{
  "day": "2026-07-14",
  "boundary": "UTC calendar day",
  "published_count": 1007,
  "by_severity": {
    "CRITICAL": 87,
    "HIGH": 598,
    "MEDIUM": 275,
    "LOW": 47
  },
  "kev_count": 7,
  "exploit_reference_count": 42,
  "awaiting_enrichment_count": 0,
  "ranking": "Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.",
  "results": [
    {
      "rank": 1,
      "cve_id": "CVE-2026-50522",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.76981,
      "epss_percentile": 0.9951,
      "kev": true,
      "kev_due_at": "2026-07-25",
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-502",
      "title": "Microsoft SharePoint Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50522"
    },
    {
      "rank": 2,
      "cve_id": "CVE-2026-15410",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.76347,
      "epss_percentile": 0.99497,
      "kev": true,
      "kev_due_at": "2026-07-17",
      "vendor": "SonicWall",
      "product": "SMA1000",
      "cwe": "CWE-94",
      "title": "SonicWall SMA1000 Appliances",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15410"
    },
    {
      "rank": 3,
      "cve_id": "CVE-2026-15409",
      "cvss_base": 10,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.74218,
      "epss_percentile": 0.99446,
      "kev": true,
      "kev_due_at": "2026-07-17",
      "vendor": "SonicWall",
      "product": "SMA1000",
      "cwe": "CWE-918",
      "title": "SonicWall SMA1000 Appliances",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15409"
    },
    {
      "rank": 4,
      "cve_id": "CVE-2026-58644",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.45478,
      "epss_percentile": 0.98689,
      "kev": true,
      "kev_due_at": "2026-07-19",
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-502",
      "title": "Microsoft SharePoint Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58644"
    },
    {
      "rank": 5,
      "cve_id": "CVE-2026-56164",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.22439,
      "epss_percentile": 0.97505,
      "kev": true,
      "kev_due_at": "2026-07-17",
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-306",
      "title": "Microsoft SharePoint Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56164"
    },
    {
      "rank": 6,
      "cve_id": "CVE-2026-55040",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.05489,
      "epss_percentile": 0.92135,
      "kev": true,
      "kev_due_at": "2026-08-21",
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-1390",
      "title": "Microsoft SharePoint Server Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55040"
    },
    {
      "rank": 7,
      "cve_id": "CVE-2026-56155",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.02333,
      "epss_percentile": 0.82191,
      "kev": true,
      "kev_due_at": "2026-07-28",
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-1220",
      "title": "Active Directory Federation Services Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56155"
    },
    {
      "rank": 8,
      "cve_id": "CVE-2026-48319",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.3229,
      "epss_percentile": 0.98185,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-22",
      "title": "ColdFusion | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48319"
    },
    {
      "rank": 9,
      "cve_id": "CVE-2026-48356",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.28225,
      "epss_percentile": 0.9796,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-434",
      "title": "Adobe Commerce | Unrestricted Upload of File with Dangerous Type (CWE-434)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48356"
    },
    {
      "rank": 10,
      "cve_id": "CVE-2026-48318",
      "cvss_base": 9.9,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.2346,
      "epss_percentile": 0.97609,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-22",
      "title": "ColdFusion | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48318"
    },
    {
      "rank": 11,
      "cve_id": "CVE-2026-47992",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.19924,
      "epss_percentile": 0.97215,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-89",
      "title": "Adobe Commerce | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47992"
    },
    {
      "rank": 12,
      "cve_id": "CVE-2026-47996",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.19862,
      "epss_percentile": 0.97206,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-863",
      "title": "Adobe Commerce | Incorrect Authorization (CWE-863)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47996"
    },
    {
      "rank": 13,
      "cve_id": "CVE-2026-50518",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.11058,
      "epss_percentile": 0.95559,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows DHCP Server Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50518"
    },
    {
      "rank": 14,
      "cve_id": "CVE-2026-48332",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.10748,
      "epss_percentile": 0.95462,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-918",
      "title": "ColdFusion | Server-Side Request Forgery (SSRF) (CWE-918)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48332"
    },
    {
      "rank": 15,
      "cve_id": "CVE-2026-47997",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.08993,
      "epss_percentile": 0.94841,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-863",
      "title": "Adobe Commerce | Incorrect Authorization (CWE-863)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47997"
    },
    {
      "rank": 16,
      "cve_id": "CVE-2026-47999",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.07076,
      "epss_percentile": 0.93687,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-79",
      "title": "Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47999"
    },
    {
      "rank": 17,
      "cve_id": "CVE-2026-48320",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0529,
      "epss_percentile": 0.9192,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-79",
      "title": "ColdFusion | Cross-site Scripting (Reflected XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48320"
    },
    {
      "rank": 18,
      "cve_id": "CVE-2026-48284",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.04895,
      "epss_percentile": 0.9138,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-20",
      "title": "ColdFusion | Improper Input Validation (CWE-20)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48284"
    },
    {
      "rank": 19,
      "cve_id": "CVE-2026-50343",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.035,
      "epss_percentile": 0.88221,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-269",
      "title": "Microsoft Install Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50343"
    },
    {
      "rank": 20,
      "cve_id": "CVE-2026-49805",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.03303,
      "epss_percentile": 0.87541,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-284",
      "title": "Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49805"
    },
    {
      "rank": 21,
      "cve_id": "CVE-2026-50509",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.03172,
      "epss_percentile": 0.86997,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-502",
      "title": "Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50509"
    },
    {
      "rank": 22,
      "cve_id": "CVE-2026-13001",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.02959,
      "epss_percentile": 0.86095,
      "kev": false,
      "kev_due_at": null,
      "vendor": "eteubert",
      "product": "Podlove Podcast Publisher",
      "cwe": "CWE-20",
      "title": "Podlove Podcast Publisher <= 4.5.1 - Unauthenticated Arbitrary File Upload via podlove_image_cache_url Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-13001"
    },
    {
      "rank": 23,
      "cve_id": "CVE-2026-49170",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.02797,
      "epss_percentile": 0.85304,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-1220",
      "title": "Windows StateRepository API Server file Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49170"
    },
    {
      "rank": 24,
      "cve_id": "CVE-2026-50351",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.02797,
      "epss_percentile": 0.85305,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-284",
      "title": "Windows Audio Compression Manager (ACM) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50351"
    },
    {
      "rank": 25,
      "cve_id": "CVE-2026-58479",
      "cvss_base": 9.2,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.02766,
      "epss_percentile": 0.85125,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dan-in-CA",
      "product": "SIP",
      "cwe": "CWE-78",
      "title": "Sustainable Irrigation Platform 5.2.16 RCE via cli_control Plugin Command Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58479"
    },
    {
      "rank": 26,
      "cve_id": "CVE-2026-50423",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0263,
      "epss_percentile": 0.84294,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-284",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50423"
    },
    {
      "rank": 27,
      "cve_id": "CVE-2026-49798",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.02287,
      "epss_percentile": 0.81815,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49798"
    },
    {
      "rank": 28,
      "cve_id": "CVE-2026-49800",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.02112,
      "epss_percentile": 0.80327,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-190",
      "title": "Windows Web Proxy Auto-Discovery Protocol (WPAD) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49800"
    },
    {
      "rank": 29,
      "cve_id": "CVE-2026-50667",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.02012,
      "epss_percentile": 0.79305,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Windows Common Log File System Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50667"
    },
    {
      "rank": 30,
      "cve_id": "CVE-2026-50329",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0195,
      "epss_percentile": 0.78608,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Microsoft DWM Core Library Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50329"
    },
    {
      "rank": 31,
      "cve_id": "CVE-2026-58536",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0195,
      "epss_percentile": 0.78607,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58536"
    },
    {
      "rank": 32,
      "cve_id": "CVE-2026-50387",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.01921,
      "epss_percentile": 0.78277,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Office 365 for Mac",
      "cwe": "CWE-121",
      "title": "Windows GDI Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50387"
    },
    {
      "rank": 33,
      "cve_id": "CVE-2026-50433",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.01921,
      "epss_percentile": 0.78276,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Media Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50433"
    },
    {
      "rank": 34,
      "cve_id": "CVE-2026-54114",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.01921,
      "epss_percentile": 0.78276,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54114"
    },
    {
      "rank": 35,
      "cve_id": "CVE-2026-54986",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.01921,
      "epss_percentile": 0.78277,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54986"
    },
    {
      "rank": 36,
      "cve_id": "CVE-2026-49795",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.01897,
      "epss_percentile": 0.77982,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49795"
    },
    {
      "rank": 37,
      "cve_id": "CVE-2026-50375",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.01813,
      "epss_percentile": 0.76918,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-122",
      "title": "DirectX Graphics Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50375"
    },
    {
      "rank": 38,
      "cve_id": "CVE-2026-50436",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0178,
      "epss_percentile": 0.76455,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50436"
    },
    {
      "rank": 39,
      "cve_id": "CVE-2026-50688",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.01719,
      "epss_percentile": 0.75617,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50688"
    },
    {
      "rank": 40,
      "cve_id": "CVE-2026-48359",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.01705,
      "epss_percentile": 0.75433,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-611",
      "title": "Adobe Experience Manager | Improper Restriction of XML External Entity Reference ('XXE') (CWE-611)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48359"
    },
    {
      "rank": 41,
      "cve_id": "CVE-2026-50476",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.01633,
      "epss_percentile": 0.74351,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Network Connections Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50476"
    },
    {
      "rank": 42,
      "cve_id": "CVE-2026-55009",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.01613,
      "epss_percentile": 0.74027,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Exchange Server 2016 Cumulative Update 23",
      "cwe": "CWE-502",
      "title": "Microsoft Exchange Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55009"
    },
    {
      "rank": 43,
      "cve_id": "CVE-2026-48358",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.01486,
      "epss_percentile": 0.71949,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-116",
      "title": "Adobe Commerce | Improper Encoding or Escaping of Output (CWE-116)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48358"
    },
    {
      "rank": 44,
      "cve_id": "CVE-2026-48324",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.01439,
      "epss_percentile": 0.7104,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-89",
      "title": "ColdFusion | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48324"
    },
    {
      "rank": 45,
      "cve_id": "CVE-2026-62392",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.01321,
      "epss_percentile": 0.68596,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Kylin",
      "cwe": "CWE-78",
      "title": "Apache Kylin: OS Command Injection via Async Query API",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62392"
    },
    {
      "rank": 46,
      "cve_id": "CVE-2026-54117",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.01288,
      "epss_percentile": 0.67895,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SQL Server 2025 (CU 6)",
      "cwe": "CWE-502",
      "title": "Microsoft SQL Server Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54117"
    },
    {
      "rank": 47,
      "cve_id": "CVE-2026-54118",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.01288,
      "epss_percentile": 0.67895,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SQL Server 2016 Service Pack 3 (GDR)",
      "cwe": "CWE-502",
      "title": "Microsoft SQL Server Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54118"
    },
    {
      "rank": 48,
      "cve_id": "CVE-2026-55944",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.01281,
      "epss_percentile": 0.67727,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Dynamics NAV 2018",
      "cwe": "CWE-502",
      "title": "Microsoft Dynamics NAV and Microsoft Dynamics 365 Business Central (On Premises) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55944"
    },
    {
      "rank": 49,
      "cve_id": "CVE-2026-57092",
      "cvss_base": 9.9,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.01184,
      "epss_percentile": 0.65315,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Microsoft Windows VMSwitch Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57092"
    },
    {
      "rank": 50,
      "cve_id": "CVE-2026-50328",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0118,
      "epss_percentile": 0.65186,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-248",
      "title": "Windows Server Update Service (WSUS) Tampering Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50328"
    },
    {
      "rank": 51,
      "cve_id": "CVE-2026-50652",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.01149,
      "epss_percentile": 0.64315,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Azure Active Directory",
      "cwe": "CWE-502",
      "title": "Azure Active Directory Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50652"
    },
    {
      "rank": 52,
      "cve_id": "CVE-2026-50496",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.01125,
      "epss_percentile": 0.63693,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Network Policy Server SNMP Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50496"
    },
    {
      "rank": 53,
      "cve_id": "CVE-2026-50330",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.01115,
      "epss_percentile": 0.63442,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Remote Desktop Client Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50330"
    },
    {
      "rank": 54,
      "cve_id": "CVE-2026-57108",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.01105,
      "epss_percentile": 0.63184,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-843",
      "title": ".NET Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57108"
    },
    {
      "rank": 55,
      "cve_id": "CVE-2026-56190",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.01088,
      "epss_percentile": 0.62681,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Remote Desktop Protocol Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56190"
    },
    {
      "rank": 56,
      "cve_id": "CVE-2026-50304",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.01074,
      "epss_percentile": 0.62308,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft .NET Framework 3.5 AND 4.7.2",
      "cwe": "CWE-121",
      "title": "Windows Active Directory Federation Services Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50304"
    },
    {
      "rank": 57,
      "cve_id": "CVE-2026-50355",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.01074,
      "epss_percentile": 0.62308,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft .NET Framework 3.5 AND 4.7.2",
      "cwe": "CWE-121",
      "title": "Windows Active Directory Federation Services Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50355"
    },
    {
      "rank": 58,
      "cve_id": "CVE-2026-50647",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.01074,
      "epss_percentile": 0.62308,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft .NET Framework 3.5 AND 4.7.2",
      "cwe": "CWE-835",
      "title": "Active Directory Federation Server Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50647"
    },
    {
      "rank": 59,
      "cve_id": "CVE-2026-56186",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.01059,
      "epss_percentile": 0.6186,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Secure Channel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56186"
    },
    {
      "rank": 60,
      "cve_id": "CVE-2026-54121",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.01052,
      "epss_percentile": 0.61657,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-285",
      "title": "Active Directory Certificate Services Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54121"
    },
    {
      "rank": 61,
      "cve_id": "CVE-2026-14903",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.01042,
      "epss_percentile": 0.61343,
      "kev": false,
      "kev_due_at": null,
      "vendor": "ivanti",
      "product": "Xtraction",
      "cwe": "CWE-23",
      "title": "Path traversal in Ivanti Xtraction before version 2026.2.1 allows a remote authenticated attacker to read arbitrary files outside the web root.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14903"
    },
    {
      "rank": 62,
      "cve_id": "CVE-2026-47302",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.01029,
      "epss_percentile": 0.60962,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-770",
      "title": ".NET Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47302"
    },
    {
      "rank": 63,
      "cve_id": "CVE-2026-56170",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.01008,
      "epss_percentile": 0.60322,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-770",
      "title": "ASP.NET Core Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56170"
    },
    {
      "rank": 64,
      "cve_id": "CVE-2026-15428",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.01004,
      "epss_percentile": 0.60214,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TP-Link Systems Inc.",
      "product": "Archer VX1800v v1",
      "cwe": "CWE-78",
      "title": "OS Command Injection in TR-069 (CWMP) Management Interface in TP-Link Archer VX1800v",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15428"
    },
    {
      "rank": 65,
      "cve_id": "CVE-2026-56159",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00996,
      "epss_percentile": 0.59942,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "DHCP Server Service Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56159"
    },
    {
      "rank": 66,
      "cve_id": "CVE-2026-56196",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00955,
      "epss_percentile": 0.58637,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows Admin Center",
      "cwe": "CWE-23",
      "title": "Windows Admin Center (WAC) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56196"
    },
    {
      "rank": 67,
      "cve_id": "CVE-2026-54116",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00953,
      "epss_percentile": 0.58565,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SQL Server 2025 (CU 6)",
      "cwe": "CWE-843",
      "title": "Microsoft SQL Server Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54116"
    },
    {
      "rank": 68,
      "cve_id": "CVE-2026-57982",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00953,
      "epss_percentile": 0.58565,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57982"
    },
    {
      "rank": 69,
      "cve_id": "CVE-2026-50646",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00949,
      "epss_percentile": 0.58445,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 8.0",
      "cwe": "CWE-693",
      "title": ".NET Framework Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50646"
    },
    {
      "rank": 70,
      "cve_id": "CVE-2026-58529",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00948,
      "epss_percentile": 0.58408,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 version 26H1",
      "cwe": "CWE-125",
      "title": "Windows Active Directory Federation Services (ADFS) Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58529"
    },
    {
      "rank": 71,
      "cve_id": "CVE-2026-47295",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00922,
      "epss_percentile": 0.57533,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SQL Server 2016 Service Pack 3 (GDR)",
      "cwe": "CWE-89",
      "title": "Microsoft SQL Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47295"
    },
    {
      "rank": 72,
      "cve_id": "CVE-2026-56197",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00922,
      "epss_percentile": 0.57532,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows Admin Center",
      "cwe": "CWE-77",
      "title": "Windows Admin Center (WAC) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56197"
    },
    {
      "rank": 73,
      "cve_id": "CVE-2026-47429",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00922,
      "epss_percentile": 0.57548,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vitest-dev",
      "product": "vitest",
      "cwe": "CWE-22",
      "title": "Vitest: Arbitrary file can be read and executed when Vitest UI server is listening",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47429"
    },
    {
      "rank": 74,
      "cve_id": "CVE-2026-50649",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00918,
      "epss_percentile": 0.57452,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 8.0",
      "cwe": "CWE-502",
      "title": ".NET Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50649"
    },
    {
      "rank": 75,
      "cve_id": "CVE-2026-56188",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00916,
      "epss_percentile": 0.57394,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Windows Server Network driver Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56188"
    },
    {
      "rank": 76,
      "cve_id": "CVE-2026-50447",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00908,
      "epss_percentile": 0.5715,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Message Queuing Service (MSMQ) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50447"
    },
    {
      "rank": 77,
      "cve_id": "CVE-2026-34348",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00907,
      "epss_percentile": 0.57107,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-693",
      "title": "Windows Event Logging Service Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34348"
    },
    {
      "rank": 78,
      "cve_id": "CVE-2026-48322",
      "cvss_base": 9.9,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00901,
      "epss_percentile": 0.56903,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-94",
      "title": "ColdFusion | Improper Control of Generation of Code ('Code Injection') (CWE-94)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48322"
    },
    {
      "rank": 79,
      "cve_id": "CVE-2026-58277",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00894,
      "epss_percentile": 0.56705,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-285",
      "title": "Microsoft SharePoint Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58277"
    },
    {
      "rank": 80,
      "cve_id": "CVE-2026-50682",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00891,
      "epss_percentile": 0.56593,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-125",
      "title": "Active Directory Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50682"
    },
    {
      "rank": 81,
      "cve_id": "CVE-2026-58627",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00871,
      "epss_percentile": 0.56033,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-400",
      "title": "Windows DHCP Server Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58627"
    },
    {
      "rank": 82,
      "cve_id": "CVE-2026-56642",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00869,
      "epss_percentile": 0.55967,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Service Fabric",
      "cwe": "CWE-121",
      "title": "Microsoft Fabric Data Warehouse Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56642"
    },
    {
      "rank": 83,
      "cve_id": "CVE-2026-50497",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00868,
      "epss_percentile": 0.55923,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-193",
      "title": "Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50497"
    },
    {
      "rank": 84,
      "cve_id": "CVE-2026-58533",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00868,
      "epss_percentile": 0.55923,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Windows Remote Desktop Client Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58533"
    },
    {
      "rank": 85,
      "cve_id": "CVE-2026-58535",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00868,
      "epss_percentile": 0.55924,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Windows Remote Desktop Client Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58535"
    },
    {
      "rank": 86,
      "cve_id": "CVE-2026-58539",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00868,
      "epss_percentile": 0.55924,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Remote Desktop Client Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58539"
    },
    {
      "rank": 87,
      "cve_id": "CVE-2026-50376",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00868,
      "epss_percentile": 0.55923,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Windows Remote Desktop Client Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50376"
    },
    {
      "rank": 88,
      "cve_id": "CVE-2026-55034",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00867,
      "epss_percentile": 0.55897,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-79",
      "title": "Microsoft SharePoint Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55034"
    },
    {
      "rank": 89,
      "cve_id": "CVE-2026-56194",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00852,
      "epss_percentile": 0.55375,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NFS Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56194"
    },
    {
      "rank": 90,
      "cve_id": "CVE-2026-56647",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00852,
      "epss_percentile": 0.55375,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-190",
      "title": "Windows Remote Access Service Infrastructure Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56647"
    },
    {
      "rank": 91,
      "cve_id": "CVE-2026-58626",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00852,
      "epss_percentile": 0.55375,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-416",
      "title": "Windows Remote Desktop Services Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58626"
    },
    {
      "rank": 92,
      "cve_id": "CVE-2026-55008",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.0085,
      "epss_percentile": 0.55317,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Exchange Server 2016 Cumulative Update 23",
      "cwe": "CWE-79",
      "title": "Microsoft Exchange Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55008"
    },
    {
      "rank": 93,
      "cve_id": "CVE-2026-15429",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00842,
      "epss_percentile": 0.55078,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TP-Link Systems Inc.",
      "product": "Archer VX1800v v1",
      "cwe": "CWE-93",
      "title": "Privilege Escalation via Improper Input Sanitization in TP-Link Archer VX1800v",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15429"
    },
    {
      "rank": 94,
      "cve_id": "CVE-2026-50527",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0084,
      "epss_percentile": 0.55031,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-121",
      "title": ".NET Framework Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50527"
    },
    {
      "rank": 95,
      "cve_id": "CVE-2026-50648",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0084,
      "epss_percentile": 0.55031,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-770",
      "title": ".NET Framework Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50648"
    },
    {
      "rank": 96,
      "cve_id": "CVE-2026-50651",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0084,
      "epss_percentile": 0.55031,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-770",
      "title": ".NET Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50651"
    },
    {
      "rank": 97,
      "cve_id": "CVE-2026-57094",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00829,
      "epss_percentile": 0.54703,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Microsoft Windows Media Foundation Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57094"
    },
    {
      "rank": 98,
      "cve_id": "CVE-2026-40378",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00816,
      "epss_percentile": 0.54281,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-789",
      "title": "Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-40378"
    },
    {
      "rank": 99,
      "cve_id": "CVE-2026-44806",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00816,
      "epss_percentile": 0.5428,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-401",
      "title": "Windows Secure Channel Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44806"
    },
    {
      "rank": 100,
      "cve_id": "CVE-2026-49787",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00816,
      "epss_percentile": 0.5428,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-770",
      "title": "HTTP.sys Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49787"
    },
    {
      "rank": 101,
      "cve_id": "CVE-2026-50424",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00816,
      "epss_percentile": 0.5428,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-822",
      "title": "Windows Domain Controller Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50424"
    },
    {
      "rank": 102,
      "cve_id": "CVE-2026-50696",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00816,
      "epss_percentile": 0.54279,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-122",
      "title": "Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50696"
    },
    {
      "rank": 103,
      "cve_id": "CVE-2026-54119",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00816,
      "epss_percentile": 0.5428,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-835",
      "title": "Windows Active Directory Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54119"
    },
    {
      "rank": 104,
      "cve_id": "CVE-2026-57090",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00812,
      "epss_percentile": 0.54152,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Microsoft Windows Media Foundation Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57090"
    },
    {
      "rank": 105,
      "cve_id": "CVE-2026-45304",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00804,
      "epss_percentile": 0.5391,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-776",
      "title": "Symfony: YAML Parser Exponential Memory Allocation via Recursive Collection-Alias Expansion (\"Billion Laughs\")",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45304"
    },
    {
      "rank": 106,
      "cve_id": "CVE-2026-45305",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00804,
      "epss_percentile": 0.5391,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-1333",
      "title": "Symfony: YAML Parser ReDoS via Catastrophic Backtracking in Parser::cleanup() Regex",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45305"
    },
    {
      "rank": 107,
      "cve_id": "CVE-2026-57087",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00802,
      "epss_percentile": 0.53806,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Microsoft Windows Media Foundation Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57087"
    },
    {
      "rank": 108,
      "cve_id": "CVE-2026-50695",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00796,
      "epss_percentile": 0.53607,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-121",
      "title": "Windows Active Directory Federation Services Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50695"
    },
    {
      "rank": 109,
      "cve_id": "CVE-2026-49181",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00794,
      "epss_percentile": 0.53551,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-191",
      "title": "Windows DHCP Client Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49181"
    },
    {
      "rank": 110,
      "cve_id": "CVE-2026-49799",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00791,
      "epss_percentile": 0.53452,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-400",
      "title": "Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49799"
    },
    {
      "rank": 111,
      "cve_id": "CVE-2026-56168",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00791,
      "epss_percentile": 0.53451,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-476",
      "title": "Windows SMB Server Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56168"
    },
    {
      "rank": 112,
      "cve_id": "CVE-2026-38450",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00785,
      "epss_percentile": 0.53243,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-94",
      "title": "An issue in Aetopia Digital Asset Management DAM v.1.0.0 allows a remote attacker to execute arbitrary code via the name and description parameter of the Add/Update Project function",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-38450"
    },
    {
      "rank": 113,
      "cve_id": "CVE-2026-15701",
      "cvss_base": 8.9,
      "cvss_severity": "HIGH",
      "epss_score": 0.00785,
      "epss_percentile": 0.53253,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Totolink",
      "product": "NR1800X",
      "cwe": "CWE-119",
      "title": "Totolink NR1800X lighttpd formLogout.htm Form_Logout stack-based overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15701"
    },
    {
      "rank": 114,
      "cve_id": "CVE-2026-50324",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00782,
      "epss_percentile": 0.53158,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft .NET Framework 3.5 AND 4.7.2",
      "cwe": "CWE-835",
      "title": "Windows Active Directory Federation Services Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50324"
    },
    {
      "rank": 115,
      "cve_id": "CVE-2026-45646",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0078,
      "epss_percentile": 0.53092,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "AspNet.OData",
      "cwe": "CWE-770",
      "title": "OData for ASP.NET and ASP.NET Core Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45646"
    },
    {
      "rank": 116,
      "cve_id": "CVE-2026-49788",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0078,
      "epss_percentile": 0.53091,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-770",
      "title": "HTTP/2 Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49788"
    },
    {
      "rank": 117,
      "cve_id": "CVE-2026-50368",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0078,
      "epss_percentile": 0.53093,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft .NET Framework 3.5 AND 4.7.2",
      "cwe": "CWE-121",
      "title": "Windows Active Directory Federation Services Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50368"
    },
    {
      "rank": 118,
      "cve_id": "CVE-2026-50411",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0078,
      "epss_percentile": 0.53092,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft .NET Framework 3.5 AND 4.7.2",
      "cwe": "CWE-121",
      "title": "Windows Active Directory Federation Services Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50411"
    },
    {
      "rank": 119,
      "cve_id": "CVE-2026-50506",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0078,
      "epss_percentile": 0.53093,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "AspNet.OData",
      "cwe": "CWE-770",
      "title": "OData for ASP.NET and ASP.NET Core Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50506"
    },
    {
      "rank": 120,
      "cve_id": "CVE-2026-50653",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0078,
      "epss_percentile": 0.53092,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Azure Active Directory",
      "cwe": "CWE-835",
      "title": "Azure Active Directory Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50653"
    },
    {
      "rank": 121,
      "cve_id": "CVE-2026-54983",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0078,
      "epss_percentile": 0.53091,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-121",
      "title": "Windows Active Directory Federation Services Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54983"
    },
    {
      "rank": 122,
      "cve_id": "CVE-2026-54108",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00775,
      "epss_percentile": 0.52941,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-73",
      "title": "Microsoft SharePoint Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54108"
    },
    {
      "rank": 123,
      "cve_id": "CVE-2026-50429",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00768,
      "epss_percentile": 0.5273,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Kernel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50429"
    },
    {
      "rank": 124,
      "cve_id": "CVE-2026-58594",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00767,
      "epss_percentile": 0.52708,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-190",
      "title": "Remote Desktop Client Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58594"
    },
    {
      "rank": 125,
      "cve_id": "CVE-2026-57102",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00767,
      "epss_percentile": 0.52708,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Visual Studio Code",
      "cwe": "CWE-829",
      "title": "Visual Studio Code Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57102"
    },
    {
      "rank": 126,
      "cve_id": "CVE-2026-48561",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00764,
      "epss_percentile": 0.52597,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Edge Copilot for Android",
      "cwe": "CWE-77",
      "title": "Microsoft Edge Copilot Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48561"
    },
    {
      "rank": 127,
      "cve_id": "CVE-2026-48564",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00763,
      "epss_percentile": 0.52571,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "DHCP Server Service Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48564"
    },
    {
      "rank": 128,
      "cve_id": "CVE-2026-50366",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00755,
      "epss_percentile": 0.52299,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-476",
      "title": "Windows Active Directory Domain Services Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50366"
    },
    {
      "rank": 129,
      "cve_id": "CVE-2026-57976",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00755,
      "epss_percentile": 0.52299,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-476",
      "title": "Windows Active Directory Domain Services Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57976"
    },
    {
      "rank": 130,
      "cve_id": "CVE-2026-55010",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.0074,
      "epss_percentile": 0.51804,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Minecraft Bedrock Dedicated Server",
      "cwe": "CWE-122",
      "title": "Minecraft Bedrock Dedicated Server Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55010"
    },
    {
      "rank": 131,
      "cve_id": "CVE-2026-45133",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.0074,
      "epss_percentile": 0.51805,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-674",
      "title": "Symfony: [Yaml] Harden the parser when handling untrusted input",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45133"
    },
    {
      "rank": 132,
      "cve_id": "CVE-2026-50487",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00738,
      "epss_percentile": 0.51718,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows DNS Client Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50487"
    },
    {
      "rank": 133,
      "cve_id": "CVE-2026-50463",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00738,
      "epss_percentile": 0.51709,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-125",
      "title": "Windows Kernel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50463"
    },
    {
      "rank": 134,
      "cve_id": "CVE-2026-50470",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00738,
      "epss_percentile": 0.5171,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Network Policy Server SNMP Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50470"
    },
    {
      "rank": 135,
      "cve_id": "CVE-2026-58617",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00736,
      "epss_percentile": 0.51668,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Copilot for iOS",
      "cwe": "CWE-284",
      "title": "M365 Copilot for iOS Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58617"
    },
    {
      "rank": 136,
      "cve_id": "CVE-2026-47303",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00736,
      "epss_percentile": 0.51642,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-302",
      "title": "ASP.NET Core Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47303"
    },
    {
      "rank": 137,
      "cve_id": "CVE-2026-50661",
      "cvss_base": 4.6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00723,
      "epss_percentile": 0.5118,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-693",
      "title": "Windows BitLocker Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50661"
    },
    {
      "rank": 138,
      "cve_id": "CVE-2026-48345",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00716,
      "epss_percentile": 0.50926,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Animate 2023",
      "cwe": "CWE-78",
      "title": "Animate | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48345"
    },
    {
      "rank": 139,
