boxscore/security

A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?

Thursday, July 16, 2026 · all times UTC← 2026-07-15 · archive · 2026-07-17 →

Security Box Score — July 16, 2026

247 CVEs published, led by Microsoft (20).

247 CVEs published July 16, 2026: 38 critical, 96 high, 101 medium, 12 low; 1 in the KEV catalog at press time; 23 with a public exploit reference; 0 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 222 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published431916722——
KEV catalog size1675

Publication counts reflect the record since May 20, 2026 (archive start); KEV figures are catalog-wide.

Prior-year comparisons begin when the archive covers a full year; archive begins May 20, 2026.

738 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux41152112186753211120.17.5.0014-55 ▼
microsoft64414019697431714286231.67.8.0047+436 ▲
google941359150616555387760.47.8.0024-536 ▼
red hat562781411413218200.06.5.0032-6 ▼
apple01042287228876.76.5.0032-14 ▼
canonical42436105000.05.5.0013+4 ▲
suse82141241000.08.5.0039+6 ▲
freebsd01601240000.07.8.00160
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco1537818110561129.77.5.0057+11 ▲
ubiquiti2536142110338.38.8.0049+20 ▲
palo alto networks1425131471328.04.7.0028+5 ▲
netgear62300221000.04.6.0024-11 ▼
fortinet13226610028522.77.3.0039+11 ▲
f58165830416.38.6.0057+8 ▲
ivanti211452025545.58.8.3445-2 ▼
checkpoint0915303111.17.5.0410-3 ▼
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache76231478983113310.47.5.0058+9 ▲
mozilla6621218320900.06.5.0026-43 ▼
drupal465165355412.05.9.0026+46 ▲
gitlab73805276425.34.7.0032-4 ▼
github171150000.06.0.0039+1 ▲
docker070520000.08.2.0016-2 ▼
wordpress00000020———0
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle12711331161842731.18.8.0040-241 ▼
adobe932372610210541931.37.5.0026-36 ▼
ibm21263842460600.07.5.0034-9 ▼
progress101931420600.07.5.0037+5 ▲
solarwinds07232010457.17.5.4001-3 ▼
veeam042200100.09.0.0052-1 ▼
zohocorp031110000.08.4.01700
servicenow111000200.09.5.7758+1 ▲
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
rockwell automation172441820000.08.7.0029+10 ▲
synology02325133000.05.6.0025-5 ▼
siemens7161870000.07.6.00240
d-link1130535300.06.0.0059-8 ▼
abb060420000.07.2.0018-5 ▼
schneider electric060420000.07.8.0042-1 ▼
moxa050320000.07.0.0029-5 ▼
dahua030111000.06.9.0036-3 ▼
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
sourcecodester37108005652000.05.5.0032+1 ▲
dell3793542433211.17.0.0021+24 ▲
capgo2283242381000.07.1.0037+20 ▲
openclaw16830482510000.07.2.0024-45 ▼
nvidia40791252150000.07.8.0037+34 ▲
imagemagick3273155512000.05.3.0019+4 ▲
spring073231391000.06.5.0024-71 ▼
itsourcecode1265001946000.02.1.0033-10 ▼

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-20253.969499.99.8
CVE-2026-20230.882099.88.6
CVE-2026-34910.874799.710.0
CVE-2026-34908.851999.710.0
CVE-2026-50522.846199.79.8
CVE-2026-15409.836699.710.0
CVE-2026-6875.775899.59.5
CVE-2026-25089.761199.59.8
CVE-2026-45659.760899.58.8
CVE-2026-34909.639099.210.0
Highest CVSS
CVECVSSEPSSNote
CVE-2026-3491010.0.8747KEV
CVE-2026-3490810.0.8519KEV
CVE-2026-1540910.0.8366KEV
CVE-2026-3490910.0.6390KEV
CVE-2026-4828210.0.4239KEV
CVE-2026-5629010.0.3038KEV
CVE-2026-4893910.0.1973KEV
CVE-2026-4890810.0.1482KEV
CVE-2026-5629110.0.1459KEV
CVE-2026-5972610.0.0688
Most disclosures (vendor)
VendorCVEs
microsoft657
google554
linux458
apache130
red hat122
adobe106
capgo81
ibm66
dell62
picklescan50
Most KEV additions (YTD)
VendorKEV
microsoft23
cisco11
apple7
google6
fortinet5
ivanti5
solarwinds4
adobe3
berriai3
oracle3
Most-affected ecosystems
EcosystemAdvisories
Maven61
PyPI5
npm5
NuGet3
Packagist1
Fastest to KEV
CVEVendorDays
CVE-2026-12569PTC0
CVE-2026-15409SonicWall0
CVE-2026-15410SonicWall0
CVE-2026-20230Cisco0
CVE-2026-20253Splunk0
CVE-2026-25089Fortinet0
CVE-2026-34908Ubiquiti Inc0
CVE-2026-34909Ubiquiti Inc0
CVE-2026-34910Ubiquiti Inc0
CVE-2026-45659Microsoft0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104n/a2021-11-171702
CVE-2021-27102n/a2021-11-171702
CVE-2021-27101n/a2021-11-171702
CVE-2021-27103n/a2021-11-171702
CVE-2021-21017Adobe2021-11-171702
CVE-2021-28550Adobe2021-11-171702
CVE-2021-42013Apache Software Foundation2021-11-171702
CVE-2021-41773Apache Software Foundation2021-11-171702
CVE-2021-30858Apple2021-11-171702
CVE-2021-30860Apple2021-11-171702

Transactions

EXPLOIT PUBLISHED — yamcs: 6 CVEs (CVE-2026-44595, CVE-2026-44596, CVE-2026-44632, CVE-2026-46562, CVE-2026-46621, CVE-2026-55548). Public exploit references added.

EXPLOIT PUBLISHED — wazuh: 5 CVEs (CVE-2026-33434, CVE-2026-33754, CVE-2026-34150, CVE-2026-39359, CVE-2026-40106). Public exploit references added.

EXPLOIT PUBLISHED — coredns: 3 CVEs (CVE-2026-62299, CVE-2026-62309, CVE-2026-62994). Public exploit references added.

EXPLOIT PUBLISHED — dbt-labs dbt-mcp: 3 CVEs (CVE-2026-44968, CVE-2026-44969, CVE-2026-44970). Public exploit references added.

EXPLOIT PUBLISHED — jupyter-server enterprise_gateway: 3 CVEs (CVE-2026-44180, CVE-2026-44181, CVE-2026-44182). Public exploit references added.

EXPLOIT PUBLISHED — CVE-2026-46338 (facelessuser pymdown-extensions). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-54526 (argoproj argo-workflows). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-62290 (cert-manager). Public exploit reference added.

