AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N H H 9.1 .0267 84.6 —
AFFECTED Product Versions Fixed Avada (Fusion) Builder unspecified —
TIMELINE May 15 Reserved by CNA Jun 19 Published (CNA: Wordfence)
A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?
194 CVEs published, led by Apache Software Foundation (12).
194 CVEs published June 19, 2026: 20 critical, 115 high, 51 medium, 8 low; 0 in the KEV catalog at press time; 61 with a public exploit reference; 0 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 169 in the results table.
| MTD | YTD | 2025 same span | 2025 full | |
|---|---|---|---|---|
| CVEs published | 5059 | 9520 | — | — |
| KEV catalog size | 1675 | |||
Publication counts reflect the record since May 20, 2026 (archive start); KEV figures are catalog-wide.
Prior-year comparisons begin when the archive covers a full year; archive begins May 20, 2026.
439 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| linux | 99 | 1066 | 84 | 667 | 314 | 1 | 11 | 2 | 0.2 | 7.8 | .0013 | -118 ▼ |
| 684 | 859 | 83 | 454 | 293 | 29 | 77 | 6 | 0.7 | 8.1 | .0023 | +684 ▲ | |
| microsoft | 220 | 756 | 58 | 520 | 172 | 6 | 286 | 19 | 2.5 | 7.8 | .0045 | +76 ▲ |
| red hat | 75 | 169 | 8 | 72 | 78 | 11 | 2 | 0 | 0.0 | 6.7 | .0029 | +69 ▲ |
| apple | 14 | 66 | 1 | 21 | 42 | 2 | 88 | 7 | 10.6 | 5.7 | .0019 | -1 ▼ |
| canonical | 1 | 15 | 0 | 4 | 6 | 5 | 0 | 0 | 0.0 | 5.5 | .0009 | +1 ▲ |
| freebsd | 0 | 7 | 0 | 5 | 2 | 0 | 0 | 0 | 0.0 | 7.8 | .0020 | 0 |
| suse | 4 | 6 | 1 | 4 | 1 | 0 | 0 | 0 | 0.0 | 8.6 | .0029 | +4 ▲ |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cisco | 9 | 21 | 6 | 5 | 10 | 0 | 56 | 10 | 47.6 | 7.2 | .0438 | +8 ▲ |
| netgear | 17 | 17 | 0 | 0 | 16 | 1 | 0 | 0 | 0.0 | 4.3 | .0024 | +17 ▲ |
| palo alto networks | 9 | 11 | 1 | 2 | 7 | 1 | 13 | 2 | 18.2 | 5.9 | .0022 | +7 ▲ |
| ivanti | 4 | 9 | 4 | 5 | 0 | 0 | 25 | 5 | 55.6 | 8.8 | .5187 | +3 ▲ |
| checkpoint | 3 | 9 | 1 | 5 | 3 | 0 | 3 | 1 | 11.1 | 7.5 | .0410 | +3 ▲ |
| fortinet | 2 | 9 | 4 | 3 | 2 | 0 | 28 | 3 | 33.3 | 8.3 | .0076 | +1 ▲ |
| f5 | 6 | 8 | 4 | 3 | 1 | 0 | 4 | 1 | 12.5 | 8.9 | .0225 | +5 ▲ |
| ubiquiti | 5 | 8 | 4 | 4 | 0 | 0 | 3 | 0 | 0.0 | 8.9 | .0052 | +5 ▲ |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| apache | 86 | 120 | 18 | 42 | 52 | 7 | 33 | 1 | 0.8 | 6.8 | .0050 | +82 ▲ |
| mozilla | 49 | 55 | 11 | 18 | 26 | 0 | 9 | 0 | 0.0 | 7.3 | .0026 | +44 ▲ |
| gitlab | 11 | 18 | 0 | 4 | 12 | 2 | 4 | 2 | 11.1 | 4.8 | .0024 | +11 ▲ |
| docker | 4 | 7 | 0 | 5 | 2 | 0 | 0 | 0 | 0.0 | 8.2 | .0016 | +4 ▲ |
| drupal | 0 | 5 | 1 | 1 | 3 | 0 | 4 | 1 | 20.0 | 5.1 | .0026 | 0 |
| github | 0 | 2 | 1 | 1 | 0 | 0 | 0 | 0 | 0.0 | 8.1 | .0347 | 0 |
| wordpress | 0 | 0 | 0 | 0 | 0 | 0 | 2 | 0 | — | — | — | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| oracle | 242 | 270 | 132 | 116 | 18 | 4 | 27 | 2 | 0.7 | 8.8 | .0040 | +242 ▲ |
| adobe | 129 | 131 | 4 | 50 | 75 | 2 | 19 | 2 | 1.5 | 5.5 | .0021 | +129 ▲ |
| ibm | 11 | 60 | 13 | 29 | 18 | 0 | 6 | 0 | 0.0 | 7.5 | .0028 | +11 ▲ |
| progress | 5 | 9 | 1 | 7 | 1 | 0 | 6 | 0 | 0.0 | 7.5 | .0036 | +5 ▲ |
| solarwinds | 3 | 6 | 2 | 3 | 1 | 0 | 10 | 4 | 66.7 | 7.8 | .6082 | +3 ▲ |
| veeam | 1 | 4 | 2 | 2 | 0 | 0 | 1 | 0 | 0.0 | 9.0 | .0052 | +1 ▲ |
| zohocorp | 0 | 2 | 0 | 1 | 1 | 0 | 0 | 0 | 0.0 | 7.1 | .0104 | 0 |
| atlassian | 0 | 0 | 0 | 0 | 0 | 0 | 13 | 0 | — | — | — | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| synology | 5 | 23 | 2 | 5 | 13 | 3 | 0 | 0 | 0.0 | 5.6 | .0025 | +5 ▲ |
| d-link | 9 | 11 | 0 | 4 | 2 | 5 | 3 | 0 | 0.0 | 5.5 | .0058 | +9 ▲ |
| siemens | 7 | 8 | 0 | 4 | 4 | 0 | 0 | 0 | 0.0 | 7.5 | .0020 | +6 ▲ |
| rockwell automation | 7 | 7 | 1 | 5 | 1 | 0 | 0 | 0 | 0.0 | 8.7 | .0030 | +7 ▲ |
| abb | 5 | 5 | 0 | 4 | 1 | 0 | 0 | 0 | 0.0 | 7.2 | .0018 | +5 ▲ |
| moxa | 5 | 5 | 0 | 3 | 2 | 0 | 0 | 0 | 0.0 | 7.0 | .0029 | +5 ▲ |
| dahua | 3 | 3 | 0 | 1 | 1 | 1 | 0 | 0 | 0.0 | 6.9 | .0036 | +3 ▲ |
