boxscore/security

A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?

Thursday, July 30, 2026 · all times UTC← 2026-07-29 · archive · 2026-07-31 →

Edition of July 30, 2026, continued — page 2 of 2. Back to page 1

Results (continued, ranked) — ranks 401–662 of 662
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-129457.112.2IBMLangflow OSSCWE-639Langflow is affected by exposed credentials due to multiple unauthenticated a…
CVE-2026-672457.012.3ASUSTOR Inc.ADMCWE-22A path traversal vulnerability was found in the VPN Clients on the ADM
CVE-2026-648705.312.21Panel-devMaxKBCWE-918MaxKB: UpdateStoreTool fetches caller-supplied app-store URLs without host va…
CVE-2026-179095.312.1GoogleChromeCWE-20Insufficient validation of untrusted input in Isolated Web Apps in Google Chr…
CVE-2026-178794.312.0GoogleChromeCWE-346Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922…
CVE-2026-178804.312.0GoogleChromeCWE-346Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922…
CVE-2026-134448.111.8IBMLangflow OSSCWE-520Langflow is affected by remote code execution, denial of service, path traver…
CVE-2026-118676.511.8UnknownFrontend Admin by DynamiAppsCWE-862Frontend Admin by DynamiApps < 3.29.7 - Subscriber+ Taxonomy Term Creation/Mo…
CVE-2026-152505.311.8UnknownAppointment Booking PluginCWE-284LatePoint < 5.6.8 - Unauthenticated Booking Object Mass Assignment via Public…
CVE-2026-179785.311.7GoogleChromeCWE-1300Side-channel information leakage in WebCodecs in Google Chrome prior to 151.0…
CVE-2026-178745.411.6GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-675284.311.5opfopenprojectCWE-863OpenProject: Improper Access Control through /api/v3/custom_options/:id via P…
CVE-2026-441026.911.4Phoenix ContactCHARX SEC-3150CWE-362OCPP Firmware download is not properly locked
CVE-2026-159746.511.3SGLangSGLangCWE-918CVE-2026-15974
CVE-2026-177806.311.4GoogleChromeCWE-284Inappropriate implementation in Isolated Web Apps in Google Chrome prior to 1…
CVE-2026-145926.111.4UnknownWP Real IP-based Access ControlCWE-79WP Real IP-based Access Control <= 1.3.1 - Unauthenticated Stored XSS via acl…
CVE-2026-177896.511.2GoogleChromeCWE-20Insufficient validation of untrusted input in Chrome for iOS in Google Chrome…
CVE-2026-179236.511.2GoogleChromeCWE-693Policy bypass in Enterprise in Google Chrome prior to 151.0.7922.72 allowed a…
CVE-2026-179296.511.2GoogleChromeCWE-20Insufficient validation of untrusted input in DevTools in Google Chrome prior…
CVE-2026-179866.511.3GoogleChromeCWE-284Insufficient policy enforcement in Bluetooth in Google Chrome prior to 151.0.…
CVE-2026-177976.111.2GoogleChromeCWE-79Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-177285.411.2GoogleChromeCWE-79Inappropriate implementation in Extensions in Google Chrome prior to 151.0.79…
CVE-2026-177345.411.2GoogleChromeCWE-79Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922…
CVE-2026-142234.310.9UnknownEasy AppointmentsCWE-639Easy Appointments < 3.12.28 - Subscriber+ Customer PII Disclosure via IDOR
CVE-2026-177023.110.9GoogleChromeCWE-346Inappropriate implementation in Skia in Google Chrome prior to 151.0.7922.72 …
CVE-2026-177153.110.9GoogleChromeCWE-346Inappropriate implementation in Passwords in Google Chrome prior to 151.0.792…
CVE-2026-152407.510.8UnknownCustomer SwitchingCWE-287Customer Switching for WooCommerce < 2.1.3 - Customer+ Privilege Escalation t…
CVE-2026-177417.110.7GoogleChromeCWE-20Insufficient validation of untrusted input in WebView in Google Chrome on And…
CVE-2026-177507.110.7GoogleChromeCWE-416Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a rem…
CVE-2026-179797.510.6GoogleChromeCWE-362Race in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker …
CVE-2026-180029.610.5GoogleChromeCWE-20Insufficient validation of untrusted input in Google Lens in Google Chrome pr…
