boxscore/security

A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?

Thursday, June 4, 2026 · all times UTC← 2026-06-03 · archive · 2026-06-05 →

Security Box Score — June 4, 2026 — page 2

Edition of June 4, 2026, continued — page 2 of 2. Back to page 1

Results (continued, ranked) — ranks 401–624 of 624
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2019-257375.311.2ScreetsLive Chat UnlimitedCWE-79Live Chat Unlimited 2.8.3 Stored Cross-Site Scripting
CVE-2026-48816.011.1Octopus DeployOctopus ServerCWE-862In affected versions of Octopus Server, permissions were not checked correctl…
CVE-2026-113018.810.9GoogleChromeCWE-125Inappropriate implementation in LiveCaption in Google Chrome prior to 149.0.7…
CVE-2026-110696.510.9GoogleChromeCWE-20Insufficient validation of untrusted input in Cast in Google Chrome prior to …
CVE-2026-108062.111.0mjperpinosastumasyCWE-284mjperpinosa stumasy add_post.php unrestricted upload
CVE-2026-108072.111.0mjperpinosastumasyCWE-284mjperpinosa stumasy change_profile_image.php unrestricted upload
CVE-2026-108152.111.0LakshayD02Hostel-Management-System-PHPCWE-862LakshayD02 Hostel-Management-System-PHP Admin Dashboard index.php authorization
CVE-2026-439848.910.7TautulliTautulliCWE-79Tautulli has stored XSS in logFile via guest-controlled log_js_errors input
CVE-2026-110587.510.7GoogleChromeCWE-472Integer overflow in CredentialProvider in Google Chrome on Windows prior to 1…
CVE-2026-111547.510.7GoogleChromeCWE-416Use after free in Dawn in Google Chrome prior to 149.0.7827.53 allowed a remo…
CVE-2026-111745.310.7GoogleChromeCWE-693Inappropriate implementation in Site Isolation in Google Chrome prior to 149.…
CVE-2026-112443.110.7GoogleChromeCWE-20Insufficient validation of untrusted input in WebAuthentication in Google Chr…
CVE-2026-112018.810.5GoogleChromeCWE-416Use after free in ServiceWorker in Google Chrome prior to 149.0.7827.53 allow…
CVE-2026-112958.810.5GoogleChromeCWE-269Inappropriate implementation in WebView in Google Chrome on Android prior to …
CVE-2026-111666.810.4GoogleChromeCWE-79Inappropriate implementation in SVG in Google Chrome prior to 149.0.7827.53 a…
CVE-2026-112657.510.2GoogleChromeCWE-352Inappropriate implementation in Autofill in Google Chrome prior to 149.0.7827…
CVE-2026-110314.310.1GoogleChromeCWE-20Insufficient validation of untrusted input in Password Manager in Google Chro…
CVE-2026-112939.610.1GoogleChromeCWE-416Use after free in Input in Google Chrome prior to 149.0.7827.53 allowed a rem…
CVE-2026-111326.510.0GoogleChromeCWE-346Insufficient policy enforcement in Paint in Google Chrome prior to 149.0.7827…
CVE-2026-111336.510.0GoogleChromeCWE-346Insufficient policy enforcement in Paint in Google Chrome prior to 149.0.7827…
CVE-2026-409305.410.1pnggrouplibpngCWE-436LIBPNG: Chunk smuggling in push-mode APNG parser via unconsumed chunk body
CVE-2026-112465.310.0GoogleChromeCWE-20Insufficient validation of untrusted input in IndexedDB in Google Chrome prio…
CVE-2026-111624.310.0GoogleChromeCWE-200Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 a…
CVE-2026-111858.110.0GoogleChromeCWE-416Use after free in V8 in Google Chrome prior to 149.0.7827.53 allowed an attac…
CVE-2026-110786.59.9GoogleChromeCWE-20Inappropriate implementation in FileSystem in Google Chrome prior to 149.0.78…
CVE-2026-111356.59.9GoogleChromeCWE-284Insufficient policy enforcement in Autofill in Google Chrome prior to 149.0.7…
