AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N H N H H H 8.6 .0113 64.0 —
AFFECTED Product Versions Fixed adminer unspecified 5.4.3
TIMELINE Jun 22 Reserved by CNA Aug 25 Published (CNA: VulnCheck)
A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?
787 CVEs published, led by Google (327).
787 CVEs published August 25, 2026: 70 critical, 219 high, 142 medium, 14 low; 0 in the KEV catalog at press time; 0 with a public exploit reference; 342 awaiting enrichment. Elevated volume. 25 rendered as box scores below; 375 more in the results table on this page; the remaining 387 on continuation pages.
| MTD | YTD | 2025 same span | 2025 full | |
|---|---|---|---|---|
| CVEs published | 10449 | 32619 | — | — |
| KEV catalog size | 1676 | |||
Publication counts reflect the record since May 20, 2026 (archive start); KEV figures are catalog-wide.
Prior-year comparisons begin when the archive covers a full year; archive begins May 20, 2026.
1786 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| linux | 1417 | 3732 | 384 | 1864 | 637 | 1 | 11 | 2 | 0.1 | 7.8 | .0017 | +615 ▲ |
| 400 | 2161 | 252 | 779 | 786 | 57 | 77 | 6 | 0.3 | 7.5 | .0025 | +281 ▲ | |
| microsoft | 469 | 1891 | 145 | 1281 | 451 | 14 | 286 | 27 | 1.4 | 7.8 | .0044 | -191 ▼ |
| red hat | 208 | 596 | 43 | 250 | 272 | 31 | 2 | 0 | 0.0 | 6.8 | .0028 | +91 ▲ |
| apple | 44 | 315 | 58 | 82 | 165 | 7 | 88 | 8 | 2.5 | 6.5 | .0029 | +41 ▲ |
| canonical | 15 | 42 | 13 | 11 | 13 | 5 | 0 | 0 | 0.0 | 7.8 | .0020 | +8 ▲ |
| freebsd | 23 | 39 | 0 | 23 | 4 | 0 | 0 | 0 | 0.0 | 7.8 | .0015 | +23 ▲ |
| suse | 5 | 26 | 5 | 14 | 6 | 1 | 0 | 0 | 0.0 | 8.1 | .0039 | -3 ▼ |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cisco | 46 | 84 | 21 | 39 | 24 | 0 | 56 | 13 | 15.5 | 7.5 | .0044 | +31 ▲ |
| palo alto networks | 12 | 37 | 1 | 3 | 21 | 12 | 13 | 2 | 5.4 | 4.7 | .0020 | -2 ▼ |
| ubiquiti | 0 | 36 | 14 | 21 | 1 | 0 | 3 | 3 | 8.3 | 8.8 | .0049 | -25 ▼ |
| netgear | 9 | 32 | 0 | 0 | 27 | 5 | 0 | 0 | 0.0 | 4.3 | .0025 | +3 ▲ |
| fortinet | 7 | 30 | 7 | 8 | 14 | 1 | 28 | 6 | 20.0 | 7.0 | .0050 | -6 ▼ |
| vmware | 2 | 19 | 4 | 9 | 4 | 2 | 7 | 2 | 10.5 | 8.1 | .0040 | -6 ▼ |
| f5 | 0 | 17 | 5 | 9 | 3 | 0 | 4 | 1 | 5.9 | 8.7 | .0057 | -8 ▼ |
| sonicwall | 12 | 14 | 3 | 5 | 4 | 0 | 17 | 2 | 14.3 | 7.8 | .0024 | +10 ▲ |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| apache | 155 | 491 | 96 | 206 | 161 | 13 | 33 | 2 | 0.4 | 7.5 | .0048 | +52 ▲ |
| mozilla | 59 | 186 | 68 | 68 | 50 | 0 | 9 | 0 | 0.0 | 8.1 | .0030 | -12 ▼ |
| drupal | 17 | 68 | 6 | 5 | 35 | 5 | 4 | 1 | 1.5 | 5.9 | .0026 | -29 ▼ |
| gitlab | 16 | 67 | 2 | 15 | 42 | 8 | 4 | 2 | 3.0 | 5.3 | .0029 | +9 ▲ |
| github | 5 | 17 | 1 | 7 | 9 | 0 | 0 | 0 | 0.0 | 6.6 | .0043 | 0 |
| docker | 2 | 9 | 0 | 6 | 3 | 0 | 0 | 0 | 0.0 | 7.2 | .0016 | +2 ▲ |
| wordpress | 2 | 5 | 1 | 3 | 1 | 0 | 2 | 2 | 40.0 | 8.8 | .3120 | 0 |
| kubernetes | 0 | 1 | 0 | 0 | 0 | 1 | 0 | 0 | 0.0 | 2.4 | .0035 | -1 ▼ |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| oracle | 889 | 2268 | 487 | 1172 | 513 | 96 | 28 | 4 | 0.2 | 7.8 | .0034 | -220 ▼ |
| ibm | 374 | 603 | 144 | 279 | 172 | 8 | 6 | 1 | 0.2 | 7.6 | .0030 | +337 ▲ |
| adobe | 98 | 350 | 42 | 174 | 129 | 5 | 19 | 3 | 0.9 | 7.8 | .0026 | +3 ▲ |
| progress | 19 | 61 | 14 | 37 | 10 | 0 | 6 | 1 | 1.6 | 8.1 | .0037 | -9 ▼ |
| solarwinds | 0 | 23 | 17 | 3 | 3 | 0 | 10 | 4 | 17.4 | 9.1 | .0058 | -15 ▼ |
| veeam | 10 | 16 | 5 | 9 | 2 | 0 | 1 | 0 | 0.0 | 8.6 | .0034 | +9 ▲ |
| zohocorp | 4 | 10 | 3 | 5 | 2 | 0 | 0 | 0 | 0.0 | 8.7 | .0140 | +1 ▲ |
| atlassian | 3 | 6 | 1 | 5 | 0 | 0 | 13 | 0 | 0.0 | 8.1 | .0034 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| d-link | 16 | 36 | 15 | 5 | 9 | 7 | 3 | 0 | 0.0 | 7.4 | .0157 | +8 ▲ |
| siemens | 19 | 35 | 2 | 23 | 8 | 2 | 0 | 0 | 0.0 | 7.3 | .0016 | +12 ▲ |
| rockwell automation | 1 | 25 | 4 | 18 | 3 | 0 | 0 | 0 | 0.0 | 8.7 | .0029 | -16 ▼ |
| synology | 1 | 24 | 2 | 6 | 13 | 3 | 0 | 0 | 0.0 | 5.6 | .0025 | +1 ▲ |
| schneider electric | 0 | 9 | 1 | 6 | 2 | 0 | 0 | 0 | 0.0 | 8.6 | .0037 | 0 |
| abb | 0 | 7 | 0 | 4 | 3 | 0 | 0 | 0 | 0.0 | 7.2 | .0018 | -1 ▼ |
| hikvision | 0 | 6 | 0 | 4 | 2 | 0 | 0 | 0 | 0.0 | 7.2 | .0040 | -5 ▼ |
| moxa | 0 | 5 | 0 | 3 | 2 | 0 | 0 | 0 | 0.0 | 7.0 | .0029 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| sourcecodester | 47 | 167 | 0 | 0 | 91 | 76 | 0 | 0 | 0.0 | 5.5 | .0030 | -2 ▼ |
| dell | 58 | 157 | 10 | 84 | 58 | 5 | 2 | 1 | 0.6 | 7.2 | .0019 | +15 ▲ |
| nvidia | 52 | 134 | 16 | 88 | 30 | 0 | 0 | 0 | 0.0 | 7.8 | .0034 | +11 ▲ |
| splunk | 110 | 128 | 6 | 47 | 70 | 5 | 1 | 1 | 0.8 | 6.5 | .0025 | +107 ▲ |
| openclaw | 0 | 111 | 0 | 58 | 39 | 14 | 0 | 0 | 0.0 | 7.0 | .0026 | -44 ▼ |
| getgrav | 64 | 102 | 13 | 59 | 28 | 2 | 0 | 0 | 0.0 | 8.4 | .0032 | +27 ▲ |
| zephyrproject | 47 | 100 | 3 | 33 | 55 | 9 | 0 | 0 | 0.0 | 6.4 | .0022 | +24 ▲ |
| itsourcecode | 29 | 100 | 0 | 0 | 25 | 75 | 0 | 0 | 0.0 | 2.1 | .0028 | +11 ▲ |
| CVE | EPSS | %ile | CVSS |
|---|---|---|---|
| CVE-2026-8037 | .9957 | 99.9 | 9.8 |
| CVE-2026-34486 | .9862 | 99.9 | 7.5 |
| CVE-2026-63077 | .8473 | 99.7 | 9.8 |
| CVE-2026-72898 | .7922 | 99.6 | 10.0 |
| CVE-2026-61511 | .7077 | 99.3 | 9.3 |
| CVE-2026-59310 | .4588 | 98.7 | 9.8 |
| CVE-2026-64638 | .3120 | 98.1 | 8.9 |
| CVE-2025-68686 | .2915 | 98.0 | 5.9 |
| CVE-2026-71362 | .2514 | 97.8 | 9.1 |
| CVE-2026-66066 | .1895 | 97.1 | 9.5 |
| CVE | CVSS | EPSS | Note |
|---|---|---|---|
| CVE-2026-72898 | 10.0 | .7922 | KEV |
| CVE-2026-48362 | 10.0 | .0431 | |
| CVE-2026-19188 | 10.0 | .0193 | |
| CVE-2026-58231 | 10.0 | .0171 | |
| CVE-2026-69836 | 10.0 | .0159 | |
| CVE-2026-16812 | 10.0 | .0157 | KEV |
| CVE-2026-73299 | 10.0 | .0121 | |
| CVE-2026-73678 | 10.0 | .0114 | |
| CVE-2026-45618 | 10.0 | .0092 | |
| CVE-2026-48168 | 10.0 | .0091 |
| Vendor | CVEs |
|---|---|
| linux | 1448 |
| oracle | 889 |
| 777 | |
| microsoft | 471 |
| ibm | 442 |
| red hat | 255 |
| apache | 233 |
| apple | 208 |
| adobe | 111 |
| splunk | 110 |
| Vendor | KEV |
|---|---|
| microsoft | 27 |
| cisco | 13 |
| apple | 8 |
| fortinet | 6 |
| 6 | |
| ivanti | 5 |
| oracle | 4 |
| solarwinds | 4 |
| adobe | 3 |
| berriai | 3 |
| Ecosystem | Advisories |
|---|---|
| Maven | 63 |
| Packagist | 26 |
| PyPI | 14 |
| npm | 13 |
| Go | 4 |
| NuGet | 1 |
| crates.io | 1 |
| CVE | Vendor | Days |
|---|---|---|
| CVE-2025-68686 | Fortinet | 0 |
| CVE-2026-16812 | Arista Networks | 0 |
| CVE-2026-18556 | N-able | 0 |
| CVE-2026-18577 | N-able | 0 |
| CVE-2026-20316 | Cisco | 0 |
| CVE-2026-20349 | Cisco | 0 |
| CVE-2026-34486 | Apache Software Foundation | 0 |
| CVE-2026-63077 | JetBrains | 0 |
| CVE-2026-72529 | TrueConf | 0 |
| CVE-2026-72530 | TrueConf | 0 |
| CVE | Vendor | Due | Days over |
|---|---|---|---|
| CVE-2021-27104 | n/a | 2021-11-17 | 1742 |
| CVE-2021-27102 | n/a | 2021-11-17 | 1742 |
| CVE-2021-27101 | n/a | 2021-11-17 | 1742 |
| CVE-2021-27103 | n/a | 2021-11-17 | 1742 |
| CVE-2021-21017 | Adobe | 2021-11-17 | 1742 |
| CVE-2021-28550 | Adobe | 2021-11-17 | 1742 |
| CVE-2021-42013 | Apache Software Foundation | 2021-11-17 | 1742 |
| CVE-2021-41773 | Apache Software Foundation | 2021-11-17 | 1742 |
| CVE-2021-30858 | Apple | 2021-11-17 | 1742 |
| CVE-2021-30860 | Apple | 2021-11-17 | 1742 |
EXPLOIT PUBLISHED — axios: 13 CVEs (CVE-2025-62718, CVE-2026-25639, CVE-2026-40175, CVE-2026-42033, CVE-2026-42041, CVE-2026-42043, CVE-2026-44486, CVE-2026-44487, CVE-2026-44488, CVE-2026-44492, CVE-2026-44494, CVE-2026-44495, CVE-2026-44496). Public exploit references added.