CVE-2026-180159.610.5GoogleChromeCWE-693Inappropriate implementation in Tint in Google Chrome on Mac prior to 151.0.7…
CVE-2026-152555.310.4UnknownRegistrationMagicCWE-639RegistrationMagic < 6.0.9.4 - Unauthenticated Form Submission Disclosure via …
CVE-2026-156588.110.3foreUPforeUPCWE-639foreUP customer REST API allows unauthenticated endpoint access
CVE-2026-156576.510.3foreUPforeUPCWE-522foreUP customer REST API allows authenticated users to read cleartext payment…
CVE-2026-177314.310.3GoogleChromeCWE-346Inappropriate implementation in Autofill in Google Chrome on Android prior to…
CVE-2026-177334.310.3GoogleChromeCWE-346Inappropriate implementation in QUIC in Google Chrome on Android prior to 151…
CVE-2026-177424.310.3GoogleChromeCWE-346Insufficient policy enforcement in Payments in Google Chrome prior to 151.0.7…
CVE-2026-177534.310.3GoogleChromeCWE-346Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922…
CVE-2026-177624.310.3GoogleChromeCWE-346Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-177634.310.3GoogleChromeCWE-346Inappropriate implementation in GPU in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-177654.310.3GoogleChromeCWE-346Inappropriate implementation in WebProtect in Google Chrome prior to 151.0.79…
CVE-2026-177754.310.3GoogleChromeCWE-346Inappropriate implementation in PresentationAPI in Google Chrome prior to 151…
CVE-2026-177774.310.3GoogleChromeCWE-346Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922…
CVE-2026-177884.310.3GoogleChromeCWE-346Inappropriate implementation in Blink in Google Chrome prior to 151.0.7922.72…
CVE-2026-177984.310.3GoogleChromeCWE-346Inappropriate implementation in Cast in Google Chrome prior to 151.0.7922.72 …
CVE-2026-178024.310.4GoogleChromeCWE-1300Side-channel information leakage in GPU in Google Chrome on Android prior to …
CVE-2026-178154.310.3GoogleChromeCWE-346Insufficient policy enforcement in GuestView in Google Chrome prior to 151.0.…
CVE-2026-178204.310.3GoogleChromeCWE-346Insufficient policy enforcement in Autofill in Google Chrome prior to 151.0.7…
CVE-2026-178294.310.3GoogleChromeCWE-346Insufficient policy enforcement in Passwords in Google Chrome prior to 151.0.…
CVE-2026-179284.310.4GoogleChromeCWE-200Inappropriate implementation in DataTransfer in Google Chrome prior to 151.0.…
CVE-2026-179424.310.4GoogleChromeCWE-1300Side-channel information leakage in SVG in Google Chrome prior to 151.0.7922.…
CVE-2026-150543.710.3UnknownBit FormCWE-862Bit Form < 3.1.2 - Unauthenticated Inactive Form Submission
CVE-2026-177995.49.9GoogleChromeCWE-20Insufficient validation of untrusted input in Safe Browsing in Google Chrome …
CVE-2026-178125.410.0GoogleChromeCWE-451Inappropriate implementation in DigitalCredentials in Google Chrome prior to …
CVE-2026-179155.410.0GoogleChromeCWE-451Inappropriate implementation in WebView in Google Chrome on Android prior to …
CVE-2026-478588.09.8SpringSpring Tools for EclipseCWE-306live information startup mode is vulnerable for remote code execution
CVE-2026-177447.19.8GoogleChromeCWE-269Inappropriate implementation in File Input in Google Chrome on Linux prior to…
CVE-2026-180016.59.9GoogleChromeCWE-200Inappropriate implementation in WebGL in Google Chrome prior to 151.0.7922.72…
CVE-2026-180056.59.9GoogleChromeCWE-200Inappropriate implementation in WebXR in Google Chrome prior to 151.0.7922.72…
CVE-2026-664145.19.9LeantimeLeantimeCWE-601Leantime Open Redirect in Login Controller via redirectUrl Parameter
CVE-2026-131454.39.8UnknownWP TravelCWE-639WP Travel < 11.8.1 - Subscriber+ Booking PII Disclosure via IDOR
CVE-2026-19825.39.6mohammadr3zالمنتور فارسیCWE-472Persian Elementor (المنتور فارسی) <= 2.8.1 - Unauthenticated Price Manipulati…
CVE-2026-628454.79.7clastixkamajiCWE-89Kamaji: SQL injection via unescaped datastore identifiers in PostgreSQL/MySQL…
