| CVE-2026-69519 | 8.6 | 45.2 | Microsoft | Azure Stack HCI | CWE-204 | Azure Stack HCI Information Disclosure Vulnerability |
| CVE-2026-65770 | 10.0 | 44.9 | Microsoft | Azure Managed Instance for Apache Cassandra | CWE-88 | Azure Managed Instance for Apache Cassandra Remote Code Execution Vulnerability |
| CVE-2026-69400 | 9.6 | 44.7 | Microsoft | Azure Logic Apps | CWE-22 | Azure Logic Apps Elevation of Privilege Vulnerability |
| CVE-2026-18835 | 9.9 | 44.3 | IBM | AIX | CWE-78 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-17122 | 9.8 | 44.2 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-17141 | 9.8 | 44.2 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-17152 | 9.8 | 44.2 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-17157 | 9.8 | 44.2 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-69558 | 8.6 | 43.6 | Microsoft | Microsoft Partner Center | CWE-639 | Microsoft Partner Center Information Disclosure Vulnerability |
| CVE-2026-66800 | 7.5 | 43.6 | Microsoft | Azure Data Factory | CWE-918 | Azure Data Factory Information Disclosure Vulnerability |
| CVE-2026-75484 | 6.9 | 43.5 | mtrudel | bandit | CWE-93 | HTTP/2 header field values containing CR, LF or NUL are passed to the applica… |
| CVE-2026-18284 | 7.8 | 43.4 | Sony | XAV-9500ES | CWE-78 | Sony XAV-9500ES Crash Dump Handler Command Injection Local Privilege Escalati… |
| CVE-2026-17160 | 9.8 | 43.3 | IBM | AIX | CWE-190 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-55769 | 9.4 | 43.2 | cloudnative-pg | cloudnative-pg | CWE-426 | CloudNativePG: Overriding operators can lead to privilege escalation in Cloud… |
| CVE-2026-68782 | 9.9 | 43.0 | Microsoft | Azure SQL Database | CWE-89 | Azure SQL Database Elevation of Privilege Vulnerability |
| CVE-2026-70105 | 6.5 | 43.0 | Microsoft | Microsoft 365 Apps for Enterprise | CWE-20 | Microsoft Word Information Disclosure Vulnerability |
| CVE-2026-64966 | 8.7 | 42.8 | ATutor | ATutor | CWE-22 | Path Traversal leading to Remote Code Execution in ATutor |
| CVE-2026-65816 | 10.0 | 42.7 | Microsoft | Azure Web Apps | CWE-706 | Azure Arc Elevation of Privilege Vulnerability |
| CVE-2026-68789 | 9.9 | 42.4 | Microsoft | Azure SQL Database | CWE-89 | Azure SQL Database Elevation of Privilege Vulnerability |
| CVE-2026-75140 | 8.7 | 42.1 | jhy | soup | CWE-770 | jsoup Uncontrolled Resource Consumption in XmlTreeBuilder |
| CVE-2026-2334 | 9.4 | 42.1 | vsDesk | vsDesk | CWE-434 | ) Missing Server-Side File Extension Validation in vsDesk |
| CVE-2026-65801 | 10.0 | 41.9 | Microsoft | Microsoft Exchange Online | CWE-918 | Microsoft Exchange Online Elevation of Privilege Vulnerability |
| CVE-2026-14946 | 8.6 | 41.9 | Frauscher Sensortechnik | FDS 102 | CWE-434 | Frauscher Sensortechnik: FDS102 for FAdC/FAdCi R2 is vulnerable to Remote Cod… |
| CVE-2026-15049 | 7.2 | 41.9 | Unknown | Depicter — Popup & Slider Builder | CWE-434 | Depicter < 4.8.0 - Editor+ Arbitrary File Upload via ZIP Import |
| CVE-2026-75963 | 7.5 | 41.7 | liedekef | Events Made Easy | CWE-98 | Events Made Easy <= 3.2.5 - Authenticated (Contributor+) Local File Inclusion… |
| CVE-2026-63379 | 6.3 | 41.7 | libevent | libevent | CWE-444 | Libevent: HTTP Header smuggling |
| CVE-2026-76022 | 8.8 | 41.3 | Google | Chrome | CWE-122 | Buffer overflow in Network in Google Chrome prior to 151.0.7922.173 allowed a… |
| CVE-2026-17145 | 9.8 | 40.8 | IBM | AIX | CWE-269 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-72818 | 8.7 | 40.8 | nltk | nltk | CWE-1333 | NLTK TweetTokenizer URL Pattern Backtracks Catastrophically on Naked-Domain-L… |
| CVE-2026-55015 | 5.5 | 40.7 | Microsoft | Windows Remote Help | CWE-427 | Microsoft Remote Help Denial of Service Vulnerability |
| CVE-2026-76023 | 8.8 | 40.4 | Google | Chrome | CWE-913 | Improper resource control in Linux Toolkit Theming in Google Chrome prior to … |
| CVE-2026-14952 | 8.7 | 40.3 | Frauscher Sensortechnik | FDS 102 | CWE-306 | Frauscher Sensortechnik: FDS102 for FAdC/FAdCi R2 is offering files with sens… |
| CVE-2026-74836 | 8.7 | 40.1 | mtrudel | bandit | CWE-770 | HTTP/2 connection-window starvation pins Plug processes indefinitely in Bandit |
| CVE-2026-76021 | 8.8 | 39.9 | Google | Chrome | CWE-416 | Use after free in DOM in Google Chrome prior to 151.0.7922.173 allowed a remo… |
| CVE-2026-77068 | 8.7 | 39.5 | n8n-io | n8n | CWE-22 | n8n before 2.34.1 Remote Code Execution via Path Traversal |
| CVE-2026-66309 | 9.1 | 39.4 | Microsoft | Azure SQL Database | CWE-284 | Azure SQL Database Elevation of Privilege Vulnerability |
| CVE-2026-69855 | 7.7 | 39.0 | Microsoft | Microsoft Copilot in Azure | CWE-918 | Microsoft Copilot in Azure Information Disclosure Vulnerability |
| CVE-2026-72848 | 7.7 | 39.0 | langchain-ai | langchain-community | CWE-918 | langchain-community SitemapLoader Does Not Apply restrict_to_same_domain to N… |
| CVE-2026-77645 | 9.2 | 38.7 | PTC | Windchill PDMLink | CWE-20 | Critical Remote Code Execution (RCE) vulnerability reported in Windchill |
| CVE-2026-77148 | 8.6 | 38.7 | Comfast | CF-N1-S | CWE-119 | Comfast CF-N1-S Web Management mbox-config sub_44B50C stack-based overflow |
| CVE-2026-63490 | 7.5 | 38.5 | jknack | handlebars.java | CWE-22 | Handlebars.java: Arbitrary file read in `SpringTemplateLoader` via URL-fragme… |
| CVE-2026-76017 | 8.8 | 38.4 | Google | Chrome | CWE-416 | Use after free in Chromoting in Google Chrome prior to 151.0.7922.173 allowed… |
| CVE-2026-18268 | 7.0 | 38.4 | Kenwood | DNR1007XR | CWE-78 | Kenwood DNR1007XR JKGenService Command Injection Local Privilege Escalation V… |
| CVE-2026-66002 | 6.9 | 38.4 | frappe | frappe | CWE-204 | Frappe: User Enumeration via PDDR |
| CVE-2026-40345 | 8.2 | 38.4 | RebeccaStevens | deepmerge-ts | CWE-674 | deepmerge-ts: Stack exhaustion when merging recursive object graphs |
| CVE-2026-63481 | 6.9 | 38.3 | Orange-OpenSource | hurl | CWE-201 | Hurl: Cookies in Cookies section leak when redirecting to a different host |
| CVE-2026-77022 | 8.6 | 38.1 | Comfast | CF-N1-S | CWE-121 | Comfast CF-N1-S SSID Configuration mbox-config sub_44B438 stack-based overflow |
| CVE-2026-75514 | 5.9 | 38.0 | bunkerity | bunkerweb | CWE-350 | BunkerWeb: rDNS bypass via missing forward-confirmation (FCrDNS) in blacklist… |
