boxscore/security

A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?

Friday, July 10, 2026 · all times UTC← 2026-07-09 · archive · 2026-07-11 →

Security Box Score — July 10, 2026

350 CVEs published, led by Drupal (46).

350 CVEs published July 10, 2026: 36 critical, 122 high, 163 medium, 29 low; 2 in the KEV catalog at press time; 27 with a public exploit reference; 0 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 325 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published231914722——
KEV catalog size1675

Publication counts reflect the record since May 20, 2026 (archive start); KEV figures are catalog-wide.

Prior-year comparisons begin when the archive covers a full year; archive begins May 20, 2026.

653 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux38151812186653011120.17.5.0014-57 ▼
google791344149608549387760.47.8.0024-484 ▼
microsoft52809615531896286202.57.8.0046-155 ▼
red hat362581410112617200.06.5.0031+2 ▲
apple01042287228876.76.5.0032-2 ▼
canonical1212685000.05.5.0011+1 ▲
suse61941140000.08.6.0042+6 ▲
freebsd01601240000.07.8.00160
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
ubiquiti2536142110338.38.8.0049+25 ▲
cisco830614100561136.77.5.0057+5 ▲
palo alto networks1425131471328.04.7.0028+5 ▲
netgear01700161000.04.3.0024-17 ▼
checkpoint0915303111.17.5.0410-2 ▼
fortinet09432028333.38.3.0076-2 ▼
ivanti09450025555.68.8.5187-3 ▼
f50843104112.58.9.02250
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache61216418479113310.57.3.0057+5 ▲
mozilla3591218290900.07.3.0025-2 ▼
drupal465165355412.05.9.0026+46 ▲
gitlab73805276425.34.7.0032+7 ▲
github171150000.06.0.0039+1 ▲
docker070520000.08.2.0016-2 ▼
wordpress00000020———0
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle02701321161842720.78.8.0040-1 ▼
adobe314713537921932.06.1.0021-120 ▼
ibm21263842460600.07.5.0034-3 ▼
progress101931420600.07.5.0037+5 ▲
solarwinds07232010457.17.5.4001-3 ▼
veeam042200100.09.0.0052-1 ▼
zohocorp031110000.08.4.01700
atlassian000000130———0
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
synology02325133000.05.6.0025-5 ▼
siemens4130760000.07.1.0023-3 ▼
d-link1130535300.06.0.0059-7 ▼
rockwell automation071510000.08.7.00300
abb060420000.07.2.0018-4 ▼
schneider electric060420000.07.8.0042-1 ▼
moxa050320000.07.0.00290
dahua030111000.06.9.0036-3 ▼
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
sourcecodester2899005346000.05.5.0029-7 ▼
dell3389541403211.17.0.0021+26 ▲
capgo1374237341000.07.0.0038+13 ▲
spring073231391000.06.5.0024-53 ▼
openclaw1680362210000.07.0.0021+1 ▲
edimax065039026100.07.4.00800
itsourcecode1063001944000.02.1.0033-12 ▼
themerex26055410000.08.1.0043+2 ▲

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-10520.9991100.010.0
CVE-2026-20253.969499.99.8
CVE-2026-35273.954799.99.8
CVE-2026-20230.882099.88.6
CVE-2026-34910.874799.710.0
CVE-2026-34908.851999.710.0
CVE-2026-48907.781099.510.0
CVE-2026-45659.760899.58.8
CVE-2026-34909.639099.210.0
CVE-2026-48282.423998.610.0
Highest CVSS
CVECVSSEPSSNote
CVE-2026-1052010.0.9991KEV
CVE-2026-3491010.0.8747KEV
CVE-2026-3490810.0.8519KEV
CVE-2026-4890710.0.7810KEV
CVE-2026-3490910.0.6390KEV
CVE-2026-4828210.0.4239KEV
CVE-2026-5629010.0.3038KEV
CVE-2026-4893910.0.1973KEV
CVE-2026-4890810.0.1482KEV
CVE-2026-5629110.0.1459KEV
Most disclosures (vendor)
VendorCVEs
google606
linux456
oracle241
red hat130
apache126
capgo74
ibm72
microsoft66
dell64
openclaw62
Most KEV additions (YTD)
VendorKEV
microsoft20
cisco11
apple7
google6
ivanti5
solarwinds4
adobe3
berriai3
fortinet3
smartertools3
Most-affected ecosystems
EcosystemAdvisories
Maven71
npm6
PyPI5
NuGet3
Fastest to KEV
CVEVendorDays
CVE-2026-10520ivanti0
CVE-2026-12569PTC0
CVE-2026-20230Cisco0
CVE-2026-20253Splunk0
CVE-2026-20262Cisco0
CVE-2026-34908Ubiquiti Inc0
CVE-2026-34909Ubiquiti Inc0
CVE-2026-34910Ubiquiti Inc0
CVE-2026-35273Oracle Corporation0
CVE-2026-45659Microsoft0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104n/a2021-11-171696
CVE-2021-27102n/a2021-11-171696
CVE-2021-27101n/a2021-11-171696
CVE-2021-27103n/a2021-11-171696
CVE-2021-21017Adobe2021-11-171696
CVE-2021-28550Adobe2021-11-171696
CVE-2021-42013Apache Software Foundation2021-11-171696
CVE-2021-41773Apache Software Foundation2021-11-171696
CVE-2021-30858Apple2021-11-171696
CVE-2021-30860Apple2021-11-171696

Transactions

EXPLOIT PUBLISHED — rabbitmq-server: 9 CVEs (CVE-2026-57211, CVE-2026-57212, CVE-2026-57213, CVE-2026-57215, CVE-2026-57216, CVE-2026-57217, CVE-2026-57218, CVE-2026-57220, CVE-2026-57221). Public exploit references added.

EXPLOIT PUBLISHED — FreeRDP: 4 CVEs (CVE-2026-55827, CVE-2026-57156, CVE-2026-57157, CVE-2026-57158). Public exploit references added.

EXPLOIT PUBLISHED — grokability snipe-it: 4 CVEs (CVE-2026-55460, CVE-2026-55462, CVE-2026-55466, CVE-2026-55515). Public exploit references added.

EXPLOIT PUBLISHED — qax-os excelize: 3 CVEs (CVE-2026-54063, CVE-2026-59161, CVE-2026-59162). Public exploit references added.

EXPLOIT PUBLISHED — CVE-2026-52747 (owasp-modsecurity ModSecurity). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-53448 (coturn). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-53449 (coturn). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-56291 (balbooa.com Balbooa Forms extension for Joomla). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-59193 (getgrav grav). Public exploit reference added.

