boxscore/security

A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?

Monday, July 27, 2026 · all times UTC← 2026-07-26 · archive · 2026-07-28 →

Security Box Score — July 27, 2026

440 CVEs published, led by Apple (164).

440 CVEs published July 27, 2026: 91 critical, 167 high, 162 medium, 14 low; 2 in the KEV catalog at press time; 6 with a public exploit reference; 6 awaiting enrichment. Elevated volume. 25 rendered as box scores below; 375 more in the results table on this page; the remaining 40 on continuation pages.

Standings

League
MTDYTD2025 same span2025 full
CVEs published839920802——
KEV catalog size1675

Publication counts reflect the record since May 20, 2026 (archive start); KEV figures are catalog-wide.

Prior-year comparisons begin when the archive covers a full year; archive begins May 20, 2026.

884 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux8292309207122663711120.17.8.0016+317 ▲
microsoft663142010598132014286241.77.8.0047+443 ▲
google1201385156634556397760.47.8.0025-587 ▼
red hat1243461613517223200.06.5.0031+16 ▲
apple167271577813338872.66.5.0027+152 ▲
canonical72738115000.05.6.0014+1 ▲
suse82141241000.08.5.0039+4 ▲
freebsd01601240000.07.8.0016-9 ▼
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco1537818110561129.77.5.0057+5 ▲
ubiquiti2536142110338.38.8.0049+17 ▲
palo alto networks1425131471328.04.7.0028+5 ▲
fortinet14236611028626.17.2.0040+12 ▲
netgear62300221000.04.6.0024-11 ▼
f58165830416.38.6.0057+2 ▲
vmware8121821718.38.2.0039+5 ▲
checkpoint31236303216.77.7.04550
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache1202755711195113310.47.5.0058+16 ▲
mozilla711275142340900.08.1.0031+22 ▲
drupal465165355412.05.9.0026+46 ▲
gitlab73805276425.34.7.0032-17 ▼
github5111280000.06.0.0042+4 ▲
docker070520000.08.2.0016-4 ▼
wordpress22101022100.07.9.8879+2 ▲
kubernetes110001000.02.4.0035+1 ▲
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle11091379343653322612730.28.1.0036+867 ▲
adobe952392610410541931.37.7.0026-37 ▼
ibm371615254550600.07.5.0036+5 ▲
progress334262970600.08.0.0038+28 ▲
solarwinds15221633010418.29.1.0058+12 ▲
zohocorp362220000.07.8.0146+2 ▲
veeam152300100.08.6.00510
atlassian3303001300.08.0.0026+3 ▲
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
rockwell automation172441820000.08.7.0029+10 ▲
synology02325133000.05.6.0025-5 ▼
d-link8200596300.05.5.0105-1 ▼
siemens7161870000.07.6.00240
abb170430000.07.2.0018-5 ▼
schneider electric060420000.07.8.0042-6 ▼
hikvision550320000.07.2.0038+5 ▲
moxa050320000.07.0.0029-5 ▼
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
sourcecodester49120006258000.05.5.0034+12 ▲
openclaw441110583914000.07.0.0026-17 ▼
dell4399547443211.07.1.0021+5 ▲
capgo2283242381000.07.1.0037-24 ▼
nvidia42811253160000.07.8.0037+36 ▲
imagemagick3374155612000.05.3.0018-2 ▼
spring073231391000.06.5.0024-72 ▼
itsourcecode1871001952000.02.1.0033-4 ▼

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-63030.977999.99.8
CVE-2026-16232.891299.89.3
CVE-2026-50522.846199.79.8
CVE-2026-15409.836699.710.0
CVE-2026-60137.797999.65.9
CVE-2026-6875.775899.59.5
CVE-2026-25089.761199.59.8
CVE-2026-45659.760899.58.8
CVE-2026-0770.634299.19.8
CVE-2026-48282.423998.610.0
Highest CVSS
CVECVSSEPSSNote
CVE-2026-1540910.0.8366KEV
CVE-2026-4828210.0.4239KEV
CVE-2026-5629010.0.3038KEV
CVE-2026-4893910.0.1973KEV
CVE-2026-4890810.0.1482KEV
CVE-2026-5629110.0.1459KEV
CVE-2026-5972610.0.0688
CVE-2026-898510.0.0660
CVE-2026-1377310.0.0610
CVE-2026-651610.0.0486
Most disclosures (vendor)
VendorCVEs
oracle1109
linux830
microsoft664
google503
apple204
red hat144
apache137
adobe105
ibm80
mozilla72
Most KEV additions (YTD)
VendorKEV
microsoft24
cisco11
apple7
fortinet6
google6
ivanti5
solarwinds4
adobe3
berriai3
oracle3
Most-affected ecosystems
EcosystemAdvisories
Maven68
PyPI5
NuGet4
npm4
Go3
Packagist2
crates.io2
Fastest to KEV
CVEVendorDays
CVE-2021-27137DD-WRT0
CVE-2025-68686Fortinet0
CVE-2026-0770Langflow0
CVE-2026-15409SonicWall0
CVE-2026-15410SonicWall0
CVE-2026-16232checkpoint0
CVE-2026-16812Arista Networks0
CVE-2026-25089Fortinet0
CVE-2026-45659Microsoft0
CVE-2026-46817Oracle Corporation0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104n/a2021-11-171713
CVE-2021-27102n/a2021-11-171713
CVE-2021-27101n/a2021-11-171713
CVE-2021-27103n/a2021-11-171713
CVE-2021-21017Adobe2021-11-171713
CVE-2021-28550Adobe2021-11-171713
CVE-2021-42013Apache Software Foundation2021-11-171713
CVE-2021-41773Apache Software Foundation2021-11-171713
CVE-2021-30858Apple2021-11-171713
CVE-2021-30860Apple2021-11-171713

Transactions

EXPLOIT PUBLISHED — strukturag libheif: 5 CVEs (CVE-2026-47178, CVE-2026-47247, CVE-2026-47251, CVE-2026-47254, CVE-2026-47709). Public exploit references added.

EXPLOIT PUBLISHED — FreeRDP: 3 CVEs (CVE-2026-40033, CVE-2026-44421, CVE-2026-44422). Public exploit references added.

EXPLOIT PUBLISHED — GNOME GIMP: 3 CVEs (CVE-2026-66757, CVE-2026-66758, CVE-2026-66759). Public exploit references added.

EXPLOIT PUBLISHED — nuxsmin sysPass: 3 CVEs (CVE-2026-65708, CVE-2026-65709, CVE-2026-65710). Public exploit references added.

EXPLOIT PUBLISHED — CVE-2026-10682 (zephyrproject zephyr). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-10683 (zephyrproject zephyr). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-17432 (NousResearch hermes-agent). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-17433 (nanocoai NanoClaw). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-17434 (nanocoai NanoClaw). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-17457 (mf-yang openclaw-cn). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-17458 (mf-yang openclaw-cn). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-17459 (perwendel spark). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-17573 (The HDF Group HDF5). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-45623 (postcss). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-63097 (matrix-org dendrite). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-63107 (LimeSurvey). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-63108 (RooCodeInc Roo-Code). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-63720 (koxudaxi datamodel-code-generator). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-63731 (hyperdxio hyperdx). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-63770 (glanceapp glance). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-63771 (vrana adminer). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-64824 (home-assistant Home Assistant Core). Public exploit reference added.

RESCORED — CVE-2026-40033 (FreeRDP). CVSS 8.6 → 8.7 (NVD).

RESCORED — CVE-2026-44422 (FreeRDP). CVSS 7.5 → 8.8 (NVD).

Yesterday's Results

How to read these box scores · glossary

440 CVEs published. 25 box scores and 375 table rows below; the remaining 40 continue on page 2 — every CVE is listed, nothing truncated.

