boxscore/security

A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?

Monday, July 6, 2026 · all times UTC← 2026-07-05 · archive · 2026-07-07 →

Security Box Score — July 6, 2026

196 CVEs published, led by Apache Software Foundation (39).

196 CVEs published July 6, 2026: 30 critical, 80 high, 60 medium, 26 low; 0 in the KEV catalog at press time; 20 with a public exploit reference; 0 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 171 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published116113564——
KEV catalog size1675

Publication counts reflect the record since May 20, 2026 (archive start); KEV figures are catalog-wide.

Prior-year comparisons begin when the archive covers a full year; archive begins May 20, 2026.

589 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux37151712086653011120.17.5.0014+4 ▲
google521317148590542377760.57.8.0024-436 ▼
microsoft50807615521886286202.57.8.0046+43 ▲
red hat19241129512014200.06.5.00300
apple01042287228876.76.5.00320
canonical0202585000.05.5.00110
suse51841040000.08.6.0041+5 ▲
freebsd01601240000.07.8.00160
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
ubiquiti2536142110338.38.8.0049+25 ▲
cisco830614100561136.77.5.0057+6 ▲
netgear01700161000.04.3.00240
palo alto networks011127113218.25.9.00220
checkpoint0915303111.17.5.04100
fortinet09432028333.38.3.00760
ivanti09450025555.68.8.5187-1 ▼
f50843104112.58.9.02250
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache44199367972113310.57.3.0057+12 ▲
mozilla3591218290900.07.3.0025-1 ▼
gitlab03105215426.54.4.00290
github171150000.06.0.0039+1 ▲
docker070520000.08.2.0016-2 ▼
drupal0511304120.05.1.00260
wordpress00000020———0
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle02701321161842720.78.8.00400
adobe214612537921921.45.8.0021+2 ▲
ibm01243642460600.07.5.0034-5 ▼
progress2111910600.07.5.0036-3 ▼
solarwinds07232010457.17.5.4001-2 ▼
veeam042200100.09.0.00520
zohocorp031110000.08.4.01700
atlassian000000130———0
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
synology02325133000.05.6.0025-5 ▼
d-link0120525300.05.8.0058-5 ▼
siemens090450000.06.9.0021-1 ▼
rockwell automation071510000.08.7.00300
abb060420000.07.2.0018-4 ▼
schneider electric060420000.07.8.00420
moxa050320000.07.0.00290
dahua030111000.06.9.00360
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
sourcecodester2798005246000.05.5.0029+6 ▲
dell2076234382211.36.7.0018+17 ▲
spring073231391000.06.5.0024-2 ▼
openclaw0670352210000.07.0.00210
edimax065039026100.07.4.00800
itsourcecode1063001944000.02.1.0033-9 ▼
capgo061231271000.07.1.00390
themerex26055410000.08.1.0043+2 ▲

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-10520.9991100.010.0
CVE-2026-20253.969499.99.8
CVE-2026-35273.954799.99.8
CVE-2026-20230.882099.88.6
CVE-2026-34910.874799.710.0
CVE-2026-34908.851999.710.0
CVE-2026-50751.837799.79.3
CVE-2026-48907.781099.510.0
CVE-2026-45659.760899.58.8
CVE-2026-34909.639099.210.0
Highest CVSS
CVECVSSEPSSNote
CVE-2026-1052010.0.9991KEV
CVE-2026-3491010.0.8747KEV
CVE-2026-3490810.0.8519KEV
CVE-2026-4890710.0.7810KEV
CVE-2026-3490910.0.6390KEV
CVE-2026-1377310.0.0610
CVE-2026-5641510.0.0436
CVE-2026-5641310.0.0419
CVE-2026-5357610.0.0330
CVE-2026-5375310.0.0290
Most disclosures (vendor)
VendorCVEs
google654
linux517
microsoft264
oracle242
adobe144
apache133
red hat128
ibm70
spring70
capgo61
Most KEV additions (YTD)
VendorKEV
microsoft20
cisco11
apple7
google6
ivanti5
solarwinds4
berriai3
fortinet3
smartertools3
ubiquiti3
Most-affected ecosystems
EcosystemAdvisories
Maven68
Packagist15
npm6
NuGet3
PyPI3
Fastest to KEV
CVEVendorDays
CVE-2026-10520ivanti0
CVE-2026-11645Google0
CVE-2026-12569PTC0
CVE-2026-20230Cisco0
CVE-2026-20245Cisco0
CVE-2026-20253Splunk0
CVE-2026-20262Cisco0
CVE-2026-34908Ubiquiti Inc0
CVE-2026-34909Ubiquiti Inc0
CVE-2026-34910Ubiquiti Inc0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104n/a2021-11-171692
CVE-2021-27102n/a2021-11-171692
CVE-2021-27101n/a2021-11-171692
CVE-2021-27103n/a2021-11-171692
CVE-2021-21017Adobe2021-11-171692
CVE-2021-28550Adobe2021-11-171692
CVE-2021-42013Apache Software Foundation2021-11-171692
CVE-2021-41773Apache Software Foundation2021-11-171692
CVE-2021-30858Apple2021-11-171692
CVE-2021-30860Apple2021-11-171692

Transactions

EXPLOIT PUBLISHED — python-pillow Pillow: 5 CVEs (CVE-2026-54059, CVE-2026-54060, CVE-2026-55379, CVE-2026-55380, CVE-2026-55798). Public exploit references added.