Yesterday's Results

How to read these box scores · glossary

350 CVEs published. 25 box scores, 325 table rows — nothing truncated.

icagenda.com iCagenda extension for Joomla — Joomla Extension - icagenda.com - Remote Code Execution in iCaganda extension for Joomla < 4.0.8/3.9.15
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H   10.0   .1973   97.2   YES
AFFECTED
  Product                        Versions       Fixed
  iCagenda extension for Joomla  3.2.1-4.0.7 –  —
TIMELINE
  May 26  Reserved by CNA
  Jul 10  Added to CISA KEV, due Jul 13
  Jul 10  Published (CNA: Joomla)
CWE-434 · CNA: Joomla · CVSS v4.0 · 6 references · NVD status: Analyzed · KEV due July 13, 2026
balbooa.com balbooa.com Balbooa Forms extension for Joomla — Joomla Extension - balbooa.com - Unauthenticated file upload in Balbooa Forms extension < 2.4.1
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H   10.0   .1459   96.4   YES
AFFECTED
  Product                                         Versions     Fixed
  balbooa.com Balbooa Forms extension for Joomla  1.0-2.4.0 –  —
TIMELINE
  Jun 20  Reserved by CNA
  Jul 10  Public exploit reference published
  Jul 10  Added to CISA KEV, due Jul 13
  Jul 10  Published (CNA: Joomla)
CWE-434 · CNA: Joomla · CVSS v4.0 · 3 references · NVD status: Analyzed · KEV due July 13, 2026
WebRehab Super Forms – Drag & Drop Form Builder — Super Forms <= 6.3.313 - Unauthenticated Arbitrary File Upload via 'data' Parameter (datauristring / value)
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0348   88.2     —
AFFECTED
  Product                                 Versions     Fixed
  Super Forms – Drag & Drop Form Builder  unspecified  —
TIMELINE
  Jul 6   Reserved by CNA
  Jul 10  Published (CNA: Wordfence)
CWE-434 · CNA: Wordfence · CVSS v3.1 · 2 references · NVD status: Deferred
HestiaCP < 1.9.5 Authenticated OS Command Injection via DNS Record Management
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    8.7   .0324   87.3     —
AFFECTED
  Product   Versions     Fixed
  hestiacp  unspecified  —
TIMELINE
  Mar 13  Reserved by CNA
  Jul 10  Published (CNA: VulnCheck)
CWE-78 · CNA: VulnCheck · CVSS v4.0 · 4 references · NVD status: Analyzed
Flux159 mcp-server-kubernetes — MCP Server Kubernetes < 3.9.0 Argument Injection via kubectl Structured Tools
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0210   80.3     —
AFFECTED
  Product                Versions     Fixed
  mcp-server-kubernetes  unspecified  —
TIMELINE
  Jul 9   Reserved by CNA
  Jul 10  Published (CNA: VulnCheck)
CWE-88 · CNA: VulnCheck · CVSS v4.0 · 5 references · NVD status: Analyzed
Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neutralization of Special Elements…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  C  H  H  H    9.1   .0200   79.2     —
AFFECTED
  Product            Versions     Fixed
  PowerFlex Manager  unspecified  —
TIMELINE
  Jun 22  Reserved by CNA
  Jul 10  Published (CNA: dell)
CWE-78 · CNA: dell · CVSS v3.1 · 1 reference · NVD status: Analyzed
RabbitMQ: Unauthenticated disclosure of OAuth client credentials via an HTTP API endpoint with certain less common OAuth 2 configurations
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   A   H   H   N    8.7   .0199   79.1     —
AFFECTED
  Product          Versions             Fixed
  rabbitmq-server  >= 4.2.0, < 4.2.6 –  —
TIMELINE
  Jun 24  Reserved by CNA
  Jul 10  Published (CNA: GitHub_M)
CWE-522, CWE-200 · CNA: GitHub_M · CVSS v4.0 · 6 references · NVD status: Analyzed
Drupal LocalGov Workflows — LocalGov Workflows - Moderately critical - Information disclosure - SA-CONTRIB-2026-039
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0187   77.8     —
AFFECTED
  Product             Versions  Fixed
  LocalGov Workflows  0.0.0 –   —
TIMELINE
  Jun 3   Reserved by CNA
  Jul 10  Published (CNA: drupal)
CWE-862 · CNA: drupal · CVSS v3.1 · 1 reference · NVD status: Analyzed
R-SOFT SERWIS DMS — OS Command Injection in R-SOFT DMS
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   N   L   N   H   H   H    9.0   .0133   68.9     —
AFFECTED
  Product  Versions     Fixed
  DMS      unspecified  —
TIMELINE
  Apr 22  Reserved by CNA
  Jul 10  Published (CNA: CERT-PL)
CWE-78 · CNA: CERT-PL · CVSS v4.0 · 1 reference · NVD status: Deferred
R-SOFT SERWIS DMS — OS Command Injection in R-SOFT DMS
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    8.7   .0123   66.6     —
AFFECTED
  Product  Versions     Fixed
  DMS      unspecified  —
TIMELINE
  Apr 22  Reserved by CNA
  Jul 10  Published (CNA: CERT-PL)
CWE-78 · CNA: CERT-PL · CVSS v4.0 · 1 reference · NVD status: Deferred
wpazleen Post Export Import with Media — Post Export Import with Media <= 1.13.1 - Authenticated (Administrator+) Arbitrary File Upload via Trailing-Dot Filename Bypass in ZIP Media Import
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  U  H  H  H    7.2   .0115   64.4     —
AFFECTED
  Product                        Versions     Fixed
  Post Export Import with Media  unspecified  —
TIMELINE
  Jun 26  Reserved by CNA
  Jul 10  Published (CNA: Wordfence)
CWE-434 · CNA: Wordfence · CVSS v3.1 · 7 references · NVD status: Deferred
tenteeglobal Instant Appointment — Instant Appointment <= 1.2 - Unauthenticated Arbitrary File Upload
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0108   62.5     —
AFFECTED
  Product              Versions     Fixed
  Instant Appointment  unspecified  —
TIMELINE
  Jul 9   Reserved by CNA
  Jul 10  Published (CNA: Wordfence)
CWE-434 · CNA: Wordfence · CVSS v3.1 · 4 references · NVD status: Deferred
Spinnaker: Improper yaml processing on kustomize bake operations
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   L   N  U  H  H  H    7.5   .0106   61.9     —
AFFECTED
  Product    Versions                   Fixed
  spinnaker  >= 2026.1.0, < 2026.1.1 –  —
TIMELINE
  Jun 16  Reserved by CNA
  Jul 10  Published (CNA: GitHub_M)
CWE-502 · CNA: GitHub_M · CVSS v3.1 · 11 references · NVD status: Analyzed
elixir-plug plug — Plug: multipart :length limit is not charged for part headers, enabling unbounded temp-file creation (denial of service)
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   N   N   L    6.9   .0105   61.7     —
AFFECTED
  Product  Versions                                    Fixed
  plug     1.4.0 –                                     —
  plug     c52b2f32c90bccd718202bafccb5f95594e30183 –  981597d3a4271ede64373c7a731702a42c500dd6
TIMELINE
  Jun 23  Reserved by CNA
  Jul 10  Published (CNA: EEF)
CWE-770 · CNA: EEF · CVSS v4.0 · 9 references · NVD status: Deferred
Spinnaker: Non-safe yaml deserialization allowing RCE when using specific types
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0101   60.5     —
AFFECTED
  Product    Versions                   Fixed
  spinnaker  >= 2025.4.0, < 2025.4.4 –  —
TIMELINE
  May 7   Reserved by CNA
  Jul 10  Published (CNA: GitHub_M)
CWE-470, CWE-502 · CNA: GitHub_M · CVSS v3.1 · 4 references · NVD status: Analyzed
RabbitMQ: Stream listener does not enforce configured frame-size limit during authentication, permitting unauth'd mem-exhaust DoS
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0097   59.2     —
AFFECTED
  Product          Versions             Fixed
  rabbitmq-server  >= 4.2.0, < 4.2.6 –  —
TIMELINE
  Jun 24  Reserved by CNA
  Jul 10  Public exploit reference published
  Jul 10  Published (CNA: GitHub_M)
CWE-770 · CNA: GitHub_M · CVSS v3.1 · 6 references · NVD status: Analyzed