Fortinet FortiOS
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   N   N  U  H  N  N    5.9   .2915   98.0   YES
AFFECTED
  Product  Versions  Fixed
  FortiOS  7.6.0 –   —
TIMELINE
  Dec 23  Reserved by CNA
  Jul 27  Added to CISA KEV, due Aug 10
  Jul 27  Published (CNA: fortinet)
CWE-200 · CNA: fortinet · CVSS v3.1 · 2 references · NVD status: Analyzed · KEV due August 10, 2026
Arista Networks VeloCloud Orchestrator On-Prem — VeloCloud Orchestrator OS Command Injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H   10.0   .0157   73.4   YES
AFFECTED
  Product                         Versions  Fixed
  VeloCloud Orchestrator On-Prem  5.2.0 –   —
TIMELINE
  Jul 23  Reserved by CNA
  Jul 27  Added to CISA KEV, due Jul 30
  Jul 27  Published (CNA: Arista)
CWE-78 · CNA: Arista · CVSS v4.0 · 2 references · NVD status: Analyzed · KEV due July 30, 2026
vBulletin < 6.2.2 Eval Injection RCE via vb5/template/runtime.php
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .3399   98.3     —
AFFECTED
  Product    Versions  Fixed
  vBulletin  5.0.0 –   6.2.2
TIMELINE
  Jul 10  Reserved by CNA
  Jul 27  Published (CNA: VulnCheck)
CWE-95 · CNA: VulnCheck · CVSS v4.0 · 6 references · NVD status: Deferred
Pheditor: OS Command Injection in terminal handler via unsanitized 'dir' parameter (CWE-78)
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  C  H  H  H    9.9   .0585   92.6     —
AFFECTED
  Product   Versions             Fixed
  pheditor  >= 2.0.1, < 2.0.4 –  —
TIMELINE
  May 20  Reserved by CNA
  Jul 27  Published (CNA: GitHub_M)
CWE-78 · CNA: GitHub_M · CVSS v3.1 · 2 references · NVD status: Deferred
Arista Networks VeloCloud Orchestrator On-Prem — VeloCloud Orchestrator Flow Metrics API SQL Injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   L   L    8.5   .0283   85.5     —
AFFECTED
  Product                         Versions  Fixed
  VeloCloud Orchestrator On-Prem  5.2.0 –   —
TIMELINE
  Jul 24  Reserved by CNA
  Jul 27  Published (CNA: Arista)
CWE-89 · CNA: Arista · CVSS v4.0 · 1 reference · NVD status: Awaiting Analysis
Arista Networks VeloCloud Orchestrator On-Prem — VeloCloud Orchestrator Missing Input Validation SSRF
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   N   N   N    6.3   .0234   82.3     —
AFFECTED
  Product                         Versions  Fixed
  VeloCloud Orchestrator On-Prem  5.2.0 –   —
TIMELINE
  Jul 24  Reserved by CNA
  Jul 27  Published (CNA: Arista)
CWE-918 · CNA: Arista · CVSS v4.0 · 1 reference · NVD status: Awaiting Analysis
Unknown MemberGlut — MemberGlut < 1.1.5 - Unauthenticated Privilege Escalation to Administrator
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0149   72.1     —
AFFECTED
  Product     Versions     Fixed
  MemberGlut  unspecified  —
TIMELINE
  Jun 16  Reserved by CNA
  Jul 27  Published (CNA: WPScan)
CWE-269 · CNA: WPScan · CVSS v3.1 · 1 reference · NVD status: Deferred
Progress LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF OS Command Injection via Management Interface
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   A   L   H   N  C  H  H  H    8.4   .0141   70.7     —
AFFECTED
  Product                          Versions                 Fixed
  LoadMaster                       All Previous Versions –  —
  ECS Connection Manager           7.2.60.0 –               —
  Object Scale Connection Manager  7.2.60.0 –               —
  MOVEit WAF                       7.2.60.0 –               —
TIMELINE
  Jul 6   Reserved by CNA
  Jul 27  Published (CNA: ProgressSoftware)
CWE-78 · CNA: ProgressSoftware · CVSS v3.1 · 1 reference · NVD status: Analyzed
Apache Thrift: Unbounded Read Leading to Denial of Service
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   N   N   L    6.9   .0107   62.4     —
AFFECTED
  Product        Versions  Fixed
  Apache Thrift  0.19.0 –  —
TIMELINE
  May 8   Reserved by CNA
  Jul 27  Published (CNA: apache)
CWE-770 · CNA: apache · CVSS v4.0 · 3 references · NVD status: Analyzed
vercel next.js — Next.js: Denial of Service in App Router using Server Actions
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   N   N   H    8.2   .0106   61.8     —
AFFECTED
  Product  Versions                Fixed
  next.js  >= 13.0.0, < 15.5.21 –  —
TIMELINE
  Jul 20  Reserved by CNA
  Jul 27  Published (CNA: GitHub_M)
CWE-834 · CNA: GitHub_M · CVSS v4.0 · 5 references · NVD status: Analyzed
vercel next.js — Next.js: Middleware / Proxy bypass in App Router applications using Turbopack and single locale
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   H   L   N    8.3   .0101   60.5     —
AFFECTED
  Product  Versions                Fixed
  next.js  >= 16.0.0, < 16.2.11 –  —
TIMELINE
  Jul 20  Reserved by CNA
  Jul 27  Published (CNA: GitHub_M)
CWE-285 · CNA: GitHub_M · CVSS v4.0 · 4 references · NVD status: Analyzed
Apple macOS — An access issue was addressed with improved access restrictions. This issue is fixed in macOS Sonoma 14.8.8…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  L  L    8.6   .0097   59.1     —
AFFECTED
  Product  Versions     Fixed
  macOS    unspecified  —
TIMELINE
  May 1   Reserved by CNA
  Jul 27  Published (CNA: apple)
CWE-284 · CNA: apple · CVSS v3.1 · 3 references · NVD status: Modified
vercel next.js — Next.js: Server-Side Request Forgery in Server Actions on Custom Servers
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   H   L   N    8.3   .0087   56.1     —
AFFECTED
  Product  Versions                Fixed
  next.js  >= 14.1.1, < 15.5.21 –  —
TIMELINE
  Jul 20  Reserved by CNA
  Jul 27  Published (CNA: GitHub_M)
CWE-918 · CNA: GitHub_M · CVSS v4.0 · 5 references · NVD status: Analyzed
Apple macOS — A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0085   55.3     —
AFFECTED
  Product  Versions     Fixed
  macOS    unspecified  —
TIMELINE
  Jul 20  Reserved by CNA
  Jul 27  Published (CNA: apple)
CWE-843 · CNA: apple · CVSS v3.1 · 3 references · NVD status: Analyzed
vercel next.js — Next.js: Server-Side Request Forgery in rewrites via attacker-controlled destination hostname
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   H   L   N    8.3   .0084   55.0     —
AFFECTED
  Product  Versions               Fixed
  next.js  >= 12.0.0 < 15.5.21 –  —
TIMELINE
  Jul 20  Reserved by CNA
  Jul 27  Published (CNA: GitHub_M)
CWE-601, CWE-918 · CNA: GitHub_M · CVSS v4.0 · 5 references · NVD status: Analyzed
Apple macOS — This issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0081   54.2     —
AFFECTED
  Product  Versions     Fixed
  macOS    unspecified  —
TIMELINE
  May 1   Reserved by CNA
  Jul 27  Published (CNA: apple)
CWE-20 · CNA: apple · CVSS v3.1 · 3 references · NVD status: Analyzed
Apple iOS and iPadOS — An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.1…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0078   53.3     —
AFFECTED
  Product         Versions     Fixed
  iOS and iPadOS  unspecified  —
  macOS           unspecified  —
  tvOS            unspecified  —
  visionOS        unspecified  —
  watchOS         unspecified  —
TIMELINE
  May 1   Reserved by CNA
  Jul 27  Published (CNA: apple)
CWE-787 · CNA: apple · CVSS v3.1 · 8 references · NVD status: Modified
Apple iOS and iPadOS — The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.1…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0078   53.3     —
AFFECTED
  Product         Versions     Fixed
  iOS and iPadOS  unspecified  —
  macOS           unspecified  —
  tvOS            unspecified  —
  visionOS        unspecified  —
  watchOS         unspecified  —
TIMELINE
  May 1   Reserved by CNA
  Jul 27  Published (CNA: apple)
CWE-119, CWE-787, CWE-416 · CNA: apple · CVSS v3.1 · 8 references · NVD status: Modified
Erlang OTP — Megaco flex scanner buffer overflow via oversized property parm name
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   N   L   H    8.3   .0078   53.1     —
AFFECTED
  Product  Versions  Fixed
  OTP      3.17.1 –  4.9.1
  OTP      R13B03 –  29.0.4
TIMELINE
  Jul 4   Reserved by CNA
  Jul 27  Published (CNA: EEF)
CWE-120, CWE-787 · CNA: EEF · CVSS v4.0 · 5 references · NVD status: Undergoing Analysis