EXPLOIT PUBLISHED — pnpm: 3 CVEs (CVE-2026-59194, CVE-2026-59195, CVE-2026-59196). Public exploit references added.

EXPLOIT PUBLISHED — CVE-2026-41516 (OP-TEE optee_os). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-44936 (SUSE Rancher). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-49297 (Apache Software Foundation Apache Airflow Google provider). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-54234 (vllm-project vllm). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-57571 (unclecode crawl4ai). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-58203 (pydantic-settings). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-58380 (Red Hat Enterprise Linux 9). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-59089 (Red Hat Enterprise Linux 6). Public exploit reference added.

Yesterday's Results

How to read these box scores · glossary

196 CVEs published. 25 box scores, 171 table rows — nothing truncated.

Apache OpenNLP :: Core :: ML :: LibSVM: Unsafe Java Deserialization in SvmDoccatModel
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  L  L  L    7.3   .1392   96.2     —
AFFECTED
  Product                                 Versions    Fixed
  Apache OpenNLP :: Core :: ML :: LibSVM  3.0.0-M1 –  —
TIMELINE
  May 2   Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-502 · CNA: apache · CVSS v3.1 · 2 references · NVD status: Analyzed
coollabsio coolify — Coolify: Authenticated Remote Code Execution in GetLogs Livewire Component
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0280   85.4     —
AFFECTED
  Product  Versions            Fixed
  coolify  < 4.0.0-beta.471 –  —
TIMELINE
  Mar 30  Reserved by CNA
  Jul 6   Published (CNA: GitHub_M)
CWE-78 · CNA: GitHub_M · CVSS v3.1 · 4 references · NVD status: Deferred
coollabsio coolify — Coolify authenticated remote command injection leading to RCE and secret exfiltration
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  C  H  H  H    9.9   .0254   83.7     —
AFFECTED
  Product  Versions            Fixed
  coolify  < 4.0.0-beta.469 –  —
TIMELINE
  Mar 25  Reserved by CNA
  Jul 6   Published (CNA: GitHub_M)
CWE-78 · CNA: GitHub_M · CVSS v3.1 · 4 references · NVD status: Deferred
Apache Camel: Camel-Docling: Insufficient validation of custom CLI arguments enables argument injection and path traversal in DoclingProducer
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  N    9.1   .0243   83.0     —
AFFECTED
  Product       Versions  Fixed
  Apache Camel  4.15.0 –  —
TIMELINE
  Apr 8   Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-88 · CNA: apache · CVSS v3.1 · 2 references · NVD status: Analyzed
react create-react-app react-dev-utils openBrowser.js startBrowserProcess os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   L   L   L    5.5   .0211   80.4     —
AFFECTED
  Product           Versions  Fixed
  create-react-app  5.0.0 –   —
TIMELINE
  Jul 5   Reserved by CNA
  Jul 6   Published (CNA: VulDB)
CWE-77, CWE-78 · CNA: VulDB · CVSS v4.0 · 6 references · NVD status: Deferred
Unknown FileOrganizer — Multiple elFinder Plugins - Authenticated OS Command Injection
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  C  H  H  H    9.1   .0140   70.4     —
AFFECTED
  Product                Versions     Fixed
  FileOrganizer          unspecified  —
  Advanced File Manager  unspecified  —
  File Manager Pro       unspecified  —
  File Manager           unspecified  —
TIMELINE
  Apr 15  Reserved by CNA
  Jul 6   Published (CNA: WPScan)
CNA: WPScan · CVSS v3.1 · 1 reference · NVD status: Deferred
Adobe ColdFusion — ColdFusion | Improper Input Validation (CWE-20)
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  C  H  H  N   10.0   .0112   63.8     —
AFFECTED
  Product     Versions     Fixed
  ColdFusion  unspecified  —
TIMELINE
  May 21  Reserved by CNA
  Jul 6   Published (CNA: adobe)
CWE-20 · CNA: adobe · CVSS v3.1 · 1 reference · NVD status: Analyzed
Esri ArcGIS Server — Directory Traversal in ArcGIS Server
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0109   62.9     —
AFFECTED
  Product        Versions     Fixed
  ArcGIS Server  unspecified  —
TIMELINE
  May 21  Reserved by CNA
  Jul 6   Published (CNA: Esri)
CWE-22 · CNA: Esri · CVSS v3.1 · 1 reference · NVD status: Modified
Apache Camel Keycloak: KeycloakSecurityPolicy verifies the bearer access token only inside its role and permission checks, so in the default configuration the token is never verified and any non-null bearer value is accepted
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0109   62.7     —
AFFECTED
  Product                Versions  Fixed
  Apache Camel Keycloak  4.15.0 –  —
TIMELINE
  Jun 11  Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-287, CWE-306, CWE-636 · CNA: apache · CVSS v3.1 · 1 reference · NVD status: Analyzed