cyberlord92 miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) — miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.7.0 - Unauthenticated Authentication Bypass to Administrator Account Takeover via Profile Completion OTP Flow
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0089   56.8     —
AFFECTED
  Product                                                                    Versions     Fixed
  miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn)  unspecified  —
TIMELINE
  Jun 19  Reserved by CNA
  Jul 10  Published (CNA: Wordfence)
CWE-287 · CNA: Wordfence · CVSS v3.1 · 6 references · NVD status: Deferred
RabbitMQ: AMQP 1.0, AMQP 0-9-1, Stream Protocol loopback enforcement can lead to remote guest sessions due to listener-address loopback checks
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  C  H  H  H   10.0   .0089   56.6     —
AFFECTED
  Product          Versions             Fixed
  rabbitmq-server  >= 4.2.0, < 4.2.6 –  —
TIMELINE
  Jun 24  Reserved by CNA
  Jul 10  Public exploit reference published
  Jul 10  Published (CNA: GitHub_M)
CWE-287 · CNA: GitHub_M · CVSS v3.1 · 6 references · NVD status: Analyzed
MervinPraison PraisonAI — PraisonAI before 4.6.78 Allowlist Bypass via find -exec
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    8.7   .0088   56.3     —
AFFECTED
  Product    Versions     Fixed
  PraisonAI  unspecified  4.6.78
TIMELINE
  Jul 9   Reserved by CNA
  Jul 10  Published (CNA: VulnCheck)
CWE-78 · CNA: VulnCheck · CVSS v4.0 · 2 references · NVD status: Deferred
HappyForms <= 1.26.12 - Authenticated (Admin+) Local File Inclusion
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   H   N  U  H  H  H    6.6   .0087   55.9     —
AFFECTED
  Product                                                                                                     Versions     Fixed
  Happyforms – Form Builder for WordPress: Drag & Drop Contact Forms, Surveys, Payments & Multipurpose Forms  unspecified  —
TIMELINE
  Oct 20  Reserved by CNA
  Jul 10  Published (CNA: Wordfence)
CWE-98 · CNA: Wordfence · CVSS v3.1 · 4 references · NVD status: Deferred
Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior, contain(s) a Deserialization of Untrusted Data …
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0086   55.7     —
AFFECTED
  Product                 Versions     Fixed
  Unisphere for PowerMax  unspecified  —
TIMELINE
  Jun 15  Reserved by CNA
  Jul 10  Published (CNA: dell)
CWE-502 · CNA: dell · CVSS v3.1 · 1 reference · NVD status: Analyzed
Apache Log4j API: Improper serialization of non-finite floating-point values in MapMessage.asJson()
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   N   N   N    6.3   .0081   54.2     —
AFFECTED
  Product           Versions  Fixed
  Apache Log4j API  2.13.1 –  —
TIMELINE
  Jun 1   Reserved by CNA
  Jul 10  Published (CNA: apache)
CWE-116 · CNA: apache · CVSS v4.0 · 4 references · NVD status: Analyzed
n/a n/a — An unauthenticated path traversal vulnerability exists in the web management interface of WTI (Wireless Tec…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0076   52.6     —
AFFECTED
  Product  Versions  Fixed
  n/a      n/a –     —
TIMELINE
  Jan 9   Reserved by CNA
  Jul 10  Published (CNA: mitre)
CWE-22 · CNA: mitre · CVSS v3.1 · 2 references · NVD status: Deferred
Hydro-Québec Le Circuit Electrique charging station backend Improper Access Control
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0076   52.4     —
AFFECTED
  Product                                         Versions     Fixed
  Le Circuit Electrique charging station backend  unspecified  —
TIMELINE
  Jan 27  Reserved by CNA
  Jul 10  Published (CNA: icscert)
CWE-284 · CNA: icscert · CVSS v4.0 · 3 references · NVD status: Deferred
templatic1 Hide My WP Lite — Hide My WP Lite <= 1.3 - Unauthenticated Path Traversal to Arbitrary File Read via 'he_wrapper_js' Parameter
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0075   52.1     —
AFFECTED
  Product          Versions     Fixed
  Hide My WP Lite  unspecified  —
TIMELINE
  Jun 25  Reserved by CNA
  Jul 10  Published (CNA: Wordfence)
CWE-22 · CNA: Wordfence · CVSS v3.1 · 3 references · NVD status: Deferred
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-572127.151.7rabbitmqrabbitmq-serverCWE-770RabbitMQ management HTTP API accepts request bodies larger than configured ma…
CVE-2026-578079.851.5miniOrange Security Software Pvt Ltd.OAuth Single Sign On - SSO (OAuth Client)CWE-288WordPress OAuth Single Sign On - SSO (OAuth Client) plugin <= 38.5.8 - Broken…
CVE-2026-153025.351.0reputeinfosystemsARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signupCWE-36ARMember <= 4.0.27 - Directory Traversal via X-FILENAME
CVE-2026-534487.250.5coturncoturnCWE-89Coturn: SQL Injection in HTTPS Admin Panel Delete Operations
CVE-2026-556877.550.4espressifesp-idfCWE-121ESF-IDF: Stack-Based Out-of-Bounds Write in JPEG Decoder DQT Marker Parsing
CVE-2026-571568.650.3FreeRDPFreeRDPCWE-122FreeRDP: Integer overflow leading to heap buffer overflow in Orders Delta Poi…
CVE-2026-555009.949.8decolua9routerCWE-2009router: Exposure of Sensitive Information and Unprotected Database Import/Ex…
CVE-2026-285649.849.7Apache Software FoundationApache IoTDBCWE-294Apache IoTDB: REST Basic Authentication Accepts Stale Cached Credentials
CVE-2026-558528.649.6frappefrappeCWE-22Frappe: TarSlip RCE in Package Import
CVE-2026-422196.949.6frappefrappeCWE-22Frappe: Path Traversal via /backups Route
CVE-2026-614926.149.0JetBrainsYouTrackCWE-79In JetBrains YouTrack before 2026.2.17394 stored XSS via article titles in di…
CVE-2026-152917.548.8themeatelierChatHelp – Click to Chat Button, WooCommerce Chat to Order & Floating Chat FormCWE-862Chat Help – Click to Chat Button & Form <= 3.1.3 - Missing Authorization to U…
CVE-2026-591618.748.6qax-osexcelizeCWE-400Excelize: Streaming GetRows row-bound bypass causes attacker-controlled alloc…
CVE-2026-591626.948.6qax-osexcelizeCWE-248Excelize: Negative shared-string index causes panic in GetCellValue and GetRows
CVE-2026-572157.048.5rabbitmqrabbitmq-serverCWE-863RabbitMQ: Direct-reply-to binding persistence can lead to unauthorized reply-…
CVE-2026-5721110.047.5rabbitmqrabbitmq-serverCWE-36RabbitMQ: UNC SSRF affecting the management UI on Windows
CVE-2026-153009.147.1ninjewGEO my WPCWE-89GEO my WP <= 4.5.4 - Unauthenticated SQL Injection via 'distance' / 'lat' / '…
CVE-2026-144808.746.8OpenPLCOpenPLCCWE-73OpenPLC v3 External Control of File Name or Path
CVE-2026-481275.346.7frappefrappeCWE-862Frappe: Arbitrary Attachment Injection via add_attachments and upload_file
CVE-2026-556388.646.6decolua9routerCWE-8629router: Unauthenticated LLM proxy access via /codex rewrite authorization by…
CVE-2026-392447.546.5n/an/aCWE-400adm-zip before 0.5.18 is vulnerable to denial of service via a crafted ZIP fi…
CVE-2026-540637.546.4qax-osexcelizeCWE-770Excelize: Unbounded Row Index Allocation in Worksheet Parser (checkSheet OOM/…
CVE-2026-226608.646.3flaskbbflaskbbCWE-697FlaskBB Logic Flaw Authorization Group Deletion via Bulk AJAX Endpoint
CVE-2026-597929.846.3JetBrainsIntelliJ IDEACWE-23In JetBrains IntelliJ IDEA before 2026.1.4, 2026.2 code execution via path tr…
CVE-2026-153305.546.2zhayujieCowAgentCWE-918zhayujie CowAgent Vision Tool vision.py _download_to_data_url server-side req…
CVE-2026-575756.946.2misskey-devmisskeyCWE-918Misskey: SSRF bypass in URL Preview
CVE-2026-591936.946.1getgravgravCWE-409Grav CMS — Improper Handling of Highly Compressed Data in Installer::unZip()