      "cve_id": "CVE-2026-50468",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00716,
      "epss_percentile": 0.50916,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SQL Server 2025 (CU 6)",
      "cwe": "CWE-126",
      "title": "Microsoft SQL Server Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50468"
    },
    {
      "rank": 140,
      "cve_id": "CVE-2026-59837",
      "cvss_base": 6.6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00707,
      "epss_percentile": 0.50584,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fortinet",
      "product": "FortiPAM",
      "cwe": "CWE-121",
      "title": "A stack-based buffer overflow vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2 all versions, FortiPAM 1.8.0 through 1.8.2, FortiPAM 1.7 all versions, FortiPAM 1.6 all versions, FortiPAM 1.5 all versions, FortiPAM 1.4 all versions, FortiPAM 1.3 all versions, FortiPAM 1.2 all versions, FortiPAM 1.1 all versions, FortiPAM 1.0 all versions, FortiProxy 7.4.0 through 7.4.13, FortiProxy 7.2 all versions may allow a privileged authenticated attacker who can bypass stack protection and ASLR to execute arbitrary code or commands via crafted HTTP requests.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59837"
    },
    {
      "rank": 141,
      "cve_id": "CVE-2026-40400",
      "cvss_base": 8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00701,
      "epss_percentile": 0.50394,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-23",
      "title": "Windows PowerShell Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-40400"
    },
    {
      "rank": 142,
      "cve_id": "CVE-2026-24227",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00696,
      "epss_percentile": 0.50211,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT",
      "cwe": "CWE-502",
      "title": "NVIDIA TensorRT for contains a vulnerability where a user might cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24227"
    },
    {
      "rank": 143,
      "cve_id": "CVE-2026-50500",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00692,
      "epss_percentile": 0.50056,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Netlogon Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50500"
    },
    {
      "rank": 144,
      "cve_id": "CVE-2026-27690",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00687,
      "epss_percentile": 0.4987,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP Approuter",
      "cwe": "CWE-444",
      "title": "HTTP Request Smuggling in SAP Approuter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-27690"
    },
    {
      "rank": 145,
      "cve_id": "CVE-2026-48259",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00682,
      "epss_percentile": 0.49678,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-918",
      "title": "Adobe Experience Manager | Server-Side Request Forgery (SSRF) (CWE-918)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48259"
    },
    {
      "rank": 146,
      "cve_id": "CVE-2026-50369",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00682,
      "epss_percentile": 0.49683,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Remote Desktop Services Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50369"
    },
    {
      "rank": 147,
      "cve_id": "CVE-2026-47301",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00679,
      "epss_percentile": 0.4957,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Configuration Manager",
      "cwe": "CWE-284",
      "title": "Configuration Manager Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47301"
    },
    {
      "rank": 148,
      "cve_id": "CVE-2026-50663",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00679,
      "epss_percentile": 0.49568,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Age of Empires II: Definitive Edition Game",
      "cwe": "CWE-23",
      "title": "Game: Age of Empires II: Definitive Edition Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50663"
    },
    {
      "rank": 149,
      "cve_id": "CVE-2026-42990",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00673,
      "epss_percentile": 0.493,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "SQL Server ODBC driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42990"
    },
    {
      "rank": 150,
      "cve_id": "CVE-2026-49172",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00673,
      "epss_percentile": 0.49343,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows FTP Service Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49172"
    },
    {
      "rank": 151,
      "cve_id": "CVE-2026-47988",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00667,
      "epss_percentile": 0.49062,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-863",
      "title": "Adobe Commerce | Incorrect Authorization (CWE-863)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47988"
    },
    {
      "rank": 152,
      "cve_id": "CVE-2026-55005",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00664,
      "epss_percentile": 0.48958,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Exchange Server 2016 Cumulative Update 23",
      "cwe": "CWE-122",
      "title": "Microsoft Exchange Server Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55005"
    },
    {
      "rank": 153,
      "cve_id": "CVE-2026-50694",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00662,
      "epss_percentile": 0.48917,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50694"
    },
    {
      "rank": 154,
      "cve_id": "CVE-2026-50432",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00662,
      "epss_percentile": 0.48909,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Window Virtual Filtering Platform (VFP) Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50432"
    },
    {
      "rank": 155,
      "cve_id": "CVE-2026-50686",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00659,
      "epss_percentile": 0.48789,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-843",
      "title": "Windows OLE Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50686"
    },
    {
      "rank": 156,
      "cve_id": "CVE-2026-55021",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00651,
      "epss_percentile": 0.48433,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-79",
      "title": "Microsoft SharePoint Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55021"
    },
    {
      "rank": 157,
      "cve_id": "CVE-2026-56649",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00651,
      "epss_percentile": 0.48451,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Windows Network File System Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56649"
    },
    {
      "rank": 158,
      "cve_id": "CVE-2026-50445",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00651,
      "epss_percentile": 0.48452,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-126",
      "title": "Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50445"
    },
    {
      "rank": 159,
      "cve_id": "CVE-2026-57979",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00651,
      "epss_percentile": 0.48452,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57979"
    },
    {
      "rank": 160,
      "cve_id": "CVE-2026-54126",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00651,
      "epss_percentile": 0.48454,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54126"
    },
    {
      "rank": 161,
      "cve_id": "CVE-2026-55003",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00651,
      "epss_percentile": 0.48452,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55003"
    },
    {
      "rank": 162,
      "cve_id": "CVE-2026-49164",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00649,
      "epss_percentile": 0.48335,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Active Directory Domain Services Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49164"
    },
    {
      "rank": 163,
      "cve_id": "CVE-2026-55052",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00649,
      "epss_percentile": 0.48327,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-862",
      "title": "Microsoft SharePoint Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55052"
    },
    {
      "rank": 164,
      "cve_id": "CVE-2026-53486",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00643,
      "epss_percentile": 0.48042,
      "kev": false,
      "kev_due_at": null,
      "vendor": "XhmikosR",
      "product": "decompress",
      "cwe": "CWE-22",
      "title": "decompress: Archive extraction can create files and links outside the target directory",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-53486"
    },
    {
      "rank": 165,
      "cve_id": "CVE-2026-46633",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00642,
      "epss_percentile": 0.48011,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-94",
      "title": "Twig: PHP code injection via `{% use %}` template name",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-46633"
    },
    {
      "rank": 166,
      "cve_id": "CVE-2026-47984",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00641,
      "epss_percentile": 0.47939,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-863",
      "title": "Adobe Commerce | Incorrect Authorization (CWE-863)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47984"
    },
    {
      "rank": 167,
      "cve_id": "CVE-2026-50524",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00634,
      "epss_percentile": 0.47645,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-1287",
      "title": ".NET Framework Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50524"
    },
    {
      "rank": 168,
      "cve_id": "CVE-2026-47998",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00633,
      "epss_percentile": 0.47634,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-863",
      "title": "Adobe Commerce | Incorrect Authorization (CWE-863)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47998"
    },
    {
      "rank": 169,
      "cve_id": "CVE-2026-55051",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00626,
      "epss_percentile": 0.47298,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-918",
      "title": "Microsoft SharePoint Server Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55051"
    },
    {
      "rank": 170,
      "cve_id": "CVE-2026-50380",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00625,
      "epss_percentile": 0.47266,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows GDI+ Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50380"
    },
    {
      "rank": 171,
      "cve_id": "CVE-2026-55054",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00623,
      "epss_percentile": 0.47184,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Excel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55054"
    },
    {
      "rank": 172,
      "cve_id": "CVE-2026-47994",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00622,
      "epss_percentile": 0.47145,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-79",
      "title": "Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47994"
    },
    {
      "rank": 173,
      "cve_id": "CVE-2026-50504",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00622,
      "epss_percentile": 0.47149,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-126",
      "title": "Windows Remote Desktop Client Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50504"
    },
    {
      "rank": 174,
      "cve_id": "CVE-2026-15669",
      "cvss_base": 1.9,
      "cvss_severity": "LOW",
      "epss_score": 0.00622,
      "epss_percentile": 0.47124,
      "kev": false,
      "kev_due_at": null,
      "vendor": "louisho5",
      "product": "picobot",
      "cwe": "CWE-77",
      "title": "louisho5 picobot exec Tool exec.go ExecTool.Execute os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15669"
    },
    {
      "rank": 175,
      "cve_id": "CVE-2026-50685",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00619,
      "epss_percentile": 0.46967,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-415",
      "title": "Windows DHCP Server Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50685"
    },
    {
      "rank": 176,
      "cve_id": "CVE-2026-45067",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00619,
      "epss_percentile": 0.46954,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-93",
      "title": "Symfony: Email Header / SMTP Command Injection via CRLF in Symfony\\Component\\Mime\\Address",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45067"
    },
    {
      "rank": 177,
      "cve_id": "CVE-2026-49178",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00618,
      "epss_percentile": 0.4692,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Active Directory Domain Services Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49178"
    },
    {
      "rank": 178,
      "cve_id": "CVE-2026-50666",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00618,
      "epss_percentile": 0.4692,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Remote Access Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50666"
    },
    {
      "rank": 179,
      "cve_id": "CVE-2026-55002",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00618,
      "epss_percentile": 0.4692,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SQL Server 2016 Service Pack 3 (GDR)",
      "cwe": "CWE-73",
      "title": "Microsoft SQL Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55002"
    },
    {
      "rank": 180,
      "cve_id": "CVE-2026-50415",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00618,
      "epss_percentile": 0.46937,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-200",
      "title": "Windows Media Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50415"
    },
    {
      "rank": 181,
      "cve_id": "CVE-2026-48068",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00617,
      "epss_percentile": 0.46877,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grpc",
      "product": "grpc-node",
      "cwe": "CWE-248",
      "title": "@grpc/grps-js: A malformed request can cause a server crash",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48068"
    },
    {
      "rank": 182,
      "cve_id": "CVE-2026-48069",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00617,
      "epss_percentile": 0.46876,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grpc",
      "product": "grpc-node",
      "cwe": "CWE-248",
      "title": "@grpc/grps-js: An incoming malformed compressed message can cause a client or server crash",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48069"
    },
    {
      "rank": 183,
      "cve_id": "CVE-2026-50474",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00612,
      "epss_percentile": 0.46629,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Remote Desktop Client Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50474"
    },
    {
      "rank": 184,
      "cve_id": "CVE-2026-47282",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00612,
      "epss_percentile": 0.46644,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Visual Studio Code",
      "cwe": "CWE-522",
      "title": "GitHub Copilot and Visual Studio Code Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47282"
    },
    {
      "rank": 185,
      "cve_id": "CVE-2026-57089",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.0061,
      "epss_percentile": 0.46526,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows SMB Server Network Transport Driver (srvnet.sys) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57089"
    },
    {
      "rank": 186,
      "cve_id": "CVE-2026-50444",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00604,
      "epss_percentile": 0.46246,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-306",
      "title": "Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50444"
    },
    {
      "rank": 187,
      "cve_id": "CVE-2026-50525",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00604,
      "epss_percentile": 0.46266,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-770",
      "title": ".NET Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50525"
    },
    {
      "rank": 188,
      "cve_id": "CVE-2026-56185",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00604,
      "epss_percentile": 0.4625,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows Admin Center",
      "cwe": "CWE-287",
      "title": "Windows Admin Center Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56185"
    },
    {
      "rank": 189,
      "cve_id": "CVE-2026-50502",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.006,
      "epss_percentile": 0.46069,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-1220",
      "title": "Windows Event Logging Service Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50502"
    },
    {
      "rank": 190,
      "cve_id": "CVE-2026-58531",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00599,
      "epss_percentile": 0.46042,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Windows SMB Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58531"
    },
    {
      "rank": 191,
      "cve_id": "CVE-2026-45756",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00598,
      "epss_percentile": 0.46013,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-400",
      "title": "Symfony: JsonPath Evaluates Attacker-Controlled Regular Expressions in match()/search() Without Limits — ReDoS",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45756"
    },
    {
      "rank": 192,
      "cve_id": "CVE-2026-54995",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.0059,
      "epss_percentile": 0.45655,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54995"
    },
    {
      "rank": 193,
      "cve_id": "CVE-2026-53633",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00578,
      "epss_percentile": 0.4504,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vitest-dev",
      "product": "vitest",
      "cwe": "CWE-749",
      "title": "Vitest: Exposed Browser Mode API Can Proxy CDP and Overwrite Config Files, Leading to RCE",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-53633"
    },
    {
      "rank": 194,
      "cve_id": "CVE-2026-55033",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00576,
      "epss_percentile": 0.44956,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-190",
      "title": "Microsoft Word Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55033"
    },
    {
      "rank": 195,
      "cve_id": "CVE-2026-49855",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00572,
      "epss_percentile": 0.44774,
      "kev": false,
      "kev_due_at": null,
      "vendor": "tornadoweb",
      "product": "tornado",
      "cwe": "CWE-409",
      "title": "tornado AsyncHTTPClient accumulates decompressed chunks without size limit (gzip bomb)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49855"
    },
    {
      "rank": 196,
      "cve_id": "CVE-2026-48001",
      "cvss_base": 3.7,
      "cvss_severity": "LOW",
      "epss_score": 0.00564,
      "epss_percentile": 0.44396,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-200",
      "title": "Adobe Commerce | Information Exposure (CWE-200)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48001"
    },
    {
      "rank": 197,
      "cve_id": "CVE-2026-15427",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00552,
      "epss_percentile": 0.43753,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TP-Link Systems Inc.",
      "product": "Archer VX1800v v1",
      "cwe": "CWE-78",
      "title": "OS Command Injection in TR-069 (CWMP) Management Interface in TP-Link Archer VX1800v",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15427"
    },
    {
      "rank": 198,
      "cve_id": "CVE-2026-50528",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00551,
      "epss_percentile": 0.43715,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-863",
      "title": ".NET Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50528"
    },
    {
      "rank": 199,
      "cve_id": "CVE-2026-50659",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0055,
      "epss_percentile": 0.43645,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-116",
      "title": ".NET Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50659"
    },
    {
      "rank": 200,
      "cve_id": "CVE-2026-55019",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00549,
      "epss_percentile": 0.43571,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-79",
      "title": "Microsoft SharePoint Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55019"
    },
    {
      "rank": 201,
      "cve_id": "CVE-2026-55030",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00549,
      "epss_percentile": 0.43571,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-79",
      "title": "Microsoft SharePoint Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55030"
    },
    {
      "rank": 202,
      "cve_id": "CVE-2026-15709",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00548,
      "epss_percentile": 0.43559,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-409",
      "title": "Soupwebsocketextensiondeflate: libsoup: libsoup: websocket permessage-deflate unbounded decompression remote denial of service",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15709"
    },
    {
      "rank": 203,
      "cve_id": "CVE-2026-54990",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00545,
      "epss_percentile": 0.43362,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-122",
      "title": "Remote Desktop Client Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54990"
    },
    {
      "rank": 204,
      "cve_id": "CVE-2026-48347",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00545,
      "epss_percentile": 0.43414,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Animate 2023",
      "cwe": "CWE-78",
      "title": "Animate | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48347"
    },
    {
      "rank": 205,
      "cve_id": "CVE-2026-55023",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00544,
      "epss_percentile": 0.43341,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55023"
    },
    {
      "rank": 206,
      "cve_id": "CVE-2026-55027",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00544,
      "epss_percentile": 0.43342,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55027"
    },
    {
      "rank": 207,
      "cve_id": "CVE-2026-3014",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00539,
      "epss_percentile": 0.43073,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Milestone Systems",
      "product": "XProtect Management Server",
      "cwe": "CWE-78",
      "title": "Remote Code Execution by administrative user on the Management Server",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-3014"
    },
    {
      "rank": 208,
      "cve_id": "CVE-2026-50475",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00536,
      "epss_percentile": 0.42889,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-126",
      "title": "Windows Kernel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50475"
    },
    {
      "rank": 209,
      "cve_id": "CVE-2026-50439",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00535,
      "epss_percentile": 0.4288,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Microsoft Message Queuing Queue Manager Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50439"
    },
    {
      "rank": 210,
      "cve_id": "CVE-2026-55047",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00535,
      "epss_percentile": 0.42881,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55047"
    },
    {
      "rank": 211,
      "cve_id": "CVE-2026-44747",
      "cvss_base": 9.9,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00533,
      "epss_percentile": 0.42745,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP NetWeaver Application Server ABAP",
      "cwe": "CWE-787",
      "title": "Memory Corruption vulnerability in SAP NetWeaver Application Server ABAP",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44747"
    },
    {
      "rank": 212,
      "cve_id": "CVE-2026-55126",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00532,
      "epss_percentile": 0.42693,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-79",
      "title": "Microsoft SharePoint Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55126"
    },
    {
      "rank": 213,
      "cve_id": "CVE-2026-49488",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00531,
      "epss_percentile": 0.42629,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache OpenMeetings",
      "cwe": "CWE-22",
      "title": "Apache OpenMeetings: Arbitrary File Read",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49488"
    },
    {
      "rank": 214,
      "cve_id": "CVE-2026-50414",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0053,
      "epss_percentile": 0.42594,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Media Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50414"
    },
    {
      "rank": 215,
      "cve_id": "CVE-2026-48328",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00529,
      "epss_percentile": 0.42529,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-20",
      "title": "ColdFusion | Improper Input Validation (CWE-20)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48328"
    },
    {
      "rank": 216,
      "cve_id": "CVE-2026-47300",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00527,
      "epss_percentile": 0.42401,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-303",
      "title": "ASP.NET Core Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47300"
    },
    {
      "rank": 217,
      "cve_id": "CVE-2026-57969",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00527,
      "epss_percentile": 0.42401,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Azure CycleCloud 8.9.1",
      "cwe": "CWE-306",
      "title": "Azure CycleCloud Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57969"
    },
    {
      "rank": 218,
      "cve_id": "CVE-2026-50360",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00526,
      "epss_percentile": 0.42367,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-303",
      "title": "Windows SMB Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50360"
    },
    {
      "rank": 219,
      "cve_id": "CVE-2026-55035",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00525,
      "epss_percentile": 0.42292,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55035"
    },
    {
      "rank": 220,
      "cve_id": "CVE-2026-49476",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00522,
      "epss_percentile": 0.42088,
      "kev": false,
      "kev_due_at": null,
      "vendor": "facelessuser",
      "product": "soupsieve",
      "cwe": "CWE-400",
      "title": "Soup Sieve: Memory Exhaustion via Large Comma-Separated Selector Lists in soupsieve",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49476"
    },
    {
      "rank": 221,
      "cve_id": "CVE-2026-49477",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00522,
      "epss_percentile": 0.42089,
      "kev": false,
      "kev_due_at": null,
      "vendor": "facelessuser",
      "product": "soupsieve",
      "cwe": "CWE-400",
      "title": "Soup Sieve: Regular Expression Denial of Service (ReDoS) in soupsieve Selector Parser",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49477"
    },
    {
      "rank": 222,
      "cve_id": "CVE-2026-57084",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00518,
      "epss_percentile": 0.41877,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Windows File Explorer Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57084"
    },
    {
      "rank": 223,
      "cve_id": "CVE-2026-48325",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00513,
      "epss_percentile": 0.41536,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-306",
      "title": "ColdFusion | Missing Authentication for Critical Function (CWE-306)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48325"
    },
    {
      "rank": 224,
      "cve_id": "CVE-2026-49169",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00509,
      "epss_percentile": 0.41313,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows Server 2025",
      "cwe": "CWE-416",
      "title": "Windows DNS Server Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49169"
    },
    {
      "rank": 225,
      "cve_id": "CVE-2026-58319",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00508,
      "epss_percentile": 0.41266,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Doris",
      "cwe": "CWE-306",
      "title": "Apache Doris: Improper Authentication in Frontend HTTP API",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58319"
    },
    {
      "rank": 226,
      "cve_id": "CVE-2026-59084",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00506,
      "epss_percentile": 0.41151,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Tomcat",
      "cwe": "CWE-1059",
      "title": "Apache Tomcat: EncryptInterceptor requirements not clearly documented",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59084"
    },
    {
      "rank": 227,
      "cve_id": "CVE-2026-56169",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00506,
      "epss_percentile": 0.41123,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows Admin Center",
      "cwe": "CWE-287",
      "title": "Windows Admin Center Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56169"
    },
    {
      "rank": 228,
      "cve_id": "CVE-2026-48310",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00506,
      "epss_percentile": 0.411,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-22",
      "title": "Adobe Experience Manager | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48310"
    },
    {
      "rank": 229,
      "cve_id": "CVE-2026-50460",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00506,
      "epss_percentile": 0.41105,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-362",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50460"
    },
    {
      "rank": 230,
      "cve_id": "CVE-2026-50655",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00505,
      "epss_percentile": 0.41064,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Microsoft Windows Media Foundation Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50655"
    },
    {
      "rank": 231,
      "cve_id": "CVE-2026-58546",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00503,
      "epss_percentile": 0.40948,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Windows Remote Desktop Client Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58546"
    },
    {
      "rank": 232,
      "cve_id": "CVE-2026-50340",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00502,
      "epss_percentile": 0.40878,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50340"
    },
    {
      "rank": 233,
      "cve_id": "CVE-2026-50505",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00502,
      "epss_percentile": 0.40878,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Message Queuing Service (MSMQ) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50505"
    },
    {
      "rank": 234,
      "cve_id": "CVE-2026-15712",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00498,
      "epss_percentile": 0.40664,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-125",
      "title": "Soupclientmessageiohttp2: libsoup3: libsoup: http/2 goaway frame parsing heap buffer over-read via invalid nul-termination assumption",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15712"
    },
    {
      "rank": 235,
      "cve_id": "CVE-2026-47296",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00497,
      "epss_percentile": 0.40591,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SQL Server 2016 Service Pack 3 (GDR)",
      "cwe": "CWE-89",
      "title": "Microsoft SQL Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47296"
    },
    {
      "rank": 236,
      "cve_id": "CVE-2026-15764",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00495,
      "epss_percentile": 0.40455,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15764"
    },
    {
      "rank": 237,
      "cve_id": "CVE-2026-15765",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00495,
      "epss_percentile": 0.40455,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Ozone in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15765"
    },
    {
      "rank": 238,
      "cve_id": "CVE-2026-57083",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00495,
      "epss_percentile": 0.4047,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Windows Media Photo Codec Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57083"
    },
    {
      "rank": 239,
      "cve_id": "CVE-2026-50370",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00494,
      "epss_percentile": 0.40445,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "DHCP Server Service Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50370"
    },
    {
      "rank": 240,
      "cve_id": "CVE-2026-55038",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00494,
      "epss_percentile": 0.40408,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-121",
      "title": "Microsoft Word Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55038"
    },
    {
      "rank": 241,
      "cve_id": "CVE-2026-50683",
      "cvss_base": 8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00488,
      "epss_percentile": 0.40081,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows DHCP Client Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50683"
    },
    {
      "rank": 242,
      "cve_id": "CVE-2026-58528",
      "cvss_base": 4.6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00488,
      "epss_percentile": 0.40093,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-125",
      "title": "Windows USB Audio Class Driver Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58528"
    },
    {
      "rank": 243,
      "cve_id": "CVE-2026-51808",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.0048,
      "epss_percentile": 0.3954,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-120",
      "title": "Buffer Overflow vulnerability in OpenHTJ2K v.0.18.4 and before allows an attacker to execute arbitrary code via the openhtj2k_decoder_impl::invoke, invoke_line_based, invoke_line_based_stream, and invoke_line_based_predecoded function in source/core/interface/decoder.cpp",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-51808"
    },
    {
      "rank": 244,
      "cve_id": "CVE-2026-54058",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00476,
      "epss_percentile": 0.3926,
      "kev": false,
      "kev_due_at": null,
      "vendor": "python-pillow",
      "product": "Pillow",
      "cwe": "CWE-125",
      "title": "Pillow: Out-of-bounds read via attacker-controlled row stride on Pillow's mmap path (McIdas AREA files)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54058"
    },
    {
      "rank": 245,
      "cve_id": "CVE-2026-15695",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00476,
      "epss_percentile": 0.39303,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tenda",
      "product": "BE12 Pro",
      "cwe": "CWE-119",
      "title": "Tenda BE12 Pro DhcpListClient fromDhcpListClient stack-based overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15695"
    },
    {
      "rank": 246,
      "cve_id": "CVE-2026-48489",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00475,
      "epss_percentile": 0.39231,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-863",
      "title": "Symfony: Security Firewall Bypass via failure_forward Subrequest: Unauthenticated Access to access_control-Protected GET Routes",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48489"
    },
    {
      "rank": 247,
      "cve_id": "CVE-2026-50416",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00475,
      "epss_percentile": 0.39227,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-200",
      "title": "Win32k Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50416"
    },
    {
      "rank": 248,
      "cve_id": "CVE-2026-56648",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00474,
      "epss_percentile": 0.39161,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-367",
      "title": "Windows NFS Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56648"
    },
    {
      "rank": 249,
      "cve_id": "CVE-2026-48321",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00471,
      "epss_percentile": 0.38903,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-863",
      "title": "ColdFusion | Incorrect Authorization (CWE-863)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48321"
    },
    {
      "rank": 250,
      "cve_id": "CVE-2026-49176",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00471,
      "epss_percentile": 0.38942,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-269",
      "title": "Windows WalletService Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49176"
    },
    {
      "rank": 251,
      "cve_id": "CVE-2026-54992",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00471,
      "epss_percentile": 0.38906,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Microsoft Message Queuing Queue Manager Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54992"
    },
    {
      "rank": 252,
      "cve_id": "CVE-2026-50338",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00468,
      "epss_percentile": 0.38766,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Azure Spring Apps",
      "cwe": "CWE-287",
      "title": "Azure Spring Apps Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50338"
    },
    {
      "rank": 253,
      "cve_id": "CVE-2026-15691",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00466,
      "epss_percentile": 0.38644,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tenda",
      "product": "BE12 Pro",
      "cwe": "CWE-119",
      "title": "Tenda BE12 Pro SafeClientFilter fromSafeClientFilter stack-based overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15691"
    },
    {
      "rank": 254,
      "cve_id": "CVE-2026-15692",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00466,
      "epss_percentile": 0.38645,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tenda",
      "product": "BE12 Pro",
      "cwe": "CWE-119",
      "title": "Tenda BE12 Pro SafeUrlFilter fromSafeUrlFilter stack-based overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15692"
    },
    {
      "rank": 255,
      "cve_id": "CVE-2026-15693",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00466,
      "epss_percentile": 0.38644,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tenda",
      "product": "BE12 Pro",
      "cwe": "CWE-119",
      "title": "Tenda BE12 Pro SafeMacFilter fromSafeMacFilter stack-based overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15693"
    },
    {
      "rank": 256,
      "cve_id": "CVE-2026-15694",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00466,
      "epss_percentile": 0.38645,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tenda",
      "product": "BE12 Pro",
      "cwe": "CWE-119",
      "title": "Tenda BE12 Pro SetIpBind fromSetIpBind stack-based overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15694"
    },
    {
      "rank": 257,
      "cve_id": "CVE-2026-15696",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00466,
      "epss_percentile": 0.38646,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tenda",
      "product": "BE12 Pro",
      "cwe": "CWE-119",
      "title": "Tenda BE12 Pro VirtualSer fromVirtualSer stack-based overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15696"
    },
    {
      "rank": 258,
      "cve_id": "CVE-2026-44761",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00465,
      "epss_percentile": 0.38575,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP Commerce Cloud",
      "cwe": "CWE-1392",
      "title": "Insecure Sample Credentials in SAP Commerce Cloud",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44761"
    },
    {
      "rank": 259,
      "cve_id": "CVE-2026-15265",
      "cvss_base": 9.4,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00462,
      "epss_percentile": 0.38381,
      "kev": false,
      "kev_due_at": null,
      "vendor": "tenable",
      "product": "tenable_agent",
      "cwe": "CWE-22",
      "title": "Tenable Agent Path Traversal Leading to Remote Code Execution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15265"
    },
    {
      "rank": 260,
      "cve_id": "CVE-2026-45071",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00462,
      "epss_percentile": 0.38337,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-611",
      "title": "Symfony: XXE (Local File Disclosure) in DomCrawler::addXmlContent() via validateOnParse = true",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45071"
    },
    {
      "rank": 261,
      "cve_id": "CVE-2026-55132",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00461,
      "epss_percentile": 0.3832,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-415",
      "title": "Microsoft Word Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55132"
    },
    {
      "rank": 262,
      "cve_id": "CVE-2026-59835",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.0046,
      "epss_percentile": 0.3823,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fortinet",
      "product": "FortiSandbox",
      "cwe": "CWE-668",
      "title": "A exposure of resource to wrong sphere vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.2, FortiSandbox 4.4.3 through 4.4.8 may allow an unauthenticated attacker to access the VNC server of VMs performing scanning via network requests.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59835"
    },
    {
      "rank": 263,
      "cve_id": "CVE-2026-48736",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0046,
      "epss_percentile": 0.38268,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-184",
      "title": "Symfony: IpUtils::PRIVATE_SUBNETS Omits IPv6 Transition Forms (6to4, NAT64, Teredo, IPv4-compatible): SSRF Bypass in NoPrivateNetworkHttpClient",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48736"
    },
    {
      "rank": 264,
      "cve_id": "CVE-2026-58595",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00459,
      "epss_percentile": 0.38155,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Bing Search for iOS",
      "cwe": "CWE-1021",
      "title": "Microsoft Bing App for IOS Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58595"
    },
    {
      "rank": 265,
      "cve_id": "CVE-2026-50365",
      "cvss_base": 8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00459,
      "epss_percentile": 0.38193,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-287",
      "title": "Remote Access Management service/API (RPC server) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50365"
    },
    {
      "rank": 266,
      "cve_id": "CVE-2026-48580",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00459,
      "epss_percentile": 0.38197,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-822",
      "title": "Microsoft Excel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48580"
    },
    {
      "rank": 267,
      "cve_id": "CVE-2026-55046",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00459,
      "epss_percentile": 0.38198,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Excel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55046"
    },
    {
      "rank": 268,
      "cve_id": "CVE-2026-50352",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00458,
      "epss_percentile": 0.38138,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows Cryptographic Services Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50352"
    },
    {
      "rank": 269,
      "cve_id": "CVE-2026-50389",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00458,
      "epss_percentile": 0.38137,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows File Explorer Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50389"
    },
    {
      "rank": 270,
      "cve_id": "CVE-2026-50431",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00458,
      "epss_percentile": 0.38138,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows Quality of Service (QoS) Packet Scheduler Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50431"
    },
    {
      "rank": 271,
      "cve_id": "CVE-2026-50681",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00458,
      "epss_percentile": 0.38138,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows Secure Channel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50681"
    },
    {
      "rank": 272,
      "cve_id": "CVE-2026-56184",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00458,
      "epss_percentile": 0.38137,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-200",
      "title": "Win32k Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56184"
    },
    {
      "rank": 273,
      "cve_id": "CVE-2026-57095",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00456,
      "epss_percentile": 0.37984,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57095"
    },
    {
      "rank": 274,
      "cve_id": "CVE-2026-5270",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00452,
      "epss_percentile": 0.37685,
