Sunday, 21 June 2026 (UTC) · 81 published
| Severity | CVE | Summary | CWE | Published |
|---|---|---|---|---|
| Critical 10 | CVE-2026-10561 | IBM Langflow OSS 1.0.0 through 1.9.3 has an vulnerability due to an improper isolation of Python execution combined with an authentication b | CWE-94 | 22 Jun 13:22 |
| Critical 9.6 | CVE-2026-28381 | The Snowflake datasource allows for GET/PUT commands, which can allow any user with access to run queries against the data source to read/wr | — | 22 Jun 13:20 |
| Critical 9.4 | CVE-2026-56423 | MISP Core contained broken access-control checks in the bulk deletion flows for Event Reports and Sharing Groups. The affected deleteSelecti | CWE-862 | 22 Jun 11:56 |
| Critical 9.3 | CVE-2026-56425 | The Azure Active Directory (AAD) authentication implementation contained multiple weaknesses in its OAuth 2.0 authorization flow that could | CWE-384 | 22 Jun 12:25 |
| Critical 9.3 | CVE-2026-56447 | MISP allowed an authenticated site administrator to set the Kafka_rdkafka_config setting to an arbitrary filesystem path. MISP subsequently | CWE-829 | 22 Jun 12:39 |
| Critical 9.4 | CVE-2026-7165 | The vulnerability is present in the ‘/addJugador’ endpoint: * The 'keyJugador' and 'keyJugadorObjectiu' parameters allow the modification of | CWE-20 | 22 Jun 12:46 |
| Critical 9.2 | CVE-2026-7166 | Vulnerability involving the exposure of sensitive data provided without adequate protection. The API exposes email and phone number data fro | CWE-200 | 22 Jun 12:47 |
| Critical 9.4 | CVE-2026-56422 | Multiple MISP core controllers and model capture paths accepted client-controlled request fields such as primary keys (id) and ownership/sco | CWE-639 | 22 Jun 11:43 |
| Critical 9.4 | CVE-2026-11746 | A vulnerability has been identified in centraldogma-server versions prior to 0.84.0, where enabling ZooKeeper replication without setting re | — | 22 Jun 02:35 |
| High 8.8 | CVE-2026-12602 | Incorrect default permissions in ArubaSign, affecting versions prior to v4.6.6. The vulnerability is caused by the assignment of inappropria | CWE-276 | 22 Jun 12:34 |
| High 7.7 | CVE-2026-42129 | The Loki datasource plugin's callResource handler contains a path traversal vulnerability. An authenticated Viewer-role user can escape the | — | 22 Jun 13:18 |
| High 8.8 | CVE-2026-54099 | A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. The WICD CSR auto-approver validate | CWE-269 | 22 Jun 12:46 |
| High 8.3 | CVE-2026-54100 | A flaw was found in the Windows Machine Config Operator (WMCO) for Red Hat OpenShift Container Platform. WMCO establishes SSH connections to | CWE-295 | 22 Jun 12:46 |
| High 7.1 | CVE-2026-56424 | MISP core contained multiple broken access-control flaws where authorization checks were performed against the wrong entity, or where owners | CWE-639 | 22 Jun 12:17 |
| High 8.7 | CVE-2026-56446 | MISP allowed a site administrator to configure an arbitrary filesystem path for the NDJSON error log used by JsonLogTool. Because log entrie | CWE-94 | 22 Jun 12:31 |
| High 8.3 | CVE-2026-56448 | A path traversal vulnerability exists in AIL Framework before the release containing commit 0041456af25da0cdea1c1c4624e46baff2731d8f. An aut | CWE-22 | 22 Jun 12:54 |
| High 7 | CVE-2026-6653 | Use After Free in libxml2's xmlParseInternalSubset from GNOME libxml2 version 2.9.11 to 2.11.0 allows a remote attacker to cause a denial-of | CWE-416 | 22 Jun 12:40 |
| High 7.3 | CVE-2026-9029 | The geomap panel's XYZ tile layer has a sanitize-then-interpolate ordering bug. sanitizeTextPanelContent() runs on the raw template string b | — | 22 Jun 13:18 |
| High 7.8 | CVE-2023-45795 | A cross-site scripting vulnerability in the Builder Component of Pilz PASvisu before 1.14.1 allows a local unauthenticated attacker to injec | CWE-79 | 22 Jun 09:06 |