Apache Airflow Google provider: Path traversal via GCS object names → local/SFTP filesystem (GCSToSFTPOperator + GCSTimeSpanFileTransformOperator)
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  N  H  H    8.1   .0099   60.0     —
AFFECTED
  Product                         Versions     Fixed
  Apache Airflow Google provider  unspecified  —
TIMELINE
  May 28  Reserved by CNA
  Jul 6   Public exploit reference published
  Jul 6   Published (CNA: apache)
CWE-22 · CNA: apache · CVSS v3.1 · 3 references · NVD status: Analyzed
Apache Camel: Camel-Hazelcast: Unsafe Java deserialization in default-configured managed Hazelcast instances enables remote code execution
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   N   N  U  H  H  H    8.1   .0098   59.6     —
AFFECTED
  Product       Versions  Fixed
  Apache Camel  4.0.0 –   —
TIMELINE
  May 4   Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-502 · CNA: apache · CVSS v3.1 · 2 references · NVD status: Analyzed
unclecode crawl4ai — Crawl4AI: Unauthenticated RCE via Chromium launch-argument injection in browser_config.extra_args
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  C  H  H  H   10.0   .0094   58.2     —
AFFECTED
  Product   Versions   Fixed
  crawl4ai  < 0.9.0 –  —
TIMELINE
  Jun 24  Reserved by CNA
  Jul 6   Published (CNA: GitHub_M)
CWE-88, CWE-94 · CNA: GitHub_M · CVSS v3.1 · 2 references · NVD status: Analyzed
Apache Camel: Camel-PQC: The AWS Secrets Manager key-lifecycle manager deserializes persisted key metadata with java.io.ObjectInputStream and no ObjectInputFilter
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0093   57.8     —
AFFECTED
  Product       Versions  Fixed
  Apache Camel  4.18.0 –  —
TIMELINE
  May 4   Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-502 · CNA: apache · CVSS v3.1 · 1 reference · NVD status: Analyzed
Apache Camel: Camel-Vertx-Http: Unsafe Java deserialization of HTTP response bodies via a raw ObjectInputStream when transferException is enabled
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   N   N  U  H  H  H    8.1   .0089   56.5     —
AFFECTED
  Product       Versions  Fixed
  Apache Camel  4.0.0 –   —
TIMELINE
  Apr 15  Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-502 · CNA: apache · CVSS v3.1 · 2 references · NVD status: Analyzed
Apache Camel Vertx Websocket: The inbound consumer maps externally-supplied WebSocket query and path parameters into the Exchange without a HeaderFilterStrategy, allowing injection of Camel control headers
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0086   55.7     —
AFFECTED
  Product                       Versions  Fixed
  Apache Camel Vertx Websocket  4.0.0 –   —
TIMELINE
  May 16  Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-20, CWE-200, CWE-918 · CNA: apache · CVSS v3.1 · 2 references · NVD status: Analyzed
Apache Camel Atmosphere Websocket: The inbound consumer maps externally-supplied WebSocket query parameters into the Exchange without a HeaderFilterStrategy, allowing injection of Camel control headers - enabling influencing internal behaviour
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0086   55.7     —
AFFECTED
  Product                            Versions  Fixed
  Apache Camel Atmosphere Websocket  4.0.0 –   —
TIMELINE
  Jun 18  Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-20, CWE-200, CWE-918 · CNA: apache · CVSS v3.1 · 2 references · NVD status: Analyzed
Apache Camel: Camel-PQC: The HashiCorp Vault and AWS Secrets Manager key-lifecycle managers deserialize persisted key metadata with java.io.ObjectInputStream and no ObjectInputFilter (incomplete remediation of CVE-2026-40048)
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0084   55.1     —
AFFECTED
  Product       Versions  Fixed
  Apache Camel  4.18.0 –  —
TIMELINE
  May 15  Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-502 · CNA: apache · CVSS v3.1 · 1 reference · NVD status: Analyzed
Apache Camel: Camel-Cometd: Inbound Bayeux message headers are mapped into the Exchange without a HeaderFilterStrategy, allowing unauthenticated clients to inject Camel control headers
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0083   54.7     —
AFFECTED
  Product       Versions  Fixed
  Apache Camel  4.0.0 –   —
TIMELINE
  May 14  Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-20 · CNA: apache · CVSS v3.1 · 2 references · NVD status: Analyzed
unclecode crawl4ai — Crawl4AI arbitrary file write via download filename path traversal
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  C  H  H  H    9.6   .0081   54.1     —
AFFECTED
  Product   Versions   Fixed
  crawl4ai  < 0.9.0 –  —
TIMELINE
  Jun 24  Reserved by CNA
