{
  "day": "2026-08-25",
  "boundary": "UTC calendar day",
  "published_count": 787,
  "by_severity": {
    "CRITICAL": 70,
    "HIGH": 219,
    "MEDIUM": 142,
    "LOW": 14
  },
  "kev_count": 0,
  "exploit_reference_count": 0,
  "awaiting_enrichment_count": 342,
  "ranking": "Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.",
  "results": [
    {
      "rank": 1,
      "cve_id": "CVE-2026-56703",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.01134,
      "epss_percentile": 0.64038,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vrana",
      "product": "adminer",
      "cwe": "CWE-94",
      "title": "Adminer before 5.4.3 Remote Code Execution via SQLite VACUUM INTO",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56703"
    },
    {
      "rank": 2,
      "cve_id": "CVE-2026-14280",
      "cvss_base": 6.6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0071,
      "epss_percentile": 0.508,
      "kev": false,
      "kev_due_at": null,
      "vendor": "netweblogic",
      "product": "Events Manager – Calendar, Bookings, Tickets, and more!",
      "cwe": "CWE-98",
      "title": "Events Manager <= 7.3.7.4 - Authenticated (Administrator+) Local File Inclusion via 'dbem_data[updates]' Array Keys",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14280"
    },
    {
      "rank": 3,
      "cve_id": "CVE-2026-68062",
      "cvss_base": 5.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00654,
      "epss_percentile": 0.48602,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sky Co., LTD.",
      "product": "SKYSEA Client View",
      "cwe": "CWE-22",
      "title": "SKYSEA Client View and SKYMEC IT Manager contain a path traversal vulnerability. If this vulnerability is exploited, an attacker who can log in to a Windows system on which the affected product is installed may be able to execute arbitrary code on another Windows system that has the affected products installed and can receive UDP packets from that system. Note that this vulnerability is due to an incomplete fix for CVE-2024-41726.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-68062"
    },
    {
      "rank": 4,
      "cve_id": "CVE-2026-68959",
      "cvss_base": 5.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00654,
      "epss_percentile": 0.48601,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sky Co., LTD.",
      "product": "SKYSEA Client View",
      "cwe": "CWE-25",
      "title": "SKYSEA Client View and SKYMEC IT Manager contain a path traversal vulnerability. If this vulnerability is exploited, an attacker who can log in to a Windows system on which the affected product is installed may be able to execute arbitrary code on another Windows system that has the affected products installed and can receive UDP packets from that system. Note that this vulnerability is due to an incomplete fix for CVE-2024-41726.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-68959"
    },
    {
      "rank": 5,
      "cve_id": "CVE-2026-16601",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00627,
      "epss_percentile": 0.47378,
      "kev": false,
      "kev_due_at": null,
      "vendor": "creativemindssolutions",
      "product": "CM Map Locations – Visualize and share your locations in a few clicks",
      "cwe": "CWE-434",
      "title": "CM Map Locations <= 2.1.8 - Authenticated (Subscriber+) Arbitrary File Upload via cmloc_route_image_upload AJAX Action",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16601"
    },
    {
      "rank": 6,
      "cve_id": "CVE-2026-68960",
      "cvss_base": 5.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0061,
      "epss_percentile": 0.46507,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sky Co., LTD.",
      "product": "SKYSEA Client View",
      "cwe": "CWE-121",
      "title": "A stack-based buffer overflow vulnerability exists in SKYSEA Client View and SKYMEC IT Manager. If this vulnerability is exploited, an attacker who can log in to a Windows system on which the affected product is installed may be able to execute arbitrary code on another Windows system that has the affected product installed and can receive UDP packets from that system.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-68960"
    },
    {
      "rank": 7,
      "cve_id": "CVE-2026-72695",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00567,
      "epss_percentile": 0.44467,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-22",
      "title": "Grav before 2.0.16 Path Traversal via MediaUploadTrait deleteFile",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-72695"
    },
    {
      "rank": 8,
      "cve_id": "CVE-2026-77136",
      "cvss_base": 9.5,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00554,
      "epss_percentile": 0.4378,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"powermail\"",
      "cwe": "CWE-1336",
      "title": "Server-Side Template Injection in extension \"powermail\" (powermail)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77136"
    },
    {
      "rank": 9,
      "cve_id": "CVE-2026-63586",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00519,
      "epss_percentile": 0.41753,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Weidmueller Interface",
      "product": "IE-SR-2TX-WL",
      "cwe": "CWE-78",
      "title": "Unauthenticated Remote Code Execution via Shell Injection in Web Management Interface",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-63586"
    },
    {
      "rank": 10,
      "cve_id": "CVE-2026-13214",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00511,
      "epss_percentile": 0.41255,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zephyrproject",
      "product": "zephyr",
      "cwe": "CWE-787",
      "title": "Stack buffer overflow in OCPP GetConfiguration key parsing",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-13214"
    },
    {
      "rank": 11,
      "cve_id": "CVE-2026-56705",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00497,
      "epss_percentile": 0.40412,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vrana",
      "product": "adminer",
      "cwe": "CWE-73",
      "title": "Adminer before 5.4.3 Remote Code Execution via MSSQL PDO DSN Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56705"
    },
    {
      "rank": 12,
      "cve_id": "CVE-2026-78478",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00487,
      "epss_percentile": 0.39715,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Elated-Themes",
      "product": "Mane",
      "cwe": "CWE-98",
      "title": "Måne <= 1.7 - Unauthenticated Local File Inclusion",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78478"
    },
    {
      "rank": 13,
      "cve_id": "CVE-2026-78562",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00477,
      "epss_percentile": 0.39067,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Mikado-Themes",
      "product": "Verdure Core",
      "cwe": "CWE-98",
      "title": "Verdure Core <= 1.2 - Unauthenticated Local File Inclusion",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78562"