Apple macOS — A use after free issue was addressed with improved memory management. This issue is fixed in macOS Sequoia …
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0077   53.0     —
AFFECTED
  Product  Versions     Fixed
  macOS    unspecified  —
TIMELINE
  Jul 20  Reserved by CNA
  Jul 27  Published (CNA: apple)
CWE-416 · CNA: apple · CVSS v3.1 · 3 references · NVD status: Analyzed
Apple iOS and iPadOS — A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 18.7.10 and iPadO…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0077   52.9     —
AFFECTED
  Product         Versions     Fixed
  iOS and iPadOS  unspecified  —
  macOS           unspecified  —
  tvOS            unspecified  —
  visionOS        unspecified  —
  watchOS         unspecified  —
TIMELINE
  May 1   Reserved by CNA
  Jul 27  Published (CNA: apple)
CWE-120 · CNA: apple · CVSS v3.1 · 8 references · NVD status: Modified
NitroShare Desktop 0.3.4 Path Traversal via LAN File Transfer Server
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   N   H   N    8.7   .0074   51.7     —
AFFECTED
  Product             Versions     Fixed
  nitroshare-desktop  unspecified  —
TIMELINE
  Jul 23  Reserved by CNA
  Jul 27  Published (CNA: VulnCheck)
CWE-22 · CNA: VulnCheck · CVSS v4.0 · 2 references · NVD status: Deferred
Apple iOS and iPadOS — The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.1…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0073   51.3     —
AFFECTED
  Product         Versions     Fixed
  iOS and iPadOS  unspecified  —
  macOS           unspecified  —
TIMELINE
  Jul 20  Reserved by CNA
  Jul 27  Published (CNA: apple)
CWE-119 · CNA: apple · CVSS v3.1 · 4 references · NVD status: Modified
Unknown Realtyna Organic IDX plugin + WPL Real Estate — Realtyna Organic IDX plugin + WPL Real Estate < 5.3.0 - Unauthenticated Arbitrary File Upload to Remote Code Execution
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0072   51.1     —
AFFECTED
  Product                                        Versions     Fixed
  Realtyna Organic IDX plugin + WPL Real Estate  unspecified  —
TIMELINE
  Jun 29  Reserved by CNA
  Jul 27  Published (CNA: WPScan)
CWE-434 · CNA: WPScan · CVSS v3.1 · 1 reference · NVD status: Deferred
Progress LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF OS Command Injection via Geo Location Management Interface
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   A   L   H   N  C  H  H  H    8.4   .0072   51.1     —
AFFECTED
  Product                          Versions    Fixed
  LoadMaster                       7.0.8 –     —
  ECS Connection Manager           7.2.60.0 –  —
  Object Scale Connection Manager  7.2.60.0 –  —
  MOVEit WAF                       7.2.60.0 –  —
TIMELINE
  Jul 6   Reserved by CNA
  Jul 27  Published (CNA: ProgressSoftware)
CWE-78 · CNA: ProgressSoftware · CVSS v3.1 · 1 reference · NVD status: Analyzed
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-596888.451.1Progress SoftwareLoadMasterCWE-78Progress LoadMaster, ECS Connection Manager, Object Scale Connection Manager,…
CVE-2026-436829.851.0ApplemacOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-646969.851.0ApplemacOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-545408.850.8pheditorpheditorCWE-78Authenticated terminal command whitelist bypass in Pheditor
CVE-2026-647719.850.4AppleiOS and iPadOSCWE-119A buffer overflow was addressed with improved bounds checking. This issue is …
CVE-2026-438188.850.2AppleiOS and iPadOSCWE-190An integer overflow was addressed with improved input validation. This issue …
CVE-2026-437509.850.0ApplemacOSCWE-120A buffer overflow was addressed with improved bounds checking. This issue is …
CVE-2026-242527.849.9NVIDIANeMo FrameworkCWE-78NVIDIA NeMo for Linux contains a vulnerability where an attacker may cause OS…
CVE-2026-647679.849.6ApplemacOSCWE-120A buffer overflow was addressed with improved bounds checking. This issue is …
CVE-2026-646446.349.4vercelnext.jsCWE-407Next.js: Denial of Service in the Image Optimization API using SVGs
CVE-2026-437699.849.3AppleiOS and iPadOSCWE-190An integer overflow was addressed with improved input validation. This issue …
CVE-2026-437789.848.6AppleiOS and iPadOSCWE-416A use after free issue was addressed with improved memory management. This is…
CVE-2026-437999.848.6AppleiOS and iPadOSCWE-416A use after free issue was addressed with improved memory management. This is…
CVE-2026-438229.848.6AppleiOS and iPadOSCWE-416A use after free issue was addressed with improved memory management. This is…
CVE-2026-647009.848.6AppleiOS and iPadOSCWE-416A use after free issue was addressed with improved memory management. This is…
CVE-2026-647699.848.3AppleiOS and iPadOSCWE-787An out-of-bounds write issue was addressed with improved bounds checking. Thi…
CVE-2026-647709.848.3AppleiOS and iPadOSCWE-787An out-of-bounds write issue was addressed with improved bounds checking. Thi…
CVE-2026-647749.848.3AppleiOS and iPadOSCWE-190An integer overflow was addressed with improved input validation. This issue …
CVE-2026-660157.248.2jfrogartifactoryCWE-269JFrog Platform contains an authorization flaw that may allow authenticated pr…
CVE-2026-559698.748.1Apache Software FoundationApache ThriftCWE-190Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Ap…
CVE-2026-491587.548.1Apache Software FoundationApache ThriftCWE-409Apache Thrift: Ruby THeaderTransport ZLIB Decompression Bomb
CVE-2026-647269.848.0AppleiOS and iPadOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-647339.848.0AppleiOS and iPadOSCWE-200This issue was addressed with improved data protection. This issue is fixed i…
CVE-2026-659218.847.9jfrogartifactoryCWE-22Potential path traversal leading to unauthorized file writes
CVE-2026-580236.947.8Apache Software FoundationApache ThriftCWE-125Apache Thrift: c_glib heap out-of-bounds read in transport leftover-bytes path
CVE-2026-586628.747.7Apache Software FoundationApache ThriftCWE-125Apache Thrift: C++ THeaderTransport::readString() info-header length bounds b…
CVE-2026-647729.847.7AppleiOS and iPadOSCWE-787An out-of-bounds write issue was addressed with improved input validation. Th…
CVE-2026-485868.747.5Apache Software FoundationApache ThriftCWE-409Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Ap…
CVE-2026-437799.847.5ApplemacOSCWE-284A logic issue was addressed with improved restrictions. This issue is fixed i…
CVE-2026-438129.847.2AppleiOS and iPadOSCWE-416A use after free issue was addressed with improved memory management. This is…
CVE-2026-438029.847.1AppleiOS and iPadOSCWE-787An out-of-bounds write issue was addressed with improved bounds checking. Thi…
CVE-2026-438099.847.1AppleiOS and iPadOSCWE-125An out-of-bounds read was addressed with improved bounds checking. This issue…
CVE-2026-647319.846.5ApplemacOSCWE-22A path handling issue was addressed with improved validation. This issue is f…
CVE-2026-438718.746.4Apache Software FoundationApache ThriftCWE-835Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: TCompactProtocol …
CVE-2026-559688.746.4Apache Software FoundationApache ThriftCWE-407Apache Thrift: Node.js quadratic-time DoS in server receive transports
CVE-2026-583898.746.4Apache Software FoundationApache ThriftCWE-770Apache Thrift: Rust binary protocol non-strict path missing string size limit
CVE-2026-416087.546.4Apache Software FoundationApache ThriftCWE-409Apache Thrift: Unbounded Zlib Decompression in Python THeaderTransport
CVE-2026-555799.846.2pheditorpheditorCWE-798Pheditor: Hardcoded default password 'admin' with no forced change enables fu…
CVE-2026-436949.846.1ApplemacOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-437649.846.1ApplemacOSCWE-190An integer overflow was addressed with improved input validation. This issue …
CVE-2026-437739.846.1ApplemacOSCWE-125An out-of-bounds read was addressed with improved bounds checking. This issue…
CVE-2026-437939.846.1ApplemacOSCWE-20An issue existed in the handling of environment variables. This issue was add…
CVE-2026-646949.846.1ApplemacOSCWE-190An integer overflow was addressed with improved input validation. This issue …