CVE-2026-179374.39.7GoogleChromeCWE-20Insufficient validation of untrusted input in DevTools in Google Chrome prior…
CVE-2026-179434.39.7GoogleChromeCWE-693Inappropriate implementation in Parser in Google Chrome prior to 151.0.7922.7…
CVE-2026-179604.39.7GoogleChromeCWE-602Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS pri…
CVE-2026-183695.89.5Red HatRed Hat Certificate System 10CWE-918Dogtag-pki: pki-core: redhat-pki: pki: acme http-01 validation ssrf via ip li…
CVE-2026-178987.59.5GoogleChromeCWE-416Use after free in DevTools in Google Chrome prior to 151.0.7922.72 allowed an…
CVE-2026-179487.59.5GoogleChromeCWE-843Type Confusion in V8 in Google Chrome prior to 151.0.7922.72 allowed an attac…
CVE-2026-178426.59.5GoogleChromeCWE-346Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-178466.59.5GoogleChromeCWE-346Inappropriate implementation in Media in Google Chrome on Windows prior to 15…
CVE-2026-178546.59.5GoogleChromeCWE-346Insufficient policy enforcement in WebMCP in Google Chrome prior to 151.0.792…
CVE-2026-178836.59.5GoogleChromeCWE-346Inappropriate implementation in Headless in Google Chrome prior to 151.0.7922…
CVE-2026-615266.19.4adonisjshttp-serverCWE-79AdonisJS HTTP Server is vulnerable to reflected XSS through its exception han…
CVE-2026-142213.89.4UnknownEasy AppointmentsCWE-284Easy Appointments <= 4.0 - Contributor+ Appointment Data Disclosure & Modific…
CVE-2026-178998.89.3GoogleChromeCWE-693Insufficient policy enforcement in DevTools in Google Chrome prior to 151.0.7…
CVE-2026-179074.39.4GoogleChromeCWE-1300Side-channel information leakage in Network in Google Chrome prior to 151.0.7…
CVE-2026-658356.69.3projectcapsulecapsuleCWE-269Capsule: Incomplete fix of CVE-2026-22872: TenantResource RawItems and Genera…
CVE-2026-142076.19.3UnknownLifterLMSCWE-79LifterLMS < 10.0.10 - Instructor+ Stored XSS via Featured Pricing Information
CVE-2026-177365.89.2GoogleChromeCWE-20Insufficient validation of untrusted input in WebView in Google Chrome on And…
CVE-2026-177615.49.2GoogleChromeCWE-20Insufficient validation of untrusted input in Chrome for iOS in Google Chrome…
CVE-2026-288138.89.0Apache Software FoundationApache JSPWikiCWE-352Apache JSPWiki: JSPWiki vulnerable to JSON hijacking
CVE-2026-152575.39.0UnknownRegistrationMagicCWE-639RegistrationMagic < 6.0.9.4 - Unauthenticated Form Submission and User Profil…
CVE-2026-646355.39.0VeeamService Provider ConsoleCWE-640Improper handling of the returnUrl parameter in the Forgot Password function …
CVE-2026-179454.39.1GoogleChromeCWE-451Insufficient validation of untrusted input in Navigation in Google Chrome pri…
CVE-2026-179554.39.1GoogleChromeCWE-20Insufficient validation of untrusted input in Payments in Google Chrome prior…
CVE-2026-179584.39.1GoogleChromeCWE-451Inappropriate implementation in Views in Google Chrome prior to 151.0.7922.72…
CVE-2026-179644.39.1GoogleChromeCWE-451Incorrect security UI in UI in Google Chrome on Android prior to 151.0.7922.7…
CVE-2026-179654.39.1GoogleChromeCWE-451Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior to 151.…
CVE-2026-179724.39.1GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-179023.59.1GoogleChromeCWE-200Inappropriate implementation in Editing in Google Chrome on Linux prior to 15…
CVE-2026-176669.18.9GoogleChromeCWE-325Cryptographic Flaw in Enterprise in Google Chrome prior to 151.0.7922.72 allo…
CVE-2026-179124.38.9GoogleChromeCWE-601Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-179444.38.9GoogleChromeCWE-284Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-179614.38.9GoogleChromeCWE-284Inappropriate implementation in Session in Google Chrome on Android prior to …
CVE-2026-543678.88.7GladinetCentreStackCWE-306CentreStack < 17.2 Unauthenticated API Authorization Bypass