      "kev": false,
      "kev_due_at": null,
      "vendor": "CIENA",
      "product": "Navigator NCS",
      "cwe": "CWE-287",
      "title": "Authentication Bypass in Navigator and Blue Planet Products",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-5270"
    },
    {
      "rank": 275,
      "cve_id": "CVE-2026-57898",
      "cvss_base": 9,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00447,
      "epss_percentile": 0.37396,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Eclipse Foundation",
      "product": "Eclipse BaSyx - Java Server SDK",
      "cwe": "CWE-22",
      "title": "In Eclipse BaSyx Java Server SDK versions 2.0.0-milestone-05 to 2.0.0-milestone-12, deployments using the MongoDB backend are vulnerable to an unauthenticated arbitrary file write through the AAS thumbnail API. The AAS thumbnail upload path accepted a client-controlled fileName request parameter and passed it through repository file handling as both a repository key and, during thumbnail retrieval, a local filesystem path. With the MongoDB file repository, the supplied filename was treated as an opaque GridFS key and was not normalized or restricted as a filesystem path. A remote attacker could upload thumbnail content using an absolute or traversal-style filename, then trigger thumbnail retrieval so that the uploaded bytes were written to the attacker-chosen path on the server filesystem. This could allow writing files anywhere the Java process has permission to write and may lead to remote code execution. The default InMemory backend is not affected by this specific path because it normalizes and restricts file paths to its temporary directory. The issue is fixed in Eclipse BaSyx Java Server SDK 2.0.0-milestone-13.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57898"
    },
    {
      "rank": 276,
      "cve_id": "CVE-2026-45077",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00447,
      "epss_percentile": 0.37405,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-502",
      "title": "Symfony: Unauthenticated PHP Object Deserialization in MonologBridge server:log Listener",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45077"
    },
    {
      "rank": 277,
      "cve_id": "CVE-2026-58613",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00447,
      "epss_percentile": 0.37408,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58613"
    },
    {
      "rank": 278,
      "cve_id": "CVE-2026-48125",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00445,
      "epss_percentile": 0.3717,
      "kev": false,
      "kev_due_at": null,
      "vendor": "faisalman",
      "product": "ua-parser-js",
      "cwe": "CWE-400",
      "title": "UAParser.js: Unbounded `Sec-CH-UA-Model` parsing can trigger ReDoS in `withClientHints()`",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48125"
    },
    {
      "rank": 279,
      "cve_id": "CVE-2026-57101",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00442,
      "epss_percentile": 0.36953,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Visual Studio Code",
      "cwe": "CWE-79",
      "title": "Visual Studio Code Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57101"
    },
    {
      "rank": 280,
      "cve_id": "CVE-2026-50454",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0044,
      "epss_percentile": 0.36785,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-23",
      "title": "Windows User Interface Core Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50454"
    },
    {
      "rank": 281,
      "cve_id": "CVE-2026-50314",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00437,
      "epss_percentile": 0.36569,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-416",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50314"
    },
    {
      "rank": 282,
      "cve_id": "CVE-2026-50657",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00437,
      "epss_percentile": 0.36587,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Defender for Endpoint for Mac",
      "cwe": "CWE-359",
      "title": "Microsoft Defender for Endpoint for Mac Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50657"
    },
    {
      "rank": 283,
      "cve_id": "CVE-2026-59197",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00436,
      "epss_percentile": 0.36529,
      "kev": false,
      "kev_due_at": null,
      "vendor": "python-pillow",
      "product": "Pillow",
      "cwe": "CWE-190",
      "title": "Pillow: Heap out-of-bounds write in Pillow `ImageFilter.RankFilter` via integer overflow in `ImagingExpand`",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59197"
    },
    {
      "rank": 284,
      "cve_id": "CVE-2026-50313",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00435,
      "epss_percentile": 0.36408,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50313"
    },
    {
      "rank": 285,
      "cve_id": "CVE-2026-50347",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00435,
      "epss_percentile": 0.36408,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Data.dll Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50347"
    },
    {
      "rank": 286,
      "cve_id": "CVE-2026-50388",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00435,
      "epss_percentile": 0.36409,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50388"
    },
    {
      "rank": 287,
      "cve_id": "CVE-2026-54124",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00435,
      "epss_percentile": 0.36408,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-190",
      "title": "Windows Terminal Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54124"
    },
    {
      "rank": 288,
      "cve_id": "CVE-2026-15776",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00431,
      "epss_percentile": 0.36111,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.125 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15776"
    },
    {
      "rank": 289,
      "cve_id": "CVE-2026-15711",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00431,
      "epss_percentile": 0.36072,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-770",
      "title": "Libsoup: soupwebsocketconnection: libsoup: websocket remote denial of service via oversized control frame protocol violation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15711"
    },
    {
      "rank": 290,
      "cve_id": "CVE-2026-14902",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00429,
      "epss_percentile": 0.35969,
      "kev": false,
      "kev_due_at": null,
      "vendor": "ivanti",
      "product": "Xtraction",
      "cwe": "CWE-601",
      "title": "An open redirect in Ivanti Xtraction before version 2026.2.1 allows a remote unauthenticated attacker to redirect users to arbitrary external URLs.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14902"
    },
    {
      "rank": 291,
      "cve_id": "CVE-2026-15767",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00426,
      "epss_percentile": 0.35691,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-122",
      "title": "Heap buffer overflow in libyuv in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted video file. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15767"
    },
    {
      "rank": 292,
      "cve_id": "CVE-2026-50485",
      "cvss_base": 5.7,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00426,
      "epss_percentile": 0.35707,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-126",
      "title": "Windows Hyper-V Denial of Service Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50485"
    },
    {
      "rank": 293,
      "cve_id": "CVE-2026-58608",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00425,
      "epss_percentile": 0.35609,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Windows Print Spooler Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58608"
    },
    {
      "rank": 294,
      "cve_id": "CVE-2026-59733",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00422,
      "epss_percentile": 0.35401,
      "kev": false,
      "kev_due_at": null,
      "vendor": "rclone",
      "product": "rclone",
      "cwe": "CWE-22",
      "title": "rclone `serve restic --private-repos` authorization bypass: `..` in the URL path lets an authenticated user read, overwrite and delete other users' repositories",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59733"
    },
    {
      "rank": 295,
      "cve_id": "CVE-2026-55028",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0042,
      "epss_percentile": 0.352,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55028"
    },
    {
      "rank": 296,
      "cve_id": "CVE-2026-55050",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0042,
      "epss_percentile": 0.352,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Word Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55050"
    },
    {
      "rank": 297,
      "cve_id": "CVE-2026-55124",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0042,
      "epss_percentile": 0.352,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-1287",
      "title": "Microsoft Word Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55124"
    },
    {
      "rank": 298,
      "cve_id": "CVE-2026-55142",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0042,
      "epss_percentile": 0.35201,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-197",
      "title": "Microsoft Word Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55142"
    },
    {
      "rank": 299,
      "cve_id": "CVE-2026-56192",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0042,
      "epss_percentile": 0.352,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56192"
    },
    {
      "rank": 300,
      "cve_id": "CVE-2026-46634",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00419,
      "epss_percentile": 0.35161,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-693",
      "title": "Twig: `template_from_string()` escapes a SourcePolicy-driven sandbox via synthesized template name",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-46634"
    },
    {
      "rank": 301,
      "cve_id": "CVE-2026-55127",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00417,
      "epss_percentile": 0.34917,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Word Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55127"
    },
    {
      "rank": 302,
      "cve_id": "CVE-2026-45074",
      "cvss_base": 7.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00413,
      "epss_percentile": 0.34595,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-290",
      "title": "Symfony: Cas2Handler Derives CAS service URL from Client Host Header → Cross-Service Ticket Replay",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45074"
    },
    {
      "rank": 303,
      "cve_id": "CVE-2026-55016",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00412,
      "epss_percentile": 0.34533,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-79",
      "title": "Microsoft SharePoint Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55016"
    },
    {
      "rank": 304,
      "cve_id": "CVE-2026-55020",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00412,
      "epss_percentile": 0.34487,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-79",
      "title": "Microsoft SharePoint Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55020"
    },
    {
      "rank": 305,
      "cve_id": "CVE-2026-55135",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00412,
      "epss_percentile": 0.34487,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-79",
      "title": "Microsoft SharePoint Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55135"
    },
    {
      "rank": 306,
      "cve_id": "CVE-2026-55954",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00411,
      "epss_percentile": 0.34395,
      "kev": false,
      "kev_due_at": null,
      "vendor": "ueberauth",
      "product": "ueberauth_apple",
      "cwe": "CWE-290",
      "title": "Missing ID token claim validation in ueberauth_apple allows account takeover",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55954"
    },
    {
      "rank": 307,
      "cve_id": "CVE-2025-56361",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00411,
      "epss_percentile": 0.34378,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-617",
      "title": "A reachable assertion vulnerability exists in the Matter SDK (connectedhomeip) 1.3 thru 1.4, specifically within the Level Control cluster's server tick logic (`emberAfLevelControlClusterServerTickCallback`). When a MoveToLevel command is executed and followed by a conflicting write to the OperationMode attribute (in the Pump Configuration and Control cluster), an invariant check (`minLevel < currentLevel`) fails and causes the device to abort. This leads to a denial of service condition. The issue is confirmed in SDK versions 1.3 and 1.4 (commit ab3d5ae), and is triggered remotely without authentication.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-56361"
    },
    {
      "rank": 308,
      "cve_id": "CVE-2026-55026",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00411,
      "epss_percentile": 0.34383,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-190",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55026"
    },
    {
      "rank": 309,
      "cve_id": "CVE-2026-45073",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0041,
      "epss_percentile": 0.34326,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-89",
      "title": "Symfony: SQL Injection in PdoAdapter::doClear() via Unsanitized $prefix",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45073"
    },
    {
      "rank": 310,
      "cve_id": "CVE-2026-62390",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00409,
      "epss_percentile": 0.34259,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Kylin",
      "cwe": "CWE-89",
      "title": "Apache Kylin: SQL Injection Vulnerability in Catalog Cache Refresh API",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62390"
    },
    {
      "rank": 311,
      "cve_id": "CVE-2026-50492",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00408,
      "epss_percentile": 0.34197,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Resilient File System (ReFS) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50492"
    },
    {
      "rank": 312,
      "cve_id": "CVE-2026-45068",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00407,
      "epss_percentile": 0.34093,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-88",
      "title": "Symfony: Argument Injection in SendmailTransport via Dash-Prefixed Recipient Address",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45068"
    },
    {
      "rank": 313,
      "cve_id": "CVE-2026-48351",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00407,
      "epss_percentile": 0.34105,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Content Credentials Rust SDK",
      "cwe": "CWE-20",
      "title": "CAI Content Credentials | Improper Input Validation (CWE-20)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48351"
    },
    {
      "rank": 314,
      "cve_id": "CVE-2026-48352",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00407,
      "epss_percentile": 0.34104,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Content Credentials Rust SDK",
      "cwe": "CWE-20",
      "title": "CAI Content Credentials | Improper Input Validation (CWE-20)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48352"
    },
    {
      "rank": 315,
      "cve_id": "CVE-2026-10672",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00405,
      "epss_percentile": 0.33941,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zephyrproject",
      "product": "zephyr",
      "cwe": "CWE-125",
      "title": "Unterminated URI buffer causes out-of-bounds read in LwM2M firmware pull (Package URI)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-10672"
    },
    {
      "rank": 316,
      "cve_id": "CVE-2026-46640",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00405,
      "epss_percentile": 0.33871,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-94",
      "title": "Twig: Arbitrary PHP code execution via `_self.(<string>)` macro-reference compilation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-46640"
    },
    {
      "rank": 317,
      "cve_id": "CVE-2026-47290",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00404,
      "epss_percentile": 0.33787,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-416",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47290"
    },
    {
      "rank": 318,
      "cve_id": "CVE-2026-47642",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00404,
      "epss_percentile": 0.33787,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-416",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47642"
    },
    {
      "rank": 319,
      "cve_id": "CVE-2026-48334",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.004,
      "epss_percentile": 0.33396,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Illustrator Desktop 2026",
      "cwe": "CWE-20",
      "title": "Illustrator | Improper Input Validation (CWE-20)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48334"
    },
    {
      "rank": 320,
      "cve_id": "CVE-2026-59203",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00399,
      "epss_percentile": 0.3329,
      "kev": false,
      "kev_due_at": null,
      "vendor": "python-pillow",
      "product": "Pillow",
      "cwe": "CWE-835",
      "title": "Pillow EpsImagePlugin negative %%BeginBinary byte count causes infinite loop denial of service",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59203"
    },
    {
      "rank": 321,
      "cve_id": "CVE-2026-47995",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00397,
      "epss_percentile": 0.3304,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-79",
      "title": "Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47995"
    },
    {
      "rank": 322,
      "cve_id": "CVE-2026-14645",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00397,
      "epss_percentile": 0.33054,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sonatype",
      "product": "Nexus Repository 3",
      "cwe": "CWE-918",
      "title": "Nexus Repository 3 - Server-Side Request Forgery (SSRF) via Webhook: Global Capability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14645"
    },
    {
      "rank": 323,
      "cve_id": "CVE-2026-56189",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00396,
      "epss_percentile": 0.32963,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Microsoft Windows Media Foundation Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56189"
    },
    {
      "rank": 324,
      "cve_id": "CVE-2026-46644",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00394,
      "epss_percentile": 0.3281,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "polyfill",
      "cwe": "CWE-1289",
      "title": "symfony/polyfill-intl-idn accepts xn-- labels whose Punycode payload decodes to ASCII-only: insecure equivalence",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-46644"
    },
    {
      "rank": 325,
      "cve_id": "CVE-2026-59204",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00393,
      "epss_percentile": 0.32672,
      "kev": false,
      "kev_due_at": null,
      "vendor": "python-pillow",
      "product": "Pillow",
      "cwe": "CWE-770",
      "title": "Pillow JPEG2000 tiled decode retains a growing scratch buffer and can be used for denial of service",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59204"
    },
    {
      "rank": 326,
      "cve_id": "CVE-2026-55024",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00393,
      "epss_percentile": 0.32603,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-843",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55024"
    },
    {
      "rank": 327,
      "cve_id": "CVE-2026-55031",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00393,
      "epss_percentile": 0.32603,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55031"
    },
    {
      "rank": 328,
      "cve_id": "CVE-2026-50398",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00393,
      "epss_percentile": 0.32613,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Media Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50398"
    },
    {
      "rank": 329,
      "cve_id": "CVE-2026-50462",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00392,
      "epss_percentile": 0.32554,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-73",
      "title": "Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50462"
    },
    {
      "rank": 330,
      "cve_id": "CVE-2026-15714",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0039,
      "epss_percentile": 0.32353,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-125",
      "title": "Libsoup: soupmultipartinputstream: libsoup: out-of-bounds read in soup_multipart_input_stream_read_headers via an oversized multipart boundary string",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15714"
    },
    {
      "rank": 331,
      "cve_id": "CVE-2026-52101",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00389,
      "epss_percentile": 0.32277,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-200",
      "title": "An issue in andreimarcu linux-server v.1.0 through v.2.3.8 allows a remote attacker to obtain sensitive information via the function uploadRemote function in upload.go",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-52101"
    },
    {
      "rank": 332,
      "cve_id": "CVE-2026-47767",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00389,
      "epss_percentile": 0.32224,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-436",
      "title": "Symfony: SymfonyRuntime CVE-2024-50340 Patch Bypass: Web Requests Can Still Set APP_ENV/APP_DEBUG via parse_str/SAPI Argv Mismatch",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47767"
    },
    {
      "rank": 333,
      "cve_id": "CVE-2026-42900",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00389,
      "epss_percentile": 0.32261,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Microsoft Windows App Store Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42900"
    },
    {
      "rank": 334,
      "cve_id": "CVE-2026-49796",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00389,
      "epss_percentile": 0.32254,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows GDI+ Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49796"
    },
    {
      "rank": 335,
      "cve_id": "CVE-2026-48295",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00389,
      "epss_percentile": 0.3221,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Content Credentials Rust SDK",
      "cwe": "CWE-522",
      "title": "CAI Content Credentials | Insufficiently Protected Credentials (CWE-522)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48295"
    },
    {
      "rank": 336,
      "cve_id": "CVE-2026-47428",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00388,
      "epss_percentile": 0.3211,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vitest-dev",
      "product": "vitest",
      "cwe": "CWE-79",
      "title": "Vitest browser mode serves unsanitized otelCarrier query parameter as inline script",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47428"
    },
    {
      "rank": 337,
      "cve_id": "CVE-2026-15043",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00387,
      "epss_percentile": 0.32004,
      "kev": false,
      "kev_due_at": null,
      "vendor": "HMBRAND",
      "product": "DBI::SQL::Nano",
      "cwe": "CWE-480",
      "title": "DBI::SQL::Nano versions from 1.42 before 1.651 for Perl have inverted <= and >= SQL operators on text",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15043"
    },
    {
      "rank": 338,
      "cve_id": "CVE-2026-60082",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00387,
      "epss_percentile": 0.32005,
      "kev": false,
      "kev_due_at": null,
      "vendor": "HMBRAND",
      "product": "DBI",
      "cwe": "CWE-125",
      "title": "DBI versions before 1.651 for Perl do not enforce statement handle consistency with the row",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-60082"
    },
    {
      "rank": 339,
      "cve_id": "CVE-2026-58635",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00387,
      "epss_percentile": 0.32015,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-77",
      "title": "Windows Narrator Braille Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58635"
    },
    {
      "rank": 340,
      "cve_id": "CVE-2026-50690",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00387,
      "epss_percentile": 0.32023,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Windows SMB Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50690"
    },
    {
      "rank": 341,
      "cve_id": "CVE-2025-53379",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00385,
      "epss_percentile": 0.31821,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fortinet",
      "product": "FortiAuthenticator",
      "cwe": "CWE-125",
      "title": "A out-of-bounds read vulnerability in Fortinet FortiAuthenticator 6.6.0 through 6.6.2, FortiAuthenticator 6.5 all versions may allow a remote unauthenticated attacker to retrieve sensitive information via a specially crafted request.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-53379"
    },
    {
      "rank": 342,
      "cve_id": "CVE-2026-59199",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00385,
      "epss_percentile": 0.31871,
      "kev": false,
      "kev_due_at": null,
      "vendor": "python-pillow",
      "product": "Pillow",
      "cwe": "CWE-787",
      "title": "Pillow: Heap out-of-bounds write `Image.paste()` / `Image.crop()` via signed coordinate overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59199"
    },
    {
      "rank": 343,
      "cve_id": "CVE-2026-59200",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00385,
      "epss_percentile": 0.31871,
      "kev": false,
      "kev_due_at": null,
      "vendor": "python-pillow",
      "product": "Pillow",
      "cwe": "CWE-400",
      "title": "Pillow: Decompression Bomb DoS via PdfParser.PdfStream.decode()",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59200"
    },
    {
      "rank": 344,
      "cve_id": "CVE-2026-59205",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00385,
      "epss_percentile": 0.31871,
      "kev": false,
      "kev_due_at": null,
      "vendor": "python-pillow",
      "product": "Pillow",
      "cwe": "CWE-787",
      "title": "Pillow: Controlled heap out-of-bounds write in `ImageCmsTransform.apply()` via output mode mismatch",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59205"
    },
    {
      "rank": 345,
      "cve_id": "CVE-2026-46627",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00385,
      "epss_percentile": 0.3179,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-400",
      "title": "Twig: Sandbox resource exhaustion via unbounded `for` / `range()`",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-46627"
    },
    {
      "rank": 346,
      "cve_id": "CVE-2026-49458",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00384,
      "epss_percentile": 0.31681,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cure53",
      "product": "DOMPurify",
      "cwe": "CWE-79",
      "title": "DOMPurify: Cross-realm IN_PLACE sanitization leaves executable markup intact via realm-bound `instanceof` checks",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49458"
    },
    {
      "rank": 347,
      "cve_id": "CVE-2026-45075",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00382,
      "epss_percentile": 0.31515,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-863",
      "title": "Symfony: HEAD Request Bypasses methods: ['GET'] Filter in #[IsGranted] / #[IsSignatureValid] / #[IsCsrfTokenValid]",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45075"
    },
    {
      "rank": 348,
      "cve_id": "CVE-2026-50377",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00382,
      "epss_percentile": 0.31467,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50377"
    },
    {
      "rank": 349,
      "cve_id": "CVE-2026-15766",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00382,
      "epss_percentile": 0.31459,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-457",
      "title": "Uninitialized Use in Skia in Google Chrome prior to 150.0.7871.125 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15766"
    },
    {
      "rank": 350,
      "cve_id": "CVE-2026-15770",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00382,
      "epss_percentile": 0.31459,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-457",
      "title": "Uninitialized Use in V8 in Google Chrome prior to 150.0.7871.125 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15770"
    },
    {
      "rank": 351,
      "cve_id": "CVE-2026-55042",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00382,
      "epss_percentile": 0.3148,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-908",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55042"
    },
    {
      "rank": 352,
      "cve_id": "CVE-2026-55057",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00382,
      "epss_percentile": 0.31481,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-190",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55057"
    },
    {
      "rank": 353,
      "cve_id": "CVE-2026-56195",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00382,
      "epss_percentile": 0.31481,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56195"
    },
    {
      "rank": 354,
      "cve_id": "CVE-2026-15718",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00381,
      "epss_percentile": 0.31403,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Mozilla",
      "product": "Firefox",
      "cwe": "CWE-763",
      "title": "Invalid pointer in the JavaScript: WebAssembly component",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15718"
    },
    {
      "rank": 355,
      "cve_id": "CVE-2026-54982",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0038,
      "epss_percentile": 0.31299,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-191",
      "title": "Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54982"
    },
    {
      "rank": 356,
      "cve_id": "CVE-2026-50420",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0038,
      "epss_percentile": 0.31312,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-125",
      "title": "HTTP.sys Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50420"
    },
    {
      "rank": 357,
      "cve_id": "CVE-2026-60081",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00379,
      "epss_percentile": 0.31261,
      "kev": false,
      "kev_due_at": null,
      "vendor": "HMBRAND",
      "product": "DBI::ProfileData",
      "cwe": "CWE-770",
      "title": "DBI::ProfileData versions before 1.651 for Perl do not limit the path index",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-60081"
    },
    {
      "rank": 358,
      "cve_id": "CVE-2025-56363",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00378,
      "epss_percentile": 0.31103,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-476",
      "title": "A null pointer dereference vulnerability exists in the Matter SDK (connectedhomeip) before 1.4.0, affecting the ReadRevisionAttribute function used in multiple clusters (Channel, Account Login, TargetNavigator, etc.). The function lacks proper validation of the delegate pointer before dereferencing. A remote unauthenticated attacker can exploit this issue by sending a crafted read request, causing the device to crash (denial of service). This issue has been confirmed in SDK version v1.4 (commit ab3d5ae).",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-56363"
    },
    {
      "rank": 359,
      "cve_id": "CVE-2026-55022",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00377,
      "epss_percentile": 0.30969,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-843",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55022"
    },
    {
      "rank": 360,
      "cve_id": "CVE-2026-11944",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00377,
      "epss_percentile": 0.30975,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OS4ED",
      "product": "openSIS-Classic",
      "cwe": "CWE-22",
      "title": "openSIS Classic 9.3 - Authenticated path traversal in SentMail attachment download",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11944"
    },
    {
      "rank": 361,
      "cve_id": "CVE-2026-55011",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00374,
      "epss_percentile": 0.30685,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Malware Protection Engine",
      "cwe": "CWE-191",
      "title": "Microsoft Defender Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55011"
    },
    {
      "rank": 362,
      "cve_id": "CVE-2026-55012",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00374,
      "epss_percentile": 0.30686,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Malware Protection Engine",
      "cwe": "CWE-190",
      "title": "Microsoft Defender Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55012"
    },
    {
      "rank": 363,
      "cve_id": "CVE-2026-49807",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00374,
      "epss_percentile": 0.30656,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-200",
      "title": "Windows DirectX Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49807"
    },
    {
      "rank": 364,
      "cve_id": "CVE-2026-50294",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00374,
      "epss_percentile": 0.30656,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-497",
      "title": "Windows Kernel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50294"
    },
    {
      "rank": 365,
      "cve_id": "CVE-2026-15738",
      "cvss_base": 5.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00373,
      "epss_percentile": 0.30571,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Amazon",
      "product": "aws-load-balancer-controller",
      "cwe": "CWE-653",
      "title": "Cross-namespace traffic interception via incorrect route precedence ordering in AWS Load Balancer Controller",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15738"
    },
    {
      "rank": 366,
      "cve_id": "CVE-2026-15773",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00372,
      "epss_percentile": 0.30475,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Core in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15773"
    },
    {
      "rank": 367,
      "cve_id": "CVE-2026-50684",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00372,
      "epss_percentile": 0.30517,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-79",
      "title": "Active Directory Federation Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50684"
    },
    {
      "rank": 368,
      "cve_id": "CVE-2026-51807",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00371,
      "epss_percentile": 0.30389,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-121",
      "title": "Heap-based out-of-bounds write in j2k_precinct_subband::parse_packet_header() in OpenHTJ2K versions 0.18.3 and earlier (fixed in v0.18.4) caused by missing bounds validation before coding-pass lengths are written to j2k_codeblock::pass_length[128]. A crafted JPEG 2000 codestream containing malformed PPM packet headers can trigger a heap-based out-of-bounds write in j2k_precinct_subband::parse_packet_header() in source/core/coding/coding_units.cpp due to missing bounds validation for the j2k_codeblock::pass_length[128] array which can lead to heap corruption and process termination.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-51807"
    },
    {
      "rank": 369,
      "cve_id": "CVE-2026-48327",
      "cvss_base": 9,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00371,
      "epss_percentile": 0.30342,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-863",
      "title": "ColdFusion | Incorrect Authorization (CWE-863)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48327"
    },
    {
      "rank": 370,
      "cve_id": "CVE-2026-15720",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00371,
      "epss_percentile": 0.30391,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open5gs",
      "product": "open5gs",
      "cwe": "CWE-125",
      "title": "Pre-auth heap out-of-bounds read in the AMF NAS 5GS mobile-identity handler",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15720"
    },
    {
      "rank": 371,
      "cve_id": "CVE-2026-48252",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00371,
      "epss_percentile": 0.30374,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-306",
      "title": "Adobe Experience Manager | Missing Authentication for Critical Function (CWE-306)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48252"
    },
    {
      "rank": 372,
      "cve_id": "CVE-2026-55032",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00371,
      "epss_percentile": 0.3035,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-416",
      "title": "Microsoft Word Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55032"
    },
    {
      "rank": 373,
      "cve_id": "CVE-2026-55055",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00371,
      "epss_percentile": 0.30349,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-121",
      "title": "Microsoft Word Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55055"
    },
    {
      "rank": 374,
      "cve_id": "CVE-2026-55125",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00371,
      "epss_percentile": 0.3035,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55125"
    },
    {
      "rank": 375,
      "cve_id": "CVE-2026-55128",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00371,
      "epss_percentile": 0.30351,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-416",
      "title": "Microsoft Word Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55128"
    },
    {
      "rank": 376,
      "cve_id": "CVE-2026-55130",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00371,
      "epss_percentile": 0.30351,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Word Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55130"
    },
    {
      "rank": 377,
      "cve_id": "CVE-2026-55134",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00371,
      "epss_percentile": 0.3035,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-121",
      "title": "Microsoft Word Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55134"
    },
    {
      "rank": 378,
      "cve_id": "CVE-2026-59083",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.0037,
      "epss_percentile": 0.30234,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Tomcat",
      "cwe": "CWE-177",
      "title": "Apache Tomcat: Incorrect URL decoding in RewriteValve may allow security control bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59083"
    },
    {
      "rank": 379,
      "cve_id": "CVE-2026-55145",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.0037,
      "epss_percentile": 0.30309,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Copilot",
      "cwe": "CWE-77",
      "title": "Outlook Copilot Tampering Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55145"
    },
    {
      "rank": 380,
      "cve_id": "CVE-2026-60114",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00369,
      "epss_percentile": 0.30078,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dan-in-CA",
      "product": "SIP",
      "cwe": "CWE-22",
      "title": "Sustainable Irrigation Platform 5.2.16 Path Traversal via JSON Backup Restore",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-60114"
    },
    {
      "rank": 381,
      "cve_id": "CVE-2026-49853",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00365,
      "epss_percentile": 0.29717,
      "kev": false,
      "kev_due_at": null,
      "vendor": "tornadoweb",
      "product": "tornado",
      "cwe": "CWE-200",
      "title": "Tornado: Authorization header forwarded across cross-origin redirects in SimpleAsyncHTTPClient",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49853"
    },
    {
      "rank": 382,
      "cve_id": "CVE-2026-50379",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00365,
      "epss_percentile": 0.29735,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Media Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50379"
    },
    {
      "rank": 383,
      "cve_id": "CVE-2026-56193",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00365,
      "epss_percentile": 0.29791,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56193"
    },
    {
      "rank": 384,
      "cve_id": "CVE-2026-50453",
      "cvss_base": 4.6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00364,
      "epss_percentile": 0.29677,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows USB Audio Class Driver Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50453"
    },
    {
      "rank": 385,
      "cve_id": "CVE-2026-15700",
      "cvss_base": 2,
      "cvss_severity": "LOW",
      "epss_score": 0.00363,
      "epss_percentile": 0.29574,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "DedeCMS",
      "cwe": "CWE-22",
      "title": "DedeCMS Album Publishing Feature zip.class.php ExtractFile path traversal",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15700"
    },
    {
      "rank": 386,
      "cve_id": "CVE-2025-56365",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00362,
      "epss_percentile": 0.29452,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-617",
      "title": "A reachable assertion vulnerability exists in the Matter SDK (connectedhomeip) before 1.4.0, in the interaction model command processing logic. When an InvokeCommandRequest is sent to a nonexistent endpoint and cluster (e.g., 0x34), the code incorrectly treats the endpoint as valid due to missing checks in CodegenDataModelProvider::Invoke. This causes a VerifyOrDie failure in ProcessCommandDataIB and results in a crash (SIGABRT). The issue has been acknowledged and fixed in a later revision (PR #37207).",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-56365"
    },
    {
      "rank": 387,
      "cve_id": "CVE-2026-58279",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00362,
      "epss_percentile": 0.29445,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Azure CycleCloud 8.9.1",
      "cwe": "CWE-862",
      "title": "Azure CycleCloud Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58279"
    },
    {
      "rank": 388,
      "cve_id": "CVE-2026-55121",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00362,
      "epss_percentile": 0.29436,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55121"
    },
    {
      "rank": 389,
      "cve_id": "CVE-2026-50489",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00361,
      "epss_percentile": 0.29307,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50489"
    },
    {
      "rank": 390,
      "cve_id": "CVE-2026-57091",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00361,
      "epss_percentile": 0.29306,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-121",
      "title": "Windows File History Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57091"
    },
    {
      "rank": 391,
      "cve_id": "CVE-2026-55045",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.0036,
      "epss_percentile": 0.29288,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55045"
    },
    {
      "rank": 392,
      "cve_id": "CVE-2026-49797",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0036,
      "epss_percentile": 0.29236,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49797"
    },
    {
      "rank": 393,
      "cve_id": "CVE-2026-50308",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0036,
      "epss_percentile": 0.29235,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-191",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50308"
    },
    {
      "rank": 394,
      "cve_id": "CVE-2026-47732",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.0036,
      "epss_percentile": 0.29222,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-863",
      "title": "Twig Sandbox: multiple `__toString()` policy bypasses via unguarded string coercion points",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47732"
    },
    {
      "rank": 395,
      "cve_id": "CVE-2026-49804",
      "cvss_base": 6.6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0036,
      "epss_percentile": 0.29242,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows USB Video Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49804"
    },
    {
      "rank": 396,
      "cve_id": "CVE-2026-50426",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00359,
      "epss_percentile": 0.29145,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-23",
      "title": "Windows DNS Server Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50426"
    },
    {
      "rank": 397,
      "cve_id": "CVE-2026-15715",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00359,
      "epss_percentile": 0.29176,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SourceCodester",
      "product": "Class and Exam Timetabling System",
      "cwe": "CWE-79",
      "title": "SourceCodester Class and Exam Timetabling System exam.php cross site scripting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15715"
