boxscore/security

A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?

Thursday, July 30, 2026 · all times UTC← 2026-07-29 · archive · 2026-07-31 →

Security Box Score — July 30, 2026 — page 2

Edition of July 30, 2026, continued — page 2 of 2. Back to page 1

Results (continued, ranked) — ranks 401–662 of 662
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-178736.514.4GoogleChromeCWE-284Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS pri…
CVE-2026-179384.314.5GoogleChromeCWE-451Inappropriate implementation in FullScreen in Google Chrome on Android prior …
CVE-2026-675294.314.5opfopenprojectCWE-200OpenProject: Private work package subject/identity disclosure through the glo…
CVE-2026-440958.514.4Phoenix ContactCHARX SEC-3150CWE-78Local Privilege Escalation via Network scripts
CVE-2026-179958.114.4GoogleChromeCWE-125Out of bounds read in Dawn in Google Chrome prior to 151.0.7922.72 allowed a …
CVE-2026-441036.914.4Phoenix ContactCHARX SEC-3150CWE-434JupiCore does not perform validation of firmware
CVE-2026-177814.314.3GoogleChromeCWE-284Inappropriate implementation in Extensions in Google Chrome prior to 151.0.79…
CVE-2026-142223.814.2UnknownEasy AppointmentsCWE-284Easy Appointments < 3.12.28 - Contributor+ Connection Deletion via Missing Au…
CVE-2026-177168.414.1GoogleChromeCWE-416Use after free in Updater in Google Chrome on Mac prior to 151.0.7922.72 allo…
CVE-2026-129477.513.9IBMApp Connect EnterpriseCWE-532IBM App Connect Enterprise is vulnerable to Confidentiality disclosure on Dis…
CVE-2026-178584.314.0GoogleChromeCWE-457Uninitialized Use in WebNN in Google Chrome on Windows prior to 151.0.7922.72…
CVE-2026-178894.314.0GoogleChromeCWE-457Uninitialized Use in WebXR in Google Chrome prior to 151.0.7922.72 allowed a …
CVE-2026-177244.213.9GoogleChromeCWE-362Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed…
CVE-2026-141882.714.0UnknownEasy AppointmentsCWE-200Easy Appointments < 3.12.28 - Contributor+ Customer Data Disclosure
CVE-2026-440938.513.8Phoenix ContactCHARX SEC-3150CWE-78Local Privilege Escalation vulnerability in /etc/init.d/user-applications via…
CVE-2026-440968.513.8Phoenix ContactCHARX SEC-3150CWE-78udhcpc Privilege Escalation
CVE-2026-440998.513.8Phoenix ContactCHARX SEC-3150CWE-78Local Privilege Escalation via pppd password injection
CVE-2026-441068.513.8Phoenix ContactCHARX SEC-3150CWE-78Local Privilege Escalation vulnerability in /etc/init.d/user-applications via…
CVE-2026-178186.113.7GoogleChromeCWE-79Inappropriate implementation in Network in Google Chrome prior to 151.0.7922.…
CVE-2026-178276.113.7GoogleChromeCWE-79Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-143055.313.7UnknownWP DeliciousCWE-287WP Delicious < 1.10.2 - Unauthenticated Arbitrary Post Meta Update via recipe…
CVE-2026-179414.313.7GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-179879.613.5GoogleChromeCWE-20Insufficient validation of untrusted input in Notifications in Google Chrome …
CVE-2026-183786.813.4Red HatCost Management Metrics OperatorCWE-918Project-koku/koku-metrics-operator: koku-metrics-operator: cluster pull-secre…
CVE-2026-178117.113.2GoogleChromeCWE-416Use after free in ANGLE in Google Chrome on Windows prior to 151.0.7922.72 al…
CVE-2026-153826.513.1UnknownUltimate Addons for WPBakery Page BuilderCWE-73Ultimate Addons for WPBakery Page Builder < 3.21.4 - Unauthenticated Custom I…
CVE-2026-179216.513.0GoogleChromeCWE-20Insufficient validation of untrusted input in Navigation in Google Chrome pri…
CVE-2026-179266.513.0GoogleChromeCWE-20Insufficient validation of untrusted input in DevTools in Google Chrome prior…
CVE-2026-179316.513.0GoogleChromeCWE-693Inappropriate implementation in DevTools in Google Chrome prior to 151.0.7922…
CVE-2026-179536.513.0GoogleChromeCWE-602Insufficient policy enforcement in WebView in Google Chrome on Android prior …