CVE-2026-574756.945.9DeloitteAI Assist for CustomerCWE-306Deloitte AI Assist for Customer unauthenticated configuration write
CVE-2026-400089.845.9Apache Software FoundationApache IoTDBCWE-470Apache IoTDB: Arbitrary Class Instantiation via Pipe Transfer RPC
CVE-2026-380598.745.7ST Engineering iDirectEvolution iQ‑Series terminalsCWE-306ST Engineering iDirect iQ-Series Terminals Missing authentication for critica…
CVE-2026-585036.945.6frappefrappeCWE-203Frappe: Unauthenticated User Enumeration via reset_password
CVE-2026-554696.545.5grokabilitysnipe-itCWE-22Snipe-IT: Path traversal vulnerability via CSV import `image` field
CVE-2026-400067.545.3Apache Software FoundationApache IoTDBCWE-306Apache IoTDB: Unauthenticated heap-exhaustion DoS via unbounded allocation in…
CVE-2026-58019.844.9Semtek Informatics Software Consulting Trade Ltd. Co.SEM-PMPCWE-89SQLi in Semtek Informatics' SEM-PMP
CVE-2026-614449.444.7MervinPraisonPraisonAICWE-94PraisonAI before 4.6.78 Code Injection via f-string
CVE-2026-572177.044.4rabbitmqrabbitmq-serverCWE-863RabbitMQ: Topic authorization can lead to cross-tenant routing-key bypass
CVE-2026-572184.944.4rabbitmqrabbitmq-serverCWE-863RabbitMQ: AMQP 0-9-1 in combination with OAuth 2: consumer persistence can le…
CVE-2026-97269.844.3DrupalDrupal AlternativeCommerce (Basket)CWE-915Drupal AlternativeCommerce (Basket) - Highly critical - Arbitrary PHP code ex…
CVE-2026-119139.844.3DrupalMother May ICWE-79Mother May I - Critical - Unsupported - SA-CONTRIB-2026-045
CVE-2026-125359.844.3DrupalFormatter FieldCWE-915Formatter Field - Critical - PHP object injection - SA-CONTRIB-2026-048
CVE-2026-443838.744.3Hydro-QuébecLe Circuit Electrique charging station backendCWE-613Hydro-Québec Le Circuit Electrique charging station backend Insufficient Sess…
CVE-2026-119905.344.1iqonicdesignKiviCare – Clinic & Patient Management System (EHR)CWE-862KiviCare <= 4.4.0 - Missing Authorization to Unauthenticated Payment Bypass a…
CVE-2026-153315.343.9zhayujieCowAgentCWE-22zhayujie CowAgent Skill Installation service.py _add_package path traversal
CVE-2026-575747.443.6misskey-devmisskeyCWE-294Misskey: TOTP tokens can be reused
CVE-2026-541498.843.51Panel-devMaxKBCWE-78MaxKB MCP tool import validation bypass allows post-authentication remote cod…
CVE-2026-471992.343.4frappefrappeCWE-89Frappe: check_safe_sql_query Permits SELECT INTO OUTFILE
CVE-2026-153195.543.2SipeedPicoClawCWE-266Sipeed PicoClaw Launcher access_control.go IPAllowlist access control
CVE-2026-493947.143.0frappefrappeCWE-862Frappe: Auth. bypass via update_page
CVE-2026-558437.043.0grokabilitysnipe-itCWE-269Snipe-IT: Improper Privilege Management
CVE-2026-511199.142.9n/an/aCWE-269An issue in Invixium IXM WEB v.2.3.85.25 allows an attacker to escalate privi…
CVE-2026-400059.142.8Apache Software FoundationApache IoTDBCWE-22Apache IoTDB: Path Traversal in Pipe File Transfer Receiver
CVE-2026-429528.742.8Hydro-QuébecLe Circuit Electrique charging station backendCWE-307Hydro-Québec Le Circuit Electrique charging station backend Improper Restrict…
CVE-2026-584998.242.8EverMind-AIEverOSCWE-22Path traversal in EverOS /api/v1/memory/add via unvalidated sender_id
CVE-2026-153262.042.8halo-devhaloCWE-22halo-dev halo Theme Installation ThemeUtils.java ThemeUtils.unzipThemeTo path…
CVE-2026-556658.542.4gristlabsgrist-coreCWE-79DOM-based XSS in Grist via unsanitized links, enabling privilege escalation
CVE-2026-591519.642.1prowler-cloudprowlerCWE-287Prowler: SAML Domain Claiming Enables Cross-Tenant Account Takeover
CVE-2026-584929.242.1getgravgravCWE-89grav-plugin-database: SQL Injection in PDO::tableExists() due to Unsanitized …
CVE-2026-226597.242.1flaskbbflaskbbCWE-863FlaskBB Authorization Bypass via Topic ID Manipulation
CVE-2026-536538.742.0getgravgravCWE-770Grav: Unauthenticated denial of service via unbounded image derivative dimens…
CVE-2026-575848.742.0phalconcphalconCWE-1333Phalcon: Catastrophic backtracking (ReDoS) in the default Phalcon Router rout…
CVE-2026-558828.342.0tilt-devtiltCWE-200Tilt: Unauthenticated pprof debug endpoints on the Tilt HUD server
CVE-2026-210458.341.9Samsung MobileSamsung Mobile Devices—Out-of-bounds write in parsing TIFF format in libimagecodec.media.quram.so pr…
CVE-2026-210488.341.9Samsung MobileSamsung Mobile Devices—Out-of-bounds write in parsing DNG format in libimagecodec.media.quram.so pri…
CVE-2026-563058.741.6CapgoCapgoCWE-620Capgo - Authentication Bypass in Password Change via Missing Current Password…
CVE-2026-555017.341.5decolua9routerCWE-3079router: Login brute-force protection bypass via spoofed X-Forwarded-For header
CVE-2026-574746.941.4DeloitteAI Assist for CustomerCWE-200Deloitte AI Assist for Customer information disclosure
CVE-2026-562619.241.3Crawl4AICrawl4AICWE-918Crawl4AI - Server-Side Request Forgery via Webhook URLs
CVE-2026-152938.041.3joeyoungbloodWP Business Intelligence LiteCWE-862WP Business Intelligence Lite <= 3.2.0 - Authenticated (Subscriber+) Missing …
CVE-2026-567659.341.3VikunjaVikunjaCWE-639Vikunja - Unauthenticated Instance-Wide Data Breach via Link Share Hash Discl…
CVE-2026-129184.941.0getwpfunnelsMail Mint – Email Marketing, Newsletter, Email Automation & WooCommerce EmailsCWE-89Mail Mint <= 1.24.1 - Authenticated (Administrator+) SQL Injection via 'recip…
CVE-2026-614608.740.9krayinlaravel-crmCWE-639Krayin CRM Insecure Direct Object Reference via Controllers
CVE-2026-152907.540.8ultimatememberUltimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership PluginCWE-89Ultimate Member – User Profile, Registration, Login, Member Directory, Conten…
CVE-2026-414827.140.6frappefrappeCWE-22Frappe: Possible Path Traversal and Local File Inclusion via Chrome PDF Gener…
CVE-2026-566758.340.6decolua9routerCWE-2879router: Reverse proxy locality collapse allows unauthenticated access to 9ro…
CVE-2026-584935.140.6getgravgravCWE-74grav-plugin-database: DSN Parameter Injection via Unsanitized Configuration V…
CVE-2026-558799.340.5openreplayopenreplayCWE-79OpenReplay: Unauthenticated stored XSS leads to dashboard account takeover
CVE-2026-578508.740.4RustDeskRustDeskCWE-862RustDesk Missing Session Scope Enforcement Allows Out-of-Scope Control Messag…
CVE-2026-614618.740.4langgeniusdifyCWE-89Dify < 1.16.0-rc1 SQL Injection via MyScale Vector Store search_by_full_text
CVE-2026-558849.240.3tilt-devtiltCWE-306Tilt: Missing authentication on the network-exposed Tilt HUD server
CVE-2026-98386.140.2room34ICS CalendarCWE-79ICS Calendar <= 12.0.9 - Reflected Cross-Site Scripting via 'htmltagtitle' Pa…
CVE-2026-144754.940.2wplegalpagesCookie Banner for GDPR / CCPA – WPLP Cookie ConsentCWE-89Cookie Banner for GDPR / CCPA <= 4.3.6 - Authenticated (Administrator+) SQL I…
CVE-2026-597938.839.9JetBrainsTeamCityCWE-73In JetBrains TeamCity before 2026.1.2 arbitrary file access was possible via …
CVE-2026-400077.539.8Apache Software FoundationApache IoTDBCWE-400Apache IoTDB: Unauthenticated unbounded recursion in IoTDB AirGap receiver's …
CVE-2026-404547.539.8Apache Software FoundationApache IoTDB C++ clientCWE-20Apache IoTDB C++ client: Out-of-bounds reads in C++ client TsBlock deserializ…
CVE-2026-552137.539.8h2oh2oCWE-789h2o: musl libc stack overflow (QPACK)
CVE-2026-552337.539.8openrestyopenrestyCWE-787OpenResty: Buffer overflow when writing PROXY protocol v2 header to upstream
CVE-2026-554747.139.5grokabilitysnipe-itCWE-23Snipe-IT: Directory traversal in displaySig
CVE-2026-591556.939.4nezhahqnezhaCWE-200Nezha Monitoring: DDNS and Notification credential exposure via unredacted li…
