Kubernetes, and Docker Swarm. In version

16 Jul 2026, 22:05 UTC View advisory →
CVE-2026-44181 Critical 10

Jupyter Enterprise Gateway launches remote Jupyter Notebook kernels across distributed clusters like Apache Spark, Kubernetes, and Docker Swarm. In version

16 Jul 2026, 22:03 UTC View advisory →
CVE-2026-44180 Critical 9.8

Jupyter Enterprise Gateway launches remote Jupyter Notebook kernels across distributed clusters like Apache Spark, Kubernetes, and Docker Swarm. Versions 2

16 Jul 2026, 21:59 UTC View advisory →
CVE-2026-44178 High 8.8

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a heap-based buffer overflow vulnerability within the virtual channel forwarding mecha

20 Jul 2026, 16:54 UTC View advisory →
CVE-2026-44177 High 8.8

Kirby is an open-source content management system. In versions 5.3.0 and above but prior to 5.4.1, Kirby did not correctly validate the provided user ID, r

16 Jul 2026, 21:19 UTC View advisory →
CVE-2026-44176 Medium 6

Kirby is an open-source content management system. Versions prior to 4.9.1 and 5.4.1 do not check the `pages.access` permission during page draft rendering

16 Jul 2026, 21:24 UTC View advisory →
CVE-2026-44175 High 8.5

Kirby is an open-source content management system. In versions prior to 4.9.1 and 5.4.1, Kirby did not securely sanitize the contents of the list field on

16 Jul 2026, 21:36 UTC View advisory →
CVE-2026-44174 High 8.7

Kirby is an open-source content management system. Prior to 4.9.1 and 5.4.1, Kirby did not validate the model attributes that were used in its collection q

16 Jul 2026, 21:13 UTC View advisory →
CVE-2026-44161 High 7.2

Fluentd collects events from various data sources and writes them to files, RDBMS, NoSQL, IaaS, SaaS, Hadoop and so on. Prior to 1.19.3, the Fluentd out_ht

08 Jul 2026, 21:25 UTC View advisory →
CVE-2026-44160 High 7.5

Fluentd collects events from various data sources and writes them to files, RDBMS, NoSQL, IaaS, SaaS, Hadoop and so on. Prior to 1.19.3, Fluentd's in_http

08 Jul 2026, 21:24 UTC View advisory →
CVE-2026-44089 Critical 9.4

Totolink EX1200L router is vulnerable to Buffer Overflow in the login functionality in cgi-bin/cstecgi.cgi endpoint. This vulnerability could be exploited

23 Jun 2026, 12:08 UTC View advisory →
CVE-2026-44042 Low 3.7

UltraVNC repeater through 1.8.2.2 contains an off-by-one error in the Base64 decode helper used for HTTP Basic authentication. In repeater/webgui/webutils.

01 Jul 2026, 03:33 UTC View advisory →
CVE-2026-44041 Medium 4.3

UltraVNC through 1.8.2.2 contains an out-of-bounds read in the wide-string to multibyte conversion helper. In rfb/dh.cpp:204, the vncWc2Mb() function passe

01 Jul 2026, 03:33 UTC View advisory →
CVE-2026-44040 Medium 4.8

UltraVNC through 1.8.2.2 uses a cryptographically weak pseudo-random number generator to produce VNC authentication challenge bytes. In rfb/vncauth.c:119-1

01 Jul 2026, 03:33 UTC View advisory →
CVE-2026-44025 High 7.5

Fluentd collects events from various data sources and writes them to files, RDBMS, NoSQL, IaaS, SaaS, Hadoop and so on. Prior to 1.19.3, Fluentd's Monitor

08 Jul 2026, 21:23 UTC View advisory →
CVE-2026-44024 Critical 9.8

Fluentd collects events from various data sources and writes them to files, RDBMS, NoSQL, IaaS, SaaS, Hadoop and so on. Prior to 1.19.3, Fluentd allows dyn

08 Jul 2026, 21:20 UTC View advisory →
CVE-2026-44023 High 8.6

Docling Core defines core data types and transformations for the document processing application Docling. In versions 1.5.0 and above, prior to 2.74.1, doc

16 Jul 2026, 21:00 UTC View advisory →
CVE-2026-44022 Medium 5.5

Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.73.0 until 2.91.0, he

24 Jun 2026, 17:47 UTC View advisory →
CVE-2026-44020 High 7.5

Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.13.0 until 2.74.0, th

24 Jun 2026, 17:45 UTC View advisory →
CVE-2026-44019 High 8.1

Docling Core defines core data types and transformations for the document processing application Docling. In versions 2.5.0 and above, prior to 2.74.1, doc

16 Jul 2026, 20:50 UTC View advisory →
CVE-2026-44018 Medium 5.5

Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.45.0 until 2.91.0, th

26 Jun 2026, 15:40 UTC View advisory →
CVE-2026-44017 High 7.5

Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. Prior to 2.91.0, the EasyOCR

24 Jun 2026, 17:48 UTC View advisory →
CVE-2026-44016 High 8.2

Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. FIn versions >= 2.82.0, < 2.

24 Jun 2026, 17:42 UTC View advisory →
CVE-2026-43978 High 8.1

wger is a free, open-source workout and fitness manager. In versions prior to 2.6, a gym trainer can escalate their session to any higher-privileged accoun

16 Jul 2026, 22:11 UTC View advisory →
CVE-2026-43977 High 7.5

wger is a free, open-source workout and fitness manager. In versions prior to 2.6, any authenticated user can read another user's private workout session n

16 Jul 2026, 22:13 UTC View advisory →
CVE-2026-43920 Medium 6.9

FOSSBilling is a free, open-source billing and client management system. In versions 0.5.4 through 0.7.2, the /run-patcher maintenance endpoint in FOSSBill

25 Jun 2026, 23:06 UTC View advisory →
CVE-2026-43871 High 8.7

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Apache Thrift Python, Go, PHP and Java bindings.This issue affects Apache Thrift: b

27 Jul 2026, 10:56 UTC View advisory →
CVE-2026-43833 Unscored

Full details and mitigation steps are currently restricted and will be published at a later date.

31 Jul 2026, 03:04 UTC View advisory →
CVE-2026-43832 Unscored

Full details and mitigation steps are currently restricted and will be published at a later date.

31 Jul 2026, 03:00 UTC View advisory →
CVE-2026-43831 Unscored

Full details and mitigation steps are currently restricted and will be published at a later date.

31 Jul 2026, 02:57 UTC View advisory →
CVE-2026-43830 Unscored

Full details and mitigation steps are currently restricted and will be published at a later date.

31 Jul 2026, 02:53 UTC View advisory →
CVE-2026-43829 Unscored

Full details and mitigation steps are currently restricted and will be published at a later date.

31 Jul 2026, 02:48 UTC View advisory →
CVE-2026-43822 Unscored

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 1

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43821 Unscored

An access issue was addressed with improved access restrictions. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6,

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43819 Unscored

An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Tahoe 26.6. An app may be able to access sensitive user da

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43818 Unscored

An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43817 Unscored

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 2

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43816 Unscored

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, vis

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43814 Unscored

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, watchOS

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43813 Unscored

A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 2

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43812 Unscored

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tahoe 26

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43811 Unscored

A race condition was addressed with improved checks. This issue is fixed in iOS 26.6 and iPadOS 26.6. An app may be able to modify protected parts of the f

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43810 Unscored

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Ta

27 Jul 2026, 20:11 UTC View advisory →
CVE-2026-43809 Unscored

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An a

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43807 Unscored

A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, macOS Sequoia 15.7.8, macOS Sonoma 14.8

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43806 Unscored

A denial of service issue was addressed by removing the vulnerable code. This issue is fixed in macOS Tahoe 26.6. A local attacker may be able to cause a d

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43805 Unscored

A race condition was addressed with improved state handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, ma

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43804 Unscored

This issue was addressed through improved state management. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visionOS 26.6.

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43803 Unscored

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sono

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43802 Unscored

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43801 Unscored

This issue was addressed with improved checks. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43800 Unscored

An information disclosure issue was addressed by removing the vulnerable code. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43799 Unscored

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 1

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43797 Unscored

This issue was addressed with improved checks. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6. An app may be able to access information

27 Jul 2026, 20:11 UTC View advisory →
CVE-2026-43796 Unscored

This issue was addressed with improved data protection. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS T

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43793 Unscored

An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7.8,

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43792 Unscored

An authorization issue was addressed with improved state management. This issue is fixed in Safari 26.6, macOS Tahoe 26.6. An app may be able to access sen

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43782 Unscored

This issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to ac

27 Jul 2026, 20:15 UTC View advisory →
CVE-2026-43781 Unscored

A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43780 Unscored

An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43779 Unscored

A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be a

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43778 Unscored

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 1

27 Jul 2026, 20:11 UTC View advisory →
CVE-2026-43777 Unscored

This issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A remote attac

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43776 High 7.8

A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tahoe 26.6. Pro

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43775 Unscored

An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS Tahoe 26.6. An app may be able to a

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43774 Unscored

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An a

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43773 Unscored

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. Moun

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43772 Unscored

A path traversal issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43771 Unscored

A stack overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app m

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43770 Unscored

A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6. A

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43769 Unscored

An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43768 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be ab

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43767 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be ab

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43766 Unscored

An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43765 Unscored

This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43764 Unscored

An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An ap

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43763 Unscored

A permissions issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An a

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43760 Unscored

An access issue was addressed with improved access restrictions. This issue is fixed in macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to access

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43759 Unscored

An authorization issue was addressed with improved state management. This issue is fixed in macOS Tahoe 26.6, watchOS 26.6. An app may be able to access se

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43758 Unscored

An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, wa

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43757 Unscored

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An a

27 Jul 2026, 20:15 UTC View advisory →
CVE-2026-43756 Unscored

A logic issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be abl

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43755 High 7

A race condition was addressed with improved state management. This issue is fixed in macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to gain roo

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43754 Unscored

This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43753 Unscored

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43750 Unscored

A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app m

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43749 High 7.8

A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 1

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43748 Unscored

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Tahoe 26.6. An app may be able

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43747 Unscored

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. Pars

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43746 Medium 6.5

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43745 Medium 6.5

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43744 Unscored

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sono

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43743 Medium 4.7

A race condition was addressed with improved state handling. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. An app may be able to

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43742 Medium 6.5

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43740 Medium 6.5

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing m

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43739 Unscored

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, vis

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43738 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. Processing a maliciously crafted a

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43735 Unscored

The issue was addressed with improved checks. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. A malicious website m

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43734 Medium 6.5

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43733 Unscored

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tahoe 26.6. Processing

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43732 Medium 6.5

A path handling issue was addressed with improved validation. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Proce

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43731 High 8.8

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43730 Unscored

A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43729 Unscored

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Tahoe 26.6, tvOS 26.6,

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43728 Unscored

This issue was addressed through improved state management. This issue is fixed in macOS Tahoe 26.6. An attacker may be able to modify the state of the Key

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43727 Medium 6.5

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43726 Medium 6.5

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43725 High 7.1

The issue was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. A malicious

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43724 Unscored

The issue was addressed with improved input sanitization. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. An app may be able to ca

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43723 High 7.8

A path handling issue was addressed with improved validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, m

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43722 Unscored

The issue was addressed with improved input sanitization. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. An app may be able to le

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43721 Unscored

This issue was addressed through improved state management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. A malic

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43720 Medium 6.5

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43718 Medium 6.5

A stack overflow was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Proc

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43717 Medium 6.5

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43716 Medium 6.5

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing m

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43715 High 8.8

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43714 Unscored

The issue was addressed with improved input sanitization. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43713 Unscored

A permissions issue was addressed with additional restrictions. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Vis

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43712 Medium 6.5

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing m

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43711 Unscored

A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43710 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An attacker may

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43709 Medium 6.5

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43708 Medium 4.3

The issue was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. A malicious

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43707 Unscored

A memory corruption issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43706 Medium 6.5

A double free issue was addressed with improved memory management. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing mali

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43705 High 8.8

A type confusion issue was addressed with improved checks. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processi

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43704 Medium 5.3

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43703 Medium 6.5

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing maliciously craf

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43701 Unscored

The issue was addressed with improved checks. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. A malicious website m

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43700 Medium 6.5

A cross-origin issue was addressed with improved tracking of security origins. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Ta

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43699 Medium 6.5

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43698 High 7.8

An injection issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may b

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43694 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be ab

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43693 High 7

A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-43682 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A remote user ma

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43681 Unscored

A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A local

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-43676 Medium 6.5

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-43673 Unscored

The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Ta

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43672 Unscored

An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43665 Unscored

This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. A local attacker may be able

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-43663 Medium 6.5

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing m

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-43637 High 8.8

Cornac before 2.6.0 contains a path traversal (Tar Slip) vulnerability that allows attackers to write arbitrary files outside the intended cache directory

15 Jul 2026, 13:54 UTC View advisory →
CVE-2026-43636 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

18 Jul 2026 View advisory →
CVE-2026-43632 Critical 9.2

llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in llama-server affecting six tokenization endpoints (/tokenize, /d

06 Aug 2026, 15:53 UTC View advisory →
CVE-2026-43631 Critical 9.2

llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in the vocab pointer of llama-server when the --sleep-idle-seconds

06 Aug 2026, 15:52 UTC View advisory →
CVE-2026-43630 Medium 6.3

llama.cpp builds b5702 through b7653 contain an out-of-bounds read vulnerability in the recurrent memory state restore path that allows attackers with writ

06 Aug 2026, 15:50 UTC View advisory →
CVE-2026-43629 Critical 9.2

llama.cpp builds b4882 through b9058 contain a heap buffer overflow vulnerability in the KV cache state restore path where the state_read_data() function c

06 Aug 2026, 15:48 UTC View advisory →
CVE-2026-43628 High 8.5

llama.cpp builds b3978 through b9058 contain an integer underflow and out-of-bounds read vulnerability in the DRY sampler that allows unauthenticated attac

06 Aug 2026, 15:45 UTC View advisory →
CVE-2026-43627 High 8.5

llama.cpp builds b1283 through b9058 contain an integer overflow vulnerability in the llama_batch_init() function where unchecked multiplications in malloc

06 Aug 2026, 15:40 UTC View advisory →
CVE-2026-43622 High 8.5

llama.cpp builds b1886 through b7445 contain a double free vulnerability in the LLaMA-Android JNI wrapper where new_1batch() allocates memory using malloc(

06 Aug 2026, 15:27 UTC View advisory →
CVE-2026-42990 Critical 9.8

Heap-based buffer overflow in SQL Server ODBC driver allows an unauthorized attacker to execute code over a network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-42982 High 7.8

Improper validation of consistency within input in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-42975 High 8

Heap-based buffer overflow in Windows Bluetooth Port Driver allows an unauthorized attacker to execute code over an adjacent network.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-42958 High 8.4

The application contains a use-after-free vulnerability that can be exploited to cause memory corruption while parsing specially crafted files. This could

07 Jul 2026, 21:52 UTC View advisory →
CVE-2026-42955 Low 3.7

In NLnet Labs Unbound 1.16.2 up to and including 1.25.1, a similar vulnerability as with CVE-2026-40622 in the 'ghost domain names' family of attacks was f

22 Jul 2026, 13:05 UTC View advisory →
CVE-2026-42953 High 8.4

The application contains an out-of-bounds write vulnerability that can be exploited by an attacker to cause the program to write data past the end of an al

07 Jul 2026, 21:39 UTC View advisory →
CVE-2026-42952 High 8.7

Previously, there was no throttling on repeated authentication attempts to the charging station backend, which could allow an attacker to execute a denial-

10 Jul 2026, 22:09 UTC View advisory →
CVE-2026-42936 High 8.4

The installer of HYPER SBI 2 insecurely loads Dynamic Link Libraries. If there is a crafted DLL at the same directory when invoking the affected installer,

15 Jul 2026, 05:12 UTC View advisory →
CVE-2026-42900 High 8.1

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Store allows an unauthorized attacker to elevate

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-42867 Medium 6.5

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.0, Langflow is vulnerable to Path Traversal in the Knowledge Ba

23 Jun 2026, 16:29 UTC View advisory →
CVE-2026-42792 Medium 6.3

Improper Handling of Exceptional Conditions vulnerability in Erlang OTP erts (epmd) allows an unauthenticated remote attacker to permanently terminate the

27 Jul 2026, 14:58 UTC View advisory →
CVE-2026-42533 Critical 9.2

A vulnerability exists in NGINX Plus and NGINX Open Source when a map directive uses regex matching and a string expression references the map's regex capt

15 Jul 2026, 14:33 UTC View advisory →
CVE-2026-42505 Medium 5.3

Handshakes which used Encrypted Client Hello could be de-anonymized by a passive network observer due to a disclosure of pre-shared key identities in the u

08 Jul 2026, 15:46 UTC View advisory →
CVE-2026-42450 High 8.4

OpenColorIO is a color management framework for visual effects and animation. Prior to version 2.5.2, `FileFormatSpi3D.cpp:163` uses `sscanf` with `%s` int

24 Jun 2026, 13:20 UTC View advisory →
CVE-2026-42447 Low 3.6

jadx is a Dex to Java decompiler. Prior to 1.5.6, jadx-gui is affected by an HTML injection vulnerability in the Summary tab because SummaryNode.java appen

14 Jul 2026, 21:45 UTC View advisory →
CVE-2026-42390 Medium 5.3

An invalid zone might pass ZONEMD validation while it should not. This is only relevant if ZoneToCache is configured with ZONEMD validation.

25 Jun 2026, 13:01 UTC View advisory →
CVE-2026-42389 Medium 5.3

This fix provides extra hardening for the 5.4.x branch by doing extra validation of incoming answers from authoritative servers.

25 Jun 2026, 13:16 UTC View advisory →
CVE-2026-42388 Medium 5.9

Incomplete validation of the SOA record present in a catalog zone might lead to a crash.

25 Jun 2026, 12:59 UTC View advisory →
CVE-2026-42387 Medium 5.9

A malicious authoritative server can send a crafted zone via the ZoneToCache function that leads to a crash of the Recursor due to insuffcient input valida

25 Jun 2026, 12:59 UTC View advisory →
CVE-2026-42382 High 8.1

Unauthenticated Local File Inclusion in Audrey <= 1.5 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-42219 Medium 6.9

Frappe is a full-stack web application framework. Prior to 16.19.0 and 15.109.0, path traversal via download_backups was possible due to lack of hardening.

10 Jul 2026, 21:26 UTC View advisory →
CVE-2026-42218 Medium 5.3

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a timing side-channel vulnerability in the login interface. Due to a discrepancy in re

20 Jul 2026, 16:44 UTC View advisory →
CVE-2026-42210 Medium 5.3

Webmin is a web-based system administration tool for Unix-like servers. Prior to version 2.640, for Webmin accounts that require a second authentication fa

20 Jul 2026, 17:03 UTC View advisory →
CVE-2026-42169 High 7.3

A heap-buffer-overflow vulnerability exists in the APNG (Animated PNG) file loader of GIMP. This flaw occurs when the `fcTL` width exceeds the `IHDR` width

04 Aug 2026, 03:15 UTC View advisory →
CVE-2026-42129 High 7.7

The Loki datasource plugin's callResource handler contains a path traversal vulnerability. An authenticated Viewer-role user can escape the plugin's resour

22 Jun 2026, 13:18 UTC View advisory →
CVE-2026-42127 High 7.5

The public dashboard query endpoint does not limit request body size before processing, allowing unauthenticated attackers to trigger excessive memory allo

22 Jun 2026, 16:31 UTC View advisory →
CVE-2026-42049 High 8.4

jadx is a Dex to Java decompiler. Prior to 1.5.6, jadx inserts the android:versionName value from an AndroidManifest into the generated app/build.gradle Gr

14 Jul 2026, 21:44 UTC View advisory →
CVE-2026-42017 High 8.8

An event-handling weakness in JFrog Artifactory could expose privileged authorization material to a lower-privileged user under specific conditions.

27 Jul 2026, 19:26 UTC View advisory →
CVE-2026-42016 High 8.1

JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation check of the token signature/i

27 Jul 2026, 19:20 UTC View advisory →
CVE-2026-42005 Medium 4.3

An attacker can send a web request that causes unlimited memory allocation in the internal web server, leading to a denial of service. The internal web ser

25 Jun 2026, 11:57 UTC View advisory →
CVE-2026-42004 Low 3.7

An attacker can send a crafted EDNS OPT record that will be ignored by DNSdist’s filtering rules, but will be rewritten as a valid OPT record when EDNS Cli

25 Jun 2026, 12:24 UTC View advisory →
CVE-2026-41993 Medium 6.7

Improper Access Control vulnerability in the Removable Media Validation function of TXOne Networks products allows a local attacker with administrator priv

17 Jul 2026, 03:50 UTC View advisory →
CVE-2026-41992 Medium 6.9

GNU gzip contains a global buffer overflow vulnerability in the LZH decompression logic caused by improper reuse of shared global state between different d

29 Jun 2026, 10:15 UTC View advisory →
CVE-2026-41991 Low 2

GNU gzip contains a vulnerability in the gzexe utility related to insecure temporary file handling. When the mktemp utility is not available in the user’s

29 Jun 2026, 10:15 UTC View advisory →
CVE-2026-41896 High 7.5

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.474, the HMAC key is the applicatio

29 Jun 2026, 20:16 UTC View advisory →
CVE-2026-41880 Critical 9

R-SOFT DMS is vulnerable to OS Command Injection in the Optical Character Recognition (OCR) module. Multiple command execution functions accept user-contro

10 Jul 2026, 09:05 UTC View advisory →
CVE-2026-41879 High 8.2

R-SOFT DMS stores superadmin credentials using a non-salted nested MD5 hash. This allows an attacker who obtain password hash to decode superadmin credenti

10 Jul 2026, 09:05 UTC View advisory →
CVE-2026-41878 High 7.1

R-SOFT DMS is vulnerable to Insecure Direct Object Reference (IDOR) attack in multiple file download endpoints. The application fetches files from the data

10 Jul 2026, 09:05 UTC View advisory →
CVE-2026-41877 Medium 5.1

R-SOFT DMS is vulnerable to Stored XSS in file upload functionality. Authenticated attacker can inject arbitrary HTML and JS into the name of the file bein

10 Jul 2026, 09:05 UTC View advisory →
CVE-2026-41876 High 8.7

R-SOFT DMS is vulnerable to OS Command Injection in konwertujAction() function. The document converter executes shell commands using unsanitized file paths

10 Jul 2026, 09:05 UTC View advisory →
CVE-2026-41862 High 8.8

Spring Statemachine's Kryo-based persistence backends (JPA, MongoDB, Redis and ZooKeeper) deserialise persisted state-machine contexts without enforcing a

23 Jun 2026, 20:59 UTC View advisory →
CVE-2026-41861 Medium 4.2

Path Traversal in BOSH-Ecosystem / BOSH allows an IaaS-metadata attacker to make the agent write a root-owned file with partially attacker-controlled body

06 Aug 2026, 18:29 UTC View advisory →
CVE-2026-41857 High 7.1

A compromised or malicious BOSH Director can execute arbitrary shell commands on the operator's workstation when the operator runs bosh ssh (or bosh scp/bo

09 Jul 2026, 04:31 UTC View advisory →
CVE-2026-41709 Low 2.7

VMware ESX contains an insufficient logging vulnerability. A malicious administrator could exploit this issue to perform certain operations without them be

30 Jul 2026, 12:45 UTC View advisory →
CVE-2026-41703 High 7.6

VMware ESX, Workstation, and Fusion contain an out-of-bounds read vulnerability. A malicious actor with VM deployment privileges could trigger an out-of-bo

30 Jul 2026, 12:39 UTC View advisory →
CVE-2026-41637 Low 3.7

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, client terminated DNS-over-QUIC (DoQ) queries are not accounted properly by Unbound resulting in l

22 Jul 2026, 13:04 UTC View advisory →
CVE-2026-41608 Unscored

Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Python bindings. This issue affects Apache Thrift: before 0

27 Jul 2026, 10:53 UTC View advisory →
CVE-2026-41580 Medium 6.1

Stirling-PDF is a locally hosted web application that facilitates various operations on PDF files. Prior to 2.0.0, Stirling-PDF's /get-info-on-pdf endpoint

15 Jul 2026, 14:56 UTC View advisory →
CVE-2026-41579 Low 3.3

runc is a CLI tool for spawning and running containers according to the OCI specification. In versions prior to 1.3.6, 1.4.0-rc.1, 1.4.0-rc.12, 1.5.0-rc.1,

01 Jul 2026, 00:02 UTC View advisory →
CVE-2026-41566 Critical 9.4

Improper Handling of Insufficient Permissions or Privileges vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: 2.8.0. Users are recommende

25 Jun 2026, 08:04 UTC View advisory →
CVE-2026-41523 High 7.5

vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.22.0, an assert-based security check in vLLM's activation function loa

22 Jun 2026, 22:18 UTC View advisory →
CVE-2026-41521 High 8.2

xrdp is an open source RDP server. Versions 0.10.6 and prior contain an integer overflow vulnerability when processing screen update messages within the vn

20 Jul 2026, 16:41 UTC View advisory →
CVE-2026-41482 High 7.1

Frappe is a full-stack web application framework. Prior to 16.18.3, possible path traversal and local file inclusion were possible through secure local res

10 Jul 2026, 21:20 UTC View advisory →
CVE-2026-41479 Medium 5.4

Authlib is a Python library which builds OAuth and OpenID Connect servers. Prior to 1.6.10 and 1.7.1, Authlib's OAuth 2.0 authorization endpoint can be tur

22 Jun 2026, 20:35 UTC View advisory →
CVE-2026-41453 High 8.7

Krayin CRM before 2.2.4 contains a blind SQL injection vulnerability in the leads DataGrid that allows authenticated users with leads access to inject arbi

03 Aug 2026, 15:47 UTC View advisory →
CVE-2026-41452 Critical 9.3

Krayin CRM 2.2.4 contains a missing authentication vulnerability in the installer middleware that allows unauthenticated remote attackers to overwrite the

03 Aug 2026, 15:43 UTC View advisory →
CVE-2026-41447 High 8.5

FirmaCheck for Windows before 1.3.16 contains a dll hijacking vulnerability that allows local attackers to execute arbitrary code by placing a crafted open

03 Aug 2026, 20:58 UTC View advisory →
CVE-2026-41252 Critical 9.8

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a missing bounds check in xrdp, which allows a heap-based buffer overflow when operati

20 Jul 2026, 16:29 UTC View advisory →
CVE-2026-41187 Medium 6.2

Calico's apiserver wraps tier-scoped resources so that every operation runs through AuthorizeTierOperation, but the Delete override on NetworkPolicy, Globa

30 Jul 2026, 14:45 UTC View advisory →
CVE-2026-41186 Medium 6

When Calico's shared debug server is enabled (disabled by default), the Calico kube-controllers and Goldmane components bind their Go pprof debug listener

30 Jul 2026, 14:45 UTC View advisory →
CVE-2026-41154 Unscored

Software installed and run as a non-privileged user may cause OOB kernel memory reads or writes through GPU API calls. When indexing pages larger than 4kB

10 Jul 2026, 20:46 UTC View advisory →
CVE-2026-41122 High 7.1

Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.

08 Jul 2026, 13:26 UTC View advisory →
CVE-2026-41120 Critical 9.8

Dell Wyse Management Suite, versions prior to WMS 5.5 HF1, contain an Acceptance of Extraneous Untrusted Data With Trusted Data vulnerability. A low privil

25 Jun 2026, 13:28 UTC View advisory →
CVE-2026-41106 Critical 9.3

Url redirection to untrusted site ('open redirect') in M365 Copilot allows an unauthorized attacker to elevate privileges over a network.

02 Jul 2026, 22:18 UTC View advisory →
CVE-2026-41087 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-41053 High 8.8

Incorrect authentication caching in the team member ship expansion of the Rancher Github authentication provider caused it granting principal access to any

30 Jun 2026, 11:38 UTC View advisory →
CVE-2026-41052 Critical 9.4

Improper privilege handling could be used by users with Project Owner role to escalate privileges, in Rancher versions 2.14 before 2.14.2, 2.13 before 2.13

29 Jun 2026, 15:41 UTC View advisory →
CVE-2026-41049 High 8.4

Incorrect caching of authentication between different users of the qSnapper dbus service before version 1.3.3 allowed any local attacker to use dbus functi

22 Jun 2026, 15:32 UTC View advisory →
CVE-2026-41048 High 8.4

Incorrect caching of authentication between different polkit methods in qSnapper before version 1.3.3 allowed a local attacker to use functions like "resto

22 Jun 2026, 15:31 UTC View advisory →
CVE-2026-41047 Medium 6.9

Lack of authentication when using the "snapshot diff" functions in qSnapper before version 1.3.3 allowed a local attacker to see otherwise read protected i

22 Jun 2026, 15:25 UTC View advisory →
CVE-2026-41046 High 7.3

A path traversal attack when using a "configName" parameter in qSnapper before version 1.3.3 allowed a local attacker to use malicious config files for sna

22 Jun 2026, 15:20 UTC View advisory →
CVE-2026-41045 High 8.1

A time-to-check-time-of-use in polkit authentication of qSnapper before version 1.3.3 allowed a local attacker to bypass qSnappers authentication mechanism

22 Jun 2026, 15:16 UTC View advisory →
CVE-2026-41042 Critical 9.1

Unauthenticated callers can supply a malicious H2 JDBC URL through the testConnection API, which executes arbitrary Java code on the server via H2's INIT p

08 Jul 2026, 11:38 UTC View advisory →
CVE-2026-41041 Critical 9.1

URL path injection via unencoded user-supplied identifiers vulnerability in Apache Gravitino. This issue affects Apache Gravitino: from 1.0.0 before 1.2.1.

13 Jul 2026, 09:08 UTC View advisory →
CVE-2026-40958 Low 2.3

CVE-2026-40958 is a input validation error in Secure Access clients prior to 14.55. Attackers with intimate knowledge of and total control over the tunnel

15 Jul 2026, 20:02 UTC View advisory →
CVE-2026-40957 Medium 6.1

o CVE-2026-40957 is a frameable content vulnerability in the Secure Access server login page prior to 14.55. Attackers with control of a malicious web site

15 Jul 2026, 19:59 UTC View advisory →
CVE-2026-40956 Low 2.1

CVE-2026-40956 is a memory disclosure vulnerability in Secure Access client versions prior to 14.55. Attackers with intimate knowledge of and total control

15 Jul 2026, 19:55 UTC View advisory →
CVE-2026-40955 Low 2.1

CVE-2026-40955 is an integer underflow vulnerability in the traffic parsing function of Secure Access clients prior to 14.55. Attackers with intimate knowl

15 Jul 2026, 19:50 UTC View advisory →
CVE-2026-40954 Low 2.1

CVE-2026-40954 is an integer underflow vulnerability in the traffic parsing function of Secure Access clients prior to 14.55. Attackers with intimate knowl

15 Jul 2026, 19:44 UTC View advisory →
CVE-2026-40953 Medium 6.7

CVE-2026-40953 is a heap overflow in the certificate parsing function of Secure Access clients prior to 14.55. Attackers with local access and administrato

15 Jul 2026, 19:40 UTC View advisory →
CVE-2026-40952 High 8.5

CVE-2026-40952 is a privilege misconfiguration in the Secure Access installer for the Windows client and server prior to version 14.55. Attackers with loca

15 Jul 2026, 19:32 UTC View advisory →
CVE-2026-40941 High 7.1

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have a package import signature validation bypass allows whic

25 Jun 2026, 23:01 UTC View advisory →
CVE-2026-40717 Medium 6.6

Dell Monitor driver, version 1.0.0.0, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker w

03 Aug 2026, 17:30 UTC View advisory →
CVE-2026-40714 High 7.2

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability. A high privileged attacker with remote a

22 Jul 2026, 15:20 UTC View advisory →
CVE-2026-40712 Critical 9.1

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attack

22 Jul 2026, 15:28 UTC View advisory →
CVE-2026-40711 High 8

Dell Dell Container Storage Modules, version(s) csi-powerstore v2.16.0, csi-unity v2.16.0, csi-powerflex v2.16.0, csi-powermax v2.16.0, contain(s) an Impro

26 Jun 2026, 12:31 UTC View advisory →
CVE-2026-40702 Critical 9.3

WebSocket endpoints lack proper authentication mechanisms, enabling attackers to impersonate charging stations. As a result, attackers can exploit this wea

25 Jun 2026, 20:59 UTC View advisory →
CVE-2026-40691 High 7.5

In Unbound 1.9.0 up to and including 1.25.1, when a DNSCrypt query is received over TCP, the routine that encrypts the reply in place fails to bound the re

22 Jul 2026, 13:04 UTC View advisory →
CVE-2026-40633 High 7.8

Dell PowerScale OneFS versions 9.5.0.0 through 9.10.1.7, versions 9.11.0.0 through 9.13.0.2 contains an Insertion of Sensitive Information into Log File vu

15 Jul 2026, 10:07 UTC View advisory →
CVE-2026-40553 Medium 5.1

Buffer overflow vulnerability has been found in "extension/readdir.c" program file of gawk (ftype() routine). This issue could be used to crash the program

13 Jul 2026, 12:07 UTC View advisory →
CVE-2026-40524 High 7.2

FrontAccounting before 2.4.20 contains a SQL injection vulnerability in the get_gl_transactions() function where the filter_type parameter is concatenated

29 Jun 2026, 12:27 UTC View advisory →
CVE-2026-40523 High 7.2

FrontAccounting before 2.4.20 contains a SQL injection vulnerability in the Audit Trail report handler that allows authenticated attackers with SA_GLANALYT

29 Jun 2026, 12:29 UTC View advisory →
CVE-2026-40522 High 7.1

FrontAccounting before 2.4.20 contains a SQL injection vulnerability in the Bank Statement report handler that allows authenticated attackers to extract ar

29 Jun 2026, 12:29 UTC View advisory →
CVE-2026-40521 High 8.7

FrontAccounting before 2.4.20 contains a path traversal vulnerability in the attachment upload handler that allows authenticated attackers to execute arbit

29 Jun 2026, 12:30 UTC View advisory →
CVE-2026-40501 High 8.6

Cherry Studio versions 1.2.2 through 1.9.12, fixed in commit 1518530, contain a remote code execution vulnerability in SearchService that allows remote att

15 Jul 2026, 17:41 UTC View advisory →
CVE-2026-40469 Medium 5.1

Integer overflow vulnerability has been found in "builtin.c" program file of gawk (do_sub() routine). This issue could be used to overwrite gawk heap metad

13 Jul 2026, 12:07 UTC View advisory →
CVE-2026-40468 Low 2.1

Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system

13 Jul 2026, 12:07 UTC View advisory →
CVE-2026-40467 Medium 5.1

Use After Free vulnerability has been found in "io.c" program file of gawk (do_getline_redir() routine). This issue may lead to a crash. It affects gawk in

13 Jul 2026, 12:07 UTC View advisory →
CVE-2026-40454 High 7.5

Out-of-bounds Read, Improper Input Validation vulnerability in Apache IoTDB C++ client. Out-of-bounds reads in IoTDB C++ client TsBlock deserializer crash

10 Jul 2026, 07:19 UTC View advisory →
CVE-2026-40452 High 7.5

Incorrect Authorization, Improper Access Control vulnerability in Apache IoTDB. Authorization bypass in /rest/v2/fastLastQuery exposes last-value data to u

10 Jul 2026, 07:16 UTC View advisory →
CVE-2026-40422 Medium 5.5

Use of uninitialized resource in Windows File Explorer allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-40400 High 8

Relative path traversal in Windows PowerShell allows an authorized attacker to execute code over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-40378 High 7.5

Memory allocation with excessive size value in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker to deny service o

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-40211 Medium 5.3

An attacker can send crafted DNS over HTTP/3 queries, triggering an exception that prevents some buffer from being freed right away. The buffer will be fre

25 Jun 2026, 12:23 UTC View advisory →
CVE-2026-40210 Medium 4.8

An out-of-bounds read might happen when SetMacAddrAction is used, potentially resulting in uninitialized memory being sent over the network or a crash.

25 Jun 2026, 12:23 UTC View advisory →
CVE-2026-40209 Medium 5.3

An attacker might be able to cause outgoing TCP connections to backend to be stuck until a timeout occurs instead of being released immediately, by sending

25 Jun 2026, 12:23 UTC View advisory →
CVE-2026-40208 Low 3.7

An attacker might be able to delay the processing of DoH3 queries by sending DoH3 GET queries with an invalid DATA frame.

25 Jun 2026, 12:22 UTC View advisory →
CVE-2026-40187 High 8.6

In egroupware version 26.0 and earlier, an authenticated administrator can achieve OS-level Remote Code Execution (RCE) by uploading a malicious eTemplate

20 Jul 2026, 17:00 UTC View advisory →
CVE-2026-40106 Medium 4.7

Wazuh is a free and open source platform used for threat prevention, detection, and response. Versions 4.6.0 and above prior to 4.14.5 contain a heap-based

16 Jul 2026, 23:57 UTC View advisory →
CVE-2026-40084 Medium 6.5

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Path Traversal through the Report format_fi

25 Jun 2026, 22:43 UTC View advisory →
CVE-2026-40083 High 7.2

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have SQL Injection through unsanitized unserialize+implode in

25 Jun 2026, 22:39 UTC View advisory →
CVE-2026-40082 Medium 5.4

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have missing session_regenerate_id() after login, leading to

25 Jun 2026, 22:33 UTC View advisory →
CVE-2026-40080 Medium 6.1

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Open Redirect through a substring check rat

25 Jun 2026, 22:29 UTC View advisory →
CVE-2026-40079 High 8.6

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Command Injection due to lack of sanitizati

24 Jun 2026, 23:26 UTC View advisory →
CVE-2026-40012 Medium 5.3

ECS zero scoped answers are stored in the packet cache while they should not. This impacts only configurations that have ECS enabled;

25 Jun 2026, 12:58 UTC View advisory →
CVE-2026-40011 Low 3.7

An attacker sending a large number of crafted DNS queries might be able to trigger a dynamic block being inserted with a value causing invalid output to be

25 Jun 2026, 12:22 UTC View advisory →
CVE-2026-40009 Medium 6.5

Improper Privilege Management, Improper Access Control vulnerability in Apache IoTDB. Authenticated users can escalate to full tree-path access by renaming

10 Jul 2026, 07:15 UTC View advisory →
CVE-2026-40008 Critical 9.8

Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') vulnerability in Apache IoTDB. The pipe processor reads a fully qualifie

10 Jul 2026, 07:13 UTC View advisory →
CVE-2026-40007 High 7.5

Uncontrolled Recursion, Uncontrolled Resource Consumption vulnerability in Apache IoTDB. When pipe_air_gap_receiver_enabled=true, the IoTDB AirGap receiver

10 Jul 2026, 07:12 UTC View advisory →
CVE-2026-40006 High 7.5

Memory Allocation with Excessive Size Value, Allocation of Resources Without Limits or Throttling, Missing Authentication for Critical Function vulnerabili

10 Jul 2026, 07:10 UTC View advisory →
CVE-2026-40005 Critical 9.1

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache IoTDB. An attacker can write arbitrary files anywher

10 Jul 2026, 07:09 UTC View advisory →
CVE-2026-40000 Low 1.8

The Activity zte.com.cn.filer/zte.com.cn.filer.FilePreViewActivity within ZTE File Manager is designed to preview compressed files. Third-party application

27 Jul 2026, 09:35 UTC View advisory →
CVE-2026-39955 Critical 9.8

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have pre-authentication SQL Injection via unanchored FILTER_V

24 Jun 2026, 22:49 UTC View advisory →
CVE-2026-39951 High 7.6

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have a Stored SQL Injection vulnerability through graph_name_

24 Jun 2026, 23:14 UTC View advisory →
CVE-2026-39948 Critical 9.3

Cacti is an open source performance and fault management framework. In versions 1.2.30 and prior, the rfilter request parameter is retrieved via the raw ac

24 Jun 2026, 23:06 UTC View advisory →
CVE-2026-39938 Critical 9.8

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have unauthenticated LFI through graph_theme and rrdtool IPC

24 Jun 2026, 22:41 UTC View advisory →
CVE-2026-39932 Critical 9.4

OpenEMR through 8.2.0 contains a remote code execution vulnerability in the document category tree component (library/classes/Tree.class.php) that allows a

03 Aug 2026, 16:00 UTC View advisory →
CVE-2026-39931 High 8.6

OpenEMR through 8.2.0 contains an authenticated SQL injection vulnerability in the backup configuration import feature that allows administrators with admi

03 Aug 2026, 15:54 UTC View advisory →
CVE-2026-39924 High 7.6

Flarum before 1.8.16 contains an improper session invalidation vulnerability that allows attackers who hold a valid session token to retain full account ac

05 Aug 2026, 14:40 UTC View advisory →
CVE-2026-39923 Critical 9.2

Flarum before 1.8.16 contains a password reset token expiry bypass vulnerability that allows unauthenticated attackers to reuse expired password reset toke

05 Aug 2026, 14:38 UTC View advisory →
CVE-2026-39904 High 7.1

Gophish through 0.12.1 contains a denial of service vulnerability that allows authenticated users with the User role to exhaust server memory by uploading

22 Jun 2026, 20:11 UTC View advisory →
CVE-2026-39903 High 7.1

Simple Machines Forum 2.1 prior to 2.1.8 and 3.0 prior to 3.0 Alpha 5 contains an authorization bypass vulnerability in Sources/Actions/AttachmentApprove.p

10 Jul 2026, 16:03 UTC View advisory →
CVE-2026-39900 Medium 5.3

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Reflected XSS via tab parameter in the auth

24 Jun 2026, 22:37 UTC View advisory →
CVE-2026-39899 Medium 6.9

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Path Traversal via filename parameter in pa

24 Jun 2026, 22:33 UTC View advisory →
CVE-2026-39897 Medium 5.3

Cacti is an open source performance and fault management framework. Versions 1.2.30 and below contain a Reflected XSS vulnerability in the html_auth_footer

24 Jun 2026, 22:00 UTC View advisory →
CVE-2026-39894 Low 2.9

Cacti is an open source performance and fault management framework. In versions 1.2.30 and below, the locale-dependent decimal formatting in rrdtool_functi

24 Jun 2026, 21:55 UTC View advisory →
CVE-2026-39893 Critical 9.8

Cacti is an open source performance and fault management framework. In versions 1.2.30 and prior, the rfilter request variable was concatenated into a RLIK

24 Jun 2026, 21:45 UTC View advisory →
CVE-2026-39879 High 7.1

Due to a missing sanitization call in [`afsql_dd_run_query`](https://github.com/syslog-ng/syslog-ng/blob/649e6e18e3459fb4467000a88dfb12fa97f9719c/modules/a

20 Jul 2026, 16:57 UTC View advisory →
CVE-2026-39878 Critical 9.3

Chamilo LMS versions 1.11.38 and earlier contain a stored cross-site scripting vulnerability in the user registration form that allows any unauthenticated

20 Jul 2026, 17:08 UTC View advisory →
CVE-2026-39877 Unscored

A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. An app may be able

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-39875 High 7.8

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A malic

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-39874 High 7.8

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A malic

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-39873 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. Connecting to a

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-39872 Medium 6.5

The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. Processing m

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-39868 Unscored

This issue was addressed with improved input validation. This issue is fixed in iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe 26.5.2. An app may be able to cau

29 Jun 2026, 19:43 UTC View advisory →
CVE-2026-39822 High 7.8

On Unix systems, opening a file in an os.Root improperly follows symlinks to locations outside of the Root when the final path component of the a path is a

08 Jul 2026, 15:46 UTC View advisory →
CVE-2026-39448 High 7.5

Unauthenticated Broken Access Control in NOWPayments for WooCommerce <= 1.4.0 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-39385 High 7.1

Frappe LMS is an open source learning management system. In version 2.51.0 and earlier, a user could bypass payment validation for courses by using unrelat

20 Jul 2026, 16:55 UTC View advisory →
CVE-2026-39359 High 7.5

Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 4.0.0 through 4.10.3 and 4.11.0 through 4.14.4, a

16 Jul 2026, 23:55 UTC View advisory →
CVE-2026-38059 High 8.7

The iDirect iQ200 exposes the /api/identity and /api/ REST API endpoints without authentication. An unauthenticated attacker with network access can retrie

10 Jul 2026, 14:11 UTC View advisory →
CVE-2026-38057 High 7

The iDirect iQ200 does not validate CSRF tokens on state-changing API endpoints after authentication. The /api/reboot endpoint accepts POST requests authen

10 Jul 2026, 14:11 UTC View advisory →
CVE-2026-35591 High 7

libvips is a fast image processing library with low memory needs. The `tiffload` operation in libvips versions before and including 8.18.1 could incorrectl

20 Jul 2026, 16:24 UTC View advisory →
CVE-2026-35590 Medium 6.8

libvips is a fast image processing library with low memory needs. The EXIF decoder within libvips versions before and including 8.18.1 was not verifying th

20 Jul 2026, 16:23 UTC View advisory →
CVE-2026-35505 High 8.7

An unauthenticated remote attacker can repeatedly send crafted connection requests to leak memory. In single-process deployments the memory grows until the

30 Jun 2026, 21:09 UTC View advisory →
CVE-2026-35217 Medium 6.5

NanoMQ contains a protocol-semantics flaw in its MQTT v5 `SUBSCRIBE` handling: if a subscription entry is missing the final 1-byte `Subscription Options` f

20 Jul 2026, 16:39 UTC View advisory →
CVE-2026-35211 Medium 6.5

OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260401.0, the OpenCTI GraphQL API exposes a

08 Jul 2026, 21:08 UTC View advisory →
CVE-2026-35210 High 7.1

OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260326.0, an authorization bypass vulnerabi

08 Jul 2026, 21:06 UTC View advisory →
CVE-2026-35198 Critical 9

HeyForm is an open-source form builder. Prior to version 3.0.0-rc.7, a stored cross-site scripting (XSS) vulnerability in the form builder allows a low-pri

20 Jul 2026, 15:47 UTC View advisory →
CVE-2026-35152 High 8.8

A SQL Injection vulnerability exists in Apache Fineract's Report Execution API (runreports endpoint) in versions up to and including 1.14.0. Report paramet

15 Jul 2026, 09:19 UTC View advisory →
CVE-2026-35149 High 8.2

HCL DFXServer is affected by an Authentication Bypass vulnerability via server response manipulation. An unauthorized user without valid credentials can ex

16 Jul 2026, 11:03 UTC View advisory →
CVE-2026-35148 Medium 6.3

HCL DFXServer is affected by a Missing Access Control vulnerability. This vulnerability states that certain endpoints are accessible without any form of au

16 Jul 2026, 11:02 UTC View advisory →
CVE-2026-35147 High 8.2

HCL DFXServer is affected by a Broken Authentication vulnerability via direct API access. The application fails to verify the user's authentication status

16 Jul 2026, 11:04 UTC View advisory →
CVE-2026-35146 Medium 6.3

HCL DFXServer is affected by an Unencrypted Communication vulnerability. The application permits users to establish connections over unencrypted channels v

16 Jul 2026, 11:01 UTC View advisory →
CVE-2026-35145 Low 3.1

HCL DFXAnalytics is affected by a Missing HTTP Strict-Transport-Security Header vulnerability. The application fails to implement the HTTP Strict Transport

16 Jul 2026, 13:05 UTC View advisory →
CVE-2026-35143 Low 3

HCL DFXAnalytics is affected by a Missing SameSite Attribute vulnerability. The application fails to set the "SameSite" attribute on session cookies genera

16 Jul 2026, 13:04 UTC View advisory →
CVE-2026-35142 Low 2.6

HCL DFXAnalytics is affected by an Internal IP Address Disclosure vulnerability. The application includes internal IP address details within its generated

16 Jul 2026, 13:02 UTC View advisory →
CVE-2026-35141 Low 2.6

HCL DFXAnalytics is affected by a Login Replay Attack vulnerability. The application allows a remote attacker to intercept, delay, or fraudulently retransm

16 Jul 2026, 12:59 UTC View advisory →
CVE-2026-35140 Low 3

HCL DFXAnalytics is affected by a Missing Secure Attribute in Encrypted Session (SSL) Cookie vulnerability. The application fails to set the "secure" attri

16 Jul 2026, 12:48 UTC View advisory →
CVE-2026-35098 Medium 6.9

KTM System e-BOK does not implement any limit or timeout on consecutive login attempts, allowing an attacker to perform unlimited authentication requests.

30 Jun 2026, 13:37 UTC View advisory →
CVE-2026-35097 Medium 6.9

KTM System e-BOK enforces a maximum password length of six numeric digits and does not permit the use of any alphabetic, special, or extended characters. T

30 Jun 2026, 13:37 UTC View advisory →
CVE-2026-35096 Medium 5.1

KTM System e-BOK is vulnerable to Cross‑Site Request Forgery (CSRF) in both the email-change and password-change functionalities. An attacker can craft a m

30 Jun 2026, 13:37 UTC View advisory →
CVE-2026-35095 Medium 4.8

KTM System e-BOK allows the session identifier to be set by the client prior to authentication. If a cookie with a valid name is set, its value remains unc

30 Jun 2026, 13:37 UTC View advisory →
CVE-2026-35048 Critical 9.8

The Piwigo installer in versions 16.3.0 and earlier accepts POST parameters for database configuration and writes them directly into a PHP configuration fi

20 Jul 2026, 16:27 UTC View advisory →
CVE-2026-35025 High 8.6

ProFTPD through 1.3.9b and 1.3.10rc2 contains an access control bypass vulnerability that allows authenticated FTP users to circumvent Directory ACL restri

24 Jun 2026, 13:21 UTC View advisory →
CVE-2026-35019 Critical 9.2

NetComm NF20MESH routers running firmware R6B031 and earlier contain an authentication bypass vulnerability that allows unauthenticated attackers to gain a

23 Jun 2026, 13:48 UTC View advisory →
CVE-2026-35018 High 8.7

NetComm NF20MESH routers running firmware R6B031 and earlier contain an authenticated remote code execution vulnerability that allows authenticated attacke

23 Jun 2026, 13:46 UTC View advisory →
CVE-2026-34966 High 8.3

Gitea prior to 1.27.0 contains a server-side request forgery vulnerability that allows authenticated attackers to bypass SSRF protections by exploiting HTT

05 Aug 2026, 20:28 UTC View advisory →
CVE-2026-34917 Medium 4.3

Low‑privileged session IDs generated for the web admin console could be reused in the XML‑RPC API, whose authentication is normally restricted to admin use

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-34916 High 8.8

A missing validation of user input when saving delivery limitations in Revive Adserver 6.0.6 and earlier could allow a low‑privileged user to use the logic

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-34915 Medium 6.1

A missing sanitisation of user input in the zone-include.php script of Revive Adserver 6.0.6 and earlier could allow a low‑privileged user to exploit the c

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-34914 High 8.3

A missing sanitisation of user input in the zone-include.php script of Revive Adserver 6.0.6 and earlier. A low‑privileged user could exploit the clientid

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-34913 Medium 4.3

A missing access control check when linking trackers to campaigns through the campaign-trackers.php script of Revive Adserver 6.0.6 and earlier could allow

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-34912 Medium 4.3

A missing access control check when linking banners or campaigns to a zone through the zone-include.php script of Revive Adserver 6.0.6 and earlier, or via

23 Jun 2026, 16:14 UTC View advisory →
CVE-2026-34641 High 7.8

Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploita

31 Jul 2026, 23:08 UTC View advisory →
CVE-2026-34597 High 8.8

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.470, a critical Authenticated Host

29 Jun 2026, 20:18 UTC View advisory →
CVE-2026-34594 High 8.8

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.471, an authenticated command injec

29 Jun 2026, 20:21 UTC View advisory →
CVE-2026-34592 High 7.7

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.471, Coolify server and project loo

29 Jun 2026, 21:47 UTC View advisory →
CVE-2026-34502 High 7.5

Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility memcached client This issue affects Apache Portable Runtime Utility: from 1.3.0

06 Aug 2026, 14:31 UTC View advisory →
CVE-2026-34501 High 7.5

Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility redis client. This issue affects Apache Portable Runtime Utility: from 1.6.0 th

06 Aug 2026, 14:31 UTC View advisory →
CVE-2026-34497 Medium 4.8

Improper neutralization of Script-Related HTML tags in a web page (basic XSS) vulnerability in Johnson Controls FM Systems Employee allows Cross-Site Scrip

31 Jul 2026, 17:31 UTC View advisory →
CVE-2026-34495 Medium 4.8

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Johnson Controls FM Systems Employee allows Stored XS

31 Jul 2026, 17:30 UTC View advisory →
CVE-2026-34490 Medium 4.8

Cleartext storage of sensitive information vulnerability in Johnson Controls XAAP Application on Android allows an attacker on a jailbroken or otherwise co

31 Jul 2026, 17:17 UTC View advisory →
CVE-2026-34349 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-34348 Medium 6.5

Protection mechanism failure in Windows Event Logging Service allows an authorized attacker to disclose information over a network.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-34346 Medium 5.5

Cleartext transmission of sensitive information in Windows Ancillary Function Driver for WinSock allows an authorized attacker to disclose information loca

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-34328 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows Audio Service allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-34239 High 7.5

Chamilo version 1.11.40 and earlier are vulnerable to authenticated remote code execution in the main/inc/ajax/lang.ajax.php path. This endpoint is protect

20 Jul 2026, 17:11 UTC View advisory →
CVE-2026-34196 Unscored

Software installed and run as a non-privileged user may conduct improper GPU system calls to cause an integer overflow and map two GPU virtual addresses to

10 Jul 2026, 20:42 UTC View advisory →
CVE-2026-34191 Critical 9.1

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Portable Runtime Utility via apr_dbd_oracle pr

06 Aug 2026, 14:32 UTC View advisory →
CVE-2026-34150 High 7.5

Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 1.0.0 and above, prior to 4.14.5, a heap buffer o

16 Jul 2026, 23:44 UTC View advisory →
CVE-2026-33842 Medium 5.5

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

14 Jul 2026, 17:05 UTC View advisory →
CVE-2026-33760 High 8.8

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.0, Langflow's /api/v1/monitor router exposes 7 endpoints that p

23 Jun 2026, 16:30 UTC View advisory →
CVE-2026-33754 Medium 6.5

Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 3.9.0 and above, prior to 4.14.5, a remote attack

16 Jul 2026, 23:40 UTC View advisory →
CVE-2026-33731 Medium 6.5

WWBN AVideo is an open source video platform. In versions prior to 29.0, the Authorize.Net webhook handler at plugin/AuthorizeNet/webhook.php contains a si

16 Jul 2026, 20:46 UTC View advisory →
CVE-2026-33692 High 7.5

WWBN AVideo is an open source video platform. Versions prior to 29.0 expose .env files to unauthenticated users through the official Docker compose configu

16 Jul 2026, 20:27 UTC View advisory →
CVE-2026-33684 Medium 5.3

WWBN AVideo is an open source video platform. Prior to version 29.0, Privilege Escalation is possible through unguarded permission parameters in signUp API

15 Jul 2026, 20:47 UTC View advisory →
CVE-2026-33646 Critical 9.6

mise manages dev tools like node, python, cmake, and terraform. Prior to 2026.3.10, mise processes .tool-versions files through the Tera template engine du

26 Jun 2026, 16:51 UTC View advisory →
CVE-2026-33612 High 7.5

A malicious authoritative server can send a crafted zone via the ZoneToCache function that leads to cache poisoning.

25 Jun 2026, 12:58 UTC View advisory →
CVE-2026-33592 High 7.5

An unauthenticated remote attacker can exhaust server memory via the FindServers Discovery Service in open62541. The serverUris field of FindServersRequest

02 Jul 2026, 07:12 UTC View advisory →
CVE-2026-33591 Critical 10

A vulnerability in Wapt Server before version 2.6.1.17813 allows a remote unauthenticated attacker to bypass security restriction using a specially crafted

03 Aug 2026, 09:35 UTC View advisory →
CVE-2026-33560 High 8.4

The DMP-5000 file service exposes authenticated arbitrary file upload functionality. There are exposed endpoints which allows authenticated users to upload

26 Jun 2026, 22:48 UTC View advisory →
CVE-2026-33543 Critical 9.3

FOSSBilling is a free, open-source billing and client management system. Versions 0.7.2 and prior expose a guest API endpoint, /api/guest/staff/create, int

24 Jun 2026, 21:01 UTC View advisory →
CVE-2026-33445 High 8.7

CVE-2026-33445 is a memory management vulnerability in Secure Access servers prior to 14.55. Attackers with an intimate knowledge of and total control over

15 Jul 2026, 20:13 UTC View advisory →
CVE-2026-33444 Medium 6.9

CVE-2026-33444 is a memory management vulnerability in Secure Access servers prior to 14.55. Attackers with intimate knowledge of and total control over th

15 Jul 2026, 20:10 UTC View advisory →
CVE-2026-33443 High 7.1

CVE-2026-33443 is a memory management error in Secure Access servers prior to 14.55. Attackers with an intimate knowledge of and total control over the tun

15 Jul 2026, 20:06 UTC View advisory →
CVE-2026-33434 Medium 4.3

Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions 4.6.0 and above, prior to 4.14.5, a logic error i

16 Jul 2026, 23:36 UTC View advisory →
CVE-2026-33382 High 7.5

Several Grafana API endpoints, some of them unauthenticated, do not limit the size of the request body before processing it. An attacker can send very larg

10 Jul 2026, 14:58 UTC View advisory →
CVE-2026-33328 Medium 6.8

libvips is a fast image processing library with low memory needs. On 32-bit systems in versions before and including 8.18.0, the `gifload` operation could

20 Jul 2026, 16:22 UTC View advisory →
CVE-2026-33327 High 7

libvips is a fast image processing library with low memory needs. The `vipsload` operation in versions before and including 8.18.0 could incorrectly determ

20 Jul 2026, 16:21 UTC View advisory →
CVE-2026-33264 Critical 9.8

A bug in `BaseSerialization.deserialize()` allowed unrestricted `import_string()` of attacker-controlled class paths when the Scheduler / API Server loaded

07 Jul 2026, 09:20 UTC View advisory →
CVE-2026-33235 High 7.7

AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. In versions prior to 0.6.52, the

24 Jun 2026, 20:52 UTC View advisory →
CVE-2026-33213 Medium 6.1

Redash is a package for data visualization and sharing. From 5.0.2 to 26.3.0, the get_next_path() function in Redash's authentication module stripped the s

15 Jul 2026, 14:36 UTC View advisory →
CVE-2026-33181 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-33942. Reason: This candidate is a duplicate of CVE-2026-33942. Notes: All CVE users sh

07 Aug 2026 View advisory →
CVE-2026-32835 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

06 Aug 2026 View advisory →
CVE-2026-32833 High 8.7

Cudy LT300 3.0 running firmware prior to version 2.5.12 contains an OS command injection vulnerability that allows authenticated attackers to execute arbit

26 Jun 2026, 19:54 UTC View advisory →
CVE-2026-32825 High 7.3

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling co

20 Jul 2026, 16:15 UTC View advisory →
CVE-2026-32824 High 7.3

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling co

20 Jul 2026, 16:14 UTC View advisory →
CVE-2026-32823 Medium 4.3

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling co

20 Jul 2026, 16:12 UTC View advisory →
CVE-2026-32822 Medium 6.1

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling co

20 Jul 2026, 15:34 UTC View advisory →
CVE-2026-32821 High 8.1

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling co

20 Jul 2026, 16:11 UTC View advisory →
CVE-2026-32820 High 7.5

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling co

20 Jul 2026, 16:09 UTC View advisory →
CVE-2026-32819 Medium 4.3

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling co

20 Jul 2026, 16:07 UTC View advisory →
CVE-2026-32807 High 7.5

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling co

20 Jul 2026, 15:31 UTC View advisory →
CVE-2026-32806 High 7.5

dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling co

20 Jul 2026, 16:10 UTC View advisory →
CVE-2026-32665 High 7.5

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, when downstream DNS-over-QUIC (DoQ) is enabled, the first two bidirectional streams on a new QUIC

22 Jul 2026, 13:04 UTC View advisory →
CVE-2026-32548 Medium 5.3

Unauthenticated Broken Access Control in SureCart <= 4.6.2 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-32469 Medium 5.3

Unauthenticated Bypass Vulnerability in CAPTCHA 4WP <= 7.6.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-32327 Critical 9.1

A bug in APR-util version 1.6.3 (and earlier) allows a stack recursion attack against any library consumer which parses XML from untrusted sources and uses

06 Aug 2026, 14:32 UTC View advisory →
CVE-2026-32315 Medium 5.5

motionEye (mEye) is an online interface for motion software, a video surveillance program with motion detection. Versions prior to 0.44.0 create the config

24 Jun 2026, 20:45 UTC View advisory →
CVE-2026-31978 Medium 6.5

motionEye (mEye) is an online interface for motion software, which is a video surveillance program with motion detection. Versions prior to 0.44.0 are vuln

24 Jun 2026, 20:28 UTC View advisory →
CVE-2026-31928 Critical 9.3

The DMP-5000 devices are shipped with a default administrative web account with weak authentication controls, which are not required to be changed during i

26 Jun 2026, 22:52 UTC View advisory →
CVE-2026-29519 Medium 6.2

Lucee CFML Server versions across the 5.3.x, 6.1.x, 6.2.x, and 7.0.x release lines contain a reflected cross-site scripting vulnerability in URL path parsi

10 Jul 2026, 14:09 UTC View advisory →
CVE-2026-29509 Medium 5.3

Patool before 4.0.5 contains a path traversal vulnerability in the safe_extract() function in patoolib/programs/py_tarfile.py when running on Python before

26 Jun 2026, 19:31 UTC View advisory →
CVE-2026-29034 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

25 Jun 2026 View advisory →
CVE-2026-29009 High 8.8

U-Boot through 2026.04-rc3 contains a buffer overflow vulnerability in nfs_readlink_reply() (net/nfs-common.c) when CONFIG_CMD_NFS is enabled, allowing a m

08 Jul 2026, 16:16 UTC View advisory →
CVE-2026-29008 High 8.7

U-Boot through 2026.04-rc3 contains an integer underflow vulnerability in the tcp_rx_state_machine() function (net/tcp.c) that allows a network-adjacent at

08 Jul 2026, 16:14 UTC View advisory →
CVE-2026-29007 Medium 6.9

U-Boot through 2026.04-rc3 contains an out-of-bounds read vulnerability in tcp_rx_state_machine() (net/tcp.c) when CONFIG_PROT_TCP is enabled, allowing rem

08 Jul 2026, 16:11 UTC View advisory →
CVE-2026-28982 Unscored

A race condition was addressed with improved locking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A remote user may

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-28981 Unscored

A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. Processi

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-28979 Medium 6.5

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and iPadOS 26.5.2, macOS Tahoe

29 Jun 2026, 19:42 UTC View advisory →
CVE-2026-28973 Unscored

An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-28945 Unscored

A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6.

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-28932 Unscored

A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-28931 Unscored

A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, watchOS 26.6.

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-28928 Unscored

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, watchOS

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-28926 Unscored

A race condition was addressed with improved state handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. An app may be able to elevat

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-28912 Unscored

A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Tahoe 26.6. A user may be able to elevate privil

27 Jul 2026, 20:12 UTC View advisory →
CVE-2026-28911 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.8.8, macOS Tahoe 26.6. A malicious app may be able to corrupt

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-28900 Unscored

A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. A maliciously crafted ZIP

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-28898 Medium 5.3

swift-nio-http2's HTTP/2-to-HTTP/1.1 codec did not validate pseudo-header values for control characters before placing them into the translated HTTP/1.1 me

25 Jun 2026, 18:36 UTC View advisory →
CVE-2026-28896 Unscored

The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. An attacker may be able to cause u

27 Jul 2026, 20:13 UTC View advisory →
CVE-2026-28849 Unscored

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. A maliciously crafted ZIP archive may bypas

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-28814 Unscored

Arbitrary Wiki Markup rendering due to lack of authentication in Apache JSPWiki up to 2.12.3 allows attacker to obtain sensitive data stored in JSPWiki var

30 Jul 2026, 15:55 UTC View advisory →
CVE-2026-28813 Unscored

Apache JSPWiki, up to 2.12.3, is vulnerable to JSON Hijacking, which leads to csrf vulnerabilities. Users are recommended to upgrade to version 2.12.4, whi

30 Jul 2026, 15:54 UTC View advisory →
CVE-2026-28812 Unscored

UserManager lack of checks allows impersonation in Apache JSPWiki up to 2.12.3 which may allow attackers to escalate privileges. Users are recommended to u

30 Jul 2026, 15:52 UTC View advisory →
CVE-2026-28811 Unscored

Debug Messages Revealing Unnecessary Information in Apache JSPWiki up to 2.12.3. Users are recommended to upgrade to version 2.12.4, which fixes this issue

30 Jul 2026, 15:51 UTC View advisory →
CVE-2026-28701 Critical 9.3

Various versions of Daktronics Controller Firmware could allow authenticated and unauthenticated remote users to escape the intended directory and enumerat

26 Jun 2026, 22:40 UTC View advisory →
CVE-2026-28564 Critical 9.8

Insufficient Session Expiration, Authentication Bypass by Capture-replay vulnerability in Apache IoTDB. REST Basic Authentication Accepts Stale Cached Cred

10 Jul 2026, 07:08 UTC View advisory →
CVE-2026-28496 Critical 9.4

FOSSBilling is a free, open-source billing and client management system. Versions prior to 0.8.0 have a Server-Side Template Injection (SSTI) vulnerability

23 Jun 2026, 14:20 UTC View advisory →
CVE-2026-28385 Medium 5

In Canonical LXD versions 4.12 through 6.9, a Server-Side Request Forgery (SSRF) vulnerability in the image import functionality allows authenticated users

26 Jun 2026, 16:23 UTC View advisory →
CVE-2026-28381 Critical 9.6

The Snowflake datasource allows for GET/PUT commands, which can allow any user with access to run queries against the data source to read/write files betwe

22 Jun 2026, 13:20 UTC View advisory →
CVE-2026-28378 Low 3.1

The public dashboard deletion endpoint does not enforce organization isolation, allowing an Org Admin in one organization to delete public dashboards belon

07 Jul 2026, 21:08 UTC View advisory →
CVE-2026-28323 Critical 9.8

SolarWinds Web Help Desk is found to be affected by a SAML authentication bypass vulnerability. This requires the SAML 2.0 authentication method to be enab

30 Jul 2026, 15:55 UTC View advisory →
CVE-2026-28322 Medium 5.6

SolarWinds Database Performance Analyzer was found to be affected by a stored cross-site scripting vulnerability, which when exploited, can lead to uninten

30 Jun 2026, 22:15 UTC View advisory →
CVE-2026-28220 High 8.4

Wazuh is a free and open source platform used for threat prevention, detection, and response. Prior to version 4.14.5, issues in the Cluster Distributed AP

20 Jul 2026, 15:26 UTC View advisory →
CVE-2026-28183 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28180 Medium 5.3

Unauthenticated Insecure Direct Object References (IDOR) in Mercado Pago payments for WooCommerce <= 8.9.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28179 Medium 5.9

Shop manager Cross Site Scripting (XSS) in FiboSearch <= 1.33.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28178 Medium 6.5

Contributor Cross Site Scripting (XSS) in Powerkit <= 3.1.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28177 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Popup Maker <= 1.23.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28172 High 7.1

Unauthenticated Cross Site Request Forgery (CSRF) in Tracking Code Manager <= 2.6.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28169 Medium 5.3

Unauthenticated Sensitive Data Exposure in YITH WooCommerce Zoom Magnifier <= 2.52.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28147 Medium 5.4

Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) allows Exploiting Incorrectly

03 Aug 2026, 07:09 UTC View advisory →
CVE-2026-28146 Medium 6.5

Contributor Arbitrary File Download in Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 2.0.14 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28145 Medium 5.3

Insufficient Verification of Data Authenticity vulnerability in StylemixThemes MasterStudy LMS allows Manipulating User State. This issue affects MasterStu

31 Jul 2026, 13:19 UTC View advisory →
CVE-2026-28144 Medium 4.3

Insertion of Sensitive Information Into Sent Data vulnerability in Flipper Code WP Maps allows Retrieve Embedded Sensitive Data. This issue affects WP Maps

31 Jul 2026, 13:41 UTC View advisory →
CVE-2026-28143 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Forminator <= 1.56.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28141 High 7.1

Unauthenticated Cross Site Scripting (XSS) in NextGEN Gallery <= 4.2.3 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28140 High 7.5

Unauthenticated Broken Access Control in JetFormBuilder <= 3.6.4.1 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28139 Critical 9.8

Unauthenticated PHP Object Injection in Ajax Search Lite <= 4.14.4 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28111 High 8.8

Contributor Privilege Escalation in Forminator <= 1.56.0 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28082 High 7.1

Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.13.1 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-28005 Critical 9.8

Unauthenticated Privilege Escalation in Kadence WooCommerce Email Designer <= 1.5.19 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-27957 High 8.8

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.464, an authenticated command injec

30 Jun 2026, 14:39 UTC View advisory →
CVE-2026-27956 Medium 4.3

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.464, `GET /api/v1/servers/{server_u

30 Jun 2026, 14:38 UTC View advisory →
CVE-2026-27955 Medium 6.6

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.464, the executeInDocker() helper w

30 Jun 2026, 14:36 UTC View advisory →
CVE-2026-27883 Medium 5

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.464, the `GET /api/v1/deployments/{

30 Jun 2026, 14:32 UTC View advisory →
CVE-2026-27882 Medium 4.8

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.461, the GitLab webhook endpoint us

30 Jun 2026, 14:26 UTC View advisory →
CVE-2026-27881 Medium 5

Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.464, `GET /api/v1/deployments/{uuid

30 Jun 2026, 14:28 UTC View advisory →
CVE-2026-27823 High 8.7

A vulnerability has been identified in EGroupware that may lead to Remote Code Execution (RCE). The issue allows an authenticated attacker to execute arbit

20 Jul 2026, 15:24 UTC View advisory →
CVE-2026-27708 High 7.1

FOSSBilling is a free, open-source billing and client management system. In versions 0.7.2 and prior, the Servicecustom Client API's __call method accepts

24 Jun 2026, 19:24 UTC View advisory →
CVE-2026-27690 Critical 9.1

Due to an HTTP Request Smuggling vulnerability in SAP Approuter, an unauthenticated attacker could send a specially crafted HTTP request that leads to requ

14 Jul 2026, 00:17 UTC View advisory →
CVE-2026-27604 Critical 10

FOSSBilling is a free, open-source billing and client management system. Starting in version 0.5.4 and prior to version 0.8.0, an authorization bypass in t

23 Jun 2026, 14:25 UTC View advisory →
CVE-2026-27436 Critical 9.1

Editor Arbitrary Code Execution in Five Star Business Profile and Schema <= 2.3.19 versions.

02 Jul 2026, 11:15 UTC View advisory →
CVE-2026-27433 Medium 6.5

Unauthenticated Broken Access Control in Motors <= 5.6.80 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2026-27430 High 7.1

Unauthenticated Cross Site Scripting (XSS) in TheFox <= 3.9.76 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2026-27426 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Automotive Car Dealership Business <= 13.3.3 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2026-27425 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Automotive Listings <= 18.6 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2026-27419 Critical 9.9

Subscriber Arbitrary File Upload in Zegen <= 1.1.9 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2026-27414 High 8.8

Contributor PHP Object Injection in Werkstatt <= 4.8.3 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2026-27412 High 8.1

Unauthenticated Local File Inclusion in Pearl - Corporate Business <= 3.4.10 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2026-27408 High 7.1

Unauthenticated Cross Site Scripting (XSS) in NativeChurch <= 4.8.8.2 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2026-27404 High 7.1

Unauthenticated Cross Site Scripting (XSS) in LMS <= 9.7 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2026-27402 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Kids Life | Children School WordPress <= 5.2 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2026-27366 High 7.5

Unauthenticated Broken Access Control in MainWP Child <= 6.1.1 versions.

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-27060 High 8.8

Contributor PHP Object Injection in ARMember Premium <= 7.0 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2026-26199 Medium 5.9

HDF5 is a high-performance library and a file format specification that implements the HDF5 data model. If `H5Iget_name` is invoked on a group id with `0`

20 Jul 2026, 14:59 UTC View advisory →
CVE-2026-26197 Medium 5.9

HDF5 is a high-performance library and a file format specification that implements the HDF5 data model. If a file is corrupted such that an array datatype'

20 Jul 2026, 14:55 UTC View advisory →
CVE-2026-26145 Medium 4.8

Improper access control in Azure Synapse allows an authorized attacker to elevate privileges over a network.

02 Jul 2026, 22:18 UTC View advisory →
CVE-2026-26032 Medium 5.4

The PackagerResolver of Apache Ivy is able to download online artifacts and to (re)package them in a format defined by a packager.xml file. This repackagin

15 Jul 2026, 18:49 UTC View advisory →
CVE-2026-25707 High 8.8

A relative path traversal bug problem when processing repository metadata in libzypp before 17.38.10 could be used by remote attackers supplying repositori

29 Jun 2026, 10:04 UTC View advisory →
CVE-2026-25703 High 7.3

NeuVector through 5.4.9 is can potentially leak information from manager /network/graph API due to missing authentication and cached data containing sensit

05 Aug 2026, 09:48 UTC View advisory →
CVE-2026-25552 Medium 6.3

Ghost CLI before 1.30.1 contains an IP spoofing vulnerability that allows unauthenticated remote attackers to bypass rate-limiting controls by manipulating

31 Jul 2026, 18:12 UTC View advisory →
CVE-2026-25403 Medium 6.5

Unauthenticated Broken Access Control in Ultimate Store Kit Elementor Addons <= 3.0.5 versions.

06 Aug 2026, 14:27 UTC View advisory →
CVE-2026-25292 High 7.6

Memory Corruption when processing untrusted user input in the fastboot command handler for audio framework configuration.

04 Aug 2026, 15:07 UTC View advisory →
CVE-2026-25289 Critical 9.6

Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.

04 Aug 2026, 15:07 UTC View advisory →
CVE-2026-25288 High 7.4

Transient DOS when processing a short target wake time channel usage response frame with insufficient packet size.

04 Aug 2026, 15:07 UTC View advisory →
CVE-2026-25119 High 7.7

Gogs is an open source self-hosted Git service. Prior to 0.14.3, when ENABLE_REVERSE_PROXY_AUTHENTICATION is enabled, Gogs accepts the configured authentic

24 Jun 2026, 20:07 UTC View advisory →
CVE-2026-25039 High 8.8

Parsec is a cloud-based application for simple and cryptographically secure file sharing. The application does not sanitize the workspace name, creating a

20 Jul 2026, 14:53 UTC View advisory →
CVE-2026-24547 Medium 5.3

Unauthenticated Broken Access Control in SiteGround Email Marketing <= 1.7.5 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2026-24272 High 7.8

NVIDIA TensorRT contains a vulnerability where an attacker might cause an overflow to a heap-based buffer. A successful exploit of this vulnerability might

14 Jul 2026, 20:16 UTC View advisory →
CVE-2026-24271 Medium 6.2

NVIDIA TensorRT-LLM contains a vulnerability in the OpenAI-compatible inference API, where an attacker could cause allocation of GPU resources without limi

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-24268 High 7.8

NVIDIA TensorRT contains a vulnerability where an attacker might cause a heap-based buffer overflow. A successful exploit of this vulnerability might lead

14 Jul 2026, 20:15 UTC View advisory →
CVE-2026-24259 Medium 6.4

NVIDIA TensorRT-LLM for Linux contains a vulnerability where an attacker could cause missing authentication for a critical function. A successful exploit o

14 Jul 2026, 20:06 UTC View advisory →
CVE-2026-24255 High 7.5

NVIDIA Dynamo for Linux contains a vulnerability in the multimodal embedding cache, where an attacker could cause a hash collision by submitting images tha

04 Aug 2026, 17:23 UTC View advisory →
CVE-2026-24254 Critical 9.8

NVIDIA Dynamo for Linux contains a vulnerability in the multimodal serving topology, where an attacker could cause an out-of-bounds write. A successful exp

04 Aug 2026, 17:23 UTC View advisory →
CVE-2026-24253 High 8.2

NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lea

04 Aug 2026, 17:22 UTC View advisory →
CVE-2026-24252 High 7.8

NVIDIA NeMo for Linux contains a vulnerability where an attacker may cause OS command injection. A successful exploit of this vulnerability may lead to cod

27 Jul 2026, 16:41 UTC View advisory →
CVE-2026-24238 High 7.8

NVIDIA TensorRT for contains a vulnerability where an attacker might cause an improper validation of array index. A successful exploit of this vulnerabilit

14 Jul 2026, 20:15 UTC View advisory →
CVE-2026-24234 Medium 6.8

NVIDIA TensorRT-LLM for Linux contains a vulnerability in the multimodal media fetching functions, where a network-accessible attacker could cause server-s

14 Jul 2026, 20:04 UTC View advisory →
CVE-2026-24233 High 8.4

NVIDIA TensorRT-LLM for Linux contains a vulnerability in the restricted unpickler used for model weight deserialization, where a local, unauthenticated at

14 Jul 2026, 20:00 UTC View advisory →
CVE-2026-24229 High 7.3

NVIDIA TensorRT-LLM for Linux contains a vulnerability in the disaggregated orchestrator component, where an attacker could read, write, or delete internal

14 Jul 2026, 20:04 UTC View advisory →
CVE-2026-24227 Medium 5.3

NVIDIA TensorRT for contains a vulnerability where a user might cause a deserialization of untrusted data. A successful exploit of this vulnerability might

14 Jul 2026, 20:14 UTC View advisory →
CVE-2026-24226 Medium 6.3

NVIDIA TensorRT-LLM for Linux contains a vulnerability where an attacker could cause improper control of code generation. A successful exploit of this vuln

14 Jul 2026, 20:07 UTC View advisory →
CVE-2026-24220 Medium 6.4

NVIDIA TensorRT-LLM for any platform contains a vulnerability in visual gen server, where an attacker could cause an unsafe deserialization by unauthorized

14 Jul 2026, 20:05 UTC View advisory →
CVE-2026-24084 High 7.5

Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed capabilities.

04 Aug 2026, 15:07 UTC View advisory →
CVE-2026-24083 High 7.8

Memory Corruption while processing IOCTL device driver requests with invalid arguments.

04 Aug 2026, 15:07 UTC View advisory →
CVE-2026-24080 High 7.8

Memory Corruption when handling malformed request parameters in the fingerprint TA.

04 Aug 2026, 15:07 UTC View advisory →
CVE-2026-24079 High 8.1

Cryptographic Issue while processing registration requests with malformed or missing authentication parameters.

04 Aug 2026, 15:07 UTC View advisory →
CVE-2026-24078 Medium 6.5

Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling.

04 Aug 2026, 15:07 UTC View advisory →
CVE-2026-24077 Medium 6.5

Information Disclosure when processing wireless network channel switch information with improperly formatted length fields.

04 Aug 2026, 15:07 UTC View advisory →
CVE-2026-24076 Medium 6.7

Memory Corruption when processing registry values with incorrect types using a direct query method.

04 Aug 2026, 15:07 UTC View advisory →
CVE-2026-23985 Medium 5.3

A Regular Expression Denial of Service (ReDoS) vulnerability exists in Apache Superset versions 1.5.0 through 5.0.0. The vulnerability is located in the sq

30 Jul 2026, 16:09 UTC View advisory →
CVE-2026-23981 Medium 5.3

An Improper Authorization vulnerability exists in Apache Superset allowing an authenticated user with permissions to update charts to modify dashboards the

30 Jul 2026, 16:08 UTC View advisory →
CVE-2026-23879 High 8

py7zr is a Python-based library and utility to support 7zip archive compression, decompression, encryption and decryption. Versions 1.1.2 and below contain

24 Jun 2026, 19:17 UTC View advisory →
CVE-2026-23698 High 8.6

Vtiger CRM through 8.4.0 contains an authenticated remote code execution vulnerability in the admin module import feature that allows administrator-level a

07 Jul 2026, 16:10 UTC View advisory →
CVE-2026-23697 High 8.7

Vtiger CRM before 8.4.0 contains an authenticated file upload vulnerability that allows low-privileged users to achieve remote code execution by uploading

07 Jul 2026, 16:17 UTC View advisory →
CVE-2026-23573 Medium 6.1

An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability [CWE-79] vulnerability in Fortinet FortiOS 7.6.0 thro

14 Jul 2026, 15:19 UTC View advisory →
CVE-2026-23538 High 7.5

A vulnerability was identified in the Feast Feature Server's `/ws/chat` endpoint that allows remote attackers to establish persistent WebSocket connections

16 Jul 2026, 00:10 UTC View advisory →
CVE-2026-23513 High 7.1

FOSSBilling is a free, open-source billing and client management system. In versions 0.7.2 and prior, a query-construction flaw in client list endpoints al

23 Jun 2026, 20:11 UTC View advisory →
CVE-2026-22927 High 7.8

Omnissa Workspace ONE® Tunnel for Windows addresses a Local Privilege Escalation Vulnerability.

08 Jul 2026, 13:37 UTC View advisory →
CVE-2026-22879 High 8.1

vtk vtk-dicom vtkDICOMItem::NewDataElement heap-based buffer overflow vulnerability

25 Jun 2026, 21:46 UTC View advisory →
CVE-2026-22752 Critical 9.6

Authentication bypass by primary weakness vulnerability in Spring Security Spring Authorization Server. This issue affects Spring Authorization Server: fro

16 Jul 2026, 08:40 UTC View advisory →
CVE-2026-22660 High 8.6

FlaskBB through 2.2.0, fixed in commit a5da9a5, contains a logic flaw vulnerability that allows authenticated administrators to delete all built-in authori

10 Jul 2026, 13:26 UTC View advisory →
CVE-2026-22659 High 7.2

FlaskBB through 2.2.0, fixed in commit acc88cf, contains an authorization bypass vulnerability that allows authenticated moderators to perform unauthorized

10 Jul 2026, 13:31 UTC View advisory →
CVE-2026-22622 High 8.8

Improper input validation in one of the session management interface of Eaton's Tripp Lite series PADM firmware could allow an authenticated user to elevat

30 Jul 2026, 10:21 UTC View advisory →
CVE-2026-22621 High 8.3

Improper input validation in one of the session management interface of Eaton's Tripp Lite Series PADM firmware could allow an authenticated administrator

30 Jul 2026, 10:16 UTC View advisory →
CVE-2026-22620 High 8.6

Improper input validation in the authentication component of Eaton's Tripp Lite series PADM firmware could allow an unauthenticated remote attacker to bypa

30 Jul 2026, 10:11 UTC View advisory →
CVE-2026-22104 High 7.1

Improper access control in Hashtopolis server web-interface chunk activity component for versions prior to 0.14.8 allows any created account to read all cr

17 Jul 2026, 09:30 UTC View advisory →
CVE-2026-22103 Critical 9.3

The NPC start endpoint on the web server at port 8090 is vulnerable to command injection.

13 Jul 2026, 09:11 UTC View advisory →
CVE-2026-22102 Critical 9.3

A POST request sent to a specific webserver endpoint can be used to write to arbitrary file locations. The endpoint accepts the filename parameter in the C

13 Jul 2026, 09:10 UTC View advisory →
CVE-2026-22100 High 8.6

The OCPP DataTransfer message `ReserveLogin` is vulnerable to command injection. By manipulating the data value, arbitrary OS commands can be executed as r

13 Jul 2026, 09:10 UTC View advisory →
CVE-2026-22099 High 8.7

The charging station does not require authentication for Bluetooth commands to perform actions. The functionality exposed includes sensitive information le

13 Jul 2026, 09:10 UTC View advisory →
CVE-2026-22098 Critical 9.2

Various sensitive information such as passwords and charging card UIDs are written to log files.

13 Jul 2026, 09:10 UTC View advisory →
CVE-2026-22097 Critical 9.3

The firmware update mechanism does not include cryptographic signature validation. This allows anyone with access to the firmware update capability to uplo

13 Jul 2026, 09:10 UTC View advisory →
CVE-2026-22096 Critical 9.3

The webserver running on port 8090 does not require authentication. This allows for sensitive information leakage such as configured passwords, or uploadin

13 Jul 2026, 09:10 UTC View advisory →
CVE-2026-22095 Critical 9.3

The network diagnosis endpoint on the web server at port 8090 is vulnerable to command injection.

13 Jul 2026, 09:10 UTC View advisory →
CVE-2026-22093 Critical 9.5

The EVbee Service Android app uses TLS encrypted communication (HTTPS), but does not validate the certificate provided by the server. This allows an attack

13 Jul 2026, 09:10 UTC View advisory →
CVE-2026-22078 High 7.3

Because O+ Connect's IPC service does not authenticate clients, external applications can escalate privileges and perform sensitive actions through the IPC

29 Jun 2026, 08:05 UTC View advisory →
CVE-2026-22049 High 8.7

ONTAP versions 9.16.1 and higher with WebAuthn multi-factor authentication (MFA) configured are susceptible to a vulnerability related to the Relying Party

22 Jul 2026, 18:52 UTC View advisory →
CVE-2026-21840 Low 3.1

HCL BigFix Platform is affected by a user enumeration vulnerability which might allow an attacker, through careful system control and response time monitor

14 Jul 2026, 21:36 UTC View advisory →
CVE-2026-21824 High 8.8

HCL Commerce contains an privilege escalation vulnerability that could allow denial of service, disclosure of user personal data, and performing of unautho

20 Jul 2026, 15:04 UTC View advisory →
CVE-2026-21770 Medium 6.5

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a DLL hijacking vulnerability which could allow an attacker to modify or replace the applicatio

17 Jul 2026, 04:42 UTC View advisory →
CVE-2026-21766 Medium 5.4

The default login portlet in HCL Digital Experience and Digital Experience Compose insufficiently protects credentials. Under certain very specific use cas

05 Aug 2026, 20:11 UTC View advisory →
CVE-2026-21764 Low 3.1

HCL DevOps Loop is affected by insufficient input validation that allows special characters where they should be restricted. This may result in unintended

17 Jul 2026, 17:11 UTC View advisory →
CVE-2026-21762 Low 3.7

HCL DevOps Loop is affected by missing HTTP security headers. Missing security headers may reduce browser protections against common web-based attacks such

17 Jul 2026, 17:10 UTC View advisory →
CVE-2026-21761 Medium 4.2

HCL DevOps Loop is affected by a Cross-Origin Resource Sharing (CORS) misconfiguration. Improper CORS configuration may allow unauthorized cross-origin req

17 Jul 2026, 17:10 UTC View advisory →
CVE-2026-21760 Medium 4.6

HCL DevOps Loop is affected by an Unauthorized Access to Admin Functionality (Forced Browsing) vulnerability. Improper authorization checks may allow unaut

17 Jul 2026, 17:06 UTC View advisory →
CVE-2026-21734 High 7.7

A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can trigger a write out-of-bounds write crash in the GPU shade

26 Jun 2026, 15:14 UTC View advisory →
CVE-2026-21729 High 7.5

Loki queries with large limits can cause large memory allocations which can impact the availability of the service, depending on its deployment strategy.

16 Jul 2026, 03:12 UTC View advisory →
CVE-2026-21723 Medium 5.3

The alertmanager templates test endpoint (/api/alertmanager/grafana/config/api/v1/templates/test) can execute templates with no memory limits. Mass-executi

23 Jul 2026, 01:48 UTC View advisory →
CVE-2026-21662 Medium 4.8

Unrestricted upload of file with dangerous type vulnerability in Johnson Controls FM Systems Employee allows Using Malicious Files. This issue affects FM S

31 Jul 2026, 17:30 UTC View advisory →
CVE-2026-21555 High 7.5

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

03 Aug 2026, 07:18 UTC View advisory →
CVE-2026-21554 High 7.5

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

03 Aug 2026, 07:18 UTC View advisory →
CVE-2026-21553 High 7.5

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

03 Aug 2026, 07:18 UTC View advisory →
CVE-2026-21552 High 7.5

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

03 Aug 2026, 07:18 UTC View advisory →
CVE-2026-21551 High 7.5

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

03 Aug 2026, 07:18 UTC View advisory →
CVE-2026-21550 High 7.5

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

03 Aug 2026, 07:18 UTC View advisory →
CVE-2026-21549 High 7.5

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

03 Aug 2026, 07:18 UTC View advisory →
CVE-2026-21548 High 7.5

In nr modem, there is a possible improper input validation. This could lead to remote denial of service with System execution privileges needed.

03 Aug 2026, 07:18 UTC View advisory →
CVE-2026-21366 High 7.8

Memory corruption while processing a packet with a size close to the maximum allowed value.

04 Aug 2026, 15:07 UTC View advisory →
CVE-2026-20744 Critical 9.3

The charging station websocket endpoint accepts connections without proper authentication, which could lead to privilege escalation.