    },
    {
      "rank": 398,
      "cve_id": "CVE-2026-58477",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00357,
      "epss_percentile": 0.28952,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dan-in-CA",
      "product": "SIP",
      "cwe": "CWE-915",
      "title": "Sustainable Irrigation Platform 5.2.16 Mass Assignment via HTTP Parameters",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58477"
    },
    {
      "rank": 399,
      "cve_id": "CVE-2026-45496",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00357,
      "epss_percentile": 0.28973,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Visual Studio Code",
      "cwe": "CWE-22",
      "title": "Visual Studio Code Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45496"
    },
    {
      "rank": 400,
      "cve_id": "CVE-2026-56157",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00356,
      "epss_percentile": 0.28836,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft SharePoint Enterprise Server 2016",
      "cwe": "CWE-284",
      "title": "Microsoft SharePoint Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56157"
    },
    {
      "rank": 401,
      "cve_id": "CVE-2026-15771",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00356,
      "epss_percentile": 0.28829,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Insufficient validation of untrusted input in Media in Google Chrome on Windows prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15771"
    },
    {
      "rank": 402,
      "cve_id": "CVE-2026-34349",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00354,
      "epss_percentile": 0.28629,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-200",
      "title": "Windows Media Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34349"
    },
    {
      "rank": 403,
      "cve_id": "CVE-2026-50394",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00354,
      "epss_percentile": 0.28629,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows Media Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50394"
    },
    {
      "rank": 404,
      "cve_id": "CVE-2026-48801",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00353,
      "epss_percentile": 0.28486,
      "kev": false,
      "kev_due_at": null,
      "vendor": "markdown-it",
      "product": "linkify-it",
      "cwe": "CWE-1333",
      "title": "linkify-it: Quadratic algorithmic complexity in LinkifyIt#match scan loop",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48801"
    },
    {
      "rank": 405,
      "cve_id": "CVE-2026-58547",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00353,
      "epss_percentile": 0.28539,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-122",
      "title": "Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58547"
    },
    {
      "rank": 406,
      "cve_id": "CVE-2026-48000",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.28555,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-601",
      "title": "Adobe Commerce | URL Redirection to Untrusted Site ('Open Redirect') (CWE-601)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48000"
    },
    {
      "rank": 407,
      "cve_id": "CVE-2026-15622",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.28473,
      "kev": false,
      "kev_due_at": null,
      "vendor": "poco-ai",
      "product": "poco-claw",
      "cwe": "CWE-285",
      "title": "poco-ai poco-claw Workspace API workspace.py get_workspace_file authorization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15622"
    },
    {
      "rank": 408,
      "cve_id": "CVE-2026-33842",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.28581,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows File Explorer Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-33842"
    },
    {
      "rank": 409,
      "cve_id": "CVE-2026-34328",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.28579,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-200",
      "title": "Windows Audio Service Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34328"
    },
    {
      "rank": 410,
      "cve_id": "CVE-2026-41087",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.28579,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows File Explorer Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-41087"
    },
    {
      "rank": 411,
      "cve_id": "CVE-2026-50316",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.28581,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-532",
      "title": "Windows Kernel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50316"
    },
    {
      "rank": 412,
      "cve_id": "CVE-2026-50334",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.28582,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows Push Notification Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50334"
    },
    {
      "rank": 413,
      "cve_id": "CVE-2026-50339",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.2858,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-200",
      "title": "Windows Push Notification Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50339"
    },
    {
      "rank": 414,
      "cve_id": "CVE-2026-50350",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.28582,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-200",
      "title": "Windows Trusted Runtime Interface Driver Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50350"
    },
    {
      "rank": 415,
      "cve_id": "CVE-2026-50409",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.28582,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows Overlay Filter Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50409"
    },
    {
      "rank": 416,
      "cve_id": "CVE-2026-50430",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.28581,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows Push Notification Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50430"
    },
    {
      "rank": 417,
      "cve_id": "CVE-2026-50434",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.28582,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-200",
      "title": "Windows Push Notification Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50434"
    },
    {
      "rank": 418,
      "cve_id": "CVE-2026-50442",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.28581,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows File Explorer Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50442"
    },
    {
      "rank": 419,
      "cve_id": "CVE-2026-50456",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.2858,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows File Explorer Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50456"
    },
    {
      "rank": 420,
      "cve_id": "CVE-2026-50473",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00353,
      "epss_percentile": 0.2858,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows File Explorer Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50473"
    },
    {
      "rank": 421,
      "cve_id": "CVE-2026-50402",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00352,
      "epss_percentile": 0.28426,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-681",
      "title": "NTFS Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50402"
    },
    {
      "rank": 422,
      "cve_id": "CVE-2026-52837",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00352,
      "epss_percentile": 0.28456,
      "kev": false,
      "kev_due_at": null,
      "vendor": "alextselegidis",
      "product": "easyappointments",
      "cwe": "CWE-200",
      "title": "Easy!Appointments has unauthenticated customer PII disclosure on booking reschedule page",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-52837"
    },
    {
      "rank": 423,
      "cve_id": "CVE-2026-46639",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00351,
      "epss_percentile": 0.28297,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-693",
      "title": "Twig: Sandbox property and method bypass via object-destructuring assignment",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-46639"
    },
    {
      "rank": 424,
      "cve_id": "CVE-2026-50665",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": 0.0035,
      "epss_percentile": 0.28178,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50665"
    },
    {
      "rank": 425,
      "cve_id": "CVE-2026-11403",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00349,
      "epss_percentile": 0.28131,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sonatype",
      "product": "Nexus Repository Manager",
      "cwe": "CWE-331",
      "title": "Nexus Repository Manager - Insufficient Entropy in Format-Specific API Key Generation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11403"
    },
    {
      "rank": 426,
      "cve_id": "CVE-2026-59884",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00349,
      "epss_percentile": 0.28135,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pyasn1",
      "product": "pyasn1",
      "cwe": "CWE-400",
      "title": "pyasn1 BER/CER/DER decoder denial of service via unbounded long-form tag IDs",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59884"
    },
    {
      "rank": 427,
      "cve_id": "CVE-2026-15713",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00349,
      "epss_percentile": 0.28065,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-772",
      "title": "Libsoup: soupcache: libsoup: http/2 frame window exhaustion remote denial of service via memory leak",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15713"
    },
    {
      "rank": 428,
      "cve_id": "CVE-2026-55043",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00348,
      "epss_percentile": 0.27936,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft PowerPoint Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55043"
    },
    {
      "rank": 429,
      "cve_id": "CVE-2026-55120",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00348,
      "epss_percentile": 0.27936,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft PowerPoint Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55120"
    },
    {
      "rank": 430,
      "cve_id": "CVE-2026-55123",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00348,
      "epss_percentile": 0.27937,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft PowerPoint Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55123"
    },
    {
      "rank": 431,
      "cve_id": "CVE-2026-45754",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00348,
      "epss_percentile": 0.27948,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-287",
      "title": "Symfony: Mailjet Mailer Webhook Parser Never Verifies the Configured Secret — Unauthenticated Webhook Event Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45754"
    },
    {
      "rank": 432,
      "cve_id": "CVE-2026-58647",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00348,
      "epss_percentile": 0.2802,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Power BI Report Server",
      "cwe": "CWE-79",
      "title": "Microsoft PowerBI Report Server Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58647"
    },
    {
      "rank": 433,
      "cve_id": "CVE-2026-50327",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00347,
      "epss_percentile": 0.27883,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-122",
      "title": "Windows Media Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50327"
    },
    {
      "rank": 434,
      "cve_id": "CVE-2026-50332",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00347,
      "epss_percentile": 0.27925,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50332"
    },
    {
      "rank": 435,
      "cve_id": "CVE-2026-47736",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00346,
      "epss_percentile": 0.27743,
      "kev": false,
      "kev_due_at": null,
      "vendor": "puma",
      "product": "puma",
      "cwe": "CWE-400",
      "title": "Puma PROXY Protocol v1 Parser Allows Remote Memory Exhaustion",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47736"
    },
    {
      "rank": 436,
      "cve_id": "CVE-2026-59889",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00346,
      "epss_percentile": 0.27757,
      "kev": false,
      "kev_due_at": null,
      "vendor": "FasterXML",
      "product": "jackson-databind",
      "cwe": "CWE-863",
      "title": "jackson-databind: @JsonView ypassed for @JsonUnwrapped container properties on deserialization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59889"
    },
    {
      "rank": 437,
      "cve_id": "CVE-2026-49794",
      "cvss_base": 4.6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00346,
      "epss_percentile": 0.27762,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows USB Audio Class Driver Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49794"
    },
    {
      "rank": 438,
      "cve_id": "CVE-2026-50408",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00345,
      "epss_percentile": 0.27638,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Excel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50408"
    },
    {
      "rank": 439,
      "cve_id": "CVE-2026-55138",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00345,
      "epss_percentile": 0.27635,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-822",
      "title": "Microsoft Excel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55138"
    },
    {
      "rank": 440,
      "cve_id": "CVE-2026-47476",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00343,
      "epss_percentile": 0.27469,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "Triton Inference Server",
      "cwe": "CWE-400",
      "title": "NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause uncontrolled resource consumption. A successful exploit of this vulnerability might lead to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47476"
    },
    {
      "rank": 441,
      "cve_id": "CVE-2026-50364",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00343,
      "epss_percentile": 0.27468,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-59",
      "title": "Windows Backup Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50364"
    },
    {
      "rank": 442,
      "cve_id": "CVE-2026-50680",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00341,
      "epss_percentile": 0.27247,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-122",
      "title": "Windows Hyper-V Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50680"
    },
    {
      "rank": 443,
      "cve_id": "CVE-2026-58542",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00341,
      "epss_percentile": 0.27219,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-122",
      "title": "Windows Media Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58542"
    },
    {
      "rank": 444,
      "cve_id": "CVE-2026-50467",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0034,
      "epss_percentile": 0.27157,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-416",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50467"
    },
    {
      "rank": 445,
      "cve_id": "CVE-2026-55018",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0034,
      "epss_percentile": 0.27156,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-416",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55018"
    },
    {
      "rank": 446,
      "cve_id": "CVE-2026-55049",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0034,
      "epss_percentile": 0.27158,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55049"
    },
    {
      "rank": 447,
      "cve_id": "CVE-2026-55056",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0034,
      "epss_percentile": 0.27156,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55056"
    },
    {
      "rank": 448,
      "cve_id": "CVE-2026-55129",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0034,
      "epss_percentile": 0.27156,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55129"
    },
    {
      "rank": 449,
      "cve_id": "CVE-2026-55140",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0034,
      "epss_percentile": 0.27155,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55140"
    },
    {
      "rank": 450,
      "cve_id": "CVE-2026-55139",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": 0.0034,
      "epss_percentile": 0.27123,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Office Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55139"
    },
    {
      "rank": 451,
      "cve_id": "CVE-2026-42975",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00339,
      "epss_percentile": 0.26906,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Bluetooth Port Driver Remote Code Execution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42975"
    },
    {
      "rank": 452,
      "cve_id": "CVE-2026-15719",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00339,
      "epss_percentile": 0.26921,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Mozilla",
      "product": "Firefox",
      "cwe": null,
      "title": "Site isolation issue in the DOM: Navigation component",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15719"
    },
    {
      "rank": 453,
      "cve_id": "CVE-2026-50501",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00338,
      "epss_percentile": 0.26864,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-121",
      "title": "Windows Resilient File System (ReFS) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50501"
    },
    {
      "rank": 454,
      "cve_id": "CVE-2026-58530",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00338,
      "epss_percentile": 0.26865,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Resilient File System (ReFS) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58530"
    },
    {
      "rank": 455,
      "cve_id": "CVE-2025-56362",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00338,
      "epss_percentile": 0.26891,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-617",
      "title": "A reachable assertion vulnerability exists in the Matter SDK (connectedhomeip) before 1.4.2, specifically within the Level Control cluster's periodic server tick logic. When a MoveToLevel command is sent and immediately followed by a write of OperationMode=2 (in the Pump Configuration and Control cluster), the server tick function violates the assertion `currentLevel < maxLevel`, resulting in a crash. This can be exploited remotely without authentication to cause denial of service. Affected versions include 1.3 and 1.4 (commit ab3d5ae).",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-56362"
    },
    {
      "rank": 456,
      "cve_id": "CVE-2026-50483",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00338,
      "epss_percentile": 0.26826,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-200",
      "title": "Windows Graphics Component Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50483"
    },
    {
      "rank": 457,
      "cve_id": "CVE-2026-49854",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00338,
      "epss_percentile": 0.26836,
      "kev": false,
      "kev_due_at": null,
      "vendor": "tornadoweb",
      "product": "tornado",
      "cwe": "CWE-126",
      "title": "Tornado: Out-of-bounds memory access in C extension",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49854"
    },
    {
      "rank": 458,
      "cve_id": "CVE-2026-50419",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00338,
      "epss_percentile": 0.26851,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows Kernel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50419"
    },
    {
      "rank": 459,
      "cve_id": "CVE-2026-15702",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00337,
      "epss_percentile": 0.26793,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "tamagui",
      "cwe": "CWE-94",
      "title": "tamagui config.ts updateConfig prototype pollution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15702"
    },
    {
      "rank": 460,
      "cve_id": "CVE-2026-50348",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00336,
      "epss_percentile": 0.26623,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-362",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50348"
    },
    {
      "rank": 461,
      "cve_id": "CVE-2025-43892",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00336,
      "epss_percentile": 0.26663,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fortinet",
      "product": "FortiOS",
      "cwe": "CWE-126",
      "title": "A buffer over-read vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions may allow an authenticated remote attacker to return a portion of device memory in the redirect response via submitting a specially crafted request.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-43892"
    },
    {
      "rank": 462,
      "cve_id": "CVE-2026-47305",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00335,
      "epss_percentile": 0.26573,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Visual Studio 2022 version 17.12",
      "cwe": "CWE-693",
      "title": "Visual Studio Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47305"
    },
    {
      "rank": 463,
      "cve_id": "CVE-2026-50362",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00335,
      "epss_percentile": 0.26574,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Resilient File System (ReFS) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50362"
    },
    {
      "rank": 464,
      "cve_id": "CVE-2026-50386",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00335,
      "epss_percentile": 0.26574,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50386"
    },
    {
      "rank": 465,
      "cve_id": "CVE-2026-50448",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00335,
      "epss_percentile": 0.26573,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50448"
    },
    {
      "rank": 466,
      "cve_id": "CVE-2026-50461",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00335,
      "epss_percentile": 0.26573,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50461"
    },
    {
      "rank": 467,
      "cve_id": "CVE-2026-54993",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00335,
      "epss_percentile": 0.26574,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-122",
      "title": "Microsoft Windows Media Foundation Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54993"
    },
    {
      "rank": 468,
      "cve_id": "CVE-2026-56156",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00335,
      "epss_percentile": 0.26573,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56156"
    },
    {
      "rank": 469,
      "cve_id": "CVE-2026-59885",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00335,
      "epss_percentile": 0.26483,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pyasn1",
      "product": "pyasn1",
      "cwe": "CWE-400",
      "title": "pyasn1: Quadratic complexity in OBJECT IDENTIFIER and RELATIVE-OID processing allows denial of service",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59885"
    },
    {
      "rank": 470,
      "cve_id": "CVE-2026-59886",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00335,
      "epss_percentile": 0.26484,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pyasn1",
      "product": "pyasn1",
      "cwe": "CWE-400",
      "title": "pyasn1: Uncontrolled resource consumption when converting decoded REAL values",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59886"
    },
    {
      "rank": 471,
      "cve_id": "CVE-2026-55122",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00335,
      "epss_percentile": 0.26519,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Excel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55122"
    },
    {
      "rank": 472,
      "cve_id": "CVE-2026-49978",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00334,
      "epss_percentile": 0.26374,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cure53",
      "product": "DOMPurify",
      "cwe": "CWE-79",
      "title": "DOMPurify IN_PLACE Sanitization Bypass via Attached Shadow Root Inside <template>.content",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49978"
    },
    {
      "rank": 473,
      "cve_id": "CVE-2026-44745",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00331,
      "epss_percentile": 0.2614,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP Approuter",
      "cwe": "CWE-601",
      "title": "Open Redirect vulnerability in SAP Approuter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44745"
    },
    {
      "rank": 474,
      "cve_id": "CVE-2025-56364",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00331,
      "epss_percentile": 0.26125,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-457",
      "title": "A use of uninitialized value vulnerability exists in the Matter SDK (connectedhomeip) before 1.4.0, where the `GetDestinationGroupId().Value()` method is called without first checking whether a value exists. This leads to a crash when an InvokeCommand is sent without initializing the destination group ID. The issue affects all versions before commit 0360cc3 (Dec 5, 2024) and leads to denial of service through SIGABRT. It is fixed by adding a .HasValue() check before access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-56364"
    },
    {
      "rank": 475,
      "cve_id": "CVE-2026-45063",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.0033,
      "epss_percentile": 0.25946,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-290",
      "title": "Symfony: Identity Spoofing via Unanchored DN Regex in X509Authenticator",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45063"
    },
    {
      "rank": 476,
      "cve_id": "CVE-2026-36214",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0033,
      "epss_percentile": 0.25967,
      "kev": false,
      "kev_due_at": null,
      "vendor": "osTicket",
      "product": "osTicket",
      "cwe": "CWE-79",
      "title": "osTicket versions from 1.10 up to 1.17.7 and from 1.18.0 up to 1.18.3 are vulnerable to a stored XSS due to a vulnerable Bootstrap Tooltip component and insufficient HTML sanitization, allowing remote attackers to execute arbitrary JavaScript in Agent or Admin sessions.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-36214"
    },
    {
      "rank": 477,
      "cve_id": "CVE-2026-15697",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.0033,
      "epss_percentile": 0.25995,
      "kev": false,
      "kev_due_at": null,
      "vendor": "svgdotjs",
      "product": "svg.js",
      "cwe": "CWE-94",
      "title": "svgdotjs svg.js npm Package API EventTarget.on prototype pollution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15697"
    },
    {
      "rank": 478,
      "cve_id": "CVE-2026-62422",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00329,
      "epss_percentile": 0.2585,
      "kev": false,
      "kev_due_at": null,
      "vendor": "JetBrains",
      "product": "YouTrack",
      "cwe": "CWE-306",
      "title": "In JetBrains YouTrack before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 authentication bypass via direct database access leading to administrative access was possible",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62422"
    },
    {
      "rank": 479,
      "cve_id": "CVE-2026-9292",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00329,
      "epss_percentile": 0.259,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "FactoryTalk® DataMosaix™ Private Cloud",
      "cwe": "CWE-79",
      "title": "Rockwell Automation FactoryTalk® DataMosaix™ Private Cloud - Stored Cross-Site Scripting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9292"
    },
    {
      "rank": 480,
      "cve_id": "CVE-2026-15703",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00328,
      "epss_percentile": 0.2581,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SourceCodester",
      "product": "Simple and Nice Shopping Cart Script",
      "cwe": "CWE-74",
      "title": "SourceCodester Simple and Nice Shopping Cart Script userproductdeletequery.php sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15703"
    },
    {
      "rank": 481,
      "cve_id": "CVE-2026-50312",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00327,
      "epss_percentile": 0.2563,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50312"
    },
    {
      "rank": 482,
      "cve_id": "CVE-2026-50298",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00327,
      "epss_percentile": 0.25645,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-190",
      "title": "Windows Spaceport.sys Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50298"
    },
    {
      "rank": 483,
      "cve_id": "CVE-2026-50299",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00327,
      "epss_percentile": 0.25645,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-190",
      "title": "Windows Storage Spaces Direct Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50299"
    },
    {
      "rank": 484,
      "cve_id": "CVE-2026-49177",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00327,
      "epss_percentile": 0.25694,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows TCP/IP Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49177"
    },
    {
      "rank": 485,
      "cve_id": "CVE-2026-12583",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00326,
      "epss_percentile": 0.25546,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Newsletters",
      "cwe": "CWE-502",
      "title": "Newsletters < 4.15 - Unauthenticated PHP Object Injection via Subscriber Custom Field",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12583"
    },
    {
      "rank": 486,
      "cve_id": "CVE-2026-50675",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00325,
      "epss_percentile": 0.25457,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50675"
    },
    {
      "rank": 487,
      "cve_id": "CVE-2026-49180",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00325,
      "epss_percentile": 0.25432,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-59",
      "title": "Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49180"
    },
    {
      "rank": 488,
      "cve_id": "CVE-2026-15777",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00324,
      "epss_percentile": 0.25293,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in UI in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15777"
    },
    {
      "rank": 489,
      "cve_id": "CVE-2026-11917",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00324,
      "epss_percentile": 0.25364,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "FactoryTalk ThinManager",
      "cwe": "CWE-22",
      "title": "ThinManager® - Path Traversal via API",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11917"
    },
    {
      "rank": 490,
      "cve_id": "CVE-2026-50374",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00323,
      "epss_percentile": 0.25243,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50374"
    },
    {
      "rank": 491,
      "cve_id": "CVE-2026-57097",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00322,
      "epss_percentile": 0.25054,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-426",
      "title": "Microsoft XML Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57097"
    },
    {
      "rank": 492,
      "cve_id": "CVE-2026-12659",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.0032,
      "epss_percentile": 0.24908,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "The FLEX 5000® EtherNet/IP Adapter",
      "cwe": "CWE-415",
      "title": "Rockwell Automation Flex 5000® Adapter - Denial of Service",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12659"
    },
    {
      "rank": 493,
      "cve_id": "CVE-2026-51105",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00319,
      "epss_percentile": 0.2472,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-121",
      "title": "Buffer Overflow vulnerability in aMULE-Project aMule v.2.3.3 allows a remote attacker to cause a denial of service via the OP_SERVERMESSAGE Handler.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-51105"
    },
    {
      "rank": 494,
      "cve_id": "CVE-2026-15778",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00319,
      "epss_percentile": 0.24725,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Insufficient validation of untrusted input in Navigation in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15778"
    },
    {
      "rank": 495,
      "cve_id": "CVE-2026-59891",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00317,
      "epss_percentile": 0.24502,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sigstore",
      "product": "sigstore-js",
      "cwe": "CWE-522",
      "title": "Credential confusion in @sigstore/oci can leak registry credentials to an attacker-controlled registry",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59891"
    },
    {
      "rank": 496,
      "cve_id": "CVE-2026-50692",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00317,
      "epss_percentile": 0.24556,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Desktop Window Manager Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50692"
    },
    {
      "rank": 497,
      "cve_id": "CVE-2026-50477",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00317,
      "epss_percentile": 0.24602,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50477"
    },
    {
      "rank": 498,
      "cve_id": "CVE-2026-50687",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00317,
      "epss_percentile": 0.24556,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50687"
    },
    {
      "rank": 499,
      "cve_id": "CVE-2026-58534",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00317,
      "epss_percentile": 0.24557,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Input Method Editor (IME) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58534"
    },
    {
      "rank": 500,
      "cve_id": "CVE-2026-50678",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00315,
      "epss_percentile": 0.2427,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Excel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50678"
    },
    {
      "rank": 501,
      "cve_id": "CVE-2026-58233",
      "cvss_base": 7.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00314,
      "epss_percentile": 0.24249,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP Change and Transport System Attach Tool (ctsattach)",
      "cwe": "CWE-502",
      "title": "Remote Code Execution vulnerability in SAP Change and Transport System Attach Tool (ctsattach)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58233"
    },
    {
      "rank": 502,
      "cve_id": "CVE-2026-47632",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00313,
      "epss_percentile": 0.24098,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Azure Connected Machine Agent",
      "cwe": "CWE-295",
      "title": "Azure Connected Machine Agent Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47632"
    },
    {
      "rank": 503,
      "cve_id": "CVE-2026-58633",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00313,
      "epss_percentile": 0.24133,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 version 26H1",
      "cwe": "CWE-416",
      "title": "Desktop Window Manager Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58633"
    },
    {
      "rank": 504,
      "cve_id": "CVE-2026-52100",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00313,
      "epss_percentile": 0.24143,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-352",
      "title": "Cross Site Request Forgery vulnerability in andreimarcu linux-server v.1.0 through v.2.3.8 allows a remote attacker to execute arbitrary code via the uploadPutHandler function",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-52100"
    },
    {
      "rank": 505,
      "cve_id": "CVE-2026-59198",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00313,
      "epss_percentile": 0.24126,
      "kev": false,
      "kev_due_at": null,
      "vendor": "python-pillow",
      "product": "Pillow",
      "cwe": "CWE-125",
      "title": "Pillow TGA RLE encoder can serialize up to ~57 KB of adjacent heap data into generated images",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59198"
    },
    {
      "rank": 506,
      "cve_id": "CVE-2026-23573",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00313,
      "epss_percentile": 0.24114,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fortinet",
      "product": "FortiOS",
      "cwe": "CWE-79",
      "title": "An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability [CWE-79] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.6, FortiOS 7.4 all versions, FortiOS 7.2 all versions, FortiPAM 1.8.0, FortiPAM 1.7 all versions, FortiPAM 1.6 all versions, FortiPAM 1.5 all versions, FortiPAM 1.4 all versions, FortiPAM 1.3 all versions, FortiPAM 1.2 all versions, FortiPAM 1.1 all versions, FortiPAM 1.0 all versions, FortiProxy 7.4.0 through 7.4.3, FortiProxy 7.2.0 through 7.2.9 may allow an authenticated remote user to execute code or commands via crafted requests.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-23573"
    },
    {
      "rank": 507,
      "cve_id": "CVE-2026-54433",
      "cvss_base": 10,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00312,
      "epss_percentile": 0.23989,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Roundcube",
      "product": "Webmail",
      "cwe": "CWE-79",
      "title": "In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, there is Stored Cross-Site Scripting (XSS) via a crafted plain-text email message. The attacker-controlled JavaScript executes within the victim's authenticated session simply by opening or previewing the message (zero-click).",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54433"
    },
    {
      "rank": 508,
      "cve_id": "CVE-2026-8590",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00312,
      "epss_percentile": 0.23945,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Spotfire",
      "product": "Spotfire Enterprise",
      "cwe": null,
      "title": "Spotfire OAuth2 PKCE Bypass for public clients",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-8590"
    },
    {
      "rank": 509,
      "cve_id": "CVE-2026-58609",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00312,
      "epss_percentile": 0.2406,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Graphics Component Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58609"
    },
    {
      "rank": 510,
      "cve_id": "CVE-2026-58610",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00312,
      "epss_percentile": 0.2406,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Microsoft Windows Media Foundation Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58610"
    },
    {
      "rank": 511,
      "cve_id": "CVE-2026-50315",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23829,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-476",
      "title": "Windows Image Acquisition Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50315"
    },
    {
      "rank": 512,
      "cve_id": "CVE-2026-50326",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.2383,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-416",
      "title": "Windows Unified Consent System Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50326"
    },
    {
      "rank": 513,
      "cve_id": "CVE-2026-50336",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.2383,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-122",
      "title": "Windows Media Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50336"
    },
    {
      "rank": 514,
      "cve_id": "CVE-2026-50337",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23829,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-704",
      "title": "Windows Notification Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50337"
    },
    {
      "rank": 515,
      "cve_id": "CVE-2026-50353",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23832,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "DirectX Graphics Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50353"
    },
    {
      "rank": 516,
      "cve_id": "CVE-2026-50357",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23829,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-197",
      "title": "Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50357"
    },
    {
      "rank": 517,
      "cve_id": "CVE-2026-50363",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23832,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Push Notifications Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50363"
    },
    {
      "rank": 518,
      "cve_id": "CVE-2026-50407",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23832,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50407"
    },
    {
      "rank": 519,
      "cve_id": "CVE-2026-50412",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23833,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-121",
      "title": "Windows NTFS Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50412"
    },
    {
      "rank": 520,
      "cve_id": "CVE-2026-50417",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23834,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50417"
    },
    {
      "rank": 521,
      "cve_id": "CVE-2026-50421",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23828,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-843",
      "title": "Windows Connected User Experiences and Telemetry Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50421"
    },
    {
      "rank": 522,
      "cve_id": "CVE-2026-50422",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23828,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows NTFS Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50422"
    },
    {
      "rank": 523,
      "cve_id": "CVE-2026-50478",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23873,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50478"
    },
    {
      "rank": 524,
      "cve_id": "CVE-2026-50479",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.2383,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-822",
      "title": "Windows USB Hub Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50479"
    },
    {
      "rank": 525,
      "cve_id": "CVE-2026-50484",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23873,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-122",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50484"
    },
    {
      "rank": 526,
      "cve_id": "CVE-2026-50493",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23833,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "DirectX Graphics Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50493"
    },
    {
      "rank": 527,
      "cve_id": "CVE-2026-50494",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23833,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50494"
    },
    {
      "rank": 528,
      "cve_id": "CVE-2026-50679",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23834,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-122",
      "title": "Windows Search Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50679"
    },
    {
      "rank": 529,
      "cve_id": "CVE-2026-54115",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23827,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-190",
      "title": "Windows Message Queuing (MSMQ) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54115"
    },
    {
      "rank": 530,
      "cve_id": "CVE-2026-56175",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.2383,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56175"
    },
    {
      "rank": 531,
      "cve_id": "CVE-2026-56643",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23831,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "DirectX Graphics Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56643"
    },
    {
      "rank": 532,
      "cve_id": "CVE-2026-56644",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23831,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "DirectX Graphics Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56644"
    },
    {
      "rank": 533,
      "cve_id": "CVE-2026-56650",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23833,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Network File System Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56650"
    },
    {
      "rank": 534,
      "cve_id": "CVE-2026-57096",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23831,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57096"
    },
    {
      "rank": 535,
      "cve_id": "CVE-2026-57968",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23871,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows Subsystem for Linux (WSL2)",
      "cwe": "CWE-126",
      "title": "Windows Subsystem for Linux (WSL2) Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57968"
    },
    {
      "rank": 536,
      "cve_id": "CVE-2026-58532",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23871,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-190",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58532"
    },
    {
      "rank": 537,