CVE-2026-23979.839.0Adam Retail Automation Ltd.MobilMen 20TCWE-89SQLi in AdamPOS' MobilMen 20T
CVE-2026-527478.639.0owasp-modsecurityModSecurityCWE-180ModSecurity: Multipart form-data parser silently strips embedded line breaks …
CVE-2026-554057.638.9langchain4jlangchain4jCWE-89LangChain4j: SQL injection via metadata filters in langchain4j-mariadb and la…
CVE-2026-552297.538.9gotenberggotenbergCWE-918Gotenberg: SSRF via LibreOffice document processing
CVE-2026-98574.338.7saskaita123Invoice123CWE-862Invoice123 <= 1.7.0 - Missing Authorization to Authenticated (Subscriber+) Se…
CVE-2026-572215.338.7rabbitmqrabbitmq-serverCWE-862RabbitMQ: Passive queue/exchange declaration bypasses authorization checks, l…
CVE-2026-418787.138.5R-SOFT SERWISDMSCWE-639Insecure Direct Object Reference in R-SOFT DMS
CVE-2026-152887.538.4brainstormforceSureForms – Drag & Drop Contact Form & Form Builder, Payment Form, Survey, Quiz & CalculatorCWE-20SureForms – Drag and Drop Form Builder for WordPress <= 2.2.1 - Unauthenticat…
CVE-2026-399037.138.4SimpleMachinesSMFCWE-863Simple Machines Forum Authorization Bypass via AttachmentApprove.php
CVE-2026-571675.138.4ChocobozzzPeerTubeCWE-80PeerTube: Improper Neutralization of Script-Related HTML Tags in a Web Page (…
CVE-2026-553778.138.1logto-iologtoCWE-287Logto: Account Center MFA management step-up bypass via WebAuthn registration…
CVE-2026-119924.337.9easyappointmentsEasy AppointmentsCWE-862Easy Appointments <= 3.12.27 - Missing Authorization to Authenticated (Author…
CVE-2026-571585.137.8FreeRDPFreeRDPCWE-125FreeRDP planar_decompress_plane_rle_only: heap OOB read — incomplete fix for …
CVE-2026-544686.537.4DellUnisphere for PowerMaxCWE-22Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior, contain(s) a path…
CVE-2026-23988.837.3Adam Retail Automation Ltd.MobilMen 20TCWE-639IDOR in AdamPOS' MobilMen 20T
CVE-2026-113926.137.1thimpressWP Hotel BookingCWE-79WP Hotel Booking <= 2.3.1 - Reflected Cross-Site Scripting via 'check_in_date…
CVE-2026-492138.137.1baptisteArnotypebot.ioCWE-918TypeBot: SSRF protection bypass via IPv6 unspecified address in Typebot HTTP …
CVE-2026-144615.136.8BitWizardmtrCWE-125Out-of-bound read in mtr
CVE-2026-62128.836.7Teracity Software Technologies Inc.TeraMISCWE-639IDOR in Teracity's TeraMIS
CVE-2026-554607.136.4grokabilitysnipe-itCWE-863Snipe-IT: Authorization bypass on bulk editing users
CVE-2026-554666.236.4grokabilitysnipe-itCWE-79Snipe-IT: Stored XSS via inline-served attachment
CVE-2026-152895.936.3wpdevartBooking calendar, Appointment Booking SystemCWE-89Booking calendar, Appointment Booking System <= 3.2.17 - Unauthenticated Time…
CVE-2026-614557.136.1getgravgravCWE-409Grav before 2.0.1 Decompression Bomb via ZipArchiver
CVE-2026-574766.336.1DeloitteAI Assist for CustomerCWE-306Deloitte AI Assist for Customer unauthenticated RAG corpus read and write
CVE-2026-404527.536.0Apache Software FoundationApache IoTDBCWE-284Apache IoTDB: Authorization bypass in /rest/v2/fastLastQuery exposes last-val…
CVE-2026-132448.135.9DrupalTealium iQ Tag ManagementCWE-915Tealium iQ Tag Management - Critical - PHP object injection - SA-CONTRIB-2026…
CVE-2026-558098.135.9DrupalFlag attendance fieldCWE-915Flag attendance field - Critical - PHP object injection - SA-CONTRIB-2026-049
CVE-2026-558108.135.9DrupalPlotly.js GraphingCWE-915Plotly.js Graphing - Critical - PHP object injection - SA-CONTRIB-2026-050
CVE-2026-556727.435.9zitadelzitadelCWE-287ZITADEL: Missing client_id binding in OIDC authorization code exchange and re…
CVE-2026-151439.335.8Red HatRed Hat OpenShift AI (RHOAI)CWE-918Guardrails-detectors: guardrails-detectors: ssrf and local file read via user…
CVE-2026-153172.135.7SipeedPicoClawCWE-918Sipeed PicoClaw Guarded Web Fetch Flow web.go WebFetchTool.Execute server-sid…
CVE-2026-562798.735.6CapgoCapgoCWE-862Capgo - Information Disclosure via get_orgs_v7 RPC Endpoint
CVE-2026-295196.235.6luceeLuceeCWE-79Lucee CFML Server Reflected XSS via URL Path Parsing
CVE-2026-152987.235.5pechenkiTelSender – Сontact form 7, Events, Wpforms, ninja forms and woocommerce to telegram botCWE-79TelSender <= 1.14.14 - Unauthenticated Stored Cross-Site Scripting via Telegr…
CVE-2026-563357.135.5CapgoCapgoCWE-284Capgo - Channel Configuration Mutation via Write-Scoped API Keys
CVE-2026-558817.135.4openreplayopenreplayCWE-639OpenReplay: Cross-tenant session replay disclosure via missing session owners…
CVE-2026-554524.835.2grokabilitysnipe-itCWE-1236Snipe-IT: CSV formula injection in Activity Report export
CVE-2026-153789.335.1Red HatRed Hat OpenShift AI (RHOAI)CWE-918Guardrails-detectors: guardrails-detectors: ssrf and local file read via user…
CVE-2026-557802.435.1M2TeamNanaZipCWE-248NanaZip: Uncaught exception / unbounded allocation in NanaZip .NET single-fil…
CVE-2026-113217.135.0pluginsGLPIdatainjectionCWE-89GLPI DataInjection Plugin Authenticated SQL Injection via CSV Import
CVE-2026-68025.335.0fahadmahmoodEasy Upload Files During CheckoutCWE-639Easy Upload Files During Checkout <= 3.0.1 - Missing Authorization to Unauthe…
CVE-2026-39076.435.0prasunsenHostelCWE-79Hostel <= 1.1.7 - Authenticated (Contributor+) Stored Cross-Site Scripting vi…
CVE-2026-152846.434.6kingaddonsKing Addons for Elementor – 80+ Elementor Widgets, 4 000+ Elementor Templates, WooCommerce, Mega Menu, Popup BuilderCWE-79King Addons for Elementor <= 51.1.62 - Authenticated (Subscriber+) Stored Cro…
CVE-2026-572135.734.7rabbitmqrabbitmq-serverCWE-79RabbitMQ: Stored XSS federation management plugin via unsanitized consumer_ta…
CVE-2026-153292.134.7zhayujieCowAgentCWE-200zhayujie CowAgent Browser Tool browser_tool.py BrowserTool._do_navigate infor…
CVE-2026-121236.434.5plugins360All-in-One Video GalleryCWE-918All-in-One Video Gallery <= 4.8.5 - Authenticated (Subscriber+) Server-Side R…
CVE-2026-556712.334.1zitadelzitadelCWE-918ZITADEL: Server-Side Request Forgery (SSRF) and Denylist Bypass in Outgoing H…
CVE-2026-566688.134.0zitadelzitadelCWE-862ZITADEL: Unauthorized Token Privilege Escalation in OAuth2 Token Exchange
CVE-2026-614417.134.1MervinPraisonPraisonAICWE-862PraisonAI Platform before 0.1.9 Authorization Bypass via Dependencies
CVE-2026-130106.534.1beardevJoomSport – for Sports: Team & League, Football, Hockey & moreCWE-89JoomSport <= 5.7.9 - Authenticated (Contributor+) SQL Injection via 'event' S…
CVE-2026-151046.534.1wpdevteamBetterDocs – AI Documentation, Knowledge Base, Docs, Wikis, FAQ with ChatbotCWE-89BetterDocs <= 4.6.0 - Authenticated (Custom+) SQL Injection via 'lang' Parameter
CVE-2026-118185.434.0arrayticsWPCafe – Restaurant Menu, Online Food Ordering & Table Booking SystemCWE-862WPCafe <= 3.0.14 - Missing Authorization to Authenticated (Subscriber+) Arbit…
CVE-2026-533639.833.9LinuxLinux—xfrm: iptfs: preserve shared-frag marker in iptfs_consume_frags()
CVE-2026-527615.333.9owasp-modsecurityModSecurityCWE-467ModSecurity: Transformation utf8toUnicode produces wrong output on i386 archi…
CVE-2026-614507.133.7getgravgravCWE-94Grav before 2.0.2 Config Exfiltration via offsetGet Filter
CVE-2026-449185.533.7OpenStackIronicCWE-862OpenStack Ironic through before 37.0.1 allows creation or modification of nod…
CVE-2026-614326.933.5MervinPraisonPraisonAICWE-22PraisonAI FastContext before 1.6.78 Path Traversal
CVE-2026-150899.133.3DrupalCommerce guest registrationCWE-287Commerce guest registration - Critical - Unsupported - SA-CONTRIB-2026-079
CVE-2026-557898.533.1logto-iologtoCWE-91Logto: SAML IdP injects user-controlled profile attributes raw into signed as…