| CVE-2026-17040 | 9.8 | 37.6 | IBM | AIX | CWE-120 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-17138 | 8.1 | 37.6 | IBM | AIX | CWE-121 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-19437 | 8.1 | 37.6 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-69555 | 10.0 | 37.3 | Microsoft | Azure ARC | CWE-863 | Azure Arc Elevation of Privilege Vulnerability |
| CVE-2026-74014 | 9.9 | 37.0 | indithemes | IT Residence | CWE-434 | WordPress IT Residence theme <= 3.2.1 - Arbitrary File Upload vulnerability |
| CVE-2026-74016 | 9.9 | 37.0 | themagnifico52 | Smart Cleaning | CWE-434 | WordPress Smart Cleaning theme <= 4.8.6 - Arbitrary File Upload vulnerability |
| CVE-2026-74018 | 9.9 | 37.0 | themagnifico52 | Warehouse Cargo | CWE-434 | WordPress Warehouse Cargo theme <= 2.6.9 - Arbitrary File Upload vulnerability |
| CVE-2026-17118 | 9.8 | 36.7 | IBM | AIX | CWE-416 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-69851 | 9.9 | 36.1 | Microsoft | Microsoft Entra | CWE-918 | Microsoft Entra ID Elevation of Privilege Vulnerability |
| CVE-2026-18279 | 8.8 | 35.4 | Sony | XAV-9500ES | CWE-120 | Sony XAV-9500ES RTSP SETUP Buffer Overflow Remote Code Execution Vulnerability |
| CVE-2026-18824 | 8.4 | 35.3 | IBM | AIX | CWE-78 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-63495 | 7.5 | 35.3 | libevent | libevent | CWE-400 | Libevent: Unbounded memory accumulation in WebSocket server via fragmented fr… |
| CVE-2026-54505 | 2.0 | 35.3 | mauriceboe | TREK | CWE-79 | TREK: Stored cross-user HTML injection via trip title in the Journey suggesti… |
| CVE-2026-71485 | 9.1 | 35.0 | centrifugal | centrifugo | CWE-290 | Centrifugo: Client-forgeable headers emulation lets any client spoof headers … |
| CVE-2026-18307 | 7.8 | 35.0 | GIMP | GIMP | CWE-122 | GIMP TIF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulner… |
| CVE-2026-76018 | 8.8 | 34.9 | Google | Chrome | CWE-250 | Privilege elevation in Import in Google Chrome prior to 151.0.7922.173 allowe… |
| CVE-2026-17168 | 8.5 | 34.6 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-76988 | 5.5 | 34.6 | liftoff-sr | CIPster | CWE-119 | liftoff-sr CIPster ForwardOpen cipconnectionmanager.cc forward_open out-of-bo… |
| CVE-2026-76989 | 5.5 | 34.6 | liftoff-sr | CIPster | CWE-119 | liftoff-sr CIPster TCP Encapsulation Receive Path encap.cc out-of-bounds |
| CVE-2026-76019 | 8.1 | 34.1 | Google | Chrome | CWE-863 | Incorrect authorization in Workers in Google Chrome prior to 151.0.7922.173 a… |
| CVE-2026-77176 | 8.1 | 33.9 | Red Hat | Red Hat OpenShift Container Platform 4 | CWE-73 | Kata-containers: insufficient validation of createcontainer mount and storage… |
| CVE-2026-54449 | 8.8 | 33.8 | langbot-app | LangBot | CWE-77 | LangBot: Authenticated RCE Via MCP Configuration |
| CVE-2026-74001 | 9.8 | 33.3 | WPEverest | User Registration & Membership Pro | CWE-288 | WordPress User Registration & Membership Pro plugin <= 5.4.5 - Account Takeov… |
| CVE-2026-63385 | 9.2 | 33.2 | libevent | libevent | CWE-444 | Libevent: HTTP header handling bugs create risk of access control bypass. |
| CVE-2026-17000 | 8.1 | 33.2 | IBM | AIX | CWE-287 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-61704 | 7.5 | 33.2 | OP-Engineering | link-preview-js | CWE-918 | link-preview-js DNS Rebinding SSRF Bypass / Incomplete Fix for CVE-2026-43897 |
| CVE-2026-14948 | 8.7 | 32.8 | Frauscher Sensortechnik | FDS 102 | CWE-532 | Frauscher Sensortechnik: FDS102 for FAdC/FAdCi R2 is vulnerable to Insertion … |
| CVE-2026-73256 | 9.1 | 32.6 | cesanta | mongoose | CWE-444 | Mongoose: HTTP/1.0 detection off-by-one enables request smuggling via chunked TE |
| CVE-2026-76799 | 5.5 | 32.5 | code-projects | Login Registration System | CWE-425 | code-projects Login Registration System SQL Database Backup login_registratio… |
| CVE-2026-64960 | 8.7 | 32.3 | ATutor | ATutor | CWE-434 | Remote Code Execution via Unrestricted File Upload in ATutor |
| CVE-2026-17425 | 7.5 | 32.1 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-64963 | 2.3 | 32.1 | ATutor | ATutor | CWE-22 | Path Traversal in ATutor |
| CVE-2026-53587 | 7.5 | 32.0 | libgit2 | libgit2 | CWE-20 | libgit2 - Unauthenticated network-reachable heap out-of-bounds read in transp… |
| CVE-2026-18302 | 7.8 | 31.7 | GIMP | GIMP | CWE-122 | GIMP TIF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulner… |
| CVE-2026-18303 | 7.8 | 31.7 | GIMP | GIMP | CWE-121 | GIMP TIF File Parsing Stack-based Buffer Overflow Remote Code Execution Vulne… |
| CVE-2026-17121 | 7.5 | 31.5 | IBM | AIX | CWE-400 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-17159 | 7.5 | 31.5 | IBM | AIX | CWE-190 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-17163 | 7.5 | 31.5 | IBM | AIX | CWE-770 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-17165 | 7.5 | 31.5 | IBM | AIX | CWE-476 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-17170 | 7.5 | 31.5 | IBM | AIX | CWE-770 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-66583 | 9.8 | 31.4 | WPMU DEV | Forminator | CWE-502 | WordPress Forminator plugin <= 1.57.0 - PHP Object Injection vulnerability |
| CVE-2026-66672 | 9.8 | 31.4 | Monkeysan | Flatastic | CWE-502 | WordPress Flatastic theme <= 2.0 - PHP Object Injection vulnerability |
| CVE-2026-73993 | 9.8 | 31.4 | Roxnor | FundEngine | CWE-502 | WordPress FundEngine plugin <= 1.7.9 - PHP Object Injection vulnerability |
| CVE-2026-16520 | 8.7 | 31.4 | Genians | Genian NAC V4.0 | CWE-20 | Improper input validation and Exposure of sensitive information through data … |
| CVE-2026-63383 | 8.7 | 31.2 | libevent | libevent | CWE-125 | Libevent: decode_tag_internal() can lead to out-of-bounds read |
| CVE-2026-63384 | 8.7 | 31.2 | libevent | libevent | CWE-190 | Libevent: `evtag_unmarshal_header()` decodes a wire `uint32` length into a si… |
| CVE-2026-16972 | 7.5 | 31.0 | IBM | AIX | CWE-287 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-69419 | 8.5 | 30.5 | Microsoft | Azure Data Manager for Energy | CWE-190 | Azure Data Manager for Energy Remote Code Execution Vulnerability |
| CVE-2026-73257 | 9.1 | 30.3 | cesanta | mongoose | CWE-444 | Mongoose: Content-Length + Transfer-Encoding coexistence enables request smug… |
| CVE-2026-55642 | 9.8 | 29.9 | t8y2 | dbx | CWE-306 | dbx: Unauthenticated arbitrary SQL execution in dbx-web (authentication fails… |
| CVE-2026-66677 | 7.6 | 30.0 | VaultDweller | Leyka | CWE-288 | WordPress Leyka plugin <= 3.32.3 - Broken Authentication vulnerability |