    },
    {
      "rank": 14,
      "cve_id": "CVE-2026-78566",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00477,
      "epss_percentile": 0.39067,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Edge-Themes",
      "product": "Shuffle",
      "cwe": "CWE-98",
      "title": "Shuffle <= 1.8 - Unauthenticated Local File Inclusion",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78566"
    },
    {
      "rank": 15,
      "cve_id": "CVE-2026-15023",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00426,
      "epss_percentile": 0.35296,
      "kev": false,
      "kev_due_at": null,
      "vendor": "netweblogic",
      "product": "Events Manager – Calendar, Bookings, Tickets, and more!",
      "cwe": "CWE-89",
      "title": "Events Manager <= 7.4.0 - Authenticated (Contributor+) SQL Injection via 'meta_key' Parameter in Event/Location Duplicate Action",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15023"
    },
    {
      "rank": 16,
      "cve_id": "CVE-2026-77138",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00423,
      "epss_percentile": 0.35048,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"HTML5 Video Player vs. Powermail\"",
      "cwe": "CWE-502",
      "title": "Remote Code Execution in extension \"HTML5 Video Player vs. Powermail\" (html5videoplayer_powermail)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77138"
    },
    {
      "rank": 17,
      "cve_id": "CVE-2026-66882",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00417,
      "epss_percentile": 0.34527,
      "kev": false,
      "kev_due_at": null,
      "vendor": "team-alembic",
      "product": "ash_authentication",
      "cwe": "CWE-79",
      "title": "Reflected XSS in AshAuthentication confirmation and magic link interaction forms",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-66882"
    },
    {
      "rank": 18,
      "cve_id": "CVE-2026-78677",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00416,
      "epss_percentile": 0.34398,
      "kev": false,
      "kev_due_at": null,
      "vendor": "gitpython-developers",
      "product": "GitPython",
      "cwe": "CWE-22",
      "title": "GitPython before 3.1.59 Path Traversal via separate-git-dir",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78677"
    },
    {
      "rank": 19,
      "cve_id": "CVE-2026-78654",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00416,
      "epss_percentile": 0.34397,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cleverbrush",
      "product": "framework",
      "cwe": "CWE-94",
      "title": "cleverbrush framework/deep deepExtend.ts deepExtend prototype pollution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78654"
    },
    {
      "rank": 20,
      "cve_id": "CVE-2026-78676",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00403,
      "epss_percentile": 0.3325,
      "kev": false,
      "kev_due_at": null,
      "vendor": "gitpython-developers",
      "product": "GitPython",
      "cwe": "CWE-88",
      "title": "GitPython before 3.1.59 Remote Code Execution via Config Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78676"
    },
    {
      "rank": 21,
      "cve_id": "CVE-2026-77128",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00371,
      "epss_percentile": 0.29864,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Event management and registration\"",
      "cwe": "CWE-862",
      "title": "Broken Access Control in extension \"Event management and registration\" (sf_event_mgt)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77128"
    },
    {
      "rank": 22,
      "cve_id": "CVE-2026-75574",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00364,
      "epss_percentile": 0.2911,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-1336",
      "title": "Grav before 4.2.2 Remote Code Execution via Email Twig",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75574"
    },
    {
      "rank": 23,
      "cve_id": "CVE-2026-65633",
      "cvss_base": 7.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00359,
      "epss_percentile": 0.2861,
      "kev": false,
      "kev_due_at": null,
      "vendor": "team-alembic",
      "product": "ash_authentication",
      "cwe": "CWE-287",
      "title": "Purpose-limited JWT accepted as full bearer authentication in AshAuthentication",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65633"
    },
    {
      "rank": 24,
      "cve_id": "CVE-2026-78685",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00347,
      "epss_percentile": 0.27277,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Le-yan",
      "product": "Medical Practice Management System",
      "cwe": "CWE-940",
      "title": "Le-yan｜Medical Practice Management System - Remote Code Execution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78685"
    },
    {
      "rank": 25,
      "cve_id": "CVE-2026-56702",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00343,
      "epss_percentile": 0.26799,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vrana",
      "product": "adminer",
      "cwe": "CWE-434",
      "title": "Adminer before 5.4.3 Unrestricted File Upload via AdminerFileUpload",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56702"
    },
    {
      "rank": 26,
      "cve_id": "CVE-2026-78701",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00338,
      "epss_percentile": 0.2629,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Directory Server 11",
      "cwe": "CWE-787",
      "title": "389-ds-base: 389-ds-base: cve-2026-11610 incomplete fix may introduce a connection-stall dos",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78701"
    },
    {
      "rank": 27,
      "cve_id": "CVE-2026-10627",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00333,
      "epss_percentile": 0.25746,
      "kev": false,
      "kev_due_at": null,
      "vendor": "netweblogic",
      "product": "Events Manager – Calendar, Bookings, Tickets, and more!",
      "cwe": "CWE-862",
      "title": "Events Manager <= 7.4.0 - Missing Authorization to Unauthenticated Sensitive Information Disclosure via 'status', 'private', and 'private_only' Parameters",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-10627"
    },
    {
      "rank": 28,
      "cve_id": "CVE-2026-59769",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00331,
      "epss_percentile": 0.255,
      "kev": false,
      "kev_due_at": null,
      "vendor": "FURUNO ELECTRIC CO., LTD.",
      "product": "FA-50",
      "cwe": "CWE-798",
      "title": "FA-50 all versions contain hard-coded credentials. An attacker, who knows the credentials and has access to the vessel's internal network, can operate the settings screen using that credentials to alter the identification number.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59769"
    },
    {
      "rank": 29,
      "cve_id": "CVE-2026-34968",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00331,