| High 8.1 | CVE-2023-45796 | A stored cross-site scripting vulnerability in the Runtime component of Pilz PASvisu before 1.14.1 and PMI v8xx up to and including 2.0.3399 | CWE-79 | 22 Jun 09:04 |
| High 8.7 | CVE-2025-4994 | The SafeLine SL6 and SL6+ devices integrated into elevator emergency intercom systems are vulnerable to an authentication bypass. This vulne | CWE-305 | 22 Jun 08:10 |
| High 7.7 | CVE-2026-12581 | EasyFlow .NET developed by Digiwin has a Session Fixation vulnerability. If unauthenticated remote attackers replace a specific session ID f | CWE-384 | 22 Jun 09:30 |
| High 7.5 | CVE-2026-44914 | Apache NiFi 1.12.0 through 2.9.0 are missing authorization when replacing Process Groups that include extension components with specific Req | CWE-862 | 22 Jun 07:38 |
| High 7.1 | CVE-2026-4259 | The ultimate-woocommerce-auction-pro WordPress plugin through 2.4.5 does not sanitise and escape a parameter before outputting it back in th | — | 22 Jun 06:00 |
| High 7.1 | CVE-2026-6858 | The Transbank Webpay WordPress plugin before 1.14.0 does not sanitize and escape logs to be displayed, allowing unauthenticated users to per | — | 22 Jun 06:00 |
| High 8.8 | CVE-2026-8157 | The Vitepos WordPress plugin before 3.4.2 does not properly restrict the roles that can be assigned when creating new users via one of its R | — | 22 Jun 06:00 |
| High 7.3 | CVE-2026-6645 | An insecure process execution vulnerability exists in the pc-printer-updater.exe component of the PaperCut Print Deploy Client for Windows. | CWE-427 | 22 Jun 03:24 |
| High 8.8 | CVE-2026-11745 | A vulnerability has been identified in centraldogma-server-mirror-git versions prior to 0.84.0, where the Git mirror SSH client does not ver | — | 22 Jun 02:33 |
| High 7.1 | CVE-2026-8918 | A permissive list of allowed inputs in ASUS Armoury Crate allows a local administrator to perform arbitrary memory read/write operations or | CWE-183 | 22 Jun 02:00 |
| High 8.7 | CVE-2026-12806 | A vulnerability has been found in Edimax BR-6478AC V2 1.23. The impacted element is the function formWlSiteSurvey of the file /goform/formWl | CWE-120 | 21 Jun 19:30 |
| Medium 6.5 | CVE-2024-54178 | IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8,5.0,5.1,5.2,5.3 could allow an authenticated user to caus | CWE-770 | 22 Jun 13:15 |
| Medium 6 | CVE-2025-2669 | IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8, 5.0, 5.1, 5.2, 5.3 could allow a privileged user to perf | CWE-295 | 22 Jun 13:18 |
| Medium 5.4 | CVE-2025-33128 | IBM Engineering Workflow Management 7.0.3 through 7.0.3 Interim Fix 020, and 7.1 through 7.1 Interim Fix 007 is vulnerable to cross-site scr | CWE-79 | 22 Jun 13:20 |
| Medium 5.4 | CVE-2026-10601 | The Tempo and Loki datasource plugins construct backend HTTP requests by interpolating user-supplied input into URL paths without sanitizati | — | 22 Jun 13:18 |
| Medium 5.4 | CVE-2026-5139 | Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 fail to enforce administrator authorization on | CWE-862 | 22 Jun 13:34 |
| Medium 5.1 | CVE-2026-56450 | AIL did not restrict repeated failed attempts to verify a two-factor authentication (OTP) code. An attacker who had reached the 2FA verifica | CWE-307 | 22 Jun 13:02 |
| Medium 6.4 | CVE-2026-6062 | Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 Fail to validate channel ownership of an exist | CWE-639 | 22 Jun 13:40 |
| Medium 6.4 | CVE-2026-6673 | Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 fail to authenticate Atlassian Connect install | CWE-306 | 22 Jun 13:38 |
| Medium 6.9 | CVE-2026-7167 | The vulnerability arises when the system fails to properly validate the 'email' field during the authentication process, allowing unverified | CWE-200 | 22 Jun 12:50 |