Yesterday's Results

How to read these box scores · glossary

247 CVEs published. 25 box scores, 222 table rows — nothing truncated.

Fortinet FortiSandbox
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .7611   99.5   YES
AFFECTED
  Product             Versions  Fixed
  FortiSandbox        5.0.0 –   —
  FortiSandbox Cloud  5.0.4 –   —
  FortiSandbox PaaS   5.0.4 –   —
TIMELINE
  Jan 29  Reserved by CNA
  Jul 16  Added to CISA KEV, due Jul 19
  Jul 16  Published (CNA: fortinet)
CWE-78 · CNA: fortinet · CVSS v3.1 · 2 references · NVD status: Analyzed · KEV due July 19, 2026
microsoft kiota — Kiota: Command injection via x-ms-kiota-info dependencyInstallCommand surfaced by `kiota info`
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0436   90.5     —
AFFECTED
  Product  Versions               Fixed
  kiota    >= 1.30.0, < 1.31.1 –  —
TIMELINE
  Jul 7   Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-94, CWE-829 · CNA: GitHub_M · CVSS v4.0 · 4 references · NVD status: Deferred
WWBN AVideo — AVideo incomplete fix for CVE-2026-33482: sanitizeFFmpegCommand still allows a single '&' (background operator), giving OS command execution at the same execAsync sh -c sink
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   N   N  U  H  H  H    8.1   .0343   88.0     —
AFFECTED
  Product  Versions   Fixed
  AVideo   <= 29.0 –  —
TIMELINE
  Jun 16  Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-78 · CNA: GitHub_M · CVSS v3.1 · 2 references · NVD status: Deferred
WWBN AVideo — AVideo through 29.0 OS Command Injection via listFFmpegProcesses
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   P   N   N   H   H   H    9.2   .0245   83.2     —
AFFECTED
  Product  Versions     Fixed
  AVideo   unspecified  —
TIMELINE
  Jul 16  Reserved by CNA
  Jul 16  Published (CNA: VulnCheck)
CWE-78 · CNA: VulnCheck · CVSS v4.0 · 2 references · NVD status: Deferred
WWBN AVideo — AVideo through 29.0 OS Command Injection via ffmpeg.json.php
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   P   N   N   H   H   H    9.2   .0245   83.2     —
AFFECTED
  Product  Versions     Fixed
  AVideo   unspecified  —
TIMELINE
  Jul 16  Reserved by CNA
  Jul 16  Published (CNA: VulnCheck)
CWE-78 · CNA: VulnCheck · CVSS v4.0 · 2 references · NVD status: Deferred
microsoft kiota — Kiota: Generation-time SSRF + remote/local file inclusion via unrestricted $ref
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  U  H  L  N    7.1   .0239   82.7     —
AFFECTED
  Product  Versions               Fixed
  kiota    >= 1.30.0, < 1.31.1 –  —
TIMELINE
  Jul 7   Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-22, CWE-829, CWE-918 · CNA: GitHub_M · CVSS v3.1 · 4 references · NVD status: Deferred
Yamcs: No Rate Limiting on Authentication Endpoint
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0206   79.9     —
AFFECTED
  Product  Versions    Fixed
  yamcs    < 5.12.7 –  —
TIMELINE
  May 6   Reserved by CNA
  Jul 16  Public exploit reference published
  Jul 16  Published (CNA: GitHub_M)
CWE-307 · CNA: GitHub_M · CVSS v3.1 · 5 references · NVD status: Analyzed
microsoft kiota — Kiota: Code Generation Literal Injection in Kiota Ruby Generator
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0205   79.7     —
AFFECTED
  Product  Versions               Fixed
  kiota    >= 1.30.0, < 1.31.1 –  —
TIMELINE
  Jul 7   Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-94 · CNA: GitHub_M · CVSS v3.1 · 4 references · NVD status: Deferred
Kopia: Unauthenticated RCE via SSH ProxyCommand Injection when --insecure --without-password is used
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0161   74.1     —
AFFECTED
  Product  Versions    Fixed
  kopia    < 0.23.0 –  —
TIMELINE
  May 13  Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-78, CWE-306 · CNA: GitHub_M · CVSS v3.1 · 4 references · NVD status: Deferred
squid-cache squid — Squid: Memory disclosure in FTP gateway
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  N  N    6.5   .0150   72.3     —
AFFECTED
  Product  Versions  Fixed
  squid    < 7.6 –   —
TIMELINE
  May 19  Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-125, CWE-1289 · CNA: GitHub_M · CVSS v3.1 · 5 references · NVD status: Analyzed
microsoft kiota — Kiota: Code Generation Literal Injection in the PHP Generator
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   P   H   H   H    8.7   .0138   70.0     —
AFFECTED
  Product  Versions               Fixed
  kiota    >= 1.30.0, < 1.31.1 –  —
TIMELINE
  Jul 7   Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-94 · CNA: GitHub_M · CVSS v4.0 · 4 references · NVD status: Deferred
microsoft kiota — Kiota: XML Doc-Comment Newline Breakout Code Injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   P   H   H   H    8.7   .0138   70.0     —
AFFECTED
  Product  Versions               Fixed
  kiota    >= 1.30.0, < 1.31.1 –  —
TIMELINE
  Jul 7   Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-94 · CNA: GitHub_M · CVSS v4.0 · 4 references · NVD status: Deferred
microsoft kiota — Kiota: Code Generation Literal Injection in the Python Generator
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0138   69.9     —
AFFECTED
  Product  Versions               Fixed
  kiota    >= 1.30.0, < 1.31.1 –  —
TIMELINE
  Jul 7   Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-94 · CNA: GitHub_M · CVSS v3.1 · 2 references · NVD status: Deferred
microsoft kiota — Kiota: Workspace-config poisoning: out-of-repo file write + generation-time SSRF