| CVE-2026-67447 | 5.3 | 29.9 | axllent | mailpit | CWE-770 | Mailpit: SMTP DATA line reader buffers over-limit input before size enforcement |
| CVE-2026-67445 | 5.3 | 29.8 | axllent | mailpit | CWE-400 | Mailpit: SMTP command parser buffers unbounded command lines before syntax re… |
| CVE-2026-67446 | 5.3 | 29.8 | axllent | mailpit | CWE-400 | Mailpit: Thumbnail generation decodes unbounded image dimensions before scaling |
| CVE-2026-75910 | 7.1 | 29.7 | AWS | Athena Federated Query Clickhouse Connector deployment template | CWE-266 | Incorrect privilege assignment in the Amazon aws-athena-query-federation Clic… |
| CVE-2026-49244 | 5.9 | 29.7 | drakkan | sftpgo | CWE-22 | SFTPGo: Path confinement bypass in public browsable share partial ZIP download |
| CVE-2026-64961 | 6.3 | 29.5 | ATutor | ATutor | CWE-639 | Authentication Bypass in ATutor |
| CVE-2026-17120 | 5.3 | 28.9 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-18285 | 7.8 | 28.9 | aeon | aeon | CWE-502 | Aeon load_rehab_pile_dataset Deserialization of Untrusted Data Remote Code Ex… |
| CVE-2026-64967 | 6.9 | 28.7 | ATutor | ATutor | CWE-22 | Path Traversal in ATutor |
| CVE-2026-64971 | 4.8 | 28.7 | ATutor | ATutor | CWE-79 | Reflected XSS in ATutor |
| CVE-2026-18304 | 7.8 | 28.6 | GIMP | GIMP | CWE-190 | GIMP TIF File Parsing Integer Overflow Remote Code Execution Vulnerability |
| CVE-2026-18305 | 7.8 | 28.6 | GIMP | GIMP | CWE-190 | GIMP TIF File Parsing Integer Overflow Remote Code Execution Vulnerability |
| CVE-2026-18670 | 8.2 | 28.5 | IBM | AIX | CWE-190 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-77077 | 7.2 | 28.5 | n8n-io | n8n | CWE-94 | n8n before 1.123.69 Remote Code Execution via EventEmitter Prototype Pollution |
| CVE-2026-15706 | 9.8 | 27.9 | Baylan Measuring Instruments Industry and Trade Inc. | Baylan Smart Meter Management Application (BMS) | CWE-306 | Missing Authentication for Critical Function in Management API in Baylan Wate… |
| CVE-2026-76635 | 8.6 | 27.9 | baserproject | basercms | CWE-89 | baserCMS < 5.3.0 SQL Injection and Code Injection via BcDatabaseService.php |
| CVE-2026-76795 | 5.5 | 27.8 | AeternaLabsHQ | PullMD | CWE-918 | AeternaLabsHQ PullMD REST API Endpoint api server-side request forgery |
| CVE-2025-15637 | 8.1 | 27.4 | Edge Themes | Shuffle | CWE-98 | WordPress Shuffle theme <= 1.8 - Local File Inclusion vulnerability |
| CVE-2026-28150 | 8.1 | 27.4 | uxper | Golo Framework | CWE-98 | WordPress Golo Framework plugin < 1.7.5 - Local File Inclusion vulnerability |
| CVE-2026-77646 | 7.7 | 27.4 | PTC | Windchill PDMLink | CWE-502 | Server Side Request Forgery (SSRF) vulnerability reported in Windchill |
| CVE-2026-73197 | 7.5 | 27.3 | Red Hat | Red Hat Enterprise Linux 10 | CWE-770 | Ipa: freeipa: unauthenticated dos in `/ipa/migration/migration.py` via unboun… |
| CVE-2026-73198 | 7.5 | 27.3 | Red Hat | Red Hat Enterprise Linux 10 | CWE-770 | Ipa: freeipa: unauthenticated dos in `/ipa/i18n_messages` via unbounded reque… |
| CVE-2026-76020 | 7.5 | 27.2 | Google | Chrome | CWE-367 | Race condition in V8 in Google Chrome prior to 151.0.7922.173 allowed a remot… |
| CVE-2026-54136 | 5.1 | 27.2 | windmill-labs | windmill | CWE-863 | Windmill: Resource-scoped API tokens can read script contents outside their a… |
| CVE-2026-19611 | 7.4 | 27.0 | Red Hat | Red Hat build of Apache Camel 4 for Quarkus 3 | CWE-173 | Wildfly-elytron: org.wildfly.security/wildfly-elytron-password-impl: wildfly-… |
| CVE-2026-54623 | 7.1 | 27.1 | django-cms | django-cms | CWE-674 | django CMS: Plugin move endpoint allows cyclic reparenting (DoS) |
| CVE-2026-63387 | 7.0 | 27.0 | libevent | libevent | CWE-121 | Libevent: Off-by-one stack buffer overflow in dnsname_to_labels via crafted D… |
| CVE-2026-13097 | 9.1 | 26.9 | Red Hat | Red Hat Enterprise Linux 10 | CWE-706 | Ipa: privilege escalation via krbcanonicalname manipulation due to realm-unaw… |
| CVE-2026-53424 | 9.1 | 26.9 | dropbox | samly | CWE-294 | Missing one-time-use enforcement in Samly allows replay of SAML bearer assert… |
| CVE-2026-66600 | 9.1 | 26.8 | David Lingren | Media LIbrary Assistant | CWE-434 | WordPress Media LIbrary Assistant plugin <= 3.39 - Arbitrary File Upload vuln… |
| CVE-2026-66594 | 8.5 | 26.7 | lukeseager | WordPress Persistent Login | CWE-89 | WordPress WordPress Persistent Login plugin <= 3.1.0 - SQL Injection vulnerab… |
| CVE-2026-73998 | 8.5 | 26.7 | axew3 | WP w3all phpBB | CWE-89 | WordPress WP w3all phpBB plugin <= 3.0.5 - SQL Injection vulnerability |
| CVE-2026-74013 | 8.5 | 26.7 | WordPress.com | eShipper Commerce | CWE-89 | WordPress eShipper Commerce plugin <= 2.16.13 - SQL Injection vulnerability |
| CVE-2026-75860 | 9.8 | 26.7 | Unknown | JSON Options | CWE-269 | JSON Options <= 0.0.4 - Unauthenticated Arbitrary Options Update |
| CVE-2026-53569 | 5.3 | 26.6 | frappe | frappe | CWE-862 | Frappe: Missing authorization in toggle_like and mark_as_seen |
| CVE-2026-18301 | 7.8 | 26.3 | GIMP | GIMP | CWE-190 | GIMP PSD File Parsing Integer Overflow Remote Code Execution Vulnerability |
| CVE-2026-18306 | 7.8 | 26.3 | GIMP | GIMP | CWE-190 | GIMP SGI File Parsing Integer Overflow Remote Code Execution Vulnerability |
| CVE-2026-18308 | 7.8 | 26.3 | GIMP | GIMP | CWE-190 | GIMP TIF File Parsing Integer Overflow Remote Code Execution Vulnerability |
| CVE-2026-18309 | 7.8 | 26.3 | GIMP | GIMP | CWE-190 | GIMP APNG File Parsing Integer Overflow Remote Code Execution Vulnerability |
| CVE-2026-54770 | 6.1 | 26.4 | Pylons | webob | CWE-601 | WebOb: Open redirect in Location header normalization via leading C0 control … |
| CVE-2026-64970 | 5.1 | 26.0 | ATutor | ATutor | CWE-79 | Stored XSS in ATutor |
| CVE-2026-76641 | 8.7 | 25.9 | libexpat | libexpat | CWE-125 | Expat Out-of-Bounds Read via dtdCopy |
| CVE-2026-46682 | 8.5 | 25.7 | bigbluebutton | bigbluebutton | CWE-89 | BigBlueButton: Blind SQL Injection AUTH (Moderator) |
| CVE-2026-66586 | 6.6 | 25.7 | Themewinter | WP Cafe Pro | CWE-98 | WordPress WP Cafe Pro plugin < 3.0.15 - Local File Inclusion vulnerability |
| CVE-2026-18300 | 7.8 | 25.5 | GIMP | GIMP | CWE-190 | GIMP HDR File Parsing Integer Overflow Remote Code Execution Vulnerability |
| CVE-2025-15689 | 9.8 | 25.4 | ThemeGoods | Capella | CWE-266 | WordPress Capella theme <= 2.5.5 - Privilege Escalation vulnerability |
| CVE-2026-66682 | 9.8 | 25.4 | Tyche Softwares. | Abandoned Cart Pro for WooCommerce | CWE-266 | WordPress Abandoned Cart Pro for WooCommerce plugin <= 10.4.0 - Privilege Esc… |
