boxscore/security

A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?

Monday, June 22, 2026 · all times UTC← 2026-06-21 · archive · 2026-06-23 →

Security Box Score — June 22, 2026

220 CVEs published, led by IBM (21).

220 CVEs published June 22, 2026: 21 critical, 80 high, 105 medium, 14 low; 0 in the KEV catalog at press time; 22 with a public exploit reference; 0 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 195 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published53949855——
KEV catalog size1675

Publication counts reflect the record since May 20, 2026 (archive start); KEV figures are catalog-wide.

Prior-year comparisons begin when the archive covers a full year; archive begins May 20, 2026.

448 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux10010678466831411120.27.8.0013-125 ▼
google68485983454293297760.78.1.0023+668 ▲
microsoft220756585201726286192.57.8.0045+60 ▲
red hat791738748011200.06.7.0029+69 ▲
apple146612142288710.65.7.0019-1 ▼
canonical2161465000.05.5.0010+2 ▲
freebsd070520000.07.8.0020-7 ▼
suse461410000.08.6.0029+2 ▲
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco92165100561047.67.2.0438+4 ▲
netgear171700161000.04.3.0024+17 ▲
palo alto networks911127113218.25.9.0022+7 ▲
ivanti49450025555.68.8.5187+2 ▲
checkpoint3915303111.17.5.0410+3 ▲
fortinet29432028333.38.3.0076+1 ▲
f56843104112.58.9.0225+4 ▲
ubiquiti584400300.08.9.0052+3 ▲
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache9212618445583310.86.5.0051+83 ▲
mozilla49551118260900.07.3.0026+44 ▲
gitlab1118041224211.14.8.0024+11 ▲
docker470520000.08.2.0016+1 ▲
drupal0511304120.05.1.0026-3 ▼
github021100000.08.1.03470
wordpress00000020———0
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle2422701321161842720.78.8.0040+242 ▲
adobe1291314507521921.55.5.0021+129 ▲
ibm32811935270600.07.5.0031+32 ▲
progress591710600.07.5.0036+1 ▲
solarwinds36231010466.77.8.6082+3 ▲
veeam142200100.09.0.0052+1 ▲
zohocorp020110000.07.1.0104-1 ▼
atlassian000000130———0
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
synology52325133000.05.6.0025+5 ▲
d-link9110425300.05.5.0058+9 ▲
siemens780440000.07.5.0020+6 ▲
rockwell automation771510000.08.7.0030+7 ▲
abb550410000.07.2.0018+5 ▲
moxa550320000.07.0.0029+5 ▲
dahua330111000.06.9.0036+3 ▲
mitsubishi electric330300000.08.7.0064+3 ▲
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
spring7172230391000.06.5.0023+71 ▲
openclaw61670352210000.07.0.0021+61 ▲
sourcecodester3759002534000.02.1.0026+37 ▲
themerex585855300000.08.1.0043+58 ▲
edimax556033023100.07.4.0070+5 ▲
dell3149124240212.07.0.0017+19 ▲
concrete cms2461111321000.06.2.0015-42 ▼
open ises044221210000.07.1.0021-37 ▼

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-10520.9991100.010.0
CVE-2026-20253.969499.99.8
CVE-2026-35273.954799.99.8
CVE-2026-50751.837799.79.3
CVE-2026-48907.781099.510.0
CVE-2026-49160.538398.97.5
CVE-2026-10523.518798.99.8
CVE-2026-28318.400198.57.5
CVE-2026-53435.376698.48.8
CVE-2026-46442.363498.49.4
Highest CVSS
CVECVSSEPSSNote
CVE-2026-1052010.0.9991KEV
CVE-2026-4890710.0.7810KEV
CVE-2026-4817210.0.1891KEV
CVE-2026-4508710.0.1296
CVE-2026-4977710.0.0166
CVE-2026-805410.0.0158
CVE-2026-4919910.0.0134
CVE-2026-1142910.0.0115
CVE-2026-4925710.0.0093
CVE-2026-1056110.0.0091
Most disclosures (vendor)
VendorCVEs
google836
linux514
oracle267
microsoft226
adobe129
red hat111
apache104
ibm81
spring72
openclaw67
Most KEV additions (YTD)
VendorKEV
microsoft19
cisco10
apple7
google6
ivanti5
solarwinds4
berriai3
fortinet3
smartertools3
adobe2
Most-affected ecosystems
EcosystemAdvisories
Maven43
Packagist22
PyPI10
npm3
crates.io2
Fastest to KEV
CVEVendorDays
CVE-2025-48595Google0
CVE-2026-10520ivanti0
CVE-2026-11645Google0
CVE-2026-20245Cisco0
CVE-2026-20253Splunk0
CVE-2026-20262Cisco0
CVE-2026-28318SolarWinds0
CVE-2026-35273Oracle Corporation0
CVE-2026-45247Mirasvit0
CVE-2026-45321@tanstack0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104n/a2021-11-171678
CVE-2021-27102n/a2021-11-171678
CVE-2021-27101n/a2021-11-171678
CVE-2021-27103n/a2021-11-171678
CVE-2021-21017Adobe2021-11-171678
CVE-2021-28550Adobe2021-11-171678
CVE-2021-42013Apache Software Foundation2021-11-171678
CVE-2021-41773Apache Software Foundation2021-11-171678
CVE-2021-30858Apple2021-11-171678
CVE-2021-30860Apple2021-11-171678

Transactions

EXPLOIT PUBLISHED — vllm-project vllm: 4 CVEs (CVE-2026-41523, CVE-2026-54232, CVE-2026-54235, CVE-2026-54236). Public exploit references added.