10 Jul 2026, 22:07 UTC View advisory →
CVE-2026-20672 Unscored

An information disclosure issue was addressed with improved privacy controls. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. An app may

27 Jul 2026, 20:14 UTC View advisory →
CVE-2026-20498 Unscored

In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege if a maliciou

03 Aug 2026, 02:06 UTC View advisory →
CVE-2026-20497 Unscored

In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20496 Unscored

In geniezone, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor ha

03 Aug 2026, 02:06 UTC View advisory →
CVE-2026-20495 Unscored

In Bluetooth driver, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with User ex

03 Aug 2026, 02:06 UTC View advisory →
CVE-2026-20494 Unscored

In wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has alr

03 Aug 2026, 02:06 UTC View advisory →
CVE-2026-20493 Unscored

In wifi, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service if a malicious actor has already

03 Aug 2026, 02:06 UTC View advisory →
CVE-2026-20492 Unscored

In Audio HAL, there is a possible system becoming unresponsive due to a race condition. This could lead to local denial of service with User execution priv

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20491 Unscored

In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of service with User execution privileges

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20490 Unscored

In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service if a malicious actor has already

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20489 Unscored

In display, there is a possible information disclosure due to an integer overflow. This could lead to local information disclosure if a malicious actor has

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20488 Unscored

In display, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure if a malicious actor

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20486 Unscored

In imgsensor, there is a possible application crash due to incorrect error handling. This could lead to local escalation of privilege if a malicious actor

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20485 Unscored

In HFRP, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has a

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20484 Unscored

In TFA, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure if a malicious actor

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20483 Unscored

In Telephony, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with no addit

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20482 Unscored

In wlan STA FW, there is a possible system becoming unresponsive due to logging. This could lead to remote (proximal/adjacent) denial of service with no ad

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20481 Unscored

In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20480 Unscored

In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User execution privile

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20479 Unscored

In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rog

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20478 Unscored

In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User execution privile

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20477 Unscored

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor ha

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20476 Unscored

In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with User execution privileges ne

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20475 Unscored

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor ha

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20474 Unscored

In display, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of privilege if a malicious actor has

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20473 Unscored

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20472 Unscored

In TFA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service if a malicious actor has already

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20471 Unscored

In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service, if an attacker has physical acces

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20470 Unscored

In Telephony, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additio

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20469 Unscored

In trusted_mem, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege if a malicio

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20468 Unscored

In apusys, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of privilege if a malicious actor has

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20467 Unscored

In apusys, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20466 Unscored

In sec boot, there is a possible escalation of privilege due to a heap buffer overflow. This could lead to local escalation of privilege, if an attacker ha

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20465 Unscored

In wlan AP driver, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) escalation of privi

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20464 Unscored

In hevc decoder, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege if a malicious actor

03 Aug 2026, 02:05 UTC View advisory →
CVE-2026-20463 Unscored

In Modem, there is a possible escalation of privilege due to a permissions bypass. This could lead to local escalation of privilege if a malicious actor ha

01 Jul 2026, 03:14 UTC View advisory →
CVE-2026-20462 Unscored

In Telephony, there is a possible memory corruption due to a heap buffer overflow. This could lead to local escalation of privilege if a malicious actor ha

01 Jul 2026, 03:14 UTC View advisory →
CVE-2026-20461 Unscored

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a ro

01 Jul 2026, 03:14 UTC View advisory →
CVE-2026-20460 Unscored

In Modem, there is a possible information disclosure due to improper input validation. This could lead to remote information disclosure, if a UE has connec

01 Jul 2026, 03:14 UTC View advisory →
CVE-2026-20459 Unscored

In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue

01 Jul 2026, 03:14 UTC View advisory →
CVE-2026-20458 Unscored

In Modem, there is a possible memory corruption due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to

01 Jul 2026, 03:13 UTC View advisory →
CVE-2026-20457 Unscored

In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue

01 Jul 2026, 03:13 UTC View advisory →
CVE-2026-20313 High 7.7

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive i

05 Aug 2026, 16:33 UTC View advisory →
CVE-2026-20312 High 8.8

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive i

05 Aug 2026, 16:31 UTC View advisory →
CVE-2026-20311 Medium 6.3

A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote attacker with low privileges to cause a

05 Aug 2026, 16:32 UTC View advisory →
CVE-2026-20310 Critical 9.1

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive i

05 Aug 2026, 16:30 UTC View advisory →
CVE-2026-20308 Medium 4.3

A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote attacker with low privileges to perform

05 Aug 2026, 16:19 UTC View advisory →
CVE-2026-20304 Critical 9.9

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive i

05 Aug 2026, 16:19 UTC View advisory →
CVE-2026-20303 Critical 9.9

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive i

05 Aug 2026, 16:29 UTC View advisory →
CVE-2026-20301 High 8.6

A vulnerability in the Extensible Messaging Client Protocol (XMCP), also referred to as the External Client protocol, of Cisco IOS Software and Cisco IOS X

05 Aug 2026, 16:28 UTC View advisory →
CVE-2026-20298 Medium 5.3

In Splunk Enterprise versions below 10.4.1, 10.2.5, 10.0.8, and 9.4.13, and Splunk Cloud Platform versions below 10.5.2605.0, 10.4.2604.6, 10.3.2512.15, 10

15 Jul 2026, 17:18 UTC View advisory →
CVE-2026-20297 High 7.2

In Splunk Enterprise versions below 10.4.1, 10.2.5, 10.0.8, 9.4.13, and 9.3.14, and Splunk Cloud Platform versions below 10.5.2605.0, 10.4.2604.6, 10.2.251

15 Jul 2026, 17:18 UTC View advisory →
CVE-2026-20296 High 8.3

In Splunk Enterprise versions below 10.4.1, 10.2.5, 10.0.8, and 9.4.13, and Splunk Cloud Platform versions below 10.5.2605.0, 10.4.2604.7, 10.3.2512.16, 10

15 Jul 2026, 17:18 UTC View advisory →
CVE-2026-20294 Medium 6.5

A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to view sensitive info

05 Aug 2026, 16:29 UTC View advisory →
CVE-2026-20289 Medium 5.7

A vulnerability in the logging subsystem of Cisco RoomOS could allow an authenticated, local attacker with low privileges to access sensitive information.

05 Aug 2026, 16:31 UTC View advisory →
CVE-2026-20288 Medium 6.5

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with Admin privileges to execute arbitrary

05 Aug 2026, 16:27 UTC View advisory →
CVE-2026-20273 High 8.6

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive i

05 Aug 2026, 16:19 UTC View advisory →
CVE-2026-20272 Critical 9.8

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive i

05 Aug 2026, 16:19 UTC View advisory →
CVE-2026-20271 High 8.6

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive i

05 Aug 2026, 16:19 UTC View advisory →
CVE-2026-20270 High 8.6

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive i

05 Aug 2026, 16:19 UTC View advisory →
CVE-2026-20269 High 8.6

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive i

05 Aug 2026, 16:19 UTC View advisory →
CVE-2026-20268 High 8.6

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive i

05 Aug 2026, 16:18 UTC View advisory →
CVE-2026-20267 Critical 9

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive i

05 Aug 2026, 16:18 UTC View advisory →
CVE-2026-20263 High 8.6

A vulnerability in the Blocks Extensible Exchange Protocol (BEEP) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause

05 Aug 2026, 16:18 UTC View advisory →
CVE-2026-20200 High 8.8

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with low privileges to execute arbitrary c

05 Aug 2026, 16:18 UTC View advisory →
CVE-2026-20198 Medium 4.8

A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to cond

05 Aug 2026, 16:18 UTC View advisory →
CVE-2026-20187 High 7.5

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal s

15 Jul 2026, 16:18 UTC View advisory →
CVE-2026-20158 High 7.5

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal s

15 Jul 2026, 16:18 UTC View advisory →
CVE-2026-20157 High 7.5

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal s

15 Jul 2026, 16:18 UTC View advisory →
CVE-2026-20156 High 8.1

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal s

15 Jul 2026, 16:17 UTC View advisory →
CVE-2026-20153 High 7.5

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal s

15 Jul 2026, 16:18 UTC View advisory →
CVE-2026-20150 High 8.8

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal s

15 Jul 2026, 16:17 UTC View advisory →
CVE-2026-20146 Medium 5.5

A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to

15 Jul 2026, 16:17 UTC View advisory →
CVE-2026-20124 High 7.7

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco IOS XE Software could allow an authenticated, remote attacker to cause

05 Aug 2026, 16:18 UTC View advisory →
CVE-2026-20028 Medium 5

A vulnerability in the network driver of Cisco Terminal Service (TS) Agent could allow an authenticated, remote attacker to bypass firewall rules that are

05 Aug 2026, 16:18 UTC View advisory →
CVE-2026-19196 Medium 6.9

A vulnerability was found in SourceCodester Photo Share Website 1.0. The impacted element is an unknown function of the file /social/ajax.php?action=login.

07 Aug 2026, 05:00 UTC View advisory →
CVE-2026-19195 High 8.5

A vulnerability has been found in V-Secure Jingyun Antivirus 2.4.2.39. The affected element is an unknown function in the library ZyArk.sys of the componen

07 Aug 2026, 04:45 UTC View advisory →
CVE-2026-19193 High 8.5

A flaw has been found in Jiangmin Antivirus 21. Impacted is the function MessageNotifyCallback in the library kvcore.sys of the component Minifilter Port.

07 Aug 2026, 04:15 UTC View advisory →
CVE-2026-19192 High 8.5

A vulnerability was detected in DeepCool DisplayService 1.2.12. This issue affects some unknown processing of the file C:\DeepCool\resources\service\x64\De

07 Aug 2026, 03:45 UTC View advisory →
CVE-2026-19191 High 8.5

A security vulnerability has been detected in StableBit DrivePool 2.3.13.1687. This vulnerability affects unknown code of the file C:\Program Files\StableB

07 Aug 2026, 03:30 UTC View advisory →
CVE-2026-19190 High 8.5

A weakness has been identified in StableBit Scanner 2.6.13.4088. This affects an unknown part of the file C:\Program Files (x86)\StableBit\Scanner\Service\

07 Aug 2026, 02:30 UTC View advisory →
CVE-2026-19189 High 8.5

A security flaw has been discovered in Power Sofware PowerISO 9.3.0.0. Affected by this issue is some unknown functionality in the library C:\Windows\Syste

07 Aug 2026, 02:00 UTC View advisory →
CVE-2026-19177 High 8.3

Insufficient validation of untrusted input in UI in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer proces

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19176 High 7.5

Use after free in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to execute arbitrary cod

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19175 Unscored

Use after free in Payments in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML pa

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19174 High 8.8

Integer overflow in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML pag

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19173 Unscored

Out of bounds write in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perf

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19172 High 8.3

Use after free in Views in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19171 Unscored

Use after free in Media in Google Chrome on Windows prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a crafted

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19170 Critical 9.6

Use after free in WebGL in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a crafted

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19169 High 8.8

Insufficient validation of untrusted input in Contextual Tasks in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to perform privilege esca

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19168 High 8.8

Inappropriate implementation in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a craf

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19167 Unscored

Integer overflow in GPU in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to leak cross-origin da

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19166 Unscored

Use after free in Web Authentication in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a craft

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19165 High 7.5

Use after free in Extensions in Google Chrome prior to 151.0.7922.109 allowed an attacker who convinced a user to install a malicious extension to execute

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19164 Unscored

Insufficient validation of untrusted input in Codecs in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox es

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19163 High 8.3

Use after free in Media in Google Chrome on Windows prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potential

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19162 High 8.8

Out of bounds write in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19161 Low 3.1

Uninitialized Use in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to leak cross-origin

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19160 Low 3.1

Uninitialized Use in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to leak cross-origin

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19159 Unscored

Use after free in Views in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who convinced a user to engage in specific UI gestures to potent

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19158 Unscored

Use after free in Views in Google Chrome on Windows prior to 151.0.7922.109 allowed a remote attacker who convinced a user to engage in specific UI gesture

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19157 Unscored

Out of bounds write in ANGLE in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a cr

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19156 Unscored

Heap buffer overflow in Base in Google Chrome prior to 151.0.7922.109 allowed an attacker who convinced a user to install a malicious extension to potentia

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19155 High 8.3

Use after free in Payments in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perfo

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19154 High 8.3

Use after free in Skia in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentiall

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19153 Unscored

Insufficient validation of untrusted input in Workers in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer p

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19152 Unscored

Insufficient policy enforcement in Navigation in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process t

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19151 High 8.8

Use after free in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19150 High 8.8

Inappropriate implementation in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a craf

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19149 Critical 9.6

Use after free in Aura in Google Chrome on Linux prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a crafted HT

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19148 Unscored

Out of bounds write in GPU in Google Chrome on Linux prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentia

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19147 Unscored

Use after free in Aura in Google Chrome on Linux prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19146 Medium 5.3

Uninitialized Use in GPU in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to obtain p

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19145 High 8.8

Use after free in Translate in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTM

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19144 Unscored

Use after free in HTML in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19143 Unscored

Insufficient validation of untrusted input in WebAPKs in Google Chrome on Android prior to 151.0.7922.109 allowed a local attacker to potentially perform a

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19142 Unscored

Use after free in Views in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who convinced a user to engage in specific UI gestures to potent

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19141 Unscored

Use after free in Resources in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to poten

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19140 High 8.3

Use after free in GPU in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19139 High 7.4

Race in CredentialProvider in Google Chrome on Windows prior to 151.0.7922.109 allowed a local attacker to perform OS-level privilege escalation via a mali

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19138 High 8.3

Heap buffer overflow in CrashReporting in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to poten

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19137 High 8.3

Use after free in WebGL in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potential

06 Aug 2026, 20:33 UTC View advisory →
CVE-2026-19127 Medium 6.5

An issue in the billing and license activation subsystem allows remote attackers to bypass payment authorization workflows. By exploiting insufficient cryp

06 Aug 2026, 17:02 UTC View advisory →
CVE-2026-19111 High 8.6

Insecure direct object reference in the mongodb_memory, elasticsearch_memory, and mem0_memory tools in Amazon Strands Agents Tools before 0.8.3 might allow

06 Aug 2026, 18:03 UTC View advisory →
CVE-2026-19110 Medium 4.8

A vulnerability was determined in DataGear up to 5.0.0. The impacted element is the function HtmlTplDashboardWidgetHtmlRenderer of the file HtmlTplDashboar

06 Aug 2026, 20:45 UTC View advisory →
CVE-2026-19108 Medium 4.8

A vulnerability was found in MZ Automation libiec61850 up to 1.6.1. The affected element is the function deleteDataSetValuesShadowBuffer of the file src/ie

06 Aug 2026, 20:30 UTC View advisory →
CVE-2026-19071 Medium 5.3

A flaw has been found in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /viewappointment.php. This manipulation o

06 Aug 2026, 20:15 UTC View advisory →
CVE-2026-19070 Medium 5.3

A vulnerability was detected in itsourcecode Hospital Management System 1.0. This impacts an unknown function of the file /viewadmin.php. The manipulation

06 Aug 2026, 20:00 UTC View advisory →
CVE-2026-19069 Medium 5.3

A security vulnerability has been detected in itsourcecode Hospital Management System 1.0. This affects an unknown function of the file /treatmentrecord.ph

06 Aug 2026, 19:45 UTC View advisory →
CVE-2026-19068 Medium 5.3

A weakness has been identified in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /treatmentdetail.php

06 Aug 2026, 19:15 UTC View advisory →
CVE-2026-19067 Medium 5.3

A security flaw has been discovered in itsourcecode Hospital Management System 1.0. The affected element is an unknown function of the file /treatment.php.

06 Aug 2026, 18:45 UTC View advisory →
CVE-2026-19066 Medium 5.3

A vulnerability was identified in SourceCodester Online Examination & Learning Management System 1.0. Impacted is an unknown function of the file view_stud

06 Aug 2026, 18:30 UTC View advisory →
CVE-2026-19065 Medium 5.3

A vulnerability was determined in SourceCodester Online Examination & Learning Management System 1.0. This issue affects some unknown processing of the fil

06 Aug 2026, 18:15 UTC View advisory →
CVE-2026-19064 Medium 5.3

A vulnerability was found in SourceCodester Online Examination & Learning Management System 1.0. This vulnerability affects unknown code of the file /view.

06 Aug 2026, 17:30 UTC View advisory →
CVE-2026-19062 Medium 6.9

A vulnerability has been found in chiuwingyan house up to dea6bcceaebe2b364a5a209747f48ecc2b2dc670. This affects an unknown part of the file /paid/selectal

06 Aug 2026, 17:15 UTC View advisory →
CVE-2026-19061 Medium 6.3

A flaw has been found in Insta InstaKNXServiceApp 1.2.3.1469. Affected by this issue is the function CreateWebClientAndDownloadFileList of the component Fi

06 Aug 2026, 17:00 UTC View advisory →
CVE-2026-19060 Medium 4.8

A vulnerability was identified in FoundationAgents MetaGPT up to 0.8.2. This impacts an unknown function. Such manipulation leads to code injection. The at

06 Aug 2026, 16:45 UTC View advisory →
CVE-2026-19059 Medium 4.8

A vulnerability was determined in FoundationAgents MetaGPT up to 0.8.2. This affects the function read of the file metagpt/tools/libs/editor.py. This manip

06 Aug 2026, 16:30 UTC View advisory →
CVE-2026-19058 Medium 4.8

A vulnerability was found in FoundationAgents MetaGPT up to 0.8.2. The impacted element is the function DataInterpreter of the file metagpt/roles/di/data_i

06 Aug 2026, 15:45 UTC View advisory →
CVE-2026-19054 Medium 4.8

A vulnerability was detected in Lspace-io lspace-server up to 79f02fe5aa8970b210a6a05cf097155f8d9ffd71. This issue affects the function fileExists/readFile

06 Aug 2026, 15:30 UTC View advisory →
CVE-2026-19047 Medium 4.8

A vulnerability was detected in NocteDefensor LudusMCP up to 1.0.24. This affects the function executeArbitraryCommand/executeCommand of the file src/ludus

06 Aug 2026, 15:00 UTC View advisory →
CVE-2026-19046 Medium 4.8

A security vulnerability has been detected in NocteDefensor LudusMCP up to 1.0.24. The impacted element is an unknown function of the file src/tools/ludusE

06 Aug 2026, 14:45 UTC View advisory →
CVE-2026-19045 Medium 4.8

A weakness has been identified in NocteDefensor LudusMCP up to 1.0.24. The affected element is the function SecretDialog.showSecretDialog of the file src/u

06 Aug 2026, 14:30 UTC View advisory →
CVE-2026-19044 Medium 4.8

A flaw has been found in LeeSinLiang godot-mcp 0.1.0. Affected by this vulnerability is the function executeOperation of the file src/index.ts of the compo

06 Aug 2026, 14:15 UTC View advisory →
CVE-2026-19041 Medium 5.3

A vulnerability has been found in MissionSquad mcp-api up to 1.11.8. The impacted element is the function this.packageService.installPackage of the file sr

06 Aug 2026, 13:30 UTC View advisory →
CVE-2026-19040 Medium 5.3

A flaw has been found in MissionSquad mcp-api up to 1.11.9. The affected element is an unknown function of the file src/services/dcrClients.ts. Executing a

06 Aug 2026, 13:15 UTC View advisory →
CVE-2026-19039 Medium 4.8

A vulnerability was detected in Kino-Kafkaesque ssh-mcp-server up to 8ebbbb99b26f80ff6162fe00957c6dec73fbc5a5. Impacted is the function ssh_exec of the fil

06 Aug 2026, 13:00 UTC View advisory →
CVE-2026-19038 Medium 5.3

A security vulnerability has been detected in MonomythDevelopment la-forge-mcp 1.0.0. This issue affects the function screenshotElement of the file src/ind

06 Aug 2026, 12:45 UTC View advisory →
CVE-2026-19037 Medium 5.3

A weakness has been identified in WonderTrader up to 0.9.9. This vulnerability affects the function MatchEngine::update_lob of the file src/WtBtCore/MatchE

06 Aug 2026, 12:30 UTC View advisory →
CVE-2026-19036 High 8.6

A security flaw has been discovered in Shibby Tomato 1.28.0000. This affects the function sub_40F88C of the file /tmp/ppp/wanoptions. The manipulation of t

06 Aug 2026, 12:00 UTC View advisory →
CVE-2026-19035 High 8.6

A vulnerability was identified in Shibby Tomato 1.28.0000. Affected by this issue is the function new_qoslimit_start of the file /etc/qoslimit. The manipul

06 Aug 2026, 11:30 UTC View advisory →
CVE-2026-19034 High 8.6

A vulnerability was determined in Shibby Tomato 1.28.0000. Affected by this vulnerability is the function new_qoslimit_stop of the file /tmp/qoslimittc_sto

06 Aug 2026, 10:30 UTC View advisory →
CVE-2026-19028 Medium 6.8

H5Z__filter_fletcher32 in H5Zfletcher32.c in HDF5 through 2.3.0 computes the data length to checksum by subtracting the 4-byte trailing checksum size from

05 Aug 2026, 23:15 UTC View advisory →
CVE-2026-19027 Medium 6.9

The H5Z__nbit_decompress_one_byte, H5Z__nbit_decompress_one_nooptype, and H5Z__nbit_decompress_one_atomic functions in H5Znbit.c in HDF5 through 2.3.0 adva

05 Aug 2026, 23:12 UTC View advisory →
CVE-2026-19026 Medium 6.8

H5Z__filter_nbit in H5Znbit.c in HDF5 through 2.3.0 dereferences cd_values[0] through cd_values[4] without validating that cd_values is non-NULL or that cd

05 Aug 2026, 22:47 UTC View advisory →
CVE-2026-19025 Medium 6.8

H5O__layout_decode in H5Olayout.c in HDF5 through 2.3.0 does not validate that a chunked dataset's stored chunk-layout dimensionality matches its dataspace

05 Aug 2026, 22:35 UTC View advisory →
CVE-2026-19024 High 8.2

NULL pointer dereference in H5Pget_fill_value in HDF5 before 2.1.1 allows attackers to cause a denial of service via a dataset whose version 1 or 2 fill va

05 Aug 2026, 22:14 UTC View advisory →
CVE-2026-19023 None 0

Untrusted pointer dereference in the render_bin_output function in the h5dump tool in HDF5 before 2.1.1 allows attackers to cause a denial of service via a

05 Aug 2026, 22:13 UTC View advisory →
CVE-2026-19022 Medium 5.3

A vulnerability was determined in OpenHands up to 0.62.0. The affected element is the function initialize_repo of the file OpenHands/resolver/send_pull_req

06 Aug 2026, 08:15 UTC View advisory →
CVE-2026-19021 Medium 6.9

A security vulnerability has been detected in SourceCodester Computer Repair Shop Management System 1.0. Affected by this issue is some unknown functionali

06 Aug 2026, 08:00 UTC View advisory →
CVE-2026-19020 Medium 5.3

A weakness has been identified in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /serv

06 Aug 2026, 07:45 UTC View advisory →
CVE-2026-19019 Medium 6.3

A security flaw has been discovered in poco-ai poco-agent up to 0.5.4. Affected is the function WorkspaceManager._setup_session_persistence of the file exe

06 Aug 2026, 07:30 UTC View advisory →
CVE-2026-19011 Medium 6.9

A vulnerability was detected in TinyAGI 0.0.20. The affected element is the function buildSystemPrompt of the file packages/server/src/routes/agents.ts. Pe

06 Aug 2026, 07:15 UTC View advisory →
CVE-2026-19007 Medium 5.3

A vulnerability was determined in mf-yang openclaw-cn up to 0.2.1. This vulnerability affects the function isApprovedElevatedSender of the file src/auto-re

06 Aug 2026, 06:15 UTC View advisory →
CVE-2026-19006 Medium 5.3

A vulnerability was found in mf-yang openclaw-cn 2026.2.5. This affects an unknown part of the file src/agents/bash-tools.exec.ts of the component Ggateway

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-19005 Medium 5.3

A vulnerability was detected in nanocoai NanoClaw up to 2.0.64. Affected is the function handleCreateAgent of the file src/modules/agent-to-agent/create-ag

06 Aug 2026, 05:45 UTC View advisory →
CVE-2026-19000 Medium 6.9

A vulnerability was identified in JeecgBoot up to 3.9.2. The affected element is an unknown function of the file /airag/chat/send of the component Anonymou

06 Aug 2026, 05:15 UTC View advisory →
CVE-2026-18998 Medium 5.3

A vulnerability was determined in cosmicstack-labs mercury-agent up to 1.1.12. Impacted is the function SubAgent.run of the file src/core/sub-agent.ts of t

06 Aug 2026, 04:45 UTC View advisory →
CVE-2026-18997 Medium 5.3

A vulnerability was found in cosmicstack-labs mercury-agent up to 1.1.12. This issue affects the function Agent.handleBgCommand of the file src/core/agent.

06 Aug 2026, 04:30 UTC View advisory →
CVE-2026-18996 Medium 5.3

A vulnerability has been found in cosmicstack-labs mercury-agent up to 1.1.12. This vulnerability affects the function PermissionManager.checkShellCommand

06 Aug 2026, 04:15 UTC View advisory →
CVE-2026-18995 Medium 5.3

A flaw has been found in netease-youdao LobsterAI 2026.6.10. This affects the function parseMediaTokensFromText of the file src/renderer/services/artifactP

06 Aug 2026, 04:00 UTC View advisory →
CVE-2026-18993 Medium 5.3

A vulnerability was detected in NousResearch hermes-agent up to 0.16.0. Affected by this issue is some unknown functionality of the file hermes-agent/model

06 Aug 2026, 03:45 UTC View advisory →
CVE-2026-18992 Medium 5.3

A vulnerability was detected in zhayujie CowAgent up to 2.1.1. This vulnerability affects the function _select_tools of the file agent/evolution/executor.p

06 Aug 2026, 03:30 UTC View advisory →
CVE-2026-18991 Medium 6.9

A security vulnerability has been detected in nanocoai NanoClaw up to 2.0.64. This affects an unknown part of the file container/agent-runner/src/mcp-tools

06 Aug 2026, 02:30 UTC View advisory →
CVE-2026-18990 Medium 6.9

A vulnerability was detected in letta-ai LettaBot 0.2.0. Impacted is an unknown function of the file src/api/server.ts of the component API Status Route. T

06 Aug 2026, 02:15 UTC View advisory →
CVE-2026-18980 Medium 5.3

A vulnerability was identified in nearai ironclaw up to 0.29.1. Affected is the function classify_command_risk of the file src/tools/builtin/shell.rs. Such

06 Aug 2026, 02:00 UTC View advisory →
CVE-2026-18976 Medium 5.3

A vulnerability was determined in NousResearch hermes-agent up to 0.16.0. This impacts the function get_tool_definitions of the file agent/agent_init.py of

06 Aug 2026, 01:45 UTC View advisory →
CVE-2026-18974 Medium 6.9

A vulnerability was found in heshengtao super-agent-party up to 0.4.1. This affects the function get_file_content of the file server.py of the component ex

06 Aug 2026, 00:45 UTC View advisory →
CVE-2026-18973 Medium 6.9

A vulnerability has been found in heshengtao super-agent-party up to 0.4.1. The impacted element is the function sanitize_proxy_url of the file server.py o

06 Aug 2026, 00:30 UTC View advisory →
CVE-2026-18970 Medium 6.9

A flaw has been found in Rongzhitong Visual Integrated Command and Dispatch Platform up to 20260617. The affected element is an unknown function of the fil

05 Aug 2026, 23:45 UTC View advisory →
CVE-2026-18969 Medium 6.9

A vulnerability was detected in Rongzhitong Visual Integrated Command and Dispatch Platform up to 20260617. Impacted is an unknown function of the file /dm

05 Aug 2026, 23:30 UTC View advisory →
CVE-2026-18968 Medium 5.3

A security vulnerability has been detected in ttttonyhe OBlog up to 3ca6a45a2fcc81f6086751d8af124658720e8f8f. This issue affects some unknown processing of

05 Aug 2026, 23:00 UTC View advisory →
CVE-2026-18967 Medium 6.4

A flaw was found in the SAML broker component of Keycloak, an identity and access management solution. When configured as a SAML broker using the IdP-Initi

06 Aug 2026, 05:33 UTC View advisory →
CVE-2026-18959 Medium 5.3

A flaw has been found in yushine InnoShop up to 0.8.2. Affected by this issue is the function FileManagerController::destroyFiles of the file innopacks/res

05 Aug 2026, 20:15 UTC View advisory →
CVE-2026-18958 Medium 6.9

A vulnerability was detected in imranrisal-dev Student-Management-System 18ea7904c339e0c7b0234724a79c939ce6191def/a8d43a29aaf267e7ca97171d6dbb44057bcd7f8c.

05 Aug 2026, 20:00 UTC View advisory →
CVE-2026-18954 Medium 5.7

Incorrect authorization in the aggregation pipeline tool in Amazon AWS Labs DocumentDB MCP Server before 1.0.12 might allow an authenticated MCP client to

05 Aug 2026, 20:07 UTC View advisory →
CVE-2026-18953 Medium 6.3

Improper limitation of a pathname to a restricted directory in the get_resource tool in Amazon awslabs.aws-transform-mcp-server 0.1.0 through 0.1.4 might a

05 Aug 2026, 19:33 UTC View advisory →
CVE-2026-18933 High 7.2

The wp-downloadmanager WordPress plugin, in version 1.68.11 (also affecting the 6.9.4 release line), allows an admin-privileged user (current_user_can('man

05 Aug 2026, 11:27 UTC View advisory →
CVE-2026-18927 Medium 5.3

A vulnerability was determined in imranrisal-dev Student-Management-System 18ea7904c339e0c7b0234724a79c939ce6191def/a8d43a29aaf267e7ca97171d6dbb44057bcd7f8

05 Aug 2026, 16:30 UTC View advisory →
CVE-2026-18915 Medium 5

Invocation of process using visible sensitive information vulnerability in TÜBİTAK BİLGEM Software Technologies Research Institute eta-otp-lock allows Syst

06 Aug 2026, 07:33 UTC View advisory →
CVE-2026-18909 Medium 5.6

A stack-based buffer overflow vulnerability exists in ELAN Microelectronics Corp. ELAN Smart-Pad on Windows (ETD.sys and ETDSMBus.sys). During Intel SMBus

06 Aug 2026, 03:46 UTC View advisory →
CVE-2026-18907 Unscored

Path Traversal in Download File Feature in com.talpa.hibrowser 2.23.1.1 on Android allows arbitrary file write via directory traversal sequences in the fil

05 Aug 2026, 01:47 UTC View advisory →
CVE-2026-18903 Medium 5.3

A vulnerability was determined in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. This issue affects some unknown processing of the file s

05 Aug 2026, 04:45 UTC View advisory →
CVE-2026-18902 High 8.6

A vulnerability was detected in H3C NX15 V100R017. Affected by this vulnerability is the function esps.wan.repeater.set/repeaterproc of the file /api/esps.

05 Aug 2026, 04:30 UTC View advisory →
CVE-2026-18901 High 8.6

A security vulnerability has been detected in H3C NX15 V100R017. Affected is the function service.add of the file /api/esps of the component Web API. Such

05 Aug 2026, 04:00 UTC View advisory →
CVE-2026-18900 High 8.6

A weakness has been identified in H3C NX15 V100R017. This impacts the function file.exec of the file /api/esps of the component Backend RPC. This manipulat

05 Aug 2026, 03:45 UTC View advisory →
CVE-2026-18898 High 8.7

A security flaw has been discovered in UTT HiPER 1200GW up to v2.5.3-170306. This affects the function strcpy of the file /goform/ConfigAdvideo. The manipu

05 Aug 2026, 03:00 UTC View advisory →
CVE-2026-18897 High 8.7

A vulnerability was identified in UTT HiPER 1250GW up to v3.2.7-210907-180535. The impacted element is the function strcpy of the file /goform/getOneApConf

05 Aug 2026, 02:00 UTC View advisory →
CVE-2026-18896 Medium 5.3

A vulnerability was determined in lavkush-maurya Student-Registration-System 1.0. The affected element is an unknown function of the file /student/changepa

05 Aug 2026, 01:45 UTC View advisory →
CVE-2026-18895 High 8.7

A vulnerability was found in UTT HiPER 1250GW up to 3.2.7-210907-180535. Impacted is the function strcpy of the file /goform/APSecurity_5g. Performing a ma

05 Aug 2026, 01:30 UTC View advisory →
CVE-2026-18859 Medium 6.9

A vulnerability was identified in ESAFENET CDG up to 20260615. Affected is an unknown function of the file /CDGServer3/ukey/usbkey;logindojojs. Such manipu

05 Aug 2026, 00:45 UTC View advisory →
CVE-2026-18856 Medium 5.1

A vulnerability was determined in Poesis Rhymix CMS up to 2.1.33. This impacts the function procImporterAdminCheckXmlFile of the file modules/importer/impo

05 Aug 2026, 00:30 UTC View advisory →
CVE-2026-18854 Medium 6.9

A vulnerability has been found in Shandong Hoteam PDM Product Data Management System up to 8.3.10. The impacted element is the function GetStoredClassByFil

05 Aug 2026, 00:00 UTC View advisory →
CVE-2026-18853 Medium 4.8

A security vulnerability has been detected in ZomboDroid Meme Generator App 4.6830 on Android. This issue affects the function t5.l.c of the component com.

04 Aug 2026, 23:45 UTC View advisory →
CVE-2026-18852 Medium 4.8

A vulnerability has been found in epsilla-cloud vectordb up to 0.3.18/df5a5f5afb85a2376a0f2f316c79dea9b2c6ac7a. This impacts the function SplitTokens/Shunt

04 Aug 2026, 23:15 UTC View advisory →
CVE-2026-18839 Low 2.2

An integer underflow was found in the popt library when formatting help text for option tables that exceed the terminal width. A local user who can cause a

05 Aug 2026, 20:45 UTC View advisory →
CVE-2026-18830 High 8.6

Insufficient input validation in Amazon Bedrock AgentCore harness might allow an authenticated remote user to execute configured tools bypassing model invo

04 Aug 2026, 17:42 UTC View advisory →
CVE-2026-18819 Medium 5.3

A security vulnerability has been detected in RackTables up to 0.22.0/e5fff9f8aab339798ed47e8c6d7d977ed97a82bd. This vulnerability affects unknown code. Th

04 Aug 2026, 22:45 UTC View advisory →
CVE-2026-18818 Medium 5.3

A weakness has been identified in Ehco1996 django-sspanel up to 2023.12.26. This affects the function TicketDetailView of the file apps/sspanel/views.py of

04 Aug 2026, 22:30 UTC View advisory →
CVE-2026-18817 Low 2.1

A security flaw has been discovered in Baserow up to 2.3.2. Affected by this issue is the function BaserowImpersonateAuthTokenSerializer of the file backen

04 Aug 2026, 22:00 UTC View advisory →
CVE-2026-18816 Low 2.3

A vulnerability was identified in Baserow up to 2.3.2. Affected by this vulnerability is the function verify of the file backend/src/baserow/api/two_factor

04 Aug 2026, 21:45 UTC View advisory →
CVE-2026-18814 High 8.6

A vulnerability was found in H3C NX15 V100R017. This impacts the function reload.reload_config of the file /api/esps. The manipulation results in command i

04 Aug 2026, 21:15 UTC View advisory →
CVE-2026-18813 High 8.6

A vulnerability has been found in H3C NX15 V100R017. This affects the function delete of the file /api/esps. The manipulation of the argument esps.apcm.ver

04 Aug 2026, 21:00 UTC View advisory →
CVE-2026-18812 High 8.6

A flaw has been found in H3C NX15 V100R017. The impacted element is the function esps.ipv6.wan of the file /api/esps. Executing a manipulation of the argum

04 Aug 2026, 20:30 UTC View advisory →
CVE-2026-18811 High 8.6

A vulnerability was detected in H3C NX15 V100R017. The affected element is the function Add of the file /api/esps. Performing a manipulation of the argumen

04 Aug 2026, 20:15 UTC View advisory →
CVE-2026-18810 Medium 6.9

A security vulnerability has been detected in H3C NX15 V100R017. Impacted is an unknown function of the file /api/wizard/networkSetup. Such manipulation le

04 Aug 2026, 20:00 UTC View advisory →
CVE-2026-18809 Medium 6.5

Information disclosure in Firefox for Android and Firefox Focus for Android. This vulnerability was fixed in Firefox 153.0.3.

04 Aug 2026, 12:31 UTC View advisory →
CVE-2026-18806 High 7.1

External control of file name or path vulnerability in TÜBİTAK BİLGEM Software Technologies Research Institute pardus-image-writer allows Removing Importan

04 Aug 2026, 12:38 UTC View advisory →
CVE-2026-18801 Critical 9.3

OpenMeter contains a stored, or second-order, SQL injection vulnerability in the handling of customer usage-attribution values. An attacker who can create

04 Aug 2026, 14:53 UTC View advisory →
CVE-2026-18790 Medium 4.8

A weakness has been identified in Systerel S2OPC up to 1.7.3. This affects the function LockedStaMac_ProcessMsg_DeleteMonitoredItemsResponse of the file sr

04 Aug 2026, 17:30 UTC View advisory →
CVE-2026-18788 Medium 6.9

A security flaw has been discovered in Trippo ResponsiveFilemanager up to 9.14.0. The impacted element is an unknown function of the file filemanager/dialo

04 Aug 2026, 17:15 UTC View advisory →
CVE-2026-18787 High 8.7

A vulnerability was identified in GL.iNet AX1800 up to 4.8.3. The affected element is the function remove_rule of the file /usr/share/gl-ngx/oui-rpc.lua of

04 Aug 2026, 17:00 UTC View advisory →
CVE-2026-18785 Medium 4.8

A vulnerability was determined in o6 open62541 ca356b088ada7dee824d1b4acd07c1ff07ce242b. Impacted is the function UA_Client_getRemoteDataTypes of the file

04 Aug 2026, 16:45 UTC View advisory →
CVE-2026-18784 Medium 4.8

A vulnerability was found in o6 open62541 up to 1.5.5. This issue affects the function UA_Client_readNodeClassAttribute of the file src/client/ua_client_hi

04 Aug 2026, 16:30 UTC View advisory →
CVE-2026-18775 Medium 5.3

A vulnerability has been found in NousResearch hermes-agent up to 0.16.0. This vulnerability affects the function browser_snapshot of the file tools/browse

04 Aug 2026, 16:15 UTC View advisory →
CVE-2026-18774 Medium 5.3

A flaw has been found in NousResearch hermes-agent up to 0.16.0. This affects the function save_url_image of the file agent/image_gen_provider.py of the co

04 Aug 2026, 16:00 UTC View advisory →
CVE-2026-18773 Medium 5.3

A vulnerability was detected in NousResearch hermes-agent up to 2026.6.5. Affected by this issue is the function _check_slash_access of the file gateway/ru

04 Aug 2026, 15:00 UTC View advisory →
CVE-2026-18772 Medium 5.5

Improper input validation vulnerability in Samsung Open Source rlottie allows Oversized Serialized Data Payloads.

04 Aug 2026, 08:22 UTC View advisory →
CVE-2026-18770 Medium 6.9

A vulnerability has been found in vibesurf-ai VibeSurf up to cd6e519d507cdd4d63061300bf60fb176e1f57e0. Impacted is an unknown function of the file /code of

04 Aug 2026, 14:45 UTC View advisory →
CVE-2026-18766 Medium 5.3

A flaw has been found in chetans9 core-php-admin-panel up to 90d07ed5aac5e0f09b6a5828d7bb2eb83010763f. This issue affects some unknown processing of the fi

04 Aug 2026, 14:15 UTC View advisory →
CVE-2026-18759 High 8.5

The background service of ABP or AES runs as NT AUTHORITY\SYSTEM and implements a file-based inter-process communication (IPC) mechanism protected by AES e

04 Aug 2026, 07:25 UTC View advisory →
CVE-2026-18755 High 7.3

A DLL hijacking vulnerability in GeoVision GV-ASManager allows a local attacker with write access to an unsafe search directory to execute arbitrary code.

04 Aug 2026, 07:09 UTC View advisory →
CVE-2026-18754 Critical 9.1

The product firmware contains an embedded, static RSA private key utilized by the Lighttpd web server for TLS termination. Exposure of this private key all

04 Aug 2026, 07:09 UTC View advisory →
CVE-2026-18753 Critical 9.1

The product firmware contains an embedded, static RSA private key utilized by the Lighttpd web server for TLS termination. Exposure of this private key all

04 Aug 2026, 07:08 UTC View advisory →
CVE-2026-18739 Low 2.5

A flaw was found in popt, a command-line option parsing library. An off-by-one error in the poptStuffArgs function, when repeatedly called by a host applic

04 Aug 2026, 05:32 UTC View advisory →
CVE-2026-18738 Medium 5.1

Shlink versions 5.0.0 through 5.1.5 contain a CSV formula injection vulnerability that allows unauthenticated remote attackers to plant spreadsheet formula

03 Aug 2026, 20:53 UTC View advisory →
CVE-2026-18737 High 7.1

Shlink contains a blind SQL injection vulnerability that allows any authenticated API key holder to inject arbitrary SQL fragments by supplying an unvalida

03 Aug 2026, 20:40 UTC View advisory →
CVE-2026-18736 Medium 5.3

Shlink contains a server-side request forgery vulnerability that allows authenticated API key holders to cause the server to issue arbitrary HTTP GET reque

03 Aug 2026, 20:15 UTC View advisory →
CVE-2026-18733 High 7.5

A prompt injection vulnerability in the shell tool in Amazon Strands Agents Tools before 0.8.0 might allow remote actors to execute arbitrary operating sys

03 Aug 2026, 20:33 UTC View advisory →
CVE-2026-18723 Medium 5.3

A vulnerability was determined in diaowen DWSurvey up to 6.14.0. The affected element is an unknown function of the file /api/dwsurvey/app/survey/up-survey

04 Aug 2026, 03:15 UTC View advisory →
CVE-2026-18722 Medium 5.3

A vulnerability was found in diaowen DWSurvey up to 6.14.0. Impacted is the function in DwDeisgnSurveyController.devSurvey. of the file /api/dwsurvey/app/v

04 Aug 2026, 03:00 UTC View advisory →
CVE-2026-18721 Medium 5.3

A vulnerability has been found in kalcaddle kodbox 1.67 Build 02. This issue affects some unknown processing of the file /user/sso/apiLogin of the componen

04 Aug 2026, 02:30 UTC View advisory →
CVE-2026-18720 Medium 6.9

A flaw has been found in kalcaddle kodbox 1.67 Build 02. This vulnerability affects unknown code of the file /index.php?plugin/msgWarning/action of the com

04 Aug 2026, 01:45 UTC View advisory →
CVE-2026-18719 Medium 5.3

A vulnerability was detected in cemtan sar2html 4.0.0. This affects an unknown part of the file sar2html.py of the component Search. Performing a manipulat

04 Aug 2026, 01:15 UTC View advisory →
CVE-2026-18718 High 7.1

Ghidra contains an arbitrary code execution vulnerability in the Swift demangler analyzer that allows an attacker to execute arbitrary binaries by supplyin

03 Aug 2026, 16:54 UTC View advisory →
CVE-2026-18686 Critical 9.3

A vulnerability was detected in GL.iNet GL-MT3000 up to 4.4.5. The affected element is the function nas-web.add_user of the file /cgi-bin/glc of the compon

04 Aug 2026, 00:00 UTC View advisory →
CVE-2026-18685 Critical 9.3

A security vulnerability has been detected in GL.iNet GL-MT3000 up to 4.4.5. Impacted is the function set_upgrade of the file /cgi-bin/glc of the component

03 Aug 2026, 23:15 UTC View advisory →
CVE-2026-18684 Critical 9.3

A weakness has been identified in GL.iNet GL-MT3000 up to 4.4.5. This issue affects the function remove_profile of the file /cgi-bin/glc of the component m

03 Aug 2026, 22:45 UTC View advisory →
CVE-2026-18682 Low 2.3

A security flaw has been discovered in OpenAkita up to 1.27.12. This vulnerability affects unknown code of the file /api/upload of the component File Uploa

03 Aug 2026, 21:30 UTC View advisory →
CVE-2026-18667 Critical 9.3

A vulnerability in Tenable Sensor Proxy allows a remote attacker to execute code with elevated privileges by inducing an operator to connect the sensor to

03 Aug 2026, 22:27 UTC View advisory →
CVE-2026-18657 High 8.5

An uncontrolled search path element in Kiro CLI before version 2.10.0 on Windows might allow a remote unauthenticated actor to execute arbitrary code via a

04 Aug 2026, 19:38 UTC View advisory →
CVE-2026-18656 High 8.5

An uncontrolled search path element in Kiro IDE before version 1.0.228 on Windows might allow a remote unauthenticated actor to execute arbitrary code via

04 Aug 2026, 19:35 UTC View advisory →
CVE-2026-18655 High 7.1

Improper restriction of intended endpoints in the RabbitMQ broker connection tools of the Amazon MQ MCP Server (awslabs.amazon-mq-mcp-server) before 2.0.24

03 Aug 2026, 19:04 UTC View advisory →
CVE-2026-18654 Medium 6.9

Key exchange without entity authentication in the EMR SSH helper commands in Amazon AWS CLI before 1.45.28 and AWS CLI v2 before 2.35.3 might allow man-in-

03 Aug 2026, 19:38 UTC View advisory →
CVE-2026-18651 Medium 5.4

A flaw was found in 389 Directory Server. During SASL PLAIN authentication, the server installs connection-level bind credentials before performing the acc

03 Aug 2026, 14:55 UTC View advisory →
CVE-2026-18650 High 8.8

Missing Authorization vulnerability in HAVELSAN Inc. Liman MYS allows Privilege Escalation. This issue affects Liman MYS: from 2.2.3 before 2.3.1.

04 Aug 2026, 14:02 UTC View advisory →
CVE-2026-18648 Medium 4.8

A vulnerability was detected in Blix Email Blue Mail Calendar App 2.2.305. Impacted is the function FileDirectory.getDataColumn/FileDirectory.getFileFromUr

03 Aug 2026, 21:00 UTC View advisory →
CVE-2026-18647 Medium 6.9

A security vulnerability has been detected in jina-ai reader up to 1574bfd380d249c86c82db4dace0d9c8fe17e2b1. This issue affects the function isValidTLD of

03 Aug 2026, 20:45 UTC View advisory →
CVE-2026-18646 Medium 6.9

A weakness has been identified in danpros HTMLy up to 3.1.1. This vulnerability affects unknown code of the file /system/htmly.php of the component Author

03 Aug 2026, 20:30 UTC View advisory →
CVE-2026-18645 Medium 5.3

A security flaw has been discovered in danpros HTMLy up to 3.1.1. This affects the function add_content of the file /system/admin/admin.php of the componen

03 Aug 2026, 20:15 UTC View advisory →
CVE-2026-18644 Medium 5.3

A vulnerability was identified in danpros HTMLy up to 3.1.1. Affected by this issue is the function unlink of the file /system/htmly.php of the component D

03 Aug 2026, 20:00 UTC View advisory →
CVE-2026-18642 High 7.8

Deserialization of untrusted data vulnerability in TUBITAK BILGEM Software Technologies Research Institute eta-otp-lock allows Object Injection. This issue

03 Aug 2026, 13:31 UTC View advisory →
CVE-2026-18641 Medium 6.9

A vulnerability was determined in Sangfor Operation and Maintenance Security Management System up to 3.0.13. Affected by this vulnerability is the function

03 Aug 2026, 19:45 UTC View advisory →
CVE-2026-18632 Medium 5.3

A security flaw has been discovered in langgenius dify up to 1.14.2. This issue affects the function jinja2.Template of the file api/core/helper/code_execu

03 Aug 2026, 19:30 UTC View advisory →
CVE-2026-18631 Medium 5.3

A vulnerability was identified in jeequan jeepay up to 3.2.9. This vulnerability affects the function WebSecurityConfig of the file jeepay-manager/src/main

03 Aug 2026, 19:15 UTC View advisory →
CVE-2026-18616 Critical 9.3

A vulnerability was identified in GL-iNet GL-MT3000 up to 4.4.5. The impacted element is the function server.set_peer of the file /cgi-bin/glc of the compo

03 Aug 2026, 18:30 UTC View advisory →
CVE-2026-18615 Critical 9.3

A vulnerability was determined in GL-iNet GL-MT3000 up to 4.4.5. The affected element is the function wg-server.generate_publickey of the file /cgi-bin/glc

03 Aug 2026, 18:15 UTC View advisory →
CVE-2026-18614 Critical 9.3

A vulnerability was found in GL-iNet GL-MT3000 up to 4.4.5. Impacted is the function s2s.enable_echo_server of the file /cgi-bin/glc of the component s2s.s

03 Aug 2026, 18:00 UTC View advisory →
CVE-2026-18613 Critical 9.3

A vulnerability has been found in GL-iNet GL-MT3000 up to 4.4.5. This issue affects the function plugins.set_config of the file /cgi-bin/glc of the compone

03 Aug 2026, 17:45 UTC View advisory →
CVE-2026-18612 Critical 9.3

A flaw has been found in GL-iNet GL-MT3000 up to 4.4.5. This vulnerability affects the function plugins.remove_package/plugins.install_package of the file

03 Aug 2026, 17:30 UTC View advisory →
CVE-2026-18610 Medium 6.9

A vulnerability was detected in NewType WebEIP up to 3.0. This affects an unknown part of the file /EIP_Com_FileList.aspx. The manipulation results in impr

03 Aug 2026, 17:00 UTC View advisory →
CVE-2026-18607 High 8.7

A security vulnerability has been detected in Wavlink WN572, WN570H, WN573, WN529, WN530, WN531, WN535, etc. WN529, WN530, WN531, WN535, WN536, WN551, WN55

03 Aug 2026, 16:45 UTC View advisory →
CVE-2026-18606 High 8.5

A weakness has been identified in Razer RzUpdateService 1.10.14.0. Affected by this vulnerability is an unknown functionality of the file C:\Program Files

03 Aug 2026, 16:15 UTC View advisory →
CVE-2026-18605 High 7.3

A security flaw has been discovered in CheckMAL AppCheck Pro 3.1.43.10. Affected is an unknown function in the library AppCheckD.sys of the component Kerne

03 Aug 2026, 16:00 UTC View advisory →
CVE-2026-18604 Medium 4.8

A vulnerability was identified in textPlus Text Message and Call App up to 8.3.5 on Android. This impacts the function DialerActivity of the component com.

03 Aug 2026, 15:45 UTC View advisory →
CVE-2026-18602 Critical 9.3

A vulnerability was determined in GL.iNet GL-MT3000 up to 4.4.5. Affected is the function ovpn-client.get_recommend_config of the file /cgi-bin/glc of the

03 Aug 2026, 15:30 UTC View advisory →
CVE-2026-18601 Critical 9.3

A vulnerability was found in GL.iNet GL-MT3000 up to 4.4.5. This impacts the function ovpn-client.check_config of the file /cgi-bin/glc of the component ov

03 Aug 2026, 13:15 UTC View advisory →
CVE-2026-18600 High 8.7

A vulnerability has been found in GL.iNet GL-MT3000 up to 4.4.5. This affects the function network.switch_info/network.switch_status of the file /usr/lib/o

03 Aug 2026, 13:00 UTC View advisory →
CVE-2026-18599 High 8.6

A flaw has been found in GL.iNet GL-MT3000 up to 4.4.5. The impacted element is the function logread.set_config of the file /usr/lib/oui-httpd/rpc/logread

03 Aug 2026, 12:00 UTC View advisory →
CVE-2026-18598 High 8.7

A vulnerability was detected in GL.iNet GL-MT3000 up to 4.4.5. The affected element is the function logread.get_system_log of the file /usr/lib/oui-httpd/r

03 Aug 2026, 11:30 UTC View advisory →
CVE-2026-18597 High 8.5

The PDF creation feature of Foxit PDF Services API supports referencing external files. Although local file access is restricted, an attacker could trigger

06 Aug 2026, 07:37 UTC View advisory →
CVE-2026-18593 Medium 6.3

A weakness has been identified in vxcontrol PentAGI up to 2.1.0. This affects an unknown part of the file backend/pkg/templates/prompts/pentester.tmpl of t

03 Aug 2026, 07:45 UTC View advisory →
CVE-2026-18592 Medium 5.1

A security flaw has been discovered in osCommerce 4.14.63493. Affected by this issue is the function EmailController of the file app/lib/backend/controller

03 Aug 2026, 07:30 UTC View advisory →
CVE-2026-18591 Low 2.4

A vulnerability was identified in Meesho Online Shopping App up to 20260607 on Android. Affected by this vulnerability is an unknown functionality of the c

03 Aug 2026, 07:15 UTC View advisory →
CVE-2026-18590 Medium 5.3

A vulnerability was determined in Wavlink WL-NU516U1 708c073-mt7628. Affected is the function set_sys_adm of the file adm.cgi of the component Admin Passwo

03 Aug 2026, 06:45 UTC View advisory →
CVE-2026-18589 Critical 9.3

A vulnerability was found in Wavlink WL-NU516U1 708c073-mt7628. This impacts the function change_password of the file nas.cgi. The manipulation of the argu

03 Aug 2026, 06:30 UTC View advisory →
CVE-2026-18588 Critical 9.3

A vulnerability has been found in Wavlink WL-NU516U1 708c073-mt7628. This affects the function fgets of the file nas.cgi. The manipulation of the argument

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-18587 High 7.7

A flaw has been found in Wavlink WL-NU516U1 708c073-mt7628. The impacted element is an unknown function of the component Config Import. Executing a manipul

03 Aug 2026, 05:45 UTC View advisory →
CVE-2026-18585 Medium 5.3

A vulnerability was detected in GL.iNet MT3000, MT6000, BE9300, BE3600, MT3600BE, E5800, BE6500, MT5000, X3000, XE3000 and MT2500 up to 20260707. The affec

03 Aug 2026, 05:15 UTC View advisory →
CVE-2026-18584 Medium 5.3

A security vulnerability has been detected in GL.iNet E5800, E750, X2000, X3000, XE3000 and XE300 up to 20260707. Impacted is an unknown function of the fi

03 Aug 2026, 04:45 UTC View advisory →
CVE-2026-18583 Medium 6.9

A weakness has been identified in mz-automation libiec61850 up to 1.6.1. This issue affects the function checkDataSetAccess of the file src/iec61850/server

03 Aug 2026, 04:15 UTC View advisory →
CVE-2026-18582 Medium 6.9

A security flaw has been discovered in mz-automation libiec61850 up to 1.6.1. This vulnerability affects the function Reporting_RCBWriteAccessHandler of th

03 Aug 2026, 01:15 UTC View advisory →
CVE-2026-18581 Medium 4.8

A vulnerability was determined in ggml-org llama.cpp e15efe0. Affected by this issue is some unknown functionality of the file common/jinja/parser.cpp of t

03 Aug 2026, 00:30 UTC View advisory →
CVE-2026-18577 High 8.2

An incomplete patch for CVE-2026-18556 allows for authentication bypass and account takeover in N-central Versions through 2026.3.1

02 Aug 2026, 22:06 UTC View advisory →
CVE-2026-18574 Critical 9.3

An authentication bypass vulnerability in Check Point Security Management Server and Multi-Domain Security Management Server (MDS) could allow an unauthent

03 Aug 2026, 12:07 UTC View advisory →
CVE-2026-18573 Medium 6.5

A flaw was found in the keycloak-services component of Keycloak, which is used for managing authentication and authorization flows. The issue occurs when a

02 Aug 2026, 05:28 UTC View advisory →
CVE-2026-18572 Medium 6.5

Keycloak provides authorization services that allow administrators to restrict access to resources based on time policies (for example, only allowing acces

02 Aug 2026, 05:18 UTC View advisory →
CVE-2026-18571 Medium 6.6

A flaw was found in the user creation component of Keycloak when Fine-Grained Admin Permissions V2 (FGAP V2) is enabled. This issue allows a sub-administra

02 Aug 2026, 05:18 UTC View advisory →
CVE-2026-18570 Medium 5.4

A flaw was found in the full-scope-disabled client-policy executor within the keycloak-services component. This component is responsible for enforcing secu

02 Aug 2026, 05:18 UTC View advisory →
CVE-2026-18569 Low 3.7

A flaw was found in the backchannel logout endpoint of the keycloak-services component, which is part of the Red Hat Build of Keycloak. This component hand

04 Aug 2026, 05:13 UTC View advisory →
CVE-2026-18568 High 7.5

XML::Sig versions from 0.29 before 0.72 for Perl allow signature verification bypass because verify returns true when every signature was skipped before an

03 Aug 2026, 14:38 UTC View advisory →
CVE-2026-18556 High 8.2

Authentication bypass using an alternate path or channel vulnerability in N-able N-central allows Authentication Bypass. This issue affects N-central: thro

01 Aug 2026, 19:59 UTC View advisory →
CVE-2026-18536 Unscored

Data::Entropy versions before 0.010 for Perl read remote entropy sources over plain HTTP. The Data::Entropy::RawSource::RandomOrg and Data::Entropy::RawSou

01 Aug 2026, 10:35 UTC View advisory →
CVE-2026-18531 Medium 5.3

IBM Maximo Application Suite 9.2, 9.1, and 9.0 could allow a remote attacker to tamper with session data due to the use of a weak HMAC session signing secr

05 Aug 2026, 16:04 UTC View advisory →
CVE-2026-18510 High 7.2

The TranslatePress – Translate Multilingual sites with AI Translation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Content

06 Aug 2026, 05:29 UTC View advisory →
CVE-2026-18508 Medium 4.4

A flaw was found in GNU tar. When extracting an archive with the --one-top-level option, hardlink targets are not confined to the designated top-level dire

03 Aug 2026, 14:51 UTC View advisory →
CVE-2026-18501 Medium 6.4

The UsersWP – Front-end login form, User Registration, User Profile & Members Directory plugin for WP plugin for WordPress is vulnerable to Stored Cross-Si

06 Aug 2026, 13:27 UTC View advisory →
CVE-2026-18487 Medium 5.4

A flaw was found in Epiphany. An issue in how the browser reads web addresses allows attackers to fake the domain name shown in the address bar. If a user

06 Aug 2026, 16:32 UTC View advisory →
CVE-2026-18485 High 8.5

There is a local privilege escalation vulnerability recently discovered in the NI-PAL kernel driver. This may allow a local, authenticated user to escalate

05 Aug 2026, 18:39 UTC View advisory →
CVE-2026-18481 Medium 6.2

Stored cross-site scripting in the participant URL handling in AWS Ops Wheel before PR #168 might allow an authenticated remote user to steal session token

31 Jul 2026, 18:12 UTC View advisory →
CVE-2026-18477 Medium 4.4

A TOCTOU (Time-of-Check Time-of-Use) vulnerability in GNU tar's incremental dumpdir 'X' rename handling allows a local attacker with write access to a dire

03 Aug 2026, 15:34 UTC View advisory →
CVE-2026-18452 Critical 10

DMS+ (Non-Mobile) developed by Rich Source has a Use of Hard-coded Credentials vulnerability. Unauthenticated remote attackers can exploit a fixed API key

31 Jul 2026, 05:54 UTC View advisory →
CVE-2026-18446 High 7.5

fast-uri before 4.1.2, 3.1.5, and 2.4.4 requires a literal double forward slash to recognize a URI authority, so a reference that uses a backslash based in

31 Jul 2026, 14:37 UTC View advisory →
CVE-2026-18437 Medium 5.3

The MailerPress – Newsletter, email marketing & AI automation plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o

31 Jul 2026, 08:30 UTC View advisory →
CVE-2026-18436 Medium 5.3

The MailPress plugin for WordPress is vulnerable to unauthorized access in versions up to, and including, 1.5.0 via the campaign revision-restore REST endp

31 Jul 2026, 08:30 UTC View advisory →
CVE-2026-18435 Medium 6.4

The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'toggleIcon' Block Att

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-18427 High 7.5

@fastify/static before version 10.1.3 contains an incomplete fix for a previous route guard bypass. The static file handler rejected only parent directory

06 Aug 2026, 14:52 UTC View advisory →
CVE-2026-18411 High 7.2

The KARR Security System and SWDS dealer-installed automotive anti-theft systems use a shared Bluetooth authentication key across affected devices. An atta

05 Aug 2026, 20:13 UTC View advisory →
CVE-2026-18401 Medium 6.9

The non-blocking (asynchronous) JSON parser in jackson-core does not enforce the maxNumberLength constraint defined in StreamReadConstraints (default: 1000

04 Aug 2026, 14:23 UTC View advisory →
CVE-2026-18400 Medium 6.4

The Slider, Gallery, and Carousel by MetaSlider – Image Slider, Video Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'delay'

06 Aug 2026, 05:29 UTC View advisory →
CVE-2026-18395 Unscored

The Child Pages Card WordPress plugin before 1.09 does not sanitise and escape some of its shortcode attributes before outputting them back in a page, allo

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-18394 Medium 6.9

Incorrect authorization in the http_request tool in Strands Agents Tools before 0.8.2 might allow remote attackers to obtain credentials configured via HTT

31 Jul 2026, 19:34 UTC View advisory →
CVE-2026-18382 Medium 6.8

A flaw was found in koku-metrics-operator. The operator's CostManagementMetricsConfig custom resource allows a user able to edit the CR to specify an arbit

30 Jul 2026, 12:00 UTC View advisory →
CVE-2026-18381 High 7.6

A flaw was found in the koku-metrics-operator for Red Hat OpenShift. The operator's CostManagementMetricsConfig custom resource allows a user able to edit

30 Jul 2026, 12:00 UTC View advisory →
CVE-2026-18378 High 7.6

A flaw was found in koku-metrics-operator. The operator's CostManagementMetricsConfig custom resource allows user able to edit the CR to specify an arbitra

30 Jul 2026, 12:00 UTC View advisory →
CVE-2026-18369 Medium 5.8

A flaw was found in Dogtag PKI's ACME responder where the HTTP-01 challenge validator accepts IP address literals as dns identifiers and follows HTTP redir

30 Jul 2026, 10:32 UTC View advisory →
CVE-2026-18367 Critical 9.3

A privilege escalation vulnerability allows local users to execute arbitrary code as root via Sophos Endpoint for macOS older than version 2026.1.1 and Sop

06 Aug 2026, 20:30 UTC View advisory →
CVE-2026-18363 Critical 9.1

A logic vulnerability in the password reset token validation routine implemented by osTicket in versions prior to v1.17.8 and v1.18.4. During the password

30 Jul 2026, 10:35 UTC View advisory →
CVE-2026-18362 Medium 5.9

The IRIS web application in version 2.4.26 and possibly others does not protect its user authentication against brute-force attacks.

30 Jul 2026, 09:44 UTC View advisory →
CVE-2026-18361 High 7.6

The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the datastore upload function.

30 Jul 2026, 09:42 UTC View advisory →
CVE-2026-18360 High 7.6

The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the custom attributes function.

30 Jul 2026, 09:41 UTC View advisory →
CVE-2026-18359 High 8.5

Server-side request forgery in the METS and IIIF import URI handling in Scripta eScriptorium through 26.04.1 allows a remote authenticated user to make the

06 Aug 2026, 15:11 UTC View advisory →
CVE-2026-18358 High 7.5

A flaw was found in gnome-remote-desktop as shipped in Red Hat Enterprise Linux. When the daemon is running in system mode with RDP enabled, the incoming c

31 Jul 2026, 12:20 UTC View advisory →
CVE-2026-18353 High 8.8

PIA's `POST /v1/upload/sbom` endpoint accepts a Bearer JWT and checks its **unverified** `iss` claim against an issuer allowlist using Python's `urlparse`

30 Jul 2026, 07:23 UTC View advisory →
CVE-2026-18352 High 7.5

The User Access Manager plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.3.15 via the 'uamgetfile' paramet

01 Aug 2026, 23:29 UTC View advisory →
CVE-2026-18344 Medium 6.1

The Wp Responsive Thumbnail Slider plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'id' parameter in versions up to, and exclu

01 Aug 2026, 08:32 UTC View advisory →
CVE-2026-18325 High 7.2

The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Forged Upload

06 Aug 2026, 03:26 UTC View advisory →
CVE-2026-18322 High 8.8

The Smart Popup by Supsystic plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.12.0. This is due to a perm

05 Aug 2026, 04:25 UTC View advisory →
CVE-2026-18321 Medium 4.7

Buffer overflow in NTPsec's Zyfer refclock allows local attacker to crash ntpd

31 Jul 2026, 18:04 UTC View advisory →
CVE-2026-18277 High 7.1

Missing authorization in the OcrModelRight create and delete views in Scripta eScriptorium through 26.04.1 allows a remote authenticated user to grant them

06 Aug 2026, 15:11 UTC View advisory →
CVE-2026-18276 Medium 4.3

Missing authorization in the websocket consumer in Scripta eScriptorium through 26.04.1 allows a remote authenticated user to subscribe to any document's e

06 Aug 2026, 15:11 UTC View advisory →
CVE-2026-18275 Medium 6.5

Authorization bypass in the process and annotation taxonomy serializers in Scripta eScriptorium through 26.04.1 allows a remote authenticated user to run s

06 Aug 2026, 15:11 UTC View advisory →
CVE-2026-18258 High 8.8

Authorization bypass in the Line, LineTranscription, VirtualCollection, tag and process API endpoints in Scripta/eScriptorium through 26.04.1 allows a remo

06 Aug 2026, 15:11 UTC View advisory →
CVE-2026-18248 Critical 9.1

@fastify/aws-lambda version 6.4.0 decorates each Fastify request with request.awsLambda.event and request.awsLambda.context, values that applications are d

03 Aug 2026, 15:20 UTC View advisory →
CVE-2026-18245 Medium 6.4

Improper control of code generation in Amazon @aws-amplify/codegen-ui-react before 2.20.6 might allow a remote authenticated user to execute arbitrary code

30 Jul 2026, 18:13 UTC View advisory →
CVE-2026-18243 Medium 6.9

Certain HP DesignJet products may be potentially vulnerable to cross-site scripting (XSS), which may allow unauthenticated HTTP requests to view print job

03 Aug 2026, 15:58 UTC View advisory →
CVE-2026-18214 Medium 6.8

Keycloak allows users to log in using Google accounts and can be configured to only allow users from specific Google Workspace domains. A flaw was found wh

31 Jul 2026, 07:08 UTC View advisory →
CVE-2026-18211 Medium 4.2

A flaw was found in the secure-client-uris client policy executor within Keycloak core services. This component is responsible for enforcing security requi

31 Jul 2026, 07:08 UTC View advisory →
CVE-2026-18209 Low 3.4

A flaw was found in the keycloak-services component of Keycloak, which handles OpenID Connect (OIDC) authentication flows. The issue occurs because the sec

31 Jul 2026, 07:08 UTC View advisory →
CVE-2026-18208 Medium 6.5

A flaw was found in the OIDC token introspection endpoint of the keycloak-services component. Keycloak is an open-source identity and access management sol

31 Jul 2026, 07:08 UTC View advisory →
CVE-2026-18206 Low 3.7

A flaw was found in the keycloak-services component of Keycloak, which provides identity and access management services. The issue occurs when a realm admi

31 Jul 2026, 07:08 UTC View advisory →
CVE-2026-18203 Medium 6.5

A flaw was found in the group policy evaluation logic of Keycloak, an identity and access management solution. When a group policy is set to extend permiss

31 Jul 2026, 07:08 UTC View advisory →
CVE-2026-18157 High 7.8

A flaw was found in yggdrasil-worker-package-manager. A local attacker with existing access to the system could exploit an argument injection vulnerability

31 Jul 2026, 02:38 UTC View advisory →
CVE-2026-18141 High 8.2

A flaw was found in aap-gateway, a component of Ansible Automation Platform's Event-Driven Ansible (EDA). An unauthenticated remote attacker can bypass mut

31 Jul 2026, 15:34 UTC View advisory →
CVE-2026-18140 High 8.7

Uncontrolled recursion in the unknown-key skip path of the aws-smithy-json runtime crate before 0.62.7, which the smithy-rs code generator invokes from eve

30 Jul 2026, 18:34 UTC View advisory →
CVE-2026-18108 Critical 9.8

Net::SAML2 versions before 0.86 for Perl allow authentication bypass because _verify_encrypted_assertion accepts an EncryptedAssertion whose decrypted cont

03 Aug 2026, 13:00 UTC View advisory →
CVE-2026-18103 Medium 4.9

A flaw was found in dhcp-server. A remote attacker with network access to the OMAPI (Open Management Application Programming Interface) port, especially if

04 Aug 2026, 23:08 UTC View advisory →
CVE-2026-18092 High 8.1

Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass via XML signature wrapping because new_from_xml reads assertion identity with doc

03 Aug 2026, 13:24 UTC View advisory →
CVE-2026-18089 High 7.5

Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass by verifying responses against the response-embedded certificate in verify_xml wh

03 Aug 2026, 12:42 UTC View advisory →
CVE-2026-18064 High 8.2

An incomplete fix for CVE-2026-15352 in the NASA core Flight System (cFS) Health and Safety (HS) application leaves a separate NULL pointer dereference rea

30 Jul 2026, 21:35 UTC View advisory →
CVE-2026-18062 Medium 6.4

The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Identity Block Inner I

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-18059 Medium 5.3

The PixelYourSite – Your smart PIXEL (TAG) & API Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-18050 Unscored

The Events Manager WordPress plugin before 7.4 does not perform any authorization check on a REST route that serves temporarily stored file uploads, allowi

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-17633 High 8.5

IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to code injection.

05 Aug 2026, 18:33 UTC View advisory →
CVE-2026-17632 High 8.8

IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to improper validation of Python code durin

05 Aug 2026, 18:33 UTC View advisory →
CVE-2026-17630 High 7.2

IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote attacker to execute arbitrary code due to improper validation of configuration parameters.

05 Aug 2026, 16:33 UTC View advisory →
CVE-2026-17626 High 8.8

IBM Langflow OSS 1.0.0 through 1.10.3 Langflow could allow an authenticated attacker to read, modify, or expose sensitive host files via Docker-based MCP s

05 Aug 2026, 16:31 UTC View advisory →
CVE-2026-17625 High 7.2

IBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, and 1.

05 Aug 2026, 17:17 UTC View advisory →
CVE-2026-17624 High 8.5

IBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, and 1.

05 Aug 2026, 18:34 UTC View advisory →
CVE-2026-17623 High 8.8

IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary commands due to improper validation of the command f

05 Aug 2026, 16:34 UTC View advisory →
CVE-2026-17617 High 8.5

IBM Application Gateway Operator 22.2 through 26.06 is vulnerable to Server-Side Request Forgery (SSRF) due to insufficient validation of URLs specified in

05 Aug 2026, 16:18 UTC View advisory →
CVE-2026-17614 Medium 4.4

A path traversal flaw was found in WildFly's domain mode implementation. The LocalFileRepository.getFile() and getConfigurationFile() methods in wildfly-co

04 Aug 2026, 02:12 UTC View advisory →
CVE-2026-17613 High 7.5

Penpot’s ::import-binfile RPC command lacks authorization on the optional file-id parameter, allowing any authenticated user to overwrite any files on the

05 Aug 2026, 14:12 UTC View advisory →
CVE-2026-17612 Medium 6.9

Honeywell S35 Series 3M/5M/8M/PinHole Cameras, all versions prior to and including version HC5.26.1.14.20260207 contains an audit log disclosure Vulnerabil

27 Jul 2026, 18:45 UTC View advisory →
CVE-2026-17605 Medium 6.6

The Payment forms, Buy now buttons, and Invoicing System | GetPaid plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and in

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-17592 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have be

01 Aug 2026 View advisory →
CVE-2026-17583 High 8.3

The affected Thermo Fisher Applied Biosystems Genetic Analyzers are vulnerable because .fsa/.hid output files can be edited. An attacker could tamper with

05 Aug 2026, 20:23 UTC View advisory →
CVE-2026-17580 Medium 6.5

The Advanced Views – Display Custom Fields (ACF, Pods, MetaBox), Posts, CPT and Woo Products anywhere in Gutenberg, Elementor, Divi, Beaver… plugin for Wor

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-17578 Low 2.3

Kong Event Gateway versions 1.0.0 through 1.1.1 and 1.2.0 do not enforce key rotation before reaching NIST SP 800-38D recommended usage limit for AES-GCM e

05 Aug 2026, 10:20 UTC View advisory →
CVE-2026-17574 Medium 5.2

HDF5 contains a NULL pointer dereference vulnerability. Processing a crafted HDF5 file containing an attribute with an invalid variable-length datatype typ

27 Jul 2026, 15:12 UTC View advisory →
CVE-2026-17573 Medium 4

A double free vulnerability was discovered in the HDF5 library. Processing a crafted HDF5 file containing an oversized chunk size field via h5repack may ca

27 Jul 2026, 15:11 UTC View advisory →
CVE-2026-17572 Medium 5.5

Heap-based buffer overflow in the SOHM list-index deserialization code in HDF5 through 2.1.1 on all platforms allows attackers to cause a denial of service

27 Jul 2026, 15:11 UTC View advisory →
CVE-2026-17571 Medium 6.1

The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scrip

01 Aug 2026, 08:32 UTC View advisory →
CVE-2026-17570 Medium 4.3

Improper access control in the PAM password history endpoints in Devolutions Server allows an authenticated low-privileged user to disclose plaintext crede

27 Jul 2026, 17:38 UTC View advisory →
CVE-2026-17569 Unscored

Improper access control in the NetBox synchronizer in Devolutions Server allows an authenticated user with view-only permission on an entry to obtain a sto

27 Jul 2026, 17:37 UTC View advisory →
CVE-2026-17568 Unscored

Improper access control in the role membership management endpoint in Devolutions Server allows an authenticated non-administrative user holding the user-g

27 Jul 2026, 17:36 UTC View advisory →
CVE-2026-17567 Medium 5.3

The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin for WordPress is vulnerable to Insecure Direct Object Ref

31 Jul 2026, 09:32 UTC View advisory →
CVE-2026-17566 Critical 9.4

pgAdmin 4's Import/Export Data tool builds a psql \copy (...) command line by interpolating a user-supplied SQL query into a Jinja template and passing the

31 Jul 2026, 16:00 UTC View advisory →
CVE-2026-17561 Critical 9.8

Improper Control of Generation of Code ('Code Injection') vulnerability in Innotim Software, Telecommunications and Consulting Trade Ltd. Co. Logsign SIEM

31 Jul 2026, 12:49 UTC View advisory →
CVE-2026-17556 High 8.8

A path traversal vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to delete arbitrary files and directorie

05 Aug 2026, 20:05 UTC View advisory →
CVE-2026-17555 Medium 4.9

The WPvivid Backup & Migration plugin for WordPress is vulnerable to SQL Injection via the export_data parameter in versions up to, and including, 0.9.131.

01 Aug 2026, 08:32 UTC View advisory →
CVE-2026-17552 Unscored

Plack::App::Prerender versions before 0.3.0 for Perl can proxy to an arbitrary host via unvalidated REQUEST_URI concatenation in call. When the rewrite bas

27 Jul 2026, 18:04 UTC View advisory →
CVE-2026-17544 High 8.1

Attacker-provided inputs to bccomp() could lead to an out-of-bounds write with stack and heap corruption in PHP versions from 8.4.* before 8.4.24 and from

30 Jul 2026, 11:22 UTC View advisory →
CVE-2026-17543 High 8.1

Improper escaping of backslashes in attacker-provided parameters would allow for trivial SQL injection in PHP versions from 8.2.* before 8.2.33, from 8.3.*

30 Jul 2026, 11:22 UTC View advisory →
CVE-2026-17534 Medium 5.5

Kimi Code (@moonshot-ai/kimi-code) before 0.27.0 implements FetchURL SSRF hardening as a static hostname and IP-literal denylist in assertSafeFetchTarget,

27 Jul 2026, 09:19 UTC View advisory →
CVE-2026-17531 Low 2.3

A weakness has been identified in unitedbyai droidclaw up to 0.5.3. Affected by this issue is some unknown functionality of the file server/src/routes/goal

27 Jul 2026, 16:15 UTC View advisory →
CVE-2026-17530 Medium 5.3

A security flaw has been discovered in AstrBotDevs AstrBot up to 4.25.5. Affected by this vulnerability is the function _build_handoff_toolset of the file

27 Jul 2026, 15:45 UTC View advisory →
CVE-2026-17529 Medium 5.3

A vulnerability was identified in AstrBotDevs AstrBot up to 4.25.5. Affected is an unknown function of the file astrbot/core/astr_main_agent.py. The manipu

27 Jul 2026, 15:15 UTC View advisory →
CVE-2026-17528 Medium 5.3

Versions of the package nice-select2 before 2.4.1 are vulnerable to Cross-site Scripting (XSS) via the element. An attacker can supply a malicious payload

28 Jul 2026, 05:00 UTC View advisory →
CVE-2026-17527 High 7.7

In containerized-data-importer (CDI), the aggregated cdi.kubevirt.io:view ClusterRole, intended to provide read-only access to CDI resources, includes a ru

27 Jul 2026, 09:31 UTC View advisory →
CVE-2026-17524 High 8.7

Versions of the package zip-lib before 1.1.0 are vulnerable to Directory Traversal via the caching mechanism for path validation during the extraction proc

28 Jul 2026, 05:00 UTC View advisory →
CVE-2026-17523 High 7.8

A flaw was found in the kernel. An unprivileged local user can exploit this vulnerability to execute arbitrary code within the kernel, which leads to a loc

27 Jul 2026, 08:58 UTC View advisory →
CVE-2026-17515 Unscored

The MLSImport: IDX Plugin & MLS Plugin for Real Estate Listings WordPress plugin before 7.0.4 does not have authorisation and CSRF checks in one of its AJA

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-17514 Medium 4.8

A vulnerability was determined in ZJONSSON node-unzipper up to 0.12.3. Affected by this vulnerability is the function Extract of the file lib/extract.js. T

27 Jul 2026, 13:15 UTC View advisory →
CVE-2026-17513 Medium 4.8

A vulnerability was found in ggml-org whisper.cpp 95ea8f9b. Affected is the function ggml_ftype_to_ggml_type of the file ggml/src/ggml.c. The manipulation

27 Jul 2026, 12:45 UTC View advisory →
CVE-2026-17512 Medium 4.8

A vulnerability has been found in ggml-org whisper.cpp 1.8.4-58. This impacts the function log_mel_spectrogram of the file src/whisper.cpp. The manipulatio

27 Jul 2026, 12:30 UTC View advisory →
CVE-2026-17506 High 7.2

The Independent Analytics plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 404 not_found_url tracking parameter in versions up to,

05 Aug 2026, 13:26 UTC View advisory →
CVE-2026-17351 Critical 9.4

The fix for CVE-2026-12045 in pgAdmin 4 9.16 required the LLM-supplied query passed to the AI Assistant's execute_sql_query tool to parse, via sqlparse, as

31 Jul 2026, 16:00 UTC View advisory →
CVE-2026-17350 Medium 5.3

The per-tool permission system (custom roles / role-based tool permissions, introduced in pgAdmin 4 9.3) did not enforce its permission check consistently.

31 Jul 2026, 16:00 UTC View advisory →
CVE-2026-17349 Critical 9.3

/misc/workspace/adhoc_connect_server, part of the Workspaces feature introduced in pgAdmin 4 9.0, when passed the id of an existing server, clones that ser

31 Jul 2026, 15:59 UTC View advisory →
CVE-2026-17348 Medium 6.9

In SERVER mode, pgAdmin 4 enforces authentication per route via the @pga_login_required decorator; the application's before_request hook only handles deskt

31 Jul 2026, 15:59 UTC View advisory →
CVE-2026-17347 High 7.7

The MASTER_PASSWORD_HOOK setting, introduced in pgAdmin 4 7.2, lets an administrator configure an external command that returns a per-user encryption key,

31 Jul 2026, 15:59 UTC View advisory →
CVE-2026-17346 High 8.7

The fix for CVE-2026-12044 in pgAdmin 4 9.16 hardened qtLiteral and switched sixteen COMMENT ON / pgstattuple / pgstatindex templates to it, but missed sev

31 Jul 2026, 15:59 UTC View advisory →
CVE-2026-17264 Medium 5.3

Opening a crafted DICOM file containing malicious JPEG-compressed pixel data triggers an attacker-controlled heap out-of-bounds write, which may allow an a

06 Aug 2026, 22:13 UTC View advisory →
CVE-2026-17192 Medium 6.3

A VCO feature does not sufficiently validate caller-supplied input, allowing requests to be made on behalf of authenticated tenant accounts to internal ser

27 Jul 2026, 16:36 UTC View advisory →
CVE-2026-17191 High 8.5

An input validation vulnerability exists in an API component of the orchestrator. An authenticated user can exploit this flaw to manipulate backend queries

27 Jul 2026, 16:41 UTC View advisory →
CVE-2026-17070 High 8.8

Missing Authorization vulnerability in HAVELSAN Inc. Liman MYS allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Liman MY

04 Aug 2026, 13:45 UTC View advisory →
CVE-2026-17032 Critical 9.8

Multiple Supsystic Pro plugins were distributed with malicious code through the vendor's compromised update server, allowing unauthenticated attackers to d

06 Aug 2026, 17:14 UTC View advisory →
CVE-2026-17002 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

02 Aug 2026 View advisory →
CVE-2026-16993 Unscored

The DHL Shipping Germany for WooCommerce WordPress plugin before 4.0.1 does not protect its shipping-label storage directory with server-independent access

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16981 Unscored

The DHL Shipping Germany for WooCommerce WordPress plugin before 4.0.1 does not perform any authorization check (no capability, nonce, login, or ownership

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16971 Medium 5.9

The IRIS web application in version 2.4.26 and possibly others does not protect its MFA validation against brute-force attacks.

30 Jul 2026, 09:43 UTC View advisory →
CVE-2026-16970 Medium 4.2

The IRIS web application in version 2.4.26 and possibly others contains a logout functionality which is ineffective. Stolen session cookies can therefore b

30 Jul 2026, 09:45 UTC View advisory →
CVE-2026-16969 High 7.6

The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the assets function.

30 Jul 2026, 09:40 UTC View advisory →
CVE-2026-16968 Unscored

The GeoDirectory WordPress plugin before 2.8.168 does not restrict a user-search handler to users allowed to list users, allowing any authenticated user wi

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16954 Unscored

The AI Engine WordPress plugin before 3.6.4 does not redact secret configuration values before exposing them in an admin page's inline script data, allowin

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16942 Unscored

The WP Custom HTML Page WordPress plugin through 0.6.2 does not sanitise HTML stored through one of its custom page handlers, nor restrict it to users allo

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16940 Unscored

The Custom Fields WordPress plugin before 1.5.1 does not validate a user-supplied file path before deletion, allowing unauthenticated users to delete arbit

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16881 High 8.7

A code injection vulnerability exists in the LINE Android app prior to version 26.7.2. The profile rendering component does not adequately validate or sand

04 Aug 2026, 05:05 UTC View advisory →
CVE-2026-16843 High 7.2

Some Hikvision Wireless Access Points are vulnerable to authenticated command execution due to insufficient input validation. Attackers with valid credenti

31 Jul 2026, 09:31 UTC View advisory →
CVE-2026-16812 Critical 10

VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access privileged internal functionality and impa

27 Jul 2026, 16:11 UTC View advisory →
CVE-2026-16811 Medium 4.9

The ShopLentor – All-in-One WooCommerce Growth & Store Enhancement Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the 'orderby'

28 Jul 2026, 05:39 UTC View advisory →
CVE-2026-16797 Medium 4.3

The ShopLentor – All-in-One WooCommerce Growth & Store Enhancement Plugin plugin for WordPress is vulnerable to Insecure Direct Object Reference in all ver

28 Jul 2026, 05:39 UTC View advisory →
CVE-2026-16793 High 8.7

An improper neutralization of special elements used in an operating system command vulnerability was reported in Lenovo XClarity Orchestrator (LXCO) 2.2.0

04 Aug 2026, 19:48 UTC View advisory →
CVE-2026-16792 High 7

An improper certificate validation vulnerability was reported in multiple Lenovo XClarity Orchestrator (LXCO) 2.2.0 microservices that could allow an adjac

04 Aug 2026, 19:48 UTC View advisory →
CVE-2026-16791 Low 1

A temporary file creation vulnerability in the Linux version of Lenovo XClarity Essentials OneCLI 5.5.0 and below could allow a local low-privileged attack

04 Aug 2026, 19:47 UTC View advisory →
CVE-2026-16746 Unscored

The MultiVendorX WordPress plugin before 5.0.11 does not verify that the requested store belongs to the current user in one of its REST API endpoints, allo

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16736 Unscored

The User Registration & Membership WordPress plugin before 5.2.6 does not enforce the site's registration-disabled setting when processing registration-for

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16734 Unscored

The Stripe Payment Forms by WP Full Pay WordPress plugin before 8.5.2 does not verify that the caller owns the Stripe payment intent referenced by two unau

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16731 High 8.3

OMICRON StationScout before version 3.05 contains a cryptographic timing side-channel vulnerability in the backend authentication mechanism that may allow

06 Aug 2026, 13:14 UTC View advisory →
CVE-2026-16685 Medium 6.4

The Download Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'icon' Shortcode Attribute in all versions up to, and including,

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-16684 Medium 6.4

The Easy Property Listings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'facebook' User Contact Method in all versions up to, and

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-16653 Medium 6.9

A security flaw has been discovered in boazsegev facil.io up to 0.7.58. This affects the function http_sendfile2 of the file lib/facil/http/http.c of the c

23 Jul 2026, 01:15 UTC View advisory →
CVE-2026-16636 High 7.2

The FluentSMTP – WP SMTP Plugin with Amazon SES, SendGrid, MailGun, Postmark, Google and Any SMTP Provider plugin for WordPress is vulnerable to Stored Cro

06 Aug 2026, 03:26 UTC View advisory →
CVE-2026-16635 High 8.8

The Pronamic Pay plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 10.1.0 This is due to the `maybe_update_u

01 Aug 2026, 08:32 UTC View advisory →
CVE-2026-16632 Medium 6.9

A flaw has been found in boazsegev facil.io up to 0.7.4. Affected is the function websocket_on_protocol_error in the library lib/facil/http/parsers/websock

22 Jul 2026, 23:45 UTC View advisory →
CVE-2026-16631 Medium 4.8

A vulnerability was detected in publint up to 0.1.4. This impacts the function child_process.exec of the file src/node/pack.js of the component package-man

22 Jul 2026, 23:30 UTC View advisory →
CVE-2026-16630 Medium 4.8

A security vulnerability has been detected in syncfusion ej2-javascript-ui-controls up to 33.2.3. This affects the function child_process.exec of the file

22 Jul 2026, 22:15 UTC View advisory →
CVE-2026-16629 Medium 4.8

A vulnerability was identified in danger danger-js up to 13.0.7. Impacted is the function danger.git.diffForFile of the file source/platforms/git/localGetF

22 Jul 2026, 21:15 UTC View advisory →
CVE-2026-16628 Medium 4.8

A vulnerability was detected in oclif up to 4.23.16. Affected by this vulnerability is the function child_process.exec of the component JIT Plugin Entry Ha

22 Jul 2026, 21:00 UTC View advisory →
CVE-2026-16624 Unscored

Cal.com OSS ships lacks authorization on webhook teamId creation, allowing any authenticated user to create a webhook on any team via unvalidated teamId in

22 Jul 2026, 18:31 UTC View advisory →
CVE-2026-16623 Unscored

The Create Block WordPress plugin before 2.10.0 does not correctly escape user-supplied text before writing it into a generated PHP pattern file, allowing

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16620 High 7.5

The WPC Name Your Price for WooCommerce WordPress plugin before 2.2.5 does not enforce its server-side price allowlist for products configured in "Select"

06 Aug 2026, 17:17 UTC View advisory →
CVE-2026-16619 High 7.5

The miniOrange 2FA WordPress plugin before 6.2.8 does not correctly limit the number of second-factor verification attempts, tracking them against a client

06 Aug 2026, 17:17 UTC View advisory →
CVE-2026-16618 Unscored

The Improve SEO WordPress plugin through 2.0.11 does not properly validate uploaded files, checking only the file content type while writing the file with

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16615 Medium 6.8

A flaw was found in librest. The PKCE implementation for OAuth authorization uses the GRand function from the GLib API, a cryptographically insecure pseudo

22 Jul 2026, 16:12 UTC View advisory →
CVE-2026-16614 Medium 4.9

The GSheetConnector – CF7 Google Sheets Connector with Real-Time Sync plugin for WordPress is vulnerable to generic SQL Injection via the 's' parameter in

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-16613 Unscored

The GDPR Cookie Compliance WordPress plugin before 5.1.0 expires the visitor's cookies from an action that is reachable without authentication and performs

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16607 High 8.5

A vulnerability in Fujitsu Software Linux openFT and Fujitsu Software Oracle Solaris openFT before version 12.1D00 allows for local privilege escalation to

22 Jul 2026, 15:07 UTC View advisory →
CVE-2026-16606 Critical 9.3

A vulnerability in Fujitsu Software Linux openFT and Fujitsu Software Oracle Solaris openFT before version 12.1D00 allows for unauthenticated remote code e

22 Jul 2026, 15:14 UTC View advisory →
CVE-2026-16605 Unscored

The MultiVendorX WordPress plugin before 5.0.11 does not verify that the store targeted through its REST API belongs to the requesting vendor, allowing an

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16604 Unscored

The Passster WordPress plugin before 4.3.6 outputs password-protected block content in the public page response before verifying the password, allowing una

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16603 Unscored

The Passster WordPress plugin before 4.3.6 does not enforce its category-based content protection on the WordPress REST API, allowing unauthenticated users

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16602 Unscored

The Passster WordPress plugin before 4.3.6 does not perform a post-status check before returning post content from an unauthenticated REST endpoint, allowi

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16587 Medium 4.3

The Advanced Form Integration — Connect Forms to 200+ Apps plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including,

28 Jul 2026, 05:39 UTC View advisory →
CVE-2026-16585 High 7.2

The Better Messages – Chat Rooms, Group Chat, Private Messages & AI Chat Bots plugin for WordPress is vulnerable to arbitrary file deletion due to insuffic

28 Jul 2026, 05:39 UTC View advisory →
CVE-2026-16583 Unscored

The Orbit Fox: Duplicate Page, Menu Icons, SVG Support, Cookie Notice, Custom Fonts & More WordPress plugin before 3.0.8 does not sanitize uploaded SVG fil

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16573 Unscored

The Bit Form WordPress plugin before 3.2.0 does not sanitize an uploaded signature image before storing it, allowing unauthenticated attackers to upload a

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16572 Unscored

The LogMyTrip WordPress plugin through 1.9 does not sanitize and escape a value taken from a cookie before using it in a SQL query, allowing unauthenticate

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16565 Unscored

The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.9 does not verify product ownership on its product-attribute

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16564 Unscored

The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.9 does not verify order ownership on a REST endpoint that pe

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16563 Unscored

The Academy LMS WordPress plugin before 3.8.3 does not verify course enrollment or lesson publication status when returning a single lesson through its RES

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16561 Unscored

The Sunshine Photo Cart WordPress plugin before 3.6.12 does not perform access control checks in one of its AJAX actions, allowing unauthenticated users to

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16560 Medium 5.3

A heap-buffer-overflow flaw was found in Directory Server (389-ds-base). When a DN contains a legacy-quoted value, the server won't close the heap allocati

22 Jul 2026, 12:51 UTC View advisory →
CVE-2026-16554 Medium 5.1

cJSON library is vulnerable to an integer overflow in the print_string_ptr() function in cJSON.c on 32-bit platforms. The escape_characters counter, a 32-b

27 Jul 2026, 08:40 UTC View advisory →
CVE-2026-16552 Medium 6.3

A flaw was found in systemd-tmpfiles. When processing a tmpfiles.d configuration entry that writes to a file, systemd-tmpfiles can follow a symbolic link p

22 Jul 2026, 15:55 UTC View advisory →
CVE-2026-16551 Medium 6.9

Denial-of-Service in Thinkst Applied Research OpenCanary (MongoDB module) allows Excessive Allocation. This issue affects OpenCanary 0.9.8 only.