| CVE-2026-69543 | 8.5 | 25.2 | Microsoft | Azure Virtual Machines | CWE-918 | Azure Virtual Machines Elevation of Privilege Vulnerability |
| CVE-2026-53585 | 5.3 | 25.2 | libgit2 | libgit2 | CWE-770 | libgit2: Unbounded Memory Allocation via Delta Object Result-Size Header |
| CVE-2026-76764 | 5.5 | 25.2 | code-projects | Employee Management System | CWE-74 | code-projects Employee Management System Admin Login Endpoint aprocess.php sq… |
| CVE-2026-53584 | 4.3 | 25.1 | libgit2 | libgit2 | CWE-22 | libgit2: Submodule path traversal |
| CVE-2026-17003 | 7.7 | 24.6 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-71492 | 6.0 | 24.6 | masci | banks | CWE-22 | Banks: Path traversal in `DirectoryPromptRegistry.set()` allows arbitrary fil… |
| CVE-2026-67567 | 9.9 | 24.4 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-441 | Multicloud-operators-subscription: multicloud-operators-subscription: helmrel… |
| CVE-2026-76564 | 8.6 | 24.3 | phoca.cz | Phoca Cart extension for Joomla | CWE-79 | Joomla Extension - phoca.cz - Stored XSS via User-Agent header in Admin Order… |
| CVE-2026-76565 | 5.3 | 24.3 | phoca.cz | Phoca Cart extension for Joomla | CWE-79 | Joomla Extension - phoca.cz - Reflected XSS via price_from & price_to filter … |
| CVE-2026-16928 | 7.5 | 24.1 | IBM | AIX | CWE-122 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-54616 | 7.1 | 24.1 | M2Team | NanaZip | CWE-125 | NanaZip: Heap out-of-bounds read in NanaZip SquashFS LZ4 decompressor via unc… |
| CVE-2026-16926 | 9.1 | 23.5 | IBM | AIX | CWE-73 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-77084 | 7.7 | 23.6 | n8n-io | n8n | CWE-78 | n8n before 1.123.69 Remote Code Execution via Git Node Configuration Values |
| CVE-2026-16924 | 7.5 | 23.5 | IBM | AIX | CWE-191 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-77644 | 9.3 | 23.5 | PTC | Windchill Risk and Reliability Enterprise Edition (Formerly Relex) | CWE-306 | Critical Bypass Access Control Vulnerability Reported for Windchill Risk and … |
| CVE-2026-54508 | 5.3 | 23.5 | mauriceboe | TREK | CWE-918 | TREK: Blind SSRF via unvalidated redirect-following in Google/Naver list impo… |
| CVE-2026-18271 | 6.8 | 23.0 | Kenwood | DNR1007XR | CWE-122 | Kenwood DNR1007XR vCardParser Heap-based Buffer Overflow Code Execution Vulne… |
| CVE-2026-76987 | 5.5 | 22.8 | liftoff-sr | CIPster | CWE-119 | liftoff-sr CIPster Generic Attribute Logic ciptypes.h SetAttrData memory corr… |
| CVE-2026-54509 | 6.5 | 22.5 | mauriceboe | TREK | CWE-862 | TREK IDOR: any authenticated user can read another user's journey share token… |
| CVE-2026-61625 | 6.8 | 22.3 | VictoriaMetrics | VictoriaMetrics | CWE-22 | VictoriaMetrics vmrestore: path traversal via crafted backup part names escap… |
| CVE-2026-65842 | 8.2 | 22.1 | udecode | plate | CWE-918 | Plate: SSRF with response disclosure in DOCX image embedding |
| CVE-2026-18281 | 8.0 | 21.9 | Sony | XAV-9500ES | CWE-122 | Sony XAV-9500ES l2_reassemble_sdu Heap-based Buffer Overflow Remote Code Exec… |
| CVE-2026-18282 | 8.0 | 21.9 | Sony | XAV-9500ES | CWE-122 | Sony XAV-9500ES AVRCP_Br_Response_Parser Heap-based Buffer Overflow Remote Co… |
| CVE-2026-77075 | 8.4 | 21.7 | n8n-io | n8n | CWE-94 | n8n before 1.123.69 Expression Injection via Resource Locator |
| CVE-2026-73199 | 6.5 | 21.7 | Red Hat | Red Hat Enterprise Linux 10 | CWE-476 | Ipa: freeipa: null pointer dereference in `ipa-enrollment` extended operation… |
| CVE-2026-77151 | 6.3 | 21.6 | lin-snow | Ech0 | CWE-327 | lin-snow Ech0 crypto.go MD5Encrypt risky encryption |
| CVE-2026-77073 | 5.3 | 21.6 | n8n-io | n8n | CWE-639 | n8n before 2.34.1 Cross-Project Credential Access via MCP |
| CVE-2026-77081 | 5.1 | 21.6 | n8n-io | n8n | CWE-639 | n8n before 1.123.69 Allowed-Domains Bypass via GraphQL Node |
| CVE-2026-64972 | 4.8 | 21.5 | ATutor | ATutor | CWE-79 | Reflected XSS in ATutor |
| CVE-2026-76634 | 7.1 | 21.4 | LabRedesCefetRJ | WeGIA | CWE-639 | WeGIA < 3.9.2 Insecure Direct Object Reference via profile_funcionario.php |
| CVE-2026-64968 | 5.1 | 21.3 | ATutor | ATutor | CWE-918 | Server-Side Request Forgery in ATutor |
| CVE-2026-66788 | 9.9 | 21.3 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-284 | Lighthouse: lighthouse: arbitrary local-namespace injection via attacker-cont… |
| CVE-2026-18267 | 6.8 | 21.2 | Kenwood | DNR1007XR | CWE-59 | Kenwood DNR1007XR Firmware Update Link Following Code Execution Vulnerability |
| CVE-2026-19683 | 6.3 | 21.1 | TP-Link Systems Inc. | ER7212PC v2 | CWE-319 | Unencrypted Credential Transmission in Omada Gateway Dynamic DNS Authenticati… |
| CVE-2025-15688 | 9.3 | 21.1 | ThemeGoods | Capella | CWE-89 | WordPress Capella theme <= 2.5.5 - SQL Injection vulnerability |
| CVE-2026-66592 | 9.3 | 21.1 | rtCamp | rtMedia for WordPress, BuddyPress and bbPress | CWE-89 | WordPress rtMedia for WordPress, BuddyPress and bbPress plugin <= 4.7.11 - SQ… |
| CVE-2026-66593 | 9.3 | 21.1 | CleanTalk Inc | Security & Malware scan by CleanTalk | CWE-89 | WordPress Security & Malware scan by CleanTalk plugin <= 2.184 - SQL Injectio… |
| CVE-2026-66609 | 9.3 | 21.1 | CodexThemes | TheGem (Elementor) | CWE-89 | WordPress TheGem (Elementor) theme <= 5.12.3 - SQL Injection vulnerability |
| CVE-2026-66649 | 9.3 | 21.1 | e-plugins | Directory Pro | CWE-89 | WordPress Directory Pro plugin <= 2.5.8 - SQL Injection vulnerability |
| CVE-2026-66680 | 9.3 | 21.1 | plainware | Locatoraid Store Locator | CWE-89 | WordPress Locatoraid Store Locator plugin <= 3.9.72 - SQL Injection vulnerabi… |
| CVE-2026-68566 | 9.3 | 21.1 | Repute Infosystems | BookingPress Appointment Booking Pro | CWE-89 | WordPress BookingPress Appointment Booking Pro plugin <= 6.0.2 - SQL Injectio… |
| CVE-2026-63016 | 5.3 | 21.1 | Apache Software Foundation | Apache InLong | CWE-400 | Apache InLong: Ordinary users can create new packages |
| CVE-2026-19615 | 6.8 | 21.0 | Unknown | Admin and Site Enhancements (ASE) | CWE-79 | Admin and Site Enhancements < 9.0.1 - Author+ Stored XSS via SVG Upload over … |
| CVE-2026-19697 | 6.8 | 21.0 | Unknown | GutenKit | CWE-79 | GutenKit < 2.5.0 - Author+ Stored XSS via SVG Upload |
| CVE-2026-74992 | 6.8 | 21.0 | Unknown | Kirki | CWE-79 | Kirki < 6.2.3 - Editor+ Stored XSS via Font Zip Upload |
| CVE-2026-55765 | 8.5 | 20.8 | cloudnative-pg | cloudnative-pg | CWE-256 | CloudNativePG: Cleartext role passwords recorded in pg_stat_statements allow … |
