boxscore/security

A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?

Wednesday, August 12, 2026 · all times UTC← 2026-08-11 · archive · 2026-08-13 →

Security Box Score — August 12, 2026

433 CVEs published, led by IBM (68).

433 CVEs published August 12, 2026: 70 critical, 149 high, 184 medium, 16 low; 0 in the KEV catalog at press time; 1 with a public exploit reference; 14 awaiting enrichment. Elevated volume. 25 rendered as box scores below; 375 more in the results table on this page; the remaining 33 on continuation pages.

Standings

League
MTDYTD2025 same span2025 full
CVEs published408426248——
KEV catalog size1675

Publication counts reflect the record since May 20, 2026 (archive start); KEV figures are catalog-wide.

Prior-year comparisons begin when the archive covers a full year; archive begins May 20, 2026.

1508 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux4122727234139663711120.17.8.0016+374 ▲
microsoft4391861132126844714286251.37.8.0044+385 ▲
google491810222749783567760.37.5.0025-30 ▼
red hat1255113021024031200.06.6.0029+89 ▲
apple2273587913338872.67.0.0027+2 ▲
canonical1138129125000.07.8.0020+10 ▲
suse52651461000.08.1.0039-1 ▼
freebsd01601240000.07.8.00160
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco31691337190561318.87.5.0046+23 ▲
ubiquiti036142110338.38.8.0049-25 ▼
netgear93200275000.04.3.0025+9 ▲
fortinet7307814128620.07.0.0050+7 ▲
palo alto networks025131471328.04.7.0028-14 ▼
vmware0174922715.98.3.0040-1 ▼
f50165830416.38.6.00570
ivanti314482025535.78.3.0754+3 ▲
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache9543186185147123320.57.5.0049+34 ▲
mozilla11285142350900.08.1.0031-2 ▼
gitlab1364113428423.14.9.0028+6 ▲
drupal05165355412.05.9.0026-46 ▼
github4161690000.06.4.0042+3 ▲
docker180530000.07.7.0015+1 ▲
wordpress1412102250.08.8.5550+1 ▲
kubernetes010001000.02.4.00350
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle01379343653322612730.28.1.00360
ibm100329841401023610.37.5.0031+98 ▲
adobe603123914512351931.07.8.0026+57 ▲
progress16581434100611.78.1.0036+6 ▲
solarwinds0231733010417.49.1.00580
veeam10165920100.08.6.0034+10 ▲
zohocorp283320000.08.4.0142+2 ▲
atlassian0303001300.08.0.00260
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
d-link153515596300.07.4.0157+14 ▲
siemens173322380000.07.3.0016+13 ▲
synology12426133000.05.6.0025+1 ▲
rockwell automation02441820000.08.7.00290
schneider electric091620000.08.6.00370
abb070430000.07.2.00180
hikvision060420000.07.2.00400
moxa050320000.07.0.00290
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
sourcecodester12132007161000.05.5.0033-16 ▼
dell12111954453210.97.2.0021-21 ▼
openclaw01110583914000.07.0.0026-1 ▼
nvidia16981366190000.07.7.0034-1 ▼
capgo083242381000.07.1.0037-22 ▼
itsourcecode879001960000.02.1.0033-2 ▼
spring079234412000.06.5.00220
imagemagick078156012000.05.3.0018-18 ▼

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-8037.995799.99.8
CVE-2026-34486.986299.97.5
CVE-2026-63030.977999.99.8
CVE-2026-16232.891299.89.3
CVE-2026-63077.847399.79.8
CVE-2026-50522.846199.79.8
CVE-2026-15409.836699.710.0
CVE-2026-60137.797999.65.9
CVE-2026-72898.792299.610.0
CVE-2026-25089.761199.59.8
Highest CVSS
CVECVSSEPSSNote
CVE-2026-1540910.0.8366KEV
CVE-2026-7289810.0.7922KEV
CVE-2026-898510.0.0660
CVE-2026-651610.0.0486
CVE-2026-4836210.0.0431
CVE-2026-4766810.0.0388
CVE-2026-4633910.0.0335
CVE-2026-4435910.0.0180
CVE-2026-5823110.0.0171
CVE-2026-1681210.0.0157KEV
Most disclosures (vendor)
VendorCVEs
linux1207
oracle1109
microsoft1050
google466
red hat250
apache211
ibm203
apple169
adobe163
mozilla68
Most KEV additions (YTD)
VendorKEV
microsoft25
cisco13
apple7
fortinet6
google6
ivanti5
solarwinds4
adobe3
berriai3
oracle3
Most-affected ecosystems
EcosystemAdvisories
Maven66
PyPI5
Go3
Packagist3
npm3
crates.io2
NuGet1
Fastest to KEV
CVEVendorDays
CVE-2021-27137DD-WRT0
CVE-2025-68686Fortinet0
CVE-2026-0770Langflow0
CVE-2026-15409SonicWall0
CVE-2026-15410SonicWall0
CVE-2026-16232checkpoint0
CVE-2026-16812Arista Networks0
CVE-2026-18556N-able0
CVE-2026-18577N-able0
CVE-2026-20316Cisco0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104n/a2021-11-171729
CVE-2021-27102n/a2021-11-171729
CVE-2021-27101n/a2021-11-171729
CVE-2021-27103n/a2021-11-171729
CVE-2021-21017Adobe2021-11-171729
CVE-2021-28550Adobe2021-11-171729
CVE-2021-42013Apache Software Foundation2021-11-171729
CVE-2021-41773Apache Software Foundation2021-11-171729
CVE-2021-30858Apple2021-11-171729
CVE-2021-30860Apple2021-11-171729

Transactions

EXPLOIT PUBLISHED — CVE-2017-10271 (Oracle Corporation WebLogic Server). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2018-11138. Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2018-15982. Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2018-20250 (Check Point Software Technologies Ltd. WinRAR). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2018-7602 (Drupal core). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2018-8120 (Microsoft Windows Server 2008). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2018-8174 (Microsoft Windows 7). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2019-0752 (Microsoft Internet Explorer 11). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2019-1069 (Microsoft Windows 10 Version 1703). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2019-1458 (Microsoft Windows). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2019-1579 (Palo Alto Networks GlobalProtect Portal/Gateway Interface). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2020-0787 (Microsoft Windows). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2020-0796 (Microsoft Windows 10 Version 1903 for 32-bit Systems). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2020-3153 (Cisco AnyConnect Secure Mobility Client). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2020-3433 (Cisco AnyConnect Secure Mobility Client). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2021-1675 (Microsoft Windows 10 Version 1809). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2021-1732 (Microsoft Windows 10 Version 1803). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2021-21972 (VMware vCenter Server). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2021-21975 (VMware vRealize Operations). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2021-21983 (VMware vRealize Operations). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2021-21985 (VMware vCenter Server and VMware Cloud Foundation). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2021-26855 (Microsoft Exchange Server 2016 Cumulative Update 19). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2021-27065 (Microsoft Exchange Server 2019). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2023-42787 (Fortinet FortiAnalyzer). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2024-14042 (Open5GS). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-10681 (zephyrproject zephyr). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-14548 (Unknown Ray Enterprise Translation). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-14549 (Unknown Ray Enterprise Translation). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-17022 (Unknown Salon Booking System). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-19351 (dresende node-sql-query). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-19361 (macrozheng mall). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-19376 (Uasoft Badaso). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-19382 (Almico Speedfan). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-45799 (square wire). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-5241 (huggingface/transformers). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-55653 (Red Hat Enterprise Linux 10). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-55654 (Red Hat Enterprise Linux 10). Public exploit reference added.

EXPLOIT PUBLISHED — CVE-2026-67579 (ash-project ash). Public exploit reference added.

RESCORED — CVE-2019-2725 (Oracle Corporation Tape Library ACSLS). CVSS 7.5 → 9.8 (NVD).

RESCORED — CVE-2023-42787 (Fortinet FortiAnalyzer). CVSS 6.2 → 6.5 (NVD).

RESCORED — CVE-2024-14043 (Open5GS). CVSS 5.3 → 2.1 (NVD).

RESCORED — CVE-2024-26882 (Linux). CVSS 7.3 → 7.8 (NVD).

RESCORED — CVE-2024-31245 (ConvertKit). CVSS 5.3 → 7.5 (NVD).

RESCORED — CVE-2024-31249 (WPKube Subscribe To Comments Reloaded). CVSS 5.3 → 7.5 (NVD).

RESCORED — CVE-2025-61848 (Fortinet FortiManager). CVSS 6.5 → 7.2 (NVD).

RESCORED — CVE-2026-49261 (MariaDB server). CVSS 10 → 9.8 (NVD).

RESCORED — CVE-2026-4942 (IBM i). CVSS 5.9 → 7.5 (NVD).

RESCORED — CVE-2026-50656 (Microsoft Malware Protection Engine). CVSS 7.8 → 7 (NVD).

RESCORED — CVE-2026-5241 (huggingface/transformers). CVSS 8 → 9.6 (NVD).