  Jul 6   Public exploit reference published
  Jul 6   Published (CNA: GitHub_M)
CWE-22, CWE-59 · CNA: GitHub_M · CVSS v3.1 · 2 references · NVD status: Analyzed
Apache Camel: Camel-AWS2-SQS: Inbound message attributes are mapped into the Exchange without an inbound HeaderFilterStrategy, allowing a message sender to inject Camel control headers
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0079   53.5     —
AFFECTED
  Product       Versions  Fixed
  Apache Camel  4.0.0 –   —
TIMELINE
  May 14  Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-20 · CNA: apache · CVSS v3.1 · 2 references · NVD status: Analyzed
coollabsio coolify — Coolify LocalFileVolume fs_path command injection enables RCE
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0078   53.3     —
AFFECTED
  Product  Versions            Fixed
  coolify  < 4.0.0-beta.471 –  —
TIMELINE
  Mar 25  Reserved by CNA
  Jul 6   Published (CNA: GitHub_M)
CWE-78 · CNA: GitHub_M · CVSS v3.1 · 3 references · NVD status: Deferred
Tenda firmware — Hidden backdoor authentication mechanism in multiple versions of Tenda firmware allows admin access to web management interface
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0076   52.7     —
AFFECTED
  Product   Versions                                          Fixed
  firmware  US_AC6V2.0RTL_V15.03.06.51_multi_T –              —
  firmware  US_AC5V1.0RTL_V15.03.06.48_multi_TDE01 –          —
  firmware  US_AC10V1.0re_V15.03.06.46_multi_TDE01 –          —
  firmware  US_W15EV1.0br_V15.11.0.5(1068_1567_841)_EN_TDE –  —
  firmware  US_FH1201V1.0BR_V1.2.0.14(408)_EN_TD –            —
TIMELINE
  Jun 5   Reserved by CNA
  Jul 6   Published (CNA: certcc)
CNA: certcc · CVSS v3.1 · 3 references · NVD status: Deferred
BeyondTrust Remote Support — Critical Pre-Authentication Vulnerability in BeyondTrust Remote Support and Privileged Remote Access
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   H   H   H    9.2   .0075   52.2     —
AFFECTED
  Product                   Versions     Fixed
  Remote Support            unspecified  —
  Privileged Remote Access  unspecified  —
TIMELINE
  Apr 9   Reserved by CNA
  Jul 6   Published (CNA: BT)
CWE-287 · CNA: BT · CVSS v4.0 · 1 reference · NVD status: Analyzed
Apache IoTDB: Denial of Service via Resource Exhaustion in Aggregation Query
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0074   51.8     —
AFFECTED
  Product       Versions  Fixed
  Apache IoTDB  1.3.3 –   —
TIMELINE
  Jan 20  Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-400 · CNA: apache · CVSS v3.1 · 2 references · NVD status: Analyzed
Apache Camel AWS2 SNS: An inbound Camel-namespace filter was added to Sns2HeaderFilterStrategy to align it with sibling components
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0074   51.8     —
AFFECTED
  Product                Versions  Fixed
  Apache Camel AWS2 SNS  4.0.0 –   —
TIMELINE
  Jun 19  Reserved by CNA
  Jul 6   Published (CNA: apache)
CWE-20 · CNA: apache · CVSS v3.1 · 1 reference · NVD status: Analyzed
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-482049.851.5Apache Software FoundationApache CamelCWE-20Apache Camel: Camel-MongoDB-GridFS: The gridfs.* control headers used non-Cam…
CVE-2026-119628.851.5UnknownFileOrganizer—FileOrganizer < 1.2.0 - Authenticated Arbitrary File Upload via elFinder File…
CVE-2026-465877.350.1Apache Software FoundationApache CamelCWE-20Apache Camel: Couchbase: Non-Camel-prefixed Exchange headers bypass HeaderFil…
CVE-2026-465887.350.1Apache Software FoundationApache CamelCWE-20Apache Camel: CouchDB: Non-Camel-prefixed Exchange headers bypass HeaderFilte…
CVE-2026-490427.350.1Apache Software FoundationApache CamelCWE-20Apache Camel: langchain4j-tools: filter tool argument headers against declare…
CVE-2026-240149.850.0Apache Software FoundationApache IoTDBCWE-284Apache IoTDB: Path Traversal in DataNode Internal RPC Trigger JAR Upload Allo…
CVE-2026-464559.850.0Apache Software FoundationApache CamelCWE-613Apache Camel: Camel-Keycloak: The access-token validity window is not verifie…
CVE-2026-148089.350.0PROG MISProg Management SystemCWE-497PROG MIS|Prog Management System - Exposure of Sensitive Information
CVE-2026-490866.549.7Apache Software FoundationApache Camel DaprCWE-20Apache Camel Dapr: Pub/Sub consumer copied the inbound CloudEvent's pub/sub-n…
CVE-2026-490976.549.4Apache Software FoundationApache CamelCWE-20Apache Camel: Camel-IRC: The irc.sendTo (and other irc.*) Exchange header con…
CVE-2026-425278.149.1Apache Software FoundationApache CamelCWE-502Apache Camel: Permissive default ObjectInputFilter pattern admits java.net.**…
CVE-2026-52689.149.0CIENA6500 S-SeriesCWE-288SFTP Server Authentication Weakness
CVE-2026-555147.149.0vllm-projectvllmCWE-617vLLM denial of service via prompt embeds on M-RoPE models