| mitsubishi electric | 3 | 3 | 0 | 3 | 0 | 0 | 0 | 0 | 0.0 | 8.7 | .0064 | +3 ▲ |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| spring | 71 | 72 | 2 | 30 | 39 | 1 | 0 | 0 | 0.0 | 6.5 | .0023 | +71 ▲ |
| openclaw | 61 | 67 | 0 | 35 | 22 | 10 | 0 | 0 | 0.0 | 7.0 | .0021 | +61 ▲ |
| sourcecodester | 37 | 59 | 0 | 0 | 25 | 34 | 0 | 0 | 0.0 | 2.1 | .0026 | +37 ▲ |
| themerex | 58 | 58 | 5 | 53 | 0 | 0 | 0 | 0 | 0.0 | 8.1 | .0043 | +58 ▲ |
| edimax | 0 | 51 | 0 | 32 | 0 | 19 | 1 | 0 | 0.0 | 7.4 | .0059 | 0 |
| concrete cms | 2 | 46 | 1 | 11 | 13 | 21 | 0 | 0 | 0.0 | 6.2 | .0015 | +2 ▲ |
| dell | 27 | 45 | 1 | 21 | 23 | 0 | 2 | 1 | 2.2 | 6.7 | .0015 | +27 ▲ |
| open ises | 0 | 44 | 2 | 21 | 21 | 0 | 0 | 0 | 0.0 | 7.1 | .0021 | 0 |
| CVE | EPSS | %ile | CVSS |
|---|---|---|---|
| CVE-2026-10520 | .9991 | 100.0 | 10.0 |
| CVE-2026-20253 | .9694 | 99.9 | 9.8 |
| CVE-2026-35273 | .9547 | 99.9 | 9.8 |
| CVE-2026-9082 | .8832 | 99.8 | 9.8 |
| CVE-2026-50751 | .8377 | 99.7 | 9.3 |
| CVE-2026-48907 | .7810 | 99.5 | 10.0 |
| CVE-2026-49160 | .5383 | 98.9 | 7.5 |
| CVE-2026-10523 | .5187 | 98.9 | 9.8 |
| CVE-2026-28318 | .4001 | 98.5 | 7.5 |
| CVE-2026-53435 | .3766 | 98.4 | 8.8 |
| CVE | CVSS | EPSS | Note |
|---|---|---|---|
| CVE-2026-10520 | 10.0 | .9991 | KEV |
| CVE-2026-48907 | 10.0 | .7810 | KEV |
| CVE-2026-48172 | 10.0 | .1891 | KEV |
| CVE-2026-45087 | 10.0 | .1296 | |
| CVE-2026-49777 | 10.0 | .0166 | |
| CVE-2026-8054 | 10.0 | .0158 | |
| CVE-2026-49199 | 10.0 | .0134 | |
| CVE-2026-11429 | 10.0 | .0115 | |
| CVE-2026-49257 | 10.0 | .0093 | |
| CVE-2026-45480 | 10.0 | .0090 |
| Vendor | CVEs |
|---|---|
| 836 | |
| linux | 523 |
| oracle | 267 |
| microsoft | 238 |
| adobe | 129 |
| red hat | 107 |
| apache | 103 |
| spring | 72 |
| openclaw | 67 |
| ibm | 60 |
| Vendor | KEV |
|---|---|
| microsoft | 19 |
| cisco | 10 |
| apple | 7 |
| 6 | |
| ivanti | 5 |
| solarwinds | 4 |
| berriai | 3 |
| fortinet | 3 |
| smartertools | 3 |
| adobe | 2 |
| Ecosystem | Advisories |
|---|---|
| Maven | 42 |
| Packagist | 22 |
| PyPI | 11 |
| npm | 4 |
| crates.io | 2 |
| CVE | Vendor | Days |
|---|---|---|
| CVE-2025-48595 | 0 | |
| CVE-2026-10520 | ivanti | 0 |
| CVE-2026-11645 | 0 | |
| CVE-2026-20245 | Cisco | 0 |
| CVE-2026-20253 | Splunk | 0 |
| CVE-2026-20262 | Cisco | 0 |
| CVE-2026-28318 | SolarWinds | 0 |
| CVE-2026-34926 | Trend Micro, Inc. | 0 |
| CVE-2026-35273 | Oracle Corporation | 0 |
| CVE-2026-45247 | Mirasvit | 0 |
| CVE | Vendor | Due | Days over |
|---|---|---|---|
| CVE-2021-27104 | n/a | 2021-11-17 | 1675 |
| CVE-2021-27102 | n/a | 2021-11-17 | 1675 |
| CVE-2021-27101 | n/a | 2021-11-17 | 1675 |
| CVE-2021-27103 | n/a | 2021-11-17 | 1675 |
| CVE-2021-21017 | Adobe | 2021-11-17 | 1675 |
| CVE-2021-28550 | Adobe | 2021-11-17 | 1675 |
| CVE-2021-42013 | Apache Software Foundation | 2021-11-17 | 1675 |
| CVE-2021-41773 | Apache Software Foundation | 2021-11-17 | 1675 |
| CVE-2021-30858 | Apple | 2021-11-17 | 1675 |
| CVE-2021-30860 | Apple | 2021-11-17 | 1675 |
EXPLOIT PUBLISHED — sysown proxysql: 3 CVEs (CVE-2026-48772, CVE-2026-48773, CVE-2026-48774). Public exploit references added.
EXPLOIT PUBLISHED — CVE-2025-62821. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-49293 (sunnyadn js-toml). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-49295 (strukturag libde265). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-49346 (strukturag libde265). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-50559 (quarkusio quarkus). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-51843. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-51844. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-51845. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-51846. Public exploit reference added.
DUE DATE PASSED — CVE-2026-54420 (LiteSpeed Technologies cPanel Plugin). CISA remediation deadline was June 18, 2026; still in catalog.