| CVE-2026-64964 | 6.3 | 20.7 | ATutor | ATutor | CWE-340 | Generation of Predictable Email Confirmation Token in ATutor |
| CVE-2026-55095 | 5.3 | 20.8 | opf | openproject | CWE-862 | OpenProject: Inplace-edit dialog exposes comments from hidden admin-only proj… |
| CVE-2026-66785 | 9.9 | 20.7 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-20 | Submariner: submariner: unvalidated endpoint.spec.subnets propagated into wir… |
| CVE-2026-74020 | 7.5 | 20.6 | Anders Norén | Koji | CWE-862 | WordPress Koji theme <= 2.2.1 - Broken Access Control vulnerability |
| CVE-2026-74021 | 7.5 | 20.6 | Anders Norén | Chaplin | CWE-862 | WordPress Chaplin theme <= 2.6.8 - Broken Access Control vulnerability |
| CVE-2026-77076 | 7.1 | 20.6 | n8n-io | n8n | CWE-209 | n8n before 1.123.69 Credential Leak via GraphQL Node Error |
| CVE-2026-77082 | 5.3 | 20.6 | n8n-io | n8n | CWE-1333 | n8n before 1.123.69 ReDoS via Filter and Switch Node |
| CVE-2026-73137 | 7.7 | 20.5 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-200 | Multicloud-operators-subscription: multicloud-operators-subscription: cross-n… |
| CVE-2026-43678 | 5.3 | 20.4 | Apple | swift-nio | CWE-20 | An unauthenticated remote peer can crash any NIOWebSocket-based server (inclu… |
| CVE-2026-64965 | 5.3 | 20.1 | ATutor | ATutor | CWE-862 | Missing Authorization Check in ATutor |
| CVE-2026-62315 | 7.1 | 19.9 | frappe | frappe | CWE-915 | Frappe: Mass assignment via set_value |
| CVE-2026-75628 | await | 19.9 | — | Punk-OAuth2 | CWE-601 | Punk::OAuth2 versions before 0.03 for Perl allow an attacker-chosen off-site … |
| CVE-2026-66647 | 6.5 | 19.8 | RadiusTheme | Homlisti | CWE-862 | WordPress Homlisti theme <= 3.1.2 - Broken Access Control vulnerability |
| CVE-2026-73220 | 8.5 | 19.7 | cvat-ai | cvat | CWE-80 | CVAT: Stored XSS via annotation guides in audio tasks |
| CVE-2026-62834 | 9.8 | 19.4 | Microsoft | Azure Data Factory | CWE-347 | Azure Data Factory Elevation of Privilege Vulnerability |
| CVE-2026-53586 | 6.5 | 19.5 | libgit2 | libgit2 | CWE-200 | libgit2: HTTP transport can leak credentials to an offsite redirect target |
| CVE-2026-13405 | 6.6 | 19.4 | Unknown | Royal Addons for Elementor | CWE-94 | Royal Elementor Addons < 1.7.1066 - Admin+ Remote Code Execution via Widget B… |
| CVE-2025-14602 | 5.3 | 19.3 | vsDesk | vsDesk | CWE-340 | Weak File Name Generation in vsDesk |
| CVE-2026-69183 | 7.5 | 19.3 | monkeytypegame | monkeytype | CWE-290 | Monkeytype: Rate-limit and anti-brute-force controls bypassable via spoofed H… |
| CVE-2026-17424 | 4.8 | 19.2 | IBM | AIX | CWE-22 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-77071 | 7.1 | 19.1 | n8n-io | n8n | CWE-89 | n8n before 1.123.69 PostgREST Filter Injection via Supabase |
| CVE-2026-17436 | 8.8 | 18.8 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-18832 | 8.8 | 18.8 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-77083 | 6.0 | 18.8 | n8n-io | n8n | CWE-1321 | n8n before 1.123.69 Code Node Sandbox Escape via Function.prototype Pollution |
| CVE-2026-77026 | 6.9 | 18.5 | tassos.gr | Convert Forms extension for Joomla | CWE-602 | Joomla Extension - tassos.gr - Client-controlled validation bypass in Convert… |
| CVE-2026-73258 | 6.5 | 18.4 | cesanta | mongoose | CWE-697 | Mongoose: Multipart boundary/header scan logic error in mg_http_next_multipart |
| CVE-2026-17153 | 5.3 | 18.3 | siteground | AI Agent by SiteGround | CWE-862 | AI Agent by SiteGround <= 1.2.7 - Missing Authorization to Authenticated (Con… |
| CVE-2026-64969 | 5.3 | 18.0 | ATutor | ATutor | CWE-639 | Insecure Direct Object Reference in ATutor |
| CVE-2026-14949 | 8.5 | 17.8 | Frauscher Sensortechnik | FDS 102 | CWE-863 | Frauscher Sensortechnik: FDS102 for FAdC/FAdCi R2 is vulnerable to Incorrect … |
| CVE-2026-76990 | 5.5 | 17.7 | code-projects | Simple Inventory System | CWE-74 | code-projects Simple Inventory System delete.php sql injection |
| CVE-2026-76996 | 5.5 | 17.7 | SourceCodester | Simple Online Food Ordering System | CWE-74 | SourceCodester Simple Online Food Ordering System view_order.php sql injection |
| CVE-2026-76998 | 5.5 | 17.7 | SourceCodester | Simple Online Food Ordering System | CWE-89 | SourceCodester Simple Online Food Ordering System ajax.php delete_category sq… |
| CVE-2026-77019 | 5.5 | 17.7 | CodeAstro | Apartment Visitor Management System | CWE-74 | CodeAstro Apartment Visitor Management System forgotpw.php sql injection |
| CVE-2026-77020 | 5.5 | 17.7 | CodeAstro | Apartment Visitor Management System | CWE-89 | CodeAstro Apartment Visitor Management System password-recovery.php sql injec… |
| CVE-2026-72846 | 5.3 | 17.6 | lightdash | lightdash | CWE-918 | Lightdash Scheduled Delivery Webhook URLs Are Not Validated, Allowing Server-… |
| CVE-2026-55558 | 5.9 | 17.4 | cole | aiosmtplib | CWE-74 | aiosmtplib: STARTTLS response injection |
| CVE-2026-63015 | 4.3 | 17.4 | Apache Software Foundation | Apache InLong | CWE-400 | Apache InLong: Non-template responsible persons can view template information |
| CVE-2026-50190 | 8.6 | 17.1 | shaarli | Shaarli | CWE-79 | Shaarli vulnerable to stored XSS via raw bookmark title in document <title> e… |
| CVE-2026-76569 | 5.3 | 17.1 | phoca.cz | Phoca Download extension for Joomla | CWE-79 | Joomla Extension - phoca.cz - Reflected XSS via the search GET parameter in P… |
| CVE-2026-76999 | 5.3 | 16.9 | SourceCodester | CET Automated Grading System with AI Predictive Analytics | CWE-266 | SourceCodester CET Automated Grading System with AI Predictive Analytics inde… |
| CVE-2026-62945 | 4.3 | 16.9 | mauriceboe | TREK | CWE-639 | TREK: Cross-trip reservation title disclosure via file links |
| CVE-2026-49436 | 7.3 | 16.8 | Kovah | LinkAce | CWE-79 | LinkAce vulnerable to stored XSS via 'javascript:' URI in Bulk Link API |
| CVE-2026-18286 | 7.8 | 16.6 | aeon | aeon | CWE-94 | Aeon load_human_activity_segmentation_datasets Code Injection Remote Code Exe… |
| CVE-2026-76783 | 5.5 | 16.6 | n/a | DeDeCMS | CWE-74 | DeDeCMS advancedsearch.php sql injection |
| CVE-2026-77506 | 4.8 | 16.6 | Znuny | Znuny | CWE-79 | Znuny before LTS 6.5.22 allows AgentTicketEmailResend template XSS. |
| CVE-2026-49217 | 7.5 | 16.5 | Mailu | Mailu | CWE-306 | Mailu missing authentication on PATCH /api/v1/token/<id>, which allows unauth… |
| CVE-2026-44725 | 6.6 | 16.5 | emqx | emqx | CWE-345 | EMQX: Stale plugins allow grants amplify a compromised admin/API key to remot… |