CVE-2026-111426.59.9GoogleChromeCWE-639Insufficient policy enforcement in Paint in Google Chrome prior to 149.0.7827…
CVE-2026-111976.59.9GoogleChromeCWE-284Insufficient policy enforcement in Workers in Google Chrome prior to 149.0.78…
CVE-2026-112046.59.9GoogleChromeCWE-284Inappropriate implementation in Signin in Google Chrome on iOS prior to 149.0…
CVE-2026-112586.59.9GoogleChromeCWE-284Inappropriate implementation in File System Access in Google Chrome prior to …
CVE-2026-112756.59.9GoogleChromeCWE-284Inappropriate implementation in Page Info in Google Chrome on Android prior t…
CVE-2026-415187.69.8chartbrewchartbrewCWE-79Chartbrew has a stored DOM XSS via Chart Tooltip innerHTML (ChartDatasetConfi…
CVE-2026-112186.89.8GoogleChromeCWE-20Inappropriate implementation in PlatformIntegration in Google Chrome on Windo…
CVE-2026-112836.59.7GoogleChromeCWE-20Insufficient validation of untrusted input in Shortcuts in Google Chrome on M…
CVE-2026-108082.19.8itsourcecodeFees Management SystemCWE-74itsourcecode Fees Management System manage_student.php sql injection
CVE-2026-108092.19.8itsourcecodeFees Management SystemCWE-74itsourcecode Fees Management System manage_user.php sql injection
CVE-2026-108112.19.8itsourcecodeFees Management SystemCWE-74itsourcecode Fees Management System receipt.php sql injection
CVE-2025-526128.89.7HCLiControlCWE-1236HCL iControl was affected by Export CSV - CSV Injection vulnerability.
CVE-2026-112996.59.5GoogleChromeCWE-125Integer overflow in Fonts in Google Chrome prior to 149.0.7827.53 allowed a r…
CVE-2026-108607.99.4mispmispCWE-863MISP CRUDComponent delete validation bypass via operator precedence error
CVE-2026-112886.59.5GoogleChromeCWE-693Insufficient policy enforcement in CSS in Google Chrome prior to 149.0.7827.5…
CVE-2026-112896.59.5GoogleChromeCWE-1300Side-channel information leakage in Paint in Google Chrome prior to 149.0.782…
CVE-2025-674487.19.3n/an/aCWE-79The SMS module in Neterbit NW-431F Router 20241014-IR03 and before is vulnera…
CVE-2026-499406.59.3RRWONet::CIDR::SetCWE-1289Net::CIDR::Set versions through 0.20 for Perl accept non-ASCII IP addresses a…
CVE-2026-112139.69.2GoogleChromeCWE-20Insufficient validation of untrusted input in Reading Mode in Google Chrome p…
CVE-2026-112378.39.1GoogleChromeCWE-20Insufficient validation of untrusted input in Media in Google Chrome prior to…
CVE-2026-412076.99.0nettynetty-incubator-codec-ohttpCWE-330netty-incubator-codec-ohttp's HPKEContext operations may produce empty byte[]…
CVE-2026-110386.58.9GoogleChromeCWE-20Insufficient policy enforcement in Subresource Integrity in Google Chrome pri…
CVE-2026-490775.38.8Tips and Tricks HQWP eMemberCWE-497WordPress WP eMember plugin <= v10.2.2 - Sensitive Data Exposure vulnerability
CVE-2026-361756.88.8n/an/aCWE-20An issue in the U-Boot component of GNCC GP5 v7.1.76 allows physically-proxim…
CVE-2026-361829.88.7n/an/aCWE-328GNCC GP5 v7.1.76 was discovered to utilize a weak hashing algorithm to protec…
CVE-2026-111956.58.7GoogleChromeCWE-346Inappropriate implementation in MHTML in Google Chrome prior to 149.0.7827.53…
CVE-2026-111995.98.5GoogleChromeCWE-20Inappropriate implementation in WebRTC in Google Chrome prior to 149.0.7827.5…
CVE-2026-112574.38.5GoogleChromeCWE-284Inappropriate implementation in Browser in Google Chrome prior to 149.0.7827.…
CVE-2026-109268.88.3GoogleChromeCWE-416Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an att…
CVE-2026-113048.88.3GoogleChromeCWE-416Use after free in PDFium in Google Chrome prior to 149.0.7827.53 allowed a re…