CVE-2026-179909.612.8GoogleChromeCWE-20Insufficient validation of untrusted input in WebAuthn in Google Chrome prior…
CVE-2026-180128.812.8GoogleChromeCWE-416Use after free in PDFium in Google Chrome prior to 151.0.7922.72 allowed a re…
CVE-2026-178236.512.9GoogleChromeCWE-346Insufficient policy enforcement in WebXR in Google Chrome prior to 151.0.7922…
CVE-2026-142314.312.8UnknownLifterLMSCWE-200LifterLMS < 10.0.10 - Subscriber+ Sensitive Information Disclosure via select…
CVE-2026-152354.312.8UnknownMotoPress Hotel BookingCWE-200Hotel Booking Lite < 6.0.4 - Subscriber+ Sensitive Data Disclosure via Admin …
CVE-2026-177834.312.8GoogleChromeCWE-346Inappropriate implementation in Loader in Google Chrome prior to 151.0.7922.7…
CVE-2026-178174.312.8GoogleChromeCWE-346Inappropriate implementation in ReportingAndNEL in Google Chrome prior to 151…
CVE-2026-178334.312.8GoogleChromeCWE-346Inappropriate implementation in Passwords in Google Chrome prior to 151.0.792…
CVE-2026-169715.912.7dfir-irisiris-webCWE-770DFIR-IRIS Missing Brute Force Protection in OTP Validation
CVE-2026-179208.812.6GoogleChromeCWE-416Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed an attac…
CVE-2026-105457.512.5IBMPlanning Analytics LocalCWE-601IBM Planning Analytics Local is affected by Open Redirect
CVE-2026-117825.912.4UnknownPoints and Rewards for WooCommerceCWE-284Points and Rewards for WooCommerce < 2.10.1 - Unauthenticated Arbitrary User …
CVE-2026-131435.312.4UnknownWP TravelCWE-290WP Travel < 11.8.1 - Unauthenticated Payment Bypass via Forged PayPal IPN
CVE-2026-178559.612.4GoogleChromeCWE-362Race in DevTools in Google Chrome on Mac prior to 151.0.7922.72 allowed a rem…
CVE-2026-178226.512.3GoogleChromeCWE-362Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed…
CVE-2026-178416.512.3GoogleChromeCWE-362Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed…
CVE-2026-411876.212.3TigeraCalicoCWE-285Calico Tier Authorization Bypass via DeleteCollection
CVE-2026-179145.312.3GoogleChromeCWE-1300Side-channel information leakage in Skia in Google Chrome prior to 151.0.7922…
CVE-2026-179494.312.3GoogleChromeCWE-457Uninitialized Use in GPU in Google Chrome on Android prior to 151.0.7922.72 a…
CVE-2026-685626.212.2Red HatRed Hat Enterprise Linux 10CWE-610Ansible-collection-redhat-leapp: ansible-collection-redhat-leapp: information…
CVE-2026-178065.812.2GoogleChromeCWE-20Insufficient validation of untrusted input in Extensions in Google Chrome pri…
CVE-2026-178095.812.2GoogleChromeCWE-20Insufficient validation of untrusted input in Extensions in Google Chrome pri…
CVE-2026-142264.312.0UnknownEasy AppointmentsCWE-200Easy Appointments < 3.12.28 - Subscriber+ Sensitive Information Disclosure vi…
CVE-2026-117079.311.9IBMTivoli System Automation Application ManagerCWE-79Multiple vulnerabilities have been identified in IBM WebSphere Application Se…
CVE-2026-179176.511.9GoogleChromeCWE-284Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS pri…
CVE-2025-516846.112.0n/an/aCWE-79CleverTap Web SDK v1.15.1 is vulnerable to Cross Site Scripting (XSS). The ap…
CVE-2026-543658.711.9GladinetCentreStackCWE-306CentreStack < 17.3 Unauthenticated User Creation via Deserialization in GSNam…
CVE-2026-179856.511.9GoogleChromeCWE-602Insufficient policy enforcement in Speech in Google Chrome prior to 151.0.792…
CVE-2026-179886.511.9GoogleChromeCWE-20Insufficient validation of untrusted input in Navigation in Google Chrome pri…
CVE-2026-129457.111.7IBMLangflow OSSCWE-639Langflow is affected by exposed credentials due to multiple unauthenticated a…
CVE-2026-672457.011.8ASUSTOR Inc.ADMCWE-22A path traversal vulnerability was found in the VPN Clients on the ADM
CVE-2026-179095.311.7GoogleChromeCWE-20Insufficient validation of untrusted input in Isolated Web Apps in Google Chr…
CVE-2026-648705.311.71Panel-devMaxKBCWE-918MaxKB: UpdateStoreTool fetches caller-supplied app-store URLs without host va…