| CVE-2026-71428 | 9.3 | 16.1 | Unstructured-IO | unstructured | CWE-601 | unstructured: Server-Side Request Forgery in the URL-based partitioning |
| CVE-2026-76956 | 5.9 | 16.1 | libexpat project | libexpat | CWE-394 | In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's r… |
| CVE-2026-18287 | 7.8 | 16.0 | aeon | aeon | CWE-94 | Aeon load_time_series_segmentation_benchmark Code Injection Remote Code Execu… |
| CVE-2026-50192 | 6.9 | 16.0 | kerberos-io | agent | CWE-200 | Kerberos Hub private key (X-Kerberos-Hub-PrivateKey) leaked to cross-host red… |
| CVE-2026-16964 | 6.5 | 16.0 | IBM | AIX | CWE-200 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-18269 | 6.8 | 15.8 | Kenwood | DNR1007XR | CWE-787 | Kenwood DNR1007XR tchdr_bytestream_read Out-Of-Bounds Write Code Execution Vu… |
| CVE-2026-77639 | 5.3 | 15.7 | torproject | Tor | CWE-420 | Tor before 0.4.9.9 was prone to a compression bomb bypass where an attacker c… |
| CVE-2026-76633 | 8.6 | 15.4 | LabRedesCefetRJ | WeGIA | CWE-620 | WeGIA < 3.9.2 Authorization Bypass Password Change via alterarSenha |
| CVE-2026-54624 | 6.5 | 15.3 | django-cms | django-cms | CWE-285 | django CMS: Structure endpoint bypasses page-view permission |
| CVE-2026-77080 | 8.7 | 15.2 | n8n-io | n8n | CWE-78 | n8n before 1.123.69 Arbitrary File Read and Write via Snowflake |
| CVE-2026-77072 | 8.4 | 15.2 | n8n-io | n8n | CWE-79 | n8n before 1.123.69 Stored XSS via Form Completion Page |
| CVE-2026-66595 | 5.9 | 15.2 | Passionate Programmer Peter | WP Data Access | CWE-862 | WordPress WP Data Access plugin <= 5.5.80 - Broken Access Control vulnerability |
| CVE-2025-53999 | 6.5 | 15.1 | ThemeGoods | Altair | CWE-862 | WordPress Altair theme <= 5.2.2 - Broken Access Control vulnerability |
| CVE-2026-49825 | 8.2 | 14.8 | lxml | lxml | CWE-79 | lxml: javascript: URL bypass in Cleaner via xlink:href |
| CVE-2026-19448 | 6.5 | 14.7 | IBM | AIX | CWE-908 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-54622 | 6.5 | 14.7 | django-cms | django-cms | CWE-639 | django CMS: Clipboard copy IDOR discloses unauthorized plugin content |
| CVE-2026-63003 | 6.5 | 14.7 | django-cms | django-cms | CWE-639 | django CMS: Broken access control in page *Duplicate* allows reading the cont… |
| CVE-2026-49996 | 3.7 | 14.7 | freedomofpress | securedrop-client | CWE-601 | securedrop-proxy origin limitation can be bypassed with redirects |
| CVE-2026-18297 | 7.8 | 14.5 | GStreamer | GStreamer | CWE-121 | GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution … |
| CVE-2026-18298 | 7.8 | 14.5 | GStreamer | GStreamer | CWE-122 | GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution V… |
| CVE-2026-77070 | 7.1 | 14.4 | n8n-io | n8n | CWE-943 | n8n before 1.123.69 NoSQL Injection via MongoDB Node |
| CVE-2026-77113 | 6.7 | 14.5 | Canonical | Apport | CWE-23 | Path Traversal Vulnerability in apport-unpack |
| CVE-2026-17024 | 7.7 | 14.4 | IBM | AIX | CWE-295 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-18294 | 7.8 | 14.1 | OriginLab | Origin Viewer | CWE-119 | OriginLab Origin Viewer OGW File Parsing Memory Corruption Remote Code Execut… |
| CVE-2026-66001 | 8.5 | 13.9 | frappe | frappe | CWE-352 | Frappe: Improper Authorization in OAuth2 Consent Endpoint |
| CVE-2026-16932 | 8.8 | 13.8 | IBM | AIX | CWE-78 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-55013 | 7.1 | 13.9 | Microsoft | Windows Remote Help | CWE-427 | Windows Remote Help Defense Spoofing Vulnerability |
| CVE-2026-77014 | 5.3 | 13.9 | Red Hat | Red Hat Enterprise Linux 10 | CWE-197 | Libsoup: libsoup: integer truncation in sort_ranges() comparator causes silen… |
| CVE-2026-75948 | 8.6 | 13.6 | icagenda.com | iCagenda extension for Joomla | CWE-79 | Joomla Extension - icagenda.com - Authenticated Stored XSS in iCagenda 4.0.8 … |
| CVE-2026-73259 | 5.4 | 13.6 | cesanta | mongoose | CWE-79 | Mongoose: Reflected XSS via decoded URI in directory listing render |
| CVE-2026-18296 | 7.8 | 13.4 | GStreamer | GStreamer | CWE-122 | GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution V… |
| CVE-2026-77079 | 7.4 | 13.4 | n8n-io | n8n | CWE-639 | n8n before 2.34.1 Authorization Bypass via Custom Role Deletion |
| CVE-2026-77085 | 6.3 | 13.4 | n8n-io | n8n | CWE-918 | n8n before 2.34.1 SSRF Protection Bypass via SearXNG Tool |
| CVE-2026-77069 | 2.3 | 13.4 | n8n-io | n8n | CWE-918 | n8n before 1.123.69 SSRF Protection Bypass via OAuth2 |
| CVE-2026-64777 | 4.3 | 13.2 | Apple | container | CWE-22 | A malicious builder peer may be able to request an in-context file by name fr… |
| CVE-2026-18283 | 2.4 | 13.2 | Sony | XAV-9500ES | CWE-285 | Sony XAV-9500ES udev USB Rules Authorization Bypass Vulnerability |
| CVE-2026-76995 | 2.0 | 13.2 | SourceCodester | Simple Online Food Ordering System | CWE-284 | SourceCodester Simple Online Food Ordering System ajax.php save_menu unrestri… |
| CVE-2026-74011 | 7.6 | 13.1 | revmakx | InfiniteWP Client | CWE-89 | WordPress InfiniteWP Client plugin <= 1.13.9 - SQL Injection vulnerability |
| CVE-2026-14163 | 7.1 | 13.1 | Octopus Deploy | Octopus Server | CWE-532 | In affected versions of Octopus Server under certain circumstances it is poss… |
| CVE-2026-76993 | 1.3 | 12.9 | GreyDGL | PentestGPT | CWE-74 | GreyDGL PentestGPT Web-Page Crawling injection |
| CVE-2026-77587 | 5.9 | 12.6 | torproject | Tor | CWE-911 | Tor before 0.4.9.11 is prone to a use-after-free (and potential double free) … |
| CVE-2026-77067 | 5.3 | 12.5 | omnivore-app | omnivore | CWE-918 | Omnivore Stored Server-Side Request Forgery via the setWebhook Mutation |
| CVE-2026-68921 | 4.7 | 12.6 | dicebear | dicebear | CWE-79 | DiceBear: SVG injection via the unescaped rotate option in @dicebear/core (an… |
| CVE-2026-73196 | 6.5 | 12.4 | Red Hat | Red Hat Enterprise Linux 10 | CWE-770 | Ipa: freeipa: authenticated dos in `otptoken-add` via unbounded otp key decod… |
| CVE-2026-52021 | await | 12.4 | n/a | n/a | — | An issue in code100xDevs 100xdevs CMS v.1.0 (2026-04-30) allows a remote atta… |
| CVE-2026-72860 | 6.3 | 12.0 | decolua | 9router | CWE-918 | 9router Server-Side Request Forgery via /api/provider-nodes/validate Because … |
| CVE-2026-19699 | 2.7 | 12.0 | Unknown | GutenKit | CWE-863 | GutenKit 2.4.12 - 2.4.15 - Contributor+ Mailchimp Audience Data Disclosure |
| CVE-2026-77640 | 3.7 | 11.7 | torproject | Tor | CWE-1284 | tor before 0.4.9.9 was prone to an infinite loop when decompressing a truncat… |