EXPLOIT PUBLISHED — CVE-2025-66389. Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-10645 (zephyrproject zephyr). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-10651 (zephyrproject zephyr). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-12549 (Red Hat Enterprise Linux 10). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-41479 (authlib). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-44311 (fabricjs fabric.js). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-48931 (nodejs node). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-50146 (withastro astro). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-53550 (nodeca js-yaml). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-53571 (vitejs vite). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-53655 (isaacs node-tar). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-54293 (nltk). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-54298 (withastro astro). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-55599 (phpseclib). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-55602 (chimurai http-proxy-middleware). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-55603 (chimurai http-proxy-middleware). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-56268 (Flowise). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-6653 (GNOME libxml2). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-6858 (Unknown Transbank Webpay). Public exploit reference added.

DUE DATE PASSED — CVE-2026-20253 (Splunk Enterprise). CISA remediation deadline was June 21, 2026; still in catalog.

Yesterday's Results

How to read these box scores · glossary

220 CVEs published. 25 box scores, 195 table rows — nothing truncated.

n/a n/a — GitHub Copilot 1.372.0 allows filesystem access outside of a workspace folder (without user approval) via a…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0118   65.2     —
AFFECTED
  Product  Versions  Fixed
  n/a      n/a –     —
TIMELINE
  Nov 28  Reserved by CNA
  Jun 22  Public exploit reference published
  Jun 22  Published (CNA: mitre)
CWE-552 · CNA: mitre · CVSS v3.1 · 3 references · NVD status: Analyzed
vllm-project vllm — vLLM: OpenAI auth bypass
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  H    9.1   .0115   64.5     —
AFFECTED
  Product  Versions              Fixed
  vllm     >= 0.3.0, < 0.22.0 –  —
TIMELINE
  May 22  Reserved by CNA
  Jun 22  Published (CNA: GitHub_M)
CWE-444, CWE-501 · CNA: GitHub_M · CVSS v3.1 · 14 references · NVD status: Modified
vllm-project vllm — vLLM: incomplete CVE-2026-22778 fix leaks PIL repr addresses via Anthropic router
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  L  N  N    5.3   .0093   57.8     —
AFFECTED
  Product  Versions       Fixed
  vllm     < 0.23.1rc0 –  —
TIMELINE
  Jun 12  Reserved by CNA
  Jun 22  Public exploit reference published
  Jun 22  Published (CNA: GitHub_M)
CWE-532 · CNA: GitHub_M · CVSS v3.1 · 3 references · NVD status: Analyzed
IBM Langflow OSS — Unauthenticated Remote Code Execution in Langflow OSS PythonREPLComponent via Builtins Injection
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  C  H  H  H   10.0   .0091   57.4     —
AFFECTED
  Product       Versions  Fixed
  Langflow OSS  1.0.0 –   —
TIMELINE
  Jun 1   Reserved by CNA
  Jun 22  Published (CNA: ibm)
CWE-94 · CNA: ibm · CVSS v3.1 · 1 reference · NVD status: Analyzed
vllm-project vllm — vLLM: Security Check Bypass via assert Statement in Activation Function Loading Allows Arbitrary Code Execution
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   N   R  U  H  H  H    7.5   .0088   56.4     —
AFFECTED
  Product  Versions    Fixed
  vllm     < 0.22.0 –  —
TIMELINE
  Apr 20  Reserved by CNA
  Jun 22  Public exploit reference published
  Jun 22  Published (CNA: GitHub_M)
CWE-94, CWE-617 · CNA: GitHub_M · CVSS v3.1 · 12 references · NVD status: Modified
IBM WebSphere Application Server — WebSphere Application Server Remote Code Execution
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0072   51.1     —
AFFECTED
  Product                       Versions  Fixed
  WebSphere Application Server  8.5 –     —
TIMELINE
  May 20  Reserved by CNA
  Jun 22  Published (CNA: ibm)
CWE-94 · CNA: ibm · CVSS v3.1 · 1 reference · NVD status: Modified
Autodesk Fusion — MCP Extension Code Injection Vulnerability in Autodesk Fusion Desktop
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  C  H  H  H    9.6   .0070   50.4     —
AFFECTED
  Product  Versions     Fixed
  Fusion   2703.1.11 –  —
TIMELINE
  Jun 3   Reserved by CNA
  Jun 22  Published (CNA: autodesk)
CWE-94 · CNA: autodesk · CVSS v3.1 · 3 references · NVD status: Analyzed
misp misp — Authenticated Remote Code Execution via Arbitrary NDJSON Error Log Path in MISP
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   N   H   N   H   H   N    8.7   .0069   50.0     —
AFFECTED
  Product  Versions     Fixed
  misp     unspecified  —
TIMELINE
  Jun 22  Reserved by CNA
  Jun 22  Published (CNA: CIRCL)
CWE-94 · CNA: CIRCL · CVSS v4.0 · 1 reference · NVD status: Analyzed