CVE-2026-178794.311.5GoogleChromeCWE-346Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922…
CVE-2026-178804.311.5GoogleChromeCWE-346Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922…
CVE-2026-134448.111.3IBMLangflow OSSCWE-520Langflow is affected by remote code execution, denial of service, path traver…
CVE-2026-118676.511.4UnknownFrontend Admin by DynamiAppsCWE-862Frontend Admin by DynamiApps < 3.29.7 - Subscriber+ Taxonomy Term Creation/Mo…
CVE-2026-152505.311.3UnknownAppointment Booking PluginCWE-284LatePoint < 5.6.8 - Unauthenticated Booking Object Mass Assignment via Public…
CVE-2026-178745.411.2GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-179785.311.2GoogleChromeCWE-1300Side-channel information leakage in WebCodecs in Google Chrome prior to 151.0…
CVE-2026-177554.311.2GoogleChromeCWE-451Incorrect security UI in Extensions in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-675284.311.0opfopenprojectCWE-863OpenProject: Improper Access Control through /api/v3/custom_options/:id via P…
CVE-2026-478588.011.0SpringSpring Tools for EclipseCWE-306live information startup mode is vulnerable for remote code execution
CVE-2026-441026.910.9Phoenix ContactCHARX SEC-3150CWE-362OCPP Firmware download is not properly locked
CVE-2026-145926.111.0UnknownWP Real IP-based Access ControlCWE-79WP Real IP-based Access Control <= 1.3.1 - Unauthenticated Stored XSS via acl…
CVE-2026-179236.510.8GoogleChromeCWE-693Policy bypass in Enterprise in Google Chrome prior to 151.0.7922.72 allowed a…
CVE-2026-179296.510.8GoogleChromeCWE-20Insufficient validation of untrusted input in DevTools in Google Chrome prior…
CVE-2026-179866.510.8GoogleChromeCWE-284Insufficient policy enforcement in Bluetooth in Google Chrome prior to 151.0.…
CVE-2026-177663.310.8GoogleChromeCWE-20Insufficient validation of untrusted input in Clipboard in Google Chrome on A…
CVE-2026-180029.610.6GoogleChromeCWE-20Insufficient validation of untrusted input in Google Lens in Google Chrome pr…
CVE-2026-178216.510.2GoogleChromeCWE-602Insufficient policy enforcement in Extensions in Google Chrome prior to 151.0…
CVE-2026-179797.510.2GoogleChromeCWE-362Race in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker …
CVE-2026-178444.310.2GoogleChromeCWE-20Insufficient validation of untrusted input in Cast in Google Chrome prior to …
CVE-2026-180159.610.1GoogleChromeCWE-693Inappropriate implementation in Tint in Google Chrome on Mac prior to 151.0.7…
CVE-2026-152555.310.0UnknownRegistrationMagicCWE-639RegistrationMagic < 6.0.9.4 - Unauthenticated Form Submission Disclosure via …
CVE-2026-179284.310.0GoogleChromeCWE-200Inappropriate implementation in DataTransfer in Google Chrome prior to 151.0.…
CVE-2026-179424.310.0GoogleChromeCWE-1300Side-channel information leakage in SVG in Google Chrome prior to 151.0.7922.…
CVE-2026-150543.79.9UnknownBit FormCWE-862Bit Form < 3.1.2 - Unauthenticated Inactive Form Submission
CVE-2026-142234.39.7UnknownEasy AppointmentsCWE-639Easy Appointments < 3.12.28 - Subscriber+ Customer PII Disclosure via IDOR
CVE-2026-152407.59.6UnknownCustomer SwitchingCWE-287Customer Switching for WooCommerce < 2.1.3 - Customer+ Privilege Escalation t…
CVE-2026-180016.59.5GoogleChromeCWE-200Inappropriate implementation in WebGL in Google Chrome prior to 151.0.7922.72…
CVE-2026-180056.59.5GoogleChromeCWE-200Inappropriate implementation in WebXR in Google Chrome prior to 151.0.7922.72…
CVE-2026-179155.49.6GoogleChromeCWE-451Inappropriate implementation in WebView in Google Chrome on Android prior to …
CVE-2026-664145.19.5LeantimeLeantimeCWE-601Leantime Open Redirect in Login Controller via redirectUrl Parameter
CVE-2026-131454.39.4UnknownWP TravelCWE-639WP Travel < 11.8.1 - Subscriber+ Booking PII Disclosure via IDOR
CVE-2026-478738.09.3SpringSpring Tools for EclipseCWE-1327Spring Tools Docker integration publishes unauthenticated debug (JDWP) and JM…