CVE-2026-153202.133.0SipeedPicoClawCWE-862Sipeed PicoClaw pico.go rt.ReloadConfig authorization
CVE-2026-150708.832.9wordpresschefSalon Booking System – Free VersionCWE-352Salon Booking System <= 10.30.32 - Cross-Site Request Forgery to Remote Code …
CVE-2026-579615.132.7phpMyFAQphpMyFAQCWE-22phpMyFAQ - Authenticated Path Traversal in PDF Export via concatenatePaths Fu…
CVE-2026-86097.532.6GrafanaGrafana OSSCWE-400Pre-authentication denial of service via the OAuth login route
CVE-2026-418775.131.8R-SOFT SERWISDMSCWE-79Stored XSS in R-SOFT DMS
CVE-2026-543297.731.7grokabilitysnipe-itCWE-862Snipe-IT: Cross-Tenant Accessory Injection in Snipe-IT API
CVE-2026-333827.531.6GrafanaGrafana OSSCWE-400Denial of service via unbounded request body size
CVE-2026-572147.131.5rabbitmqrabbitmq-serverCWE-79RabbitMQ: Stored XSS in RabbitMQ management UI
CVE-2026-150264.331.5carazoImport and export users and customersCWE-862Import and export users and customers <= 2.4.0 - Missing Authorization to Aut…
CVE-2026-586615.331.4n8nn8nCWE-770n8n - Disk Space Exhaustion via Data-Table File Upload Endpoint
CVE-2026-19464.331.3nandhiniwpGW AI Website BuilderCWE-862GW AI Website Builder <= 1.0.1 - Missing Authorization to Authenticated (Subs…
CVE-2026-153752.131.3EleveoCall Recording SoftwareCWE-266Eleveo Call Recording Software LDAP User users_ldap.jsp improper authorization
CVE-2026-153211.931.3n/aMyEMSCWE-79MyEMS Admin Backend svg.py on_post cross site scripting
CVE-2026-551875.831.2axllentmailpitCWE-918Mailpit: Incomplete SSRF protection in Link Check API via IPv6 transition mec…
CVE-2026-126857.530.9Unknownescortwp—EscortWP <= 3.6.2 - Content Deletion via Vendor-Authored Backdoor
CVE-2026-474225.330.9frappefrappeCWE-862Frappe: Unrestricted API access to save_report
CVE-2026-566677.330.7zitadelzitadelCWE-79ZITADEL: Stored XSS via Default URI Redirect in Login V2
CVE-2026-152876.530.7rtcamprtMedia for WordPress, BuddyPress and bbPressCWE-89rtMedia for WordPress, BuddyPress and bbPress <= 4.6.18 - Authenticated (Subs…
CVE-2026-563126.930.5CapgoCapgoCWE-287Capgo - Account Creation Before CAPTCHA Validation in accept_invitation Endpoint
CVE-2026-555167.730.3grokabilitysnipe-itCWE-639Snipe-IT: Cross-company asset maintenance re-parenting via API update
CVE-2026-566897.730.1DellPowerFlex ManagerCWE-89Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neut…
CVE-2026-124004.329.8priyanshuchaudharyFlowForms – Conversational Form BuilderCWE-639FlowForms <= 1.1.1 - Authenticated (Contributor+) Insecure Direct Object Refe…
CVE-2026-571576.529.4FreeRDPFreeRDPCWE-125Out-of-bounds read in the camera device enumerator server (rdpecam) via unter…
CVE-2026-152864.329.3stellarwpKadence Blocks — Page Builder Toolkit for Gutenberg EditorCWE-863Gutenberg Blocks with AI by Kadence WP – Page Builder Features <= 3.5.32 - In…
CVE-2026-153182.129.3SipeedPicoClawCWE-285Sipeed PicoClaw MQTT Channel mqtt.go authorization
CVE-2026-153322.129.3zhayujieCowAgentCWE-862zhayujie CowAgent Message Endpoint channel.py authorization
CVE-2026-591908.729.1getgravgravCWE-639Grav Admin Plugin — IDOR Privilege Escalation via saveUser()
CVE-2026-556597.729.1gristlabsgrist-coreCWE-79Grist: XSS through unsafe value interpolation in server-rendered pages
CVE-2026-556702.328.9zitadelzitadelCWE-284ZITADEL: Cross-Tenant User Leakage via Recycled Identifiers
CVE-2026-600866.928.7MervinPraisonPraisonAICWE-693PraisonAI before 4.6.78 Prompt Injection Defense Bypass
CVE-2026-579946.928.5phpMyFAQphpMyFAQCWE-200phpMyFAQ - Information Disclosure of Inactive FAQ Content via Public API Endp…
CVE-2026-591544.328.4wekanwekanCWE-863Wekan: Checklist direct DDP updates can write checklist data into private boards
CVE-2026-129246.428.4arrayticsEventin – Event Calendar, Event Registration, Tickets & Booking (AI Powered)CWE-79Eventin <= 4.1.15 - Authenticated (Contributor+) Stored Cross-Site Scripting …
CVE-2026-137106.428.4jegthemeJeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPressCWE-79Jeg Kit for Elementor <= 3.2.6 - Authenticated (Contributor+) Stored Cross-Si…
CVE-2026-152856.428.2posimyththemesThe Plus Addons for Elementor – Addons for Elementor, Page Templates, Widgets, Mega Menu, WooCommerceCWE-79The Plus Addons for Elementor <= 6.4.11 - Authenticated (Contributor+) Stored…
CVE-2026-152976.128.2neeraj_slitBrevo – Email, SMS, Web Push, Chat, and more.CWE-79Newsletter, SMTP, Email marketing and Subscribe forms by Brevo (formely Sendi…
CVE-2026-563095.328.2CapgoCapgoCWE-770Capgo - Plan Bypass via Unrestricted Attachment Upload Endpoint
CVE-2026-400096.528.0Apache Software FoundationApache IoTDBCWE-269Apache IoTDB: Authenticated users can escalate to full tree-path access by re…
CVE-2026-558035.927.9DrupalDrupal coreCWE-915Drupal core - Critical - PHP object injection - SA-CORE-2026-005
CVE-2026-558045.927.9DrupalDrupal coreCWE-915Drupal core - Moderately critical - Gadget chain - SA-CORE-2026-006
CVE-2026-130395.327.9arrayticsEventin – Event Calendar, Event Registration, Tickets & Booking (AI Powered)CWE-862Eventin 4.0.26 - 4.1.15 - Missing Authorization to Unauthenticated Payment By…
CVE-2026-614316.827.8MervinPraisonPraisonAICWE-22PraisonAI before 4.6.78 Path Traversal via ContextGatherer
CVE-2026-597968.127.6JetBrainsTeamCityCWE-862In JetBrains TeamCity before 2026.1.2 pipeline modification was possible due …
CVE-2026-152966.427.4cservitaffiliate-toolkit – Multi-Network Affiliate & Amazon Product DisplayCWE-79affiliate-toolkit – WP Affiliate Plugin with Amazon <= 3.7.0 - Authenticated …
CVE-2026-119145.927.4DrupalComposerCWE-20Composer - Critical - Unsupported - SA-CONTRIB-2026-046
CVE-2026-153772.127.4EleveoCall Recording SoftwareCWE-266Eleveo Call Recording Software sendlogfile improper authorization
CVE-2026-153732.127.3EleveoCall Recording SoftwareCWE-266Eleveo Call Recording Software userAddAction.do improper authorization
CVE-2026-153742.127.3EleveoCall Recording SoftwareCWE-266Eleveo Call Recording Software Group roleAddAction.do improper authorization
CVE-2026-153762.127.3EleveoCall Recording SoftwareCWE-266Eleveo Call Recording Software statisticReportAction.do improper authorization
CVE-2026-554755.726.9grokabilitysnipe-itCWE-863Snipe-IT: Import created_by can be overwritten
CVE-2026-554624.326.7grokabilitysnipe-itCWE-863Snipe-IT: Authorization bypass on print inventory page
CVE-2026-558278.826.4FreeRDPFreeRDPCWE-131FreeRDP: Heap out-of-bounds write in RemoteFX (RFX) Cache Bitmap V3 decode
CVE-2026-558065.926.4DrupalDrupal coreCWE-601Drupal core - Less critical - Cache poisoning and open redirect - SA-CORE-202…
CVE-2026-572305.426.3openreplayopenreplayCWE-89OpenReplay: Authenticated ClickHouse SQL injection via session search
CVE-2026-558807.126.3openreplayopenreplayCWE-639OpenReplay: Cross-user IDOR in notes and dashboard widgets
CVE-2026-547146.126.2logto-iologtoCWE-79Logto: XSS via unescaped RelayState in SAML auto-submit form
CVE-2026-597956.126.2JetBrainsTeamCityCWE-79In JetBrains TeamCity before 2026.1.2 stored XSS via unauthenticated agent re…
CVE-2026-150817.426.0DrupalLocation SelectorCWE-89Location Selector - Critical - SQL Injection - SA-CONTRIB-2026-072
CVE-2026-553706.426.0logto-iologtoCWE-294Logto: TOTP code can be replayed within the RFC 6238 validity window (one-tim…
CVE-2026-554765.326.0grokabilitysnipe-itCWE-862Snipe-IT: Unauthorized Asset Request Cancellation via Unguarded cancel_by_adm…
CVE-2026-555155.026.0grokabilitysnipe-itCWE-639Snipe-IT: Cross-company deletion of pending checkout acceptances via unscoped…