      "epss_percentile": 0.25411,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vrana",
      "product": "adminer",
      "cwe": "CWE-22",
      "title": "Adminer before 5.4.3 Arbitrary File Deletion via SQLite Drop",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34968"
    },
    {
      "rank": 30,
      "cve_id": "CVE-2026-56096",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0033,
      "epss_percentile": 0.25349,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Apache Solr for TYPO3 - Enterprise Search\"",
      "cwe": "CWE-943",
      "title": "Information Disclosure in extension \"Apache Solr for TYPO3 - Enterprise Search\" (solr)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56096"
    },
    {
      "rank": 31,
      "cve_id": "CVE-2026-78637",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00326,
      "epss_percentile": 0.24897,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fdawgs",
      "product": "node-poppler",
      "cwe": "CWE-74",
      "title": "Fdawgs node-poppler Argument Injection index.js pdfUnite argument injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78637"
    },
    {
      "rank": 32,
      "cve_id": "CVE-2026-18323",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00311,
      "epss_percentile": 0.23208,
      "kev": false,
      "kev_due_at": null,
      "vendor": "wpmudev",
      "product": "Forminator Forms – Contact Form, Payment Form & Custom Form Builder",
      "cwe": "CWE-79",
      "title": "Forminator Forms <= 1.57.0.2 - Unauthenticated Stored Cross-Site Scripting via Radio Field (Save and Continue Draft)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18323"
    },
    {
      "rank": 33,
      "cve_id": "CVE-2026-72697",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00307,
      "epss_percentile": 0.22776,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-22",
      "title": "Grav CMS before 2.0.16 Path Traversal via media_directory",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-72697"
    },
    {
      "rank": 34,
      "cve_id": "CVE-2026-34964",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00307,
      "epss_percentile": 0.22827,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vrana",
      "product": "adminer",
      "cwe": "CWE-918",
      "title": "Adminer before 5.5.0 SSRF via PDO DSN Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34964"
    },
    {
      "rank": 35,
      "cve_id": "CVE-2026-67578",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00301,
      "epss_percentile": 0.22099,
      "kev": false,
      "kev_due_at": null,
      "vendor": "FURUNO ELECTRIC CO., LTD.",
      "product": "FA-50",
      "cwe": "CWE-306",
      "title": "FA-50 all versions miss authentication for some configuration. An attacker with access to the vessel's internal network can manipulate the product's settings screen to alter some configuration parameters.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-67578"
    },
    {
      "rank": 36,
      "cve_id": "CVE-2026-77144",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00301,
      "epss_percentile": 0.22081,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Events 2\"",
      "cwe": "CWE-915",
      "title": "Broken Access Control in extension \"Events 2\" (events2)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77144"
    },
    {
      "rank": 37,
      "cve_id": "CVE-2026-16434",
      "cvss_base": 2.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00301,
      "epss_percentile": 0.22106,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vrana",
      "product": "adminer",
      "cwe": "CWE-20",
      "title": "Adminer before 5.5.1 X-Forwarded-Prefix Backslash Bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16434"
    },
    {
      "rank": 38,
      "cve_id": "CVE-2026-78477",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.003,
      "epss_percentile": 0.21988,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MVPThemes",
      "product": "Jawn",
      "cwe": "CWE-266",
      "title": "Jawn <= 1.4.2 - Unauthenticated Privilege Escalation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78477"
    },
    {
      "rank": 39,
      "cve_id": "CVE-2026-78568",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.003,
      "epss_percentile": 0.22057,
      "kev": false,
      "kev_due_at": null,
      "vendor": "KlbTheme",
      "product": "Total Donations",
      "cwe": "CWE-89",
      "title": "Total Donations <= 2.0.5 - Unauthenticated SQL Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78568"
    },
    {
      "rank": 40,
      "cve_id": "CVE-2026-19801",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00295,
      "epss_percentile": 0.2155,
      "kev": false,
      "kev_due_at": null,
      "vendor": "wpdevteam",
      "product": "BetterLinks – Link Shortener, Link Cloaking, Redirects, Affiliate Link Manager & MCP",
      "cwe": "CWE-862",
      "title": "BetterLinks <= 3.1.0 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Short URL Creation via create_fbs_link AJAX Action",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19801"
    },
    {
      "rank": 41,
      "cve_id": "CVE-2026-56706",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00294,
      "epss_percentile": 0.2138,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vrana",
      "product": "adminer",
      "cwe": "CWE-330",
      "title": "Adminer before 5.4.3 CSRF Token Secret Recovery via XOR Masking",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56706"
    },
    {
      "rank": 42,
      "cve_id": "CVE-2026-77139",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00292,
      "epss_percentile": 0.21164,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Mask\"",
      "cwe": "CWE-22",
      "title": "Path Traversal in extension \"Mask\" (mask)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77139"
    },
    {
      "rank": 43,
      "cve_id": "CVE-2026-66766",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00291,
      "epss_percentile": 0.21056,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SAP_SE",
      "product": "SAP S/4HANA (Manage Supply Protection)",
      "cwe": "CWE-1333",
      "title": "Denial of Service (DoS) in SAP S/4HANA (Manage Supply Protection)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-66766"
    },
    {
      "rank": 44,
      "cve_id": "CVE-2026-56710",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00284,
      "epss_percentile": 0.204,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-863",
      "title": "Grav Login Plugin before 1.0.16 Privilege Escalation via Unlock",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56710"
    },
    {
      "rank": 45,
      "cve_id": "CVE-2026-10630",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00284,
      "epss_percentile": 0.20339,
      "kev": false,
      "kev_due_at": null,
      "vendor": "hookandhook",
      "product": "WP Courses LMS – Online Courses Builder, eLearning Courses, Courses Solution, Education Courses",