22 Jul 2026, 11:22 UTC View advisory →
CVE-2026-16548 Unscored

The Chat Widget: Floating Customer Support Button for 30+ Channels, Supporting SMS, Calls, and Chat WordPress plugin before 1.8.2 does not validate the typ

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16547 Unscored

The REST API Log WordPress plugin before 1.7.1 does not bind the token protecting its log download feature to the log entry being requested, nor does it ch

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16546 Unscored

The Wired Impact Volunteer Management WordPress plugin before 2.8.2 does not have authorisation checks in one of its AJAX actions, and does not verify that

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16544 Medium 6.5

A flaw was found in AWX. The websocket event consumer performs RBAC authorization checks only for event groups that are mapped in the consumer_access() fun

22 Jul 2026, 11:15 UTC View advisory →
CVE-2026-16540 Unscored

The Simply Schedule Appointments WordPress plugin before 1.6.12.6 does not correctly restrict a bulk appointment operation to the requester's own records,

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16539 Unscored

The sm page duplicator WordPress plugin through 1.0.0 does not sanitise and escape a stored value before using it in a SQL statement when duplicating a pag

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16537 Unscored

The Slick Slider WordPress plugin before 0.5.3 does not sanitize and escape a shortcode attribute value before outputting it in an HTML attribute, allowing

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16536 Unscored

The Simple Google Calendar Outlook Events Widget WordPress plugin before 3.1.0 does not validate a user-supplied URL before performing a server-side reques

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16534 Unscored

The Import and export users and customers WordPress plugin before 2.4.2 does not enforce WordPress's role-assignment and per-user edit permissions during C

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16532 Unscored

The Link Library WordPress plugin before 7.9.3 does not properly sanitise and escape a user-supplied value before using it in a SQL query, allowing unauthe

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16504 Unscored

Deployment of the VPS.org one-click Zulip template deploys a hardcoded application signing key, a default database password ("zulip"), and DISABLE_HTTPS=Tr

31 Jul 2026, 15:19 UTC View advisory →
CVE-2026-16503 Unscored

Deployment of the VPS.org one-click Supabase template deploys a PostgreSQL instance that is published on all interfaces (0.0.0.0:5432) with a default datab

31 Jul 2026, 15:18 UTC View advisory →
CVE-2026-16481 High 8.4

A Server-Side Request Forgery (SSRF) and credential exfiltration vulnerability exists in the cloud-healthcare-fhir-fetch-page tool of googleapis/mcp-toolbo

27 Jul 2026, 19:13 UTC View advisory →
CVE-2026-16473 Medium 4.3

A flaw was found in the sbc library (BlueZ SBC codec). An off-by-one error in the SBC frame decoder allows a crafted audio payload to trigger a one-byte he

22 Jul 2026, 10:07 UTC View advisory →
CVE-2026-16443 High 7.4

A flaw was found in the SAML metadata import functionality of the keycloak-services component, which is the core engine for identity brokering in Red Hat B

05 Aug 2026, 13:44 UTC View advisory →
CVE-2026-16442 High 7.4

A flaw was found in the SAML broker component of Keycloak, which is used to manage identity federation and user authentication. The issue occurs because th

05 Aug 2026, 15:00 UTC View advisory →
CVE-2026-16337 Critical 9.4

Improper authorization in the ToolGroupResource and RoleAjax REST/DWR endpoints in dotCMS dotCMS 21.02 through 26.06.22-03 on all platforms allows a low-pr

20 Jul 2026, 19:15 UTC View advisory →
CVE-2026-16336 Medium 5.3

A vulnerability was found in trinodb trino 481. Affected is an unknown function of the file core/trino-main/src/main/java/io/trino/server/ExternalUriInfo.j

21 Jul 2026, 02:30 UTC View advisory →
CVE-2026-16334 Medium 5.3

A vulnerability was identified in itsourcecode Hospital Management System 1.0. This vulnerability affects unknown code of the file /prescriptionorder.php.

21 Jul 2026, 02:00 UTC View advisory →
CVE-2026-16332 Medium 6.9

A vulnerability was detected in D-Link DNS-320 1.0.2. This impacts an unknown function of the file /mydlink/multi_uploadify.php. Performing a manipulation

21 Jul 2026, 01:30 UTC View advisory →
CVE-2026-16331 Medium 6.9

A security vulnerability has been detected in D-Link DNS-320 1.0.2. This affects an unknown function of the file /web/function/save_ajax.php. Such manipula

21 Jul 2026, 00:45 UTC View advisory →
CVE-2026-16330 Medium 6.9

A weakness has been identified in D-Link DNS-320 1.0.2. The impacted element is an unknown function of the file /web/jquery/uploader/uploadify.php. This ma

21 Jul 2026, 00:30 UTC View advisory →
CVE-2026-16329 Medium 6.9

A vulnerability was identified in D-Link DNS-320 1.0.2. Impacted is an unknown function of the file /photo_center/php/uploadify.php. The manipulation of th

21 Jul 2026, 00:15 UTC View advisory →
CVE-2026-16327 Medium 6.9

A vulnerability was determined in D-Link DNS-320 1.0.2. This issue affects some unknown processing of the file /web/web_file/upload.php. Executing a manipu

20 Jul 2026, 23:45 UTC View advisory →
CVE-2026-16324 Medium 6.9

A vulnerability was identified in Metasoft 美特软件 MetaCRM up to 6.4.0 Beta06. The impacted element is an unknown function of the file /business/qnaire/upload

20 Jul 2026, 21:45 UTC View advisory →
CVE-2026-16316 Low 1.3

OMICRON StationGuard 4.00 contains an improper input validation vulnerability in its IEC 61850 Sampled Values (SV) frame processing. A specially crafted SV

06 Aug 2026, 13:14 UTC View advisory →
CVE-2026-16315 High 8.1

OMICRON StationGuard before version 4.10 contains a cryptographic timing side-channel vulnerability in the backend authentication mechanism that may allow

06 Aug 2026, 13:14 UTC View advisory →
CVE-2026-16312 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

21 Jul 2026 View advisory →
CVE-2026-16308 High 7.5

IBM Enterprise Build of Quarkus 3.27.1 through 3.27.4.SP2, and 3.33.1 through 3.33.2.SP2 Quarkus REST could allow a remote attacker to cause a denial of se

30 Jul 2026, 14:04 UTC View advisory →
CVE-2026-16300 Unscored

The ChamaWP WordPress plugin before 1.0.13 does not properly validate a password reset request, allowing unauthenticated attackers to reset the password of

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16297 Unscored

The Clearfy Cache WordPress plugin before 2.4.3 does not restrict the classes allowed when unserializing settings-import data, allowing users with administ

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16296 Unscored

The Clearfy Cache WordPress plugin before 2.4.3 does not validate the redirect target in its Cyrlitera old-URL redirect handler, passing a decoded request

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16295 Unscored

The Clearfy Cache WordPress plugin before 2.4.3 does not perform a capability check in one of its admin-page dispatch paths, allowing any authenticated use

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16293 Unscored

The PowerPress Podcasting plugin by Blubrry WordPress plugin before 11.16.11 does not sanitise and escape some of its Podcast Episode settings, which could

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16292 Unscored

The Frontend File Manager Plugin WordPress plugin through 23.6 does not perform nonce validation on one of its file-metadata update actions, allowing an at

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16291 Unscored

The ProfileGrid WordPress plugin before 5.9.9.8 does not verify that a notification belongs to the requesting user before deleting it, allowing any authent

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16290 Unscored

The ProfileGrid WordPress plugin before 6.0.0.0 does not perform authorization checks before returning a group's member list, and registers the handler for

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16289 Unscored

The ProfileGrid WordPress plugin before 6.0.0.0 does not perform authorization checks when listing a group's pending membership requests, allowing any auth

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16285 Unscored

The Product Attachment for WooCommerce WordPress plugin before 2.3.3 does not perform any authorization check before streaming media library files, allowin

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16277 Medium 6.5

A stack-based buffer overflow was found in rpcbind's rpcinfo utility. When querying a remote rpcbind service with `rpcinfo -l`, address information returne

20 Jul 2026, 14:09 UTC View advisory →
CVE-2026-16276 Unscored

The Classified Listing WordPress plugin before 5.4.4 does not perform a capability check on an AJAX action that returns aggregated store revenue totals, al

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16274 Unscored

The Classified Listing WordPress plugin before 5.4.4 does not perform a capability or ownership check on an AJAX action that returns a post's content, allo

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16273 Unscored

The Narrative Publisher WordPress plugin through 1.0.7 does not restrict write access to a REST-exposed post meta field or escape it when rendering, allowi

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16270 Medium 6.9

Open Mercato does not validate regex rules. An attacker with privileges to create the regex rule can add an unsafe regex to a field. When someone provide t

22 Jul 2026, 12:37 UTC View advisory →
CVE-2026-16268 Unscored

The Newsletters WordPress plugin before 4.16 does not authenticate or validate a bounce-processing request before fetching a user-supplied URL on the serve

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16266 Medium 6.3

Versions of the package mongo-object before 3.0.3 are vulnerable to Prototype Pollution via the expandKey() function in util.js. An attacker can modify the

21 Jul 2026, 05:00 UTC View advisory →
CVE-2026-16265 Unscored

The WP Maps WordPress plugin before 4.9.7 does not perform a capability check in one of its AJAX actions and does not restrict the operation it dispatches,

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16263 Unscored

The WP Maps WordPress plugin before 4.9.7 does not perform a capability check in one of its AJAX actions and does not properly validate a user-controlled p

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16262 Unscored

The Estatik Real Estate Plugin WordPress plugin before 4.3.3 does not bind its OAuth social login flow to the initiating user session, allowing an unauthen

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16261 Unscored

The login-social WordPress plugin through 1.0.4 does not validate password-reset requests against a reset key or the requester's identity, and it issues au

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16258 Unscored

The Ajax Search Lite WordPress plugin before 4.14.5 does not prevent the deserialization of untrusted input, allowing unauthenticated attackers to perform

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16256 Unscored

The POUCO Import Users WordPress plugin through 1.0.0 does not perform any capability or nonce checks on AJAX actions available to unauthenticated users th

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16254 Medium 4.3

A flaw was found in claircore's apk package scanner. Malformed package-database data in a container layer can cause an out-of-bounds access that panics the

20 Jul 2026, 10:42 UTC View advisory →
CVE-2026-16252 Medium 6.9

A security flaw has been discovered in Beijing Shenzhou Shihan Technology Multimedia Integrated Business Display System 8.2.2. Impacted is an unknown funct

20 Jul 2026, 14:00 UTC View advisory →
CVE-2026-16250 Unscored

The Personal QR Message WordPress plugin through 1.0 does not restrict the file types that can be uploaded through an unauthenticated handler, allowing una

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16248 High 8.7

A vulnerability was found in Tenda AC10 16.03.10.09_multi_TDE01. This issue affects the function fromAdvSetLanip of the file /goform/AdvSetLanip of the com

20 Jul 2026, 12:45 UTC View advisory →
CVE-2026-16247 High 7.3

In _connect.BRAIN versions prior to 5.06, the application LogPathConfig.exe is executed during setup. During this process, existing permissions on %Program

20 Jul 2026, 11:54 UTC View advisory →
CVE-2026-16246 High 7.3

In BRAIN2 versions prior to 3.09, the application LogPathConfig.exe is executed during setup. As a result, the Windows group Everyone is granted full contr

20 Jul 2026, 11:51 UTC View advisory →
CVE-2026-16244 Medium 5.3

A security vulnerability has been detected in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of th

20 Jul 2026, 12:15 UTC View advisory →
CVE-2026-16242 Critical 9.4

A flaw was found in the Konnectivity proxy-server configuration for hosted control planes. The agent-facing listener was started without --cluster-ca-cert

20 Jul 2026, 07:33 UTC View advisory →
CVE-2026-16236 High 8.8

The Realtyna Organic IDX plugin for WordPress is vulnerable to Arbitrary File Upload in versions up to, and including, 5.3.0. This is due to missing file e

31 Jul 2026, 05:35 UTC View advisory →
CVE-2026-16235 Critical 9.8

Crypt::Password versions through 0.28 for Perl generate insecure random values for salts. These versions use the built-in rand function, which is predictab

20 Jul 2026, 07:02 UTC View advisory →
CVE-2026-16232 Critical 9.1

An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application log

22 Jul 2026, 13:53 UTC View advisory →
CVE-2026-16220 Medium 5.3

A vulnerability has been found in code-projects Online Examination System 1.0. This vulnerability affects unknown code of the file /account.php?q=quiz. Suc

19 Jul 2026, 06:15 UTC View advisory →
CVE-2026-16219 Medium 5.3

A flaw has been found in Croogo CMS up to 4.0.7. This affects the function FileManager::isEditable of the file FileManager/src/Utility/FileManager.php of t

19 Jul 2026, 06:00 UTC View advisory →
CVE-2026-16218 Low 2.1

A vulnerability was detected in hunvreus devpush up to 0.4.6. Affected by this issue is the function reset_storage of the file app/workers/tasks/storage.py

19 Jul 2026, 05:45 UTC View advisory →
CVE-2026-16217 Medium 5.3

A security vulnerability has been detected in guohongze adminset up to 0.61. Affected by this vulnerability is an unknown functionality of the file deliver

19 Jul 2026, 05:30 UTC View advisory →
CVE-2026-16216 Medium 5.3

A weakness has been identified in geex-arts django-jet up to 1.0.8. Affected is an unknown function of the component OAuth Handler. Executing a manipulatio

19 Jul 2026, 05:00 UTC View advisory →
CVE-2026-16215 Medium 6.9

A security flaw has been discovered in geex-arts django-jet up to 1.0.8. This impacts an unknown function of the component OAuth Credential Revoke Handler.

19 Jul 2026, 04:30 UTC View advisory →
CVE-2026-16214 Medium 5.3

A vulnerability was identified in geex-arts django-jet up to 1.0.8. This affects an unknown function of the file jet/dashboard/views.py of the component Da

19 Jul 2026, 04:15 UTC View advisory →
CVE-2026-16213 Medium 4.8

A security flaw has been discovered in Fantomas42 django-blog-zinnia up to 0.20. Affected by this vulnerability is an unknown functionality of the file zin

19 Jul 2026, 04:00 UTC View advisory →
CVE-2026-16212 Low 2.3

A vulnerability was identified in awesto django-shop up to 1.2.4. Affected is an unknown function of the file shop/models/inventory.py of the component Pur

19 Jul 2026, 03:45 UTC View advisory →
CVE-2026-16211 Low 2.1

A vulnerability was determined in allegro up to bcf65b994ef29fb3fc2e10b660e6288723d5209e. This impacts the function AssetLastHostname.increment_hostname of

19 Jul 2026, 03:30 UTC View advisory →
CVE-2026-16210 Medium 6.9

A vulnerability was found in newpanjing simpleui 2026.01.13. This affects the function self.get_action of the file simpleui/admin.py of the component AjaxA

19 Jul 2026, 03:15 UTC View advisory →
CVE-2026-16209 Medium 6.9

A vulnerability has been found in Gerapy up to 0.9.13. The impacted element is an unknown function of the file gerapy/server/core/views.py of the component

19 Jul 2026, 03:00 UTC View advisory →
CVE-2026-16208 Low 2.3

A flaw has been found in django-tastypie up to 0.15.1. The affected element is the function CacheThrottle/CacheDBThrottle of the file tastypie/throttle.py.

19 Jul 2026, 02:45 UTC View advisory →
CVE-2026-16207 Medium 6.3

A vulnerability was detected in django-tastypie up to 0.15.1. Impacted is the function ApiKeyAuthentication of the file tastypie/authentication.py. The man

19 Jul 2026, 02:30 UTC View advisory →
CVE-2026-16206 Medium 5.3

A security vulnerability has been detected in django-oauth django-oauth-toolkit 3.3.0. This issue affects the function _load_id_token of the file oauth2_pr

19 Jul 2026, 02:15 UTC View advisory →
CVE-2026-16205 Medium 4.8

A weakness has been identified in Pluck CMS up to 4.7.21. This vulnerability affects the function htmlspecialchars_decode of the file data/modules/albums/a

19 Jul 2026, 02:00 UTC View advisory →
CVE-2026-16204 Medium 5.3

A security flaw has been discovered in zevorn rt-claw up to 0.2.0. This affects the function tool_run_script_execute of the file claw/services/tools/script

19 Jul 2026, 01:45 UTC View advisory →
CVE-2026-16203 Medium 5.1

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /f

19 Jul 2026, 01:30 UTC View advisory →
CVE-2026-16202 Medium 5.1

A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the f

19 Jul 2026, 01:15 UTC View advisory →
CVE-2026-16201 Medium 6.9

A vulnerability was found in zevorn rt-claw up to 0.2.0. Affected is the function claw_net_get/claw_net_post of the file claw/services/tools/net.c of the c

19 Jul 2026, 00:45 UTC View advisory →
CVE-2026-16200 Medium 6.9

A vulnerability has been found in zevorn rt-claw up to 0.2.0. This impacts the function claw_tool_invoke of the file claw/services/swarm/swarm.c of the com

19 Jul 2026, 00:15 UTC View advisory →
CVE-2026-16199 Medium 5.3

A flaw has been found in nextlevelbuilder GoClaw up to 3.13.3-beta.3. This affects the function ExecTool.Execute of the file goclaw/internal/tools/credenti

19 Jul 2026, 00:00 UTC View advisory →
CVE-2026-16198 Medium 6.3

A vulnerability was detected in Sipeed PicoClaw up to 0.2.9. The impacted element is an unknown function of the file web/backend/middleware/access_control.

18 Jul 2026, 23:30 UTC View advisory →
CVE-2026-16197 Medium 5.3

A security vulnerability has been detected in Sipeed PicoClaw up to 0.2.9. The affected element is the function handleMessageReceive of the file pkg/channe

18 Jul 2026, 23:00 UTC View advisory →
CVE-2026-16196 Medium 5.3

A weakness has been identified in Sipeed PicoClaw up to 0.2.9. Impacted is the function isPrivateOrRestrictedIP of the file pkg/tools/integration/web.go of

18 Jul 2026, 22:45 UTC View advisory →
CVE-2026-16195 Medium 5.3

A security flaw has been discovered in Sipeed PicoClaw up to 0.2.9. This issue affects the function dispatchIncoming of the file pkg/channels/wecom/wecom.g

18 Jul 2026, 22:30 UTC View advisory →
CVE-2026-16194 Medium 5.3

A vulnerability was determined in zhayujie CowAgent up to 2.1.1. This affects the function WebFetch.execute of the file agent/tools/web_fetch/web_fetch.py.

18 Jul 2026, 21:15 UTC View advisory →
CVE-2026-16158 High 8.7

Impact: @fastify/reply-from versions from 8.3.1 up to but not including 12.6.4 build the internal URL cache key by concatenating the destination and source

18 Jul 2026, 12:28 UTC View advisory →
CVE-2026-16157 Unscored

Duplicati v2.3.0.1 backup software gives Authenticated Users MODIFY permissions that propagate to all subdirectories. Installing the software outside of th

22 Jul 2026, 17:29 UTC View advisory →
CVE-2026-16156 Medium 5.1

A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /forexam.php. The man

18 Jul 2026, 21:00 UTC View advisory →
CVE-2026-16155 Medium 5.1

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /s

18 Jul 2026, 20:45 UTC View advisory →
CVE-2026-16154 Medium 6.9

A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerability is an unknown functionality of

18 Jul 2026, 20:15 UTC View advisory →
CVE-2026-16152 Medium 6.9

A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file /edit_rooma.php. Performing

18 Jul 2026, 20:00 UTC View advisory →
CVE-2026-16151 Medium 5.3

A vulnerability has been found in CartoDB carto-api-client 0.5.29. This impacts the function addFilter of the file src/filters.ts. Such manipulation of the

18 Jul 2026, 19:45 UTC View advisory →
CVE-2026-16150 Medium 5.3

A vulnerability was found in RobinHerbots Inputmask up to 5.0.9. Affected by this issue is the function extendDefaults/extendDefinitions/extendAliases in t

18 Jul 2026, 19:15 UTC View advisory →
CVE-2026-16144 High 8.1

The Kali Forms — Contact Form & Drag-and-Drop Builder plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2.4

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-16143 High 7.2

The VikRentItems – Flexible Rental Management System plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the customer email field of the

05 Aug 2026, 04:25 UTC View advisory →
CVE-2026-16133 Low 2.3

A flaw has been found in LiuMengxuan04 MiniCode 0.1.0. Affected by this vulnerability is the function child_process.spawn of the file mcp.ts. Executing a m

18 Jul 2026, 19:00 UTC View advisory →
CVE-2026-16131 Medium 5.3

A weakness has been identified in itsourcecode Hospital Management System 1.0. This affects an unknown function of the file /prescriptionrecord.php. This m

18 Jul 2026, 18:15 UTC View advisory →
CVE-2026-16130 Medium 4.8

A vulnerability was identified in nearai ironclaw up to 0.29.1. The affected element is the function validate_path of the file src/tools/builtin/path_utils

18 Jul 2026, 17:15 UTC View advisory →
CVE-2026-16129 Medium 4.8

A vulnerability has been found in princezuda SafestClaw up to 4.2.4. This vulnerability affects the function ShellAction._validate_command of the file src/

18 Jul 2026, 17:00 UTC View advisory →
CVE-2026-16128 Medium 6.9

A security flaw has been discovered in zevorn rt-claw up to 0.2.0. This impacts the function receiver_thread of the file claw/services/swarm/swarm.c of the

18 Jul 2026, 16:30 UTC View advisory →
CVE-2026-16127 Medium 6.9

A vulnerability was identified in zevorn rt-claw up to 0.2.0. This affects the function claw_net_get/claw_net_post of the file claw/tools/tool_net.c of the

18 Jul 2026, 16:00 UTC View advisory →
CVE-2026-16126 Medium 6.9

A vulnerability was determined in zevorn rt-claw up to 0.2.0. The impacted element is the function handle_rpc_request of the file claw/services/swarm/swarm

18 Jul 2026, 15:45 UTC View advisory →
CVE-2026-16125 Medium 6.9

A vulnerability was found in zevorn rt-claw up to 0.2.0. The affected element is the function claw_net_get/claw_net_post of the file claw/services/tools/ne

18 Jul 2026, 15:15 UTC View advisory →
CVE-2026-16124 Medium 5.3

A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.15.0-beta.32. This affects the function CheckSSRF/isPrivateIP of the file int

18 Jul 2026, 15:00 UTC View advisory →
CVE-2026-16123 Medium 5.3

A weakness has been identified in nextlevelbuilder GoClaw up to 3.13.2. Affected by this issue is the function ToolsInvokeHandler.ServeHTTP of the file int

18 Jul 2026, 14:45 UTC View advisory →
CVE-2026-16122 Medium 4.8

A security flaw has been discovered in nextlevelbuilder GoClaw up to 3.13.2. Affected by this vulnerability is the function extractBin/RequestApproval/matc

18 Jul 2026, 14:30 UTC View advisory →
CVE-2026-16121 Medium 5.3

A vulnerability was identified in nextlevelbuilder GoClaw up to 3.13.2. Affected is the function isSafeBin of the file internal/tools/exec_approval.go. The

18 Jul 2026, 14:15 UTC View advisory →
CVE-2026-16120 Medium 5.3

A vulnerability was determined in nextlevelbuilder GoClaw up to 3.13.3-beta.3. This impacts the function matchesAllowlist/extractBin of the file internal/t

18 Jul 2026, 13:30 UTC View advisory →
CVE-2026-16119 Medium 5.3

A vulnerability was found in nextlevelbuilder GoClaw up to 3.13.2. This affects the function RequestApproval of the file internal/tools/exec_approval.go of

18 Jul 2026, 13:00 UTC View advisory →
CVE-2026-16118 High 7.1

A flaw was found in xdgmime. A heap-based buffer overflow can be triggered in _xdg_mime_magic_parse_magic_line() in the xdgmimemagic.c file on little-endia

17 Jul 2026, 19:44 UTC View advisory →
CVE-2026-16117 Critical 10

Impact: @fastify/http-proxy versions up to and including 11.5.0 fail to rewrite the request prefix when the prefix segment is URL-encoded. Fastify's router

18 Jul 2026, 13:08 UTC View advisory →
CVE-2026-16108 Medium 4.3

A flaw was found in the default-groups REST endpoint and realm representation of Keycloak. This component is responsible for managing groups that are autom

17 Jul 2026, 16:43 UTC View advisory →
CVE-2026-16106 Medium 4.9

A flaw was found in the admin REST API of Keycloak, a solution for identity and access management. The issue occurs when a delegated administrator attempts

17 Jul 2026, 16:43 UTC View advisory →
CVE-2026-16104 Medium 4.3

A flaw was found in the authentication configuration endpoint of the keycloak-services component, which is the core engine for Red Hat Build of Keycloak id

17 Jul 2026, 16:43 UTC View advisory →
CVE-2026-16103 Medium 4.3

A flaw was found in the keycloak-services component of Keycloak. This issue is an incomplete fix for CVE-2026-9798, where brute-force protection checks wer

17 Jul 2026, 16:43 UTC View advisory →
CVE-2026-16102 High 8.1

A flaw was found in the Dynamic Client Registration (DCR) component of Keycloak, an identity and access management solution. The default DCR policy fails t

05 Aug 2026, 13:50 UTC View advisory →
CVE-2026-16100 Medium 6.5

A flaw was found in the user-event metrics recording of Keycloak. When metrics are enabled, the system records raw error messages from failed account opera

05 Aug 2026, 13:50 UTC View advisory →
CVE-2026-16097 High 8.7

A vulnerability was found in Shibby Tomato 1.28. This vulnerability affects the function sub_42537C of the component Scheduler Name Handler. The manipulati

18 Jul 2026, 12:00 UTC View advisory →
CVE-2026-16096 High 8.7

A vulnerability has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. This affects the function sub_40BB50 of the file /proc/webmon_recent_domains.

18 Jul 2026, 11:15 UTC View advisory →
CVE-2026-16095 High 8.7

A flaw has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. Affected by this issue is the function setup_conntrack of the file /sbin/rc. Executing

18 Jul 2026, 10:15 UTC View advisory →
CVE-2026-16093 Medium 5.4

Keycloak provides a mechanism called Client Policies to enforce security requirements on clients, such as requiring them to use signed JWTs for authenticat

17 Jul 2026, 16:42 UTC View advisory →
CVE-2026-16091 Medium 6.4

The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scr

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-16090 Medium 6.4

The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scr

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-16089 Medium 5.4

A flaw was found in the keycloak-services component of Red Hat Build of Keycloak. The issue occurs because OAuth 2.0 authorization codes are not properly b

17 Jul 2026, 14:15 UTC View advisory →
CVE-2026-16088 Medium 5.1

A vulnerability was detected in halo-dev halo up to 2.24.2. Affected by this vulnerability is the function Download of the file MigrationEndpoint.java of t

18 Jul 2026, 09:45 UTC View advisory →
CVE-2026-16087 Medium 6.5

The Icegram Engage – Popups, Optins, CTAs & Lead Generation plugin for WordPress is vulnerable to second-order SQL Injection via 'messages[][id]' Parameter

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-16085 Medium 4.8

A security vulnerability has been detected in Sipeed PicoClaw up to 0.2.9. Affected is the function NewContextBuilder of the file pkg/agent/context.go. Suc

18 Jul 2026, 09:15 UTC View advisory →
CVE-2026-16084 Medium 6.9

A weakness has been identified in Sipeed PicoClaw up to 0.2.9. This impacts the function web_fetch of the file pkg/tools/integration/web.go. This manipulat

18 Jul 2026, 09:00 UTC View advisory →
CVE-2026-16083 Medium 6.9

A security flaw has been discovered in Sipeed PicoClaw up to 0.2.9. This affects the function webhook.ParseRequest of the file pkg/channels/line/line.go of

18 Jul 2026, 08:30 UTC View advisory →
CVE-2026-16082 Medium 4.8

A vulnerability was identified in Sipeed PicoClaw up to 0.2.9. The impacted element is the function ExecTool.executeRun of the file pkg/agent/pipeline_exec

18 Jul 2026, 08:15 UTC View advisory →
CVE-2026-16081 Medium 5.3

A vulnerability was determined in Sipeed PicoClaw up to 0.2.9. The affected element is an unknown function of the file web/backend/api/auth.go. Executing a

18 Jul 2026, 07:45 UTC View advisory →
CVE-2026-16076 Medium 5.3

A vulnerability has been found in AstrBotDevs AstrBot up to 4.25.5. This issue affects the function OpenApiRoute.chat_send of the file astrbot/dashboard/ro

18 Jul 2026, 05:30 UTC View advisory →
CVE-2026-16075 Medium 5.3

A flaw has been found in AstrBotDevs AstrBot up to 4.25.5. This vulnerability affects the function OpenApiRoute.get_chat_sessions of the file astrbot/dashb

18 Jul 2026, 04:00 UTC View advisory →
CVE-2026-16074 Medium 5.3

A vulnerability was detected in AstrBotDevs AstrBot up to 4.25.2. This affects the function update_plugin/update_all_plugins of the file astrbot/dashboard/

17 Jul 2026, 20:15 UTC View advisory →
CVE-2026-16073 Medium 5.1

A security vulnerability has been detected in AstrBotDevs AstrBot up to 4.25.2. Affected by this issue is the function Star.text_to_image/NetworkRenderStra

17 Jul 2026, 18:15 UTC View advisory →
CVE-2026-16072 Medium 4.9

A flaw was found in the organization management component of Keycloak. A delegated administrator with permission to manage organizations can create an invi

17 Jul 2026, 13:40 UTC View advisory →
CVE-2026-16071 Medium 5.4

A flaw was found in the LDAP storage provider of Keycloak, which is used to federate user identities from external directories. The issue occurs when a del

05 Aug 2026, 13:50 UTC View advisory →
CVE-2026-16070 Unscored

The Brizy WordPress plugin before 2.8.19 does not properly verify authorization on the object being modified before updating a template's type meta, valida

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16069 Unscored

The Brizy WordPress plugin before 2.8.19 does not sanitize or escape featured-image focal-point coordinates submitted through one of its AJAX actions befor

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16068 Unscored

The Brizy WordPress plugin before 2.8.19 does not properly restrict who can modify its site-global design data and does not sanitise part of that data befo

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16067 Medium 5.3

The Event Booking Manager for WooCommerce (Pro) WordPress plugin before 5.0.3 does not validate the ticket price on the server during its native (non-WooCo

06 Aug 2026, 17:14 UTC View advisory →
CVE-2026-16065 Unscored

The Welcart e-Commerce WordPress plugin before 2.11.32 does not properly sanitise a value taken from an imported CSV file before using it in a SQL statemen

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16064 Unscored

The Event Booking Manager for WooCommerce WordPress plugin before 5.3.7 does not properly verify authorization on the object being modified when quick-edit

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16063 Unscored

The Event Booking Manager for WooCommerce WordPress plugin before 5.3.7 does not sanitise or escape event timeline content submitted by users with post-edi

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16062 Unscored

The Event Booking Manager for WooCommerce WordPress plugin before 5.3.7 does not prevent the deserialization of user-controlled input in some of its event

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16060 Unscored

The Insert or Embed Articulate Content into WordPress plugin through 4.3000000027 does not correctly validate the contents of an uploaded archive, relying

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16057 Unscored

The Contest Gallery WordPress plugin before 30.0.7 does not perform per-object capability or nonce checks in one of its post-deletion handlers, gating it o

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16056 Unscored

The Contest Gallery WordPress plugin before 30.0.7 does not perform any capability or nonce check in one of its handlers, allowing any authenticated user d

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16055 Unscored

The Contest Gallery WordPress plugin before 30.0.7 does not route its front-end login through the standard WordPress authentication flow, issuing an authen

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16054 Unscored

The Drag and Drop Multiple File Upload for WooCommerce WordPress plugin before 1.1.8 does not prevent unauthenticated users from obtaining a valid nonce th

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16042 Unscored

The LWS Optimize WordPress plugin before 3.4 does not perform a capability check on its cache-clearing actions, allowing any authenticated user, including

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16041 Unscored

The MStore API WordPress plugin before 4.21.0 does not perform authorization or purchase-ownership checks on its REST product-review creation route, allowi

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16039 Unscored

The MStore API WordPress plugin before 4.21.0 does not restrict its vendor-orders endpoint to the caller's own orders, allowing any authenticated user, inc

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16038 Unscored

The MStore API WordPress plugin before 4.21.0 does not verify the payment with the payment gateway before marking an order as paid on several of its paymen

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16036 Unscored

The miniOrange 2FA WordPress plugin before 6.2.7 does not bind the second factor being configured during the pre-login two-factor challenge to the target a

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16035 Unscored

The miniOrange 2FA WordPress plugin before 6.2.7 does not restrict who can trigger its second-factor configuration OTP send, nor bind the OTP recipient to

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16030 Unscored

The MStore API WordPress plugin before 4.21.0 does not correctly verify the cryptographic signature of the token used to authenticate its phone-based login

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-16022 High 7.8

@oblique/cli 15.4.0 contains an OS command injection vulnerability in the project creation functionality. The CLI constructs shell commands through string

05 Aug 2026, 12:06 UTC View advisory →
CVE-2026-16017 Medium 5.3

A security flaw has been discovered in mosaxiv clawlet up to 0.2.10. Impacted is the function list/remove of the file tools/tool_cron.go of the component c

17 Jul 2026, 14:15 UTC View advisory →
CVE-2026-16016 Medium 6.9

A vulnerability was identified in poco-ai poco-claw up to 0.5.4. This issue affects the function run_task of the file executor/app/api/v1/task.py. The mani

17 Jul 2026, 13:30 UTC View advisory →
CVE-2026-16015 Medium 5.3

A vulnerability was determined in poco-ai poco-claw up to 0.5.4. This vulnerability affects the function create_task of the file executor_manager/app/api/v

17 Jul 2026, 13:15 UTC View advisory →
CVE-2026-16014 Medium 6.9

A vulnerability was found in code-projects Hospital Bed Management System 1.0. This affects an unknown part of the component Login Form. Performing a manip

17 Jul 2026, 12:45 UTC View advisory →
CVE-2026-16013 Medium 6.9

A vulnerability has been found in liftoff-sr CIPster up to 632336d414ef708a542377c1aa8d6fdb7c70a760. Affected by this issue is the function CipAppPath::des

17 Jul 2026, 11:45 UTC View advisory →
CVE-2026-16009 Medium 5.3

A vulnerability was detected in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /prescriptionorderdetail.php. The

17 Jul 2026, 11:15 UTC View advisory →
CVE-2026-16008 Medium 5.3

A security vulnerability has been detected in sagold json-schema-library 11.5.0/11.5.1. This impacts the function parsePropertyDependencies of the file src

17 Jul 2026, 10:30 UTC View advisory →
CVE-2026-15997 Low 1.7

Out-of-bounds write vulnerability in Legion of the Bouncy Castle Inc. BC-LTS bcprov-lts8on on ARM allows Overflow Buffers. This vulnerability is associated

16 Jul 2026, 22:17 UTC View advisory →
CVE-2026-15996 Medium 6.6

A denial of service vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to cause excessive CPU consumption an

05 Aug 2026, 20:12 UTC View advisory →
CVE-2026-15995 Medium 5.4

IBM Cognos Analytics 12.1.3 GA Version with build number through 12.1.3-2606251736 could allow an attacker to obtain incorrect report summary results or ca

17 Jul 2026, 19:34 UTC View advisory →
CVE-2026-15991 High 8.8

The File Manager plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the connector function in all ve

06 Aug 2026, 03:26 UTC View advisory →
CVE-2026-15982 Critical 9.8

The Aimogen Pro - All-in-One AI Content Writer, Editor, ChatBot & Automation Toolkit plugin for WordPress is vulnerable to Privilege Escalation in all vers

17 Jul 2026, 05:35 UTC View advisory →
CVE-2026-15979 High 8.1

The Content Egg – Affiliate Product Importer & Price Comparison plugin for WordPress is vulnerable to Arbitrary File Deletion via Path Traversal in version

05 Aug 2026, 13:26 UTC View advisory →
CVE-2026-15978 Unscored

SGLang contains a model weight exfiltration vulnerability when no API keys are configured, as SGLang will expose two endpoints that allow a remote attacker

30 Jul 2026, 18:08 UTC View advisory →
CVE-2026-15977 Unscored

SGLang contains a credential leakage vulnerability in the /server_info endpoint, which will return API keys and SSL keyfile information when only the --adm

30 Jul 2026, 18:07 UTC View advisory →
CVE-2026-15976 Unscored

SGLang contains a RCE vulnerability when attempting to load model weights from a HuggingFace repository, specifically within the /update_weights_from_disk,

30 Jul 2026, 18:07 UTC View advisory →
CVE-2026-15974 Unscored

SGLang contains an SSRF and local file read in the multimodal generation endpoint /v1/chat/completions due to unsanitized image_url, allowing access to int

30 Jul 2026, 18:07 UTC View advisory →
CVE-2026-15971 Unscored

SGLang contains an RCE vulnerability when the optional dumper subsystem is enabled, allowing for a sandbox escape when DUMPER_SERVER_PORT is set, enabling

30 Jul 2026, 18:07 UTC View advisory →
CVE-2026-15969 Unscored

SGLang contains an unauthenticated RCE in /load_lora_adapter_from_tensors via bypass of SafeUnpickler’s incomplete denylist, allowing arbitrary command exe

30 Jul 2026, 18:09 UTC View advisory →
CVE-2026-15964 Critical 9.8

The Single Sign On For TNG plugin for WordPress is vulnerable to Authentication Bypass via unauthenticated password reset in all versions up to, and includ

01 Aug 2026, 08:32 UTC View advisory →
CVE-2026-15958 Unscored

The Easy Integration for Dropbox WordPress plugin before 2.2.0 does not perform authorization checks on several of its file-management AJAX actions that it

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15951 Medium 4.9

The Icegram Mailer plugin for WordPress is vulnerable to SQL Injection via the 'fields' parameter in versions up to, and including, 1.0.12. This is due to

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-15950 Medium 6.4

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to Stored Cross-Site

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-15945 Medium 4.3

A flaw was found in the group search functionality of the Keycloak server's administrative API. When Fine-Grained Admin Permissions (FGAP) v2 is enabled, a

16 Jul 2026, 17:36 UTC View advisory →
CVE-2026-15943 Medium 5.5

A flaw was found in the Keycloak keycloak-services component, which handles the management of identity providers. The issue occurs when a delegated adminis

17 Jul 2026, 11:49 UTC View advisory →
CVE-2026-15941 Medium 6.5

The plugin provides an Admin Search page that allows users with the `edit_posts` capability to run Relevanssi searches from the WordPress dashboard. The AJ

05 Aug 2026, 05:27 UTC View advisory →
CVE-2026-15939 Unscored

The Simple Restrict WordPress plugin before 1.2.9 does not enforce its content-restriction permission check on the REST API the way it does on the front en

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15932 Unscored

The Support Genix WordPress plugin before 1.4.48 does not prevent directory traversal in its ticket-attachment download route, allowing unauthenticated att

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15931 Unscored

The Simple Membership WordPress plugin before 4.7.8 does not sanitise a subscriber name value received from an unauthenticated payment approval request, no

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15930 Unscored

The Simple Membership WordPress plugin before 4.7.8 does not verify whether user creation failed during registration before using the returned value as a u

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15927 Medium 6.8

A flaw was found in Red Hat Quay's repository-level mirror configuration feature. The POST and PUT handlers in endpoints/api/mirror.py accept an external_r

21 Jul 2026, 04:45 UTC View advisory →
CVE-2026-15925 Critical 9.2

Improper TLS hostname verification in Snowflake Connector for Python versions prior to 4.7.1 may have allowed a network-positioned attacker to bypass certi

16 Jul 2026, 05:31 UTC View advisory →
CVE-2026-15921 Low 2.1

Node Version Manager (nvm) is a POSIX-compliant shell function for managing multiple node.js versions. In versions 0.32.1 through 0.40.5, `nvm ls-remote` (

15 Jul 2026, 21:16 UTC View advisory →
CVE-2026-15920 Medium 5.1

An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. `django.contrib.admin.utils.display_for_field()` renders `URLField` values as cli

04 Aug 2026, 15:48 UTC View advisory →
CVE-2026-15918 High 7.5

VikAppointments Service Booking Calendar wordpress plugin is vulnerable to unauthenticated SQL injection due to one of the parameters that controls how the

05 Aug 2026, 04:25 UTC View advisory →
CVE-2026-15909 Medium 5.3

A vulnerability has been found in RafyMrX TOKO-ONLINE-ROTI up to ddfe1cd587be0a0b5135d8b6e85cce2ec3aece99. Affected is an unknown function of the file pros

16 Jul 2026, 00:15 UTC View advisory →
CVE-2026-15907 Medium 6.9

A flaw has been found in H3C SecPath F1000-C8300 up to 20260522. This impacts an unknown function of the file /webui/?g=log_fw_nbc_mail_jsondata. Executing

15 Jul 2026, 23:45 UTC View advisory →
CVE-2026-15905 Unscored

Use after free in Aura in Google Chrome prior to 150.0.7871.128 allowed a local attacker to potentially exploit heap corruption via a malicious file. (Chro

20 Jul 2026, 22:31 UTC View advisory →
CVE-2026-15904 Unscored

Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.128 allowed a remote attacker who convinced a user to engage in specific UI gestures

20 Jul 2026, 22:31 UTC View advisory →
CVE-2026-15903 Unscored

Out of bounds read and write in V8 in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to execute arbitrary code inside a sandbox via a craf

20 Jul 2026, 22:31 UTC View advisory →
CVE-2026-15902 Unscored

Use after free in Cast in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML pag

20 Jul 2026, 22:31 UTC View advisory →
CVE-2026-15901 Unscored

Use after free in Network in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page

20 Jul 2026, 22:31 UTC View advisory →
CVE-2026-15900 Unscored

Use after free in GPU in Google Chrome on Android prior to 150.0.7871.128 allowed a remote attacker to potentially perform a sandbox escape via a crafted H

20 Jul 2026, 22:31 UTC View advisory →
CVE-2026-15899 Unscored

Use after free in CameraCapture in Google Chrome on Mac prior to 150.0.7871.128 allowed a remote attacker to potentially perform a sandbox escape via a cra

20 Jul 2026, 22:31 UTC View advisory →
CVE-2026-15895 High 8.4

OS command injection in the npm package loading component in AWS jsii-diff before 1.131.0 might allow context-dependent attackers to execute arbitrary comm

15 Jul 2026, 19:05 UTC View advisory →
CVE-2026-15830 Medium 6.9

An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDjango's `django.contrib.gis.geos.GEOSGeometry` is subject to a potential deni

04 Aug 2026, 15:48 UTC View advisory →
CVE-2026-15813 Medium 6.5

A vulnerability was found in the network packet de-fragmentation engine of kronosnet (Version affected <= 1.34). The internal reassembly code does not prop

20 Jul 2026, 10:36 UTC View advisory →
CVE-2026-15812 Medium 4.8

A vulnerability was found in the internal Access Control List (ACL) subsystem of kronosnet (Version affected: <= 1.34). When the framework is explicitly co

21 Jul 2026, 05:09 UTC View advisory →
CVE-2026-15811 Medium 5.8

A vulnerability was found in kronosnet's (version <=1.34) cryptographic configuration management. The framework does not correctly zero-out or wipe sensiti

21 Jul 2026, 05:09 UTC View advisory →
CVE-2026-15809 High 7.8

A flaw was found in CRI-O. The fix for a previous vulnerability (CVE-2022-4318) was incorrect, allowing it to be bypassed. An attacker capable of setting e

15 Jul 2026, 12:32 UTC View advisory →
CVE-2026-15805 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

07 Aug 2026 View advisory →
CVE-2026-15804 High 8.7

The HCM developed by MetaGuru has a SQL Injection vulnerability. Authenticated remote attackers can inject SQL commands via specific parameters, thereby co

15 Jul 2026, 07:31 UTC View advisory →
CVE-2026-15799 Unscored

This is a duplicate.

28 Jul 2026 View advisory →
CVE-2026-15788 Medium 5.6

BuildKit's cache mount source= selector on Windows Container on Windows (WCOW) workers does not detect NTFS directory junctions placed inside the cache roo

20 Jul 2026, 19:12 UTC View advisory →
CVE-2026-15787 Medium 6.4

The Ultimate Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Navigation Menu Widget data-toggle-icon/data-close-

22 Jul 2026, 08:33 UTC View advisory →
CVE-2026-15783 Medium 5.3

A missing authorization vulnerability was identified in GitHub Enterprise Server that allowed an authenticated user with write access to any repository to

17 Jul 2026, 15:20 UTC View advisory →
CVE-2026-15782 Medium 4.9

The WPForms – AI Form Builder for WordPress – Contact Forms, Payment Forms, Survey Form, Quiz & More plugin for WordPress is vulnerable to Stored Cross-Sit

21 Jul 2026, 05:35 UTC View advisory →
CVE-2026-15779 Medium 6.1

A flaw was found in samba's pam_winbind. When mkhomedir is enabled, pam_winbind chowns the target account's home directory without validating the path is n

15 Jul 2026, 12:33 UTC View advisory →
CVE-2026-15778 Unscored

Insufficient validation of untrusted input in Navigation in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who had compromised the rendere

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15777 High 7.5

Use after free in UI in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures to

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15776 High 8.8

Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.125 allowed a remote attacker to execute arbitrary code inside a sandbox via a craf

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15775 Unscored

Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.125 allowed a remote attacker to bypass same origin policy via a crafted HTML page.

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15774 High 8.3

Use after free in Skia in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to potentially perform a

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15773 Critical 9.6

Use after free in Core in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker to potentially perform a sandbox escape via a crafted

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15772 High 8.3

Use after free in GPU in Google Chrome on Android prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to potentially

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15771 Medium 5.3

Insufficient validation of untrusted input in Media in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker who had compromised the r

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15770 Medium 6.5

Uninitialized Use in V8 in Google Chrome prior to 150.0.7871.125 allowed a remote attacker to obtain potentially sensitive information from process memory

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15769 High 8.3

Insufficient validation of untrusted input in Linux Toolkit Theming in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who had com

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15768 Unscored

Insufficient policy enforcement in HTML-in-Canvas in Google Chrome prior to 150.0.7871.125 allowed a remote attacker to bypass same origin policy via a cra

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15767 High 8.8

Heap buffer overflow in libyuv in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker to execute arbitrary code inside a sandbox via

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15766 Medium 6.5

Uninitialized Use in Skia in Google Chrome prior to 150.0.7871.125 allowed a remote attacker to obtain potentially sensitive information from process memor

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15765 High 7.5

Use after free in Ozone in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures to potent

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15764 High 7.5

Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures

14 Jul 2026, 20:09 UTC View advisory →
CVE-2026-15759 Medium 6.4

The ChatHelp – Click to Chat Button, WooCommerce Chat to Order & Floating Chat Form plugin for WordPress is vulnerable to Stored Cross-Site Scripting via '

17 Jul 2026, 03:43 UTC View advisory →
CVE-2026-15757 Medium 6.3

A security flaw was discovered in the NETGEAR DGND3700v1 that could allow someone on the same local WiFi network to send unauthorized commands to the devic

14 Jul 2026, 17:46 UTC View advisory →
CVE-2026-15753 Medium 5.3

A vulnerability was determined in zhinianboke xianyu-auto-reply on Server. Affected by this vulnerability is an unknown functionality of the file /api/v1/p

14 Jul 2026, 22:30 UTC View advisory →
CVE-2026-15752 Medium 6.9

A vulnerability was found in zhinianboke xianyu-auto-reply up to dcb445ad97816ad65299a7580ee0c8c8f929da84. Affected is an unknown function of the file /api

14 Jul 2026, 22:15 UTC View advisory →
CVE-2026-15751 Medium 4.8

A security vulnerability has been detected in mastergo-design mastergo-magic-mcp up to 0.2.0. The affected element is the function execute of the file mast

14 Jul 2026, 22:00 UTC View advisory →
CVE-2026-15750 Medium 5.3

A weakness has been identified in mastergo-design mastergo-magic-mcp up to 0.2.0. Impacted is the function z.string of the file src/tools/get-component-lin

14 Jul 2026, 21:30 UTC View advisory →
CVE-2026-15749 Medium 4.8

A security flaw has been discovered in mastergo-design mastergo-magic-mcp up to 0.2.0. This issue affects the function execute of the file src/tools/get-c2

14 Jul 2026, 21:00 UTC View advisory →
CVE-2026-15747 Unscored

Mojolicious versions from 4.59 before 9.48 for Perl expose a stable representation of the session CSRF token to a BREACH compression oracle. _csrf_token ge

14 Jul 2026, 17:07 UTC View advisory →
CVE-2026-15746 Medium 6.9

Strands Agents is an open-source Python SDK for building and running AI agents. The strands-agents-tools package provides pre-built tools for use with the

15 Jul 2026, 18:35 UTC View advisory →
CVE-2026-15738 Medium 5.8

Incorrect behavior order in the Gateway API listener-rule generation in Amazon AWS Load Balancer Controller before 3.4.2 might allow an authenticated remot

14 Jul 2026, 20:19 UTC View advisory →
CVE-2026-15737 Medium 5.7

AWS Bedrock AgentCore Python SDK is an open-source Python library that provides client tools for building AI agents on the Amazon Bedrock AgentCore platfor

16 Jul 2026, 17:03 UTC View advisory →
CVE-2026-15736 High 8.3

Snowflake SQLAlchemy versions prior to 1.11.0 contain several security vulnerabilities, including: Improper handling of user-supplied column identifiers in

14 Jul 2026, 14:11 UTC View advisory →
CVE-2026-15734 Unscored

A Server-Side Template Injection (SSTI) vulnerability in WGDashboard version 4.3.2 and earlier, allows authenticated attackers to execute arbitrary code as

06 Aug 2026, 20:00 UTC View advisory →
CVE-2026-15733 Unscored

A Remote Code Execution (RCE) vulnerability exist in WGDashboard version 4.2.3 and earlier. Multiple OS command injection allows authenticated attackers to

06 Aug 2026, 20:00 UTC View advisory →
CVE-2026-15732 Unscored

A Server-Side Request Forgery (SSFR) vulnerability exist in WGDashboard version 4.2.3 and earlier. The webhook functionality allows authenticated attackers

06 Aug 2026, 19:59 UTC View advisory →
CVE-2026-15727 Medium 4.9

The WP Bulk Delete plugin for WordPress is vulnerable to generic SQL Injection via the 'delete_user_roles' parameter in all versions up to, and including,

16 Jul 2026, 08:26 UTC View advisory →
CVE-2026-15722 High 7.5

A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). The get_ruvelement_from_berval() function in repl5_ruv.c copies digit charact

31 Jul 2026, 09:18 UTC View advisory →
CVE-2026-15721 Critical 9.8

Cleartext storage of sensitive information vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows SQL Inj

04 Aug 2026, 08:18 UTC View advisory →
CVE-2026-15720 High 8.6

In Open5GS through version 2.7.7 a pre-authentication heap out-of-bounds read in the AMF NAS 5GS mobile-identity handler may result in subscriber-wide deni

14 Jul 2026, 18:20 UTC View advisory →
CVE-2026-15719 Medium 5.4

We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. This vulnerability was fixed in Fi

14 Jul 2026, 12:15 UTC View advisory →
CVE-2026-15718 Medium 4.3

We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. This vulnerability was fixed in Fi

14 Jul 2026, 12:15 UTC View advisory →
CVE-2026-15715 Medium 5.3

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the f

14 Jul 2026, 17:45 UTC View advisory →
CVE-2026-15714 Medium 6.5

An out-of-bounds read vulnerability was found in libsoup's multipart processing subsystem. The flaw exists in the soup_multipart_input_stream_read_headers(

14 Jul 2026, 19:50 UTC View advisory →
CVE-2026-15713 Medium 5.9

A vulnerability was found in libsoup's HTTP/2 protocol implementation. The library fails to correctly release memory context blocks under specific stream t

14 Jul 2026, 19:45 UTC View advisory →
CVE-2026-15712 Medium 5.9

A heap buffer over-read vulnerability was discovered in libsoup's (versions: libsoup 3.0 to 3.7.0) HTTP/2 connection tracking framework. When the library p

14 Jul 2026, 18:11 UTC View advisory →
CVE-2026-15711 High 7.5

A vulnerability was found in libsoup's WebSocket frame parsing implementation. The library fails to validate length rules specified in RFC 6455 §5.5, which

14 Jul 2026, 19:45 UTC View advisory →
CVE-2026-15709 High 7.5

A flaw was found in libsoup's WebSocket implementation when using the permessage-deflate extension. The extension's decompression loop (inflate()) processe

14 Jul 2026, 19:41 UTC View advisory →
CVE-2026-15703 Medium 6.9

A vulnerability was detected in SourceCodester Simple and Nice Shopping Cart Script 1.0. This vulnerability affects unknown code of the file /admin/userpro

14 Jul 2026, 17:00 UTC View advisory →
CVE-2026-15702 Medium 5.3

A security vulnerability has been detected in tamagui up to 2.3.0. This affects the function updateConfig of the file code/core/web/src/config.ts. Such man

14 Jul 2026, 16:45 UTC View advisory →
CVE-2026-15701 Critical 9.3

A weakness has been identified in Totolink NR1800X 9.1.0u.6279_B20210910. Affected by this issue is the function Form_Logout of the file /formLogout.htm of

14 Jul 2026, 16:30 UTC View advisory →
CVE-2026-15700 Medium 5.1

A security flaw has been discovered in DedeCMS 5.7.118. Affected by this vulnerability is the function ExtractFile of the file include/zip.class.php of the

14 Jul 2026, 16:15 UTC View advisory →
CVE-2026-15699 Medium 5.3

A vulnerability was identified in spencermountain compromise up to 14.15.1. Affected is the function nlp.extend of the file src/API/extend.js of the compon

14 Jul 2026, 15:45 UTC View advisory →
CVE-2026-15698 Medium 5.3

A vulnerability was determined in kofrasa mingo up to 7.2.1. This impacts the function update/updateOne/updateMany of the component Update API. Executing a

14 Jul 2026, 15:30 UTC View advisory →
CVE-2026-15697 Medium 5.3

A vulnerability was found in svgdotjs svg.js up to 3.2.5. This affects the function EventTarget.on of the file svgdotjs/svg.js of the component npm Package

14 Jul 2026, 15:15 UTC View advisory →
CVE-2026-15696 High 8.7

A vulnerability has been found in Tenda BE12 Pro 16.03.66.23. The impacted element is the function fromVirtualSer of the file /goform/VirtualSer. Such mani

14 Jul 2026, 14:45 UTC View advisory →
CVE-2026-15695 High 8.7

A flaw has been found in Tenda BE12 Pro 16.03.66.23. The affected element is the function fromDhcpListClient of the file /goform/DhcpListClient. This manip

14 Jul 2026, 14:30 UTC View advisory →
CVE-2026-15694 High 8.7

A vulnerability was detected in Tenda BE12 Pro 16.03.66.23. Impacted is the function fromSetIpBind of the file /goform/SetIpBind. The manipulation of the a

14 Jul 2026, 14:15 UTC View advisory →
CVE-2026-15693 High 8.7

A security vulnerability has been detected in Tenda BE12 Pro 16.03.66.23. This issue affects the function fromSafeMacFilter of the file /goform/SafeMacFilt

14 Jul 2026, 13:15 UTC View advisory →
CVE-2026-15692 High 8.7

A weakness has been identified in Tenda BE12 Pro 16.03.66.23. This vulnerability affects the function fromSafeUrlFilter of the file /goform/SafeUrlFilter.

14 Jul 2026, 12:30 UTC View advisory →
CVE-2026-15691 High 8.7

A security flaw has been discovered in Tenda BE12 Pro 16.03.66.23. This affects the function fromSafeClientFilter of the file /goform/SafeClientFilter. Per

14 Jul 2026, 12:15 UTC View advisory →
CVE-2026-15690 Low 2.3

A vulnerability was identified in open62541 up to 1.5.5. Affected by this issue is the function responseReadNamespacesArray of the file src/client/ua_clien

14 Jul 2026, 11:45 UTC View advisory →
CVE-2026-15685 High 7.5

Ollama downloadBlob Improper Validation of Array Index Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-se

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-15684 High 7.3

Glarysoft Glary Utilities Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affe

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-15683 High 7.5

Lorex 2K Indoor Wi-Fi Security Camera Device Management Server Improper Certificate Validation Vulnerability. This vulnerability allows network-adjacent at

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-15682 Medium 4.7

AnyDesk Support Information Link Following Denial-of-Service Vulnerability. This vulnerability allows local attackers to create a denial-of-service conditi

13 Jul 2026, 21:31 UTC View advisory →
CVE-2026-15681 Medium 4.7

AnyDesk Screen Recording Link Following Denial-of-Service Vulnerability. This vulnerability allows local attackers to create a denial-of-service condition

13 Jul 2026, 21:31 UTC View advisory →
CVE-2026-15680 High 7.5

Lorex 2K Indoor Wi-Fi Security Camera CDeviceOperator Format String Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attacke

13 Jul 2026, 21:32 UTC View advisory →
CVE-2026-15678 Medium 5.1

A security vulnerability has been detected in code-projects Online Job Portal 1.0. This impacts an unknown function of the file /Admin/DetailJob.php. The m

14 Jul 2026, 06:30 UTC View advisory →
CVE-2026-15677 Medium 6.9

A weakness has been identified in code-projects Online Job Portal 1.0. This affects an unknown function of the file /JobSeekerInsert.php. Executing a manip

14 Jul 2026, 06:15 UTC View advisory →
CVE-2026-15676 Medium 6.9

A security flaw has been discovered in code-projects Online Job Portal up to 1.0. The impacted element is an unknown function of the file /Admin/DeleteUser

14 Jul 2026, 06:00 UTC View advisory →
CVE-2026-15675 Medium 6.9

A vulnerability was identified in code-projects Online Job Portal 1.0. The affected element is an unknown function of the file /Admin/EditUser.php. Such ma

14 Jul 2026, 05:45 UTC View advisory →
CVE-2026-15672 Medium 5.3

A vulnerability was determined in itsourcecode Electronic Judging System 1.0. Impacted is an unknown function of the file /intrams/admin/add_judges.php. Th

14 Jul 2026, 05:30 UTC View advisory →
CVE-2026-15669 Medium 4.8

A vulnerability was found in louisho5 picobot up to 0.2.0. This issue affects the function ExecTool.Execute of the file internal/agent/tools/exec.go of the

14 Jul 2026, 05:15 UTC View advisory →
CVE-2026-15668 Medium 5.3

A vulnerability has been found in louisho5 picobot up to 0.2.0. This vulnerability affects the function WebTool.Execute of the file internal/agent/tools/we

14 Jul 2026, 04:00 UTC View advisory →
CVE-2026-15662 Medium 6.4

The Advanced Woo Labels – Product Labels & Badges for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'bg_color' para

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-15658 Unscored

A vulnerability in the foreUP customer REST API allows any authenticated, low-privilege customer to access an endpoint that returns the records of other us

30 Jul 2026, 15:18 UTC View advisory →
CVE-2026-15657 Unscored

A vulnerability in the foreUP customer REST API allows any authenticated user to read cleartext payment-processor merchant credentials in the response body

30 Jul 2026, 15:22 UTC View advisory →
CVE-2026-15656 Medium 4.3

IBM Maximo Application Suite 9.2, 9.1, and 9.0 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get t

05 Aug 2026, 16:05 UTC View advisory →
CVE-2026-15652 Medium 6.4

The Easy Accordion – AI-Powered FAQ & Accordion Blocks, Product FAQ plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'align' Block Att

16 Jul 2026, 02:30 UTC View advisory →
CVE-2026-15651 Medium 4.9

The WP TripAdvisor Review Slider plugin for WordPress is vulnerable to generic SQL Injection via the 'filtersource' parameter in all versions up to, and in

16 Jul 2026, 07:51 UTC View advisory →
CVE-2026-15649 Medium 6.4

The Powerkit – Supercharge your WordPress Site plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Shortcode Attributes in all versions u

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-15645 Medium 6.4

The Powerkit – Supercharge your WordPress Site plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'nav' Shortcode Attribute in all versi

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-15644 Medium 6.4

The Powerkit – Supercharge your WordPress Site plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'style' Shortcode Attribute in all ver

01 Aug 2026, 08:32 UTC View advisory →
CVE-2026-15643 Critical 9.2

AWS HealthLake MCP Server (awslabs.healthlake-mcp-server) is a Model Context Protocol server that enables AI assistants to interact with AWS HealthLake FHI

14 Jul 2026, 20:03 UTC View advisory →
CVE-2026-15642 Unscored

Insertion of sensitive information into a file in the Recovery Kit response file generation feature in Devolutions Server 2026.1.22.0, 2026.2.11.0 allows a

14 Jul 2026, 18:09 UTC View advisory →
CVE-2026-15641 Unscored

Improper authorization in the access request status endpoint in Devolutions Server 2026.2.11, 2026.1.22 allows an authenticated low-privileged user to appr

14 Jul 2026, 18:09 UTC View advisory →
CVE-2026-15637 Unscored

Improper authorization in the PAM SSH key and certificate retrieval endpoints in Devolutions Server 2026.2.11, 2026.1.22 allows an authenticated low-privil

14 Jul 2026, 18:05 UTC View advisory →
CVE-2026-15631 High 8.7

Impact: @fastify/http-proxy versions from 9.4.0 up to and including 11.5.0 fail to validate the resolved WebSocket destination path against the configured

18 Jul 2026, 12:46 UTC View advisory →
CVE-2026-15629 Medium 5.3

A weakness has been identified in louisho5 picobot up to 0.2.0. Impacted is the function CreateSkill/GetSkill of the file internal/agent/tools/filesystem.g

14 Jul 2026, 03:30 UTC View advisory →
CVE-2026-15628 Medium 5.3

A security flaw has been discovered in zhayujie chatgpt-on-wechat CowAgent up to 2.1.1. This issue affects the function Vision._download_to_data_url of the

14 Jul 2026, 03:00 UTC View advisory →
CVE-2026-15627 Medium 5.3

A vulnerability was identified in nextlevelbuilder GoClaw up to 3.13.3-beta.3. This vulnerability affects the function handleNavigate of the file pkg/brows

14 Jul 2026, 02:45 UTC View advisory →
CVE-2026-15626 Medium 5.3

A vulnerability was determined in nextlevelbuilder GoClaw 3.13.3-beta.3. This affects the function writeFile of the file internal/providers/acp/tool_bridge

14 Jul 2026, 02:15 UTC View advisory →
CVE-2026-15625 Medium 5.3

A vulnerability was found in nextlevelbuilder GoClaw 3.11.3. Affected by this issue is the function ExecApprovalManager.CheckCommand of the file internal/t

14 Jul 2026, 02:00 UTC View advisory →
CVE-2026-15624 Medium 5.3

A vulnerability has been found in nextlevelbuilder GoClaw 3.13.3-beta.3. Affected by this vulnerability is the function bytePlusDownloadVideo of the file i

14 Jul 2026, 01:30 UTC View advisory →
CVE-2026-15622 Medium 6.9

A flaw has been found in poco-ai poco-claw up to 0.5.4. Affected is the function get_workspace_file of the file executor_manager/app/api/v1/workspace.py of

14 Jul 2026, 01:15 UTC View advisory →
CVE-2026-15621 Medium 4.8

A vulnerability was detected in mosaxiv clawlet up to 0.2.10. This impacts the function read_file/write_file/edit_file of the file tools/fs_ops.go of the c

14 Jul 2026, 00:45 UTC View advisory →
CVE-2026-15620 Medium 5.3

A security vulnerability has been detected in mosaxiv clawlet up to 0.2.10. This affects the function tools.webFetch of the file tools/tool_web_fetch.go. S

14 Jul 2026, 00:15 UTC View advisory →
CVE-2026-15619 Medium 5.3

A weakness has been identified in mosaxiv clawlet up to 0.2.10. The impacted element is the function web_fetch of the file tools/tool_web_fetch.go of the c

14 Jul 2026, 00:00 UTC View advisory →
CVE-2026-15618 Medium 5.3

A security flaw has been discovered in mosaxiv clawlet up to 0.2.10. The affected element is the function guardExecCommand of the file tools/tool_exec.go o

13 Jul 2026, 23:45 UTC View advisory →
CVE-2026-15610 Medium 4.3

The WPBot – AI ChatBot for Live Support, Lead Generation, AI Services plugin for WordPress is vulnerable to authorization bypass in all versions up to, and

16 Jul 2026, 07:51 UTC View advisory →
CVE-2026-15607 Medium 5.3

A vulnerability was detected in tanstack db up to 0.6.8. Affected by this vulnerability is the function select of the file src/query/compiler/select.ts of

13 Jul 2026, 23:00 UTC View advisory →
CVE-2026-15605 Low 2.3

A security vulnerability has been detected in wandb 0.25.2.dev1. Affected is the function ArtifactManifestEntry.download in the library wandb/sdk/lib/hashu

13 Jul 2026, 22:45 UTC View advisory →
CVE-2026-15601 Medium 4.9

The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to Path Traversal (Zip Slip) in all versions up to, and

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-15599 Low 3.3

Unverified ownership vulnerability in TÜBİTAK BİLGEM Software Technologies Research Institute pardus-domain-joiner allows Privilege Abuse. This issue affec

06 Aug 2026, 12:37 UTC View advisory →
CVE-2026-15598 Medium 5.3

A weakness has been identified in antv layout 2.0.0. This impacts the function setNestedValue in the library lib/util/object.js. Executing a manipulation o

13 Jul 2026, 22:00 UTC View advisory →
CVE-2026-15597 Medium 6.9

A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0/2.php. This affects an unknown function of the file /edit_exam2

13 Jul 2026, 21:45 UTC View advisory →
CVE-2026-15596 Medium 5.3

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is an unknown function of the file /subject.ph

13 Jul 2026, 21:30 UTC View advisory →
CVE-2026-15595 Medium 5.3

A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. The affected element is an unknown function of the file /forsubject

13 Jul 2026, 20:30 UTC View advisory →
CVE-2026-15594 Medium 6.3

A vulnerability was found in waooAI waoowaoo up to 0.4.1. Impacted is the function stablePublicIdFromStorageKey in the library src/lib/media/hash.ts of the

13 Jul 2026, 20:15 UTC View advisory →
CVE-2026-15588 Medium 5.3

A denial-of-service and resource exhaustion vulnerability exists within the `GDBus` component of GLib. The `gdbusauth` authentication mechanism fails to en

20 Jul 2026, 12:12 UTC View advisory →
CVE-2026-15587 Critical 9.4

Improper Privilege Management in Google SecOps (Chronicle SOAR) versions prior to 6.3.85 on Google Cloud Platform allows an authenticated attacker to escal

05 Aug 2026, 14:40 UTC View advisory →
CVE-2026-15584 High 7.5

A privilege escalation vulnerability was found in the incluster-checks tool for OpenShift. The tool creates privileged debug pods with host filesystem acce

13 Jul 2026, 12:01 UTC View advisory →
CVE-2026-15583 High 8.6

A confused-deputy flaw in Grafana MCP Server allows an unauthenticated remote attacker to exfiltrate the server's environment-configured Grafana service-ac

15 Jul 2026, 07:29 UTC View advisory →
CVE-2026-15574 High 7.5

A flaw was found in the vllm-orchestrator-gateway component. The system's production binary logs all incoming authorization headers and full chat payloads,

13 Jul 2026, 08:01 UTC View advisory →
CVE-2026-15573 High 8.1

A flaw was found in Keycloak's Authorization Services. The component responsible for matching request paths to security policies (PathMatcher) does not pro

05 Aug 2026, 13:50 UTC View advisory →
CVE-2026-15572 High 8.8

A flaw was found in Keycloak's Dynamic Client Registration (DCR) security policy management. The "Allowed Protocol Mapper Types" policy, which restricts wh

05 Aug 2026, 15:09 UTC View advisory →
CVE-2026-15559 Medium 5.3

A vulnerability was detected in CodeAstro Simple Online Leave Management System 1.0. This affects an unknown part of the file /SimpleOnlineLeave/admin/acce

13 Jul 2026, 12:00 UTC View advisory →
CVE-2026-15558 Medium 5.3

A security vulnerability has been detected in CodeAstro Simple Online Leave Management System 1.0. Affected by this issue is some unknown functionality of

13 Jul 2026, 11:30 UTC View advisory →
CVE-2026-15557 Medium 6.9

A weakness has been identified in waooAI waoowaoo up to 0.4.1. Affected by this vulnerability is the function getInternalTaskSession/getAuthSession/require

13 Jul 2026, 09:30 UTC View advisory →
CVE-2026-15548 High 8.7

A security vulnerability has been detected in Shibby Tomato up to 1.28.0000. This vulnerability affects the function sub_407220 of the file /usr/sbin/httpd

13 Jul 2026, 08:45 UTC View advisory →
CVE-2026-15547 Medium 5.3

A weakness has been identified in Shibby Tomato up to 1.28.0000. This affects the function sub_2D048 of the component CIFS Mount Handler. Executing a manip

13 Jul 2026, 08:30 UTC View advisory →
CVE-2026-15546 Medium 5.3

A security flaw has been discovered in Shibby Tomato up to 1.28.0000. Affected by this issue is the function sub_2D568 of the component start_jffs2. Perfor

13 Jul 2026, 08:15 UTC View advisory →
CVE-2026-15545 High 8.7

A vulnerability was identified in Shibby Tomato up to 1.28.0000. Affected by this vulnerability is the function main of the file www/apcupsd/tomatodata.cgi

13 Jul 2026, 08:00 UTC View advisory →
CVE-2026-15544 High 8.7

A vulnerability was determined in Shibby Tomato up to 1.28.0000. Affected is the function getupsvar of the file www/apcupsd/tomatodata.cgi of the component

13 Jul 2026, 07:30 UTC View advisory →
CVE-2026-15543 High 8.7

A vulnerability was found in Tenda CH22 1.0.0.1. This impacts the function formCertListInfo of the file /goform/CertListInfo. The manipulation of the argum

13 Jul 2026, 07:15 UTC View advisory →
CVE-2026-15484 High 8.7

A vulnerability was detected in TRENDnet TEW-821DAP 1.12B01. The affected element is the function sub_41EC14 of the file /goform/tools_nslookup of the comp

12 Jul 2026, 06:30 UTC View advisory →
CVE-2026-15483 High 8.7

A security vulnerability has been detected in TRENDnet TEW-821DAP 1.12B01. Impacted is the function sub_41EC14 of the file /goform/tools_nslookup of the co

12 Jul 2026, 06:15 UTC View advisory →
CVE-2026-15482 Medium 6.9

A weakness has been identified in Aster Telecom Azcall 10/11. This issue affects some unknown processing of the file /azcall/adm/gestao_loja/sis.php?t=cons

12 Jul 2026, 06:00 UTC View advisory →
CVE-2026-15481 High 8.7

A security flaw has been discovered in Trendnet TEW-635BRM up to 1.00.03. This vulnerability affects the function ipoa_test of the file /sbin/rc of the com

12 Jul 2026, 05:45 UTC View advisory →
CVE-2026-15480 High 8.7

A vulnerability was identified in Trendnet TEW-635BRM up to 1.00.03. This affects the function start_httpd of the file /sbin/rc of the component Web Servic

12 Jul 2026, 05:30 UTC View advisory →
CVE-2026-15479 Medium 6.9

A vulnerability was found in H3C NX15 V100R017. Affected by this vulnerability is the function change_passwd of the file /api/login/modify of the component

12 Jul 2026, 05:00 UTC View advisory →
CVE-2026-15478 Medium 5.3

A flaw has been found in IceHRM up to 35.0.1. This impacts an unknown function of the file core/src/Reports/User/Reports/EmployeeAttendanceReport.php of th

12 Jul 2026, 04:30 UTC View advisory →
CVE-2026-15477 Medium 5.3

A vulnerability was detected in Bahmni bahmnicore up to 0.93. This affects the function additionalParams of the file /openmrs/ws/rest/v1/bahmnicore/sql of

12 Jul 2026, 03:45 UTC View advisory →
CVE-2026-15476 Medium 4.8

A security vulnerability has been detected in QILING Disk Master 6.0.0.0. The impacted element is an unknown function in the library diskbckp.sys of the co

12 Jul 2026, 03:30 UTC View advisory →
CVE-2026-15475 Medium 4.8

A weakness has been identified in MiniTool Partition Wizard up to 13.6. The affected element is an unknown function in the library pwdrvio.sys of the compo

12 Jul 2026, 02:15 UTC View advisory →
CVE-2026-15474 Medium 5.3

A security flaw has been discovered in Eleveo Call Recording Software 9.7.0. Impacted is an unknown function of the file /callrec/audio.jsp of the componen

12 Jul 2026, 02:00 UTC View advisory →
CVE-2026-15473 Medium 5.3

A vulnerability was identified in Eleveo Call Recording Software 9.7.0. This issue affects some unknown processing of the file /callrec/restoreCallAction.d

12 Jul 2026, 01:30 UTC View advisory →
CVE-2026-15472 Medium 5.3

A vulnerability was determined in Eleveo Call Recording Software 9.7.0. This vulnerability affects unknown code of the file /callrec/composeEmailAction.do.

12 Jul 2026, 01:15 UTC View advisory →
CVE-2026-15471 Medium 5.3

A vulnerability was found in Eleveo Call Recording Software 9.7.0. This affects an unknown part of the file /callrec/pci_dss_status.jsp. Performing a manip

12 Jul 2026, 01:00 UTC View advisory →
CVE-2026-15470 Medium 5.3

A vulnerability has been found in Eleveo Call Recording Software 9.7.0. Affected by this issue is some unknown functionality of the file /callrec/group.jsp

11 Jul 2026, 23:45 UTC View advisory →
CVE-2026-15459 High 8.1

The WPMU DEV Dashboard plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 5.0.0. On sites not yet connected

06 Aug 2026, 04:26 UTC View advisory →
CVE-2026-15458 Medium 4.9

The SEO Booster plugin for WordPress is vulnerable to generic SQL Injection via the 'sort_field' parameter in all versions up to, and including, 7.3.1 due

16 Jul 2026, 03:44 UTC View advisory →
CVE-2026-15457 Medium 4.9

The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and includ

17 Jul 2026, 03:43 UTC View advisory →
CVE-2026-15452 Medium 4.7

The Smash Balloon Social Photo Feed – Easy Social Feeds Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via REQUEST_URI Query S

05 Aug 2026, 09:26 UTC View advisory →
CVE-2026-15450 High 8.1

The Nex Forms – Ultimate Form Builder – Lite plugin for WordPress is vulnerable to arbitrary file deletion via path traversal in versions up to, and includ

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-15449 Medium 5.8

A time-of-check to time-of-use (TOCTOU) flaw in the illumos data-link pseudo-driver (dld) affects handling of the DLDIOC_GETMACPROP and DLDIOC_SETMACPROP i

16 Jul 2026, 19:27 UTC View advisory →
CVE-2026-15445 Medium 4.9

The SEO Booster plugin for WordPress is vulnerable to time-based SQL Injection via the 'orderby' parameter in all versions up to, and including, 7.3.1 due

16 Jul 2026, 03:44 UTC View advisory →
CVE-2026-15435 Critical 9.8

IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 could allow a remote attacker to traverse directories on the system.

30 Jul 2026, 14:08 UTC View advisory →
CVE-2026-15430 Medium 6.2

Improper access control in the IRP_MJ_WRITE command interface in Wellbia XIGNCODE3 xhunter2.sys, version 2026.6.1.192, allows a local, unprivileged attacke

03 Aug 2026, 14:45 UTC View advisory →
CVE-2026-15429 Medium 5.1

A privilege escalation vulnerability exists in the HTTP authentication component in Archer VX1800v v1. Improper handling of user-controlled input may allow

14 Jul 2026, 17:04 UTC View advisory →
CVE-2026-15428 High 8.5

An OS command injection vulnerability exists in Archer VX800v v1 due to insufficient input sanitization of the domain name parameter. An adjacent attacker

14 Jul 2026, 17:03 UTC View advisory →
CVE-2026-15427 High 8.6

An OS command injection vulnerability exists in the TR-069 / CWMP management interface of Archer VX1800v v1 due to insufficient input validation and saniti

14 Jul 2026, 17:02 UTC View advisory →
CVE-2026-15422 Critical 9.1

The illumos SCTP inbound path performs association lookup for INIT ACK chunks without adequately validating the address parameters carried in the chunk. Si

16 Jul 2026, 19:29 UTC View advisory →
CVE-2026-15416 High 8.9

A flaw was identified in Argo CD, the GitOps engine used by Red Hat OpenShift GitOps, that could allow an unauthenticated attacker with network access to t

14 Jul 2026, 08:56 UTC View advisory →
CVE-2026-15415 Medium 6.8

AWS HealthOmics is a HIPAA-eligible service that fully manages the compute, storage, and workflow engine infrastructure required to run bioinformatics anal

17 Jul 2026, 19:36 UTC View advisory →
CVE-2026-15414 High 8.8

The Subscriptions for WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including, 2.0.0. This is due to the `s

01 Aug 2026, 01:29 UTC View advisory →
CVE-2026-15410 High 7.2

Post-authentication improper control of generation of code ('Code Injection') vulnerability has been identified in the SMA1000 Appliance Management Console

14 Jul 2026, 19:43 UTC View advisory →
CVE-2026-15409 Critical 10

A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker cou

14 Jul 2026, 19:39 UTC View advisory →
CVE-2026-15407 Medium 4.3

The Themify Builder plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 7.7.7. This is due to the plugin not p

16 Jul 2026, 07:51 UTC View advisory →
CVE-2026-15403 Medium 4.9

The Pinpoint Booking System – Version 2 plugin for WordPress is vulnerable to blind SQL Injection via the 'field' parameter in all versions up to, and incl

01 Aug 2026, 01:29 UTC View advisory →
CVE-2026-15397 High 7.2

The Subscriptions for WooCommerce plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 2.0.0. This is due to t

30 Jul 2026, 11:03 UTC View advisory →
CVE-2026-15395 High 7.2

The Kali Forms — Contact Form & Drag-and-Drop Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'digitalSignature' Field Value

17 Jul 2026, 02:31 UTC View advisory →
CVE-2026-15392 Unscored

DBD::File versions before 1.651 for Perl do not ensure the table file is not a symlink to an untrusted location. The complete_table_name method builds the

14 Jul 2026, 15:34 UTC View advisory →
CVE-2026-15389 High 8.7

A vulnerability relating to insufficient access control has been identified in the session management of the Sesame Time web application and its REST v3 AP

14 Jul 2026, 10:10 UTC View advisory →
CVE-2026-15386 Unscored

The Meow Gallery WordPress plugin before 5.5.2 does not escape an attachment's alt text before outputting it into an attribute of the link it builds for li

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15385 Unscored

The RT Mega Menu WordPress plugin before 1.5.2 does not perform a capability check on the AJAX action that saves mega-menu configuration and per-menu-item

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15383 Unscored

The Blog Floating Button WordPress plugin through 1.4.20 does not sanitize or escape the visitor User-Agent header, which it stores through an unauthentica

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15381 Unscored

The WP Go Maps WordPress plugin before 10.1.04 does not properly sanitise and escape a parameter before using it in a SQL query, allowing unauthenticated u

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-15378 Critical 9.3

A flaw was found in the `guardrails-detectors` component. This vulnerability allows a remote attacker to perform a blind Server-Side Request Forgery (SSRF)

10 Jul 2026, 09:29 UTC View advisory →
CVE-2026-15377 Medium 5.3

A vulnerability was determined in Eleveo Call Recording Software 9.7.0. Affected by this vulnerability is an unknown functionality of the file /callrec/sen

10 Jul 2026, 16:15 UTC View advisory →
CVE-2026-15376 Medium 5.3

A vulnerability was found in Eleveo Call Recording Software 9.7.0. Affected is an unknown function of the file /callrec/statisticReportAction.do. The manip

10 Jul 2026, 15:45 UTC View advisory →
CVE-2026-15375 Medium 5.3

A vulnerability has been found in Eleveo Call Recording Software 9.7.0. This impacts an unknown function of the file /callrec/users_ldap.jsp of the compone

10 Jul 2026, 15:15 UTC View advisory →
CVE-2026-15374 Medium 5.3

A flaw has been found in Eleveo Call Recording Software 9.7.0. This affects an unknown function of the file /callrec/roleAddAction.do of the component Grou

10 Jul 2026, 15:00 UTC View advisory →
CVE-2026-15373 Medium 5.3

A vulnerability was detected in Eleveo Call Recording Software 9.7.0. The impacted element is an unknown function of the file /callrec/userAddAction.do. Pe

10 Jul 2026, 14:45 UTC View advisory →
CVE-2026-15372 Unscored

The WP 2FA WordPress plugin before 4.1.0 does not validate the second authentication factor when one of its supported methods is selected at login, allowin

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15368 Unscored

The User Profile Builder WordPress plugin before 3.16.4 does not correctly bind the automatic login performed after user registration to the newly created

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15361 Unscored

The Content Views WordPress plugin before 4.5 does not perform a capability check on one of its AJAX actions and does not properly sanitise attacker-suppli

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15360 Unscored

The Ajax Load More WordPress plugin before 8.0.1 does not properly sanitise and escape a parameter before using it in a SQL query, allowing unauthenticated

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15359 Unscored

The Templately WordPress plugin before 3.7.1 does not have an authorisation check on one of its request handlers, allowing unauthenticated attackers to ove

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15352 High 8.2

A vulnerability exists in the Health & Safety (HS) application of NASA's Core Flight System (cFS). The flaw allows the application to crash via segmentatio

16 Jul 2026, 19:48 UTC View advisory →
CVE-2026-15350 Medium 4.3

The The Cache Purger plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.3.20. This is due to the plugin not

16 Jul 2026, 07:51 UTC View advisory →
CVE-2026-15349 Medium 4.3

The ERP: Complete HR, Accounting & CRM Suite Built for WooCommerce plugin for WordPress is vulnerable to authorization bypass in all versions up to, and in

17 Jul 2026, 03:43 UTC View advisory →
CVE-2026-15343 High 8.6

A path traversal vulnerability was identified in GitHub Enterprise Server that allowed an attacker who had code execution inside the Dependabot updater con

17 Jul 2026, 15:18 UTC View advisory →
CVE-2026-15338 High 7.5

The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.6.1 via the get_

11 Jul 2026, 02:31 UTC View advisory →
CVE-2026-15337 Medium 6.9

An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. `django.utils.translation.check_for_language()` is subject to a potential denial-

04 Aug 2026, 15:48 UTC View advisory →
CVE-2026-15336 Medium 4.3

The Catch Themes Demo Import plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 3.3. This is due to the catch_th

16 Jul 2026, 02:30 UTC View advisory →
CVE-2026-15335 High 7.5

The Booking Package plugin for WordPress is vulnerable to generic SQL Injection via 'email' Form Parameter (form) in all versions up to, and including, 1.7

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-15324 Medium 4.4

The SysBasics Customize My Account for WooCommerce – Live My Account Customizer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the '

16 Jul 2026, 08:26 UTC View advisory →
CVE-2026-15322 High 7.5

IBM Engineering AI Hub 1.0.0, 1.1.0, and 1.2.0 could allow a remote attacker to obtain sensitive information due to the exposure of session tokens in URLs.