RESCORED — CVE-2026-55653 (Red Hat Enterprise Linux 10). CVSS 4.3 → 6.5 (NVD).

RESCORED — CVE-2026-55655 (Red Hat Enterprise Linux 10). CVSS 5 → 6.1 (NVD).

ENRICHED — CVE-2018-9206 (Blueimp jQuery-File-Upload). Received CVSS 9.8 and CPE data from NVD.

ENRICHED — CVE-2021-21983 (VMware vRealize Operations). Received CVSS 6.5 and CPE data from NVD.

ENRICHED — CVE-2022-50073 (Linux). Received CVSS 5.5 and CPE data from NVD.

Yesterday's Results

How to read these box scores · glossary

433 CVEs published. 25 box scores and 375 table rows below; the remaining 33 continue on page 2 — every CVE is listed, nothing truncated.

Microsoft UFO: Unauthenticated Mobile MCP access allows remote Android device control and screen disclosure
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  L    9.4   .0261   84.2     —
AFFECTED
  Product  Versions   Fixed
  UFO      < 3.0.8 –  —
TIMELINE
  Aug 11  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-306, CWE-862 · CNA: GitHub_M · CVSS v3.1 · 3 references · NVD status: Received
Microsoft UFO: IPv6 transition address bypass of SSRF guard in URL validation
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   N   N   N    6.9   .0162   74.2     —
AFFECTED
  Product  Versions   Fixed
  UFO      < 3.0.8 –  —
TIMELINE
  Aug 11  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-918 · CNA: GitHub_M · CVSS v4.0 · 3 references · NVD status: Received
Red Hat Red Hat Advanced Cluster Management for Kubernetes 2 — Acm-search-v2-rhel9: search-v2-operator: hub search cr collector.imageoverride propagated to every spoke as arbitrary container image
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  C  H  H  L    9.0   .0145   71.4     —
AFFECTED
  Product                                               Versions     Fixed
  Red Hat Advanced Cluster Management for Kubernetes 2  unspecified  —
TIMELINE
  Aug 6   Reserved by CNA
  Aug 12  Published (CNA: redhat)
CWE-829 · CNA: redhat · CVSS v3.1 · 2 references · NVD status: Awaiting Analysis
microsoft prompty — Prompty: Server-Side Template Injection to Remote Code Execution in the @prompty/core Nunjucks Renderer
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  C  H  H  H   10.0   .0121   66.2     —
AFFECTED
  Product  Versions   Fixed
  prompty  < 0.1.5 –  —
TIMELINE
  Aug 11  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-94, CWE-1336 · CNA: GitHub_M · CVSS v3.1 · 6 references · NVD status: Received
frangoteam FUXA — FUXA's Unauthenticated Project Data Disclosure Exposes Server-Side Scripts and Device Configurations
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0120   65.9     —
AFFECTED
  Product  Versions   Fixed
  FUXA     = 1.3.0 –  —
TIMELINE
  May 19  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-201 · CNA: GitHub_M · CVSS v3.1 · 2 references · NVD status: Received
IBM Db2 Mirror for i is vulnerable to OS command injection []
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0104   61.5     —
AFFECTED
  Product           Versions  Fixed
  Db2 Mirror for i  7.4 –     —
TIMELINE
  Jul 24  Reserved by CNA
  Aug 12  Published (CNA: ibm)
CWE-78 · CNA: ibm · CVSS v3.1 · 1 reference · NVD status: Analyzed
Canonical LXD — Root RCE via image backup.yaml symlink
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  C  H  H  H    9.9   .0102   60.7     —
AFFECTED
  Product  Versions  Fixed
  LXD      4.0.0 –   —
TIMELINE
  Jul 16  Reserved by CNA
  Aug 12  Published (CNA: canonical)
CWE-59 · CNA: canonical · CVSS v3.1 · 1 reference · NVD status: Received
seriousm4x UpSnap — UpSnap vulnerable to Remote Code Execution via IP Field Template Injection in wake_cmd/shutdown_cmd
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  C  H  H  N    9.6   .0088   56.4     —
AFFECTED
  Product  Versions   Fixed
  UpSnap   < 5.4.0 –  —
TIMELINE
  May 30  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-78 · CNA: GitHub_M · CVSS v3.1 · 2 references · NVD status: Received
IBM i is Affected By privilege escalation in Navigator for i
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0082   54.6     —
AFFECTED
  Product  Versions  Fixed
  i        7.6 –     —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 12  Published (CNA: ibm)
CWE-78 · CNA: ibm · CVSS v3.1 · 1 reference · NVD status: Analyzed
ash-project ash — Filter expression injection via forged keyset pagination cursor in Ash
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   L   L   P   N   N   H   H   H    7.5   .0080   54.0     —
AFFECTED
  Product  Versions                                    Fixed
  ash      1.17.0 –                                    —
  ash      f8fadc67e67c955bb68b3a8d642be13e2b7e8ca9 –  —
TIMELINE
  Aug 9   Reserved by CNA
  Aug 12  Public exploit reference published
  Aug 12  Published (CNA: EEF)
CWE-89, CWE-502 · CNA: EEF · CVSS v4.0 · 4 references · NVD status: Analyzed
wolfsoftwaresystemsltd WolfStack — WolfStack < 25.9.2 Hard-coded Secret Authentication Bypass via X-WolfStack-Secret
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0079   53.3     —
AFFECTED
  Product    Versions     Fixed
  WolfStack  unspecified  —
TIMELINE
  Aug 12  Reserved by CNA
  Aug 12  Published (CNA: VulnCheck)
CWE-798 · CNA: VulnCheck · CVSS v4.0 · 3 references · NVD status: Received
Apache Airflow: DAG-author remote code execution on the Scheduler via awaiting_input next_kwargs deserialization
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  L  L  L    7.3   .0078   53.1     —
AFFECTED
  Product         Versions  Fixed
  Apache Airflow  3.3.0 –   —
TIMELINE
  Jul 29  Reserved by CNA
  Aug 12  Published (CNA: apache)
CWE-502 · CNA: apache · CVSS v3.1 · 3 references · NVD status: Analyzed
Fortinet FortiManager — A authentication bypass using an alternate path or channel vulnerability in Fortinet FortiManager 7.6.1, Fo…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   N   N  U  H  H  H    8.1   .0077   52.8     —
AFFECTED
  Product             Versions  Fixed
  FortiManager        7.6.1 –   —
  FortiManager Cloud  7.6.1 –   —
TIMELINE
  Aug 4   Reserved by CNA
  Aug 12  Published (CNA: fortinet)
CWE-288 · CNA: fortinet · CVSS v3.1 · 1 reference · NVD status: Received
Fortinet FortiClientWindows — A buffer copy without checking size of input ('classic buffer overflow') vulnerability in Fortinet FortiCli…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   N   N  U  H  H  H    8.1   .0070   50.4     —
AFFECTED
  Product             Versions  Fixed
  FortiClientWindows  7.4.0 –   —
TIMELINE
  Aug 4   Reserved by CNA
  Aug 12  Published (CNA: fortinet)
CWE-120 · CNA: fortinet · CVSS v3.1 · 1 reference · NVD status: Received
Microsoft Container Migration Solution Accelerator: Authenticated IDOR allowing read/write/delete processes
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    8.7   .0068   49.5     —
AFFECTED
  Product                                   Versions    Fixed
  Container-Migration-Solution-Accelerator  <= 2.1.2 –  —
TIMELINE
  Aug 11  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-639 · CNA: GitHub_M · CVSS v4.0 · 1 reference · NVD status: Received
Fortinet FortiWeb — An Improper Authentication vulnerability [CWE-287] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, …
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0065   48.4     —
AFFECTED
  Product   Versions  Fixed
  FortiWeb  8.0.0 –   —
TIMELINE
  Feb 10  Reserved by CNA
  Aug 12  Published (CNA: fortinet)
CWE-287 · CNA: fortinet · CVSS v3.1 · 1 reference · NVD status: Received
Phoenix Contact AXC F 1152 — Unauthenticated Buffer Overflow in PROFINET Service
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0064   47.9     —
AFFECTED
  Product                Versions    Fixed
  AXC F 1152             2019.0.4 –  —
  AXC F 1252             2019.0.4 –  —
  AXC F 2152             2019.0.4 –  —
  AXC F 3152             2019.0.4 –  —