CVE-2026-19825.39.3mohammadr3zالمنتور فارسیCWE-472Persian Elementor (المنتور فارسی) <= 2.8.1 - Unauthenticated Price Manipulati…
CVE-2026-628454.79.3clastixkamajiCWE-89Kamaji: SQL injection via unescaped datastore identifiers in PostgreSQL/MySQL…
CVE-2026-179374.39.4GoogleChromeCWE-20Insufficient validation of untrusted input in DevTools in Google Chrome prior…
CVE-2026-179434.39.4GoogleChromeCWE-693Inappropriate implementation in Parser in Google Chrome prior to 151.0.7922.7…
CVE-2026-179604.39.4GoogleChromeCWE-602Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS pri…
CVE-2026-178987.59.2GoogleChromeCWE-416Use after free in DevTools in Google Chrome prior to 151.0.7922.72 allowed an…
CVE-2026-179487.59.2GoogleChromeCWE-843Type Confusion in V8 in Google Chrome prior to 151.0.7922.72 allowed an attac…
CVE-2026-183695.89.1Red HatRed Hat Certificate System 10CWE-918Dogtag-pki: pki-core: redhat-pki: pki: acme http-01 validation ssrf via ip li…
CVE-2026-178546.59.1GoogleChromeCWE-346Insufficient policy enforcement in WebMCP in Google Chrome prior to 151.0.792…
CVE-2026-178836.59.1GoogleChromeCWE-346Inappropriate implementation in Headless in Google Chrome prior to 151.0.7922…
CVE-2026-615266.19.0adonisjshttp-serverCWE-79AdonisJS HTTP Server is vulnerable to reflected XSS through its exception han…
CVE-2026-179074.39.0GoogleChromeCWE-1300Side-channel information leakage in Network in Google Chrome prior to 151.0.7…
CVE-2026-178998.89.0GoogleChromeCWE-693Insufficient policy enforcement in DevTools in Google Chrome prior to 151.0.7…
CVE-2026-176547.88.8GoogleChromeCWE-362Race in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a loca…
CVE-2026-658356.68.9projectcapsulecapsuleCWE-269Capsule: Incomplete fix of CVE-2026-22872: TenantResource RawItems and Genera…
CVE-2026-179454.38.7GoogleChromeCWE-451Insufficient validation of untrusted input in Navigation in Google Chrome pri…
CVE-2026-179554.38.7GoogleChromeCWE-20Insufficient validation of untrusted input in Payments in Google Chrome prior…
CVE-2026-179584.38.7GoogleChromeCWE-451Inappropriate implementation in Views in Google Chrome prior to 151.0.7922.72…
CVE-2026-179644.38.7GoogleChromeCWE-451Incorrect security UI in UI in Google Chrome on Android prior to 151.0.7922.7…
CVE-2026-179654.38.7GoogleChromeCWE-451Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior to 151.…
CVE-2026-179724.38.7GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-179023.58.7GoogleChromeCWE-200Inappropriate implementation in Editing in Google Chrome on Linux prior to 15…
CVE-2026-288138.88.7Apache Software FoundationApache JSPWikiCWE-352Apache JSPWiki: JSPWiki vulnerable to JSON hijacking
CVE-2026-152575.38.6UnknownRegistrationMagicCWE-639RegistrationMagic < 6.0.9.4 - Unauthenticated Form Submission and User Profil…
CVE-2026-646355.38.7VeeamService Provider ConsoleCWE-640Improper handling of the returnUrl parameter in the Forgot Password function …
CVE-2026-179124.38.5GoogleChromeCWE-601Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-179444.38.5GoogleChromeCWE-284Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-179614.38.5GoogleChromeCWE-284Inappropriate implementation in Session in Google Chrome on Android prior to …
CVE-2026-179824.38.5GoogleChromeCWE-20Insufficient validation of untrusted input in Cast in Google Chrome prior to …
CVE-2026-543678.88.3GladinetCentreStackCWE-306CentreStack < 17.2 Unauthenticated API Authorization Bypass
CVE-2026-183817.68.4Red HatCost Management Metrics OperatorCWE-918Project-koku/koku-metrics-operator: koku-metrics-operator: operator service-a…
CVE-2026-178826.58.4GoogleChromeCWE-693Policy bypass in Extensions in Google Chrome prior to 151.0.7922.72 allowed a…
CVE-2026-118705.48.4UnknownWP Ghost (Hide My WP Ghost)CWE-290Hide My WP Ghost < 7.0.05 - IP Address Spoofing via Trusted Proxy Headers Lea…