CVE-2026-129554.326.0wplegalpagesCookie Banner for GDPR / CCPA – WPLP Cookie ConsentCWE-862Cookie Banner for GDPR / CCPA <= 4.3.6 - Missing Authorization to Authenticat…
CVE-2026-121084.425.9looswebstudioHighlighting Code BlockCWE-79Highlighting Code Block <= 2.2.0 - Authenticated (Administrator+) Stored Cros…
CVE-2026-132476.425.5logichuntLogo Slider WP – Responsive Logo Carousel, Logo Gallery & Logo ShowcaseCWE-79Logo Slider <= 5.5 - Authenticated (Contributor+) Stored Cross-Site Scripting…
CVE-2026-152926.425.5tibouilleSudoku ShortcodeCWE-79Sudoku Shortcode <= 1.0.0 - Authenticated (Contributor+) Cross-Site Scripting…
CVE-2026-152996.425.5wealcoderAnimation Addons for Elementor – GSAP Motion Elementor Addons & Website TemplatesCWE-79Animation Addons for Elementor <= 2.6.3 - Authenticated (Contributor+) Stored…
CVE-2026-554724.325.4grokabilitysnipe-itCWE-863Snipe-IT: API Location Creation Bypasses FMCS Parent-Child Company Boundary V…
CVE-2026-556644.325.4gristlabsgrist-coreCWE-200Grist: Insufficient access control in the /forms endpoint exposes table metadata
CVE-2026-150865.924.9DrupalRaw Formatter [Meta Tag Formatter]—Raw Formatter [Meta Tag Formatter] - Critical - Unsupported - SA-CONTRIB-2026…
CVE-2026-554795.324.8grokabilitysnipe-itCWE-863Snipe-IT: Incorrect permission for legacy license checkin API
CVE-2026-563295.324.8CapgoCapgoCWE-436Capgo - Cross-Tenant Preview Namespace Collision via Non-Bijective Underscore…
CVE-2026-566908.524.6DellPowerFlex ManagerCWE-89Dell PowerFlex Manager, Version prior to 5.1.0.1, contain(s) an Improper Neut…
CVE-2026-556418.224.5decolua9routerCWE-2909router: Unauthenticated `/v1` proxy access via `Host`-header spoofing → open…
CVE-2026-597945.424.6JetBrainsTeamCityCWE-79In JetBrains TeamCity before 2026.1.2 stored XSS on the cloud profile page wa…
CVE-2026-566644.224.0zitadelzitadelCWE-613ZITADEL: Missing Token Lifecyle Validation (`exp` and `iat`) in JWT IdP Provider
CVE-2026-554816.223.6grokabilitysnipe-itCWE-79Snipe-IT: CSS Injection via `header_color` Setting
CVE-2026-591803.123.7caroncappriseCWE-200Apprise forwards configured auth headers across cross-origin HTTP redirects
CVE-2026-380577.023.4ST Engineering iDirectEvolution iQ‑Series terminalsCWE-352ST Engineering iDirect iQ-Series Terminals Cross-Site request forgery
CVE-2026-16677.223.2cifiGEO Plugin by Squirrly SEOCWE-862SEO Plugin by Squirrly SEO <= 14.0.0 - Unauthenticated Arbitrary Post Creatio…
CVE-2026-554616.123.1grokabilitysnipe-itCWE-601Snipe-IT: Open Redirect After User Edit
CVE-2026-119155.923.0DrupalBrute force attack protectionCWE-307Brute force attack protection - Critical - Unsupported - SA-CONTRIB-2026-047
CVE-2026-150875.923.0DrupalClean RESTfulCWE-287Clean RESTful - Critical - Unsupported - SA-CONTRIB-2026-078
CVE-2026-558904.823.0getgravgravCWE-79Grav: Stored CSS injection via Markdown image ?style=… reaches MediaObjectTra…
CVE-2026-122765.322.4UnknownLA-Studio Element Kit for Elementor—LA-Studio Element Kit for Elementor < 1.6.1 - Unauthenticated Open Registration
CVE-2026-544705.322.5DellUnisphere for PowerMaxCWE-611Dell Unisphere for PowerMax, version(s) 10.3.0.5 and prior contain(s) an Impr…
CVE-2026-544238.222.3OpenStackIronicCWE-424In OpenStack Ironic before 37.0.1, an Ironic user with the ability to deploy …
CVE-2026-600916.922.1MervinPraisonPraisonAICWE-918PraisonAI before 4.6.78 Unauthenticated SSRF via webhook_url
CVE-2026-50695.421.9wpmanageninjaFluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form BuilderCWE-863Fluent Forms <= 6.2.1 - Incorrect Authorization to Authenticated (Subscriber+…
CVE-2025-300085.121.7hestiacphestiacpCWE-79HestiaCP < 1.9.5 Stored XSS via DNS Record Management Interface
CVE-2026-554644.821.5grokabilitysnipe-itCWE-79Snipe-IT: Stored XSS via Markdown custom field
CVE-2026-554785.321.4grokabilitysnipe-itCWE-639Snipe-IT: Missing object-level authorization in Kits API
CVE-2026-534507.421.0coturncoturnCWE-918Coturn: IPv4-mapped 127.0.0.1 bypasses default loopback peer protection
CVE-2026-150283.920.5Red HatRed Hat Hardened ImagesCWE-805Libarchive: heap overflow oob read while parsing a tar archive contains a pax…
CVE-2026-566664.820.5zitadelzitadelCWE-287ZITADEL: Auto-linking by email: IdP-side email verification is not checked
CVE-2026-150795.420.3DrupalLogin DisableCWE-307Login Disable - Moderately critical - Access bypass - SA-CONTRIB-2026-070
CVE-2026-132426.519.5DrupalGeolocation FieldCWE-89Geolocation Field - Critical - SQL Injection - SA-CONTRIB-2026-062
CVE-2026-558085.419.2DrupalDrupal coreCWE-79Drupal core - Moderately critical - Improper validation - SA-CORE-2026-009
CVE-2026-418798.218.6R-SOFT SERWISDMSCWE-328Weak password hashing in R-SOFT DMS
CVE-2026-132406.518.6DrupalParagraphsCWE-862Paragraphs - Less critical - Access bypass - SA-CONTRIB-2026-060
CVE-2026-132416.518.6DrupalParagraphsCWE-862Paragraphs - Moderately critical - Access bypass - SA-CONTRIB-2026-061
CVE-2026-132396.518.1DrupalWissKICWE-862WissKI - Critical - Access bypass - SA-CONTRIB-2026-059
CVE-2026-566654.218.0zitadelzitadelCWE-613ZITADEL: Missing Token Expiration (`exp`) Validation in JWT IdP Provider
CVE-2026-558856.817.9getgravgravCWE-312Grav: Admin Backup Zip File Exposes Account Credentials and Configuration Sec…
CVE-2026-549197.417.8yhirosecpp-httplibCWE-295cpp-httplib: TLS certificate chain verification bypassed for IP-literal hosts…
CVE-2026-558838.317.6tilt-devtiltCWE-345Tilt: Cross-site WebSocket hijacking of the Tilt HUD stream
CVE-2026-153016.417.4digibloggerBuddyHolis TableSearchCWE-79BuddyHolis TableSearch <= 1.1.0 - Authenticated (Contributor+) Stored Cross-S…
CVE-2026-566767.417.3decolua9routerCWE-3679router: Image prefetch DNS rebinding allows SSRF to internal services
CVE-2026-107706.116.8DrupalAnti-Spam by CleanTalkCWE-79Anti-Spam by CleanTalk - Moderately critical - Cross site scripting - SA-CONT…
CVE-2026-585876.116.8DrupalDrupal CanvasCWE-79Drupal Canvas - Moderately critical - Improper validation - SA-CONTRIB-2026-065
CVE-2026-585886.116.8DrupalDrupal CanvasCWE-79Drupal Canvas - Moderately critical - Improper validation - SA-CONTRIB-2026-066
CVE-2026-132316.116.4DrupalAdvanced Content Feedback (aka admin_feedback)CWE-79Advanced Content Feedback (aka admin_feedback) - Moderately critical - Cross-…
CVE-2026-132346.116.4DrupalAI (Artificial Intelligence)CWE-79AI (Artificial Intelligence) - Moderately critical - Information Disclosure /…
CVE-2026-32516.415.7Webremium Istanbul Web DesignMezunum SatiyorumCWE-79XSS in Webremium's Mezunum Satiyorum
CVE-2026-152834.415.1wpvividpluginsWPvivid Backup for MainWPCWE-79WPvivid Backup for MainWP <= 0.9.33 - Authenticated (Admin+) Stored Cross-Sit…
CVE-2026-152954.415.1dcooneyAjax Load More – Infinite Scroll, Load More, & Lazy LoadCWE-692Ajax Load More <= 7.0.1 - Authenticated (Administrator+) Stored Cross-Site Sc…
CVE-2026-85955.414.8GrafanaGrafana OSSCWE-79Stored XSS in the table panel (TableNG)
CVE-2026-563545.114.6n8nn8nCWE-79n8n - Cross-Site Scripting and Open Redirect in Form Node
CVE-2026-614565.114.2getgravgravCWE-79Grav before 1.0.3 Stored XSS via SVG Upload API
CVE-2026-563736.313.7ImageMagickImageMagickCWE-416ImageMagick - Use-After-Free Write in PDB Decoder
CVE-2026-107695.413.7DrupalCommerce CoreCWE-79Commerce Core - Moderately critical - Cross site scripting - SA-CONTRIB-2026-041
CVE-2026-150825.413.7DrupalSiteimprove AnalyticsCWE-79Siteimprove Analytics - Moderately critical - Cross-site Scripting - SA-CONTR…