  BPC 9102S              2019.0.4 –  —
  BPC 9202S              2019.0.4 –  —
  RFC 4072R              2019.0.4 –  —
  RFC 4072S              2019.0.4 –  —
  VL3 UPC 2440 EDGE      2019.0.4 –  —
  VPLCNEXT CONTROL 1000  2019.0.4 –  —
  + 5 more
TIMELINE
  Apr 16  Reserved by CNA
  Aug 12  Published (CNA: CERTVDE)
CWE-120 · CNA: CERTVDE · CVSS v4.0 · 1 reference · NVD status: Received
seriousm4x UpSnap — UpSnap - Unauthenticated Initial-Superuser Takeover Chains to Root RCE via wake_cmd
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0062   46.7     —
AFFECTED
  Product  Versions             Fixed
  UpSnap   >= 4.4.1, < 5.4.0 –  —
TIMELINE
  Jun 1   Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-78, CWE-269, CWE-306, CWE-862 · CNA: GitHub_M · CVSS v3.1 · 2 references · NVD status: Received
Apache Airflow: DAG-author remote code execution on the Scheduler via a Serde `Callback` deserialization gadget
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0061   46.6     —
AFFECTED
  Product         Versions  Fixed
  Apache Airflow  3.3.0 –   —
TIMELINE
  Jul 29  Reserved by CNA
  Aug 12  Published (CNA: apache)
CWE-502 · CNA: apache · CVSS v3.1 · 4 references · NVD status: Analyzed
Unknown WooCommerce Subscriptions — WooCommerce Subscriptions < 9.1.0 - Unauthenticated RCE via PHP Object Injection
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0061   46.4     —
AFFECTED
  Product                    Versions  Fixed
  WooCommerce Subscriptions  4.7.0 –   —
TIMELINE
  Jul 30  Reserved by CNA
  Aug 12  Published (CNA: WPScan)
CWE-434 · CNA: WPScan · CVSS v3.1 · 1 reference · NVD status: Received
Unknown wpmudev-updates — WPMU DEV Dashboard < 5.0.1 - Remote Code Execution via Hub Install Action
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0059   45.5     —
AFFECTED
  Product          Versions     Fixed
  wpmudev-updates  unspecified  —
TIMELINE
  Jul 17  Reserved by CNA
  Aug 12  Published (CNA: WPScan)
CWE-94 · CNA: WPScan · CVSS v3.1 · 1 reference · NVD status: Received
owen2345 CamaleonCMS — CamaleonCMS 2.9.1 Server-Side Template Injection via test_email Action
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   N   H   N   H   H   H    7.5   .0059   45.4     —
AFFECTED
  Product      Versions     Fixed
  CamaleonCMS  unspecified  —
TIMELINE
  Aug 11  Reserved by CNA
  Aug 12  Published (CNA: VulnCheck)
CWE-1336 · CNA: VulnCheck · CVSS v4.0 · 3 references · NVD status: Received
Apache Airflow: Arbitrary airflow.* class instantiation on the API server via the XCom deserialize endpoint
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  L  L  N    5.4   .0058   45.3     —
AFFECTED
  Product         Versions     Fixed
  Apache Airflow  unspecified  —
TIMELINE
  Jul 4   Reserved by CNA
  Aug 12  Published (CNA: apache)
CWE-502 · CNA: apache · CVSS v3.1 · 3 references · NVD status: Analyzed
MITHALDU PDF::WebKit — PDF::WebKit versions through 1.2 for Perl allow OS command injection via a 2-arg open() of the output path in to_pdf and of stylesheet paths in _style_tag_for
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   L   L   N   R  U  L  H  N    6.1   .0058   45.2     —
AFFECTED
  Product      Versions     Fixed
  PDF::WebKit  unspecified  —
TIMELINE
  Jul 25  Reserved by CNA
  Aug 12  Published (CNA: CPANSec)
CWE-73, CWE-78 · CNA: CPANSec · CVSS v3.1 · 4 references · NVD status: Received
fabrikar.com Fabrik extension for Joomla — Joomla Extension - fabrikar.com - Unauthenticated remote code execution in Fabrik < 4.6.8
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H   10.0   .0058   45.1     —
AFFECTED
  Product                      Versions       Fixed
  Fabrik extension for Joomla  1.0.0-4.6.7 –  —
TIMELINE
  Jul 29  Reserved by CNA
  Aug 12  Published (CNA: Joomla)
CWE-94 · CNA: Joomla · CVSS v4.0 · 1 reference · NVD status: Received
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-734157.544.8jupyterlabjupyterlabCWE-79jupyterlab: Image viewer in JupyterLab allows XSS when opening malicious imag…
CVE-2026-150399.844.5UnknowngiftwareCWE-434Gift Cards For WooCommerce Pro < 4.2.10 - Unauthenticated Arbitrary File Upload
CVE-2026-172189.843.9IBMiCWE-787IBM i is Affected By Remote Code Execution Vulnerability in Line Printer Daem…
CVE-2026-714085.343.8FortinetFortiOSCWE-770A allocation of resources without limits or throttling vulnerability in Forti…
CVE-2026-134767.343.5IBMInformix Dynamic ServerCWE-78IBM Informix Wire Listener Vulnerable to Unauthenticated Remote Code Execution
CVE-2026-732409.843.1Apache Software FoundationApache AlluraCWE-88Apache Allura: Git command injection
CVE-2025-593219.842.7n/an/aCWE-1188CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 contains a default TPM…
CVE-2026-734149.242.1ericcornelissenshescapeCWE-78Shescape: Shell injection via unescaped parentheses on Windows with CMD
CVE-2026-169068.842.1IBMiCWE-78IBM i is Affected By Multiple Vulnerabilities in Domain Name System
CVE-2026-169048.142.1IBMiCWE-269IBM i is Affected By improper privilege management in Navigator for i
CVE-2026-485537.742.0Nagios Enterprises, LLC.Nagios CoreCWE-78Nagios Core / XI Authenticated RCE via Custom-Variable Macro Injection
CVE-2026-485547.742.0Nagios Enterprises, LLC.Nagios CoreCWE-78Nagios Core / XI Authenticated RCE via Unfiltered NOTIFICATION-Family Macro S…
CVE-2026-168609.941.9IBMiCWE-427IBM i is Affected By Remote Code Execution Vulnerability []
CVE-2026-113258.841.3Cloudflarehttps://github.com/cloudflare/pages-actionCWE-78cloudflare/pages-action is deprecated — migration required by September 18th,…
CVE-2026-186698.841.3IBMiCWE-250IBM i is Affected By A Privilege Escalation Vulnerability []
CVE-2026-187138.841.0IBMiCWE-269IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-171108.840.7IBMiCWE-250IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-714075.640.2FortinetFortiOSCWE-121A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortin…
CVE-2026-580768.839.5Apache Software FoundationApache AirflowCWE-502Apache Airflow: Unguarded import_string() of airflow_exc_ser / base_exc_ser e…
CVE-2026-688686.539.2Apache Software FoundationApache Airflow Google providerCWE-1220Apache Airflow Google provider: google Secret Manager backend: team scope is …
CVE-2026-74277.538.9GitLabGitLabCWE-770Allocation of Resources Without Limits or Throttling in GitLab
CVE-2026-541834.338.4Apache Software FoundationApache AirflowCWE-200Apache Airflow: Airflow Variables were not masked in the UI for authenticated…
CVE-2026-170839.838.2IBMiCWE-787IBM i is Affected By Multiple Vulnerabilities in the Debug Server
CVE-2026-734187.537.9nextauthjsnext-authCWE-20NextAuth.js: getToken() throws an uncaught exception on malformed Bearer auth…
CVE-2025-593197.238.0n/an/aCWE-290CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to certify the i…
CVE-2026-189618.137.5fahdaslamSocial Login, Passkeys, Magic Link & Email OTP – Passwordless Login by VentraConnectCWE-287Social Login, Passkeys, Magic Link & Email OTP – Passwordless Login by Ventra…
CVE-2026-732949.937.1semaphoreuisemaphoreCWE-78Semaphore U: OS Command Injection
CVE-2025-593269.837.1n/an/aCWE-693CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to enforce IMA p…
CVE-2026-659418.836.2Progress Software CorporationWhatsUp GoldCWE-73WhatsUp Gold versions prior to 26.0.2 contain an unauthenticated remote code …
CVE-2026-172666.536.2IBMiCWE-22IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-186635.935.7Red HatRed Hat Directory Server 11CWE-415389-ds-base: 389-ds-base: pre-authentication double-free in get_ldapmessage_c…
CVE-2026-167709.835.7MITHALDUPDF::WebKitCWE-88PDF::WebKit versions through 1.2 for Perl allow argument injection into wkhtm…
CVE-2026-732376.135.6Apache Software FoundationApache AlluraCWE-80Apache Allura: XSS in markdown pipeline
CVE-2026-732386.135.6Apache Software FoundationApache AlluraCWE-80Apache Allura: XSS in code display