| CVE-2026-63043 | 7.5 | 11.6 | Apache Software Foundation | Apache InLong | CWE-23 | Apache InLong: Agent path traversal via unvalidated file source path |
| CVE-2026-73253 | 9.1 | 11.3 | cesanta | mongoose | CWE-295 | Mongoose: TLS Hostname Verification Bypass via Overly Permissive Wildcard Mat… |
| CVE-2026-18295 | 7.8 | 11.3 | GStreamer | GStreamer | CWE-787 | GStreamer MRF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerab… |
| CVE-2026-74019 | 7.1 | 11.2 | paulepro2019 | EPROLO Dropshipping | CWE-862 | WordPress EPROLO Dropshipping plugin <= 2.4.2 - Broken Access Control vulnera… |
| CVE-2026-66601 | 6.5 | 11.3 | David Lingren | Media LIbrary Assistant | CWE-79 | WordPress Media LIbrary Assistant plugin <= 3.39 - Cross Site Scripting (XSS)… |
| CVE-2026-73402 | 6.5 | 11.3 | Hakan Ozevin | WP BASE Booking | CWE-79 | WordPress WP BASE Booking plugin <= 6.3.2 - Cross Site Scripting (XSS) vulner… |
| CVE-2026-46355 | 7.1 | 11.0 | bigbluebutton | bigbluebutton | CWE-287 | BigBlueButton: Unauthenticated Session Hijack via Exposed /bigbluebutton/api/… |
| CVE-2026-63037 | 9.8 | 10.9 | Apache Software Foundation | Apache InLong | CWE-89 | Apache InLong: Unauthenticated SQL injection in Manager OpenAPI audit alert r… |
| CVE-2026-17060 | 8.1 | 10.9 | IBM | AIX | CWE-200 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-77036 | 2.1 | 11.0 | elunez | eladmin | CWE-266 | elunez eladmin GenConfigController improper authorization |
| CVE-2026-63044 | 5.4 | 10.8 | Apache Software Foundation | Apache InLong | CWE-918 | Apache InLong: Authenticated SSRF via POST /api/node/testConnection |
| CVE-2026-17006 | 8.3 | 10.7 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-18299 | 7.8 | 10.7 | GStreamer | GStreamer | CWE-416 | GStreamer rtpsbcdepay Use-After-Free Remote Code Execution Vulnerability |
| CVE-2026-7485 | 2.3 | 10.7 | Checkmk GmbH | Checkmk | CWE-863 | Frozen BI aggregations leak host and service names to unauthorized users |
| CVE-2026-69242 | 8.4 | 10.5 | libvips | libvips | CWE-122 | libvips: Integer overflow leading to heap buffer overflow leading to possible… |
| CVE-2026-63038 | 9.8 | 10.4 | Apache Software Foundation | Apache InLong | CWE-89 | Apache InLong: SQL Injection via String Concatenation Vulnerability Report |
| CVE-2026-77074 | 6.0 | 10.3 | n8n-io | n8n | CWE-94 | n8n before 1.123.69 SSRF via Edit Image Node |
| CVE-2026-18288 | 7.8 | 10.1 | OriginLab | OriginPro | CWE-787 | OriginLab OriginPro OPJU File Parsing Out-Of-Bounds Write Remote Code Executi… |
| CVE-2026-18289 | 7.8 | 10.1 | OriginLab | OriginPro | CWE-787 | OriginLab OriginPro OPJ File Parsing Out-Of-Bounds Write Remote Code Executio… |
| CVE-2026-18290 | 7.8 | 10.1 | OriginLab | OriginPro | CWE-787 | OriginLab OriginPro OGG File Parsing Out-Of-Bounds Write Remote Code Executio… |
| CVE-2026-18291 | 7.8 | 10.1 | OriginLab | OriginPro | CWE-119 | OriginLab OriginPro OGW File Parsing Memory Corruption Remote Code Execution … |
| CVE-2026-18292 | 7.8 | 10.1 | OriginLab | OriginPro | CWE-119 | OriginLab OriginPro OGG File Parsing Memory Corruption Remote Code Execution … |
| CVE-2026-18293 | 7.8 | 10.1 | OriginLab | Origin Viewer | CWE-787 | OriginLab Origin Viewer OPJ File Parsing Out-Of-Bounds Write Remote Code Exec… |
| CVE-2026-16958 | 7.5 | 10.1 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-76800 | 2.1 | 9.9 | n/a | DeDeCMS | CWE-284 | DeDeCMS select_media_post.php unrestricted upload |
| CVE-2026-11861 | 8.1 | 9.8 | Red Hat | Red Hat Enterprise Linux 10 | CWE-266 | Freeipa: idm: ipa: freeipa: obtaining tgs with impersonating cname through tr… |
| CVE-2026-72861 | 6.9 | 9.7 | appwrite | templates | CWE-347 | Appwrite Templates github-issue-bot Skips Webhook Signature Verification When… |
| CVE-2026-18828 | 5.4 | 9.8 | IBM | AIX | CWE-787 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-49245 | 3.7 | 9.8 | drakkan | sftpgo | CWE-79 | SFTPGo: Stored XSS via inline parameter on public shares and user file download |
| CVE-2026-76785 | 2.1 | 9.8 | amirsanni | Mini-Inventory-and-Sales-Management-System | CWE-74 | amirsanni Mini-Inventory-and-Sales-Management-System Transaction.php getAll s… |
| CVE-2026-76991 | 2.1 | 9.8 | itsourcecode | Hospital Management System | CWE-89 | itsourcecode Hospital Management System viewappointmentapproved.php sql injec… |
| CVE-2026-76997 | 2.1 | 9.8 | SourceCodester | Simple Online Food Ordering System | CWE-89 | SourceCodester Simple Online Food Ordering System ajax.php save_category sql … |
| CVE-2026-77025 | 2.1 | 9.8 | itsourcecode | Hospital Management System | CWE-74 | itsourcecode Hospital Management System viewappointmentpending.php sql injection |
| CVE-2026-77066 | 5.3 | 9.7 | omnivore-app | omnivore | CWE-918 | Omnivore Server-Side Request Forgery via the scanFeeds GraphQL Query |
| CVE-2026-61663 | 4.3 | 9.7 | django-cms | django-cms | CWE-639 | django CMS: Missing authorization in `render_object_structure` discloses non-… |
| CVE-2026-14953 | 5.3 | 9.4 | Frauscher Sensortechnik | FDS 102 | CWE-425 | Frauscher Sensortechnik: FDS102 for FAdC/FAdCi R2 is Missing Authorization du… |
| CVE-2026-18280 | 3.9 | 9.5 | Sony | XAV-9500ES | CWE-120 | Sony XAV-9500ES gpsd Buffer Overflow Arbitrary Code Execution Vulnerability |
| CVE-2026-73251 | 9.3 | 9.3 | cesanta | mongoose | CWE-295 | Mongoose Built-in TLS: CA-bundle certificate chain accepted without any signa… |
| CVE-2026-77642 | 7.5 | 9.1 | torproject | Tor | CWE-787 | tor before 0.4.9.9 was prone to an out-of-bounds write when parsing a consens… |
| CVE-2026-77641 | 6.5 | 9.1 | torproject | Tor | CWE-252 | tor before 0.4.9.9 was prone to a NULL write after free when sending a CONFLU… |
| CVE-2026-55489 | 4.9 | 9.0 | bigbluebutton | bigbluebutton | CWE-639 | BigBlueButton: IDOR on BBB through /api/graphql via POST parameter "presentat… |
| CVE-2026-53583 | 6.5 | 8.8 | libgit2 | libgit2 | CWE-295 | libgit2: Inverted IP SubjectAltName Comparison in OpenSSL Backend |
| CVE-2026-77648 | 2.2 | 8.8 | OpenStack | Glance | CWE-918 | In OpenStack Glance through 32.0.0, the /v2/tasks API accepts type=import tas… |
| CVE-2026-63039 | 9.8 | 8.8 | Apache Software Foundation | Apache InLong | CWE-89 | Apache InLong: SQL Injection via Unvalidated MyBatis Dollar-Sign Interpolatio… |
| CVE-2026-73254 | 5.4 | 8.8 | cesanta | mongoose | CWE-79 | Mongoose: Stored XSS via unescaped filenames in directory listing |