EXPLOIT PUBLISHED — GNOME GLib: 6 CVEs (CVE-2026-58010, CVE-2026-58012, CVE-2026-58013, CVE-2026-58014, CVE-2026-58015, CVE-2026-58016). Public exploit references added.
EXPLOIT PUBLISHED — Red Hat Enterprise Linux 10: 4 CVEs (CVE-2026-4878, CVE-2026-48864, CVE-2026-55653, CVE-2026-55654). Public exploit references added.
EXPLOIT PUBLISHED — rocq-prover rocq: 3 CVEs (CVE-2020-37268, CVE-2026-72704, CVE-2026-72714). Public exploit references added.
EXPLOIT PUBLISHED — CVE-2020-1938 (Apache Tomcat). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2022-37315. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2023-6610 (Linux kernel). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2025-5914 (libarchive). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-29063 (immutable-js). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-29181 (open-telemetry opentelemetry-go). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-33487 (russellhaering goxmldsig). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-34070 (langchain-ai langchain). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-3832 (gnutls). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-3833 (gnutls). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-39363 (vitejs vite). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-41523 (vllm-project vllm). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-42945 (F5 NGINX Plus). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45186 (libexpat project libexpat). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45736 (websockets ws). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-4740 (Red Hat multicluster engine for Kubernetes 2.10). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-71225 (Stephan Muelle libkcapi). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-71227 (Stephan Muelle libkcapi). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-76574 (code-projects Hospital Information System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-76589 (TRENDnet TEW-755AP). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-76762 (code-projects Assessment Management). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-76795 (AeternaLabsHQ PullMD). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-76989 (liftoff-sr CIPster). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-76996 (SourceCodester Simple Online Food Ordering System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-77019 (CodeAstro Apartment Visitor Management System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-77036 (elunez eladmin). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-77945 (TRENDnet TEW-821DAP). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-78434 (Faveo Helpdesk). Public exploit reference added.
DUE DATE PASSED — CVE-2026-73570 (Zimbra Collaboration). CISA remediation deadline was August 24, 2026; still in catalog.
REJECTED — CVE-2026-73189 (Themeum WP Crowdfunding). Record withdrawn by the CNA.
REJECTED — CVE-2026-78154 (the-momentum open-wearables). Record withdrawn by the CNA.
RESCORED — IBM AIX: 26 CVEs (CVE-2026-17000, CVE-2026-17003, CVE-2026-17006, CVE-2026-17007, CVE-2026-17009, CVE-2026-17024, CVE-2026-17060, CVE-2026-17120, CVE-2026-17138, CVE-2026-17168, CVE-2026-17422, CVE-2026-17423, CVE-2026-17424, CVE-2026-17436, CVE-2026-18670, CVE-2026-18716, CVE-2026-18822, CVE-2026-18828, CVE-2026-18832, CVE-2026-18840, CVE-2026-18842, CVE-2026-19437, CVE-2026-19442, CVE-2026-19448, CVE-2026-19653, CVE-2026-19783). CVSS rescored — before/after on each CVE page.
RESCORED — IBM PowerVM Hypervisor: 6 CVEs (CVE-2026-4936, CVE-2026-4937, CVE-2026-15961, CVE-2026-17097, CVE-2026-17414, CVE-2026-18821). CVSS rescored — before/after on each CVE page.
RESCORED — nodejs node: 3 CVEs (CVE-2026-56847, CVE-2026-56850, CVE-2026-58043). CVSS rescored — before/after on each CVE page.
RESCORED — CVE-2026-1615 (jsonpath). CVSS 9.2 → 8.2 (NVD).
RESCORED — CVE-2026-35385 (OpenBSD OpenSSH). CVSS 7.5 → 8.1 (NVD).
RESCORED — CVE-2026-35535 (Sudo project Sudo). CVSS 7.4 → 7.8 (NVD).
RESCORED — CVE-2026-45186 (libexpat project libexpat). CVSS 2.9 → 7.5 (NVD).
RESCORED — CVE-2026-7141 (vLLM). CVSS 6.3 → 2.9 (NVD).
PATCH SHIPPED — Red Hat multicluster engine for Kubernetes 2.10: 9 CVEs (CVE-2026-10059, CVE-2026-19130, CVE-2026-66794, CVE-2026-66795, CVE-2026-73266, CVE-2026-73267, CVE-2026-73268, CVE-2026-73269, CVE-2026-75569). Fix versions published.
PATCH SHIPPED — CVE-2026-15809 (Red Hat OpenShift Container Platform 4.22). Fixed in Red Hat OpenShift Container Platform 4.22 0:1.35.6-5.rhaos4.22.git41f610b.el9.
PATCH SHIPPED — CVE-2026-17527 (Red Hat Container Native Virtualization 4.19). Fixed in Red Hat Container Native Virtualization 4.19 1787234290.
ENRICHED — CVE-2021-4090 (Linux kernel). Received CVSS 7.1 and CPE data from NVD.
ENRICHED — CVE-2022-37315. Received CVSS 7.5 and CPE data from NVD.
How to read these box scores · glossary
787 CVEs published. 25 box scores and 375 table rows below; the remaining 387 continue on page 2 — every CVE is listed, nothing truncated.
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N H N H H H 8.6 .0113 64.0 —
AFFECTED Product Versions Fixed adminer unspecified 5.4.3
TIMELINE Jun 22 Reserved by CNA Aug 25 Published (CNA: VulnCheck)
AV AC PR UI S C I A CVSS EPSS %ile KEV N H H N U H H H 6.6 .0071 50.8 —
AFFECTED Product Versions Fixed Events Manager – Calendar, Bookings, Tickets, and more! unspecified —
TIMELINE Jun 30 Reserved by CNA Aug 25 Published (CNA: Wordfence)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P L N N N N 5.8 .0065 48.6 —
AFFECTED Product Versions Fixed SKYSEA Client View Ver.19.300.09h – — SKYMEC IT Manager Ver.2024.005.10a – —
TIMELINE Aug 5 Reserved by CNA Aug 25 Published (CNA: jpcert)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P L N N N N 5.8 .0065 48.6 —
AFFECTED Product Versions Fixed SKYSEA Client View Ver.19.300.09h – — SKYMEC IT Manager Ver.2024.005.10a – —
TIMELINE Aug 5 Reserved by CNA Aug 25 Published (CNA: jpcert)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0063 47.4 —
AFFECTED Product Versions Fixed CM Map Locations – Visualize and share your locations in a few clicks unspecified —
TIMELINE Jul 22 Reserved by CNA Aug 25 Published (CNA: Wordfence)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P L N N N N 5.8 .0061 46.5 —
AFFECTED Product Versions Fixed SKYSEA Client View unspecified — SKYMEC IT Manager 2023.225.03a – —
TIMELINE Aug 5 Reserved by CNA Aug 25 Published (CNA: jpcert)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N H N N 7.1 .0057 44.5 —
AFFECTED Product Versions Fixed grav unspecified 2.0.16
TIMELINE Aug 10 Reserved by CNA Aug 25 Published (CNA: VulnCheck)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N H H H 9.5 .0055 43.8 —
AFFECTED Product Versions Fixed Extension "powermail" 13.0.0 – —
TIMELINE Aug 20 Reserved by CNA Aug 25 Published (CNA: TYPO3)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0052 41.8 —
AFFECTED Product Versions Fixed IE-SR-2TX-WL 1.52 – — IE-SR-2TX-WL-4G-EU 1.67 – — IE-SR-2TX-WL-4G-US-V 1.67 – —
TIMELINE Jul 17 Reserved by CNA Aug 25 Published (CNA: CERTVDE)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0051 41.3 —
AFFECTED Product Versions Fixed zephyr 4.3.0 – —
TIMELINE Jun 24 Reserved by CNA Aug 25 Published (CNA: zephyr)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0050 40.4 —
AFFECTED Product Versions Fixed adminer unspecified 5.4.3
TIMELINE Jun 22 Reserved by CNA Aug 25 Published (CNA: VulnCheck)
AV AC PR UI S C I A CVSS EPSS %ile KEV N H N N U H H H 8.1 .0049 39.7 —
AFFECTED Product Versions Fixed Mane unspecified —
TIMELINE Aug 24 Reserved by CNA Aug 25 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N H N N U H H H 8.1 .0048 39.1 —
AFFECTED Product Versions Fixed Verdure Core unspecified —
TIMELINE Aug 24 Reserved by CNA Aug 25 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N H N N U H H H 8.1 .0048 39.1 —
AFFECTED Product Versions Fixed Shuffle unspecified —
TIMELINE Aug 24 Reserved by CNA Aug 25 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H N N 6.5 .0043 35.3 —
AFFECTED Product Versions Fixed Events Manager – Calendar, Bookings, Tickets, and more! unspecified —
TIMELINE Jul 8 Reserved by CNA Aug 25 Published (CNA: Wordfence)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0042 35.0 —
AFFECTED Product Versions Fixed Extension "HTML5 Video Player vs. Powermail" unspecified —
TIMELINE Aug 20 Reserved by CNA Aug 25 Published (CNA: TYPO3)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N A N N N 2.1 .0042 34.5 —
AFFECTED Product Versions Fixed ash_authentication 4.8.0 – — ash_authentication fe0b4558dbe852fee5d81a460a8355577618a8c8 – 62719710790a150a9eacab9c0a066e0d122d15be
TIMELINE Jul 28 Reserved by CNA Aug 25 Published (CNA: EEF)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H N N 8.7 .0042 34.4 —
AFFECTED Product Versions Fixed GitPython unspecified 3.1.59
TIMELINE Aug 25 Reserved by CNA Aug 25 Published (CNA: VulnCheck)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N L L L 5.5 .0042 34.4 —