CVE-2026-502266.98.3AcerConnect M6E 5G Portable WiFi RouterCWE-321Firmware Theft & IMEI Spoofing via Connect-OTA
CVE-2026-111066.58.3GoogleChromeCWE-352Inappropriate implementation in Media in Google Chrome prior to 149.0.7827.53…
CVE-2026-112706.58.3GoogleChromeCWE-352Inappropriate implementation in UI in Google Chrome on Android prior to 149.0…
CVE-2026-112494.78.2GoogleChromeCWE-416Use after free in Network in Google Chrome prior to 149.0.7827.53 allowed a r…
CVE-2026-112924.38.2GoogleChromeCWE-693Insufficient policy enforcement in Blink in Google Chrome prior to 149.0.7827…
CVE-2026-112403.18.2GoogleChromeCWE-20Insufficient validation of untrusted input in Loader in Google Chrome prior t…
CVE-2026-112513.18.2GoogleChromeCWE-20Insufficient policy enforcement in Password Manager in Google Chrome prior to…
CVE-2026-112106.58.1GoogleChromeCWE-284Inappropriate implementation in Safe Browsing in Google Chrome prior to 149.0…
CVE-2026-111946.57.9GoogleChromeCWE-346Inappropriate implementation in Network in Google Chrome prior to 149.0.7827.…
CVE-2026-112804.37.9GoogleChromeCWE-20Inappropriate implementation in Signin in Google Chrome on iOS prior to 149.0…
CVE-2026-112854.37.9GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-425404.37.9dfir-irisiris-webCWE-915IRIS has a Mass Assignment issue
CVE-2026-110346.17.8GoogleChromeCWE-20Insufficient validation of untrusted input in Tab Group Sync in Google Chrome…
CVE-2026-112594.37.8GoogleChromeCWE-20Insufficient validation of untrusted input in Cast in Google Chrome prior to …
CVE-2026-112604.37.8GoogleChromeCWE-693Inappropriate implementation in Permissions in Google Chrome prior to 149.0.7…
CVE-2026-112644.37.8GoogleChromeCWE-693Policy bypass in Content Security Policy in Google Chrome prior to 149.0.7827…
CVE-2026-112368.37.7GoogleChromeCWE-602Insufficient policy enforcement in Web Bluetooth in Google Chrome prior to 14…
CVE-2026-502195.97.7libexpat projectlibexpatCWE-416libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_GetB…
CVE-2026-110928.87.4GoogleChromeCWE-602Insufficient policy enforcement in DevTools in Google Chrome prior to 149.0.7…
CVE-2026-113024.37.5GoogleChromeCWE-284Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS pri…
CVE-2026-112334.77.3GoogleChromeCWE-20Insufficient policy enforcement in FoldableAPIs in Google Chrome prior to 149…
CVE-2026-112344.37.3GoogleChromeCWE-693Inappropriate implementation in FoldableAPIs in Google Chrome prior to 149.0.…
CVE-2026-112473.17.3GoogleChromeCWE-693Insufficient policy enforcement in CustomTabs in Google Chrome on Android pri…
CVE-2026-110326.57.1GoogleChromeCWE-346Inappropriate implementation in Password Manager in Google Chrome prior to 14…
CVE-2026-110836.57.1GoogleChromeCWE-346Inappropriate implementation in Password Manager in Google Chrome prior to 14…
CVE-2026-110846.57.1GoogleChromeCWE-346Inappropriate implementation in Password Manager in Google Chrome prior to 14…
CVE-2026-111296.57.1GoogleChromeCWE-352Inappropriate implementation in Extensions in Google Chrome prior to 149.0.78…
CVE-2026-111346.57.1GoogleChromeCWE-352Inappropriate implementation in Media in Google Chrome prior to 149.0.7827.53…
CVE-2026-111396.57.1GoogleChromeCWE-352Inappropriate implementation in Paint in Google Chrome prior to 149.0.7827.53…
CVE-2026-111766.57.1GoogleChromeCWE-346Inappropriate implementation in Media in Google Chrome prior to 149.0.7827.53…