CVE-2026-464577.548.8Apache Software FoundationApache CamelCWE-20Apache Camel: Camel-NATS: Inbound NATS message headers are mapped into the Ex…
CVE-2026-438667.348.5Apache Software FoundationApache CamelCWE-502Apache Camel, Apache Camel: Camel JMS - CVE-2026-40860 fix bypass via Default…
CVE-2026-421538.848.4coollabsiocoolifyCWE-78Coolify: PostgreSQL Healthcheck Command Injection Allows Root Code Execution …
CVE-2026-422048.848.4coollabsiocoolifyCWE-78Coolify: Authenticated RCE via SHELL_SAFE_COMMAND_PATTERN regression → host root
CVE-2026-401408.748.3BeyondTrustRemote SupportCWE-400High-Severity Pre-Authentication Vulnerability in BeyondTrust Remote Support …
CVE-2026-240139.147.7Apache Software FoundationApache IoTDBCWE-290Apache IoTDB: Authentication Bypass via Forged SessionID in Thrift RPC
CVE-2026-148079.347.5PROG MISERP AppCWE-798PROG MIS|ERP App - Use of Hard-coded Credentials
CVE-2026-465857.547.5Apache Software FoundationApache Camel LuceneCWE-20Apache Camel Lucene: The query control headers used non-Camel-prefixed names …
CVE-2026-147926.947.4n/aFormbricksCWE-266Formbricks Survey actions.ts access control
CVE-2026-465927.547.3Apache Software FoundationApache CamelCWE-20Apache Camel: Camel-CXF: The SOAP operation-selection headers used non-Camel-…
CVE-2026-559947.547.3Apache Software FoundationApache Camel IggyCWE-20Apache Camel Iggy: The inbound consumer maps externally-supplied Iggy message…
CVE-2026-542347.546.8vllm-projectvllmCWE-20vLLM: Remote DoS in vLLM via Invalid Recovered Token Reinjection
CVE-2025-538279.146.8owncloudownCloud CoreCWE-749ownCloud Core: Updater has an exposed dangerous method or function
CVE-2026-137087.546.5TONYCImager::File::JPEGCWE-401Imager::File::JPEG versions before 1.003 for Perl leak heap memory when readi…
CVE-2026-389767.546.5n/an/aCWE-476mrubyc through 3.4.1 was found to contain a NULL pointer dereference in src/v…
CVE-2026-490985.346.4Apache Software FoundationApache CamelCWE-20Apache Camel: Camel-Kafka: The kafka.OVERRIDE_TOPIC (and other kafka.*) Excha…
CVE-2026-482039.146.0Apache Software FoundationApache CamelCWE-20Apache Camel: Camel-Solr: The SolrParam. and SolrField. Exchange header prefi…
CVE-2026-482059.146.0Apache Software FoundationApache Camel DNSCWE-20Apache Camel DNS: The dns.* and term Exchange header constants used non-Camel…
CVE-2026-555748.745.2vllm-projectvllmCWE-1333vLLM: ReDoS via structured_outputs.regex compiled without timeout in xgrammar…
CVE-2026-144718.645.2AWSMCP Gateway & RegistryCWE-89Authenticated SQL injection in the metrics-service retention policy subsystem…
CVE-2026-486149.945.1WebProsPleskCWE-94An improper authorization vulnerability in the Plesk XML API allows an authen…
CVE-2026-493655.344.8Apache Software FoundationApache CamelCWE-209Apache Camel: Camel-Netty-HTTP: The muteException consumer option defaulted t…
CVE-2026-561395.344.8Apache Software FoundationApache Camel UndertowCWE-209Apache Camel Undertow: The muteException consumer option defaulted to false, …
CVE-2026-148098.744.3PROG MISProg Management SystemCWE-89PROG MIS|Prog Management System - SQL Injection
CVE-2026-465843.744.2Apache Software FoundationApache Camel MailCWE-20Apache Camel Mail: The mail producer applied attacker-supplied message header…
CVE-2026-42498.643.9WSO2WSO2 Universal GatewayCWE-707Denial of Service via Malicious JSON Payloads in Throttling Events in Multipl…
CVE-2026-464535.343.6Apache Software FoundationApache CamelCWE-639Apache Camel: Camel-Elasticsearch-Rest-Client: Exchange header constants with…
CVE-2026-482065.343.6Apache Software FoundationApache Camel JIRACWE-20Apache Camel JIRA: A set of non-Camel-prefixed Exchange header constants bypa…
CVE-2026-465918.243.5Apache Software FoundationApache CamelCWE-943Apache Camel: Camel-Neo4j: JSON property names from the CamelNeo4jMatchProper…
CVE-2026-91657.743.4Red HatRed Hat Advanced Cluster Security 4.9CWE-400Stackrox: stackrox: unbounded graphql query depth allows authenticated denial…
CVE-2026-582268.743.4elixir-minthpaxCWE-407Unauthenticated denial-of-service via unbounded HPACK integer decoding in hpax
CVE-2026-91829.843.3EsriArcGIS ServerCWE-434Unvalidated File Upload vulnerability in ArcGIS Server.
CVE-2026-536476.943.2FOSSBillingFOSSBillingCWE-200FOSSBilling vulnerable to unauthenticated API key configuration disclosure vi…
CVE-2026-418996.542.9coollabsiocoolifyCWE-306Coolify unauthenticated feedback endpoint allows Discord webhook abuse
CVE-2026-401418.542.4BeyondTrustRemote SupportCWE-943High-Severity Vulnerability In Web Application Component of BeyondTrust Remot…
CVE-2026-148036.542.4SRIMojo::JSONCWE-674Mojo::JSON versions before 9.47 for Perl allow memory exhaustion via unbounde…