CVE-2026-183817.68.8Red HatCost Management Metrics OperatorCWE-918Project-koku/koku-metrics-operator: koku-metrics-operator: operator service-a…
CVE-2026-118705.48.8UnknownWP Ghost (Hide My WP Ghost)CWE-290Hide My WP Ghost < 7.0.05 - IP Address Spoofing via Trusted Proxy Headers Lea…
CVE-2026-179824.38.8GoogleChromeCWE-20Insufficient validation of untrusted input in Cast in Google Chrome prior to …
CVE-2026-179527.58.7GoogleChromeCWE-269Inappropriate implementation in V8 in Google Chrome prior to 151.0.7922.72 al…
CVE-2026-178826.58.7GoogleChromeCWE-693Policy bypass in Extensions in Google Chrome prior to 151.0.7922.72 allowed a…
CVE-2026-180034.38.6GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-478738.08.3SpringSpring Tools for EclipseCWE-1327Spring Tools Docker integration publishes unauthenticated debug (JDWP) and JM…
CVE-2026-169697.68.2dfir-irisiris-webCWE-79DFIR-IRIS Stored XSS in Assets
CVE-2026-179834.38.2GoogleChromeCWE-451Inappropriate implementation in Global Media Controls in Google Chrome prior …
CVE-2026-178456.18.1GoogleChromeCWE-79Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-169704.28.1dfir-irisiris-webCWE-613DFIR-IRIS Insufficient Logout Implementation
CVE-2022-4994await8.1LinuxLinuxKVM: x86: wean fast IN from emulator_pio_in
CVE-2026-567586.98.0MZ Automation GmbHlibiec61850CWE-125MZ Automation libiec61850 Out-of-bounds Read
CVE-2026-663496.98.0MZ Automation GmbHlibiec61850CWE-125MZ Automation libiec61850 Out-of-bounds Read
CVE-2026-118816.18.0UnknownFluent FormsCWE-79Fluent Forms < 6.2.6 - Contributor+ Stored XSS via Date/Time Field
CVE-2026-133306.18.0UnknownAnimation Addons for ElementorCWE-79Animation Addons for Elementor < 2.7.0 - Author+ Stored XSS via SVG Upload
CVE-2026-177765.88.0GoogleChromeCWE-693Policy bypass in Receiver in Google Chrome prior to 151.0.7922.72 allowed a r…
CVE-2026-179014.38.0GoogleChromeCWE-20Insufficient validation of untrusted input in Sharing in Google Chrome on And…
CVE-2026-179944.38.0GoogleChromeCWE-284Inappropriate implementation in Media in Google Chrome on Android prior to 15…
CVE-2026-100312.38.1drakkanSFTPGoCWE-863SFTPGo 2.7.4 Permission Bypass via Symbolic Link Creation
CVE-2026-177455.87.8GoogleChromeCWE-125Out of bounds read in Skia in Google Chrome prior to 151.0.7922.72 allowed a …
CVE-2026-177465.87.8GoogleChromeCWE-416Use after free in GPU in Google Chrome on Mac prior to 151.0.7922.72 allowed …
CVE-2026-177705.87.8GoogleChromeCWE-125Out of bounds read in Media in Google Chrome on Mac prior to 151.0.7922.72 al…
CVE-2026-177375.07.8GoogleChromeCWE-416Use after free in Bluetooth in Google Chrome on Android prior to 151.0.7922.7…
CVE-2026-105694.37.9IBMUCD - IBM UrbanCode DeployCWE-200IBM DevOps Deploy / IBM UrbanCode Deploy (UCD) is susceptible to an Exposure …
CVE-2026-178677.17.8GoogleChromeCWE-20Insufficient validation of untrusted input in Dawn in Google Chrome prior to …
CVE-2026-177814.37.7GoogleChromeCWE-284Inappropriate implementation in Extensions in Google Chrome prior to 151.0.79…
CVE-2026-178236.57.6GoogleChromeCWE-346Insufficient policy enforcement in WebXR in Google Chrome prior to 151.0.7922…
CVE-2026-179366.57.6GoogleChromeCWE-352Inappropriate implementation in DevTools in Google Chrome prior to 151.0.7922…
CVE-2026-152525.47.6UnknownSearch Atlas SEOCWE-862Search Atlas SEO < 2.6.12 - Subscriber+ Google Indexing API Access
CVE-2026-177554.37.4GoogleChromeCWE-451Incorrect security UI in Extensions in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-179394.37.4GoogleChromeCWE-20Insufficient validation of untrusted input in Passwords in Google Chrome prio…
CVE-2026-177203.17.4GoogleChromeCWE-346Insufficient policy enforcement in Passwords in Google Chrome prior to 151.0.…
CVE-2026-159297.17.2LG ElectronicsSmartShareCWE-89Improper neutralization of special elements used in an SQL command ('SQL inje…