17 Jul 2026, 19:35 UTC View advisory →
CVE-2026-15314 High 7.1

Tapo P110 v1 smart Wi-Fi Plug contains an improper boundary validation vulnerability in the handling of authenticated HTTP request bodies due to insufficie

04 Aug 2026, 16:59 UTC View advisory →
CVE-2026-15307 High 8.7

An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDjango spatial lookups optimistically parse the right-hand-side value as a ras

04 Aug 2026, 15:48 UTC View advisory →
CVE-2026-15306 Medium 6.1

The Product Feed Manager For WooCommerce – Sell on 200+ Online Marketplaces plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via 's' Se

16 Jul 2026, 03:44 UTC View advisory →
CVE-2026-15305 Medium 6.3

Users were able to upload files with arbitrary MIME types to forms using FileUpload or ImageUpload elements with allowedMimeTypes configured. The restricti

14 Jul 2026, 12:45 UTC View advisory →
CVE-2026-15295 Medium 4.4

The WordPress Infinite Scroll – Ajax Load More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to,

10 Jul 2026, 19:44 UTC View advisory →
CVE-2026-15265 Critical 9.3

A path traversal vulnerability in Tenable Agent 11.2.0 and 11.1.3 and lower allows a privileged attacker to write arbitrary files outside the intended plug

14 Jul 2026, 15:02 UTC View advisory →
CVE-2026-15262 Unscored

The Admin Columns for ACF Fields WordPress plugin through 0.3.2 does not escape Advanced Custom Fields values before outputting them in the WordPress admin

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15260 Unscored

The GEO my WP WordPress plugin before 4.5.5.3 does not perform any ownership or capability check on two of its logged-in AJAX actions, allowing users with

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15258 Unscored

The Product Feed Manager For WooCommerce WordPress plugin before 7.6.1 does not properly sanitise and escape product-feed custom filter rules before using

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-15256 Medium 4.8

The Ninja Forms WordPress plugin before 3.14.10 does not prevent user-supplied query-string input, used to pre-populate a form field's default value, from

06 Aug 2026, 17:14 UTC View advisory →
CVE-2026-15254 Unscored

The Simply Schedule Appointments WordPress plugin before 1.6.12.11 does not perform a capability check on an administrative appointment-listing shortcode,

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15248 Unscored

The Meta Box WordPress plugin before 5.13.1 does not verify that a user is authorized to delete the supplied attachment before deleting it, allowing users

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15246 Medium 4.3

The RealHomes Memberships WordPress plugin before 3.1.0 does not verify that a membership payment actually completed, nor check a nonce or the user's capab

06 Aug 2026, 14:19 UTC View advisory →
CVE-2026-15245 Unscored

The BNE Testimonials WordPress plugin before 2.0.8.2 does not properly escape a shortcode attribute for a JavaScript context before echoing it into an inli

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15244 Unscored

The HUSKY WordPress plugin before 1.4.1 does not sanitize a stored setting value against directory traversal before concatenating it into a file inclusion

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15241 Unscored

The AI ChatBot for WooCommerce WordPress plugin before 4.8.4 does not perform any authorization or nonce check on one of its AJAX actions, allowing unauthe

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15236 Unscored

The Gallery for Google Photos WordPress plugin before 1.2.1 does not properly restrict access to the stored third-party OAuth credentials of the connected

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15234 Unscored

The Codeless Page Builder WordPress plugin through 1.1.4 does not sanitize or validate a shortcode attribute before using it as an HTML tag name when rende

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15233 Unscored

The Nested Pages WordPress plugin before 3.2.15 does not properly escape post titles before outputting them into HTML attributes on an administrative listi

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15231 Unscored

The Tag, Category, and Taxonomy Manager WordPress plugin before 3.51.0 does not verify that a user is authorized to access a referenced post before process

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15230 Unscored

The YayPricing WordPress plugin before 3.5.7 does not perform capability checks on several of its REST API routes, relying only on a shared nonce, allowing

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15227 Medium 5.3

Missing authorization in Checkmk <2.5.0p10, <2.4.0p35, <2.3.0p49, and 2.2.0 (EOL) allows an authenticated user lacking the "Edit foreign Reports" permissio

31 Jul 2026, 12:21 UTC View advisory →
CVE-2026-15215 Unscored

The Subscriptions for WooCommerce WordPress plugin before 2.0.1 does not verify the user's capability before installing and activating a Subscriptions for

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15214 Unscored

The Subscriptions for WooCommerce WordPress plugin before 2.0.1 does not verify that the requester owns the subscription being viewed before rendering its

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15210 Unscored

The OTP Login With Phone Number, OTP Verification WordPress plugin before 1.8.71 does not limit the number of OTP verification attempts or invalidate a one

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15209 Unscored

The JS Help Desk WordPress plugin before 3.1.5 does not verify that the requesting user owns the ticket being loaded: a low-privileged authenticated user c

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-15208 Medium 5.3

The RegistrationMagic WordPress plugin before 6.0.9.5 does not compare the verified PayPal capture's amount, currency, payee, or prior use against the regi

06 Aug 2026, 17:07 UTC View advisory →
CVE-2026-15206 Unscored

The SMS Alert WordPress plugin before 3.9.8 does not bind its "mobile verified" session flag to the phone number that was actually verified: after an attac

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15183 Critical 9.2

Multiple input validation vulnerabilities in the Snowflake Spark Connector (spark-snowflake) versions prior to 3.2.1 can allow attackers to exfiltrate OAut

14 Jul 2026, 08:42 UTC View advisory →
CVE-2026-15174 Medium 5.5

Catapult DCT2000 protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service

08 Jul 2026, 20:51 UTC View advisory →
CVE-2026-15173 Medium 4.7

pcapng file parser crash in Wireshark 4.6.0 to 4.6.6 allows denial of service

08 Jul 2026, 20:51 UTC View advisory →
CVE-2026-15172 Medium 5.5

FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service

08 Jul 2026, 20:51 UTC View advisory →
CVE-2026-15171 Medium 5.5

SSH protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service

08 Jul 2026, 20:51 UTC View advisory →
CVE-2026-15170 Medium 5.5

Z39.50 protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service

08 Jul 2026, 20:50 UTC View advisory →
CVE-2026-15169 Medium 5.5

UMTS FP protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service

08 Jul 2026, 20:51 UTC View advisory →
CVE-2026-15168 Low 2.5

BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure

08 Jul 2026, 21:47 UTC View advisory →
CVE-2026-15167 High 7.5

DBS Etherwatch file parser crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service

08 Jul 2026, 20:51 UTC View advisory →
CVE-2026-15166 Medium 5.5

IEEE 802.11 protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service

08 Jul 2026, 20:55 UTC View advisory →
CVE-2026-15165 Medium 5.5

TLS ECH decryptor crash in Wireshark 4.6.0 to 4.6.6 allows denial of service

08 Jul 2026, 20:50 UTC View advisory →
CVE-2026-15164 Medium 5.5

Crash in ciscodump 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service

08 Jul 2026, 20:50 UTC View advisory →
CVE-2026-15163 Medium 5.5

Multiple protocol dissector infinite loops in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allow denial of service

08 Jul 2026, 20:50 UTC View advisory →
CVE-2026-15161 Medium 6.4

The Ninja Forms - Excel Export plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 3.3.6. This is due to th

17 Jul 2026, 03:43 UTC View advisory →
CVE-2026-15160 Medium 4.3

The Ninja Forms - Excel Export plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 3.3.6 via the 'spreadsheet_e

17 Jul 2026, 02:31 UTC View advisory →
CVE-2026-15159 Medium 4.3

The Ninja Forms - Excel Export plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 3.3.6 via the '

17 Jul 2026, 02:31 UTC View advisory →
CVE-2026-15156 Medium 6.4

The Essential Addons for Elementor – Popular Elementor Templates & Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Reading Pr

21 Jul 2026, 04:33 UTC View advisory →
CVE-2026-15155 High 8.8

The Essential Addons for Elementor – Popular Elementor Templates & Widgets plugin for WordPress is vulnerable to Authenticated Account Takeover via Email H

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-15154 Medium 6.5

A flaw was found in `guardrails-detectors`, a component of Red Hat OpenShift AI. This vulnerability, known as Regular Expression Denial of Service (ReDoS),

08 Jul 2026, 19:50 UTC View advisory →
CVE-2026-15152 Medium 5.3

The WP Hotel Booking WordPress plugin before 2.3.2 does not verify that a payment notification corresponds to a payment made to the site's own merchant acc

06 Aug 2026, 17:00 UTC View advisory →
CVE-2026-15151 Unscored

The Five Star Restaurant Reservations WordPress plugin before 2.7.23 does not perform a capability check on one of its AJAX actions, allowing users with th

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15149 Medium 5.3

The WP Hotel Booking WordPress plugin before 2.3.3 does not ensure that room quantities and the resulting order total are non-negative when placing a booki

06 Aug 2026, 17:07 UTC View advisory →
CVE-2026-15147 Medium 5.3

The Five Star Restaurant Reservations WordPress plugin before 2.7.23 does not verify the authenticity of incoming payment notifications, failing to validat

06 Aug 2026, 17:07 UTC View advisory →
CVE-2026-15146 Medium 5.9

GNU Wget does not validate the IP address provided by an FTP PASV response while operating in FTP passive mode. A malicious FTP server, or an HTTP server t

10 Jul 2026, 18:20 UTC View advisory →
CVE-2026-15143 Critical 9.3

A flaw was found in the file_type content detector of guardrails-detectors. This vulnerability allows a remote attacker to supply an arbitrary XML Schema D

10 Jul 2026, 15:25 UTC View advisory →
CVE-2026-15138 Medium 5.3

A security vulnerability has been detected in tumf mcp-text-editor up to 1.0.2. This issue affects the function _validate_file_path of the file mcp_text_ed

09 Jul 2026, 00:15 UTC View advisory →
CVE-2026-15137 Medium 6.9

A weakness has been identified in code-projects Interview Management System 1.0. This vulnerability affects unknown code of the file \inc\classes\View.php.

09 Jul 2026, 00:00 UTC View advisory →
CVE-2026-15136 Medium 4.3

The Cookie Banner for GDPR / CCPA – WPLP Cookie Consent plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includi

28 Jul 2026, 05:39 UTC View advisory →
CVE-2026-15135 Medium 6.9

A security flaw has been discovered in code-projects Online Food Order System 1.0. This affects an unknown part of the file /edit_food_items.php. The manip

08 Jul 2026, 23:30 UTC View advisory →
CVE-2026-15134 Medium 6.9

A vulnerability was determined in CodeAstro Simple Online Leave Management System 1.0. Affected by this vulnerability is an unknown functionality of the fi

08 Jul 2026, 23:00 UTC View advisory →
CVE-2026-15133 Unscored

Use after free in InterestGroups in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafte

08 Jul 2026, 22:35 UTC View advisory →
CVE-2026-15132 Unscored

Uninitialized Use in V8 in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML pa

08 Jul 2026, 22:35 UTC View advisory →
CVE-2026-15131 Unscored

Inappropriate implementation in Navigation in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to bypass site isolation via a crafted HTML p

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15130 Unscored

Insufficient policy enforcement in Navigation in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to bypass site isolation via a crafted HTM

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15129 Unscored

Use after free in Views in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

08 Jul 2026, 22:35 UTC View advisory →
CVE-2026-15128 Unscored

Inappropriate implementation in Forms in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a c

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15127 Unscored

Inappropriate implementation in WebGL in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a c

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15126 Unscored

Use after free in Forms in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML pa

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15125 Unscored

Inappropriate implementation in Forms in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a c

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15124 Unscored

Insufficient policy enforcement in Passwords in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to bypass same origin policy via a crafted

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15123 Unscored

Inappropriate implementation in DOM in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via a crafted

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15122 Unscored

Insufficient validation of untrusted input in Codecs in Google Chrome on Windows prior to 150.0.7871.115 allowed a remote attacker who had compromised the

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15121 Unscored

Use after free in WebRTC in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML p

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15120 Unscored

Use after free in Core in Google Chrome on Windows prior to 150.0.7871.115 allowed a remote attacker who had compromised the renderer process to potentiall

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15119 Unscored

Race in GetUserMedia in Google Chrome prior to 150.0.7871.115 allowed a remote attacker who had compromised the renderer process to potentially perform a s

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15118 Unscored

Use after free in Input in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML pa

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15117 Unscored

Use after free in Payments in Google Chrome prior to 150.0.7871.115 allowed a remote attacker who convinced a user to engage in specific UI gestures to pot

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15116 Unscored

Use after free in Actor in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML pa

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15115 Unscored

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Android prior to 150.0.7871.115 allowed a local attacker to bypass same or

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15114 Unscored

Out of bounds read and write in Codecs in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via a craf

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15113 Unscored

Use after free in Autofill in Google Chrome on Android prior to 150.0.7871.115 allowed a remote attacker to potentially perform a sandbox escape via a craf

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15112 Unscored

Use after free in Ozone in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

08 Jul 2026, 22:35 UTC View advisory →
CVE-2026-15111 Unscored

Use after free in Views in Google Chrome prior to 150.0.7871.115 allowed a remote attacker who convinced a user to engage in specific UI gestures to potent

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15110 Unscored

Use after free in Extensions in Google Chrome prior to 150.0.7871.115 allowed an attacker who convinced a user to install a malicious extension to potentia

08 Jul 2026, 22:35 UTC View advisory →
CVE-2026-15109 Unscored

Uninitialized Use in ANGLE in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to obtain potentially sensitive information from process memo

08 Jul 2026, 22:35 UTC View advisory →
CVE-2026-15108 Unscored

Integer overflow in Extensions API in Google Chrome prior to 150.0.7871.115 allowed an attacker who convinced a user to install a malicious extension to pe

08 Jul 2026, 22:35 UTC View advisory →
CVE-2026-15107 Unscored

Use after free in IndexedDB in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTM

08 Jul 2026, 22:36 UTC View advisory →
CVE-2026-15106 Medium 5.3

The WPBot – AI ChatBot for Live Support, Lead Generation, AI Services plugin for WordPress is vulnerable to authorization bypass in all versions up to, and

16 Jul 2026, 07:51 UTC View advisory →
CVE-2026-15105 Medium 5.3

A flaw has been found in davenardella snap7 up to 1.4.3. This affects the function TS7Worker::PerformFunctionRead of the file src/core/s7_server.cpp of the

08 Jul 2026, 22:15 UTC View advisory →
CVE-2026-15104 Medium 6.5

The BetterDocs – AI Documentation, Knowledge Base, Docs, Wikis, FAQ with Chatbot plugin for WordPress is vulnerable to generic SQL Injection via the 'lang'

10 Jul 2026, 07:48 UTC View advisory →
CVE-2026-15103 High 8.8

The WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell plugin for WordPress is vulnerable to Privilege Escalation via arbitrary op

16 Jul 2026, 08:26 UTC View advisory →
CVE-2026-15099 Medium 6.4

The Delicious Recipes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'steps' block attribute in versions up to, and including, 1

16 Jul 2026, 07:51 UTC View advisory →
CVE-2026-15097 Medium 6.4

The Themify Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'height_slider' Slider Module Field in all versions up to, and in

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-15096 Medium 6.4

The Themify Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Map Module 'b_width_map' Field in all versions up to, and includi

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-15094 Medium 6.1

The WP Hotel Booking plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'check_in_date' parameter in all versions up to, and incl

17 Jul 2026, 05:35 UTC View advisory →
CVE-2026-15093 Medium 4.3

IBM Engineering AI Hub 1.0.0, 1.1.0, and 1.2.0 could allow a remote attacker to redirect users to malicious websites due to improper validation of user-sup

17 Jul 2026, 19:37 UTC View advisory →
CVE-2026-15091 Critical 9.3

IBM Engineering AI Hub 1.0.0, 1.1.0, and 1.2.0 could allow a remote attacker to execute arbitrary scripts due to improper neutralization of input during we

17 Jul 2026, 19:38 UTC View advisory →
CVE-2026-15089 Unscored

vulnerability in Drupal Commerce guest registration allows . This issue affects Commerce guest registration versions: *.*.

10 Jul 2026, 21:54 UTC View advisory →
CVE-2026-15087 Unscored

vulnerability in Drupal Clean RESTful allows . This issue affects Clean RESTful versions: *.*.

10 Jul 2026, 21:57 UTC View advisory →
CVE-2026-15086 Unscored

vulnerability in Drupal Raw Formatter [Meta Tag Formatter] allows . This issue affects Raw Formatter [Meta Tag Formatter] versions: *.*.

10 Jul 2026, 21:57 UTC View advisory →
CVE-2026-15085 Unscored

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal AI SEO/GEO Analyzer allows Stored XSS. This is

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-15084 Unscored

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal UI Patterns (SDC in Drupal UI) allows Stored X

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-15083 Unscored

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal ECA: Event - Condition - Action allows Object Inject

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-15082 Unscored

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Siteimprove Analytics allows Cross-Site Script

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-15081 Unscored

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Drupal Location Selector allows SQL Injection. This i

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-15080 Unscored

Cross-Site Request Forgery (CSRF) vulnerability in Drupal Ray Enterprise Translation allows Cross Site Request Forgery. This issue affects Ray Enterprise T

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-15079 Unscored

Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Login Disable allows Brute Force. This issue affects Login Disable versio

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-15076 High 8.2

In versions up to and including 4.5.29 (4.x branch) and 5.1.4 (5.x branch), the WebClientSession component of Eclipse Vert.x Web Client does not validate t

14 Jul 2026, 08:09 UTC View advisory →
CVE-2026-15075 High 8.2

In Eclipse Vert.x versions up to and including 4.5.29 (4.x branch) and 5.1.4 (5.x branch), DefaultRedirectHandler (vertx-core) propagates all request heade

14 Jul 2026, 08:15 UTC View advisory →
CVE-2026-15074 High 7.5

@fastify/static up to and including version 10.1.0 fails to reject dot-dot path segments in request pathnames before the file-resolution stage. This is a b

23 Jul 2026, 03:01 UTC View advisory →
CVE-2026-15073 Medium 6.5

The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to generic SQL Injection via the 'orderby' parameter in all vers

11 Jul 2026, 02:31 UTC View advisory →
CVE-2026-15072 Medium 6.5

The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to generic SQL Injection via the 'orderby' parameter in all vers

11 Jul 2026, 02:31 UTC View advisory →
CVE-2026-15069 Medium 5.4

IBM Engineering AI Hub 1.0.0, 1.1.0, and 1.2.0 could allow a remote attacker to execute arbitrary script code due to improper neutralization of input durin

17 Jul 2026, 19:40 UTC View advisory →
CVE-2026-15067 High 8.8

Snowflake Terraform Provider versions prior to 2.18.0 contain several security vulnerabilities, including SQL injection via an unsanitized data source inpu

08 Jul 2026, 14:43 UTC View advisory →
CVE-2026-15063 Medium 6.3

A flaw was found in the gorch service template, which is part of the trustyai-service-operator. Even when authentication is enabled, the gorch service expo

08 Jul 2026, 14:58 UTC View advisory →
CVE-2026-15062 Critical 9.6

SQL injection vulnerabilities in the Snowflake Snowpark Python SDK (snowpark-python) versions prior to 1.53.0 could allow authenticated low-privilege users

08 Jul 2026, 14:32 UTC View advisory →
CVE-2026-15058 Unscored

Improper authorization in the secure messages deletion endpoint in Devolutions Server 2026.2.11, 2026.1.22 allows an authenticated user to delete another u

14 Jul 2026, 18:11 UTC View advisory →
CVE-2026-15055 Medium 5.3

In Bouncy Castle for Java before 1.85, PKCS#8 / PBES2 decryptors honour unbounded KDF cost from input. This issue also affects Bouncy Castle for Java LTS b

03 Aug 2026, 00:32 UTC View advisory →
CVE-2026-15053 High 7.5

Tanium addressed a denial of service vulnerability in Tanium Server.

08 Jul 2026, 13:46 UTC View advisory →
CVE-2026-15052 High 7.2

The MailChimp Subscribe Form, Optin Builder, PopUp Builder, Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Form Field V

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-15048 Unscored

The Geeky Bot WordPress plugin before 1.2.8 does not perform an authorization check on one of its AJAX actions, allowing unauthenticated users to retrieve

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-15044 Medium 6.3

A flaw was found in the TrustyAI Service Operator. When deploying services like gorch or NemoGuardrails, if a specific security setting is not enabled, the

08 Jul 2026, 14:37 UTC View advisory →
CVE-2026-15043 Critical 9.8

DBI::SQL::Nano versions from 1.42 before 1.651 for Perl have inverted <= and >= SQL operators on text. DBI::SQL::Nano, DBI's built-in mini-SQL engine, eval

14 Jul 2026, 09:44 UTC View advisory →
CVE-2026-15041 Low 3.7

A flaw was found in 389 Directory Server. The PBKDF2-SHA256 password verification function uses standard memcmp() for comparing password hashes instead of

08 Jul 2026, 10:15 UTC View advisory →
CVE-2026-15036 Medium 5.3

A vulnerability was determined in Harness up to 2.28.2. This vulnerability affects the function getAuthorizedSpaces of the file app/api/controller/gitspace

08 Jul 2026, 14:30 UTC View advisory →
CVE-2026-15035 Medium 4.8

A vulnerability was found in bentoml OpenLLM 0.6.30. This affects the function async_run_command of the file src/openllm/common.py of the component Model R

08 Jul 2026, 14:00 UTC View advisory →
CVE-2026-15034 Medium 5.3

A vulnerability has been found in flask-dashboard Flask-MonitoringDashboard up to 5.0.2. Affected by this issue is some unknown functionality. Such manipul

08 Jul 2026, 13:30 UTC View advisory →
CVE-2026-15033 Medium 5.3

A flaw has been found in christopherthielen check-peer-dependencies up to 4.3.4. Affected by this vulnerability is the function shelljs.exec of the file di

08 Jul 2026, 13:15 UTC View advisory →
CVE-2026-15032 Unscored

The Comments WordPress plugin before 7.6.60 does not properly escape a user-supplied URL before outputting it inside an HTML attribute, allowing unauthenti

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-15030 Medium 5.6

Out-of-bounds Read in ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Business Manager allows a local administrator to read memor

15 Jul 2026, 02:01 UTC View advisory →
CVE-2026-15029 High 8.4

Untrusted Pointer Dereference in ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Business Manager allows a local administrator to

15 Jul 2026, 02:01 UTC View advisory →
CVE-2026-15028 Low 3.9

A flaw was found in libarchive. This vulnerability allows a remote attacker to trigger a heap overflow by providing a specially crafted tar archive. The is

10 Jul 2026, 09:55 UTC View advisory →
CVE-2026-15026 Medium 4.3

The Import and export users and customers plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.4.0

10 Jul 2026, 08:30 UTC View advisory →
CVE-2026-15022 Medium 6.5

The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to generic SQL Injection via Stored Quiz Answer Array in all versio

16 Jul 2026, 07:51 UTC View advisory →
CVE-2026-15021 Medium 6.4

The wpForo Forum plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'location' Profile Field in all versions up to, and including, 3.1.1

16 Jul 2026, 08:26 UTC View advisory →
CVE-2026-15018 Medium 5.3

The Database Collation Fix plugin for WordPress is vulnerable to time-based SQL Injection via the 'force-collation-algorithm' parameter in all versions up

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-15013 Critical 9.8

The SAML Single Sign On – SSO Login plugin for WordPress is vulnerable to Authentication Bypass via SAML Signature Algorithm Confusion in all versions up t

16 Jul 2026, 03:44 UTC View advisory →
CVE-2026-15012 Medium 5.3

The Demi – One Click Demo Import, WP Backup & Site Migration plugin for WordPress is vulnerable to Arbitrary Directory Copy in all versions up to, and incl

28 Jul 2026, 05:39 UTC View advisory →
CVE-2026-15008 High 8.1

The Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin plugin for WordPress is vulnerable to arbitrary file deletion due

16 Jul 2026, 07:51 UTC View advisory →
CVE-2026-15007 Medium 5.7

A denial of service vulnerability was identified in GitHub Enterprise Server that allowed an authenticated user to cause service disruption by supplying a

17 Jul 2026, 15:16 UTC View advisory →
CVE-2026-15006 High 7.5

The Bit integrations – Form Integration, Webhook, Spreadsheets, CRM, LMS & Email Automation plugin for WordPress is vulnerable to Directory Traversal in al

01 Aug 2026, 01:29 UTC View advisory →
CVE-2026-15005 High 8.8

The Loco Translate plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.8.5. This is due to missing or

16 Jul 2026, 08:26 UTC View advisory →
CVE-2026-15003 Medium 5.6

A flaw was found in the GNU Binutils (Binary Utilities) linker. This vulnerability, a heap-buffer-overflow read (CWE-125), occurs when the linker processes

27 Jul 2026, 13:22 UTC View advisory →
CVE-2026-14987 Medium 6.4

The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'twitter_message' Sequoia Templ

16 Jul 2026, 02:30 UTC View advisory →
CVE-2026-14985 Unscored

The Analog Way Picturall Quad Compact Mark II version 3.5.8, contains a local privilege escalation vulnerability in the core firmware. This is due to impro

22 Jul 2026, 14:32 UTC View advisory →
CVE-2026-14980 High 8.3

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to cross-site request forgery which could allow an attacker to perform S

30 Jul 2026, 14:09 UTC View advisory →
CVE-2026-14979 Medium 5.3

IBM Engineering Lifecycle Management 7.0.3 ( Interim Fix 001 through ) Interim Fix 021, 7.1.0 ( Interim Fix 001 through ) Interim Fix 009, and 7.2.0 and 7.

17 Jul 2026, 19:49 UTC View advisory →
CVE-2026-14971 Low 3.9

IBM PowerVM Novalink 2.2.02.2.12.2.1.1, and 2.3.02.3.0.12.3.12.3.2 IBM NovaLink APIs misconfiguration may increase attack surface and enable unintended or

17 Jul 2026, 19:49 UTC View advisory →
CVE-2026-14969 Medium 4.4

A flaw was found in 389-ds-base where the LDBM backend attribute encryption uses a hardcoded static initialization vector for AES-CBC and 3DES-CBC operatio

07 Jul 2026, 15:48 UTC View advisory →
CVE-2026-14967 Low 3.1

BBOT's `github_workflows` module could be induced to write a downloaded artifact outside its configured output directory: its path-containment check did no

08 Jul 2026, 15:03 UTC View advisory →
CVE-2026-14966 Low 3.1

BBOT's unarchive module rejects archives containing symlink entries before extraction, but for zip and 7z archives it failed to detect symlinks whose listi

08 Jul 2026, 15:03 UTC View advisory →
CVE-2026-14961 Medium 6.2

Pegatron `Tdelo64.sys` exposes a privileged device interface, `\\.\TdeIo`, that fails to properly restrict access to sensitive IOCTL functionality. The dri

15 Jul 2026, 17:09 UTC View advisory →
CVE-2026-14960 Unscored

Pegatron `Tdelo64.sys` improperly exposes privileged hardware access functionality through the `\\.\TdeIo` device interface. IOCTL handlers including `TDE_

15 Jul 2026, 17:08 UTC View advisory →
CVE-2026-14956 Critical 9.8

The Bricksforge plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.1.8.6. This is due to improper validatio

17 Jul 2026, 01:30 UTC View advisory →
CVE-2026-14943 Unscored

The Password Protected — Lock Entire Site, Pages, Posts, Categories, and Partial Content WordPress plugin before 2.8.4 does not restrict REST API access to

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14940 Medium 5.3

A heap-buffer-overflow flaw was found in 389 Directory Server (389-ds-base). When normalizing a Distinguished Name (DN) that contains a legacy-quoted value

07 Jul 2026, 13:54 UTC View advisory →
CVE-2026-14939 Unscored

The Visualizer WordPress plugin before 4.0.6 does not restrict a user-supplied URL to safe address ranges before fetching it server-side, allowing users wi

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14938 Unscored

The FluentBoards WordPress plugin before 1.95.3 does not verify that the items selected for a board import operation belong to a board the requesting user

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14936 Medium 5.3

The Simple Membership WordPress plugin before 4.7.7 does not verify that a PayPal payment notification was sent to the site's own configured merchant accou

06 Aug 2026, 17:04 UTC View advisory →
CVE-2026-14935 Low 3.7

A logic vulnerability was found in GStreamer's webrtcbin component. The _check_sdp_crypto() function contains an inverted boolean condition that causes it

07 Jul 2026, 15:37 UTC View advisory →
CVE-2026-14934 Critical 9.4

A Missing Authorization vulnerability in the repository creation functionality in Google Cloud BigQuery, Dataform and Colab Enterprise, in the versions bet

13 Jul 2026, 10:20 UTC View advisory →
CVE-2026-14932 Medium 6.5

In Progress® Telerik® UI for AJAX prior to v2026.2.708, the obsolete RadChart component's ChartImage.axd handler is vulnerable to unauthenticated file read

22 Jul 2026, 13:46 UTC View advisory →
CVE-2026-14931 Unscored

The JS Help Desk WordPress plugin before 3.1.4 grants a support-agent capability to the Contributor role on activation and does not perform a capability ch

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14930 Unscored

The JS Help Desk WordPress plugin before 3.1.4 does not perform any authorization, nonce, or ownership check on a front-end request dispatcher, allowing un

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14929 Unscored

The JS Help Desk WordPress plugin before 3.1.4 does not verify ownership of the targeted reply before updating it, allowing any authenticated user (Subscri

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14928 Unscored

The JS Help Desk WordPress plugin before 3.1.4 does not perform authorization or ownership checks before returning support-ticket content in a nonce-gated

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14927 Unscored

The FluentCart A New Era of eCommerce WordPress plugin before 1.5.3 does not perform any authorization or ownership check before rendering customer order d

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14926 Unscored

The FluentCart A New Era of eCommerce WordPress plugin before 1.4.0 does not verify that a subscription belongs to the requesting customer in several of it

28 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14924 Unscored

The Tablesome Table WordPress plugin before 1.1.31 does not perform any authentication, capability, or nonce checks in one of its AJAX actions, allowing un

28 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14922 Unscored

WP Photo Album Plus is vulnerable to stored Cross-Site Scripting in all versions up to, and including, 9.2.03.001 through a decode-after-sanitize (double-e

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14921 Unscored

The Ultimate Addons for WPBakery Page Builder WordPress plugin before 3.21.5's shared link-rendering function, Ultimate_VC_Addons::uavc_link_init(),

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14920 Unscored

## Summary

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14919 Unscored

The ShopMonitor.io WordPress plugin before 1.2.0 does not properly restrict its email-rerouting test mode, gating it behind a trusted-source check that is

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14906 Medium 5.3

Pages with malicious titles could potentially allow saved PDF content to overwrite PDF files or bundled content within the Firefox for iOS application sand

13 Jul 2026, 18:27 UTC View advisory →
CVE-2026-14904 High 7.1

AWS Research and Engineering Studio (RES) is an open-source solution that enables researchers and engineers to create and manage secure virtual desktops an

07 Jul 2026, 16:37 UTC View advisory →
CVE-2026-14903 High 7.7

Path traversal in Ivanti Xtraction before version 2026.2.1 allows a remote authenticated attacker to read arbitrary files outside the web root.

14 Jul 2026, 14:26 UTC View advisory →
CVE-2026-14902 Medium 4

An open redirect in Ivanti Xtraction before version 2026.2.1 allows a remote unauthenticated attacker to redirect users to arbitrary external URLs.

14 Jul 2026, 14:23 UTC View advisory →
CVE-2026-14899 Unscored

The code to parse MIME headers for display when forwarding a message (if the setting to view all headers was enabled) had an off-by-one error, allowing a s

22 Jul 2026, 19:19 UTC View advisory →
CVE-2026-14896 Medium 4.2

HashiCorp Nomad and Nomad Enterprise are vulnerable to a cross-namespace authorization bypass in the dynamic host volumes feature that may allow an operato

08 Jul 2026, 20:21 UTC View advisory →
CVE-2026-14895 Unscored

String::Util versions before 1.36 for Perl are susceptible to a regular expression denial of service. The trim and rtrim functions stripped trailing whites

07 Jul 2026, 22:12 UTC View advisory →
CVE-2026-14891 High 8.7

HashiCorp Nomad and Nomad Enterprise are vulnerable to a sandbox escape in the Docker task driver that may allow a job submitter to bind-mount a host path

08 Jul 2026, 20:09 UTC View advisory →
CVE-2026-14890 Critical 9.1

SGLang uses an expert-parallel backup subsystem that exposes a ZeroMQ PULL socket on a routable network interface that does not contain authentication or d

16 Jul 2026, 14:43 UTC View advisory →
CVE-2026-14881 High 8.4

When importing connections in Compass it is possible to override some connection options that are otherwise can't be changed via connection form. In partic

22 Jul 2026, 19:23 UTC View advisory →
CVE-2026-14872 Unscored

The Database for Contact Form 7, WPforms, Elementor forms WordPress plugin before 1.5.5 does not properly sanitise and escape a parameter before using it i

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14871 High 7.1

osTicket versions v1.18.3 and v1.17.7 contain a Broken Object Level Authorization (BOLA) leading to Insecure Direct Object Reference (IDOR) in the AJAX tic

17 Jul 2026, 14:55 UTC View advisory →
CVE-2026-14870 Unscored

The Database for Contact Form 7, WPforms, Elementor forms WordPress plugin before 1.5.3 does not properly sanitise and escape a parameter before reflecting

28 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14868 High 8.4

The encryption algorithm used to protect the configuration of user accounts, stored in the built-in user directory of PcVue projects, all versions prior to

07 Jul 2026, 09:26 UTC View advisory →
CVE-2026-14867 Medium 6.8

Credentials of built-in users are insecurely stored in the User directory of PcVue projects, all versions prior to 17.0.0. A local attacker could retrieve

07 Jul 2026, 09:25 UTC View advisory →
CVE-2026-14865 Medium 5.3

In Progress® Telerik® UI for AJAX prior to v2026.2.708, the internal LayoutBuilder control processes client-state XML without disabling DTD processing, all

22 Jul 2026, 13:45 UTC View advisory →
CVE-2026-14864 Unscored

The JetEngine WordPress plugin before 3.8.12 does not escape a post meta value before outputting it through one of its shortcodes, allowing users with the

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14862 Unscored

The Support Genix WordPress plugin before 1.4.48 does not properly authorize access to support-ticket attachment downloads, allowing unauthenticated users

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14856 Medium 6.3

A stored Cross-Site Scripting (XSS) vulnerability in the file upload functionality of the Media Manager in TastyIgniter v4.3.0, caused by insufficient vali

27 Jul 2026, 10:15 UTC View advisory →
CVE-2026-14852 Medium 5.2

Privilege escalation in Checkmk versions 2.5.0 before 2.5.0p9, 2.4.0 before 2.4.0p34, 2.3.0 before 2.3.0p49, and 2.2.0 (EOL) allows a local unprivileged us

14 Jul 2026, 09:26 UTC View advisory →
CVE-2026-14849 Unscored

The Paid Membership Subscriptions WordPress plugin before 3.0.7 does not protect the member and payment export files it writes to a predictable location in

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14848 Unscored

The Paid Membership Subscriptions WordPress plugin before 3.0.8 does not verify that the subscription being modified through its change-subscription checko

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14847 Unscored

The Paid Membership Subscriptions WordPress plugin before 3.0.7 does not perform capability or nonce checks on one of its payment-related AJAX actions, all

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14846 Medium 4.5

In version 8.2.1 of PrestaShop, there is a vulnerability relating to the incorrect sanitisation of elements, caused by inadequate validation of the ‘Alias’

13 Jul 2026, 09:31 UTC View advisory →
CVE-2026-14845 Unscored

The NewStatPress WordPress plugin before 1.4.5 does not sanitise and escape data derived from unauthenticated visitor requests before storing it and later

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14843 Unscored

The Events Made Easy WordPress plugin before 3.1.4 does not verify that the requester is authorized to modify the targeted record when handling an unauthen

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14842 Medium 5.3

The Events Made Easy WordPress plugin before 3.1.2 does not bind the payment authorization token to the payment record being charged, allowing unauthentica

06 Aug 2026, 17:00 UTC View advisory →
CVE-2026-14841 Unscored

The King Addons for Elementor WordPress plugin before 51.1.76 does not escape a user-supplied grid setting before reflecting it into an HTML attribute in a

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14840 Unscored

The YOP Poll WordPress plugin before 7.0.6 does not validate the connection's origin IP address and instead trusts client-controlled forwarding headers whe

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14839 Unscored

The Mapster WP Maps WordPress plugin before 1.24.0 does not perform any authorization or post-status check on a public REST endpoint, allowing unauthentica

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14838 High 7.4

Use of GET request method with sensitive query strings vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources al

04 Aug 2026, 08:42 UTC View advisory →
CVE-2026-14837 High 8.5

Multiple Lenze products are affected by an improper signature verification vulnerability in the SSH enablement mechanism. A low-privileged local attacker c

27 Jul 2026, 07:03 UTC View advisory →
CVE-2026-14836 Unscored

The Login & Register Forms WordPress plugin before 3.2.5 does not properly enforce the rate limit on its password-reset verification-code flow, keying both

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14834 Unscored

The Mailgun for WordPress plugin before 2.2.1 does not perform any capability or nonce check on an unauthenticated AJAX action that adds subscribers to the

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14833 Unscored

The Lightbox with PhotoSwipe WordPress plugin before 5.9.0 does not sanitise or escape a link data attribute before rendering it into the image lightbox ca

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14831 Medium 5.3

The Easy Booking WordPress plugin before 3.5.0 does not re-enforce a bookable product's configured minimum booking duration on the server side when adding

06 Aug 2026, 17:04 UTC View advisory →
CVE-2026-14830 Unscored

The FlxWoo WordPress plugin before 3.1.1 does not verify with the payment processor that a checkout session was actually paid before marking the associated

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14829 Unscored

The Checkimate — WooCommerce Checkout, Abandoned Cart Recovery & Order Bumps WordPress plugin through 1.0.13 does not properly restrict access to its licen

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14824 Unscored

The Quiz and Survey Master (QSM) WordPress plugin before 11.2.2 does not properly escape a question setting before outputting it into an unquoted HTML attr

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14823 Unscored

The Event Tickets and Registration WordPress plugin before 5.29.0.1 does not properly verify authorization on some of its seating actions, allowing users w

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14822 Unscored

The Event Tickets and Registration WordPress plugin before 5.29.0.1 does not perform any authorization check on one of its order-management REST endpoints,

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14821 Unscored

The Quiz and Survey Master (QSM) WordPress plugin before 11.1.5 does not perform a capability check before deleting output templates, allowing users with c

28 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14819 Unscored

The Event Tickets and Registration WordPress plugin before 5.28.4 does not properly escape event titles before outputting them in a ticket history log, all

28 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14818 High 7.2

A path traversal vulnerability in the CLI command used to execute configuration files in Zyxel ATP series firmware versions from V4.32 through V5.42 Patch

04 Aug 2026, 02:28 UTC View advisory →
CVE-2026-14817 Unscored

The Element Pack Addons for Elementor WordPress plugin before 8.7.13 does not sanitize option values passed through certain data attributes before a bundle

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14816 Unscored

The GDPR Framework By Data443 WordPress plugin before 2.4.0 does not properly verify authorization or the identity of the data subject when recording cooki

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14812 Critical 10

The Premium SEO WordPress plugin is malicious: it ships an unauthenticated backdoor that creates a hidden administrator account and, in some builds, also e

06 Aug 2026, 16:52 UTC View advisory →
CVE-2026-14804 Critical 9.1

Use of hard-coded cryptographic key vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Read Sensitive

04 Aug 2026, 08:37 UTC View advisory →
CVE-2026-14782 Medium 4.9

The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is vulnerable to SQL Injection via the Customer Import in all versions up to

16 Jul 2026, 21:30 UTC View advisory →
CVE-2026-14781 Medium 4.8

A flaw exists in the org.keycloak.broker.oidc package where the OIDC broker incorrectly synchronizes the email_verified claim. When an OIDC identity provid

05 Jul 2026, 06:55 UTC View advisory →
CVE-2026-14741 Unscored

HTTP::Date versions before 6.08 for Perl allow CPU exhaustion via polynomial regex backtracking in parse_date. parse_date() matches the date string against

17 Jul 2026, 15:20 UTC View advisory →
CVE-2026-14740 Unscored

DBI versions before 1.650 for Perl read one byte out-of-bounds in preparse when deleting an initial SQL comment. The preparse method normalises SQL and rem

07 Jul 2026, 22:05 UTC View advisory →
CVE-2026-14739 Unscored

DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholders. The fix for CVE-2026-10879 d

07 Jul 2026, 22:05 UTC View advisory →
CVE-2026-14717 Medium 5.3

A vulnerability was detected in itsourcecode Hospital Management System 1.0. The affected element is an unknown function of the file /patientlogin.php. Per

05 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14716 Medium 5.3

A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.13.0-beta.2. Impacted is the function MethodRouter.Handle of the file interna

05 Jul 2026, 05:45 UTC View advisory →
CVE-2026-14714 Medium 6.9

A weakness has been identified in zhayujie chatgpt-on-wechat CowAgent 2.1.0. This issue affects the function verify_server of the file channel/wechatmp/com

05 Jul 2026, 05:30 UTC View advisory →
CVE-2026-14713 Medium 6.9

A security flaw has been discovered in SourceCodester Pizzafy E-Commerce System 1.0. This vulnerability affects unknown code of the file /admin/ajax.php?ac

05 Jul 2026, 05:15 UTC View advisory →
CVE-2026-14706 Medium 5.3

A vulnerability was identified in code-projects Online Examination 1.0. This affects an unknown part of the file /update.php?q=addquiz of the component Qui

05 Jul 2026, 05:00 UTC View advisory →
CVE-2026-14705 Medium 6.9

A vulnerability was determined in code-projects Online Examination 1.0. Affected by this issue is some unknown functionality of the file head.php. Executin

05 Jul 2026, 04:45 UTC View advisory →
CVE-2026-14704 Medium 5.3

A vulnerability was found in stephen-kruger bluebox up to 4.5.12. Affected by this vulnerability is an unknown functionality. Performing a manipulation of

05 Jul 2026, 04:30 UTC View advisory →
CVE-2026-14703 Medium 5.3

A vulnerability has been found in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /patientorder.php. Such manipula

05 Jul 2026, 04:15 UTC View advisory →
CVE-2026-14702 Low 2

A flaw has been found in zcaceres markdownify-mcp up to 1.1.0. This impacts the function saveToTempFile of the file src/Markdownify.ts of the component web

05 Jul 2026, 04:00 UTC View advisory →
CVE-2026-14701 Medium 5.3

A vulnerability was detected in code-projects Internship Management System 1.0. This affects an unknown function of the file employer/details/change_passwo

05 Jul 2026, 03:45 UTC View advisory →
CVE-2026-14700 Medium 6.9

A security vulnerability has been detected in code-projects Internship Management System 1.0. The impacted element is an unknown function of the file emplo

05 Jul 2026, 03:30 UTC View advisory →
CVE-2026-14699 Medium 4.8

A weakness has been identified in zcaceres markdownify-mcp up to 1.1.0. The affected element is the function assertPathAllowed of the file src/Markdownify.

05 Jul 2026, 03:15 UTC View advisory →
CVE-2026-14698 Medium 5.3

A security flaw has been discovered in SourceCodester Syllabus-Aligned Learning Management and Examination System 1.0. Impacted is an unknown function of t

05 Jul 2026, 03:00 UTC View advisory →
CVE-2026-14695 Medium 6.9

A vulnerability was found in SourceCodester Multi-Vendor Online Grocery Management System 1.0. This affects the function save_client of the file classes/Us

05 Jul 2026, 02:45 UTC View advisory →
CVE-2026-14694 Medium 5.3

A vulnerability has been found in SourceCodester Multi-Vendor Online Grocery Management System 1.0. Affected by this issue is the function cancel_order of

05 Jul 2026, 02:30 UTC View advisory →
CVE-2026-14693 Medium 5.3

A flaw has been found in SourceCodester Multi-Vendor Online Grocery Management System 1.0. Affected by this vulnerability is the function cancel_order of t

05 Jul 2026, 02:15 UTC View advisory →
CVE-2026-14692 Medium 5.3

A vulnerability was detected in SourceCodester Multi-Vendor Online Grocery Management System 1.0/5.7.26. Affected is the function save_shop_type of the fil

05 Jul 2026, 02:00 UTC View advisory →
CVE-2026-14691 Medium 5.3

A security vulnerability has been detected in SourceCodester Multi-Vendor Online Grocery Management System 1.0. This impacts the function update_settings_i

05 Jul 2026, 01:45 UTC View advisory →
CVE-2026-14690 Medium 6.9

A weakness has been identified in SourceCodester Multi-Vendor Online Grocery Management System 1.0. This affects the function save_users of the file classe

05 Jul 2026, 01:30 UTC View advisory →
CVE-2026-14689 Medium 5.3

A security flaw has been discovered in CodeAstro Apartment Visitor Management System 1.0. The impacted element is an unknown function of the file /apartmen

05 Jul 2026, 01:15 UTC View advisory →
CVE-2026-14688 Medium 6.9

A vulnerability was identified in itsourcecode Online Hotel Management System 1.0. The affected element is an unknown function of the file /admin/login.php

05 Jul 2026, 01:00 UTC View advisory →
CVE-2026-14687 Medium 6.9

A vulnerability was determined in 666ghj BettaFish up to 1.2.1. Impacted is the function _deduplicate_results of the file InsightEngine/agent.py of the com

05 Jul 2026, 00:30 UTC View advisory →
CVE-2026-14686 Medium 4.8

A vulnerability was found in HdrHistogram up to 2.2.2. This issue affects the function org.HdrHistogram.DoubleHistogram.recordValue of the file src/main/ja

05 Jul 2026, 00:00 UTC View advisory →
CVE-2026-14685 Medium 4.8

A vulnerability has been found in HdrHistogram up to 2.2.2. This vulnerability affects the function recordValueWithCount of the file src/main/java/org/HdrH

04 Jul 2026, 23:45 UTC View advisory →
CVE-2026-14684 Medium 4.8

A flaw has been found in HdrHistogram up to 2.2.2. This affects the function org.HdrHistogram.AbstractHistogram.decodeFromByteBuffer of the file src/main/j

04 Jul 2026, 23:30 UTC View advisory →
CVE-2026-14683 Medium 4.8

A vulnerability was detected in HdrHistogram up to 2.2.2. Affected by this issue is the function org.HdrHistogram.AbstractHistogram.decodeFromCompressedByt

04 Jul 2026, 23:00 UTC View advisory →
CVE-2026-14682 High 8.7

In Bouncy Castle for Java before 1.85, Possible OOM from unbounded up-front allocation on a definite-length read. This issue also affects Bouncy Castle for

03 Aug 2026, 02:44 UTC View advisory →
CVE-2026-14660 Medium 6.9

A vulnerability was found in code-projects Online Job Portal 1.0. The affected element is an unknown function of the file login.php. Performing a manipulat

04 Jul 2026, 22:30 UTC View advisory →
CVE-2026-14659 Medium 5.3

A vulnerability has been found in itsourcecode Hospital Management System 1.0. Impacted is an unknown function of the file /patientappointment.php. Such ma

04 Jul 2026, 22:15 UTC View advisory →
CVE-2026-14658 Medium 5.3

A vulnerability was detected in code-projects Assessment Management 1.0. This vulnerability affects unknown code of the file /lecturer/marking-scheme.php.

04 Jul 2026, 22:00 UTC View advisory →
CVE-2026-14657 Medium 5.3

A flaw has been found in code-projects Assessment Management 1.0. This issue affects some unknown processing of the file /lecturer/marking-scheme.php of th

04 Jul 2026, 21:45 UTC View advisory →
CVE-2026-14656 Medium 5.3

A security vulnerability has been detected in code-projects Assessment Management 1.0. This affects an unknown part of the file /admin/remove-user.php. The

04 Jul 2026, 21:30 UTC View advisory →
CVE-2026-14655 Medium 4.8

A weakness has been identified in code-projects Assessment Management 1.0. Affected by this issue is some unknown functionality of the file admin/view-user

04 Jul 2026, 21:15 UTC View advisory →
CVE-2026-14654 Medium 6.9

A vulnerability was identified in SourceCodester Simple and Nice Shopping Cart Script 1.0. Affected is an unknown function of the file /admin/girlsproductd

04 Jul 2026, 21:00 UTC View advisory →
CVE-2026-14653 Medium 6.9

A vulnerability was determined in SourceCodester Simple and Nice Shopping Cart Script 1.0. This impacts an unknown function of the file /admin/mensproductd

04 Jul 2026, 20:45 UTC View advisory →
CVE-2026-14652 Medium 6.9

A vulnerability was found in SourceCodester Simple and Nice Shopping Cart Script 1.0. This affects an unknown function of the file /admin/login.php of the

04 Jul 2026, 20:30 UTC View advisory →
CVE-2026-14651 Medium 4.8

A vulnerability has been found in connorskees grass up to 0.13.4. The impacted element is the function grass_compiler::selector::extend/grass_compiler::eva

04 Jul 2026, 20:15 UTC View advisory →
CVE-2026-14650 Medium 4.8

A flaw has been found in connorskees grass up to 0.13.4. The affected element is the function grass_compiler::raw_to_parse_error of the component UTF-8 Cha

04 Jul 2026, 20:00 UTC View advisory →
CVE-2026-14649 Medium 6.9

A vulnerability was detected in code-projects Online Voting System 1.0. Impacted is the function test_input of the file /saveVote.php. Performing a manipul

04 Jul 2026, 19:45 UTC View advisory →
CVE-2026-14648 Medium 6.9

A security vulnerability has been detected in code-projects Online Voting System up to 0.x/1.0. This issue affects the function test_input of the file /aut

04 Jul 2026, 19:15 UTC View advisory →
CVE-2026-14647 Medium 5.3

A weakness has been identified in onnx up to 1.21.x. This vulnerability affects the function convPoolShapeInference_opset19 of the file onnx/defs/nn/old.cc

04 Jul 2026, 19:00 UTC View advisory →
CVE-2026-14646 Medium 4.9

Nexus Repository 3 did not apply its existing Server-Side Request Forgery (SSRF) protections to HTTP redirect targets returned by proxy repository upstream

14 Jul 2026, 16:49 UTC View advisory →
CVE-2026-14645 Medium 5.1

Nexus Repository 3 does not validate the destination of the "Webhook: Global" capability's configured URL before making an outbound HTTP request, allowing

14 Jul 2026, 16:33 UTC View advisory →
CVE-2026-14642 Medium 6.9

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /e

04 Jul 2026, 18:45 UTC View advisory →
CVE-2026-14641 Medium 6.9

A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the f

04 Jul 2026, 18:30 UTC View advisory →
CVE-2026-14640 Medium 6.9

A vulnerability was found in CodeAstro Apartment Visitor Management System 1.0. Affected is an unknown function of the file /index.php of the component Log

04 Jul 2026, 18:15 UTC View advisory →
CVE-2026-14639 Medium 5.3

A vulnerability has been found in CodeAstro Ecommerce Website 1.0. This impacts an unknown function of the file /ecommerce-website-php/customer/my_account.

04 Jul 2026, 18:00 UTC View advisory →
CVE-2026-14638 Medium 5.3

A flaw has been found in itsourcecode Hospital Management System 1.0. This affects an unknown function of the file /patient.php. This manipulation of the a

04 Jul 2026, 17:45 UTC View advisory →
CVE-2026-14637 High 8.8

A security vulnerability has been detected in kirilkirkov Ecommerce-CodeIgniter-Bootstrap up to 13fd582aaf49aeab7438acc0fc3eb973a1f5e6a7. The affected elem

04 Jul 2026, 17:30 UTC View advisory →
CVE-2026-14636 Medium 5.3

A weakness has been identified in kirilkirkov Ecommerce-CodeIgniter-Bootstrap up to 23105f25dadf57b4314fc015a63a7c6e910c89df. Impacted is the function do_u

04 Jul 2026, 16:45 UTC View advisory →
CVE-2026-14635 Medium 6.9

A security flaw has been discovered in kirilkirkov Ecommerce-CodeIgniter-Bootstrap up to 222ff31c06687b1c6d0e1ab63953f82c3674c52b. This issue affects some

04 Jul 2026, 16:30 UTC View advisory →
CVE-2026-14634 Medium 5.3

A vulnerability was identified in kirilkirkov Ecommerce-CodeIgniter-Bootstrap up to 213babdbaa949e94557246414db0130e01394517. This vulnerability affects th

04 Jul 2026, 16:15 UTC View advisory →
CVE-2026-14633 Medium 5.3

A vulnerability was determined in kirilkirkov Ecommerce-CodeIgniter-Bootstrap up to 49b20f53de2b7ec34e920b11c863f1491d911a04. This affects an unknown part

04 Jul 2026, 15:45 UTC View advisory →
CVE-2026-14632 Medium 5.3

A vulnerability was found in kirilkirkov Ecommerce-CodeIgniter-Bootstrap up to 95dfa8cebbb87ab46ae450643a07241274a74dce. Affected by this issue is the func

04 Jul 2026, 15:15 UTC View advisory →
CVE-2026-14630 Low 2.3

A vulnerability has been found in ForceInjection AI-fundermentals 2.0/3.0. Affected by this vulnerability is the function get_conversation_history of the f

04 Jul 2026, 14:00 UTC View advisory →
CVE-2026-14629 Medium 5.3

A flaw has been found in RT-Thread up to 5.2.2. Affected is the function read/write/sys_ioctl of the file components/lwp/lwp_syscall.c of the component Par

04 Jul 2026, 13:15 UTC View advisory →
CVE-2026-14628 Medium 6.9

A vulnerability was detected in NousResearch hermes-agent up to 2026.5.16. This impacts the function extract_media of the file gateway/platforms/base.py of

04 Jul 2026, 13:00 UTC View advisory →
CVE-2026-14627 Medium 6.3

A security vulnerability has been detected in NousResearch hermes-agent up to 0.15.2. This affects the function DiscordAdapter._is_allowed_user of the file

04 Jul 2026, 12:45 UTC View advisory →
CVE-2026-14626 Medium 5.3

A weakness has been identified in NousResearch hermes-agent up to 2026.4.30. The impacted element is the function AIAgent.run_conversation of the file run_

04 Jul 2026, 12:00 UTC View advisory →
CVE-2026-14625 Medium 5.3

A security flaw has been discovered in NousResearch hermes-agent up to 0.15.2. The affected element is the function shell.exec of the file tui_gateway/serv

04 Jul 2026, 11:30 UTC View advisory →
CVE-2026-14624 Medium 5.3

A vulnerability was identified in omec-project amf up to 2.0.2/2.1.1. Impacted is an unknown function of the file /go/src/amf/ngap/handler.go of the compon

04 Jul 2026, 10:15 UTC View advisory →
CVE-2026-14623 Medium 5.3

A vulnerability was determined in omec-project amf up to 2.1.1. This issue affects the function RRCInactiveTransitionReport of the component NGAP Message H

04 Jul 2026, 09:45 UTC View advisory →
CVE-2026-14622 Medium 6.9

A vulnerability was found in jairiidriss restaurant-website-php-mysql up to 521428b5b612449df0cf4a5d15ee40cba67f3d35. This vulnerability affects unknown co

04 Jul 2026, 08:45 UTC View advisory →
CVE-2026-14621 Low 2.3

A vulnerability has been found in FederatedAI FATE up to 2.2.0. This affects the function QueuePushReqStreamObserver.initEggroll of the file java/osx/osx-b

04 Jul 2026, 08:15 UTC View advisory →
CVE-2026-14596 Unscored

The DynamicKit for Elementor WordPress plugin before 1.0.3 does not validate the host of a user-supplied URL used as the base of the password-reset link it

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14587 Medium 5.5

Neo4j's Bolt modern handshake decoder treats an overlong capability bit mask the same way it treats a truncated bit mask. When an unauthenticated client se

05 Aug 2026, 16:10 UTC View advisory →
CVE-2026-14586 Medium 5.9

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, in DNS-over-QUIC environments, with high concurrency and under pressure, an assertion in libngtcp2

22 Jul 2026, 13:03 UTC View advisory →
CVE-2026-14574 Medium 5.7

In Eclipse Theia versions 0.7.0 and up until including 1.73.1, the `PreferenceUtils.merge` function in `@theia/core` recursively merges preference values w

05 Aug 2026, 10:51 UTC View advisory →
CVE-2026-14570 Unscored

Crypt::DSA versions before 1.22 for Perl draw the DSA signing nonce and private key from a biased random generator, leading to private-key recovery. "Crypt

05 Jul 2026, 01:30 UTC View advisory →
CVE-2026-14561 Unscored

The Authora : Easy login with mobile number WordPress plugin before 1.7.7 does not keep its one-time login code confidential, returning the code and a vali

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14557 Unscored

The SoftMarket — Digital Marketplace WordPress plugin through 1.0.0 does not properly validate an authentication token in one branch of its email-verificat

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14554 Unscored

The Check & Log Email WordPress plugin before 2.0.15 does not properly sanitize and escape parameters before using them in SQL queries, allowing users with

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14553 Unscored

The zportals WordPress plugin before 6.3.4 does not properly validate uploaded files, trusting the client-supplied content type and preserving the original

05 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14551 High 8.8

The servereye client (also known as sensorhub, technically ClientAgentContainerService) versions 20.15 and earlier are vulnerable to Local Privilege Escala

22 Jul 2026, 09:42 UTC View advisory →
CVE-2026-14547 Unscored

The Estatik Real Estate Plugin WordPress plugin before 4.3.3 does not properly enforce its anti-spam check or restrict the recipient routing of its propert

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14545 Unscored

The TrueBooker WordPress plugin before 1.2.4 does not validate account ownership when resetting a user's password through one of its front-end account hand

28 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14541 High 8

An authentication bypass and audience confusion vulnerability exists in the Google OAuth provider component of Google mcp-toolbox version 1.4.0. When a Goo

31 Jul 2026, 01:48 UTC View advisory →
CVE-2026-14540 High 8

A Server-Side Request Forgery (SSRF) vulnerability exists in the generic HTTP source and tool components of Google mcp-toolbox versions 0.3.0 through 1.4.0

31 Jul 2026, 01:46 UTC View advisory →
CVE-2026-14539 Medium 6.6

An allocation of resources without limits vulnerability in the HTTP handler component of Google mcp-toolbox versions up to and including 1.4.0 allows an un

31 Jul 2026, 01:45 UTC View advisory →
CVE-2026-14538 Medium 5.7

An improper authorization and security-boundary bypass vulnerability in the bigquery-execute-sql tool component of Google mcp-toolbox versions 0.16.1 throu

31 Jul 2026, 01:42 UTC View advisory →
CVE-2026-14537 High 8.1

Incorrect Authorization in the direct HTTP API tool invocation endpoint in Google mcp-toolbox versions v1.3.0 and v1.4.0 allows an unauthenticated attacker

31 Jul 2026, 01:38 UTC View advisory →
CVE-2026-14535 High 8.8

In Trail of Bits fickling versions up to and including 0.1.11, the UnsafeImportsML analysis pass unconditionally calls AnalysisContext.shorten_code(node) o

04 Jul 2026, 13:31 UTC View advisory →
CVE-2026-14534 High 8.8

Trail of Bits fickling versions up to and including 0.1.10 do not include the Python standard library modules _posixsubprocess, site, and atexit in the UNS

04 Jul 2026, 13:25 UTC View advisory →
CVE-2026-14522 High 8.8

IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 could allow a remote attacker to execute arbitrary commands due to im

30 Jul 2026, 14:06 UTC View advisory →
CVE-2026-14519 High 7.5

IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 could allow a remote attacker to read arbitrary files due to a path t

30 Jul 2026, 14:05 UTC View advisory →
CVE-2026-14504 High 8.2

An authorization bypass in Nexus Repository 3's component upload API allowed a user with only read/browse privileges on a Swift, Terraform, or Conda hosted

14 Jul 2026, 15:55 UTC View advisory →
CVE-2026-14503 Medium 6.5

The pCloud WP Backup plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.0.3 via the wp2pcl_ajax_p

17 Jul 2026, 03:43 UTC View advisory →
CVE-2026-14501 Medium 4.3

IBM Db2 Genius Hub 1.1, 1.1.1, 1.1.2 and IBM Agentics 1.0 could allow an attacker to execute arbitrary code or obtain sensitive information due to the use

17 Jul 2026, 19:55 UTC View advisory →
CVE-2026-14500 Medium 5.3

The Bulk Order Update for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Read in versions up to, and including, 1.6. This is due to the b

08 Jul 2026, 05:34 UTC View advisory →
CVE-2026-14499 High 8.8

IBM Langflow OSS 1.0.0 through 1.10.1 Langflow could allow an authenticated user to execute arbitrary commands with elevated privileges on the system due t

17 Jul 2026, 19:57 UTC View advisory →
CVE-2026-14495 High 8.8

The DoLogin Security plugin for WordPress is vulnerable to Authentication Bypass via Insufficient Randomness in all versions up to, and including, 4.3. The

08 Jul 2026, 05:34 UTC View advisory →
CVE-2026-14490 High 7.5

The Demi – One Click Demo Import, WP Backup & Site Migration plugin for WordPress is vulnerable to Arbitrary Directory Deletion in all versions up to, and

28 Jul 2026, 05:39 UTC View advisory →
CVE-2026-14489 High 8.8

The WHMCS Bridge plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the connect() function in all versions

08 Jul 2026, 05:34 UTC View advisory →
CVE-2026-14487 Critical 9.1

The Simple Coherent Form plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the removeUploadDir func

08 Jul 2026, 04:30 UTC View advisory →
CVE-2026-14483 Critical 9.8

The Realtyna Organic IDX plugin + WPL Real Estate plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 5.2.0 v

31 Jul 2026, 05:35 UTC View advisory →
CVE-2026-14482 High 8.8

The 多说社会化评论框 plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.2. The vulnerability exists due to a missin

08 Jul 2026, 04:30 UTC View advisory →
CVE-2026-14480 High 8.7

OpenPLC Runtime v3 contains an authenticated arbitrary file write vulnerability in the legacy web UI program‑upload workflow. The application stores an att

10 Jul 2026, 22:17 UTC View advisory →
CVE-2026-14476 High 8

A path traversal flaw was found in SSSD's AD GPO provider. The ad_gpo_extract_smb_components() function does not sanitize .. sequences in the gPCFileSysPat

07 Jul 2026, 09:12 UTC View advisory →
CVE-2026-14475 Medium 4.9

The Cookie Banner for GDPR / CCPA – WPLP Cookie Consent plugin for WordPress is vulnerable to generic SQL Injection via the 'scan_id' parameter in all vers

10 Jul 2026, 07:48 UTC View advisory →
CVE-2026-14474 High 8.8

A flaw was found in SSSD's LDAP sudo provider. When the ldap_sudo_search_base option is not explicitly configured, SSSD searches the entire LDAP directory

07 Jul 2026, 09:12 UTC View advisory →
CVE-2026-14465 Medium 6.5

Insufficient session expiration vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Reusing Session ID

04 Aug 2026, 08:58 UTC View advisory →
CVE-2026-14461 Medium 5.1

mtr is vulnerable to Out-of-bound read vulnerability in ipinfo_lookup() function. An attacker who can influence the TXT response used for AS lookups can tr

10 Jul 2026, 10:38 UTC View advisory →
CVE-2026-14454 Unscored

Imager versions before 1.033 for Perl treat unsigned EXIF IFD entry counts as signed. Imager mishandled large EXIF IFD entry count values, treating them as

08 Jul 2026, 12:30 UTC View advisory →
CVE-2026-14453 Critical 9.6

This vulnerability is a critical Server-Side Template Injection (SSTI) in Centreon's centreon-open-tickets module that leads to Remote Code Execution. The

13 Jul 2026, 08:19 UTC View advisory →
CVE-2026-14449 Medium 6.4

u5CMS through v12.8.8 is vulnerable to reflected XSS via the ‘thanks’ parameter in multiple form components

02 Jul 2026, 11:47 UTC View advisory →
CVE-2026-14448 High 8.6

An high privileged remote attacker can exploit an authenticated OS command injection vulnerability in the system_certificates view due to improper neutrali

20 Jul 2026, 11:40 UTC View advisory →
CVE-2026-14380 Unscored

DBI versions before 1.650 for Perl are vulnerable to code injection via caller-influenced Profile. When a string is assigned to a DBI handle's Profile attr

07 Jul 2026, 22:04 UTC View advisory →
CVE-2026-14373 High 7.7

HashiCorp Nomad and Nomad Enterprise did not enforce the allow_privileged restriction for the Docker task driver's host namespace mode options. This may al

08 Jul 2026, 17:29 UTC View advisory →
CVE-2026-14371 High 8.8

The Lenovo XClarity Integrator for Windows Admin Center plugin version 5.1.1 and below running on the WAC Gateway is vulnerable to Powershell Command Injec

16 Jul 2026, 16:49 UTC View advisory →
CVE-2026-14365 Critical 9.8

The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including,

07 Aug 2026, 04:25 UTC View advisory →
CVE-2026-14364 Critical 9.8

The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is vulnerable to account takeover via improper password reset validation in

07 Aug 2026, 04:25 UTC View advisory →
CVE-2026-14362 Medium 4.9

HashiCorp memberlist before version 0.6.0 is vulnerable to a denial-of-service issue in its push/pull state handling that may allow an attacker with networ

08 Jul 2026, 17:14 UTC View advisory →
CVE-2026-14361 Medium 4.7

The consul-template library before version 0.42.1 is vulnerable to a path redirection issue in the writeToFile template helper that may allow template outp

08 Jul 2026, 20:11 UTC View advisory →
CVE-2026-14352 High 7.5

The AR for WooCommerce plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 8.40 via the 'file' parameter parame

03 Jul 2026, 04:30 UTC View advisory →
CVE-2026-14337 Medium 4.6

Pega Platform versions 23.1.0 through 25.1.3 are affected by an Stored Cross-site scripting (XSS) vulnerability in a user interface component. Requires a h

04 Aug 2026, 13:48 UTC View advisory →
CVE-2026-14336 High 8.2

PIA's OIDC issuer allowlist for Jenkins tokens uses a bare string-prefix check (issuer.startswith(' https://ci.eclipse.org ') in is_issuer_known, pia/model

02 Jul 2026, 08:29 UTC View advisory →
CVE-2026-14333 Unscored

The Demi WordPress plugin before 0.0.7 stores its full-site backup archives in a publicly accessible location under a predictable filename and without acce

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14331 Unscored

The Subscribe2 WordPress plugin before 10.46 does not properly escape a user-supplied value before reflecting it into a public subscription form, leading t

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14327 High 7.5

The AR for WordPress plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 8.40 via the 'file' parameter paramete

03 Jul 2026, 01:28 UTC View advisory →
CVE-2026-14319 Unscored

The GiveWP WordPress plugin before 4.16.3 does not properly restrict access to a REST API endpoint that returns recurring-donation records, allowing unauth

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14317 Unscored

The GiveWP WordPress plugin before 4.16.3 does not restrict the set of available payment gateways to those enabled by the administrator, deriving it in par

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14315 Unscored

The Pixel Tag Manager for WooCommerce WordPress plugin before 2.2.1 does not perform an authorization check on one of its AJAX actions, allowing unauthenti

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14314 Unscored

The PeproDev WooCommerce Receipt Uploader WordPress plugin through 2.8.0 does not verify that a requested attachment belongs to the order referenced by its

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14313 Unscored

PeproDev WooCommerce Receipt Uploader (PeproDev WooCommerce Receipt Uploader WordPress plugin through 2.8.0 slug: pepro-bacs-receipt-upload-for-woocommerce

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14309 Unscored

The Chat On Desk Order Notifications WordPress plugin before 1.0.9 does not verify that the one-time password has been validated before processing a passwo

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14306 Medium 4.3

The Tutor LMS WordPress plugin before 3.9.14 does not properly verify enrollment when restricting access to protected course content, allowing authenticate

06 Aug 2026, 16:49 UTC View advisory →
CVE-2026-14304 Medium 4.6

In Eclipse Accessibility Tools Framework (ACTF) versions up to 1.6.0 (including source code versions up to v20260630 and ACTF based application miChecker v

05 Aug 2026, 10:40 UTC View advisory →
CVE-2026-14292 Unscored

The Download Manager WordPress plugin before 3.3.66 does not properly escape a package's title before outputting it in the front-end package templates, all

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14291 Unscored

The security-ninja-premium WordPress plugin before 5.290 does not verify the second authentication factor in one of its two-factor authentication code path

23 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14286 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

11 Jul 2026 View advisory →
CVE-2026-14262 High 8.8

The Simple JWT Login – Allows you to use JWT on REST endpoints. plugin for WordPress is vulnerable to Authentication Bypass to Privilege Escalation in all

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-14254 High 8.3

A race condition in the account lockout mechanism in Delphix Continous Data allowed the lockout threshold to be bypassed through concurrent authentication

16 Jul 2026, 14:12 UTC View advisory →
CVE-2026-14253 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

17 Jul 2026 View advisory →
CVE-2026-14250 Medium 6.3

The Themehunk Login Registration plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.0.2. This is due to the han

08 Jul 2026, 11:30 UTC View advisory →
CVE-2026-14244 High 7.5

The Jssor Slider by jssor.com plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 3.1.24 via the 'url' paramete

08 Jul 2026, 04:30 UTC View advisory →
CVE-2026-14241 Unscored

Memory safety bugs present in Firefox 152.0.3. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these

30 Jun 2026, 13:32 UTC View advisory →
CVE-2026-14240 Unscored

The tourmaster WordPress plugin before 5.4.9 writes its order/booking export to a fixed, predictable file inside its publicly accessible directory with no

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14227 Medium 6.9

An API session‑management flaw in products with the MikroTik RouterOS API enabled are vulnerable to a Insufficient Session Expiration vulnerability. This c

30 Jul 2026, 17:39 UTC View advisory →
CVE-2026-14225 Low 2.7

The Easy Appointments WordPress plugin through 3.12.26 does not correctly validate shortcode input in one of its block-rendering actions, checking only the

06 Aug 2026, 17:00 UTC View advisory →
CVE-2026-14219 Medium 5.4

URL redirection to untrusted site ('open redirect') vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allow

04 Aug 2026, 08:33 UTC View advisory →
CVE-2026-14214 Unscored

The Booking for Appointments and Events Calendar WordPress plugin before 2.4.4 does not restrict which fields can be written through its customer import, a

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14209 Medium 4.3

A vulnerability was discovered in Keycloak's Admin UI extension that allows certain administrative users to bypass security restrictions. When Fine-Grained

30 Jun 2026, 11:48 UTC View advisory →
CVE-2026-14205 Unscored

The WP Events Manager WordPress plugin before 2.2.5 does not validate the requested quantity when registering for a paid event and computes the price from

07 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14204 Unscored

The Google Authenticator WordPress plugin before 0.56 does not verify a CSRF nonce when saving its two-factor setup, allowing attackers to trick a logged-i

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14202 Medium 5.3

Observable response discrepancy vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Account Footprinti

04 Aug 2026, 09:07 UTC View advisory →
CVE-2026-14197 Unscored

The Fluent Support WordPress plugin before 2.3.1 does not perform a per-ticket access check before reassigning a ticket's customer, allowing a restricted s

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14195 Unscored

The Brizy WordPress plugin before 2.8.18 does not properly verify authorization on a request handler before returning post content, allowing users with the

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-14194 Medium 6.5

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Di

04 Aug 2026, 08:28 UTC View advisory →
CVE-2026-14193 High 7.5

DVP80ES300T with Improper Validation of Array Index Vulnerability

01 Jul 2026, 05:30 UTC View advisory →
CVE-2026-14192 Medium 5.4

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Bilin Software and Informatics Consultancy Inc. HUMAN

04 Aug 2026, 08:48 UTC View advisory →
CVE-2026-14191 High 7.8

An out-of-bounds heap write exists in the RAR5 recovery-volume (.rev) parser in WinRAR and UnRAR (RecVolumes5::ReadHeader in recvol5.cpp). The RecItems vec

01 Jul 2026, 02:41 UTC View advisory →
CVE-2026-14185 Unscored

The WPBot WordPress plugin before 8.2.0 does not perform a capability or nonce check in one of its retrieval-augmented-generation settings handlers, allowi

21 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14184 Unscored

The Academy LMS WordPress plugin before 3.8.1 does not verify ownership of a user-supplied user identifier in several of its lesson AJAX handlers, allowing

21 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14183 Unscored

The Classified Listing WordPress plugin before 5.3.9 does not verify that the order targeted by its payment-receipt handler belongs to the requesting user,

21 Jul 2026, 06:00 UTC View advisory →
CVE-2026-14178 Medium 5.9

openGauss 在处理带 NLS 参数的 to_timestamp 调用时,to_timestamp_with_fmt_nls() 会将 nls_fmt_str 保存到 u_sess->parser_cxt.nls_fmt_str。在 seqscan + sort 执行路径下,该字符串原本被分配在 Seq

30 Jun 2026, 13:56 UTC View advisory →
CVE-2026-14175 Critical 9.8

Unrestricted upload of file with dangerous type vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Up

04 Aug 2026, 08:23 UTC View advisory →
CVE-2026-14165 High 7.5

An Authorization Bypass Through User-Controlled Key vulnerability affecting Tuleap Enterprise Edition from 17.0 through 17.5 could allow an attacker to acc

13 Jul 2026, 07:13 UTC View advisory →
CVE-2026-14162 Critical 9.3

Hospital Queuing Management developed by Advantech has a Sensitive Data Exposure vulnerability, allowing unauthenticated remote attackers to access a speci

30 Jun 2026, 10:57 UTC View advisory →
CVE-2026-14161 High 8.7

Hospital Quening Management developed by Advantech has a Sensitive Data Exposure vulnerability, allowing unauthenticated remote attackers to access a speci

30 Jun 2026, 10:52 UTC View advisory →
CVE-2026-14160 Medium 5.9

Time-of-check time-of-use (TOCTOU) race condition vulnerability in Samsung Open Source Escargot allows Leveraging Race Conditions. This issue affects Escar

30 Jun 2026, 02:09 UTC View advisory →
CVE-2026-14158 High 8.8

The Widget Logic Visual plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.52 via the widget_logic_visual_

08 Jul 2026, 04:30 UTC View advisory →
CVE-2026-14156 Unscored

Insufficient policy enforcement in StorageAccessAPI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proc

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14155 Unscored

Insufficient policy enforcement in StorageAccessAPI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a craft

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14154 Medium 4.8

Inappropriate implementation in DevTools in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious extension

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14153 Medium 5.3

Inappropriate implementation in Glic in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestur

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14152 Unscored

Out of bounds read and write in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potenti

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14151 Unscored

Inappropriate implementation in AI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentiall

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14150 Unscored

Insufficient validation of untrusted input in Speech in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer pro

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14149 Unscored

Use after free in Audio in Google Chrome on Linux prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chro

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14148 Medium 6.5

Type Confusion in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from process memory via

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14147 Unscored

Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a craf

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14146 Unscored

Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (C

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14145 Unscored

Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a craf

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14144 Medium 4.2

Incorrect security UI in Views in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures to

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14143 Unscored

Incorrect security UI in Passwords in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page.

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14142 Unscored

Inappropriate implementation in Extensions in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to pe

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14141 Unscored

Incorrect security UI in Document Picture-in-Picture in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to perform domain spoofin

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14140 Unscored

Insufficient validation of untrusted input in Input in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14139 Medium 4.2

Inappropriate implementation in TabStrip in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI ge

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14138 Medium 4.2

Inappropriate implementation in WebAppInstalls in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14137 Medium 4.2

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14136 Unscored

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofin

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14135 Unscored

Insufficient validation of untrusted input in Network in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer pr

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14134 Unscored

Inappropriate implementation in Autofill in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14133 Unscored

Race in History Embeddings in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium secu

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14132 Unscored

Inappropriate implementation in WebXR in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Ch

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14131 Unscored

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the rend

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14130 Unscored

Incorrect security UI in Omnibox in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromiu

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14129 Medium 4.2

Inappropriate implementation in PreviewTab in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in s

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14128 Unscored

Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to spoof the contents of the Omnibo

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14127 Unscored

Inappropriate implementation in Printing in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to perf

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14126 Unscored

Incorrect security UI in UI in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to perform domain spoofing via a crafted HTML page

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14125 Medium 6.5

Uninitialized Use in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from process memor

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14124 Unscored

Inappropriate implementation in CredentialProvider in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-level privileg

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14123 Unscored

Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to spoof the contents of the Omnibox (URL

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14122 Unscored

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker to perform arbitr

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14121 Unscored

Use after free in Chromoting in Google Chrome on Linux prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via malicious network tra

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14120 Unscored

Inappropriate implementation in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to pote

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14119 Medium 6.5

Type Confusion in Bluetooth in Google Chrome on Windows prior to 150.0.7871.47 allowed an attacker on the local network segment to obtain potentially sensi

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14118 Unscored

Insufficient data validation in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI ge

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14117 Medium 5.3

Insufficient validation of untrusted input in DevTools in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who convinced a user to

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14116 Unscored

Insufficient validation of untrusted input in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14115 Unscored

Insufficient validation of untrusted input in Cast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proce

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14114 Unscored

Inappropriate implementation in WebAppInstalls in Google Chrome on Android prior to 150.0.7871.47 allowed a local attacker to perform UI spoofing via a mal

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14113 Unscored

Use after free in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentia

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14112 Medium 5.3

Inappropriate implementation in Enterprise in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14111 Unscored

Use after free in WebProtect in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious extension to execute a

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14110 Unscored

Inappropriate implementation in DarkMode in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page.

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14109 Unscored

Insufficient policy enforcement in Mojo in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to poten

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14108 Unscored

Use after free in PDFium in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF fil

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14107 Unscored

Use after free in Scheduling in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTM

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14106 Unscored

Insufficient validation of untrusted input in Text in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the ren

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14105 Unscored

Insufficient policy enforcement in Speech in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass same origin policy via a crafted HTML

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14104 Unscored

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code in

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14103 Medium 6.5

Use after free in SSL in Google Chrome on ChromeOS prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from proces

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14102 Unscored

Use after free in Passwords in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14101 Unscored

Insufficient policy enforcement in Sandbox in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proces

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14100 Unscored

Insufficient data validation in NetworkCache in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14099 Unscored

Use after free in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI ges

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14098 Unscored

Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (C

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14097 Unscored

Inappropriate implementation in WebAppInstalls in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer pr

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14096 Unscored

Inappropriate implementation in Input in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14095 Unscored

Insufficient policy enforcement in Browser in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to po

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14094 Unscored

Use after free in Installer in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-level privilege escalation via a mali

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14093 Unscored

Use after free in Cast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14092 Unscored

Insufficient policy enforcement in Privacy in Google Chrome prior to 150.0.7871.47 allowed an attacker in a privileged network position to leak cross-origi

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14091 Unscored

Use after free in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14090 Unscored

Insufficient validation of untrusted input in CameraCapture in Google Chrome on ChromeOS prior to 150.0.7871.47 allowed a remote attacker to perform an out

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14089 Unscored

Insufficient validation of untrusted input in PopupBlocker in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the render

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14088 Medium 6.5

Uninitialized Use in Canvas in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from p

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14087 Unscored

Heap buffer overflow in WebNN in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to pote

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14086 Unscored

Insufficient policy enforcement in HID in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTML page.

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14085 Unscored

Side-channel information leakage in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML page

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14084 Unscored

Insufficient validation of untrusted input in Chromoting in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially exploit heap corr

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14083 Unscored

Insufficient validation of untrusted input in HTML in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to inject arbitrary scripts or HTML (U

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14082 Unscored

Race in Storage in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security sev

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14081 Medium 6.5

Insufficient policy enforcement in DevTools in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious extensi

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14080 Unscored

Insufficient validation of untrusted input in TabSwitcher in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to bypass navigation

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14079 Unscored

Insufficient policy enforcement in Network in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass same origin policy via a crafted HTM

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14078 Unscored

Insufficient validation of untrusted input in WebRTC in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform privilege escalation via

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14077 Unscored

Inappropriate implementation in Select in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker to spoof the contents of the Omnibox (URL b

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14076 Unscored

Insufficient policy enforcement in Network in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass content security policy via a crafte

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14075 Unscored

Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to bypass no-referrer policy via

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14074 Unscored

Side-channel information leakage in WebAuthentication in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data vi

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14073 Unscored

Insufficient validation of untrusted input in WebXR in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass navigation restrictions via

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14072 Unscored

Inappropriate implementation in SplitView in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page.

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14071 Unscored

Side-channel information leakage in WebAudio in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14070 Medium 6.5

Integer overflow in WebNN in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from process memory

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14069 Medium 6.5

Integer overflow in WebNN in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from process memory

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14068 Unscored

Inappropriate implementation in Omnibox in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14067 Unscored

Use after free in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTML page

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14066 Unscored

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to bypass navigation

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14065 Unscored

Insufficient validation of untrusted input in PageInfo in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer p

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14064 Unscored

Use after free in PageInfo in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestu

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14063 Medium 5.5

Out of bounds read in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a local attacker to obtain potentially sensitive information from process

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14062 Medium 5.9

Inappropriate implementation in Views in Google Chrome on ChromeOS prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious e

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14061 Medium 6.5

Inappropriate implementation in Dawn in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from pro

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14060 Unscored

Insufficient validation of untrusted input in Chromoting in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform privilege e

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14059 Unscored

Insufficient policy enforcement in Related-Website-Sets in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a c

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14058 Unscored

Insufficient policy enforcement in Parser in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass content security policy via a crafted

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14057 Unscored

Inappropriate implementation in FedCM in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass same origin policy via a crafted HTML pag

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14056 Unscored

Insufficient validation of untrusted input in Media in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proc

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14055 Unscored

Insufficient validation of untrusted input in Device Trust in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14054 Unscored

Insufficient policy enforcement in Network in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass navigation restrictions via a crafte

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14053 Unscored

Insufficient policy enforcement in Extensions in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14052 Unscored

Insufficient policy enforcement in FileSystem in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass discretionary access control via

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14051 Medium 6.5

Uninitialized Use in GamepadAPI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to obtain potent

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14050 Unscored

Insufficient policy enforcement in Passwords in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14049 Medium 5.3

Inappropriate implementation in GPU in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to obtain po

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14048 Medium 6.5

Use after free in Chromecast in Google Chrome prior to 150.0.7871.47 allowed an attacker on the local network segment to obtain potentially sensitive infor

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14047 Unscored

Insufficient policy enforcement in Extensions in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious exten

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14046 Unscored

Inappropriate implementation in CustomTabs in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to bypass same origin policy via a

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14045 Unscored

Insufficient validation of untrusted input in Network in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer pr

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14044 Unscored

Use after free in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14043 Unscored

Use after free in GetUserMedia in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially pe

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14042 Unscored

Inappropriate implementation in Isolated Web Apps in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HT

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14041 Unscored

Insufficient policy enforcement in Serial in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform privilege escalation via a crafted H

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14040 Unscored

Use after free in BrowserTag in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious extension to potential

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14039 Unscored

Insufficient policy enforcement in GetUserMedia in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass same origin policy via a crafte

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14038 Unscored

Insufficient validation of untrusted input in New Tab Page in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the render

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14037 Unscored

Insufficient policy enforcement in GPU in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potent

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14036 Unscored

Insufficient policy enforcement in Bluetooth in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform privilege escalation via a crafte

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14035 Medium 6.5

Insufficient policy enforcement in Bluetooth in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14034 Unscored

Inappropriate implementation in WebXR in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to bypass navigation restrictions via a

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14033 Unscored

Insufficient policy enforcement in Media in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker to bypass site isolation via a crafte

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14032 Unscored

Use after free in Bluetooth in Google Chrome on Mac prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious extension to exe

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14031 Unscored

Inappropriate implementation in File Input in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14030 Medium 4.2

Inappropriate implementation in SplitView in Google Chrome on Linux prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in spec

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14029 Medium 6.5

The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to generic SQL Injection via the 'select' parameter in all v

02 Jul 2026, 08:33 UTC View advisory →
CVE-2026-14028 Medium 4.2

Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14027 Unscored

Use after free in SignIn in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures to potent

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14026 Medium 4.2

Incorrect security UI in SplitView in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14025 Unscored

Use after free in Views in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures to

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14024 Unscored

Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures t

30 Jun 2026, 22:39 UTC View advisory →
CVE-2026-14023 Unscored

Insufficient validation of untrusted input in SanitizerAPI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass same origin policy v

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14022 Unscored

Insufficient validation of untrusted input in Network in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer pr

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14021 Unscored

Insufficient policy enforcement in StorageAccessAPI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proc

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14020 Unscored

Insufficient validation of untrusted input in WebXR in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proc

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14019 Unscored

Inappropriate implementation in Passwords in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML pa

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14018 Unscored

Use after free in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-level privilege escalation via a malici

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14017 Unscored

Inappropriate implementation in Navigation in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to po

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14016 Unscored

Inappropriate implementation in SVG in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (C

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14015 Unscored

Race in WebRTC in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium se

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14014 Unscored

Inappropriate implementation in Paint in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Ch

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14013 Unscored

Inappropriate implementation in SVG in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chro

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14012 Medium 5.3

Side-channel information leakage in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14011 Unscored

Out of bounds read in SurfaceCapture in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform an out of bounds memory read via a crafte

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14010 Medium 6.5

Uninitialized Use in Codecs in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from p

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14009 Unscored

Inappropriate implementation in Passwords in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially exploit heap corruption via a cr

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14008 Medium 6.5

Uninitialized Use in WebXR in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from pr

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14007 Unscored

Insufficient policy enforcement in PermissionsPolicy in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass navigation restrictions vi

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14006 Unscored

Use after free in Navigation in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14005 Unscored

Use after free in Omnibox in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestur

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14004 Unscored

Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (C

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14003 Unscored

Insufficient policy enforcement in Extensions in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious exten

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14002 Unscored

Inappropriate implementation in Geolocation in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to p

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14001 Unscored

Inappropriate implementation in Network in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-14000 Unscored

Inappropriate implementation in XML in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a craf

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13999 Unscored

Insufficient validation of untrusted input in Extensions in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a mali

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13998 Medium 4.2

Incorrect security UI in File Input in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13997 Medium 4.2

Incorrect security UI in Extensions in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13996 Unscored

Inappropriate implementation in Permissions in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML pag

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13995 Unscored

Insufficient validation of untrusted input in Autofill in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13994 Unscored

Inappropriate implementation in Credential Management in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing v

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13993 Medium 4.2

Incorrect security UI in WebAppInstalls in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI ges

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13992 Medium 4.2

Inappropriate implementation in UI in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI g

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13991 Unscored

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofin

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13990 Unscored

Insufficient validation of untrusted input in DataTransfer in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13989 Unscored

Inappropriate implementation in PageInfo in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to perf

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13988 Unscored

Inappropriate implementation in Paint in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Ch

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13987 Unscored

Incorrect security UI in Mobile in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13986 Medium 4.2

Inappropriate implementation in Media UI in Google Chrome on ChromeOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in sp

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13985 Unscored

Inappropriate implementation in MediaCapture in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13984 Unscored

Incorrect security UI in TabStrip in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromi

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13983 Medium 4.2

Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in s

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13982 Unscored

Incorrect security UI in Passwords in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to perform UI

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13981 Unscored

Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafte

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13980 Unscored

Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafte

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13979 Unscored

Inappropriate implementation in Paint in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Ch

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13978 Unscored

Insufficient policy enforcement in PageInfo in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML pag

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13977 Unscored

Inappropriate implementation in HTMLParser in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13976 Unscored

Insufficient data validation in Storage in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to poten

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13975 Medium 5.3

Out of bounds read in ANGLE in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to obtain pot

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13974 Unscored

Integer overflow in Safe Browsing in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker to bypass navigation restrictions via a maliciou

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13973 Medium 4.2

Inappropriate implementation in UI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13972 Unscored

Inappropriate implementation in Paint in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Ch

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13971 Medium 5.3

Uninitialized Use in Skia in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to obtain potentially

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13970 Medium 5.3

Uninitialized Use in Media in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to obtain potentially

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13969 Medium 5.3

Uninitialized Use in UI in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to obtain pot

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13968 Unscored

Insufficient validation of untrusted input in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13967 Unscored

Heap buffer overflow in V8 in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13966 Unscored

Inappropriate implementation in History in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13965 Unscored

Use after free in Oilpan in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML pa

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13964 Unscored

Insufficient policy enforcement in WebView in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to bypass navigation restrictions v

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13963 Unscored

Inappropriate implementation in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI ge

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13962 Unscored

Insufficient data validation in PDF in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to bypass na

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13961 Medium 5.3

Insufficient validation of untrusted input in DevTools in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who convinced a user to

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13960 Unscored

Inappropriate implementation in Passwords in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page.