AFFECTED Product Versions Fixed framework 4.0 – 4.4.1 deep 4.0 – 4.4.1
TIMELINE Aug 24 Reserved by CNA Aug 25 Published (CNA: VulDB)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0040 33.3 —
AFFECTED Product Versions Fixed GitPython unspecified 3.1.59
TIMELINE Aug 25 Reserved by CNA Aug 25 Published (CNA: VulnCheck)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N L N N 6.3 .0037 29.9 —
AFFECTED Product Versions Fixed Extension "Event management and registration" 9.0.0 – —
TIMELINE Aug 20 Reserved by CNA Aug 25 Published (CNA: TYPO3)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N H H H 8.7 .0036 29.1 —
AFFECTED Product Versions Fixed grav unspecified 4.2.2
TIMELINE Aug 17 Reserved by CNA Aug 25 Published (CNA: VulnCheck)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N H P N P H H N 7.6 .0036 28.6 —
AFFECTED Product Versions Fixed ash_authentication 3.10.5 – — ash_authentication eca8cadea0f1595ed2c10a0c177b1da9aa9e5269 – 8cf8b2d4426172be0900a3505e9491800b951750
TIMELINE Jul 22 Reserved by CNA Aug 25 Published (CNA: EEF)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N A H H H 8.6 .0035 27.3 —
AFFECTED Product Versions Fixed Medical Practice Management System 2.4.2.8 – —
TIMELINE Aug 25 Reserved by CNA Aug 25 Published (CNA: twcert)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N H N N 7.1 .0034 26.8 —
AFFECTED Product Versions Fixed adminer unspecified 5.4.3
TIMELINE Jun 22 Reserved by CNA Aug 25 Published (CNA: VulnCheck)
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-78701 | 6.5 | 26.3 | Red Hat | Red Hat Directory Server 11 | CWE-787 | 389-ds-base: 389-ds-base: cve-2026-11610 incomplete fix may introduce a conne… |
| CVE-2026-10627 | 5.3 | 25.7 | netweblogic | Events Manager – Calendar, Bookings, Tickets, and more! | CWE-862 | Events Manager <= 7.4.0 - Missing Authorization to Unauthenticated Sensitive … |
| CVE-2026-59769 | 8.8 | 25.5 | FURUNO ELECTRIC CO., LTD. | FA-50 | CWE-798 | FA-50 all versions contain hard-coded credentials. An attacker, who knows the… |
| CVE-2026-34968 | 7.2 | 25.4 | vrana | adminer | CWE-22 | Adminer before 5.4.3 Arbitrary File Deletion via SQLite Drop |
| CVE-2026-56096 | 6.3 | 25.3 | TYPO3 | Extension "Apache Solr for TYPO3 - Enterprise Search" | CWE-943 | Information Disclosure in extension "Apache Solr for TYPO3 - Enterprise Searc… |
| CVE-2026-78637 | 6.9 | 24.9 | Fdawgs | node-poppler | CWE-74 | Fdawgs node-poppler Argument Injection index.js pdfUnite argument injection |
| CVE-2026-18323 | 7.2 | 23.2 | wpmudev | Forminator Forms – Contact Form, Payment Form & Custom Form Builder | CWE-79 | Forminator Forms <= 1.57.0.2 - Unauthenticated Stored Cross-Site Scripting vi… |
| CVE-2026-72697 | 7.1 | 22.8 | getgrav | grav | CWE-22 | Grav CMS before 2.0.16 Path Traversal via media_directory |
| CVE-2026-34964 | 6.9 | 22.8 | vrana | adminer | CWE-918 | Adminer before 5.5.0 SSRF via PDO DSN Injection |
| CVE-2026-67578 | 8.7 | 22.1 | FURUNO ELECTRIC CO., LTD. | FA-50 | CWE-306 | FA-50 all versions miss authentication for some configuration. An attacker wi… |
| CVE-2026-77144 | 7.1 | 22.1 | TYPO3 | Extension "Events 2" | CWE-915 | Broken Access Control in extension "Events 2" (events2) |
| CVE-2026-16434 | 2.3 | 22.1 | vrana | adminer | CWE-20 | Adminer before 5.5.1 X-Forwarded-Prefix Backslash Bypass |
| CVE-2026-78477 | 9.8 | 22.0 | MVPThemes | Jawn | CWE-266 | Jawn <= 1.4.2 - Unauthenticated Privilege Escalation |
| CVE-2026-78568 | 9.8 | 22.1 | KlbTheme | Total Donations | CWE-89 | Total Donations <= 2.0.5 - Unauthenticated SQL Injection |
| CVE-2026-19801 | 4.3 | 21.6 | wpdevteam | BetterLinks – Link Shortener, Link Cloaking, Redirects, Affiliate Link Manager & MCP | CWE-862 | BetterLinks <= 3.1.0 - Missing Authorization to Authenticated (Subscriber+) A… |
| CVE-2026-56706 | 6.1 | 21.4 | vrana | adminer | CWE-330 | Adminer before 5.4.3 CSRF Token Secret Recovery via XOR Masking |
| CVE-2026-77139 | 6.0 | 21.2 | TYPO3 | Extension "Mask" | CWE-22 | Path Traversal in extension "Mask" (mask) |
| CVE-2026-66766 | 7.5 | 21.1 | SAP_SE | SAP S/4HANA (Manage Supply Protection) | CWE-1333 | Denial of Service (DoS) in SAP S/4HANA (Manage Supply Protection) |
| CVE-2026-56710 | 9.3 | 20.4 | getgrav | grav | CWE-863 | Grav Login Plugin before 1.0.16 Privilege Escalation via Unlock |
| CVE-2026-10630 | 4.3 | 20.3 | hookandhook | WP Courses LMS – Online Courses Builder, eLearning Courses, Courses Solution, Education Courses | CWE-639 | WP Courses LMS <= 3.2.29 - Insecure Direct Object Reference to Authenticated … |
| CVE-2026-78322 | 6.5 | 20.2 | Red Hat | Red Hat Enterprise Linux 6 | CWE-120 | File-roller: file-roller: stack buffer overflow in parse_progress_line for 7z… |
| CVE-2026-17089 | 6.1 | 19.9 | netweblogic | Events Manager – Calendar, Bookings, Tickets, and more! | CWE-79 | Events Manager <= 7.4.0.1 - Reflected Cross-Site Scripting via 'header_format… |
| CVE-2026-78681 | 8.7 | 19.8 | nltk | nltk | CWE-776 | NLTK before 3.10.3 Entity Expansion DoS via ElementTree |
| CVE-2026-78683 | 9.4 | 19.5 | nltk | nltk | CWE-502 | NLTK before 3.10.0 Remote Code Execution via Unsafe Pickle Deserialization |
| CVE-2026-76839 | 8.7 | 19.0 | getgrav | grav | CWE-522 | Grav before 2.0.16 Information Disclosure via offsetGet |
| CVE-2026-63587 | 8.8 | 18.5 | Weidmueller Interface | IE-SR-2TX-WL-4G-EU | CWE-288 | SMS Password Authorization Bypass via Failed Attempt Counter |
| CVE-2026-56709 | 8.7 | 16.9 | getgrav | grav | CWE-350 | Grav before 3.9.2 Host Header Injection via sendInvitationEmail |
| CVE-2026-56094 | 6.3 | 16.9 | TYPO3 | Extension "Apache Solr for TYPO3 - Enterprise Search" | CWE-943 | Information Disclosure in extension "Apache Solr for TYPO3 - Enterprise Searc… |
| CVE-2026-72700 | 8.7 | 16.7 | getgrav | grav | CWE-208 | Grav before 3.9.1 Timing Attack via Non-Constant-Time Token Comparison |
| CVE-2026-77127 | 6.0 | 16.8 | TYPO3 | Extension "Modules" | CWE-639 | Information Disclosure in extension "Modules" (modules) |
| CVE-2026-77146 | 8.3 | 15.8 | TYPO3 | Extension "femanager" | CWE-862 | Broken Access Control in extension "femanager" (femanager) |
| CVE-2026-56095 | 7.7 | 15.7 | TYPO3 | Extension "Apache Solr for TYPO3 - Enterprise Search" | CWE-502 | Insecure Deserialization in extension "Apache Solr for TYPO3 - Enterprise Sea… |
| CVE-2026-19892 | 8.8 | 15.6 | Infused Addons | InfusedWoo Pro | CWE-862 | InfusedWoo Pro <= 5.1.18 - Authenticated (Subscriber+) Privilege Escalation v… |
| CVE-2026-78682 | 8.7 | 15.5 | nltk | nltk | CWE-918 | NLTK before 3.10.3 SSRF Protection Bypass via Proxy |
| CVE-2026-56093 | 6.3 | 15.1 | TYPO3 | Extension "Apache Solr for TYPO3 - Enterprise Search" | CWE-639 | Broken Access Control in extension "Apache Solr for TYPO3 - Enterprise Search… |
| CVE-2026-76846 | 8.7 | 15.0 | getgrav | grav | CWE-522 | Grav before 2.0.16 Information Disclosure via Twig Sandbox |
| CVE-2026-18328 | 7.2 | 15.0 | wpmudev | Forminator Forms – Contact Form, Payment Form & Custom Form Builder | CWE-79 | Forminator Forms <= 1.57.0 - Unauthenticated DOM-Based Cross-Site Scripting v… |
| CVE-2026-72698 | 7.1 | 15.0 | getgrav | grav | CWE-200 | Grav CMS before 2.0.16 Information Disclosure via Twig Sandbox Bypass |
| CVE-2026-78679 | 7.1 | 15.0 | gitpython-developers | GitPython | CWE-73 | GitPython before 3.1.59 Arbitrary File Read via TagReference.create |
| CVE-2026-56704 | 5.3 | 15.0 | vrana | adminer | CWE-79 | Adminer before 5.4.3 Cross-Site Scripting via MySQL Version String |
| CVE-2026-77141 | 8.8 | 14.8 | TYPO3 | Extension "Club Directory" | CWE-639 | Broken Access Control in extension "Club Directory" (clubdirectory) |
| CVE-2026-77142 | 8.8 | 14.8 | TYPO3 | Extension "Industry Directory" | CWE-639 | Broken Access Control in extension "Industry Directory" (yellowpages2) |
| CVE-2026-77143 | 8.8 | 14.8 | TYPO3 | Extension "Forum" | CWE-639 | Broken Access Control in extension "Forum" (pforum) |
| CVE-2026-77140 | 8.7 | 14.8 | TYPO3 | Extension "Telephone Directory" | CWE-639 | Broken Access Control in extension "Telephone Directory" (telephonedirectory) |
| CVE-2026-77134 | 8.3 | 14.8 | TYPO3 | Extension "femanager" | CWE-863 | Broken Access Control in extension "femanager" (femanager) |
| CVE-2026-77135 | 8.2 | 14.8 | TYPO3 | Extension "femanager" | CWE-639 | Information Disclosure in extension "femanager" (femanager) |
| CVE-2026-34967 | 5.3 | 14.5 | vrana | adminer | CWE-73 | Adminer sql-log Plugin 5.3.0 through 5.4.2 Arbitrary File Write |
| CVE-2026-18512 | 6.4 | 14.2 | cozmoslabs | TranslatePress – Translate Multilingual sites with AI Translation | CWE-79 | TranslatePress <= 3.2.6 - Authenticated (Subscriber+) Stored Cross-Site Scrip… |
| CVE-2026-77129 | 7.7 | 14.1 | TYPO3 | Extension "Event management and registration" | CWE-1336 | Server-Side Template Injection in extension "Event management and registratio… |
| CVE-2026-77137 | 7.7 | 14.1 | TYPO3 | Extension "Forms Export" | CWE-89 | SQL Injection in extension "Forms Export" (frp_form_answers) |