CVE-2026-177394.28.4GoogleChromeCWE-79Insufficient policy enforcement in Extensions in Google Chrome prior to 151.0…
CVE-2026-142213.88.4UnknownEasy AppointmentsCWE-284Easy Appointments <= 4.0 - Contributor+ Appointment Data Disclosure & Modific…
CVE-2026-179527.58.3GoogleChromeCWE-269Inappropriate implementation in V8 in Google Chrome prior to 151.0.7922.72 al…
CVE-2026-142076.18.3UnknownLifterLMSCWE-79LifterLMS < 10.0.10 - Instructor+ Stored XSS via Featured Pricing Information
CVE-2026-180034.38.3GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-169697.67.9dfir-irisiris-webCWE-79DFIR-IRIS Stored XSS in Assets
CVE-2026-183607.67.9dfir-irisiris-webCWE-79DFIR-IRIS Stored XSS in Custom Attributes
CVE-2026-183617.67.9dfir-irisiris-webCWE-79DFIR-IRIS Stored XSS in Datastore Upload
CVE-2026-179834.37.9GoogleChromeCWE-451Inappropriate implementation in Global Media Controls in Google Chrome prior …
CVE-2026-179944.37.7GoogleChromeCWE-284Inappropriate implementation in Media in Google Chrome on Android prior to 15…
CVE-2026-567586.97.6MZ Automation GmbHlibiec61850CWE-125MZ Automation libiec61850 Out-of-bounds Read
CVE-2026-663496.97.6MZ Automation GmbHlibiec61850CWE-125MZ Automation libiec61850 Out-of-bounds Read
CVE-2026-179014.37.7GoogleChromeCWE-20Insufficient validation of untrusted input in Sharing in Google Chrome on And…
CVE-2026-100312.37.7drakkanSFTPGoCWE-863SFTPGo 2.7.4 Permission Bypass via Symbolic Link Creation
CVE-2026-105694.37.6IBMUCD - IBM UrbanCode DeployCWE-200IBM DevOps Deploy / IBM UrbanCode Deploy (UCD) is susceptible to an Exposure …
CVE-2026-178677.17.5GoogleChromeCWE-20Insufficient validation of untrusted input in Dawn in Google Chrome prior to …
CVE-2026-478828.37.3SpringSpring Tools for EclipseCWE-338Spring Boot DevTools remote secret generated with a non-cryptographic PRNG
CVE-2026-179366.57.3GoogleChromeCWE-352Inappropriate implementation in DevTools in Google Chrome prior to 151.0.7922…
CVE-2026-152525.47.3UnknownSearch Atlas SEOCWE-862Search Atlas SEO < 2.6.12 - Subscriber+ Google Indexing API Access
CVE-2026-118816.17.1UnknownFluent FormsCWE-79Fluent Forms < 6.2.6 - Contributor+ Stored XSS via Date/Time Field
CVE-2026-133306.17.1UnknownAnimation Addons for ElementorCWE-79Animation Addons for Elementor < 2.7.0 - Author+ Stored XSS via SVG Upload
CVE-2026-179394.37.1GoogleChromeCWE-20Insufficient validation of untrusted input in Passwords in Google Chrome prio…
CVE-2026-159297.16.9LG ElectronicsSmartShareCWE-89Improper neutralization of special elements used in an SQL command ('SQL inje…
CVE-2026-654217.16.9MZ Automation GmbHlibiec61850CWE-125MZ Automation libiec61850 Out-of-bounds Read
CVE-2026-663647.16.9MZ Automation GmbHlibiec61850CWE-125MZ Automation libiec61850 Out-of-bounds Read
CVE-2026-663697.16.9MZ Automation GmbHlibiec61850CWE-125MZ Automation libiec61850 Out-of-bounds Read
CVE-2026-667207.16.9MZ Automation GmbHlibiec61850CWE-125MZ Automation libiec61850 Out-of-bounds Read
CVE-2026-178536.17.0GoogleChromeCWE-79Inappropriate implementation in DevTools in Google Chrome prior to 151.0.7922…
CVE-2026-178786.17.0GoogleChromeCWE-79Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-143105.47.0UnknownTutor LMSCWE-639Tutor LMS < 4.0.0 - Subscriber+ Cross-Course Q&A Content Disclosure and Reply…
CVE-2026-178574.36.9GoogleChromeCWE-346Inappropriate implementation in Network in Google Chrome prior to 151.0.7922.…
CVE-2026-178714.36.9GoogleChromeCWE-346Inappropriate implementation in Passwords in Google Chrome prior to 151.0.792…
CVE-2026-178764.36.9GoogleChromeCWE-346Inappropriate implementation in Payments in Google Chrome prior to 151.0.7922…
CVE-2026-178854.36.9GoogleChromeCWE-346Inappropriate implementation in Paint in Google Chrome prior to 151.0.7922.72…
CVE-2026-178954.36.9GoogleChromeCWE-346Inappropriate implementation in DataTransfer in Google Chrome prior to 151.0.…