CVE-2026-646979.846.1ApplemacOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-646989.846.1ApplemacOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-667298.745.8boazsegevfacil.ioCWE-125facil.io 0.6.0 - 0.7.6 Integer Underflow DoS via Multipart MIME Body Parser
CVE-2026-667308.745.8boazsegevfacil.ioCWE-835facil.io 0.6.0 - 0.7.6 Infinite Loop DoS via Multipart MIME Body Parser
CVE-2026-667318.745.8boazsegevfacil.ioCWE-125facil.io 0.7.5 - 0.7.6 HTTP/1.1 Chunked Transfer Encoding Parser Crash DoS
CVE-2026-456239.145.4postcsspostcssCWE-22PostCSS: Arbitrary file read and information disclosure via attacker-controll…
CVE-2026-289289.845.1AppleiOS and iPadOSCWE-416A use after free issue was addressed with improved memory management. This is…
CVE-2026-438149.845.1AppleiOS and iPadOSCWE-416A use after free issue was addressed with improved memory management. This is…
CVE-2026-647299.845.1AppleiOS and iPadOSCWE-416A use after free issue was addressed with improved memory management. This is…
CVE-2026-567488.745.0CriblCribl StreamCWE-61Authenticated RCE via Symlink Following in Cribl Stream Pack Git Import
CVE-2026-656178.845.0jfrogartifactoryCWE-502Potential remote code execution on an Artifactory package service container.
CVE-2026-647389.844.8AppleiOS and iPadOSCWE-284A permissions issue was addressed with additional restrictions. This issue is…
CVE-2026-645419.844.3LinuxLinux—net/smc: fix UAF in smc_cdc_rx_handler() by pinning the socket
CVE-2026-647029.843.9ApplemacOSCWE-284An access issue was addressed with additional sandbox restrictions. This issu…
CVE-2026-647759.843.9AppleiOS and iPadOSCWE-665A memory initialization issue was addressed with improved memory handling. Th…
CVE-2026-660149.843.9jfrogartifactoryCWE-287Potential authentication bypass leading to privilege escalation in Artifactory
CVE-2026-647469.843.7AppleiOS and iPadOSCWE-862An authorization issue was addressed with improved validation. This issue is …
CVE-2025-504559.143.7n/an/aCWE-89SQL injection vulnerability exists in the order_by parameter of the /customer…
CVE-2026-559719.343.6Apache Software FoundationApache ThriftCWE-122Apache Thrift: C++ ZLIB heap buffer overflow (write) in THeaderTransport::unt…
CVE-2026-645359.843.4LinuxLinux—nvmet-tcp: Fix potential UAF when ddgst mismatch
CVE-2026-647356.543.4AppleiOS and iPadOSCWE-451An inconsistent user interface issue was addressed with improved state manage…
CVE-2026-437579.842.6AppleiOS and iPadOSCWE-125An out-of-bounds read was addressed with improved bounds checking. This issue…
CVE-2026-647629.842.6AppleiOS and iPadOSCWE-125An out-of-bounds read was addressed with improved bounds checking. This issue…
CVE-2026-646466.342.4vercelnext.jsCWE-770Next.js: Unbounded Server Action payload in Edge runtime
CVE-2026-647398.841.8AppleiOS and iPadOSCWE-787An out-of-bounds write issue was addressed with improved bounds checking. Thi…
CVE-2026-646436.341.6vercelnext.jsCWE-201Next.js: Unauthenticated Disclosure of Internal Server Function endpoints
CVE-2026-398739.841.5ApplemacOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-437109.841.5ApplemacOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-645519.141.4LinuxLinux—sctp: validate STALE_COOKIE cause length before reading staleness
CVE-2026-437309.841.3AppleiOS and iPadOSCWE-200A permissions issue was addressed with additional restrictions. This issue is…
CVE-2026-647519.840.4AppleiOS and iPadOSCWE-416A use after free issue was addressed with improved memory management. This is…
CVE-2026-289829.839.9ApplemacOSCWE-362A race condition was addressed with improved locking. This issue is fixed in …
CVE-2026-645457.539.9LinuxLinux—net, bpf: check master for NULL in xdp_master_redirect()
CVE-2026-437489.839.8ApplemacOSCWE-787An out-of-bounds write issue was addressed with improved bounds checking. Thi…
CVE-2026-647279.839.8ApplemacOSCWE-843A type confusion issue was addressed with improved memory handling. This issu…
CVE-2026-647688.139.8AppleiOS and iPadOSCWE-125An out-of-bounds read issue was addressed with improved input validation. Thi…
CVE-2026-647306.539.5AppleSafariCWE-451The issue was addressed with improved UI. This issue is fixed in Safari 26.6,…
CVE-2026-559706.939.2Apache Software FoundationApache ThriftCWE-126Apache Thrift: C++ heap out-of-bounds read in THeaderTransport::readHeaderFor…
CVE-2026-647578.838.4AppleSafariCWE-119A memory corruption issue was addressed with improved state management. This …
CVE-2026-647138.138.3AppleSafariCWE-203This issue was addressed with improved checks. This issue is fixed in Safari …
CVE-2026-647209.838.0AppleiOS and iPadOSCWE-362A race condition was addressed with improved state handling. This issue is fi…
CVE-2026-438216.537.4AppleSafariCWE-284An access issue was addressed with improved access restrictions. This issue i…
CVE-2026-646919.837.1ApplemacOSCWE-120A buffer overflow was addressed with improved size validation. This issue is …
CVE-2026-647436.536.6AppleiOS and iPadOSCWE-285An authorization issue was addressed with improved state management. This iss…
CVE-2026-289318.836.3AppleiOS and iPadOSCWE-120A buffer overflow was addressed with improved bounds checking. This issue is …
CVE-2026-515644.936.1n/an/aCWE-601An issue in the redirect parameter in Milk admin <=0.9.8 allows remote attack…
CVE-2026-427926.336.1ErlangOTPCWE-755epmd permanent DoS via EMFILE on accept(2) in erts
CVE-2026-438046.535.9AppleSafariCWE-400This issue was addressed through improved state management. This issue is fix…
CVE-2026-660186.535.7jfrogartifactoryCWE-200JFrog Artifactory build environment properties exposure
CVE-2026-647838.835.5AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-548908.234.8ErlangOTPCWE-191BEAM VM crash via integer underflow in binary_to_term BIT_BINARY_EXT decoding
CVE-2026-645349.834.6LinuxLinux—nvmet-tcp: check INIT_FAILED before nvmet_req_uninit in digest error path
CVE-2026-654427.234.7Subtle Web IncFormCraftCWE-918WordPress FormCraft plugin <= 3.9.15 - Server Side Request Forgery (SSRF) vul…
CVE-2026-175006.934.7ggml-orgllama.cppCWE-404ggml-org llama.cpp json-schema-to-grammar.cpp _visit_pattern null pointer der…
CVE-2026-175016.934.7ggml-orgllama.cppCWE-404ggml-org llama.cpp JSON-Schema-to-GBNF Conversion json-schema-to-grammar.cpp …
CVE-2026-289119.834.6ApplemacOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-647198.134.3AppleSafariCWE-125An out-of-bounds access issue was addressed with improved bounds checking. Th…
CVE-2026-438059.833.7AppleiOS and iPadOSCWE-362A race condition was addressed with improved state handling. This issue is fi…
CVE-2026-556858.733.1remix-runreact-routerCWE-400React Router: Unauthenticated Denial of Service via Inefficient Route Matching
CVE-2026-663916.533.2Apache Software FoundationApache WicketCWE-330Apache Wicket: leaked and missing CSP headers
CVE-2026-658948.732.8CP-PlusEZ-P21 IP CameraCWE-307Improper Authentication Vulnerability in CP PLUS EZ-P21 IP Camera
CVE-2026-595287.532.6shiptimeShipTime: Discounted Shipping RatesCWE-497WordPress ShipTime: Discounted Shipping Rates plugin <= 1.1.1 - Sensitive Dat…
CVE-2026-142899.032.5UnknownFacturaONE para WooCommerce con VeriFactuCWE-94WP FacturaONE < 5.37 - Unauthenticated Remote Code Execution
CVE-2026-582278.731.5ErlangOTPCWE-674TLS/DTLS denial of service via unbounded recursion on cross-signed peer certi…
CVE-2026-592398.631.1RoskusProspero Flow CRMCWE-79Stored XSS in Prospero Flow CRM email body allows administrator account takeover
CVE-2026-645317.830.7LinuxLinux—net: openvswitch: reject oversized nested action attrs
CVE-2026-659246.530.3jfrogartifactoryCWE-918Server-Side Request Forgery (SSRF) via Terraform Remote repository
CVE-2026-647286.530.0AppleSafariCWE-693A permissions issue was addressed with improved validation. This issue is fix…
CVE-2026-567478.729.9CriblCribl StreamCWE-94Code Injection in JSON Pointer Processing Component in Cribl Stream
CVE-2026-98308.229.4Unknownbookingpress-appointment-booking-proCWE-287BookingPress Pro < 5.7.3 - Unauthenticated Customer PII Disclosure and Bookin…