      "cwe": "CWE-639",
      "title": "WP Courses LMS <= 3.2.29 - Insecure Direct Object Reference to Authenticated (Custom+) Sensitive Information Disclosure via 'resultID' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-10630"
    },
    {
      "rank": 46,
      "cve_id": "CVE-2026-78322",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00282,
      "epss_percentile": 0.20161,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 6",
      "cwe": "CWE-120",
      "title": "File-roller: file-roller: stack buffer overflow in parse_progress_line for 7z and rar handlers",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78322"
    },
    {
      "rank": 47,
      "cve_id": "CVE-2026-17089",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0028,
      "epss_percentile": 0.19926,
      "kev": false,
      "kev_due_at": null,
      "vendor": "netweblogic",
      "product": "Events Manager – Calendar, Bookings, Tickets, and more!",
      "cwe": "CWE-79",
      "title": "Events Manager <= 7.4.0.1 - Reflected Cross-Site Scripting via 'header_format' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-17089"
    },
    {
      "rank": 48,
      "cve_id": "CVE-2026-78681",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.19764,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nltk",
      "product": "nltk",
      "cwe": "CWE-776",
      "title": "NLTK before 3.10.3 Entity Expansion DoS via ElementTree",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78681"
    },
    {
      "rank": 49,
      "cve_id": "CVE-2026-78683",
      "cvss_base": 9.4,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00276,
      "epss_percentile": 0.19493,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nltk",
      "product": "nltk",
      "cwe": "CWE-502",
      "title": "NLTK before 3.10.0 Remote Code Execution via Unsafe Pickle Deserialization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78683"
    },
    {
      "rank": 50,
      "cve_id": "CVE-2026-76839",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00272,
      "epss_percentile": 0.18992,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-522",
      "title": "Grav before 2.0.16 Information Disclosure via offsetGet",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76839"
    },
    {
      "rank": 51,
      "cve_id": "CVE-2026-63587",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00269,
      "epss_percentile": 0.18544,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Weidmueller Interface",
      "product": "IE-SR-2TX-WL-4G-EU",
      "cwe": "CWE-288",
      "title": "SMS Password Authorization Bypass via Failed Attempt Counter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-63587"
    },
    {
      "rank": 52,
      "cve_id": "CVE-2026-56709",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00256,
      "epss_percentile": 0.16886,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-350",
      "title": "Grav before 3.9.2 Host Header Injection via sendInvitationEmail",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56709"
    },
    {
      "rank": 53,
      "cve_id": "CVE-2026-56094",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00256,
      "epss_percentile": 0.16851,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Apache Solr for TYPO3 - Enterprise Search\"",
      "cwe": "CWE-943",
      "title": "Information Disclosure in extension \"Apache Solr for TYPO3 - Enterprise Search\" (solr)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56094"
    },
    {
      "rank": 54,
      "cve_id": "CVE-2026-72700",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00255,
      "epss_percentile": 0.16686,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-208",
      "title": "Grav before 3.9.1 Timing Attack via Non-Constant-Time Token Comparison",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-72700"
    },
    {
      "rank": 55,
      "cve_id": "CVE-2026-77127",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00255,
      "epss_percentile": 0.16774,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Modules\"",
      "cwe": "CWE-639",
      "title": "Information Disclosure in extension \"Modules\" (modules)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77127"
    },
    {
      "rank": 56,
      "cve_id": "CVE-2026-77146",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00247,
      "epss_percentile": 0.15762,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"femanager\"",
      "cwe": "CWE-862",
      "title": "Broken Access Control in extension \"femanager\" (femanager)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77146"
    },
    {
      "rank": 57,
      "cve_id": "CVE-2026-56095",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00247,
      "epss_percentile": 0.15706,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Apache Solr for TYPO3 - Enterprise Search\"",
      "cwe": "CWE-502",
      "title": "Insecure Deserialization in extension \"Apache Solr for TYPO3 - Enterprise Search\" (solr)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56095"
    },
    {
      "rank": 58,
      "cve_id": "CVE-2026-19892",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00246,
      "epss_percentile": 0.15597,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Infused Addons",
      "product": "InfusedWoo Pro",
      "cwe": "CWE-862",
      "title": "InfusedWoo Pro <= 5.1.18 - Authenticated (Subscriber+) Privilege Escalation via Password Reset Link Disclosure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19892"
    },
    {
      "rank": 59,
      "cve_id": "CVE-2026-78682",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00245,
      "epss_percentile": 0.1554,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nltk",
      "product": "nltk",
      "cwe": "CWE-918",
      "title": "NLTK before 3.10.3 SSRF Protection Bypass via Proxy",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78682"
    },
    {
      "rank": 60,
      "cve_id": "CVE-2026-56093",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00242,
      "epss_percentile": 0.15136,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Apache Solr for TYPO3 - Enterprise Search\"",
      "cwe": "CWE-639",
      "title": "Broken Access Control in extension \"Apache Solr for TYPO3 - Enterprise Search\" (solr)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56093"
    },
    {
      "rank": 61,
      "cve_id": "CVE-2026-76846",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00241,
      "epss_percentile": 0.15014,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-522",
      "title": "Grav before 2.0.16 Information Disclosure via Twig Sandbox",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76846"
    },
    {
      "rank": 62,
      "cve_id": "CVE-2026-18328",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00241,
      "epss_percentile": 0.14983,
      "kev": false,
      "kev_due_at": null,
      "vendor": "wpmudev",