| CVE-2026-75575 | 6.9 | 13.8 | RocketChat | Rocket.Chat | CWE-204 | Rocket.Chat Missing DDP Rate Limit on the sendForgotPasswordEmail Meteor Method |
| CVE-2026-75982 | 4.4 | 13.6 | thimpress | LearnPress – WordPress LMS Plugin for Create and Sell Online Courses | CWE-862 | LearnPress <= 4.4.4 - Missing Authorization to Authenticated (Editor+) Limite… |
| CVE-2026-78470 | 6.5 | 13.4 | wedevs | WP Project Manager Pro | CWE-89 | WP Project Manager Pro <= 4.0.1 - Authenticated (Subscriber+) SQL Injection |
| CVE-2026-78678 | 7.1 | 13.2 | gitpython-developers | GitPython | CWE-88 | GitPython before 3.1.59 Arbitrary File Read via Repo.blame() |
| CVE-2026-75930 | 4.3 | 13.0 | roxnor | FundEngine – Donation and Crowdfunding Platform | CWE-862 | FundEngine <= 1.8.1 - Missing Authorization to Authenticated (Subscriber+) Ar… |
| CVE-2026-56092 | 7.6 | 12.6 | TYPO3 | Extension "Apache Solr for TYPO3 - Enterprise Search" | CWE-862 | Broken Access Control in extension "Apache Solr for TYPO3 - Enterprise Search… |
| CVE-2026-56707 | 8.3 | 12.5 | getgrav | grav | CWE-862 | Grav Flex Objects 1.4.0 through 1.4.7 Authorization Bypass via Shortcode |
| CVE-2026-18100 | 6.4 | 12.4 | roxnor | MetForm – Contact Form, Survey, Quiz, Conditional Forms, Form Templates & Custom Form Builder for Elementor | CWE-79 | MetForm <= 4.1.8 - Authenticated (Contributor+) Stored Cross-Site Scripting v… |
| CVE-2026-54920 | 0.0 | 11.5 | AcademySoftwareFoundation | openexr | CWE-190 | OpenEXR: Integer overflow and uninitialized pointer cause invalid delete in O… |
| CVE-2026-34959 | 5.3 | 10.8 | vrana | adminer | CWE-20 | Adminer before 5.5.0 Open Redirect via X-Forwarded-Prefix |
| CVE-2026-77145 | 7.1 | 10.7 | TYPO3 | Extension "Events 2" | CWE-639 | Broken Access Control in extension "Events 2" (events2) |
| CVE-2026-77133 | 6.0 | 10.7 | TYPO3 | Extension "femanager" | CWE-862 | Broken Access Control in extension "femanager" (femanager) |
| CVE-2026-17548 | 5.3 | 10.7 | Checkmk GmbH | Checkmk | CWE-862 | Missing authorization for viewing background jobs |
| CVE-2026-77130 | 5.3 | 10.7 | TYPO3 | Extension "SYSSY - TYPO3 Monitoring & Security Checks" | CWE-613 | Insufficient Session Expiration in extension "SYSSY - TYPO3 Monitoring & Secu… |
| CVE-2026-72699 | 9.3 | 10.4 | getgrav | grav | CWE-203 | Grav Login Plugin before 3.9.1 Email Enumeration via Registration |
| CVE-2026-19851 | 7.7 | 10.3 | Dassault Systèmes | Tuleap Enterprise Edition | CWE-1393 | Use of Default Password vulnerability affecting Tuleap Enterprise Edition fro… |
| CVE-2026-19943 | 6.4 | 9.9 | jegstudio | Gutenverse – WordPress Blocks, Page Builder & Site Editor | CWE-79 | Gutenverse <= 4.0.2 - Authenticated (Contributor+) Stored Cross-Site Scriptin… |
| CVE-2026-75019 | 6.4 | 9.9 | cozythemes | Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 700+ Patterns, 58 Blocks & Templates | CWE-79 | Cozy Blocks <= 2.2.16 - Authenticated (Contributor+) Stored Cross-Site Script… |
| CVE-2026-76063 | 6.4 | 9.9 | roxnor | FundEngine – Donation and Crowdfunding Platform | CWE-79 | FundEngine <= 1.8.1 - Authenticated (Subscriber+) Stored Cross-Site Scripting… |
| CVE-2026-78656 | 2.1 | 9.8 | itsourcecode | Sales and Inventory System | CWE-74 | itsourcecode Sales and Inventory System cust_del.php sql injection |
| CVE-2025-9878 | 6.4 | 9.0 | buildwps | PPWP – Password Protect Pages | CWE-79 | Password Protect WordPress Lite <= 1.9.21 - Authenticated (Contributor+) Stor… |
| CVE-2026-78563 | 7.2 | 8.7 | WPDeveloper | NotificationX Pro | CWE-79 | NotificationX Pro <= 3.1.4 - Unauthenticated Stored Cross-Site Scripting |
| CVE-2026-13215 | 6.8 | 7.8 | zephyrproject | zephyr | CWE-787 | Zephyr ext2 mount: unvalidated superblock block size causes out-of-bounds wri… |
| CVE-2026-12561 | 6.4 | 7.4 | tagDiv | tagDiv Composer | CWE-79 | tagDiv Composer <= 5.4.5 - Authenticated (Contributor+) Stored Cross-Site Scr… |
| CVE-2026-72701 | 6.3 | 7.4 | getgrav | grav | CWE-208 | Grav CMS before 2.0.16 Timing Attack via verifyNonce |
| CVE-2026-56708 | 6.9 | 6.9 | getgrav | grav | CWE-367 | Grav API Plugin before 1.0.16 SSRF via DNS Rebinding |
| CVE-2026-59183 | 5.5 | 6.2 | AcademySoftwareFoundation | openexr | CWE-190 | OpenEXR: Signed Integer Overflow Leading to Out-of-Bounds Memory Access in De… |
| CVE-2026-66109 | 8.5 | 5.5 | Sky Co., LTD. | SKYSEA Client View | CWE-862 | A missing authorization vulnerability exists in SKYSEA Client View and SKYMEC… |
| CVE-2026-69665 | 8.5 | 5.5 | Sky Co., LTD. | SKYSEA Client View | CWE-276 | SKYSEA Client View and SKYMEC IT Manager contain an issue with incorrect defa… |
| CVE-2026-78466 | 4.3 | 5.5 | Fluent Boars | Fluent Boards Pro | CWE-639 | Fluent Boards Pro <= 2.0.11 - Authenticated (Subscriber+) Insecure Direct Obj… |
| CVE-2026-78467 | 4.3 | 5.5 | Fluent Support | Fluent Support Pro | CWE-862 | Fluent Support Pro <= 2.3.1 - Missing Authorization |
| CVE-2026-77131 | 5.3 | 4.6 | TYPO3 | Extension "SYSSY - TYPO3 Monitoring & Security Checks" | CWE-319 | Cleartext Transmission of Sensitive Information in extension "SYSSY - TYPO3 M… |
| CVE-2026-72696 | 8.6 | 3.8 | getgrav | grav | CWE-59 | Grav CMS before 2.0.16 Symlink Following via createLockFile |
| CVE-2026-78638 | 1.9 | 3.3 | peerigon | unzip-crx | CWE-22 | peerigon unzip-crx/unzip-crx-3 Archive Extraction index.js unzip path traversal |
| CVE-2026-78675 | 8.6 | 2.2 | gitpython-developers | GitPython | CWE-73 | GitPython before 3.1.59 Local File Content Disclosure via .gitmodules |
| CVE-2026-78680 | 8.5 | 2.1 | nltk | nltk | CWE-426 | NLTK before 3.10.3 Arbitrary Code Execution via Graphviz dot Binary |
| CVE-2026-55371 | 6.9 | 1.8 | AcademySoftwareFoundation | openexr | CWE-20 | OpenEXR: OpenEXRCore exr_attr_set_bytes() accepts NULL type_hint with positiv… |
| CVE-2026-55373 | 6.2 | 1.4 | AcademySoftwareFoundation | openexr | CWE-190 | OpenEXR: OpenEXRUtil SampleCountChannel endEdit() can loop forever on UINT_MA… |
| CVE-2026-72702 | 9.3 | 1.1 | getgrav | grav | CWE-346 | Grav CMS before 2.0.16 Origin Validation Bypass via Referer |
| CVE-2026-55059 | 6.1 | 1.1 | AcademySoftwareFoundation | openexr | CWE-787 | OpenEXR: OpenEXRUtil SampleCountChannel row setter heap has an out-of-bounds … |
| CVE-2026-76193 | 10.0 | — | Adobe | Adobe Campaign Classic | CWE-918 | Adobe Campaign Classic (ACC) | Server-Side Request Forgery (SSRF) (CWE-918) |
| CVE-2026-76195 | 10.0 | — | Adobe | Adobe Campaign Classic | CWE-78 | Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements us… |
| CVE-2026-76197 | 10.0 | — | Adobe | Adobe Campaign Classic | CWE-78 | Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements us… |
| CVE-2026-77998 | 10.0 | — | miniorange.com | SAML SSO for Joomla extension for Joomla | CWE-639 | Joomla Extension - miniorange.com - Unauthenticated Authentication Bypass via… |
| CVE-2026-65083 | 9.9 | — | NVIDIA | OpenShell | CWE-184 | NVIDIA OpenShell for Linux contains a vulnerability in its sandbox provisioni… |
| CVE-2026-65093 | 9.9 | — | NVIDIA | OpenShell | CWE-427 | NVIDIA OpenShell for Linux contains a vulnerability where an attacker could c… |
| CVE-2026-16286 | 9.8 | — | TRtek Technological Products Computer Software Hardware Industry and Trade Limited Company | Software Repository Management | CWE-434 | File Upload in TRTEK Software's Software Repository Management |
| CVE-2026-45018 | 9.8 | — | Chainlit | chainlit | CWE-78 | Chainlit: Command injection via MCP stdio transport allows unauthenticated re… |
| CVE-2026-49845 | 9.8 | — | Apache Software Foundation | Apache Hive | CWE-94 | Apache Hive: SQL Injection vulnerability in HiveMetaStore partition-name dire… |
| CVE-2026-55546 | 9.8 | — | QWED-AI | qwed-mcp | CWE-94 | QWED-MCP: Unsafe SymPy `parse_expr()` Remote Code Execution via Unsanitized M… |
| CVE-2026-78570 | 9.8 | — | KlbTheme | Total Donations | CWE-269 | Total Donations <= 2.0.5 - Unauthenticated Privilege Escalation |
| CVE-2026-78909 | 9.6 | — | Chrome | CWE-416 | Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-78937 | 9.6 | — | Chrome | CWE-416 | Use after free in Search in Google Chrome on on Android prior to 152.0.7977.6… | |
| CVE-2026-78939 | 9.6 | — | Chrome | CWE-416 | Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-78945 | 9.6 | — | Chrome | CWE-416 | Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-78951 | 9.6 | — | Chrome | CWE-416 | Use after free in ServiceWorker in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-78964 | 9.6 | — | Chrome | CWE-416 | Use after free in Sync in Google Chrome on on iOS prior to 152.0.7977.65 allo… | |
| CVE-2026-78983 | 9.6 | — | Chrome | CWE-416 | Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-79012 | 9.6 | — | Chrome | CWE-416 | Use after free in Safebrowsing in Google Chrome on on Mac prior to 152.0.7977… | |
| CVE-2026-79047 | 9.6 | — | Chrome | CWE-416 | Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-79052 | 9.6 | — | Chrome | CWE-416 | Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remo… | |