How to read these box scores · glossary
194 CVEs published. 25 box scores, 169 table rows — nothing truncated.
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N H H 9.1 .0267 84.6 —
AFFECTED Product Versions Fixed Avada (Fusion) Builder unspecified —
TIMELINE May 15 Reserved by CNA Jun 19 Published (CNA: Wordfence)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N H N H H H 8.6 .0132 68.6 —
AFFECTED Product Versions Fixed Bondix Server unspecified 1.25.7.6
TIMELINE Jun 12 Reserved by CNA Jun 19 Published (CNA: NCSC.ch)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N P H H H 9.4 .0131 68.5 —
AFFECTED Product Versions Fixed Rancher 2.14.0 – —
TIMELINE May 8 Reserved by CNA Jun 19 Published (CNA: suse)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N L N N 5.5 .0118 65.3 —
AFFECTED Product Versions Fixed kiota-typescript >= 1.0.0-preview.97, < 1.0.0-preview.102 – —
TIMELINE May 29 Reserved by CNA Jun 19 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H N H 9.1 .0105 61.7 —
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Oct 23 Reserved by CNA Jun 19 Public exploit reference published Jun 19 Published (CNA: mitre)
AV AC PR UI S C I A CVSS EPSS %ile KEV N H N N U H H H 8.1 .0095 58.6 —
AFFECTED Product Versions Fixed php-weasyprint < 2.6.0 – —
TIMELINE May 28 Reserved by CNA Jun 19 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0094 58.3 —
AFFECTED Product Versions Fixed BetterDocs Pro unspecified —
TIMELINE Apr 30 Reserved by CNA Jun 19 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H N N 7.5 .0092 57.6 —
AFFECTED Product Versions Fixed GitHub Copilot Chat 1.0.0 – —
TIMELINE Jun 4 Reserved by CNA Jun 19 Published (CNA: microsoft)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0091 57.4 —
AFFECTED Product Versions Fixed Azure Synapse - – —
TIMELINE May 21 Reserved by CNA Jun 19 Published (CNA: microsoft)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N C H H H 10.0 .0090 57.0 —
AFFECTED Product Versions Fixed Azure Active Directory - – —
TIMELINE May 12 Reserved by CNA Jun 19 Published (CNA: microsoft)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N H H H 8.7 .0089 56.7 —
AFFECTED Product Versions Fixed vBizz 1.0.7 – —
TIMELINE Jun 19 Reserved by CNA Jun 19 Published (CNA: VulnCheck)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0084 55.2 —
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Jun 8 Reserved by CNA Jun 19 Public exploit reference published Jun 19 Published (CNA: mitre)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N H N H H H 7.6 .0083 54.9 —
AFFECTED Product Versions Fixed slopsmith < 0.2.9-alpha.5 – —
TIMELINE May 28 Reserved by CNA Jun 19 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H N 9.3 .0080 53.9 —
AFFECTED Product Versions Fixed grpc-device unspecified — InstrumentStudio unspecified —
TIMELINE May 20 Reserved by CNA Jun 19 Published (CNA: NI)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N R U H H H 8.8 .0076 52.4 —
AFFECTED Product Versions Fixed Microsoft 365 Copilot - – —
TIMELINE May 19 Reserved by CNA Jun 19 Published (CNA: microsoft)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N H N 7.5 .0071 50.7 —
AFFECTED Product Versions Fixed Microsoft 365 Copilot - – —
TIMELINE Apr 30 Reserved by CNA Jun 19 Published (CNA: microsoft)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N H H H 7.4 .0069 50.0 —
AFFECTED Product Versions Fixed gin-vue-admin = 2.9.1 – —
TIMELINE May 22 Reserved by CNA Jun 19 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N C H H N 9.6 .0069 50.0 —
AFFECTED Product Versions Fixed Microsoft Exchange Online - – —
TIMELINE May 21 Reserved by CNA Jun 19 Published (CNA: microsoft)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N N N N 6.3 .0069 50.0 —
AFFECTED Product Versions Fixed Apache APISIX 3.11.0 – —
TIMELINE May 19 Reserved by CNA Jun 19 Published (CNA: apache)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P L N N N N 5.8 .0068 49.5 —
AFFECTED Product Versions Fixed Apache APISIX 2.12.0 – —
TIMELINE Apr 8 Reserved by CNA Jun 19 Published (CNA: apache)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H N N 7.5 .0067 49.1 —
AFFECTED Product Versions Fixed quarkus >= 3.36.0, < 3.36.3 – —
TIMELINE Jun 4 Reserved by CNA Jun 19 Public exploit reference published Jun 19 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0066 49.0 —
AFFECTED Product Versions Fixed FileRise unspecified —
TIMELINE Jun 13 Reserved by CNA Jun 19 Published (CNA: TuranSec)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N A N N N 2.1 .0065 48.2 —
AFFECTED Product Versions Fixed Apache APISIX 3.0.0 – —
TIMELINE May 26 Reserved by CNA Jun 19 Published (CNA: apache)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N N H 7.5 .0064 48.1 —
AFFECTED Product Versions Fixed js-toml < 1.1.1 – —
TIMELINE May 28 Reserved by CNA Jun 19 Public exploit reference published Jun 19 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N L N 5.3 .0064 48.1 —