CVE-2026-659256.529.1jfrogartifactoryCWE-918Server-Side Request Forgery (SSRF) via JFrog Artifactory Cargo remote repository
CVE-2026-555788.828.8pheditorpheditorCWE-78Pheditor: Incomplete command sanitization in terminal feature allows RCE via …
CVE-2026-131528.128.8UnknownCustom Fields Account Registration For WoocommerceCWE-269Custom Fields Account Registration For WooCommerce < 1.4 - Unauthenticated Pr…
CVE-2026-595467.428.8John DarrelHide My WP GhostCWE-639WordPress Hide My WP Ghost plugin <= 7.0.06 - 2FA Bypass vulnerability
CVE-2026-597302.128.5withastroastroCWE-601@astrojs/node: Backslash-prefixed paths not recognized as internal by trailin…
CVE-2026-663906.128.3Apache Software FoundationApache WicketCWE-79Apache Wicket: crafted Link URL strings can break out of the JavaScript sequence
CVE-2026-654346.528.2yoomoneyЮKassa для WooCommerceCWE-201WordPress ЮKassa для WooCommerce plugin <= 2.16.1 - Sensitive Data Exposure v…
CVE-2026-646476.327.7vercelnext.jsCWE-116Next.js: Response Body Cache Confusion with Invalid UTF-8 Request Bodies
CVE-2026-542726.927.6beaugundersonip-addressCWE-20ip-address: Misclassification of IPv4-mapped/NAT64 IPv6 addresses can bypass …
CVE-2026-175529.127.5RRWOPlack::App::PrerenderCWE-918Plack::App::Prerender versions before 0.3.0 for Perl can proxy to an arbitrar…
CVE-2026-437926.527.4AppleSafariCWE-285An authorization issue was addressed with improved state management. This iss…
CVE-2026-659236.826.7jfrogartifactoryCWE-918Potential server-side request forgery in Artifactory Ansible repository handling
CVE-2026-595606.526.7RoxnorFundEngineCWE-862WordPress FundEngine plugin <= 1.7.8 - Broken Access Control vulnerability
CVE-2026-646486.026.0vercelnext.jsCWE-524Next.js: Response Body Cache Confusion for Requests Containing Bodies
CVE-2026-647257.125.8AppleiOS and iPadOSCWE-787An out-of-bounds write issue was addressed with improved bounds checking. Thi…
CVE-2026-663989.425.2thorstenphpMyFAQCWE-494phpMyFAQ before 4.1.6 Remote Code Execution via Configuration API
CVE-2021-320849.825.0n/an/aCWE-284An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0…
CVE-2026-663959.425.0siyuan-notesiyuanCWE-79SiYuan Desktop before v3.7.2 Reflected XSS to RCE via siyuan Protocol
CVE-2026-663978.624.8thorstenphpMyFAQCWE-22phpMyFAQ before 4.1.6 Path Traversal via category image deletion
CVE-2026-658788.324.8joomshaper.comSP Page Builder extension for JoomlaCWE-22Joomla Extension - joomshaper.com - Authenticated arbitrary file delete in SP…
CVE-2026-654366.824.8ThemeumKirkiCWE-22WordPress Kirki plugin <= 6.0.13 - Arbitrary File Deletion vulnerability
CVE-2026-135979.124.5Unknown微信二维码登陆CWE-287QRcode Login for WeChat <= 1.3 - Unauthenticated Account Takeover
CVE-2025-156628.624.5UnknownPrintcart Web to Print Product Designer for WooCommerceCWE-918Printcart Web to Print Product Designer for WooCommerce < 2.5.3 - Unauthentic…
CVE-2026-595397.524.5CozmoslabsPaid Member SubscriptionsCWE-639WordPress Paid Member Subscriptions plugin <= 3.0.7 - Insecure Direct Object …
CVE-2026-597295.124.5withastroastroCWE-79Astro: XSS via unescaped spread attribute names in renderHTMLElement (incompl…
CVE-2026-660287.124.4CreativeitemEkushey Project Manager CRMCWE-303Ekushey Project Manager CRM 5.0 Missing Uniqueness Constraint via Client Email
CVE-2026-398757.824.3ApplemacOSCWE-276A permissions issue was addressed with additional restrictions. This issue is…
CVE-2026-592518.724.1ErlangOTPCWE-770Denial of service via exponential certificate policy tree growth in path vali…
CVE-2026-664764.923.7Syed BalkhiEasy Digital DownloadsCWE-22WordPress Easy Digital Downloads plugin <= 3.6.9 - Arbitrary File Deletion vu…
CVE-2026-510787.523.7n/an/aCWE-200An issue in Dede CMS v.5.7.118 allows a remote attacker to obtain sensitive i…
CVE-2026-595317.523.6Anh TranFalcon – WordPress Optimizations & TweaksCWE-1284WordPress Falcon – WordPress Optimizations & Tweaks plugin <= 2.10.0 - Unknow…
CVE-2026-664127.123.5LeantimeLeantimeCWE-639Leantime all versions prior to and 3.6.2 Broken Access Control via tickets.ge…
CVE-2026-657656.923.4phoca.czPhoca Commander extension for JoomlaCWE-22Joomla Extension - phoca.cz - Path traversal vulnerability in Phoca Commander…
CVE-2026-510777.523.2n/an/aCWE-89SQL injection vulnerability in Dede CMS v.5.7.118 allows a remote attacker to…
CVE-2026-597272.123.1withastroastroCWE-79Astro: Cross-site scripting via unescaped transition:* directive values on hy…
CVE-2026-176126.922.8HoneywellS35 Series 3M/5M/8M/PinHole CamerasCWE-200Audit Log Exposure through Unauthorized Access
CVE-2026-536666.122.6remix-runreact-routerCWE-470React Router: Arbitrary Constructor Injection via deserializeErrors() in Reac…
CVE-2026-165545.122.2DaveGamblecJSONCWE-190Integer Overflow Leading to Heap Buffer Overflow in cJSON
CVE-2026-663969.321.6siyuan-notesiyuanCWE-79SiYuan before v3.7.2 Stored XSS to RCE via title-img IAL
CVE-2026-667587.821.6GNOMEGIMPCWE-190Gimp: integer overflow in file-fits plugin causes a heap-based buffer overflo…
CVE-2026-400001.821.6ZTEBlade A75 5GCWE-22Path Traversal Vulnerability in ZTE Blade A75 5G
CVE-2026-420178.821.4jfrogartifactoryCWE-200Privilege escalation via JFrog Worker event token exposure
CVE-2026-595487.521.3ByteflowsByteflows Travel &amp; Hotel BookingCWE-497WordPress Byteflows Travel & Hotel Booking plugin <= 1.0.0 - Sensitive Data E…
CVE-2021-320858.821.3n/an/aCWE-798An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0…
CVE-2021-320878.821.3n/an/aCWE-798An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0…
CVE-2026-647426.520.9AppleiOS and iPadOSCWE-319This issue was addressed by using HTTPS when sending information over the net…
CVE-2026-592406.920.8RoskusProspero Flow CRMCWE-639IDOR in Prospero Flow CRM allows deletion of other users' notifications
CVE-2026-557375.120.8ErlangOTPCWE-195Heap pointer corruption via signed/unsigned mismatch in LARGE_TUPLE_EXT decod…
CVE-2021-320889.820.6n/an/aCWE-384An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0…
CVE-2026-438137.120.5AppleiOS and iPadOSCWE-20A validation issue was addressed with improved input sanitization. This issue…
CVE-2026-148566.320.5Media ManagerTastyIgniterCWE-79Stored Cross-Site Scripting (XSS) in TastyIgniter Media Manager
CVE-2026-658799.820.4joomshaper.comSP Page Builder extension for JoomlaCWE-798Joomla Extension - joomshaper.com - Unauthenticated mail relay via a hardcode…
CVE-2026-159288.220.3XMLRPC-CXMLRPC-CCWE-79XMLRPC-C Library versions 1.07 through 1.67.01 are vulnerable to a reflected …
CVE-2026-536686.919.9remix-runreact-routerCWE-79React Router: Open redirect can lead to XSS
CVE-2026-654336.519.8themewantRT Mega Menu – Mega Menu Builder for Elementor &amp; GutenbergCWE-862WordPress RT Mega Menu – Mega Menu Builder for Elementor & Gutenberg plugin <…
CVE-2026-515656.119.8n/an/aCWE-79Cross-site scripting (XSS) vulnerability in Modules/Docs/DocsController.php i…
CVE-2026-595297.519.7motov.netEbook StoreCWE-862WordPress Ebook Store plugin <= 6.19 - Sensitive Data Exposure vulnerability
CVE-2026-668249.219.6lookyloolookylooCWE-79Stored Cross-Site Scripting via Unsafe Capture Tree JSON Embedding
CVE-2026-668256.919.6pivotickpivotickCWE-79Cross-Site Scripting via Unsafe URL Schemes in Pivotick Property Links
CVE-2026-175292.119.5AstrBotDevsAstrBotCWE-285AstrBotDevs AstrBot astr_main_agent.py authorization
CVE-2026-122558.119.3UnknownMainWP ChildCWE-287MainWP Child < 6.1.2 - Unauthenticated Administrator Authentication Bypass vi…
CVE-2026-481458.219.2Apache Software FoundationApache ThriftCWE-297Apache Thrift: C++ TSSLSocket matchName() RFC 6125 Wildcard Bypass
CVE-2026-645408.119.2LinuxLinux—usbnet: gl620a: fix out-of-bounds read in genelink_rx_fixup()
CVE-2026-645478.119.2LinuxLinux—net: usb: net1080: validate packet_len before pad-byte access in rx_fixup
CVE-2026-595377.618.8SenderSender – Newsletter, SMS and Email Marketing Automation for WooCommerceCWE-89WordPress Sender – Newsletter, SMS and Email Marketing Automation for WooComm…
CVE-2026-595518.518.6rtCamprtMedia for WordPress, BuddyPress and bbPressCWE-89WordPress rtMedia for WordPress, BuddyPress and bbPress plugin <= 4.7.10 - SQ…