TP-Link Systems Inc. Archer MR200 v07 — Unauthenticated Command Injection via DHCP Option Handling in Multiple TP-Link Routers
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   A   L   N   N   N   H   H   H    8.7   .0066   49.0     —
AFFECTED
  Product           Versions     Fixed
  Archer MR200 v07  unspecified  —
  Archer MR200 v8   unspecified  —
  Archer MR402 v1   unspecified  —
  Archer VR2100 v1  unspecified  —
  Archer C20 v5     unspecified  —
  Archer C20 v6     unspecified  —
  TL-MR6400 v7      unspecified  —
TIMELINE
  Jun 9   Reserved by CNA
  Jun 22  Published (CNA: TPLink)
CWE-78 · CNA: TPLink · CVSS v4.0 · 8 references · NVD status: Awaiting Analysis
Apache NiFi: Missing Authorization of Restricted Permissions when Replacing Flow Contents
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   H   N   H   H   H    7.5   .0066   48.8     —
AFFECTED
  Product      Versions  Fixed
  Apache NiFi  1.12.0 –  —
TIMELINE
  May 8   Reserved by CNA
  Jun 22  Published (CNA: apache)
CWE-862 · CNA: apache · CVSS v4.0 · 2 references · NVD status: Analyzed
Apache NiFi: Improper Escaping of Table Names in CaptureChangeMySQL
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   P   H   P   N   N   N    5.2   .0065   48.2     —
AFFECTED
  Product      Versions  Fixed
  Apache NiFi  1.2.0 –   —
TIMELINE
  May 8   Reserved by CNA
  Jun 22  Published (CNA: apache)
CWE-116 · CNA: apache · CVSS v4.0 · 2 references · NVD status: Analyzed
Capgo - Unauthenticated Channel Enumeration and App Oracle via GET /channel_self
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   N   N    8.7   .0064   47.8     —
AFFECTED
  Product  Versions     Fixed
  Capgo    unspecified  12.128.2
TIMELINE
  Jun 20  Reserved by CNA
  Jun 22  Published (CNA: VulnCheck)
CWE-200 · CNA: VulnCheck · CVSS v4.0 · 2 references · NVD status: Deferred
picklescan - Arbitrary Code Execution via Undetected ensurepip._run_pip Function
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   P   H   H   N    7.6   .0064   47.8     —
AFFECTED
  Product     Versions     Fixed
  picklescan  unspecified  0.0.30
TIMELINE
  Jun 20  Reserved by CNA
  Jun 22  Published (CNA: VulnCheck)
CWE-502 · CNA: VulnCheck · CVSS v4.0 · 2 references · NVD status: Deferred
IBM Storage Protect Client — Hardcoded credential in the IBM Storage Protect Snapshot For Windows leads to unauthorized access to system
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  N    9.1   .0063   47.5     —
AFFECTED
  Product                               Versions   Fixed
  Storage Protect Client                8.1.0.0 –  —
  Storage Protect Snapshot For Windows  8.1.0.0 –  —
TIMELINE
  Jun 18  Reserved by CNA
  Jun 22  Published (CNA: ibm)
CWE-798 · CNA: ibm · CVSS v3.1 · 1 reference · NVD status: Undergoing Analysis
Pilz PMI v8xx — XSS vulnerability in Pilz PASvisu and PMI v8xx
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  N  H  H    8.1   .0063   47.3     —
AFFECTED
  Product   Versions  Fixed
  PMI v8xx  0.0.0 –   —
  PASvisu   0.0.0 –   —
TIMELINE
  Oct 13  Reserved by CNA
  Jun 22  Published (CNA: CERTVDE)
CWE-79 · CNA: CERTVDE · CVSS v3.1 · 1 reference · NVD status: Deferred
LY Corporation Central Dogma — A vulnerability has been identified in centraldogma-server-auth-shiro versions prior to 0.84.0, where the S…
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   L   L   N    6.9   .0062   46.9     —
AFFECTED
  Product        Versions     Fixed
  Central Dogma  unspecified  0.84.0
TIMELINE
  Jun 9   Reserved by CNA
  Jun 22  Published (CNA: LY-Corporation)
CWE-90 · CNA: LY-Corporation · CVSS v4.0 · 1 reference · NVD status: Deferred
MISP remote code execution via arbitrary rdkafka configuration path
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   H   N   H   H   N    9.3   .0062   46.8     —
AFFECTED
  Product  Versions     Fixed
  misp     unspecified  —
TIMELINE
  Jun 22  Reserved by CNA
  Jun 22  Published (CNA: CIRCL)
CWE-829 · CNA: CIRCL · CVSS v4.0 · 1 reference · NVD status: Analyzed
NLTK: URL-Encoded Path Traversal in nltk.data.load() Allows Arbitrary Local File Read
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0060   46.2     —
AFFECTED
  Product  Versions        Fixed
  nltk     < 3.10.0-rc1 –  —
TIMELINE
  Jun 12  Reserved by CNA
  Jun 22  Public exploit reference published
  Jun 22  Published (CNA: GitHub_M)
CWE-22 · CNA: GitHub_M · CVSS v3.1 · 6 references · NVD status: Modified
MISP Core: Mass Assignment and Object Re-ownership via Unvalidated Request Fields
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    9.4   .0060   46.2     —
AFFECTED
  Product  Versions     Fixed
  misp     unspecified  —
TIMELINE
  Jun 22  Reserved by CNA
  Jun 22  Published (CNA: CIRCL)
CWE-639 · CNA: CIRCL · CVSS v4.0 · 16 references · NVD status: Awaiting Analysis
BerriAI litellm — LiteLLM: Authentication Bypass via Host Header Injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   H   H   H    9.5   .0059   45.7     —
AFFECTED
  Product  Versions    Fixed
  litellm  < 1.84.0 –  —
TIMELINE
  May 30  Reserved by CNA
  Jun 22  Published (CNA: GitHub_M)