CVE-2025-156845.535.5n/aOpen5GSCWE-617Open5GS CER init.c diam_log_func assertion
CVE-2026-176428.835.3IBMiCWE-78IBM i is Affected By Remote Code Execution Vulnerabilities [, ]
CVE-2026-734079.035.0BudibasebudibaseCWE-22Budibase: Unauthenticated REST Datasource Credential Theft via Cross-Origin A…
CVE-2026-174178.834.6IBMiCWE-78IBM i is Affected By Remote Code Execution Vulnerabilities [, ]
CVE-2026-689687.534.4Apache Software FoundationApache AirflowCWE-436Apache Airflow: Authorization bypass in the Backfill API through conflicting …
CVE-2026-193118.634.3AWSOpenSearchCWE-475Missing Authorization in Execute Monitor API in OpenSearch Alerting Plugin
CVE-2025-417708.734.0Phoenix ContactAXC F 1152CWE-770Unauthenticated Denial of Service
CVE-2026-494678.833.9smp46pingvin-share-xCWE-303TOTP enrollment hijack: password gate skipped due to unawaited promise
CVE-2026-169077.633.6IBMiCWE-787IBM i is Affected By Multiple Vulnerabilities in the Debug Server
CVE-2026-190019.533.1MongoDBBI Connector ODBC DriverCWE-190MongoDB BI Connector ODBC driver may write outside an allocated buffer when h…
CVE-2026-196547.533.1Red HatRed Hat Enterprise Linux 10CWE-125Rsyslog: a configuration-dependent issue in rsyslog's optional imptcp input m…
CVE-2026-732938.832.9semaphoreuisemaphoreCWE-269Semaphore UI: Manager-to-owner privilege escalation via custom-role slug coll…
CVE-2026-170947.132.6IBMiCWE-22IBM i is Affected By Path Traversal Vulnerability in Navigator for i
CVE-2026-735008.732.5etcd-ioetcdCWE-770etcd: `tlsListener.acceptLoop` spawns unbounded handshake goroutines with no …
CVE-2026-195948.132.3SnowflakeSnowflake Python APIsCWE-22Path Traversal and HTTP Parameter Pollution in Snowflake Python API (snowflak…
CVE-2026-183669.831.8UnknownEvents ManagerCWE-269Events Manager < 7.4.1 - Unauthenticated Privilege Escalation to Administrator
CVE-2026-650176.531.6Apache Software FoundationApache AirflowCWE-200Apache Airflow: Config API: team-scoped Celery broker secret disclosed to a V…
CVE-2026-169317.531.4IBMiCWE-835IBM i is Affected By A Denial of Service Vulnerability []
CVE-2026-172717.531.4IBMiCWE-770IBM i is Affected By Multiple Vulnerabilities in the Debug Server
CVE-2026-672866.331.2joomshaper.comSP Page Builder extension for JoomlaCWE-22Joomla Extension - joomshaper.com - Unauthenticated arbitrary directory creat…
CVE-2026-186755.331.2Kong Inc.Kong MeshCWE-248Kong Mesh: control plane denial of service via a malformed dataplane token wi…
CVE-2026-170958.331.1IBMiCWE-915IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-632939.931.0CanonicalLXDCWE-59Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesys…
CVE-2026-733009.630.8BudibasebudibaseCWE-89Budibase: SQL Injection via `multipleStatements: true`
CVE-2026-725089.930.6Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-250Multicloud-operators-subscription: multicloud-operators-subscription: hub and…
CVE-2026-190048.830.7MongoDBBI Connector ODBC DriverCWE-122MongoDB BI Connector ODBC Driver Memory-Safety Issue When Handling Stored Pro…
CVE-2026-189528.630.5AWSOpensearchCWE-918Missing Input Validation in Threat Intel Feed Parser in OpenSearch Security A…
CVE-2026-672859.230.2joomshaper.comSP Page Builder extension for JoomlaCWE-22Joomla Extension - joomshaper.com - Unauthenticated arbitrary local PHP file …
CVE-2026-687605.330.1jfrogartifactoryCWE-287Potential remember-me authentication bypass in JFrog Artifactory
CVE-2026-734067.530.0BudibasebudibaseCWE-200Budibase: Unauthenticated user information disclosure via public tenant user …
CVE-2026-648267.130.0rConfigrConfigCWE-22rConfig < 8.2.13 Path Traversal File Read via FileDownloadController
CVE-2026-732689.929.7Red HatMulticluster Engine for KubernetesCWE-94Cluster-curator-controller: cluster-curator-controller: spec.install.override…
CVE-2026-711939.629.7OpenStackDesignateCWE-863In OpenStack Designate before 22.0.1, zone creation checks (_is_subzone, _is_…
CVE-2026-505619.429.7xerrorsYuxiCWE-287Yuxi has a JWT Authentication Bypass Leading to Cross-Instance Administrator …
CVE-2026-578589.329.7Cal.comCal.com Self-Hosted (Cal.diy)CWE-79Cal.com Cal.diy 6.2.0 Stored XSS via BookingPageTagManager Analytics Tracking ID
CVE-2026-120057.229.7IBMSecurity Verify AccessCWE-78Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-126187.229.7IBMSecurity Verify AccessCWE-74Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-181064.329.5IBMiCWE-22IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-684319.129.3LinuxLinux—ksmbd: validate minimum PDU size for transform requests
CVE-2026-734997.129.2etcd-ioetcdCWE-863etcd: Watch API authorization bypass via open-ended range requests
CVE-2025-156872.129.0n/aOpen5GSCWE-404Open5GS SMF Diameter Gx Credit-Control-Answer smf_gx_cca_cb denial of service
CVE-2025-593227.528.7n/an/aCWE-329CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to properly hand…
CVE-2026-714697.528.5Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-770Acm-search-v2-api-rhel9: search-v2-api: unbounded tokenreviews cache allows u…
CVE-2026-733746.128.6vulnerability-lookupvulnerability-lookupCWE-79Stored Cross-Site Scripting (XSS) via Unescaped CNA Reference Tags in vulnera…
CVE-2026-689696.528.4Apache Software FoundationApache AirflowCWE-532Apache Airflow: Bulk Variable and Connection endpoints record secret values i…
CVE-2026-166279.028.3GitLabGitLabCWE-79Improper Neutralization of Input During Web Page Generation ('Cross-site Scri…
CVE-2026-632989.928.2CanonicalLXDCWE-78LXD arbitrary lxc.conf directive injection via NVIDIA instance configuration
CVE-2026-691068.828.2jfrogartifactoryCWE-20Potential cache poisoning in JFrog Artifactory
CVE-2026-732639.927.8prowler-cloudprowlerCWE-78Prowler: RCE on Prowler App workers via kubeconfig auth-provider cmd-path
CVE-2026-168568.827.8IBMiCWE-78IBM i is Affected By Multiple Vulnerabilities in Domain Name System
CVE-2026-187499.827.7CERT/CCVINCECWE-639CVE-2026-18749
CVE-2026-131058.827.6IBMi Access Client SolutionsCWE-22IBM i Access Client Solutions (ACS) is Affected By Multiple Vulnerabilities
CVE-2026-447418.827.6pimcorepimcoreCWE-89Pimcore Admin Classic Bundle Vulnerable to SQL Injection in Translation Grid …
CVE-2026-120048.727.4IBMSecurity Verify AccessCWE-134Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-734126.327.4ericcornelissenshescapeCWE-78Shescape: Path disclosure on Unix with Zsh
CVE-2026-646399.327.2WebProsPleskCWE-266Incorrect database cloning process in Plesk from 18.0.52 before 18.0.79.6 and…
CVE-2026-195667.527.1RRWONet::CIDR::SetCWE-789Net::CIDR::Set versions before 0.23 for Perl allow memory exhaustion and malf…
CVE-2026-732857.527.1rustfsrustfsCWE-863RustFS: OPA policy plugin omits ExistingObjectTag conditions, allowing tag-ba…
CVE-2026-734937.527.1http4sblazeCWE-770http4s-blaze-server: Unbounded WebSocket message aggregation
CVE-2026-668989.927.0CanonicalLXDCWE-22Path traversal via unvalidated instance name in backup tarball restore enable…
CVE-2026-735019.126.9getkinkin-openapiCWE-287kin-openapi: ValidationHandler.Load() Fail-Open Authentication Bypass via Noo…
CVE-2026-158038.726.9Eclipse FoundationEclipse RDF4JCWE-611In Eclipse RDF4J, several XML parser entry points do not fully restrict XML E…
CVE-2026-732396.526.8Apache Software FoundationApache AlluraCWE-280Apache Allura: Missing permission checks IDOR
CVE-2026-168637.726.8IBMiCWE-125IBM i is Affected By Out-of-Bounds Read Vulnerability []
CVE-2026-680765.426.8Apache Software FoundationApache AirflowCWE-639Apache Airflow: Connections test API: team-scope guard bypass resolves anothe…
CVE-2026-687566.626.6jfrogartifactoryCWE-502Potential insecure deserialization in JFrog Artifactory
CVE-2026-196436.026.4AWSaws-sdk-cppCWE-125Out-of-bounds read in the Base64 decoder in Amazon aws-sdk-cpp on signed-char…
CVE-2026-734138.726.0ericcornelissenshescapeCWE-400Shescape: Quadratic-time denial of service in flag-protection