| CVE-2026-79054 | 9.6 | — | Chrome | CWE-416 | Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79056 | 9.6 | — | Chrome | CWE-416 | Use after free in ServiceWorker in Google Chrome prior to 152.0.7977.65 allow… | |
| CVE-2026-79078 | 9.6 | — | Chrome | CWE-416 | Use after free in FedCM in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-79091 | 9.6 | — | Chrome | CWE-416 | Use after free in Bluetooth in Google Chrome on on Mac prior to 152.0.7977.65… | |
| CVE-2026-79128 | 9.6 | — | Chrome | CWE-416 | Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 all… | |
| CVE-2026-79140 | 9.6 | — | Chrome | CWE-416 | Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 all… | |
| CVE-2026-79149 | 9.6 | — | Chrome | CWE-416 | Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-79150 | 9.6 | — | Chrome | CWE-416 | Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 all… | |
| CVE-2026-79200 | 9.6 | — | Chrome | CWE-416 | Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remo… | |
| CVE-2026-79210 | 9.6 | — | Chrome | CWE-416 | Use after free in Audio in Google Chrome on on Android prior to 152.0.7977.65… | |
| CVE-2026-79224 | 9.6 | — | Chrome | CWE-416 | Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79232 | 9.6 | — | Chrome | CWE-416 | Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remo… | |
| CVE-2026-79235 | 9.6 | — | Chrome | CWE-416 | Use after free in WebGL in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-79257 | 9.6 | — | Chrome | CWE-416 | Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-79275 | 9.6 | — | Chrome | CWE-416 | Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a rem… | |
| CVE-2026-79282 | 9.6 | — | Chrome | CWE-416 | Use after free in ANGLE in Google Chrome on on Android prior to 152.0.7977.65… | |
| CVE-2026-79290 | 9.6 | — | Chrome | CWE-416 | Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remo… | |
| CVE-2026-57909 | 9.4 | — | WatchGuard | WatchGuard Agent | CWE-94 | WatchGuard Agent path traversal allows unauthenticated remote code execution |
| CVE-2022-51000 | 9.3 | — | sparklemotion | nokogiri | CWE-416 | Nokogiri before 1.13.2 Multiple Vulnerabilities via libxml2 libxslt |
| CVE-2024-58377 | 9.3 | — | sparklemotion | nokogiri | CWE-427 | Nokogiri before 1.16.5 libxml2 Dependency Update |
| CVE-2024-58378 | 9.3 | — | sparklemotion | nokogiri | CWE-416 | Nokogiri before 1.16.2 Use-After-Free via xmlTextReader |
| CVE-2025-71407 | 9.3 | — | sparklemotion | nokogiri | CWE-787 | Nokogiri before 1.18.3 Stack Buffer Overflow and Use-After-Free |
| CVE-2026-57910 | 9.3 | — | WatchGuard | WatchGuard Agent | CWE-306 | WatchGuard Agent improper authentication allows unauthenticated remote code e… |
| CVE-2026-79657 | 9.3 | — | nltk | nltk | CWE-502 | NLTK before 3.10.3 Remote Code Execution via Unsafe Pickle Deserialization |
| CVE-2026-79675 | 9.3 | — | nltk | nltk | CWE-88 | NLTK before 3.10.3 JVM Argument Injection via Per-Call Options |
| CVE-2026-79774 | 9.3 | — | wintercms | winter | CWE-693 | Winter CMS before 1.2.13 Twig Sandbox Escape via SecurityPolicy |
| CVE-2026-79782 | 9.3 | — | rclone | rclone | CWE-319 | rclone before 1.74.4 Security Token Disclosure via HTTPS to HTTP Redirect |
| CVE-2026-79787 | 9.3 | — | Alluxio | alluxio | CWE-287 | Alluxio through 2.9.5 S3 REST Proxy Authentication Bypass via Unverified Requ… |
| CVE-2026-79911 | 9.3 | — | TOTOLINK | N600R | CWE-119 | TOTOLINK N600R CGI cstecgi.cgi setSystemConfig stack-based overflow |
| CVE-2026-80104 | 9.3 | — | eosphoros-ai | DB-GPT | CWE-22 | DB-GPT 0.8.0 Path Traversal Arbitrary File Write via Skill Upload Filename |
| CVE-2026-80202 | 9.3 | — | kimai | kimai | CWE-863 | Kimai before 2.56.0 Authorization Bypass via TimesheetVoter |
| CVE-2026-78379 | 9.2 | — | Amazon | strands-agents-tools | CWE-1427 | Consent bypass in python_repl tool via batch kwargs forwarding in Amazon Stra… |
| CVE-2026-80138 | 9.2 | — | MacWarrior | clipbucket-v5 | CWE-78 | ClipBucket V5 5.5.1 through 5.5.3-#153 OS Command Injection via Installer php… |
| CVE-2026-55536 | 9.1 | — | MervinPraison | PraisonAI | CWE-284 | Browser Server WebSocket origin validation bypass via unanchored regex (patch… |
| CVE-2026-55640 | 9.1 | — | cbcoutinho | nextcloud-mcp-server | CWE-306 | Nextcloud MCP Server: Unauthenticated `POST /webhooks/nextcloud` allows arbit… |
| CVE-2026-62862 | 9.1 | — | baptisteArno | typebot.io | CWE-307 | TypeBot: Account takeover via brute-forceable 6-digit magic-link code |
| CVE-2026-79664 | 9.1 | — | lin-snow | Ech0 | CWE-613 | Ech0 before 4.7.3 Access Token Revocation Bypass |
| CVE-2022-50999 | 8.8 | — | sparklemotion | nokogiri | CWE-119 | Nokogiri before 1.13.5 Integer Overflow via libxml2 |
| CVE-2026-19949 | 8.8 | — | servmask | All-in-One WP Migration and Backup | CWE-89 | All-in-One WP Migration and Backup <= 7.109 - Unauthenticated Second-Order SQ… |
| CVE-2026-24170 | 8.8 | — | NVIDIA | Unified Fabric Manager Enterprise - GA | CWE-287 | NVIDIA UFM Enterprise contains a vulnerability in the web interface authoriza… |
| CVE-2026-49050 | 8.8 | — | Apache Software Foundation | Apache DolphinScheduler | CWE-863 | Apache DolphinScheduler: General user can mint admin access tokens via /acces… |
| CVE-2026-55541 | 8.8 | — | MervinPraison | PraisonAI | CWE-862 | PraisonAI: `--api-key` flag on `praisonai serve` is not properly enforced |
| CVE-2026-55585 | 8.8 | — | QWED-AI | qwed-verification | CWE-94 | QWED: Authenticated Remote Code Execution via Unsafe SymPy `parse_expr()` |
| CVE-2026-55637 | 8.8 | — | GeiserX | genieacs-mcp | CWE-346 | genieacs-mcp: DNS rebinding reaches local GenieACS MCP Streamable HTTP transport |
| CVE-2026-65091 | 8.8 | — | NVIDIA | OpenShell | CWE-78 | NVIDIA OpenShell for all platforms contains a vulnerability where a malicious… |
| CVE-2026-78899 | 8.8 | — | Chrome | CWE-416 | Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote… | |
| CVE-2026-78944 | 8.8 | — | Chrome | CWE-416 | Use after free in DevTools in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-78990 | 8.8 | — | Chrome | CWE-416 | Use after free in Compositing in Google Chrome prior to 152.0.7977.65 allowed… | |
| CVE-2026-79097 | 8.8 | — | Chrome | CWE-416 | Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote… | |
| CVE-2026-79119 | 8.8 | — | Chrome | CWE-416 | Use after free in PDF in Google Chrome prior to 152.0.7977.65 allowed a remot… | |
| CVE-2026-79187 | 8.8 | — | Chrome | CWE-416 | Use after free in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-79195 | 8.8 | — | Chrome | CWE-416 | Use after free in Script in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-79197 | 8.8 | — | Chrome | CWE-416 | Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote… | |
| CVE-2026-79198 | 8.8 | — | Chrome | CWE-416 | Use after free in Platform in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-79202 | 8.8 | — | Chrome | CWE-416 | Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed … | |
| CVE-2026-79244 | 8.8 | — | Chrome | CWE-416 | Use after free in Animation in Google Chrome prior to 152.0.7977.65 allowed a… | |
| CVE-2026-79266 | 8.8 | — | Chrome | CWE-416 | Use after free in DevTools in Google Chrome prior to 152.0.7977.65 allowed a … | |
| CVE-2026-79662 | 8.8 | — | lin-snow | Ech0 | CWE-601 | Ech0 before 4.7.3 OAuth Redirect URI Validation Bypass |
| CVE-2026-79674 | 8.8 | — | nltk | nltk | CWE-73 | NLTK 3.10.2 Path Traversal via corpus-reader constructors |
| CVE-2021-47996 | 8.7 | — | sparklemotion | nokogiri | CWE-119 | Nokogiri before 1.11.4 Multiple Vulnerabilities via libxml2 |
| CVE-2022-50998 | 8.7 | — | sparklemotion | nokogiri | CWE-476 | Nokogiri before 1.13.9 Multiple Vulnerabilities via libxml2 |
| CVE-2023-54354 | 8.7 | — | sparklemotion | nokogiri | CWE-476 | Nokogiri before 1.14.3 Null Pointer Dereference via libxml2 |
| CVE-2025-71346 | 8.7 | — | sparklemotion | nokogiri | CWE-125 | Nokogiri before 1.18.8 Heap Buffer Under-read via XML Schema |
| CVE-2025-71406 | 8.7 | — | sparklemotion | nokogiri | CWE-416 | Nokogiri before 1.18.4 Use-After-Free via libxslt |
| CVE-2026-12600 | 8.7 | — | Poppler | Innodata Labs | CWE-400 | Uncontrolled memory usage in Innodata Labs’ Poppler JPX decoderUncontrolled m… |
| CVE-2026-57863 | 8.7 | — | crater-invoice-inc | crater | CWE-22 | Crater Invoice 6.0.6 Path Traversal RCE via update/unzip endpoint |
| CVE-2026-59335 | 8.7 | — | Cloud Foundry | UAA | CWE-178 | Case-Sensitive Authorization Check Bypass via Identity Zone ID Case Manipulat… |
| CVE-2026-62865 | 8.7 | — | baptisteArno | typebot.io | CWE-73 | TypeBot: Arbitrary server file read via Send Email block attachment path |
| CVE-2026-63403 | 8.7 | — | contribsys | faktory | CWE-248 | Faktory: Unrecovered panic in command handlers allows full-server denial of s… |
| CVE-2026-77357 | 8.7 | — | mesop-dev | mesop | CWE-400 | Mesop: DoS in /hot-reload endpoint allows unauthenticated attacker to exhaust… |
| CVE-2026-79658 | 8.7 | — | lin-snow | Ech0 | CWE-400 | Ech0 before 5.0.1 Denial of Service via Accept-Language |
| CVE-2026-79665 | 8.7 | — | lin-snow | Ech0 | CWE-862 | Ech0 before 4.5.1 Authorization Bypass via Session Tokens |