CVE-2026-654217.17.2MZ Automation GmbHlibiec61850CWE-125MZ Automation libiec61850 Out-of-bounds Read
CVE-2026-663647.17.2MZ Automation GmbHlibiec61850CWE-125MZ Automation libiec61850 Out-of-bounds Read
CVE-2026-663697.17.2MZ Automation GmbHlibiec61850CWE-125MZ Automation libiec61850 Out-of-bounds Read
CVE-2026-667207.17.3MZ Automation GmbHlibiec61850CWE-125MZ Automation libiec61850 Out-of-bounds Read
CVE-2026-178536.17.3GoogleChromeCWE-79Inappropriate implementation in DevTools in Google Chrome prior to 151.0.7922…
CVE-2026-178786.17.3GoogleChromeCWE-79Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-143105.47.3UnknownTutor LMSCWE-639Tutor LMS < 4.0.0 - Subscriber+ Cross-Course Q&A Content Disclosure and Reply…
CVE-2026-478828.37.2SpringSpring Tools for EclipseCWE-338Spring Boot DevTools remote secret generated with a non-cryptographic PRNG
CVE-2026-178226.57.2GoogleChromeCWE-362Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed…
CVE-2026-178416.57.2GoogleChromeCWE-362Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed…
CVE-2026-178434.37.2GoogleChromeCWE-346Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-178574.37.2GoogleChromeCWE-346Inappropriate implementation in Network in Google Chrome prior to 151.0.7922.…
CVE-2026-178714.37.2GoogleChromeCWE-346Inappropriate implementation in Passwords in Google Chrome prior to 151.0.792…
CVE-2026-178764.37.2GoogleChromeCWE-346Inappropriate implementation in Payments in Google Chrome prior to 151.0.7922…
CVE-2026-178854.37.2GoogleChromeCWE-346Inappropriate implementation in Paint in Google Chrome prior to 151.0.7922.72…
CVE-2026-178954.37.2GoogleChromeCWE-346Inappropriate implementation in DataTransfer in Google Chrome prior to 151.0.…
CVE-2026-178974.37.2GoogleChromeCWE-346Inappropriate implementation in ORB in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-177323.17.1GoogleChromeCWE-346Inappropriate implementation in SVG in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-178263.17.1GoogleChromeCWE-346Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-133444.87.1UnknownEssential Addons for ElementorCWE-79Essential Addons for Elementor - Lite < 6.6.10 - Contributor+ Stored XSS via …
CVE-2026-178216.56.9GoogleChromeCWE-602Insufficient policy enforcement in Extensions in Google Chrome prior to 151.0…
CVE-2026-178665.86.9GoogleChromeCWE-843Type Confusion in Tab in Google Chrome on Android prior to 151.0.7922.72 allo…
CVE-2026-179803.16.9GoogleChromeCWE-451Inappropriate implementation in UI in Google Chrome on Android prior to 151.0…
CVE-2026-179746.56.9GoogleChromeCWE-602Insufficient policy enforcement in DevTools in Google Chrome prior to 151.0.7…
CVE-2026-178186.16.9GoogleChromeCWE-79Inappropriate implementation in Network in Google Chrome prior to 151.0.7922.…
CVE-2026-178276.16.9GoogleChromeCWE-79Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-179626.16.9GoogleChromeCWE-79Inappropriate implementation in Blink in Google Chrome prior to 151.0.7922.72…
CVE-2026-119807.36.7IBMAspera Desktop AppCWE-242Code execution in IBM Desktop App
CVE-2026-178117.16.6GoogleChromeCWE-416Use after free in ANGLE in Google Chrome on Windows prior to 151.0.7922.72 al…
CVE-2026-180146.56.6GoogleChromeCWE-20Insufficient validation of untrusted input in DevTools in Google Chrome prior…
CVE-2026-178905.86.6GoogleChromeCWE-20Insufficient validation of untrusted input in DevTools in Google Chrome prior…
CVE-2026-178935.86.6GoogleChromeCWE-20Insufficient validation of untrusted input in Updater in Google Chrome on Mac…
CVE-2026-179167.56.3GoogleChromeCWE-346Insufficient policy enforcement in Settings in Google Chrome prior to 151.0.7…
CVE-2026-113835.46.3IBMTivoli System Automation Application ManagerCWE-79Cross-site Scripting in IBM WebSphere Application Server shipped with Tivoli …