| Medium 4.3 | CVE-2026-9162 | Mattermost versions 11.7.x <= 11.7.0, 11.6.x <= 11.6.2, 11.5.x <= 11.5.5, 10.11.x <= 10.11.17 fail to invalidate cached authentication state | CWE-613 | 22 Jun 13:36 |
| Medium 5.1 | CVE-2026-12580 | EasyFlow .NET developed by Digiwin has a Stored Cross-Site Scripting vulnerability, allowing authenticated remote attackers to inject persis | CWE-79 | 22 Jun 09:26 |
| Medium 5.1 | CVE-2026-12862 | Untrusted user data was passed verbatim to Excel exports for administrators. This allowed formula injection which can be used to compromise | CWE-148 | 22 Jun 08:26 |
| Medium 5.1 | CVE-2026-12863 | An unvalidated redirect was contained in Venueless' social login functionality and could be exploited for phishing using trusted domains. | CWE-601 | 22 Jun 08:41 |
| Medium 5.2 | CVE-2026-44913 | Improper escaping of database table names in the CaptureChangeMySQL Processor included with Apache NiFi 1.2.0 through 2.9.0 allows for injec | CWE-116 | 22 Jun 07:36 |
| Medium 6.3 | CVE-2026-54665 | Apache NiFi 0.0.1 through 2.9.0 support building qualified URLs from one of several HTTP request headers that provide an alternative to the | CWE-346 | 22 Jun 07:34 |
| Medium 5.3 | CVE-2026-7859 | The Motors WordPress plugin before 1.4.110 does not have proper authorisation and CSRF checks on one of its AJAX actions, allowing unauthent | — | 22 Jun 06:00 |
| Medium 6.9 | CVE-2026-11748 | A vulnerability has been identified in centraldogma-server-auth-shiro versions prior to 0.84.0, where the SearchFirstActiveDirectoryRealm su | — | 22 Jun 02:37 |
| Medium 4.8 | CVE-2026-12822 | A vulnerability was identified in langflow-ai langflow up to 1.9.3. This affects an unknown function of the component Bundle URL Loader. The | CWE-94 | 21 Jun 23:30 |
| Medium 4.8 | CVE-2026-12823 | A security flaw has been discovered in Browserbase up to 20260526. This impacts an unknown function of the component Autobrowse Trace Artifa | CWE-276 | 21 Jun 23:45 |
| Medium 5.3 | CVE-2026-12815 | A vulnerability has been found in coollabsio coolify 4.0.0. Impacted is an unknown function of the component Image Name Handler. Such manipu | CWE-78 | 21 Jun 23:00 |
| Medium 5.3 | CVE-2026-12821 | A vulnerability was determined in FlowiseAI Flowise up to 3.1.2. The impacted element is an unknown function of the file packages/components | CWE-22 | 21 Jun 23:15 |
| Medium 5.3 | CVE-2026-12813 | A vulnerability was detected in activepieces up to 0.83.0. This vulnerability affects the function handleUrlFile in the library packages/ser | CWE-918 | 21 Jun 22:30 |
| Medium 5.3 | CVE-2026-12814 | A flaw has been found in Comfast CF-WR631AX V3 up to 2.7.0.8. This issue affects the function system of the file /cgi-bin/mbox-config?sectio | CWE-78 | 21 Jun 22:45 |
| Medium 5.3 | CVE-2026-12811 | A weakness has been identified in kortix-ai suna up to 0.8.38. Affected by this issue is the function router.replace/router.push of the file | CWE-79 | 21 Jun 22:00 |
| Medium 5.1 | CVE-2026-12812 | A security vulnerability has been detected in Radware Cyber Controller up to 10.11.0. This affects an unknown part of the component HTML Rep | CWE-80 | 21 Jun 22:15 |
| Medium 5.3 | CVE-2026-12809 | A vulnerability was identified in Edimax BR-6478AC V2 1.23. Affected is the function wiz_5in1_redirect of the file /goform/wiz_5in1_redirect | CWE-77 | 21 Jun 21:30 |
| Medium 5.3 | CVE-2026-12810 | A security flaw has been discovered in Edimax BR-6478AC V2 1.23. Affected by this vulnerability is the function mp of the file /goform/mp of | CWE-77 | 21 Jun 21:45 |
| Medium 5.3 | CVE-2026-12808 | A vulnerability was determined in Edimax BR-6478AC V2 1.23. This impacts the function stainfo of the file /goform/stainfo of the component P | CWE-77 | 21 Jun 20:45 |