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13959 Unscored

Insufficient validation of untrusted input in Blink in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass same origin policy via a cr

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13958 Medium 6.5

Uninitialized Use in Codecs in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from p

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13957 Unscored

Incorrect security UI in Extensions in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious extension to in

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13956 Medium 4.2

Incorrect security UI in PageInfo in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13955 Unscored

Insufficient validation of untrusted input in CustomTabs in Google Chrome on Android prior to 150.0.7871.47 allowed a local attacker to perform UI spoofing

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13954 Medium 6.5

Insufficient policy enforcement in XML in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive informa

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13953 Unscored

Inappropriate implementation in SplitView in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to byp

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13952 Unscored

Inappropriate implementation in PerformanceAPIs in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted H

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13951 Unscored

Insufficient policy enforcement in USB in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potent

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13950 Medium 5.3

Uninitialized Use in GPU in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to obtain potentially s

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13949 Medium 6.5

Insufficient policy enforcement in Payments in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive in

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13948 Unscored

Insufficient policy enforcement in Extensions in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious exten

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13947 Medium 5.3

Uninitialized Use in XR in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to obtain potentially se

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13946 Unscored

Inappropriate implementation in ScriptInjections in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a c

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13945 Unscored

Insufficient policy enforcement in Extensions in Google Chrome on Linux prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malici

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13944 Unscored

Inappropriate implementation in DataTransfer in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in spe

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13943 Medium 6.5

Uninitialized Use in CSS in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from proc

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13942 Unscored

Inappropriate implementation in Video Capture in Google Chrome on ChromeOS prior to 150.0.7871.47 allowed a local attacker to perform UI spoofing via a cra

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13941 Unscored

Inappropriate implementation in SiteSettings in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a craf

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13940 Medium 6.5

Uninitialized Use in Cast in Google Chrome prior to 150.0.7871.47 allowed an attacker on the local network segment to obtain potentially sensitive informat

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13939 Unscored

Insufficient validation of untrusted input in WebShare in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13938 Unscored

Integer overflow in Fonts in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML pag

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13937 Unscored

Insufficient policy enforcement in Passwords in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13936 Medium 6.5

Inappropriate implementation in Passwords in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive info

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13935 Unscored

Side-channel information leakage in ComputePressure in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a craft

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13934 Unscored

Insufficient validation of untrusted input in Dawn in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the ren

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13933 Medium 5.3

Insufficient policy enforcement in Passwords in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13932 Unscored

Inappropriate implementation in Sharing in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proce

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13931 Unscored

Inappropriate implementation in Media in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13930 Unscored

Insufficient policy enforcement in Actor in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass navigation restrictions via a crafted

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13929 Unscored

Insufficient policy enforcement in DevTools in Google Chrome on Android prior to 150.0.7871.47 allowed a local attacker to bypass navigation restrictions v

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13928 Unscored

Insufficient validation of untrusted input in Enterprise in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform privilege escalation

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13927 Unscored

Insufficient validation of untrusted input in UI in Google Chrome on Android prior to 150.0.7871.47 allowed a local attacker to perform privilege escalatio

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13926 Unscored

Insufficient validation of untrusted input in Network in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer pr

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13925 Unscored

Inappropriate implementation in Downloads in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in sp

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13924 Unscored

Insufficient validation of untrusted input in WebView in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13923 Medium 6.5

Uninitialized Use in GPU in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from proc

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13922 Unscored

Side-channel information leakage in Paint in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML pa

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13921 Unscored

Insufficient validation of untrusted input in DeviceBoundSessionCredentials in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass sam

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13920 Unscored

Insufficient validation of untrusted input in Media in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the re

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13919 Unscored

Insufficient policy enforcement in Extensions in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13918 Unscored

Use after free in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to potentially exploit heap corruption via a craf

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13917 Unscored

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13916 Unscored

Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafte

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13915 Unscored

Use after free in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI ges

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13914 Medium 5.5

Inappropriate implementation in Passwords in Google Chrome on Mac prior to 150.0.7871.47 allowed a local attacker to obtain potentially sensitive informati

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13913 Unscored

Insufficient policy enforcement in Autofill in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in spec

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13912 Unscored

Inappropriate implementation in Safe Browsing in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13911 Medium 5.3

Insufficient policy enforcement in Spellcheck in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13910 Unscored

Insufficient policy enforcement in WebXR in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a craft

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13909 Unscored

Insufficient policy enforcement in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to p

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13908 Unscored

Insufficient validation of untrusted input in Omnibox in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to enga

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13907 Medium 4.2

Inappropriate implementation in iOSWeb in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13906 Medium 6.5

Out of bounds read in Codecs in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from process mem

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13905 Medium 4.2

Race in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a local attacker to obtain potentially sensitive information from process mem

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13904 Unscored

Inappropriate implementation in Safe Browsing in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to bypass navigation restrictions vi

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13903 Unscored

Insufficient policy enforcement in Bluetooth in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform privilege escalation via a crafte

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13902 Unscored

Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafte

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13901 Unscored

Insufficient policy enforcement in Serial in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to pot

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13900 Unscored

Inappropriate implementation in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to by

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13899 Unscored

Use after free in HTML in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13898 Unscored

Use after free in Cast Receiver in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13897 Unscored

Insufficient policy enforcement in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform privilege escalation via a craft

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13896 Unscored

Insufficient policy enforcement in Glic in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass navigation restrictions via a crafted H

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13895 Medium 4.2

Inappropriate implementation in Autofill in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI ge

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13894 Unscored

Insufficient policy enforcement in Network in Google Chrome prior to 150.0.7871.47 allowed an attacker in a privileged network position to bypass navigatio

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13893 Unscored

Insufficient validation of untrusted input in WebUI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via malicio

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13892 Unscored

Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in s

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13891 Unscored

Insufficient validation of untrusted input in Extensions in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13890 Medium 5.3

Out of bounds read in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to obtain poten

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13889 Unscored

Side-channel information leakage in WebAuthentication in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data vi

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13888 Unscored

Use after free in Extensions in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTM

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13887 Unscored

Inappropriate implementation in NFC in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process t

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13886 Unscored

Insufficient policy enforcement in Isolated Web Apps in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass content security policy vi

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13885 Unscored

Use after free in Skia in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafte

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13884 Unscored

Integer overflow in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a local attacker to execute arbitrary code via malicious network traffic. (C

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13883 Unscored

Type Confusion in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13882 Unscored

Race in USB in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox esc

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13881 Unscored

Inappropriate implementation in WebAppInstalls in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass same origin policy via a crafted

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13880 Unscored

Use after free in USB in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perf

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13879 Medium 6.5

Use after free in Bluetooth in Google Chrome prior to 150.0.7871.47 allowed an attacker on the local network segment to obtain potentially sensitive inform

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13878 Unscored

Use after free in Bluetooth in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentiall

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13877 Medium 5.3

Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proc

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13876 Unscored

Inappropriate implementation in Network in Google Chrome prior to 150.0.7871.47 allowed an attacker in a privileged network position to bypass content secu

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13875 Medium 5.3

Insufficient validation of untrusted input in GPU in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the rend

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13874 Medium 5.3

Race in DataTransfer in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from process memory via

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13873 Medium 6.5

Out of bounds read in Layout in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from process mem

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13872 Unscored

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Android prior to 150.0.7871.47 allowed a local attacker to potentially per

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13871 Unscored

Insufficient policy enforcement in GuestView in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13870 Unscored

Use after free in WebView in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a cra

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13869 Unscored

Use after free in Device in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potential

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13868 Unscored

Inappropriate implementation in Network in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proce

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13867 Unscored

Inappropriate implementation in Geolocation in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML pag

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13866 Unscored

Inappropriate implementation in Input in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13865 Unscored

Insufficient validation of untrusted input in Enterprise in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a cra

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13864 Unscored

Insufficient policy enforcement in WebHID in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious extension

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13863 Unscored

Insufficient validation of untrusted input in CustomTabs in Google Chrome on Android prior to 150.0.7871.47 allowed a local attacker to perform privilege e

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13862 Unscored

Insufficient policy enforcement in Web Authentication (Passkeys & Security Keys) in Google Chrome on iOS prior to 150.0.7871.47 allowed an attacker in a pr

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13861 Unscored

Use after free in Core in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a

30 Jun 2026, 22:38 UTC View advisory →
CVE-2026-13860 Medium 4.2

Incorrect security UI in Autofill in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific U

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13859 Unscored

Inappropriate implementation in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially perform a sandbox escape via a craft

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13858 Medium 6.5

Out of bounds read in FFmpeg in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from process mem

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13857 Medium 4.2

Inappropriate implementation in Geometry in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI ge

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13856 Unscored

Insufficient validation of untrusted input in Speech in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the r

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13855 Unscored

Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures t

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13854 Unscored

Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13853 Unscored

Use after free in Journeys in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perfor

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13852 Unscored

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Android prior to 150.0.7871.47 allowed a local attacker to bypass discreti

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13851 Unscored

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Android prior to 150.0.7871.47 allowed a local attacker to bypass discreti

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13850 Unscored

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a local attacker to execute arbitrary c

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13849 Unscored

Insufficient validation of untrusted input in Chromoting in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to potentially perform

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13848 Unscored

Use after free in Forms in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML pag

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13847 Unscored

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13846 Unscored

Use after free in USB in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perf

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13845 Unscored

Use after free in DOM in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13844 Unscored

Use after free in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-level privilege escalation via a malici

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13843 Unscored

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who had compromised t

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13842 Unscored

Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to spoof the contents of the Omnibo

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13841 Unscored

Integer overflow in Skia in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13840 Unscored

Insufficient policy enforcement in Canvas in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML pa

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13839 Unscored

Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass same origin policy via a crafted HTML page.

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13838 Unscored

Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass same origin policy via a crafted HTML page.

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13837 Unscored

Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chro

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13836 Unscored

Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a craf

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13835 Unscored

Inappropriate implementation in XML in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially exploit heap corruption via a crafted

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13834 Unscored

Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proc

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13833 Unscored

Uninitialized Use in ANGLE in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chr

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13832 Unscored

Use after free in Headless in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perfor

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13831 Unscored

Out of bounds read and write in GPU in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to execute a

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13830 Unscored

Use after free in Chromoting in Google Chrome on Linux prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via malicious network tra

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13829 Unscored

Insufficient validation of untrusted input in Settings in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13828 Medium 6.5

Inappropriate implementation in Enterprise in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information fr

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13827 Unscored

Use after free in Updater in Google Chrome on Mac prior to 150.0.7871.47 allowed a local attacker to perform privilege escalation via a malicious file. (Ch

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13826 Unscored

Inappropriate implementation in Autofill in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proc

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13825 Unscored

Uninitialized Use in Dawn in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13824 Unscored

Insufficient policy enforcement in Extensions in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13823 Unscored

Use after free in Glic in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13822 Unscored

Inappropriate implementation in Extensions in Google Chrome on Android prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicio

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13821 Unscored

Use after free in Canvas in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML pa

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13820 Unscored

Out of bounds read in Skia in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to leak cross-

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13819 Unscored

Out of bounds read in ANGLE in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to perform an

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13818 Unscored

Inappropriate implementation in Passwords in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to bypass navigation restrictions via a crafted

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13817 Unscored

Insufficient validation of untrusted input in Glic in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially perform a sandbox escap

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13816 Unscored

Insufficient validation of untrusted input in File Input in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13815 Unscored

Use after free in Blink in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML pag

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13814 Unscored

Use after free in Views in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures to potenti

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13813 Unscored

Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13812 Unscored

Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13811 Unscored

Use after free in IME in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13810 Medium 6.5

Inappropriate implementation in Input in Google Chrome on Linux prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive informatio

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13809 Unscored

Side-channel information leakage in Safe Browsing in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13808 Medium 4.6

Insufficient data validation in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a local attacker to obtain potentially sensitive info

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13807 Unscored

Use after free in Import in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures to

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13806 Unscored

Insufficient validation of untrusted input in Accessibility in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the rende

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13805 Unscored

Use after free in GFX in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13804 Unscored

Use after free in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perf

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13803 Unscored

Type Confusion in Chrome Tabs in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially per

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13802 Unscored

Use after free in Views in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13801 Unscored

Integer overflow in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially pe

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13800 Unscored

Inappropriate implementation in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-level privilege escalatio

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13799 Unscored

Use after free in QUIC in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially exploit heap corruption via malicious network traff

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13798 Unscored

Heap buffer overflow in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentiall

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13797 Unscored

Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13796 Unscored

Integer overflow in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially pe

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13795 Unscored

Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to bypass navigation restriction

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13794 Unscored

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who convinced a u

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13793 Unscored

Insufficient policy enforcement in SVG in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13792 Unscored

Use after free in Touchbar in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker to potentially perform a sandbox escape via a crafted H

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13791 Unscored

Insufficient validation of untrusted input in Downloads in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malic

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13790 Unscored

Side-channel information leakage in Scroll in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML p

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13789 Unscored

Use after free in GPU in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a s

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13788 Unscored

Use after free in Fullscreen in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTML page

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13787 Unscored

Use after free in Chromoting in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via malicious network t

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13786 Unscored

Use after free in Ozone in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium secu

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13785 Unscored

Use after free in Bluetooth in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13784 Unscored

Use after free in Views in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures to potenti

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13783 Unscored

Use after free in Views in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures to potenti

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13782 Unscored

Use after free in Browser in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13781 Unscored

Insufficient validation of untrusted input in Skia in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proce

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13780 Unscored

Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer proc

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13779 Unscored

Use after free in Chromoting in Google Chrome on ChromeOS prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via malicious network

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13778 Unscored

Use after free in WebUSB in Google Chrome on Mac prior to 150.0.7871.47 allowed a local attacker to execute arbitrary code via a malicious peripheral. (Chr

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13777 Unscored

Insufficient validation of untrusted input in iOSWeb in Google Chrome on iOS prior to 150.0.7871.47 allowed a remote attacker to potentially exploit heap c

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13776 Unscored

Type Confusion in Dawn in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13775 Unscored

Use after free in GPU in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a s

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13774 Unscored

Use after free in Extensions in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious extension to execute a

30 Jun 2026, 22:37 UTC View advisory →
CVE-2026-13773 Medium 6

IBM WebSphere Extreme Scale 8.6.1.0 through 8.6.1.6 Approximately 50 generated CORBA stub classes in WebSphere eXtreme Scale's ogclient.jar call ORB.string

30 Jun 2026, 19:20 UTC View advisory →
CVE-2026-13772 High 7.5

IBM WebSphere Extreme Scale 8.6.1.0 through 8.6.1.6 's Object Query Language engine resolves attacker-supplied class names via Class.forName() and invokes

30 Jun 2026, 19:21 UTC View advisory →
CVE-2026-13768 Critical 9.5

Gardyn devices expose a privileged iothubowner key. Access to this key will allow a malicious user to invoke an IoTHub Registry Manager function which retu

02 Jul 2026, 23:40 UTC View advisory →
CVE-2026-13767 Medium 6.5

The Quiz Master Next plugin for WordPress is vulnerable to SQL Injection via stored quiz page data in versions up to, and including, 11.2.0. This is due to

16 Jul 2026, 07:51 UTC View advisory →
CVE-2026-13766 Critical 9.8

DBIx::QuickORM versions before 0.000026 for Perl allow SQL injection via unquoted SQL identifiers. The default SQL builder, a SQL::Abstract subclass, sets

30 Jun 2026, 11:20 UTC View advisory →
CVE-2026-13765 High 7.5

The LearnPress – WordPress LMS Plugin for Create and Sell Online Courses plugin for WordPress is vulnerable to Sensitive Information Exposure in all versio

17 Jul 2026, 03:43 UTC View advisory →
CVE-2026-13763 High 7.9

Inconsistent interpretation of HTTP/2 requests in AWS Application Load Balancer with AWS WAF enabled might allow remote actors to bypass AWS WAF managed ru

29 Jun 2026, 20:03 UTC View advisory →
CVE-2026-13762 High 7.9

Inconsistent interpretation of HTTP/2 requests in Amazon CloudFront with AWS WAF enabled might allow remote actors to bypass AWS WAF managed rule body insp

29 Jun 2026, 20:03 UTC View advisory →
CVE-2026-13759 High 7.5

IBM WebSphere Extreme Scale 8.6.1.0 through 8.6.1.6 ships three ObjectInputStream subclasses (WsObjectInputStream, ObjectStreamPool$ReusableInputStream, Ob

30 Jun 2026, 19:24 UTC View advisory →
CVE-2026-13758 Unscored

CryptX versions before 0.088_001 for Perl compare AEAD authentication tags in non-constant time in the streaming decrypt_done path. The decrypt_done($tag)

29 Jun 2026, 20:42 UTC View advisory →
CVE-2026-13757 Medium 6.2

A flaw was found in p11-kit. The RPC message attribute parsing functions p11_rpc_message_get_attribute() and p11_rpc_message_get_attribute_array_value() fo

29 Jun 2026, 18:44 UTC View advisory →
CVE-2026-13756 High 8.8

The WP Grid Builder plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.3.3. This is due to missing authoriz

11 Jul 2026, 01:29 UTC View advisory →
CVE-2026-13755 Medium 6.4

The Tickera – Sell Tickets & Manage Events plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'price_wrapper' Shortcode Attribute in all

16 Jul 2026, 07:51 UTC View advisory →
CVE-2026-13754 Medium 6.5

The Tickera – Sell Tickets & Manage Events plugin for WordPress is vulnerable to generic SQL Injection via the 's' parameter in all versions up to, and inc

16 Jul 2026, 07:51 UTC View advisory →
CVE-2026-13752 Medium 6

Improper neutralization of parameters in Snowflake CLI versions prior to 3.19 allowed unintended SQL execution. An attacker could exploit this by supplying

29 Jun 2026, 16:24 UTC View advisory →
CVE-2026-13751 Medium 4.1

Improper handling of untrusted remote references in Snowflake CLI versions prior to 3.19 allowed server-side request forgery. The SQL statement reader's !s

29 Jun 2026, 16:12 UTC View advisory →
CVE-2026-13750 Medium 5.5

Insertion of sensitive information into log files in Snowflake CLI versions prior to 3.19 allowed plaintext credentials to be written to persistent local d

29 Jun 2026, 16:07 UTC View advisory →
CVE-2026-13749 High 8.8

Improper neutralization in the Snowpark annotation processor callback template in Snowflake CLI versions prior to 3.19 allowed arbitrary code execution dur

29 Jun 2026, 16:02 UTC View advisory →
CVE-2026-13748 Medium 6.3

Improper restriction of file path resolution in Snowflake CLI versions prior to 3.19 allowed arbitrary local file content to be read and transmitted to Sno

29 Jun 2026, 15:58 UTC View advisory →
CVE-2026-13746 Low 3.6

Improper neutralization of local CLI parameters in Snowflake CLI versions prior to 3.19 allowed unintended SQL execution. A user could trigger this issue b

29 Jun 2026, 15:51 UTC View advisory →
CVE-2026-13744 High 8.3

Improper neutralization of attacker-controlled content in Snowflake CLI versions prior to 3.19 allowed unintended SQL execution. By supplying crafted repos

29 Jun 2026, 15:40 UTC View advisory →
CVE-2026-13743 Low 3.3

CubeSpace CW0057 Reaction Wheel firmware versions prior to 5.0.20 are vulnerable to an Improper Verification of Cryptographic Signature vulnerability. This

02 Jul 2026, 18:35 UTC View advisory →
CVE-2026-13742 Medium 5.9

Honeywell IQ MultiAccess, all versions prior to and including version 28, contain an improper digital signature verification vulnerability. An attacker cou

29 Jun 2026, 15:19 UTC View advisory →
CVE-2026-13741 High 8.8

The Digits: WordPress Mobile Number Signup and Login plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 9.1.0

16 Jul 2026, 08:26 UTC View advisory →
CVE-2026-13731 High 7.2

The WPBot – AI ChatBot for Live Support, Lead Generation, AI Services plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'conversati

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-13729 Unscored

The Podlove Podcast Publisher WordPress plugin before 4.5.3 does not perform nonce validation on some of its administrative create and delete actions, allo

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-13728 Medium 5.9

In exception circumstances, WatchGuard Fireware OS on a FireCluster may use a hard-coded encryption key to encrypt saved credentials for Access Portal reso

02 Jul 2026, 23:07 UTC View advisory →
CVE-2026-13725 Unscored

The Dynamic Pricing With Discount Rules for WooCommerce WordPress plugin before 5.0.0 does not validate a nonce or user capabilities on one of its AJAX act

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-13724 Medium 4.3

Client-Side Enforcement of Server-Side Security vulnerability in Gobito Informatics Technologies Engineering Industry and Trade Ltd. Co. Corporate Training

20 Jul 2026, 14:32 UTC View advisory →
CVE-2026-13722 High 8.6

WatchGuard Fireware OS contains a firmware validation bypass when processing a backup image via the backup/restore feature. An authenticated administrator

02 Jul 2026, 23:06 UTC View advisory →
CVE-2026-13713 Unscored

YAML::Syck versions before 1.47 for Perl allow a use-after-free and double-free via an anchor node freed while still on the parser value stack. In the bund

16 Jul 2026, 21:35 UTC View advisory →
CVE-2026-13710 Medium 6.4

The Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Script

10 Jul 2026, 09:32 UTC View advisory →
CVE-2026-13703 Unscored

The SEO Redirection Plugin WordPress plugin before 9.19 does not perform a capability check in one of its authenticated AJAX actions, allowing any logged-i

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-13699 Medium 4.3

In Eclipse KUKSA Databroker version 0.6.1, the kuksa.val.v2.VAL/PublishValue gRPC handler fails to validate the existence of the optional data_point field

14 Jul 2026, 07:38 UTC View advisory →
CVE-2026-13696 High 8.8

Improper neutralization of special elements used in an LDAP query ('LDAP injection') vulnerability in HAVELSAN Inc. Liman MYS allows LDAP Injection. This i

07 Jul 2026, 11:15 UTC View advisory →
CVE-2026-13694 Unscored

The Bit Form WordPress plugin before 3.1.0 does not properly validate its workflow-trigger token once the associated transient has expired, allowing unauth

21 Jul 2026, 06:00 UTC View advisory →
CVE-2026-13693 Unscored

The Bit Form WordPress plugin before 3.1.0 does not restrict a form file-field value to a safe path before reading the file and attaching it to a notificat

21 Jul 2026, 06:00 UTC View advisory →
CVE-2026-13676 High 7.5

fast-uri versions 2.3.1 through 3.1.2 and 4.0.0 fail to canonicalize Unicode (IDN) hostnames for HTTP-family URLs. The IDN conversion path calls a helper t

29 Jun 2026, 13:22 UTC View advisory →
CVE-2026-13609 Unscored

The Frontend Admin by DynamiApps WordPress plugin before 3.29.9 decodes HTML entities in a submitted form field value after sanitizing it, which restores H

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-13604 Unscored

The Pixelavo WordPress plugin before 1.5.4 registers an unauthenticated AJAX action, gated only by a nonce that it emits publicly on every front-end page,

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-13601 High 7.1

A flaw was found in Yelp due to an overly permissive Content Security Policy (CSP) implementation provided by yelp-xsl. A malicious Flatpak application can

29 Jun 2026, 09:20 UTC View advisory →
CVE-2026-13596 Unscored

The Participants Database WordPress plugin before 2.7.8.4 does not properly sanitize and escape a user-supplied parameter before using it in a SQL query, a

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-13595 Medium 6.8

A flaw was found in the libblkid library of util-linux. During nested partition probing, the BSD, Minix, Solaris x86, and UnixWare partition probers cache

29 Jun 2026, 08:06 UTC View advisory →
CVE-2026-13593 Medium 6.5

CSS::Minifier::XS versions before 0.14 for Perl have a memory leak when the entire document is minified away. The minify function has a memory leak when pr

29 Jun 2026, 19:37 UTC View advisory →
CVE-2026-13592 Medium 6.9

A vulnerability was detected in liftoff-sr CIPster up to e8e9dba09bf56962807d3504b783ccdb6287f3e4. Affected by this issue is the function BufWriter::append

29 Jun 2026, 17:15 UTC View advisory →
CVE-2026-13591 Low 2.3

A weakness has been identified in DeepMyst Mysti 0.4.0. Affected is the function _isTrackedConversation of the file src/managers/ChannelBridge.ts of the co

29 Jun 2026, 17:00 UTC View advisory →
CVE-2026-13590 Medium 6.3

A security flaw has been discovered in seladb PcapPlusPlus 25.05. This impacts the function pcpp::ModbusLayer::getLength in the library Packet++/header/Mod

29 Jun 2026, 16:45 UTC View advisory →
CVE-2026-13589 Medium 6.3

A vulnerability was identified in seladb PcapPlusPlus 25.05. This affects the function pcpp::TelnetLayer::getSubCommand of the file Packet++/src/TelnetLaye

29 Jun 2026, 16:30 UTC View advisory →
CVE-2026-13588 Medium 6.3

A vulnerability was determined in seladb PcapPlusPlus 25.05. The impacted element is the function pcpp::SSLClientHelloMessage::getHandshakeVersion of the f

29 Jun 2026, 16:15 UTC View advisory →
CVE-2026-13587 Medium 6.3

A vulnerability was found in seladb PcapPlusPlus 25.05. The affected element is the function parse_by_block_type of the file light_pcapng.c of the componen

29 Jun 2026, 16:00 UTC View advisory →
CVE-2026-13586 Medium 5.3

In Bouncy Castle for Java before 1.85, PKCS#12 MAC and bag-decryption KDF iteration-count bound (DoS). This issue also affects Bouncy Castle for Java LTS b

03 Aug 2026, 02:58 UTC View advisory →
CVE-2026-13585 High 8.2

Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Removed Before Reuse in the ASUS System Control Interface d

15 Jul 2026, 02:01 UTC View advisory →
CVE-2026-13583 High 8.7

A vulnerability has been found in Edimax EW-7478APC 1.04. Impacted is the function formUSBFolder of the file /goform/formUSBFolder of the component POST Re

29 Jun 2026, 15:45 UTC View advisory →
CVE-2026-13582 High 8.7

A flaw has been found in Edimax EW-7478APC 1.04. This issue affects the function formUSBAccount of the file /goform/formUSBAccount of the component POST Re

29 Jun 2026, 15:30 UTC View advisory →
CVE-2026-13581 Medium 5.3

A vulnerability was detected in Edimax EW-7478APC 1.04. This vulnerability affects the function formStaDrvSetup of the file /goform/formStaDrvSetup of the

29 Jun 2026, 15:15 UTC View advisory →
CVE-2026-13580 High 8.7

A security vulnerability has been detected in Edimax EW-7478APC 1.04. This affects the function formQoS of the file /goform/formQoS of the component POST R

29 Jun 2026, 15:00 UTC View advisory →
CVE-2026-13579 Medium 5.3

A weakness has been identified in itsourcecode Hospital Management System 1.0. Affected by this issue is some unknown functionality of the file /patientcha

29 Jun 2026, 14:45 UTC View advisory →
CVE-2026-13578 Medium 5.3

A security flaw has been discovered in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file

29 Jun 2026, 14:30 UTC View advisory →
CVE-2026-13577 High 8.2

Dancer2 versions through 2.1.0 for Perl generate insecure session ids when CSPRNG modules are unavailable. Dancer2::Core::Role::SessionFactory::generate_id

20 Jul 2026, 07:11 UTC View advisory →
CVE-2026-13574 Medium 4.8

A vulnerability was determined in llvm llvm-project up to 22.1.6. This impacts the function GCRelocateInst::getBasePtr in the library llvm/lib/IR/Intrinsic

29 Jun 2026, 14:15 UTC View advisory →
CVE-2026-13573 Medium 4.8

A vulnerability was found in llvm llvm-project up to 22.1.6. This affects the function llvm::StringMap::insert in the library /lib/IR/ValueSymbolTable.cpp

29 Jun 2026, 14:00 UTC View advisory →
CVE-2026-13572 Medium 5.3

A vulnerability has been found in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /insertbillingrecord

29 Jun 2026, 13:45 UTC View advisory →
CVE-2026-13571 Medium 6.9

A flaw has been found in SourceCodester Simple Food Ordering System 1.0. The affected element is an unknown function of the file /cart.php. Executing a man

29 Jun 2026, 13:30 UTC View advisory →
CVE-2026-13570 Medium 5.1

A vulnerability was detected in SourceCodester Inventory Management System 1.0. Impacted is an unknown function of the file /api/users_handler.php of the c

29 Jun 2026, 13:15 UTC View advisory →
CVE-2026-13569 Medium 5.1

A security vulnerability has been detected in weng-xianhu EyouCMS up to 1.7.1. This issue affects some unknown processing of the file /index.php of the com

29 Jun 2026, 13:00 UTC View advisory →
CVE-2026-13568 Medium 6.9

A weakness has been identified in SourceCodester Inventory Management System 1.0. This vulnerability affects unknown code of the file /api/users_handler.ph

29 Jun 2026, 12:45 UTC View advisory →
CVE-2026-13567 Medium 5.3

A security flaw has been discovered in code-projects Online Music Site 1.0. This affects an unknown part of the file /Frontend/Feedback.php of the componen

29 Jun 2026, 12:30 UTC View advisory →
CVE-2026-13566 Medium 6.9

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /p

29 Jun 2026, 12:15 UTC View advisory →
CVE-2026-13565 Medium 6.9

A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerability is an unknown functionality of

29 Jun 2026, 12:00 UTC View advisory →
CVE-2026-13564 High 8.7

A vulnerability was found in Edimax EW-7478APC 1.04. Affected is the function formPPPoESetup of the file /goform/formPPPoESetup of the component POST Reque

29 Jun 2026, 11:45 UTC View advisory →
CVE-2026-13563 High 8.7

A vulnerability has been found in Edimax EW-7478APC 1.04. This impacts the function formL2TPSetup of the file /goform/formL2TPSetup of the component POST R

29 Jun 2026, 11:30 UTC View advisory →
CVE-2026-13562 High 8.7

A flaw has been found in Edimax EW-7478APC 1.04. This affects the function formiNICSiteSurvey of the file /goform/formiNICSiteSurvey of the component POST

29 Jun 2026, 11:15 UTC View advisory →
CVE-2026-13561 Medium 5.3

A vulnerability was detected in Edimax EW-7478APC 1.04. The impacted element is the function formiNICbasic of the file /goform/formiNICbasic of the compone

29 Jun 2026, 11:00 UTC View advisory →
CVE-2026-13560 Medium 5.3

A security vulnerability has been detected in Edimax EW-7478APC 1.04. The affected element is the function formAccept of the file /goform/formAccept of the

29 Jun 2026, 10:45 UTC View advisory →
CVE-2026-13559 Medium 6.9

A weakness has been identified in code-projects Real State Services 1.0. Impacted is an unknown function of the file /single-list_sale.php?action=add. Exec

29 Jun 2026, 10:30 UTC View advisory →
CVE-2026-13558 Medium 5.1

A security flaw has been discovered in CodeAstro Complaint Management System 1.0. This issue affects some unknown processing of the file /report/addreport

29 Jun 2026, 10:15 UTC View advisory →
CVE-2026-13557 Medium 5.3

A vulnerability was identified in itsourcecode Online Hotel Management System 1.0. This vulnerability affects unknown code of the file /admin/mod_room/cont

29 Jun 2026, 10:00 UTC View advisory →
CVE-2026-13556 Medium 5.3

A vulnerability was determined in itsourcecode Online Hotel Management System 1.0. This affects an unknown part of the file /admin/mod_users/controller.php

29 Jun 2026, 09:45 UTC View advisory →
CVE-2026-13555 Medium 6.9

A vulnerability was found in itsourcecode Online Hotel Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/mod_u

29 Jun 2026, 09:30 UTC View advisory →
CVE-2026-13554 Medium 5.3

A vulnerability has been found in itsourcecode Online Hotel Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /

29 Jun 2026, 09:15 UTC View advisory →
CVE-2026-13553 Medium 6.9

A flaw has been found in itsourcecode Online Hotel Management System 1.0. Affected is an unknown function of the file /admin/mod_amenities/controller.php?a

29 Jun 2026, 09:00 UTC View advisory →
CVE-2026-13552 Medium 6.9

A vulnerability was detected in itsourcecode Online Hotel Management System 1.0. This impacts an unknown function of the file /admin/mod_amenities/controll

29 Jun 2026, 08:45 UTC View advisory →
CVE-2026-13551 Medium 6.9

A security vulnerability has been detected in itsourcecode Baptism Information Management System 1.0. This affects an unknown function of the file /editBap

29 Jun 2026, 08:30 UTC View advisory →
CVE-2026-13550 Medium 6.9

A weakness has been identified in itsourcecode Baptism Information Management System 1.0. The impacted element is an unknown function of the file /delbapti

29 Jun 2026, 08:15 UTC View advisory →
CVE-2026-13549 Medium 5.3

A security flaw has been discovered in CodeAstro Complaint Management System 1.0. The affected element is the function deletereport of the file application

29 Jun 2026, 08:00 UTC View advisory →
CVE-2026-13548 Medium 5.3

A vulnerability was identified in itsourcecode Hospital Management System 1.0. Impacted is an unknown function of the file /doctortimings.php. The manipula

29 Jun 2026, 07:45 UTC View advisory →
CVE-2026-13547 Medium 6.9

A vulnerability was determined in Hanwang e-Face General Management Platform 6.3.5.4. This issue affects some unknown processing of the file /manage/resour

29 Jun 2026, 07:30 UTC View advisory →
CVE-2026-13546 Medium 6.9

A vulnerability was found in Feehi CMS up to 2.1.1. This vulnerability affects unknown code of the file /api/articles of the component REST API Endpoint. P

29 Jun 2026, 07:15 UTC View advisory →
CVE-2026-13544 Medium 5.3

A flaw has been found in Feehi CMS up to 2.1.1. Affected by this issue is some unknown functionality of the file /api/users of the component API. This mani

29 Jun 2026, 06:45 UTC View advisory →
CVE-2026-13543 Medium 6.3

A vulnerability was detected in Documenso up to 2.11.0. Affected by this vulnerability is an unknown functionality of the file packages/auth/server/lib/uti

29 Jun 2026, 06:30 UTC View advisory →
CVE-2026-13542 Medium 5.3

A security vulnerability has been detected in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /doctorprofile.php.

29 Jun 2026, 06:15 UTC View advisory →
CVE-2026-13541 Medium 5.3

A weakness has been identified in itsourcecode Hospital Management System 1.0. This impacts an unknown function of the file /doctorchangepassword.php. Exec

29 Jun 2026, 06:00 UTC View advisory →
CVE-2026-13540 Medium 5.3

A security flaw has been discovered in GitBucket up to 4.46.1. This affects the function Git.cloneRepository.setURI of the file src/main/scala/gitbucket/co

29 Jun 2026, 05:45 UTC View advisory →
CVE-2026-13539 High 8.7

A vulnerability was identified in Wavlink WL-NU516U1-A M16U1_V240425. The impacted element is the function sub_407504 of the file /cgi-bin/wireless.cgi of

29 Jun 2026, 05:30 UTC View advisory →
CVE-2026-13538 Medium 5.3

A vulnerability was determined in Wavlink WL-NU516U1-A M16U1_V240425. The affected element is the function sub_401D68 of the file /cgi-bin/wireless.cgi of

29 Jun 2026, 05:15 UTC View advisory →
CVE-2026-13537 Medium 5.3

A vulnerability was found in CodeAstro Human Resource Management System 1.0. Impacted is an unknown function. The manipulation results in cross-site reques

29 Jun 2026, 05:00 UTC View advisory →
CVE-2026-13536 Medium 5.3

A vulnerability has been found in GotoHTTP up to 10.2. This issue affects some unknown processing of the file /reg.12x. The manipulation of the argument sn

29 Jun 2026, 04:45 UTC View advisory →
CVE-2026-13535 Medium 5.3

A flaw has been found in CodeAstro Human Resource Management System 1.0. This vulnerability affects the function GetFileInfo of the file hrsystem/applicati

29 Jun 2026, 04:30 UTC View advisory →
CVE-2026-13534 Low 2.3

A vulnerability was detected in CherryHQ cherry-studio up to 1.9.7. This affects the function sha256 of the file src/main/services/memory/MemoryService.ts

29 Jun 2026, 04:15 UTC View advisory →
CVE-2026-13533 Medium 6.9

A security vulnerability has been detected in agentejo Cockpit CMS up to 0.12.2. Affected by this issue is the function Spyc::YAMLLoad of the file /config/

29 Jun 2026, 04:00 UTC View advisory →
CVE-2026-13532 Medium 5.3

A weakness has been identified in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /depa

29 Jun 2026, 03:45 UTC View advisory →
CVE-2026-13531 Medium 5.3

A security flaw has been discovered in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /department.php. The manipu

29 Jun 2026, 03:30 UTC View advisory →
CVE-2026-13530 Medium 5.3

A vulnerability was identified in itsourcecode Hospital Management System 1.0. This impacts an unknown function of the file /appointmentdetail.php of the c

29 Jun 2026, 03:15 UTC View advisory →
CVE-2026-13529 Medium 6.3

A vulnerability was determined in YzmCMS up to 7.5. This affects an unknown function of the file /application/install/index.php. Executing a manipulation o

29 Jun 2026, 03:00 UTC View advisory →
CVE-2026-13528 Medium 6.9

A vulnerability was found in YunaiV/zhijiantianya ruoyi-vue-pro up to 2026.04-jdk8-SNAPSHOT. The impacted element is the function generateUploadPath of the

29 Jun 2026, 02:45 UTC View advisory →
CVE-2026-13527 Medium 6.9

A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0. The affected element is an unknown function of the file /preview4.p

29 Jun 2026, 02:30 UTC View advisory →
CVE-2026-13526 Medium 6.9

A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. Impacted is an unknown function of the file /edit_class.php. This manipulati

29 Jun 2026, 02:15 UTC View advisory →
CVE-2026-13525 Medium 5.3

A vulnerability was detected in CodeAstro Human Resource Management System 1.0. This issue affects the function emselectByCode of the file application/mode

29 Jun 2026, 02:00 UTC View advisory →
CVE-2026-13524 Medium 6.3

A security vulnerability has been detected in CherryHQ cherry-studio up to 1.9.6. This vulnerability affects unknown code of the file src/main/services/mcp

29 Jun 2026, 01:45 UTC View advisory →
CVE-2026-13523 Medium 4.8

A weakness has been identified in GPAC up to 26.02.0. This affects an unknown part of the file src/utils/base_encoding.c of the component ISOBMFF Parser. E

29 Jun 2026, 01:30 UTC View advisory →
CVE-2026-13522 Medium 5.3

A security flaw has been discovered in Investintech SlimPDFReader up to 2.0.14. Affected by this issue is the function SlimPDFReader!Investintech::PCV::Tei

29 Jun 2026, 01:15 UTC View advisory →
CVE-2026-13521 Medium 6.9

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0/5.php. Affected by this vulnerability is an unknown functionality of

29 Jun 2026, 01:00 UTC View advisory →
CVE-2026-13520 Medium 5.3

A vulnerability was determined in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /appointmentapproval.php of the

29 Jun 2026, 00:45 UTC View advisory →
CVE-2026-13519 High 8.7

A vulnerability was found in Tenda JD12L 16.03.53.23. This impacts the function fromNatStaticSetting of the file /goform/NatStaticSetting. The manipulation

29 Jun 2026, 00:30 UTC View advisory →
CVE-2026-13518 High 8.7

A vulnerability has been found in Tenda JD12L 16.03.53.23. This affects the function fromAddressNat of the file /goform/addressNat. The manipulation of the

29 Jun 2026, 00:15 UTC View advisory →
CVE-2026-13517 High 8.7

A flaw has been found in Tenda JD12L 16.03.53.23. The impacted element is the function formWifiBasicSet of the file /goform/WifiBasicSet. Executing a manip

29 Jun 2026, 00:00 UTC View advisory →
CVE-2026-13516 High 8.7

A vulnerability was detected in Tenda JD12L 16.03.53.23. The affected element is the function fromSetWifiGusetBasic of the file /goform/WifiGuestSet. Perfo

28 Jun 2026, 23:45 UTC View advisory →
CVE-2026-13515 High 8.7

A security vulnerability has been detected in Tenda JD12L 16.03.53.23. Impacted is the function formSetPPTPServer of the file /goform/SetPptpServerCfg. Suc

28 Jun 2026, 23:30 UTC View advisory →
CVE-2026-13514 Low 2.4

A weakness has been identified in Chess Play and Learn App up to 4.9.42 on Android. This issue affects some unknown processing of the file AndroidManifest.

28 Jun 2026, 23:15 UTC View advisory →
CVE-2026-13513 Low 2.3

A security flaw has been discovered in MyScale MyScaleDB up to 1.8.0. This vulnerability affects the function SegmentId::getCacheKey in the library src/Vec

28 Jun 2026, 23:00 UTC View advisory →
CVE-2026-13512 Medium 5.3

A vulnerability was identified in Databend up to 1.2.881 on HTTP. This affects the function ClientSessionManager::state_key of the file src/query/service/s

28 Jun 2026, 22:45 UTC View advisory →
CVE-2026-13511 Low 2.3

A vulnerability was determined in VoltAgent up to 2.1.17. Affected by this issue is the function handleGetMemoryConversation of the file packages/server-co

28 Jun 2026, 22:30 UTC View advisory →
CVE-2026-13510 Medium 6.3

A vulnerability was found in SimStudioAI sim up to 0.6.92. Affected by this vulnerability is an unknown functionality in the library apps/sim/lib/core/secu

28 Jun 2026, 22:15 UTC View advisory →
CVE-2026-13509 Medium 5.3

A vulnerability has been found in RAGapp up to 0.1.5. Affected is the function FileHandler.upload_file/FileHandler.remove_file of the file src/ragapp/backe

28 Jun 2026, 22:00 UTC View advisory →
CVE-2026-13508 Medium 5.1

A flaw has been found in khoj-ai khoj up to 2.0.0-beta.28. This impacts an unknown function of the file src/khoj/routers/api_chat.py of the component Conve

28 Jun 2026, 21:45 UTC View advisory →
CVE-2026-13507 Low 2.3

A vulnerability was detected in volcengine OpenViking up to 0.3.21. This affects the function str_to_uint64 of the file openviking/storage/vectordb/utils/s

28 Jun 2026, 21:30 UTC View advisory →
CVE-2026-13506 High 8.7

In Bouncy Castle for Java before 1.85, Lazy ASN.1 sequence forcing resets nesting-depth guard. This issue also affects Bouncy Castle for Java LTS before 2.

03 Aug 2026, 02:56 UTC View advisory →
CVE-2026-13504 Medium 5.1

A vulnerability has been found in code-projects Project Management System 1.0. This vulnerability affects unknown code of the file /mail.php of the compone

28 Jun 2026, 15:30 UTC View advisory →
CVE-2026-13503 Medium 6.9

A vulnerability was detected in antlr ANTLR4 up to 4.13.2. Affected by this issue is the function getImportedVocabFile of the file tool/src/org/antlr/v4/pa

28 Jun 2026, 15:15 UTC View advisory →
CVE-2026-13502 Low 2

A flaw has been found in antlr ANTLR4 up to 4.13.2. This affects the function ObjectInputStream.readObject of the file antlr4-maven-plugin/src/main/java/or

28 Jun 2026, 14:45 UTC View advisory →
CVE-2026-13501 Medium 4.8

A security vulnerability has been detected in antlr ANTLR4 up to 4.13.2. Affected by this vulnerability is the function GoTarget of the file tool/src/org/a

28 Jun 2026, 14:30 UTC View advisory →
CVE-2026-13500 Medium 6.9

A weakness has been identified in antlr ANTLR4 up to 4.13.2. Affected is an unknown function of the file tool/src/org/antlr/v4/codegen/model/OutputFile.jav

28 Jun 2026, 14:15 UTC View advisory →
CVE-2026-13499 Medium 5.3

A security flaw has been discovered in yashpokharna2555 restaurent-management-system. This impacts an unknown function of the file login_register.php of th

28 Jun 2026, 13:15 UTC View advisory →
CVE-2026-13498 Medium 6.9

A vulnerability was identified in yashpokharna2555 restaurent-management-system. This affects an unknown function of the file /forgotpassword.php of the co

28 Jun 2026, 13:00 UTC View advisory →
CVE-2026-13497 Medium 5.3

A vulnerability was determined in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /appointment.php. Th

28 Jun 2026, 12:45 UTC View advisory →
CVE-2026-13496 Medium 5.3

A vulnerability was found in itsourcecode Hospital Management System 1.0. The affected element is an unknown function of the file /ajaxmedicine.php. The ma

28 Jun 2026, 12:30 UTC View advisory →
CVE-2026-13495 Medium 5.1

A vulnerability has been found in itsourcecode Hospital Management System 1.0. Impacted is an unknown function of the file /adminprofile.php. The manipulat

28 Jun 2026, 12:15 UTC View advisory →
CVE-2026-13493 Low 2.3

A flaw has been found in AIDC-AI ComfyUI-Copilot up to 2.0.28. This issue affects some unknown processing of the file backend/controller/conversation_api.p

28 Jun 2026, 12:00 UTC View advisory →
CVE-2026-13491 Medium 6.3

A vulnerability was detected in 78 xiaozhi-esp32 up to 2.2.6. This vulnerability affects the function Application::GetInstance of the file main/protocols/m

28 Jun 2026, 11:15 UTC View advisory →
CVE-2026-13490 Medium 6.3

A security vulnerability has been detected in glpi-project glpi 11.0.5/11.0.6/11.0.7. This affects the function Document::canViewFile of the file front/doc

28 Jun 2026, 11:00 UTC View advisory →
CVE-2026-13489 Low 2.3

A weakness has been identified in 78 xiaozhi-esp32 up to 2.2.6. Affected by this issue is the function ParseMessage of the file main/mcp_server.cc of the c

28 Jun 2026, 10:45 UTC View advisory →
CVE-2026-13488 Medium 6.9

A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0/7.php. Affected by this vulnerability is an unknown functionali

28 Jun 2026, 10:30 UTC View advisory →
CVE-2026-13487 Medium 6.9

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file /archive.php. The manip

28 Jun 2026, 10:15 UTC View advisory →
CVE-2026-13486 Medium 6.9

A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/6.php. This impacts an unknown function of the file /preview6.php. E

28 Jun 2026, 09:45 UTC View advisory →
CVE-2026-13485 Medium 6.9

A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown function of the file /preview.php. Performing a

28 Jun 2026, 09:15 UTC View advisory →
CVE-2026-13484 Low 2.3

A vulnerability has been found in MLflow up to 4666cffc7912ea606d592fc38d6a75e2935f65e7. The impacted element is an unknown function of the component Exper

28 Jun 2026, 08:30 UTC View advisory →
CVE-2026-13483 Low 2.3

A flaw has been found in arc53 DocsGPT up to 0.18.0. The affected element is the function encrypt_credentials of the file application/security/encryption.p

28 Jun 2026, 05:45 UTC View advisory →
CVE-2026-13482 Medium 6.3

A vulnerability was detected in skypilot-org skypilot up to 0.12.0. Impacted is the function username.encode of the file sky/users/server.py of the compone

28 Jun 2026, 04:30 UTC View advisory →
CVE-2026-13477 Medium 4.7

IBM QRadar 7.6.0.0 through 7.6.0.1, and 7.5.0 through 7.5.0 UP 15 Interim Fix 005 could allow an authenticated privileged user to execute arbitrary command

05 Aug 2026, 15:59 UTC View advisory →
CVE-2026-13474 High 8.7

Denial of service via malformed HTTP/2 requests in NetScaler ADC and NetScaler Gateway if HTTP/2 is enabled in HTTP Profile and associated with the virtual

30 Jun 2026, 13:03 UTC View advisory →
CVE-2026-13473 High 8.1

IBM Storage Protect Client 8.1.0.0 through 8.1.27.0, 8.1.27.1, and 8.2.0.0 through 8.2.1.0 IBM Storage Protect is vulnerable to a heap-based buffer overflo

17 Jul 2026, 19:58 UTC View advisory →
CVE-2026-13468 High 7.5

The Visualizer – Tables & Charts Manager with Built-in AI Generator plugin for WordPress is vulnerable to authorization bypass in all versions up to, and i

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-13459 Medium 5.3

The JetFormBuilder — Dynamic Blocks Form Builder plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.6.3. Th

02 Jul 2026, 08:33 UTC View advisory →
CVE-2026-13458 Medium 6.4

The GenerateBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Dynamic Tag Injection in HTML Attributes in all versions up to, an

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-13455 Medium 4.3

PostgreSQL Anonymizer contains a vulnerability that allows unprivileged masked users to repeatedly call the anon.hash() function and collects (seed, hash_o

30 Jun 2026, 15:19 UTC View advisory →
CVE-2026-13449 High 7.6

IBM Business Automation Manager Open Editions 9.0.0 through 9.4.2 is vulnerable to an XML external entity injection (XXE) attack when processing XML data.

30 Jun 2026, 19:32 UTC View advisory →
CVE-2026-13448 High 8.1

IBM Langflow OSS 1.0.0 through 1.10.1 Lanflow OSS contains an unauthenticated remote code execution vulnerability in the public flow build endpoint ( /api/

17 Jul 2026, 20:03 UTC View advisory →
CVE-2026-13446 Critical 9.8

IBM Langflow OSS 1.0.0 through 1.10.1 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentic

17 Jul 2026, 20:43 UTC View advisory →
CVE-2026-13445 High 8.1

IBM Langflow OSS 1.0.0 through 1.10.1 can allow an authenticated attacker to exploit the SaveToFile component to read and modify another user's uploaded fi

17 Jul 2026, 20:44 UTC View advisory →
CVE-2026-13444 High 8.1

IBM Langflow OSS 1.0.0 through 1.10.1 can allow an attacker to access another user's private vector documents by creating their own flow with matching Chro

30 Jul 2026, 18:38 UTC View advisory →
CVE-2026-13443 Medium 6.4

The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Lesson Attachment Title in all v

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-13439 Critical 9.8

The Easy Form Builder by WhiteStudio plugin for WordPress is vulnerable to Unauthenticated Privilege Escalation to Administrator in versions up to, and inc

21 Jul 2026, 05:35 UTC View advisory →
CVE-2026-13437 Medium 6.5

Insertion of sensitive information into sent data in the AI Agent job API in Devolutions PowerShell Universal 2026.2.0 allows an authenticated user with AI

29 Jun 2026, 15:23 UTC View advisory →
CVE-2026-13435 Critical 9.9

IBM Langflow OSS 1.0.0 through 1.10.1 contains an improper input validation vulnerability in the PythonREPL sandbox implementation.

30 Jul 2026, 16:48 UTC View advisory →
CVE-2026-13434 Medium 4.9

A flaw was found in KubeVirt's network annotation generator. When a tenant creates a VirtualMachineInstance with a Multus network configuration, the suppli

26 Jun 2026, 16:00 UTC View advisory →
CVE-2026-13426 Medium 5.4

The Mattermost Go module github.com/mattermost/mattermost/server/public versions < v0.1.22 fail to validate path parameters when constructing API route pat

26 Jun 2026, 13:47 UTC View advisory →
CVE-2026-13422 Medium 4.3

The HD Quiz plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions 2.2.0 to 2.2.1. This is due to missing or incorrect nonce validati

27 Jun 2026, 01:27 UTC View advisory →
CVE-2026-13410 High 8.2

Dancer::Plugin::Auth::Google versions through 0.07 for Perl have TLS verification disabled. The default user agent is initialised with SSL_verify_mode expl

17 Jul 2026, 12:50 UTC View advisory →
CVE-2026-13402 Unscored

The Royal Addons for Elementor WordPress plugin before 1.7.1063 does not check the post status of menu items or the templates they reference in one of its

17 Jul 2026, 06:00 UTC View advisory →
CVE-2026-13401 Unscored

XML::Bare versions through 0.53 for Perl will hang in an infinite loop when parsing malformed attributes. The parserc_parse function never advances the att

16 Jul 2026, 16:14 UTC View advisory →
CVE-2026-13399 High 7.5

The Payment Plugins for PayPal WooCommerce WordPress plugin before 2.0.20 does not have proper authorization checks on a REST endpoint, allowing unauthenti

06 Aug 2026, 16:52 UTC View advisory →
CVE-2026-13397 Unscored

HTML::Bare versions through 0.04 for Perl will hang in an infinite loop when parsing malformed attributes. The parserc_parse function never advances the at

16 Jul 2026, 16:14 UTC View advisory →
CVE-2026-13393 Unscored

The ElementsKit Elementor Addons WordPress plugin before 3.10.01 does not sanitize or escape certain megamenu menu-item settings before storing them and ou

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-13392 Unscored

The ElementsKit Elementor Addons WordPress plugin before 3.10.01 does not prevent a custom-widget definition saved by a user with administrative capabiliti

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-13389 Unscored

The webtoffee-cookie-consent WordPress plugin before 3.5.3 does not perform authorization checks on several of its REST API routes, allowing unauthenticate

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-13385 Critical 9.5

An Improper Validation of Integrity Check Value and Improper Certificate Validation in certain ASUS router models allows a remote man-in-the-middle(MITM) u

15 Jul 2026, 02:01 UTC View advisory →
CVE-2026-13384 High 8.6

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS wgagent process could allow an authenticated privileged user to execute arbitrary code via a

02 Jul 2026, 23:05 UTC View advisory →
CVE-2026-13383 High 8.6

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS ikestubd process could allow an authenticated privileged user to execute arbitrary code via

02 Jul 2026, 23:05 UTC View advisory →
CVE-2026-13381 High 8.7

VSee Clinic 7.1.26 and API 1.3.0 contain an Insecure Direct Object Reference (IDOR) vulnerability in the /v1.3.0/api/files endpoint. An authenticated attac

20 Jul 2026, 20:12 UTC View advisory →
CVE-2026-13380 Critical 9

VSee Clinic 7.1.26 and VSee Clinic API 1.3.0 exposes cleartext SFTP credentials in the HTTP responses of three unauthenticated endpoints. The credentials a

20 Jul 2026, 20:11 UTC View advisory →
CVE-2026-13379 Medium 5.1

The Windows interactive service in OpenVPN 2.7_alpha1 through 2.7.4 allows remote attackers to cause persistent DNS state pollution or a service crash via

30 Jul 2026, 16:28 UTC View advisory →
CVE-2026-13378 High 7.2

The Form Vibes – Database Manager for Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Contact Form 7 Form Field in all versions

11 Jul 2026, 04:32 UTC View advisory →
CVE-2026-13377 Medium 4.8

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS SIP Proxy module allows

02 Jul 2026, 23:05 UTC View advisory →
CVE-2026-13376 Medium 4.8

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS spamBlocker module allo

02 Jul 2026, 23:05 UTC View advisory →
CVE-2026-13375 Medium 4.8

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS (Autotask Technology In

02 Jul 2026, 23:05 UTC View advisory →
CVE-2026-13374 Medium 4.8

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS (ConnectWise Technology

02 Jul 2026, 23:05 UTC View advisory →
CVE-2026-13373 Medium 4.8

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS (Tigerpaw Technology In

02 Jul 2026, 23:05 UTC View advisory →
CVE-2026-13372 High 7.2

Incorrect link resolution by display name in the custom PowerShell VPN editor in Devolutions Remote Desktop Manager 2026.2.5 through 2026.2.11 allows an au

26 Jun 2026, 18:22 UTC View advisory →
CVE-2026-13371 Medium 6.9

An authenticated administrator can trigger a denial-of-service condition in the Fireware Management Web UI by sending malformed or crafted data to the put_

02 Jul 2026, 23:04 UTC View advisory →
CVE-2026-13369 High 7.5

The Ninja Forms - File Uploads plugin for WordPress is vulnerable to Arbitrary File Read via the attach_files() function in versions up to, and including,

02 Jul 2026, 09:32 UTC View advisory →
CVE-2026-13368 Critical 9.2

WatchGuard Fireware OS contains a race condition leading to a use-after-free vulnerability in LDAP authentication for the Mobile User VPN with IKEv2. A rem

02 Jul 2026, 23:06 UTC View advisory →
CVE-2026-13362 Medium 6.4

The SendPulse Email Marketing Newsletter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via _sp_form_code Post Meta in all versions up t

01 Aug 2026, 01:29 UTC View advisory →
CVE-2026-13353 High 8.8

The WP Ultimate CSV Importer – WordPress Import & Export for CSV, XML & Excel plugin for WordPress is vulnerable to Remote Code Execution in all versions u

11 Jul 2026, 02:31 UTC View advisory →
CVE-2026-13352 High 8.8

The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress plugin for WordPress is vulnerabl

17 Jul 2026, 03:43 UTC View advisory →
CVE-2026-13351 High 7.5

Zephyr's IPv6 network stack can be prevented from receiving or processing future incoming packets by sending a small number of maliciously fragmented IPv6

25 Jun 2026, 16:27 UTC View advisory →
CVE-2026-13350 Low 2.3

Permissions where checked incorrectly during room creation, allowing attackers to create rooms of types they shouldn't be allowed to create.

25 Jun 2026, 16:05 UTC View advisory →
CVE-2026-13342 Medium 5.3

The Security Optimizer WordPress plugin from 1.5.8 to 1.6.4 does not correctly validate requests to its optional IP-based login restriction feature, allowi

06 Aug 2026, 17:07 UTC View advisory →
CVE-2026-13340 Unscored

The SVG Support WordPress plugin before 2.5.17 does not apply its SVG sanitisation to uploaded files using the .svgz extension, even though it registers an

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-13339 High 7.5

The CubeWP Framework plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.1.30 via the 'cubewp_get_svg_content

01 Aug 2026, 23:29 UTC View advisory →
CVE-2026-13335 Medium 6.4

The CodePeople Post Map for Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'cpm_point' Post Meta in all versions up to,

27 Jun 2026, 01:27 UTC View advisory →
CVE-2026-13333 Medium 6.5

The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to generic SQL Injection via 'query[select]' Parameter in al

27 Jun 2026, 01:27 UTC View advisory →
CVE-2026-13331 Medium 6.5

The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to generic SQL Injection via the 'search' parameter in all v

27 Jun 2026, 01:27 UTC View advisory →
CVE-2026-13329 Unscored

The Buckaroo Woocommerce Payments Plugin WordPress plugin before 4.9.0 does not perform any capability check or nonce validation on an AJAX action that pro

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-13325 High 8.5

A flaw was found in KubeVirt's migration proxy. When spec.configuration.migrations.disableTLS is set to true on the KubeVirt custom resource, the target vi

26 Jun 2026, 10:41 UTC View advisory →
CVE-2026-13322 Low 3.8

A flaw was found in KubeVirt's downward metrics virtio-serial server. The server reads guest requests using textproto.Reader.ReadLine(), which buffers inpu

26 Jun 2026, 00:04 UTC View advisory →
CVE-2026-13321 High 8.6

The BIND resolver accepts validly-signed NSEC records where the "Next Domain Name" field points outside the signer's zone. This issue affects BIND 9 versio

22 Jul 2026, 14:16 UTC View advisory →
CVE-2026-13320 High 7.3

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.7 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certa

08 Jul 2026, 20:46 UTC View advisory →
CVE-2026-13318 Medium 6.4

A server-side request forgery (SSRF) flaw was found in KubeVirt's virt-api port-forward handler. When processing a port-forward request to a VirtualMachine

25 Jun 2026, 23:23 UTC View advisory →
CVE-2026-13316 Medium 4.4

A flaw has been found in foreman when HTTP parameters are modified in http_proxies_controller and http_proxy files. Attackers can perform an SSRF attack an

30 Jun 2026, 09:53 UTC View advisory →
CVE-2026-13314 Low 2

Malicious HTML content could be injected into the content rendered by the pretix-digital plugin.

25 Jun 2026, 13:53 UTC View advisory →
CVE-2026-13311 High 8.7

shell-quote prior to 1.8.5 finalizes parsed tokens in parse() using Array.prototype.concat as a reduce accumulator, which reallocates and copies the entire

25 Jun 2026, 04:48 UTC View advisory →
CVE-2026-13295 Medium 6.4

The Page Builder by SiteOrigin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via panels_data Parameter in all versions up to, and inclu

27 Jun 2026, 06:50 UTC View advisory →
CVE-2026-13283 Unscored

Use after free in AdFilter in Google Chrome on Android prior to 149.0.7827.201 allowed a remote attacker who convinced a user to engage in specific UI gest

25 Jun 2026, 21:51 UTC View advisory →
CVE-2026-13282 Medium 6.8

Use after free in Payments in Google Chrome on Android prior to 149.0.7827.201 allowed a local attacker to potentially exploit heap corruption via physical

25 Jun 2026, 21:51 UTC View advisory →
CVE-2026-13281 Unscored

Integer overflow in Mojo in Google Chrome prior to 149.0.7827.201 allowed a remote attacker who had compromised the renderer process to potentially perform

25 Jun 2026, 21:51 UTC View advisory →
CVE-2026-13262 Medium 6.5

The Majestic Support – The Leading-Edge Help Desk & Customer Support Plugin plugin for WordPress is vulnerable to generic SQL Injection via the 'val' param

11 Jul 2026, 02:31 UTC View advisory →
CVE-2026-13252 Medium 6.4

The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vulnerable to Stored Cross-Site Sc

02 Jul 2026, 08:33 UTC View advisory →
CVE-2026-13251 High 7.5

The Perfmatters plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.6.4 via the 's' parameter. This makes it

02 Jul 2026, 09:32 UTC View advisory →
CVE-2026-13250 Medium 5.3

The Solace Extra plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.5.3. This is due to the plugin not prop

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-13247 Medium 6.4

The Logo Slider – Logo Carousel, Client Logo Slider & Brand Showcase for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via th

10 Jul 2026, 09:32 UTC View advisory →
CVE-2026-13246 Medium 6.4

The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'block_id' (and other) shor

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-13245 Medium 6.1

The MaxButtons – Create buttons plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'view' parameter in all versions up to, and in

27 Jun 2026, 05:33 UTC View advisory →
CVE-2026-13244 Unscored

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Tealium iQ Tag Management allows Object Injection. T

10 Jul 2026, 21:46 UTC View advisory →
CVE-2026-13243 Unscored

Cross-Site Request Forgery (CSRF) vulnerability in Drupal Salesforce Suite allows Cross Site Request Forgery. This issue affects Salesforce Suite versions:

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13242 Unscored

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Drupal Geolocation Field allows SQL Injection. This i

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13241 Unscored

Missing Authorization vulnerability in Drupal Paragraphs allows Forceful Browsing. This issue affects Paragraphs versions: from 0.0.0 to 1.21.0.

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13240 Unscored

Missing Authorization vulnerability in Drupal Paragraphs allows Forceful Browsing. This issue affects Paragraphs versions: from 0.0.0 to 1.21.0.

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13239 Unscored

Missing Authorization vulnerability in Drupal WissKI allows Forceful Browsing. This issue affects WissKI versions: from 0.0.0 to 4.2.0.

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13238 Unscored

Incorrect Authorization vulnerability in Drupal Commerce Realex / Global Payments allows Forceful Browsing. This issue affects Commerce Realex / Global Pay

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13237 Unscored

Incorrect Authorization vulnerability in Drupal AI Agents allows Forceful Browsing. This issue affects AI Agents versions: from 0.0.0 to 1.1.4, from 1.2.0

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13236 Unscored

Missing Authorization vulnerability in Drupal AI Agents allows Forceful Browsing. This issue affects AI Agents versions: from 0.0.0 to 1.1.4, from 1.2.0 to

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13235 Unscored

Missing Authorization vulnerability in Drupal AI (Artificial Intelligence) allows Forceful Browsing. This issue affects AI (Artificial Intelligence) versio

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13234 Unscored

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal AI (Artificial Intelligence) allows Cross-Site

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13233 Unscored

Server-Side Request Forgery (SSRF) vulnerability in Drupal OpenAI Provider allows Server Side Request Forgery. This issue affects OpenAI Provider versions:

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13232 Unscored

Incorrect Authorization vulnerability in Drupal Advanced Content Feedback (aka admin_feedback) allows Forceful Browsing. This issue affects Advanced Conten

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13231 Unscored

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Advanced Content Feedback (aka admin_feedback)

10 Jul 2026, 21:44 UTC View advisory →
CVE-2026-13230 Medium 5.3

An information disclosure vulnerability was identified in TP-Link Kasa EC70 v4 and EC71 v4 in the local discovery mechanism, which exposes sensitive geoloc

15 Jul 2026, 00:21 UTC View advisory →
CVE-2026-13229 High 7.1

Zammad 7.1.0 contains an authenticated improper authorization vulnerability in the ticket article attachment cloning endpoint.

04 Aug 2026, 18:12 UTC View advisory →
CVE-2026-13227 High 7.1

An Improper Authorization vulnerability exists in ERPNext version <v16.25.0 and <15.115.0 due to insufficient access control in the whitelisted API method

04 Aug 2026, 20:53 UTC View advisory →
CVE-2026-13226 Medium 6.5

The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to generic SQL Injection via the 'after' parameter in all ve

26 Jun 2026, 01:27 UTC View advisory →
CVE-2026-13225 Medium 5.3

Malicious HTML content could be injected into the email address of an order, which pretix showed without sanitization on the confirmation page for individu

25 Jun 2026, 14:26 UTC View advisory →
CVE-2026-13223 Medium 6.3

Our payment integration with Computop-based payment methods did not properly validate payment status responses. An attacker could use a successful payment

25 Jun 2026, 14:03 UTC View advisory →
CVE-2026-13222 Medium 6.3

Our payment integration with Oppwa-based payment methods did not properly validate payment status responses. An attacker could use a successful payment sta

25 Jun 2026, 14:07 UTC View advisory →
CVE-2026-13221 Unscored

Perl versions through 5.43.9 produce silently incorrect regular expression matches when an alternation of more than 65535 fixed string branches is compiled

13 Jul 2026, 15:40 UTC View advisory →
CVE-2026-13218 Medium 4.2

A flaw was found in KubeVirt's virt-handler network cache handling. The WriteToCachedFile function writes data to a launcher-rooted path using os.WriteFile

25 Jun 2026, 23:23 UTC View advisory →
CVE-2026-13208 Medium 6.5

A flaw was found in KubeVirt's virt-handler domain notify server. The gRPC handlers for HandleDomainEvent and HandleK8SEvent derive the VMI identity (names

24 Jun 2026, 20:39 UTC View advisory →
CVE-2026-13207 High 8.7

FUXA versions 1.3.1 and prior contain an authentication bypass vulnerability via dot-segment path normalization in the REST API. The API router fails to no

30 Jun 2026, 20:24 UTC View advisory →
CVE-2026-13204 High 7.5

If a provably insecure domain is covered by both an NSEC and NSEC3 record at the parent, and there exist an RRSIG for only one of these types, then BIND ma

22 Jul 2026, 14:15 UTC View advisory →
CVE-2026-13201 Medium 5.2

A flaw was found in KubeVirt's safepath package. The OpenAtNoFollow function uses O_PATH|O_NOFOLLOW to obtain a file descriptor to a path leaf, but downstr

24 Jun 2026, 20:39 UTC View advisory →
CVE-2026-13199 Medium 5.1

EEPROM firmware on Raspberry Pi 5 and Compute Module 5 devices produced non-random KASLR and RNG seed values. This resulted in consistent kernel addresses

07 Jul 2026, 08:36 UTC View advisory →
CVE-2026-13192 Medium 6.5

In Progress® Telerik® UI for AJAX prior to v2026.2.708, insufficient validation of content submitted to the RadEditor PDF export feature may allow an authe

22 Jul 2026, 13:44 UTC View advisory →
CVE-2026-13190 High 8.1

In Progress® Telerik® UI for AJAX prior to v2026.2.708, a deserialization vulnerability in the persistence utilities allows unsafe type instantiation from

22 Jul 2026, 13:43 UTC View advisory →
CVE-2026-13189 High 7.5

In Progress® Telerik® UI for AJAX prior to v2026.2.708, insufficient validation of the language parameter in the spell check handler may allow an attacker

22 Jul 2026, 13:42 UTC View advisory →
CVE-2026-13188 Medium 5.9

In Progress® Telerik® UI for AJAX prior to v2026.2.708, DialogHandler request parameters may be tampered with, potentially altering dialog server-side beha

22 Jul 2026, 13:41 UTC View advisory →
CVE-2026-13187 High 8.1

In Progress® Telerik® UI for AJAX prior to v2026.2.708, DialogHandler provider type input may be tampered with, potentially altering dialog processing and

22 Jul 2026, 13:40 UTC View advisory →
CVE-2026-13186 High 8.1

In Progress® Telerik® UI for AJAX prior to v2026.2.708, a path traversal vulnerability in the file-based persistence storage provider can be exploited when

22 Jul 2026, 13:39 UTC View advisory →
CVE-2026-13185 High 8.1

In Progress® Telerik® UI for AJAX prior to v2026.2.708, applications using cookie-based storage in RadPersistenceManager or RadDockLayout deserialize attac

22 Jul 2026, 13:38 UTC View advisory →
CVE-2026-13184 High 7.5

In Progress® Telerik® UI for AJAX prior to v2026.2.708, when Telerik.Upload.ConfigurationHashKey is absent and machineKey is not explicitly configured, upl

22 Jul 2026, 13:37 UTC View advisory →
CVE-2026-13183 High 7.5

In Progress® Telerik® UI for AJAX prior to v2026.2.708, RadAsyncUpload upload metadata processing may leak cryptographic validity through measurable timing

22 Jul 2026, 13:36 UTC View advisory →
CVE-2026-13182 High 7.5

In Progress® Telerik® UI for AJAX prior to v2026.2.708, RadAsyncUpload client-state processing can distinguish decrypt failures from invalid-JSON parse fai

22 Jul 2026, 13:34 UTC View advisory →
CVE-2026-13181 High 8.1

In Progress® Telerik® UI for AJAX prior to v2026.2.708, forged upload metadata can influence AsyncUploadTypeName processing and trigger unsafe attacker-con

22 Jul 2026, 13:33 UTC View advisory →
CVE-2026-13165 High 8.6

SzafirHost verifies the downloaded native library archive with one JarFile parser (reading the Central Directory) but extracts native libraries with JarInp

29 Jun 2026, 12:16 UTC View advisory →
CVE-2026-13164 High 8.8

Missing Authentication for Critical Function (CWE-306) in the RegisterView (apps/accounts/views.py), exposed at POST /api/auth/register/, in MailerUp <1.0.

24 Jun 2026, 15:37 UTC View advisory →
CVE-2026-13163 Medium 5.3

Open redirect vulnerability (CWE-601) in the _safe_redirect function of the click-tracking endpoint (/c//) in Mailerup <1.0.0 on all platforms allows remot

24 Jun 2026, 12:49 UTC View advisory →
CVE-2026-13158 Unscored

The Everest Toolkit WordPress plugin through 1.2.3 does not validate the type of files uploaded during demo-content import (the WordPress file-type test is

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-13157 Unscored

The Demo Import WordPress plugin through 1.1.3 does not validate the type of files uploaded during demo-content import (the WordPress file-type test is dis

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-13154 Unscored

The Gutenberg Essential Blocks WordPress plugin before 6.4.0 does not verify that an attacker-supplied post type is publicly viewable before querying it in

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-13153 Unscored

The Gutenberg Essential Blocks WordPress plugin before 6.4.0 does not restrict access to one of its public REST routes and over-fetches a non-public WooCom

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-13151 Low 2.7

GitLab has remediated an issue in GitLab EE affecting all versions from 16.10 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain

08 Jul 2026, 20:46 UTC View advisory →
CVE-2026-13150 Medium 6.9

Server-Side Request Forgery (SSRF) (CWE-918) in the PDF generation endpoint GET /api/reports/{id}/pdf (backend/main.py) in ccyl13 Pentestify 1.0.0 and lowe

24 Jun 2026, 10:45 UTC View advisory →
CVE-2026-13149 High 7.7

brace-expansion through 5.0.6 is vulnerable to denial of service. The expand() function exhibits exponential-time complexity in the number of consecutive n

30 Jun 2026, 08:30 UTC View advisory →
CVE-2026-13140 Low 1.1

Stored Cross-Site Scripting in the exposed AWS API key store of Thinkst Applied Research Canarytokens. Anonymous exploitation requires knowledge of a rando

24 Jun 2026, 11:12 UTC View advisory →
CVE-2026-13129 High 7.8

When the application opens a PDF file, JavaScript uses the damaged field tree to trigger field traversal, resulting in the program holding an invalid form

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-13128 High 7.8

Embedding JavaScript within a PDF file will cause the page to be deleted. Subsequent scripts will continue to access the relevant properties of the documen

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-13127 High 7.8

The application opens the PDF file. JavaScript then rewrites the document to modify the page structure, resulting in the invalidation of the page objects.

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-13126 High 7.8

The embedded JavaScript in the PDF deleted the pages, making the object invalid. The application attempted to perform a write operation on the invalid pop-

08 Jul 2026, 07:36 UTC View advisory →
CVE-2026-13117 Medium 6

An incomplete guard in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers to trigger a use-after-free during TLS s

30 Jul 2026, 16:32 UTC View advisory →
CVE-2026-13116 Medium 4.3

The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and includin

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-13114 High 7.2

The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Content and User Bio

11 Jul 2026, 02:31 UTC View advisory →
CVE-2026-13104 High 7

A potential vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market, that could allow a local authenticated user to e

16 Jul 2026, 16:49 UTC View advisory →
CVE-2026-13103 High 7

A potential path traversal vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market, that could allow a local authenti

16 Jul 2026, 16:49 UTC View advisory →
CVE-2026-13089 Unscored

OIDC::Lite versions through 0.12.1 for Perl allow ID Token signature verification bypass via a token-controlled algorithm allowlist in verify. When the cal

22 Jul 2026, 20:31 UTC View advisory →
CVE-2026-13084 High 8.7

A null pointer dereference vulnerability in WatchGuard Fireware OS may allow a remote unauthenticated attacker to create a denial-of-service (DoS) conditio

02 Jul 2026, 23:06 UTC View advisory →
CVE-2026-13083 Medium 6.9

A flaw was found in the Pen Drive report generator. Cluster-sourced data is rendered into HTML reports without proper escaping or sanitization. An attacker

25 Jun 2026, 23:23 UTC View advisory →
CVE-2026-13082 Medium 5.3

GD::SecurityImage versions through 1.75 for Perl use rand to generate secrets. The random method creates the challenge text used for the CAPTCHA by samplin

17 Jul 2026, 12:54 UTC View advisory →
CVE-2026-13079 High 7.3

A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client for Windows allows a local attacker to escalate their privileges to

02 Jul 2026, 23:07 UTC View advisory →
CVE-2026-13078 Medium 6.3

A vulnerability was discovered in MongoDB Server where the server-side MozJS scripting engine unconditionally registered a module loading hook that enables

22 Jul 2026, 19:11 UTC View advisory →
CVE-2026-13077 High 7.1

A missing bounds check in the BSON CodeWScope element accessors allows an attacker to trigger an out-of-bounds heap read via a crafted aggregation pipeline

22 Jul 2026, 19:12 UTC View advisory →
CVE-2026-13076 High 7.1

An authenticated user can cause a {{mongod}} process to be terminated by the operating system under memory pressure by performing a specific data type conv

22 Jul 2026, 19:12 UTC View advisory →
CVE-2026-13075 High 7.1

An authenticated user can cause the mongod process to be terminated by the operating system under memory pressure via the $rankFusion and $scoreFusion aggr

22 Jul 2026, 19:13 UTC View advisory →
CVE-2026-13074 Medium 6.9

An unauthenticated remote client can cause excessive CPU consumption on a MongoDB server by sending a specific combination of parameters to the awaitable h

22 Jul 2026, 19:13 UTC View advisory →
CVE-2026-13073 Medium 5.3

An authenticated user with read-only privileges can cause the mongod process to terminate abnormally by issuing a crafted aggregation command, resulting in

22 Jul 2026, 19:13 UTC View advisory →
CVE-2026-13072 Critical 9.2

When compute mode is enabled on a standalone mongod instance, insufficient validation of externally sourced BSON data during aggregation pipeline processin

22 Jul 2026, 19:14 UTC View advisory →
CVE-2026-13071 High 7.1

An authenticated user with read access can cause the mongod process to be terminated through certain aggregation expressions that execute server-side JavaS

22 Jul 2026, 19:14 UTC View advisory →
CVE-2026-13070 Medium 6

A MongoDB server initiating an outbound TLS connection may terminate abnormally when processing a malformed OCSP response from a remote peer during the TLS

22 Jul 2026, 19:15 UTC View advisory →
CVE-2026-13069 High 7.1

An authenticated user can cause excessive CPU consumption or out-of-memory conditions on a MongoDB server by sending a crafted Queryable Encryption find pa

22 Jul 2026, 19:15 UTC View advisory →
CVE-2026-13068 Low 2.3

An authenticated user holding cursor termination privileges on one database may incorrectly be permitted to terminate active cursors on a separate database

22 Jul 2026, 19:16 UTC View advisory →
CVE-2026-13067 High 7.2

When PROXY protocol v2 is used on the Unix domain socket path, roles derived from X.509 client certificates may not be validated against the configured tls

22 Jul 2026, 19:16 UTC View advisory →
CVE-2026-13066 High 7.1

Improper handling of DBPointer objects during BSON serialization in MongoDB's server-side JavaScript engine can result in internal process memory contents

22 Jul 2026, 19:17 UTC View advisory →
CVE-2026-13065 High 7.1

A user with read-only privileges is able to craft an aggregation pipeline using the $linearFill window function operator with a specific sortBy expression

22 Jul 2026, 19:17 UTC View advisory →
CVE-2026-13064 High 7.1

Certain query operations involving deeply nested $jsonSchema constructs can trigger disproportionate CPU consumption in affected MongoDB deployments, poten

22 Jul 2026, 19:17 UTC View advisory →
CVE-2026-13063 Medium 5.3

An authenticated user with standard read/write privileges can cause the mongod process to terminate due to an out-of-memory condition by sending a crafted

22 Jul 2026, 19:18 UTC View advisory →
CVE-2026-13062 High 7.1

An authenticated user with write privileges on a Queryable Encryption-enabled collection may be able to modify internal encryption metadata fields that are

22 Jul 2026, 19:19 UTC View advisory →
CVE-2026-13061 Medium 5.3

An authenticated user may be able to view session metadata belonging to other users on the system through the $listSessions aggregation stage. This informa

22 Jul 2026, 19:19 UTC View advisory →
CVE-2026-13060 High 7.1

An authenticated user with limited read privileges may be able to access documents from collections they are not authorized to read, due to an inconsistenc

22 Jul 2026, 19:19 UTC View advisory →
CVE-2026-13059 High 8.6

An authenticated user with low privileges may be able to perform unauthorized reads and writes on data protected by role-based query-level access controls,

22 Jul 2026, 19:21 UTC View advisory →
CVE-2026-13058 High 7.1

An authenticated user with basic write privileges can cause the mongod process to terminate abnormally by sending a crafted transaction command with an inc

22 Jul 2026, 19:21 UTC View advisory →
CVE-2026-13057 Medium 6

An issue in the server’s Atlas Search integration allows an authenticated user to bypass per-user access controls. In sharded topologies, the $search and $

22 Jul 2026, 19:22 UTC View advisory →
CVE-2026-13056 High 7.1

Using expressions that generate large arrays it is possible to craft a query that creates very large intermediate objects in memory, causing the server to

22 Jul 2026, 19:22 UTC View advisory →
CVE-2026-13055 High 7.1

The `$_internalIndexKey` aggregation expression can be used by any authenticated user to crash a MongoDB server (mongod). The expression fails to handle co

22 Jul 2026, 19:22 UTC View advisory →
CVE-2026-13054 High 8.6

A path traversal vulnerability in the WatchGuard Fireware OS Management Web UI allows a privileged authenticated attacker to write arbitrary files on the F

02 Jul 2026, 23:07 UTC View advisory →
CVE-2026-13053 High 8.6

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via a specially

02 Jul 2026, 23:08 UTC View advisory →
CVE-2026-13050 High 8.6

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS networkd process could allow an authenticated privileged user to execute arbitrary code via

02 Jul 2026, 23:08 UTC View advisory →
CVE-2026-13042 High 7.2

The RPB Chessboard plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Content in all versions up to, and including, 8.1.2 due to

16 Jul 2026, 03:44 UTC View advisory →
CVE-2026-13040 High 7.2

The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'real_val__' parameter in all

03 Jul 2026, 04:30 UTC View advisory →
CVE-2026-13039 Medium 5.3

The Eventin – Event Calendar, Event Registration, Tickets & Booking (AI Powered) plugin for WordPress is vulnerable to authorization bypass due to a regres

10 Jul 2026, 20:31 UTC View advisory →
CVE-2026-13038 High 8.8

Use after free in Autofill in Google Chrome on Windows prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code via a crafted HTML page.

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13037 High 7.8

Use after free in WebView in Google Chrome on Android prior to 149.0.7827.197 allowed a local attacker to execute arbitrary code inside a sandbox via a cra

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13036 High 8.8

Use after free in Blink in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML pa

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13035 High 8.8

Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code via a malicious peripheral.

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13034 Medium 4.7

Inappropriate implementation in Passwords in Google Chrome prior to 149.0.7827.197 allowed a remote attacker who had compromised the renderer process to by

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13033 High 8.8

Out of bounds read and write in Blink>InterestGroups in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code via a cra

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13032 Critical 9.6

Use after free in WebGL in Google Chrome on Android prior to 149.0.7827.197 allowed a remote attacker to potentially perform a sandbox escape via a crafted

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13031 High 8.8

Use after free in Blink in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML pa

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13030 Medium 5.3

Uninitialized Use in GPU in Google Chrome on Android prior to 149.0.7827.197 allowed a remote attacker to obtain potentially sensitive information from pro

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13029 High 7.5

Use after free in Web Authentication in Google Chrome prior to 149.0.7827.197 allowed an attacker who convinced a user to install a malicious extension to

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13028 Critical 9.6

Use after free in WebGL in Google Chrome on Android prior to 149.0.7827.197 allowed a remote attacker to potentially perform a sandbox escape via a crafted

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13027 High 8.8

Use after free in FileSystem in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13026 High 8.8

Use after free in Digital Credentials in Google Chrome on Mac prior to 149.0.7827.197 allowed a remote attacker to potentially exploit heap corruption via

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13025 High 8.3

Race in DevTools in Google Chrome prior to 149.0.7827.197 allowed a remote attacker who had compromised the renderer process to potentially perform a sandb

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13024 Medium 4.2

Insufficient validation of untrusted input in Navigation in Google Chrome prior to 149.0.7827.197 allowed a remote attacker who had compromised the rendere

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13023 Medium 5.3

Uninitialized Use in GPU in Google Chrome prior to 149.0.7827.197 allowed a remote attacker who had compromised the renderer process to obtain potentially

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13022 Unscored

Inappropriate implementation in Autofill in Google Chrome prior to 149.0.7827.197 allowed a remote attacker who had compromised the renderer process to lea

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13021 Medium 4.3

Inappropriate implementation in DeviceBoundSessionCredentials in Google Chrome prior to 149.0.7827.197 allowed a remote attacker to bypass same origin poli

24 Jun 2026, 18:43 UTC View advisory →
CVE-2026-13020 High 8.1

A Weak Password Recovery Mechanism for Forgotten Password exists in Esri Portal for ArcGIS versions 12.1 and earlier on Windows, Linux and Kubernetes. A re

07 Jul 2026, 16:39 UTC View advisory →
CVE-2026-13019 Critical 9.8

Esri Portal for ArcGIS versions 12.1 and earlier on Windows, Linux and Kubernetes have a missing authentication for critical function vulnerability allows

07 Jul 2026, 16:40 UTC View advisory →
CVE-2026-13015 Medium 6.1

The Wp Google Places Review Slider plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'place' parameter in versions up to, and in

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-13014 Critical 9.2

A vulnerability in Thales CERT "Suspicious" application =< 1.3.4 allows a remote and unauthenticated attacker to execute arbitrary code and arbitrarily ove

13 Jul 2026, 09:42 UTC View advisory →
CVE-2026-13010 Medium 6.5

The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to time-based SQL Injection via 'event' Shortcode Att

10 Jul 2026, 09:32 UTC View advisory →
CVE-2026-13008 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-57700. Reason: This candidate is a reservation duplicate of CVE-2026-57700. Notes: All

30 Jun 2026 View advisory →
CVE-2026-13007 High 8.5

Tenable Identity Exposure contains multiple unauthenticated API endpoints under /w/api/* that expose sensitive application configuration data including cle

23 Jun 2026, 15:59 UTC View advisory →
CVE-2026-13006 High 7

ACE vulnerability in conditional configuration file processing by QOS.CH logback-core up to and including version 1.5.34 in Java applications, allows an at

24 Jun 2026, 05:41 UTC View advisory →
CVE-2026-13005 Medium 4.4

The MxChat – AI Chatbot & Content Generation for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all vers

16 Jul 2026, 02:30 UTC View advisory →
CVE-2026-13001 Critical 9.8

The Podlove Podcast Publisher plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'podlove_handle_cache

14 Jul 2026, 19:33 UTC View advisory →
CVE-2026-12997 High 7.5

The Gravity Forms plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.10.4 via the 'gform_uploaded_files' par

15 Jul 2026, 18:34 UTC View advisory →
CVE-2026-12996 Medium 6

A use-after-free in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers to potentially cause a denial of service or

30 Jul 2026, 16:38 UTC View advisory →
CVE-2026-12994 Medium 5.3

The WCFM – Frontend Manager for WooCommerce plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 6.7.27. This i

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-12993 Medium 6.5

A flaw was found in Apicurio Registry. The DocumentBuilderAccessor correctly blocks external DTD and schema access but does not disable DOCTYPE declaration

25 Jun 2026, 23:23 UTC View advisory →
CVE-2026-12992 High 7.4

A flaw was found in Apicurio Registry. The WSDLReaderAccessor creates a wsdl4j WSDLReader without disabling the javax.wsdl.importDocuments feature. When th

25 Jun 2026, 21:16 UTC View advisory →
CVE-2026-12991 High 8.7

The lack of cryptographic mechanisms to ensure the integrity and authenticity of communications in Ghost Robotics' Vision 60 robot (APK v5.5.0) exposes the

27 Jul 2026, 11:44 UTC View advisory →
CVE-2026-12990 High 7.7

An access control vulnerability in the mobile app (APK v5.5.0) for Ghost Robotics' Vision 60 robot allows multiple simultaneous sessions to run without pro

27 Jul 2026, 11:38 UTC View advisory →
CVE-2026-12989 High 8.7

A lack of authentication in the mobile app (APK v5.5.0) for Ghost Robotics' Vision 60 robot allows an unauthenticated attacker connected to the device's in

27 Jul 2026, 11:37 UTC View advisory →
CVE-2026-12988 Unscored

The WP 2FA WordPress plugin before 3.1.1.2 does not verify that the email address supplied during two-factor authentication setup belongs to the user, allo

14 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12986 High 7.3

A critical vulnerability in Admin GUI in Payara Server Full 4.x, 5.x, 6.x, 7.x, 7.2026.x, 6.2025.x, 6.2024.x on All platforms that allows the attacker to l

24 Jun 2026, 14:08 UTC View advisory →
CVE-2026-12979 Unscored

The FunnelKit WordPress plugin before 3.15.0.6 does not validate a user-supplied path before deleting a file during a template-import operation, allowing u

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12978 Unscored

The FunnelKit WordPress plugin before 3.15.0.6 does not escape a user-supplied parameter before reflecting it into the HTML response of one of its page-bui

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12975 High 8.5

A flaw was found in Apicurio Registry. The ContentTypeUtil.isParsableXml() method creates a SAXParserFactory without enabling secure processing features or

25 Jun 2026, 21:12 UTC View advisory →
CVE-2026-12969 Medium 5.3

An out-of-bounds read vulnerability exists in dnsmasq's find_soa() function in src/rfc1035.c. When parsing NS section records, extract_name() is called wit

23 Jun 2026, 13:28 UTC View advisory →
CVE-2026-12966 Unscored

The Direct Payments for WooCommerce WordPress plugin before 2.5.3 does not verify that the requester owns the targeted WooCommerce order in several unauthe

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-12965 Unscored

The Super Store Finder WordPress plugin through 7.8 does not sanitize a parameter of an unauthenticated AJAX action before using it in a SQL query, allowin

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-12960 Medium 6

An Improper Export of Android Application Components vulnerability in ASUS Router App allows a third-party application on the same device to send a crafted

03 Jul 2026, 02:00 UTC View advisory →
CVE-2026-12958 High 8.5

Missing symlink validation in Language Servers for AWS may allow an arbitrary file write outside of the workspace trust boundary. This may occur when a loc

23 Jun 2026, 16:03 UTC View advisory →
CVE-2026-12957 High 8.5

Improper trust boundary enforcement in Language Servers for AWS before version 1.65.0 on all supported platforms may allow a for arbitrary code execution.

23 Jun 2026, 16:02 UTC View advisory →
CVE-2026-12955 Medium 4.3

The GDPR Cookie Consent plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check and missing nonce verific

10 Jul 2026, 07:48 UTC View advisory →
CVE-2026-12948 Medium 4.8

A stored cross-site scripting (XSS) vulnerability in the web management interface of the Digi PortServer TS, Digi One SP, Digi One SP IA, and Digi One IA a

07 Jul 2026, 14:32 UTC View advisory →
CVE-2026-12947 High 7.5

IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 stores potentially sensitive information in log files that could be r

30 Jul 2026, 14:17 UTC View advisory →
CVE-2026-12946 Critical 9.9

IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to inject arbitrary code on the system, due to the improper control of user input code.