CVE-2026-112006.57.1GoogleChromeCWE-346Inappropriate implementation in WebRTC in Google Chrome prior to 149.0.7827.5…
CVE-2026-112206.57.1GoogleChromeCWE-20Insufficient validation of untrusted input in Navigation in Google Chrome pri…
CVE-2026-112236.57.1GoogleChromeCWE-20Insufficient validation of untrusted input in Network in Google Chrome prior …
CVE-2026-108545.37.2mispmispCWE-200Unauthorized exposure of private galaxies in MISP event template creation
CVE-2026-108645.37.1mispmispCWE-200MISP Dashboard widget field selection may expose restricted user and organisa…
CVE-2026-111924.37.1GoogleChromeCWE-20Insufficient validation of untrusted input in Password Manager in Google Chro…
CVE-2026-112454.37.2GoogleChromeCWE-451Inappropriate implementation in Payments in Google Chrome prior to 149.0.7827…
CVE-2026-112544.37.2GoogleChromeCWE-451Inappropriate implementation in Permissions in Google Chrome prior to 149.0.7…
CVE-2026-112614.37.2GoogleChromeCWE-20Inappropriate implementation in PDF in Google Chrome prior to 149.0.7827.53 a…
CVE-2026-112967.57.0GoogleChromeCWE-269Inappropriate implementation in ImageCapture in Google Chrome prior to 149.0.…
CVE-2026-111436.57.0GoogleChromeCWE-122Out of bounds read in Extensions in Google Chrome on Linux prior to 149.0.782…
CVE-2026-425386.37.0dfir-irisiris-webCWE-434IRIS has an Insecure File Upload
CVE-2026-112524.37.0GoogleChromeCWE-284Insufficient policy enforcement in Content Settings in Google Chrome prior to…
CVE-2026-112744.37.0GoogleChromeCWE-284Inappropriate implementation in DOM Distiller in Google Chrome on iOS prior t…
CVE-2026-109427.86.9GoogleChromeCWE-20Inappropriate implementation in UI in Google Chrome on Windows prior to 149.0…
CVE-2026-480406.86.9nettynetty-incubator-codec-ohttpCWE-125netty-incubator-codec-ohttp's Incorrect Native Pointer Derivation in Pooled D…
CVE-2026-425475.46.9dfir-irisiris-webCWE-863IRIS Alerts Can be Falsely Attributed to Customers
CVE-2026-423294.76.9dfir-irisiris-webCWE-602Iris has an Open Redirect issue
CVE-2026-425434.36.9dfir-irisiris-webCWE-650IRIS has a Cross-Site Request Forgery (CSRF) issue
CVE-2026-443937.46.7n/an/aCWE-297An issue was discovered in OpenStack oslo.messaging 1.0.0 through 17.3.0. The…
CVE-2026-111896.56.6GoogleChromeCWE-20Insufficient validation of untrusted input in DevTools in Google Chrome prior…
CVE-2026-111226.16.6GoogleChromeCWE-358Inappropriate implementation in Keyboard in Google Chrome prior to 149.0.7827…
CVE-2026-111866.16.6GoogleChromeCWE-79Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 a…
CVE-2026-112226.56.5GoogleChromeCWE-451Incorrect security UI in Tab Strip in Google Chrome prior to 149.0.7827.53 al…
CVE-2019-257395.16.6GigtodoscriptGigToDoCWE-79GigToDo Freelance Marketplace Script 1.3 Persistent XSS
CVE-2019-257425.16.6FruitfulcodeZoner Real EstateCWE-79WordPress Theme Zoner Real Estate 4.1.1 Persistent XSS
CVE-2019-257435.16.6SoliloquywpSoliloquy LiteCWE-79WordPress Soliloquy Lite 2.5.6 Persistent Cross-Site Scripting
CVE-2019-257445.16.6Popup-BuilderPopup BuilderCWE-79WordPress Popup Builder 3.49 Persistent Cross-Site Scripting
CVE-2026-112385.96.5GoogleChromeCWE-306Inappropriate implementation in DevTools in Google Chrome prior to 149.0.7827…
CVE-2026-111836.56.4GoogleChromeCWE-125Out of bounds read in GWP-ASan in Google Chrome prior to 149.0.7827.53 allowe…
CVE-2025-526064.36.4HCLiControlCWE-209HCL iControl was affected by Weak Input Validation vulnerability. .