CVE-2026-664208.66.2YlianstMeshCentralCWE-346MeshCentral Cross-Site WebSocket Hijacking via Origin Validation Bypass on Se…
CVE-2025-362985.46.3IBMSterling B2B IntegratorCWE-79Security Vulnerability in Ebics server affects IBM Sterling B2B Integrator an…
CVE-2025-364315.46.3IBMSterling B2B IntegratorCWE-79XSS Security Vulnerability in response header affects IBM Sterling B2B Integr…
CVE-2026-177834.36.1GoogleChromeCWE-346Inappropriate implementation in Loader in Google Chrome prior to 151.0.7922.7…
CVE-2026-178174.36.1GoogleChromeCWE-346Inappropriate implementation in ReportingAndNEL in Google Chrome prior to 151…
CVE-2026-178334.36.1GoogleChromeCWE-346Inappropriate implementation in Passwords in Google Chrome prior to 151.0.792…
CVE-2026-179044.36.1GoogleChromeCWE-346Insufficient policy enforcement in NFC in Google Chrome on Android prior to 1…
CVE-2026-179054.36.1GoogleChromeCWE-346Inappropriate implementation in SurfaceCapture in Google Chrome prior to 151.…
CVE-2026-179104.36.1GoogleChromeCWE-346Insufficient policy enforcement in NFC in Google Chrome on Android prior to 1…
CVE-2026-179114.36.1GoogleChromeCWE-346Insufficient policy enforcement in SVG in Google Chrome prior to 151.0.7922.7…
CVE-2026-179334.36.1GoogleChromeCWE-346Inappropriate implementation in DOMStorage in Google Chrome prior to 151.0.79…
CVE-2026-179594.36.1GoogleChromeCWE-346Inappropriate implementation in Network in Google Chrome prior to 151.0.7922.…
CVE-2026-179634.36.1GoogleChromeCWE-346Inappropriate implementation in SVG in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-177244.26.1GoogleChromeCWE-362Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed…
CVE-2026-58467.66.0WatchfireBC550CWE-321Hard-coded Cryptographic Key in Watchfire Controllers
CVE-2026-180194.36.0GoogleChromeCWE-1300Side-channel information leakage in Media in Google Chrome prior to 151.0.792…
CVE-2026-664168.66.0LeantimeLeantimeCWE-352Leantime CSRF Protection Globally Disabled by Omission of Laravel VerifyCsrfT…
CVE-2025-01526.15.9IBMEngineering Requirements Management DOORS and DOORS Web AccessCWE-79IBM Engineering Requirements Management DOORS and DOORS Web Access is affecte…
CVE-2026-179774.35.9GoogleChromeCWE-346Policy bypass in CSS in Google Chrome prior to 151.0.7922.72 allowed a remote…
CVE-2026-593284.26.0SpringSpring Tools for EclipseCWE-79Cross-Site Scripting in Eclipse Spring Boot Starter Wizard Dependency Tooltips
CVE-2026-178065.85.5GoogleChromeCWE-20Insufficient validation of untrusted input in Extensions in Google Chrome pri…
CVE-2026-178095.85.5GoogleChromeCWE-20Insufficient validation of untrusted input in Extensions in Google Chrome pri…
CVE-2026-178915.85.4GoogleChromeCWE-416Use after free in ANGLE in Google Chrome on Android prior to 151.0.7922.72 al…
CVE-2026-179065.85.5GoogleChromeCWE-20Insufficient validation of untrusted input in Bluetooth in Google Chrome prio…
CVE-2026-179085.85.5GoogleChromeCWE-20Insufficient validation of untrusted input in Printing in Google Chrome on Wi…
CVE-2026-568473.35.5nodejsnodeCWE-1119A flaw in Node.js Permission Model enforcement allows `trace_events.createTra…
CVE-2026-179814.35.4GoogleChromeCWE-346Inappropriate implementation in Blink in Google Chrome prior to 151.0.7922.72…
CVE-2026-180044.35.4GoogleChromeCWE-284Insufficient policy enforcement in Speech in Google Chrome prior to 151.0.792…
CVE-2026-178887.15.3GoogleChromeCWE-20Insufficient validation of untrusted input in WebUI in Google Chrome prior to…
CVE-2026-675306.45.3ArnasDonwacrmCWE-918WACRM: SSRF via the automation `send_webhook` action
CVE-2026-179544.35.3GoogleChromeCWE-346Policy bypass in MHTML in Google Chrome prior to 151.0.7922.72 allowed a remo…
CVE-2026-179254.35.2GoogleChromeCWE-346Inappropriate implementation in Cast in Google Chrome on Android prior to 151…