| Medium 5.3 | CVE-2026-12807 | A vulnerability was found in Edimax BR-6478AC V2 1.23. This affects the function setWAN of the file /goform/setWAN of the component POST Req | CWE-77 | 21 Jun 19:45 |
| Medium 5.3 | CVE-2026-12805 | A flaw has been found in OFFIS DCMTK up to 3.7.0. The affected element is the function XMLNode::parseFile in the library ofstd/libsrc/ofxml. | CWE-122 | 21 Jun 19:15 |
| Medium 5.3 | CVE-2026-12804 | A vulnerability was detected in lemonldap-ng up to 2.23.0. Impacted is an unknown function in the library lemonldap-ng-portal/lib/Lemonldap/ | CWE-601 | 21 Jun 18:30 |
| Medium 6.9 | CVE-2026-56411 | xmlwf in libexpat before 2.8.2 has an integer overflow in endDoctypeDecl via NOTATION declarations. | CWE-190 | 21 Jun 15:56 |
| Medium 4.9 | CVE-2026-56412 | libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking for various calls fr | CWE-416 | 21 Jun 15:58 |
| Medium 6.9 | CVE-2026-56403 | libexpat before 2.8.2 has an integer overflow in storeAtts. | CWE-190 | 21 Jun 15:43 |
| Medium 6.9 | CVE-2026-56404 | libexpat before 2.8.2 has an integer overflow in addBinding. | CWE-190 | 21 Jun 15:45 |
| Medium 6.9 | CVE-2026-56405 | libexpat before 2.8.2 has an integer overflow in getAttributeId. | CWE-190 | 21 Jun 15:47 |
| Medium 6.9 | CVE-2026-56406 | libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse. | CWE-190 | 21 Jun 15:48 |
| Medium 6.9 | CVE-2026-56407 | libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen. | CWE-190 | 21 Jun 15:49 |
| Medium 6.9 | CVE-2026-56408 | libexpat before 2.8.2 has an integer overflow in copyString. | CWE-190 | 21 Jun 15:51 |
| Medium 6.5 | CVE-2026-56409 | xmlwf in libexpat before 2.8.2 has an integer overflow for the output filename when -d outputDir is used. | CWE-190 | 21 Jun 15:52 |
| Medium 6.9 | CVE-2026-56410 | xmlwf in libexpat before 2.8.2 has an integer overflow in resolveSystemId. | CWE-190 | 21 Jun 15:55 |
| Low 2 | CVE-2026-12888 | An HTML injection vulnerability exists in the Google Chat webhook notification sent by Thinkst Applied Research Canarytokens, enabling Inter | CWE-74 | 22 Jun 13:05 |
| Low 3.8 | CVE-2026-8074 | Mattermost versions 11.7.x <= 11.7.0, 10.11.x <= 10.11.17 fail to enforce bot-specific permission checks on the user active status endpoint, | CWE-863 | 22 Jun 13:37 |
| Low 2.3 | CVE-2026-44911 | Authorization handling for component configuration verification requests in Apache NiFi 1.15.0 through 2.9.0 allows clients with read access | CWE-863 | 22 Jun 07:37 |
| Unscored | CVE-2025-66389 | GitHub Copilot 1.372.0 allows filesystem access outside of a workspace folder (without user approval) via a file-handler URI parameter to fe | — | 22 Jun 00:00 |
| Unscored | CVE-2026-11373 | Net::Statsite::Client versions through 1.1.0 for Perl allow metric injections. Net::Statsite::Client is a client for the statsite protocol, | CWE-93 | 22 Jun 11:28 |
| Unscored | CVE-2025-62198 | An authenticated user can perform XSS. This issue affects Apache Atlas versions 2.4.0 and earlier. Users are recommended to upgrade to versi | CWE-80 | 22 Jun 07:47 |
| Unscored | CVE-2025-66336 | Apache Doris MCP Server contains a SQL injection vulnerability in a metadata query path. A user-controlled database name is directly interpo | CWE-89 | 22 Jun 06:55 |
| Unscored | CVE-2026-10530 | The Pie Register WordPress plugin before 3.8.4.10 does not use sufficiently random values when generating its account verification tokens, a | — | 22 Jun 06:00 |
| Unscored | CVE-2026-4110 | The ultimate-woocommerce-auction-pro WordPress plugin through 2.4.5 does not sanitise and escape a parameter before outputting it back in th | — | 22 Jun 06:00 |
| Unscored | CVE-2026-12845 | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this ca | — | 21 Jun 22:53 |
Updated 22 Jun 2026 14:47 UTC. Each row links to a generated advisory page.