30 Jul 2026, 19:01 UTC View advisory →
CVE-2026-12945 High 7.1

IBM Langflow OSS 1.0.0 through 1.10.1 allows authenticated users to access and manipulate other users' build jobs through improper access control on log re

30 Jul 2026, 16:44 UTC View advisory →
CVE-2026-12943 Critical 9.8

IBM HMC V10.3.1050.0 through 10.3.1064.0 and IBM HMC V11.1.1110.0 through 11.1.1112.0 Management systems in IBM Power environments (HMC and Novalink) could

30 Jul 2026, 17:57 UTC View advisory →
CVE-2026-12942 High 7.5

IBM Langflow OSS 1.0.0 through 1.10.1 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL r

30 Jul 2026, 16:45 UTC View advisory →
CVE-2026-12941 Medium 6.5

The MultiVendorX – WooCommerce Multivendor Marketplace AI Powered Solutions plugin for WordPress is vulnerable to generic SQL Injection via the 'order_by'

16 Jul 2026, 02:30 UTC View advisory →
CVE-2026-12940 Critical 9.8

IBM Langflow OSS 1.0.0 through 1.10.1 are vulnerable to unauthenticated remote code execution via environment variable injection in the MCP (Model Context

30 Jul 2026, 16:41 UTC View advisory →
CVE-2026-12937 High 7.5

The Tourfic – AI Powered Travel Booking, Hotel Booking & Car Rental WordPress Plugin plugin for WordPress is vulnerable to generic SQL Injection via the 'p

25 Jun 2026, 06:51 UTC View advisory →
CVE-2026-12936 Medium 4.9

The Recurio – Ultimate Subscription for WooCommerce plugin for WordPress is vulnerable to generic SQL Injection via the 'data' parameter in all versions up

08 Jul 2026, 11:30 UTC View advisory →
CVE-2026-12932 High 7.1

A memory leak in the tls-crypt-v2 client key extraction in OpenVPN 2.5.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a den

30 Jul 2026, 16:42 UTC View advisory →
CVE-2026-12924 Medium 6.4

The Eventin – Event Calendar, Event Registration, Tickets & Booking (AI Powered) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the

10 Jul 2026, 07:48 UTC View advisory →
CVE-2026-12923 High 7.5

The Youtube Showcase plugin for WordPress is vulnerable to Arbitrary Function Call in versions up to and including 4.0.3. This is due to insufficient valid

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-12921 High 8.4

In AzeoTech DAQFactory versions 21.1 and prior, a Use After Free vulnerability can be exploited by an attacker using specially crafted .ctl files which can

25 Jun 2026, 17:57 UTC View advisory →
CVE-2026-12920 Medium 4.9

The Cookie Banner for GDPR / CCPA – WPLP Cookie Consent plugin for WordPress is vulnerable to generic SQL Injection via the 's' parameter in all versions u

03 Jul 2026, 01:28 UTC View advisory →
CVE-2026-12918 Medium 4.9

The Mail Mint – Email Marketing, Newsletter, Email Automation & WooCommerce Emails plugin for WordPress is vulnerable to generic SQL Injection via the 'rec

10 Jul 2026, 09:32 UTC View advisory →
CVE-2026-12912 High 7.3

A flaw was found in libtiff. A remote attacker could exploit this vulnerability by providing a specially crafted PixarLog-compressed TIFF image. This issue

29 Jun 2026, 16:31 UTC View advisory →
CVE-2026-12907 Unscored

The RTMKit WordPress plugin before 2.0.9 does not perform a proper capability check on one of its -builder AJAX actions, allowing users with at least the A

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12906 Unscored

The RTMKit WordPress plugin before 2.0.9 does not perform a capability check in one of its AJAX actions and resolves a request-supplied post identifier dir

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12904 Medium 4.3

The Kadence Blocks – Gutenberg Blocks for Page Builder Features plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to an

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-12902 Medium 4.3

The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to authorization bypass in all versions up to, and includ

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-12901 Medium 5.9

The GetPaid WordPress plugin before 2.8.55 does not verify the authenticity of incoming Worldpay payment notifications, allowing unauthenticated attackers

06 Aug 2026, 17:00 UTC View advisory →
CVE-2026-12900 Medium 6.4

The Spectra Gutenberg Blocks – Website Builder for the Block Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `uagb/image`

20 Jul 2026, 21:29 UTC View advisory →
CVE-2026-12897 High 8.4

Horner Automation Cscape versions prior to 10.2 SP3 are vulnerable to an Out-of-Bounds Read vulnerability through parsing CSP files. Successful exploitatio

25 Jun 2026, 17:47 UTC View advisory →
CVE-2026-12892 Medium 4.4

A flaw was found in GStreamer's gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension sli

23 Jun 2026, 19:53 UTC View advisory →
CVE-2026-12891 Medium 4.3

A flaw was found in the GStreamer gst-plugins-bad package. When processing a malformed H.266/VVC video stream with a crafted aspect ratio indicator value,

23 Jun 2026, 19:53 UTC View advisory →
CVE-2026-12888 Low 2

An HTML injection vulnerability exists in the Google Chat webhook notification sent by Thinkst Applied Research Canarytokens, enabling Interface Manipulati

22 Jun 2026, 13:05 UTC View advisory →
CVE-2026-12872 Unscored

The Webinfos WordPress plugin through 1.2 does not validate the type or name of uploaded files, nor restrict the upload action with any authentication, cap

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-12869 Unscored

The Header Footer Builder for Elementor WordPress plugin before 1.2.1 does not require an administrative capability for its dashboard template-import actio

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12866 Critical 9.2

All versions of the package expr-eval are vulnerable to Code Execution via the toJSFunction() API. An attacker can execute arbitrary JavaScript by supplyin

23 Jun 2026, 05:00 UTC View advisory →
CVE-2026-12863 Medium 5.1

An unvalidated redirect was contained in Venueless' social login functionality and could be exploited for phishing using trusted domains.

22 Jun 2026, 08:41 UTC View advisory →
CVE-2026-12862 Medium 5.1

Untrusted user data was passed verbatim to Excel exports for administrators. This allowed formula injection which can be used to compromise the environment

22 Jun 2026, 08:26 UTC View advisory →
CVE-2026-12860 High 8.7

In Bouncy Castle for Java before 1.85, RSA PKCS#1 verification skips last two hash bytes in NULL-omitted path. This issue also affects Bouncy Castle for Ja

03 Aug 2026, 02:55 UTC View advisory →
CVE-2026-12856 High 8.8

A flaw was found in the vscode-java extension, which provides Java language support for Visual Studio Code. The extension incorrectly trusts all Markdown c

29 Jun 2026, 12:33 UTC View advisory →
CVE-2026-12852 High 8.7

In Bouncy Castle for Java before 1.85, MLS wire decoder allocates attacker-declared opaque length before bounds check.

03 Aug 2026, 02:55 UTC View advisory →
CVE-2026-12851 Critical 9.1

Multiple OS command injection vulnerabilities exist in the libNetSetObj.so functionality of GeoVision GV-I/O Box 4E 2.09. A specially crafted network packe

24 Jun 2026, 03:40 UTC View advisory →
CVE-2026-12850 Critical 9.1

Multiple OS command injection vulnerabilities exist in the libNetSetObj.so functionality of GeoVision GV-I/O Box 4E 2.09. A specially crafted network packe

24 Jun 2026, 03:40 UTC View advisory →
CVE-2026-12849 Critical 9.1

Multiple OS command injection vulnerabilities exist in the libNetSetObj.so functionality of GeoVision GV-I/O Box 4E 2.09. A specially crafted network packe

24 Jun 2026, 03:40 UTC View advisory →
CVE-2026-12848 Critical 10

GV-I/O Box 4E is a smart embedded device with 4 input and 4 relays output that can be controlled over Ethernet and RS-485. DVRSearch is a service running b

24 Jun 2026, 03:34 UTC View advisory →
CVE-2026-12847 Critical 10

GV-I/O Box 4E is a smart embedded device with 4 input and 4 relays output that can be controlled over Ethernet and RS-485. DVRSearch is a service running b

24 Jun 2026, 03:34 UTC View advisory →
CVE-2026-12846 Critical 10

GV-I/O Box 4E is a smart embedded device with 4 input and 4 relays output that can be controlled over Ethernet and RS-485. DVRSearch is a service running b

24 Jun 2026, 03:34 UTC View advisory →
CVE-2026-12845 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have be

22 Jun 2026 View advisory →
CVE-2026-12844 High 7.5

List::SomeUtils::XS versions before 0.59 for Perl have a heap buffer overflow in the pairwise function. pairwise() collects the values returned by the bloc

25 Jun 2026, 15:26 UTC View advisory →
CVE-2026-12823 Medium 4.8

A security flaw has been discovered in Browserbase up to 20260526. This impacts an unknown function of the component Autobrowse Trace Artifact Handler. The

21 Jun 2026, 23:45 UTC View advisory →
CVE-2026-12822 Medium 4.8

A vulnerability was identified in langflow-ai langflow up to 1.9.3. This affects an unknown function of the component Bundle URL Loader. The manipulation l

21 Jun 2026, 23:30 UTC View advisory →
CVE-2026-12821 Medium 5.3

A vulnerability was determined in FlowiseAI Flowise up to 3.1.2. The impacted element is an unknown function of the file packages/components/nodes/document

21 Jun 2026, 23:15 UTC View advisory →
CVE-2026-12817 High 8.7

In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also affects Bouncy Castle for Java LTS be

03 Aug 2026, 02:54 UTC View advisory →
CVE-2026-12816 High 8.7

In Bouncy Castle for Java before 1.85, IESEngine stream-mode MAC forgery via length-dependent KDF split. This issue also affects Bouncy Castle for Java LTS

03 Aug 2026, 02:53 UTC View advisory →
CVE-2026-12815 Medium 5.3

A vulnerability has been found in coollabsio coolify 4.0.0. Impacted is an unknown function of the component Image Name Handler. Such manipulation leads to

21 Jun 2026, 23:00 UTC View advisory →
CVE-2026-12814 Medium 5.3

A flaw has been found in Comfast CF-WR631AX V3 up to 2.7.0.8. This issue affects the function system of the file /cgi-bin/mbox-config?section=ping_config o

21 Jun 2026, 22:45 UTC View advisory →
CVE-2026-12813 Medium 5.3

A vulnerability was detected in activepieces up to 0.83.0. This vulnerability affects the function handleUrlFile in the library packages/server/engine/src/

21 Jun 2026, 22:30 UTC View advisory →
CVE-2026-12812 Medium 5.1

A security vulnerability has been detected in Radware Cyber Controller up to 10.11.0. This affects an unknown part of the component HTML Report Generation.

21 Jun 2026, 22:15 UTC View advisory →
CVE-2026-12811 Medium 5.3

A weakness has been identified in kortix-ai suna up to 0.8.38. Affected by this issue is the function router.replace/router.push of the file apps/frontend/

21 Jun 2026, 22:00 UTC View advisory →
CVE-2026-12810 Medium 5.3

A security flaw has been discovered in Edimax BR-6478AC V2 1.23. Affected by this vulnerability is the function mp of the file /goform/mp of the component

21 Jun 2026, 21:45 UTC View advisory →
CVE-2026-12809 Medium 5.3

A vulnerability was identified in Edimax BR-6478AC V2 1.23. Affected is the function wiz_5in1_redirect of the file /goform/wiz_5in1_redirect of the compone

21 Jun 2026, 21:30 UTC View advisory →
CVE-2026-12808 Medium 5.3

A vulnerability was determined in Edimax BR-6478AC V2 1.23. This impacts the function stainfo of the file /goform/stainfo of the component POST Request Han

21 Jun 2026, 20:45 UTC View advisory →
CVE-2026-12807 Medium 5.3

A vulnerability was found in Edimax BR-6478AC V2 1.23. This affects the function setWAN of the file /goform/setWAN of the component POST Request Handler. T

21 Jun 2026, 19:45 UTC View advisory →
CVE-2026-12806 High 8.7

A vulnerability has been found in Edimax BR-6478AC V2 1.23. The impacted element is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey of t

21 Jun 2026, 19:30 UTC View advisory →
CVE-2026-12805 Medium 5.3

A flaw has been found in OFFIS DCMTK up to 3.7.0. The affected element is the function XMLNode::parseFile in the library ofstd/libsrc/ofxml.cc. Executing a

21 Jun 2026, 19:15 UTC View advisory →
CVE-2026-12804 Medium 5.3

A vulnerability was detected in lemonldap-ng up to 2.23.0. Impacted is an unknown function in the library lemonldap-ng-portal/lib/Lemonldap/NG/Portal/CDC.p

21 Jun 2026, 18:30 UTC View advisory →
CVE-2026-12803 High 8.7

In Bouncy Castle for Java before 1.85, KCCMBlockCipher MAC does not bind nonce when AAD is absent (cross-nonce AEAD forgery). This issue also affects Bounc

03 Aug 2026, 02:52 UTC View advisory →
CVE-2026-12802 High 8.7

In Bouncy Castle for Java before 1.85, CMS AuthEnvelopedData fails to enforce tag-length on decryption. This issue also affects Bouncy Castle for Java LTS

03 Aug 2026, 02:48 UTC View advisory →
CVE-2026-12801 Medium 6.4

The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Range Slider 'data-label' and 'data-separator

07 Aug 2026, 04:25 UTC View advisory →
CVE-2026-12762 Medium 5.3

IBM Cloud Pak For Business Automation 24.0.0, 24.0.1, 25.0.0, and 26.0.0 could allow a remote attacker to obtain sensitive information exposed in manifest

05 Aug 2026, 15:52 UTC View advisory →
CVE-2026-12761 Critical 9.8

The miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) plugin for WordPress is vulnerable to authentication bypass leading to accoun

10 Jul 2026, 20:31 UTC View advisory →
CVE-2026-12760 High 7.1

A denial-of-service (DoS) vulnerability has been identified in Tapo C200 v3 in the network packet handling logic due to improper handling of IPv4 fragmente

24 Jun 2026, 18:10 UTC View advisory →
CVE-2026-12755 Low 2.7

Improper input validation in the PAM AD discovery endpoints in Devolutions Server 2026.2.4.0 through 2026.2.7.0 allows an authenticated user with the UserG

25 Jun 2026, 13:12 UTC View advisory →
CVE-2026-12753 High 7.5

The Advance Product Search- Voice & Ajax Search for WooCommerce plugin for WordPress is vulnerable to generic SQL Injection via the 's' and 'match' paramet

16 Jul 2026, 02:30 UTC View advisory →
CVE-2026-12746 Unscored

Dancer2::Plugin::Auth::OAuth::Provider versions before 0.23 for Perl do not support the OAuth 2.0 state parameter. The authentication_url method builds the

04 Jul 2026, 17:52 UTC View advisory →
CVE-2026-12740 Unscored

Plack::Middleware::OAuth versions through 0.10 for Perl do not support the OAuth 2.0 state parameter. RequestTokenV2 builds the provider authorization redi

04 Jul 2026, 17:58 UTC View advisory →
CVE-2026-12738 Medium 4.3

The WP Easy Pay – Payment and Donation form Builder for Square plugin for WordPress is vulnerable to authorization bypass in all versions up to, and includ

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-12734 Medium 6.4

The weDocs: AI Powered Knowledge Base, Docs, Documentation, Wiki & AI Chatbot plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'connec

03 Jul 2026, 01:28 UTC View advisory →
CVE-2026-12733 High 7.5

IBM DataPower Gateway could allow a remote attacker to cause a denial of service due to improper resource limitations.

30 Jul 2026, 17:57 UTC View advisory →
CVE-2026-12731 Medium 6.4

The weDocs: AI Powered Knowledge Base, Docs, Documentation, Wiki & AI Chatbot plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'sectio

03 Jul 2026, 01:28 UTC View advisory →
CVE-2026-12730 Low 3.8

IBM Business Automation Workflow containers and traditional 26.0.0, 25.0.0 through 25.0.0 Interim Fix 005, 24.0.1 through 24.0.1 Interim Fix 007, and 24.0.

05 Aug 2026, 15:57 UTC View advisory →
CVE-2026-12729 Medium 4.3

The weDocs: AI Powered Knowledge Base, Docs, Documentation, Wiki & AI Chatbot plugin for WordPress is vulnerable to Missing Authorization in versions up to

03 Jul 2026, 01:28 UTC View advisory →
CVE-2026-12725 Medium 5.9

A heap-based buffer overflow was found in dnsmasq. When DNSSEC validation and query logging are both enabled, logging of DS or DNSKEY replies containing un

22 Jun 2026, 13:55 UTC View advisory →
CVE-2026-12722 High 8.2

Missing authentication for critical function vulnerability in FTC Software IT Services FTC E-Commerce Management Panel allows Authentication Bypass. This i

30 Jul 2026, 13:16 UTC View advisory →
CVE-2026-12721 Unscored

The Kirki WordPress plugin before 6.0.13 does not properly sanitise and escape a value taken from the request before using it in a SQL statement, allowing

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12720 Unscored

The Kirki WordPress plugin before 6.0.13 does not restrict which classes may be instantiated when it deserialises data that unauthenticated users can store

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12715 High 8.5

Missing Authorization in Google Cloud Firebase Studio versions prior to 2026-04-15 on Google Cloud Platform allows an attacker to download other users' dep

17 Jul 2026, 15:09 UTC View advisory →
CVE-2026-12713 Unscored

The WPCargo Track & Trace WordPress plugin before 8.0.4 does not properly sanitise and escape a parameter before using it in a SQL statement, allowing unau

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-12707 High 7.5

Summary Cloudflare quiche was discovered to be vulnerable to memory resource exhaustion due to unbounded queuing of post-handshake client migration events.

14 Jul 2026, 15:18 UTC View advisory →
CVE-2026-12705 Medium 5.9

Missing support for integrity check vulnerability in ABB KNX Update Tool (ABB), ABB KNX Update Tool (BJE). This issue affects KNX Update Tool (ABB): throug

17 Jul 2026, 14:30 UTC View advisory →
CVE-2026-12701 Critical 9

A path traversal vulnerability was found in pulpcore. The relative_path_validator function only verifies that content paths do not begin with "/" but fails

20 Jul 2026, 14:18 UTC View advisory →
CVE-2026-12698 Unscored

The wpForo Forum WordPress plugin before 3.1.3 does not restrict which profile fields a member may set when editing their own account, allowing users with

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-12697 Unscored

The wpForo Forum WordPress plugin before 3.1.2 does not verify that an AI chat conversation belongs to the requesting user before deleting its messages, al

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12696 Unscored

The wpForo Forum WordPress plugin before 3.1.2 does not sanitize and escape a user profile field before outputting it inside an HTML attribute on the publi

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-12695 Unscored

The miniOrange 2FA WordPress plugin before 6.2.6 does not validate the submitted one-time password against the targeted user's stored secret, instead verif

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12694 Critical 9.1

Missing Authorization vulnerability in Vimesoft Inc. Enterprise Video Platform allows Accessing Functionality Not Properly Constrained by ACLs. This issue

17 Jul 2026, 16:59 UTC View advisory →
CVE-2026-12693 Critical 9.4

Authorization bypass through User-Controlled key vulnerability in Vimesoft Inc. Enterprise Video Platform allows Accessing Functionality Not Properly Const

17 Jul 2026, 16:50 UTC View advisory →
CVE-2026-12692 Critical 9.8

Unverified password change vulnerability in Vimesoft Inc. Enterprise Video Platform allows Authentication Bypass. This issue affects Enterprise Video Platf

17 Jul 2026, 16:39 UTC View advisory →
CVE-2026-12691 High 7.5

Missing authentication for critical function vulnerability in Vimesoft Inc. Enterprise Video Platform allows Authentication Bypass. This issue affects Ente

17 Jul 2026, 16:32 UTC View advisory →
CVE-2026-12684 Unscored

The Customer Reviews for WooCommerce WordPress plugin before 5.113.0 does not perform authentication, capability, or nonce checks on one of its media uploa

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12681 High 8.9

Improper Validation of Specified Index, Position, or Offset in Input vulnerability in Google go-attestation. parseEfiSignatureList() does not advance the b

24 Jun 2026, 00:49 UTC View advisory →
CVE-2026-12672 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have be

30 Jun 2026 View advisory →
CVE-2026-12659 High 8.7

A denial-of-service security issue exists in the affected products. The security issue stems from improper handling of exceptional conditions when processi

14 Jul 2026, 15:14 UTC View advisory →
CVE-2026-12657 Medium 5.3

The LatePoint – Calendar Booking Plugin for Appointments and Events plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions

02 Jul 2026, 08:33 UTC View advisory →
CVE-2026-12635 None 0

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.3 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under certai

25 Jun 2026, 04:33 UTC View advisory →
CVE-2026-12628 High 8.1

IBM Storage Protect Client 8.1.0.0 through 8.2.1.0 and IBM Storage Protect Snapshot For Windows 8.1.0.0 through 8.2.1.0 could allow a remote attacker to by

22 Jun 2026, 13:43 UTC View advisory →
CVE-2026-12617 High 7.5

The issue is unexpected program termination based on ordering and/or specific content in responses to queries for CNAME or DNAME, and A records. Specifical

22 Jul 2026, 14:14 UTC View advisory →
CVE-2026-12616 Medium 6.9

The /v1/upload/sbom endpoint extracts the iss claim from the attacker-supplied JWT with signature verification disabled, then interpolates that string into

29 Jun 2026, 13:23 UTC View advisory →
CVE-2026-12610 Medium 6.4

A flaw was found in sssd. When authenticating with a YubiKey, the SSSD PAM responder can crash due to a use-after-free vulnerability, where a memory pointe

30 Jun 2026, 08:27 UTC View advisory →
CVE-2026-12609 High 7.5

In Eclipse Theia versions 1.66.0 and up until including 1.73.1, the `@theia/plugin-ext` backend exposes the `/hostedPlugin/:pluginId/:path(*)` HTTP endpoin

05 Aug 2026, 10:55 UTC View advisory →
CVE-2026-12606 Medium 6.3

Eclipse Grizzly in versions before 5.0.2, cannot properly parse the trailer section in malformed trailer header's line, which can be leveraged to perform H

14 Jul 2026, 08:28 UTC View advisory →
CVE-2026-12605 Critical 9.6

In Eclipse GlassFish versions 8.0.x before 8.0.4, CSRF + SSRF in DownloadServlet ContentSources leaks the admin `gfresttoken` to attacker-controlled host i

06 Aug 2026, 13:18 UTC View advisory →
CVE-2026-12602 High 8.8

Incorrect default permissions in ArubaSign, affecting versions prior to v4.6.6. The vulnerability is caused by the assignment of inappropriate permissions

22 Jun 2026, 12:34 UTC View advisory →
CVE-2026-12588 Medium 6

An attacker with access to an HX 10.0.0 and previous versions, may send specially-crafted data to the HX console. The malicious detection would then trigge

14 Jul 2026, 12:45 UTC View advisory →
CVE-2026-12586 Unscored

The Lenxel WP WordPress theme through 1.0.31 does not perform any authorization or ownership check on its password-reset action, validating only a CSRF non

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-12585 Unscored

The Abandoned Cart Lite for WooCommerce WordPress plugin before 6.8.2 does not protect the integrity of its cart-recovery tokens or bind them to the reques

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12584 High 7.5

The Payment Gateway for Redsys & WooCommerce Lite WordPress plugin before 7.0.2 does not verify the authenticity of incoming payment-provider notifications

06 Aug 2026, 16:48 UTC View advisory →
CVE-2026-12583 Unscored

The Newsletters WordPress plugin before 4.15 does not prevent deserialization of untrusted input that is stored through a public form, allowing unauthentic

14 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12581 High 7.7

EasyFlow .NET developed by Digiwin has a Session Fixation vulnerability. If unauthenticated remote attackers replace a specific session ID for a user, they

22 Jun 2026, 09:30 UTC View advisory →
CVE-2026-12580 Medium 5.1

EasyFlow .NET developed by Digiwin has a Stored Cross-Site Scripting vulnerability, allowing authenticated remote attackers to inject persistent JavaScript

22 Jun 2026, 09:26 UTC View advisory →
CVE-2026-12579 High 7.4

AS228T with Authentication Bypass Vulnerability

01 Jul 2026, 05:22 UTC View advisory →
CVE-2026-12578 High 8.4

The affected product is vulnerable to a deserialization of untrusted data, which may allow an attacker to execute arbitrary code.

30 Jun 2026, 07:20 UTC View advisory →
CVE-2026-12562 High 8.7

The RCU II+ and Multiload II+ are vulnerable to an unauthenticated service that exposes a debug interface granting full root-level access to the embedded s

30 Jul 2026, 21:29 UTC View advisory →
CVE-2026-12560 Medium 4.4

The Editorial Rating – Product Review & Rating System plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'Link URL' Field in all version

30 Jun 2026, 04:30 UTC View advisory →
CVE-2026-12557 Medium 5.3

The Ninja Forms - File Uploads plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.3.29. This is due to the

03 Jul 2026, 04:30 UTC View advisory →
CVE-2026-12549 Medium 4.8

The fix for CVE-2026-2443 was regressed by a subsequent rework commit that replaced specific overflow checks with a general signed comparison. When a clien

22 Jun 2026, 13:55 UTC View advisory →
CVE-2026-12537 Critical 10

Improper Neutralization used in an OS Command in the container launcher in Google Gemini CLI (versions prior to 0.39.1) and run-gemini-cli GitHub Action (v

24 Jun 2026, 13:37 UTC View advisory →
CVE-2026-12536 Medium 6.4

The Avada (Fusion) Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘Module Title’ parameter in all versions up to, and in

13 Jul 2026, 19:33 UTC View advisory →
CVE-2026-12535 Unscored

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Formatter Field allows Object Injection. This issue

10 Jul 2026, 21:43 UTC View advisory →
CVE-2026-12525 Unscored

The Redux Framework WordPress plugin before 4.5.13 does not restrict which user meta keys can be written when saving custom profile fields, allowing users

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12523 High 7.5

Summary Cloudflare quiche's HTTP/3 layer was discovered to be vulnerable to resource exhaustion (i.e., memory) by means of specially crafted HTTP/3 frames.

14 Jul 2026, 15:51 UTC View advisory →
CVE-2026-12517 Unscored

The Fediverse Embeds WordPress plugin before 1.5.8 does not validate the destination of the server-side request performed by an unauthenticated site-info e

09 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12516 Unscored

The Fediverse Embeds WordPress plugin before 1.5.8 does not validate the destination of the server-side request performed by an unauthenticated media-proxy

09 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12512 Unscored

The Quotes llama WordPress plugin before 3.1.6 does not properly sanitize and escape a user-supplied parameter before using it in a SQL query, allowing una

15 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12511 Unscored

The AI Engine WordPress plugin before 3.5.5 does not sanitize a user-supplied filename before using it to write a downloaded file, allowing authenticated u

14 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12510 Unscored

The AI Engine WordPress plugin before 3.5.5 does not verify that a user owns the chatbot conversation referenced by a client-supplied identifier, allowing

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12501 Medium 5.3

The WP Travel Engine WordPress plugin before 6.8.2 does not verify that an incoming PayPal payment notification was sent to the site's configured merchant

06 Aug 2026, 17:00 UTC View advisory →
CVE-2026-12495 Critical 9.2

Denial-of-service (DoS) vulnerability due to a stack buffer overflow in the http_gdpr_decrypt function of the Mercusys MB115-4G device's web interface. An

27 Jul 2026, 10:32 UTC View advisory →
CVE-2026-12492 Unscored

The Happy Coders OTP Login for WooCommerce WordPress plugin before 2.8 does not verify that a one-time password was actually validated before authenticatin

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12490 High 8.2

When a provide-xfr is given with a tls-auth-name, a secondary requesting a transfer should provide a client certificate with that name. However, no client

25 Jun 2026, 05:24 UTC View advisory →
CVE-2026-12488 Medium 6.2

A memory corruption vulnerability exists in the GV-Cloud functionality of GeoVision GV-VMS V20 20.0.2. A specially crafted network request can lead to a de

24 Jun 2026, 03:34 UTC View advisory →
CVE-2026-12486 Critical 9.1

Multiple OS command injection vulnerabilities exist in the libNetSetObj.so functionality of GeoVision GV-I/O Box 4E 2.09. A specially crafted network packe

24 Jun 2026, 03:40 UTC View advisory →
CVE-2026-12485 Critical 10

GV-I/O Box 4E is a smart embedded device with 4 input and 4 relays output that can be controlled over Ethernet and RS-485. DVRSearch is a service running b

24 Jun 2026, 03:34 UTC View advisory →
CVE-2026-12482 Low 3.1

A vulnerability in keras-team/keras version 3.12.0 allows an attacker to craft a malicious tar archive that bypasses the `filter_safe_tarinfos` validation

14 Jul 2026, 05:13 UTC View advisory →
CVE-2026-12479 Medium 6.1

A path traversal vulnerability exists in keras-team/keras version 3.14.0, specifically in the `DiskIOStore.make` method within the Keras 3 model saving and

22 Jun 2026, 15:21 UTC View advisory →
CVE-2026-12478 Medium 4.8

The fix for CVE-2026-0716 (commit 6ff7ef0, libsoup 3.6.6) placed the integer overflow guard inside the if (masked) block, leaving unmasked server-to-client

14 Jul 2026, 09:26 UTC View advisory →
CVE-2026-12473 High 8.3

Two data sources (DICOMWebProxy and DICOMJSON) shipped in the default configuration fetch an arbitrary URL parameter without validation. A global authentic

25 Jun 2026, 20:38 UTC View advisory →
CVE-2026-12472 Medium 5.3

The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to authorization bypass in all versions up to, and inclu

02 Jul 2026, 08:33 UTC View advisory →
CVE-2026-12471 Medium 4.3

The Spexo theme for WordPress is vulnerable to unauthorized access due to a missing capability check on the activate_plugin function in all versions up to,

27 Jun 2026, 06:50 UTC View advisory →
CVE-2026-12434 Medium 4.3

The List category posts plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 0.95.0 via the sanitize_

16 Jul 2026, 02:30 UTC View advisory →
CVE-2026-12432 Medium 5.3

The WP Full Stripe Free plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 8.4.3 via the wpfs_update_failed_paym

27 Jun 2026, 06:50 UTC View advisory →
CVE-2026-12426 Medium 5.3

The Members – Membership & User Role Editor Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includin

11 Jul 2026, 02:31 UTC View advisory →
CVE-2026-12417 Critical 9.8

The SignUp & SignIn plugin for WordPress is vulnerable to Authentication Bypass via Weak Password Reset Validation leading to Account Takeover in versions

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-12416 Critical 9.8

The Invoice Generator plugin for WordPress is vulnerable to Account Takeover via Password Reset in all versions up to, and including, 1.0.0. This is due to

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-12415 Critical 9.8

The Invoice Generator plugin for WordPress is vulnerable to privilege escalation due to a missing capability check on the pravel_invoice_edit_account() AJA

27 Jun 2026, 04:30 UTC View advisory →
CVE-2026-12413 High 7.5

An invalidly formatted IKEv2 fragment causes the Libreswan pluto daemon to crash and restart. Continued exploitation would cause a denial of service. The f

02 Jul 2026, 21:19 UTC View advisory →
CVE-2026-12411 High 8.4

Broken Access Control in the devLXDInstancePatchHandler component of Canonical LXD allows an untrusted guest to mount, read, and overwrite another guest's

26 Jun 2026, 15:27 UTC View advisory →
CVE-2026-12410 High 7.8

Link following vulnerability in the Uninstaller component in CCleaner prior to 7.10.1464 on Windows allows a local, low-privileged attacker to escalate pri

05 Aug 2026, 14:14 UTC View advisory →
CVE-2026-12409 Medium 4.3

The Landing Page Builder – Coming Soon page, Maintenance Mode, Lead Page, WordPress Landing Pages plugin for WordPress is vulnerable to Cross-Site Request

16 Jul 2026, 02:30 UTC View advisory →
CVE-2026-12404 Medium 5.3

The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 9.2.2.

27 Jun 2026, 05:33 UTC View advisory →
CVE-2026-12400 Medium 4.3

The FlowForms – Conversational Form Builder plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.

10 Jul 2026, 07:48 UTC View advisory →
CVE-2026-12399 Medium 4.4

The Gutenverse – WordPress Blocks, Page Builder & Site Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all v

27 Jun 2026, 06:50 UTC View advisory →
CVE-2026-12395 Unscored

The WP Job Portal WordPress plugin before 2.5.5 does not properly sanitize and escape a parameter before using it in a SQL query, allowing authenticated us

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12393 Unscored

The WPS Bookings for WooCommerce WordPress plugin before 3.11.7 does not verify that a booking order belongs to the requesting user before cancelling it, a

17 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12391 Medium 5

An insecure symlink following vulnerability exists in Canonical ubuntu-pro-client (formerly ubuntu-advantage-tools) within the pro collect-logs command fra

16 Jul 2026, 12:17 UTC View advisory →
CVE-2026-12388 Medium 6.5

A flaw was found in the Identity Provider (IdP) mapper component of Keycloak, which is used to manage how user information from external services is mapped

30 Jun 2026, 12:00 UTC View advisory →
CVE-2026-12385 Medium 4.3

The Smart Slider 3 plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.5.1.37 via the 'keyword' pa

13 Jul 2026, 19:33 UTC View advisory →
CVE-2026-12383 High 7.5

A flaw was found in the Event-Driven Ansible (EDA) server. The ExternalEventStreamViewSet uses permissive access controls (permission_classes=[AllowAny], a

27 Jul 2026, 19:12 UTC View advisory →
CVE-2026-12382 High 8.2

A flaw was found in the AAP Gateway Envoy proxy configuration. The non-mTLS route to EDA event streams does not remove the Subject HTTP header from client

15 Jul 2026, 17:21 UTC View advisory →
CVE-2026-12379 Medium 6.8

An Open Redirect vulnerability (CWE-601) exists in the OAuth/OIDC authentication implementation of the Axivion Dashboard. The login flow did not properly r

16 Jul 2026, 15:32 UTC View advisory →
CVE-2026-12378 Unscored

The Appointment Booking Calendar Plugin and Scheduling Plugin WordPress plugin through 1.1.28 does not validate data before passing it to a PHP deserializa

08 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12376 Unscored

The Academy LMS WordPress plugin through 3.8.2 does not restrict access to quiz attempt records to their owner, allowing any authenticated user with subscr

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12352 Medium 5.9

This vulnerability allows an unauthenticated actor to bypass authentication and gain access to restricted resources on the device.

07 Jul 2026, 14:31 UTC View advisory →
CVE-2026-12349 Medium 5.3

The Premium Addons for KingComposer plugin for WordPress is vulnerable to unauthorized modification and loss of data in versions up to, and including, 1.1.

30 Jun 2026, 04:30 UTC View advisory →
CVE-2026-12341 High 8.8

This vulnerability impacts all versions of IdentityIQ and allows an unauthenticated attacker unauthorized access to protected APIs and data due to improper

20 Jul 2026, 18:22 UTC View advisory →
CVE-2026-12340 Medium 6.3

Out-of-bounds heap read during SM2/SM3 certificate signature verification. When parsing a certificate with an SM3wSM2 signature, the Subject Key Identifier

25 Jun 2026, 19:36 UTC View advisory →
CVE-2026-12283 Medium 6.1

Amazon Athena is a serverless, interactive query service that lets you analyze data directly in Amazon S3 using standard SQL. Athena Query Federation is a

17 Jul 2026, 19:05 UTC View advisory →
CVE-2026-12281 Unscored

The Shibboleth WordPress plugin before 2.5.4 does not fail closed when its HTTP header identity mode is enabled without an anti-spoofing key, treating any

15 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12270 Unscored

The Everest Forms WordPress plugin before 3.5.0 does not correctly restrict access to several REST API endpoints belonging to its onboarding assistant: the

09 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12261 Medium 5.3

A vulnerability in `nltk.downloader` in nltk/nltk versions <= 3.9.4 allows for cross-package resource and model poisoning. The downloader extracts package

07 Aug 2026, 06:25 UTC View advisory →
CVE-2026-12259 Medium 5.3

In nltk version 3.9.4, the `nltk.downloader.Downloader._download_package()` function writes downloaded package bytes to disk and may extract them before en

03 Aug 2026, 07:09 UTC View advisory →
CVE-2026-12257 Critical 9.3

Versions of Mura CMS prior to 10.0.712 contain a critical remote code execution (RCE) vulnerability. The flaw is located in the endpoint “/index.cfm/_api/j

13 Jul 2026, 11:29 UTC View advisory →
CVE-2026-12251 Unscored

The Ultimate Member WordPress plugin before 2.12.1 does not filter administrator-level capabilities from the roles it makes selectable on its registration

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12249 Critical 9

An issue was discovered in Canonical ADSys upstream versions through v0.16.2. During Active Directory Certificate Services (AD CS) certificate auto-enrollm

22 Jun 2026, 15:43 UTC View advisory →
CVE-2026-12246 High 7.2

NSD version 4.14.0 introduced a bug where a specially crafted APL RR, with an adflength larger than permitted for the address family will overwrite the sta

25 Jun 2026, 05:24 UTC View advisory →
CVE-2026-12245 High 8.7

NSD from version 4.13.0 has a heap use-after-free bug in logging errors on TLS connections, causing a crash of the server process, which can be triggered t

25 Jun 2026, 05:24 UTC View advisory →
CVE-2026-12244 High 8.7

If NSD is configured as secondary for a zone, the primary of that zone can crash NSD with an AXFR containing a DNS message with a special crafted SVCB RR w

25 Jun 2026, 05:24 UTC View advisory →
CVE-2026-12243 High 7.5

NLTK version 3.9.4 is vulnerable to a path traversal attack due to an incomplete fix for GitHub Issue #3504. The `_UNSAFE_NO_PROTOCOL_RE` regex in `nltk/da

30 Jun 2026, 00:14 UTC View advisory →
CVE-2026-12242 High 8.8

The AdRotate Banner Manager plugin for WordPress is vulnerable to PHP Code Injection in all versions up to, and including, 5.17.7 via the 'banner' attribut

24 Jun 2026, 12:33 UTC View advisory →
CVE-2026-12228 High 8.7

A stored cross-site scripting (XSS) vulnerability exists in the `POST /api/prompts/share` endpoint of parisneo/lollms (latest version). The endpoint stores

18 Jul 2026, 20:36 UTC View advisory →
CVE-2026-12196 High 8.3

HestiaCP panel cronjob feature is affected by a broken access control vulnerability. Low privilege users can modify the panel cronjob to execute scripts He

04 Jul 2026, 12:05 UTC View advisory →
CVE-2026-12195 High 8.5

myVesta is affected by an authenticated remote code execution vulnerability. Low privileged users can insert arbitrary commands as a part of the v_ftp_user

04 Jul 2026, 11:33 UTC View advisory →
CVE-2026-12185 High 7.1

In Bouncy Castle for Java before 1.85, BKS/UBER keystore allocates from untrusted lengths before integrity check. This issue also affects Bouncy Castle for

03 Aug 2026, 00:38 UTC View advisory →
CVE-2026-12168 High 7.8

An improper validation vulnerability for driver `GFAC_Sys_x64.sys` in Little Orbit GFAC allows a local attacker to escalate privileges to SYSTEM and execut

02 Jul 2026, 14:36 UTC View advisory →
CVE-2026-12167 High 7.8

The Minifilter communication port for driver `GFAC_Sys_x64.sys` in Little Orbit GFAC allows a local attacker to access privileged driver functionality via

02 Jul 2026, 14:35 UTC View advisory →
CVE-2026-12166 Medium 5.5

A NULL pointer dereference vulnerability for driver `GFAC_Sys_x64.sys` in Little Orbit GFAC allows a local attacker to cause a denial of service via crafte

02 Jul 2026, 14:36 UTC View advisory →
CVE-2026-12164 Medium 4.4

Fortra File Integrity Monitoring (FIM), formerly Tripwire Enterprise, versions prior to 9.4.0 may assign incorrect or elevated effective permissions to use

23 Jun 2026, 22:15 UTC View advisory →
CVE-2026-12163 Medium 5.5

Fortra File Integrity Monitoring (FIM), formerly Tripwire Enterprise, versions prior to 9.4.0.1 contain a stored cross-site scripting (XSS) vulnerability i

23 Jun 2026, 22:06 UTC View advisory →
CVE-2026-12153 Critical 9.8

The WP Learn Manager plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.1.8. This is due to the plugin not

08 Jul 2026, 05:34 UTC View advisory →
CVE-2026-12141 Medium 4.9

The Premium Addons for Elementor – Powerful Elementor Templates & Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'premiu

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-12135 Medium 6.4

The FV Flowplayer Video Player plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'video_player' shortcode 'align' attribute in all

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-12134 Medium 4.3

The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to authorization bypass in all versions up to, and in

02 Jul 2026, 08:33 UTC View advisory →
CVE-2026-12133 Medium 4.3

The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to Missing Authorization to Arbitrary Group Deletion

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-12127 Medium 5.3

The WPForms – Easy Form Builder for WordPress – Contact Forms, Payment Forms, Surveys, & More plugin for WordPress is vulnerable to Improper Neutralization

01 Jul 2026, 04:32 UTC View advisory →
CVE-2026-12126 Medium 6.4

The WCFM Marketplace – Multivendor Marketplace for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Attachment 'post_title

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-12124 Medium 5.3

The PDFDraft – Drag & Drop PDF Builder, PDF Viewer, Embed & Download PDF, Certificate & Invoice Designer plugin for WordPress is vulnerable to unauthorized

28 Jul 2026, 05:39 UTC View advisory →
CVE-2026-12122 Medium 5.3

The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,

02 Jul 2026, 08:33 UTC View advisory →
CVE-2026-12118 Critical 9.8

IBM webMethods Integration (on prem) 10.15, 10.11 could allow an unauthenticated remote attacker to execute arbitrary code on the system due to the deseria

30 Jul 2026, 17:00 UTC View advisory →
CVE-2026-12114 Medium 4.4

The Team Members – Multi Language Supported Team Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all version

30 Jun 2026, 02:30 UTC View advisory →
CVE-2026-12113 Medium 4.3

The Appointment Booking Calendar plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.02 via the

01 Jul 2026, 04:32 UTC View advisory →
CVE-2026-12112 High 7.8

A flaw was found in the foreman-mcp-server. A session management vulnerability in the MCP Server allows unauthenticated attackers to hijack active administ

23 Jun 2026, 19:40 UTC View advisory →
CVE-2026-12110 Medium 6.5

The Taskbuilder – Project Management & Task Management Tool With Kanban Board plugin for WordPress is vulnerable to generic SQL Injection via the 'task_sea

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-12108 Medium 4.4

The Highlighting Code Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 2.2.

10 Jul 2026, 07:48 UTC View advisory →
CVE-2026-12103 Medium 4.3

The Wallet for WooCommerce plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.6.4. This is due to the plugi

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-12100 High 7.2

The URL Preview plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.0 via the 'url' parameter. This m

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-12097 Medium 5.3

The User Management plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.2. This is due to the plugin not pro

08 Jul 2026, 05:34 UTC View advisory →
CVE-2026-12095 High 7.2

The Kargo Takip plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.2 via the 'api_url' parameter. Th

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-12094 Medium 5.3

The Advanced Contact Form 7 - Compact DB plugin for WordPress is vulnerable to unauthorized deletion of data due to a missing capability check on the cf7cd

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-12090 Medium 6.5

The Taskbuilder – Project Management & Task Management Tool With Kanban Board plugin for WordPress is vulnerable to generic SQL Injection via the 'wppm_pro

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-12086 Medium 6.2

IBM UCD - IBM UrbanCode Deploy 7.2 through 7.2.3.23, and 7.3 through 7.3.2.18 and IBM UCD - IBM DevOps Deploy 8.0 through 8.0.1.13, 8.1 through 8.1.2.6, an

30 Jun 2026, 19:36 UTC View advisory →
CVE-2026-12085 Medium 6.5

IBM UCD - IBM UrbanCode Deploy 7.3 through 7.3.2.18 and IBM UCD - IBM DevOps Deploy 8.0 through 8.0.1.13, 8.1 through 8.1.2.6, and 8.2 through 8.2.1.0 IBM

30 Jun 2026, 19:38 UTC View advisory →
CVE-2026-12084 Medium 5.4

IBM UCD - IBM DevOps Deploy 8.1 through 8.1.2.6, and 8.2 through 8.2.1.0 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry o

30 Jun 2026, 19:39 UTC View advisory →
CVE-2026-12082 Unscored

The Praison AI SEO WordPress plugin before 5.0.7 does not perform authorization checks on several of its REST API routes, allowing unauthenticated users to

23 Jul 2026, 06:00 UTC View advisory →
CVE-2026-12080 High 7.3

A flaw was found in the QEMU Guest Agent (qga). A local unprivileged user can exploit a vulnerability in the guest-ssh-add-authorized-keys command handler

20 Jul 2026, 12:40 UTC View advisory →
CVE-2026-12079 Medium 6.5

The Dokan Pro plugin for WordPress is vulnerable to time-based SQL Injection via the ’orderby’ parameter in all versions up to, and including, 5.0.4 due to

25 Jun 2026, 03:42 UTC View advisory →
CVE-2026-12077 High 7.5

The Dokan Pro plugin for WordPress is vulnerable to time-based SQL Injection via the via 'latitude' and 'longitude' parameters in all versions up to, and i

25 Jun 2026, 03:42 UTC View advisory →
CVE-2026-12076 Critical 9.3

Raytha CMS is vulnerable to SQL Injection within the OData filter parsing pipeline. The vulnerability allows a remote, unauthenticated attacker to execute

30 Jun 2026, 09:10 UTC View advisory →
CVE-2026-12073 Critical 9.8

The ProfileGrid – User Profiles, Groups and Communities plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up

30 Jun 2026, 05:34 UTC View advisory →
CVE-2026-12064 Unscored

When a user invokes curl using a schemeless URL combined with `--proto-default` sftp (or scp), a disconnect occurs between the tool layer and libcurl. The

03 Jul 2026, 06:13 UTC View advisory →
CVE-2026-12053 High 8.6

GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.1 that under certain conditions could have allowed a user to acces

25 Jun 2026, 04:33 UTC View advisory →
CVE-2026-12041 Medium 4.4

The Chatra Live Chat + ChatBot + Cart Saver plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and

08 Jul 2026, 05:34 UTC View advisory →
CVE-2026-12002 Medium 4.7

The Smash Balloon Social Photo Feed – Easy Social Feeds Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and

08 Jul 2026, 12:33 UTC View advisory →
CVE-2026-12001 Medium 5.2

A hardcoded credential vulnerability exists in the firmware of multiple TP-Link routers (TL-WR845N v4, TL-WR850N v3, Archer C20 v6 & Archer MR200 v5). Auth

27 Jul 2026, 20:08 UTC View advisory →
CVE-2026-11999 High 8.2

X.509 trust-chain bypass (path-depth exhaustion) in the OpenSSL compatibility certificate verifier (wolfSSL_X509_verify_cert()). This affects only builds w

25 Jun 2026, 16:56 UTC View advisory →
CVE-2026-11998 High 7.6

A flaw in AngularJS' Strict Contextual Escaping (SCE) logic allows bypassing certain SCE policies for resource URLs and can lead to arbitrary JavaScript ex

24 Jun 2026, 20:29 UTC View advisory →
CVE-2026-11997 Medium 4.3

The Bulk SEO Image plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to and including 1.1. This is due to missing or incorrec

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-11995 Medium 5.3

The Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder plugin for WordPress is vulnerable to authorization bypa

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-11994 Medium 4.8

Akaunting 3.1.21 contains an authenticated stored Cross-Site Scripting vulnerability in the report management workflow. A user with permission to create or

22 Jun 2026, 15:37 UTC View advisory →
CVE-2026-11992 Medium 4.3

The Easy Appointments plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.12.27. This is due to the plugin n

10 Jul 2026, 07:48 UTC View advisory →
CVE-2026-11990 Medium 5.3

The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 4.

10 Jul 2026, 09:32 UTC View advisory →
CVE-2026-11988 Medium 6.5

The LearnPress – WordPress LMS Plugin for Create and Sell Online Courses plugin for WordPress is vulnerable to Insecure Direct Object Reference in all vers

01 Jul 2026, 04:32 UTC View advisory →
CVE-2026-11987 Medium 4.3

The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution – Build Your Own Amazon, eBay, Etsy plugin for WordPress is vulnerable to Insecure Direc

27 Jun 2026, 06:50 UTC View advisory →
CVE-2026-11983 Medium 5.3

The Ad Inserter – Ad Manager & AdSense Ads plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.8.16 due to a

06 Aug 2026, 11:29 UTC View advisory →
CVE-2026-11981 Medium 4.3

The GiveWP plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.15.3 This is due to missing nonce validatio

01 Jul 2026, 04:32 UTC View advisory →
CVE-2026-11980 High 7.3

IBM Aspera Desktop App 1.0.5 through 1.0.19 can allow arbitrary code execution by loading DLL files at start-up.

30 Jul 2026, 14:16 UTC View advisory →
CVE-2026-11979 Low 1.8

libxml2 is vulnerable to multiple stack-based buffer overflows in the xmlcatalog utility when running in --shell mode. The usershell() function processes u

29 Jun 2026, 13:21 UTC View advisory →
CVE-2026-11977 Medium 6.5

The WP Post Author – Author Box, Multiple Authors, Guest Authors & Custom Avatars plugin for WordPress is vulnerable to generic SQL Injection via the 'wpma

05 Aug 2026, 07:39 UTC View advisory →
CVE-2026-11976 Critical 10

The official MonsterInsights Pro update distribution bucket (`monster-insights.s3.amazonaws.com`) was compromised. Both the current release (10.2.2) and th

06 Aug 2026, 16:40 UTC View advisory →
CVE-2026-11972 High 8.2

When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, meaning an archive could

23 Jun 2026, 22:02 UTC View advisory →
CVE-2026-11969 Medium 4.9

The WP TripAdvisor Review Slider plugin for WordPress is vulnerable to generic SQL Injection via 'curselrevs[]' Parameter in all versions up to, and includ

05 Aug 2026, 07:39 UTC View advisory →
CVE-2026-11966 Unscored

The User Registration & Membership WordPress plugin before 5.2.3 does not perform a capability check for unauthenticated callers on one of its membership p

17 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11961 Unscored

The User Registration & Membership WordPress plugin before 5.2.3 does not validate that the membership tier submitted during public registration is one of

17 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11946 High 7.5

An unauthenticated remote attacker can exhaust server memory via the GetEndpoints Discovery Service in open62541. The endpointUrl field of GetEndpointsRequ

02 Jul 2026, 10:54 UTC View advisory →
CVE-2026-11944 Medium 5.3

openSIS Classic 9.3 contains an authenticated path traversal vulnerability in the legacy messaging sent-mail attachment download functionality that allows

14 Jul 2026, 15:23 UTC View advisory →
CVE-2026-11943 Medium 4.8

Akaunting 3.1.21 contains an authenticated stored cross-site scripting vulnerability in the document timeline shown on invoice and bill detail pages. An au

22 Jun 2026, 15:30 UTC View advisory →
CVE-2026-11942 Medium 4.8

Akaunting 3.1.21 contains an authenticated stored cross-site scripting vulnerability in the reusable delete confirmation flow. A user with permission to cr

22 Jun 2026, 15:18 UTC View advisory →
CVE-2026-11940 High 7.8

tarfile.extractall() with the 'data' or 'tar' filter could be bypassed by a crafted archive where a hardlink references a symlink stored at a deeper name t

23 Jun 2026, 16:04 UTC View advisory →
CVE-2026-11920 Medium 4.9

The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to time-based SQL Injection via the 'order' parameter

05 Aug 2026, 07:39 UTC View advisory →
CVE-2026-11917 High 7.2

A path traversal security issue exists within Rockwell Automation ThinManager® software due to improper limitation of file save operations within the API.

14 Jul 2026, 15:07 UTC View advisory →
CVE-2026-11915 Unscored

vulnerability in Drupal Brute force attack protection allows . This issue affects Brute force attack protection versions: *.*.

10 Jul 2026, 21:58 UTC View advisory →
CVE-2026-11914 Unscored

vulnerability in Drupal Composer allows . This issue affects Composer versions: *.*.

10 Jul 2026, 21:59 UTC View advisory →
CVE-2026-11913 Unscored

vulnerability in Drupal Mother May I allows . This issue affects Mother May I versions: *.*.

10 Jul 2026, 22:00 UTC View advisory →
CVE-2026-11909 Unscored

Missing Authorization vulnerability in Drupal Examples for Developers allows Forceful Browsing. This issue affects Examples for Developers versions: from 0

10 Jul 2026, 21:43 UTC View advisory →
CVE-2026-11908 Unscored

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Tagify allows Stored XSS. This issue affects T

10 Jul 2026, 21:43 UTC View advisory →
CVE-2026-11907 Medium 6.5

The Stream plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 4.2.0. This is due to the plugin not properly v

07 Aug 2026, 04:25 UTC View advisory →
CVE-2026-11906 Medium 6.5

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 for Linux, UNIX and Windows (includes Db2 Connect Server) could allow an authenticated user to cau

30 Jun 2026, 19:42 UTC View advisory →
CVE-2026-11904 Medium 5.3

IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 and IBM Verify Identity Access Container 11.0 through 1

30 Jul 2026, 16:54 UTC View advisory →
CVE-2026-11903 High 8

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Progress MOVEit Transfer (Ad Hoc module). This issue

08 Jul 2026, 14:19 UTC View advisory →
CVE-2026-11901 Medium 5.3

The WP Hotel Booking plugin for WordPress is vulnerable to Insufficient Verification of Data Authenticity in all versions up to, and including, 2.3.1. This

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-11898 Medium 4.4

The White Label CMS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 2.7.12 due t

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-11897 High 7.5

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to a denial of service, caused by sending a specially crafted request. A

30 Jul 2026, 14:18 UTC View advisory →
CVE-2026-11896 Medium 5.3

The My Calendar – Accessible Event Manager plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 3.7

02 Jul 2026, 08:33 UTC View advisory →
CVE-2026-11889 High 7.1

SALTO ProAccess Space software using the tenancy feature / logical partition is vulnerable to a privilege escalation attack that could allow an authorized

16 Jul 2026, 20:38 UTC View advisory →
CVE-2026-11887 Unscored

The Salon Booking System WordPress plugin before 10.30.20 does not have proper authorisation checks on one of its AJAX actions, allowing any authenticated

01 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11885 High 8.4

IBM PowerVM Hypervisor FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H1 A carefully crafted OS hypervisor call can c

30 Jul 2026, 16:38 UTC View advisory →
CVE-2026-11883 Unscored

The WebAuthn Provider for Two Factor WordPress plugin before 2.5.6 does not correctly validate the second-factor authentication response, allowing an attac

01 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11882 Unscored

The Builderall for WordPress plugin before 3.0.2 does not bind the state value of its public OAuth authentication routes to the initiating user session, al

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-11880 Unscored

The Fluent Forms WordPress plugin before 6.2.1 does not properly verify ownership before processing a subscription cancellation request, allowing authentic

01 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11878 High 8.2

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in OpenText Access Manager allows Cross-Site Scripting (

24 Jun 2026, 14:01 UTC View advisory →
CVE-2026-11877 Medium 6.3

An unauthorized user can modify configuration through API calls that affects the OpenText Access Manager. This issue affects Access Manager before 5.1.3.

24 Jun 2026, 14:01 UTC View advisory →
CVE-2026-11875 Unscored

The WP Support Plus Responsive Ticket System WordPress plugin through 9.1.2 does not sign or verify its guest-session cookie, allowing unauthenticated atta

09 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11872 Unscored

The Clever Mega Menu for Visual Composer WordPress plugin through 1.0.1 does not perform a nonce or capability check in an AJAX action that updates navigat

02 Aug 2026, 06:00 UTC View advisory →
CVE-2026-11869 Unscored

The WP DSGVO Tools (GDPR) WordPress plugin before 3.1.40 does not perform an authorization check on the immediate-processing path of its data subject acces

09 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11866 Unscored

The Appointment Booking Plugin WordPress plugin before 5.6.3 does not validate a CSRF nonce on several state-changing actions handled by its central reques

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11856 Unscored

Successfully using libcurl to do a transfer to a specific HTTP origin (`hostA`) with **Digest** authentication and then changing the origin to a different

03 Jul 2026, 06:13 UTC View advisory →
CVE-2026-11851 Medium 5.9

Improper Neutralization of Special Elements used in an SQL Command ("SQL Injection") in the web management interface of certain ASUS router models allows a

15 Jul 2026, 02:00 UTC View advisory →
CVE-2026-11836 Low 1.8

Insufficient verification of data authenticity in Caliptra Core ROM and Core Firmware (validate_debug_unlock_token()) in subsystem mode allows an attacker

04 Aug 2026, 00:02 UTC View advisory →
CVE-2026-11835 Medium 5.6

Time-of-check time-of-use (TOCTOU) vulnerability combined with missing input validation in Caliptra Core ROM (UpdateResetFlow::run()) in subsystem mode all

04 Aug 2026, 00:03 UTC View advisory →
CVE-2026-11834 High 8.7

A command injection vulnerability has been identified in the DHCP option processing logic in multiple TP-Link router models, due to insufficient validation

22 Jun 2026, 17:53 UTC View advisory →
CVE-2026-11833 High 8.2

Overview: A vulnerability has been found in FAST/TOOLS and CI Server. The web server may return a response containing the CI Server setting information. Th

23 Jun 2026, 00:53 UTC View advisory →
CVE-2026-11827 Medium 4.9

GitLab has remediated an issue in GitLab EE affecting all versions from 9.5 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain c

08 Jul 2026, 20:46 UTC View advisory →
CVE-2026-11826 High 8.7

OpenPLC_v3 contains a heap-based buffer overflow in the getData() function in webserver/core/modbus_master.cpp. getData() reads characters between two deli

18 Jul 2026, 13:35 UTC View advisory →
CVE-2026-11825 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have be

23 Jun 2026 View advisory →
CVE-2026-11823 High 7.5

The BookingPress Appointment Booking Pro plugin for WordPress is vulnerable to SQL Injection via the 'store_service_date' parameter of the bpa_assign_staff

01 Jul 2026, 05:35 UTC View advisory →
CVE-2026-11820 Medium 6.5

Module: plugins/modules/nexmo.py CVSS 3.1: 6.5 MEDIUM — AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Issue: api_key and api_secret are declared no_log=True at the i

23 Jun 2026, 19:53 UTC View advisory →
CVE-2026-11819 Medium 5.5

Module: plugins/modules/keyring_info.py CVSS 3.1: 5.5 MEDIUM — AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N Issue: The module retrieves a passphrase from the OS nat

23 Jun 2026, 19:53 UTC View advisory →
CVE-2026-11807 Critical 9.6

A missing authorization vulnerability was found in the Event-Driven Ansible (EDA) websocket API. The /api/eda/ws/ansible-rulebook endpoint does not verify

23 Jun 2026, 19:40 UTC View advisory →
CVE-2026-11806 High 7.2

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.6 is affected by an arbitrary file read vulnerability with the restConnector-2.0 feature

30 Jun 2026, 19:43 UTC View advisory →
CVE-2026-11803 High 7.8

A maliciously crafted PDF file, when parsed through Autodesk Revit, can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vuln

06 Aug 2026, 15:58 UTC View advisory →
CVE-2026-11802 Medium 5.3

The FoodBook Lite - Online Food Ordering System plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 1.5.6. Th

14 Jul 2026, 01:30 UTC View advisory →
CVE-2026-11800 High 8.1

A flaw was found in Keycloak. This JWT algorithm confusion vulnerability in the JWT Authorization Grant flow allows an attacker with valid client credentia

25 Jun 2026, 20:57 UTC View advisory →
CVE-2026-11798 Medium 6.1

The Social Share, Social Login and Social Comments Plugin – Super Socializer plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the '

08 Jul 2026, 05:34 UTC View advisory →
CVE-2026-11794 Unscored

The Advanced Form Integration — Connect Forms to 200+ Apps WordPress plugin before 2.1.1 does not restrict the WordPress role assigned when it creates a us

01 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11783 Medium 6.4

The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution – Build Your Own Amazon, eBay, Etsy plugin for WordPress is vulnerable to Stored Cross-S

27 Jun 2026, 06:50 UTC View advisory →
CVE-2026-11779 Medium 5.3

An Improper Authorization vulnerability exists in PayloadCMS version 3.84.1 due to insufficient access control on the account unlock operation.

26 Jun 2026, 16:09 UTC View advisory →
CVE-2026-11773 Medium 4.3

The Masteriyo LMS – LMS Course Builder, Quizzes & Certificates plugin for WordPress is vulnerable to authorization bypass in all versions up to, and includ

27 Jun 2026, 06:50 UTC View advisory →
CVE-2026-11772 Medium 5.1

DRIMO CMS is vulnerable to Reflected XSS via q parameter in searching functionality. An attacker can prepare an URL that, when opened, results in arbitrary

23 Jun 2026, 13:31 UTC View advisory →
CVE-2026-11771 High 7

OpenVPN version 2.1.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows attackers via an off-by-one buffer write in the NTLM proxy authentication to poten

30 Jul 2026, 16:36 UTC View advisory →
CVE-2026-11770 High 7.5

A flaw was found in 389 Directory Server. An unauthenticated remote attacker can inject LDAP search filters into the CleanAllRUV replication status-check e

31 Jul 2026, 09:18 UTC View advisory →
CVE-2026-11767 Unscored

The Free Builder for Elementor WordPress plugin before 1.6.7 does not sanitise submitted contact form field values before storing them and outputting them

21 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11763 Medium 6.5

Authorization bypass through User-Controlled key vulnerability in Gis Informatics Engineering Consulting Laboratory R&D and Software Services Inc. GisLab L

17 Jul 2026, 15:56 UTC View advisory →
CVE-2026-11748 Medium 6.9

A vulnerability has been identified in centraldogma-server-auth-shiro versions prior to 0.84.0, where the SearchFirstActiveDirectoryRealm substitutes the l

22 Jun 2026, 02:37 UTC View advisory →
CVE-2026-11746 Critical 9.4

A vulnerability has been identified in centraldogma-server versions prior to 0.84.0, where enabling ZooKeeper replication without setting replication.secre

22 Jun 2026, 02:35 UTC View advisory →
CVE-2026-11745 High 8.8

A vulnerability has been identified in centraldogma-server-mirror-git versions prior to 0.84.0, where the Git mirror SSH client does not verify remote host

22 Jun 2026, 02:33 UTC View advisory →
CVE-2026-11740 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

17 Jul 2026 View advisory →
CVE-2026-11721 High 7.5

It is possible for an attacker's zone to respond to a query with an RRSIG that has a smaller number of labels than the zone in which the RRSIG is contained

22 Jul 2026, 14:13 UTC View advisory →
CVE-2026-11720 Critical 9.3

A path traversal vulnerability exists in the HTTP tool URL builder of googleapis/mcp-toolbox. When constructing downstream API requests, the URL builder su

29 Jun 2026, 17:51 UTC View advisory →
CVE-2026-11714 High 8.5

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is affected by a server-side request forgery vulnerability with the apiDiscovery-1.0 f

30 Jun 2026, 19:44 UTC View advisory →
CVE-2026-11712 Critical 9.3

IBM WebSphere Application Server 9.0, and 8.5 is affected by a cross-site scripting vulnerability in the administrative console help system.

30 Jun 2026, 19:45 UTC View advisory →
CVE-2026-11708 Critical 9.3

IBM WebSphere Application Server 9.0, and 8.5 is affected by a cross-site scripting vulnerability in the administrative console's integrated help system.

30 Jun 2026, 19:47 UTC View advisory →
CVE-2026-11707 Critical 9.3

IBM Tivoli System Automation Application Manager 4.1 and IBM WebSphere Application Server is affected by a cross-site scripting vulnerability in the admini

30 Jul 2026, 14:15 UTC View advisory →
CVE-2026-11703 Medium 6

Missing SNI/ALPN binding on stateful (session-ID) resumption, which previously skipped the binding check performed for ticket-based resumption. A cached se

25 Jun 2026, 21:15 UTC View advisory →
CVE-2026-11702 High 7.5

Bytes::Random::Secure::Tiny versions through 1.011 for Perl share internal state across forked processes. When an object is initialised before forking, the

26 Jun 2026, 08:13 UTC View advisory →
CVE-2026-11625 High 7.5

Bytes::Random::Secure versions through 0.29 for Perl share internal state across forked processes. When an object is initialised before forking, or when th

26 Jun 2026, 08:07 UTC View advisory →
CVE-2026-11622 High 7.5

A DNSSEC validating resolver that is under a random subdomain attack against a DNSSEC-signed zone can suffer from runaway memory usage. The attacker needs

22 Jul 2026, 14:12 UTC View advisory →
CVE-2026-11614 Medium 6.4

The Xpro Addons — 140+ Widgets for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'custom_attributes' parameter in all

24 Jun 2026, 02:29 UTC View advisory →
CVE-2026-11610 High 8.8

A heap buffer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base). After a successful SASL bind with integrity protection (

07 Jul 2026, 09:17 UTC View advisory →
CVE-2026-11605 High 7.5

The issue is a resource exhaustion vulnerability associated with DNSSEC validation. BIND always validates all RRSIG records in an answer, even if they are

22 Jul 2026, 14:11 UTC View advisory →
CVE-2026-11597 Medium 6.4

The Surbma | Infusionsoft Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'infusionsoft-form' shortcode in versions up

27 Jun 2026, 06:50 UTC View advisory →
CVE-2026-11595 Medium 4.3

IBM WebSphere Application Server 9.0, and 8.5 could allow a remote attacker to obtain sensitive information from the administrative console's integrated he

30 Jun 2026, 19:50 UTC View advisory →
CVE-2026-11594 High 8.5

IBM WebSphere Application Server 9.0, and 8.5 is affected by a cross-site scripting vulnerability in the administrative console.

30 Jun 2026, 20:50 UTC View advisory →
CVE-2026-11591 Medium 4.4

The Widgets for Google Reviews plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-11588 Unscored

The EONSR AEO Agent WordPress plugin through 3.7.9 does not perform any authorisation check on one of its REST API routes and disables HTML sanitisation be

06 Aug 2026, 06:00 UTC View advisory →
CVE-2026-11586 Unscored

By default, curl automatically responds to WebSocket PING frames. Because curl lacks an upper bound on memory allocation for unacknowledged frames, a malic

03 Jul 2026, 06:13 UTC View advisory →
CVE-2026-11580 Unscored

The Kali Forms — Contact Form & Drag-and-Drop Builder WordPress plugin before 2.4.17 does not perform a per-object capability check in its post-duplication

15 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11579 Unscored

The Kali Forms — Contact Form & Drag-and-Drop Builder WordPress plugin before 2.4.17 does not verify that a file upload is made against an existing form co

15 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11575 Unscored

The PhonePe Payment Solutions WordPress plugin before 3.1.0 does not properly verify the authenticity of incoming payment callbacks: the secret used to val

17 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11571 Unscored

The Everest Forms WordPress plugin before 3.5.0 does not reliably delete temporary CSV files generated during email-notification processing and leaves them

09 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11570 Unscored

The User Submitted Posts WordPress plugin before 20260608 does not escape a submitted value before outputting it in an admin-configured display template, l

01 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11568 Unscored

The Product Configurator for WooCommerce WordPress plugin before 1.7.3 does not perform any authorisation or post-status check before returning WooCommerce

01 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11567 Unscored

The SureForms WordPress plugin before 2.11.1 does not properly validate the payment amount on forms that use a dynamically-sourced (variable/hidden) paymen

14 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11564 Unscored

libcurl keeps previously used connections in a connection pool for subsequent transfers to reuse if one of them matches the setup. An easy handle that firs

03 Jul 2026, 06:12 UTC View advisory →
CVE-2026-11563 Unscored

The Word Count and Social Shares WordPress plugin through 1.0 does not validate a user-supplied file path before deletion, nor does it have proper authoriz

14 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11562 Unscored

The WS Form LITE WordPress plugin before 1.11.8 does not have a capability check on one of its settings-update actions, allowing authenticated users with s

01 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11546 High 7.1

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is affected by a server-side request forgery vulnerability with the adminCenter-1.0 fe

30 Jun 2026, 19:51 UTC View advisory →
CVE-2026-11541 High 7.4

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.6 are affected by an HTTP request smug

30 Jun 2026, 20:56 UTC View advisory →
CVE-2026-11536 High 8.5

IBM WebSphere Application Server 9.0, and 8.5 is affected by a remote code execution vulnerability in the SOAP/JMX connector.

30 Jul 2026, 19:02 UTC View advisory →
CVE-2026-11426 Medium 6.5

The UnderConstructionPage PRO plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 5.76. This is due to the plug

11 Jul 2026, 01:29 UTC View advisory →
CVE-2026-11421 Medium 6.5

The ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support plugin for WordPress is vulnerable to SQL Injection via the 'erpadvancefilter' pa

05 Aug 2026, 04:25 UTC View advisory →
CVE-2026-11403 High 8.7

A vulnerability in Sonatype Nexus Repository Manager's format-specific API key generation may allow a remote attacker to gain unauthorized access to reposi

14 Jul 2026, 15:28 UTC View advisory →
CVE-2026-11397 Medium 5.5

The WP Import Export Lite plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to and including 3.9.30 via the wpie_import_

03 Jul 2026, 04:30 UTC View advisory →
CVE-2026-11390 Medium 6.4

The News Kit Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Site Logo Title and Single Author Box Widgets in al

14 Jul 2026, 01:30 UTC View advisory →
CVE-2026-11386 Critical 9

An input validation and injection vulnerability exists in Canonical ubuntu-pro-client (formerly ubuntu-advantage-tools). The client constructs APT source f

16 Jul 2026, 12:16 UTC View advisory →
CVE-2026-11383 Medium 5.4

IBM Tivoli System Automation Application Manager 4.1 and IBM WebSphere Application Server is affected by cross-site scripting in the Administrative Console

30 Jul 2026, 14:12 UTC View advisory →
CVE-2026-11380 Medium 6.4

The JetWidgets For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to and including 1.0.21. This is due to insuf

01 Jul 2026, 04:32 UTC View advisory →
CVE-2026-11379 Medium 5.3

GitLab has remediated an issue in GitLab EE affecting all versions from 13.11 prior to 18.11.6, 19.0 prior to 19.0.3, and 19.1 prior to 19.1.1 in which inc

25 Jun 2026, 04:33 UTC View advisory →
CVE-2026-11374 Critical 9

In ManageEngine ADSelfService Plus, RecoveryManager Plus, M365 Manager Plus, and ADAudit Plus, the SSO tickets generated to authenticate that session could

23 Jun 2026, 08:19 UTC View advisory →
CVE-2026-11373 Critical 9.1

Net::Statsite::Client versions through 1.1.0 for Perl allow metric injections. Net::Statsite::Client is a client for the statsite protocol, which is a vari

22 Jun 2026, 11:28 UTC View advisory →
CVE-2026-11372 Medium 5.4

IBM TRIRIGA Application Platform 5.0.2 through 5.0.3 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitr

22 Jun 2026, 14:09 UTC View advisory →
CVE-2026-11371 Unscored

The BetterDocs WordPress plugin before 4.5.5 does not sanitise an AI-generated documentation summary before storing and outputting it, and the feature that

16 Jul 2026, 06:00 UTC View advisory →
CVE-2026-11370 Medium 6.4

The WP Meta SEO plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 4.5.18 via the 'new_link' parameter

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-11368 High 7.1

The Bluetooth host ATT layer (subsys/bluetooth/host/att.c) associates each in-flight ATT TX buffer with its owning channel via the static tx_meta_data_stor

04 Aug 2026, 14:23 UTC View advisory →
CVE-2026-11367 Medium 6.5

The PixMagix – WordPress Image Editor plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.7.2 via the move_im

30 Jun 2026, 04:30 UTC View advisory →
CVE-2026-11366 Unscored

The MonsterInsights WordPress plugin before 11.1.0 does not correctly validate the signature on one of its unauthenticated AJAX actions: when the MonsterIn

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-11364 Medium 4.3

The Product Specifications for WooCommerce plugin for WordPress is vulnerable to unauthorized modification, creation, and deletion of data in versions up t

27 Jun 2026, 06:50 UTC View advisory →
CVE-2026-11361 Medium 5.9

The Formidable Forms WordPress plugin before 6.32.1 does not properly validate the status of a PayPal subscription payment before marking it complete, allo

06 Aug 2026, 16:45 UTC View advisory →
CVE-2026-11356 Medium 4.4

The Ivory Search – WordPress Search Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'menu_title' and 'menu_magnifier_color' Se

27 Jun 2026, 01:27 UTC View advisory →
CVE-2026-11352 Unscored

An issue in curl’s QUIC UDP receive function allows a malicious HTTP/3 server to trigger a remote denial of service against a curl or libcurl client. Becau

03 Jul 2026, 06:12 UTC View advisory →
CVE-2026-11348 High 8.1

Improper verification of cryptographic signature vulnerability in HAVELSAN Inc. Liman MYS allows Fake the Source of Data. This issue affects Liman MYS: bef

07 Jul 2026, 11:11 UTC View advisory →
CVE-2026-11340 High 8.3

Missing Authorization vulnerability in HAVELSAN Inc. Liman MYS allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Liman MY

07 Jul 2026, 11:01 UTC View advisory →
CVE-2026-11331 High 7.5

An attacker who knows (or guesses) that a resolver uses RPZ with wildcard CNAME policies can craft query names long enough to trigger a NAMETOOLONG error c

22 Jul 2026, 14:10 UTC View advisory →
CVE-2026-11324 Medium 6.1

The WooCommerce Placetopay Gateway and PlacetoPay/AvalPay gateway plugins for WordPress are vulnerable to Reflected Cross-Site Scripting via the 'redirect-

17 Jul 2026, 02:31 UTC View advisory →
CVE-2026-11321 High 7.1

The DataInjection plugin for GLPI 2.15.6 (GLPI 11 builds) concatenates user-supplied CSV field values directly into SQL queries during CSV import, without

10 Jul 2026, 18:53 UTC View advisory →
CVE-2026-11310 High 8.7

X.509 trust-chain bypass in the OpenSSL compatibility certificate verifier (wolfSSL_X509_verify_cert()). This affects only builds with --enable-opensslextr

25 Jun 2026, 19:38 UTC View advisory →
CVE-2026-10865 Medium 5.3

The Cost Calculator Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.0.11 via the (temp

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-10857 Medium 6.1

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in AKIN Software Computer Import Export Industry and Tra

23 Jun 2026, 12:15 UTC View advisory →
CVE-2026-10852 Medium 5.9

IBM i 7.6, 7.5, 7.4, and 7.3, IBM WebSphere Application Server, and IBM WebSphere Application Server Liberty are vulnerable to denial of service in the Web

22 Jun 2026, 19:32 UTC View advisory →
CVE-2026-10849 High 8.2

The hawkBit device management client in subsys/mgmt/hawkbit accumulates the body of an HTTP response from the update server into a heap buffer in response_

03 Aug 2026, 21:21 UTC View advisory →
CVE-2026-10848 High 7

The OCPP 1.6 client in subsys/net/lib/ocpp parsed inbound WAMP RPC frames in parse_rpc_msg() (subsys/net/lib/ocpp/ocpp_j.c) using a hand-rolled helper, ext

02 Aug 2026, 16:12 UTC View advisory →
CVE-2026-10845 High 7.3

IBM WebSphere Application Server 8.5 and 9.0 could allow a remote attacker to bypass authentication and gain unauthorized access to JAX-WS applications.

22 Jun 2026, 14:43 UTC View advisory →
CVE-2026-10842 High 7.5

IBM WebSphere Application Server 8.5, and 9.0 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 Traditional and Liberty could allow

30 Jul 2026, 15:57 UTC View advisory →
CVE-2026-10835 Unscored

The SALESmanago & Leadoo WordPress plugin before 3.11.3 does not properly sanitise and escape a parameter passed to one of its AJAX actions before using it

26 Jun 2026, 06:00 UTC View advisory →
CVE-2026-10833 Medium 6.4

The Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'co

25 Jun 2026, 03:42 UTC View advisory →
CVE-2026-10827 Unscored

The Spectra Legacy WordPress plugin before 2.20.0 does not validate or escape several block style attributes before using them to build the CSS it outputs

01 Aug 2026, 06:00 UTC View advisory →
CVE-2026-10824 Unscored

The Masteriyo LMS WordPress plugin before 2.2.1 does not perform authorization checks in a course-progress REST API controller, allowing unauthenticated us

25 Jun 2026, 06:00 UTC View advisory →
CVE-2026-10823 Unscored

The YMC Filter WordPress plugin before 3.11.3 does not properly authorize access to one of its REST API endpoints and does not validate a user-supplied que

26 Jun 2026, 06:00 UTC View advisory →
CVE-2026-10822 Medium 6.5

If BIND encounters a particular invalid data structure in a DNS record, it will accept the invalid data, and may subsequently abort and exit. BIND will fir

22 Jul 2026, 14:09 UTC View advisory →
CVE-2026-10820 Unscored

The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content WordPress plugin before 4.16.17 does not verify

27 Jun 2026, 06:00 UTC View advisory →
CVE-2026-10819 Medium 6.5

Mattermost versions 11.6.x <= 11.6.5, 10.11.x <= 10.11.20, 11.8.x <= 11.8.1, 11.7.x <= 11.7.4 fail to limit the number of frames and enforce the file size

27 Jul 2026, 14:15 UTC View advisory →
CVE-2026-10817 Medium 6.9

Insufficient input validation leading to memory overread in NetScaler ADC and NetScaler Gateway if the TCP TimeStamp is enabled in TCP Profile and is assoc

30 Jun 2026, 12:58 UTC View advisory →
CVE-2026-10816 High 7.1

Arbitrary File Read (Unauthenticated) in NetScaler ADC and NetScaler Gateway if the access to NSIP, Cluster Management IP or SNIP with management access is

30 Jun 2026, 12:52 UTC View advisory →
CVE-2026-10789 Critical 9.6

A maliciously crafted webpage, when visited by a user with Autodesk Fusion Desktop running and the MCP extension enabled, can trigger a vulnerability in th

22 Jun 2026, 17:15 UTC View advisory →
CVE-2026-10782 Medium 4.3

The RealHomes Memberships plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.0.9. This is due to the plugin

01 Aug 2026, 07:49 UTC View advisory →
CVE-2026-10774 Low 2.4

Zephyr's Bluetooth Mesh subnet key management leaks one PSA Crypto key slot on every subnet-key teardown. In subsys/bluetooth/mesh/subnet.c, net_keys_creat

02 Aug 2026, 14:20 UTC View advisory →
CVE-2026-10773 Medium 5.4

The DHCPv4 client helper net_dhcpv4_msg_type_name() in subsys/net/lib/dhcpv4/dhcpv4.c indexes a static 8-element const char * name table after a faulty bou

01 Aug 2026, 12:21 UTC View advisory →
CVE-2026-10772 Unscored

** DUPLICATE ** This CVE Record has been rejected by the Zephyr Project CNA. CVE-2026-10772 was assigned to a vulnerability already covered by CVE-2026-241

02 Aug 2026 View advisory →
CVE-2026-10770 Unscored

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Anti-Spam by CleanTalk allows Reflected XSS. T

10 Jul 2026, 21:42 UTC View advisory →
CVE-2026-10769 Unscored

Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Commerce Core allows Stored XSS. This issue af

10 Jul 2026, 21:41 UTC View advisory →
CVE-2026-10768 Unscored

Missing Authorization vulnerability in Drupal LocalGov Workflows allows Forceful Browsing. This issue affects LocalGov Workflows versions: from 0.0.0 to 1.

10 Jul 2026, 21:41 UTC View advisory →
CVE-2026-10763 High 7

PROMOD V is using insecure HTTP communication instead of HTTPS. The vulnerability is due to the lack of HTTPS support from 3rd party Digipede server.

30 Jun 2026, 09:37 UTC View advisory →
CVE-2026-10753 Unscored

The Site Kit by Google WordPress plugin before 1.176.0 does not properly restrict a REST API write endpoint to administrators, allowing lower-privileged us

24 Jun 2026, 06:00 UTC View advisory →
CVE-2026-10750 Unscored

The Royal MCP WordPress plugin before 1.4.26 does not perform capability checks on the majority of its MCP tools after token authentication, allowing authe

01 Jul 2026, 06:00 UTC View advisory →
CVE-2026-10749 Unscored

The Post Duplicator WordPress plugin before 3.0.15 does not safely handle custom meta-data during post duplication, storing attacker-supplied serialized va

24 Jun 2026, 06:00 UTC View advisory →
CVE-2026-10745 High 7.9

Improper output neutralization for logs vulnerability in upKeeper Solutions upKeeper Instant Privilege Access on Windows allows Log Injection-Tampering-For

24 Jun 2026, 08:04 UTC View advisory →
CVE-2026-10735 Unscored

Multiple Shapedsmart-post-show-pro WordPress plugin before 4.0.2, Real Testimonials Pro WordPress plugin before 3.2.5, Product Slider for WooCommerce Pro W

24 Jun 2026, 06:00 UTC View advisory →
CVE-2026-10723 Medium 6.8

BIND may accept incorrect child-zone NSEC3 records as valid, which could allow an attacker to forge authenticated NXDOMAIN responses. This issue affects BI

22 Jul 2026, 14:08 UTC View advisory →
CVE-2026-10716 High 7.5

Directus contains an authenticated SQL injection vulnerability in the collection creation flow when the instance uses PostgreSQL with PostGIS enabled. An a

05 Aug 2026, 16:50 UTC View advisory →
CVE-2026-10714 High 8.8

A security issue exists within FactoryTalk® Services Platform (FTSP), allowing an attacker to bypass JWT signature validation during Okta Web Authenticatio

14 Jul 2026, 15:02 UTC View advisory →
CVE-2026-10712 High 8

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.10 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under cert

25 Jun 2026, 04:33 UTC View advisory →
CVE-2026-10711 High 8.8

Missing authentication for critical function vulnerability in AKIN Software Computer Import Export Industry and Trade Ltd. CafePlus allows Accessing Functi

23 Jun 2026, 12:08 UTC View advisory →
CVE-2026-10710 High 7.8

A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerability in fbxsdk::ExtractDrive. A ma

04 Aug 2026, 12:59 UTC View advisory →
CVE-2026-10709 High 7.8

A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerability in fbxsdk::FbxIO::BinaryReadS

04 Aug 2026, 12:59 UTC View advisory →
CVE-2026-10708 Unscored

This vulnerability enables large‑scale data harvesting without requiring app‑specific secrets. A single request to a minimal leaderboard component may retu

08 Jul 2026, 14:05 UTC View advisory →
CVE-2026-10706 Unscored

In Adalo’s no-code app builder, (Versions 1 and 2) the attackers may extract full user records and correlate user behavior across multiple applications via

08 Jul 2026, 14:06 UTC View advisory →
CVE-2026-10700 Medium 6.5

IBM Langflow OSS 1.0.0 through 1.8.4 contains multiple broken access control vulnerabilities in its file handling API that allow unauthorized access to use

30 Jul 2026, 16:51 UTC View advisory →
CVE-2026-10699 High 7.5

Missing release of memory after effective lifetime vulnerability in Progress MOVEit Transfer (Custom Reports modules). This issue affects MOVEit Transfer:

08 Jul 2026, 14:18 UTC View advisory →
CVE-2026-10698 High 7.2

Improper Neutralization of Special Elements in Data Query Logic vulnerability in Progress MOVEit Transfer (Custom Reports modules). This issue affects MOVE

08 Jul 2026, 14:16 UTC View advisory →
CVE-2026-10695 Medium 6.2

IBM Db2 12.1.0 through 12.1.4 federated server is vulnerable to a denial of service when running non fenced federated queries.

30 Jul 2026, 16:55 UTC View advisory →
CVE-2026-10686 Medium 5.8

Zephyr's IPv6 forwarding path re-sent routed unicast packets without ever decrementing the IPv6 hop limit. Both routing branches of ipv6_route_packet() (su

31 Jul 2026, 15:49 UTC View advisory →
CVE-2026-10685 High 7.6

The Zephyr Bluetooth GATT client CCC-write response handler gatt_write_ccc_rsp() in subsys/bluetooth/host/gatt.c invoked the application's params->subscrib

31 Jul 2026, 14:41 UTC View advisory →
CVE-2026-10683 Low 2.4

In the Synopsys DesignWare I2C driver (drivers/i2c/i2c_dw.c) operating in target/slave mode, the rx_full interrupt handler gates the write_requested() call

27 Jul 2026, 18:30 UTC View advisory →
CVE-2026-10682 Medium 6.6

The userspace verifier z_vrfy_log_filter_set() for the log_filter_set syscall in subsys/logging/log_mgmt.c performed a signed comparison against the int16_

27 Jul 2026, 18:30 UTC View advisory →
CVE-2026-10673 High 8.3

The Zephyr ADIN2111/ADIN1110 10BASE-T1S/T1L Ethernet driver (drivers/ethernet/eth_adin2111.c) reassembles received Ethernet frames in OPEN Alliance (OA) SP

15 Jul 2026, 17:36 UTC View advisory →
CVE-2026-10672 High 8.2

subsys/net/lib/lwm2m/lwm2m_pull_context.c copied the firmware-update Package URI into a fixed static buffer (context.uri, size CONFIG_LWM2M_SWMGMT_PACKAGE_

14 Jul 2026, 15:02 UTC View advisory →
CVE-2026-10671 High 7.1

In Zephyr's kernel pipe implementation, the userspace syscall verifier z_vrfy_k_pipe_init() in kernel/pipe.c used K_SYSCALL_OBJ() (which requires the kerne

14 Jul 2026, 15:02 UTC View advisory →
CVE-2026-10670 Medium 5.5

The CONFIG_USERSPACE verification handler for the k_thread_name_copy() system call (z_vrfy_k_thread_name_copy() in kernel/thread.c) calls k_object_find() o

14 Jul 2026, 15:02 UTC View advisory →
CVE-2026-10669 High 7.8

On Xtensa SoCs built with CONFIG_XTENSA_MPU and CONFIG_USERSPACE, arch_buffer_validate() in arch/xtensa/core/mpu.c — the architecture hook that verifies a

14 Jul 2026, 15:02 UTC View advisory →
CVE-2026-10660 Medium 6.4

The Bluetooth BAP Broadcast Assistant GATT client in subsys/bluetooth/audio/bap_broadcast_assistant.c reassembled remote Broadcast Receive State data into

11 Jul 2026, 17:00 UTC View advisory →
CVE-2026-10659 Medium 4.7

The Dhara flash translation layer disk driver (drivers/disk/ftl_dhara.c) implemented the dhara_nand_ callbacks so that, on a flash error, the error code wa

07 Jul 2026, 12:58 UTC View advisory →
CVE-2026-10658 High 7.1

A missing length validation in the Zephyr Bluetooth Host ISO receive path can be triggered by malformed HCI ISO data. In bt_iso_recv() (subsys/bluetooth/ho

22 Jun 2026, 23:58 UTC View advisory →
CVE-2026-10655 Medium 6.5

The asynchronous SNTP client in Zephyr (subsys/net/lib/sntp/sntp.c, sntp_close_async) closed the UDP socket file descriptor directly from the calling threa

30 Jun 2026, 16:33 UTC View advisory →
CVE-2026-10654 Low 3.1

A race condition in the Zephyr Bluetooth Classic RFCOMM host stack (subsys/bluetooth/host/classic/rfcomm.c) mishandles a simultaneous bidirectional session

30 Jun 2026, 16:29 UTC View advisory →
CVE-2026-10653 Medium 6.4

The Zephyr net_buf library (lib/net_buf/buf.c) manipulated both of its reference counts -- the per-header buf->ref and the per-data-block ref_count at the

30 Jun 2026, 16:20 UTC View advisory →
CVE-2026-10652 Medium 4.8

Zephyr's DNS resolver (subsys/net/lib/dns) parses resource records from DNS responses in dns_unpack_answer(), which validated only the fixed RR header (typ

30 Jun 2026, 15:50 UTC View advisory →
CVE-2026-10651 High 7.1

A malformed Bluetooth Classic SDP attribute can trigger a reachable assertion in Zephyr's SDP parser. In subsys/bluetooth/host/classic/sdp.c, bt_sdp_parse_

22 Jun 2026, 23:54 UTC View advisory →
CVE-2026-10648 Medium 6.2

mcumgr_serial_process_frag() in subsys/mgmt/mcumgr/transport/src/serial_util.c calls net_buf_reset() on the result of smp_packet_alloc() before checking it

29 Jun 2026, 22:51 UTC View advisory →
CVE-2026-10647 Medium 5.3

The USB CDC-NCM device class (subsys/usb/device_next/class/usbd_cdc_ncm.c) ignores the return value of usbd_ep_enqueue() in its ethernet transmit callback

29 Jun 2026, 21:39 UTC View advisory →
CVE-2026-10646 High 7.4

Zephyr's BSD-sockets getaddrinfo() implementation (subsys/net/lib/sockets/getaddrinfo.c) passes a pointer to a stack-allocated state object (struct getaddr

28 Jun 2026, 04:04 UTC View advisory →
CVE-2026-10645 Medium 4.9

Zephyr's ext2 directory-entry parser does not fully validate on-disk directory entry structure before copying the entry name and advancing traversal state.