CVE-2026-734116.326.0ericcornelissenshescapeCWE-116Shescape: Home-directory disclosure in assignment context on Unix with Dash
CVE-2026-687527.226.0jfrogartifactoryCWE-269Project Resource Managers may escalate privileges in JFrog Artifactory
CVE-2026-164947.125.7GitLabGitLabCWE-862Missing Authorization in GitLab
CVE-2026-172486.525.6IBMiCWE-78IBM i is Affected By Multiple Vulnerabilities in the Debug Server
CVE-2026-734305.325.6EugenyrusshCWE-754Russh: Pre-auth remote panic via all-zero Curve25519 peer public value (encod…
CVE-2026-123598.125.4IBMSecurity Verify AccessCWE-287Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-725269.925.3Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-441Multicloud-integrations: multicloud-integrations: pull-model propagation allo…
CVE-2026-689716.525.1Apache Software FoundationApache AirflowCWE-862Apache Airflow: Cross-team authorization bypass in the asset materialization …
CVE-2026-734987.725.1soopersetmcp-atlassianCWE-22MCP Atlassian is a Model Context Protocol (MCP): Arbitrary file read via miss…
CVE-2026-727867.125.0craftcmscmsCWE-285Craft CMS 5.0.0-RC1 before 5.10.8 Authentication Bypass via Password Reset
CVE-2026-171094.324.9IBMiCWE-20IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-734272.124.9basecamptrixCWE-79Trix: XSS via JSON deserialization bypass in drag-and-drop (Level0InputContro…
CVE-2026-119327.524.7IBMSecurity Verify AccessCWE-835Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-733065.324.3BudibasebudibaseCWE-204Budibase: Account Enumeration via Login Lockout Response Differential
CVE-2026-732647.624.1prowler-cloudprowlerCWE-918Prowler: Server-Side Request Forgery (SSRF) in Lighthouse Provider
CVE-2026-182358.323.9IBMiCWE-78IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2024-2725310.023.8IBMDOORS NextCWE-287IBM Engineering Requirements Management DOORS Next is impacted by vulnerabili…
CVE-2026-149257.523.8UnknownImport WPCWE-200Import WP < 2.14.23 - Unauthenticated Sensitive Information Exposure via Expo…
CVE-2026-186776.023.5Kong Inc.Kong MeshCWE-290Kong Mesh: a dataplane token without a workload binding can claim any workloa…
CVE-2026-733074.923.5BudibasebudibaseCWE-918Budibase: SSRF via bare fetch() in uploadUrl during AI table generation
CVE-2026-186735.323.2Kong Inc.Kong MeshCWE-200Kong Mesh: the kuma-dp readiness service exposes the Envoy admin API without …
CVE-2026-734225.323.2withastroastroCWE-79Astro: Reflected XSS via unescaped View Transition animation properties
CVE-2026-188887.123.0MongoDBBI Connector ODBC DriverCWE-787MongoDB BI Connector ODBC driver may write outside an allocated buffer when r…
CVE-2026-704665.323.0FortinetFortiWebCWE-184A incomplete list of disallowed inputs vulnerability in Fortinet FortiWeb 8.0…
CVE-2026-624209.922.8CanonicalLXDCWE-863Cross-project cluster migration bypasses project restrictions via cluster not…
CVE-2026-728066.922.8siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Authentication Bypass via Attribute View
CVE-2026-122335.922.7zephyrprojectzephyrCWE-665Uninitialized mutex in TLS trusted-credential backend causes kernel NULL-dere…
CVE-2026-190028.822.6MongoDBBI Connector ODBC DriverCWE-120Crafted database metadata may cause memory corruption in MongoDB BI Connector…
CVE-2026-711946.822.6OpenStackDesignateCWE-669In OpenStack Designate before 22.0.2, the mDNS handler performs pool-blind lo…
CVE-2026-672876.322.5joomshaper.comSP Page Builder extension for JoomlaCWE-284Joomla Extension - joomshaper.com - Unauthenticated comment creation in SP Pa…
CVE-2026-420187.522.5jfrogartifactoryCWE-287Anonymous user token generation exposure in JFrog Artifactory
CVE-2026-732656.522.5rustfsrustfsCWE-862RustFS: Version-specific object reads authorize the non-version action
CVE-2025-156862.122.3n/aOpen5GSCWE-404Open5GS HSS Service fd_msg_sess_get denial of service
CVE-2026-196426.022.1AWSaws-sdk-cppCWE-787Out-of-bounds write in the Base64 decoder in Amazon aws-sdk-cpp
CVE-2026-187446.522.0CERT/CCVINCECWE-639CVE-2026-18744
CVE-2026-194268.821.7FitSoftPOS SystemCWE-306FitSoft|POS Sytstem - Missing Authentication
CVE-2026-174858.221.6IBMiCWE-125IBM i is Affected By Denial of Service Vulnerability []
CVE-2026-160338.521.4CanonicalLXDCWE-22Arbitrary file read+write on host via templates/ symlink in malicious image
CVE-2024-140442.121.4n/aOpen5GSCWE-119Open5GS Diameter Rx pcrf-rx-path.c pcrf_rx_aar_cb buffer overflow
CVE-2026-727899.221.2siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Authentication Bypass via Encrypted Notebooks
CVE-2026-733085.721.3BudibasebudibaseCWE-200Budibase: OAuth2 Token Disclosure via Automation Test Results Broadcast to Ot…
CVE-2026-727886.921.2siyuan-notesiyuanCWE-863SiYuan before v3.7.4 Information Disclosure via UILayout Filter
CVE-2026-633009.921.0CanonicalLXDCWE-862Cross-project instance move bypasses all project restrictions allowing host c…
CVE-2026-684338.621.0LinuxLinux—libceph: bound get_version reply decode to front len
CVE-2026-663815.321.0jfrogartifactoryCWE-22Repository readers may access content outside configured upstream paths
CVE-2026-734295.321.1EugenyrusshCWE-704Russh: client wrong-length X25519 `clone_from_slice` panic (pre-auth DoS)
CVE-2026-666599.320.8EssekiaTablesome TableCWE-89WordPress Tablesome Table plugin <= 1.2.9 - SQL Injection vulnerability
CVE-2026-734957.420.9http4sblazeCWE-444blaze: Chunked-body trailer fields promoted into Request.headers in blaze-ser…
CVE-2026-196569.920.5SCADA-LTSScadaLTSCWE-862ScadaLTS Authenticated Remote Code Execution
CVE-2026-136138.820.5UnknownKiviCareCWE-89KiviCare < 4.5.2 - Doctor/Receptionist+ SQL Injection via settings/listing RE…
CVE-2026-734055.320.4vulnerability-lookupvulnerability-lookupCWE-862Authorization Bypass in SSE Pub/Sub Allows Unconfirmed Accounts to Access Str…
CVE-2026-632999.920.2CanonicalLXDCWE-770Storage volume cross-project move and snapshot restore bypass project disk li…
CVE-2026-732848.820.3rustfsrustfsCWE-269RustFS: AddServiceAccount Handler Allows Creation of Root-Parent Service Acco…
CVE-2026-728086.920.3siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via getFileAnnotation
CVE-2026-170828.820.2IBMiCWE-269IBM i is Affected By Multiple Vulnerabilities in the Debug Server
CVE-2026-184748.620.1UnknownWP Directory KitCWE-89WP Directory Kit < 1.5.6 - Unauthenticated SQL Injection via search_location …
CVE-2026-691075.920.0jfrogartifactoryCWE-862Potential unauthorized artifact access in JFrog Artifactory
CVE-2026-68214.320.1GitLabGitLabCWE-862Missing Authorization in GitLab
CVE-2026-162537.519.9UnknownTotal UpkeepCWE-200Total Upkeep (BoldGrid Backup) < 1.17.3 - Unauthenticated Sensitive Data Disc…
CVE-2026-180497.519.9UnknownWP Photo Album PlusCWE-200WP Photo Album Plus < 9.2.07.002 - Unauthenticated Option Disclosure via gettogo
CVE-2026-734318.819.8vulnerability-lookupvulnerability-lookupCWE-294Reusable Account Activation and Recovery Tokens Allow Repeated Account Takeov…
CVE-2026-133618.819.7IBMInformix Dynamic ServerCWE-121IBM Informix Server Vulnerability in SQL Interface Handler Could Allow Remote…
CVE-2026-494738.819.5cedar-policyauthorization-for-expressjsCWE-436@cedar-policy/authorization-for-expressjs has an authorization bypass via que…
CVE-2026-105439.819.4IBMDb2CWE-285IBM® Db2® is vulnerable to privilege escalation with a specially crafted query
CVE-2026-184998.119.4IBMWebSphere Application Server - LibertyCWE-285IBM WebSphere Application Server Liberty is affected by a privilege escalation
CVE-2026-663758.119.3jfrogartifactoryCWE-862Low-privilege users may remove protected Artifactory metadata
CVE-2026-733267.219.2owen2345CamaleonCMSCWE-862CamaleonCMS Missing Authorization via Plugin Administration Endpoints
CVE-2026-186524.919.3Rapid7VelociraptorCWE-862Velociraptor STACK Type Download Path Bypasses Denied Prefix Check