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   A   L   H   L    7.0   .0137   69.9     —
AFFECTED
  Product  Versions               Fixed
  kiota    >= 1.30.0, < 1.31.1 –  —
TIMELINE
  Jul 7   Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-22 · CNA: GitHub_M · CVSS v4.0 · 4 references · NVD status: Deferred
squid-cache squid — Squid: Memory corruption in cache_digest reply handling
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  U  N  L  H    5.5   .0136   69.7     —
AFFECTED
  Product  Versions  Fixed
  squid    < 7.6 –   —
TIMELINE
  Jun 2   Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-20, CWE-122 · CNA: GitHub_M · CVSS v3.1 · 4 references · NVD status: Analyzed
microsoft kiota — Kiota: Arbitrary file write + code-injection via x-ms-kiota-info clientClassName and clientNamespaceName
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0135   69.5     —
AFFECTED
  Product  Versions               Fixed
  kiota    >= 1.30.0, < 1.31.1 –  —
TIMELINE
  Jul 7   Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-22, CWE-94 · CNA: GitHub_M · CVSS v4.0 · 4 references · NVD status: Deferred
microsoft kiota — Kiota: Path/URL injection into generated Copilot plugin manifest via x-ai-* extensions
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0133   68.9     —
AFFECTED
  Product  Versions               Fixed
  kiota    >= 1.30.0, < 1.31.1 –  —
TIMELINE
  Jul 7   Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-22, CWE-829 · CNA: GitHub_M · CVSS v4.0 · 4 references · NVD status: Deferred
microsoft prompty — Prompty: Arbitrary File Read via ${file:path} Reference Expansion
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0129   68.0     —
AFFECTED
  Product  Versions          Fixed
  prompty  < 2.0.0-beta.2 –  —
TIMELINE
  Jun 9   Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-22, CWE-200 · CNA: GitHub_M · CVSS v3.1 · 2 references · NVD status: Deferred
Microsoft UFO: COMMAND_RESULTS handler creates unowned sessions, allowing authenticated session-squatting denial of service
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  N  N  H    6.5   .0126   67.3     —
AFFECTED
  Product  Versions   Fixed
  UFO      < 3.0.7 –  —
TIMELINE
  Jun 16  Reserved by CNA
  Jul 16  Published (CNA: GitHub_M)
CWE-400, CWE-862 · CNA: GitHub_M · CVSS v3.1 · 3 references · NVD status: Deferred
Lenovo XClarity Integrator for Microsoft Windows Admin Center — The Lenovo XClarity Integrator for Windows Admin Center plugin version 5.1.1 and below running on the WAC G…
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   L   A   H   H   H    8.8   .0123   66.6     —
AFFECTED
  Product                                                 Versions  Fixed
  XClarity Integrator for Microsoft Windows Admin Center  4.7.1 –   —
TIMELINE
  Jul 1   Reserved by CNA
  Jul 16  Published (CNA: lenovo)
CWE-78 · CNA: lenovo · CVSS v4.0 · 1 reference · NVD status: Awaiting Analysis
Yamcs: Server-Side Code Injection (RCE) via Janino Expression Engine in `JavaExprAlgorithmExecutionFactory`
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  C  H  H  H    9.1   .0112   63.6     —
AFFECTED
  Product  Versions    Fixed
  yamcs    < 5.12.7 –  —
TIMELINE
  May 7   Reserved by CNA
  Jul 16  Public exploit reference published
  Jul 16  Published (CNA: GitHub_M)
CWE-94 · CNA: GitHub_M · CVSS v3.1 · 5 references · NVD status: Analyzed
Yamcs: Authenticated Remote Code Execution (RCE) via Jython Algorithm Code Injection
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  C  H  H  H    9.1   .0112   63.6     —
AFFECTED
  Product  Versions    Fixed
  yamcs    < 5.12.7 –  —
TIMELINE
  May 15  Reserved by CNA
  Jul 16  Public exploit reference published
  Jul 16  Published (CNA: GitHub_M)
CWE-94 · CNA: GitHub_M · CVSS v3.1 · 5 references · NVD status: Analyzed
Yamcs: Unauthorized user enumeration via IAM API endpoints
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  L  N  N    4.3   .0106   61.9     —
AFFECTED
  Product  Versions    Fixed
  yamcs    < 5.12.7 –  —
TIMELINE
  May 6   Reserved by CNA
  Jul 16  Public exploit reference published
  Jul 16  Published (CNA: GitHub_M)
CWE-862 · CNA: GitHub_M · CVSS v3.1 · 5 references · NVD status: Modified
uncannyowl Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin — Uncanny Automator <= 7.3.1.4 - Unauthenticated PHP Object Injection to Arbitrary File Deletion via Forminator Submitted-Field Token
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   N   N  U  H  H  H    8.1   .0101   60.4     —
AFFECTED
  Product                                                                               Versions     Fixed
  Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin  unspecified  —
TIMELINE
  Jul 7   Reserved by CNA
  Jul 16  Published (CNA: Wordfence)
CWE-502 · CNA: Wordfence · CVSS v3.1 · 7 references · NVD status: Deferred
SGLang SGLang — CVE-2026-14890
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  N    9.1   .0100   60.1     —
AFFECTED
  Product  Versions     Fixed
  SGLang   unspecified  —
TIMELINE
  Jul 6   Reserved by CNA
  Jul 16  Published (CNA: certcc)
CWE-502 · CNA: certcc · CVSS v3.1 · 3 references · NVD status: Analyzed
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-545684.359.5microsoftUFOCWE-639Microsoft UFO: Missing Authorization in DEVICE_INFO_REQUEST Allows a DEVICE C…
CVE-2026-465629.859.4yamcsyamcsCWE-94Yamcs: Remote Code Execution via Mission Database algorithm override
CVE-2026-535978.759.3microsoftpromptyCWE-94Prompty: Arbitrary code execution via JavaScript frontmatter in TypeScript lo…