22 Jun 2026, 23:48 UTC View advisory →
CVE-2026-10644 Medium 4.2

The Microchip SERCOM-G1 UART driver (drivers/serial/uart_mchp_sercom_g1.c), used by the PIC32CM-JH SoC family, contains an out-of-bounds write in its async

28 Jun 2026, 04:02 UTC View advisory →
CVE-2026-10643 High 8.7

Zephyr's IP socket recvmsg() implementation (subsys/net/lib/sockets/sockets_inet.c, insert_pktinfo()) validated the user-supplied ancillary (msg_control) b

27 Jun 2026, 22:59 UTC View advisory →
CVE-2026-10642 Medium 6.5

The Zephyr PL011 UART driver (drivers/serial/uart_pl011.c) contains an unbounded software loop in pl011_irq_tx_enable() that repeatedly invokes the interru

24 Jun 2026, 21:32 UTC View advisory →
CVE-2026-10628 Medium 4.3

The Points and Rewards for WooCommerce plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.10.0. This is due

11 Jul 2026, 02:31 UTC View advisory →
CVE-2026-10609 Medium 6.8

A missing authorization flaw was found in the OpenShift Cluster Logging Operator. The operator creates and forwards ServiceAccount tokens to output destina

23 Jun 2026, 13:26 UTC View advisory →
CVE-2026-10601 Medium 5.4

The Tempo and Loki datasource plugins construct backend HTTP requests by interpolating user-supplied input into URL paths without sanitization, enabling pa

22 Jun 2026, 13:18 UTC View advisory →
CVE-2026-10600 Medium 4.3

Mattermost versions 11.8.x <= 11.8.0, 11.7.x <= 11.7.3, 11.6.x <= 11.6.5, 10.11.x <= 10.11.20 fail to bound the time and resource consumption of server-sid

27 Jul 2026, 14:13 UTC View advisory →
CVE-2026-10599 High 7.5

The Integrate PhonePe with WooCommerce WordPress plugin through 1.2.1 does not validate that a verified payment transaction belongs to the order being mark

06 Aug 2026, 16:45 UTC View advisory →
CVE-2026-10593 Medium 6.5

The Zephyr Bluetooth LE Audio Basic Audio Profile (BAP) unicast client mishandles peer-supplied ASE state notifications. In unicast_client_ep_qos_state() (

28 Jun 2026, 04:28 UTC View advisory →
CVE-2026-10592 Medium 6.3

Certificates with wildcard DNS SANs (e.g. *.example.com) bypassed CA name-constraint checks. A certificate with a wildcard DNS SAN that should be rejected

25 Jun 2026, 19:40 UTC View advisory →
CVE-2026-10590 Medium 6.7

A potential missing authentication vulnerability could allow a local privileged attacker to use WMI commands to arbitrarily trigger a System Management Int

16 Jul 2026, 16:50 UTC View advisory →
CVE-2026-10589 Medium 6.8

A potential out of bounds write vulnerability could allow a local privileged attacker to execute code in System Management Mode.

16 Jul 2026, 16:50 UTC View advisory →
CVE-2026-10588 Medium 6.7

A potential vulnerability could allow a local privileged attacker to disclose the address of protected System Management Mode memory.

16 Jul 2026, 16:49 UTC View advisory →
CVE-2026-10587 Medium 6.8

A potential out-of-bounds write vulnerability could allow a local privileged attacker to modify power management settings in System Management Mode.

16 Jul 2026, 16:49 UTC View advisory →
CVE-2026-10585 Medium 6.3

A stored cross-site scripting vulnerability was identified in GitHub Enterprise Server that allowed an authenticated attacker to execute arbitrary JavaScri

30 Jun 2026, 21:39 UTC View advisory →
CVE-2026-10577 Critical 10

A security issue exists within the 1715-AENTR EtherNet/IP Adapter. The affected product exposes a network-accessible debug port that does not enforce prope

14 Jul 2026, 12:52 UTC View advisory →
CVE-2026-10573 High 8.7

A denial-of-service security issue exists in 1734 POINT I/O™ module. The security issue stems from improper handling of crafted CIP messages, which can cau

14 Jul 2026, 14:54 UTC View advisory →
CVE-2026-10570 Medium 6.4

The Sympl Repeater for ACF and Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ACF repeater field values in all versions up

08 Jul 2026, 05:34 UTC View advisory →
CVE-2026-10569 Medium 4.3

IBM UCD - IBM UrbanCode Deploy 7.2 through 7.2.3.23, and 7.3 through 7.3.2.18 and IBM UCD - IBM DevOps Deploy 8.0 through 8.0.1.13, 8.1 through 8.1.2.6, an

30 Jul 2026, 19:06 UTC View advisory →
CVE-2026-10564 High 8.2

IBM Langflow OSS 1.0.0 through 1.9.6 contains a Server-Side Request Forgery (SSRF). The legacy RSSReaderComponent in rss.py and SearXNG component in searxn

30 Jun 2026, 19:51 UTC View advisory →
CVE-2026-10562 Medium 5.9

An unauthenticated URL redirection vulnerability has been identified in Archer AX20 V2 due to improper validation of user-supplied URL input within the web

30 Jun 2026, 20:34 UTC View advisory →
CVE-2026-10561 Critical 10

IBM Langflow OSS 1.0.0 through 1.9.3 has an vulnerability due to an improper isolation of Python execution combined with an authentication bypass that allo

22 Jun 2026, 13:22 UTC View advisory →
CVE-2026-10560 High 8.2

IBM Langflow OSS 1.0.0 through 1.9.6 contains a missing authentication vulnerability in /api/v1/build_public_tmp/ endpoints that allows an unauthenticated

30 Jun 2026, 19:53 UTC View advisory →
CVE-2026-10552 Medium 4.3

The Blue Captcha plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to and including 2.0.1. This is due to missing or incorrec

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-10547 Medium 5.9

IBM Langflow OSS 1.0.0 through 1.10.3 does not properly validate ownership in the deprecated POST /api/v1/build/{flow_id}/vertices endpoint, allowing an au

05 Aug 2026, 18:14 UTC View advisory →
CVE-2026-10546 High 7.1

IBM Langflow OSS 1.0.0 through 1.9.3 contains a Server-Side Request Forgery (SSRF) vulnerability in the URL component ( src/lfx/src/lfx/components/data_sou

30 Jun 2026, 19:54 UTC View advisory →
CVE-2026-10545 High 7.5

IBM Planning Analytics Local 2.1.0 through 2.1.21 is vulnerable to an open redirect that allows an attacker to redirect users to arbitrary external website

30 Jul 2026, 17:59 UTC View advisory →
CVE-2026-10536 Unscored

A use-after-free vulnerability exists in libcurl when an application configures an HTTP/2 stream-dependency tree via `CURLOPT_STREAM_DEPENDS` or `CURLOPT_S

03 Jul 2026, 06:11 UTC View advisory →
CVE-2026-10535 High 8.4

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to buffer overflow in setgid helper db2flacc.

30 Jul 2026, 16:55 UTC View advisory →
CVE-2026-10531 Unscored

The AI Share & Summarize WordPress plugin before 2.0.4 does not sanitise and escape some of its shortcode attributes before outputting them in a page, allo

24 Jun 2026, 06:00 UTC View advisory →
CVE-2026-10530 Unscored

The Pie Register WordPress plugin before 3.8.4.10 does not use sufficiently random values when generating its account verification tokens, allowing unauthe

22 Jun 2026, 06:00 UTC View advisory →
CVE-2026-10526 Unscored

The EmbedPress WordPress plugin before 4.6.1 does not validate user-supplied URLs before making server-side requests through unauthenticated endpoints, all

04 Aug 2026, 06:00 UTC View advisory →
CVE-2026-10525 Unscored

The NEX-Forms WordPress plugin before 9.2.3 does not sanitise and escape some submitted form data before storing it and outputting it back in the admin das

17 Jul 2026, 06:00 UTC View advisory →
CVE-2026-10524 High 7.5

The CoCart WordPress plugin before 4.9.0 does not validate a user-supplied price value against the actual product price when items are added to the cart th

06 Aug 2026, 17:07 UTC View advisory →
CVE-2026-10521 High 8.6

An high privileged remote attacker can access a hidden configuration method, that should not be accessible by any user, to modify critical program paramete

23 Jun 2026, 07:34 UTC View advisory →
CVE-2026-10513 High 7.2

The Webmention plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to and including 5.8.0 via parser-derived 'avatar' and 'url

30 Jun 2026, 18:32 UTC View advisory →
CVE-2026-10512 Low 2.3

The X25519 x86_64 assembly implementation fails to clear the most significant bit during the final modular reduction, so the computed result may not be ful

25 Jun 2026, 19:58 UTC View advisory →
CVE-2026-10140 Critical 9.6

IBM Langflow OSS 1.0.0 through 1.10.0 voice mode contains improper shared-state handling that allows reuse of API clients across tenant boundaries. An auth

30 Jun 2026, 19:55 UTC View advisory →
CVE-2026-10134 Critical 10

IBM Langflow OSS 1.0.0 through 1.9.3 allows an attacker to read every secret available to the Langflow process, read and modify every flow, conversation, m

30 Jun 2026, 19:56 UTC View advisory →
CVE-2026-10130 High 8.8

QueryWeaver contains an authentication bypass vulnerability that allows unauthenticated attackers to obtain valid session tokens for existing accounts by s

18 Jul 2026, 22:15 UTC View advisory →
CVE-2026-10129 High 8.5

IBM Langflow OSS 1.0.0 through 1.9.3 contains a Server-Side Request Forgery (SSRF) protection bypass vulnerability in the API Request component. An authent

30 Jun 2026, 19:59 UTC View advisory →
CVE-2026-10128 Medium 6.5

IBM Langflow OSS 1.0.0 through 1.10.3 allows authenticated users can exploit a built-in Langflow component to read arbitrary server environment variables,

05 Aug 2026, 17:42 UTC View advisory →
CVE-2026-10109 Critical 9.8

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to remote code execution due to improper pre-auth DRDA handshake handling.

30 Jun 2026, 20:02 UTC View advisory →
CVE-2026-10106 Medium 6.5

Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to verify that the channel referenced in an action cookie matches the chan

13 Jul 2026, 08:09 UTC View advisory →
CVE-2026-10104 Medium 4.4

The Product Video Gallery for Woocommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via custom_thumbnail Parameter in all versions

02 Jul 2026, 08:33 UTC View advisory →
CVE-2026-10103 Medium 4.3

Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to verify post ownership in the shared channel inbound sync handler, which

13 Jul 2026, 07:57 UTC View advisory →
CVE-2026-10098 Medium 6.3

OCSP CertID serial-number length-confusion in wolfSSL_OCSP_resp_find_status allows a same-issuer SingleResponse whose serial is a prefix of the target seri

25 Jun 2026, 21:16 UTC View advisory →
CVE-2026-10097 Medium 6.3

ML-KEM-1024 x64 AVX2 implicit rejection failure in the Fujisaki-Okamoto transform breaks IND-CCA2 security, allowing decapsulation to deviate from the impl

25 Jun 2026, 19:59 UTC View advisory →
CVE-2026-10092 High 7.2

The Cincopa video and media plug-in plugin for WordPress is vulnerable to Stored Cross-Site Scripting via cincopa Shortcode in Post Comments in all version

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-10091 High 7.2

The Email JavaScript Cloak plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'email' shortcode in all versions up to, and

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-10090 Critical 9.9

A flaw was found in the Application Subscription controller (multicluster-operators-subscription) of Red Hat Advanced Cluster Management for Kubernetes (AC

05 Aug 2026, 08:54 UTC View advisory →
CVE-2026-10086 High 8.7

GitLab has remediated an issue in GitLab EE affecting all versions from 16.4 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under certain

25 Jun 2026, 05:03 UTC View advisory →
CVE-2026-10085 Medium 5.4

Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to restrict the group_constrained channel flag to public and private chann

13 Jul 2026, 08:05 UTC View advisory →
CVE-2026-10083 Unscored

The APCu Manager WordPress plugin before 4.5.0 does not escape APCu object-cache keys before rendering them in an admin-area page, leading to a Stored Cros

29 Jun 2026, 06:00 UTC View advisory →
CVE-2026-10079 High 8.5

A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). When processing Kubernetes Deployments, ACS replaces deployment identity meta

31 Jul 2026, 09:08 UTC View advisory →
CVE-2026-10059 Critical 9.1

A flaw was found in the Multicluster Engine for Kubernetes ClusterCurator controller. A tenant administrator with namespace-scoped privileges can exploit t

05 Aug 2026, 08:54 UTC View advisory →
CVE-2026-10051 Medium 6.9

In Eclipse Jetty, a first HTTP/1.1 request with trailers causes the server to retain the trailers in subsequent requests performed over the same connection

14 Jul 2026, 08:44 UTC View advisory →
CVE-2026-10050 High 8.7

In Eclipse Jetty, the Digest authentication server-side component uses ISO-8859-1 to encode the password as bytes. This was done because the initial specif

04 Aug 2026, 11:02 UTC View advisory →
CVE-2026-10043 High 7.8

MosaicML Composer Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary co

24 Jun 2026, 21:36 UTC View advisory →
CVE-2026-10041 Medium 4.3

The WCFM – Frontend Manager for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 6.

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-10037 High 8.8

A sandbox escape vulnerability exists in the OpenJDK packages provided in Ubuntu. The .jar MIME handlers installed by these packages execute files marked a

08 Jul 2026, 21:18 UTC View advisory →
CVE-2026-10032 Medium 6.1

The openUrl function in @a2ui/web_core passes an agent-controlled URL directly to window.open() without validating the URI scheme. A malicious agent can su

04 Aug 2026, 15:36 UTC View advisory →
CVE-2026-10031 Low 2.3

SFTPGo prior to 2.7.4 contains a permission bypass vulnerability that allows authenticated users to circumvent per-directory access controls by creating sy

30 Jul 2026, 22:51 UTC View advisory →
CVE-2026-10025 High 8.2

IBM QRadar 7.6.0.0 through 7.6.0.1, and 7.5.0 through 7.5.0 UP 15 Interim Fix 005 has an XML External Entity (XXE) injection vulnerability. The vulnerabili

05 Aug 2026, 16:03 UTC View advisory →
CVE-2026-9857 Medium 4.3

The Invoice123 plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.7.0. This is due to the plugin not proper

10 Jul 2026, 09:32 UTC View advisory →
CVE-2026-9856 High 7.1

A vulnerability in huggingface/transformers versions <=5.8.0.dev0 allows an attacker to perform arbitrary file writes via path traversal. The issue resides

02 Aug 2026, 15:10 UTC View advisory →
CVE-2026-9842 High 7.5

The Backstage - Customizer Demo Access plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.4.2. This is due

08 Jul 2026, 04:30 UTC View advisory →
CVE-2026-9838 Medium 6.1

The ICS Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'htmltagtitle' parameter in all versions up to, and including

10 Jul 2026, 08:30 UTC View advisory →
CVE-2026-9836 Low 3.5

IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is affected by an information disclosure vulnerability.

30 Jun 2026, 19:04 UTC View advisory →
CVE-2026-9834 High 7.2

The WP Database Backup – Unlimited Database & Files Backup by Backup for WP plugin for WordPress is vulnerable to OS Command Injection in all versions up t

02 Jul 2026, 08:33 UTC View advisory →
CVE-2026-9824 Medium 4.3

Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to check the manage_shared_channels permission in the /share-channel autoc

13 Jul 2026, 10:47 UTC View advisory →
CVE-2026-9820 Low 3.8

Mattermost versions 11.7.x <= 11.7.2, 10.11.x <= 10.11.19 fail to sanitize team objects returned by the scheme teams endpoint, which allows a user with the

13 Jul 2026, 10:51 UTC View advisory →
CVE-2026-9810 Unscored

The AI Copilot WordPress plugin before 1.5.4 does not bind OAuth access tokens to a WordPress user, and accepts any valid token as an administrator session

17 Jul 2026, 06:00 UTC View advisory →
CVE-2026-9800 High 8.1

A flaw was found in Keycloak Policy Enforcer. This vulnerability allows any authenticated user to bypass all authorization policies, including role, scope,

25 Jun 2026, 16:16 UTC View advisory →
CVE-2026-9799 Medium 4.6

A flaw was found in org.keycloak.authorization. An authenticated user with a granted User-Managed Access (UMA) permission ticket for one resource can explo

25 Jun 2026, 16:17 UTC View advisory →
CVE-2026-9787 High 8.8

Quest NetVault Backup NVBULogDaemon Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary

24 Jun 2026, 23:15 UTC View advisory →
CVE-2026-9786 High 8.8

Quest NetVault Backup NVBUDashboard SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code

24 Jun 2026, 23:15 UTC View advisory →
CVE-2026-9785 High 8.8

Quest NetVault Backup NVBULibrarySlot SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary co

24 Jun 2026, 23:14 UTC View advisory →
CVE-2026-9784 High 8.8

Quest NetVault Backup NVBULibraryPort SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary co

24 Jun 2026, 23:14 UTC View advisory →
CVE-2026-9783 High 8.8

Quest NetVault Backup NVBURemovableMedia SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary

24 Jun 2026, 23:14 UTC View advisory →
CVE-2026-9782 High 8.8

Quest NetVault Backup NVBUDeviceDrive SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary co

24 Jun 2026, 23:14 UTC View advisory →
CVE-2026-9781 High 8.8

Quest NetVault Backup NVBURASDevice SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code

24 Jun 2026, 23:14 UTC View advisory →
CVE-2026-9780 High 8.8

Quest NetVault Backup addclient3 Cross-Site Scripting Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authenticat

24 Jun 2026, 23:13 UTC View advisory →
CVE-2026-9779 High 7.2

ATEN Unizon doCryptoHugeFileToFile Improper Verification of Cryptographic Signature Remote Code Execution Vulnerability. This vulnerability allows remote a

24 Jun 2026, 21:37 UTC View advisory →
CVE-2026-9778 High 7.2

ATEN Unizon ImportDeviceList Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code

24 Jun 2026, 21:37 UTC View advisory →
CVE-2026-9777 High 7.2

ATEN Unizon restoreDB Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affe

24 Jun 2026, 21:36 UTC View advisory →
CVE-2026-9776 High 7.5

ATEN Unizon writeFileToHttpServletResponse Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose

24 Jun 2026, 21:36 UTC View advisory →
CVE-2026-9775 Medium 5.5

ATEN Unizon uploadSSL Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on af

24 Jun 2026, 21:36 UTC View advisory →
CVE-2026-9774 Medium 5.5

ATEN Unizon updateLicense Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files o

24 Jun 2026, 21:36 UTC View advisory →
CVE-2026-9773 High 8.8

Unraid Web Server ToggleState Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code o

24 Jun 2026, 21:35 UTC View advisory →
CVE-2026-9772 High 8.8

Unraid Web Server FileUpload Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on

24 Jun 2026, 21:35 UTC View advisory →
CVE-2026-9770 High 8.6

Kasa EC71 v4 and EC70 v4 firmware contains a static cryptographic private key stored in a read-only filesystem that is shared across devices. An attacker w

15 Jul 2026, 00:21 UTC View advisory →
CVE-2026-9762 High 7.8

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to remote code execution when jdbc url is under user control.

17 Jul 2026, 17:25 UTC View advisory →
CVE-2026-9738 Medium 4.4

The Print, PDF, Email by PrintFriendly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'content_position_css' parameter in all ve

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-9737 High 7.1

During query planning when reading the sort pattern in raw BSONObj form, in some places we don’t explicitly handle the meta expression case. This may lead

22 Jul 2026, 19:20 UTC View advisory →
CVE-2026-9734 Medium 4.3

The W3SC Elementor to Zoho CRM plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.2.0. This is due to

18 Jul 2026, 04:31 UTC View advisory →
CVE-2026-9733 Unscored

Mojolicious::Plugin::Web::Auth::OAuth2 versions through 0.17 for Perl have an insecure default state parameter. When no state generator is specified in the

23 Jun 2026, 07:05 UTC View advisory →
CVE-2026-9731 Medium 4.3

The Wp Js Detect plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.9. This is due to missing or in

08 Jul 2026, 05:34 UTC View advisory →
CVE-2026-9726 Unscored

Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Drupal AlternativeCommerce (Basket) allows Object In

10 Jul 2026, 20:56 UTC View advisory →
CVE-2026-9725 Critical 9.1

The Printcart Web to Print Product Designer for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Deletion in versions up to, and including,

03 Jul 2026, 04:30 UTC View advisory →
CVE-2026-9724 Medium 4.3

The MotorDesk plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.2. This is due to missing or incor

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9721 Medium 4.3

The Book a Room Event Calendar plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.9. This is due to m

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9718 Medium 6.9

CWE-617 Reachable Assertion vulnerability exists that could allow an authenticated attacker to trigger a denial-of-service condition, impacting system avai

25 Jun 2026, 15:07 UTC View advisory →
CVE-2026-9717 High 8.6

CWE-78 Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could allow unauthorized execution of co

25 Jun 2026, 15:05 UTC View advisory →
CVE-2026-9716 High 8.7

CWE-476 NULL Pointer Dereference vulnerability exists that could cause a denial-of-service condition, rendering the device’s HMI and configuration function

25 Jun 2026, 15:02 UTC View advisory →
CVE-2026-9711 Critical 9.8

The EventON - WordPress Virtual Event Calendar Plugin plugin for WordPress (full) is vulnerable to SQL Injection via the WordPress 'search' parameter in ve

30 Jun 2026, 09:31 UTC View advisory →
CVE-2026-9710 Unscored

The Cornerstone WordPress plugin before 7.8.8 does not enforce capability checks on one of its CSS-preview request handlers, and exposes the nonce needed t

24 Jun 2026, 06:00 UTC View advisory →
CVE-2026-9709 Unscored

The Cornerstone WordPress plugin before 7.8.9 does not enforce capability checks on one of its REST API routes, allowing any authenticated user to disclose

24 Jun 2026, 06:00 UTC View advisory →
CVE-2026-9708 Medium 4.9

Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to validate that an assigned incoming webhook user has access to the targe

13 Jul 2026, 08:00 UTC View advisory →
CVE-2026-9705 Medium 6.5

A flaw was found in Keycloak's client registration service. A remote attacker, possessing a previously issued Registration Access Token (RAT), could exploi

25 Jun 2026, 16:17 UTC View advisory →
CVE-2026-9702 Unscored

The InPost PL WordPress plugin before 1.9.1 does not verify that the request originates from the legitimate buyer before allowing the WooCommerce order par

25 Jun 2026, 06:00 UTC View advisory →
CVE-2026-9701 Critical 9.8

The Eventer plugin for WordPress is vulnerable to an insecure password reset mechanism in all versions up to, and including, 4.4.2. The plugin stores a pla

08 Jul 2026, 04:30 UTC View advisory →
CVE-2026-9700 High 7.5

The Eventer plugin for WordPress is vulnerable to time-based SQL Injection via the ‘code’ parameter in all versions up to, and including, 4.4.2 due to insu

08 Jul 2026, 05:34 UTC View advisory →
CVE-2026-9699 Medium 6.8

Mattermost Plugins versions <=11.6 10.18.11 11.3.6 11.6.5.0 fail to sanitize error responses from the OpenAI API before logging, which allows a user with a

26 Jun 2026, 14:43 UTC View advisory →
CVE-2026-9695 Critical 9.8

An Improper Authentication vulnerability affecting DELMIA Apriso from Release 2020 through Release 2026 could allow an attacker to gain privileged access t

08 Jul 2026, 05:58 UTC View advisory →
CVE-2026-9677 Unscored

The Shariff for WordPress Shariff for WordPress plugin through 1.0.11 does not sanitize or escape the shariff_infourl setting before outputting it in the f

27 Jun 2026, 06:00 UTC View advisory →
CVE-2026-9676 Unscored

The F4 Post Tree WordPress plugin before 2.0.5 does not perform capability checks or CSRF/nonce verification on one of its AJAX actions, allowing authentic

29 Jun 2026, 06:00 UTC View advisory →
CVE-2026-9653 High 8.7

A denial-of-service security issue exists across all the 1756-EN2, EN3, and ENBT communication module due to improper validation of CIP Implicit Connection

14 Jul 2026, 15:00 UTC View advisory →
CVE-2026-9651 Medium 6.7

CWE-732 Incorrect Permission Assignment for Critical Resource vulnerability that could cause unauthorized disclosure of password hashes and potential accou

25 Jun 2026, 14:47 UTC View advisory →
CVE-2026-9650 High 8.7

CWE-522 Insufficiently Protected Credentials vulnerability that could cause unauthorized access and exposure of sensitive information when unauthenticated

25 Jun 2026, 14:44 UTC View advisory →
CVE-2026-9643 High 7.2

The WP Meta SEO plugin for WordPress is vulnerable to Unauthenticated Stored Cross-Site Scripting via the REQUEST_URI server variable in all versions up to

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9640 High 7.2

A privilege escalation vulnerability exists in LXD from 6.0 before 6.9, 5.21.0 before 5.21.5, and 5.0.0 before 5.0.7 regarding the handling of project-rest

26 Jun 2026, 15:50 UTC View advisory →
CVE-2026-9639 Medium 6.5

Nil-pointer dereference in CreateCustomVolumeFromBackup in LXD up to version 6.8 and 5.21 on Linux allows an authenticated user with can_create_storage_vol

26 Jun 2026, 15:39 UTC View advisory →
CVE-2026-9636 High 8.2

A security issue exists within CompactLogix® 5380, ControlLogix® 5580, and EN4 communication modules related to CIP Security certificate revocation handlin

14 Jul 2026, 15:11 UTC View advisory →
CVE-2026-9626 Medium 6.4

The JSON API User plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'content' parameter of the post_comment API endpoint in version

03 Jul 2026, 04:30 UTC View advisory →
CVE-2026-9620 Medium 6.4

The WP Latest Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via crafted image src attributes in post content in versions up to, a

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9619 Medium 4.3

The Reviews and Rating – Docplanner plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.1.4. This is due to

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9616 Medium 4.3

The Generate Security.txt plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.0.12. This is due to the plugi

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9612 Medium 5.3

The WhatsOrder – Instant Checkout for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9611 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have be

01 Aug 2026 View advisory →
CVE-2026-9610 Low 2.3

IBM Datacap 9.1.7, 9.1.8, and 9.1.9 and IBM Datacap Navigator 9.1.7, 9.1.8, and 9.1.9 exposes resources or functionality that isn't linked in the UI but is

22 Jun 2026, 14:22 UTC View advisory →
CVE-2026-9602 Medium 5.7

Mattermost Desktop App versions <=6.2 6.0.2 5.6.13.0 fail to validate payloads sent from the Mattermost Web App to the Desktop App which allows a malicious

17 Jul 2026, 10:03 UTC View advisory →
CVE-2026-9597 Medium 5.4

Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4 fail to verify whether a guest account is deactivated before creating a session in the magic-link to

13 Jul 2026, 08:17 UTC View advisory →
CVE-2026-9593 High 8.4

A vulnerability in the iDTM FDI allows an attacker with elevated privileges and access to the host system to enable the debug interface by placing a crafte

03 Aug 2026, 06:28 UTC View advisory →
CVE-2026-9592 High 7.5

SEPPmail Secure Email Gateway & SEPPmail Cloud before version 15.0.4.2 allows an attacker to replay & hijack a user session in the GINA web portal, as the

17 Jul 2026, 13:51 UTC View advisory →
CVE-2026-9588 High 7

A stored cross-site scripting (XSS) vulnerability exists in Sangoma Switchvox SMB Edition 8.3 (104997) within the voicemail notification template functiona

17 Jul 2026, 15:59 UTC View advisory →
CVE-2026-9587 High 7.1

An authenticated local file inclusion vulnerability exists in Sangoma Switchvox SMB Edition 8.3 (104997). The play_file functionality accepts user-controll

17 Jul 2026, 15:58 UTC View advisory →
CVE-2026-9586 Critical 9.3

An unauthenticated SQL injection vulnerability exists in Sangoma Switchvox SMB Edition 8.3 (104997). The /pa endpoint processes XML content beginning with

17 Jul 2026, 15:57 UTC View advisory →
CVE-2026-9585 High 8.6

An unauthenticated reflected cross-site scripting (XSS) vulnerability exists in Sangoma Switchvox SMB Edition version 8.3 (104997). The application fails t

17 Jul 2026, 15:56 UTC View advisory →
CVE-2026-9577 Unscored

The Post Status Notifier Lite WordPress plugin before 1.13.0 does not properly escape the `mod` URL parameter before reflecting it into the admin settings

23 Jul 2026, 06:00 UTC View advisory →
CVE-2026-9571 Medium 5.9

Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to invalidate OAuth refresh tokens upon user account deactivation, which a

13 Jul 2026, 07:50 UTC View advisory →
CVE-2026-9563 High 7.5

In Eclipse Parsson published Maven Central artifacts before version 1.1.8, the JSON parser did not enforce a default maximum on the number of characters co

02 Jul 2026, 07:33 UTC View advisory →
CVE-2026-9561 High 8.8

Eclipse Kura versions prior to 5.6.2 trust the client-supplied X-Forwarded-For HTTP header as the authoritative source of the client IP address in audit lo

14 Jul 2026, 07:59 UTC View advisory →
CVE-2026-9547 Unscored

When a libcurl-based application performs transfers via `SCP://` or `SFTP://` and utilizes the `CURLOPT_SSH_KEYFUNCTION` callback, it may silently accept a

03 Jul 2026, 06:18 UTC View advisory →
CVE-2026-9546 Unscored

A vulnerability in libcurl caused the HTTP `Referer:` header to persist even when explicitly cleared. While the documentation states that passing NULL to `

03 Jul 2026, 06:18 UTC View advisory →
CVE-2026-9545 Unscored

In this scenario, libcurl first uses a proper HTTP/3 server for the initial transfers, and when it makes a second transfer to the same site it has been rep

03 Jul 2026, 06:17 UTC View advisory →
CVE-2026-9539 Medium 6.5

An out-of-bounds heap read and integer underflow in the TCP urgent data handling (sosendoob) in freedesktop.org libslirp version before v4.9.2 on hyperviso

24 Jun 2026, 04:37 UTC View advisory →
CVE-2026-9537 Unscored

Mojo::JWT versions before 1.02 for Perl verify HMAC signatures with a non-constant-time string comparison. The decode() method compares the supplied signat

17 Jul 2026, 15:29 UTC View advisory →
CVE-2026-9494 Medium 5.5

An information disclosure vulnerability exists in Canonical ubuntu-pro-client (formerly ubuntu-advantage-tools). The client validates Ubuntu Pro APT creden

16 Jul 2026, 12:12 UTC View advisory →
CVE-2026-9487 Critical 9.1

XML::Sig versions before 0.71 for Perl allow signature wrapping via duplicate ID. _get_signed_xml() in lib/XML/Sig.pm, called from verify(), resolves the S

03 Aug 2026, 13:14 UTC View advisory →
CVE-2026-9390 Critical 9.1

XML::Sig versions before 0.71 for Perl allow XPath injection in ID lookup. verify() and _get_signed_xml() in lib/XML/Sig.pm build XPath expressions by conc

03 Aug 2026, 13:09 UTC View advisory →
CVE-2026-9341 Medium 4.3

The Academy LMS – WordPress LMS Plugin for Complete eLearning Solution plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versio

14 Jul 2026, 11:30 UTC View advisory →
CVE-2026-9335 Medium 6.5

A vulnerability in keras-team/keras versions <= 3.14.0 allows arbitrary local HDF5 file content disclosure due to improper handling of HDF5 ExternalLinks.

02 Aug 2026, 03:49 UTC View advisory →
CVE-2026-9323 Critical 9.2

The urwid web display backend (urwid/display/web.py) generates web session identifiers (urwid_id) in Screen.start() by concatenating two random.randrange(1

18 Jul 2026, 13:51 UTC View advisory →
CVE-2026-9322 High 7.5

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 are vulnerable to a denial of servic

30 Jul 2026, 16:13 UTC View advisory →
CVE-2026-9320 Medium 5.9

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.6 are vulnerable to a denial of servic

22 Jun 2026, 14:53 UTC View advisory →
CVE-2026-9292 High 8.4

A Stored Cross-Site Scripting security issue exists within FactoryTalk® DataMosaix™ Private Cloud. The vulnerability stems from improper neutralization of

14 Jul 2026, 15:05 UTC View advisory →
CVE-2026-9273 Critical 9.3

The Membership Plugin – Kadence Memberships plugin for WordPress (formerly Restrict Content) is vulnerable to password reset link poisoning leading to acco

05 Aug 2026, 04:25 UTC View advisory →
CVE-2026-9272 High 8.7

In Progress Flowmon ADS versions prior to 12.5.6 and 13.0.5, a vulnerability exists whereby an adversary who is authenticated as a low-privileged user in t

02 Jul 2026, 14:02 UTC View advisory →
CVE-2026-9267 Medium 6.9

Eclipse tinydtls before commit b3efd41ad111a4920f599f51ffa4f5e9f1e72221 contains an out-of-bounds read vulnerability in the check_server_certificate() func

29 Jun 2026, 08:10 UTC View advisory →
CVE-2026-9263 Medium 6.5

The Zephyr Bluetooth controller ISO Adaptation Layer (subsys/bluetooth/controller/ll_sw/isoal.c) fails to validate the length field of a framed ISO PDU sta

30 Jun 2026, 16:01 UTC View advisory →
CVE-2026-9242 Medium 5.3

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Authentication Bypass v

27 Jun 2026, 06:50 UTC View advisory →
CVE-2026-9233 Medium 4.3

The Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker plugin for WordPress is vulnerable to authorization bypass in all versions up to, and includi

27 Jun 2026, 06:50 UTC View advisory →
CVE-2026-9222 Critical 9.2

Setracker2 Android Companion App com.tgelec.setracker versions 3.1.5 and prior only require the password hash when authenticating with backend services fro

25 Jun 2026, 23:29 UTC View advisory →
CVE-2026-9221 High 8.7

The Setracker2 Android Companion App (com.tgelec.setracker) versions 3.1.5 and earlier uses MD5 to generate a request signature for authenticating communic

25 Jun 2026, 23:27 UTC View advisory →
CVE-2026-9220 High 8.7

Setracker2 Android Companion App com.tgelec.setracker versions 3.1.5 and prior encrypts requests between the watch and its backend with static hardcoded AE

25 Jun 2026, 23:13 UTC View advisory →
CVE-2026-9219 High 8.3

Setracker2 Android Companion App com.tgelec.setracker versions 3.1.5 and prior have a predictable registration ID derived from IMEI. The enrollment system

25 Jun 2026, 23:10 UTC View advisory →
CVE-2026-9205 High 7.4

IBM Langflow OSS contains a weak cryptographic key derivation vulnerability in the ensure_fernet_key() function.

05 Aug 2026, 18:09 UTC View advisory →
CVE-2026-9203 High 8.5

A server-side request forgery vulnerability in Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user with low-privileged roles to

05 Aug 2026, 15:40 UTC View advisory →
CVE-2026-9202 Critical 9.8

IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to create unlimited user accounts on any Langflow instance; when NEW_USER_IS_ACTIVE=

17 Jul 2026, 17:33 UTC View advisory →
CVE-2026-9201 High 8.8

IBM Langflow OSS 1.0.0 through 1.10.3 could allow an authenticated attacker to execute arbitrary code due to a cryptographic weakness in the custom compone

05 Aug 2026, 18:26 UTC View advisory →
CVE-2026-9198 Critical 9.8

IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to chain /api/v1/auto_login (mints SUPERUSER tokens to any network caller) with /api

17 Jul 2026, 17:36 UTC View advisory →
CVE-2026-9196 High 8.1

IBM Langflow OSS 1.0.0 through 1.10.3 could allow an authenticated attacker to execute unintended code during Agentic Assistant validation due to improper

05 Aug 2026, 18:27 UTC View advisory →
CVE-2026-9195 Critical 9.3

A cross-site scripting vulnerability in the Query Console of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows a remote attacker who lures an authe

05 Aug 2026, 15:38 UTC View advisory →
CVE-2026-9193 Critical 9.9

An improper privilege management vulnerability in the Hadoop integration of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user

05 Aug 2026, 15:37 UTC View advisory →
CVE-2026-9192 Critical 9.8

An authentication bypass vulnerability in the ODBC App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an unauthenticated remote attack

05 Aug 2026, 15:35 UTC View advisory →
CVE-2026-9190 Critical 9.1

An HTTP request smuggling vulnerability in the HTTP App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows a remote attacker to bypass aut

05 Aug 2026, 15:34 UTC View advisory →
CVE-2026-9188 Medium 5.3

The Appointment Bookings for Zoom GoogleMeet and more – Wappointment plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions

02 Jul 2026, 08:33 UTC View advisory →
CVE-2026-9184 Medium 4.3

The 24liveblog - live blog tool plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the update_lb2

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9183 Medium 4.3

The 24liveblog - live blog tool plugin for WordPress is vulnerable to Exposure of Sensitive Information in versions up to, and including, 2.2. This is due

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9180 Medium 5.3

The MotoPress Appointment Booking plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key in all versions up to, and includi

03 Jul 2026, 04:30 UTC View advisory →
CVE-2026-9179 High 7.5

The WP Forms Connector plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter of the /wp-json/wp/v3/post/list REST endpoint in versi

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9178 High 7.5

The WP Forms Connector plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.8. The plugin registers the REST

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9175 Medium 5.3

The Devs Accounting – Simple Accounting and Invoicing Solution plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and inclu

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9172 Medium 5.3

The Devs Accounting – Simple Accounting and Invoicing Solution plugin for WordPress is vulnerable to unauthorized modification/deletion of data due to a mi

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-9171 High 7.5

IBM PowerVM Novalink are vulnerable to a denial of service, caused by sending a specially-crafted request. A remote attacker could exploit this vulnerabili

17 Jul 2026, 18:26 UTC View advisory →
CVE-2026-9162 Medium 4.3

Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 fail to invalidate cached authentication state for active Web

22 Jun 2026, 13:36 UTC View advisory →
CVE-2026-9155 High 8.8

OS Command Injection vulnerability in Rapid7 InsightConnect Sed Plugin on Linux allows authenticated attackers to execute arbitrary OS commands via the exp

25 Jun 2026, 00:25 UTC View advisory →
CVE-2026-9154 High 7.1

Arbitrary File Write vulnerability in Rapid7 InsightConnect Sed Plugin on Linux allows authenticated attackers to write attacker-controlled content to arbi

25 Jun 2026, 00:29 UTC View advisory →
CVE-2026-9153 Medium 6.5

Arbitrary File Read vulnerability in Rapid7 InsightConnect Sed Plugin on Linux allows authenticated attackers to read arbitrary files via the expression pa

25 Jun 2026, 00:33 UTC View advisory →
CVE-2026-9147 High 8.5

uproot dynamically generates Python class source code from ROOT TStreamerInfo records in a file and compiles it at runtime. Some file-controlled streamer m

18 Jul 2026, 12:46 UTC View advisory →
CVE-2026-9145 Medium 6.5

The Database for Contact Form 7, WPforms, Elementor forms plugin for WordPress is vulnerable to Arbitrary File Copy via the create_entry_el() function in v

02 Jul 2026, 09:32 UTC View advisory →
CVE-2026-9140 High 8.7

A denial-of-service security issue exists in the 1719-AENTR. The security issue stems from improper handling of a UDP unicast network storm, which causes t

14 Jul 2026, 14:52 UTC View advisory →
CVE-2026-9135 Critical 9.9

IBM Langflow OSS 1.0.0 through 1.10.0 Langflow versions up to 1.9.2 (commit 94981c443d4918517b9e8163d70fc598dc33a32d) contain a code injection vulnerabilit

17 Jul 2026, 18:48 UTC View advisory →
CVE-2026-9132 Medium 6

A missing authorization vulnerability was identified in GitHub Enterprise Server that allowed an authenticated user to read source code from private reposi

30 Jun 2026, 20:23 UTC View advisory →
CVE-2026-9130 High 7.1

IBM Langflow OSS 1.0.0 through 1.10.3 contain an authorization bypass vulnerability in the MemoryComponent that allows authenticated users to access chat h

05 Aug 2026, 18:16 UTC View advisory →
CVE-2026-9128 High 7.3

A code execution security issue exists within Studio 5000 Logix Designer® due to an unquoted search path in the External Tools configuration. The executabl

14 Jul 2026, 15:12 UTC View advisory →
CVE-2026-9127 High 7.3

A remote code execution security issue exists within Studio 5000 Logix Designer® due to incorrect authorization on a configuration file. This can allow any

14 Jul 2026, 15:10 UTC View advisory →
CVE-2026-9108 Medium 5.4

A path traversal security issue exists within Studio 5000 Logix Designer® due to improper limitation of file paths within ACD project files. The software d

14 Jul 2026, 15:09 UTC View advisory →
CVE-2026-9107 Medium 6.4

The Kali Forms — Contact Form & Drag-and-Drop Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'meta[kaliforms_field_compo

01 Jul 2026, 03:43 UTC View advisory →
CVE-2026-9106 Medium 4.8

A UI misrepresentation vulnerability was identified in GitHub Enterprise Server that allowed an OAuth application to gain unintended access to an organizat

30 Jun 2026, 20:21 UTC View advisory →
CVE-2026-9105 Medium 6.8

An authenticated stack-based buffer overflow vulnerability exists in the web management interface of TP-Link TL-WR841N v14. A remote authenticated attacker

29 Jun 2026, 16:05 UTC View advisory →
CVE-2026-9103 Critical 9.8

IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to gain unauthorized access due to improper authentication in the /api/v1/login/auto_lo

17 Jul 2026, 18:49 UTC View advisory →
CVE-2026-9099 High 7.7

A flaw was found in Keycloak. A missing authorization check in the GroupResource.addChild() endpoint within the Admin REST API allows an authenticated user

25 Jun 2026, 16:16 UTC View advisory →
CVE-2026-9086 High 7.3

A flaw was found in Keycloak. A remote attacker with administrative privileges, specifically those with `manage-client` permission or access to client regi

25 Jun 2026, 16:16 UTC View advisory →
CVE-2026-9083 Medium 4.9

A flaw was found in Keycloak. A realm administrator with the "manage-realm" role can exploit this vulnerability by submitting an arbitrary filesystem path

25 Jun 2026, 16:17 UTC View advisory →
CVE-2026-9081 High 7.1

IBM Langflow OSS 1.0.0 through 1.10.3, and 1.0.0 through 1.10.3 contains a Server-Side Request Forgery (SSRF) vulnerability in the validate_model_provider_

05 Aug 2026, 17:38 UTC View advisory →
CVE-2026-9080 Unscored

Calling `curl_easy_pause()` within the event-based `CURLMOPT_SOCKETFUNCTION` callback triggers a use-after-free vulnerability, where libcurl attempts to st

03 Jul 2026, 06:17 UTC View advisory →
CVE-2026-9079 Unscored

libcurl had a flaw that when instructed to clear proxy authentication credentials which made it not do so, leaving the old credentials around to get used f

03 Jul 2026, 06:16 UTC View advisory →
CVE-2026-9077 High 8.5

IBM Langflow OSS 1.0.0 through 1.10.3 Langflow allows remote authenticated attackers to bypass localhost-only restrictions and write arbitrary MCP server c

05 Aug 2026, 16:24 UTC View advisory →
CVE-2026-9074 Critical 9.1

IBM API Connect 10.0.8.0 through 10.0.8.9 and 12.1.0.0 through 12.1.0.3 contains an unauthenticated SQL injection vulnerability in the password reset funct

08 Jul 2026, 15:24 UTC View advisory →
CVE-2026-9073 Medium 6.2

A flaw was found in foreman-mcp-server. This component utilizes two distinct logging mechanisms that can expose sensitive session and authentication data.

23 Jun 2026, 19:53 UTC View advisory →
CVE-2026-9072 High 8.1

IBM i 7.6, 7.5, 7.4, and 7.3, IBM WebSphere Application Server, and IBM WebSphere Application Server Liberty - when using Intelligent Management with the W

22 Jun 2026, 14:21 UTC View advisory →
CVE-2026-9071 High 7.5

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.6 are vulnerable to a denial of servic

22 Jun 2026, 14:47 UTC View advisory →
CVE-2026-9066 Unscored

The WP Compress WordPress plugin before 7.10.04 does not validate the value of a query parameter that controls the asset CDN host before using it to build

23 Jul 2026, 06:00 UTC View advisory →
CVE-2026-9046 High 7.3

A potential insecure permissions vulnerability was reported in Legion Zone and the Lenovo App Store Windows applications, distributed exclusively in the Ch

16 Jul 2026, 16:48 UTC View advisory →
CVE-2026-9044 High 8.5

An OS command injection vulnerability exists in the VPN module of TP-Link AXE75 V1 routers. This vulnerability allows an adjacent, authenticated attacker t

31 Jul 2026, 22:20 UTC View advisory →
CVE-2026-9029 High 7.3

The geomap panel's XYZ tile layer has a sanitize-then-interpolate ordering bug. sanitizeTextPanelContent() runs on the raw template string before getTempla

22 Jun 2026, 13:18 UTC View advisory →
CVE-2026-9007 Medium 5.5

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in HCL Notes from HCL Software allows reflected Cross-Si

15 Jul 2026, 15:41 UTC View advisory →
CVE-2026-9006 High 7.4

IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to server-side request forgery (SSRF) with the Ajax Proxy configured. This may allow an attacke

22 Jun 2026, 14:46 UTC View advisory →
CVE-2026-9002 Medium 6.5

IBM WebSphere Extreme Scale 8.6.1.0 through 8.6.1.6 could allow an adjacent attacker to cause a denial of service due to improper validation in the XDF dec

30 Jun 2026, 19:08 UTC View advisory →
CVE-2026-8944 Medium 4.3

The Plugin for Google Analytics by IO technologies plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.

30 Jun 2026, 04:30 UTC View advisory →
CVE-2026-8934 Medium 6.9

A Missing Authorization vulnerability in a GraphQL private API operation of the Google App Engine section of the Cloud Console allows an unauthenticated re

22 Jun 2026, 15:20 UTC View advisory →
CVE-2026-8932 Unscored

libcurl would reuse a previously created connection even when some mTLS config related option had been changed that should have prohibited reuse. libcurl k

03 Jul 2026, 06:16 UTC View advisory →
CVE-2026-8927 Unscored

When reusing a libcurl handle for sequential transfers driven by environment-variable proxy configuration, libcurl fails to clear the proxy authentication

03 Jul 2026, 06:16 UTC View advisory →
CVE-2026-8926 Unscored

When asking curl to use a `.netrc` file to find credentials and at the same time specifying a URL with a username(without a password), like `https://user@e

03 Jul 2026, 06:15 UTC View advisory →
CVE-2026-8925 Unscored

The curl logic that works with SASL authentication could end up cleaning up the GSASL context *twice* without clearing the pointer in between, making it `f

03 Jul 2026, 06:15 UTC View advisory →
CVE-2026-8924 Unscored

A flaw in curl’s cookie parsing logic allows a malicious HTTP server to set 'super cookies' that bypass the Public Suffix List check. This enables an attac

03 Jul 2026, 06:15 UTC View advisory →
CVE-2026-8921 High 8.5

External Control of File Name or Path vulnerability in ASUS Business Manager allows a local user to execute arbitrary code with SYSTEM privileges via a tam

03 Jul 2026, 02:00 UTC View advisory →
CVE-2026-8920 High 8.5

Improper Restriction of Communication Channel to Intended Endpoints and External Control of File Name or Path in Aura Wallpaper Service allow a local user

15 Jul 2026, 02:00 UTC View advisory →
CVE-2026-8919 High 7.2

Permissive Cross-domain Security Policy with Untrusted Domains in ASUS GameSDK allows a remote user to obtain a local user’s NTLM hash by convincing the us

15 Jul 2026, 02:00 UTC View advisory →
CVE-2026-8918 High 7.1

A permissive list of allowed inputs in ASUS Armoury Crate allows a local administrator to perform arbitrary memory read/write operations or cause a system

22 Jun 2026, 02:00 UTC View advisory →
CVE-2026-8905 Medium 6.1

The Osiris Signature Banner plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.5. This is due to miss

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-8896 Medium 6.4

The MIR blocks and shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title' attribute (and other attributes such as 're

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-8892 Medium 6.4

The CM Business Directory – Optimise and showcase local business plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Business Address Met

03 Jul 2026, 04:30 UTC View advisory →
CVE-2026-8865 Medium 6.4

The Avalon23 Products Filter for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'avalon23_qr' shortcode in all versi

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-8864 High 7.3

The HP Fan Control App might allow local escalation of privileges. An updated version of HP Fan Control App has been released to mitigate this potential vu

30 Jun 2026, 16:21 UTC View advisory →
CVE-2026-8861 Medium 5.3

IBM Security Verify could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This

17 Jul 2026, 18:54 UTC View advisory →
CVE-2026-8859 Critical 9.9

IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow an attacker to write arbitrary files to unintended locations due to improper input validation in

17 Jul 2026, 18:58 UTC View advisory →
CVE-2026-8858 High 7.5

IBM i 7.6, 7.5, 7.4, and 7.3, IBM WebSphere Application Server and IBM WebSphere Application Server Liberty are vulnerable to remote code execution and den

22 Jun 2026, 14:16 UTC View advisory →
CVE-2026-8823 Low 3.8

Mattermost versions 11.7.x <= 11.7.0, 10.11.x <= 10.11.17 fail to validate bot targets when demoting users to guests which allows a lower-privileged admini

22 Jun 2026, 13:41 UTC View advisory →
CVE-2026-8801 Low 3.5

Path equivalence: vulnerability in Progress MOVEit Transfer (File Upload modules). This issue affects MOVEit Transfer: before 2025.0.8, from 2025.1.0 befor

08 Jul 2026, 19:56 UTC View advisory →
CVE-2026-8800 Low 2.7

Incorrect Authorization vulnerability in Progress MOVEit Transfer (Audit User module). This issue affects MOVEit Transfer: before 2025.0.7, from 2025.1.0 b

08 Jul 2026, 19:53 UTC View advisory →
CVE-2026-8797 High 8.5

An access control deficiency vulnerability exists in ExpressUpdate Agent for Windows. If a malicious user gains access to the product, arbitrary code could

26 Jun 2026, 04:14 UTC View advisory →
CVE-2026-8794 Medium 6.9

PaperCut NG/MF contains an observable timing discrepancy in its authentication component. An unauthenticated remote attacker can exploit this vulnerability

03 Aug 2026, 07:02 UTC View advisory →
CVE-2026-8793 Medium 6.9

PaperCut NG/MF does not properly restrict excessive authentication attempts within its login component. An unauthenticated remote attacker can exploit this

03 Aug 2026, 06:58 UTC View advisory →
CVE-2026-8790 Medium 6.1

The Football Pool plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the `shouttext` POST parameter of the Shoutbox widget in all ver

05 Aug 2026, 04:25 UTC View advisory →
CVE-2026-8763 Critical 9.3

In Bouncy Castle for Java before 1.85, Name Constraints bypass via trailing dot in rfc822Name and URI. This issue also affects Bouncy Castle for Java LTS b

03 Aug 2026, 00:36 UTC View advisory →
CVE-2026-8761 High 8.8

The Dokan plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 5.0.1. This is due to a missing authorization ch

05 Aug 2026, 04:25 UTC View advisory →
CVE-2026-8720 Medium 5.9

wc_Blake2bHmacFinal and wc_Blake2sHmacFinal discard the message when the key length exceeds the block size, producing a MAC that is independent of the inpu

25 Jun 2026, 21:18 UTC View advisory →
CVE-2026-8709 Critical 9.9

An improper privilege management vulnerability in the REST API document patch operation of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an aut

05 Aug 2026, 15:33 UTC View advisory →
CVE-2026-8705 High 7.5

The ClearSale Total plugin for WordPress is vulnerable to SQL Injection via the `pagseguro[metodo]` POST parameter of the `clearsale_total_push` AJAX actio

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-8699 High 7

A stored Cross-Site Scripting (XSS) vulnerability has been identified in the web-based management interface of Archer C5 v6.8 routers, due to insufficient

02 Jul 2026, 16:52 UTC View advisory →
CVE-2026-8690 Medium 5.3

The RentMy Real-Time Rental Management Plugin plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 4.0.4.1. Thi

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-8688 Medium 4.3

The Advance Nav Menu Manager plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.3. This is due to the plugi

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-8678 Medium 4.3

The MyParcel plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 4.25.1. This is due to the plugin not properl

11 Jul 2026, 02:31 UTC View advisory →
CVE-2026-8666 High 7.7

OS Command Injection vulnerability in the traceroute action of Rapid7 InsightConnect Traceroute Plugin on Linux allows remote attackers to execute arbitrar

25 Jun 2026, 01:35 UTC View advisory →
CVE-2026-8665 High 7.7

OS Command Injection vulnerability in the TR action of Rapid7 InsightConnect Translate Plugin on Linux allows remote attackers to execute arbitrary OS comm

25 Jun 2026, 01:12 UTC View advisory →
CVE-2026-8664 Medium 6

OS Command Injection vulnerability in Rapid7 InsightConnect Finger Plugin on Linux allows authenticated attackers to execute arbitrary OS commands via the

25 Jun 2026, 01:28 UTC View advisory →
CVE-2026-8663 Medium 6

OS Command Injection vulnerability in Rapid7 InsightConnect RPM Plugin on Linux allows authenticated attackers to execute arbitrary OS commands via the rep

24 Jun 2026, 23:56 UTC View advisory →
CVE-2026-8662 Low 3.3

Path Traversal vulnerability in the create_archive function of Rapid7 InsightConnect Compression Plugin on Linux allows authenticated attackers to write to

25 Jun 2026, 01:51 UTC View advisory →
CVE-2026-8661 Medium 4.8

Server-Side Cross-Site Scripting and Server-Side Request Forgery vulnerability in the markdown_to_pdf action of Rapid7 InsightConnect Markdown Plugin versi

26 Jun 2026, 01:59 UTC View advisory →
CVE-2026-8660 High 7.7

OS Command Injection vulnerability in the ping action of Rapid7 InsightConnect Ping Plugin on Linux allows remote attackers to execute arbitrary OS command

25 Jun 2026, 00:52 UTC View advisory →
CVE-2026-8659 Medium 6

OS Command Injection vulnerability in Rapid7 InsightConnect SQLmap Plugin on Linux allows authenticated attackers to execute arbitrary OS commands via the

25 Jun 2026, 00:07 UTC View advisory →
CVE-2026-8658 Medium 6

OS Command Injection vulnerability in Rapid7 InsightConnect Tcpdump Plugin on Linux allows authenticated attackers to execute arbitrary OS commands via the

25 Jun 2026, 01:56 UTC View advisory →
CVE-2026-8655 High 8.8

Multiple Memory overflow vulnerabilities in NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Denial of Service if Net

30 Jun 2026, 12:46 UTC View advisory →
CVE-2026-8651 Low 3.7

Limited authentication bypass by spoofing vulnerability in Progress MOVEit Transfer (HTTPS module). This issue affects MOVEit Transfer: before 2025.0.7, fr

08 Jul 2026, 19:50 UTC View advisory →
CVE-2026-8650 Medium 4.5

Relative path traversal vulnerability in Progress MOVEit Transfer (Admin Settings module). This issue affects MOVEit Transfer: before 2025.0.7, from 2025.1

08 Jul 2026, 19:47 UTC View advisory →
CVE-2026-8649 Medium 6.4

Improper Neutralization of Special Elements in Data Query Logic vulnerability in Progress MOVEit Transfer (Custom Reports modules). This issue affects MOVE

08 Jul 2026, 19:41 UTC View advisory →
CVE-2026-8646 High 7.4

IBM WebSphere Application Server 9.0 and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.6 are vulnerable to HTTP request smuggl

22 Jun 2026, 14:44 UTC View advisory →
CVE-2026-8636 Medium 5.5

IBM Datacap 9.1.7, 9.1.8, and 9.1.9 and IBM Datacap Navigator 9.1.7, 9.1.8, and 9.1.9 allows an attacker to retrieve user passwords and cryptographic keys

22 Jun 2026, 14:16 UTC View advisory →
CVE-2026-8635 Critical 9.9

IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to escalate privileges to superuser by directly manipulating the database, execute arbitra

17 Jul 2026, 19:02 UTC View advisory →
CVE-2026-8628 Medium 6.1

The EntreDroppers plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via PHP_SELF Parameter in all versions up to, and including, 1.1.2 d

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-8622 Medium 6.1

The Image Sizes on Demand plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via PHP_SELF Server Variable in all versions up to, and incl

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-8617 Medium 5.3

The SearchPlus plugin for WordPress is vulnerable to unauthorized modification and deletion of data in versions up to, and including, 1.7.1. This is due to

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-8616 Medium 5.3

The Fense Proxy & VPN Blocker plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check and missing nonce v

17 Jul 2026, 02:31 UTC View advisory →
CVE-2026-8614 Medium 4.3

The Assistio plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check and missing nonce verification on th

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-8609 Medium 5.3

An unauthenticated attacker can repeatedly call Grafana's OAuth login route with unique values, causing unbounded memory growth that can eventually exhaust

10 Jul 2026, 14:58 UTC View advisory →
CVE-2026-8595 Medium 6.8

A user with Editor permissions can craft a dashboard whose table (TableNG) panel contains a malicious field name that executes as a script in the browser o

10 Jul 2026, 14:59 UTC View advisory →
CVE-2026-8592 High 7.7

OS Command Injection vulnerability in the process_string action of Rapid7 InsightConnect AWK Plugin on Linux allows remote attackers to execute arbitrary O

25 Jun 2026, 01:32 UTC View advisory →
CVE-2026-8590 High 8.7

Vulnerability in Spotfire Spotfire Enterprise (Spotfire Server modules), Spotfire Spotfire Enterprise with External Consumers (Spotfire Server modules), Sp

14 Jul 2026, 13:49 UTC View advisory →
CVE-2026-8508 Medium 6.5

An improper authentication vulnerability in the "social_login.cgi" CGI program in Zyxel WAX650S firmware versions through 7.10(ABRM.4)C0 could allow an att

04 Aug 2026, 01:57 UTC View advisory →
CVE-2026-8505 Critical 9.8

IBM Langflow OSS 1.0.0 through 1.10.0 has a vulnerability in Langflow's webhook authentication logic allows unauthenticated users to trigger the execution

17 Jul 2026, 19:06 UTC View advisory →
CVE-2026-8489 Medium 6.4

The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to St

03 Jul 2026, 04:30 UTC View advisory →
CVE-2026-8482 Medium 4.3

A vulnerability was discovered on StormShield Network Security 4.3.0 to 4.3.41 (included), 4.8.0 to 4.8.15 (included) , 5.0.0 to 5.0.5 (included) There is

02 Jul 2026, 08:42 UTC View advisory →
CVE-2026-8481 Critical 9.9

IBM Langflow OSS 1.0.0 through 1.10.0 contain a critical remote code execution vulnerability in the code validation API endpoint. The POST /api/v1/validate

17 Jul 2026, 19:10 UTC View advisory →
CVE-2026-8478 High 8.8

IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote attacker to inject arbitrary code on the system, due to the improper control of user input code.

05 Aug 2026, 18:24 UTC View advisory →
CVE-2026-8476 Critical 9.9

IBM Langflow OSS 1.0.0 through 1.10.0 contain a critical remote code execution vulnerability in the disk-based caching mechanism. The AsyncDiskCache class

17 Jul 2026, 19:11 UTC View advisory →
CVE-2026-8472 Medium 4.3

GitLab has remediated an issue in GitLab EE affecting all versions from 18.9 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain

08 Jul 2026, 20:46 UTC View advisory →
CVE-2026-8470 High 7.4

IBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, and 1.0.0 through 1.10.3 use Python's non-cryptographic random module fo

05 Aug 2026, 18:11 UTC View advisory →
CVE-2026-8458 Unscored

libcurl might in some circumstances reuse the wrong connection when asked to do Negotiate-authenticated ones, even when they are set to use different 'serv

03 Jul 2026, 06:14 UTC View advisory →
CVE-2026-8457 Critical 9.8

The WooCommerce - Social Login plugin for WordPress is vulnerable to Authentication Bypass in all versions up to and including 2.8.7. This is due to the pl

01 Aug 2026, 23:29 UTC View advisory →
CVE-2026-8452 High 8.8

Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Denial of Service if the appliance is

30 Jun 2026, 12:41 UTC View advisory →
CVE-2026-8451 High 8.8

Insufficient input validation in NetScaler ADC and NetScaler Gateway leading to memory overread if NetScaler ADC or NetScaler Gateway is configured as a SA

30 Jun 2026, 12:33 UTC View advisory →
CVE-2026-8446 High 7.5

IBM Langflow OSS 1.0.0 through 1.10.3 contain an authentication bypass vulnerability in the Model Context Protocol (MCP) composer endpoint when mcp_compose

05 Aug 2026, 16:27 UTC View advisory →
CVE-2026-8441 High 7.5

The WP Review Slider Pro plugin for WordPress is vulnerable to SQL Injection via the 'notinstring' parameter of the wprp_load_more_revs AJAX action in vers

02 Jul 2026, 09:32 UTC View advisory →
CVE-2026-8403 Medium 6.1

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Eksagate Electronic Engineering and Computer Industry

30 Jun 2026, 11:46 UTC View advisory →
CVE-2026-8402 Critical 9.8

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Eksagate Electronic Engineering and Computer Industry

30 Jun 2026, 11:36 UTC View advisory →
CVE-2026-8400 High 8.1

IBM WebSphere Application Server 8.5, and 9.0 and IBM WebSphere Application Server - Liberty Continuous delivery has a flaw in the ORB component in IBM SDK

05 Aug 2026, 15:58 UTC View advisory →
CVE-2026-8396 High 7.5

Improper restriction of XML external entity reference vulnerability in Netcad Software Inc. NetGIS allows Serialized Data External Linking. This issue affe

17 Jul 2026, 12:20 UTC View advisory →
CVE-2026-8384 Medium 5.3

In Eclipse Jetty, an HTTP URI of this form: /public;/../admin/secret.txt results in an unresolved path of: /public/../admin/secret.txt instead of the expec

14 Jul 2026, 08:56 UTC View advisory →
CVE-2026-8380 Unscored

The Frontend File Manager Plugin WordPress plugin through 23.6 does not properly verify ownership of every targeted post before permanent deletion, allowin

26 Jun 2026, 06:00 UTC View advisory →
CVE-2026-8379 Unscored

The Frontend File Manager Plugin WordPress plugin through 23.6 does not properly enforce its nonce check on the file download handler, allowing unauthentic

23 Jun 2026, 06:00 UTC View advisory →
CVE-2026-8378 Unscored

The Frontend File Manager Plugin WordPress plugin through 23.6 does not sanitise nor escape a filename submitted to the frontend file-rename endpoint befor

23 Jun 2026, 06:00 UTC View advisory →
CVE-2026-8377 High 8.2

Missing Authorization vulnerability in Armiya Information Technologies Ltd. Co. Access Control System (GKS) allows Collect Data from Common Resource Locati

07 Jul 2026, 07:25 UTC View advisory →
CVE-2026-8330 Medium 4.4

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 9.3 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under certai

25 Jun 2026, 04:34 UTC View advisory →
CVE-2026-8325 High 7.8

A maliciously crafted PDF file, when parsed through Autodesk Revit, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vul

06 Aug 2026, 15:58 UTC View advisory →
CVE-2026-8315 Medium 5.4

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Webbeyaz Web Design Mediküm Web allows Stored XSS. Th

08 Jul 2026, 12:21 UTC View advisory →
CVE-2026-8314 High 7

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the siman.exe (Siman) component. The vulnerability stems from

14 Jul 2026, 12:47 UTC View advisory →
CVE-2026-8313 High 7

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the linker.exe (Siman) component. The vulnerability stems from

14 Jul 2026, 12:45 UTC View advisory →
CVE-2026-8312 High 7

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the expmt.exe (Siman) component. The vulnerability stems from

14 Jul 2026, 12:43 UTC View advisory →
CVE-2026-8310 Medium 6.1

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Webbeyaz Web Design Mediküm Web allows Reflected XSS.

08 Jul 2026, 12:19 UTC View advisory →
CVE-2026-8309 Medium 5.4

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Armiya Information Technologies Ltd. Co. Access Contr

07 Jul 2026, 07:08 UTC View advisory →
CVE-2026-8307 Critical 9.8

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Webbeyaz Web Design Mediküm Web allows SQL Injection.

08 Jul 2026, 12:14 UTC View advisory →
CVE-2026-8306 Medium 6.1

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Armiya Information Technologies Ltd. Co. Access Contr

07 Jul 2026, 07:02 UTC View advisory →
CVE-2026-8297 Critical 9.8

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Gis Informatics Engineering Consulting Laboratory R&D

17 Jul 2026, 15:50 UTC View advisory →
CVE-2026-8286 Unscored

A vulnerability exists where a new transfer that uses STARTTLS to upgrade the connection might reuse an existing live connection even though the TLS config

03 Jul 2026, 06:14 UTC View advisory →
CVE-2026-8281 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

16 Jul 2026 View advisory →
CVE-2026-8247 High 7.7

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow an unauthenticated attacker on the same local network segment to execute arbitrary

02 Jul 2026, 23:07 UTC View advisory →
CVE-2026-8183 High 7.7

IBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, and 1.0.0 through 1.10.3 cou

05 Aug 2026, 18:23 UTC View advisory →
CVE-2026-8182 High 8.8

IBM Langflow OSS 1.0.0 through 1.10.3 installations allow anyone on the internet to execute arbitrary code on the server without any credentials via 2 HTTP

05 Aug 2026, 18:26 UTC View advisory →
CVE-2026-8172 Unscored

The Simple Basic Contact Form WordPress plugin through 20250114 does not escape user-supplied input before reflecting it into the contact form output on va

23 Jun 2026, 06:00 UTC View advisory →
CVE-2026-8170 High 8.7

The mv, cp, and rm file utilities exposed within the ExtremeXOS (EXOS) shell environment fail to safely canonicalize paths and follow symbolic links outsid

20 Jul 2026, 17:34 UTC View advisory →
CVE-2026-8169 High 8.7

ExtremeXOS (EXOS) uses a challenge-response mechanism to authorize access to the privileged debug-mode function. The challenge value is generated using an

20 Jul 2026, 17:33 UTC View advisory →
CVE-2026-8166 Medium 5.4

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Logo Software Industry and Trade Inc. E-Logo Purchasi

06 Aug 2026, 11:30 UTC View advisory →
CVE-2026-8163 Unscored

The Infility Global WordPress plugin before 2.15.19 does not properly sanitize and escape some parameters before using them in SQL statements, leading to a

23 Jun 2026, 06:00 UTC View advisory →
CVE-2026-8157 High 8.8

The Vitepos WordPress plugin before 3.4.2 does not properly restrict the roles that can be assigned when creating new users via one of its REST API endpoin

22 Jun 2026, 06:00 UTC View advisory →
CVE-2026-8155 Unscored

The BuddyPress WordPress plugin before 14.5.0 does not properly enforce authorization on its private messaging endpoints, allowing any authenticated user (

31 Jul 2026, 06:00 UTC View advisory →
CVE-2026-8152 Critical 9.3

Unblu Spark contains an open redirect vulnerability that can be escalated to a DOM-based cross-site scripting (XSS) attack. When Unblu Spark is deployed wi

22 Jul 2026, 12:21 UTC View advisory →
CVE-2026-8147 High 8.1

In MLflow versions prior to 3.14.0, when running with authentication enabled, the trace API endpoints lack proper authorization validators. This allows any

02 Jul 2026, 07:32 UTC View advisory →
CVE-2026-8141 High 7.2

The Ajax Load More - Filters plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'taxonomy_include_children' parameter in all version

30 Jun 2026, 09:31 UTC View advisory →
CVE-2026-8095 High 8.1

The Frontend File Manager Plugin plugin for WordPress is vulnerable to Authenticated Arbitrary File Deletion in versions up to and including 23.6. This is

27 Jun 2026, 23:28 UTC View advisory →
CVE-2026-8085 High 7

A security issue exists within Arena® Simulation due to a memory corruption vulnerability in the model.exe (Siman) component. The vulnerability stems from

14 Jul 2026, 12:40 UTC View advisory →
CVE-2026-8082 Unscored

The bpost-shipping-platform WordPress plugin before 3.2.3 does not properly sanitize a parameter before using it in a SQL query during WooCommerce order su

21 Jul 2026, 06:00 UTC View advisory →
CVE-2026-8079 High 8.7

In Progress Flowmon versions prior to 12.5.9 and 13.0.11, a vulnerability exists whereby an authenticated low-privileged user may craft a request during th

02 Jul 2026, 14:03 UTC View advisory →
CVE-2026-8075 Medium 6.5

Mattermost Desktop App versions <=6.2 5.5.13 6.0.2.0 fail to properly null check when checking for headers in the Mattermost Desktop App which allows any u

17 Jul 2026, 10:05 UTC View advisory →
CVE-2026-8074 Low 3.8

Mattermost versions 11.7.x <= 11.7.0, 10.11.x <= 10.11.17 fail to enforce bot-specific permission checks on the user active status endpoint, which allows a

22 Jun 2026, 13:37 UTC View advisory →
CVE-2026-8059 Medium 6.1

IBM Datacap 9.1.7, 9.1.8, and 9.1.9 and IBM Datacap Navigator 9.1.7, 9.1.8, and 9.1.9 is vulnerable to cross-site scripting. This vulnerability allows an u

22 Jun 2026, 14:13 UTC View advisory →
CVE-2026-8056 High 8.8

IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to override component parameters at runtime via the API. A critical security flaw exists i

17 Jul 2026, 19:13 UTC View advisory →
CVE-2026-8055 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-48866. Reason: This candidate is a reservation duplicate of CVE-2026-48866. Notes: All

16 Jul 2026 View advisory →
CVE-2026-8029 Low 3.9

The ZTE Smart Life app contains an SQL injection vulnerability that allows attackers to execute UNION SELECT statements to query sensitive data in the feed

05 Aug 2026, 08:36 UTC View advisory →
CVE-2026-8023 High 7.5

Zephyr's HTTP server (subsys/net/lib/http) provides a static-filesystem resource type (HTTP_RESOURCE_TYPE_STATIC_FS, available when CONFIG_FILE_SYSTEM is e

29 Jun 2026, 22:15 UTC View advisory →
CVE-2026-7874 Critical 9.1

IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow disclosure of all stored credentials due to the use of a weak and reversible key derivation mech

30 Jun 2026, 19:11 UTC View advisory →
CVE-2026-7873 Critical 9.9

IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated attackers to execute arbitrary OS commands and read sensitive files including credentials, enabl

30 Jun 2026, 19:13 UTC View advisory →
CVE-2026-7872 High 7.5

IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files including the JWT signing key and forge authentication token

17 Jul 2026, 19:15 UTC View advisory →
CVE-2026-7871 Critical 9.8

IBM Langflow OSS 1.0.0 through 1.10.0 allows users with Redis access to execute arbitrary code with full application privileges, compromising all secrets,

30 Jun 2026, 19:14 UTC View advisory →
CVE-2026-7869 Medium 5.4

IBM Langflow OSS 1.0.0 through 1.10.3 is vulnerable to Path Traversal in the Knowledge Bases API (`POST /api/v1/knowledge_bases`). This occurs because user

05 Aug 2026, 18:13 UTC View advisory →
CVE-2026-7867 High 7.8

A flaw was found in udisks2. A local attacker with an active console session can exploit insufficient authorization checking on the 'as-user' option in the

06 Aug 2026, 15:36 UTC View advisory →
CVE-2026-7859 Medium 5.3

The Motors WordPress plugin before 1.4.110 does not have proper authorisation and CSRF checks on one of its AJAX actions, allowing unauthenticated attacker

22 Jun 2026, 06:00 UTC View advisory →
CVE-2026-7842 Unscored

The Infility Global Infility Global WordPress plugin before 2.15.20 for WordPress does not sanitize or validate the orderby and order parameters in the imp

23 Jun 2026, 06:00 UTC View advisory →
CVE-2026-7840 Critical 9.3

UltraVNC repeater through 1.8.2.2 contains a global buffer overflow in its embedded HTTP administration server. The functions wi_senderr() and wi_replyhdr(

01 Jul 2026, 03:33 UTC View advisory →
CVE-2026-7839 Critical 9.1

UltraVNC repeater through 1.8.2.2 initializes the HTTP administration server with a hardcoded default password. In repeater/webgui/settings.c:197, when set

01 Jul 2026, 03:33 UTC View advisory →
CVE-2026-7838 High 8.7

UltraVNC viewer through 1.8.2.2 contains an integer overflow leading to a heap buffer overflow in the RFB protocol failure-response parsing path. In vncvie

01 Jul 2026, 03:33 UTC View advisory →
CVE-2026-7831 High 7.5

UltraVNC viewer through 1.8.2.2 contains an off-by-one stack buffer overflow in the RFB ServerInit message handler. In vncviewer/ClientConnection.cpp, when

01 Jul 2026, 03:33 UTC View advisory →
CVE-2026-7830 High 7.4

UltraVNC through 1.8.2.2 uses inadequate cryptography in the MS-Logon II authentication scheme (rfbUltraVNC_MsLogonIIAuth). In rfb/dh.cpp the Diffie-Hellma

01 Jul 2026, 03:33 UTC View advisory →
CVE-2026-7829 High 7.2

UltraVNC repeater through 1.8.2.2 contains a post-authentication out-of-bounds write in the allow/deny rule parser. In repeater/webgui/settings.c:225-272,

01 Jul 2026, 03:33 UTC View advisory →
CVE-2026-7828 Medium 5.3

UltraVNC repeater through 1.8.2.2 contains an integer overflow in the HTTP request logging path. In repeater/webgui/settings.c:336, the win_log() function

01 Jul 2026, 03:33 UTC View advisory →
CVE-2026-7803 Critical 9.8

IBM Langflow OSS 1.0.0 through 1.10.0 could allow arbitrary code execution due to improper validation of flow nodes with missing or empty component type fi

30 Jun 2026, 19:15 UTC View advisory →
CVE-2026-7771 Medium 5.5

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to a trap when compiling a specially crafted statements containing subqueries could

17 Jul 2026, 19:16 UTC View advisory →
CVE-2026-7761 High 8.8

The Ultimate Member plugin for WordPress is vulnerable to Account Takeover via Password Reset Link Disclosure in all versions up to and including 2.11.4. T

24 Jun 2026, 06:49 UTC View advisory →
CVE-2026-7755 High 8.8

IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow remote code execution due to incomplete validation enforcement on MCP server configuration files

17 Jul 2026, 19:18 UTC View advisory →
CVE-2026-7754 High 7.7

IBM Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery (SSRF) due to insecure default configuration and incomplete en

17 Jul 2026, 19:19 UTC View advisory →
CVE-2026-7753 Medium 6.5

The Cost Calculator Builder plugin for WordPress is vulnerable to unauthorized access of sensitive data due to a missing capability check on the `cost-calc

05 Aug 2026, 05:27 UTC View advisory →
CVE-2026-7667 High 8.8

IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to create a malicious flow pointing to an attacker-controlled URL that returns a spe

17 Jul 2026, 19:21 UTC View advisory →
CVE-2026-7664 Critical 9.8

IBM Langflow OSS 1.0.0 through 1.8.4 could allow unauthenticated attackers to access protected MCP project resources and execute MCP operations due to impr

22 Jun 2026, 14:10 UTC View advisory →
CVE-2026-7663 Critical 9.1

IBM Langflow OSS 1.0.0 through 1.9.6 could allow unauthenticated attackers to access protected MCP project resources and execute MCP operations due to impr

30 Jun 2026, 19:16 UTC View advisory →
CVE-2026-7658 Medium 6.5

IBM Langflow OSS 1.0.0 through 1.10.3 does not properly validate the username field, allowing attackers to inject path traversal sequences and bypass conta

05 Aug 2026, 18:20 UTC View advisory →
CVE-2026-7657 Medium 6.5

IBM Langflow OSS 1.0.0 through 1.10.3 Langflow could allow server-side request forgery (SSRF) due to incomplete and ineffective SSRF protection enforcement

05 Aug 2026, 17:37 UTC View advisory →
CVE-2026-7656 High 8.1

The IPv6 Neighbor Discovery handlers in subsys/net/ip/ipv6_nbr.c (handle_ra_input, handle_ns_input, handle_na_input) used an incorrect boolean expression t

29 Jun 2026, 22:09 UTC View advisory →
CVE-2026-7655 High 8.1

The SureCart plugin for WordPress is vulnerable to privilege escalation via account takeover in versions up to, and including, 4.2.3. This is due to the pl

11 Jul 2026, 04:32 UTC View advisory →
CVE-2026-7646 Medium 6.5

IBM Langflow OSS 1.0.0 through 1.10.3 allows users to read arbitrary files from the server filesystem, including other users' uploaded documents, the JWT s

05 Aug 2026, 16:25 UTC View advisory →
CVE-2026-7640 Medium 6.4

The WP Customer Area plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'type' attribute of the `customer-area-protected-content` sh

14 Jul 2026, 01:30 UTC View advisory →
CVE-2026-7639 Unscored

Software installed and run as a non-privileged user may conduct a sequence of improper GPU system calls causing use after free, which helps in facilitating

10 Jul 2026, 20:50 UTC View advisory →
CVE-2026-7623 Medium 6.4

The SureForms – Contact Form, Payment Form & Other Custom Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'headingWr

01 Aug 2026, 01:29 UTC View advisory →
CVE-2026-7620 Medium 4.3

The Notification for Telegram plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.5.1. This is due to the pl

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-7617 Medium 5.3

The Secufor_OAuth plugin for WordPress is vulnerable to unauthorized access in all versions up to, and including, 1.0.7. This is due to the plugin not prop

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-7574 High 8.7

Anthropic Claude Desktop Cowork VM image handling (confirmed across v1.1348.0 through v1.2278.0, including v1.1348.0, v1.1617.0, and v1.2278.0) validates o

23 Jun 2026, 23:54 UTC View advisory →
CVE-2026-7570 High 8.8

Quest NetVault Backup NVBUDashboard SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code

24 Jun 2026, 23:13 UTC View advisory →
CVE-2026-7569 High 8.8

Quest NetVault Backup viewclient Cross-Site Scripting Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authenticat

24 Jun 2026, 23:15 UTC View advisory →
CVE-2026-7559 Medium 4.3

The Affilia – Affiliate Program & Referral Tracking for WordPress plugin for WordPress is vulnerable to unauthorized access in all versions up to, and incl

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-7557 Critical 9.1

An improper verification of cryptographic signature vulnerability in the SAML authentication module of Progress MarkLogic Server before 11.3.6 and 12.0.3 a

05 Aug 2026, 15:33 UTC View advisory →
CVE-2026-7544 Medium 4.3

The Mux Video Uploader plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.1.4 via the muxvideo_en

11 Jul 2026, 02:31 UTC View advisory →
CVE-2026-7543 High 7.2

The Breakdance plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'fields' parameter in versions up to, and including, 2.7.1 due to

16 Jul 2026, 07:51 UTC View advisory →
CVE-2026-7539 High 7.3

A potential security vulnerability has been identified in the HP Accessory WMI Provider installer for some HP Docking Stations, which might allow escalatio

24 Jun 2026, 19:47 UTC View advisory →
CVE-2026-7534 High 7.2

The SUMO Reward Points plugin for WordPress is vulnerable to Unauthenticated Stored Cross-Site Scripting via the REST API endpoint `/wp-json/wc-srp/v1/earn

23 Jul 2026, 05:35 UTC View advisory →
CVE-2026-7532 Medium 5.7

iPAddress name constraints bypass when WOLFSSL_IP_ALT_NAME is not defined. IP address name constraints are not enforced in that configuration, allowing a c

25 Jun 2026, 21:31 UTC View advisory →
CVE-2026-7531 Low 2.3

Use-after-free in PQC hybrid key-share handling. This is an incomplete-fix follow-up to CVE-2026-5460 (released in 5.9.1): a malicious TLS 1.3 server sendi

25 Jun 2026, 20:01 UTC View advisory →
CVE-2026-7529 High 7.5

The wiseCampaign – WooCommerce Conversions Made Easy plugin for WordPress is vulnerable to unauthorized modification and disclosure of data due to every on

05 Aug 2026, 13:26 UTC View advisory →
CVE-2026-7520 High 8.1

The MailChimp Forms by MailMunch plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the `sign_in(

05 Aug 2026, 07:39 UTC View advisory →
CVE-2026-7517 High 7.2

The Custom Payment Gateways for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'alg_wc_cpg_input_fields' parameter i

01 Jul 2026, 04:32 UTC View advisory →
CVE-2026-7511 Medium 5.9

PKCS7_verify signer confusion allows forged signatures, where the signer associated with a signature is not correctly bound, permitting a forged signature

25 Jun 2026, 21:32 UTC View advisory →
CVE-2026-7494 Medium 5.3

Nexus Repository 3 is vulnerable to Server-Side Request Forgery (SSRF) via the SSL Certificate Retrieval endpoint. A user holding the nexus:ssl-truststore:

14 Jul 2026, 15:46 UTC View advisory →
CVE-2026-7492 Medium 4.3

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 9.1 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certai

08 Jul 2026, 20:46 UTC View advisory →
CVE-2026-7488 High 7.5

Insertion of sensitive information into sent data vulnerability in IKAS Technology Inc. E-Commerce allows Retrieve Embedded Sensitive Data. This issue affe

17 Jul 2026, 13:07 UTC View advisory →
CVE-2026-7456 Medium 6.5

The Udimi Tools plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the `ajax_disconnect()` functi

05 Aug 2026, 13:26 UTC View advisory →
CVE-2026-7406 High 7.8

A maliciously crafted BMP file, when parsed through certain Autodesk products, can force a Untrusted Pointer Dereference vulnerability. A malicious actor c

06 Aug 2026, 16:31 UTC View advisory →
CVE-2026-7405 Medium 5.5

A maliciously crafted TIF file, when parsed through certain Autodesk products during image import, can cause an Out-of-Bounds Read in the image handling li

06 Aug 2026, 16:17 UTC View advisory →
CVE-2026-7364 Low 3.1

IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 and IBM Verify Identity Access Container 11.0 through 1

17 Jul 2026, 19:31 UTC View advisory →
CVE-2026-7329 Critical 9.9

An improper privilege management vulnerability in the SQL, SPARQL, and Optic REST query interfaces of Progress MarkLogic Server before 11.3.6 and 12.0.3 al

05 Aug 2026, 15:32 UTC View advisory →
CVE-2026-7328 Medium 6.8

Missing authorization in Caliptra Core Runtime Firmware (INVOKE_DPE_MLDSA87, CM_AES_GCM_DECRYPT_DMA, EXTERNAL_MAILBOX_CMD commands) in subsystem mode allow

22 Jul 2026, 16:17 UTC View advisory →
CVE-2026-7327 High 8.1

An improper privilege management vulnerability in the REST API document processing pipeline of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an

05 Aug 2026, 15:30 UTC View advisory →
CVE-2026-7326 High 7.5

A cross-site request forgery vulnerability in the Admin UI of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows a remote attacker who lures an auth

05 Aug 2026, 15:29 UTC View advisory →
CVE-2026-7311 High 8.1

The TinyPNG – JPEG, PNG & WebP image compression plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in

02 Jul 2026, 18:32 UTC View advisory →
CVE-2026-7260 Medium 5.4

Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP process, in PHP versions from 8.2.*

30 Jul 2026, 11:22 UTC View advisory →
CVE-2026-7253 Medium 5.3

IBM Watson Speech Services Cartridge is vulnerable to Server-Side Request Forgery (SSRF) in Sterling File Gateway, due to a flaw which may allow an authent

22 Jun 2026, 15:21 UTC View advisory →
CVE-2026-7232 High 7.2

The FormCraft plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the '[parameter name]' parameter in all versions up to, and including,

23 Jul 2026, 05:35 UTC View advisory →
CVE-2026-7189 High 7.5

Insertion of sensitive information into sent data vulnerability in Proliz Software Ltd. Co. Proliz's OBS allows Accessing Functionality Not Properly Constr

17 Jul 2026, 12:44 UTC View advisory →
CVE-2026-7167 Medium 6.9

The vulnerability arises when the system fails to properly validate the 'email' field during the authentication process, allowing unverified or fake email

22 Jun 2026, 12:50 UTC View advisory →
CVE-2026-7166 Critical 9.2

Vulnerability involving the exposure of sensitive data provided without adequate protection. The API exposes email and phone number data from the ‘email’ a

22 Jun 2026, 12:47 UTC View advisory →
CVE-2026-7165 Critical 9.4

The vulnerability is present in the ‘/addJugador’ endpoint: * The 'keyJugador' and 'keyJugadorObjectiu' parameters allow the modification of other users’ i

22 Jun 2026, 12:46 UTC View advisory →
CVE-2026-7120 Medium 5.3

@fastify/static evaluates the allowedPath callback before normalizing dot segments and duplicate path separators in the pathname used for file resolution.

23 Jul 2026, 02:48 UTC View advisory →
CVE-2026-7017 High 7.1

HTTP::Tiny versions before 0.095 for Perl forward credential headers to cross-origin redirect targets. When the server returns a 3xx redirect, `_maybe_redi

07 Jul 2026, 17:41 UTC View advisory →
CVE-2026-6954 Medium 5.1

Cross-Site Scripting (XSS) vulnerability in Intermark IT's WebControl CMS v3.5. This vulnerability allows an attacker to execute JavaScript code or inject

30 Jun 2026, 08:54 UTC View advisory →
CVE-2026-6953 Medium 5.1

HTML injection vulnerability in Intermark IT's WebControl CMS v3.5. This vulnerability allows an attacker to send an email containing malicious HTML code t

30 Jun 2026, 08:53 UTC View advisory →
CVE-2026-6952 High 7.2

A post-authentication command injection vulnerability in the "LogServer" field of the syslog component in Zyxel AX7501-B1 firmware versions through 5.17(AB

21 Jul 2026, 02:00 UTC View advisory →
CVE-2026-6939 High 7.2

The CorvusPay WooCommerce Payment Gateway plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'approval_code' parameter in all versio

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-6896 High 8.7

GitLab has remediated an issue in GitLab EE affecting all versions from 13.11 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain

08 Jul 2026, 20:46 UTC View advisory →
CVE-2026-6890 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

31 Jul 2026, 02:27 UTC View advisory →
CVE-2026-6889 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

31 Jul 2026, 02:27 UTC View advisory →
CVE-2026-6875 Critical 9.5

ServiceNow has addressed a remote code execution vulnerability that was identified in the ServiceNow AI platform. This vulnerability could enable an unauth

13 Jul 2026, 18:17 UTC View advisory →
CVE-2026-6872 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have be

11 Jul 2026 View advisory →
CVE-2026-6858 High 7.1

The Transbank Webpay WordPress plugin before 1.14.0 does not sanitize and escape logs to be displayed, allowing unauthenticated users to perform Stored XSS

22 Jun 2026, 06:00 UTC View advisory →
CVE-2026-6854 High 7.5

The My Calendar – Accessible Event Manager plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'mc_auth' parameter in all versions

08 Jul 2026, 11:30 UTC View advisory →
CVE-2026-6851 High 7

An Improper link resolution before file access ('link following') vulnerability in the File Shredder module as used in Bitdefender Total Security and Inter

14 Jul 2026, 07:11 UTC View advisory →
CVE-2026-6850 Medium 6.5

Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to validate the length and content of message attachment field values, whi

13 Jul 2026, 08:13 UTC View advisory →
CVE-2026-6847 Critical 9.3

Remote Code Execution vulnerability exists in ThemisNETPanel due to missing authentication for a critical file upload function. The application exposes an

13 Jul 2026, 13:26 UTC View advisory →
CVE-2026-6837 High 7.2

A post-authentication command injection vulnerability in the "export-cgi" CGI program in Zyxel WAX650S firmware versions through 7.10(ABRM.4)C0 could allow

04 Aug 2026, 01:52 UTC View advisory →
CVE-2026-6820 High 7.2

The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'email' parameter in all versions up to

08 Jul 2026, 12:33 UTC View advisory →
CVE-2026-6818 High 7.2

The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'special_requests' parameter in all ver

08 Jul 2026, 11:30 UTC View advisory →
CVE-2026-6804 Medium 5.3

The AI Chatbot & Workflow Automation by AIWU plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.4.12. This

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-6803 Medium 5.3

The AI Chatbot & Workflow Automation by AIWU plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 1.4.12. This

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-6802 Medium 5.3

The Easy Upload Files During Checkout plugin for WordPress is vulnerable to unauthorized access in all versions up to, and including, 3.0.1. This is due to

10 Jul 2026, 07:48 UTC View advisory →
CVE-2026-6801 Medium 5.3

The Context Blog theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.3.5 via the context_blog_modal

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-6793 Medium 5.4

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Bifra Engineering Consulting Ltd. Q-smart NexT Poll a

20 Jul 2026, 15:25 UTC View advisory →
CVE-2026-6790 Medium 5.3

In Eclipse Jetty, for HTTP/1, HTTP/2 and HTTP/3 requests, there is no strict check that the request authority (host and port) matches what provided in the

14 Jul 2026, 08:51 UTC View advisory →
CVE-2026-6742 Medium 6.4

The Advanced iFrame plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'additional' parameter in all versions up to, and including,

08 Jul 2026, 11:35 UTC View advisory →
CVE-2026-6740 Medium 6.4

The Nexter Blocks – Gutenberg Blocks, Page Builder & AI Website Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'commentI

08 Jul 2026, 12:33 UTC View advisory →
CVE-2026-6731 Medium 6

X.509 name constraint bypass via the Subject Common Name when treated as a DNS-type name. A certificate whose Subject CN violates an issuing CA's DNS name

25 Jun 2026, 20:08 UTC View advisory →
CVE-2026-6695 Medium 5.5

A flaw was found in GIMP. A remote attacker could exploit this by tricking a user into opening a specially crafted PAA (Paint Shop Pro Array) image file. T

03 Aug 2026, 04:05 UTC View advisory →
CVE-2026-6694 Medium 5.5

A flaw was found in GIMP's file-png plugin. A remote attacker can exploit this by crafting a malicious Animated Portable Network Graphics (APNG) image cont

03 Aug 2026, 04:05 UTC View advisory →
CVE-2026-6681 Low 1

The PKCS#7 decode path ignores the caller-supplied output buffer size (outputSz), allowing decoded content to be written past the bounds of the provided bu

25 Jun 2026, 20:11 UTC View advisory →
CVE-2026-6679 High 8.8

A heap buffer overflow could occur in the DTLS 1.3 ACK serialization path before the connecting peer is authenticated. The buffer overflow was due to an in

25 Jun 2026, 20:13 UTC View advisory →
CVE-2026-6678 Low 1

Integer underflow in wc_PKCS7_DecryptOri when handling crafted Other Recipient Info, leading to incorrect length handling during decryption.