| CVE-2026-79769 | 8.7 | — | sparklemotion | nokogiri | CWE-843 | Nokogiri before 1.19.4 Invalid Memory Read via initialize_copy_with_args |
| CVE-2026-79770 | 8.7 | — | sparklemotion | nokogiri | CWE-1333 | Nokogiri before 1.19.3 ReDoS via CSS selector tokenizer |
| CVE-2026-80049 | 8.7 | — | airbytehq | airbyte-platform | CWE-639 | Airbyte Platform through 2.0.0 Cross-Workspace Authorization Bypass via Calle… |
| CVE-2026-80191 | 8.7 | — | GROWI, Inc. | GROWI | CWE-862 | GROWI before 8.0.2 Missing Authorization on Attachment Retrieval for Unauthen… |
| CVE-2026-80193 | 8.7 | — | kimai | kimai | CWE-862 | Kimai before 2.62.0 Authorization Bypass via QuickEntry |
| CVE-2026-80194 | 8.7 | — | kimai | kimai | CWE-200 | Kimai before 2.64.0 Missing Authorization via ProjectViewController export |
| CVE-2026-80195 | 8.7 | — | kimai | kimai | CWE-841 | Kimai before 2.63.0 Team Membership Removal via API |
| CVE-2026-80196 | 8.7 | — | kimai | kimai | CWE-640 | Kimai before 2.58.0 Authentication Bypass via Password Reset Link |
| CVE-2026-80197 | 8.7 | — | kimai | kimai | CWE-639 | Kimai before 2.57.0 Improper Authorization via Favorite Endpoints |
| CVE-2026-80198 | 8.7 | — | kimai | kimai | CWE-693 | Kimai before 2.56.0 Information Disclosure via config() Twig Function |
| CVE-2026-12878 | 8.6 | — | Octopus Deploy | Codefresh | CWE-269 | In affected versions of the Codefresh platform an authenticated user can util… |
| CVE-2026-52776 | 8.6 | — | oscal-compass | compliance-trestle | CWE-184 | Trestle URLSecurityValidator SSRF allowlist bypass via IPv4-mapped IPv6 and 0… |
| CVE-2026-55534 | 8.6 | — | MervinPraison | PraisonAI | CWE-306 | PraisonAI serve agents --api-key is ignored, allowing unauthenticated remote … |
| CVE-2026-55539 | 8.6 | — | MervinPraison | PraisonAI | CWE-306 | PraisonAI: [Auth Bypass] PraisonAI async Jobs API (`/api/v1/runs`) has no aut… |
| CVE-2026-55557 | 8.6 | — | That1Drifter | browse-mcp | CWE-22 | browse-mcp: Arbitrary file write via unconfined download and state paths |
| CVE-2026-55580 | 8.6 | — | sonirico | mcp-shell | CWE-78 | mcp-shell — Security Disabled by Default in Bare-Binary Deploy Path + Shell I… |
| CVE-2026-75496 | 8.6 | — | Webkul | QloApps | CWE-434 | Webkul QloApps improper file upload validation |
| CVE-2026-75497 | 8.6 | — | Webkul | QloApps | CWE-89 | Webkul QloApps SQL injection |
| CVE-2026-75498 | 8.6 | — | Webkul | QloApps | CWE-89 | Webkul QloApps SQL injection |
| CVE-2026-79784 | 8.6 | — | gemelo-ai | vocos | CWE-470 | Vocos through 0.1.0 Arbitrary Code Execution via Unrestricted class_path in M… |
| CVE-2026-80192 | 8.6 | — | better-auth | sso | CWE-287 | better-auth SSO before 1.6.27 Domain Ownership Authentication Bypass |
| CVE-2026-16233 | 8.5 | — | NI | LabVIEW | CWE-787 | Out-of-Bounds Write Vulnerability in NI LabVIEW when loading VI |
| CVE-2026-16234 | 8.5 | — | NI | LabVIEW | CWE-125 | Out-of-Bounds Read Vulnerability in NI LabVIEW when loading VI |
| CVE-2026-55526 | 8.5 | — | MervinPraison | PraisonAI | CWE-350 | PraisonAI: SSRF protection bypass in `spider_tools._host_is_blocked()` via DN… |
| CVE-2026-64201 | 8.5 | — | NI | LabVIEW | CWE-125 | Out-of-Bounds Read Vulnerability in NI LabVIEW when loading VI |
| CVE-2026-64202 | 8.5 | — | NI | LabVIEW | CWE-125 | Out-of-Bounds Read Vulnerability in NI LabVIEW when loading VI |
| CVE-2026-64203 | 8.5 | — | NI | LabVIEW | CWE-125 | Out-of-Bounds Read Vulnerability in NI LabVIEW when loading VI |
| CVE-2026-64204 | 8.5 | — | NI | LabVIEW | CWE-787 | Out-of-Bounds Write Vulnerability in NI LabVIEW when loading VI |
| CVE-2026-65092 | 8.5 | — | NVIDIA | OpenShell | CWE-22 | NVIDIA OpenShell Sandbox for Linux contains a vulnerability where an attacker… |
| CVE-2026-70551 | 8.5 | — | jfrog | artifactory | CWE-918 | Server-Side Request Forgery Via VCS remote download in JFrog Artifactory |
| CVE-2026-79673 | 8.5 | — | lin-snow | Ech0 | CWE-863 | Ech0 before 4.4.3 Scope Bypass via profile:read Token |
| CVE-2026-55581 | 8.4 | — | sonirico | mcp-shell | CWE-78 | mcp-shell: Secure Mode Allowlist Bypass via Default `/bin/bash` Executable |
| CVE-2026-55582 | 8.4 | — | sonirico | mcp-shell | CWE-78 | mcp-shell: Secure Mode Allowlist Bypass via Git Shell Alias |
| CVE-2026-79659 | 8.3 | — | lin-snow | Ech0 | CWE-918 | Ech0 before 4.7.3 Server-Side Request Forgery via fetchPeerConnectInfo |
| CVE-2026-24262 | 8.2 | — | NVIDIA | DGX Spark | CWE-787 | NVIDIA DGX Spark contains a vulnerability in the system firmware, where a pri… |
| CVE-2026-24263 | 8.2 | — | NVIDIA | DGX Spark | CWE-476 | NVIDIA DGX Spark contains a vulnerability in the system firmware, where a pri… |
| CVE-2026-47626 | 8.2 | — | NVIDIA | DGX Spark | CWE-787 | NVIDIA DGX Spark contains a vulnerability in the system firmware, where a pri… |
| CVE-2026-55528 | 8.2 | — | MervinPraison | PraisonAI | CWE-306 | praisonaiagents: AgentServer declares auth_token but never enforces it on any… |
| CVE-2026-55533 | 8.2 | — | MervinPraison | PraisonAI | CWE-287 | PraisonAI: Authentication fail-open in Recipe server allows unauthenticated a… |
| CVE-2026-55571 | 8.2 | — | djust-org | djust | CWE-285 | djust authentication bypass: a login_required / on_mount LiveView mount redir… |
| CVE-2026-79676 | 8.2 | — | nltk | nltk | CWE-22 | NLTK before 3.10.3 Path Traversal via Symlink Bypass |
| CVE-2026-79785 | 8.2 | — | CVHub520 | X-AnyLabeling | CWE-295 | X-AnyLabeling before 4.0.0-beta.9 Improper Certificate Validation in Model Do… |
| CVE-2026-16231 | 8.1 | — | hbs | hbs | CWE-79 | hbs vulnerable to XSS via registerAsyncHelper output-escaping bypass |
| CVE-2026-65081 | 8.1 | — | NVIDIA | NemoClaw | CWE-494 | NVIDIA NemoClaw for Linux contains a vulnerability in its installation proces… |
| CVE-2026-65084 | 8.1 | — | NVIDIA | NemoClaw | CWE-295 | NVIDIA NemoClaw for Linux contains a vulnerability in its deployment process,… |
| CVE-2026-65098 | 8.1 | — | NVIDIA | NemoClaw | CWE-1390 | NVIDIA NemoClaw for Linux contains a vulnerability in its remote-access helpe… |
| CVE-2026-65105 | 8.1 | — | NVIDIA | NemoClaw | CWE-306 | NVIDIA NemoClaw for Linux contains a vulnerability in its inference server se… |
| CVE-2026-78572 | 8.1 | — | unknown | Kalles Addons | CWE-502 | Kalles Addons <= 1.0.6 - Unauthenticated PHP Object Injection |
| CVE-2026-79027 | 8.1 | — | Chrome | CWE-416 | Use after free in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a re… | |
| CVE-2026-24169 | 8.0 | — | NVIDIA | Unified Fabric Manager Enterprise - GA | CWE-77 | NVIDIA UFM Enterprise contains a vulnerability in the plugin management API, … |
| CVE-2026-48417 | 7.8 | — | Adobe | Adobe Substance 3D Sampler | CWE-121 | Substance3D - Sampler | Stack-based Buffer Overflow (CWE-121) |
| CVE-2026-48418 | 7.8 | — | Adobe | Adobe Substance 3D Sampler | CWE-787 | Substance3D - Sampler | Out-of-bounds Write (CWE-787) |
| CVE-2026-48419 | 7.8 | — | Adobe | Adobe Substance 3D Sampler | CWE-787 | Substance3D - Sampler | Out-of-bounds Write (CWE-787) |
| CVE-2026-48420 | 7.8 | — | Adobe | Adobe Substance 3D Sampler | CWE-787 | Substance3D - Sampler | Out-of-bounds Write (CWE-787) |
| CVE-2026-48421 | 7.8 | — | Adobe | Adobe Substance 3D Sampler | CWE-787 | Substance3D - Sampler | Out-of-bounds Write (CWE-787) |
| CVE-2026-48422 | 7.8 | — | Adobe | Adobe Substance 3D Sampler | CWE-122 | Substance3D - Sampler | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-48423 | 7.8 | — | Adobe | Adobe Substance 3D Sampler | CWE-122 | Substance3D - Sampler | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-48424 | 7.8 | — | Adobe | Adobe Substance 3D Sampler | CWE-122 | Substance3D - Sampler | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-48425 | 7.8 | — | Adobe | Adobe Substance 3D Sampler | CWE-122 | Substance3D - Sampler | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-48426 | 7.8 | — | Adobe | Adobe Substance 3D Designer | CWE-787 | Substance3D - Designer | Out-of-bounds Write (CWE-787) |
| CVE-2026-48427 | 7.8 | — | Adobe | Adobe Substance 3D Designer | CWE-787 | Substance3D - Designer | Out-of-bounds Write (CWE-787) |
| CVE-2026-48428 | 7.8 | — | Adobe | Adobe Substance 3D Designer | CWE-122 | Substance3D - Designer | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-48430 | 7.8 | — | Adobe | Adobe Substance 3D Designer | CWE-122 | Substance3D - Designer | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-48431 | 7.8 | — | Adobe | Adobe Substance 3D Designer | CWE-122 | Substance3D - Designer | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-48432 | 7.8 | — | Adobe | Adobe Substance 3D Designer | CWE-122 | Substance3D - Designer | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-48433 | 7.8 | — | Adobe | Adobe Substance 3D Designer | CWE-122 | Substance3D - Designer | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-54757 | 7.8 | — | oscal-compass | compliance-trestle | CWE-94 | Trestle has Server-Side Template Injection (SSTI) via Recursive Template Re-e… |