      "cve_id": "CVE-2026-58537",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23831,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Microsoft NAT Helper Components (ipnathlp.dll) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58537"
    },
    {
      "rank": 538,
      "cve_id": "CVE-2026-58538",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23828,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-122",
      "title": "Windows Bluetooth Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58538"
    },
    {
      "rank": 539,
      "cve_id": "CVE-2026-11802",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00311,
      "epss_percentile": 0.23862,
      "kev": false,
      "kev_due_at": null,
      "vendor": "themelooks",
      "product": "FoodBook Lite – Online Food Ordering System",
      "cwe": "CWE-862",
      "title": "FoodBook Lite <= 1.5.6 - Missing Authorization to Unauthenticated User Registration via 'registration_action' AJAX Action",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11802"
    },
    {
      "rank": 540,
      "cve_id": "CVE-2026-54572",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00309,
      "epss_percentile": 0.23662,
      "kev": false,
      "kev_due_at": null,
      "vendor": "rclone",
      "product": "rclone",
      "cwe": "CWE-59",
      "title": "rclone: Unvalidated symlink target in local `--links` — arbitrary file write from an untrusted remote",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54572"
    },
    {
      "rank": 541,
      "cve_id": "CVE-2026-47477",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00307,
      "epss_percentile": 0.2345,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "Triton Inference Server",
      "cwe": "CWE-121",
      "title": "NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause a stack-based buffer overflow. A successful exploit of this vulnerability might lead to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47477"
    },
    {
      "rank": 542,
      "cve_id": "CVE-2026-54988",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00307,
      "epss_percentile": 0.234,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Excel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54988"
    },
    {
      "rank": 543,
      "cve_id": "CVE-2026-56451",
      "cvss_base": 10,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00305,
      "epss_percentile": 0.23222,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Siemens",
      "product": "Opcenter X",
      "cwe": "CWE-347",
      "title": "A vulnerability has been identified in Opcenter X (All versions < V2604). Affected applications do not properly validate the algorithm specified in the JSON Web Token (JWT) header. This could allow an unauthenticated remote attacker to forge arbitrary JWT, bypass authentication mechanisms and impersonate any user including administrative accounts, potentially gaining full unauthorized access to the application.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56451"
    },
    {
      "rank": 544,
      "cve_id": "CVE-2026-58229",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00305,
      "epss_percentile": 0.23209,
      "kev": false,
      "kev_due_at": null,
      "vendor": "elixir-mint",
      "product": "mint",
      "cwe": "CWE-770",
      "title": "Unbounded HTTP/1 response-header and chunked-trailer accumulation in Mint causes memory-exhaustion DoS",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58229"
    },
    {
      "rank": 545,
      "cve_id": "CVE-2026-49168",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00305,
      "epss_percentile": 0.23156,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-190",
      "title": "Storage Spaces Direct Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49168"
    },
    {
      "rank": 546,
      "cve_id": "CVE-2026-50668",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00305,
      "epss_percentile": 0.23157,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50668"
    },
    {
      "rank": 547,
      "cve_id": "CVE-2026-54132",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00305,
      "epss_percentile": 0.23196,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54132"
    },
    {
      "rank": 548,
      "cve_id": "CVE-2026-59246",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00305,
      "epss_percentile": 0.23208,
      "kev": false,
      "kev_due_at": null,
      "vendor": "elixir-mint",
      "product": "mint",
      "cwe": "CWE-770",
      "title": "Zero-length HTTP/2 CONTINUATION frames bypass Mint's header-block byte-size cap and exhaust client memory",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59246"
    },
    {
      "rank": 549,
      "cve_id": "CVE-2026-50428",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00304,
      "epss_percentile": 0.231,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 version 26H1",
      "cwe": "CWE-125",
      "title": "Windows Container Isolation FS Filter Driver (unionfs.sys) Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50428"
    },
    {
      "rank": 550,
      "cve_id": "CVE-2026-10577",
      "cvss_base": 10,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00303,
      "epss_percentile": 0.23047,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Auotmation",
      "product": "1715 EtherNet/IP Communications Module",
      "cwe": "CWE-306",
      "title": "Rockwell Automation 1715 Redundant IO – Access Control Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-10577"
    },
    {
      "rank": 551,
      "cve_id": "CVE-2025-11698",
      "cvss_base": 9.2,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00303,
      "epss_percentile": 0.23023,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "CompactLogix® 5380 Recovery Image      Compact GuardLogix® 5380 Recovery Image      CompactLogix® 5480 Recovery Image      ControlLogix® 5580 Recovery Image      GuardLogix® 5580 Recovery Image",
      "cwe": "CWE-120",
      "title": "CompactLogix ®, ControlLogix ®, Compact GuardLogix ® and GuardLogix ® Buffer Overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-11698"
    },
    {
      "rank": 552,
      "cve_id": "CVE-2025-12011",
      "cvss_base": 9.2,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00303,
      "epss_percentile": 0.23023,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "CompactLogix® 5370      Compact GuardLogix® 5370      ControlLogix® 5570      GuardLogix® 5570",
      "cwe": "CWE-120",
      "title": "CompactLogix ®, ControlLogix ®, Compact GuardLogix ® and GuardLogix ® Buffer Overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-12011"
    },
    {
      "rank": 553,
      "cve_id": "CVE-2025-12012",
      "cvss_base": 9.2,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00303,
      "epss_percentile": 0.23023,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "CompactLogix® 5370      Compact GuardLogix® 5370      ControlLogix® 5570      GuardLogix® 5570",
      "cwe": "CWE-120",
      "title": "CompactLogix ®, ControlLogix ®, Compact GuardLogix ® and GuardLogix ® Buffer Overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-12012"
    },
    {
      "rank": 554,
      "cve_id": "CVE-2026-50301",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22991,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50301"
    },
    {
      "rank": 555,
      "cve_id": "CVE-2026-50471",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22985,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50471"
    },
    {
      "rank": 556,
      "cve_id": "CVE-2026-54131",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22988,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-416",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54131"
    },
    {
      "rank": 557,
      "cve_id": "CVE-2026-55017",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22989,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Office Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55017"
    },
    {
      "rank": 558,
      "cve_id": "CVE-2026-55025",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22989,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-843",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55025"
    },
    {
      "rank": 559,
      "cve_id": "CVE-2026-55029",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22988,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55029"
    },
    {
      "rank": 560,
      "cve_id": "CVE-2026-55036",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22986,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-126",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55036"
    },
    {
      "rank": 561,
      "cve_id": "CVE-2026-55037",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22991,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55037"
    },
    {
      "rank": 562,
      "cve_id": "CVE-2026-55039",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22985,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-191",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55039"
    },
    {
      "rank": 563,
      "cve_id": "CVE-2026-55041",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22995,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55041"
    },
    {
      "rank": 564,
      "cve_id": "CVE-2026-55044",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22993,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55044"
    },
    {
      "rank": 565,
      "cve_id": "CVE-2026-55048",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22992,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-190",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55048"
    },
    {
      "rank": 566,
      "cve_id": "CVE-2026-55053",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22993,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55053"
    },
    {
      "rank": 567,
      "cve_id": "CVE-2026-55058",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22987,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55058"
    },
    {
      "rank": 568,
      "cve_id": "CVE-2026-55131",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22989,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55131"
    },
    {
      "rank": 569,
      "cve_id": "CVE-2026-55133",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22988,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft OneNote Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55133"
    },
    {
      "rank": 570,
      "cve_id": "CVE-2026-55136",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22987,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-822",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55136"
    },
    {
      "rank": 571,
      "cve_id": "CVE-2026-55137",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22991,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55137"
    },
    {
      "rank": 572,
      "cve_id": "CVE-2026-55141",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22986,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-121",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55141"
    },
    {
      "rank": 573,
      "cve_id": "CVE-2026-55899",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22989,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-121",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55899"
    },
    {
      "rank": 574,
      "cve_id": "CVE-2026-55947",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22994,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55947"
    },
    {
      "rank": 575,
      "cve_id": "CVE-2026-55948",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22986,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-416",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55948"
    },
    {
      "rank": 576,
      "cve_id": "CVE-2026-55949",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22987,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-908",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55949"
    },
    {
      "rank": 577,
      "cve_id": "CVE-2026-49459",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00303,
      "epss_percentile": 0.23059,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cure53",
      "product": "DOMPurify",
      "cwe": "CWE-79",
      "title": "DOMPurify: IN_PLACE mode preserves attributes of a clobbered root element, allowing XSS via attacker-controlled root DOM",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49459"
    },
    {
      "rank": 578,
      "cve_id": "CVE-2026-10051",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00302,
      "epss_percentile": 0.22891,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Eclipse Foundation",
      "product": "Eclipse Jetty",
      "cwe": "CWE-200",
      "title": "In Eclipse Jetty, a first HTTP/1.1 request with trailers causes the server to retain the trailers in subsequent requests performed over the same connection. Subsequent request that do not have trailers report the trailers of the first request. Subsequent request that do have trailers report the union of trailers of the first request and the current request.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-10051"
    },
    {
      "rank": 579,
      "cve_id": "CVE-2026-46629",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00302,
      "epss_percentile": 0.22865,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-770",
      "title": "Twig: Unbounded formatter memoisation in twig/intl-extra keyed on template-controlled arguments",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-46629"
    },
    {
      "rank": 580,
      "cve_id": "CVE-2026-48038",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00302,
      "epss_percentile": 0.22815,
      "kev": false,
      "kev_due_at": null,
      "vendor": "hapijs",
      "product": "joi",
      "cwe": "CWE-248",
      "title": "joi: Uncaught RangeError on deeply nested input through recursive `link()` schemas",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48038"
    },
    {
      "rank": 581,
      "cve_id": "CVE-2026-54128",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00301,
      "epss_percentile": 0.22722,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows DHCP Client Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54128"
    },
    {
      "rank": 582,
      "cve_id": "CVE-2026-47478",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00301,
      "epss_percentile": 0.2273,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "Triton Inference Server",
      "cwe": "CWE-910",
      "title": "NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause the use of an expired file descriptor. A successful exploit of this vulnerability might lead to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47478"
    },
    {
      "rank": 583,
      "cve_id": "CVE-2026-55898",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00301,
      "epss_percentile": 0.22796,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-125",
      "title": "Microsoft Excel Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55898"
    },
    {
      "rank": 584,
      "cve_id": "CVE-2026-40422",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00298,
      "epss_percentile": 0.22507,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Windows File Explorer Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-40422"
    },
    {
      "rank": 585,
      "cve_id": "CVE-2026-49801",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00298,
      "epss_percentile": 0.22507,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Windows SMB Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49801"
    },
    {
      "rank": 586,
      "cve_id": "CVE-2026-50300",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00298,
      "epss_percentile": 0.22506,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-191",
      "title": "Windows DWM Core Library Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50300"
    },
    {
      "rank": 587,
      "cve_id": "CVE-2026-50341",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00298,
      "epss_percentile": 0.22506,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-126",
      "title": "Windows NTFS Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50341"
    },
    {
      "rank": 588,
      "cve_id": "CVE-2026-50383",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00298,
      "epss_percentile": 0.22505,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-126",
      "title": "Windows Print Spooler Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50383"
    },
    {
      "rank": 589,
      "cve_id": "CVE-2026-50401",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00298,
      "epss_percentile": 0.22505,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-125",
      "title": "Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50401"
    },
    {
      "rank": 590,
      "cve_id": "CVE-2026-50437",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00298,
      "epss_percentile": 0.22507,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows DWM Core Library Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50437"
    },
    {
      "rank": 591,
      "cve_id": "CVE-2026-50455",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00298,
      "epss_percentile": 0.22508,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50455"
    },
    {
      "rank": 592,
      "cve_id": "CVE-2026-54997",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00298,
      "epss_percentile": 0.22506,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Windows SMB Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54997"
    },
    {
      "rank": 593,
      "cve_id": "CVE-2026-50310",
      "cvss_base": 4.7,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00298,
      "epss_percentile": 0.22418,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-190",
      "title": "Windows Human Interface Device Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50310"
    },
    {
      "rank": 594,
      "cve_id": "CVE-2026-45066",
      "cvss_base": 2.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00298,
      "epss_percentile": 0.22413,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-184",
      "title": "Symfony: HtmlSanitizer allowLinkHosts() / allowMediaHosts() Bypass via URL-Parser Differentials and <area> Misclassification",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45066"
    },
    {
      "rank": 595,
      "cve_id": "CVE-2026-47971",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00297,
      "epss_percentile": 0.22378,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Media Encoder",
      "cwe": "CWE-121",
      "title": "Media Encoder | Stack-based Buffer Overflow (CWE-121)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47971"
    },
    {
      "rank": 596,
      "cve_id": "CVE-2026-48269",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00297,
      "epss_percentile": 0.22378,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Premiere",
      "cwe": "CWE-122",
      "title": "Premiere Pro | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48269"
    },
    {
      "rank": 597,
      "cve_id": "CVE-2026-15752",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00297,
      "epss_percentile": 0.22331,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zhinianboke",
      "product": "xianyu-auto-reply",
      "cwe": "CWE-862",
      "title": "zhinianboke xianyu-auto-reply Backend User Endpoint users authorization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15752"
    },
    {
      "rank": 598,
      "cve_id": "CVE-2026-46635",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00297,
      "epss_percentile": 0.22293,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-863",
      "title": "Twig: Sandbox property allowlist bypass via the `column` filter (array_column on objects)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-46635"
    },
    {
      "rank": 599,
      "cve_id": "CVE-2026-50390",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00296,
      "epss_percentile": 0.22273,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-843",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50390"
    },
    {
      "rank": 600,
      "cve_id": "CVE-2026-48329",
      "cvss_base": 2.7,
      "cvss_severity": "LOW",
      "epss_score": 0.00296,
      "epss_percentile": 0.22262,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-613",
      "title": "ColdFusion | Insufficient Session Expiration (CWE-613)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48329"
    },
    {
      "rank": 601,
      "cve_id": "CVE-2026-12511",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00295,
      "epss_percentile": 0.22104,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "AI Engine",
      "cwe": null,
      "title": "AI Engine < 3.5.5 - Editor+ Arbitrary File Write via Path Traversal",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12511"
    },
    {
      "rank": 602,
      "cve_id": "CVE-2026-15769",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00294,
      "epss_percentile": 0.21992,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Insufficient validation of untrusted input in Linux Toolkit Theming in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15769"
    },
    {
      "rank": 603,
      "cve_id": "CVE-2026-15626",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00294,
      "epss_percentile": 0.2204,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nextlevelbuilder",
      "product": "GoClaw",
      "cwe": "CWE-22",
      "title": "nextlevelbuilder GoClaw ACP ToolBridge Workspace tool_bridge.go writeFile path traversal",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15626"
    },
    {
      "rank": 604,
      "cve_id": "CVE-2026-36035",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00293,
      "epss_percentile": 0.21928,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-284",
      "title": "Incorrect access control in the /api/License/deactivateOffline endpoint of CAXPerts UniversalPlantViewer WebServices Server v2.7.6 allows authenticated attackers with low-level privileges to cause a Denial of Service (DoS) via removing the license from the webserver.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-36035"
    },
    {
      "rank": 605,
      "cve_id": "CVE-2026-45064",
      "cvss_base": 2.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00293,
      "epss_percentile": 0.21925,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-451",
      "title": "Symfony: HtmlSanitizer URL Attributes Pass Through BiDi Override Characters → Visual href Spoofing",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45064"
    },
    {
      "rank": 606,
      "cve_id": "CVE-2026-45753",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00293,
      "epss_percentile": 0.21926,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-79",
      "title": "Symfony: HtmlSanitizer UrlAttributeSanitizer Omits action/formaction/poster/cite — javascript: URI Survives Sanitization (XSS)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45753"
    },
    {
      "rank": 607,
      "cve_id": "CVE-2026-12523",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00292,
      "epss_percentile": 0.21796,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Cloudflare",
      "product": "quiche",
      "cwe": "CWE-400",
      "title": "Resource exhaustion in quiche HTTP/3 and QPACK layers",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12523"
    },
    {
      "rank": 608,
      "cve_id": "CVE-2026-45070",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00292,
      "epss_percentile": 0.21843,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-93",
      "title": "Symfony: Email Header Injection via Non-Token Characters in Mime Parameter Names",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45070"
    },
    {
      "rank": 609,
      "cve_id": "CVE-2026-54999",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00291,
      "epss_percentile": 0.21727,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Windows TCP/IP Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54999"
    },
    {
      "rank": 610,
      "cve_id": "CVE-2026-50650",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0029,
      "epss_percentile": 0.2155,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 8.0",
      "cwe": "CWE-94",
      "title": ".NET Framework Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50650"
    },
    {
      "rank": 611,
      "cve_id": "CVE-2026-58541",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00289,
      "epss_percentile": 0.21514,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-843",
      "title": "Microsoft DWM Core Library Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58541"
    },
    {
      "rank": 612,
      "cve_id": "CVE-2026-58631",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00289,
      "epss_percentile": 0.21484,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows Admin Center",
      "cwe": "CWE-285",
      "title": "Windows Admin Center (WAC) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58631"
    },
    {
      "rank": 613,
      "cve_id": "CVE-2026-58632",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00289,
      "epss_percentile": 0.21514,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58632"
    },
    {
      "rank": 614,
      "cve_id": "CVE-2026-58634",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00289,
      "epss_percentile": 0.21514,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 version 26H1",
      "cwe": "CWE-416",
      "title": "Desktop Window Manager Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58634"
    },
    {
      "rank": 615,
      "cve_id": "CVE-2025-62826",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00289,
      "epss_percentile": 0.21483,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fortinet",
      "product": "FortiPAM",
      "cwe": "CWE-113",
      "title": "An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CWE-113] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4, FortiOS 7.4 all versions, FortiOS 7.2 all versions, FortiProxy 7.6.0 through 7.6.4, FortiProxy 7.4 all versions, FortiProxy 7.2 all versions may allow an attacker able to intercept and modify a user's captive portal authentication request to inject arbitrary headers via crafted HTTP requests.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-62826"
    },
    {
      "rank": 616,
      "cve_id": "CVE-2026-15677",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00288,
      "epss_percentile": 0.21387,
      "kev": false,
      "kev_due_at": null,
      "vendor": "code-projects",
      "product": "Online Job Portal",
      "cwe": "CWE-284",
      "title": "code-projects Online Job Portal JobSeekerInsert.php unrestricted upload",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15677"
    },
    {
      "rank": 617,
      "cve_id": "CVE-2026-62393",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00288,
      "epss_percentile": 0.2132,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Kylin",
      "cwe": "CWE-280",
      "title": "Apache Kylin: Improper authorization in job information retrieval",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62393"
    },
    {
      "rank": 618,
      "cve_id": "CVE-2026-15629",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00288,
      "epss_percentile": 0.21404,
      "kev": false,
      "kev_due_at": null,
      "vendor": "louisho5",
      "product": "picobot",
      "cwe": "CWE-59",
      "title": "louisho5 picobot Workspace filesystem.go GetSkill link following",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15629"
    },
    {
      "rank": 619,
      "cve_id": "CVE-2026-12707",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00286,
      "epss_percentile": 0.21148,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Cloudflare",
      "product": "quiche",
      "cwe": "CWE-770",
      "title": "Unbounded path event queue growth in quiche via peer-driven source connection ID rotation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12707"
    },
    {
      "rank": 620,
      "cve_id": "CVE-2026-50381",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00285,
      "epss_percentile": 0.21099,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-843",
      "title": "Composite Image File System driver (cimfs.sys) Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50381"
    },
    {
      "rank": 621,
      "cve_id": "CVE-2026-50697",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00284,
      "epss_percentile": 0.20953,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-200",
      "title": "Windows Common Log File System Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50697"
    },
    {
      "rank": 622,
      "cve_id": "CVE-2026-54122",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00283,
      "epss_percentile": 0.20918,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows GDI+ Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54122"
    },
    {
      "rank": 623,
      "cve_id": "CVE-2026-58618",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00282,
      "epss_percentile": 0.20784,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft 365 Apps for Enterprise",
      "cwe": "CWE-122",
      "title": "Microsoft Excel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58618"
    },
    {
      "rank": 624,
      "cve_id": "CVE-2026-15416",
      "cvss_base": 8.9,
      "cvss_severity": "HIGH",
      "epss_score": 0.00281,
      "epss_percentile": 0.2062,
      "kev": false,
      "kev_due_at": null,
      "vendor": "argoproj",
      "product": "argo-helm",
      "cwe": "CWE-306",
      "title": "Argo-cd: argo cd unauthenticated remote code execution in repo-server via generatemanifest grpc endpoint",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15416"
    },
    {
      "rank": 625,
      "cve_id": "CVE-2026-50495",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00281,
      "epss_percentile": 0.20712,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-284",
      "title": "DNS Client Tampering Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50495"
    },
    {
      "rank": 626,
      "cve_id": "CVE-2026-15625",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.0028,
      "epss_percentile": 0.20516,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nextlevelbuilder",
      "product": "GoClaw",
      "cwe": "CWE-183",
      "title": "nextlevelbuilder GoClaw exec_approval.go ExecApprovalManager.CheckCommand incomplete blacklist",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15625"
    },
    {
      "rank": 627,
      "cve_id": "CVE-2026-15768",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00279,
      "epss_percentile": 0.20408,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-346",
      "title": "Insufficient policy enforcement in HTML-in-Canvas in Google Chrome prior to 150.0.7871.125 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15768"
    },
    {
      "rank": 628,
      "cve_id": "CVE-2026-15775",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00279,
      "epss_percentile": 0.20408,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-346",
      "title": "Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.125 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15775"
    },
    {
      "rank": 629,
      "cve_id": "CVE-2026-49791",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.20343,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-59",
      "title": "Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49791"
    },
    {
      "rank": 630,
      "cve_id": "CVE-2026-50335",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.20301,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-284",
      "title": "Windows Operating Systems Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50335"
    },
    {
      "rank": 631,
      "cve_id": "CVE-2026-50344",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.203,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-285",
      "title": "Windows OLE Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50344"
    },
    {
      "rank": 632,
      "cve_id": "CVE-2026-50346",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.20299,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-285",
      "title": "Netlogon RPC Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50346"
    },
    {
      "rank": 633,
      "cve_id": "CVE-2026-50373",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.203,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-284",
      "title": "Windows Search Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50373"
    },
    {
      "rank": 634,
      "cve_id": "CVE-2026-50391",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.20301,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-269",
      "title": "Windows Group Policy Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50391"
    },
    {
      "rank": 635,
      "cve_id": "CVE-2026-57088",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.20301,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-284",
      "title": "Extensible Storage Engine (ESENT) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57088"
    },
    {
      "rank": 636,
      "cve_id": "CVE-2026-58540",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.203,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-285",
      "title": "Windows Installer Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58540"
    },
    {
      "rank": 637,
      "cve_id": "CVE-2026-47479",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.20389,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "Triton Inference Server",
      "cwe": "CWE-400",
      "title": "NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause uncontrolled resource consumption. A successful exploit of this vulnerability might lead to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47479"
    },
    {
      "rank": 638,
      "cve_id": "CVE-2026-47480",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.20389,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "Triton Inference Server",
      "cwe": "CWE-248",
      "title": "NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause an uncaught exception. A successful exploit of this vulnerability might lead to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47480"
    },
    {
      "rank": 639,
      "cve_id": "CVE-2026-47482",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.20398,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "Triton Inference Server",
      "cwe": "CWE-401",
      "title": "NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause missing release of memory after effective lifetime. A successful exploit of this vulnerability might lead to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47482"
    },
    {
      "rank": 640,
      "cve_id": "CVE-2026-58614",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00278,
      "epss_percentile": 0.2033,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Kernel Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58614"
    },
    {
      "rank": 641,
      "cve_id": "CVE-2026-50438",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00277,
      "epss_percentile": 0.20219,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft PC Manager",
      "cwe": "CWE-59",
      "title": "Microsoft PC Manager Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50438"
    },
    {
      "rank": 642,
      "cve_id": "CVE-2026-49789",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00277,
      "epss_percentile": 0.2022,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-121",
      "title": "Windows NTFS Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49789"
    },
    {
      "rank": 643,
      "cve_id": "CVE-2026-62642",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00277,
      "epss_percentile": 0.20195,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Roundcube",
      "product": "Webmail",
      "cwe": "CWE-835",
      "title": "In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, an infinite loop was discovered in the TNEF decoder, which may lead to denial of service upon opening an email with a TNEF attachment.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62642"
    },
    {
      "rank": 644,
      "cve_id": "CVE-2026-15389",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00275,
      "epss_percentile": 0.19998,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sesame Time",
      "product": "Sesame Time",
      "cwe": "CWE-639",
      "title": "Inadequate access control in Sesame Time session management",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15389"
    },
    {
      "rank": 645,
      "cve_id": "CVE-2026-15772",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00275,
      "epss_percentile": 0.19999,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in GPU in Google Chrome on Android prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15772"
    },
    {
      "rank": 646,
      "cve_id": "CVE-2026-15774",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00275,
      "epss_percentile": 0.19999,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Skia in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15774"
    },
    {
      "rank": 647,
      "cve_id": "CVE-2026-5269",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00274,
      "epss_percentile": 0.19847,
      "kev": false,
      "kev_due_at": null,
      "vendor": "CIENA",
      "product": "Navigator NCS",
      "cwe": "CWE-1393",
      "title": "Navigator NCS and MCP System Accounts with Default Passwords",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-5269"
    },
    {
      "rank": 648,
      "cve_id": "CVE-2026-57085",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00273,
      "epss_percentile": 0.19803,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Print Spooler Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57085"
    },
    {
      "rank": 649,
      "cve_id": "CVE-2026-50469",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00271,
      "epss_percentile": 0.19415,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-59",
      "title": "Windows Projected File System Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50469"
    },
    {
      "rank": 650,
      "cve_id": "CVE-2026-47423",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.0027,
      "epss_percentile": 0.19253,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cure53",
      "product": "DOMPurify",
      "cwe": "CWE-79",
      "title": "DOMPurify XSS via `selectedcontent` re-clone",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47423"
    },
    {
      "rank": 651,
      "cve_id": "CVE-2026-48805",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0027,
      "epss_percentile": 0.19311,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-693",
      "title": "Twig: Sandbox state regression in deprecated internal wrappers in `src/Resources/core.php`",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48805"
    },
    {
      "rank": 652,
      "cve_id": "CVE-2026-50382",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00269,
      "epss_percentile": 0.19192,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-822",
      "title": "DirectX Graphics Kernel Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50382"
    },
    {
      "rank": 653,
      "cve_id": "CVE-2026-42982",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00269,
      "epss_percentile": 0.1922,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-1288",
      "title": "Windows Secure Kernel Mode Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42982"
    },
    {
      "rank": 654,
      "cve_id": "CVE-2026-15690",
      "cvss_base": 1.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00269,
      "epss_percentile": 0.19133,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "open62541",
      "cwe": "CWE-404",
      "title": "open62541 Shared Client ua_client_connect.c responseReadNamespacesArray null pointer dereference",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15690"
    },
    {
      "rank": 655,
      "cve_id": "CVE-2026-48761",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00268,
      "epss_percentile": 0.19013,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-79",
      "title": "Symfony: HtmlSanitizer UrlAttributeSanitizer Misses URL Attributes on <object>, <applet>, <iframe>, <img> and the URL Inside <meta http-equiv=\"refresh\"> content",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48761"
    },
    {
      "rank": 656,
      "cve_id": "CVE-2026-15736",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00267,
      "epss_percentile": 0.19,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Snowflake",
      "product": "Snowflake SQLAlchemy",
      "cwe": "CWE-73",
      "title": "Multiple SQL/DDL Injection and Arbitrary File Read Vulnerabilities in snowflake-sqlalchemy",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15736"
    },
    {
      "rank": 657,
      "cve_id": "CVE-2026-58636",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00267,
      "epss_percentile": 0.18906,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft PC Manager",
      "cwe": "CWE-59",
      "title": "Microsoft PC Manager Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58636"
    },
    {
      "rank": 658,
      "cve_id": "CVE-2026-48784",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00267,
      "epss_percentile": 0.18936,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-172",
      "title": "Symfony: UrlGenerator Dot-Segment Encoding Skips Every Other Chained `../` or `./` → Generated URL Collapses Off-Route Under RFC 3986 Normalization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48784"
    },
    {
      "rank": 659,
      "cve_id": "CVE-2025-62675",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00267,
      "epss_percentile": 0.18972,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fortinet",
      "product": "FortiOS",
      "cwe": "CWE-113",
      "title": "An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CWE-113] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4, FortiOS 7.4 all versions, FortiOS 7.2 all versions, FortiProxy 7.6.0 through 7.6.4, FortiProxy 7.4 all versions, FortiProxy 7.2 all versions may allow an attacker in possession of a valid web filter override token to inject arbitrary headers via tricking a user into clicking on a crafted link.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-62675"
    },
    {
      "rank": 660,
      "cve_id": "CVE-2026-49184",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00265,
      "epss_percentile": 0.18545,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49184"
    },
    {
      "rank": 661,
      "cve_id": "CVE-2026-46638",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00265,
      "epss_percentile": 0.18498,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-693",
      "title": "Twig: `{% sandbox %}{% include %}` skips checkSecurity() on cached templates (incomplete fix for CVE-2024-45411)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-46638"
    },
    {
      "rank": 662,
      "cve_id": "CVE-2026-14646",
      "cvss_base": 4.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00265,
      "epss_percentile": 0.18559,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sonatype",
      "product": "Nexus Repository 3",
      "cwe": "CWE-918",
      "title": "Nexus Repository 3 - Server-Side Request Forgery (SSRF) via HTTP Redirect",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14646"
    },
    {
      "rank": 663,
      "cve_id": "CVE-2026-14504",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00264,
      "epss_percentile": 0.18447,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sonatype",
      "product": "Nexus Repository 3",
      "cwe": "CWE-862",
      "title": "Nexus Repository 3 - Authorization Bypass in Component Upload API",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14504"
    },
    {
      "rank": 664,
      "cve_id": "CVE-2026-44752",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00264,
      "epss_percentile": 0.1838,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP NetWeaver Application Server Java(Configuration Wizard)",
      "cwe": "CWE-79",
      "title": "Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server Java(Configuration Wizard)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44752"
    },
    {
      "rank": 665,
      "cve_id": "CVE-2026-24233",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00263,
      "epss_percentile": 0.18266,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT-LLM",
      "cwe": "CWE-502",
      "title": "NVIDIA TensorRT-LLM for Linux contains a vulnerability in the restricted unpickler used for model weight deserialization, where a local, unauthenticated attacker could cause deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24233"
    },
    {
      "rank": 666,
      "cve_id": "CVE-2026-15675",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00263,
      "epss_percentile": 0.18293,
      "kev": false,
      "kev_due_at": null,
      "vendor": "code-projects",
      "product": "Online Job Portal",
      "cwe": "CWE-74",
      "title": "code-projects Online Job Portal EditUser.php sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15675"
    },
    {
      "rank": 667,