CVE-2026-492037.26.2AcerConnect M6E 5G Portable WiFi RouterCWE-287Unauthenticated eSIM Configuration Manipulation
CVE-2026-111276.56.3GoogleChromeCWE-358Inappropriate implementation in WebAPKs in Google Chrome on Android prior to …
CVE-2026-112664.36.2GoogleChromeCWE-693Inappropriate implementation in SafeBrowsing in Google Chrome prior to 149.0.…
CVE-2026-452872.16.2open-telemetrygo.opentelemetry.io/otel/schema/v1.1CWE-772OpenTelemetry-Go's Schema ParseFile leaks file descriptors on each parse
CVE-2026-502149.36.2AcerConnect M6E 5G Portable WiFi RouterCWE-345Shared Secret Quota Inflation
CVE-2026-484806.66.1nettynetty-incubator-codec-ohttpCWE-325netty-incubator-codec-ohttp OHttpVersionChunkDraft's Missing Final-Chunk Enfo…
CVE-2026-110266.56.0GoogleChromeCWE-284Inappropriate implementation in Extensions in Google Chrome prior to 149.0.78…
CVE-2026-502127.15.9AcerConnect M6E 5G Portable WiFi RouterCWE-400Arbitrary Remote Device Unbinding
CVE-2026-110366.55.9GoogleChromeCWE-346Inappropriate implementation in DOM in Google Chrome prior to 149.0.7827.53 a…
CVE-2026-110816.55.9GoogleChromeCWE-346Inappropriate implementation in Canvas in Google Chrome prior to 149.0.7827.5…
CVE-2026-111906.55.9GoogleChromeCWE-284Inappropriate implementation in Extensions in Google Chrome prior to 149.0.78…
CVE-2026-108056.75.7Red HatRed Hat Enterprise Linux 8CWE-78Networkmanager: networkmanager: local privilege escalation via malformed mud …
CVE-2026-111455.35.7GoogleChromeCWE-362Race in Geolocation in Google Chrome on Android prior to 149.0.7827.53 allowe…
CVE-2026-111554.35.8GoogleChromeCWE-352Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 a…
CVE-2026-111564.35.8GoogleChromeCWE-352Inappropriate implementation in CSS in Google Chrome prior to 149.0.7827.53 a…
CVE-2026-111614.35.8GoogleChromeCWE-346Inappropriate implementation in DataTransfer in Google Chrome prior to 149.0.…
CVE-2026-112164.35.7GoogleChromeCWE-451Incorrect security UI in File Input in Google Chrome prior to 149.0.7827.53 a…
CVE-2026-112146.55.5GoogleChromeCWE-346Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2025-526095.35.4HCLiControlCWE-693HCL iControl was affected by Missing Security Headers vulnerability.