CVE-2026-150845.413.7DrupalUI Patterns (SDC in Drupal UI)CWE-79UI Patterns (SDC in Drupal UI) - Moderately critical - Cross site scripting -…
CVE-2026-150855.413.7DrupalAI SEO/GEO AnalyzerCWE-79AI SEO/GEO Analyzer - Moderately critical - Cross-site Scripting - SA-CONTRIB…
CVE-2026-585895.413.6DrupalFlowDropCWE-862FlowDrop - Moderately critical - Access bypass - SA-CONTRIB-2026-067
CVE-2026-585905.413.6DrupalFlowDropCWE-862FlowDrop - Moderately critical - Access bypass - SA-CONTRIB-2026-068
CVE-2026-597913.513.4JetBrainsYouTrackCWE-1021In JetBrains YouTrack before 2026.2.17012 cSS injection via Mermaid diagram r…
CVE-2026-119085.413.4DrupalTagifyCWE-79Tagify - Moderately critical - Cross-site scripting (XSS) - SA-CONTRIB-2026-043
CVE-2026-585915.413.4DrupalColorboxCWE-79Colorbox - Moderately critical - Cross-site scripting - SA-CONTRIB-2026-069
CVE-2026-150834.213.1DrupalECA: Event - Condition - ActionCWE-915ECA: Event - Condition - Action - Less critical - Information disclosure - SA…
CVE-2026-582252.112.8elixir-ectopostgrexCWE-89SQL injection via unescaped dollar-quote in Postgrex.Notifications reconnect …
CVE-2026-558073.112.4DrupalDrupal coreCWE-918Drupal core - Moderately critical - Server-side request forgery - SA-CORE-202…
CVE-2026-132374.812.0DrupalAI AgentsCWE-863AI Agents - Moderately critical - Information disclosure, Access bypass - SA-…
CVE-2026-132384.812.0DrupalCommerce Realex / Global PaymentsCWE-863Commerce Realex / Global Payments - Moderately critical - Access Bypass - SA-…
CVE-2026-132323.111.0DrupalAdvanced Content Feedback (aka admin_feedback)CWE-863Advanced Content Feedback (aka admin_feedback) - Moderately critical - Access…
CVE-2026-119093.310.8DrupalExamples for DevelopersCWE-862Examples for Developers - Moderately critical - Access bypass - SA-CONTRIB-20…
CVE-2026-132333.310.8DrupalOpenAI ProviderCWE-918OpenAI Provider - Moderately critical - Server-side Request Forgery - SA-CONT…
CVE-2026-132353.310.8DrupalAI (Artificial Intelligence)CWE-862AI (Artificial Intelligence) - Moderately critical - Access bypass - SA-CONTR…
CVE-2026-534496.010.7coturncoturnCWE-73Coturn: Arbitrary File Write via CLI psd Command
CVE-2026-64404.310.6sovlixGoodMeet – Google Meet Integration for Webinar, Meeting & Video ConferenceCWE-352GoodMeet <= 1.1.8 - Cross-Site Request Forgery to Google Meet Credential Rese…
CVE-2026-568132.110.2elixir-plugplugCWE-141Cookie attribute injection in Plug.Conn.Cookies.encode/2
CVE-2026-536578.29.4lima-vmlimaCWE-276Lima: An arbitrary user in a QEMU VM could gain the root privilege in the VM …
CVE-2026-562548.39.3capacitor-updatercapacitor-updaterCWE-320capacitor-updater - End-to-End Encryption Bypass via Private Key Distribution
CVE-2026-132364.28.4DrupalAI AgentsCWE-862AI Agents - Less critical - Access bypass - SA-CONTRIB-2026-056
CVE-2026-547368.27.6phalconcphalconCWE-208Phalcon: Non-constant-time HMAC verification in `Encryption\Crypt::decrypt` (…
CVE-2026-600896.97.5MervinPraisonPraisonAICWE-22PraisonAI before 1.6.78 Path Traversal via config.toml
CVE-2026-76397.87.5Imagination TechnologiesGraphics DDKCWE-459GPU DDK - Page UAF read in PMMETA_PROTECT heap memory
CVE-2026-411547.87.5Imagination TechnologiesGraphics DDKCWE-787GPU DDK - Incorrect Index Calculation in CMA Cleanup Path of AllocOSPages_Sparse
CVE-2026-614378.56.8MervinPraisonPraisonAICWE-693PraisonAI before 1.6.78 Remote Code Execution via tools.py
CVE-2026-210436.76.6Samsung MobileSamsung Mobile Devices—Path traversal in Wallpaper service prior to SMR Jul-2026 Release 1 allows lo…
CVE-2026-563664.86.4ImageMagickImageMagickCWE-401ImageMagick - Memory Leak in META Reader APP1JPEG Error Path
CVE-2026-210558.56.3Samsung MobileBixby—Improper export of android application components in Bixby prior to version 4…
CVE-2026-341967.86.1Imagination TechnologiesGraphics DDKCWE-416GPU DDK - UAF read and/or write of arbitrary physical memory due to integer t…
CVE-2026-151465.95.8GNU wgetWget—CVE-2026-15146
CVE-2026-210526.85.4Samsung MobileSamsung Mobile Devices—Path traversal in SemClipboardService prior to SMR Jul-2026 Release 1 allows …
CVE-2026-557822.45.5M2TeamNanaZipCWE-400NanaZip: Unbounded memory allocation (DoS) in NanaZip WebAssembly parser via …
CVE-2026-210535.15.2Samsung MobileSamsung Email—Improper input validation in Samsung Email prior to version 6.2.13.1 allows l…
CVE-2026-557812.45.3M2TeamNanaZipCWE-400NanaZip: Unbounded memory allocation (DoS) in NanaZip UFS parser via unvalida…
CVE-2026-557832.45.3M2TeamNanaZipCWE-476NanaZip: NULL pointer dereference in Extract() of all seven NanaZip custom ar…
CVE-2026-210428.44.9Samsung MobileSamsung Mobile Devices—Out-of-bounds write in libsavsac.so prior to SMR Jul-2026 Release 1 allows lo…
CVE-2026-210498.44.9Samsung MobileSamsung Mobile Devices—Out-of-bounds write in libpadm.so library prior to SMR Jul-2026 Release 1 all…
CVE-2026-556694.24.9zitadelzitadelCWE-346ZITADEL: Missing Token Audience Validation (`aud`) in JWT IdP Provider
CVE-2026-540007.04.7osqueryosqueryCWE-122osquery: Heap buffer overflow in `getProcessCurrentDirectory()` via `processe…
CVE-2026-540017.04.7osqueryosqueryCWE-122osquery: Heap buffer overflow via `authenticode` table (Windows)
CVE-2026-210576.84.6Samsung MobileSamsung Pass—Improper input validation in Samsung Pass prior to version 5.2.10.3 allows lo…
CVE-2026-210396.94.5Samsung MobileSamsung Mobile Devices—Improper access control in Settings prior to SMR Jul-2026 Release 1 allows lo…
CVE-2026-210416.94.5Samsung MobileSamsung Mobile Devices—Improper access control in SamsungSEAgentService prior to SMR Jul-2026 Releas…
CVE-2026-210546.94.5Samsung MobileInputSharing—Improper export of android application components in InputSharing prior to ve…
CVE-2026-210505.14.5Samsung MobileSamsung Mobile Devices—Improper access control in SmartThingsKit prior to SMR Jul-2026 Release 1 all…
CVE-2026-210515.14.5Samsung MobileSamsung Mobile Devices—Incorrect default permissions in WLAN security prior to SMR Jul-2026 Release …
CVE-2026-451967.83.9Imagination TechnologiesGraphics DDKCWE-280GPU DDK - Arbitrary GPU register write in rgxfw_hwperf_hw due to unsanitized …
CVE-2026-150804.33.7DrupalRay Enterprise TranslationCWE-352Ray Enterprise Translation - Moderately critical - Cross site request forgery…
CVE-2026-210445.83.4Samsung MobileSamsung Mobile Devices—Improper authorization in KnoxGuardManager prior to SMR Jul-2026 Release 1 al…
CVE-2026-210406.92.9Samsung MobileSamsung Mobile Devices—Improper access control in IAFDService prior to SMR Jul-2026 Release 1 allows…
CVE-2026-210564.82.9Samsung MobileSamsung Health—Improper authorization in Samsung Health prior to version 7.00.0.107 allows l…
CVE-2026-210468.42.7Samsung MobileSamsung Mobile Devices—Time-of-check time-of-use race condition in fabricKeymaster trustlet prior to…
CVE-2026-463884.42.5osqueryosqueryCWE-279osquery: Unprivileged users can temporarily read file carve contents
CVE-2026-452037.82.4Imagination TechnologiesGraphics DDKCWE-367GPU DDK - rgxfw_hwperf_ufo() re-reads psCmdHeader->ui32CmdSize after initial …
CVE-2026-132434.82.2DrupalSalesforce SuiteCWE-352Salesforce Suite - Moderately critical - Cross-site request forgery - SA-CONT…

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-07-10 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.

Machine-readable. This edition as JSON or CSV — the ranked results, transactions, and counts, for citation or ingestion. Frozen at publication; later changes appear as transactions on later editions.