CVE-2026-437287.518.5ApplemacOSCWE-362This issue was addressed through improved state management. This issue is fix…
CVE-2025-591814.818.4EricssonPacket Core Controller (PCC)CWE-35Path traversal Vulnerability
CVE-2026-663949.318.3siyuan-notesiyuanCWE-79SiYuan before v3.7.3 Stored and Reflected XSS via SVG Sanitizer Bypass
CVE-2026-597284.318.0withastroastroCWE-91@astrojs/rss: XML Injection via Unescaped RSS Feed Fields
CVE-2025-639137.517.7n/an/aCWE-400An issue was discovered in OpenSBI 1.3 allowing attackers to cause a denial o…
CVE-2026-657645.117.1phoca.czPhoca Commander extension for JoomlaCWE-79Joomla Extension - phoca.cz - Reflected XSS vulnerability in Phoca Maps 5.0.0…
CVE-2026-645548.816.7LinuxLinux—netfilter: bridge: fix stale prevhdr pointer in br_ip6_fragment()
CVE-2026-659225.416.5jfrogartifactoryCWE-862Potential unauthorized modification of Artifactory internal metadata
CVE-2026-595327.516.3magepeopleteamBooking and Rental ManagerCWE-1284WordPress Booking and Rental Manager plugin <= 2.7.2 - Price Manipulation vul…
CVE-2026-481449.116.2Apache Software FoundationApache ThriftCWE-297Apache Thrift: c_glib TLS Client Missing Hostname Verification
CVE-2026-667597.116.3GNOMEGIMPCWE-125Gimp: out-of-bounds read in file-icns plugin causes information disclosure or…
CVE-2026-120015.216.2TP-Link Systems Inc.TL-WR850N v3CWE-798Hardcoded Credential Vulnerability in Multiple TP-Link Router Models
CVE-2026-164818.415.9GoogleMCP Toolbox for Databases (googleapis/mcp-toolbox)CWE-918Server-Side Request Forgery (SSRF) and Credential Exfiltration in googleapis/…
CVE-2026-645368.116.0LinuxLinux—staging: rtl8723bs: fix OOB reads in is_ap_in_tkip() IE loop
CVE-2026-437767.815.3AppleiOS and iPadOSCWE-120A buffer overflow was addressed with improved bounds checking. This issue is …
CVE-2026-647477.815.1AppleiOS and iPadOSCWE-120A buffer overflow was addressed with improved size validation. This issue is …
CVE-2026-289817.815.0ApplemacOSCWE-120A buffer overflow was addressed with improved bounds checking. This issue is …
CVE-2026-133329.114.8UnknownMasteriyo LMSCWE-287Masteriyo LMS < 2.3.1 - Unauthenticated Arbitrary User Session Termination (D…
CVE-2026-108196.514.8MattermostMattermostCWE-409Mattermost Server Denial of Service via Animated GIF Emoji Upload
CVE-2026-595307.514.6Payment PluginsStripe For WooCommerceCWE-862WordPress Stripe For WooCommerce plugin <= 4.0.7 - Broken Access Control vuln…
CVE-2026-595347.514.6Aurovrata VenetPost My CF7 FormCWE-862WordPress Post My CF7 Form plugin <= 6.2.0 - Broken Access Control vulnerability
CVE-2026-595367.514.6CoCart HeadlessCoCart – Headless ecommerceCWE-862WordPress CoCart – Headless ecommerce plugin <= 4.8.4 - Broken Access Control…
CVE-2026-657669.214.4joomshaper.comSP Page Builder extension for JoomlaCWE-89Joomla Extension - joomshaper.com - Unauthenticated SQL injection in SP Page …
CVE-2026-437534.614.5AppleiOS and iPadOSCWE-125An out-of-bounds read was addressed with improved bounds checking. This issue…
CVE-2026-595576.514.2FrankyEvents Made EasyCWE-862WordPress Events Made Easy plugin <= 3.1.3 - Broken Access Control vulnerability
CVE-2026-654356.514.2Thrive Themes CouponThrive Leads VersionCWE-862WordPress Thrive Leads Version plugin <= 10.9.2 - Broken Access Control vulne…
CVE-2026-559539.114.0ErlangOTPCWE-757TLS 1.2 and DTLS client accepts unoffered anonymous cipher suite, bypassing s…
CVE-2026-420168.814.1jfrogartifactoryCWE-863Incorrect authorization validation of user token in JFrog Artifactory allows …
CVE-2026-175688.813.9DevolutionsServerCWE-863Improper access control in the role membership management endpoint in Devolut…
CVE-2026-142357.513.9UnknownDownload ManagerCWE-284WordPress Download Manager < 3.3.62 - Unauthorized Protected File Download vi…
CVE-2026-667575.513.9GNOMEGIMPCWE-190Gimp: signed integer overflow in file-sgi (sgi-lib) causes the plugin to cras…
CVE-2026-536695.113.8remix-runreact-routerCWE-601React Router: Open redirect via backslash in <Link> and useNavigate (CVE-2025…
CVE-2026-663998.513.7thorstenphpMyFAQCWE-269phpMyFAQ before 4.1.6 Privilege Escalation via Group Membership
CVE-2026-437664.613.7ApplemacOSCWE-287An authorization issue was addressed with improved state management. This iss…
CVE-2026-595279.313.5RomanCodeMapSVGCWE-89WordPress MapSVG plugin <= 8.14.0 - SQL Injection vulnerability
CVE-2026-595339.313.5Christoph VielgraderRelevanssi LightCWE-89WordPress Relevanssi Light plugin <= 1.2.2 - SQL Injection vulnerability
CVE-2026-595389.313.5Ruben GarciaGamiPressCWE-89WordPress GamiPress plugin <= 7.9.7 - SQL Injection vulnerability
CVE-2026-595499.313.5rtCamprtMedia for WordPress, BuddyPress and bbPressCWE-89WordPress rtMedia for WordPress, BuddyPress and bbPress plugin <= 4.7.10 - SQ…
CVE-2026-595509.313.5Strategy11 TeamAWP ClassifiedsCWE-89WordPress AWP Classifieds plugin <= 4.4.7 - SQL Injection vulnerability
CVE-2026-148276.813.4UnknownCalendarCWE-79Calendar < 1.3.18 - Contributor+ Stored XSS via event_link Parameter
CVE-2026-658769.213.3joomshaper.comSP Page Builder extension for JoomlaCWE-89Joomla Extension - joomshaper.com - Unauthenticated SQL injection in SP Page …
CVE-2026-658937.013.3CP-PlusEZ-P21 IP CameraCWE-489Arbitrary Code Execution Vulnerability in CP PLUS EZ-P21 IP Camera
CVE-2026-658778.213.1joomshaper.comSP Page Builder extension for JoomlaCWE-89Joomla Extension - joomshaper.com - Authenticated SQL injection in SP Page Bu…
CVE-2026-596908.012.9Progress SoftwareLoadMasterCWE-862Progress LoadMaster, ECS Connection Manager, Object Scale Connection Manager,…
CVE-2026-148205.312.8UnknownQuiz and Survey Master (QSM)CWE-200Quiz And Survey Master < 11.1.3 - Unauthenticated User Enumeration and Passwo…
CVE-2026-664425.412.7YayCommerceYayPricingCWE-862WordPress YayPricing plugin <= 3.5.6 - Broken Access Control vulnerability
CVE-2026-656168.812.4jfrogartifactoryCWE-347Potential privilege escalation to JFrog administrator privileges
CVE-2026-175277.712.5Red HatRed Hat OpenShift Virtualization 4CWE-639Virt-cdi-operator: containerized-data-importer: cdi.kubevirt.io:view aggregat…
CVE-2026-647409.312.3AppleiOS and iPadOSCWE-22A parsing issue in the handling of directory paths was addressed with improve…
CVE-2026-664277.612.2jgwhite33WP Google Review SliderCWE-89WordPress WP Google Review Slider plugin <= 18.4 - SQL Injection vulnerability
CVE-2026-106834.612.2zephyrprojectzephyrCWE-835DesignWare I2C target driver can be wedged into a permanent stuck state by an…
CVE-2026-106004.311.9MattermostMattermostCWE-770Denial of service via unbounded document content extraction in Mattermost Server
CVE-2026-437717.111.6ApplemacOSCWE-121A stack overflow was addressed with improved input validation. This issue is …
CVE-2026-660535.911.5Apache Software FoundationApache ThriftCWE-297Apache Thrift: Python TSSLSocket Hostname Matcher Import
CVE-2026-175302.111.6AstrBotDevsAstrBotCWE-285AstrBotDevs AstrBot Subagent astr_agent_tool_exec.py _build_handoff_toolset a…
CVE-2026-437728.211.4ApplemacOSCWE-22A path traversal issue was addressed with improved input validation. This iss…
CVE-2026-595357.311.4Thrive Themes CouponThrive Product ManagerCWE-862WordPress Thrive Product Manager plugin <= 10.9.2 - Broken Access Control vul…
CVE-2026-647324.611.4AppleiOS and iPadOSCWE-284This issue was addressed through improved state management. This issue is fix…
CVE-2026-480525.411.3papra-hqpapraCWE-639Papra: Cross-organization tag deletion and modification via authenticated cro…
CVE-2026-656186.510.9jfrogartifactoryCWE-918Improper URL validation when handling specific URLs Pub, Terraform and Docker…
CVE-2026-124937.510.8UnknownClover Payment Gateway by Zaytech for WooCommerceCWE-287Clover Payment Gateway by Zaytech for WooCommerce < 1.3.6 - Unauthenticated P…
CVE-2026-647225.510.7AppleiOS and iPadOSCWE-120A buffer overflow issue was addressed with improved memory handling. This iss…
CVE-2026-480513.510.7papra-hqpapraCWE-918Papra: SSRF via HTTP redirect bypass in webhook delivery
CVE-2026-647637.810.6AppleiOS and iPadOSCWE-787An out-of-bounds write issue was addressed by removing the vulnerable code. T…