CVE-2026-568108.742.0elixir-mintmintCWE-770mint buffers an entire chunked response chunk in memory in Mint.HTTP1.decode_…
CVE-2026-490995.341.8Apache Software FoundationApache Camel SalesforceCWE-74Apache Camel Salesforce: Non-Camel-prefixed Exchange header constants bypass …
CVE-2026-556466.541.8vllm-projectvllmCWE-400vLLM speech-to-text endpoints allocate full upload before enforcing the audio…
CVE-2025-538298.041.2owncloudownCloud 10CWE-23ownCloud 10 is vulnerable to Relative Path Traversal
CVE-2026-118558.840.8UnknownSimple Membership—Simple Membership < 4.7.5 - Unauthenticated Stored XSS via Stripe Webhook API…
CVE-2026-557277.540.5Genetec Inc.Genetec Security CenterCWE-287A flaw in the authentication mechanism for video stream requests in Genetec S…
CVE-2024-62287.539.5UnknownNotifications for Forms & WordPress Actions—WANotifier < 2.6 - Subscriber+ LFI
CVE-2026-584035.938.9gohugoiohugoCWE-59Hugo symlink confinement bypass in os.ReadFile
CVE-2026-120838.138.4UnknownAdmin and Site Enhancements (ASE)—Admin and Site Enhancements < 8.8.4 - Unauthenticated Administrator-Role Rest…
CVE-2025-538309.138.0owncloudAnti-Virus for ownCloudCWE-918Anti-Virus for ownCloud 10 is vulnerable to Server-Side Request Forgery (SSRF)
CVE-2026-439256.938.0FOSSBillingFOSSBillingCWE-915FOSSBilling: Mass assignment of group_id in guest client registration allows …
CVE-2026-401389.237.8BeyondTrustRemote SupportCWE-287Critical Pre-Authentication Vulnerability in BeyondTrust Remote Support and P…
CVE-2026-137537.537.8HP Inc.HP 2800 Printer Series—CVE-2026-13753
CVE-2026-597128.637.1LeantimeLeantimeCWE-639Leantime - JSON-RPC API Broken Access Control via users.getUser
CVE-2026-575738.636.9unclecodecrawl4aiCWE-918Crawl4AI unauthenticated SSRF in Docker streaming crawl endpoint
CVE-2026-144687.736.7HashiCorpTerraform EnterpriseCWE-22Path traversal allows arbitrary file read in Terraform Enterprise container
CVE-2026-536414.836.7FOSSBillingFOSSBillingCWE-79FOSSBilling has stored XSS in client email views via unescaped content in Jav…
CVE-2026-71856.036.2T-SystemsArchivoCWE-22Unauthorized access to files in T-Systems products
CVE-2026-108308.835.7UnknownAllCoach—AllCoach < 1.0.2 - Unauthenticated Account Takeover
CVE-2026-145368.835.5DevolutionsServerCWE-863Improper enforcement of a mandatory multi-factor authentication policy in Dev…
CVE-2026-439218.935.1FOSSBillingFOSSBillingCWE-94FOSSBilling vulnerable to arbitrary PHP code injection via unescaped config s…
CVE-2026-449378.335.1SUSERancherCWE-918SUSE Rancher Fleet had an Unauthenticated Webhook: Regex Injection via Unsani…
CVE-2026-439282.335.1FOSSBillingFOSSBillingCWE-754FOSSBilling: Payment amount not validated in PayPalEmail adapter allows invoi…
CVE-2026-553797.534.9python-pillowPillowCWE-789Pillow BdfFontFile`: `Image.new()` called without `_decompression_bomb_check(…
CVE-2026-423317.734.6FOSSBillingFOSSBillingCWE-306FOSSBilling missing authorization in guest Invoice API endpoints
CVE-2026-540607.534.6python-pillowPillowCWE-789Pillow: `FontFile.compile()`: `Image.new()` called without `_decompression_bo…
CVE-2026-553807.534.6python-pillowPillowCWE-789Pillow GdImageFile decompression bomb protection bypass
CVE-2026-117668.034.1UnknownUltimate Member—Ultimate Member < 2.12.0 - Subscriber+ Stored XSS via Custom Textarea Profile…
CVE-2026-501356.933.9gohugoiohugoCWE-59Hugo: Symlink confinement bypass in resources.Get
CVE-2026-540597.533.8python-pillowPillowCWE-789Pillow: PcfFontFile._load_bitmaps()`: `Image.frombytes()` called without `_de…
CVE-2026-536485.133.8FOSSBillingFOSSBillingCWE-73FOSSBilling: Downloadable product files can be overwritten through filename c…
CVE-2026-591958.233.0pnpmpnpmCWE-22pnpm: Path traversal in configDependencies env lockfile allows symlink creati…
CVE-2026-591947.133.0pnpmpnpmCWE-22pnpm: patch-remove could delete project-selected files outside the patches di…
CVE-2026-591967.133.0pnpmpnpmCWE-22pnpm: hoisted install imports lockfile alias outside node_modules
CVE-2026-147845.332.7vxcontrolPentAGICWE-264vxcontrol PentAGI Docker API client.go sandbox
CVE-2026-501346.332.4gohugoiohugoCWE-918Hugo: security.http.urls allow-list bypass via HTTP redirects
CVE-2025-538288.532.1owncloudSharePointCWE-918SharePoint for ownCloud 10 is vulnerable to Server-Side Request Forgery (SSRF)
CVE-2026-536448.631.7FOSSBillingFOSSBillingCWE-639FOSSBilling's missing order-state validation allows clients to read and reset…
CVE-2026-147935.331.4CraftCMSCWE-285Craft CMS reorder-sets Endpoint GlobalsController.php actionReorderSets autho…
CVE-2026-147945.331.3CraftCMSCWE-266Craft CMS Charts Endpoint ChartsController.php actionGetNewUsersData improper…
CVE-2026-327186.530.3coollabsiocoolifyCWE-863Coolify read-scoped API tokens can perform state-changing validation operations