AFFECTED Product Versions Fixed STRABL – A checkout solution unspecified —
TIMELINE Mar 6 Reserved by CNA Jun 19 Published (CNA: Wordfence)
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-44915 | 2.1 | 48.1 | Apache Software Foundation | Apache APISIX | CWE-601 | Apache APISIX: Cas-auth plugin open redirect via unsanitized cookie value |
| CVE-2026-8805 | 8.7 | 47.8 | Mitsubishi Electric Corporation | Mitsubishi Electric MELSEC iQ-F Series FX5-EIP EtherNet/IP Module FX5-EIP | CWE-190 | Denial-of-service (DoS) vulnerability in MELSEC iQ-F Series EtherNet/IP module |
| CVE-2026-8806 | 8.7 | 47.8 | Mitsubishi Electric Corporation | Mitsubishi Electric MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP | CWE-440 | Denial-of-service (DoS) vulnerability in MELSEC iQ-F Series FX5-ENET/IP Ether… |
| CVE-2026-39999 | 7.0 | 47.7 | Apache Software Foundation | Apache APISIX | CWE-290 | Apache APISIX: JWT Algorithm Confusion allows authentication bypass |
| CVE-2026-49345 | 5.3 | 47.7 | sourcentis | mercator | CWE-918 | Mercator CVE Configuration Vulnerable to Server-Side Request Forgery (SSRF) |
| CVE-2019-25762 | 8.7 | 47.5 | Joomboost | JoomProject | CWE-359 | Joomla! Component JoomProject 1.1.3.2 Information Disclosure |
| CVE-2026-56142 | 8.8 | 47.2 | JetBrains | Hub | CWE-915 | In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.14… |
| CVE-2026-11551 | 9.8 | 47.0 | wpmudev | Branda – White Label & Branding, Free Login Page Customizer | CWE-640 | Branda – White Label & Branding, Free Login Page Customizer <= 3.4.29 - Unaut… |
| CVE-2026-50242 | 9.8 | 46.5 | JetBrains | Hub | CWE-306 | In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.14… |
| CVE-2026-7547 | 4.9 | 45.5 | teamwsa | Woosa – Marktplaats for WooCommerce | CWE-22 | Woosa <= 2.0.5 - Authenticated (Administrator+) Arbitrary File Read via 'log_… |
| CVE-2026-10034 | 5.3 | 45.0 | legalweb | WP DSGVO Tools (GDPR) | CWE-862 | WP DSGVO Tools (GDPR) <= 3.1.39 - Missing Authorization to Unauthenticated Se… |
| CVE-2026-49231 | 2.3 | 44.8 | Apache Software Foundation | Apache APISIX | CWE-290 | Apache APISIX: Identity spoofing issue in APISIX opa plugin |
| CVE-2026-56081 | 9.3 | 44.8 | Cap-go | capgo | CWE-640 | Cap-go - Account Lockout via 2FA Misconfiguration on Unverified Email |
| CVE-2026-49357 | 8.8 | 44.3 | dtwang | line-desktop-mcp | CWE-306 | Streamable HTTP mode exposes LINE Desktop read/send tools without MCP authent… |
| CVE-2026-51843 | 9.8 | 43.8 | n/a | n/a | CWE-121 | Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the … |
| CVE-2026-51844 | 9.8 | 43.8 | n/a | n/a | CWE-121 | Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the … |
| CVE-2026-51845 | 9.8 | 43.8 | n/a | n/a | CWE-121 | Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the … |
| CVE-2026-56080 | 6.9 | 43.1 | Cap-go | capgo | CWE-287 | Cap-go - Authentication Logic Flaw in Enforce Password Policy |
| CVE-2026-49872 | 5.3 | 42.2 | Apache Software Foundation | Apache APISIX | CWE-287 | Apache APISIX: Improper authentication in cas-auth plugin |
| CVE-2026-32208 | 5.4 | 42.0 | Microsoft | Microsoft Edge (Chromium-based) | CWE-79 | Microsoft Entra ID Spoofing Vulnerability |
| CVE-2026-56141 | 9.8 | 41.9 | JetBrains | Hub | CWE-338 | In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.14… |
| CVE-2026-56138 | 5.3 | 41.2 | ail-project | ail-framework | CWE-22 | Authenticated Path Traversal in AIL framework /objects/item/diff Allows Readi… |
| CVE-2026-12644 | 5.5 | 40.9 | n/a | ts-deepmerge | CWE-248 | Versions of the package ts-deepmerge before 8.0.0 are vulnerable to Uncaught … |
| CVE-2019-25760 | 6.9 | 40.8 | Joomtech | Easy Shop | CWE-98 | Joomla! Component Easy Shop 1.2.3 Local File Inclusion |
| CVE-2026-11989 | 6.5 | 40.3 | bitpressadmin | Bit integrations – Form Integration, Webhook, Spreadsheets, CRM, LMS & Email Automation | CWE-918 | Bit integrations <= 2.8.7 - Unauthenticated Server-Side Request Forgery via F… |
| CVE-2017-20254 | 8.8 | 40.0 | Gegabyte | User Bench | CWE-89 | Joomla! Component User Bench 1.0 SQL Injection via userid |
| CVE-2017-20257 | 8.8 | 40.0 | Joomplace | Quiz Deluxe | CWE-89 | Joomla! Component Quiz Deluxe 3.7.4 SQL Injection |
| CVE-2017-20258 | 8.8 | 40.0 | Extro | RPC | CWE-89 | Joomla! Component RPC Responsive Portfolio 1.6.1 SQL Injection |
| CVE-2017-20259 | 8.8 | 40.0 | Joomlashack | OSDownloads | CWE-89 | Joomla OSDownloads 1.7.4 SQL Injection via item view |
| CVE-2017-20266 | 8.8 | 40.0 | Joomshaper | SP Movie Database | CWE-89 | Joomla SP Movie Database 1.3 SQL Injection via searchword |
| CVE-2019-25751 | 8.8 | 40.0 | Cmsjunkie | ClassifiedsManager | CWE-89 | Joomla J-ClassifiedsManager 3.0.5 SQL Injection |
| CVE-2019-25756 | 8.8 | 40.0 | Wdmtech | vAccount | CWE-89 | Joomla! Component vAccount 2.0.2 SQL Injection via vaccount-dashboard |
| CVE-2023-54357 | 8.7 | 39.9 | Artio | Joomla! com_booking component | CWE-203 | Joomla com_booking 2.4.9 Information Disclosure via Account Enumeration |