CVE-2024-406836.35.0IBMOperations Analytics - Log AnalysisCWE-613IBM Operations Analytics - Log Analysis is affected by a TOCTOU weakness allo…
CVE-2026-180064.35.1GoogleChromeCWE-451Inappropriate implementation in Google Lens in Google Chrome prior to 151.0.7…
CVE-2026-180074.35.1GoogleChromeCWE-451Inappropriate implementation in Input in Google Chrome on Android prior to 15…
CVE-2026-180134.35.1GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-180003.14.9GoogleChromeCWE-346Insufficient policy enforcement in USB in Google Chrome on Android prior to 1…
CVE-2026-177168.44.8GoogleChromeCWE-416Use after free in Updater in Google Chrome on Mac prior to 151.0.7922.72 allo…
CVE-2026-177747.54.8GoogleChromeCWE-20Insufficient validation of untrusted input in Variations in Google Chrome pri…
CVE-2026-179004.34.8GoogleChromeCWE-346Inappropriate implementation in Enterprise in Google Chrome on Windows prior …
CVE-2026-176998.64.6GoogleChromeCWE-416Use after free in Views in Google Chrome prior to 151.0.7922.72 allowed a loc…
CVE-2025-653416.14.6n/an/aCWE-79Ecommerce Fruits Bazar 1.0 is vulnerable to Cross Site Scripting (XSS) in adm…
CVE-2025-653426.14.6n/an/aCWE-79code-projects Blood System 1.0 is vulnerable to Cross Site Scripting (XSS) in…
CVE-2026-72605.44.5PHP GroupPHPCWE-121Stack overflow in phar with circular symlinks
CVE-2026-179996.54.4GoogleChromeCWE-362Race in PictureInPicture in Google Chrome on Android prior to 151.0.7922.72 a…
CVE-2026-179573.14.4GoogleChromeCWE-346Inappropriate implementation in CORS in Google Chrome prior to 151.0.7922.72 …
CVE-2026-179704.34.3GoogleChromeCWE-20Insufficient validation of untrusted input in Passwords in Google Chrome prio…
CVE-2026-180084.34.0GoogleChromeCWE-451Inappropriate implementation in Settings in Google Chrome prior to 151.0.7922…
CVE-2026-180094.34.0GoogleChromeCWE-20Insufficient validation of untrusted input in Passwords in Google Chrome prio…
CVE-2026-180104.34.0GoogleChromeCWE-451Inappropriate implementation in Passwords in Google Chrome prior to 151.0.792…
CVE-2026-177394.23.9GoogleChromeCWE-79Insufficient policy enforcement in Extensions in Google Chrome prior to 151.0…
CVE-2026-580437.53.8nodejsnodeCWE-284A flaw in Node.js Permission Model enforcement can over-grant filesystem acce…
CVE-2026-179764.33.7GoogleChromeCWE-284Insufficient policy enforcement in Extensions in Google Chrome prior to 151.0…
CVE-2026-545222.13.5msgpackmsgpack-rubyCWE-416MessagePack::Buffer#clear Use-After-Free that Enables Cross-Buffer Disclosure
CVE-2026-52198.33.4Softtr Information Technology Trade Ltd. Co.E-Commerce PackCWE-352CSRF in Softtr's E-Commerce Pack
CVE-2026-623635.03.2ImageMagickImageMagickCWE-787ImageMagick: Heap Buffer Over-Write in fx operation
CVE-2026-55824.33.2fusewpFuseWP – WordPress User Sync to Email List & Marketing Automation (Mailchimp, Constant Contact, ActiveCampaign etc.)CWE-352FuseWP <= 1.1.24.2 - Cross-Site Request Forgery to Sync Rule Status Toggle
CVE-2026-180164.33.2GoogleChromeCWE-346Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS pri…
CVE-2026-684996.23.0uhopnode-re2CWE-835re2: Global `String.prototype.match` with an empty-matchable pattern never ad…
CVE-2026-179973.12.9GoogleChromeCWE-346Inappropriate implementation in Passwords in Google Chrome prior to 151.0.792…
CVE-2026-135847.12.8Mitsubishi Electric CorporationMELSEC MX Controller MX-R model MXR300-16CWE-924Information tampering and Denial-of-service (DoS) vulnerability in CC-Link IE…
CVE-2026-179274.32.6GoogleChromeCWE-346Insufficient policy enforcement in DevTools in Google Chrome prior to 151.0.7…
CVE-2026-629464.72.5ImageMagickImageMagickCWE-190ImageMagick: Integer Overflow in JNX decoder causes heap buffer over-write wh…
CVE-2026-675505.72.2uhopnode-re2CWE-125re2: Out-of-bounds heap read in `exec`/`test`/`match` via attacker-influenced…