| CVE-2026-63040 | 8.1 | 8.5 | Apache Software Foundation | Apache InLong | CWE-552 | Apache InLong: Missing authorization in StreamSource forceDelete |
| CVE-2026-9033 | 6.0 | 8.1 | TP-Link Systems Inc. | ER7212PC v2 | CWE-306 | Unauthenticated Captive Portal Session Termination and Forced Logout in Omada… |
| CVE-2026-15743 | await | 8.0 | — | Catalyst-Plugin-Static-Simple | CWE-524 | Catalyst::Plugin::Static::Simple versions through 0.38 for Perl mark response… |
| CVE-2026-72844 | 6.8 | 7.9 | leanprover | lean4 | CWE-843 | Lean 4 Kernel Type Checking Bypass via Mismatched Structure Projections |
| CVE-2025-62307 | 5.4 | 7.8 | HCL Software | IEM | CWE-778 | HCL IntelliOps Event Management is affected by multiple security vulnerabilit… |
| CVE-2026-66581 | 7.1 | 7.5 | Crocoblock. Jetimpex Inc. | JetEngine | CWE-79 | WordPress JetEngine plugin <= 3.8.14.1 - Cross Site Scripting (XSS) vulnerabi… |
| CVE-2026-66582 | 7.1 | 7.5 | Cozmoslabs | TranslatePress | CWE-79 | WordPress TranslatePress plugin <= 3.3.2 - Cross Site Scripting (XSS) vulnera… |
| CVE-2026-66590 | 7.1 | 7.5 | Tagembed | Tagembed | CWE-79 | WordPress Tagembed plugin <= 7.4 - Cross Site Scripting (XSS) vulnerability |
| CVE-2026-66597 | 7.1 | 7.5 | Melograno Venture Studio | wpDataTables | CWE-79 | WordPress wpDataTables plugin <= 6.5.1.4 - Cross Site Scripting (XSS) vulnera… |
| CVE-2026-66598 | 7.1 | 7.5 | Kingtech LLC. | B2BKing Premium | CWE-79 | WordPress B2BKing Premium plugin <= 5.6.07 - Cross Site Scripting (XSS) vulne… |
| CVE-2026-66604 | 7.1 | 7.5 | Paolo | GeoDirectory | CWE-79 | WordPress GeoDirectory plugin <= 2.8.173 - Cross Site Scripting (XSS) vulnera… |
| CVE-2026-66605 | 7.1 | 7.5 | HasThemes | Swatchly – WooCommerce Variation Swatches for Products | CWE-79 | WordPress Swatchly – WooCommerce Variation Swatches for Products plugin <= 1.… |
| CVE-2026-66606 | 7.1 | 7.5 | ThemeGrill | SmartSMTP | CWE-79 | WordPress SmartSMTP plugin <= 1.2.0 - Cross Site Scripting (XSS) vulnerability |
| CVE-2026-66607 | 7.1 | 7.5 | ThemeHunk | Advance Product Search | CWE-79 | WordPress Advance Product Search plugin <= 1.4.8 - Cross Site Scripting (XSS)… |
| CVE-2026-66611 | 7.1 | 7.5 | Paymob | Paymob for WooCommerce | CWE-79 | WordPress Paymob for WooCommerce plugin <= 4.1.10 - Cross Site Scripting (XSS… |
| CVE-2026-66612 | 7.1 | 7.5 | thembay | Aora | CWE-79 | WordPress Aora theme <= 1.3.19 - Cross Site Scripting (XSS) vulnerability |
| CVE-2026-66614 | 7.1 | 7.5 | SEO Squirrly | SEO Plugin by Squirrly SEO | CWE-79 | WordPress SEO Plugin by Squirrly SEO plugin <= 14.2.2 - Cross Site Scripting … |
| CVE-2026-66615 | 7.1 | 7.5 | Eric Teubert | Podlove Podcast Publisher | CWE-79 | WordPress Podlove Podcast Publisher plugin <= 4.5.4 - Cross Site Scripting (X… |
| CVE-2026-66616 | 7.1 | 7.5 | 10Web | Form Maker by 10Web | CWE-79 | WordPress Form Maker by 10Web plugin <= 1.15.46 - Cross Site Scripting (XSS) … |
| CVE-2026-66673 | 7.1 | 7.5 | Monkeysan | Flatastic | CWE-79 | WordPress Flatastic theme <= 2.0 - Reflected Cross Site Scripting (XSS) vulne… |
| CVE-2026-68564 | 7.1 | 7.5 | NotificationX | NotificationX Pro | CWE-79 | WordPress NotificationX Pro plugin <= 3.1.4 - Cross Site Scripting (XSS) vuln… |
| CVE-2026-53425 | 7.6 | 7.3 | dropbox | samly | CWE-345 | Missing InResponseTo validation in Samly allows acceptance of unsolicited SAM… |
| CVE-2026-77584 | 7.0 | 7.1 | torproject | Tor | CWE-821 | Tor before 0.4.9.10 did not reject a CONFLUX_LINK cell that arrives on a circ… |
| CVE-2026-28163 | 5.3 | 7.1 | myCred | New User Approve | CWE-862 | WordPress New User Approve plugin <= 3.2.8 - Broken Access Control vulnerability |
| CVE-2026-63654 | 6.9 | 7.0 | frappe | frappe | CWE-352 | Frappe: Unauthenticated Workflow approval via confirm_action |
| CVE-2026-64962 | 5.1 | 7.0 | ATutor | ATutor | CWE-352 | Cross-Site Request Forgery (CSRF) in ATutor |
| CVE-2026-77638 | 8.9 | 6.9 | torproject | Tor | CWE-362 | Tor before 0.4.9.11 is prone to a race condition where in just the right circ… |
| CVE-2026-66787 | 8.7 | 6.6 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-345 | Lighthouse: lighthouse: cross-cluster dns spoofing via unvalidated endpointsl… |
| CVE-2026-19582 | 7.8 | 6.6 | Red Hat | Migration Toolkit for Containers | CWE-787 | Binutils: stack buffer overflow in gnu binutils in rsrc_print_name from an un… |
| CVE-2026-63042 | 8.1 | 6.5 | Apache Software Foundation | Apache InLong | CWE-552 | Apache InLong: Missing authorization on DataNode management endpoints |
| CVE-2026-15679 | 7.8 | 6.4 | Hugging Face | PyTorch Image Models | CWE-502 | Hugging Face PyTorch Image Models checkpoint Deserialization of Untrusted Dat… |
| CVE-2025-62306 | 5.0 | 6.0 | HCL Software | IEM | CWE-221 | HCL IntelliOps Event Management is affected by multiple security vulnerabilit… |
| CVE-2026-18278 | 3.5 | 6.0 | Sony | XAV-9500ES | CWE-125 | Sony XAV-9500ES prh_l2_decode_packet Out-Of-Bounds Read Information Disclosur… |
| CVE-2025-52182 | await | 6.0 | n/a | n/a | — | The Library Corporation LS2 Admin v5.7 to v5.8.0 was discovered to contain an… |
| CVE-2026-14951 | 8.6 | 5.9 | Frauscher Sensortechnik | FDS 102 | CWE-352 | Frauscher Sensortechnik: FDS102 for FAdC/FAdCi R2 is vulnerable to Cross-Site… |
| CVE-2026-55491 | 5.4 | 5.9 | bigbluebutton | bigbluebutton | CWE-79 | BigBlueButton: Stored XSS in Screenshare Recording Playback via Unescaped Mee… |
| CVE-2026-75526 | 4.4 | 5.9 | django-cms | django-cms | CWE-79 | django CMS: Stored XSS in edit-mode plugin exception rendering |
| CVE-2026-71368 | 5.1 | 5.7 | Thinkingreed Inc. | F-RevoCRM | CWE-79 | F-RevoCRM contains a cross-site scripting vulnerability. If a user views a cr… |
| CVE-2025-62299 | 6.6 | 5.4 | HCL Software | IEM | CWE-272 | HCL IntelliOps Event Management is affected by multiple security vulnerabilit… |
| CVE-2026-17423 | 7.7 | 5.1 | IBM | AIX | CWE-125 | Vulnerabilities in IBM AIX and PowerVM VIOS |
| CVE-2026-76610 | 6.9 | 4.9 | yootheme.com | Zoo extension for Joomla | CWE-352 | Joomla Extension - yootheme.com - Unauthenticated tag modifications in Zoo < … |
| CVE-2026-77643 | 4.4 | 5.0 | Xapian | xapian-core | CWE-79 | A cross-site scripting vulnerability in queryparser/termgenerator_internal.cc… |
| CVE-2026-18273 | 6.6 | 4.9 | Kenwood | DNR1007XR | CWE-276 | Kenwood DNR1007XR USB Incorrect Default Permissions Local Privilege Escalatio… |