CVE-2026-492046.95.3AcerConnect M6E 5G Portable WiFi RouterCWE-798Hard-coded AWS Cognito Testing Accounts
CVE-2026-111506.15.2GoogleChromeCWE-79Inappropriate implementation in XML in Google Chrome prior to 149.0.7827.53 a…
CVE-2026-112736.15.2GoogleChromeCWE-20Insufficient validation of untrusted input in Omnibox in Google Chrome prior …
CVE-2026-112914.35.2GoogleChromeCWE-346Inappropriate implementation in Android Autofill in Google Chrome on Android …
CVE-2026-112984.35.3GoogleChromeCWE-346Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-110486.55.2GoogleChromeCWE-346Inappropriate implementation in Extensions in Google Chrome prior to 149.0.78…
CVE-2026-112156.55.1GoogleChromeCWE-451Inappropriate implementation in Cronet in Google Chrome on Android prior to 1…
CVE-2026-112256.55.1GoogleChromeCWE-451Inappropriate implementation in WebUI in Google Chrome prior to 149.0.7827.53…
CVE-2026-112276.55.1GoogleChromeCWE-451Incorrect security UI in Tab Hover Cards in Google Chrome prior to 149.0.7827…
CVE-2026-111846.35.1GoogleChromeCWE-602Insufficient policy enforcement in Actor in Google Chrome prior to 149.0.7827…
CVE-2025-526114.35.1HCLiControlCWE-209HCL iControl was affected by Unhandled Exception - Stack Trace Disclosure vul…
CVE-2026-108555.14.8mispmispCWE-862MISP Event template importer authorization bypass
CVE-2026-111264.34.8GoogleChromeCWE-20Inappropriate implementation in DevTools in Google Chrome prior to 149.0.7827…
CVE-2026-112194.34.7GoogleChromeCWE-693Inappropriate implementation in Navigation in Google Chrome prior to 149.0.78…
CVE-2026-112284.34.8GoogleChromeCWE-451Inappropriate implementation in File Input in Google Chrome prior to 149.0.78…
CVE-2026-112864.34.8GoogleChromeCWE-20Insufficient validation of untrusted input in Wallet in Google Chrome prior t…
CVE-2026-112944.34.8GoogleChromeCWE-451Inappropriate implementation in Passwords in Google Chrome prior to 149.0.782…
CVE-2026-113004.34.8GoogleChromeCWE-451Inappropriate implementation in Permissions in Google Chrome prior to 149.0.7…
CVE-2026-111876.34.6GoogleChromeCWE-284Inappropriate implementation in Glic in Google Chrome prior to 149.0.7827.53 …
CVE-2026-111784.34.6GoogleChromeCWE-346Insufficient policy enforcement in WebView in Google Chrome on Android prior …
CVE-2026-112266.54.5GoogleChromeCWE-346Insufficient policy enforcement in PreviewTab in Google Chrome on Android pri…
CVE-2026-112176.54.4GoogleChromeCWE-346Inappropriate implementation in Fenced Frames in Google Chrome prior to 149.0…
CVE-2026-112435.44.3GoogleChromeCWE-346Inappropriate implementation in Downloads in Google Chrome prior to 149.0.782…
CVE-2026-112214.34.3GoogleChromeCWE-20Insufficient validation of untrusted input in PointerLock in Google Chrome pr…
CVE-2026-112534.34.3GoogleChromeCWE-362Inappropriate implementation in Permissions in Google Chrome prior to 149.0.7…
CVE-2019-257338.64.2nsauditorNetShareWatcherCWE-120NetShareWatcher 1.5.8.0 SEH Buffer Overflow
CVE-2019-257358.64.2AllplayerAllPlayerCWE-120AllPlayer 7.4 Local Buffer Overflow via SEH Unicode
CVE-2026-111816.34.2GoogleChromeCWE-346Inappropriate implementation in Media Session in Google Chrome prior to 149.0…
CVE-2026-108565.14.3mispmispCWE-601Open redirect in MISP dashboard button widget URL handling
CVE-2026-112056.14.2GoogleChromeCWE-20Insufficient validation of untrusted input in Chrome for iOS in Google Chrome…