CVE-2023-499009.859.0X-RiteMA-T6CWE-78Origin Validation Error in X-Rite MA-T6
CVE-2026-572068.658.7microsoftsimplechatCWE-306SimpleChat plugin validation endpoints missing authentication and authorization
CVE-2026-572054.357.3microsoftsimplechatCWE-200SimpleChat: Authenticated users can access other users' profile metadata thro…
CVE-2026-235387.556.8FeastFeast Feature ServerCWE-770Feast: resource exhaustion via websocket endpoint
CVE-2026-154229.156.4illumosillumos-gateCWE-122SCTP needs to better-check INIT ACK chunk parameters
CVE-2026-547339.356.2microsofto365-moodleCWE-347moodle-local_o365: Authentication bypass via unverified JWT signature in Team…
CVE-2024-323867.355.4n/an/aCWE-22Directory traversal vulnerability in Kerlink Kerlink Wirnet iStation 868 KerO…
CVE-2026-535355.955.1activepiecesactivepiecesCWE-22Activepieces: Arbitrary file write in git-sync via path traversal and symlinks
CVE-2026-488637.554.5OpenSUSElibsolvCWE-121Libsolv: stack-based buffer overflow in libsolv eddsa pgp signature verificat…
CVE-2026-150139.853.4cyberlord92SAML Single Sign On – SSO LoginCWE-347SAML Single Sign On <= 5.4.3 - Unauthenticated Authentication Bypass via 'SAM…
CVE-2026-477515.352.7anthropicsclaude-code-actionCWE-78Claude Code Action: Malicious MCP Server Configuration in PRs Enables Remote …
CVE-2026-441778.850.5getkirbykirbyCWE-22Kirby: Pre-authentication path traversal and PHP file inclusion during user l…
CVE-2026-4418110.050.4jupyter-serverenterprise_gatewayCWE-1336Jupyter Enterprise Gateway: Jinja2 Template Server Side Template Injection re…
CVE-2026-30319.850.4TOKUHIROMImage::EPEGCWE-1104Image::EPEG versions through 0.15 for Perl embeds an unsupported version of t…
CVE-2026-453677.549.8hapifhirorg.hl7.fhir.coreCWE-1333HAPI FHIR: ReDoS via FHIRPath matches()/replaceMatches() in FHIR Validator HT…
CVE-2026-556298.749.2avwowhistleCWE-22Whistle: Path traversal
CVE-2025-713778.749.0stoatchatstoatchatCWE-1025stoatchat before 20250210-1 Unrestricted Message History Fetch
CVE-2026-623097.548.9corednscorednsCWE-476CoreDNS: proxyproto plugin panics on PPv2 datagram with non-UDP transport — s…
CVE-2026-570739.148.5CODECHILDHTML::BareCWE-125HTML::Bare versions through 0.04 for Perl have an unbounded character lookahead
CVE-2026-465129.948.4mwtcmifrogmanCWE-94Frogman: Dialplan template parameters interpolated into extensions_custom.con…
CVE-2026-534129.848.2Zoom CommunicationsZoom Workplace for WindowsCWE-20Zoom Workplace VDI Plugin for Windows - Improper Input Validation
CVE-2026-592376.947.9RoskusProspero Flow CRMCWE-639IDOR in Prospero Flow CRM Order API allows cross-tenant read and modification…
CVE-2026-570749.147.6CODECHILDXML::BareCWE-125XML::Bare versions through 0.53 for Perl have an unbounded character lookahead
CVE-2026-4533610.047.1StratonWebDesignersHireFlowCWE-798HireFlow: Use of Hard-coded Credentials
CVE-2026-630879.346.5grafana-cold-storageoncallCWE-306Grafana OnCall 1.16.11 Unauthenticated Token Hijack via Plugin Install Endpoint
CVE-2026-153528.246.5NASACore Flight System (cFS) Health & Safety (HS) ApplicationCWE-476NASA Core Flight System (cFS) Health & Safety (HS) Application NULL Pointer D…
CVE-2026-133977.546.5CODECHILDHTML::BareCWE-835HTML::Bare versions through 0.04 for Perl will hang in an infinite loop when …
CVE-2026-134017.546.5CODECHILDXML::BareCWE-835XML::Bare versions through 0.53 for Perl will hang in an infinite loop when p…
CVE-2026-591177.546.4MicrosoftWindows Terminal AppCWE-190Windows Terminal Remote Code Execution Vulnerability
CVE-2026-157274.945.9xylusWP Bulk DeleteCWE-89WP Bulk Delete <= 1.4.2 - Authenticated (Administrator+) SQL Injection via 'd…
CVE-2026-628265.445.2MicrosoftMicrosoft SharePoint Enterprise Server 2016CWE-79Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-142548.344.9PerforceDelphix Continuous DataCWE-307Improper Restriction of Excessive Authentication Attempts in Delphix Continuo…
CVE-2026-150226.544.7themeumTutor LMS – eLearning and online course solutionCWE-89Tutor LMS <= 4.0.0 - Authenticated (Subscriber+) SQL Injection via Stored Qui…
CVE-2026-465159.344.5mwtcmifrogmanCWE-862Frogman: Multiple read-tier tools expose admin-grade data and arbitrary Graph…
CVE-2026-16098.144.2KeycloakKeycloakCWE-284Org.keycloak/keycloak-quarkus-server: keycloak: unauthorized access via jwt a…
CVE-2026-441809.843.7jupyter-serverenterprise_gatewayCWE-20Jupyter Enterprise Gateway: ContainerProcessProxy._enforce_prohibited_ids can…
CVE-2026-554076.343.4anthropicsbuffaCWE-400Buffa: Memory Exhaustion Denial of Service in decode_unknown_field via Unboun…
CVE-2026-455689.943.2openzitizrokCWE-22zrok Python ProxyShare can be used as an SSRF proxy through absolute URL paths
CVE-2026-622995.342.9corednscorednsCWE-476CoreDNS: rewrite-plugin EDNS0 response-revert nil-pointer panic (remote DoS) …
CVE-2026-630858.742.8axeloraxelor-open-platformCWE-863Axelor Open Platform 8.x < 8.2.2 Authorization Bypass via Nested Relational R…
CVE-2026-453688.442.7getkirbykirbyCWE-79Kirby: Cross-site scripting (XSS) from links in KirbyTags and image blocks in…
CVE-2026-113869.042.2Canonicalubuntu-pro-client (ubuntu-advantage-tools)CWE-20ubuntu-pro-client Input Validation Vulnerability Leading to Arbitrary APT Dir…
CVE-2026-629638.742.0centrifugalcentrifugoCWE-409Centrifugo: Decompression bomb DoS via permessage-deflate in unidirectional W…
CVE-2026-592496.342.0elixir-mintmintCWE-444Sign-tolerant HTTP/1 chunk-size parser in Mint enables response smuggling aga…
CVE-2026-449818.240.9crowdsecuritycrowdsecCWE-409CrowdSec LAPI: Denial of Service via Unbounded Gzip Decompression