| CVE-2026-48138 | 8.7 | 39.8 | NI | grpc-device | CWE-125 | Out-of-bounds read vulnerability in the NI grpc-device streaming API |
| CVE-2026-48139 | 8.7 | 39.8 | NI | grpc-device | CWE-476 | NULL pointer dereference vulnerability in NI grpc-device data moniker service |
| CVE-2026-49291 | 8.1 | 39.8 | doobidoo | mcp-memory-service | CWE-862 | mcp-memory-service: OAuth read-only clients can write and delete memories thr… |
| CVE-2026-44046 | 2.3 | 38.9 | Apache Software Foundation | Apache APISIX | CWE-348 | Apache APISIX: wolf-rbac plugin Identity Spoofing |
| CVE-2026-47339 | 5.3 | 38.7 | Apache Software Foundation | Apache APISIX | CWE-863 | Apache APISIX: authz-casdoor incorrect session sharing |
| CVE-2026-48773 | 9.8 | 38.3 | sysown | proxysql | CWE-787 | ProxySQL pre-auth heap overflow in MySQL and PostgreSQL first-packet handling |
| CVE-2025-7737 | 8.6 | 37.9 | Hitachi | Hitachi Virtual Storage Platform E990, E1090, E1090H | CWE-770 | DoS Vulnerability in 10G iSCSI Interface of Hitachi Virtual Storage Platform |
| CVE-2026-11576 | 7.5 | 37.9 | Eclipse Foundation | Eclipse ThreadX - NetX Duo | CWE-459 | The security fix for CVE-2025-0728 in eclipse-threadx NetX Duo refactors erro… |
| CVE-2026-49287 | 7.4 | 37.7 | statamic | cms | CWE-470 | Statamic CMS vulnerable to unsafe method invocation via collection sorting al… |
| CVE-2026-6798 | 5.3 | 37.5 | 2download | 2Download Connector for 2DL Hosted Checkout | CWE-862 | 2Download Connector for 2DL Hosted Checkout <= 0.1.5 - Missing Authorization … |
| CVE-2019-25750 | 8.8 | 37.4 | Cmsjunkie | MultipleHotelReservation | CWE-89 | Joomla J-MultipleHotelReservation 6.0.7 SQL Injection |
| CVE-2019-25752 | 8.8 | 37.4 | Cmsjunkie | J-BusinessDirectory | CWE-89 | Joomla! Component J-BusinessDirectory 4.9.7 SQL Injection |
| CVE-2019-25753 | 8.8 | 37.4 | Wdmtech | VMap | CWE-89 | Joomla! Component VMap 1.9.6 SQL Injection via loadmarker |
| CVE-2019-25754 | 8.8 | 37.4 | Wdmtech | vRestaurant | CWE-89 | Joomla vRestaurant 1.9.4 SQL Injection via menu-listing-layout |
| CVE-2019-25755 | 8.8 | 37.4 | Wdmtech | vReview | CWE-89 | Joomla vReview 1.9.11 SQL Injection via editReview |
| CVE-2026-53915 | 8.8 | 37.4 | JetBrains | GoLand | CWE-73 | In JetBrains GoLand before 2026.1.3 remote code execution was possible via un… |
| CVE-2026-47203 | 2.9 | 37.4 | authelia | authelia | CWE-178 | Authelia Missing Username Canonicalization in Basic Auth (LDAP) |
| CVE-2026-56211 | 7.1 | 37.3 | Red Hat | Red Hat Enterprise Linux AI 3.3 for RHEL 9 | CWE-787 | Libaom: libaom: remote code execution via svc layer context handling with att… |
| CVE-2017-20264 | 7.1 | 37.3 | Pulseextensions | Sponsor Wall | CWE-89 | Joomla! Component Sponsor Wall 8.0 SQL Injection |
| CVE-2026-48140 | 7.1 | 36.9 | NI | grpc-device | CWE-704 | Unchecked enum cast vulnerability in NI grpc-device in BeginSidebandStream |
| CVE-2026-48129 | 6.5 | 36.9 | kestra-io | kestra | CWE-22 | Kestra task inputFiles accepts traversal filenames for worker file writes |
| CVE-2026-9013 | 4.3 | 36.6 | rocklobsterinc | Bogo | CWE-862 | Bogo <= 3.9.1 - Missing Authorization to Authenticated (Subscriber+) Sensitiv… |
| CVE-2026-9142 | 9.3 | 36.0 | NI | grpc-device | CWE-306 | Insecure Default Credentials vulnerability in NI grpc-device when TLS configu… |
| CVE-2017-20272 | 8.8 | 35.8 | Faboba | Ultimate Property Listing | CWE-89 | Joomla Ultimate Property Listing 1.0.2 SQL Injection via sf_selectuser_id |
| CVE-2017-20276 | 8.8 | 35.8 | Simbunch | SIMGenealogy | CWE-89 | Joomla! Component SIMGenealogy 2.1.5 SQL Injection |
| CVE-2026-49340 | 8.1 | 35.4 | sentriz | gonic | CWE-22 | gonic has arbitrary file write in createPlaylist: any authenticated user can … |
| CVE-2026-49359 | 6.5 | 35.0 | pontedilana | php-weasyprint | CWE-918 | PhpWeasyPrint vulnerable to SSRF and local file disclosure via the attachment… |
| CVE-2026-56208 | 7.6 | 34.9 | Red Hat | Red Hat Enterprise Linux 10.0 Extended Update Support | CWE-122 | Libaom: libaom: heap buffer overflow in av1 encoder first-pass stats buffer v… |
| CVE-2026-48141 | 6.0 | 34.7 | NI | grpc-device | CWE-401 | Memory leak in NI grpc-device BeginSidebandStream |
| CVE-2026-48794 | 1.3 | 34.3 | authelia | authelia | CWE-178 | Authelia has an Edge Case Access Control Rule Mismatch |
| CVE-2017-20253 | 8.8 | 34.1 | Gegabyte | My Projects | CWE-89 | Joomla! Component My Projects 2.0 SQL Injection |
| CVE-2017-20255 | 8.8 | 34.1 | Joombooking | JB Visa | CWE-89 | Joomla! Component JB Visa 1.0 SQL Injection via visatype |
| CVE-2017-20256 | 8.8 | 34.1 | Joomplace | Survey Force Deluxe | CWE-89 | Joomla Survey Force Deluxe 3.2.4 SQL Injection via invite Parameter |
| CVE-2017-20260 | 8.8 | 34.1 | Weborange | Price Alert | CWE-89 | Joomla! Component Price Alert 3.0.2 SQL Injection |
| CVE-2017-20261 | 8.8 | 34.1 | Weborange | Bargain Product VM3 | CWE-89 | Joomla! Component Bargain Product VM3 1.0 SQL Injection |