CVE-2026-178974.36.9GoogleChromeCWE-346Inappropriate implementation in ORB in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-179746.56.6GoogleChromeCWE-602Insufficient policy enforcement in DevTools in Google Chrome prior to 151.0.7…
CVE-2026-179626.16.6GoogleChromeCWE-79Inappropriate implementation in Blink in Google Chrome prior to 151.0.7922.72…
CVE-2026-178665.86.6GoogleChromeCWE-843Type Confusion in Tab in Google Chrome on Android prior to 151.0.7922.72 allo…
CVE-2026-179803.16.6GoogleChromeCWE-451Inappropriate implementation in UI in Google Chrome on Android prior to 151.0…
CVE-2026-593284.26.5SpringSpring Tools for EclipseCWE-79Cross-Site Scripting in Eclipse Spring Boot Starter Wizard Dependency Tooltips
CVE-2026-180146.56.3GoogleChromeCWE-20Insufficient validation of untrusted input in DevTools in Google Chrome prior…
CVE-2026-178905.86.3GoogleChromeCWE-20Insufficient validation of untrusted input in DevTools in Google Chrome prior…
CVE-2026-178935.86.3GoogleChromeCWE-20Insufficient validation of untrusted input in Updater in Google Chrome on Mac…
CVE-2026-133444.86.3UnknownEssential Addons for ElementorCWE-79Essential Addons for Elementor - Lite < 6.6.10 - Contributor+ Stored XSS via …
CVE-2026-179167.56.0GoogleChromeCWE-346Insufficient policy enforcement in Settings in Google Chrome prior to 151.0.7…
CVE-2026-113835.46.0IBMTivoli System Automation Application ManagerCWE-79Cross-site Scripting in IBM WebSphere Application Server shipped with Tivoli …
CVE-2026-664208.65.9YlianstMeshCentralCWE-346MeshCentral Cross-Site WebSocket Hijacking via Origin Validation Bypass on Se…
CVE-2025-362985.45.9IBMSterling B2B IntegratorCWE-79Security Vulnerability in Ebics server affects IBM Sterling B2B Integrator an…
CVE-2025-364315.45.9IBMSterling B2B IntegratorCWE-79XSS Security Vulnerability in response header affects IBM Sterling B2B Integr…
CVE-2026-179044.35.8GoogleChromeCWE-346Insufficient policy enforcement in NFC in Google Chrome on Android prior to 1…
CVE-2026-179054.35.8GoogleChromeCWE-346Inappropriate implementation in SurfaceCapture in Google Chrome prior to 151.…
CVE-2026-179104.35.8GoogleChromeCWE-346Insufficient policy enforcement in NFC in Google Chrome on Android prior to 1…
CVE-2026-179114.35.8GoogleChromeCWE-346Insufficient policy enforcement in SVG in Google Chrome prior to 151.0.7922.7…
CVE-2026-179334.35.8GoogleChromeCWE-346Inappropriate implementation in DOMStorage in Google Chrome prior to 151.0.79…
CVE-2026-179594.35.8GoogleChromeCWE-346Inappropriate implementation in Network in Google Chrome prior to 151.0.7922.…
CVE-2026-179634.35.8GoogleChromeCWE-346Inappropriate implementation in SVG in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-568473.35.7nodejsnodeCWE-1119A flaw in Node.js Permission Model enforcement allows `trace_events.createTra…
CVE-2026-545222.15.8msgpackmsgpack-rubyCWE-416MessagePack::Buffer#clear Use-After-Free that Enables Cross-Buffer Disclosure
CVE-2026-58467.65.7WatchfireBC550CWE-321Hard-coded Cryptographic Key in Watchfire Controllers
CVE-2026-180194.35.7GoogleChromeCWE-1300Side-channel information leakage in Media in Google Chrome prior to 151.0.792…
CVE-2026-664168.65.6LeantimeLeantimeCWE-352Leantime CSRF Protection Globally Disabled by Omission of Laravel VerifyCsrfT…
CVE-2025-01526.15.6IBMEngineering Requirements Management DOORS and DOORS Web AccessCWE-79IBM Engineering Requirements Management DOORS and DOORS Web Access is affecte…
CVE-2026-179774.35.6GoogleChromeCWE-346Policy bypass in CSS in Google Chrome prior to 151.0.7922.72 allowed a remote…
CVE-2026-178915.85.1GoogleChromeCWE-416Use after free in ANGLE in Google Chrome on Android prior to 151.0.7922.72 al…
CVE-2026-179065.85.2GoogleChromeCWE-20Insufficient validation of untrusted input in Bluetooth in Google Chrome prio…