CWE-290 · CNA: GitHub_M · CVSS v4.0 · 5 references · NVD status: Modified
IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  N    9.1   .0059   45.5     —
AFFECTED
  Product                                 Versions    Fixed
  WebSphere Application Server            9.0.0 –     —
  WebSphere Application Server - Liberty  17.0.0.3 –  —
TIMELINE
  May 14  Reserved by CNA
  Jun 22  Published (CNA: ibm)
CWE-444 · CNA: ibm · CVSS v3.1 · 1 reference · NVD status: Analyzed
webp-sh webp_server_go — WebP Server Go < 0.15.0 Path Traversal via Backslash Encoding on Windows
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   N   N    8.7   .0059   45.4     —
AFFECTED
  Product         Versions     Fixed
  webp_server_go  unspecified  —
TIMELINE
  Jun 10  Reserved by CNA
  Jun 22  Published (CNA: VulnCheck)
CWE-22 · CNA: VulnCheck · CVSS v4.0 · 3 references · NVD status: Deferred
Angular: Denial of Service (DoS) via OOM in Date Formatting (formatDate)
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   N   N   H    8.2   .0058   45.2     —
AFFECTED
  Product  Versions                     Fixed
  angular  >= 22.0.0-next.0 < 22.0.1 –  —
TIMELINE
  Jun 12  Reserved by CNA
  Jun 22  Published (CNA: GitHub_M)
CWE-400, CWE-1333 · CNA: GitHub_M · CVSS v4.0 · 3 references · NVD status: Analyzed
GNOME libxml2 — libxml2: Use after free in xmlParseInternalSubset via improper entity resolution handling
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   N   N   N   H   L   L    7.0   .0058   45.0     —
AFFECTED
  Product  Versions  Fixed
  libxml2  2.9.11 –  —
TIMELINE
  Apr 20  Reserved by CNA
  Jun 22  Public exploit reference published
  Jun 22  Published (CNA: canonical)
CWE-416, CWE-611 · CNA: canonical · CVSS v4.0 · 2 references · NVD status: Analyzed
vitejs vite — Vite: `server.fs.deny` bypass on Windows alternate paths
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   H   N   N    8.2   .0058   44.9     —
AFFECTED
  Product  Versions              Fixed
  vite     >= 8.0.0, < 8.0.16 –  —
TIMELINE
  Jun 9   Reserved by CNA
  Jun 22  Public exploit reference published
  Jun 22  Published (CNA: GitHub_M)
CWE-22, CWE-200 · CNA: GitHub_M · CVSS v4.0 · 1 reference · NVD status: Analyzed
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-564505.144.9ail projectail frameworkCWE-307AIL Framework - Missing Rate Limiting Enables Brute-Force Attacks Against Two…
CVE-2026-71676.944.6GaudireAssassin gameCWE-200Multiple vulnerabilities in the Assassin game by Gaudire
CVE-2026-113739.144.5JASEINet::Statsite::ClientCWE-93Net::Statsite::Client versions through 1.1.0 for Perl allow metric injections
CVE-2026-93207.544.3IBMWebSphere Application ServerCWE-400IBM WebSphere Application Server and WebSphere Application Server Liberty are…
CVE-2026-542328.844.2vllm-projectvllmCWE-427vLLM: Dependency Confusion Vulnerability in vLLM Dockerfile
CVE-2025-663368.144.1Apache Software FoundationApache Doris MCP ServerCWE-89Apache Doris MCP Server: SQL injection leading the authentication bypass
CVE-2026-90717.543.5IBMWebSphere Application ServerCWE-400IBM WebSphere Application Server and WebSphere Application Server Liberty are…
CVE-2026-71669.243.2GaudireAssassin gameCWE-200Multiple vulnerabilities in the Assassin game by Gaudire
CVE-2026-127255.942.3Red HatRed Hat Enterprise Linux 10CWE-122Dnsmasq: dnsmasq: heap buffer overflow in log_query() when logging unsupporte…
CVE-2025-713397.642.0PicklescanPicklescanCWE-502Picklescan - Arbitrary Code Execution via numpy.f2py.crackfortran._eval_lengt…
CVE-2026-564247.142.0mispmispCWE-639Broken access control in MISP core allows cross-organization unauthorized mod…
CVE-2026-449112.341.6Apache Software FoundationApache NiFiCWE-863Apache NiFi: Incorrect Authorization for Configuration Verification Requests
CVE-2026-89346.941.2Google CloudCloud Console UIsCWE-862Cross-Project Information Leakage in Google App Engine UI
CVE-2026-481098.241.1MessagePack-CSharpMessagePack-CSharpCWE-20MessagePack-CSharp: LZ4 decompression may fail with AccessViolationException …
CVE-2025-621985.440.8Apache Software FoundationApache AtlasCWE-80Apache Atlas: Stored XSS in Create Entity page
CVE-2026-501788.740.7angularangularCWE-79Angular: Remote Code Execution via JSDoc Hover Command Injection in VS Code A…
CVE-2026-76649.840.4IBMLangflow OSSCWE-287Unauthenticated Flow Execution via Webhook Endpoint in Langflow OSS
CVE-2026-542818.740.4nestjsnestCWE-863Nest: Middleware Bypass on Fastify via Trailing Slash
CVE-2026-472405.839.9rubynet-imapCWE-77Net::IMAP: Command Injection via non-synchronizing literal in "raw" argument
CVE-2026-539235.339.5vllm-projectvllmCWE-200vLLM GGUF Kernels: int64_t to int truncation of tensor dimensions causes GPU …
CVE-2026-563485.339.4n8nn8nCWE-918n8n - Credential Exfiltration via Allowed HTTP Request Domains Bypass in Dyna…
CVE-2026-542837.539.3KludexstarletteCWE-770Starlette: request.form() limits silently ignored for application/x-www-form-…
CVE-2026-71659.439.3GaudireAssassin gameCWE-20Multiple vulnerabilities in the Assassin game by Gaudire
CVE-2026-562669.239.0Crawl4AICrawl4AICWE-918Crawl4AI - Server-Side Request Forgery via Direct Crawl Endpoints