| CVE-2026-57170 | 7.8 | — | oscal-compass | compliance-trestle | CWE-94 | Trestle SSTI in Jinja2 include tags allows arbitrary code execution (Incomple… |
| CVE-2026-65089 | 7.8 | — | NVIDIA | NemoClaw | CWE-78 | NVIDIA NemoClaw for Linux contains a vulnerability in its status and logs plu… |
| CVE-2026-65090 | 7.8 | — | NVIDIA | NemoClaw | CWE-78 | NVIDIA NemoClaw for Linux contains a vulnerability in its NIM management comp… |
| CVE-2026-65096 | 7.8 | — | NVIDIA | NemoClaw | CWE-78 | NVIDIA NemoClaw for Linux contains a vulnerability in the Telegram bridge com… |
| CVE-2026-65099 | 7.8 | — | NVIDIA | NemoClaw | CWE-78 | NVIDIA NemoClaw for Linux contains a vulnerability in its command-line interf… |
| CVE-2026-71382 | 7.8 | — | Adobe | Adobe Substance 3D Sampler | CWE-787 | Substance3D - Sampler | Out-of-bounds Write (CWE-787) |
| CVE-2026-71399 | 7.8 | — | Adobe | Adobe XD | CWE-120 | Adobe XD | Buffer Overflow (CWE-120) |
| CVE-2026-71564 | 7.8 | — | Adobe | Adobe Substance 3D Designer | CWE-787 | Substance3D - Designer | Out-of-bounds Write (CWE-787) |
| CVE-2026-75749 | 7.8 | — | Adobe | Adobe Substance 3D Painter | CWE-787 | Substance3D - Painter | Out-of-bounds Write (CWE-787) |
| CVE-2026-75750 | 7.8 | — | Adobe | Adobe Substance 3D Painter | CWE-122 | Substance3D - Painter | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-75766 | 7.8 | — | Adobe | Adobe Substance 3D Painter | CWE-122 | Substance3D - Painter | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-75767 | 7.8 | — | Adobe | Adobe Substance 3D Painter | CWE-122 | Substance3D - Painter | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-75768 | 7.8 | — | Adobe | Adobe Substance 3D Painter | CWE-426 | Substance3D - Painter | Untrusted Search Path (CWE-426) |
| CVE-2026-75769 | 7.8 | — | Adobe | Adobe Substance 3D Painter | CWE-122 | Substance3D - Painter | Heap-based Buffer Overflow (CWE-122) |
| CVE-2026-75770 | 7.8 | — | Adobe | Adobe Substance 3D Painter | CWE-787 | Substance3D - Painter | Out-of-bounds Write (CWE-787) |
| CVE-2026-79655 | 7.8 | — | Red Hat | Red Hat Enterprise Linux 10 | CWE-59 | Sos: sos: path traversal in sos clean tar extraction via unvalidated symlink/… |
| CVE-2026-79992 | 7.8 | — | Red Hat | Red Hat Enterprise Linux 10 | CWE-78 | Emacs: local shell command injection through the user field in emacs tramp |
| CVE-2026-57171 | 7.7 | — | oscal-compass | compliance-trestle | CWE-22 | Trestle is vulnerable to arbitrary file write via path traversal in author ge… |
| CVE-2026-55532 | 7.6 | — | MervinPraison | PraisonAI | CWE-346 | PraisonAI: Origin-validation bypass (startswith prefix match) enables unauthe… |
| CVE-2026-69104 | 7.6 | — | jfrog | artifactory | CWE-862 | Potential unauthorized repository migration in JFrog Artifactory |
| CVE-2026-80182 | 7.6 | — | OpenStack | Keystone | CWE-863 | In OpenStack Keystone before 29.0.3, tokens obtained via OAuth1 access token,… |
| CVE-2026-80184 | 7.6 | — | OpenStack | Keystone | CWE-863 | In OpenStack Keystone before 29.0.3, tokens obtained via delegated authentica… |
| CVE-2026-80186 | 7.6 | — | Red Hat | Red Hat Enterprise Linux 10 | CWE-120 | Bluez: stack overflow in name2utf8 causes dos and potential code execution |
| CVE-2026-14457 | 7.5 | — | OpenSSL | OpenSSL | CWE-476 | RPK Server Signature Algorithm Selection Can Dereference a Missing Certificate |
| CVE-2026-18798 | 7.5 | — | OpenSSL | OpenSSL | CWE-415 | QUIC Server May Trigger Double Free When Processing INITIAL Packet |
| CVE-2026-54874 | 7.5 | — | OpenSSL | OpenSSL | CWE-405 | Excessive Memory Use Buffering DTLS Records for a Future Epoch |
| CVE-2026-55099 | 7.5 | — | collective | icalendar | CWE-400 | icalendar: Algorithmic Complexity in Equality |
| CVE-2026-55525 | 7.5 | — | MervinPraison | PraisonAI | CWE-918 | PraisonAI: SSRF via redirect-following in praisonaiagents web_crawl |
| CVE-2026-55553 | 7.5 | — | node-modules | urllib | CWE-200 | urllib: Cross-origin redirects preserve credential-bearing request headers, l… |
| CVE-2026-55620 | 7.5 | — | GOVCERT-LU | eml_parser | CWE-770 | eml_parser: DoS via deeply nested parens in Received headers |
| CVE-2026-63072 | 7.5 | — | OpenSSL | OpenSSL | CWE-787 | Heap Buffer Overflow in CMS Key Unwrapping |
| CVE-2026-63075 | 7.5 | — | OpenSSL | OpenSSL | CWE-770 | QUIC ACK-only Packet Retention Can Cause Memory Exhaustion |
| CVE-2026-63076 | 7.5 | — | OpenSSL | OpenSSL | CWE-476 | Invalid Pointer Dereference in CMP Server via Crafted protectionAlg |
| CVE-2026-65097 | 7.5 | — | NVIDIA | NemoClaw | CWE-494 | NVIDIA NemoClaw for Linux contains a vulnerability in its installation script… |
| CVE-2026-71360 | 7.5 | — | Adobe | C2PA Tool | CWE-400 | CAI Content Credentials | Uncontrolled Resource Consumption (CWE-400) |
| CVE-2026-71442 | 7.5 | — | Adobe | C2PA Tool | CWE-191 | CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191) |
| CVE-2026-71443 | 7.5 | — | Adobe | C2PA Tool | CWE-20 | CAI Content Credentials | Improper Input Validation (CWE-20) |
| CVE-2026-74932 | 7.5 | — | Unknown | WP Fastest Cache | — | WP Fastest Cache 0.9.0.3 - 1.5.0 - Unauthenticated Stored XSS via Host Header… |
| CVE-2026-77996 | 7.5 | — | yootheme.com | YOOtheme Pro extension for Joomla | CWE-79 | Joomla Extension - yootheme.com - Authenticated, privileged stored XSS in YOO… |
| CVE-2026-78576 | 7.5 | — | Readabler | Readabler | CWE-89 | Readabler < 2.0.18 - Unauthenticated SQL Injection |
| CVE-2026-41707 | 7.4 | — | Spring | Spring Security | CWE-294 | Spring Security DPoPProofJwtDecoderFactory vulnerable to DPoP Proof Replay |
| CVE-2026-55538 | 7.3 | — | MervinPraison | PraisonAI | CWE-306 | PraisonAI: [Auth Bypass] `praisonai serve agents --api-key` is silently ignor… |
| CVE-2026-63404 | 7.3 | — | contribsys | faktory | CWE-377 | Faktory: Insecure predictable /tmp/redis.conf enables local Redis config hija… |
| CVE-2026-75037 | 7.3 | — | ilya-zlobintsev | LACT | CWE-290 | Polkit authentication bypass in LACT |
| CVE-2026-45019 | 7.2 | — | Chainlit | chainlit | CWE-918 | Chainlit: SSRF via MCP SSE and streamable-http transports allows unauthentica… |
| CVE-2026-75971 | 7.2 | — | roxnor | ShopEngine Elementor WooCommerce Builder Addon – All in One WooCommerce Solution with eCommerce Templates & Woo Widgets | CWE-269 | ShopEngine Elementor WooCommerce Builder Addon <= 4.9.4 - Authenticated (Shop… |
| CVE-2026-79667 | 7.2 | — | lin-snow | Ech0 | CWE-285 | Ech0 before 4.4.3 Authentication Bypass via Scope Enforcement |
| CVE-2026-55527 | 7.1 | — | MervinPraison | PraisonAI | CWE-22 | PraisonAI: Arbitrary file write via unsanitized `user_id` in `FileMemory.__in… |
| CVE-2026-55537 | 7.1 | — | MervinPraison | PraisonAI | CWE-367 | PraisonAI: Webhook SSRF via DNS fail-open in `JobSubmitRequest.validate_webho… |
| CVE-2026-55540 | 7.1 | — | MervinPraison | PraisonAI | CWE-22 | PraisonAI: [Path Traversal] agent tools escape the configured workspace via s… |
| CVE-2026-55609 | 7.1 | — | ruvnet | sublinear-time-solver | CWE-73 | sublinear-time-solver: Arbitrary file write in consciousness-explorer / subli… |
| CVE-2026-59184 | 7.1 | — | AcademySoftwareFoundation | openexr | CWE-416 | OpenEXR: OpenEXRUtil FlatImageChannel row nonzero dataWindow heap OOB write |
| CVE-2026-59186 | 7.1 | — | AcademySoftwareFoundation | openexr | CWE-122 | OpenEXR: Heap out-of-bounds write in TiledRgbaInputFile via integer overflow … |
| CVE-2026-59187 | 7.1 | — | AcademySoftwareFoundation | openexr | CWE-122 | OpenEXR: exrmetrics deep pixelmode heap buffer overflow |
| CVE-2026-59189 | 7.1 | — | AcademySoftwareFoundation | openexr | CWE-125 | OpenEXR: Out-of-bounds read in DeepImageChannel::row() for non-zero dataWindo… |
| CVE-2026-59981 | 7.1 | — | AcademySoftwareFoundation | openexr | CWE-125 | OpenEXR: Heap OOB read in SampleCountChannel row when using nonzero dataWindow |
| CVE-2026-59982 | 7.1 | — | AcademySoftwareFoundation | openexr | CWE-190 | OpenEXR: DWAA InputFile AC buffer overflow on ILP32 platforms |
| CVE-2026-68513 | 7.1 | — | AcademySoftwareFoundation | openexr | CWE-122 | OpenEXR: Heap buffer overflow in PyOpenEXR from literal/prefixed RGB channel … |
| CVE-2026-68515 | 7.1 | — | AcademySoftwareFoundation | openexr | CWE-122 | OpenEXR: Heap out-of-bounds write in exrmultiview with subsampled channel union |
| CVE-2026-79666 | 7.1 | — | lin-snow | Ech0 | CWE-862 | Ech0 before 4.4.3 Missing Authorization via dashboard log endpoints |
| CVE-2026-79775 | 7.1 | — | rclone | rclone | CWE-129 | rclone Archive Backend SquashFS Parser Denial of Service |
| CVE-2026-79788 | 7.1 | — | dradis | dradis-ce | CWE-918 | Dradis Community Edition 5.1.0 through 5.2.0 Server-Side Request Forgery via … |
| CVE-2026-80050 | 7.1 | — | continew-org | continew-admin | CWE-434 | ContiNew Admin through 4.1.0 Missing Authorization and File-Type Allowlist on… |
| CVE-2026-80189 | 7.1 | — | perber | leafwiki | CWE-409 | LeafWiki 0.10.0 through 0.12.0 Uncontrolled Resource Consumption via Unbounde… |
| CVE-2026-65082 | 7.0 | — | NVIDIA | NemoClaw | CWE-94 | NVIDIA NemoClaw for Linux contains a vulnerability in its migration command, … |