25 Jun 2026, 20:16 UTC View advisory →
CVE-2026-6673 Medium 6.4

Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 fail to authenticate Atlassian Connect installed callbacks, a

22 Jun 2026, 13:38 UTC View advisory →
CVE-2026-6658 Medium 5.4

A vulnerability in jupyter/nbconvert versions <= 7.17.0 allows for Cross-site Scripting (XSS) via unsanitized `text/vnd.mermaid` output in HTML exports. Th

26 Jun 2026, 09:40 UTC View advisory →
CVE-2026-6656 High 7.5

Crypt::Password versions through 0.28 for Perl are susceptible to timing attacks. The check_password method uses the built-in eq operator. This allows disc

20 Jul 2026, 07:01 UTC View advisory →
CVE-2026-6653 High 7

Use After Free in libxml2's xmlParseInternalSubset from GNOME libxml2 version 2.9.11 to 2.11.0 allows a remote attacker to cause a denial-of-service via ma

22 Jun 2026, 12:40 UTC View advisory →
CVE-2026-6645 High 7.3

An insecure process execution vulnerability exists in the pc-printer-updater.exe component of the PaperCut Print Deploy Client for Windows. The application

22 Jun 2026, 03:24 UTC View advisory →
CVE-2026-6556 Critical 9.1

@fastify/express versions 4.0.6 and earlier only rewrite the plugin prefix for middleware mount paths when the path argument is a string. Non-string mount

30 Jun 2026, 12:48 UTC View advisory →
CVE-2026-6541 Medium 4.3

Mattermost versions 11.7.x <= 11.7.1, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to restrict metric configuration changes to the playbook being saved, whic

13 Jul 2026, 10:53 UTC View advisory →
CVE-2026-6540 High 7.9

Calico's Application Layer Policy (disabled by default), which enforces HTTP rules through Dikastes, fails to perform URL path normalization. As a result,

30 Jul 2026, 14:45 UTC View advisory →
CVE-2026-6511 Medium 6.8

During an internal security assessment, a potential improper access control vulnerability was discovered in Lenovo Smart Connect for Windows that could all

16 Jul 2026, 16:48 UTC View advisory →
CVE-2026-6459 Medium 6.4

The Essential Addons for Elementor – Popular Elementor Templates & Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Event

08 Jul 2026, 12:33 UTC View advisory →
CVE-2026-6458 Medium 5.1

Missing cryptographic step in Caliptra Core Firmware (aes_256_gcm_update module) results in an incorrect GCM authentication tag. When the streaming AES-256

23 Jun 2026, 23:49 UTC View advisory →
CVE-2026-6453 Medium 6.5

The CubeWP Framework plugin for WordPress is vulnerable to SQL Injection in all versions up to and including 1.1.30. This is due to insufficient input sani

01 Aug 2026, 08:32 UTC View advisory →
CVE-2026-6450 Low 1

A CRL critical extension bypass exists in ParseCRL_Extensions where critical extensions are not properly enforced, allowing a crafted CRL with an unhandled

25 Jun 2026, 20:18 UTC View advisory →
CVE-2026-6440 Medium 4.3

The GoodMeet – Google Meet Integration for Webinar, Meeting & Video Conference plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions

10 Jul 2026, 07:48 UTC View advisory →
CVE-2026-6432 Medium 5.3

Improper bounds validation in EmberZNet SDK versions 9.0.2 and earlier may result in crashes or dynamic memory leakage.

25 Jun 2026, 13:49 UTC View advisory →
CVE-2026-6424 Medium 6.7

Use-after-free vulnerability in ESET Linux products potentially allowed an attacker to trigger kernel panic on the system

16 Jul 2026, 08:28 UTC View advisory →
CVE-2026-6423 High 8.5

A local privilege escalation vulnerability in ESET Inspect Connector. The vulnerability was caused by improper authentication in an IPC channel.

16 Jul 2026, 07:56 UTC View advisory →
CVE-2026-6412 Low 2.3

Certificate policy and RFC 8446 compliance concerns regarding the continued acceptance of SHA-1/MD5 in certificate processing.

25 Jun 2026, 20:38 UTC View advisory →
CVE-2026-6390 Medium 6.8

A flaw was found in GNU nano's multi-buffer error message handling. When a user opens multiple files at startup and one triggers an ALERT-level error, a sp

23 Jul 2026, 03:55 UTC View advisory →
CVE-2026-6371 Medium 4.8

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Limatek System Inc. LimRAD NAC allows Stored XSS. Thi

08 Jul 2026, 11:51 UTC View advisory →
CVE-2026-6352 Low 2.7

GitLab has remediated an issue in GitLab EE affecting all versions from 18.2 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain

08 Jul 2026, 20:46 UTC View advisory →
CVE-2026-6331 Low 2.1

HMAC zero-length tag forgery in EVP_DigestVerifyFinal, where a zero-length tag could be accepted as valid during HMAC verification. In the OpenSSL-compatib

25 Jun 2026, 20:56 UTC View advisory →
CVE-2026-6330 Medium 6.3

The ML-KEM ARM64 NEON ciphertext comparison only compares half of the input, breaking the Fujisaki-Okamoto transform's implicit rejection and weakening IND

25 Jun 2026, 21:01 UTC View advisory →
CVE-2026-6329 Medium 6

PKCS#12 MAC verification uses an attacker-controlled comparison length, weakening the integrity check on the MAC and allowing a mismatched MAC to be accept

25 Jun 2026, 21:02 UTC View advisory →
CVE-2026-6325 Low 2

Out-of-bounds write in SetSuitesHashSigAlgo when processing an oversized signature algorithms list, allowing a write past the bounds of the destination buf

25 Jun 2026, 21:04 UTC View advisory →
CVE-2026-6292 Medium 4.3

The MP Customize Login Page plugin for WordPress is vulnerable to Cross-Site Request Forgery (CSRF) in all versions up to and including 1.0. This is due to

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-6291 Medium 6

Bleichenbacher padding oracle in PKCS#7 KTRI decryption. When decrypting PKCS#7 EnvelopedData using RSA PKCS#1 v1.5 key transport, wolfSSL returned disting

25 Jun 2026, 16:41 UTC View advisory →
CVE-2026-6280 Medium 6.5

Exposure of sensitive information due to incompatible policies vulnerability in NOMYSOFT Informatics Education and Consulting Inc. Nomysem allows Accessing

08 Jul 2026, 08:45 UTC View advisory →
CVE-2026-6251 Medium 6.5

The Chaty Pro plugin for WordPress is vulnerable to Authenticated Time-Based Blind SQL Injection in versions up to and including 3.5.5. This is due to the

28 Jul 2026, 05:39 UTC View advisory →
CVE-2026-6230 High 7.5

The Tainacan plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'geoquery' parameter in all versions up to and including 1.0.3 du

08 Jul 2026, 11:30 UTC View advisory →
CVE-2026-6212 High 8.8

Authorization bypass through User-Controlled key vulnerability in Teracity Software Technologies Inc. TeraMIS allows Privilege Abuse. This issue affects Te

10 Jul 2026, 18:35 UTC View advisory →
CVE-2026-6101 High 7.5

The AMP for WP – Accelerated Mobile Pages plugin for WordPress is vulnerable to Arbitrary File Write in versions up to and including 1.1.12. This is due to

07 Jul 2026, 13:32 UTC View advisory →
CVE-2026-6094 Medium 6.3

Heap buffer overread in wc_PKCS7_DecodeEnvelopedData when parsing crafted PKCS7 EnvelopedData. This could theoretically be triggered by attacker-supplied d

25 Jun 2026, 16:35 UTC View advisory →
CVE-2026-6092 Low 2.1

When HAVE_ENCRYPT_THEN_MAC is configured, the implementation could fall back to MAC-then-Encrypt rather than enforcing Encrypt-then-MAC.

25 Jun 2026, 21:06 UTC View advisory →
CVE-2026-6091 Medium 6

Partial-chain certificate verification may accept chains that terminate at a peer-supplied, untrusted intermediate certificate rather than a trusted anchor

25 Jun 2026, 16:46 UTC View advisory →
CVE-2026-6070 Critical 9.1

The WP-BusinessDirectory plugin for WordPress is vulnerable to Unauthenticated Arbitrary File Deletion in versions up to and including 4.0.1. This is due t

01 Jul 2026, 04:32 UTC View advisory →
CVE-2026-6062 Medium 6.4

Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 Fail to validate channel ownership of an existing subscriptio

22 Jun 2026, 13:40 UTC View advisory →
CVE-2026-6020 High 7.2

The ShopLentor plugin for WordPress is vulnerable to arbitrary function execution via the woolentoropt/v1/custom-action REST API endpoint in all versions u

05 Aug 2026, 07:39 UTC View advisory →
CVE-2026-5952 Medium 4.3

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.11 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under cert

25 Jun 2026, 04:34 UTC View advisory →
CVE-2026-5923 Medium 6

Malicious use of a stolen cookie might allow modifications to the contents of the IP phone’s webpage.

08 Jul 2026, 21:29 UTC View advisory →
CVE-2026-5922 Medium 5.9

The IP phone might use malicious input stored in configuration parameters and render it as content for the WebUI’s webpage.

08 Jul 2026, 21:39 UTC View advisory →
CVE-2026-5857 Critical 9.2

Contiki-NG's MQTT client parse_publish_vhdr() in os/net/app-layer/mqtt/mqtt.c sets topic_len_received=1 before checking topic_len against the 64-byte limit

06 Aug 2026, 18:52 UTC View advisory →
CVE-2026-5856 High 7.1

Contiki-NG's DNS/mDNS resolver skip_name() in os/services/resolv/resolv.c walks DNS wire-format name labels with no packet-boundary check, and the caller i

06 Aug 2026, 18:47 UTC View advisory →
CVE-2026-5855 High 8.7

Contiki-NG's LwM2M TLV parser lwm2m_tlv_read() in os/services/lwm2m/lwm2m-tlv.c ignores its caller-supplied buffer length argument and reads up to six byte

06 Aug 2026, 18:39 UTC View advisory →
CVE-2026-5846 High 7.6

The affected Watchfire Controller Software contains self-signed hard-coded RSA private keys and corresponding X.509 certificates used for authenticating an

30 Jul 2026, 21:12 UTC View advisory →
CVE-2026-5818 High 7.2

Incorrect check of function return value in Caliptra Core Runtime Firmware (ActivateFirmwareCmd::activate_fw modules) allows bypass of Caliptra Core's veri

23 Jun 2026, 23:50 UTC View advisory →
CVE-2026-5801 Critical 9.8

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Semtek Informatics Software Consulting Trade Ltd. Co.

10 Jul 2026, 18:07 UTC View advisory →
CVE-2026-5796 Medium 4.3

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.6 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under certa

25 Jun 2026, 04:34 UTC View advisory →
CVE-2026-5757 High 7.5

Unauthenticated remote information disclosure vulnerability in Ollama's model quantization engine allows an attacker to read and exfiltrate the server's he

26 Jun 2026, 15:15 UTC View advisory →
CVE-2026-5743 Medium 6.4

The SimpLy Gallery Block & Lightbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via block attributes in all versions up to, and inclu

11 Jul 2026, 02:31 UTC View advisory →
CVE-2026-5674 High 8.8

A flaw was found in PipeWire, a multimedia server. This vulnerability allows an attacker to escape sandboxed applications, such as Flatpak, by exploiting P

16 Jul 2026, 13:26 UTC View advisory →
CVE-2026-5582 Medium 4.3

The FuseWP plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.24.2. This is due to missing nonce ve

30 Jul 2026, 12:05 UTC View advisory →
CVE-2026-5524 Critical 9.8

The Divi Form Builder plugin for WordPress is vulnerable to Arbitrary File Upload leading to Remote Code Execution in all versions up to and including 5.1.

02 Jul 2026, 12:34 UTC View advisory →
CVE-2026-5523 High 8.8

The Divi Form Builder plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 5.1.8. This is due to the update_user()

09 Jul 2026, 04:32 UTC View advisory →
CVE-2026-5459 Medium 5.3

The User Frontend: AI Powered Frontend Posting, User Directory, Profile, Membership & User Registration plugin for WordPress is vulnerable to Insecure Dire

08 Jul 2026, 12:33 UTC View advisory →
CVE-2026-5430 Critical 10

The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows an attacker to craf

06 Aug 2026, 07:33 UTC View advisory →
CVE-2026-5423 High 8.2

@neo4j/graphql library versions prior to 7.5.6 fail to verify the authenticity of a client-supplied, pre-decoded JWT object passed through GraphQL subscrip

06 Aug 2026, 15:15 UTC View advisory →
CVE-2026-5391 Medium 6.4

The LatePoint plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'btn_wrapper_classes' attribute of the 'latepoint_resources' shortc

06 Aug 2026, 11:29 UTC View advisory →
CVE-2026-5356 High 7.5

The LatePoint – Calendar Booking Plugin for Appointments and Events plugin for WordPress is vulnerable to Improper Input Validation in all versions up to,

08 Jul 2026, 12:33 UTC View advisory →
CVE-2026-5336 Medium 6.8

The DataPress (Dataverse Integration) WordPress plugin before 2.91 does not properly restrict access to its template rendering feature and exposes the view

06 Aug 2026, 16:36 UTC View advisory →
CVE-2026-5309 Medium 5.4

GitLab has remediated an issue in GitLab EE affecting all versions from 18.6 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under certain

25 Jun 2026, 04:34 UTC View advisory →
CVE-2026-5305 Unscored

The Email Address Encoder WordPress plugin before 1.0.25, email-encoder-premium WordPress plugin before 0.3.12 does not properly handle email replacement,

25 Jun 2026, 06:00 UTC View advisory →
CVE-2026-5270 Unscored

An authentication bypass vulnerability exists in certain releases of Ciena Navigator Network Control Suite (NCS), Manage Control Plan (MCP), and Blue Plane

14 Jul 2026, 22:24 UTC View advisory →
CVE-2026-5269 Unscored

In Ciena's Navigator Network Control Suite (NCS) and Manage Control Plan (MCP), there are hidden system accounts used for internal software operations. Som

14 Jul 2026, 22:25 UTC View advisory →
CVE-2026-5219 High 8.3

Cross-Site request forgery (CSRF) vulnerability in Softtr Information Technology Trade Ltd. Co. E-Commerce Pack allows Cross Site Request Forgery. This iss

30 Jul 2026, 13:43 UTC View advisory →
CVE-2026-5158 Medium 6.4

The Post Grid Gutenberg Blocks for News, Magazines, Blog Websites – PostX plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'inputP

06 Aug 2026, 11:29 UTC View advisory →
CVE-2026-5139 Medium 5.4

Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 fail to enforce administrator authorization on the {{setDefau

22 Jun 2026, 13:34 UTC View advisory →
CVE-2026-5134 Critical 9.8

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Loca Software Informatics Technology Ltd. Co. CMS all

06 Aug 2026, 13:31 UTC View advisory →
CVE-2026-5062 Medium 4.9

The PrettyLinks – Affiliate Links, Link Branding, Link Tracking, Marketing and Stripe Payments Plugin plugin for WordPress is vulnerable to SQL Injection v

05 Aug 2026, 05:27 UTC View advisory →
CVE-2026-5040 High 7.1

TP-Link Deco M5 v1 uses a weak password hashing mechanism to store user credentials. An attacker who obtains the password hash through system compromise or

14 Jul 2026, 18:00 UTC View advisory →
CVE-2026-4983 Medium 4.1

Open VSX Registry does not sanitize SVG files uploaded as extension icons prior to storage, and serves them with Content-Type: image/svg+xml without securi

23 Jun 2026, 10:50 UTC View advisory →
CVE-2026-4978 Critical 9.8

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in UMAI Vision Traffic Analysis System allows SQL Inject

30 Jul 2026, 14:53 UTC View advisory →
CVE-2026-4967 High 7.5

In IMS, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service with no additional execution priv

03 Jul 2026, 05:52 UTC View advisory →
CVE-2026-4942 Medium 5.9

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to send a specifically crafted message and downgrade the Transport Layer Security (TLS) protocol

17 Jul 2026, 19:32 UTC View advisory →
CVE-2026-4938 Medium 6.5

IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 and IBM Verify Identity Access Container 11.0 through 1

17 Jul 2026, 19:34 UTC View advisory →
CVE-2026-4930 High 7.1

SYMCRYPTO is the SiXG301's host side hardware engine accessed by PSA crypto library that accelerates symmetric cryptographic operations (AES encryption/dec

25 Jun 2026, 18:39 UTC View advisory →
CVE-2026-4793 High 7.3

An incorrect default permissions vulnerability in Synology Assistant before 7.0.7-50095 allows local users to read or write arbitrary files and conduct den

03 Aug 2026, 06:00 UTC View advisory →
CVE-2026-4773 High 8.1

Improper validation of specified type of input vulnerability in Magarsus Consulting Ltd. Co. IDM-MFA allows Authentication Bypass. This issue affects IDM-M

22 Jul 2026, 12:08 UTC View advisory →
CVE-2026-4772 Medium 5.4

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in TR7 Cyber ​​Defense Inc. WAF-ASP allows Stored XSS. T

02 Jul 2026, 12:50 UTC View advisory →
CVE-2026-4770 Medium 4.6

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in TR7 Cyber ​​Defense Inc. Web Application Firewall all

02 Jul 2026, 12:37 UTC View advisory →
CVE-2026-4767 Critical 9.8

Missing authentication for critical function vulnerability in TR7 Cyber ​​Defense Inc. WAF-ASP allows Authentication Abuse. This issue affects WAF-ASP: fro

02 Jul 2026, 13:12 UTC View advisory →
CVE-2026-4765 Medium 5.1

Stored Cross-Site Scripting (XSS) vulnerability in the RD Station Conversas chat. The vulnerability resides in the ‘name’ parameter of the initialization p

13 Jul 2026, 10:16 UTC View advisory →
CVE-2026-4661 High 7.5

The WP CTA – Sticky CTA Builder, Generate Leads, Promote Sales plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'fildname' para

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-4629 Medium 6.5

A flaw was found in Keycloak. A highly privileged user with `manage-clients` permission can exploit this vulnerability by injecting a hardcoded role mapper

30 Jun 2026, 12:00 UTC View advisory →
CVE-2026-4610 Medium 6.4

The ProfileGrid – User Profiles, Groups and Communities plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'pm_author_message' param

23 Jun 2026, 12:32 UTC View advisory →
CVE-2026-4526 High 7.1

In EmberZNet v9.0.2 and earlier, malformed global ZCL messages can trigger out-of-bounds reads in framework parsing logic and terminate the process. These

25 Jun 2026, 13:32 UTC View advisory →
CVE-2026-4522 Medium 6.7

Missing authentication for critical function vulnerability in HYPR Passwordless on Windows allows Credentials Interception. This issue affects HYPR Passwor

25 Jun 2026, 15:39 UTC View advisory →
CVE-2026-4431 Critical 9.1

The Easy Post Submission plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the `create_post()` f

05 Aug 2026, 07:39 UTC View advisory →
CVE-2026-4360 Low 2

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from unt

30 Jun 2026, 14:45 UTC View advisory →
CVE-2026-4339 Medium 6.5

Mattermost versions 10.11.x <= 10.11.18, 11.6.x <= 11.6.3, 11.5.x <= 11.5.6 fail to validate attachment URLs against internal or private IP ranges in the M

26 Jun 2026, 14:44 UTC View advisory →
CVE-2026-4297 High 8.8

The Welcome Software Publishing plugin for WordPress is vulnerable to Arbitrary Options Update in all versions up to and including 0.0.31. This is due to a

24 Jun 2026, 05:33 UTC View advisory →
CVE-2026-4259 High 7.1

The ultimate-woocommerce-auction-pro WordPress plugin through 2.4.5 does not sanitise and escape a parameter before outputting it back in the page, leading

22 Jun 2026, 06:00 UTC View advisory →
CVE-2026-4110 Unscored

The ultimate-woocommerce-auction-pro WordPress plugin through 2.4.5 does not sanitise and escape a parameter before outputting it back in the page, leading

22 Jun 2026, 06:00 UTC View advisory →
CVE-2026-4018 Medium 6.4

TOCTOU Race Condition in specific trace commands of the TraceEvent() system call could allow an attacker with local access and with the PROCMGR_AID_TRACE a

14 Jul 2026, 17:34 UTC View advisory →
CVE-2026-4017 High 7.4

Buffer Overflow in the entry handler of the TraceEvent() system call could allow an attacker with local access to cause information disclosure, data tamper

14 Jul 2026, 17:25 UTC View advisory →
CVE-2026-3907 Medium 6.4

The Hostel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'wphostel-book' shortcode in all versions up to and including 1.1.7. T

10 Jul 2026, 07:48 UTC View advisory →
CVE-2026-3842 High 7.8

A flaw was found in QEMU. This vulnerability allows a local attacker within a guest virtual machine to write data beyond its allocated memory. This occurs

16 Jul 2026, 00:20 UTC View advisory →
CVE-2026-3688 High 8.1

The WCFM Membership – WooCommerce Memberships for Multivendor Marketplace plugin for WordPress is vulnerable to Insecure Direct Object Reference in all ver

08 Jul 2026, 11:35 UTC View advisory →
CVE-2026-3652 High 7.2

The ARForms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `value` parameter of the `arf_save_incomplete_form_data` AJAX action

24 Jun 2026, 02:29 UTC View advisory →
CVE-2026-3602 Medium 4.7

IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.26 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 is vulnera

30 Jun 2026, 19:19 UTC View advisory →
CVE-2026-3576 High 7.2

The Planyo Online Reservation System plugin for WordPress is vulnerable to Server-Side Request Forgery leading to Local File Inclusion in all versions up t

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-3552 Medium 4.3

The SurfLink - Ultimate Link Manager plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability check on the ajax_imp

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-3482 Medium 5.3

IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 could allow a

22 Jul 2026, 18:06 UTC View advisory →
CVE-2026-3472 Low 3.5

Mattermost versions 10.11.x <= 10.11.18, 11.6.x <= 11.6.3, 11.5.x <= 11.5.6 fail to properly apply markdown image rendering restrictions to AI bot tool res

26 Jun 2026, 14:42 UTC View advisory →
CVE-2026-3462 Medium 6.5

The Frisbii Pay plugin for WordPress is vulnerable to unauthorized modification of data due to missing capability checks on the 'upload_csv' and 'process_b

27 Jun 2026, 06:50 UTC View advisory →
CVE-2026-3430 High 8.6

The Creative Mail WordPress plugin from 1.6.5 to 1.6.9 does not sanitize and escape a parameter before using in an SQL statement, leading to an unauthentic

06 Aug 2026, 15:09 UTC View advisory →
CVE-2026-3418 Critical 9.1

The System REST API accepts user-supplied file uploads without enforcing sufficient validation on the file type or destination, allowing files to be writte

06 Aug 2026, 17:32 UTC View advisory →
CVE-2026-3415 High 8.7

The XML and schema validation functionalities within the SchemaValidator Mediator process XML input as part of validation flows. Under certain conditions,

06 Aug 2026, 17:32 UTC View advisory →
CVE-2026-3367 Medium 4.4

The Lockme OAuth2 calendars integration plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'App ID' setting in all versions up to, a

11 Jul 2026, 02:31 UTC View advisory →
CVE-2026-3251 Medium 6.4

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Webremium Istanbul Web Design Mezunum Satiyorum allow

10 Jul 2026, 16:39 UTC View advisory →
CVE-2026-3245 High 7.7

A deserialization vulnerability in PRISMAproduction Version 6.5 or earlier that may lead to arbitrary code execution.

02 Aug 2026, 23:32 UTC View advisory →
CVE-2026-3182 Medium 4.3

Zohocorp ManageEngine Endpoint Central versions before 11.4.2528.34 are affected by cleartext transmission of sensitive information vulnerability.

21 Jul 2026, 05:30 UTC View advisory →
CVE-2026-3176 Low 3.1

GitLab has remediated an issue in GitLab EE affecting all versions from 18.6 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under certain

25 Jun 2026, 04:34 UTC View advisory →
CVE-2026-3144 High 8.1

IBM API Connect 12.1.0.0 through 12.1.0.3 uses default credentials which could allow an attacker to gain unauthorized access to the application before the

08 Jul 2026, 15:22 UTC View advisory →
CVE-2026-3141 Critical 9.1

The FormGent plugin for WordPress is vulnerable to unauthorized arbitrary file deletion due to a missing capability check on the /wp-json/formgent/response

01 Aug 2026, 05:33 UTC View advisory →
CVE-2026-3031 Unscored

Image::EPEG versions through 0.15 for Perl embeds an unsupported version of the Epeg library. Image::EPEG includes Epeg 0.9.0 that was last updated in 2004

16 Jul 2026, 16:22 UTC View advisory →
CVE-2026-3014 Medium 6.4

Milestone has released a new version of XProtect® (and several cumulative patch updates) which fix security vulnerability in Management Server API. The vul

14 Jul 2026, 09:45 UTC View advisory →
CVE-2026-2815 High 8.4

Incorrect use of the PUF key for user key generation in EFR32xG27 results in predictable keys

25 Jun 2026, 13:27 UTC View advisory →
CVE-2026-2594 Medium 6.4

The Smart Custom Fields plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 5.0.7. This is due to insuffici

17 Jul 2026, 01:30 UTC View advisory →
CVE-2026-2508 Medium 6.5

The Gravity Forms Booking plugin for WordPress is vulnerable to time-based SQL Injection via the ‘staff_id’ parameter in all versions up to, and including,

25 Jun 2026, 03:42 UTC View advisory →
CVE-2026-2445 Medium 6.1

The affected product accepts user-supplied input within a URL parameter without enforcing expected sanitization or encoding before rendering it within the

20 Jul 2026, 08:06 UTC View advisory →
CVE-2026-2411 Medium 6.5

Zephyr's Bluetooth host declares a GATT characteristic as two consecutive attributes: a Characteristic Declaration whose permission is hard-coded to BT_GAT

01 Aug 2026, 12:06 UTC View advisory →
CVE-2026-2406 Medium 6.5

Authorization bypass through User-Controlled key vulnerability in Universe Software Computer Marketing Trade and Industry Inc. Online Registration and Work

22 Jul 2026, 08:51 UTC View advisory →
CVE-2026-2398 High 8.8

Authorization bypass through User-Controlled key vulnerability in Adam Retail Automation Ltd. MobilMen 20T allows Privilege Escalation. This issue affects

10 Jul 2026, 17:02 UTC View advisory →
CVE-2026-2397 Critical 9.8

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Adam Retail Automation Ltd. MobilMen 20T allows SQL I

10 Jul 2026, 17:29 UTC View advisory →
CVE-2026-2395 Critical 9.8

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Xpoda Türkiye Informatics Technology Inc. No Code Pla

22 Jul 2026, 14:02 UTC View advisory →
CVE-2026-2387 Medium 6.4

The Event Organiser plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 3.12.9. This is due to the 'eo_

01 Jul 2026, 04:32 UTC View advisory →
CVE-2026-2354 High 8.8

The Swiss Toolkit For WP plugin for WordPress is vulnerable to arbitrary file upload due to a flawed file type validation bypass in the `upload_extension_f

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-2346 Critical 9.8

Authorization bypass through User-Controlled key vulnerability in Menulux Software Inc. Mobile App allows Software Integrity Attack. This issue affects Mob

03 Aug 2026, 11:49 UTC View advisory →
CVE-2026-2299 Medium 4.2

The Mattermost Google Drive plugin before version 1.1.0 fails to validate channel membership in the file creation endpoint, allowing authenticated users wi

25 Jun 2026, 18:55 UTC View advisory →
CVE-2026-2238 Medium 5.3

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.5 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under certa

25 Jun 2026, 04:34 UTC View advisory →
CVE-2026-2053 High 8.3

The WSO2 API Manager's message flow component, when processing WS-Addressing headers, does not sufficiently validate or restrict user-controlled input with

26 Jun 2026, 07:26 UTC View advisory →
CVE-2026-2050 High 7.8

GIMP HDR File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code

24 Jun 2026, 21:43 UTC View advisory →
CVE-2026-1946 Medium 4.3

The GW AI Website Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the gwaiwebu_gravity

10 Jul 2026, 07:48 UTC View advisory →
CVE-2026-1869 Medium 6.5

The User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder pl

26 Jun 2026, 07:54 UTC View advisory →
CVE-2026-1840 High 8.7

The Aclara Metrum Cellular Web Interface is vulnerable to unauthorized access due to the absence of authentication controls on critical system functions. T

24 Jun 2026, 19:47 UTC View advisory →
CVE-2026-1832 Medium 4.3

The ThriveDesk – Live Chat, AI Chatbot, Helpdesk & Knowledge Base plugin for WordPress is vulnerable to unauthorized cache deletion due to a missing capabi

11 Jul 2026, 03:44 UTC View advisory →
CVE-2026-1728 Critical 9.8

Tokens issued to a low-privileged user are not sufficiently restricted, allowing them to be used to access product-level Admin REST APIs. Exploitation of t

06 Aug 2026, 07:33 UTC View advisory →
CVE-2026-1667 High 7.2

The SEO Plugin by Squirrly SEO plugin for WordPress is vulnerable to Arbitrary Post Creation and Stored Cross-Site Scripting in all versions up to, and inc

10 Jul 2026, 16:32 UTC View advisory →
CVE-2026-1609 High 8.1

A flaw was found in Keycloak. When the JSON Web Token (JWT) authorization grant preview feature is enabled and a user account is disabled, Keycloak fails t

16 Jul 2026, 00:26 UTC View advisory →
CVE-2026-1606 Medium 4.3

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.8 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under certa

25 Jun 2026, 04:34 UTC View advisory →
CVE-2026-1563 Medium 4.8

Pega Platform versions 8.1.0 through 25.1.2 are affected by an Reflected Cross-site scripting (XSS) vulnerability in a user interface component. Requires a

15 Jul 2026, 16:38 UTC View advisory →
CVE-2026-1562 Medium 4.6

Pega Platform versions 8.1.0 through 25.1.2 are affected by an Stored Cross-site scripting (XSS) vulnerability in a user interface component. Requires a hi

15 Jul 2026, 16:37 UTC View advisory →
CVE-2026-1382 Medium 6.4

The fresh Podcaster plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'freshpodcaster' shortcode in all versions up to, and includi

11 Jul 2026, 05:35 UTC View advisory →
CVE-2026-1359 High 8.8

The Genolve – AI image AI video generation plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the

11 Jul 2026, 07:47 UTC View advisory →
CVE-2026-1289 High 7.8

A maliciously crafted PDF file, when parsed through Autodesk Revit, can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerabi

06 Aug 2026, 15:57 UTC View advisory →
CVE-2026-1239 High 7.5

The Ninja Forms – The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to unauthorized access of data due to a missing authoriza

01 Jul 2026, 05:35 UTC View advisory →
CVE-2026-0934 Low 3.8

GitLab has remediated an issue in GitLab EE affecting all versions from 17.9 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under certain

25 Jun 2026, 04:35 UTC View advisory →
CVE-2026-0931 Medium 6.9

Denial-of-service vulnerability in M-Files Server versions before 26.5.16015.3 allows an authenticated admin user to cause the M-Files Server process to cr

05 Aug 2026, 09:42 UTC View advisory →
CVE-2026-0864 Medium 4.1

When using the "configparser" module to write configuration files containing multi-line text values with carriage return characters (\r) the resulting file

23 Jun 2026, 17:42 UTC View advisory →
CVE-2026-0828 High 7.5

Kernel driver ProcessMonitorDriver.sys in Safetica's endpoint client x64 , versions 10.5.75.0 and 11.11.4.0, allows unprivileged user to abuse IOCTL path a

26 Jun 2026, 15:47 UTC View advisory →
CVE-2026-0685 Critical 9.8

Server side template inject (SSTI) in the expression evaluation component in Genshi Template Engine version 0.7.9 allows a remote attacker to achieve remot

26 Jun 2026, 15:45 UTC View advisory →
CVE-2026-0673 Medium 5.3

The Element Pack Addons for Elementor plugin for WordPress is vulnerable to Email Header Injection in all versions up to, and including, 8.3.15 via the `el

06 Aug 2026, 12:27 UTC View advisory →
CVE-2026-0637 Medium 4.4

When an Event Publisher output adapter is configured with irrelevant properties, the affected products log these properties. This logging occurs without su

06 Aug 2026, 07:33 UTC View advisory →
CVE-2026-0516 Medium 6.5

A improper neutralization of HTTP Headers for Scripting Syntax vulnerability in SonicOS could allow a remote attacker to manipulate the Host header and red

05 Aug 2026, 11:50 UTC View advisory →
CVE-2026-0515 Medium 6.2

Insufficient Parameter Validation in the SchedGet() system call could allow an attacker with local access to cause a crash of the QNX Neutrino kernel.

14 Jul 2026, 17:13 UTC View advisory →
CVE-2026-0487 High 8.4

SAProuter on Microsoft Windows allows an unauthenticated attacker to load library (DLL) files from an untrusted location, allowing them to execute maliciou

14 Jul 2026, 00:17 UTC View advisory →
CVE-2026-0392 High 7.3

eParakstītājs 3.0 for Windows before version 1.10.0 retrieves and executes its automatic updates over a channel that is not authenticated or integrity-prot

03 Aug 2026, 09:56 UTC View advisory →
CVE-2026-0288 High 7.2

Multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of Palo Alto Networks PAN-OS software allow an unauthenticate

08 Jul 2026, 20:14 UTC View advisory →
CVE-2026-0163 Critical 9.8

In multiple functions of vpu_ioctl.c, there is a possible use after free due to a use after free. This could lead to remote escalation of privilege with no

04 Aug 2026, 18:31 UTC View advisory →
CVE-2025-71404 Medium 5.1

better-auth versions after v0.0.2 and before 1.1.16 contain a reflected cross-site scripting (XSS) vulnerability on the /api/auth/error page, where the val

01 Aug 2026, 12:22 UTC View advisory →
CVE-2025-71403 High 7.1

better-auth versions before 1.1.20 contain a bypass vulnerability in trustedOrigins validation logic affecting absolute URLs and wildcard domains. Attacker

01 Aug 2026, 12:22 UTC View advisory →
CVE-2025-71402 Low 2

better-auth versions greater than 1.3.34 and before 1.4.0 contain a vulnerability in the multi-session plugin's /sign-out after-hook, which trusts raw mult

01 Aug 2026, 12:22 UTC View advisory →
CVE-2025-71401 Critical 9.3

better-auth (npm) before 1.4.2 allows an external request to configure baseURL when it is not otherwise defined (e.g., BETTER_AUTH_URL is unset). An attack

02 Aug 2026, 12:15 UTC View advisory →
CVE-2025-71400 High 7.1

better-auth passkey versions before 1.4.0 contain an insecure direct object reference vulnerability in the passkey deletion endpoint that allows authentica

02 Aug 2026, 12:15 UTC View advisory →
CVE-2025-71399 High 8.8

Better Auth relies on better-call, which uses the rou3 router library. In affected versions of rou3, paths are normalized by removing empty segments, so /p

02 Aug 2026, 12:15 UTC View advisory →
CVE-2025-71398 Medium 5.8

SurrealDB before 2.2.2 fails to validate HTTP redirects in http functions, allowing authenticated users to bypass deny-net restrictions by redirecting to b

18 Jul 2026, 13:10 UTC View advisory →
CVE-2025-71397 High 7.1

SurrealDB before 2.0.5, 2.1.x before 2.1.5, and 2.2.x before 2.2.2 allows authenticated users with OWNER or EDITOR permissions (at the root, namespace, or

18 Jul 2026, 13:10 UTC View advisory →
CVE-2025-71396 Low 2.3

SurrealDB before 2.0.5, 2.1.x before 2.1.5, and 2.2.x before 2.2.2 does not enforce a default execution-time limit on embedded JavaScript scripting functio

18 Jul 2026, 13:10 UTC View advisory →
CVE-2025-71395 High 7.1

SurrealDB versions before 2.2.2 contain a memory exhaustion vulnerability in the string::replace function that fails to restrict resulting string length wh

18 Jul 2026, 13:10 UTC View advisory →
CVE-2025-71394 Low 2.3

SurrealDB versions before 2.2.2 contain a local file read vulnerability in the DEFINE ANALYZER statement that allows authenticated users to read arbitrary

18 Jul 2026, 13:10 UTC View advisory →
CVE-2025-71393 Medium 6

SurrealDB before 2.2.2 with scripting enabled fails to properly enforce recursion limits when native functions contain embedded JavaScript that issues new

18 Jul 2026, 13:10 UTC View advisory →
CVE-2025-71392 Critical 9.4

SurrealDB before 2.0.5, 2.1.x before 2.1.5, and 2.2.x before 2.2.2 fails to properly escape table and field names in the command-line export command. An au

18 Jul 2026, 13:10 UTC View advisory →
CVE-2025-71391 High 7.1

SurrealDB versions before 2.2.2 contain an uncaught exception vulnerability in the net module that allows authenticated users to crash the database. Attack

18 Jul 2026, 13:10 UTC View advisory →
CVE-2025-71390 Medium 5.8

SurrealDB before 2.2.6, 2.3.6, and 2.1.8 (and 3.0.0-alpha.7 and earlier) fails to validate DNS-resolved hostnames against --deny-net network access restric

18 Jul 2026, 13:10 UTC View advisory →
CVE-2025-71388 High 7.6

stoatchat (delta/Revolt) versions from 20241213-1 before 20250210-1 allow users with only ViewChannel (read) permission on a channel to fetch that channel'

16 Jul 2026, 12:19 UTC View advisory →
CVE-2025-71385 Medium 5.1

Netdata before 2.3.1 reflects the user-supplied love query parameter of the api/v2/ilove.svg and api/v3/ilove.svg endpoints verbatim into the generated SVG

02 Jul 2026, 19:37 UTC View advisory →
CVE-2025-71382 High 7.1

MuPDF before 1.27.0-rc1 contains an uncontrolled recursion vulnerability in the EPUB CSS rendering engine that allows remote attackers to cause a denial of

23 Jun 2026, 17:21 UTC View advisory →
CVE-2025-71381 Medium 6.9

Hono before 4.10.2 (fixed in 4.10.3) contains a flaw in its CORS middleware: when the origin is not set to "*", the middleware copies the Vary header from

30 Jun 2026, 22:08 UTC View advisory →
CVE-2025-71377 High 8.7

stoatchat (delta) versions before 20250210-1 (0.8.2) contain a logic error in the query messages route. When fetching messages 'nearby' another message, th

16 Jul 2026, 12:19 UTC View advisory →
CVE-2025-71376 High 7.6

picklescan before 0.0.29 fails to detect malicious pickle files using idlelib.autocomplete.AutoComplete.fetch_completions in reduce methods. Attackers can

23 Jun 2026, 12:12 UTC View advisory →
CVE-2025-71374 High 7.6

picklescan before 0.0.29 fails to detect the built-in python profile.Profile.run function when used in pickle reduce methods, allowing attackers to execute

30 Jun 2026, 22:08 UTC View advisory →
CVE-2025-71371 High 7.6

picklescan before 0.0.29 fails to detect malicious pickle files using code.InteractiveInterpreter.runcode in reduce methods. Attackers can craft pickle pay

30 Jun 2026, 22:08 UTC View advisory →
CVE-2025-71370 High 7.6

picklescan before 0.0.28 fails to detect malicious torch.jit.unsupported_tensor_ops.execWrapper function calls embedded in pickle files. Attackers can craf

23 Jun 2026, 12:12 UTC View advisory →
CVE-2025-71368 High 7.6

picklescan before 0.0.30 fails to detect the doctest.debug_script function when analyzing pickle files, allowing attackers to execute arbitrary code. Remot

30 Jun 2026, 22:08 UTC View advisory →
CVE-2025-71365 High 7.6

picklescan before 0.0.33 fails to detect malicious pickle files that invoke numpy.f2py.crackfortran.myeval function through the reduce method. Attackers ca

23 Jun 2026, 12:12 UTC View advisory →
CVE-2025-71363 High 7.6

picklescan before 0.0.30 fails to detect cProfile.run function calls in pickle reduce methods, allowing attackers to execute arbitrary code. Remote attacke

30 Jun 2026, 22:08 UTC View advisory →
CVE-2025-71361 High 7.6

picklescan before 0.0.29 fails to detect malicious idlelib.calltip.Calltip.fetch_tip calls in pickle files, allowing remote code execution. Attackers can e

24 Jun 2026, 11:53 UTC View advisory →
CVE-2025-71358 High 7.6

picklescan before 0.0.29 fails to detect malicious pickle files that exploit idlelib.autocomplete.AutoComplete.get_entity function in reduce methods. Attac

22 Jun 2026, 21:04 UTC View advisory →
CVE-2025-71355 High 7.6

Picklescan before 0.0.25 fails to detect unsafe global functions in the Numpy library, allowing attackers to bypass static analysis and execute arbitrary c

30 Jun 2026, 22:08 UTC View advisory →
CVE-2025-71354 High 7.6

picklescan before 0.0.29 fails to detect malicious pickle files that exploit idlelib.debugobj.ObjectTreeItem.SetText function in reduce methods. Attackers

24 Jun 2026, 11:53 UTC View advisory →
CVE-2025-71352 High 7.6

picklescan before 0.0.29 fails to detect the built-in Python trace.Trace.runctx function when used in pickle file reduce methods, allowing attackers to exe

30 Jun 2026, 22:08 UTC View advisory →
CVE-2025-71350 High 7.6

picklescan before 0.0.28 fails to detect malicious pickle files using torch.utils.collect_env.run function in reduce methods. Attackers can embed undetecte

30 Jun 2026, 22:08 UTC View advisory →
CVE-2025-71349 High 7.6

picklescan before 0.0.29 fails to detect the built-in trace.Trace.run function when analyzing pickle files, allowing attackers to embed undetected maliciou

30 Jun 2026, 22:08 UTC View advisory →
CVE-2025-71344 High 7.6

picklescan before 0.0.30 (affected versions 0.0.26 and earlier) fails to detect the ensurepip._run_pip built-in function when scanning pickle files, allowi

22 Jun 2026, 21:04 UTC View advisory →
CVE-2025-71341 High 7.6

picklescan before 0.0.29 fails to detect the profile.Profile.runctx function when analyzing pickle files, allowing attackers to embed undetected malicious

23 Jun 2026, 12:12 UTC View advisory →
CVE-2025-71340 High 7.6

picklescan through 0.0.26 fails to detect malicious pickle files that invoke idlelib.pyshell.ModifiedInterpreter.runcode in __reduce__ methods. Attackers c

25 Jun 2026, 21:41 UTC View advisory →
CVE-2025-71339 High 7.6

Picklescan before 0.0.33 fails to detect the numpy.f2py.crackfortran._eval_length gadget in pickle __reduce__ methods, allowing arbitrary code execution. A

22 Jun 2026, 21:04 UTC View advisory →
CVE-2025-71338 Critical 10

Flowise contains a path traversal vulnerability in the /api/v1/document-store/loader/process endpoint that allows unauthenticated attackers to write arbitr

25 Jun 2026, 21:41 UTC View advisory →
CVE-2025-71337 High 8.7

Flowise before 3.0.10 (affected versions 3.0.7 and earlier) contains an unverified email change vulnerability. An authenticated user can change the account

23 Jun 2026, 12:12 UTC View advisory →
CVE-2025-71336 Critical 9.3

Flowise before 3.0.6 (affected versions 2.2.7-patch.1 and earlier) contains an unsandboxed remote code execution vulnerability in the Custom MCP feature, w

25 Jun 2026, 21:41 UTC View advisory →
CVE-2025-71335 High 8.6

Flowise before 3.0.10 (affected versions 3.0.7 and earlier) fails to invalidate existing sessions and session tokens after a user changes their password. A

25 Jun 2026, 21:41 UTC View advisory →
CVE-2025-71334 Critical 9.3

Flowise before 3.0.6 (affected versions 2.2.8 and earlier) contains an arbitrary file access vulnerability due to missing validation that the chatflowId an

25 Jun 2026, 21:41 UTC View advisory →
CVE-2025-71333 Critical 9.3

Flowise through 2.2.4 contains an unauthenticated arbitrary file upload vulnerability in the /api/v1/attachments endpoint when storageType is set to local.

25 Jun 2026, 21:41 UTC View advisory →
CVE-2025-71332 High 8.5

Flowise through 2.2.7 contains a SQL injection vulnerability in the importChatflows API. Due to insufficient validation of the chatflow.id value, an authen

24 Jun 2026, 11:53 UTC View advisory →
CVE-2025-71328 High 8.7

Flowise before 3.0.10 contains an unverified password change vulnerability. An authenticated user can change their account password through the account set

25 Jun 2026, 21:41 UTC View advisory →
CVE-2025-71327 Critical 9.3

Flowise contains an authentication bypass vulnerability in the unprotected /api/v1/account/register endpoint that allows unauthenticated attackers to creat

25 Jun 2026, 21:41 UTC View advisory →
CVE-2025-71324 High 8.7

Flowise before 3.0.6 contains an arbitrary file read vulnerability in the chatId parameter of the /api/v1/get-upload-file and /api/v1/openai-assistants-fil

25 Jun 2026, 21:41 UTC View advisory →
CVE-2025-69156 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Kids Zone - Children WordPress Theme <= 5.4 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2025-69155 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Fitness Zone WordPress Theme <= 5.7 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2025-69154 High 7.1

Unauthenticated Cross Site Scripting (XSS) in SpaLab | Beauty Salon WordPress Theme <= 6.7 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2025-69153 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Trendy Travel <= 6.7 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2025-69152 High 7.1

Unauthenticated Cross Site Scripting (XSS) in Artale | Wedding Photography WordPress <= 2.2.2 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2025-69134 High 7.5

Unauthenticated Arbitrary Content Deletion in OpenAI Chatbot for WordPress – Helper <= 1.1.4 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2025-69133 High 7.5

Subscriber Local File Inclusion in Tourmaster <= 5.4.5 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2025-69132 Medium 6.5

Subscriber Sensitive Data Exposure in Corpkit <= 1.0.5 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2025-69094 High 8.5

Subscriber SQL Injection in Unicamp <= 2.2.2 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2025-68075 Medium 6.5

Contributor Cross Site Scripting (XSS) in BNE Testimonials <= 2.0.8 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2025-68074 Medium 6.5

Contributor Cross Site Scripting (XSS) in Image Carousel <= 1.0.0.41 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2025-68064 High 7.5

Contributor Local File Inclusion in Goya Core < 1.0.9.4 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2025-68063 High 7.5

Contributor Local File Inclusion in Splash - Sport Club WordPress Theme for Basketball, Football, Hockey <= 4.4.3 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2025-68052 High 8.8

Unauthenticated Cross Site Request Forgery (CSRF) in Eagle Booking <= 1.3.4.3 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2025-67651 Medium 6.9

A Cross-Site Request Forgery (CSRF) vulnerability has been identified in multiple PHP Jabbers scripts. The lack of CSRF tokens or appropriate SameSite attr

31 Jul 2026, 11:40 UTC View advisory →
CVE-2025-67650 High 8.6

An authenticated SQL injection vulnerability has been identified in multiple PHP Jabbers scripts. Improper neutralization of input provided by an authentic

31 Jul 2026, 11:40 UTC View advisory →
CVE-2025-67649 Critical 9.3

A SQL injection vulnerability has been identified in PHP Jabbers - Car Rental Script . Improper neutralization of input provided by user into parameters re

31 Jul 2026, 11:40 UTC View advisory →
CVE-2025-66389 Unscored

GitHub Copilot 1.372.0 allows filesystem access outside of a workspace folder (without user approval) via a file-handler URI parameter to fetch_webpage. Th

22 Jun 2026, 00:00 UTC View advisory →
CVE-2025-66336 Unscored

Apache Doris MCP Server contains a SQL injection vulnerability in a metadata query path. A user-controlled database name is directly interpolated into a SQ

22 Jun 2026, 06:55 UTC View advisory →
CVE-2025-66123 Medium 5.3

Unauthenticated Insecure Direct Object References (IDOR) in BookPro <= 1.1.0 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2025-66076 Medium 5.3

Unauthenticated Broken Access Control in Woostify Sites Library <= 1.6.2 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2025-64719 Medium 4.9

Gogs is an open source self-hosted Git service. Prior to 0.14.3, a malicious user with rights to create a new file on a repository or wiki page can trigger

24 Jun 2026, 20:03 UTC View advisory →
CVE-2025-64637 Medium 5.3

Unauthenticated Content Injection in Auros Core <= 5.3.1 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2025-64636 Medium 5.3

Unauthenticated Broken Access Control in Donation Thermometer <= 2.2.7 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2025-64152 Critical 9.1

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache IoTDB. This issue affects Apache IoTDB: from 1.0.0 b

26 Jun 2026, 12:16 UTC View advisory →
CVE-2025-64105 Medium 5.1

FOSSBilling is a billing and client management system that automates invoicing, payments, and communication for online service businesses. Versions 0.6.21

23 Jun 2026, 19:45 UTC View advisory →
CVE-2025-63079 Medium 4.3

Contributor Broken Access Control in Live Copy Paste for Elementor <= 1.5.3 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2025-63078 Medium 4.3

Subscriber Broken Access Control in Restaurant Menu by MotoPress <= 2.4.11 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2025-63041 Medium 5.4

Contributor Broken Access Control in Forget About Shortcode Buttons <= 2.1.3 versions.

26 Jun 2026, 14:52 UTC View advisory →
CVE-2025-62826 Low 3.1

An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CWE-113] vulnerability in Fortinet FortiOS 7.6.0 th

14 Jul 2026, 15:19 UTC View advisory →
CVE-2025-62675 Low 3.4

An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CWE-113] vulnerability in Fortinet FortiOS 7.6.0 th

14 Jul 2026, 15:15 UTC View advisory →
CVE-2025-62347 Medium 4.3

HCL iControl was affected by Improper Input Validation vulnerability. It is vulnerable to unexpected system behavior and potential security bypasses. This

31 Jul 2026, 15:16 UTC View advisory →
CVE-2025-62198 Unscored

An authenticated user can perform XSS. This issue affects Apache Atlas versions 2.4.0 and earlier. Users are recommended to upgrade to version 2.5.0, which

22 Jun 2026, 07:47 UTC View advisory →
CVE-2025-62180 High 7.1

Pega Platform versions 8.3.0 through Infinity 25.1.2 are affected by an authorization weakness that may allow authenticated users to access certain additio

23 Jun 2026, 14:48 UTC View advisory →
CVE-2025-59868 Medium 5.5

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a sensitive data exposure vulnerability which could allow an attacker to exploit application in

27 Jun 2026, 01:43 UTC View advisory →
CVE-2025-59866 Low 3.3

The HCL DFMPro, DFXAnalytics and DFXServer installers are affected by ‘Insecure file permissions Leading to Privilege Escalation’ vulnerability, which enab

17 Jul 2026, 17:22 UTC View advisory →
CVE-2025-59181 Medium 4.8

Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a directory traversal vulnerability in Configuration Management that could allow an at

27 Jul 2026, 14:21 UTC View advisory →
CVE-2025-59180 Medium 5.1

Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain a hardcoded credential vulnerability in the alarm system. An attacker with access to t

27 Jul 2026, 14:19 UTC View advisory →
CVE-2025-59178 Medium 4.8

Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain an Exposure of Sensitive System Information vulnerability in Configuration Management

27 Jul 2026, 14:15 UTC View advisory →
CVE-2025-59177 Medium 6.8

Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability in Configuration Management, allowing an attacker to execute specifica

27 Jul 2026, 14:11 UTC View advisory →
CVE-2025-59172 High 8.5

Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain an Improper Neutralization of Special Elements vulnerability allowing an attacker to e

27 Jul 2026, 14:03 UTC View advisory →
CVE-2025-58902 High 8.1

Unauthenticated Local File Inclusion in Lighthouse <= 1.2.12 versions.

02 Jul 2026, 11:14 UTC View advisory →
CVE-2025-55017 Critical 9.1

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache IoTDB. This issue affects Apache IoTDB: from 2.0.0 b

26 Jun 2026, 12:15 UTC View advisory →
CVE-2025-53648 Medium 5.4

SQL misconfiguration in the Gravitino UI, in versions 1.0.0 and below, can allow a malicious user to read or truncate files. Users are recommended to upgra

30 Jun 2026, 13:36 UTC View advisory →
CVE-2025-53379 High 7

A out-of-bounds read vulnerability in Fortinet FortiAuthenticator 6.6.0 through 6.6.2, FortiAuthenticator 6.5 all versions may allow a remote unauthenticat

14 Jul 2026, 15:13 UTC View advisory →
CVE-2025-49506 High 7.5

APR-util versions 1.6.3 (and earlier) function apr_password_validate() was not constant-time with regards to hashes or passwords comparisons, potentially l

06 Aug 2026, 14:33 UTC View advisory →
CVE-2025-43892 Medium 4.1

A buffer over-read vulnerability in Fortinet FortiOS 7.6.0 through 7.6.2, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions may allow an authenticated

14 Jul 2026, 15:19 UTC View advisory →
CVE-2025-40945 High 8.5

A vulnerability has been identified in COMOS V10.4.5 (All versions < V10.4.5.0.2), COMOS V10.6 (All versions < V10.6.1), Designcenter NX (All versions < V2

14 Jul 2026, 09:19 UTC View advisory →
CVE-2025-36431 Medium 5.4

IBM Sterling B2B Integrator 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.2.2.0 through 6.2.2.0_1 is vulnerable to cross-site scripting. This v

30 Jul 2026, 14:36 UTC View advisory →
CVE-2025-36374 Medium 5.5

IBM DataPower Gateway is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A privileged user could exploit this vulnera

30 Jul 2026, 17:55 UTC View advisory →
CVE-2025-36372 Medium 5.5

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 for Linux, UNIX and Windows (includes Db2 Connect Server) could disclose sensitive information to

30 Jun 2026, 20:03 UTC View advisory →
CVE-2025-36359 High 8.1

IBM DevOps Automation 1.0.1 and IBM DevOps Loop 1.0.2 does not invalidate session IDs after expiration which could allow an authenticated user to impersona

30 Jun 2026, 20:11 UTC View advisory →
CVE-2025-36336 Medium 5.9

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 transmits data in clear text that could allow an attacker to obtain sensitive information using ma

30 Jun 2026, 20:12 UTC View advisory →
CVE-2025-36333 Medium 4.3

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 could allow an authenticated user to perform unauthorized actions due to the improper enforcement

30 Jun 2026, 20:15 UTC View advisory →
CVE-2025-36328 Medium 4.3

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 could allow a remote attacker to obtain sensitive information when a detailed technical error mess

30 Jun 2026, 20:16 UTC View advisory →
CVE-2025-36327 Medium 6.5

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 could allow an authenticated user to bypass security controls and perform unauthorized actions due

30 Jun 2026, 20:17 UTC View advisory →
CVE-2025-36324 Medium 4.3

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 s vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to se

30 Jun 2026, 20:18 UTC View advisory →
CVE-2025-36323 Medium 5.4

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed ar

30 Jun 2026, 20:19 UTC View advisory →
CVE-2025-36321 Medium 5.7

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when vi

30 Jun 2026, 20:19 UTC View advisory →
CVE-2025-36320 Medium 6.4

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 is vulnerable to stored cross-site scripting. This vulnerability allows an authenticated user to e

30 Jun 2026, 20:22 UTC View advisory →
CVE-2025-36319 Medium 4.3

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 could allow an authenticated user to cause a temporary denial using a specially crafted HTTP reque

30 Jun 2026, 20:23 UTC View advisory →
CVE-2025-36298 Medium 5.4

IBM Sterling B2B Integrator 6.1.2.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling

30 Jul 2026, 14:21 UTC View advisory →
CVE-2025-33128 Medium 5.4

IBM Engineering Workflow Management 7.0.3 through 7.0.3 Interim Fix 020, and 7.1 through 7.1 Interim Fix 007 is vulnerable to cross-site scripting. This vu

22 Jun 2026, 13:20 UTC View advisory →
CVE-2025-32781 Medium 6.5

Apollo is a reliable configuration management system suitable for microservice configuration management scenarios. Prior to 2.5.0, Apollo Portal does not v

15 Jul 2026, 16:31 UTC View advisory →
CVE-2025-32423 Medium 5.3

AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.32, there is a DoS

26 Jun 2026, 16:09 UTC View advisory →
CVE-2025-32394 Medium 5.3

AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.32, there is a DoS

26 Jun 2026, 16:11 UTC View advisory →
CVE-2025-30008 Medium 5.1

HestiaCP before 1.9.5 contains a stored cross-site scripting vulnerability that allows authenticated low-privilege users to inject arbitrary HTML by creati

10 Jul 2026, 17:51 UTC View advisory →
CVE-2025-30007 High 8.7

HestiaCP before 1.9.5 contains an authenticated OS command injection vulnerability that allows low-privilege authenticated users to execute arbitrary comma

10 Jul 2026, 17:50 UTC View advisory →
CVE-2025-24816 Medium 6.5

Nokia MantaRay is subject to an Improper Access Control vulnerability due to insufficient authorization within the API. Successful exploitation could allow

30 Jun 2026, 08:58 UTC View advisory →
CVE-2025-24815 High 7.8

Nokia MantaRay NM is subject to an unrestricted file upload vulnerability due to insufficient file type validation. Successful exploitation could allow an

30 Jun 2026, 08:55 UTC View advisory →
CVE-2025-15678 Unscored

The Nexter Blocks WordPress plugin before 5.0.2 does not sanitize uploaded SVG files and allows SVG uploads for any user able to upload files (Author by de

06 Aug 2026, 06:00 UTC View advisory →
CVE-2025-15677 Unscored

The GeoDirectory WordPress plugin before 2.8.110 does not sanitise and escape a place-category setting before outputting it back in an admin page, allowing

05 Aug 2026, 06:00 UTC View advisory →
CVE-2025-15675 Unscored

The Charitable WordPress plugin before 1.8.5.3 does not sanitise and escape one of its campaign image text fields before outputting it in an HTML attribute

02 Aug 2026, 06:00 UTC View advisory →
CVE-2025-15674 Low 2.7

The Passster WordPress plugin before 4.3.7 does not restrict low-privilege users holding the edit_posts capability from reading globally password-protected

06 Aug 2026, 17:17 UTC View advisory →
CVE-2025-15673 Unscored

The Import and export users and customers WordPress plugin before 2.4.3 does not restrict the path of a file it reads and displays during a CSV import, all

03 Aug 2026, 06:00 UTC View advisory →
CVE-2025-15672 Unscored

The ChamaWP WordPress plugin before 1.0.13 does not properly validate user input before passing it to a PHP deserialization function, allowing unauthentica

03 Aug 2026, 06:00 UTC View advisory →
CVE-2025-15669 Unscored

The Bit Form WordPress plugin before 3.1.4 does not sanitise one of its conversational-form display settings before rendering it on the public-facing form,

01 Aug 2026, 06:00 UTC View advisory →
CVE-2025-15666 Medium 4.8

A security vulnerability has been detected in Open Asset Import Library Assimp up to 5.4.3. Affected by this vulnerability is the function Assimp::SceneCom

01 Jul 2026, 05:45 UTC View advisory →
CVE-2025-15665 Unscored

The Ultimate Before After Image Slider & Gallery WordPress plugin before 4.7.1 does not escape the value of the BEAF Slider widget's shortcode field before

14 Jul 2026, 06:00 UTC View advisory →
CVE-2025-15631 Medium 5.7

A cryptographic weakness exists in affected Omada devices where site credentials are protected using a legacy hashing algorithm that does not provide suffi

03 Aug 2026, 17:51 UTC View advisory →
CVE-2025-15630 Medium 5.8

A race condition exists in the cloud-based Omada device adoption process when an attacker may be able to interact with the adoption workflow before a legit

03 Aug 2026, 17:51 UTC View advisory →
CVE-2025-15629 Medium 6.9

A cryptographic weakness exists in the Omada adoption protocol where session encryption keys used to protect communications between controllers and managed

03 Aug 2026, 17:50 UTC View advisory →
CVE-2025-15628 High 8.2

Affected Omada devices rely on embedded certificates that are shared across deployments to establish trust between controllers and managed devices. An atta

03 Aug 2026, 17:50 UTC View advisory →
CVE-2025-15627 Medium 6.9

A cryptographic weakness exists in the Omada adoption protocol. The protocol relies on hard-coded cryptographic keys to establish trust and protect authent

03 Aug 2026, 17:49 UTC View advisory →
CVE-2025-15619 Low 3.5

HCL Connections contains a broken access control vulnerability that may allow an unauthorized user to view data in a single specific scenario.

23 Jun 2026, 15:17 UTC View advisory →
CVE-2025-15544 Medium 6.9

A cryptographic weakness exists in the Omada device adoption process. During adoption, authentication credentials associated with site management are trans

03 Aug 2026, 17:49 UTC View advisory →
CVE-2025-15039 Critical 9.4

The Conditional Authentication (Adaptive Authentication) script does not correctly enforce the completion of all required authentication steps when a speci

06 Aug 2026, 07:33 UTC View advisory →
CVE-2025-15028 High 7.2

The FormGent – Next-Gen AI Form Builder for WordPress with Multi-Step, Quizzes, Payments & More plugin for WordPress is vulnerable to Stored Cross-Site Scr

06 Aug 2026, 11:29 UTC View advisory →
CVE-2025-14785 Medium 6.4

The Website Builder by SeedProd - Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode plugin for WordPress is vulnerable to Stored Cros

08 Jul 2026, 11:30 UTC View advisory →
CVE-2025-14779 Low 3.8

The Secret Type Management REST API does not correctly isolate access controls when deleting a secret type. The on-delete cascade logic, when triggered, fa

06 Aug 2026, 07:33 UTC View advisory →
CVE-2025-14561 Critical 9

In multi-tenant deployments, the Publisher REST APIs fail to enforce tenant isolation correctly. This allows a user in one tenant, possessing sufficient pr

06 Aug 2026, 17:32 UTC View advisory →
CVE-2025-14073 Medium 5.3

The WooCommerce PayPal Payments plugin for WordPress is vulnerable to Sensitive Information Disclosure due to an Insecure Direct Object Reference in all ve

01 Aug 2026, 08:32 UTC View advisory →
CVE-2025-13968 Medium 6.4

The Starboard Suite Reservation Calendars plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcode attributes in the [starboard-suit

11 Jul 2026, 03:44 UTC View advisory →
CVE-2025-13909 Medium 4.3

The system accepts authentication requests without sufficient validation to enforce tenant isolation when using Email OTP, SMS OTP, or Magic Link as first-

06 Aug 2026, 07:33 UTC View advisory →
CVE-2025-13736 Low 3.7

When Multi-Attribute Login is enabled, the login interface fails to consistently mask the existence of user accounts. For valid users, the server resolves

06 Aug 2026, 07:33 UTC View advisory →
CVE-2025-13475 Low 3.5

In multi-tenanted deployments, the application consent management mechanism fails to correctly isolate consent scopes between tenants. Consent granted by a

04 Jul 2026, 12:49 UTC View advisory →
CVE-2025-13394 Medium 5.4

The Ajax processor within the Carbon console fails to adequately protect state-changing operations from Cross-Site Request Forgery (CSRF) attacks. Specific

06 Aug 2026, 07:33 UTC View advisory →
CVE-2025-13162 Medium 4.1

Uncontrolled Search Path Element vulnerability in ABB Control Builder A, ABB 800xA for Advant Master. This issue affects Control Builder A: through 1.4/4;

23 Jun 2026, 16:12 UTC View advisory →
CVE-2025-13146 Medium 6.5

The The Contact Form 7 – Dynamic Text Extension plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 5

22 Jul 2026, 11:35 UTC View advisory →
CVE-2025-12799 Medium 6.5

A flaw was found in Jastow. Jastow is vulnerable to Cross-Site Scripting (XSS) attack. If using a set of combined configuration to allow unescaped characte

07 Jul 2026, 16:18 UTC View advisory →
CVE-2025-12627 Low 2.4

The user impersonation flow in WSO2 Identity Server fails to properly manage refresh tokens associated with impersonated sessions. This allows an attacker

06 Aug 2026, 07:33 UTC View advisory →
CVE-2025-12530 Medium 5.9

IBM watsonx.data intelligence 5.2.2, 5.3.0, 5.3.1, 5.3.1 through patch-1 transmits data in clear text that could allow an attacker to obtain sensitive info

30 Jun 2026, 20:34 UTC View advisory →
CVE-2025-12506 Low 3.5

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.5 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certa

08 Jul 2026, 20:47 UTC View advisory →
CVE-2025-12317 Medium 5

When internal roles are removed from a user within the WSO2 product, the system fails to invalidate any previously issued authentication tokens associated

06 Aug 2026, 17:32 UTC View advisory →
CVE-2025-12127 Unscored

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have be

11 Jul 2026 View advisory →
CVE-2025-12012 Critical 9.2

A denial-of-service issue exists in 5380/5480/5580 controllers. This vulnerability could potentially allow a malicious user to write invalid file data to t

14 Jul 2026, 15:04 UTC View advisory →
CVE-2025-12011 Critical 9.2

A denial-of-service issue exists in 5370/5570 controllers. This vulnerability could potentially allow a remote user to load an invalid project, causing the

14 Jul 2026, 15:03 UTC View advisory →
CVE-2025-11977 Medium 6.6

The Happyforms – Form Builder for WordPress: Drag & Drop Contact Forms, Surveys, Payments & Multipurpose Forms plugin for WordPress is vulnerable to Local

10 Jul 2026, 07:48 UTC View advisory →
CVE-2025-11919 Critical 9.6

The default JVM can access files and directories under `/tmp/` including the `$TemporaryDirectory` of other users on the same cloud instance (`/tmp/UserTem

26 Jun 2026, 15:39 UTC View advisory →
CVE-2025-11850 Medium 4.3

When secondary user stores are configured, the implicit-association resolver incorrectly initializes from a secondary user store and bypasses the primary u

06 Aug 2026, 07:33 UTC View advisory →
CVE-2025-11698 Critical 9.2

A denial-of-service issue exists in 5380/5480/5580 controllers boot firmware lower than version 1.072. This vulnerability could potentially allow a malicio

14 Jul 2026, 15:05 UTC View advisory →
CVE-2025-10268 Unscored

The Printcart Web to Print Product Designer for WooCommerce WordPress plugin through 2.4.8 is vulnerable to path traversal which makes it possible for the

26 Jun 2026, 06:00 UTC View advisory →
CVE-2025-9291 High 7.7

A certification validation weakness exists in communication between affected Omada devices and cloud controllers. Certificate identity verification does no

03 Aug 2026, 17:48 UTC View advisory →
CVE-2025-9266 Medium 4.3

The Accelerate theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the enqueue_scripts() function i

06 Aug 2026, 11:29 UTC View advisory →
CVE-2025-8412 Low 2

A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in SUSE Virtual Machine Driver Pack allows an attacker with the abil

14 Jul 2026, 07:42 UTC View advisory →
CVE-2025-8106 Unscored

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

25 Jun 2026 View advisory →
CVE-2025-7958 High 7.1

A Code Injection vulnerability existed in Trellix Network Security CM and NX. A locally authenticated admin user can execute arbitrary code using the web i

26 Jun 2026, 10:15 UTC View advisory →
CVE-2025-7406 High 7.8

Nokia MantaRay NM is vulnerable to a sudo privilege escalation vulnerability where a local attacker possessing administrative (local admin) privileges can

30 Jun 2026, 08:59 UTC View advisory →
CVE-2025-7386 Medium 6.8

Information exposure vulnerability in Hitachi Storage Navigator. This issue affects Hitachi Virtual Storage Platform 5100, 5200, 5500, 5600, 5100H, 5200H,

29 Jun 2026, 05:22 UTC View advisory →
CVE-2025-6784 High 8.8

The Code Engine plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 0.3.5 via the 'code-engine' shortcode. Th

11 Jul 2026, 05:35 UTC View advisory →
CVE-2025-6508 Medium 4.3

The Swagger UI Try-out console within the API Publisher documentation allows an external Swagger API definition URL to be loaded, overriding the existing A

06 Aug 2026, 17:32 UTC View advisory →
CVE-2025-5017 Medium 4.9

The Catalyst Connect Zoho CRM Client Portal plugin for WordPress is vulnerable to time-based SQL Injection via the ‘uid’ parameter in all versions up to, a

11 Jul 2026, 05:35 UTC View advisory →
CVE-2025-4994 High 8.7

The SafeLine SL6 and SL6+ devices integrated into elevator emergency intercom systems are vulnerable to an authentication bypass. This vulnerability allows

22 Jun 2026, 08:10 UTC View advisory →
CVE-2025-3110 Medium 6.9

OpenVPN Access Server 2.7.2 through 3.1.0 accepts bare line-feed sequences inside HTTP header values, allowing remote attackers to perform HTTP request smu

08 Jul 2026, 16:19 UTC View advisory →
CVE-2025-2902 High 8.3

Improper Authorization Vulnerability of Maintenance Utility in Hitachi Virtual Storage Platform. This issue affects Hitachi Virtual Storage Platform E390,

29 Jun 2026, 05:52 UTC View advisory →
CVE-2025-2669 Medium 6

IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8, 5.0, 5.1, 5.2, 5.3 could allow a privileged user to perform operations

22 Jun 2026, 13:18 UTC View advisory →
CVE-2025-0824 Low 3.7

Lack of validation for firmware update in Hitachi Hitachi Virtual Storage Platform One Block 23, 24, 26, 28. This issue affects Hitachi Virtual Storage Pla

29 Jun 2026, 05:34 UTC View advisory →
CVE-2025-0152 Medium 6.1

IBM Engineering Requirements Management DOORS and DOORS Web Access 9.7.2.1 through 9.7.2.11, and 9.6.1.1 through 9.6.1.13 is vulnerable to cross-site scrip

30 Jul 2026, 16:57 UTC View advisory →
CVE-2024-58370 High 7.1

SurrealDB versions before 1.1.0 fail to enforce recursion depth limits when parsing nested SurrealQL statements including IF, RELATE, and attribute access

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58369 High 7.1

SurrealDB versions before 1.1.1 fail to properly validate invocation of custom parameters and functions at root or namespace levels, causing server panic.

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58368 High 8.7

SurrealDB versions before 1.1.0 fail to properly parse the ID, DB, and NS headers in HTTP REST API requests containing special characters. Unauthenticated

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58367 High 7.1

SurrealDB versions before 2.0.4 fail to properly enforce field permissions during SELECT, UPDATE, and DELETE operations, allowing authorized users to acces

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58366 Critical 9

SurrealDB before 1.1.1 contains a format string vulnerability in the rquickjs Exception::throw_type function when scripting is enabled. Attackers with scri

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58365 High 7.1

SurrealDB versions before 1.2.0 contain an uncaught exception vulnerability in the query executor when processing calls to nonexistent built-in functions.

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58364 High 7.1

SurrealDB versions before 1.2.1 contain an uncaught exception handling vulnerability in span rendering when parsing queries with errors on line terminator

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58363 Medium 5.3

SurrealDB before 1.5.4 fails to properly validate authentication when a scope user switches databases using the USE clause or use method. Attackers with an

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58362 High 8.7

SurrealDB before 1.5.5 (and 2.0.0-beta before 2.0.0-beta.3) accepts an arbitrary object in the signin and signup operations of the RPC API without recursiv

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58361 High 7.1

SurrealDB versions before 2.0.4 contain an uncaught exception handling vulnerability in the parser error rendering code when processing empty strings. Auth

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58360 Medium 6.9

stoatchat versions before 0.7.8 fail to enforce account creation restrictions including invite-only mode, email verification, captcha, and shield verificat

16 Jul 2026, 12:23 UTC View advisory →
CVE-2024-58359 High 7.1

SurrealDB versions before 2.1.0 contain a denial of service vulnerability in the sorting mechanism when using ORDER BY rand() clause. Authorized clients ca

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58358 Medium 6.9

SurrealDB versions before 2.1.0 contain a denial of service vulnerability in role conversion that allows privileged owner users to define users with nonexi

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58357 High 7.1

SurrealDB versions before 2.1.0 contain an uncaught exception vulnerability in the rand::time() function that panics when unwrap is called on a None result

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58356 Low 2.3

SurrealDB before 2.1.4 silently fails to overwrite table definitions when the DEFINE TABLE ... OVERWRITE clause is used on tables defined with TYPE RELATIO

18 Jul 2026, 13:10 UTC View advisory →
CVE-2024-58352 High 8.7

Landray OA contains an unauthenticated HQL injection vulnerability that allows unauthenticated attackers to query arbitrary Hibernate entity classes by inj

02 Jul 2026, 17:05 UTC View advisory →
CVE-2024-54178 Medium 6.5

IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8,5.0,5.1,5.2,5.3 could allow an authenticated user to cause a denial of s

22 Jun 2026, 13:15 UTC View advisory →
CVE-2024-51454 Medium 6.5

IBM Engineering Workflow Management 7.0.2 through 7.0.2 Interim Fix 035, 7.0.3 through 7.0.3 Interim Fix 017, and 7.1 through 7.1 Interim Fix 004 is vulner

22 Jun 2026, 14:33 UTC View advisory →
CVE-2024-42214 Medium 5.3

HCL Aftermarket EPC is vulnerable to attack since HTTP OPTIONS method is enabled on this web server. The OPTIONS method provides a list of the methods that

17 Jul 2026, 13:45 UTC View advisory →
CVE-2024-40683 Medium 6.3

IBM Operations Analytics - Log Analysis 1.3.5.0, 1.3.5.1, 1.3.5.2, 1.3.5.3, 1.3.6.0, 1.3.6.1, 1.3.7.0, 1.3.7.1, 1.3.7.2, and 1.3.8.0, 1.3.8.1, 1.3.8.2, 1.3

30 Jul 2026, 18:11 UTC View advisory →
CVE-2024-25039 High 7.5

IBM Engineering Requirements Management DOORS and DOORS Web Access 9.7.2.1 through 9.7.2.11, and 9.6.1.1 through 9.6.1.13 do not limit the length of a conn

30 Jul 2026, 18:14 UTC View advisory →
CVE-2024-23581 Medium 6.7

The HCL Traveler for Microsoft Outlook libraries are being flagged as potentially malicious software or an unrecognized application.

26 Jun 2026, 20:39 UTC View advisory →
CVE-2024-23578 Medium 4.2

HCL Aftermarket EPC is vulnerable to attack as the application implements an HTML5 cross-origin resource sharing (CORS) policy for this request that allows

17 Jul 2026, 13:50 UTC View advisory →
CVE-2024-23577 Medium 4.3

HCL Aftermarket EPC is vulnerable since the application does not have a validation for HOST header and accepts arbitrary hosts when requested in http proto

17 Jul 2026, 13:46 UTC View advisory →
CVE-2024-23575 Medium 5.3

HCL Aftermarket EPC is vulnerable to attack since the application returns detailed error messages that leak information about the processing on the server.

17 Jul 2026, 13:43 UTC View advisory →
CVE-2024-23574 Medium 5.3

HCL Aftermarket EPC is vulnerable to attack since It was found that a malicious actor can use brute-force techniques to either guess or confirm valid users

17 Jul 2026, 13:45 UTC View advisory →
CVE-2024-23573 Low 3.7

HCL Aftermarket EPC is vulnerable to attack since the Application is vulnerable to Lucky 13. that makes the SS LLUCKY13 possible affects the TLS1.1and 1.2

17 Jul 2026, 13:42 UTC View advisory →
CVE-2024-23572 Medium 4.2

HCL Aftermarket EPC is vulnerable to attack as cookie appears to contain a session token, which may increase the risk associated with this issue. You shoul

17 Jul 2026, 13:51 UTC View advisory →
CVE-2024-23571 Medium 4.3

HCL Aftermarket EPC is vulnerable to attack since the application does not have an appropriate caching policy specifying the extent to which the page and i

17 Jul 2026, 13:42 UTC View advisory →
CVE-2024-23570 Medium 4.3

HCL Aftermarket EPC is affected by clickjacking vulnerability Cross-Frame Scripting is an attack technique where an attacker loads a vulnerable application

17 Jul 2026, 13:50 UTC View advisory →
CVE-2024-23569 Medium 4.3

HCL Aftermarket EPC is vulnerable to attack since the server is not configured with “X-XSS-Protection" header

17 Jul 2026, 13:49 UTC View advisory →
CVE-2024-23568 Medium 5.3

HCL Aftermarket EPC is vulnerable to attacks since the server software version used by the application is revealed by the web server. Displaying version in

17 Jul 2026, 13:38 UTC View advisory →
CVE-2024-23567 Medium 4.3

HCL Aftermarket EPC is affected by Sensitive Information in GET method & in URL which allows application to pass sensitive data via URL parameters during n

17 Jul 2026, 13:28 UTC View advisory →
CVE-2024-23566 Medium 6.5

HCL Aftermarket EPC is vulnerable to brute force attacks since application doesn’t have captcha implemented. It can lead to various security issues like br

17 Jul 2026, 13:32 UTC View advisory →
CVE-2024-23565 Medium 5.3

HCL Aftermarket EPC is vulnerable to email flooding as the application does not have a proper mail limitation mechanism at Forget Password functionality. T

17 Jul 2026, 13:36 UTC View advisory →
CVE-2024-23564 Critical 9.1

HCL Aftermarket EPC is affected by Business Logic Vulnerability using which a non valid user of the application can obtain passwords from the server and re

17 Jul 2026, 13:25 UTC View advisory →
CVE-2024-14037 Critical 9.3

Redsea Cloud eHR contains an arbitrary file upload vulnerability that allows unauthenticated attackers to achieve remote code execution by uploading malici

02 Jul 2026, 17:03 UTC View advisory →
CVE-2024-10302 Medium 4

The user self-signup flow in multiple WSO2 products fails to adequately validate user-supplied input. This weakness allows arbitrary unvalidated data to be

06 Aug 2026, 07:33 UTC View advisory →
CVE-2024-8995 Medium 4.9

Unused authorization codes issued to deleted users are not being properly invalidated or removed from the system. This allows for the persistence of these

06 Aug 2026, 07:32 UTC View advisory →
CVE-2024-7708 High 7.5

For requests that have a body, but reading the body may end up in reading 0 bytes, there is a buffer leak. This is particularly the case for 100-Continue,

14 Jul 2026, 09:01 UTC View advisory →
CVE-2024-6832 Medium 5.9

The account locking mechanism fails to trigger when secondary user stores are inaccessible. The software does not maintain a consistent state for account l

06 Aug 2026, 07:32 UTC View advisory →
CVE-2024-6541 Medium 6.8

The Class Mediator fails to correctly validate or sanitize `messageContext` properties when they are used to populate dynamic values. This allows authentic

06 Aug 2026, 17:31 UTC View advisory →
CVE-2024-1248 Medium 4.8

The silent Just-In-Time (JIT) provisioning feature in federated authentication implementations fails to properly segregate user roles during account creati

04 Jul 2026, 20:38 UTC View advisory →
CVE-2023-54389 Unscored

Erroneously reserved under wrong year by automation defect; never assigned.

06 Aug 2026 View advisory →
CVE-2023-54388 Unscored

Erroneously reserved under wrong year by automation defect; never assigned.

06 Aug 2026 View advisory →
CVE-2023-54387 Unscored

Erroneously reserved under wrong year by automation defect; never assigned.

06 Aug 2026 View advisory →
CVE-2023-54386 Unscored

Erroneously reserved under wrong year by automation defect; never assigned.

06 Aug 2026 View advisory →
CVE-2023-54385 Unscored

Erroneously reserved under wrong year by automation defect; never assigned.

06 Aug 2026 View advisory →
CVE-2023-54384 Unscored

Erroneously reserved under wrong year by automation defect; never assigned.

06 Aug 2026 View advisory →
CVE-2023-54383 Unscored

Erroneously reserved under wrong year by automation defect; never assigned.

06 Aug 2026 View advisory →
CVE-2023-54382 Unscored

Erroneously reserved under wrong year by automation defect; superseded by correct-year CVE.

06 Aug 2026 View advisory →
CVE-2023-54381 Unscored

Erroneously reserved under wrong year by automation defect; superseded by correct-year CVE.

06 Aug 2026 View advisory →
CVE-2023-54380 Unscored

Erroneously reserved under wrong year by automation defect; superseded by correct-year CVE.

06 Aug 2026 View advisory →
CVE-2023-54379 Unscored

Erroneously reserved under wrong year by automation defect; superseded by correct-year CVE.

06 Aug 2026 View advisory →
CVE-2023-54378 Unscored

Erroneously reserved under wrong year by automation defect; superseded by correct-year CVE.

06 Aug 2026 View advisory →
CVE-2023-54377 Unscored

Erroneously reserved under wrong year by automation defect; superseded by correct-year CVE.

06 Aug 2026 View advisory →
CVE-2023-54376 Unscored

Erroneously reserved under wrong year by automation defect; superseded by correct-year CVE.

06 Aug 2026 View advisory →
CVE-2023-54375 Unscored

Erroneously reserved under wrong year by automation defect; superseded by correct-year CVE.

06 Aug 2026 View advisory →
CVE-2023-54366 High 8.7

SurrealDB before 1.0.1 sets default table permissions to FULL instead of NONE, allowing SELECT, CREATE, UPDATE, and DELETE operations on tables without exp

18 Jul 2026, 13:10 UTC View advisory →
CVE-2023-54365 High 8.7

Traefik before 2.10.5 and 3.0.0-beta4 is affected by a denial-of-service vulnerability in HTTP/2 request handling inherited from the Go standard library's

23 Jun 2026, 12:12 UTC View advisory →
CVE-2023-49900 Critical 9.8

An unauthenticated remote attacker is able to perform remote code execution due to incorrectly sanitized user input in the SetParameter command.

16 Jul 2026, 10:11 UTC View advisory →
CVE-2023-49899 Critical 9.8

An unauthenticated remote attacker can execute any command on the affected device due to not correctly verifying the origin of a communication channel.

16 Jul 2026, 10:11 UTC View advisory →
CVE-2023-45796 High 8.1

A stored cross-site scripting vulnerability in the Runtime component of Pilz PASvisu before 1.14.1 and PMI v8xx up to and including 2.0.33992 allows a low-

22 Jun 2026, 09:04 UTC View advisory →
CVE-2023-45795 High 7.8

A cross-site scripting vulnerability in the Builder Component of Pilz PASvisu before 1.14.1 allows a local unauthenticated attacker to inject malicious jav

22 Jun 2026, 09:06 UTC View advisory →
CVE-2023-37524 High 7.7

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to vulnerabilities due to .NET Framework 4.5 being out of service. Since .NET Framework 4.5 has re

27 Jun 2026, 01:19 UTC View advisory →
CVE-2023-37508 Low 2.3

HCL DevOps Plan is potentially susceptible to Cross-Site Scripting (XSS) which could allow an attacker to exploit this vulnerability if certain browser wea

21 Jul 2026, 04:34 UTC View advisory →
CVE-2023-37507 Medium 6.9

HCL DevOps Plan is susceptible to an information disclosure that can allow an attacker to focus their attacks based upon the information revealed.

21 Jul 2026, 05:00 UTC View advisory →
CVE-2023-33854 Medium 5.3

IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8, 5.0, 5.1, 5.2, and 5.3 could allow an authenticated user to bypass clie

22 Jun 2026, 14:31 UTC View advisory →
CVE-2023-20572 Medium 5.6

An observable timing discrepancy in the ASP could allow a privileged attacker to perform a brute-force attack against the hash message authentication code,

26 Jun 2026, 15:53 UTC View advisory →
CVE-2023-20540 Low 1.8

An observable timing discrepancy in the ASP could allow a privileged attacker to perform a brute-force attack against the hash message authentication code,

26 Jun 2026, 15:44 UTC View advisory →
CVE-2023-7355 Unscored

Erroneously reserved under wrong year by automation defect; never assigned.

07 Aug 2026 View advisory →
CVE-2023-7354 Unscored

Erroneously reserved under wrong year by automation defect; never assigned.

07 Aug 2026 View advisory →
CVE-2023-7353 Unscored

Erroneously reserved under wrong year by automation defect; never assigned.

07 Aug 2026 View advisory →
CVE-2022-50973 Critical 9.3

Yonyou KSOA 9.0 contains an unauthenticated arbitrary file upload vulnerability in the com.sksoft.bill.ImageUpload servlet that allows unauthenticated atta

02 Jul 2026, 17:04 UTC View advisory →
CVE-2022-4994 Unscored

In the Linux kernel, the following vulnerability has been resolved: KVM: x86: wean fast IN from emulator_pio_in Use __emulator_pio_in() directly for fast P

30 Jul 2026, 09:18 UTC View advisory →
CVE-2022-4990 High 7.3

** UNSUPPORTED WHEN ASSIGNED ** Improper Validation of Specified Quantity in Input in the ASUS AI Suite 3 driver allows a local user to bypass security val

03 Jul 2026, 02:00 UTC View advisory →
CVE-2022-4989 High 8.5

** UNSUPPORTED WHEN ASSIGNED ** Improper Validation of Specified Quantity in Input in the ASUS AI Suite 3 driver allows a local user to access unintended m

03 Jul 2026, 02:01 UTC View advisory →
CVE-2021-47987 High 7.7

Parse Server before 4.10.0 was affected by a supply chain incident in which incorrect version tags were pushed to the official repository pointing to an un

25 Jun 2026, 21:41 UTC View advisory →
CVE-2021-47986 High 7.7

Parse Server before 4.10.0 contains a supply chain vulnerability where incorrect version tags were pushed to the repository linking to unreviewed code in a

25 Jun 2026, 21:41 UTC View advisory →
CVE-2020-37256 Medium 5.1

Grav before 1.6.30 contains a cross-site scripting vulnerability in the Admin plugin page editor default security configuration. Privileged users with page

25 Jun 2026, 21:41 UTC View advisory →
CVE-2020-9713 Medium 5.5

Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.30523 and earlier are affected by an

23 Jun 2026, 17:47 UTC View advisory →
CVE-2020-9711 Medium 5.5

Acrobat Reader versions 2020.009.20074, 2020.001.30002, 2017.011.30171, 2015.006.30523 and earlier are affected by an out-of-bounds read vulnerability that

23 Jun 2026, 17:58 UTC View advisory →
CVE-2020-9695 High 7.8

Acrobat Reader versions 2020.009.20074, 2020.001.30002, 2017.011.30171, 2015.006.30523 and earlier are affected by an out-of-bounds write vulnerability tha

23 Jun 2026, 18:00 UTC View advisory →
CVE-2019-25764 High 7.3

**UNSUPPORTED WHEN ASSIGNED** Exposed IOCTL with Insufficient Access Control in the ASUS AURA SYNC driver allows a local user to bypass the driver's verifi

17 Jul 2026, 06:00 UTC View advisory →
CVE-2017-20242 Critical 9.3

Keysight IxChariot Endpoint before 9.5.102 contains a stack-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet t

04 Aug 2026, 18:52 UTC View advisory →
CVE-2017-20241 Critical 9.3

Keysight IxChariot Endpoint before 9.5.102 contains a heap-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet to

04 Aug 2026, 18:51 UTC View advisory →
CVE-2011-10043 Critical 9.8

Module::Load versions before 0.22 for Perl allow arbitrary modules outside of @INC to be loaded. Module names starting with "::" could be passed to the loa

07 Jul 2026, 11:46 UTC View advisory →