      "product": "Forminator Forms – Contact Form, Payment Form & Custom Form Builder",
      "cwe": "CWE-79",
      "title": "Forminator Forms <= 1.57.0 - Unauthenticated DOM-Based Cross-Site Scripting via 'error_description' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18328"
    },
    {
      "rank": 63,
      "cve_id": "CVE-2026-72698",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00241,
      "epss_percentile": 0.15024,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-200",
      "title": "Grav CMS before 2.0.16 Information Disclosure via Twig Sandbox Bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-72698"
    },
    {
      "rank": 64,
      "cve_id": "CVE-2026-78679",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00241,
      "epss_percentile": 0.15023,
      "kev": false,
      "kev_due_at": null,
      "vendor": "gitpython-developers",
      "product": "GitPython",
      "cwe": "CWE-73",
      "title": "GitPython before 3.1.59 Arbitrary File Read via TagReference.create",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78679"
    },
    {
      "rank": 65,
      "cve_id": "CVE-2026-56704",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00241,
      "epss_percentile": 0.1502,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vrana",
      "product": "adminer",
      "cwe": "CWE-79",
      "title": "Adminer before 5.4.3 Cross-Site Scripting via MySQL Version String",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56704"
    },
    {
      "rank": 66,
      "cve_id": "CVE-2026-77141",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00239,
      "epss_percentile": 0.14778,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Club Directory\"",
      "cwe": "CWE-639",
      "title": "Broken Access Control in extension \"Club Directory\" (clubdirectory)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77141"
    },
    {
      "rank": 67,
      "cve_id": "CVE-2026-77142",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00239,
      "epss_percentile": 0.14778,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Industry Directory\"",
      "cwe": "CWE-639",
      "title": "Broken Access Control in extension \"Industry Directory\" (yellowpages2)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77142"
    },
    {
      "rank": 68,
      "cve_id": "CVE-2026-77143",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00239,
      "epss_percentile": 0.14778,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Forum\"",
      "cwe": "CWE-639",
      "title": "Broken Access Control in extension \"Forum\" (pforum)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77143"
    },
    {
      "rank": 69,
      "cve_id": "CVE-2026-77140",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00239,
      "epss_percentile": 0.14779,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Telephone Directory\"",
      "cwe": "CWE-639",
      "title": "Broken Access Control in extension \"Telephone Directory\" (telephonedirectory)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77140"
    },
    {
      "rank": 70,
      "cve_id": "CVE-2026-77134",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00239,
      "epss_percentile": 0.14776,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"femanager\"",
      "cwe": "CWE-863",
      "title": "Broken Access Control in extension \"femanager\" (femanager)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77134"
    },
    {
      "rank": 71,
      "cve_id": "CVE-2026-77135",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00239,
      "epss_percentile": 0.14775,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"femanager\"",
      "cwe": "CWE-639",
      "title": "Information Disclosure in extension \"femanager\" (femanager)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77135"
    },
    {
      "rank": 72,
      "cve_id": "CVE-2026-34967",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00237,
      "epss_percentile": 0.14456,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vrana",
      "product": "adminer",
      "cwe": "CWE-73",
      "title": "Adminer sql-log Plugin 5.3.0 through 5.4.2 Arbitrary File Write",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34967"
    },
    {
      "rank": 73,
      "cve_id": "CVE-2026-18512",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00235,
      "epss_percentile": 0.1417,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cozmoslabs",
      "product": "TranslatePress – Translate Multilingual sites with AI Translation",
      "cwe": "CWE-79",
      "title": "TranslatePress <= 3.2.6 - Authenticated (Subscriber+) Stored Cross-Site Scripting via Approved Comment Body in Translation Editor",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18512"
    },
    {
      "rank": 74,
      "cve_id": "CVE-2026-77129",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00234,
      "epss_percentile": 0.14069,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Event management and registration\"",
      "cwe": "CWE-1336",
      "title": "Server-Side Template Injection in extension \"Event management and registration\" (sf_event_mgt)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77129"
    },
    {
      "rank": 75,
      "cve_id": "CVE-2026-77137",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00234,
      "epss_percentile": 0.14068,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Forms Export\"",
      "cwe": "CWE-89",
      "title": "SQL Injection in extension \"Forms Export\" (frp_form_answers)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77137"
    },
    {
      "rank": 76,
      "cve_id": "CVE-2026-75575",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00231,
      "epss_percentile": 0.13767,
      "kev": false,
      "kev_due_at": null,
      "vendor": "RocketChat",
      "product": "Rocket.Chat",
      "cwe": "CWE-204",
      "title": "Rocket.Chat Missing DDP Rate Limit on the sendForgotPasswordEmail Meteor Method",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75575"
    },
    {
      "rank": 77,
      "cve_id": "CVE-2026-75982",
      "cvss_base": 4.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0023,
      "epss_percentile": 0.13593,
      "kev": false,
      "kev_due_at": null,
      "vendor": "thimpress",
      "product": "LearnPress – WordPress LMS Plugin for Create and Sell Online Courses",
      "cwe": "CWE-862",
      "title": "LearnPress <= 4.4.4 - Missing Authorization to Authenticated (Editor+) Limited Option Update via 'field_name' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75982"
    },
    {
      "rank": 78,
      "cve_id": "CVE-2026-78470",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00228,
      "epss_percentile": 0.13393,
      "kev": false,
      "kev_due_at": null,
      "vendor": "wedevs",
      "product": "WP Project Manager Pro",
      "cwe": "CWE-89",
      "title": "WP Project Manager Pro <= 4.0.1 - Authenticated (Subscriber+) SQL Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78470"
    },
    {
      "rank": 79,