CVE-2025-458688.840.9n/an/aCWE-89LogicalDOC Enterprise up to and for v9.1.1 is vulnerable to blind SQL injecti…
CVE-2026-630887.740.9stoatchatstoatchatCWE-918stoatchat < 0.14.0 SSRF via DNS-based IP Blocklist Bypass
CVE-2026-127537.540.8themehunkAdvance Product Search- Voice & Ajax Search for WooCommerceCWE-89Advance Product Search- Voice & Ajax Search for WooCommerce <= 1.4.4 - Unauth…
CVE-2026-227529.640.8Spring SecuritySpring Authorization ServerCWE-287Spring Security Authorization Server Dynamic Client Registration endpoints pe…
CVE-2026-463367.140.6manyfold3dmanyfoldCWE-22Manyfold: Authenticated Path Traversal via File Rename
CVE-2026-4418210.040.4jupyter-serverenterprise_gatewayCWE-74Jupyter Enterprise Gateway Has Kubernetes Manifest Injection via Jinja2 Templ…
CVE-2026-124929.840.4UnknownHappy Coders OTP Login for WooCommerceCWE-287Happy Coders OTP Login for WooCommerce < 2.8 - Unauthenticated Account Takeov…
CVE-2026-381589.840.3n/an/aCWE-89A SQL injection vulnerability in the /ureport/datasource/previewData componen…
CVE-2026-455768.340.3openzitizrokCWE-22zrok copy writes attacker-controlled WebDAV paths outside the destination root
CVE-2026-444367.540.1h2oquiclyCWE-120Quicly is vulnerable to connection state corruption
CVE-2026-543407.540.1h2oh2oCWE-400h2o has HTTP/2 state amplification
CVE-2025-458706.539.8n/an/aCWE-22LogicalDOC Enterprise up to and for v9.1.1 is vulnerable to Local File Inclus…
CVE-2026-444357.539.8h2oquiclyCWE-400Quicly: Remote Denial of Service via assertion failure when CRYPTO stream han…
CVE-2026-444537.539.8h2oh2oCWE-770h2o is vulnerable to musl libc stack overflow
CVE-2026-441748.739.7getkirbykirbyCWE-470Kirby: Arbitrary Method Call via REST API search and collection query endpoints
CVE-2026-156514.939.4jgwhite33WP TripAdvisor Review SliderCWE-89WP TripAdvisor Review Slider <= 14.6 - Authenticated (Administrator+) SQL Inj…
CVE-2025-713887.639.1stoatchatstoatchatCWE-639stoatchat 20241213-1 Webhook Token Disclosure via Read Permissions
CVE-2026-633977.139.1remorsesgenqlCWE-116remorses/genql code injection
CVE-2026-463538.139.0bigbluebuttonbigbluebuttonCWE-284BigBlueButton API checksum bypass via presentationUploadExternalUrl
CVE-2026-151065.338.8quantumcloudWPBot – AI ChatBot for Live Support, Lead Generation, AI ServicesCWE-862WPBot <= 8.5.6 - Missing Authorization to Unauthenticated Arbitrary Chat Sess…
CVE-2026-154074.338.7themifymeThemify BuilderCWE-862Themify Builder <= 7.7.7 - Missing Authorization to Authenticated (Subscriber…
CVE-2026-453258.238.1tmlmobilidadegoCWE-1321Gestor de Oferta: Prototype pollution in @tmlmobilidade/utils setValueAtPath
CVE-2026-463518.138.0bigbluebuttonbigbluebuttonCWE-330BigBlueButton: Insecure Randomness allows to guess user's conference session …
CVE-2026-217297.537.9GrafanaLokiCWE-770Loki detected_fields query limits results in unbounded memory allocation
CVE-2026-629943.737.8corednscorednsCWE-248CoreDNS `k8s_external` headless AXFR can emit an empty transfer batch that pa…
CVE-2026-564557.537.7HCL SoftwareDFXAnalyticsCWE-121HCL DFXAnalytics is affected by a Buffer Overflow vulnerability that can lead…
CVE-2026-465146.537.4mwtcmifrogmanCWE-532Frogman: Plaintext passwords and secrets persisted to audit log
CVE-2026-336927.537.3WWBNAVideoCWE-20AVideo Has Unauthenticated .env File Exposure via Official Docker Compose Con…
CVE-2024-583606.937.2stoatchatstoatchatCWE-1173stoatchat before 0.7.8 Unrestricted Account Creation
CVE-2026-466868.536.7emlogemlogCWE-79Emlog Reflected Cross-Site Scripting
CVE-2026-137418.836.6UnitedOverDigits: WordPress Mobile Number Signup and LoginCWE-269Digits: WordPress Mobile Number Signup and Login <= 9.1.0.5 - Authenticated (…
CVE-2026-154454.936.6cleverpluginsSEO BoosterCWE-89SEO Booster <= 7.3.1 - Authenticated (Administrator+) SQL Injection via 'orde…
CVE-2026-154584.936.6cleverpluginsSEO BoosterCWE-89SEO Booster <= 7.3.1 - Authenticated (Administrator+) SQL Injection via 'sort…
CVE-2026-466877.736.2emlogemlogCWE-24Emlog Local File Inclusion (LFI)
CVE-2026-464046.836.0bigbluebuttonbigbluebuttonCWE-918BigBlueButton: Presentation URL Security Hardening
CVE-2026-630866.936.0huggingfacetext-generation-inferenceCWE-918text-generation-inference 3.3.7 SSRF via fetch_image in multimodal chat compl…
CVE-2026-153364.336.0catchpluginsCatch Themes Demo ImportCWE-862Catch Themes Demo Import <= 3.3 - Missing Authorization to Authenticated (Sub…
CVE-2026-465137.435.9mwtcmifrogmanCWE-256Frogman: API tokens stored in plaintext
CVE-2026-441758.535.6getkirbykirbyCWE-79Kirby: Cross-site scripting (XSS) from list field content in the site frontend
CVE-2026-617185.435.6bunkeritybunkerwebCWE-285bunkerweb: Read-only Web UI users can delete job cache files due to missing a…
CVE-2026-130427.235.5yo35RPB ChessboardCWE-79RPB Chessboard <= 8.1.2 - Unauthenticated Stored Cross-Site Scripting via Com…
CVE-2026-440238.635.4docling-projectdocling-coreCWE-22Docling Core has unsafe remote filename resolution
CVE-2026-351478.235.3HCL SoftwareDFXServerCWE-639HCL DFXServer is affected by a Broken Authentication vulnerability via direct…
CVE-2026-126846.535.3UnknownCustomer Reviews for WooCommerceCWE-434Customer Reviews for WooCommerce < 5.113.0 - Unauthenticated Arbitrary Media …
CVE-2026-440198.134.6docling-projectdocling-coreCWE-73Docling Core has insufficient validation of image reference URIs
CVE-2026-351498.234.4HCL SoftwareDFXServerCWE-294HCL DFXServer is affected by an Authentication Bypass vulnerability via serve…