CVE-2026-436987.810.4ApplemacOSCWE-88An injection issue was addressed with improved validation. This issue is fixe…
CVE-2026-595596.510.4themewantRT Mega Menu – Mega Menu Builder for Elementor &amp; GutenbergCWE-79WordPress RT Mega Menu – Mega Menu Builder for Elementor & Gutenberg plugin <…
CVE-2026-646995.510.4ApplemacOSCWE-457A memory initialization issue was addressed with improved memory handling. Th…
CVE-2026-437655.510.2ApplemacOSCWE-59This issue was addressed with improved handling of symlinks. This issue is fi…
CVE-2026-437237.810.1AppleiOS and iPadOSCWE-22A path handling issue was addressed with improved validation. This issue is f…
CVE-2026-145686.510.1UnknownUser Frontend: AI Powered Frontend Post Submission, User Directory, User Profile, Membership & User RegistrationCWE-287WP User Frontend < 4.3.8 - Unauthenticated Author-less Attachment Deletion
CVE-2026-536676.110.1remix-runreact-routerCWE-79React Router: Cross-site Scripting is Possible due to Missing RSCErrorHandler…
CVE-2026-647185.510.0AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-398777.89.7AppleiOS and iPadOSCWE-119A memory corruption issue was addressed with improved memory handling. This i…
CVE-2026-437745.59.7ApplemacOSCWE-787An out-of-bounds read was addressed with improved bounds checking. This issue…
CVE-2026-175311.39.7unitedbyaidroidclawCWE-285unitedbyai droidclaw Unsigned Scheduled Callback goals.ts authorization
CVE-2026-437497.89.5ApplemacOSCWE-22A parsing issue in the handling of directory paths was addressed with improve…
CVE-2026-664737.59.3XenditXendit PaymentCWE-862WordPress Xendit Payment plugin <= 7.1.0 - Broken Access Control vulnerability
CVE-2026-437385.59.3AppleiOS and iPadOSCWE-125The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-129898.79.2Ghost RoboticsVision 60CWE-306Multiple vulnerabilities in Ghost Robotics' Vision 60
CVE-2026-596898.09.2Progress SoftwareLoadMasterCWE-863Progress LoadMaster, ECS Connection Manager, Object Scale Connection Manager,…
CVE-2026-647647.89.1AppleiOS and iPadOSCWE-787An out-of-bounds write issue was addressed with improved bounds checking. Thi…
CVE-2026-647657.89.1AppleiOS and iPadOSCWE-190An integer overflow was addressed with improved input validation. This issue …
CVE-2026-288967.79.0AppleiOS and iPadOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-647105.59.0ApplemacOSCWE-200A privacy issue was addressed by removing sensitive data. This issue is fixed…
CVE-2026-647345.58.8AppleiOS and iPadOSCWE-200The issue was addressed with improved checks. This issue is fixed in iOS 18.7…
CVE-2026-647415.58.8AppleiOS and iPadOSCWE-200A permissions issue was addressed with additional restrictions. This issue is…
CVE-2026-647445.58.8AppleiOS and iPadOSCWE-200An information leakage was addressed with additional validation. This issue i…
CVE-2026-655645.38.8chrisvrichardsonMapPress Maps for WordPressCWE-497WordPress MapPress Maps for WordPress plugin <= 2.97.6 - Sensitive Data Expos…
CVE-2026-664385.38.8Tim StriflerExclusive Addons ElementorCWE-497WordPress Exclusive Addons Elementor plugin <= 2.8.0 - Sensitive Data Exposur…
CVE-2026-654456.58.7iSaumyaAd Invalid Click Protector (AICP)CWE-862WordPress Ad Invalid Click Protector (AICP) plugin <= 1.3.0 - Broken Access C…
CVE-2026-437545.58.7AppleiOS and iPadOSCWE-200This issue was addressed with improved redaction of sensitive information. Th…
CVE-2026-437585.58.7ApplemacOSCWE-200An authorization issue was addressed with improved state management. This iss…
CVE-2021-320869.88.7n/an/aCWE-321An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0…
CVE-2026-289738.68.6AppleiOS and iPadOSCWE-190An integer overflow was addressed with improved input validation. This issue …
CVE-2026-289127.88.6ApplemacOSCWE-693A logic issue was addressed with improved restrictions. This issue is fixed i…
CVE-2026-437297.88.6AppleiOS and iPadOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-437337.88.6AppleiOS and iPadOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-437807.88.6AppleiOS and iPadOSCWE-190An integer overflow was addressed with improved input validation. This issue …
CVE-2026-647167.88.6AppleiOS and iPadOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-289325.58.5ApplemacOSCWE-400A logic issue existed resulting in memory corruption. This was addressed with…
CVE-2026-437685.58.5ApplemacOSCWE-400The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-595527.28.4Shahadat Hossain3D Flipbook PDF Viewer &amp; EmbedderCWE-918WordPress 3D Flipbook PDF Viewer & Embedder plugin <= 1.4.2 - Server Side Req…
CVE-2026-647085.58.4ApplemacOSCWE-693A file quarantine bypass was addressed with additional checks. This issue is …
CVE-2026-438005.58.3AppleiOS and iPadOSCWE-200An information disclosure issue was addressed by removing the vulnerable code…
CVE-2026-437975.58.1AppleiOS and iPadOSCWE-200This issue was addressed with improved checks. This issue is fixed in iOS 18.…
CVE-2026-647452.48.1ApplemacOSCWE-287This issue was addressed with additional restrictions on the lock screen. Thi…
CVE-2026-646927.18.0AppleiOS and iPadOSCWE-125An out-of-bounds read was addressed with improved bounds checking. This issue…
CVE-2026-437145.57.9AppleiOS and iPadOSCWE-20The issue was addressed with improved input sanitization. This issue is fixed…
CVE-2026-437965.57.9AppleiOS and iPadOSCWE-200This issue was addressed with improved data protection. This issue is fixed i…
CVE-2026-438015.57.9AppleiOS and iPadOSCWE-200This issue was addressed with improved checks. This issue is fixed in iOS 18.…
CVE-2026-647095.58.0AppleiOS and iPadOSCWE-200The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-647215.57.9AppleiOS and iPadOSCWE-664This issue was addressed through improved state management. This issue is fix…
CVE-2026-647667.87.9AppleiOS and iPadOSCWE-190An integer overflow was addressed with improved input validation. This issue …
CVE-2026-206725.57.9ApplemacOSCWE-200An information disclosure issue was addressed with improved privacy controls.…
CVE-2026-437635.57.9ApplemacOSCWE-284A permissions issue was addressed by removing the vulnerable code. This issue…
CVE-2026-289457.17.8ApplemacOSCWE-284A permissions issue was addressed with additional sandbox restrictions. This …
CVE-2026-133905.37.7UnknownThe Events CalendarCWE-862The Events Calendar < 6.16.5.1 - Unauthenticated Event Aggregator Import Stat…
CVE-2026-437477.17.6ApplemacOSCWE-125An out-of-bounds read was addressed with improved bounds checking. This issue…
CVE-2026-647235.57.7AppleiOS and iPadOSCWE-284A logic issue was addressed with improved checks. This issue is fixed in iOS …
CVE-2025-591728.57.6EricssonPacket Core Controller (PCC)CWE-78Improper Neutralization of Special Elements used in an OS Command Vulnerability
CVE-2026-437395.57.5AppleiOS and iPadOSCWE-787An out-of-bounds write issue was addressed with improved bounds checking. Thi…
CVE-2026-437445.57.5AppleiOS and iPadOSCWE-787An out-of-bounds write issue was addressed with improved bounds checking. Thi…
CVE-2026-437825.57.5ApplemacOSCWE-200This issue was addressed with improved checks. This issue is fixed in macOS S…
CVE-2026-438165.57.5AppleiOS and iPadOSCWE-787An out-of-bounds write issue was addressed with improved bounds checking. Thi…
CVE-2026-438175.57.5AppleiOS and iPadOSCWE-125An out-of-bounds read was addressed with improved bounds checking. This issue…
CVE-2026-646935.57.5AppleiOS and iPadOSCWE-843A type confusion issue was addressed with improved checks. This issue is fixe…
CVE-2026-647245.57.5AppleiOS and iPadOSCWE-400The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-647765.57.6ApplemacOSCWE-125The issue was addressed with improved bounds checks. This issue is fixed in m…
CVE-2026-64549await7.6LinuxLinux—Bluetooth: bpa10x: avoid OOB read of revision string in bpa10x_setup()
CVE-2026-437595.57.5ApplemacOSCWE-200An authorization issue was addressed with improved state management. This iss…
CVE-2026-436737.87.2AppleiOS and iPadOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-437117.87.2AppleiOS and iPadOSCWE-119A memory corruption issue was addressed with improved memory handling. This i…