CVE-2026-439858.84.1TautulliTautulliCWE-352Taultulli has CSRF in /configUpdate via missing anti-CSRF and method restrict…
CVE-2019-257368.64.1LabfLabF nfsAxeCWE-120LabF nfsAxe 3.7 Ping Client Buffer Overflow
CVE-2026-112325.44.1GoogleChromeCWE-451Inappropriate implementation in TabGroups in Google Chrome prior to 149.0.782…
CVE-2026-361784.64.0n/an/aCWE-212The factory reset functionality in GNCC GP5 v7.1.76 fails to clear sensitive …
CVE-2024-68586.53.8Arista NetworksEOSCWE-1287In Arista’s EOS when in 802.1X mode, multi-auth unauthenticated hosts might b…
CVE-2026-112786.53.8GoogleChromeCWE-346Inappropriate implementation in CustomTabs in Google Chrome on Android prior …
CVE-2026-502089.23.7AcerConnect M6E 5G Portable WiFi RouterCWE-330Permissive TrustAllCerts TLS Verification
CVE-2026-361744.63.6n/an/aCWE-256GNCC GP5 v7.1.76 was discovered to store sensitive wireless network informati…
CVE-2026-112674.33.5GoogleChromeCWE-602Insufficient policy enforcement in Extensions in Google Chrome prior to 149.0…
CVE-2026-491925.33.4AcerConnect M6E 5G Portable WiFi RouterCWE-639Summary Service Insecure Direct Object Reference
CVE-2026-111486.53.3GoogleChromeCWE-352Inappropriate implementation in Payments in Google Chrome on Android prior to…
CVE-2026-112124.33.3GoogleChromeCWE-284Insufficient policy enforcement in DevTools in Google Chrome prior to 149.0.7…
CVE-2026-361804.63.2n/an/aCWE-284A lack of runtime integrity in GNCC GP5 v7.1.76 allows physically-proximate a…
CVE-2026-110624.33.2GoogleChromeCWE-602Insufficient policy enforcement in Extensions in Google Chrome prior to 149.0…
CVE-2026-502078.53.1AcerConnect M6E 5G Portable WiFi RouterCWE-22Local Modem Manipulation via Binder Interfaces
CVE-2026-113094.33.0GoogleChromeCWE-346Insufficient policy enforcement in History in Google Chrome prior to 149.0.78…
CVE-2026-255518.52.9Seagull Software, LLC.BarTender 2021CWE-502Seagull Software BarTender Deserialization Privilege Escalation via .NET Remo…
CVE-2026-77646.82.9Morse MicroHaLowLink 2CWE-125Out-of-bounds read in morse.ko Vendor IE processing
CVE-2026-410108.72.2Cloud Foundry FoundationBOSH DirectorCWE-78ReleaseJob#unpack builds job_dir = File.join(@release_dir, 'jobs', name) and …
CVE-2026-214045.82.2NAVTORNavBoxCWE-798NAVTOR NavBox Use of Hard-coded Credentials
CVE-2026-111575.42.1GoogleChromeCWE-94Script injection in Accessibility in Google Chrome prior to 149.0.7827.53 all…
CVE-2026-410118.71.8Cloud Foundry FoundationBOSHCWE-78PackagePersister.validate_tgz builds "tar -tf #{tgz} 2>&1" where tgz = File.j…
CVE-2026-112418.01.5GoogleChromeCWE-20Insufficient validation of untrusted input in Cast in Google Chrome prior to …
CVE-2026-110727.81.2GoogleChromeCWE-416Use after free in WebView in Google Chrome on Android prior to 149.0.7827.53 …
CVE-2026-109984.01.2GoogleChromeCWE-125Out of bounds read in Media in Google Chrome prior to 149.0.7827.53 allowed a…
CVE-2026-473186.11.2Samsung Open SourcerlottieCWE-121Stack-based buffer overflow vulnerability in Samsung Open Source rlottie allo…
CVE-2025-126948.51.1ForcepointVPN ClientCWE-250Local Privilege Escalation in VPN Client
CVE-2026-473206.11.1Samsung Open SourcerlottieCWE-674Access of uninitialized pointer, Uncontrolled Recursion vulnerability in Sams…
CVE-2026-495106.11.1Samsung Open SourcerlottieCWE-190Integer overflow or wraparound vulnerability in Samsung Open Source rlottie a…