CVE-2026-732917.119.2seerr-teamseerrCWE-22Seerr: Path traversal to RCE via /avatarproxy image cache filename from upstr…
CVE-2026-176169.818.8IBMSecurity Verify AccessCWE-310Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-477185.518.8frangoteamFUXACWE-287FUXA provides guest and invalid-token access to protected read APIs in secure…
CVE-2026-129766.518.7UnknownLearnPressCWE-200LearnPress < 4.4.4 - Subscriber+ Sensitive Information Exposure via AI Assistant
CVE-2026-131686.518.7UnknownEventinCWE-200Eventin < 4.1.20 - Contributor+ Customer PII Disclosure via REST API
CVE-2026-174206.318.5IBMiCWE-78IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-152168.718.0GitLabGitLabCWE-79Improper Neutralization of Input During Web Page Generation ('Cross-site Scri…
CVE-2026-485505.118.0Nagios Enterprises, LLC.Nagios CoreCWE-79Nagios Core / XI cmd.cgi Reflected XSS via NagFormId Parameter
CVE-2026-172769.917.8IBMiCWE-269IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-733317.117.8owen2345CamaleonCMSCWE-89CamaleonCMS 2.9.1 Authenticated SQL Injection via Post Slug Field
CVE-2026-663845.317.8jfrogartifactoryCWE-22Authenticated users may write data outside the intended Docker cache path
CVE-2026-187897.517.6UnknownEzoicCWE-862Ezoic < 2.23.1 - Unauthenticated Database Export via Content Export REST Routes
CVE-2026-152178.717.4GitLabGitLabCWE-79Improper Neutralization of Input During Web Page Generation ('Cross-site Scri…
CVE-2026-154238.517.2GitLabGitLabCWE-863Incorrect Authorization in GitLab
CVE-2026-732699.917.1Red HatMulticluster Engine for KubernetesCWE-269Cluster-curator-controller: cluster-curator-controller: tenant-controllable t…
CVE-2026-714738.517.1Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-915Acm-search-v2-rhel9: search-v2-operator: addonfactory.getvaluesfromaddonannot…
CVE-2026-733258.417.1Fujitsu ResearchOneCompressionCWE-502Fujitsu OneCompression 1.2.0 Arbitrary Code Execution via torch.load Deserial…
CVE-2026-687586.517.1jfrogartifactoryCWE-862Authenticated users may access restricted Artifactory support information
CVE-2026-727966.917.0siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Access Control Bypass via Static Routes
CVE-2026-727989.216.9siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via renderAttributeView
CVE-2026-728049.216.7siyuan-notesiyuanCWE-200SiYuan before v3.7.4 Authentication Bypass via Graph Endpoints
CVE-2026-663824.316.7jfrogartifactoryCWE-22Authenticated users may write files outside the intended Artifactory work dir…
CVE-2026-171119.816.2IBMiCWE-89IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-172224.316.2IBMiCWE-89IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-733014.316.2BudibasebudibaseCWE-862Budibase: Missing RBAC on GET /api/global/groups allows BASIC users to enumer…
CVE-2026-703989.616.0Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-441Multicloud-integrations: multicloud-integrations: gitopscluster.spec.argoserv…
CVE-2026-727949.216.0siyuan-notesiyuanCWE-522siyuan before v3.7.4 Session Cookie Key Disclosure via getConf
CVE-2026-463828.716.0meeting-room-booking-systemmrbs-codeCWE-918Meeting Room Booking System has server-side request forgery in import functio…
CVE-2026-466886.916.0meeting-room-booking-systemmrbs-codeCWE-601Meeting Room Booking System has an unauthenticated open redirect
CVE-2026-704673.816.0FortinetFortiSIEMCWE-918A server-side request forgery (ssrf) vulnerability in Fortinet FortiSIEM 7.5.…
CVE-2026-132678.115.8IBMSecurity Verify AccessCWE-302Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-672836.915.8tabaoca.orgCotton Cloud extension for JoomlaCWE-284Joomla Extension - tabaoca.org - Improper ACL implementation allows allow fil…
CVE-2026-632969.915.6CanonicalLXDCWE-863Project restriction bypass via instance migration config override
CVE-2026-732886.115.4rustfsrustfsCWE-693RustFS: Object Lock (WORM) protections are treated as absent when bucket meta…
CVE-2026-734912.315.4flavorjonesloofahCWE-184Loofah `allowed_uri?` does not detect `javascript:` URIs split by named white…
CVE-2026-734922.315.4flavorjonesloofahCWE-79Loofah `allowed_uri?` does not detect `javascript:` URIs split by numeric cha…
CVE-2026-663775.315.3jfrogartifactoryCWE-862Anonymous users may access restricted Artifactory repository information
CVE-2026-180487.515.2UnknownWP Photo Album PlusCWE-73WP Photo Album Plus < 9.2.07.002 - Unauthenticated Arbitrary ZIP File Deletio…
CVE-2026-119237.415.2IBMSecurity Verify AccessCWE-287Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-174196.515.3IBMiCWE-89IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-732905.315.2rustfsrustfsCWE-863RustFS: Anonymous ListObjectVersions bypasses RestrictPublicBuckets through t…
CVE-2026-48794.315.2GitLabGitLabCWE-862Missing Authorization in GitLab
CVE-2026-184334.315.2GitLabGitLabCWE-863Incorrect Authorization in GitLab
CVE-2026-659378.015.1Progress Software CorporationWhatsUp GoldCWE-79WhatsUp Gold versions prior to 26.0.2 contain multiple stored cross-site scri…
CVE-2026-734325.115.1vulnerability-lookupvulnerability-lookupCWE-918Stored Server-Side Request Forgery in Remote-Instance Synchronization Allows …
CVE-2026-727939.215.0siyuan-notesiyuanCWE-522SiYuan before v3.7.4 Information Disclosure via /api/system/getConf
CVE-2026-727959.215.0siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via Embed Block
CVE-2026-728018.715.0siyuan-notesiyuanCWE-522SiYuan before v3.7.4 Information Disclosure via Encryption Key Material
CVE-2026-86674.314.7GitLabGitLabCWE-863Incorrect Authorization in GitLab
CVE-2026-732868.114.6rustfsrustfsCWE-863RustF: Request headers can populate server-derived IAM condition keys, lettin…
CVE-2026-659396.814.6Progress Software CorporationWhatsUp GoldCWE-22WhatsUp Gold versions prior to 26.0.2 contain an arbitrary file write vulnera…
CVE-2026-687535.314.6jfrogartifactoryCWE-862Anonymous users may access restricted Artifactory content under specific conf…
CVE-2026-732928.314.4semaphoreuisemaphoreCWE-352Semaphore UI: CSRF vulnerability on password change endpoint - No CSRF token …
CVE-2026-164807.114.5IBMDb2CWE-602IBM® Db2® is affected by an improper authorization vulnerability in the certa…
CVE-2026-727906.914.4siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via getNotebookInfo
CVE-2026-727916.914.4siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via getAttributeViewFieldViews
CVE-2026-727926.914.4siyuan-notesiyuanCWE-863SiYuan before v3.7.4 Information Disclosure via Tag API
CVE-2026-727976.914.4siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via getEncryptedNotebookStatus
CVE-2026-727996.914.4siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via Path Resolution
CVE-2026-728006.914.4siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via Unfiltered API
CVE-2026-728026.914.4siyuan-notesiyuanCWE-639SiYuan before v3.7.4 Information Disclosure via resolveAssetPath
CVE-2026-728036.914.4siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via getBlockAttrs
CVE-2026-728056.914.4siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via Block Endpoints
CVE-2026-174456.514.5IBMiCWE-250IBM i is Affected By Improper Validation Vulnerability in Line Printer Daemon []
CVE-2026-187505.314.4CERT/CCVINCECWE-639CVE-2026-18750
CVE-2026-153884.314.3UnknownCookie ConsentCWE-863Cookie Consent < 0.0.10 - Subscriber+ Consent Settings Update and Consent Log…
CVE-2026-181444.314.4IBMiCWE-285IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-131718.214.2UnknownEventinCWE-284Eventin < 4.1.20 - Unauthenticated Account Creation via Waiting List Endpoint
CVE-2026-472276.514.3AdmidioadmidioCWE-639Admidio module-administrator can delete or reorder categories owned by other …
CVE-2026-165389.113.9UnknownWallet for WooCommerceCWE-284TeraWallet - Wallet for WooCommerce < 1.6.10 - Subscriber+ Wallet Balance Inf…
CVE-2026-649548.213.8Rapid7VelociraptorCWE-862Velociraptor collect_client() Permissions Bypass