| CVE-2017-20262 | 8.8 | 34.1 | Webkul | Ajax Quiz | CWE-89 | Joomla! Component Ajax Quiz 1.8 SQL Injection |
| CVE-2017-20263 | 8.8 | 34.1 | Focalpointx | FocalPoint Pro / Free | CWE-89 | Joomla! FocalPoint Pro Free 1.2.3 SQL Injection via location |
| CVE-2017-20267 | 8.8 | 34.1 | Joomlathat | Calendar Planner | CWE-89 | Joomla! Component Calendar Planner 1.0.1 SQL Injection |
| CVE-2026-27878 | 6.5 | 33.9 | Grafana | Enterprise Traces (GET) | CWE-400 | Tempo TraceQL query with exemplar hint could result in unbounded memory usage |
| CVE-2026-56079 | 7.1 | 33.7 | Capgo | Capgo | CWE-200 | Capgo - Cross-Tenant Authorization Bypass via PostgREST Webhook Access |
| CVE-2026-49342 | 5.3 | 33.2 | lsegal | yard | CWE-22 | YARD static cache reads raw traversal paths before router sanitization |
| CVE-2017-20252 | 8.8 | 32.9 | nextgeneditor | NextGen Editor | CWE-89 | Joomla NextGen Editor 2.1.0 SQL Injection via plname Parameter |
| CVE-2026-49339 | 7.1 | 31.6 | sentriz | gonic | CWE-22 | Path traversal in getPlaylist/deletePlaylist bypasses ownership check: any au… |
| CVE-2026-8118 | 6.5 | 31.3 | wproyal | Royal Addons for Elementor – Addons and Templates Kit for Elementor | CWE-73 | Royal Addons for Elementor – Addons and Templates Kit for Elementor 1.7.1058 … |
| CVE-2026-12620 | 4.6 | 31.3 | Microchip | GridTime 3000 | CWE-200 | Access Token Exposure in URL Parameters in GridTime™ 3000 GNSS Time Server |
| CVE-2026-49344 | 7.1 | 30.9 | sourcentis | mercator | CWE-359 | Mercator has a Personal Identifiable Information Leak from Query Executor fea… |
| CVE-2026-56082 | 8.7 | 29.9 | Cap-go | capgo | CWE-284 | Capgo - Unauthenticated Cross-Tenant Billing Log Tampering via public.record_… |
| CVE-2026-10779 | 4.3 | 29.8 | techlabpro1 | Classified Listing – AI-Powered Classified ads & Business Directory | CWE-862 | Classified Listing <= 5.4.2 - Missing Authorization to Authenticated (Subscri… |
| CVE-2026-48089 | 7.1 | 29.1 | l3montree-dev | devguard | CWE-285 | DevGuard has improper authorization on public assets |
| CVE-2019-25748 | 8.8 | 28.9 | Cmsjunkie | JHotelReservation | CWE-89 | Joomla JHotelReservation 6.0.7 SQL Injection via search-hotels |
| CVE-2026-4026 | 8.7 | 27.7 | Flexera | FlexNet Manager Suite | CWE-284 | FlexNet Manager Suite Privilege Escalation Vulnerability |
| CVE-2026-4027 | 7.1 | 27.7 | Flexera | FlexNet Manager Suite | CWE-284 | FlexNet Manager Suite Attachment File Disclosure |
| CVE-2026-49871 | 2.1 | 27.7 | Apache Software Foundation | Apache APISIX | CWE-352 | Apache APISIX: cas-auth login CSRF / session injection issue |
| CVE-2026-12157 | 6.4 | 27.5 | wpdevteam | BetterDocs – AI Documentation, Knowledge Base, Docs, Wikis, FAQ with Chatbot | CWE-79 | BetterDocs <= 4.5.3 - Authenticated (Contributor+) Stored Cross-Site Scriptin… |
| CVE-2026-4328 | 6.4 | 26.8 | addonspress | Advanced Import | CWE-918 | Advanced Import: One-Click Demo Import for WordPress <= 1.4.6 - Authenticated… |
| CVE-2026-12238 | 5.3 | 26.8 | wpgmaps | WP Go Maps – Google Map, OpenStreetMap, Leaflet Map | CWE-862 | WP Go Maps <= 10.1.01 - Unauthenticated Arbitrary Record Creation |
| CVE-2026-9822 | 6.5 | 26.5 | Unknown | WP Hotel Booking | — | WP Hotel Booking < 2.3.1 - Subscriber+ Missing Authorization in Multiple AJAX… |
| CVE-2026-49295 | 7.1 | 26.2 | strukturag | libde265 | CWE-787 | libde265 has an out-of-bounds write in process_reference_picture_set via pred… |
| CVE-2026-49346 | 7.1 | 26.2 | strukturag | libde265 | CWE-190 | libde265 has a heap buffer overflow in de265_image_get_buffer via SPS dimensi… |
| CVE-2026-12430 | 4.4 | 25.9 | creativethemeshq | Blocksy Companion | CWE-79 | Blocksy Companion <= 2.1.45 - Authenticated (Editor+) Stored Cross-Site Scrip… |
| CVE-2017-20268 | 8.8 | 25.4 | Zcontent | Zap Calendar Lite | CWE-89 | Joomla! Component Zap Calendar Lite 4.3.4 SQL Injection |
| CVE-2017-20269 | 8.8 | 25.4 | Terrywcarter | KissGallery | CWE-89 | Joomla! Component KissGallery 1.0.0 SQL Injection |
| CVE-2017-20270 | 8.8 | 25.4 | Raindropsinfotech | Twitch Tv | CWE-89 | Joomla! Component Twitch Tv 1.1 SQL Injection |
| CVE-2026-1856 | 6.4 | 25.5 | creavi | Creavi Appointment Booking Calendar | CWE-79 | Appointment Booking Calendar <= 1.4.4 - Authenticated (Author+) Stored Cross-… |
| CVE-2026-56209 | 7.1 | 25.1 | Red Hat | Red Hat Enterprise Linux AI 3.3 for RHEL 9 | CWE-787 | Libaom: libaom: arbitrary address write via svc layer context oob and cyclic … |
| CVE-2017-20281 | 8.8 | 25.0 | Joomlaboat | Extra Search | CWE-89 | Joomla! Component Extra Search 2.2.8 SQL Injection |
| CVE-2017-20282 | 8.8 | 25.0 | Soft-Php | jCart for OpenCart | CWE-89 | Joomla! Component jCart for OpenCart 2.0 SQL Injection |
| CVE-2026-49337 | 4.3 | 25.0 | strukturag | libde265 | CWE-770 | libde265 has an unbounded memory leak via orphaned slice headers in `read_sli… |
| CVE-2026-12726 | 6.3 | 24.9 | Red Hat | Red Hat Ansible Automation Platform 2 | CWE-918 | Awx: automation-controller: awx: github webhook second-order ssrf via unvalid… |