CVE-2026-176547.82.1GoogleChromeCWE-362Race in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a loca…
CVE-2026-179196.82.2GoogleChromeCWE-693Insufficient policy enforcement in Enterprise in Google Chrome on Mac prior t…
CVE-2026-177663.32.1GoogleChromeCWE-20Insufficient validation of untrusted input in Clipboard in Google Chrome on A…
CVE-2026-179984.32.0GoogleChromeCWE-451Incorrect security UI in Extensions in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-179035.42.0GoogleChromeCWE-79Insufficient policy enforcement in Chromecast in Google Chrome prior to 151.0…
CVE-2026-178444.31.9GoogleChromeCWE-20Insufficient validation of untrusted input in Cast in Google Chrome prior to …
CVE-2026-178704.31.9GoogleChromeCWE-20Insufficient validation of untrusted input in Cast in Google Chrome prior to …
CVE-2026-105357.81.6IBMDb2CWE-121IBM® Db2® is vulnerable to buffer overflow in setgid helper db2flacc which ca…
CVE-2026-178627.81.6GoogleChromeCWE-416Use after free in Tracing in Google Chrome on Windows prior to 151.0.7922.72 …
CVE-2026-142397.11.4UnknowntourmasterCWE-79Tourmaster < 5.4.8 - Stored XSS via CSRF
CVE-2026-675966.91.4CSL Mobile LimitedCSL 1010 M2M 3G WiFi ModuleCWE-261CSL 1010 M2M 3G WiFi Module 2.2.1.4 Weak Encryption via Router.cfg
CVE-2026-178637.81.3GoogleChromeCWE-269Inappropriate implementation in Browser in Google Chrome on Windows prior to …
CVE-2026-106955.51.3IBMDb2CWE-400IBM® Db2® is vulnerable to a denial of service when running non fenced federa…
CVE-2026-179325.51.3GoogleChromeCWE-416Use after free in DataTransfer in Google Chrome on Windows prior to 151.0.792…
CVE-2026-178617.81.2GoogleChromeCWE-20Insufficient validation of untrusted input in Updater in Google Chrome prior …
CVE-2026-178778.41.1GoogleChromeCWE-269Inappropriate implementation in Chromoting in Google Chrome on Linux prior to…
CVE-2026-179666.21.1GoogleChromeCWE-200Inappropriate implementation in Views in Google Chrome on Mac prior to 151.0.…
CVE-2026-178647.81.1GoogleChromeCWE-269Inappropriate implementation in Updater in Google Chrome on Mac prior to 151.…
CVE-2026-118858.41.0IBMPowerVM HypervisorCWE-120Power System update in Buffer Copy
CVE-2026-179735.51.0GoogleChromeCWE-200Inappropriate implementation in Views in Google Chrome on Mac prior to 151.0.…
CVE-2026-685635.51.0Red HatRed Hat Enterprise Linux 10CWE-732Ansible-collection-redhat-leapp: ansible-collection-redhat-leapp: information…
CVE-2026-593263.30.8SpringSpring Tools for EclipseCWE-532HTTP Proxy Credentials Logged in Plaintext by the Spring Boot Language Server
CVE-2026-441055.80.7Phoenix ContactCHARX SEC-3150CWE-532Cleartext password in logs
CVE-2026-178603.30.7GoogleChromeCWE-20Insufficient validation of untrusted input in Mobile in Google Chrome on Andr…
CVE-2026-179843.30.6GoogleChromeCWE-346Inappropriate implementation in Browser in Google Chrome on Android prior to …
CVE-2026-180112.40.6GoogleChromeCWE-200Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-167277.30.4ASUSArmoury CrateCWE-362Concurrent Execution using Shared Resource with Improper Synchronization (“Ra…
CVE-2026-179966.20.4GoogleChromeCWE-284Inappropriate implementation in Browser in Google Chrome on Mac prior to 151.…
CVE-2026-593274.40.4SpringSpring Tools for EclipseCWE-312Cleartext Storage of Spring Boot DevTools Remote Secret in Eclipse Launch Con…
CVE-2026-180184.00.3GoogleChromeCWE-451Inappropriate implementation in Updater in Google Chrome on Windows prior to …
CVE-2026-568504.10.3nodejsnodeCWE-287A flaw in Node.js HTTPS Agent connection reuse can cause PFX object-array key…
CVE-2026-179937.00.2GoogleChromeCWE-362Race in Updater in Google Chrome on Windows prior to 151.0.7922.72 allowed a …
CVE-2026-178726.10.0GoogleChromeCWE-347Cryptographic Flaw in WebAppInstalls in Google Chrome on Android prior to 151…