      "cve_id": "CVE-2026-15676",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00263,
      "epss_percentile": 0.183,
      "kev": false,
      "kev_due_at": null,
      "vendor": "code-projects",
      "product": "Online Job Portal",
      "cwe": "CWE-74",
      "title": "code-projects Online Job Portal DeleteUser.php sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15676"
    },
    {
      "rank": 668,
      "cve_id": "CVE-2026-15698",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00262,
      "epss_percentile": 0.18124,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kofrasa",
      "product": "mingo",
      "cwe": "CWE-94",
      "title": "kofrasa mingo Update API updateMany prototype pollution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15698"
    },
    {
      "rank": 669,
      "cve_id": "CVE-2026-50498",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00261,
      "epss_percentile": 0.18017,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50498"
    },
    {
      "rank": 670,
      "cve_id": "CVE-2026-58478",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00261,
      "epss_percentile": 0.18007,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dan-in-CA",
      "product": "SIP",
      "cwe": "CWE-918",
      "title": "Sustainable Irrigation Platform 5.2.16 SSRF via Node-RED Callback URL",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58478"
    },
    {
      "rank": 671,
      "cve_id": "CVE-2026-45065",
      "cvss_base": 2.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00261,
      "epss_percentile": 0.1799,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-185",
      "title": "Symfony: UrlGenerator Route-Requirement Bypass via Unanchored Regex Alternation → Off-Site //host URL Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45065"
    },
    {
      "rank": 672,
      "cve_id": "CVE-2026-15753",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00261,
      "epss_percentile": 0.18089,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zhinianboke",
      "product": "xianyu-auto-reply",
      "cwe": "CWE-650",
      "title": "zhinianboke xianyu-auto-reply review approve trusting http permission methods on the server side",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15753"
    },
    {
      "rank": 673,
      "cve_id": "CVE-2026-50358",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0026,
      "epss_percentile": 0.17878,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Media Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50358"
    },
    {
      "rank": 674,
      "cve_id": "CVE-2026-50359",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0026,
      "epss_percentile": 0.17877,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Microsoft XML Core Services Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50359"
    },
    {
      "rank": 675,
      "cve_id": "CVE-2026-50406",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0026,
      "epss_percentile": 0.17878,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-416",
      "title": "Windows Backup Engine Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50406"
    },
    {
      "rank": 676,
      "cve_id": "CVE-2026-50490",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0026,
      "epss_percentile": 0.17877,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Installer Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50490"
    },
    {
      "rank": 677,
      "cve_id": "CVE-2026-50491",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0026,
      "epss_percentile": 0.17878,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Code Integrity DLL (ci.dll) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50491"
    },
    {
      "rank": 678,
      "cve_id": "CVE-2026-50674",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0026,
      "epss_percentile": 0.17877,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows USB Print Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50674"
    },
    {
      "rank": 679,
      "cve_id": "CVE-2026-56187",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0026,
      "epss_percentile": 0.17878,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows MIDI Service Module Elevation of Privileges Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56187"
    },
    {
      "rank": 680,
      "cve_id": "CVE-2026-57093",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0026,
      "epss_percentile": 0.17877,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57093"
    },
    {
      "rank": 681,
      "cve_id": "CVE-2026-62644",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00259,
      "epss_percentile": 0.17782,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Roundcube",
      "product": "Webmail",
      "cwe": "CWE-290",
      "title": "In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, the password plugin of the Roundcube Webmail was subject to username spoofing via session data, which could lead to account takeover.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62644"
    },
    {
      "rank": 682,
      "cve_id": "CVE-2026-50452",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00259,
      "epss_percentile": 0.17736,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-362",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50452"
    },
    {
      "rank": 683,
      "cve_id": "CVE-2026-48760",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00259,
      "epss_percentile": 0.17766,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-451",
      "title": "Symfony: HtmlSanitizer URL Parser Deny Gates Underinclusive: Percent-Encoded BiDi Marks and Unicode Whitespace Bypass Visual-Spoofing Defense",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48760"
    },
    {
      "rank": 684,
      "cve_id": "CVE-2026-49790",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00258,
      "epss_percentile": 0.17708,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-191",
      "title": "Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49790"
    },
    {
      "rank": 685,
      "cve_id": "CVE-2026-50482",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00258,
      "epss_percentile": 0.17707,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50482"
    },
    {
      "rank": 686,
      "cve_id": "CVE-2026-48338",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00258,
      "epss_percentile": 0.17701,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "ColdFusion 2025",
      "cwe": "CWE-22",
      "title": "ColdFusion | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48338"
    },
    {
      "rank": 687,
      "cve_id": "CVE-2026-47481",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00258,
      "epss_percentile": 0.17663,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "Triton Inference Server",
      "cwe": "CWE-288",
      "title": "NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause an authentication bypass through an alternative path or channel. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47481"
    },
    {
      "rank": 688,
      "cve_id": "CVE-2026-49783",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00257,
      "epss_percentile": 0.17575,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-358",
      "title": "Secure Boot Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49783"
    },
    {
      "rank": 689,
      "cve_id": "CVE-2026-49792",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00257,
      "epss_percentile": 0.17575,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-197",
      "title": "Windows Resilient File System (ReFS) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49792"
    },
    {
      "rank": 690,
      "cve_id": "CVE-2026-49793",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00257,
      "epss_percentile": 0.17575,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Resilient File System (ReFS) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49793"
    },
    {
      "rank": 691,
      "cve_id": "CVE-2026-50293",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00257,
      "epss_percentile": 0.17574,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-416",
      "title": "Windows Internal Task Bar Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50293"
    },
    {
      "rank": 692,
      "cve_id": "CVE-2026-50318",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00257,
      "epss_percentile": 0.17574,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-121",
      "title": "Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50318"
    },
    {
      "rank": 693,
      "cve_id": "CVE-2026-15699",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00256,
      "epss_percentile": 0.17392,
      "kev": false,
      "kev_due_at": null,
      "vendor": "spencermountain",
      "product": "compromise",
      "cwe": "CWE-94",
      "title": "spencermountain compromise Public Root API extend.js nlp.extend prototype pollution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15699"
    },
    {
      "rank": 694,
      "cve_id": "CVE-2026-15747",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00255,
      "epss_percentile": 0.17281,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SRI",
      "product": "Mojolicious",
      "cwe": "CWE-204",
      "title": "Mojolicious versions from 4.59 before 9.48 for Perl expose a stable representation of the session CSRF token to a BREACH compression oracle",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15747"
    },
    {
      "rank": 695,
      "cve_id": "CVE-2026-9341",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00255,
      "epss_percentile": 0.17313,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kodezen",
      "product": "Academy LMS",
      "cwe": "CWE-639",
      "title": "Academy LMS <= 3.8.0 - Authenticated (Subscriber+) Insecure Direct Object Reference via 'user_id' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9341"
    },
    {
      "rank": 696,
      "cve_id": "CVE-2026-50520",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00254,
      "epss_percentile": 0.17107,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Visual Studio Code",
      "cwe": "CWE-77",
      "title": "Visual Studio Code Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50520"
    },
    {
      "rank": 697,
      "cve_id": "CVE-2026-9140",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00253,
      "epss_percentile": 0.17022,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "1718-AENTR/1719-AENTR",
      "cwe": "CWE-770",
      "title": "1718-AENTR/1719-AENTR - Denial of Service",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9140"
    },
    {
      "rank": 698,
      "cve_id": "CVE-2026-10573",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00253,
      "epss_percentile": 0.17022,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "1734 POINT I/O",
      "cwe": "CWE-770",
      "title": "1734 POINT I/OTM - Denial of Service via Malformed Inputs on CIP Object",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-10573"
    },
    {
      "rank": 699,
      "cve_id": "CVE-2026-50130",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00252,
      "epss_percentile": 0.16937,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pi-hole",
      "product": "pi-hole",
      "cwe": "CWE-282",
      "title": "Pi-hole: Local privilege escalation from `pihole` user to root via `/etc/pihole/logrotate`",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50130"
    },
    {
      "rank": 700,
      "cve_id": "CVE-2026-49167",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00252,
      "epss_percentile": 0.16934,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49167"
    },
    {
      "rank": 701,
      "cve_id": "CVE-2024-7708",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00252,
      "epss_percentile": 0.16889,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Eclipse Foundation",
      "product": "Eclipse Jetty",
      "cwe": "CWE-400",
      "title": "For requests that have a body, but reading the body may end up in reading 0 bytes, there is a buffer leak. This is particularly the case for 100-Continue, but any request where the network is slow can leak.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-7708"
    },
    {
      "rank": 702,
      "cve_id": "CVE-2026-62641",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00252,
      "epss_percentile": 0.16914,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Roundcube",
      "product": "Webmail",
      "cwe": "CWE-770",
      "title": "In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, the TNEF decoder was subject to denial of service via a crafted compressed-RTF size.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62641"
    },
    {
      "rank": 703,
      "cve_id": "CVE-2026-11390",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00252,
      "epss_percentile": 0.16912,
      "kev": false,
      "kev_due_at": null,
      "vendor": "blazethemes",
      "product": "News Kit Addons For Elementor",
      "cwe": "CWE-79",
      "title": "News Kit Addons For Elementor <= 1.4.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via Site Logo Title and Single Author Box Widgets",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11390"
    },
    {
      "rank": 704,
      "cve_id": "CVE-2026-15619",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00252,
      "epss_percentile": 0.16912,
      "kev": false,
      "kev_due_at": null,
      "vendor": "mosaxiv",
      "product": "clawlet",
      "cwe": "CWE-918",
      "title": "mosaxiv clawlet IPv4 tool_web_fetch.go web_fetch server-side request forgery",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15619"
    },
    {
      "rank": 705,
      "cve_id": "CVE-2026-61520",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00251,
      "epss_percentile": 0.16778,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SimpleMachines",
      "product": "SMF",
      "cwe": "CWE-918",
      "title": "Simple Machines Forum SSRF via image proxy",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-61520"
    },
    {
      "rank": 706,
      "cve_id": "CVE-2026-12478",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00249,
      "epss_percentile": 0.1653,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-125",
      "title": "Libsoup: incomplete fix for cve-2026-0716: out-of-bounds read in libsoup websocket frame processing (unmasked path)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12478"
    },
    {
      "rank": 707,
      "cve_id": "CVE-2026-59888",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00247,
      "epss_percentile": 0.16293,
      "kev": false,
      "kev_due_at": null,
      "vendor": "FasterXML",
      "product": "jackson-databind",
      "cwe": "CWE-915",
      "title": "jackson-databind: @JsonIgnore on a Record property is bypassed with a PropertyNamingStrategy",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59888"
    },
    {
      "rank": 708,
      "cve_id": "CVE-2026-55000",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00247,
      "epss_percentile": 0.16349,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows USB Print Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55000"
    },
    {
      "rank": 709,
      "cve_id": "CVE-2026-62643",
      "cvss_base": 10,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00246,
      "epss_percentile": 0.16212,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Roundcube",
      "product": "Webmail",
      "cwe": "CWE-918",
      "title": "In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, insufficient Cascading Style Sheets (CSS) sanitization in HTML e-mail messages may lead to SSRF or Information Disclosure, e.g., if stylesheet links point to local network hosts. NOTE: this issue exists because of insufficient fixes for CVE-2026-35540 and CVE-2026-48843.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62643"
    },
    {
      "rank": 710,
      "cve_id": "CVE-2026-50372",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00246,
      "epss_percentile": 0.16134,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-126",
      "title": "Windows Redirected Drive Buffering System Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50372"
    },
    {
      "rank": 711,
      "cve_id": "CVE-2026-56173",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00246,
      "epss_percentile": 0.16135,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows WebView Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56173"
    },
    {
      "rank": 712,
      "cve_id": "CVE-2026-56183",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00246,
      "epss_percentile": 0.16135,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows MIDI Service Module Elevation of Privileges Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56183"
    },
    {
      "rank": 713,
      "cve_id": "CVE-2026-15627",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00246,
      "epss_percentile": 0.16217,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nextlevelbuilder",
      "product": "GoClaw",
      "cwe": "CWE-200",
      "title": "nextlevelbuilder GoClaw tool.go handleNavigate information disclosure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15627"
    },
    {
      "rank": 714,
      "cve_id": "CVE-2026-50413",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00245,
      "epss_percentile": 0.15963,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50413"
    },
    {
      "rank": 715,
      "cve_id": "CVE-2026-49165",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00243,
      "epss_percentile": 0.15734,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-908",
      "title": "Microsoft Windows App Store Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49165"
    },
    {
      "rank": 716,
      "cve_id": "CVE-2026-45363",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00242,
      "epss_percentile": 0.15633,
      "kev": false,
      "kev_due_at": null,
      "vendor": "jwt",
      "product": "ruby-jwt",
      "cwe": "CWE-287",
      "title": "`jwt` (Ruby gem) - empty-key HMAC bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45363"
    },
    {
      "rank": 717,
      "cve_id": "CVE-2026-54127",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00242,
      "epss_percentile": 0.15593,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Hyper-V Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54127"
    },
    {
      "rank": 718,
      "cve_id": "CVE-2026-50311",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00242,
      "epss_percentile": 0.15655,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-284",
      "title": "Windows Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50311"
    },
    {
      "rank": 719,
      "cve_id": "CVE-2026-58640",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00241,
      "epss_percentile": 0.1547,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58640"
    },
    {
      "rank": 720,
      "cve_id": "CVE-2026-58545",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00241,
      "epss_percentile": 0.15467,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-284",
      "title": "Windows Kernel Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58545"
    },
    {
      "rank": 721,
      "cve_id": "CVE-2026-49166",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15332,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Print Configuration Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49166"
    },
    {
      "rank": 722,
      "cve_id": "CVE-2026-49173",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15374,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 version 26H1",
      "cwe": "CWE-416",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49173"
    },
    {
      "rank": 723,
      "cve_id": "CVE-2026-49175",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15331,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-122",
      "title": "Windows DNS Client Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49175"
    },
    {
      "rank": 724,
      "cve_id": "CVE-2026-50306",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15334,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows TCP/IP Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50306"
    },
    {
      "rank": 725,
      "cve_id": "CVE-2026-50309",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15334,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows NTFS Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50309"
    },
    {
      "rank": 726,
      "cve_id": "CVE-2026-50331",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15329,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Application Model Core API Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50331"
    },
    {
      "rank": 727,
      "cve_id": "CVE-2026-50367",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15333,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-118",
      "title": "Windows Sensor Data Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50367"
    },
    {
      "rank": 728,
      "cve_id": "CVE-2026-50399",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15375,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-125",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50399"
    },
    {
      "rank": 729,
      "cve_id": "CVE-2026-50400",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15329,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-121",
      "title": "Windows App Package Installer Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50400"
    },
    {
      "rank": 730,
      "cve_id": "CVE-2026-50425",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.1533,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-416",
      "title": "Windows Internal System User Profile Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50425"
    },
    {
      "rank": 731,
      "cve_id": "CVE-2026-50435",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15334,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-126",
      "title": "Windows Overlay Filter Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50435"
    },
    {
      "rank": 732,
      "cve_id": "CVE-2026-50441",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15331,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-822",
      "title": "Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50441"
    },
    {
      "rank": 733,
      "cve_id": "CVE-2026-50466",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15331,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Microsoft Brokering File System Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50466"
    },
    {
      "rank": 734,
      "cve_id": "CVE-2026-50480",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15332,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Web Proxy Auto-Discovery Protocol (WPAD) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50480"
    },
    {
      "rank": 735,
      "cve_id": "CVE-2026-50486",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15331,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-416",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50486"
    },
    {
      "rank": 736,
      "cve_id": "CVE-2026-50499",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.1533,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-122",
      "title": "Windows Print Spooler Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50499"
    },
    {
      "rank": 737,
      "cve_id": "CVE-2026-50670",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15329,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-125",
      "title": "Windows Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50670"
    },
    {
      "rank": 738,
      "cve_id": "CVE-2026-54109",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15333,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-190",
      "title": "Windows Resilient File System (ReFS) Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54109"
    },
    {
      "rank": 739,
      "cve_id": "CVE-2026-54987",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15334,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Windows Overlay Filter Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54987"
    },
    {
      "rank": 740,
      "cve_id": "CVE-2026-55004",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15335,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-415",
      "title": "Windows Print Configuration Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55004"
    },
    {
      "rank": 741,
      "cve_id": "CVE-2026-56176",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15333,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-125",
      "title": "Windows Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56176"
    },
    {
      "rank": 742,
      "cve_id": "CVE-2026-56182",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15328,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-190",
      "title": "Windows NTFS Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56182"
    },
    {
      "rank": 743,
      "cve_id": "CVE-2026-50354",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.0024,
      "epss_percentile": 0.15394,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50354"
    },
    {
      "rank": 744,
      "cve_id": "CVE-2026-48808",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00239,
      "epss_percentile": 0.15225,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-693",
      "title": "Twig: Sandbox property allowlist bypass via the `column` filter under `SourcePolicyInterface`",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48808"
    },
    {
      "rank": 745,
      "cve_id": "CVE-2026-47979",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00239,
      "epss_percentile": 0.15199,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Media Encoder",
      "cwe": "CWE-125",
      "title": "Media Encoder | Out-of-bounds Read (CWE-125)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47979"
    },
    {
      "rank": 746,
      "cve_id": "CVE-2026-50677",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00238,
      "epss_percentile": 0.1514,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Media Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50677"
    },
    {
      "rank": 747,
      "cve_id": "CVE-2026-50689",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00238,
      "epss_percentile": 0.15139,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Clipboard Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50689"
    },
    {
      "rank": 748,
      "cve_id": "CVE-2026-45755",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00238,
      "epss_percentile": 0.15171,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-306",
      "title": "Symfony: Mailtrap Mailer Webhook Parser Never Verifies the X-Mt-Signature HMAC — Unauthenticated Webhook Event Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45755"
    },
    {
      "rank": 749,
      "cve_id": "CVE-2026-47212",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00238,
      "epss_percentile": 0.1517,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-306",
      "title": "Symfony: Twilio Notifier Webhook Parser Never Verifies the X-Twilio-Signature HMAC: Unauthenticated Webhook Event Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47212"
    },
    {
      "rank": 750,
      "cve_id": "CVE-2026-12482",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00238,
      "epss_percentile": 0.1511,
      "kev": false,
      "kev_due_at": null,
      "vendor": "keras-team",
      "product": "keras-team/keras",
      "cwe": "CWE-22",
      "title": "Path Traversal via Symlink Name Validation Bypass in keras-team/keras",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12482"
    },
    {
      "rank": 751,
      "cve_id": "CVE-2026-45069",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00237,
      "epss_percentile": 0.14951,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-345",
      "title": "Symfony: OidcTokenHandler Accepts JWTs Missing aud/iss/exp Claims",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45069"
    },
    {
      "rank": 752,
      "cve_id": "CVE-2026-56181",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00237,
      "epss_percentile": 0.14992,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-346",
      "title": "Windows Network Address Translation (NAT) Spoofing Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56181"
    },
    {
      "rank": 753,
      "cve_id": "CVE-2026-13699",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00237,
      "epss_percentile": 0.15039,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Eclipse Foundation",
      "product": "Eclipse KUKSA - Databroker",
      "cwe": "CWE-20",
      "title": "Databroker 0.6.1 PublishValue missing data_point panic",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-13699"
    },
    {
      "rank": 754,
      "cve_id": "CVE-2026-50302",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00236,
      "epss_percentile": 0.14881,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-295",
      "title": "Windows Cryptographic Services Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50302"
    },
    {
      "rank": 755,
      "cve_id": "CVE-2026-50526",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00236,
      "epss_percentile": 0.14917,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-59",
      "title": ".NET Tampering Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50526"
    },
    {
      "rank": 756,
      "cve_id": "CVE-2026-47976",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00235,
      "epss_percentile": 0.14711,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Media Encoder",
      "cwe": "CWE-787",
      "title": "Media Encoder | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47976"
    },
    {
      "rank": 757,
      "cve_id": "CVE-2026-60118",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00235,
      "epss_percentile": 0.1467,
      "kev": false,
      "kev_due_at": null,
      "vendor": "HiEventsDev",
      "product": "Hi.Events",
      "cwe": "CWE-862",
      "title": "Hi.Events < 1.11.0 Hidden Ticket Enumeration via Order Creation Endpoint",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-60118"
    },
    {
      "rank": 758,
      "cve_id": "CVE-2026-48806",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00234,
      "epss_percentile": 0.14564,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-693",
      "title": "Twig: Sandbox `__toString()` policy bypass via dynamic mapping keys",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48806"
    },
    {
      "rank": 759,
      "cve_id": "CVE-2026-50510",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00233,
      "epss_percentile": 0.14476,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "GitHub Copilot Plugin for JetBrains IDEs",
      "cwe": "CWE-641",
      "title": "GitHub Copilot Remote Code Execution Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50510"
    },
    {
      "rank": 760,
      "cve_id": "CVE-2026-50488",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00232,
      "epss_percentile": 0.14312,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-77",
      "title": "Clipboard User Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50488"
    },
    {
      "rank": 761,
      "cve_id": "CVE-2026-45072",
      "cvss_base": 2,
      "cvss_severity": "LOW",
      "epss_score": 0.00232,
      "epss_percentile": 0.143,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-79",
      "title": "Symfony: Stored XSS in WebProfiler CodeExtension::fileExcerpt() — Unescaped Non-PHP File Rendering",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45072"
    },
    {
      "rank": 762,
      "cve_id": "CVE-2026-58544",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00229,
      "epss_percentile": 0.13955,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Management Services Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58544"
    },
    {
      "rank": 763,
      "cve_id": "CVE-2026-58619",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00229,
      "epss_percentile": 0.13956,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Sensor Data Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58619"
    },
    {
      "rank": 764,
      "cve_id": "CVE-2026-58629",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00229,
      "epss_percentile": 0.13955,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "DirectX Graphics Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58629"
    },
    {
      "rank": 765,
      "cve_id": "CVE-2026-58637",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00229,
      "epss_percentile": 0.13955,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Client-Side Caching Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58637"
    },
    {
      "rank": 766,
      "cve_id": "CVE-2026-58638",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00229,
      "epss_percentile": 0.13984,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-325",
      "title": "Windows Boot Loader Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58638"
    },
    {
      "rank": 767,
      "cve_id": "CVE-2026-58476",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00228,
      "epss_percentile": 0.13864,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dan-in-CA",
      "product": "SIP",
      "cwe": "CWE-352",
      "title": "Sustainable Irrigation Platform 5.2.16 CSRF via Administrative GET Requests",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58476"
    },
    {
      "rank": 768,
      "cve_id": "CVE-2026-8384",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00228,
      "epss_percentile": 0.13881,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Eclipse Foundation",
      "product": "Eclipse Jetty",
      "cwe": "CWE-647",
      "title": "In Eclipse Jetty, an HTTP URI of this form: /public;/../admin/secret.txt results in an unresolved path of: /public/../admin/secret.txt instead of the expected: /admin/secret.txt Jetty itself is not affected, as it will not serve the secret.txt file because it will not pass the alias checker (only resolved resources are served). However, web applications that rely on resolved paths being provided by Jetty may be confused when receiving an unresolved path.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-8384"
    },
    {
      "rank": 769,
      "cve_id": "CVE-2026-15620",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00228,
      "epss_percentile": 0.138,
      "kev": false,
      "kev_due_at": null,
      "vendor": "mosaxiv",
      "product": "clawlet",
      "cwe": "CWE-918",
      "title": "mosaxiv clawlet tool_web_fetch.go tools.webFetch server-side request forgery",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15620"
    },
    {
      "rank": 770,
      "cve_id": "CVE-2026-15668",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00228,
      "epss_percentile": 0.138,
      "kev": false,
      "kev_due_at": null,
      "vendor": "louisho5",
      "product": "picobot",
      "cwe": "CWE-918",
      "title": "louisho5 picobot web Tool web.go WebTool.Execute server-side request forgery",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15668"
    },
    {
      "rank": 771,
      "cve_id": "CVE-2026-15750",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00227,
      "epss_percentile": 0.13681,
      "kev": false,
      "kev_due_at": null,
      "vendor": "mastergo-design",
      "product": "mastergo-magic-mcp",
      "cwe": "CWE-918",
      "title": "mastergo-design mastergo-magic-mcp mcp__getComponentLink get-component-link.ts z.string server-side request forgery",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15750"
    },
    {
      "rank": 772,
      "cve_id": "CVE-2026-47472",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00226,
      "epss_percentile": 0.13541,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT-LLM",
      "cwe": "CWE-502",
      "title": "NVIDIA TensorRT-LLM contains a vulnerability in its inter-process communication layer where an attacker with local same-user access could cause deserialization. A successful exploit of this vulnerability might lead to code execution, information disclosure, data tampering, and denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47472"
    },
    {
      "rank": 773,
      "cve_id": "CVE-2026-59839",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00225,
      "epss_percentile": 0.13396,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fortinet",
      "product": "FortiProxy",
      "cwe": "CWE-22",
      "title": "A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiOS 7.6.0 through 7.6.6, FortiOS 7.4.0 through 7.4.9, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiPAM 1.8.0, FortiPAM 1.7.0 through 1.7.2, FortiPAM 1.6 all versions, FortiPAM 1.5 all versions, FortiPAM 1.4 all versions, FortiPAM 1.3 all versions, FortiPAM 1.2 all versions, FortiPAM 1.1 all versions, FortiPAM 1.0 all versions, FortiProxy 7.6.0 through 7.6.5, FortiProxy 7.4 through 7.4.13, FortiProxy 7.2 all versions, FortiProxy 7.0 all versions may allow attacker to execute unauthorized code or commands via <insert attack vector here>",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59839"
    },
    {
      "rank": 774,
      "cve_id": "CVE-2026-58601",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00223,
      "epss_percentile": 0.13217,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-122",
      "title": "Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58601"
    },
    {
      "rank": 775,
      "cve_id": "CVE-2026-58602",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00223,
      "epss_percentile": 0.13217,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Kernel-Mode Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58602"
    },
    {
      "rank": 776,
      "cve_id": "CVE-2026-14852",
      "cvss_base": 5.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00222,
      "epss_percentile": 0.13006,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Checkmk GmbH",
      "product": "Checkmk",
      "cwe": "CWE-78",
      "title": "mk_sap_hana: Privilege escalation via crafted sapstartsrv process name",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14852"
    },
    {
      "rank": 777,
      "cve_id": "CVE-2026-50451",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00221,
      "epss_percentile": 0.12931,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-306",
      "title": "Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50451"
    },
    {
      "rank": 778,
      "cve_id": "CVE-2026-54432",
      "cvss_base": 4.7,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00221,
      "epss_percentile": 0.12964,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Roundcube",
      "product": "Webmail",
      "cwe": "CWE-79",
      "title": "Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2 allows Stored Cross-Site Scripting (XSS). The issue occurs because the attachment MIME type is not properly escaped on the attachment-validation warning page.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54432"
    },
    {
      "rank": 779,
      "cve_id": "CVE-2026-15643",
      "cvss_base": 9.2,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.0022,
      "epss_percentile": 0.12793,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AWS",
      "product": "awslabs.healthlake-mcp-server",
      "cwe": "CWE-918",
      "title": "AWS HealthLake MCP Server SSRF via Pagination URL",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15643"
    },
    {
      "rank": 780,
      "cve_id": "CVE-2026-50392",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.0022,
      "epss_percentile": 0.1273,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Secure Kernel Mode Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50392"
    },
    {
      "rank": 781,
      "cve_id": "CVE-2026-24220",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0022,
      "epss_percentile": 0.1278,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT-LLM",
      "cwe": "CWE-502",
      "title": "NVIDIA TensorRT-LLM for any platform contains a vulnerability in visual gen server, where an attacker could cause an unsafe deserialization by unauthorized zeroMQ deserialization. A successful exploit of this vulnerability might lead to code execution.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24220"
    },
    {
      "rank": 782,
      "cve_id": "CVE-2026-44753",
      "cvss_base": 3.7,
      "cvss_severity": "LOW",
      "epss_score": 0.0022,
      "epss_percentile": 0.12754,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP HANA Extended Application Services classic model (User Self Service)",
      "cwe": "CWE-204",
      "title": "Information Disclosure vulnerability in SAP HANA Extended Application Services classic model (User Self Service)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44753"
    },
    {
      "rank": 783,
      "cve_id": "CVE-2026-15628",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00219,
      "epss_percentile": 0.12652,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zhayujie",
      "product": "chatgpt-on-wechat CowAgent",
      "cwe": "CWE-918",
      "title": "zhayujie chatgpt-on-wechat CowAgent Vision Tool vision.py Vision._download_to_data_url server-side request forgery",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15628"
    },
    {
      "rank": 784,
      "cve_id": "CVE-2026-50295",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00217,
      "epss_percentile": 0.12451,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-269",
      "title": "Windows Zero Trust DNS Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50295"
    },
    {
      "rank": 785,
      "cve_id": "CVE-2026-47304",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00216,
      "epss_percentile": 0.12295,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": ".NET 10.0",
      "cwe": "CWE-347",
      "title": ".NET Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47304"
    },
    {
      "rank": 786,
      "cve_id": "CVE-2026-49171",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00216,
      "epss_percentile": 0.12322,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Speech Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49171"
    },
    {
      "rank": 787,
      "cve_id": "CVE-2026-47471",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00216,
      "epss_percentile": 0.1229,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT-LLM",
      "cwe": "CWE-122",
      "title": "NVIDIA TensorRT-LLM for any platform contains a vulnerability in tensor deserialization, where an attacker could cause a heap based buffer overflow. A successful exploit of this vulnerability might lead to information disclosure, data tampering, or denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47471"
    },
    {
      "rank": 788,
      "cve_id": "CVE-2026-48807",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00215,
      "epss_percentile": 0.12228,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-693",
      "title": "Twig: Sandbox `__toString()` policy bypass via `Traversable` in `join` and `replace` filters",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48807"
    },
    {
      "rank": 789,
      "cve_id": "CVE-2026-50342",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00214,
      "epss_percentile": 0.12089,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-284",
      "title": "Windows MIDI Service Module Elevation of Privileges Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50342"
    },
    {
      "rank": 790,
      "cve_id": "CVE-2026-48581",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00214,
      "epss_percentile": 0.1209,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Surface Go",
      "cwe": "CWE-1220",
      "title": "Surface Broker SDMA Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48581"
    },
    {
      "rank": 791,
      "cve_id": "CVE-2026-50333",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00214,
      "epss_percentile": 0.1209,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-306",
      "title": "Windows Spaceport.sys Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50333"
    },
    {
      "rank": 792,
      "cve_id": "CVE-2026-50405",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00214,
      "epss_percentile": 0.12089,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-1220",
      "title": "Windows Filtering Platform Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50405"
    },
    {
      "rank": 793,
      "cve_id": "CVE-2026-55001",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00214,
      "epss_percentile": 0.12089,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-295",
      "title": "Active Directory Domain Services Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55001"
    },
    {
      "rank": 794,
      "cve_id": "CVE-2026-55006",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00214,
      "epss_percentile": 0.1213,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Exchange Server 2016 Cumulative Update 23",
      "cwe": "CWE-1220",
      "title": "Microsoft Exchange Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55006"
    },
    {
      "rank": 795,
      "cve_id": "CVE-2026-55014",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00214,