CVE-2026-340506.530.3coollabsiocoolifyCWE-862Coolify Settings/Updates Livewire component missing instance administrator au…
CVE-2026-148986.530.1OpenAICodex desktop app for macOSCWE-200The OpenAI Codex desktop app for macOS rendered remote images from Markdown i…
CVE-2026-126869.329.9AdissBiloopCWE-639Incorrect authorisation in Adiss’s Biloop
CVE-2026-536458.529.9FOSSBillingFOSSBillingCWE-269FOSSBilling's missing self-edit prevention in staff permission management all…
CVE-2026-337346.929.5FOSSBillingFOSSBillingCWE-89FOSSBilling has improper SQL neutralization in `Massmailer` recipient filters
CVE-2026-584044.629.4gohugoiohugoCWE-918Hugo security.http.urls deny rules bypassed by alternate IPv4 encodings
CVE-2026-439188.729.1FOSSBillingFOSSBillingCWE-613Suspended or inactive FOSSBilling accounts can retain or regain access throug…
CVE-2026-536438.727.7FOSSBillingFOSSBillingCWE-200FOSSBilling allows low-privileged staff accounts to perform unauthorized acti…
CVE-2026-536425.327.7FOSSBillingFOSSBillingCWE-863FOSSBilling: Unverified clients can access client-area pages when email confi…
CVE-2026-536402.327.7FOSSBillingFOSSBillingCWE-200FOSSBilling missing authorization checks on read-only admin API endpoints exp…
CVE-2026-449365.027.3SUSERancherCWE-918Rancher Fleet SSRF in Bundle Reader via Unvalidated Helm Repository URL in fl…
CVE-2026-147912.027.4crater-invoice-inccraterCWE-79crater-invoice-inc crater Invoice Note InvoicesRequest.php getFormattedString…
CVE-2026-341675.026.7coollabsiocoolifyCWE-639Coolify: Cross-tenant activity log disclosure via unlocked Livewire property …
CVE-2026-597105.326.2showdownshowdownCWE-79showdown - Stored XSS via Unescaped Table Header ID Attribute Injection
CVE-2026-147952.125.7CodeAstroApartment Visitor Management SystemCWE-74CodeAstro Apartment Visitor Management System action-visitor.php sql injection
CVE-2026-147962.125.7CodeAstroApartment Visitor Management SystemCWE-74CodeAstro Apartment Visitor Management System report.php sql injection
CVE-2026-147972.125.7CodeAstroApartment Visitor Management SystemCWE-74CodeAstro Apartment Visitor Management System edit-apartment.php sql injection
CVE-2026-147982.125.7CodeAstroApartment Visitor Management SystemCWE-74CodeAstro Apartment Visitor Management System visitor-entry.php sql injection
CVE-2026-147992.125.7CodeAstroEcommerce WebsiteCWE-74CodeAstro Ecommerce Website my_account.php sql injection
CVE-2026-121546.425.5widgetpackReviews Widgets for Google, TripAdvisor, Yelp & RecommendationsCWE-79Reviews Widgets for Google, Yelp & TripAdvisor <= 2.7.3 - Authenticated (Cont…
CVE-2026-439276.925.4FOSSBillingFOSSBillingCWE-367FOSSBilling has race condition in cart checkout that bypasses promo code usag…
CVE-2026-597115.325.0showdownshowdownCWE-79showdown - Cross-Site Scripting via Unescaped Metadata Title in completeHTMLD…
CVE-2026-501335.125.0gohugoiohugoCWE-79Hugo: XSS via text/html content files
CVE-2026-536467.723.5FOSSBillingFOSSBillingCWE-640FOSSBilling: Client password reset token reuse allows persistent account take…
CVE-2026-136986.023.5OpenVPNOpenVPNCWE-401A memory leak in OpenVPN version 2.5.0 through 2.5.11, 2.6.0 through 2.6.20 a…
CVE-2026-340493.323.2coollabsiocoolifyCWE-78Coolify: Command Injection via unsanitized MongoDB collection names in databa…
CVE-2026-14334.822.6NT-wareuniFLOW ULM (Universal Login Manager) StandaloneCWE-522uniFLOW Universal Login Manager (ULM) Standalone Improper Protection of Sensi…
CVE-2026-584025.122.0gohugoiohugoCWE-79Hugo default code block renderer XSS via unescaped code-fence language
CVE-2026-590895.521.6—gimpCWE-190Gimp: gimp: denial of service via integer overflow in playstation tim loader
CVE-2026-131225.921.3OpenvpnOpenVPNCWE-617OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remo…
CVE-2026-547646.920.0traefiktraefikCWE-345ForwardAuth middleware leaks X-Forwarded-Port spoofing via untrusted X-Forwar…
CVE-2025-538318.219.5owncloudDrawIO for ownCloudCWE-79DrawIO for ownCloud 10 is vulnerable to Stored XSS
CVE-2026-547656.319.5traefiktraefikCWE-284Traefik: Gateway HTTPRoute backendRef filters can leak backend context across…
CVE-2026-423419.219.1FOSSBillingFOSSBillingCWE-306FOSSBilling has an unauthenticated payment bypass via IPN callback forgery
CVE-2026-389795.418.8n/an/aCWE-1021ajenti through v2.2.13 has a clickjacking weakness in the browser-facing logi…
CVE-2026-583807.817.0Red HatRed Hat Enterprise Linux 9CWE-193Gimp: gimp: stack buffer overflow in pnmscanner_gettoken()
CVE-2025-85916.116.4WSO2WSO2 Identity ServerCWE-79Reflected Cross-Site Scripting via URL Parameter in Multiple WSO2 Products En…
CVE-2026-542918.214.4pgjdbcpgjdbcCWE-636Silent channel-binding authentication downgrade via unsupported certificate a…