CVE-2026-630899.034.2wg-easywg-easyCWE-338WireGuard Easy Weak Token Generation Information Disclosure via OTL Route
CVE-2026-129416.534.1wcmpMultiVendorX – WooCommerce Multivendor Marketplace AI Powered SolutionsCWE-89MultiVendorX <= 5.0.9 - Authenticated (Store Owner+) SQL Injection via 'order…
CVE-2026-137546.534.1tickeraTickera – Sell Tickets & Manage EventsCWE-89Tickera <= 3.6.0.0 - Authenticated (Staff+) SQL Injection via 's' Parameter
CVE-2026-137676.534.1expresstechQuiz and Survey Master (QSM) – Quiz Maker & Survey MakerCWE-89Quiz and Survey Master (QSM) <= 11.2.0 - Authenticated (Custom+) SQL Injectio…
CVE-2026-586436.134.1MicrosoftWindows Admin CenterCWE-79Windows Admin Center Spoofing Vulnerability
CVE-2026-444525.934.0h2oh2oCWE-125h2o is vulnerable to heap overrun
CVE-2026-633069.233.7stoatchatstoatchatCWE-918stoatchat before 0.13.5 Unauthenticated SSRF via proxy and embed endpoints
CVE-2026-147824.933.5melogranoBooking for Appointments and Events Calendar – AmeliaCWE-89Booking for Appointments and Events Calendar – Amelia <= 2.4.3 - Authenticate…
CVE-2026-124344.333.5fernandobtList category postsCWE-862List category posts <= 0.95.0 - Missing Authorization to Authenticated (Contr…
CVE-2026-156104.333.2quantumcloudWPBot – AI ChatBot for Live Support, Lead Generation, AI ServicesCWE-862WPBot <= 8.5.6 - Missing Authorization to Authenticated (Subscriber+) Arbitra…
CVE-2026-564565.333.0HCL SoftwareDFXAnalyticsCWE-200HCL DFXAnalytics is affected by an Internal File Path Disclosure vulnerability.
CVE-2026-580788.732.9themexpert.comQuix Page Builder Pro extension for JoomlaCWE-89Joomla Extension - themexpert.com - Unauthenticated SQL injection in Quix Pag…
CVE-2026-334347.132.9wazuhwazuhCWE-799Wazuh: Rate Limit Bypass via /events Endpoint
CVE-2026-439777.532.2wger-projectwgerCWE-639wger IDOR: Authenticated Users Can Read Others' Private Workout Session Data …
CVE-2026-364256.532.3n/an/aCWE-269An issue in OPSWAT AppRemover Driver (ardrv.sys) v2017.10.02.1551 and earlier…
CVE-2026-137556.431.3tickeraTickera – Sell Tickets & Manage EventsCWE-79Tickera <= 3.6.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting…
CVE-2026-153504.331.3kevp75The Cache PurgerCWE-862The Cache Purger <= 2.3.20 - Missing Authorization to Authenticated (Subscrib…
CVE-2026-125858.131.1UnknownAbandoned Cart Lite for WooCommerceCWE-287Abandoned Cart Lite for WooCommerce < 6.8.2 - Unauthenticated Account Takeove…
CVE-2026-157375.730.9AWSbedrock-agentcoreCWE-532Sensitive content disclosure via OpenTelemetry spans in AgentCore Python SDK
CVE-2026-547286.130.9bunkeritybunkerwebCWE-20bunkerweb: Improper Input Validation and Improper Neutralization of Special E…
CVE-2026-153066.130.7rexthemeProduct Feed Manager For WooCommerce – Sell on 200+ Online MarketplacesCWE-79Product Feed Manager For WooCommerce <= 7.6.1 - Reflected Cross-Site Scriptin…
CVE-2026-570759.130.1TODDRYAML::SyckCWE-125YAML::Syck versions before 1.47 for Perl allow an out-of-bounds read via a si…
CVE-2026-449704.330.0dbt-labsdbt-mcpCWE-201dbt-mcp: All MCP Tool Arguments Including Raw SQL and --vars Credentials Tran…
CVE-2026-449827.230.0crowdsecuritycrowdsecCWE-693CrowdSec AppSec silently drops request body for chunked / HTTP-2 requests
CVE-2026-439788.129.8wger-projectwgerCWE-269wger: Privilege escalation via trainer-login session chaining allows gym trai…
CVE-2026-341507.529.5wazuhwazuhCWE-122Wazuh: Heap buffer overflow in wazuh-analysisd via rootcheck event parsing
CVE-2026-337546.529.6wazuhwazuhCWE-400Wazuh: Unauthenticated cluster packet length leads to uncontrolled memory all…
CVE-2026-123956.529.2UnknownWP Job PortalCWE-89WP Job Portal < 2.5.5 - Subscriber+ SQL Injection via Applied Resumes 'ta' Pa…
CVE-2026-159095.329.2RafyMrXTOKO-ONLINE-ROTICWE-285RafyMrX TOKO-ONLINE-ROTI add.php authorization
CVE-2026-441766.029.1getkirbykirbyCWE-862Kirby: `pages.access` permission is not checked during rendering of page drafts
CVE-2026-453345.329.1getkirbykirbyCWE-862Kirby: Content locks disclose IDs and emails of inaccessible users from `user…
CVE-2026-545268.929.0argoprojargo-workflowsCWE-284Argo Workflows: Incomplete fix for CVE-2026-31892: ArtifactGC.PodSpecPatch by…
CVE-2026-393597.528.7wazuhwazuhCWE-22Wazuh: Unauthenticated Path Traversal in authd via Agent Group Name
CVE-2026-555484.328.7yamcsyamcsCWE-284Yamcs: Insecure Direct Object Reference (IDOR) in PacketsApi allows unprivile…
CVE-2026-149876.428.4stellarwpGiveWP – Donation Plugin and Fundraising PlatformCWE-79GiveWP <= 4.16.3 - Authenticated (Give Worker+) Stored Cross-Site Scripting v…
CVE-2026-150216.428.4tomdeverwpForo ForumCWE-79wpForo Forum <= 3.1.1 - Authenticated (Subscriber+) Stored Cross-Site Scripti…
CVE-2026-564539.827.9HCL SoftwareDFXAnalyticsCWE-294HCL DFXAnalytics is affected by an Account Takeover via Response Manipulation…
CVE-2026-470846.527.4cyrusimapCyrus IMAPCWE-863An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. The LOCA…
CVE-2026-463416.126.2apifyapify-mcp-serverCWE-20Apify MCP server: Domain Allowlist Bypass in fetch-apify-docs via String Pref…
CVE-2026-129795.526.0UnknownFunnelKitCWE-73FunnelKit < 3.15.0.6 - Admin+ Arbitrary File Deletion via Path Traversal in T…
CVE-2026-153244.425.9phppoetSysBasics Customize My Account for WooCommerce – Live My Account CustomizerCWE-79SysBasics Customize My Account for WooCommerce <= 4.4.14 - Authenticated (Sho…
CVE-2026-150058.825.8timwhitlockLoco TranslateCWE-352Loco Translate <= 2.8.5 - Cross-Site Request Forgery to Remote Code Execution…
CVE-2026-150996.425.5wpdeliciousWP Delicious – Recipe Plugin for Food Bloggers (formerly Delicious Recipes)CWE-79WP Delicious <= 1.10.2 - Authenticated (Contributor+) Stored Cross-Site Scrip…