      "epss_percentile": 0.12089,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows Remote Help",
      "cwe": "CWE-284",
      "title": "Windows Remote Help Defense Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55014"
    },
    {
      "rank": 796,
      "cve_id": "CVE-2026-57107",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00214,
      "epss_percentile": 0.12088,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows Admin Center",
      "cwe": "CWE-287",
      "title": "Windows Admin Center Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57107"
    },
    {
      "rank": 797,
      "cve_id": "CVE-2026-50465",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00214,
      "epss_percentile": 0.12109,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-284",
      "title": "Windows DNS Client Tampering Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50465"
    },
    {
      "rank": 798,
      "cve_id": "CVE-2026-48571",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00214,
      "epss_percentile": 0.11979,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 version 23H2",
      "cwe": "CWE-416",
      "title": "Windows App Package Installer Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48571"
    },
    {
      "rank": 799,
      "cve_id": "CVE-2026-50323",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00214,
      "epss_percentile": 0.1198,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50323"
    },
    {
      "rank": 800,
      "cve_id": "CVE-2026-58475",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00214,
      "epss_percentile": 0.12125,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dan-in-CA",
      "product": "SIP",
      "cwe": "CWE-79",
      "title": "Sustainable Irrigation Platform 5.2.16 Stored XSS via Program Name",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58475"
    },
    {
      "rank": 801,
      "cve_id": "CVE-2026-54129",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00213,
      "epss_percentile": 0.11949,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Hyper-V Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54129"
    },
    {
      "rank": 802,
      "cve_id": "CVE-2026-15641",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00213,
      "epss_percentile": 0.11918,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Devolutions",
      "product": "Server",
      "cwe": "CWE-863",
      "title": "Improper authorization in the access request status endpoint in Devolutions Server 2026.2.11, 2026.1.22 allows an authenticated low-privileged user to approve their own pending access request via a direct call to the request status endpoint, bypassing the required approver review.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15641"
    },
    {
      "rank": 803,
      "cve_id": "CVE-2026-50297",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00213,
      "epss_percentile": 0.11962,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-284",
      "title": "Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50297"
    },
    {
      "rank": 804,
      "cve_id": "CVE-2026-50325",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00213,
      "epss_percentile": 0.11963,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-284",
      "title": "Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50325"
    },
    {
      "rank": 805,
      "cve_id": "CVE-2026-59732",
      "cvss_base": 5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00213,
      "epss_percentile": 0.11876,
      "kev": false,
      "kev_due_at": null,
      "vendor": "rclone",
      "product": "rclone",
      "cwe": "CWE-22",
      "title": "rclone archive extract allows S3 destination prefix escape via crafted archive paths",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59732"
    },
    {
      "rank": 806,
      "cve_id": "CVE-2026-49981",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00212,
      "epss_percentile": 0.11827,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-693",
      "title": "Twig: Sandbox filter, tag and function allow-list bypass when sandbox state changes between renders for a cached `Template`",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49981"
    },
    {
      "rank": 807,
      "cve_id": "CVE-2026-15624",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00209,
      "epss_percentile": 0.11439,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nextlevelbuilder",
      "product": "GoClaw",
      "cwe": "CWE-918",
      "title": "nextlevelbuilder GoClaw invoke Endpoint create_video_byteplus.go bytePlusDownloadVideo server-side request forgery",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15624"
    },
    {
      "rank": 808,
      "cve_id": "CVE-2026-15183",
      "cvss_base": 9.2,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00208,
      "epss_percentile": 0.11219,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Snowflake",
      "product": "Snowflake Spark Connector",
      "cwe": "CWE-89",
      "title": "Input Validation Vulnerabilities in Snowflake Spark Connector",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15183"
    },
    {
      "rank": 809,
      "cve_id": "CVE-2026-12588",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00208,
      "epss_percentile": 0.11238,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Trellix",
      "product": "Trellix HX Console",
      "cwe": "CWE-409",
      "title": "An attacker with access to an HX 10.0.0 and previous versions, may send specially-crafted data to the HX console. The malicious detection would then trigger decompression of a large file that consumes an excessive amount of system resources thus causing a Denial of Service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12588"
    },
    {
      "rank": 810,
      "cve_id": "CVE-2026-62655",
      "cvss_base": 5.7,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00207,
      "epss_percentile": 0.1114,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NETGEAR",
      "product": "RBR860",
      "cwe": "CWE-121",
      "title": "A DoS vulnerability due to stack overflow exists in certain NETGEAR Orbi models",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62655"
    },
    {
      "rank": 811,
      "cve_id": "CVE-2026-15757",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00203,
      "epss_percentile": 0.10646,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NETGEAR",
      "product": "DGND3700v1",
      "cwe": "CWE-20",
      "title": "Insufficient input validation vulnerability in NETGEAR DGND3700v1 modem router",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15757"
    },
    {
      "rank": 812,
      "cve_id": "CVE-2026-34346",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00202,
      "epss_percentile": 0.1053,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-319",
      "title": "Windows Ancillary Function Driver for WinSock Information Disclosure Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34346"
    },
    {
      "rank": 813,
      "cve_id": "CVE-2026-50303",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00202,
      "epss_percentile": 0.10498,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-1240",
      "title": "Windows Key Guard Security Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50303"
    },
    {
      "rank": 814,
      "cve_id": "CVE-2026-50307",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.002,
      "epss_percentile": 0.10271,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows TCP/IP Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50307"
    },
    {
      "rank": 815,
      "cve_id": "CVE-2026-50393",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.002,
      "epss_percentile": 0.10272,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Kernel-Mode Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50393"
    },
    {
      "rank": 816,
      "cve_id": "CVE-2026-50396",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.002,
      "epss_percentile": 0.10272,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Windows Kernel-Mode Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50396"
    },
    {
      "rank": 817,
      "cve_id": "CVE-2026-54989",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.002,
      "epss_percentile": 0.10272,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Quality Windows Audio/Video Experience (QWAVE) Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54989"
    },
    {
      "rank": 818,
      "cve_id": "CVE-2026-15672",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.002,
      "epss_percentile": 0.10251,
      "kev": false,
      "kev_due_at": null,
      "vendor": "itsourcecode",
      "product": "Electronic Judging System",
      "cwe": "CWE-74",
      "title": "itsourcecode Electronic Judging System add_judges.php sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15672"
    },
    {
      "rank": 819,
      "cve_id": "CVE-2026-50673",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00199,
      "epss_percentile": 0.1013,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-476",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50673"
    },
    {
      "rank": 820,
      "cve_id": "CVE-2026-49162",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00199,
      "epss_percentile": 0.10084,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Microsoft Brokering File System Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49162"
    },
    {
      "rank": 821,
      "cve_id": "CVE-2026-50296",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00199,
      "epss_percentile": 0.10084,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "DirectX Graphics Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50296"
    },
    {
      "rank": 822,
      "cve_id": "CVE-2026-50317",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00199,
      "epss_percentile": 0.10101,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Operating Systems Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50317"
    },
    {
      "rank": 823,
      "cve_id": "CVE-2026-50378",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00199,
      "epss_percentile": 0.10101,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-362",
      "title": "Windows Key Guard Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50378"
    },
    {
      "rank": 824,
      "cve_id": "CVE-2026-50397",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00199,
      "epss_percentile": 0.10111,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-416",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50397"
    },
    {
      "rank": 825,
      "cve_id": "CVE-2026-50410",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00199,
      "epss_percentile": 0.10083,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50410"
    },
    {
      "rank": 826,
      "cve_id": "CVE-2026-50449",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00199,
      "epss_percentile": 0.10084,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50449"
    },
    {
      "rank": 827,
      "cve_id": "CVE-2026-50676",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00199,
      "epss_percentile": 0.10101,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Media Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50676"
    },
    {
      "rank": 828,
      "cve_id": "CVE-2026-58527",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00199,
      "epss_percentile": 0.10101,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58527"
    },
    {
      "rank": 829,
      "cve_id": "CVE-2026-42447",
      "cvss_base": 5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00199,
      "epss_percentile": 0.10046,
      "kev": false,
      "kev_due_at": null,
      "vendor": "skylot",
      "product": "jadx",
      "cwe": "CWE-79",
      "title": "jadx: HTML Injection in Summary panel",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42447"
    },
    {
      "rank": 830,
      "cve_id": "CVE-2026-15678",
      "cvss_base": 2,
      "cvss_severity": "LOW",
      "epss_score": 0.00199,
      "epss_percentile": 0.10029,
      "kev": false,
      "kev_due_at": null,
      "vendor": "code-projects",
      "product": "Online Job Portal",
      "cwe": "CWE-79",
      "title": "code-projects Online Job Portal DetailJob.php cross site scripting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15678"
    },
    {
      "rank": 831,
      "cve_id": "CVE-2026-49174",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00198,
      "epss_percentile": 0.09971,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-306",
      "title": "DNS Client Tampering Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49174"
    },
    {
      "rank": 832,
      "cve_id": "CVE-2026-48350",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00197,
      "epss_percentile": 0.09832,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Animate 2023",
      "cwe": "CWE-22",
      "title": "Animate | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48350"
    },
    {
      "rank": 833,
      "cve_id": "CVE-2026-50459",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00197,
      "epss_percentile": 0.09829,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 21H2",
      "cwe": "CWE-416",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50459"
    },
    {
      "rank": 834,
      "cve_id": "CVE-2026-7640",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00197,
      "epss_percentile": 0.09855,
      "kev": false,
      "kev_due_at": null,
      "vendor": "aguilatechnologies",
      "product": "WP Customer Area",
      "cwe": "CWE-79",
      "title": "WP Customer Area <= 8.3.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'type' Shortcode Attribute",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-7640"
    },
    {
      "rank": 835,
      "cve_id": "CVE-2026-48747",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00197,
      "epss_percentile": 0.09869,
      "kev": false,
      "kev_due_at": null,
      "vendor": "symfony",
      "product": "symfony",
      "cwe": "CWE-347",
      "title": "Symfony: Mailomat Mailer Webhook Parser Reads the HMAC Algorithm from the Request: Signature Algorithm Downgrade",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48747"
    },
    {
      "rank": 836,
      "cve_id": "CVE-2026-44769",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00197,
      "epss_percentile": 0.09878,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP S/4HANA Project Management (PPM-PRO)",
      "cwe": "CWE-89",
      "title": "SQL Injection vulnerability in SAP S/4HANA Project Management (PPM-PRO)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44769"
    },
    {
      "rank": 837,
      "cve_id": "CVE-2026-47969",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00197,
      "epss_percentile": 0.09868,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Audition",
      "cwe": "CWE-125",
      "title": "Audition | Out-of-bounds Read (CWE-125)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47969"
    },
    {
      "rank": 838,
      "cve_id": "CVE-2026-48270",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00196,
      "epss_percentile": 0.09659,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Premiere",
      "cwe": "CWE-787",
      "title": "Premiere Pro | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48270"
    },
    {
      "rank": 839,
      "cve_id": "CVE-2026-50418",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00196,
      "epss_percentile": 0.09718,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-284",
      "title": "Windows System Secure Feature Bypass Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50418"
    },
    {
      "rank": 840,
      "cve_id": "CVE-2026-48758",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00196,
      "epss_percentile": 0.09754,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sigstore",
      "product": "sigstore-js",
      "cwe": "CWE-347",
      "title": "sigstore-js: DSSE payloadType type-binding failure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48758"
    },
    {
      "rank": 841,
      "cve_id": "CVE-2026-6790",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00196,
      "epss_percentile": 0.09751,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Eclipse Foundation",
      "product": "Eclipse Jetty",
      "cwe": "CWE-20",
      "title": "In Eclipse Jetty, for HTTP/1, HTTP/2 and HTTP/3 requests, there is no strict check that the request authority (host and port) matches what provided in the Host header (if present). This was not enforced in earlier HTTP RFC (for example, in RFC 2616), but it is in the latest RFC (9110 and 9112). This mismatch can cause a number of problems that may be classified as vulnerabilities such as: * URI constructions (for example, for redirects -- this is typical for login pages) * Virtual host selection * Reverse proxying * Misleading logs * Etc. Given that the latest RFCs require that request authority and Host header must match, Jetty should enforce this invariant.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6790"
    },
    {
      "rank": 842,
      "cve_id": "CVE-2026-62659",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00195,
      "epss_percentile": 0.0953,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NETGEAR",
      "product": "WAX333",
      "cwe": "CWE-20",
      "title": "Authenticated users can make unauthorized changes on NETGEAR WAX333 Access Points",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62659"
    },
    {
      "rank": 843,
      "cve_id": "CVE-2026-62658",
      "cvss_base": 4.7,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00193,
      "epss_percentile": 0.09332,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NETGEAR",
      "product": "RAX43",
      "cwe": "CWE-20",
      "title": "Post-authentication Command Injection Vulnerability in certain Nighthawk RAX series models",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62658"
    },
    {
      "rank": 844,
      "cve_id": "CVE-2026-9561",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00192,
      "epss_percentile": 0.09259,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Eclipse Foundation",
      "product": "Eclipse Kura",
      "cwe": "CWE-345",
      "title": "Eclipse Kura versions prior to 5.6.2 trust the client-supplied X-Forwarded-For HTTP header as the authoritative source of the client IP address in audit log entries. The org.eclipse.kura.web2 (Web Console) and org.eclipse.kura.rest.provider (REST API) components use this header as the primary IP source when initializing audit context, and org.eclipse.kura.jetty.customizer unconditionally installs Jetty's ForwardedRequestCustomizer on all HTTP/HTTPS connectors, causing HttpServletRequest.getRemoteAddr() to reflect the attacker-controlled header value. An unauthenticated remote attacker can exploit this vulnerability to bypass IP-based brute-force protections — such as fail2ban — by spoofing the logged IP address to a non-routable value, allowing a brute-force attack to proceed undetected, or to cause a denial of service against a third party by injecting a victim's IP address and triggering a ban on that address.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9561"
    },
    {
      "rank": 845,
      "cve_id": "CVE-2026-48349",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00192,
      "epss_percentile": 0.09223,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Animate 2023",
      "cwe": "CWE-863",
      "title": "Animate | Incorrect Authorization (CWE-863)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48349"
    },
    {
      "rank": 846,
      "cve_id": "CVE-2026-15637",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00192,
      "epss_percentile": 0.09232,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Devolutions",
      "product": "Server",
      "cwe": "CWE-639",
      "title": "Improper authorization in the PAM SSH key and certificate retrieval endpoints in Devolutions Server 2026.2.11, 2026.1.22 allows an authenticated low-privileged user to disclose the private key of an SSH key or certificate PAM credential via a direct object reference to the credential identifier.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15637"
    },
    {
      "rank": 847,
      "cve_id": "CVE-2026-47967",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00189,
      "epss_percentile": 0.08886,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Audition",
      "cwe": "CWE-787",
      "title": "Audition | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47967"
    },
    {
      "rank": 848,
      "cve_id": "CVE-2026-47968",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00189,
      "epss_percentile": 0.08886,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Audition",
      "cwe": "CWE-787",
      "title": "Audition | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47968"
    },
    {
      "rank": 849,
      "cve_id": "CVE-2026-50458",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00188,
      "epss_percentile": 0.08729,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Microsoft Brokering File System Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50458"
    },
    {
      "rank": 850,
      "cve_id": "CVE-2026-50322",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00188,
      "epss_percentile": 0.08828,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50322"
    },
    {
      "rank": 851,
      "cve_id": "CVE-2026-50345",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00188,
      "epss_percentile": 0.08827,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50345"
    },
    {
      "rank": 852,
      "cve_id": "CVE-2026-50371",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00188,
      "epss_percentile": 0.08828,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Windows LUA File Virtualization Filter Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50371"
    },
    {
      "rank": 853,
      "cve_id": "CVE-2026-50503",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00188,
      "epss_percentile": 0.08828,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50503"
    },
    {
      "rank": 854,
      "cve_id": "CVE-2026-50658",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00188,
      "epss_percentile": 0.08827,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Defender for Endpoint for Mac",
      "cwe": "CWE-367",
      "title": "Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50658"
    },
    {
      "rank": 855,
      "cve_id": "CVE-2026-12606",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00188,
      "epss_percentile": 0.08768,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Eclipse Foundation",
      "product": "Eclipse GlassFish",
      "cwe": "CWE-444",
      "title": "Eclipse Grizzly in versions before 5.0.2, cannot properly parse the trailer section in malformed trailer header's line, which can be leveraged to perform HTTP request smuggling. Grizzly 5.0.1 supports system properties that enable the behavior that fixes the vulnerability - set org.glassfish.grizzly.http.STRICT_HEADER_NAME_VALIDATION_RFC_9110 and org.glassfish.grizzly.http.STRICT_HEADER_VALUE_VALIDATION_RFC_9110 system properties to \"true\".",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12606"
    },
    {
      "rank": 856,
      "cve_id": "CVE-2026-48339",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00187,
      "epss_percentile": 0.08701,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Bridge",
      "cwe": "CWE-122",
      "title": "Bridge | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48339"
    },
    {
      "rank": 857,
      "cve_id": "CVE-2026-59840",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00187,
      "epss_percentile": 0.08707,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fortinet",
      "product": "FortiOS",
      "cwe": "CWE-126",
      "title": "A buffer over-read vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiProxy 7.6.0 through 7.6.5, FortiProxy 7.4.0 through 7.4.13, FortiProxy 7.2 all versions, FortiProxy 7.0 all versions may allow attacker to information disclosure via <insert attack vector here>",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59840"
    },
    {
      "rank": 858,
      "cve_id": "CVE-2026-48346",
      "cvss_base": 7.9,
      "cvss_severity": "HIGH",
      "epss_score": 0.00186,
      "epss_percentile": 0.08592,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Animate 2023",
      "cwe": "CWE-426",
      "title": "Animate | Untrusted Search Path (CWE-426)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48346"
    },
    {
      "rank": 859,
      "cve_id": "CVE-2026-52840",
      "cvss_base": 2.7,
      "cvss_severity": "LOW",
      "epss_score": 0.00186,
      "epss_percentile": 0.08531,
      "kev": false,
      "kev_due_at": null,
      "vendor": "alextselegidis",
      "product": "easyappointments",
      "cwe": "CWE-918",
      "title": "Easy!Appointments has server-side request forgery in CalDAV connection test that exposes the deployment's internal network",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-52840"
    },
    {
      "rank": 860,
      "cve_id": "CVE-2026-55651",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00185,
      "epss_percentile": 0.08409,
      "kev": false,
      "kev_due_at": null,
      "vendor": "alextselegidis",
      "product": "easyappointments",
      "cwe": "CWE-200",
      "title": "Easy!Appointments Vulnerable to Appointments Takeover via Excessive Data Exposure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55651"
    },
    {
      "rank": 861,
      "cve_id": "CVE-2026-50385",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00184,
      "epss_percentile": 0.083,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50385"
    },
    {
      "rank": 862,
      "cve_id": "CVE-2026-50305",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00184,
      "epss_percentile": 0.08299,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-416",
      "title": "Microsoft Brokering File System Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50305"
    },
    {
      "rank": 863,
      "cve_id": "CVE-2026-50361",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00184,
      "epss_percentile": 0.083,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-415",
      "title": "Microsoft Brokering File System Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50361"
    },
    {
      "rank": 864,
      "cve_id": "CVE-2026-50427",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00184,
      "epss_percentile": 0.08299,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Content Delivery Manager Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50427"
    },
    {
      "rank": 865,
      "cve_id": "CVE-2026-50457",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00184,
      "epss_percentile": 0.083,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50457"
    },
    {
      "rank": 866,
      "cve_id": "CVE-2026-54125",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00184,
      "epss_percentile": 0.083,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-362",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54125"
    },
    {
      "rank": 867,
      "cve_id": "CVE-2026-52838",
      "cvss_base": 2.6,
      "cvss_severity": "LOW",
      "epss_score": 0.00184,
      "epss_percentile": 0.08352,
      "kev": false,
      "kev_due_at": null,
      "vendor": "alextselegidis",
      "product": "easyappointments",
      "cwe": "CWE-79",
      "title": "Easy!Appointments disable_booking_message rendered as raw HTML on public booking page — Stored XSS",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-52838"
    },
    {
      "rank": 868,
      "cve_id": "CVE-2026-48371",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00182,
      "epss_percentile": 0.08106,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Commerce",
      "cwe": "CWE-79",
      "title": "Adobe Commerce | Cross-site Scripting (Stored XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48371"
    },
    {
      "rank": 869,
      "cve_id": "CVE-2026-58628",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00181,
      "epss_percentile": 0.08038,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-362",
      "title": "Windows Wireless Network Manager Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58628"
    },
    {
      "rank": 870,
      "cve_id": "CVE-2026-44767",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00181,
      "epss_percentile": 0.07996,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "@ui5/webcomponents-base",
      "cwe": "CWE-79",
      "title": "Allowlist Bypass in setThemeRoot() Enables Cross-Origin CSS Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44767"
    },
    {
      "rank": 871,
      "cve_id": "CVE-2026-11567",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00181,
      "epss_percentile": 0.08018,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "SureForms",
      "cwe": null,
      "title": "SureForms < 2.11.1 - Unauthenticated Payment Amount Bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11567"
    },
    {
      "rank": 872,
      "cve_id": "CVE-2026-48365",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0018,
      "epss_percentile": 0.07881,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Audition",
      "cwe": "CWE-787",
      "title": "Audition | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48365"
    },
    {
      "rank": 873,
      "cve_id": "CVE-2026-48368",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0018,
      "epss_percentile": 0.07882,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Audition",
      "cwe": "CWE-787",
      "title": "Audition | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48368"
    },
    {
      "rank": 874,
      "cve_id": "CVE-2026-8085",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.0018,
      "epss_percentile": 0.07897,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "Arena® Simulation",
      "cwe": "CWE-787",
      "title": "Rockwell Automation Arena® - Memory Corruption Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-8085"
    },
    {
      "rank": 875,
      "cve_id": "CVE-2026-8312",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.0018,
      "epss_percentile": 0.07897,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Auotmation",
      "product": "Arena® Simulation",
      "cwe": "CWE-787",
      "title": "Rockwell Automation Arena® - Memory Corruption Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-8312"
    },
    {
      "rank": 876,
      "cve_id": "CVE-2026-8313",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.0018,
      "epss_percentile": 0.07897,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "Arena® Simulation",
      "cwe": "CWE-787",
      "title": "Rockwell Automation Arena® - Memory Corruption Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-8313"
    },
    {
      "rank": 877,
      "cve_id": "CVE-2026-8314",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.0018,
      "epss_percentile": 0.07897,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "Arena® Simulation",
      "cwe": "CWE-787",
      "title": "Rockwell Automation Arena® - Memory Corruption Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-8314"
    },
    {
      "rank": 878,
      "cve_id": "CVE-2026-9653",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00178,
      "epss_percentile": 0.07631,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "1756-EN2, 1756-EN3",
      "cwe": "CWE-354",
      "title": "1756-EN2, 1756-EN3, and 1756-ENBT - Denial of Service via CIP Connection ID",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9653"
    },
    {
      "rank": 879,
      "cve_id": "CVE-2026-48290",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00177,
      "epss_percentile": 0.07599,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Content Credentials Rust SDK",
      "cwe": "CWE-918",
      "title": "CAI Content Credentials | Server-Side Request Forgery (SSRF) (CWE-918)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48290"
    },
    {
      "rank": 880,
      "cve_id": "CVE-2026-47737",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00177,
      "epss_percentile": 0.07589,
      "kev": false,
      "kev_due_at": null,
      "vendor": "puma",
      "product": "puma",
      "cwe": "CWE-290",
      "title": "Puma PROXY Protocol v1 Accepts Repeated Protocol Headers on Persistent Connections",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47737"
    },
    {
      "rank": 881,
      "cve_id": "CVE-2026-46637",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00175,
      "epss_percentile": 0.07321,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-79",
      "title": "Twig: HTML-output filters in twig/* extras incorrectly declared `is_safe => ['all']`",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-46637"
    },
    {
      "rank": 882,
      "cve_id": "CVE-2026-15305",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07156,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "TYPO3 CMS",
      "cwe": "CWE-351",
      "title": "TYPO3 CMS - Unrestricted File Upload in Form Framework",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15305"
    },
    {
      "rank": 883,
      "cve_id": "CVE-2026-44759",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00172,
      "epss_percentile": 0.06957,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP NetWeaver Enterprise Portal",
      "cwe": "CWE-79",
      "title": "Cross Site Scripting (XSS) vulnerability in SAP NetWeaver Enterprise Portal",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44759"
    },
    {
      "rank": 884,
      "cve_id": "CVE-2026-44771",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00172,
      "epss_percentile": 0.06915,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP S/4HANA (Draft operation)",
      "cwe": "CWE-862",
      "title": "Missing Authorization check in SAP S/4HANA (Draft operation)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44771"
    },
    {
      "rank": 885,
      "cve_id": "CVE-2026-58543",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00171,
      "epss_percentile": 0.06891,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Universal Print Management Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58543"
    },
    {
      "rank": 886,
      "cve_id": "CVE-2026-60119",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00171,
      "epss_percentile": 0.06829,
      "kev": false,
      "kev_due_at": null,
      "vendor": "HiEventsDev",
      "product": "Hi.Events",
      "cwe": "CWE-862",
      "title": "Hi.Events < 1.11.0 XSS via Event Title JSON.stringify Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-60119"
    },
    {
      "rank": 887,
      "cve_id": "CVE-2026-48340",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0017,
      "epss_percentile": 0.0679,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Bridge",
      "cwe": "CWE-822",
      "title": "Bridge | Untrusted Pointer Dereference (CWE-822)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48340"
    },
    {
      "rank": 888,
      "cve_id": "CVE-2026-48342",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0017,
      "epss_percentile": 0.06741,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Bridge",
      "cwe": "CWE-190",
      "title": "Bridge | Integer Overflow or Wraparound (CWE-190)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48342"
    },
    {
      "rank": 889,
      "cve_id": "CVE-2026-12988",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00169,
      "epss_percentile": 0.06653,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "WP 2FA",
      "cwe": "CWE-862",
      "title": "WP 2FA < 3.1.1.2 - Account Takeover via 2FA Setup Email Binding",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12988"
    },
    {
      "rank": 890,
      "cve_id": "CVE-2026-46628",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00169,
      "epss_percentile": 0.06707,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-116",
      "title": "Twig: The `spaceless` filter implicitly marks its output as safe",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-46628"
    },
    {
      "rank": 891,
      "cve_id": "CVE-2026-47730",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00169,
      "epss_percentile": 0.06707,
      "kev": false,
      "kev_due_at": null,
      "vendor": "twigphp",
      "product": "Twig",
      "cwe": "CWE-79",
      "title": "Twig: XSS in profiler HtmlDumper via unescaped template and profile names",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47730"
    },
    {
      "rank": 892,
      "cve_id": "CVE-2026-56178",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00168,
      "epss_percentile": 0.06494,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Microsoft Defender for Endpoint for Mac",
      "cwe": "CWE-367",
      "title": "Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56178"
    },
    {
      "rank": 893,
      "cve_id": "CVE-2026-48253",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06544,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-79",
      "title": "Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48253"
    },
    {
      "rank": 894,
      "cve_id": "CVE-2026-48254",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06545,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-79",
      "title": "Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48254"
    },
    {
      "rank": 895,
      "cve_id": "CVE-2026-48255",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06545,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-79",
      "title": "Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48255"
    },
    {
      "rank": 896,
      "cve_id": "CVE-2026-48257",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06546,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-79",
      "title": "Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48257"
    },
    {
      "rank": 897,
      "cve_id": "CVE-2026-48260",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06544,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-79",
      "title": "Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48260"
    },
    {
      "rank": 898,
      "cve_id": "CVE-2026-48261",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06545,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-79",
      "title": "Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48261"
    },
    {
      "rank": 899,
      "cve_id": "CVE-2026-48262",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06544,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-79",
      "title": "Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48262"
    },
    {
      "rank": 900,
      "cve_id": "CVE-2026-44770",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06569,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP S/4 HANA (Create Single Payment)",
      "cwe": "CWE-862",
      "title": "Missing Authorization check in SAP S/4 HANA (Create Single Payment)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44770"
    },
    {
      "rank": 901,
      "cve_id": "CVE-2026-24268",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00167,
      "epss_percentile": 0.06411,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT",
      "cwe": "CWE-122",
      "title": "NVIDIA TensorRT contains a vulnerability where an attacker might cause a heap-based buffer overflow. A successful exploit of this vulnerability might lead to code execution.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24268"
    },
    {
      "rank": 902,
      "cve_id": "CVE-2026-48263",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00167,
      "epss_percentile": 0.06431,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-79",
      "title": "Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48263"
    },
    {
      "rank": 903,
      "cve_id": "CVE-2026-48355",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00167,
      "epss_percentile": 0.06427,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Experience Manager as a Cloud Service",
      "cwe": "CWE-79",
      "title": "Adobe Experience Manager | Cross-site Scripting (Stored XSS) (CWE-79)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48355"
    },
    {
      "rank": 904,
      "cve_id": "CVE-2026-48309",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00166,
      "epss_percentile": 0.06325,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Audition",
      "cwe": "CWE-787",
      "title": "Audition | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48309"
    },
    {
      "rank": 905,
      "cve_id": "CVE-2026-48348",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00166,
      "epss_percentile": 0.06315,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Animate 2023",
      "cwe": "CWE-863",
      "title": "Animate | Incorrect Authorization (CWE-863)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48348"
    },
    {
      "rank": 906,
      "cve_id": "CVE-2026-53566",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00166,
      "epss_percentile": 0.06389,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Citrix",
      "product": "Citrix Secure Access Client for Windows",
      "cwe": "CWE-125",
      "title": "Out-of-bounds memory read",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-53566"
    },
    {
      "rank": 907,
      "cve_id": "CVE-2026-11563",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00165,
      "epss_percentile": 0.0617,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Word Count and Social Shares",
      "cwe": null,
      "title": "Word Count and Social Shares <= 1.0 - Subscriber+ Arbitrary File Deletion via Path Traversal",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11563"
    },
    {
      "rank": 908,
      "cve_id": "CVE-2026-44768",
      "cvss_base": 4.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00165,
      "epss_percentile": 0.06162,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP CRM (WebClient UI)",
      "cwe": "CWE-15",
      "title": "Security misconfiguration in SAP CRM (WebClient UI)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44768"
    },
    {
      "rank": 909,
      "cve_id": "CVE-2026-55144",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00164,
      "epss_percentile": 0.06143,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-325",
      "title": "Windows Cryptography API: Next Generation (CNG) Tampering Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55144"
    },
    {
      "rank": 910,
      "cve_id": "CVE-2026-48572",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00164,
      "epss_percentile": 0.06078,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 version 23H2",
      "cwe": "CWE-362",
      "title": "Windows App Package Installer Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48572"
    },
    {
      "rank": 911,
      "cve_id": "CVE-2026-57973",
      "cvss_base": 4.7,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00164,
      "epss_percentile": 0.06068,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows Subsystem for Linux (WSL2)",
      "cwe": "CWE-367",
      "title": "Windows Subsystem for Linux (WSL2) Kernel Tampering Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57973"
    },
    {
      "rank": 912,
      "cve_id": "CVE-2026-15392",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00163,
      "epss_percentile": 0.05968,
      "kev": false,
      "kev_due_at": null,
      "vendor": "HMBRAND",
      "product": "DBD::File",
      "cwe": "CWE-22",
      "title": "DBD::File versions before 1.651 for Perl do not ensure the table file is not a symlink to an untrusted location",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15392"
    },
    {
      "rank": 913,
      "cve_id": "CVE-2026-54429",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00163,
      "epss_percentile": 0.05983,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Siemens",
      "product": "SIMATIC S7-PLCSIM Advanced",
      "cwe": "CWE-770",
      "title": "A vulnerability has been identified in SIMATIC S7-PLCSIM Advanced (All versions). Affected devices do not properly handle high-volume multicast network traffic, which can exhaust available memory resources in the affected application. This could allow an unauthenticated attacker on the local network segment to cause a denial-of-service condition of the affected application. The affected application becomes inaccessible and requires a manual restart; no project data is lost. Successful exploitation requires a specific project configuration to be already active on the targeted instance.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54429"
    },
    {
      "rank": 914,
      "cve_id": "CVE-2026-62656",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00163,
      "epss_percentile": 0.0601,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NETGEAR",
      "product": "RAXE450",
      "cwe": "CWE-20",
      "title": "Post-authenticated command injection vulnerability found in certain NETGEAR RAX models",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62656"
    },
    {
      "rank": 915,
      "cve_id": "CVE-2026-15058",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00162,
      "epss_percentile": 0.05919,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Devolutions",
      "product": "Server",
      "cwe": "CWE-639",