CVE-2026-597138.614.1LeantimeLeantimeCWE-352Leantime - OIDC Login CSRF via Unconditional State Verification Stub
CVE-2026-482675.514.1AdobeDNG SDKCWE-476DNG SDK | NULL Pointer Dereference (CWE-476)
CVE-2026-148002.113.6imhamzaazamecommerceFlaskCWE-352imhamzaazam ecommerceFlask cross-site request forgery
CVE-2026-69009.112.6B&R Industrial Automation GmbHAPROLCWE-295Improper Certificate Validation
CVE-2026-147891.912.5radareorgradare2CWE-119radareorg radare2 Memory64ListStream mdmp.c stack-based overflow
CVE-2026-133566.312.2MozillaFirefox for iOSCWE-451Interrupted navigation could allow address bar origin spoofing in Firefox for…
CVE-2026-547637.810.7traefiktraefikCWE-178Traefik: headerField underscore-variant identity spoofing in BasicAuth / Dige…
CVE-2026-147871.910.4radareorgradare2CWE-189radareorg radare2 pb Print cmd_print.inc cmd_print integer overflow
CVE-2026-548932.110.2swooshswooshCWE-116Email-derived URL path injection in the Swoosh Microsoft Graph adapter
CVE-2026-147881.99.7radareorgradare2CWE-119radareorg radare2 cfile.c r_core_bin_load use after free
CVE-2026-591525.09.6langchain-ailangsmith-sdkCWE-22Arbitrary server-side file read in LangSmith SDK TracingMiddleware
CVE-2026-537633.89.1OP-TEEoptee_osCWE-190OP-TEE has AES-GCM 32-bit integer overflow in length counters that breaks aut…
CVE-2026-147861.98.6radareorgradare2CWE-189radareorg radare2 str.c r_str_word_get0set integer overflow
CVE-2026-582035.38.0pydanticpydantic-settingsCWE-22NestedSecretsSettingsSource follows symlinks outside secrets_dir, enabling lo…
CVE-2026-557984.57.4python-pillowPillowCWE-78Pillow: WindowsViewer.get_command() OS command injection via unescaped shell …
CVE-2026-443625.57.4OP-TEEoptee_osCWE-285OP-TEE's subkey rollback protection can be bypassed with older subkey versions
CVE-2026-137057.16.9TONYCImagerCWE-125Imager versions before 1.032 for Perl have a heap out-of-bounds read in the b…
CVE-2025-156681.96.7n/aGPACCWE-119GPAC MP4Box box_code_base.c sgpd_del_entry heap-based overflow
CVE-2026-389734.45.8n/an/aCWE-125mrubyc through release3.4.1 was found to contain an out-of-bounds read in bui…
CVE-2026-69018.45.5B&R Industrial Automation GmbHAPROLCWE-426Untrusted Search Path
CVE-2024-561415.05.3BixilonMinosoftCWE-329Minosoft has IV equal to key
CVE-2026-148014.85.3n/aGPACCWE-369GPAC TeXML File load_text.c txtin_probe_duration divide by zero
CVE-2025-156671.95.3n/aGPACCWE-119GPAC MP4Box avc_ext.c gf_isom_nalu_sample_rewrite double free
CVE-2026-147901.95.3n/aGPACCWE-404GPAC Media File write_nhml.c nhmldump_send_frame null pointer dereference
CVE-2026-421483.85.1coollabsiocoolifyCWE-78Coolify: Command Injection via Unescaped Version String in Docker Build
CVE-2026-402575.54.7OP-TEEoptee_osCWE-787OP-TEE has SHA-3 accelerated finalize heap overflow
CVE-2026-449347.04.6SUSERancherCWE-215Exposed tokens in SUSE Rancher AI Agent logs
CVE-2026-425463.84.5OP-TEEoptee_osCWE-770OP-TEE has missing OPTEE_MSG_ATTR_TYPE_MASK in cleanup_shm_refs() leaks mobj …
CVE-2026-414343.34.5OP-TEEoptee_osCWE-121OP-TEE has unbounded recursion in sanitize_client_object()
CVE-2026-415163.33.4OP-TEEoptee_osCWE-208OP-TEE: Hisilicon HPRE PKCS#1 v1.5 Decryption Padding Oracle
CVE-2026-415143.33.1OP-TEEoptee_osCWE-208OP-TEE: RSA-OAEP padding oracle in Hisilicon HPRE driver enables plaintext re…
CVE-2026-415153.33.1OP-TEEoptee_osCWE-208OP-TEE: RSA-OAEP padding oracle in NXP CAAM driver enables plaintext recovery
CVE-2026-252688.81.1Qualcomm, Inc.SnapdragonCWE-121Stack-based Buffer Overflow in WLAN Host
CVE-2026-213797.81.1Qualcomm, Inc.SnapdragonCWE-126Buffer Over-read in Windows Compute
CVE-2026-213837.11.0Qualcomm, Inc.SnapdragonCWE-323Reusing a Nonce, Key Pair in Encryption in HLOS
CVE-2025-596157.80.4Qualcomm, Inc.SnapdragonCWE-416Use After Free in Computer Vision
CVE-2025-596167.80.4Qualcomm, Inc.SnapdragonCWE-416Use After Free in Computer Vision
CVE-2025-596177.30.4Qualcomm, Inc.SnapdragonCWE-416Use After Free in Computer Vision
CVE-2026-213685.30.2Qualcomm, Inc.SnapdragonCWE-787Out-of-bounds Write in Camera Driver
CVE-2026-213695.30.2Qualcomm, Inc.SnapdragonCWE-787Out-of-bounds Write in Camera Driver
CVE-2026-213705.30.2Qualcomm, Inc.SnapdragonCWE-787Out-of-bounds Write in Camera Driver
CVE-2026-213845.30.2Qualcomm, Inc.SnapdragonCWE-787Out-of-bounds Write in Camera Driver
CVE-2026-252717.00.1Qualcomm, Inc.SnapdragonCWE-367Time-of-check Time-of-use (TOCTOU) Race Condition in DSP Service

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-07-06 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.

Machine-readable. This edition as JSON or CSV — the ranked results, transactions, and counts, for citation or ingestion. Frozen at publication; later changes appear as transactions on later editions.