CVE-2026-156526.425.5shapedpluginEasy Accordion – AI-Powered FAQ & Accordion Blocks, Product FAQCWE-79Easy Accordion <= 3.1.6 - Authenticated (Contributor+) Stored Cross-Site Scri…
CVE-2026-351415.325.4HCL SoftwareDFXAnalyticsCWE-294HCL DFXAnalytics is affected by a Login Replay Attack vulnerability
CVE-2026-130054.425.0mxchatMxChat – AI Chatbot & Content Generation for WordPressCWE-79MxChat <= 3.2.10 - Authenticated (Admin+) Stored Cross-Site Scripting via 'in…
CVE-2026-75437.224.0BreakdanceBreakdanceCWE-79Breakdance <= 2.7.1 - Unauthenticated Stored Cross-Site Scripting via Webhook…
CVE-2024-342687.124.0n/an/aCWE-306EQ-3 Eqiva CC-RT-BLE Bluetooth Smart Radiator Thermostat Firmware up to the l…
CVE-2026-351428.223.8HCL SoftwareDFXAnalyticsCWE-200HCL DFXAnalytics is affected by an Internal IP Address Disclosure vulnerability.
CVE-2023-498999.823.3X-RiteMA-T6CWE-346Origin Validation Error in X-Rite MA-T6
CVE-2026-118897.123.3SALTOProAccess SpaceCWE-639SALTO ProAccess Space Authorization Bypass Through User-Controlled Key
CVE-2026-151038.823.1getwpfunnelsWPFunnels – Funnel Builder for WooCommerce with Checkout & One Click UpsellCWE-269WPFunnels <= 3.12.8 - Authenticated (Funnel Manager+) Privilege Escalation vi…
CVE-2026-463384.323.1facelessuserpymdown-extensionsCWE-22PyMdown Extensions: Regression in pymdownx.snippets reintroduces sibling-pref…
CVE-2024-323854.322.9n/an/aCWE-200An issue in Kerlink Kerlink Wirnet iStation 868 KerOS v.4.3.3_20200803132042 …
CVE-2026-470834.322.7cyrusimapCyrus IMAPCWE-204An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. There is…
CVE-2024-323893.522.4n/an/aCWE-120Buffer Overflow vulnerability in Kerlink Kerlink Wirnet iStation 868 KerOS v.…
CVE-2026-129062.721.9UnknownRTMKitCWE-639RTMKit Addons for Elementor < 2.0.9 - Contributor+ Private Post Title Disclosure
CVE-2026-470825.421.9cyrusimapCyrus IMAPCWE-863An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. The vaca…
CVE-2026-351486.321.7HCL SoftwareDFXServerCWE-284HCL DFXServer is affected by a Missing Access Control vulnerability
CVE-2024-323875.721.7n/an/aCWE-200An issue in Kerlink Kerlink Wirnet iStation 868 KerOS v.4.3.3_20200803132042 …
CVE-2026-470854.021.7cyrusimapCyrus IMAPCWE-340An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. URLAUTH …
CVE-2026-159259.220.7SnowflakeSnowflake Connector for PythonCWE-297Improper TLS Hostname Verification in Snowflake Connector for Python
CVE-2026-470873.520.5cyrusimapCyrus IMAPCWE-672An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. URLAUTH …
CVE-2026-129787.120.1UnknownFunnelKitCWE-79FunnelKit < 3.15.0.6 - Reflected XSS via Divi Optin Form
CVE-2026-470894.320.0cyrusimapCyrus IMAPCWE-862An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. LISTRIGH…
CVE-2026-129072.720.1UnknownRTMKitCWE-862RTMKit Addons for Elementor < 2.0.9 - Author+ Site-Wide Theme Builder Templat…
CVE-2026-444337.519.8h2oquiclyCWE-400Quicly is vulnerable to memory exhaustion
CVE-2026-351407.219.7HCL SoftwareDFXAnalyticsCWE-200HCL DFXAnalytics is affected by a Missing Secure Attribute in Encrypted Sessi…
CVE-2026-113716.119.4UnknownBetterDocsCWE-79BetterDocs < 4.5.5 - Unauthenticated Stored XSS via AI Doc Summarizer Prompt …
CVE-2026-351453.119.1HCL SoftwareDFXAnalyticsCWE-200HCL DFXAnalytics is affected by a Missing HTTP Strict-Transport-Security Head…
CVE-2026-470863.518.3cyrusimapCyrus IMAPCWE-863An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. GENURLAU…
CVE-2026-499988.218.1centrifugalcentrifugoCWE-347Centrifugo: Dynamic JWKS key cache keyed only by `kid` allows cross-issuer JW…
CVE-2026-470883.117.9cyrusimapCyrus IMAPCWE-126An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. There is…
CVE-2026-630825.317.3Ultimate FostersPerfect Support Ticketing & Document Management SystemCWE-862Perfect Support Ticketing System 1.7 Broken Access Control via Agent Assignment
CVE-2026-457955.317.2JanssenProjectjansCWE-347Janssen Project: JWE Request Object Signature Verification Bypass in jans-aut…
CVE-2026-159452.717.2Red HatRed Hat Build of KeycloakCWE-639Keycloak-services: keycloak-services: group hierarchy search discloses hidden…
CVE-2026-128696.116.4UnknownHeader Footer Builder for ElementorCWE-79Header Footer Builder for Elementor < 1.2.1 - Contributor+ Stored XSS via Tem…
CVE-2026-600735.215.5AutomationDirectProductivity SuiteCWE-125AutomationDirect Productivity Suite Out-of-bounds Read
CVE-2026-470813.115.2cyrusimapCyrus IMAPCWE-863An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. There is…
CVE-2026-535365.314.4activepiecesactivepiecesCWE-345Activepieces: Cross-tenant file download via missing JWT audience check on st…
CVE-2026-630815.114.2Ultimate FostersPerfect Support Ticketing & Document Management SystemCWE-79Perfect Support Ticketing System 1.7 Stored XSS via Ticket Notes Field
CVE-2026-125105.913.8UnknownAI EngineCWE-639AI Engine < 3.5.5 - Subscriber+Chatbot Discussion Disclosure and Takeover via…
CVE-2026-125258.813.6UnknownRedux FrameworkCWE-269Redux Framework < 4.5.13 - Subscriber+ Privilege Escalation to Administrator
CVE-2026-564547.512.4HCL SoftwareDFXAnalyticsCWE-327HCL DFXAnalytics is affected by a Deprecated Protocol vulnerability due to th…
CVE-2026-444345.311.0h2oquiclyCWE-345Quicly is vulnerable to stateless reset injection
CVE-2026-123796.810.6QtAxivionCWE-601URL Redirection to Untrusted Site ('Open Redirect') vulnerability in the Dash…