CVE-2026-89166.11.1Samsung Open SourcerlottieCWE-787Out-of-bounds write vulnerability in Samsung Open Source rlottie allows Overf…
CVE-2026-103056.11.1Samsung Open SourcerlottieCWE-125Out-of-bounds read vulnerability in Samsung Open Source rlottie allows Overre…
CVE-2026-473066.11.1Samsung Open SourcerlottieCWE-674Uncontrolled Recursion vulnerability in Samsung Open Source rlottie allows Ov…
CVE-2026-473196.11.1Samsung Open SourcerlottieCWE-789Memory allocation with excessive size value vulnerability in Samsung Open Sou…
CVE-2026-108031.11.1n/aMLflowCWE-327MLflow Dataset Digest Computation digest_utils.py mlflow.data.digest_utils we…
CVE-2026-112697.11.0GoogleChromeCWE-829Inappropriate implementation in Extensions in Google Chrome prior to 149.0.78…
CVE-2025-623383.30.9HCLSoftwareBigFix Cloud Lifecycle Management—HCL BigFix Cloud Lifecycle Management is affected by lack of input validation
CVE-2026-113086.30.9GoogleChromeCWE-269Inappropriate implementation in Extensions in Google Chrome prior to 149.0.78…
CVE-2026-502099.30.8AcerConnect M6E 5G Portable WiFi RouterCWE-732MDM Server Registration Overriding
CVE-2026-491898.50.8AcerConnect M6E 5G Portable WiFi RouterCWE-269Broadcast Receiver Privilege Escalation
CVE-2026-418597.10.8Cloud Foundry FoundationBOSHCWE-295A network man-in-the-middle between nats-sync and the BOSH director can steal…
CVE-2025-526084.30.8HCLiControlCWE-614HCL iControl was affected by Missing Cookie Attributes vulnerability.
CVE-2026-112296.10.7GoogleChromeCWE-269Inappropriate implementation in Enterprise in Google Chrome prior to 149.0.78…
CVE-2026-361767.10.6n/an/aCWE-312GNCC GP5 v7.1.76 was discovered to store pre-signed Backblaze B2 upload URLs …
CVE-2026-112977.70.5GoogleChromeCWE-20Insufficient validation of untrusted input in Reader Mode in Google Chrome on…
CVE-2026-108141.10.5milvus-iomilvusCWE-327milvus-io milvus Grantee ID Hash kv_catalog.go weak hash
CVE-2026-112815.00.3GoogleChromeCWE-472Integer overflow in Chromoting in Google Chrome on Windows prior to 149.0.782…
CVE-2026-111588.60.3GoogleChromeCWE-20Insufficient validation of untrusted input in Downloads in Google Chrome on M…
CVE-2026-108041.10.3n/aStreamlitCWE-327Streamlit Palette hashing.py weak hash
CVE-2026-111037.80.2GoogleChromeCWE-269Inappropriate implementation in Installer in Google Chrome on Windows prior t…
CVE-2026-112765.10.2GoogleChromeCWE-269Inappropriate implementation in Cast in Google Chrome prior to 149.0.7827.53 …
CVE-2026-110357.30.2GoogleChromeCWE-20Inappropriate implementation in Custom Tabs in Google Chrome on Android prior…
CVE-2026-111157.30.2GoogleChromeCWE-416Use after free in Updater in Google Chrome on Windows prior to 149.0.7827.53 …
CVE-2026-108002.00.1PaddlePaddleFastDeployCWE-327PaddlePaddle FastDeploy MultimodalHasher hasher.py hash_features weak hash
CVE-2026-108011.10.1modelscopems-swiftCWE-327modelscope ms-swift PIL Image Cache Key base.py Template._save_pil_image weak…
CVE-2026-108121.10.1zilliztechGPTCacheCWE-327zilliztech GPTCache Cache Key pre.py BufferedReader.peek weak hash
CVE-2026-108131.10.1n/aLMCacheCWE-327LMCache KV Cache utils.py hex_hash_to_int16 weak hash
CVE-2026-418607.10.1Cloud Foundry FoundationBOSHCWE-326CWE-326 in BOSH allows a local attacker to steal Basic-auth credentials or re…
CVE-2026-112905.00.0GoogleChromeCWE-472Integer overflow in WebView in Google Chrome on Android prior to 149.0.7827.5…