CVE-2026-647497.87.3AppleiOS and iPadOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-647587.87.3AppleiOS and iPadOSCWE-119The issue was addressed with improved bounds checks. This issue is fixed in i…
CVE-2026-64538await7.2LinuxLinux—ipv6: Fix null-ptr-deref in fib6_nh_mtu_change().
CVE-2026-64544await7.2LinuxLinux—crypto: asymmetric_keys - fix OOB read in pefile_digest_pe_contents
CVE-2026-64553await7.2LinuxLinux—net: psample: fix info leak in PSAMPLE_ATTR_DATA
CVE-2026-595537.17.0RexThemeProduct Feed ManagerCWE-79WordPress Product Feed Manager plugin <= 7.6.1 - Cross Site Scripting (XSS) v…
CVE-2026-595567.17.0acowebsDynamic Pricing With Discount Rules for WooCommerceCWE-79WordPress Dynamic Pricing With Discount Rules for WooCommerce plugin <= 4.5.1…
CVE-2026-595587.17.0wpdevelopBooking CalendarCWE-79WordPress Booking Calendar plugin <= 11.4.2 - Cross Site Scripting (XSS) vuln…
CVE-2026-647115.56.9AppleiOS and iPadOSCWE-285This issue was addressed with additional entitlement checks. This issue is fi…
CVE-2026-436817.16.7ApplemacOSCWE-120A buffer overflow was addressed with improved bounds checking. This issue is …
CVE-2026-647555.56.8AppleiOS and iPadOSCWE-200An authorization issue was addressed with improved state management. This iss…
CVE-2026-64537await6.7LinuxLinux—bridge: cfm: reject invalid CCM interval at configuration time
CVE-2026-64542await6.7LinuxLinux—ipv6: ndisc: fix NULL deref in accept_untracked_na()
CVE-2026-647378.26.5ApplemacOSCWE-284An authorization issue was addressed with improved state management. This iss…
CVE-2026-655675.36.5NexcessEvent TicketsCWE-862WordPress Event Tickets plugin <= 5.29.0.1 - Broken Access Control vulnerability
CVE-2026-664775.36.5ShufflehoundGillionCWE-862WordPress Gillion theme <= 4.13 - Broken Access Control vulnerability
CVE-2026-142364.76.5UnknownContact Form 7CWE-601Contact Form 7 – PayPal & Stripe Add-on < 2.5 - Open Redirect
CVE-2026-436727.16.4ApplemacOSCWE-863An authorization issue was addressed with improved state management. This iss…
CVE-2026-437565.56.5ApplemacOSCWE-200A logic issue was addressed with improved validation. This issue is fixed in …
CVE-2026-437755.56.4ApplemacOSCWE-285An authorization issue was addressed with improved state management. This iss…
CVE-2026-647075.56.5AppleiOS and iPadOSCWE-732A permissions issue was addressed with improved validation. This issue is fix…
CVE-2026-647545.56.3AppleiOS and iPadOSCWE-787An out-of-bounds write issue was addressed with improved bounds checking. Thi…
CVE-2026-124955.36.0MercusysMB115-4GCWE-121Stack-Based Buffer Overflow in the Mercusys MB115-4G
CVE-2026-437675.06.0ApplemacOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-438195.55.9ApplemacOSCWE-284An access issue was addressed with additional sandbox restrictions. This issu…
CVE-2026-660295.15.9CreativeitemEkushey Project Manager CRMCWE-79Ekushey Project Manager CRM 5.0 Stored XSS via Client Name Field
CVE-2026-660305.15.9CreativeitemEkushey Project Manager CRMCWE-79Ekushey Project Manager CRM 5.0 Stored XSS via Ticket Title Field
CVE-2026-660315.15.9CreativeitemEkushey Project Manager CRMCWE-79Ekushey Project Manager CRM 5.0 Stored XSS via Reply Ticket Field
CVE-2026-655685.05.9Visual ComposerVisual Composer Website BuilderCWE-862WordPress Visual Composer Website Builder plugin <= 45.15.0 - Broken Access C…
CVE-2026-137267.15.7UnknownMPGCWE-79Multiple Page Generator Plugin – MPG < 4.1.8 - Reflected XSS via mpg_shortcode
CVE-2026-129826.15.6UnknownDocument GalleryCWE-79Document Gallery < 5.1.1 - Reflected XSS via dg_generate_gallery
CVE-2026-141906.15.6UnknownSina Extension for ElementorCWE-79Sina Extension for Elementor < 3.10.2 - Reflected XSS
CVE-2026-175694.35.6DevolutionsServerCWE-522Improper access control in the NetBox synchronizer in Devolutions Server allo…
CVE-2026-175704.35.5DevolutionsServerCWE-639Improper access control in the PAM password history endpoints in Devolutions …
CVE-2026-106827.85.4zephyrprojectzephyrCWE-787Out-of-bounds write in Zephyr `log_filter_set` syscall verifier reachable fro…
CVE-2026-565373.55.3HCLSoftwareConnectionsCWE-209HCL Connections is vulnerable to information disclosure
CVE-2026-565383.55.3HCLSoftwareConnectionsCWE-213HCL Connections is vulnerable to information disclosure
CVE-2026-141893.85.2UnknownWPBotCWE-89WPBot AI ChatBot < 8.5.2 - Admin+ Second-Order SQL Injection via qc_bot_str_f…
CVE-2026-123837.54.9Red HatRed Hat Ansible Automation Platform 2.5 for RHEL 8CWE-345Eda-server: externaleventstreamviewset trusts subject header without validati…
CVE-2026-619537.24.8QuantumCloudSimple Link Directory ProCWE-918WordPress Simple Link Directory Pro plugin <= 15.0.6 - Server Side Request Fo…
CVE-2026-398747.84.5ApplemacOSCWE-276A permissions issue was addressed with additional restrictions. This issue is…
CVE-2026-470784.84.4ErlangOTPCWE-23Relative path traversal in zip:unzip/zip:extract via check_dir_level depth-co…
CVE-2026-438065.54.3ApplemacOSCWE-400A denial of service issue was addressed by removing the vulnerable code. This…
CVE-2026-288495.54.2ApplemacOSCWE-290The issue was addressed with improved checks. This issue is fixed in macOS Se…
CVE-2026-289005.54.2ApplemacOSCWE-290A file quarantine bypass was addressed with additional checks. This issue is …
CVE-2025-591776.84.1EricssonEricsson Packet Core Controller (PCC)CWE-209Generation of Error Message Containing Sensitive Information Vulnerability
CVE-2025-591784.84.1EricssonPacket Core Controller (PCC)CWE-497Exposure of Sensitive System Information to an Unauthorized Control Sphere Vu…
CVE-2026-100826.13.9UnknownAdvanced AdsCWE-79Advanced Ads – Ad Manager & AdSense < 2.0.23 - Contributor+ Stored XSS via th…
CVE-2026-134006.13.9UnknownSimply Schedule AppointmentsCWE-79Simply Schedule Appointments < 1.6.12.4 - Unauthenticated Stored XSS via Book…
CVE-2026-129918.73.7Ghost RoboticsVision 60CWE-300Multiple vulnerabilities in Ghost Robotics' Vision 60
CVE-2026-645488.43.7LinuxLinux—bpf, sockmap: reject overflowing copy + len in bpf_msg_push_data()
CVE-2026-645528.43.7LinuxLinux—virtio-net: fix len check in receive_big()
CVE-2026-619577.13.7miniOrangeminiorange otp verificationCWE-79WordPress miniorange otp verification plugin <= 5.5.1 - Cross Site Scripting …
CVE-2026-654377.13.7CleanTalk IncSpam protection, AntiSpam, FireWall by CleanTalkCWE-79WordPress Spam protection, AntiSpam, FireWall by CleanTalk plugin <= 6.82 - C…
CVE-2026-654387.13.7Kofi MokomeMessage Filter for Contact Form 7CWE-79WordPress Message Filter for Contact Form 7 plugin <= 1.6.3.9 - Cross Site Sc…
CVE-2026-654397.13.7ThemeficUltimate Addons for Contact Form 7CWE-79WordPress Ultimate Addons for Contact Form 7 plugin <=3.5.45 - Cross Site Scr…
CVE-2026-654407.13.7RoxnorGetGenieCWE-79WordPress GetGenie plugin <= 4.4.3 - Cross Site Scripting (XSS) vulnerability
CVE-2026-654417.13.7NexcessGiveWPCWE-79WordPress GiveWP plugin <= 4.16.3 - Cross Site Scripting (XSS) vulnerability
CVE-2026-654437.13.7WP MediaBackWPupCWE-79WordPress BackWPup plugin <= 5.7.4 - Cross Site Scripting (XSS) vulnerability
CVE-2026-654467.13.7WP ChillKali FormsCWE-79WordPress Kali Forms plugin <= 2.4.18 - Cross Site Scripting (XSS) vulnerability
CVE-2026-654477.13.7Wasiliy Strecker / ContestGallery developerContest GalleryCWE-79WordPress Contest Gallery plugin <= 30.0.6 - Cross Site Scripting (XSS) vulne…
CVE-2026-142034.83.4UnknownSmart ManagerCWE-79Smart Manager < 8.92.0 - Contributor+ Stored XSS via Post Title
CVE-2026-437814.73.4ApplemacOSCWE-362A race condition was addressed with improved state handling. This issue is fi…
CVE-2026-289267.03.3ApplemacOSCWE-362A race condition was addressed with improved state handling. This issue is fi…

Results continue: ranks 401–440.

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-07-27 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.

Machine-readable. This edition as JSON or CSV — the ranked results, transactions, and counts, for citation or ingestion. Frozen at publication; later changes appear as transactions on later editions.