      "cve_id": "CVE-2026-78678",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00227,
      "epss_percentile": 0.13239,
      "kev": false,
      "kev_due_at": null,
      "vendor": "gitpython-developers",
      "product": "GitPython",
      "cwe": "CWE-88",
      "title": "GitPython before 3.1.59 Arbitrary File Read via Repo.blame()",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78678"
    },
    {
      "rank": 80,
      "cve_id": "CVE-2026-75930",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00225,
      "epss_percentile": 0.13012,
      "kev": false,
      "kev_due_at": null,
      "vendor": "roxnor",
      "product": "FundEngine – Donation and Crowdfunding Platform",
      "cwe": "CWE-862",
      "title": "FundEngine <= 1.8.1 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Modification via 'campaign_post' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75930"
    },
    {
      "rank": 81,
      "cve_id": "CVE-2026-56092",
      "cvss_base": 7.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00222,
      "epss_percentile": 0.12604,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Apache Solr for TYPO3 - Enterprise Search\"",
      "cwe": "CWE-862",
      "title": "Broken Access Control in extension \"Apache Solr for TYPO3 - Enterprise Search\" (solr)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56092"
    },
    {
      "rank": 82,
      "cve_id": "CVE-2026-56707",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00221,
      "epss_percentile": 0.12474,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-862",
      "title": "Grav Flex Objects 1.4.0 through 1.4.7 Authorization Bypass via Shortcode",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56707"
    },
    {
      "rank": 83,
      "cve_id": "CVE-2026-18100",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00221,
      "epss_percentile": 0.12417,
      "kev": false,
      "kev_due_at": null,
      "vendor": "roxnor",
      "product": "MetForm – Contact Form, Survey, Quiz, Conditional Forms, Form Templates & Custom Form Builder for Elementor",
      "cwe": "CWE-79",
      "title": "MetForm <= 4.1.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'mf_form_id' Widget Setting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18100"
    },
    {
      "rank": 84,
      "cve_id": "CVE-2026-54920",
      "cvss_base": 0,
      "cvss_severity": "NONE",
      "epss_score": 0.00213,
      "epss_percentile": 0.11457,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-190",
      "title": "OpenEXR: Integer overflow and uninitialized pointer cause invalid delete in OpenEXRUtil image resize",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54920"
    },
    {
      "rank": 85,
      "cve_id": "CVE-2026-34959",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00208,
      "epss_percentile": 0.10766,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vrana",
      "product": "adminer",
      "cwe": "CWE-20",
      "title": "Adminer before 5.5.0 Open Redirect via X-Forwarded-Prefix",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-34959"
    },
    {
      "rank": 86,
      "cve_id": "CVE-2026-77145",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00207,
      "epss_percentile": 0.10675,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"Events 2\"",
      "cwe": "CWE-639",
      "title": "Broken Access Control in extension \"Events 2\" (events2)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77145"
    },
    {
      "rank": 87,
      "cve_id": "CVE-2026-77133",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00207,
      "epss_percentile": 0.10675,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"femanager\"",
      "cwe": "CWE-862",
      "title": "Broken Access Control in extension \"femanager\" (femanager)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77133"
    },
    {
      "rank": 88,
      "cve_id": "CVE-2026-17548",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00207,
      "epss_percentile": 0.10678,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Checkmk GmbH",
      "product": "Checkmk",
      "cwe": "CWE-862",
      "title": "Missing authorization for viewing background jobs",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-17548"
    },
    {
      "rank": 89,
      "cve_id": "CVE-2026-77130",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00207,
      "epss_percentile": 0.10676,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"SYSSY - TYPO3 Monitoring & Security Checks\"",
      "cwe": "CWE-613",
      "title": "Insufficient Session Expiration in extension \"SYSSY - TYPO3 Monitoring & Security Checks\" (syssy)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77130"
    },
    {
      "rank": 90,
      "cve_id": "CVE-2026-72699",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00205,
      "epss_percentile": 0.10396,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-203",
      "title": "Grav Login Plugin before 3.9.1 Email Enumeration via Registration",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-72699"
    },
    {
      "rank": 91,
      "cve_id": "CVE-2026-19851",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00204,
      "epss_percentile": 0.10266,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dassault Systèmes",
      "product": "Tuleap Enterprise Edition",
      "cwe": "CWE-1393",
      "title": "Use of Default Password vulnerability affecting Tuleap Enterprise Edition from 17.0 through 17.5",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19851"
    },
    {
      "rank": 92,
      "cve_id": "CVE-2026-19943",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00201,
      "epss_percentile": 0.09887,
      "kev": false,
      "kev_due_at": null,
      "vendor": "jegstudio",
      "product": "Gutenverse – WordPress Blocks, Page Builder & Site Editor",
      "cwe": "CWE-79",
      "title": "Gutenverse <= 4.0.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'titleTag' Block Attribute",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19943"
    },
    {
      "rank": 93,
      "cve_id": "CVE-2026-75019",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00201,
      "epss_percentile": 0.09887,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cozythemes",
      "product": "Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 700+ Patterns, 58 Blocks & Templates",
      "cwe": "CWE-79",
      "title": "Cozy Blocks <= 2.2.16 - Authenticated (Contributor+) Stored Cross-Site Scripting via cozyHoverEffect Block Attribute",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75019"
    },
    {
      "rank": 94,
      "cve_id": "CVE-2026-76063",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00201,
      "epss_percentile": 0.09888,
      "kev": false,
      "kev_due_at": null,
      "vendor": "roxnor",
      "product": "FundEngine – Donation and Crowdfunding Platform",
      "cwe": "CWE-79",