CVE-2026-56748.810.6Red HatRed Hat Enterprise Linux 10CWE-427Pipewire: pipewire: sandbox escape and arbitrary code execution via malicious…
CVE-2026-449686.310.6dbt-labsdbt-mcpCWE-88dbt-mcp: Argument Injection in dbt CLI Tool Wrappers via node_selection and r…
CVE-2026-123915.010.6Canonicalubuntu-pro-client (ubuntu-advantage-tools)CWE-59ubuntu-pro-client Local Privilege Escalation and Information Disclosure via S…
CVE-2026-337316.510.4WWBNAVideoCWE-345AVideo has an Authorize.Net Webhook Signature Bypass that Enables Wallet Bala…
CVE-2026-124094.38.8umarbajwaLanding Page Builder – Coming Soon page, Maintenance Mode, Lead Page, WordPress Landing PagesCWE-352Landing Page Builder <= 1.5.3.6 - Cross-Site Request Forgery to ulpb_admin_da…
CVE-2026-351466.38.6HCLSoftwareDFXServerCWE-326HCL DFXServer is affected by an Unencrypted Communication vulnerability.
CVE-2026-585987.08.4MicrosoftWindows 10 Version 21H2CWE-362Windows Backup Service Elevation of Privilege Vulnerability
CVE-2026-463776.28.0TomWrightdaselCWE-129Dasel: Index-out-of-range panic in dasel selector lexer on trailing backslash…
CVE-2026-131037.07.7LenovoApp StoreCWE-22A potential path traversal vulnerability was reported in Lenovo App Store, di…
CVE-2026-456125.56.8rizinorgrz-libdemangleCWE-125rz-libdemangle: Out of bound read in rust demangler
CVE-2026-533667.86.5LinuxLinux—ipv4: account for fraggap on the paged allocation path
CVE-2026-64238.56.3ESET, spol. s.r.o.ESET Inspect ConnectorCWE-269Local privilege escalation via unauthenticated ALPC in ESET Inspect Connector
CVE-2026-38427.86.2—qemuCWE-787Qemu-kvm: hyperv/syndbg: missing mapped-length guard after cpu_physical_memor…
CVE-2026-105906.76.0LenovoYoga Pro 7 15IPH11 BIOS—A potential missing authentication vulnerability could allow a local privileg…
CVE-2026-131047.05.9LenovoApp StoreCWE-250A potential vulnerability was reported in Lenovo App Store, distributed exclu…
CVE-2026-449693.35.9dbt-labsdbt-mcpCWE-532dbt-mcp: Tool Arguments Including SQL Queries and Credentials Logged in Plain…
CVE-2026-534097.85.5Zoom CommunicationsZoom RoomsCWE-20Improper Privilege Management in Zoom Rooms for Windows before version 7.1.0 …
CVE-2026-105896.85.5LenovoYoga Pro 7 15IPH11 BIOSCWE-787A potential out of bounds write vulnerability could allow a local privileged …
CVE-2026-351436.55.5HCL SoftwareDFXAnalyticsCWE-352HCL DFXAnalytics is affected by a Missing SameSite Attribute vulnerability.
CVE-2026-613786.85.4AutomationDirectProductivity SuiteCWE-369AutomationDirect Productivity Suite Divide By Zero
CVE-2026-64246.75.3ESET, spol. s.r.o.ESET Endpoint Antivirus for LinuxCWE-416Use-after-free vulnerability in ESET security products for Linux
CVE-2026-463786.25.4TomWrightdaselCWE-835Dasel: Denial of service in dasel selector lexer due to infinite loop on unte…
CVE-2026-554065.95.2anthropicsbuffaCWE-200Buffa: Use-After-Free in OwnedView via Unsound 'static Lifetime Promotion in …
CVE-2026-105886.74.8LenovoYoga Pro 7 15IPH11 BIOSCWE-497A potential vulnerability could allow a local privileged attacker to disclose…
CVE-2026-578966.94.5AutomationDirectProductivity SuiteCWE-125AutomationDirect Productivity Suite Out-of-bounds Read
CVE-2026-601406.94.5AutomationDirectProductivity SuiteCWE-125AutomationDirect Productivity Suite Out-of-bounds Read
CVE-2026-105876.84.2LenovoYoga Pro 7 15IPH11 BIOSCWE-787A potential out-of-bounds write vulnerability could allow a local privileged …
CVE-2026-600637.34.1AutomationDirectProductivity SuiteCWE-787AutomationDirect Productivity Suite Out-of-bounds Write
CVE-2026-613897.34.1AutomationDirectProductivity SuiteCWE-787AutomationDirect Productivity Suite Out-of-bounds Write
CVE-2026-94945.54.1Canonicalubuntu-pro-client (ubuntu-advantage-tools)CWE-214ubuntu-pro-client Information Disclosure via Cleartext Bearer Token Exposure …
CVE-2026-570777.73.7TODDRYAML::SyckCWE-125YAML::Syck versions before 1.47 for Perl allow an out-of-bounds read via an u…
CVE-2026-118665.43.4UnknownAppointment Booking PluginCWE-352LatePoint < 5.6.3 - Multiple Privileged Actions via CSRF
CVE-2026-159971.73.3Legion of the Bouncy Castle Inc.BC-LTSCWE-787Native ARM SHA3 / SHAKE `restoreFullState` fails to detect size_t underflow i…
CVE-2026-401067.83.1wazuhwazuhCWE-122Wazuh: Heap-based Buffer Overflow in syscheck Registry Wildcard Expansion (LP…
CVE-2026-65116.83.2LenovoSmart ConnectCWE-306During an internal security assessment, a potential improper access control v…
CVE-2026-137136.23.1TODDRYAML::SyckCWE-415YAML::Syck versions before 1.47 for Perl allow a use-after-free and double-fr…
CVE-2026-534117.03.0Zoom CommunicationsZoom Workplace VDI PluginCWE-20Zoom Workplace VDI Plugin for Windows - Improper Input Validation
CVE-2026-570767.82.4TODDRYAML::SyckCWE-416YAML::Syck versions before 1.47 for Perl allow a heap use-after-free via an a…
CVE-2026-90467.32.4LenovoLegion ZoneCWE-277A potential insecure permissions vulnerability was reported in Legion Zone an…
CVE-2026-154495.81.8illumosillumos-gateCWE-122TOCTOU double copyin in illumos dld ioctl handling causes kernel heap corruption
CVE-2026-622907.31.1cert-managercert-managerCWE-863cert-manager: Direct ACME Challenge resources can bypass Issuer DNS01 solver …
CVE-2026-534107.00.8Zoom CommunicationsZoom ClientsCWE-367Zoom Clients for Windows - Race Condition

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-07-16 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.

Machine-readable. This edition as JSON or CSV — the ranked results, transactions, and counts, for citation or ingestion. Frozen at publication; later changes appear as transactions on later editions.