CVE-2026-108527.538.8IBMWebSphere Application ServerCWE-476Websphere Application Server is Affected By a Denial of Service
CVE-2026-485067.538.7MessagePack-CSharpMessagePack-CSharpCWE-674MessagePack-CSharp: MessagePackReader.Skip can recurse without enforcing maxi…
CVE-2026-564239.438.5mispmispCWE-862MISP Core: Broken access control allows instance-wide unauthorized deletion o…
CVE-2026-108457.338.3IBMWebSphere Application ServerCWE-287IBM WebSphere Application Server is affected by an authentication bypass vuln…
CVE-2026-563248.838.2CapgoCapgoCWE-770Capgo - Rate Limit Bypass via User-Controlled device_id Parameter
CVE-2026-564259.338.0mispmispCWE-384MISP AAD authentication plugin - Improper OAuth State Handling, Missing Sessi…
CVE-2026-450349.238.0PHPOfficePhpSpreadsheetCWE-502PhpSpreadsheet: File::prohibitWrappers bypass
CVE-2026-487127.537.9protobufjsprotobuf.jsCWE-674protobufjs: Denial of service through unbounded Any expansion during JSON con…
CVE-2026-535397.537.9Kludexpython-multipartCWE-400Python-Multipart: Quadratic-time querystring parsing with semicolon separator…
CVE-2026-563216.937.6CapgoCapgoCWE-306Capgo - Missing Authentication Middleware on GET /private/role_bindings Endpoint
CVE-2026-553888.137.5piscinajspiscinaCWE-94piscina: Prototype Pollution Gadget → RCE via inherited options.filename
CVE-2026-125817.737.5DigiwinEasyFlow .NETCWE-384Digiwin|EasyFlow .NET - Session Fixation
CVE-2026-542356.937.2vllm-projectvllmCWE-1287vLLM: temperature=NaN and temperature=Infinity bypass validation and propagat…
CVE-2026-128882.036.7Thinkst Applied ResearchCanarytokensCWE-74HTML injection in the Canarytoken Google Chat notification
CVE-2026-421297.736.7GrafanaGrafana OSSCWE-22Path traversal in the Loki data source plugin
CVE-2026-119424.836.5AkauntingAkauntingCWE-79Akaunting 3.1.21 - Stored XSS in delete confirmation modal
CVE-2026-119434.836.5AkauntingAkauntingCWE-79Akaunting 3.1.21 - Authenticated stored XSS in document timeline
CVE-2026-119944.836.5AkauntingAkauntingCWE-79Akaunting 3.1.21 - Authenticated stored XSS in report description rendering
CVE-2026-442718.836.4DellWyse Management Suite (WMS)CWE-89Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Impr…
CVE-2026-442728.836.4DellWyse Management Suite (WMS)CWE-89Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Impr…
CVE-2026-447279.336.3jupyter-serverjupyter_serverCWE-79Jupyter Server: Stored XSS in `NbconvertFileHandler` / `NbconvertPostHandler`…
CVE-2026-564488.336.2ail projectail frameworkCWE-22Authenticated Path Traversal in AIL Framework Investigation Downloads Allows …
CVE-2026-485028.236.3MessagePack-CSharpMessagePack-CSharpCWE-125MessagePack-CSharp: Denial of service vulnerabilities can swamp the CPU or cr…
CVE-2026-399047.136.1gophishgophishCWE-770Gophish 0.12.1 Denial of Service via Office Document Upload
CVE-2026-542865.935.9honojshonoCWE-22Hono: Path traversal in `serve-static` on Windows via encoded backslash (`%5C`)
CVE-2026-421277.535.8GrafanaGrafana EnterpriseCWE-400Pre-authentication denial of service in the public dashboard query endpoint
CVE-2025-713587.635.7picklescanpicklescanCWE-502picklescan - Remote Code Execution via idlelib.autocomplete.AutoComplete.get_…
CVE-2026-536325.535.4vitejslaunch-editorCWE-73NTLMv2 hash disclosure via UNC path handling on Windows
CVE-2026-563147.135.3CapgoCapgoCWE-672Capgo - Deleted Bundle Selection via Missing Deletion Filter in /updates Endp…
CVE-2026-501708.235.2angularangularCWE-524Angular: Information Leak via Default Caching of Credentialed Requests in Htt…
CVE-2026-542336.534.9vllm-projectvllmCWE-409vLLM: OOM Denial of Service via Audio Decompression Bomb
CVE-2024-541786.534.8IBMDb2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for DataCWE-770Multiple vulnerabilities affect IBM Db2® on Cloud Pak for Data, and Db2 Wareh…
CVE-2026-81578.834.5UnknownViteposCWE-269Vitepos < 3.4.2 - Outlet Manager+ Privilege Escalation
CVE-2026-561048.834.4ChainlitchainlitCWE-862Chainlit < 2.10.1 Session Hijacking via WebSocket Session Restoration
CVE-2026-485096.334.4MessagePack-CSharpMessagePack-CSharpCWE-1188MessagePack-CSharp: ASP.NET Core MessagePackInputFormatter defaults to Truste…
CVE-2026-566985.334.1NuxtNuxtCWE-79Nuxt - Cross-Site Scripting via navigateTo open Option
CVE-2026-505568.634.0angularangularCWE-79Angular: Missing `<noscript>` Raw-Text Serialization Escaping leads to Cross-…
CVE-2026-125494.833.9Red HatRed Hat Enterprise Linux 10CWE-805Libsoup: incomplete fix for cve-2026-2443: range suffix overflow in libsoup s…
CVE-2026-88588.833.8IBMWebSphere Application ServerCWE-94WebSphere Application Server Remote Code Execution
CVE-2026-485106.333.4MessagePack-CSharpMessagePack-CSharpCWE-409MessagePack-CSharp: LZ4 decompression allocates from unbounded declared outpu…
CVE-2026-485116.333.4MessagePack-CSharpMessagePack-CSharpCWE-407MessagePack-CSharp: ExpandoObject formatter can perform quadratic insertion w…
CVE-2026-485126.333.4MessagePack-CSharpMessagePack-CSharpCWE-674MessagePack-CSharp: JSON conversion APIs can recurse without consistent depth…