      "title": "FundEngine <= 1.8.1 - Authenticated (Subscriber+) Stored Cross-Site Scripting via 'wfp_featured_video_url' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76063"
    },
    {
      "rank": 95,
      "cve_id": "CVE-2026-78656",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.002,
      "epss_percentile": 0.09808,
      "kev": false,
      "kev_due_at": null,
      "vendor": "itsourcecode",
      "product": "Sales and Inventory System",
      "cwe": "CWE-74",
      "title": "itsourcecode Sales and Inventory System cust_del.php sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78656"
    },
    {
      "rank": 96,
      "cve_id": "CVE-2025-9878",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00193,
      "epss_percentile": 0.08989,
      "kev": false,
      "kev_due_at": null,
      "vendor": "buildwps",
      "product": "PPWP – Password Protect Pages",
      "cwe": "CWE-79",
      "title": "Password Protect WordPress Lite <= 1.9.21 - Authenticated (Contributor+) Stored Cross-Site Scripting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-9878"
    },
    {
      "rank": 97,
      "cve_id": "CVE-2026-78563",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.0019,
      "epss_percentile": 0.08659,
      "kev": false,
      "kev_due_at": null,
      "vendor": "WPDeveloper",
      "product": "NotificationX Pro",
      "cwe": "CWE-79",
      "title": "NotificationX Pro <= 3.1.4 - Unauthenticated Stored Cross-Site Scripting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78563"
    },
    {
      "rank": 98,
      "cve_id": "CVE-2026-13215",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00182,
      "epss_percentile": 0.0782,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zephyrproject",
      "product": "zephyr",
      "cwe": "CWE-787",
      "title": "Zephyr ext2 mount: unvalidated superblock block size causes out-of-bounds write from a crafted filesystem image",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-13215"
    },
    {
      "rank": 99,
      "cve_id": "CVE-2026-12561",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00179,
      "epss_percentile": 0.07443,
      "kev": false,
      "kev_due_at": null,
      "vendor": "tagDiv",
      "product": "tagDiv Composer",
      "cwe": "CWE-79",
      "title": "tagDiv Composer <= 5.4.5 - Authenticated (Contributor+) Stored Cross-Site Scripting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12561"
    },
    {
      "rank": 100,
      "cve_id": "CVE-2026-72701",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00179,
      "epss_percentile": 0.07428,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-208",
      "title": "Grav CMS before 2.0.16 Timing Attack via verifyNonce",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-72701"
    },
    {
      "rank": 101,
      "cve_id": "CVE-2026-56708",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.06897,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-367",
      "title": "Grav API Plugin before 1.0.16 SSRF via DNS Rebinding",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56708"
    },
    {
      "rank": 102,
      "cve_id": "CVE-2026-59183",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06211,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-190",
      "title": "OpenEXR: Signed Integer Overflow Leading to Out-of-Bounds Memory Access in Deep Tile Decoding",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59183"
    },
    {
      "rank": 103,
      "cve_id": "CVE-2026-66109",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00161,
      "epss_percentile": 0.05517,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sky Co., LTD.",
      "product": "SKYSEA Client View",
      "cwe": "CWE-862",
      "title": "A missing authorization vulnerability exists in SKYSEA Client View and SKYMEC IT Manager. If this vulnerability is exploited, an attacker who can log in to the Windows system on which the affected product is installed may execute arbitrary code with SYSTEM privilege.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-66109"
    },
    {
      "rank": 104,
      "cve_id": "CVE-2026-69665",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00161,
      "epss_percentile": 0.05517,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sky Co., LTD.",
      "product": "SKYSEA Client View",
      "cwe": "CWE-276",
      "title": "SKYSEA Client View and SKYMEC IT Manager contain an issue with incorrect default permissions. If this vulnerability is exploited, an attacker who can log in to a Windows system on which the affected product is installed may execute arbitrary code with SYSTEM privilege.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-69665"
    },
    {
      "rank": 105,
      "cve_id": "CVE-2026-78466",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00161,
      "epss_percentile": 0.05525,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fluent Boars",
      "product": "Fluent Boards Pro",
      "cwe": "CWE-639",
      "title": "Fluent Boards Pro <= 2.0.11 - Authenticated (Subscriber+) Insecure Direct Object Reference",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78466"
    },
    {
      "rank": 106,
      "cve_id": "CVE-2026-78467",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00161,
      "epss_percentile": 0.05526,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fluent Support",
      "product": "Fluent Support Pro",
      "cwe": "CWE-862",
      "title": "Fluent Support Pro <= 2.3.1 - Missing Authorization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78467"
    },
    {
      "rank": 107,
      "cve_id": "CVE-2026-77131",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00152,
      "epss_percentile": 0.04581,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TYPO3",
      "product": "Extension \"SYSSY - TYPO3 Monitoring & Security Checks\"",
      "cwe": "CWE-319",
      "title": "Cleartext Transmission of Sensitive Information in extension \"SYSSY - TYPO3 Monitoring & Security Checks\" (syssy)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77131"
    },
    {
      "rank": 108,
      "cve_id": "CVE-2026-72696",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00143,
      "epss_percentile": 0.03832,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-59",
      "title": "Grav CMS before 2.0.16 Symlink Following via createLockFile",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-72696"
    },
    {
      "rank": 109,
      "cve_id": "CVE-2026-78638",
      "cvss_base": 1.9,
      "cvss_severity": "LOW",
      "epss_score": 0.00137,
      "epss_percentile": 0.03342,
      "kev": false,
      "kev_due_at": null,
      "vendor": "peerigon",
      "product": "unzip-crx",
      "cwe": "CWE-22",
      "title": "peerigon unzip-crx/unzip-crx-3 Archive Extraction index.js unzip path traversal",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78638"
    },
    {
      "rank": 110,
      "cve_id": "CVE-2026-78675",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00122,
      "epss_percentile": 0.0221,
      "kev": false,
      "kev_due_at": null,