CVE-2026-733038.213.8BudibasebudibaseCWE-639Budibase: Email Change IDOR via POST /api/v2/email allows full Account Takeov…
CVE-2026-732898.113.7rustfsrustfsCWE-863RustFS: ForAllValues/ForAnyValue negated string conditions are transposed, in…
CVE-2026-192288.513.6GitLabGitLabCWE-639Authorization Bypass Through User-Controlled Key in GitLab
CVE-2026-592446.513.6Apache Software FoundationApache AirflowCWE-312Apache Airflow: Secrets masker: `var.json` Variable values not masked in the …
CVE-2026-689706.513.6Apache Software FoundationApache AirflowCWE-312Apache Airflow: Values of a list-shaped Variable are not masked in task logs …
CVE-2026-186765.113.7Kong Inc.Kong MeshCWE-346Kong Mesh: default control plane config leaks the admin token cross-origin vi…
CVE-2026-733299.213.4owen2345CamaleonCMSCWE-79CamaleonCMS Stored XSS via Draft Post Title Creation Endpoint
CVE-2026-733329.213.4owen2345CamaleonCMSCWE-89CamaleonCMS cama_contact_form Plugin Stored XSS via before_html Field
CVE-2026-687597.213.4jfrogartifactoryCWE-347Integration credential holders may impersonate users in JFrog Access
CVE-2025-156855.313.4n/aOpen5GSCWE-119Open5GS freeDiameter memory corruption
CVE-2025-593257.513.2n/an/aCWE-311CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to encrypt the i…
CVE-2026-119373.113.1IBMSecurity Verify AccessCWE-416Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-105349.813.0IBMDb2CWE-121IBM® Db2® is vulnerable to buffer overflow in the IXF IMPORT parser
CVE-2025-94863.313.0GitLabGitLabCWE-266Incorrect Privilege Assignment in GitLab
CVE-2026-649556.112.8Rapid7VelociraptorCWE-1236Velociraptor CSV Formula Injection in Export Pipeline
CVE-2026-472336.512.4AdmidioadmidioCWE-862Admidio: Any logged-in user can delete inventory fields via `mode=field_delet…
CVE-2026-687546.512.4jfrogartifactoryCWE-862Publishers without delete permission can overwrite docker layer information
CVE-2026-493496.812.2regclientregclientCWE-522regclient may leak authentication credentials to external blob stores
CVE-2026-167476.512.2UnknownKirkiCWE-74Kirki < 6.2.1 - Unauthenticated Arbitrary Shortcode Execution via Form Email …
CVE-2026-189436.512.2UnknownWPC Admin ColumnsCWE-200WPC Admin Columns < 2.3.4 - Subscriber+ Arbitrary User/Post/Term Meta Disclosure
CVE-2026-169778.111.7UnknownForm Maker by 10WebCWE-89Form Maker by 10Web < 1.15.45 - Subscriber+ SQL Injection via display_name
CVE-2026-180578.111.7UnknownEvents ManagerCWE-89Events Manager < 7.4.1 - Subscriber+ Booking Consent Record Tampering via SQL…
CVE-2026-182308.111.7UnknownWP Directory KitCWE-89WP Directory Kit < 1.5.6 - Subscriber+ SQL Injection via section Parameter
CVE-2026-187266.511.7Red HatRed Hat Enterprise Linux 10CWE-835Open-iscsi: open-iscsi: denial of service in iscsiuio router advertisement pa…
CVE-2026-732625.411.7prowler-cloudprowlerCWE-79Prowler: Stored XSS in HTML reports through unescaped cloud resource tags
CVE-2026-632954.311.4CanonicalLXDCWE-863Project restriction `restricted.containers.privilege=isolated` bypassable by …
CVE-2026-472318.111.4AdmidioadmidioCWE-639Admidio has IDOR in `documents-files.php` `mode=move_save` that lets any fold…
CVE-2026-668787.711.3Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-639Multicloud-operators-subscription: multicloud-operators-subscription: fetchch…
CVE-2026-731227.711.3Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-269Multicloud-operators-channel: multicloud-operators-channel: auto-generated ro…
CVE-2026-659406.811.3Progress Software CorporationWhatsUp GoldCWE-276WhatsUp Gold versions prior to 26.0.2 excessive file system permissions allow…
CVE-2026-732875.411.3rustfsrustfsCWE-862RustFS: FTPS MKD bypasses IAM CreateBucket authorization
CVE-2026-167375.311.2UnknownWP Travel EngineCWE-639WP Travel Engine < 6.8.5 - Unauthenticated Booking Details Disclosure and Mod…
CVE-2026-180355.311.2UnknownUser Access ManagerCWE-862User Access Manager < 2.3.15 - Unauthenticated Restricted Content Disclosure …
CVE-2026-195036.311.0MongoDBAtlas SQL ODBC DriverCWE-20Insufficient OIDC endpoint validation could invoke unintended local protocol …
CVE-2026-172686.810.9IBMiCWE-294IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-653707.510.7AppleservicetalkCWE-444ServiceTalk HTTP/1.x incorrectly handles malformed Transfer-Encoding which co…
CVE-2026-672845.310.7tabaoca.orgCotton Cloud extension for JoomlaCWE-284Joomla Extension - tabaoca.org - Improper ACL checks allow file operations in…
CVE-2026-728097.110.6siyuan-notesiyuanCWE-290SiYuan before v3.7.4 Authentication Bypass via Localhost Trust
CVE-2026-190735.310.6UnknownOrder Sync with Zendesk for WooCommerceCWE-200Order Sync with Zendesk for WooCommerce < 2.2.3 - Unauthenticated Customer Or…
CVE-2026-181484.310.6IBMiCWE-117IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-182444.310.3GitLabGitLabCWE-862Missing Authorization in GitLab
CVE-2026-663784.310.3jfrogartifactoryCWE-862Authenticated users may access private NuGet metadata
CVE-2026-663794.310.3jfrogartifactoryCWE-862Authenticated users may view private Puppet module metadata
CVE-2026-663804.310.3jfrogartifactoryCWE-862Authenticated users may access private OCI referrer metadata
CVE-2026-705474.310.3jfrogartifactoryCWE-862Potential unauthorized metadata exposure in JFrog Artifactory
CVE-2026-472266.510.1AdmidioadmidioCWE-639Admidio: Authorization bypass in file_delete enables cross-folder file remova…
CVE-2026-195886.510.1Samsung Open SourcerlottieCWE-680Integer Overflow to Buffer Overflow vulnerability in Samsung Open Source rlot…
CVE-2026-728078.89.7siyuan-notesiyuanCWE-89SiYuan before v3.7.4 SQL Injection via queryBlocks template
CVE-2026-195876.59.7Samsung Open SourcerlottieCWE-400Uncontrolled Resource Consumption vulnerability in Samsung Open Source rlotti…
CVE-2026-187276.59.4Red HatRed Hat Enterprise Linux 10CWE-191Open-iscsi: open-iscsi: integer underflow in iscsiuio dhcpv6 parsing
CVE-2026-196576.19.5SCADA-LTSScadaLTSCWE-79ScadaLTS Unauthenticated Reflected XSS
CVE-2026-148584.39.4UnknownWP CrowdfundingCWE-639WP Crowdfunding < 2.2.1 - Subscriber+ Order Data Disclosure via IDOR
CVE-2026-632979.99.3CanonicalLXDCWE-367Cross-project instance copy bypasses target project restrictions via TOCTOU i…
CVE-2026-150456.59.2UnknownWallet System for WooCommerceCWE-472Wallet System for WooCommerce < 2.7.10 - Customer+ Checkout Price Manipulatio…
CVE-2026-180988.19.1IBMiCWE-346IBM i is Affected By XML injection flaw in Navigator for i
CVE-2026-687577.59.0jfrogartifactoryCWE-347Potential improper SAML signature verification in JFrog Artifactory
CVE-2026-169905.39.1UnknownPayment Button for PayPal—Payment Button for PayPal <= 1.2.3.44 - Unauthenticated Payment Price Manipul…
CVE-2026-734196.89.0nextauthjsnext-authCWE-345NextAuth.js: OAuth state, nonce, and PKCE check cookies are not bound to the …
CVE-2026-182464.39.0IBMiCWE-436IBM i is Affected By security restrictions bypass in Navigator for i
CVE-2026-687554.38.9jfrogartifactoryCWE-863Bundle writers may alter trusted release information in JFrog Artifactory
CVE-2026-734095.18.8BudibasebudibaseCWE-203Budibase: Server Filesystem Existence/Read Oracle via Builder-Controlled Mong…
CVE-2026-727875.18.6craftcmscmsCWE-79Craft CMS 5.0.0-RC1 before 5.10.8 Stored XSS via Draft Name
CVE-2026-659263.18.4jfrogartifactoryCWE-862Private Release Bundle versions may be disclosed under specific configurations
CVE-2026-732955.48.1squidfunkmkdocs-materialCWE-79Material for MkDocs: DOM XSS in search suggestions via query parameter
CVE-2026-131774.38.1UnknownEventinCWE-639Eventin < 4.1.20 - Contributor+ Order Information Disclosure via IDOR
CVE-2026-136124.38.1UnknownKiviCareCWE-639KiviCare < 4.5.2 - Patient+ Cross-Patient Bill, Invoice and Appointment Discl…
CVE-2026-148574.38.1UnknownWP CrowdfundingCWE-639WP Crowdfunding < 2.2.1 - Subscriber+ Campaign Update Modification via IDOR