CVE-2026-485136.333.4MessagePack-CSharpMessagePack-CSharpCWE-674MessagePack-CSharp: DynamicUnionResolver generated deserializers miss depth e…
CVE-2026-485146.333.4MessagePack-CSharpMessagePack-CSharpCWE-770MessagePack-CSharp: Unity unsafe blit formatter allocates from unbounded byte…
CVE-2026-485156.333.4MessagePack-CSharpMessagePack-CSharpCWE-770MessagePack-CSharp: Multi-dimensional array formatters allocate from unchecke…
CVE-2026-485166.333.4MessagePack-CSharpMessagePack-CSharpCWE-407MessagePack-CSharp: InterfaceLookupFormatter bypasses collision-resistant com…
CVE-2026-542695.333.1protobufjsprotobuf.jsCWE-674protobufjs: Schema-derived names can shadow runtime-significant properties
CVE-2026-542705.333.1protobufjsprotobuf.jsCWE-770protobufjs: Memory amplification from preserved unknown fields in binary decode
CVE-2026-527255.332.6angularangularCWE-79Angular Template and Dynamic Component Namespace Bypass leading to Cross-Site…
CVE-2026-542786.632.5aio-libsaiohttpCWE-409AIOHTTP: Unread Compressed Request Bodies Bypass client_max_size During Cleanup
CVE-2026-562685.331.9FlowiseFlowiseCWE-863Flowise - Cross-Workspace Information Disclosure via chatflows/apikey Endpoint
CVE-2026-542648.331.8angularangularCWE-200Angular: Sensitive Header Leakage on Cross-Origin Redirects in Angular Servic…
CVE-2026-535505.331.4nodecajs-yamlCWE-407js-yaml: Quadratic-complexity DoS in merge key handling via repeated aliases
CVE-2026-90069.131.3IBMWebSphere Application ServerCWE-918IBM WebSphere Application Server is affected by server-side request forgery
CVE-2026-124796.131.1keras-teamkeras-team/kerasCWE-22Path Traversal in keras-team/keras
CVE-2026-128625.130.9pretixVenuelessCWE-148XLSX formula injection in exports
CVE-2026-562217.130.7Cap-gocapgoCWE-89Cap-go - SQL Injection in Cloudflare Analytics Engine Queries via cloudflare.ts
CVE-2026-562555.330.1CapgoCapgoCWE-770Capgo - Denial of Service via Unlimited Demo App Creation
CVE-2026-562807.129.9Cap-gocapgoCWE-862Cap-go - Privilege Inversion in Build Log Stream via SSE Disconnect
CVE-2026-549116.529.9ultrajsonultrajsonCWE-20UltraJSON: Malformed/Truncated UTF-8 Accepted and Silently Rewritten in ujson…
CVE-2026-72536.029.9IBMSterling B2B IntegratorCWE-89IBM Sterling File Gateway SQL Injection
CVE-2026-556026.929.7chimuraihttp-proxy-middlewareCWE-20http-proxy-middleware `router` host+path substring matching allows Host-heade…
CVE-2026-563116.929.1CapgoCapgoCWE-285Capgo - Unauthenticated Cross-Tenant Disclosure via get_current_plan_max_org RPC
CVE-2026-563265.328.8NuxtNuxtCWE-601Nuxt - Server-Side Open Redirect via Path-Normalization Bypass in navigateTo
CVE-2026-464178.828.7angularangularCWE-918Angular: SSRF via Hostname Hijacking in @angular/platform-server
CVE-2026-128635.127.7pretixVenuelessCWE-601Open redirect
CVE-2026-283818.127.6GrafanaSnowflake DatasourceCWE-284Local File Read/Write to Potential Privilege Escalation via Snowflake GET/PUT
CVE-2026-485176.327.3MessagePack-CSharpMessagePack-CSharpCWE-470MessagePack-CSharp: Typeless deserialization type restrictions do not recurse…
CVE-2026-481665.327.0filamentphpfilamentCWE-208Filament: Timing-based user enumeration on login page
CVE-2026-563065.327.0CapgoCapgoCWE-20Capgo - Subkey Enforcement Bypass via x-limited-key-id Header Parsing
CVE-2026-489313.727.0nodejsnodeCWE-367A flaw in Node.js HTTP Agent can cause a client to accept as valid a response…
CVE-2026-505575.326.9angularangularCWE-79Angular: Template and Attribute Namespace Sanitization Bypass (XSS)
CVE-2026-542655.326.9angularangularCWE-79Angular: Two-Way Property Binding Sanitization Bypass (XSS)
CVE-2026-542855.326.9open-telemetryopentelemetry-jsCWE-770opentelemetry-js: Unbounded memory allocation in W3C Baggage propagation
CVE-2025-26696.526.8IBMDb2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for DataCWE-295Multiple vulnerabilities affect IBM Db2® on Cloud Pak for Data, and Db2 Wareh…
CVE-2026-485006.526.8filamentphpfilamentCWE-862Filament: Unauthenticated temporary file upload on auth pages
CVE-2026-535403.726.7Kludexpython-multipartCWE-1284Python-Multipart: Negative Content-Length in parse_form buffers the entire bo…
CVE-2026-566975.326.1NuxtNuxtCWE-601Nuxt - Open Redirect via Protocol-Relative Paths in reloadNuxtApp
CVE-2026-91624.325.9MattermostMattermostCWE-613Global session revocation does not invalidate active WebSocket connections
CVE-2026-542997.525.6withastroastroCWE-20Astro: Host-header full-read SSRF in core prerendered error-page fetch (prere…
CVE-2025-49948.725.5SafeLineSafeLine SL6/SL6+CWE-305Authentication Bypass for SafeLine SL6 and SL6+
CVE-2026-542907.125.1honojshonoCWE-942Hono: CORS Middleware reflects any Origin with credentials when `origin` defa…
CVE-2026-546656.325.0Apache Software FoundationApache NiFiCWE-346Apache NiFi: Missing Validation for Proxy Host Headers
CVE-2026-542776.624.4aio-libsaiohttpCWE-770AIOHTTP: C HTTP Parser Bypasses max_line_size for Fragmented Lines
CVE-2026-80743.824.0MattermostMattermostCWE-863Improper Permission Check Allows User Manager to Deactivate Bot Accounts
CVE-2026-88233.824.0MattermostMattermostCWE-863User Manager can demote bot accounts to guest without bot-management permission