| CVE-2026-11752 | 5.9 | 23.8 | LY Corporation | Armeria | — | A vulnerability has been identified in armeria-xds versions 1.38.0 through 1.… |
| CVE-2026-8296 | 5.6 | 23.8 | Octopus Deploy | Octopus Server | CWE-79 | In affected versions of Octopus Server with certain access levels it was poss… |
| CVE-2017-20277 | 8.8 | 23.2 | Joomboost | Joomla JoomRecipe | CWE-89 | Joomla JoomRecipe 1.0.4 Component Blind SQL Injection via search_author |
| CVE-2026-9143 | 6.3 | 22.1 | NI | grpc-device | CWE-681 | Incorrect Conversion between Numeric Types in NI grpc-device due to missing r… |
| CVE-2026-10720 | 5.1 | 21.9 | Canonical | Microceph | CWE-23 | MicroCeph path traversal issue in the remote-import API |
| CVE-2017-20265 | 7.1 | 21.8 | Pulseextensions | Flip Wall | CWE-89 | Joomla! Component Flip Wall 8.0 SQL Injection |
| CVE-2026-49230 | 6.3 | 21.6 | Apache Software Foundation | Apache APISIX | CWE-354 | Apache APISIX: Authentication bypass in jwe-decrypt |
| CVE-2017-20271 | 8.8 | 21.3 | Nordmograph | StreetGuessr Game | CWE-89 | Joomla StreetGuessr Game 1.1.8 SQL Injection via catid |
| CVE-2017-20273 | 8.8 | 21.3 | Joomlashowroom | Event Registration Pro Calendar | CWE-89 | Joomla Event Registration Pro Calendar 4.1.3 SQL Injection |
| CVE-2017-20274 | 8.8 | 21.3 | King-products | LMS King Professional | CWE-89 | Joomla LMS King Professional 3.2.4.0 SQL Injection via learningpath |
| CVE-2017-20278 | 8.8 | 21.3 | Joomboost | JoomRecipe | CWE-89 | Joomla JoomRecipe 1.0.3 SQL Injection via category parameter |
| CVE-2017-20279 | 8.8 | 21.3 | Extensions | Joomla Payage | CWE-89 | Joomla Payage 2.05 SQL Injection via aid Parameter |
| CVE-2017-20280 | 8.8 | 21.3 | Myportfolio | Myportfolio | CWE-89 | Joomla Component Myportfolio 3.0.2 SQL Injection via pid Parameter |
| CVE-2026-56210 | 7.1 | 20.8 | Red Hat | Red Hat Enterprise Linux AI 3.3 for RHEL 9 | CWE-125 | Libaom: libaom: heap-buffer-overflow read via missing bounds check in ctrl_se… |
| CVE-2017-20275 | 8.8 | 20.7 | Henryschorradt | Bridge | CWE-89 | Joomla! Component PHP-Bridge 1.2.3 SQL Injection via id Parameter |
| CVE-2026-49338 | 7.1 | 20.8 | sentriz | gonic | CWE-285 | Subsonic API: any authenticated user can delete or read any other user's play… |
| CVE-2026-44087 | 5.3 | 20.1 | Apache Software Foundation | Apache APISIX | CWE-345 | Apache APISIX: Openid-connect plugin Identity Header Spoofing |
| CVE-2026-48774 | 7.5 | 19.2 | sysown | proxysql | CWE-20 | ProxySQL MCP run_sql_readonly executes side-effecting MySQL multi-statements … |
| CVE-2026-56073 | 9.3 | 18.6 | Cap-go | capgo | CWE-345 | Cap-go - OTP Bypass via Response Manipulation in Email Verification |
| CVE-2026-49288 | 4.3 | 18.7 | statamic | cms | CWE-200 | Statamic CMS missing authorization on Control Panel fieldtype endpoints allow… |
| CVE-2019-25749 | 7.1 | 17.8 | Cmsjunkie | J-CruisePortal | CWE-89 | Joomla J-CruisePortal 6.0.4 SQL Injection via cruises |
| CVE-2019-25757 | 7.1 | 17.8 | Wdmtech | vWishlist | CWE-89 | Joomla vWishlist 1.0.1 SQL Injection via vproductid Parameter |
| CVE-2019-25759 | 7.1 | 17.8 | Wdmtech | vBizz | CWE-89 | Joomla! Component vBizz 1.0.7 SQL Injection |
| CVE-2019-25761 | 7.1 | 17.8 | Joomboost | JoomCRM | CWE-89 | Joomla! Component JoomCRM 1.1.1 SQL Injection via deal_id |
| CVE-2026-11941 | 5.6 | 16.2 | Cloudflare | Quiche | CWE-416 | Use-after-free in connection ID iterator and FFI functions |
| CVE-2026-12706 | 6.5 | 15.5 | Red Hat | Red Hat Enterprise Linux AI (RHEL AI) 3 | CWE-416 | Ffmpeg: ffmpeg: heap use-after-free read in rasc decoder decode_move() |
| CVE-2026-12621 | 5.3 | 13.7 | Microchip | GridTime 3000 | CWE-79 | Cross-Site Scripting (XSS) Vulnerability in Password Reset Redirect in GridTi… |
| CVE-2026-12619 | 5.1 | 13.7 | Microchip | GridTime 3000 | CWE-79 | GridTime™ 3000 GNSS Time Server CSRF to XSS |
| CVE-2022-50971 | 8.5 | 12.9 | Malwarebytes | Malwarebytes | CWE-428 | Malwarebytes 4.5 Unquoted Service Path Privilege Escalation |
| CVE-2026-49260 | 8.2 | 13.0 | pontedilana | php-weasyprint | CWE-78 | PhpWeasyPrint: shell command injection via configurable WeasyPrint binary pat… |
| CVE-2026-48772 | 10.0 | 11.3 | sysown | proxysql | CWE-348 | ProxySQL: PROXY-Protocol-v1 UNKNOWN parses spoofed source IP, bypassing mysql… |
| CVE-2026-12622 | 5.3 | 10.7 | Microchip | GridTime 3000 | CWE-601 | Open Redirect Vulnerability in Password Reset Submission in GridTime™ 3000 GN… |
| CVE-2026-48715 | 7.7 | 10.2 | radvd-project | radvdump | CWE-121 | radvdump's Route Information Option Parser has a Stack Buffer Overflow |
| CVE-2026-49271 | 6.5 | 9.7 | strukturag | libheif | CWE-125 | libheif: Wrapped icef compressed-unit range check causes out-of-bounds read i… |
| CVE-2016-20094 | 8.5 | 9.4 | Anydesk | AnyDesk | CWE-428 | AnyDesk 2.5.0 Unquoted Service Path Elevation of Privilege |
| CVE-2026-11775 | 4.3 | 8.7 | adamsilverstein | User Admin Simplifier | CWE-352 | User Admin Simplifier <= 3.0.0 - Cross-Site Request Forgery |