      "title": "Improper authorization in the secure messages deletion endpoint in Devolutions Server 2026.2.11, 2026.1.22 allows an authenticated user to delete another user's messages via a direct object reference to the message identifier.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15058"
    },
    {
      "rank": 916,
      "cve_id": "CVE-2026-48275",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00161,
      "epss_percentile": 0.05839,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Illustrator Desktop 2026",
      "cwe": "CWE-426",
      "title": "Illustrator | Untrusted Search Path (CWE-426)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48275"
    },
    {
      "rank": 917,
      "cve_id": "CVE-2026-48312",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00159,
      "epss_percentile": 0.05544,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Content Credentials Rust SDK",
      "cwe": "CWE-20",
      "title": "CAI Content Credentials | Improper Input Validation (CWE-20)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48312"
    },
    {
      "rank": 918,
      "cve_id": "CVE-2026-0487",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00158,
      "epss_percentile": 0.05446,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAProuter on Microsoft Windows",
      "cwe": "CWE-427",
      "title": "DLL Hijacking vulnerability in SAProuter on Microsoft Windows",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-0487"
    },
    {
      "rank": 919,
      "cve_id": "CVE-2026-15076",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00157,
      "epss_percentile": 0.05382,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Eclipse Foundation",
      "product": "Eclipse Vert.x",
      "cwe": "CWE-346",
      "title": "In versions up to and including 4.5.29 (4.x branch) and 5.1.4 (5.x branch), the WebClientSession component of Eclipse Vert.x Web Client does not validate that the Domain attribute of a Set-Cookie response header matches the originating server's domain, in violation of RFC 6265 section 5.3. An attacker who controls any server that the victim application contacts can inject a cookie scoped to an arbitrary third-party domain; because the session store performs no cross-domain ownership check, it stores and later transmits that cookie to the targeted domain. When the victim application subsequently sends a request to the targeted domain using the same WebClientSession, it presents the attacker-injected cookie, causing the receiving service to process the request under the attacker's account. Sensitive data included in the victim application's requests, such as payment amounts, card details, or other API payloads, may then be accessible to the attacker through their own account on that service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15076"
    },
    {
      "rank": 920,
      "cve_id": "CVE-2026-48353",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00155,
      "epss_percentile": 0.05141,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Content Credentials Rust SDK",
      "cwe": "CWE-20",
      "title": "CAI Content Credentials | Improper Input Validation (CWE-20)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48353"
    },
    {
      "rank": 921,
      "cve_id": "CVE-2026-50321",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00154,
      "epss_percentile": 0.05061,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Windows USB Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50321"
    },
    {
      "rank": 922,
      "cve_id": "CVE-2026-50440",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00154,
      "epss_percentile": 0.05061,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Audio Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50440"
    },
    {
      "rank": 923,
      "cve_id": "CVE-2026-54107",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00154,
      "epss_percentile": 0.05061,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Windows Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54107"
    },
    {
      "rank": 924,
      "cve_id": "CVE-2026-54991",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00154,
      "epss_percentile": 0.0506,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows USB Print Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54991"
    },
    {
      "rank": 925,
      "cve_id": "CVE-2026-48296",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00154,
      "epss_percentile": 0.05071,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Content Credentials Rust SDK",
      "cwe": "CWE-191",
      "title": "CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48296"
    },
    {
      "rank": 926,
      "cve_id": "CVE-2026-48302",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00154,
      "epss_percentile": 0.0507,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Content Credentials Rust SDK",
      "cwe": "CWE-20",
      "title": "CAI Content Credentials | Improper Input Validation (CWE-20)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48302"
    },
    {
      "rank": 927,
      "cve_id": "CVE-2026-44800",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.0496,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 version 23H2",
      "cwe": "CWE-362",
      "title": "Windows Push Notifications Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44800"
    },
    {
      "rank": 928,
      "cve_id": "CVE-2026-49808",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04975,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Kernel Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49808"
    },
    {
      "rank": 929,
      "cve_id": "CVE-2026-49183",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04956,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-362",
      "title": "Windows Clipboard Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49183"
    },
    {
      "rank": 930,
      "cve_id": "CVE-2026-49784",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04958,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Microsoft Windows App Store Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49784"
    },
    {
      "rank": 931,
      "cve_id": "CVE-2026-49802",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04958,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows USB Print Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49802"
    },
    {
      "rank": 932,
      "cve_id": "CVE-2026-49803",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04959,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Windows AppX Deployment Extensions Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49803"
    },
    {
      "rank": 933,
      "cve_id": "CVE-2026-49806",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04959,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows USB Print Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49806"
    },
    {
      "rank": 934,
      "cve_id": "CVE-2026-50356",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04961,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Microsoft Windows App Store Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50356"
    },
    {
      "rank": 935,
      "cve_id": "CVE-2026-50384",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.0496,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-362",
      "title": "Windows Clip Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50384"
    },
    {
      "rank": 936,
      "cve_id": "CVE-2026-50403",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.0496,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Runtime Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50403"
    },
    {
      "rank": 937,
      "cve_id": "CVE-2026-50404",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04959,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows Media Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50404"
    },
    {
      "rank": 938,
      "cve_id": "CVE-2026-50450",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04961,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-362",
      "title": "Windows Network Connections Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50450"
    },
    {
      "rank": 939,
      "cve_id": "CVE-2026-50669",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04957,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1607",
      "cwe": "CWE-362",
      "title": "Windows Telephony Server Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50669"
    },
    {
      "rank": 940,
      "cve_id": "CVE-2026-50672",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04957,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows NTFS Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50672"
    },
    {
      "rank": 941,
      "cve_id": "CVE-2026-54111",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04958,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Universal Print Management Service Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54111"
    },
    {
      "rank": 942,
      "cve_id": "CVE-2026-54112",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04959,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-362",
      "title": "Windows Win32k Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54112"
    },
    {
      "rank": 943,
      "cve_id": "CVE-2026-54996",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00153,
      "epss_percentile": 0.04961,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 11 Version 24H2",
      "cwe": "CWE-362",
      "title": "Windows USB Print Driver Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54996"
    },
    {
      "rank": 944,
      "cve_id": "CVE-2026-48298",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00153,
      "epss_percentile": 0.05007,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Content Credentials Rust SDK",
      "cwe": "CWE-191",
      "title": "CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48298"
    },
    {
      "rank": 945,
      "cve_id": "CVE-2026-48354",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00153,
      "epss_percentile": 0.05006,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Content Credentials Rust SDK",
      "cwe": "CWE-190",
      "title": "CAI Content Credentials | Integer Overflow or Wraparound (CWE-190)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48354"
    },
    {
      "rank": 946,
      "cve_id": "CVE-2026-48357",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00153,
      "epss_percentile": 0.05006,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Content Credentials Rust SDK",
      "cwe": "CWE-400",
      "title": "CAI Content Credentials | Uncontrolled Resource Consumption (CWE-400)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48357"
    },
    {
      "rank": 947,
      "cve_id": "CVE-2026-21840",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00153,
      "epss_percentile": 0.04964,
      "kev": false,
      "kev_due_at": null,
      "vendor": "HCLSoftware",
      "product": "HCL BigFix Platform",
      "cwe": "CWE-208",
      "title": "HCL BigFix Platform is affected by a user enumeration vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21840"
    },
    {
      "rank": 948,
      "cve_id": "CVE-2026-53565",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00152,
      "epss_percentile": 0.04919,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Citrix",
      "product": "Secure Access Client for Windows",
      "cwe": "CWE-269",
      "title": "Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-53565"
    },
    {
      "rank": 949,
      "cve_id": "CVE-2026-42049",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00151,
      "epss_percentile": 0.04824,
      "kev": false,
      "kev_due_at": null,
      "vendor": "skylot",
      "product": "jadx",
      "cwe": "CWE-94",
      "title": "jadx: RCE Via Groovy Code Injection in Gradle Export",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-42049"
    },
    {
      "rank": 950,
      "cve_id": "CVE-2026-24238",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00151,
      "epss_percentile": 0.04803,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT",
      "cwe": "CWE-129",
      "title": "NVIDIA TensorRT for contains a vulnerability where an attacker might cause an improper validation of array index. A successful exploit of this vulnerability might lead to code execution.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24238"
    },
    {
      "rank": 951,
      "cve_id": "CVE-2026-24272",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00151,
      "epss_percentile": 0.04804,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT",
      "cwe": "CWE-122",
      "title": "NVIDIA TensorRT contains a vulnerability where an attacker might cause an overflow to a heap-based buffer. A successful exploit of this vulnerability might lead to code execution.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24272"
    },
    {
      "rank": 952,
      "cve_id": "CVE-2026-48341",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00149,
      "epss_percentile": 0.04628,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Bridge",
      "cwe": "CWE-787",
      "title": "Bridge | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48341"
    },
    {
      "rank": 953,
      "cve_id": "CVE-2026-48366",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00149,
      "epss_percentile": 0.04627,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Media Encoder",
      "cwe": "CWE-787",
      "title": "Media Encoder | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48366"
    },
    {
      "rank": 954,
      "cve_id": "CVE-2026-48367",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00149,
      "epss_percentile": 0.04627,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "After Effects",
      "cwe": "CWE-787",
      "title": "After Effects | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48367"
    },
    {
      "rank": 955,
      "cve_id": "CVE-2026-48274",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00148,
      "epss_percentile": 0.04571,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "After Effects",
      "cwe": "CWE-787",
      "title": "After Effects | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48274"
    },
    {
      "rank": 956,
      "cve_id": "CVE-2026-48311",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00148,
      "epss_percentile": 0.0457,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Bridge",
      "cwe": "CWE-787",
      "title": "Bridge | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48311"
    },
    {
      "rank": 957,
      "cve_id": "CVE-2026-48343",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00148,
      "epss_percentile": 0.0457,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Bridge",
      "cwe": "CWE-787",
      "title": "Bridge | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48343"
    },
    {
      "rank": 958,
      "cve_id": "CVE-2026-48369",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00148,
      "epss_percentile": 0.04572,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Premiere",
      "cwe": "CWE-787",
      "title": "Premiere Pro | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48369"
    },
    {
      "rank": 959,
      "cve_id": "CVE-2026-48370",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00148,
      "epss_percentile": 0.04571,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Media Encoder",
      "cwe": "CWE-787",
      "title": "Media Encoder | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48370"
    },
    {
      "rank": 960,
      "cve_id": "CVE-2026-58526",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00148,
      "epss_percentile": 0.04532,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Microsoft",
      "product": "Windows 10 Version 1809",
      "cwe": "CWE-416",
      "title": "Windows Storage Elevation of Privilege Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-58526"
    },
    {
      "rank": 961,
      "cve_id": "CVE-2026-59841",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00147,
      "epss_percentile": 0.04476,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fortinet",
      "product": "FortiSIEMWindowsAgent",
      "cwe": "CWE-923",
      "title": "A improper restriction of communication channel to intended endpoints vulnerability in Fortinet FortiSIEMWindowsAgent 7.4.0 through 7.4.1 may allow attacker to escalation of privilege via <insert attack vector here>",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59841"
    },
    {
      "rank": 962,
      "cve_id": "CVE-2026-48308",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00146,
      "epss_percentile": 0.0437,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Premiere",
      "cwe": "CWE-20",
      "title": "Premiere Pro | Improper Input Validation (CWE-20)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48308"
    },
    {
      "rank": 963,
      "cve_id": "CVE-2026-7494",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00146,
      "epss_percentile": 0.04342,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sonatype",
      "product": "Nexus Repository",
      "cwe": "CWE-918",
      "title": "Nexus Repository - SSRF in SSL Certificate Retrieval",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-7494"
    },
    {
      "rank": 964,
      "cve_id": "CVE-2026-52839",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00146,
      "epss_percentile": 0.0434,
      "kev": false,
      "kev_due_at": null,
      "vendor": "alextselegidis",
      "product": "easyappointments",
      "cwe": "CWE-639",
      "title": "Easy!Appointments appointments/store and appointments/update allow cross-provider appointment injection — Authorization Bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-52839"
    },
    {
      "rank": 965,
      "cve_id": "CVE-2026-15075",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00144,
      "epss_percentile": 0.04189,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Eclipse Foundation",
      "product": "Eclipse Vert.x",
      "cwe": "CWE-200",
      "title": "In Eclipse Vert.x versions up to and including 4.5.29 (4.x branch) and 5.1.4 (5.x branch), DefaultRedirectHandler (vertx-core) propagates all request headers as-is across cross-origin HTTP 30x redirects. Only Content-Length is stripped; no origin comparison (scheme, host, port) is performed before copying headers to the redirect target. As a result, credential headers, including Authorization, Cookie, Proxy-Authorization, and arbitrary custom headers such as X-API-Token, are forwarded to the redirect destination without the caller's knowledge. An attacker who can cause a Vert.x HttpClient to issue a request that is redirected to an attacker-controlled host (for example, by supplying a URL to a webhook dispatcher, image proxy, or microservice URL fetcher) can capture bearer tokens, basic-auth credentials, session cookies, and API keys attached to the original request.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15075"
    },
    {
      "rank": 966,
      "cve_id": "CVE-2026-48815",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00143,
      "epss_percentile": 0.04074,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sigstore",
      "product": "sigstore-js",
      "cwe": "CWE-347",
      "title": "sigstore-js: `certificateOIDs` verification constraints are silently dropped and never enforced",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48815"
    },
    {
      "rank": 967,
      "cve_id": "CVE-2026-44760",
      "cvss_base": 4.7,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00142,
      "epss_percentile": 0.04019,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP NetWeaver Application Server ABAP (applications based on Business Server Pages)",
      "cwe": "CWE-79",
      "title": "Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server ABAP (applications based on Business Server Pages)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44760"
    },
    {
      "rank": 968,
      "cve_id": "CVE-2026-9636",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.0014,
      "epss_percentile": 0.0382,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "ControlLogix® 5580, CompactLogix® 5380, GuardLogix® 5580, Compact GuardLogix® 5380, 1756-EN4TR",
      "cwe": "CWE-299",
      "title": "Rockwell Automation CompactLogix® 5380 ControlLogix® 5580 / 1756-EN4 Communications Module – Certificate Revocation List Vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9636"
    },
    {
      "rank": 969,
      "cve_id": "CVE-2026-15621",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0014,
      "epss_percentile": 0.03838,
      "kev": false,
      "kev_due_at": null,
      "vendor": "mosaxiv",
      "product": "clawlet",
      "cwe": "CWE-59",
      "title": "mosaxiv clawlet File Tools fs_ops.go edit_file link following",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15621"
    },
    {
      "rank": 970,
      "cve_id": "CVE-2026-15749",
      "cvss_base": 1.9,
      "cvss_severity": "LOW",
      "epss_score": 0.0014,
      "epss_percentile": 0.03802,
      "kev": false,
      "kev_due_at": null,
      "vendor": "mastergo-design",
      "product": "mastergo-magic-mcp",
      "cwe": "CWE-22",
      "title": "mastergo-design mastergo-magic-mcp mcp__C2d get-c2d.ts execute path traversal",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15749"
    },
    {
      "rank": 971,
      "cve_id": "CVE-2026-15751",
      "cvss_base": 1.9,
      "cvss_severity": "LOW",
      "epss_score": 0.0014,
      "epss_percentile": 0.03838,
      "kev": false,
      "kev_due_at": null,
      "vendor": "mastergo-design",
      "product": "mastergo-magic-mcp",
      "cwe": "CWE-22",
      "title": "mastergo-design mastergo-magic-mcp mcp__getComponentGenerator component-workflow.md execute path traversal",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15751"
    },
    {
      "rank": 972,
      "cve_id": "CVE-2026-48287",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00139,
      "epss_percentile": 0.0373,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Content Credentials Rust SDK",
      "cwe": "CWE-426",
      "title": "CAI Content Credentials | Untrusted Search Path (CWE-426)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48287"
    },
    {
      "rank": 973,
      "cve_id": "CVE-2026-48335",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00138,
      "epss_percentile": 0.03688,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Illustrator Desktop 2026",
      "cwe": "CWE-787",
      "title": "Illustrator | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48335"
    },
    {
      "rank": 974,
      "cve_id": "CVE-2026-48336",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00138,
      "epss_percentile": 0.03689,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Illustrator Desktop 2026",
      "cwe": "CWE-787",
      "title": "Illustrator | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48336"
    },
    {
      "rank": 975,
      "cve_id": "CVE-2026-48337",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00138,
      "epss_percentile": 0.03687,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Illustrator Desktop 2026",
      "cwe": "CWE-787",
      "title": "Illustrator | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48337"
    },
    {
      "rank": 976,
      "cve_id": "CVE-2026-24259",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00138,
      "epss_percentile": 0.03698,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT-LLM",
      "cwe": "CWE-306",
      "title": "NVIDIA TensorRT-LLM for Linux contains a vulnerability where an attacker could cause missing authentication for a critical function. A successful exploit of this vulnerability might lead to code execution, data tampering, and information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24259"
    },
    {
      "rank": 977,
      "cve_id": "CVE-2026-48272",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00136,
      "epss_percentile": 0.03518,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Creative Cloud Desktop",
      "cwe": "CWE-427",
      "title": "Creative Cloud Desktop | Uncontrolled Search Path Element (CWE-427)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48272"
    },
    {
      "rank": 978,
      "cve_id": "CVE-2026-54684",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00133,
      "epss_percentile": 0.03311,
      "kev": false,
      "kev_due_at": null,
      "vendor": "skylot",
      "product": "jadx",
      "cwe": "CWE-22",
      "title": "jadx: XAPK archive entries with absolute paths can plant drop-in plugins and achieve code execution on the next jadx run",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54684"
    },
    {
      "rank": 979,
      "cve_id": "CVE-2025-15665",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00133,
      "epss_percentile": 0.03274,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Ultimate Before After Image Slider & Gallery",
      "cwe": null,
      "title": "BEAF < 4.7.1 - Admin+ Stored XSS via Widget Shortcode Field",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-15665"
    },
    {
      "rank": 980,
      "cve_id": "CVE-2026-47473",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00129,
      "epss_percentile": 0.02961,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT-LLM",
      "cwe": "CWE-123",
      "title": "NVIDIA TensorRT-LLM contains a vulnerability where an attacker could cause a write-what-where condition. A successful exploit of this vulnerability might lead to data tampering, denial of service, and information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47473"
    },
    {
      "rank": 981,
      "cve_id": "CVE-2026-59674",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00129,
      "epss_percentile": 0.03035,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SUSE",
      "product": "openSUSE Tumbleweed",
      "cwe": "CWE-61",
      "title": "LPE from suricata user to root due to chown in %post in suricata packaging",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59674"
    },
    {
      "rank": 982,
      "cve_id": "CVE-2026-52841",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00129,
      "epss_percentile": 0.02976,
      "kev": false,
      "kev_due_at": null,
      "vendor": "alextselegidis",
      "product": "easyappointments",
      "cwe": "CWE-639",
      "title": "Easy!Appointments: Authorization bypass in Google OAuth provider binding lets any backend user rebind a peer provider's Google sync",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-52841"
    },
    {
      "rank": 983,
      "cve_id": "CVE-2026-59836",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00126,
      "epss_percentile": 0.0269,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fortinet",
      "product": "FortiClientEMS",
      "cwe": "CWE-295",
      "title": "A improper certificate validation vulnerability in Fortinet FortiClientEMS 7.4.3 through 7.4.5, FortiClientEMS 7.4.0 through 7.4.1, FortiClientEMS 7.2 all versions may allow attacker to information disclosure via <insert attack vector here>",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59836"
    },
    {
      "rank": 984,
      "cve_id": "CVE-2026-48816",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00124,
      "epss_percentile": 0.02521,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sigstore",
      "product": "sigstore-js",
      "cwe": "CWE-345",
      "title": "sigstore-js: Insufficient Verification of Data Authenticity",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48816"
    },
    {
      "rank": 985,
      "cve_id": "CVE-2026-24229",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00121,
      "epss_percentile": 0.02296,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT-LLM",
      "cwe": "CWE-306",
      "title": "NVIDIA TensorRT-LLM for Linux contains a vulnerability in the disaggregated orchestrator component, where an attacker could read, write, or delete internal cluster state by sending requests to the FastAPI server. A successful exploit of this vulnerability might lead to information disclosure, data tampering, and denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24229"
    },
    {
      "rank": 986,
      "cve_id": "CVE-2026-10669",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0012,
      "epss_percentile": 0.02176,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zephyrproject",
      "product": "zephyr",
      "cwe": "CWE-190",
      "title": "Xtensa MPU `arch_buffer_validate()` integer-overflow lets a user thread bypass syscall pointer validation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-10669"
    },
    {
      "rank": 987,
      "cve_id": "CVE-2026-4017",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.0012,
      "epss_percentile": 0.02131,
      "kev": false,
      "kev_due_at": null,
      "vendor": "BlackBerry Ltd",
      "product": "QNX Software Development Platform",
      "cwe": "CWE-121",
      "title": "Buffer overflow in the QNX Neutrino kernel impacts versions of the QNX Software Development Platform and QNX OS for Safety",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-4017"
    },
    {
      "rank": 988,
      "cve_id": "CVE-2026-24271",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0012,
      "epss_percentile": 0.02171,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT-LLM",
      "cwe": "CWE-770",
      "title": "NVIDIA TensorRT-LLM contains a vulnerability in the OpenAI-compatible inference API, where an attacker could cause allocation of GPU resources without limits or throttling. A successful exploit of this vulnerability might lead to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24271"
    },
    {
      "rank": 989,
      "cve_id": "CVE-2026-47470",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0012,
      "epss_percentile": 0.02172,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT-LLM",
      "cwe": "CWE-20",
      "title": "NVIDIA TensorRT-LLM for any platform contains a vulnerability in the gRPC server chat API endpoint, where an attacker could cause CWE-20 by local attack. A successful exploit of this vulnerability might lead to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47470"
    },
    {
      "rank": 990,
      "cve_id": "CVE-2026-47475",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0012,
      "epss_percentile": 0.02171,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT-LLM",
      "cwe": "CWE-617",
      "title": "NVIDIA TensorRT-LLM contains a vulnerability in the OpenAI-compatible inference API where an attacker could trigger a reachable assertion in the sampler thread. A successful exploit of this vulnerability might lead to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47475"
    },
    {
      "rank": 991,
      "cve_id": "CVE-2026-24226",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00119,
      "epss_percentile": 0.021,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT-LLM",
      "cwe": "CWE-829",
      "title": "NVIDIA TensorRT-LLM for Linux contains a vulnerability where an attacker could cause improper control of code generation. A successful exploit of this vulnerability might lead to code execution, data tampering, and information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24226"
    },
    {
      "rank": 992,
      "cve_id": "CVE-2026-15642",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00115,
      "epss_percentile": 0.01805,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Devolutions",
      "product": "Server",
      "cwe": "CWE-200",
      "title": "Insertion of sensitive information into a file in the Recovery Kit response file generation feature in Devolutions Server 2026.1.22.0, 2026.2.11.0 allows an attacker with access to the generated response file to obtain the Azure Key Vault client secret in cleartext, even when the option to exclude sensitive data is selected.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15642"
    },
    {
      "rank": 993,
      "cve_id": "CVE-2026-10714",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00113,
      "epss_percentile": 0.01676,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "FactoryTalk® Services Platform",
      "cwe": "CWE-1390",
      "title": "Rockwell Automation FactoryTalk® Services Platform FTSP - Weak Authentication via JWT Validation Bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-10714"
    },
    {
      "rank": 994,
      "cve_id": "CVE-2026-24234",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00113,
      "epss_percentile": 0.01652,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "TensorRT-LLM",
      "cwe": "CWE-918",
      "title": "NVIDIA TensorRT-LLM for Linux contains a vulnerability in the multimodal media fetching functions, where a network-accessible attacker could cause server-side request forgery. A successful exploit of this vulnerability might lead to denial of service and information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24234"
    },
    {
      "rank": 995,
      "cve_id": "CVE-2025-40945",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00112,
      "epss_percentile": 0.01556,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Siemens",
      "product": "COMOS V10.4.5",
      "cwe": "CWE-426",
      "title": "A vulnerability has been identified in COMOS V10.4.5 (All versions < V10.4.5.0.2), COMOS V10.6 (All versions < V10.6.1), Designcenter NX (All versions < V2512.7000), Simcenter 3D (All versions < V2512.7000), Simcenter Femap V2506 (All versions < V2506.0003), Simcenter Femap V2512 (All versions < V2512.0002), Simcenter Nastran (All versions < V2606), Simcenter STAR-CCM+ (All versions < V2606), Solid Edge SE2025 (All versions < V225.0 Update 13), Solid Edge SE2026 (All versions < V226.0 Update 04), Teamcenter Visualization V2412 (All versions < V2412.0012), Teamcenter Visualization V2506 (All versions < V2506.0009), Teamcenter Visualization V2512 (All versions < V2512.2605), Tecnomatix Plant Simulation V2404 (All versions < V2404.0022), Tecnomatix Plant Simulation V2504 (All versions < V2504.0010), Tecnomatix Process Simulate (All versions < V2606). Untrusted search path in IAM Client SDK may allow an authenticated user to potentially enable escalation of privilege via local access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-40945"
    },
    {
      "rank": 996,
      "cve_id": "CVE-2026-0515",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00112,
      "epss_percentile": 0.01577,
      "kev": false,
      "kev_due_at": null,
      "vendor": "BlackBerry Ltd",
      "product": "QNX Software Development Platform",
      "cwe": "CWE-233",
      "title": "Insufficient parameter validation in the QNX Neutrino kernel impacts versions of the QNX Software Development Platform and QNX OS for Safety",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-0515"
    },
    {
      "rank": 997,
      "cve_id": "CVE-2026-9127",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.0011,
      "epss_percentile": 0.01474,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "Studio 5000 Logix Designer",
      "cwe": "CWE-863",
      "title": "Studio 5000 Logix Designer® – Multiple Vulnerabilities",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9127"
    },
    {
      "rank": 998,
      "cve_id": "CVE-2026-6851",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00109,
      "epss_percentile": 0.01398,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Bitdefender",
      "product": "Total Security",
      "cwe": "CWE-59",
      "title": "Improper link resolution before file access in Bitdefender Total Security via Link Following (VA-13681)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6851"
    },
    {
      "rank": 999,
      "cve_id": "CVE-2026-9108",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00109,
      "epss_percentile": 0.01427,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "Studio 5000 Logix Designer",
      "cwe": "CWE-22",
      "title": "Studio 5000 Logix Designer® – Multiple Vulnerabilities",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9108"
    },
    {
      "rank": 1000,
      "cve_id": "CVE-2026-10671",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00108,
      "epss_percentile": 0.01386,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zephyrproject",
      "product": "zephyr",
      "cwe": "CWE-1188",
      "title": "User thread can re-initialize an in-use `k_pipe`, corrupting kernel wait queues (`CONFIG_USERSPACE`)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-10671"
    },
    {
      "rank": 1001,
      "cve_id": "CVE-2026-10670",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00105,
      "epss_percentile": 0.01236,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zephyrproject",
      "product": "zephyr",
      "cwe": "CWE-476",
      "title": "User-triggerable kernel NULL-pointer dereference (DoS) in `k_thread_name_copy()` syscall verifier",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-10670"
    },
    {
      "rank": 1002,
      "cve_id": "CVE-2026-62657",
      "cvss_base": 4.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00105,
      "epss_percentile": 0.01217,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NETGEAR",
      "product": "MR70",
      "cwe": "CWE-599",
      "title": "Certificate validation vulnerability in NETGEAR Gaming Router and certain Nighthawk models",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62657"
    },
    {
      "rank": 1003,
      "cve_id": "CVE-2026-48344",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00104,
      "epss_percentile": 0.01166,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Creative Cloud Desktop",
      "cwe": "CWE-367",
      "title": "GoCart | Time-of-check Time-of-use (TOCTOU) Race Condition (CWE-367)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48344"
    },
    {
      "rank": 1004,
      "cve_id": "CVE-2026-9128",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00096,
      "epss_percentile": 0.00829,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rockwell Automation",
      "product": "Studio 5000 Logix Designer",
      "cwe": "CWE-428",
      "title": "Studio 5000 Logix Designer® – Multiple Vulnerabilities",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-9128"
    },
    {
      "rank": 1005,
      "cve_id": "CVE-2026-5040",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00093,
      "epss_percentile": 0.00641,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TP-Link Systems Inc.",
      "product": "Deco M5 Deco M5 V1",
      "cwe": "CWE-916",
      "title": "Weak Password Hashing Mechanism in TP-Link Deco M5",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-5040"
    },
    {
      "rank": 1006,
      "cve_id": "CVE-2026-4018",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00092,
      "epss_percentile": 0.00593,
      "kev": false,
      "kev_due_at": null,
      "vendor": "BlackBerry Ltd",
      "product": "QNX Software Development Platform",
      "cwe": "CWE-367",
      "title": "TOCTOU race condition in the QNX Neutrino kernel impacts versions of the QNX Software Development Platform and QNX OS for Safety",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-4018"
    },
    {
      "rank": 1007,
      "cve_id": "CVE-2025-8412",
      "cvss_base": 2,
      "cvss_severity": "LOW",
      "epss_score": 0.0009,
      "epss_percentile": 0.0052,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SUSE",
      "product": "Virtual Machine Driver Pack",
      "cwe": "CWE-120",
      "title": "VMDP: Potential buffer overflow in the RtlQueryRegistryValues function",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-8412"
    }
  ],
  "transactions": [
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2025-56361",
      "detail": "EXPLOIT PUBLISHED — CVE-2025-56361. Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2025-56362",
      "detail": "EXPLOIT PUBLISHED — CVE-2025-56362. Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2025-56363",
      "detail": "EXPLOIT PUBLISHED — CVE-2025-56363. Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2025-56365",
      "detail": "EXPLOIT PUBLISHED — CVE-2025-56365. Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-10051",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-10051 (Eclipse Foundation Eclipse Jetty). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-10669",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-10669 (zephyrproject zephyr). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-10670",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-10670 (zephyrproject zephyr). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-10671",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-10671 (zephyrproject zephyr). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-10672",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-10672 (zephyrproject zephyr). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-11944",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-11944 (OS4ED openSIS-Classic). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-12482",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-12482 (keras-team/keras). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42447",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42447 (skylot jadx). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-47423",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-47423 (cure53 DOMPurify). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-47429",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-47429 (vitest-dev vitest). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-48125",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-48125 (faisalman ua-parser-js). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-48801",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-48801 (markdown-it linkify-it). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-49458",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-49458 (cure53 DOMPurify). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-49459",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-49459 (cure53 DOMPurify). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-49476",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-49476 (facelessuser soupsieve). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-49477",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-49477 (facelessuser soupsieve). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-49978",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-49978 (cure53 DOMPurify). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-50130",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-50130 (pi-hole). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-50475",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-50475 (Microsoft Windows 10 Version 1607). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-54058",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-54058 (python-pillow Pillow). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-54572",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-54572 (rclone). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-58613",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-58613 (Microsoft Windows 10 Version 1809). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-59197",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-59197 (python-pillow Pillow). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-59198",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-59198 (python-pillow Pillow). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-59199",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-59199 (python-pillow Pillow). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-59200",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-59200 (python-pillow Pillow). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-59203",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-59203 (python-pillow Pillow). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-59204",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-59204 (python-pillow Pillow). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-59205",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-59205 (python-pillow Pillow). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-59732",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-59732 (rclone). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-59733",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-59733 (rclone). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-8384",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-8384 (Eclipse Foundation Eclipse Jetty). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-9561",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-9561 (Eclipse Foundation Eclipse Kura). Public exploit reference added."
    },
    {
      "type": "DUE_DATE_PASSED",
      "cve_id": "CVE-2026-48939",
      "detail": "DUE DATE PASSED — CVE-2026-48939 (icagenda.com iCagenda extension for Joomla). CISA remediation deadline was July 13, 2026; still in catalog."
    },
    {
      "type": "DUE_DATE_PASSED",
      "cve_id": "CVE-2026-56291",
      "detail": "DUE DATE PASSED — CVE-2026-56291 (balbooa.com Balbooa Forms extension for Joomla). CISA remediation deadline was July 13, 2026; still in catalog."
    }
  ],
  "attribution": "CVE Program, NVD (NIST), CISA KEV, FIRST EPSS, OSV. See /security/methodology/."
}