CVE-2026-179085.85.2GoogleChromeCWE-20Insufficient validation of untrusted input in Printing in Google Chrome on Wi…
CVE-2026-178887.15.0GoogleChromeCWE-20Insufficient validation of untrusted input in WebUI in Google Chrome prior to…
CVE-2026-179814.35.1GoogleChromeCWE-346Inappropriate implementation in Blink in Google Chrome prior to 151.0.7922.72…
CVE-2026-180044.35.1GoogleChromeCWE-284Insufficient policy enforcement in Speech in Google Chrome prior to 151.0.792…
CVE-2026-169704.25.0dfir-irisiris-webCWE-613DFIR-IRIS Insufficient Logout Implementation
CVE-2026-675306.44.9ArnasDonwacrmCWE-918WACRM: SSRF via the automation `send_webhook` action
CVE-2026-179544.35.0GoogleChromeCWE-346Policy bypass in MHTML in Google Chrome prior to 151.0.7922.72 allowed a remo…
CVE-2026-179254.34.9GoogleChromeCWE-346Inappropriate implementation in Cast in Google Chrome on Android prior to 151…
CVE-2024-406836.34.7IBMOperations Analytics - Log AnalysisCWE-613IBM Operations Analytics - Log Analysis is affected by a TOCTOU weakness allo…
CVE-2026-180064.34.8GoogleChromeCWE-451Inappropriate implementation in Google Lens in Google Chrome prior to 151.0.7…
CVE-2026-180074.34.8GoogleChromeCWE-451Inappropriate implementation in Input in Google Chrome on Android prior to 15…
CVE-2026-180134.34.8GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-180003.14.6GoogleChromeCWE-346Insufficient policy enforcement in USB in Google Chrome on Android prior to 1…
CVE-2026-179004.34.5GoogleChromeCWE-346Inappropriate implementation in Enterprise in Google Chrome on Windows prior …
CVE-2025-653416.14.3n/an/aCWE-79Ecommerce Fruits Bazar 1.0 is vulnerable to Cross Site Scripting (XSS) in adm…
CVE-2025-653426.14.3n/an/aCWE-79code-projects Blood System 1.0 is vulnerable to Cross Site Scripting (XSS) in…
CVE-2026-179996.54.1GoogleChromeCWE-362Race in PictureInPicture in Google Chrome on Android prior to 151.0.7922.72 a…
CVE-2026-179573.14.1GoogleChromeCWE-346Inappropriate implementation in CORS in Google Chrome prior to 151.0.7922.72 …
CVE-2026-179704.34.0GoogleChromeCWE-20Insufficient validation of untrusted input in Passwords in Google Chrome prio…
CVE-2026-580437.53.9nodejsnodeCWE-284A flaw in Node.js Permission Model enforcement can over-grant filesystem acce…
CVE-2026-180084.33.8GoogleChromeCWE-451Inappropriate implementation in Settings in Google Chrome prior to 151.0.7922…
CVE-2026-180094.33.8GoogleChromeCWE-20Insufficient validation of untrusted input in Passwords in Google Chrome prio…
CVE-2026-180104.33.8GoogleChromeCWE-451Inappropriate implementation in Passwords in Google Chrome prior to 151.0.792…
CVE-2022-4994await3.6LinuxLinux—KVM: x86: wean fast IN from emulator_pio_in
CVE-2026-179764.33.5GoogleChromeCWE-284Insufficient policy enforcement in Extensions in Google Chrome prior to 151.0…
CVE-2026-52198.33.1Softtr Information Technology Trade Ltd. Co.E-Commerce PackCWE-352CSRF in Softtr's E-Commerce Pack
CVE-2026-119807.33.0IBMAspera Desktop AppCWE-242Code execution in IBM Desktop App
CVE-2026-55824.33.0fusewpFuseWP – WordPress User Sync to Email List & Marketing Automation (Mailchimp, Constant Contact, ActiveCampaign etc.)CWE-352FuseWP <= 1.1.24.2 - Cross-Site Request Forgery to Sync Rule Status Toggle
CVE-2026-180164.33.0GoogleChromeCWE-346Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS pri…
CVE-2026-684996.22.7uhopnode-re2CWE-835re2: Global `String.prototype.match` with an empty-matchable pattern never ad…
CVE-2026-179973.12.7GoogleChromeCWE-346Inappropriate implementation in Passwords in Google Chrome prior to 151.0.792…
CVE-2026-135847.12.6Mitsubishi Electric CorporationMELSEC MX Controller MX-R model MXR300-16CWE-924Information tampering and Denial-of-service (DoS) vulnerability in CC-Link IE…
CVE-2026-179274.32.4GoogleChromeCWE-346Insufficient policy enforcement in DevTools in Google Chrome prior to 151.0.7…