CVE-2026-148594.38.1UnknownWP CrowdfundingCWE-284WP Crowdfunding < 2.2.1 - Subscriber+ Campaign Creation via Missing Authoriza…
CVE-2026-180464.38.0UnknownCookie ConsentCWE-863Cookie Consent < 0.0.10 - Subscriber+ MaxMind License Key Update
CVE-2026-180995.48.0IBMiCWE-79IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-734235.17.8withastroastroCWE-352Astro: composable `astro/hono` pipeline bypasses `security.checkOrigin` when …
CVE-2026-93184.87.7JazzbandtablibCWE-79tablib versions prior to 3.10.0 Stored XSS via HTML Export Dataset Title
CVE-2025-593204.67.7n/an/aCWE-922CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 stores TPM2.0 secrets …
CVE-2025-417715.37.6Phoenix ContactAXC F 1152CWE-89SQL injection
CVE-2026-734904.77.6flavorjonesloofahCWE-79Loofah: SVG `href` attribute bypasses local-reference restriction
CVE-2026-191305.87.5Red HatMulticluster Engine for KubernetesCWE-639Provider-credential-controller: provider-credential-controller: cross-namespa…
CVE-2026-68430await7.2LinuxLinux—drm/amdgpu/gfx8: drop unecessary BUG_ON()
CVE-2026-68434await7.3LinuxLinux—serial: 8250_mid: Fix NULL function pointer dereference on DNV/ICX-D/SNR plat…
CVE-2026-188479.87.1IBMiCWE-346IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-472306.56.9AdmidioadmidioCWE-639Admidio: IDOR in documents-files.php allows cross-folder file rename and desc…
CVE-2026-649526.56.9Rapid7VelociraptorCWE-863Velociraptor Hunt Deletion With Insufficient Permission Check
CVE-2026-485516.16.8Nagios Enterprises, LLC.Nagios CoreCWE-352Nagios Core / XI CSRF Protection Bypass via Double-Submit Cookie
CVE-2026-68444await6.8LinuxLinux—firmware: arm_ffa: Fix NULL dereference in ffa_partition_info_get()
CVE-2026-174187.86.5IBMiCWE-89IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-734253.76.6withastroastroCWE-185@astrojs/netlify generates an overly-broad Netlify Image CDN allowlist becaus…
CVE-2026-68443await6.3LinuxLinux—hwmon: (gigabyte_waterforce) Stop device IO before calling hid_hw_stop
CVE-2026-181505.36.2IBMiCWE-362IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-68429await6.3LinuxLinux—drm/dp_mst: Handle torn-down topology gracefully in drm_dp_mst_topology_queue…
CVE-2026-162947.16.0UnknownPowerPress Podcasting plugin by BlubrryCWE-918Blubrry PowerPress < 11.17.1 - Contributor+ Server-Side Request Forgery via P…
CVE-2026-166945.45.9IBMiCWE-79IBM i is Affected By Stored Cross-site Scripting for i
CVE-2026-485525.15.9Nagios Enterprises, LLC.Nagios CoreCWE-79Nagios Core / XI DOM-based XSS via jsonquery.js
CVE-2026-705604.85.9Ultimate FostersUltimate POS (Stock Management & Point of Sale)CWE-79Ultimate POS Stored XSS via First Name Field in Leave Notifications
CVE-2026-170136.15.7UnknownWP Photo Album PlusCWE-79WP Photo Album Plus < 9.2.07.002 - Reflected XSS via lbstart
CVE-2026-649513.55.7Rapid7VelociraptorCWE-369Velociraptor DoS triggered by Divide by Zero panic
CVE-2026-494666.55.6dartissdraft-listCWE-79Draft List - Contributor Stored Cross-Site Scripting via Draft Title in Custo…
CVE-2026-182505.05.6IBMiCWE-362IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-659384.35.5Progress Software CorporationWhatsUp GoldCWE-602WhatsUp Gold versions prior to 26.0.2 contain an improper authorization vulne…
CVE-2026-68449await5.5LinuxLinux—ata: sata_dwc_460ex: fix infinite loop in NCQ tag completion bit-scanning
CVE-2026-68450await5.5LinuxLinux—btrfs: free mapping node on duplicate reloc root insert
CVE-2026-663764.25.4jfrogartifactoryCWE-613Deleted users may temporarily retain access to JFrog Artifactory
CVE-2026-136228.85.2Red HatRed Hat Container Native Virtualization 4.12CWE-22Kubevirt: virt-handler-rhel9: kubevirt: virt-handler migration proxy follows …
CVE-2026-152495.45.1UnknownPatterns KitCWE-79Patterns Kit <= 1.0.3 - Contributor+ Stored XSS via YouTube Popup Link
CVE-2026-160665.45.1UnknownWelcart e-CommerceCWE-79Welcart e-Commerce < 2.11.34 - Author+ Stored XSS via Product Name
CVE-2026-68437await5.0LinuxLinux—drm/imagination: Fit paired fragment job in the correct CCCB
CVE-2026-68439await5.0LinuxLinux—wifi: mt76: mt7925: fix possible NULL-pointer deref in mt7925_mcu_bss_he_tlv()
CVE-2026-68435await4.9LinuxLinux—LoongArch: Fix address space mismatch in kexec command line lookup
CVE-2026-68448await4.9LinuxLinux—ovl: check access to copy_file_range source with src mounter creds
CVE-2026-189624.34.6UnknownWP Photo Album PlusCWE-639WP Photo Album Plus < 9.2.09.002 - Subscriber+ Cross-Album File Upload via Mi…
CVE-2026-190524.34.6UnknownProSolution WP ClientCWE-862ProSolution WP Client < 2.0.9 - Subscriber+ proSol_ajaxTablesync and proSol_a…
CVE-2025-593249.14.4n/an/aCWE-347CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to properly vali…
CVE-2026-166957.84.4IBMi Access Client SolutionsCWE-78IBM i Access Client Solutions (ACS) is Affected By Multiple Vulnerabilities
CVE-2025-593277.54.4n/an/aCWE-347In CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4, bootxsa.efi fails …
CVE-2026-68441await4.3LinuxLinux—net/sched: Handle TC_ACT_REDIRECT from qdisc filter chains
CVE-2026-130947.84.1IBMi Access Client SolutionsCWE-94IBM i Access Client Solutions (ACS) is Affected By Multiple Vulnerabilities
CVE-2026-68436await4.0LinuxLinux—drm/amd/display: use kvzalloc to allocate struct dc
CVE-2026-68438await4.0LinuxLinux—smp: Make CSD lock acquisition atomic for debug mode
CVE-2026-64848.23.9Insyde SoftwareInsydeH2OCWE-1277Lack of verified boot to certain FV may cause arbitrary code execution
CVE-2026-649276.43.8Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-639Multicloud-operators-channel: multicloud-operators-channel: cross-namespace s…
CVE-2026-190038.43.5MongoDBBI Connector ODBC DriverCWE-121MongoDB BI Connector ODBC driver may write outside an allocated buffer when t…
CVE-2026-190506.43.1UnknownProSolution WP ClientCWE-918ProSolution WP Client < 2.0.9 - Subscriber+ SSRF via proSol_url_validate
CVE-2026-734336.62.9GStreamergst-plugins-goodCWE-191Gstreamer1-plugins-good: gstreamer: unsigned integer underflow in avidemux fu…
CVE-2026-734346.12.9GStreamergst-plugins-goodCWE-125Gstreamer1-plugins-good: gstreamer: out-of-bounds read in avidemux vprp video…
CVE-2026-492623.02.9aimeospagibleCWE-367Aimeos Pagible CMS vulnerable to Server Side Request Forgery (SSRF) via DNS r…
CVE-2026-684328.82.8LinuxLinux—vxlan: require CAP_NET_ADMIN in the device netns for changelink
CVE-2026-472344.42.9AdmidioadmidioCWE-200Admidio writes session IDs and auto-login cookie values to application logs
CVE-2026-192175.42.8UnknownRoyal Addons for ElementorCWE-79Royal Elementor Addons < 1.7.1065 - Contributor+ Stored XSS via Icon Box Widget
CVE-2026-691058.12.7jfrogartifactoryCWE-345Potential package cache integrity issue in JFrog Artifactory
CVE-2026-169996.32.7Ministry of JusticeUYAP Document EditorCWE-611XXE in Ministry of Justice's UYAP Document Editor
CVE-2026-684457.82.5LinuxLinux—drm/vc4: Prevent shader BO mappings from becoming writable
CVE-2026-684407.82.3LinuxLinux—net: txgbe: fix heap overflow when reading module EEPROM
CVE-2026-467317.82.3DellDisplay and Peripheral Manager (DDPM Windows)CWE-290Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3.0.1…
CVE-2026-599147.82.3DellDisplay and Peripheral Manager (DDPM Windows)CWE-284Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3.0.1…
CVE-2026-195485.52.2Red HatRed Hat Enterprise Linux 10CWE-416Binutils: binutils: multiple use-after-free in add_archive_element via lto pl…
CVE-2026-684467.82.0LinuxLinux—drm/vmwgfx: Validate vmw_surface_metadata::array_size

Results continue: ranks 401–433.

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-08-12 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.

Machine-readable. This edition as JSON or CSV — the ranked results, transactions, and counts, for citation or ingestion. Frozen at publication; later changes appear as transactions on later editions.