| CVE-2026-79672 | 7.0 | — | lin-snow | Ech0 | CWE-862 | Ech0 before 4.4.3 Authentication Bypass via Comment Panel |
| CVE-2026-79786 | 7.0 | — | coroot | coroot | CWE-601 | Coroot 1.20.2 through 1.24.5 Unvalidated Redirect URI in MCP OAuth Client Reg… |
| CVE-2026-18444 | 6.9 | — | NI | LabVIEW | CWE-195 | Integer Conversion Vulnerability Resulting in an Out of Bounds Read in NI Lab… |
| CVE-2026-18445 | 6.9 | — | NI | LabVIEW | CWE-190 | Integer Overflow Vulnerability Resulting in an Out of Bounds Write in NI LabVIEW |
| CVE-2026-53965 | 6.9 | — | modelcontextprotocol | php-sdk | CWE-400 | MCP PHP SDK: Unbounded SSE buffer in HttpTransport enables client-side denial… |
| CVE-2026-55529 | 6.9 | — | MervinPraison | PraisonAI | CWE-306 | PraisonAI: Origin validation bypass in MCP HTTP Stream transport allows brows… |
| CVE-2026-75038 | 6.9 | — | ilya-zlobintsev | LACT | CWE-61 | Predictable temporary file in /tmp allows symlink attack in LACT |
| CVE-2026-78684 | 6.9 | — | vllm-project | vllm | CWE-400 | vLLM before 0.27.0 Denial of Service via DeepStream Backend |
| CVE-2026-79660 | 6.9 | — | lin-snow | Ech0 | CWE-200 | Ech0 before 4.7.3 Email Disclosure via Public API |
| CVE-2026-79661 | 6.9 | — | lin-snow | Ech0 | CWE-770 | Ech0 before 4.7.3 Unauthenticated fav_count Modification |
| CVE-2026-79668 | 6.9 | — | lin-snow | Ech0 | CWE-306 | Ech0 before 4.7.3 Unauthenticated Like Endpoint Metric Inflation |
| CVE-2026-79771 | 6.9 | — | sparklemotion | nokogiri | CWE-401 | Nokogiri before 1.19.3 Memory Leak via XSLT Transform |
| CVE-2026-79772 | 6.9 | — | sparklemotion | nokogiri | CWE-252 | Nokogiri before 1.19.1 Unchecked Return Value canonicalize |
| CVE-2026-79773 | 6.9 | — | wintercms | winter | CWE-22 | Winter CMS before 1.2.13 Local File Inclusion via JavaScript |
| CVE-2026-79776 | 6.9 | — | rclone | rclone | CWE-200 | rclone before 1.75.0 Authentication Bypass via pprof |
| CVE-2026-79781 | 6.9 | — | rclone | rclone | CWE-22 | rclone serve s3 Path Traversal via dot-dot object keys |
| CVE-2026-24167 | 6.8 | — | NVIDIA | Unified Fabric Manager Enterprise - GA | CWE-77 | NVIDIA UFM Enterprise contains a vulnerability in the user management compone… |
| CVE-2026-24168 | 6.8 | — | NVIDIA | Unified Fabric Manager Enterprise - GA | CWE-77 | NVIDIA UFM Enterprise contains a vulnerability in the IBDiagnet API where an … |
| CVE-2026-55535 | 6.8 | — | MervinPraison | PraisonAI | CWE-367 | PraisonAI: Server-Side Request Forgery via DNS rebinding bypass in webhook_ur… |
| CVE-2026-65086 | 6.8 | — | NVIDIA | OpenShell | CWE-78 | NVIDIA OpenShell for Linux contains a vulnerability in its sandbox exec handl… |
| CVE-2026-65979 | 6.7 | — | AcademySoftwareFoundation | openexr | CWE-20 | OpenEXR: Out-of-bounds read in HTJ2K decoder from unvalidated chunk header le… |
| CVE-2026-55531 | 6.5 | — | MervinPraison | PraisonAI | CWE-400 | PraisonAI: Unauthenticated unbounded session accumulation in the PraisonAI MC… |
| CVE-2026-55588 | 6.5 | — | oras-project | oras | CWE-400 | ORAS CLI: Cyclic Referrer Graph Can Cause Unbounded Recursion and Resource Co… |
| CVE-2026-55618 | 6.5 | — | GOVCERT-LU | eml_parser | CWE-116 | eml_parser: URL extraction bypass via HTML entities in URLs |
| CVE-2026-70550 | 6.5 | — | jfrog | artifactory | CWE-862 | Potential unauthorized access to private Composer repository metadata in JFro… |
| CVE-2026-78468 | 6.5 | — | FluentCRM | FluentCRM Pro – Email Newsletter, Automation, Email Marketing, Email Campaigns, Optins, Leads, and CRM Solution | CWE-89 | FluentCRM Pro <= 3.1.12 - Authenticated (Author+) SQL Injection |
| CVE-2026-18547 | 6.4 | — | ultimatemember | Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin | CWE-79 | Ultimate Member <= 2.12.1 - Authenticated (Subscriber+) Stored Cross-Site Scr… |
| CVE-2026-62861 | 6.4 | — | baptisteArno | typebot.io | CWE-639 | TypeBot: Cross-tenant custom-domain removal via unbound `name` in handleDelet… |
| CVE-2026-76128 | 6.4 | — | implecode | eCommerce Product Catalog | CWE-79 | eCommerce Product Catalog <= 3.5.10 - Authenticated (Contributor+) Stored Cro… |
| CVE-2026-79717 | 6.4 | — | Red Hat | Red Hat Ansible Automation Platform 2 | CWE-918 | Galaxy_ng: galaxy_ng: blind ssrf via namespace avatar_url with no private-add… |
| CVE-2026-44476 | 6.3 | — | doorkeeper-gem | doorkeeper-openid_connect | CWE-287 | Doorkeeper OpenID Connect: Dynamic Client Registration feature creates public… |
| CVE-2026-78885 | 6.3 | — | liketrek | TREK | CWE-287 | liketrek TREK OIDC Service oidcService.ts findOrCreateUser improper authentic… |
| CVE-2026-78886 | 6.3 | — | liketrek | TREK | CWE-22 | liketrek TREK Public Journey Photo Proxy journey-public.controller.ts path tr… |
| CVE-2026-78887 | 6.3 | — | liketrek | TREK | CWE-285 | liketrek TREK Journey Photo Proxy validateShareTokenForAsset authorization |
| CVE-2026-80199 | 6.3 | — | kimai | kimai | CWE-208 | Kimai before 2.54.0 Username Enumeration via Timing Oracle |
| CVE-2026-71444 | 6.2 | — | Adobe | C2PA Tool | CWE-191 | CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191) |
| CVE-2026-76189 | 6.2 | — | Adobe | C2PA Tool | CWE-191 | CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191) |
| CVE-2026-13216 | 6.1 | — | zephyrproject | zephyr | CWE-787 | Out-of-bounds stack write in Zephyr virtio PCI driver from unvalidated device… |
| CVE-2026-55530 | 6.1 | — | MervinPraison | PraisonAI | CWE-862 | PraisonAI: ast_grep_rewrite rewrites arbitrary files without the @require_app… |
| CVE-2026-24225 | 6.0 | — | NVIDIA | DGX Spark | CWE-125 | NVIDIA DGX Spark contains a vulnerability in the standalone MM firmware where… |
| CVE-2026-47624 | 6.0 | — | NVIDIA | DGX Spark | CWE-693 | NVIDIA DGX Spark contains a vulnerability in UEFI where a Attacker may cause … |
| CVE-2026-79778 | 6.0 | — | rclone | rclone | CWE-248 | rclone before v1.75.0 Denial of Service via TUS nil-response panic |
| CVE-2026-79779 | 6.0 | — | rclone | rclone | CWE-319 | rclone before v1.75.0 WebDAV Credential Exposure via HTTPS-to-HTTP Redirect |
| CVE-2026-79780 | 6.0 | — | rclone | rclone | CWE-200 | rclone before v1.75.0 Credential Exposure via S3 Redirect |
| CVE-2026-13217 | 5.9 | — | zephyrproject | zephyr | CWE-476 | NULL-pointer dereference in Zephyr OCPP CALLRESULT parsing via unchecked strt… |
| CVE-2026-32637 | 5.9 | — | velero-io | velero | CWE-22 | Velero vulnerable to file path traversal when extracting from backup's tarball |
| CVE-2026-63074 | 5.9 | — | OpenSSL | OpenSSL | CWE-770 | CMP Indefinite Cache Growth of ExtraCerts |
| CVE-2026-79652 | 5.9 | — | Red Hat | Red Hat Build of Keycloak | CWE-862 | Keycloak-services: keycloak-services: jwt bearer authorization grant does not… |
| CVE-2026-80051 | 5.9 | — | graphql-go project | graphql-go | CWE-1287 | github.com/graphql-go/graphql (GraphQL for Go) through 0.8.1 does not validat… |
| CVE-2026-80185 | 5.7 | — | Red Hat | Red Hat Enterprise Linux 10 | CWE-843 | Bluez: sdp-xml: bluez 5.86: unprivileged-local and adjacent-le-peer leads to … |
| CVE-2026-55663 | 5.6 | — | versatica | mediasoup | CWE-345 | mediasoup: SCTP state cookie lacks cryptographic authentication, enabling una… |
| CVE-2026-65087 | 5.6 | — | NVIDIA | NemoClaw | CWE-522 | NVIDIA NemoClaw contains a vulnerability where an attacker could cause insuff… |
| CVE-2026-13478 | 5.5 | — | zephyrproject | zephyr | CWE-125 | Out-of-bounds read in Zephyr ext2 block-bitmap validation from a crafted s_bl… |
| CVE-2026-48429 | 5.5 | — | Adobe | Adobe Substance 3D Designer | CWE-476 | Substance3D - Designer | NULL Pointer Dereference (CWE-476) |
| CVE-2026-59983 | 5.5 | — | AcademySoftwareFoundation | openexr | CWE-125 | OpenEXR: Out-of-bounds read in DeepTiledInputFile sample-count table decode o… |
| CVE-2026-59984 | 5.5 | — | AcademySoftwareFoundation | openexr | CWE-787 | OpenEXR: Scratch buffer overflow decoding B44-compressed InputFile on ILP32 |
| CVE-2026-59985 | 5.5 | — | AcademySoftwareFoundation | openexr | CWE-125 | OpenEXR: Heap out-of-bounds read in OpenEXRCore RLE decoding on ILP32 |
| CVE-2026-61555 | 5.5 | — | AcademySoftwareFoundation | openexr | CWE-125 | OpenEXR: Empty multiView viewFromChannelName file crash |
| CVE-2026-64705 | 5.5 | — | Apple | macOS | CWE-120 | A buffer overflow was addressed with improved bounds checking. This issue is … |
| CVE-2026-65088 | 5.5 | — | NVIDIA | NemoClaw | CWE-214 | NVIDIA NemoClaw contains a vulnerability where an attacker could cause invoca… |
Results continue: ranks 401–787.
Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.
Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.
Day boundary. A day is a UTC calendar day. This page covers 2026-08-25 00:00:00–23:59:59 UTC. All times shown are UTC.
Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.
Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.
Machine-readable. This edition as JSON or CSV — the ranked results, transactions, and counts, for citation or ingestion. Frozen at publication; later changes appear as transactions on later editions.