CVE-2026-542678.623.8angularangularCWE-79Angular Client Hydration DOM Clobbering & Response-Cache Poisoning
CVE-2026-563576.323.5n8nn8nCWE-290n8n - Webhook Forgery via Missing HMAC-SHA256 Signature Verification in GitHu…
CVE-2026-543005.323.4withastroastroCWE-918@astrojs/netlify broadens Astro image.remotePatterns in Netlify Image CDN config
CVE-2026-542875.323.2honojshonoCWE-116Hono: AWS Lambda adapter merges multiple `Set-Cookie` headers into one value,…
CVE-2026-542766.322.7aio-libsaiohttpCWE-601AIOHTTP: DigestAuthMiddleware Applies Credentials to Cross-Origin Redirect Ch…
CVE-2026-542746.622.5aio-libsaiohttpCWE-770AIOHTTP: Incomplete websocket frame payloads bypass memory limits
CVE-2026-542718.222.3protobufjsprotobufjs-cliCWE-94protobufjs-cli: Code injection in pbjs static output from crafted JSON descri…
CVE-2026-502692.722.2aio-libsaiohttpCWE-93AIOHTTP: CRLF injection in multipart headers
CVE-2026-480676.521.9filamentphpfilamentCWE-639Filament: Inconsistent scope enforcement for AttachAction and AssociateAction…
CVE-2026-66736.421.9MattermostMattermostCWE-306Mattermost Jira plugin had unauthenticated {{/ac/installed}} lifecycle callba…
CVE-2026-106516.521.9zephyrprojectzephyrCWE-20Out-of-bounds read in Bluetooth Classic SDP attribute parsing (`bt_sdp_parse_…
CVE-2026-485057.421.6filamentphpfilamentCWE-362Filament: Multi-factor authentication (app) recovery codes can still be used …
CVE-2026-68587.121.2UnknownTransbank WebpayCWE-79Transbank Webpay < 1.14.0 - Unauthenticated Stored XSS
CVE-2026-535375.321.1Kludexpython-multipartCWE-20Python-Multipart: Content-Disposition parameter smuggling via RFC 2231/5987 e…
CVE-2026-51395.420.7MattermostMattermostCWE-862GitLab Plugin Allows Non-Admin Users to Modify Default Instance Configuration
CVE-2026-556037.520.5chimuraihttp-proxy-middlewareCWE-93http-proxy-middleware: multipart/form-data field injection via unescaped CRLF…
CVE-2026-106014.320.5GrafanaGrafana OSSCWE-22Path traversal in the Tempo and Loki data source plugins
CVE-2026-541008.320.4Red HatRed Hat OpenShift for Windows Containers 10.22CWE-295Windows-machine-config-operator: windows-machine-config-operator: ssh host ke…
CVE-2026-554097.620.4filamentphpfilamentCWE-79Filament: Disabled RichEditor field state can be used for XSS
CVE-2026-106587.120.1zephyrprojectzephyrCWE-787Out-of-bounds access in Bluetooth ISO receive (`bt_iso_recv`) due to missing …
CVE-2026-542801.720.1aio-libsaiohttpCWE-404AIOHTTP: Payload Response Resources Are Not Closed After Mid-Body Disconnect
CVE-2026-125805.119.9DigiwinEasyFlow .NETCWE-79Digiwin|EasyFlow .NET - Stored Cross-Site Scripting
CVE-2026-89187.119.9ASUSArmoury CrateCWE-183A permissive list of allowed inputs in ASUS Armoury Crate allows a local admi…
CVE-2026-542736.619.8aio-libsaiohttpCWE-770AIOHTTP: HTTP/1 Pipelined Requests Queue Without Limit
CVE-2026-542791.319.8aio-libsaiohttpCWE-665AIOHTTP: Host-Only Cookies Become Domain Cookies After CookieJar Persistence
CVE-2026-542825.319.1KludexstarletteCWE-706Starlette: Unvalidated request path concatenated into authority poisons reque…
CVE-2026-443116.119.0fabricjsfabric.jsCWE-79Fabric.js: Improper escaping in fabric.Gradient colorStops leads to XSS in SV…
CVE-2026-448896.118.5PylonswebobCWE-601WebOb: Location header normalization during redirect leads to open redirect
CVE-2026-501466.118.5withastroastroCWE-80Astro: Reflected XSS via unescaped slot name
CVE-2026-505558.618.3angularangularCWE-79Angular: Improper Neutralization of Input During Web Page Generation ('Cross-…
CVE-2026-542752.718.0aio-libsaiohttpCWE-297AIOHTTP: TLS Server Hostname Override Is Ignored When Reusing HTTPS Connections
CVE-2026-96105.317.3IBMDatacapCWE-425Multiple Vulnerabilities in IBM Datacap
CVE-2026-414795.417.0authlibauthlibCWE-601Authlib OAuth 2.0 authorization endpoint open redirects to attacker-controlle…
CVE-2026-501718.216.8angularangularCWE-400Angular: Denial of Service (DoS) via OOM in Number Formatting (digitsInfo)
CVE-2026-535383.716.8Kludexpython-multipartCWE-436Python-Multipart: Semicolon treated as querystring field separator enables pa…
CVE-2024-514546.116.4IBMEngineering Workflow ManagementCWE-644IBM Engineering Lifecycle Management - Engineering Workflow Management is imp…
CVE-2026-41106.116.4Unknownultimate-woocommerce-auction-pro—Ultimate WooCommerce Auction Pro <= 2.4.5 - Reflected XSS via uwa_auctions_bi…
CVE-2026-42597.116.3Unknownultimate-woocommerce-auction-proCWE-79Ultimate WooCommerce Auction Pro <= 2.4.5 - Reflected XSS via uwa_manage_auct…
CVE-2026-90295.416.2GrafanaGrafana OSSCWE-79Stored XSS in the Geomap panel tile-layer attribution
CVE-2023-338545.316.1IBMDb2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for DataCWE-294Multiple vulnerabilities affect IBM Db2® on Cloud Pak for Data, and Db2 Wareh…
CVE-2026-471556.516.0vllm-projectvllmCWE-345vLLM: Artifact Pin Decay in vLLM allows pinned deployments to load unpinned c…
CVE-2026-481676.415.7filamentphpfilamentCWE-79Filament: Unvalidated ImageColumn and ImageEntry values can be used for XSS