| CVE-2025-71326 | 8.5 | 7.8 | Avast | AVAST Antivirus | CWE-428 | AVAST Antivirus 25.11 Unquoted Service Path Privilege Escalation |
| CVE-2026-56131 | 4.9 | 7.8 | libexpat project | libexpat | CWE-416 | libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_Resu… |
| CVE-2016-20087 | 8.5 | 7.0 | Networkdls | Fortitude HTTP | CWE-428 | Fortitude HTTP 1.0.4.0 Unquoted Service Path Elevation of Privilege |
| CVE-2016-20088 | 8.5 | 7.0 | Comodo | Chromodo Browser | CWE-428 | Comodo Chromodo Browser 52.15.25.664 Unquoted Service Path Privilege Escalation |
| CVE-2016-20089 | 8.5 | 7.0 | Iperiusremote | Iperius Remote | CWE-428 | Iperius Remote 1.7.0 Unquoted Service Path Elevation of Privilege |
| CVE-2016-20090 | 8.5 | 7.0 | Comodo | Dragon Browser | CWE-428 | Comodo Dragon Browser 52.15.25.663 Privilege Escalation via Unquoted Service … |
| CVE-2016-20092 | 8.5 | 7.0 | Netdrive | NetDrive | CWE-428 | NetDrive 2.6.12 Unquoted Service Path Elevation of Privilege |
| CVE-2016-20093 | 8.5 | 7.0 | Wisecleaner | Wise Care 365 | CWE-428 | Wise Care 365 4.27 and Wise Disk Cleaner 9.29 Unquoted Service Path Privilege… |
| CVE-2019-25747 | 8.5 | 7.0 | Network-Inventory-Advisor | Network Inventory Advisor | CWE-428 | Network Inventory Advisor 5.0.26.0 Unquoted Service Path Privilege Escalation |
| CVE-2020-37254 | 8.5 | 7.0 | Wondershare | PDFelement | CWE-428 | Wondershare PDFelement 5.2.9 Privilege Escalation via Unquoted Service Path |
| CVE-2023-54353 | 8.5 | 7.0 | Personifyinc | Chromacam | CWE-428 | Chromacam 4.0.3.0 Unquoted Service Path Privilege Escalation |
| CVE-2016-20095 | 8.5 | 6.8 | Matrix42 | Matrix42 Remote Control Host | CWE-428 | Matrix42 Remote Control Host 3.20.0031 Unquoted Path Privilege Escalation |
| CVE-2020-37250 | 8.5 | 6.8 | Weird-Solutions | TFTP Broadband | CWE-428 | TFTP Broadband 4.3.0.1465 Unquoted Service Path Privilege Escalation |
| CVE-2020-37251 | 8.5 | 6.8 | Real | RealTimes Desktop Service | CWE-428 | RealTimes Desktop Service 18.1.4 Unquoted Service Path Privilege Escalation |
| CVE-2020-37252 | 8.5 | 6.8 | Realtek | Realtek Audio Service | CWE-428 | Realtek Audio Service 1.0.0.55 Unquoted Service Path Privilege Escalation |
| CVE-2026-3195 | 7.4 | 6.6 | — | qemu | CWE-122 | Qemu-kvm: virtio-snd: heap buffer overflow in virtio_snd_pcm_in_cb (incomplet… |
| CVE-2016-20085 | 8.5 | 6.2 | Realtek | Realtek High Definition Audio Driver | CWE-428 | Realtek High Definition Audio Driver 6.0.1.6730 Privilege Escalation |
| CVE-2016-20086 | 8.5 | 6.2 | Vembu | Vembu StoreGrid | CWE-428 | Vembu StoreGrid 4.0 Unquoted Service Path Privilege Escalation |
| CVE-2016-20091 | 8.5 | 5.8 | Binisoft | Windows Firewall Control | CWE-428 | Windows Firewall Control 4.8.6.0 Unquoted Service Path Privilege Escalation |
| CVE-2021-47985 | 8.5 | 5.8 | Brother | SAPSprint | CWE-428 | Brother SAPSprint 7.60 Unquoted Service Path Privilege Escalation |
| CVE-2026-34192 | 7.7 | 5.5 | Imagination Technologies | Graphics DDK | CWE-416 | GPU DDK - _MMU_AllocLevel error recovery paths leave dangling page table entries |
| CVE-2026-41156 | 7.7 | 5.5 | Imagination Technologies | Graphics DDK | CWE-416 | GPU DDK - kernel<->fw CCB contains SYNC_PRIMITIVE_BLOCK firmware address with… |
| CVE-2020-37253 | 8.5 | 5.0 | Winstep | Winstep | CWE-428 | Winstep 18.06.0096 Unquoted Service Path Privilege Escalation |
| CVE-2026-21768 | 6.3 | 5.0 | HCLSoftware | Verse for Android | CWE-20 | HCL Verse for Android is susceptible to an injection vulnerability |
| CVE-2026-49358 | 3.0 | 4.4 | pontedilana | php-weasyprint | CWE-73 | PhpWeasyPrint vulnerable to arbitrary file deletion at shutdown via public $t… |
| CVE-2026-3196 | 5.5 | 3.8 | — | qemu | CWE-190 | Qemu-kvm: virtio-snd: integer overflow leading to unbounded memory allocation |
| CVE-2026-46461 | 7.8 | 3.3 | Dell | Server Hardware Manager | CWE-284 | Dell Server Hardware Manager, versions prior to 3.2.2, contains an Improper A… |
| CVE-2026-52908 | 7.8 | 2.7 | Linux | Linux | — | RDMA: During rereg_mr ensure that REREG_ACCESS is compatible |
| CVE-2026-52909 | 7.8 | 2.0 | Linux | Linux | — | ip6_vti: set netns_immutable on the fallback device. |
| CVE-2026-56132 | 6.9 | 1.3 | libexpat project | libexpat | CWE-821 | In libexpat before 2.8.2, there is a heap-based buffer overflow in doProlog i… |
| CVE-2026-52910 | 7.8 | 1.1 | Linux | Linux | CWE-125 | bpf: Free reuseport cBPF prog after RCU grace period. |
Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.
Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.
Day boundary. A day is a UTC calendar day. This page covers 2026-06-19 00:00:00–23:59:59 UTC. All times shown are UTC.
Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.
Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.
Machine-readable. This edition as JSON or CSV — the ranked results, transactions, and counts, for citation or ingestion. Frozen at publication; later changes appear as transactions on later editions.