CVE-2026-179196.82.0GoogleChromeCWE-693Insufficient policy enforcement in Enterprise in Google Chrome on Mac prior t…
CVE-2026-675505.72.0uhopnode-re2CWE-125re2: Out-of-bounds heap read in `exec`/`test`/`match` via attacker-influenced…
CVE-2026-179984.31.9GoogleChromeCWE-451Incorrect security UI in Extensions in Google Chrome prior to 151.0.7922.72 a…
CVE-2026-179035.41.9GoogleChromeCWE-79Insufficient policy enforcement in Chromecast in Google Chrome prior to 151.0…
CVE-2026-178704.31.8GoogleChromeCWE-20Insufficient validation of untrusted input in Cast in Google Chrome prior to …
CVE-2026-72605.41.6PHP GroupPHPCWE-121Stack overflow in phar with circular symlinks
CVE-2026-105357.81.5IBMDb2CWE-121IBM® Db2® is vulnerable to buffer overflow in setgid helper db2flacc which ca…
CVE-2026-178627.81.5GoogleChromeCWE-416Use after free in Tracing in Google Chrome on Windows prior to 151.0.7922.72 …
CVE-2026-142397.11.3UnknowntourmasterCWE-79Tourmaster < 5.4.8 - Stored XSS via CSRF
CVE-2026-675966.91.3CSL Mobile LimitedCSL 1010 M2M 3G WiFi ModuleCWE-261CSL 1010 M2M 3G WiFi Module 2.2.1.4 Weak Encryption via Router.cfg
CVE-2026-178637.81.3GoogleChromeCWE-269Inappropriate implementation in Browser in Google Chrome on Windows prior to …
CVE-2026-179325.51.2GoogleChromeCWE-416Use after free in DataTransfer in Google Chrome on Windows prior to 151.0.792…
CVE-2026-178617.81.2GoogleChromeCWE-20Insufficient validation of untrusted input in Updater in Google Chrome prior …
CVE-2026-106955.51.2IBMDb2CWE-400IBM® Db2® is vulnerable to a denial of service when running non fenced federa…
CVE-2026-178778.41.1GoogleChromeCWE-269Inappropriate implementation in Chromoting in Google Chrome on Linux prior to…
CVE-2026-179666.21.1GoogleChromeCWE-200Inappropriate implementation in Views in Google Chrome on Mac prior to 151.0.…
CVE-2026-178647.81.0GoogleChromeCWE-269Inappropriate implementation in Updater in Google Chrome on Mac prior to 151.…
CVE-2026-118858.41.0IBMPowerVM HypervisorCWE-120Power System update in Buffer Copy
CVE-2026-179735.51.0GoogleChromeCWE-200Inappropriate implementation in Views in Google Chrome on Mac prior to 151.0.…
CVE-2026-685635.51.0Red HatRed Hat Enterprise Linux 10CWE-732Ansible-collection-redhat-leapp: ansible-collection-redhat-leapp: information…
CVE-2026-593263.31.0SpringSpring Tools for EclipseCWE-532HTTP Proxy Credentials Logged in Plaintext by the Spring Boot Language Server
CVE-2026-441055.80.7Phoenix ContactCHARX SEC-3150CWE-532Cleartext password in logs
CVE-2026-178603.30.7GoogleChromeCWE-20Insufficient validation of untrusted input in Mobile in Google Chrome on Andr…
CVE-2026-623635.00.6ImageMagickImageMagickCWE-787ImageMagick: Heap Buffer Over-Write in fx operation
CVE-2026-179843.30.6GoogleChromeCWE-346Inappropriate implementation in Browser in Google Chrome on Android prior to …
CVE-2026-180112.40.5GoogleChromeCWE-200Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-629464.70.5ImageMagickImageMagickCWE-190ImageMagick: Integer Overflow in JNX decoder causes heap buffer over-write wh…
CVE-2026-593274.40.5SpringSpring Tools for EclipseCWE-312Cleartext Storage of Spring Boot DevTools Remote Secret in Eclipse Launch Con…
CVE-2026-167277.30.4ASUSArmoury CrateCWE-362Concurrent Execution using Shared Resource with Improper Synchronization (“Ra…
CVE-2026-179966.20.4GoogleChromeCWE-284Inappropriate implementation in Browser in Google Chrome on Mac prior to 151.…
CVE-2026-568504.10.3nodejsnodeCWE-287A flaw in Node.js HTTPS Agent connection reuse can cause PFX object-array key…
CVE-2026-180184.00.3GoogleChromeCWE-451Inappropriate implementation in Updater in Google Chrome on Windows prior to …
CVE-2026-179937.00.2GoogleChromeCWE-362Race in Updater in Google Chrome on Windows prior to 151.0.7922.72 allowed a …
CVE-2026-178726.10.0GoogleChromeCWE-347Cryptographic Flaw in WebAppInstalls in Google Chrome on Android prior to 151…