CVE-2026-492418.715.1angularangularCWE-79Angular: Multiple Remote Code Execution Vulnerabilities in Angular Language S…
CVE-2026-60626.414.8MattermostMattermostCWE-639IDOR in Jira plugin subscription edit endpoint
CVE-2026-472412.114.7rubynet-imapCWE-162Net::IMAP: Denial of Service via incomplete raw argument validation
CVE-2026-501688.814.5angularangularCWE-346Angular: URL Parser Differential in @angular/platform-server leading to SSRF …
CVE-2026-80596.114.3IBMDatacapCWE-79Multiple Vulnerabilities in IBM Datacap
CVE-2025-331285.413.7IBMEngineering Workflow ManagementCWE-79IBM Engineering Lifecycle Management - Engineering Workflow Management is imp…
CVE-2026-113725.413.7IBMTRIRIGA Application PlatformCWE-79IBM TRIRIGA Cross-Site Scripting Vulnerability
CVE-2026-117469.413.4LY CorporationCentral DogmaCWE-798A vulnerability has been identified in centraldogma-server versions prior to …
CVE-2026-542986.113.3withastroastroCWE-79Astro: XSS via Unescaped Attribute Names in Spread Props
CVE-2026-501695.713.3angularangularCWE-200Angular Service Worker Policy-Bypass & Credential-Stripping Vulnerabilities
CVE-2026-117458.812.2LY CorporationCentral DogmaCWE-322A vulnerability has been identified in centraldogma-server-mirror-git version…
CVE-2026-555995.811.4phpseclibphpseclibCWE-918phpseclib: X.509 certificate validation sends attacker-controlled outbound re…
CVE-2023-457957.811.0PilzPMI v8xxCWE-79Pilz: XSS vulnerability in Pilz PASvisu and PMI v8xx
CVE-2026-554435.511.1langchain-ailangchainCWE-22LangChain: Path traversal and sandbox escape in LangChain file-search middlew…
CVE-2026-501845.710.8angularangularCWE-200Angular: Request Credential & Cache Policy Stripping in Angular Service Worker
CVE-2026-105305.310.3UnknownPie Register—Pie Register < 3.8.4.10 - Unauthenticated Email Verification Bypass via Predi…
CVE-2026-410476.99.7presireqSnapperCWE-306Information leak via “diff” methods in qSnapper
CVE-2026-86367.59.6IBMDatacapCWE-316Multiple Vulnerabilities in IBM Datacap
CVE-2026-410467.38.1presireqSnapperCWE-23path traversal via `config` parameter in qSnapper
CVE-2026-410498.47.9presireqSnapperCWE-863Caching of Authentication allows Authentication Bypass between users in qSnapper
CVE-2026-410488.47.4presireqSnapperCWE-863Caching of Authentication allows Authentication Bypass in qSnapper
CVE-2026-66457.37.4PaperCutPrint DeployCWE-427Insecure Search Path Vulnerability in PaperCut Print Deploy Client for Windows
CVE-2026-542894.87.4honojshonoCWE-348Hono: Lambda@Edge adapter keeps only the last value of a repeated request hea…
CVE-2026-126028.86.9ArubaArubaSignCWE-276Incorrect permissions in ArubaSign by Aruba
CVE-2026-442747.86.9DellWyse Management Suite (WMS)CWE-59Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Impr…
CVE-2026-494616.96.9py-pdfpypdfCWE-400pypdf: Possible large memory usage for form XObjects during text extraction
CVE-2026-545306.96.9py-pdfpypdfCWE-835pypdf: Possible infinite loop when retrieving fonts for layout-mode text extr…
CVE-2026-545316.96.9py-pdfpypdfCWE-835pypdf: Possible infinite loop when processing outlines/bookmarks in writer
CVE-2026-494605.16.0py-pdfpypdfCWE-407pypdf: Inefficient decoding of FlateDecode PNG predictor streams
CVE-2026-78595.35.6UnknownMotorsCWE-862Motors Car Dealership & Classified Listings < 1.4.110 - Unauthenticated Post-…
CVE-2026-410457.05.3presireqSnapperCWE-367Weak polkit authentication check in qSnapper
CVE-2026-546516.95.2py-pdfpypdfCWE-835pypdf: Possible infinite loop when processing threads/articles in writer
CVE-2026-106455.55.1zephyrprojectzephyrCWE-125Out-of-bounds read in Zephyr ext2 directory entry traversal from a crafted fi…
CVE-2026-536556.95.0isaacsnode-tarCWE-436node-tar applies PAX size override to intermediary GNU long-name/long-link he…
CVE-2026-442734.44.6DellWyse Management Suite (WMS)CWE-1392Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain a Use o…
CVE-2026-536633.14.2remix-runreact-routerCWE-352React Router: `handleDocumentRequest` CSRF check covers `POST` only; PUT/PATC…
CVE-2026-542886.54.2honojshonoCWE-345Hono: Body Limit Middleware can be bypassed on AWS Lambda by understating `Co…
CVE-2026-122499.03.8—adsysCWE-348Canonical ADSys Trust Store Poisoning via Plaintext HTTP Certificate Auto-Enr…
CVE-2026-561097.03.4alsa-projectalsa-libCWE-415ALSA Library < 1.2.16.1 Double-Free via parse_def() in conf.c
CVE-2026-472425.82.9rubynet-imapCWE-77Net::IMAP: Command Injection via ID command argument
CVE-2026-542668.82.6angularangularCWE-328Angular: Weak 32-Bit Cache Key Hashing in `HttpTransferCache` Leading to Cros…
CVE-2026-493563.62.5babelbabelCWE-22Babel: Arbitrary File Read via sourceMappingURL Comment in @babel/core
CVE-2026-540998.81.4Red HatRed Hat OpenShift for Windows Containers 10.22CWE-269Windows-machine-config-operator: windows-machine-config-operator: wicd csr ex…

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-06-22 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.

Machine-readable. This edition as JSON or CSV — the ranked results, transactions, and counts, for citation or ingestion. Frozen at publication; later changes appear as transactions on later editions.