      "vendor": "gitpython-developers",
      "product": "GitPython",
      "cwe": "CWE-73",
      "title": "GitPython before 3.1.59 Local File Content Disclosure via .gitmodules",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78675"
    },
    {
      "rank": 111,
      "cve_id": "CVE-2026-78680",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0012,
      "epss_percentile": 0.02054,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nltk",
      "product": "nltk",
      "cwe": "CWE-426",
      "title": "NLTK before 3.10.3 Arbitrary Code Execution via Graphviz dot Binary",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78680"
    },
    {
      "rank": 112,
      "cve_id": "CVE-2026-55371",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00117,
      "epss_percentile": 0.0181,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-20",
      "title": "OpenEXR: OpenEXRCore exr_attr_set_bytes() accepts NULL type_hint with positive hint_length",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55371"
    },
    {
      "rank": 113,
      "cve_id": "CVE-2026-55373",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0011,
      "epss_percentile": 0.01389,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-190",
      "title": "OpenEXR: OpenEXRUtil SampleCountChannel endEdit() can loop forever on UINT_MAX sample counts",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55373"
    },
    {
      "rank": 114,
      "cve_id": "CVE-2026-72702",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00103,
      "epss_percentile": 0.01079,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getgrav",
      "product": "grav",
      "cwe": "CWE-346",
      "title": "Grav CMS before 2.0.16 Origin Validation Bypass via Referer",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-72702"
    },
    {
      "rank": 115,
      "cve_id": "CVE-2026-55059",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00103,
      "epss_percentile": 0.01085,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-787",
      "title": "OpenEXR: OpenEXRUtil SampleCountChannel row setter heap has an out-of-bounds write vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55059"
    },
    {
      "rank": 116,
      "cve_id": "CVE-2026-76193",
      "cvss_base": 10,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Campaign Classic",
      "cwe": "CWE-918",
      "title": "Adobe Campaign Classic (ACC) | Server-Side Request Forgery (SSRF) (CWE-918)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76193"
    },
    {
      "rank": 117,
      "cve_id": "CVE-2026-76195",
      "cvss_base": 10,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Campaign Classic",
      "cwe": "CWE-78",
      "title": "Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76195"
    },
    {
      "rank": 118,
      "cve_id": "CVE-2026-76197",
      "cvss_base": 10,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Campaign Classic",
      "cwe": "CWE-78",
      "title": "Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76197"
    },
    {
      "rank": 119,
      "cve_id": "CVE-2026-77998",
      "cvss_base": 10,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "miniorange.com",
      "product": "SAML SSO for Joomla extension for Joomla",
      "cwe": "CWE-639",
      "title": "Joomla Extension - miniorange.com - Unauthenticated Authentication Bypass via SAMLResponse Parameter in miniOrange SAML SSO < 11.0.2, SAML SP Single Sign On – Login with ADFS < 6.4, SAML SP Single Sign On – SAML SSO login with Google Apps < 6.4",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77998"
    },
    {
      "rank": 120,
      "cve_id": "CVE-2026-65083",
      "cvss_base": 9.9,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "OpenShell",
      "cwe": "CWE-184",
      "title": "NVIDIA OpenShell for Linux contains a vulnerability in its sandbox provisioning API, where an attacker could cause an incomplete list of disallowed inputs. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, data tampering, and denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65083"
    },
    {
      "rank": 121,
      "cve_id": "CVE-2026-65093",
      "cvss_base": 9.9,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "OpenShell",
      "cwe": "CWE-427",
      "title": "NVIDIA OpenShell for Linux contains a vulnerability where an attacker could cause a sandbox escape. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, and information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65093"
    },
    {
      "rank": 122,
      "cve_id": "CVE-2026-16286",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TRtek Technological Products Computer Software Hardware Industry and Trade Limited Company",
      "product": "Software Repository Management",
      "cwe": "CWE-434",
      "title": "File Upload in TRTEK Software's Software Repository Management",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16286"
    },
    {
      "rank": 123,
      "cve_id": "CVE-2026-45018",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Chainlit",
      "product": "chainlit",
      "cwe": "CWE-78",
      "title": "Chainlit: Command injection via MCP stdio transport allows unauthenticated remote code execution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45018"
    },
    {
      "rank": 124,
      "cve_id": "CVE-2026-49845",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Hive",
      "cwe": "CWE-94",
      "title": "Apache Hive: SQL Injection vulnerability in HiveMetaStore partition-name direct-SQL paths",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49845"
    },
    {
      "rank": 125,
      "cve_id": "CVE-2026-55546",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "QWED-AI",
      "product": "qwed-mcp",
      "cwe": "CWE-94",
      "title": "QWED-MCP: Unsafe SymPy `parse_expr()` Remote Code Execution via Unsanitized Math Expression Input",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55546"
    },
    {
      "rank": 126,
      "cve_id": "CVE-2026-78570",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "KlbTheme",
      "product": "Total Donations",
      "cwe": "CWE-269",
      "title": "Total Donations <= 2.0.5 - Unauthenticated Privilege Escalation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78570"
    },
    {
      "rank": 127,
      "cve_id": "CVE-2026-78909",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78909"
    },
    {
      "rank": 128,
      "cve_id": "CVE-2026-78937",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Search in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78937"
    },
    {
      "rank": 129,
      "cve_id": "CVE-2026-78939",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78939"
    },
    {
      "rank": 130,
      "cve_id": "CVE-2026-78945",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78945"
    },
    {
      "rank": 131,
      "cve_id": "CVE-2026-78951",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78951"
    },
    {
      "rank": 132,
      "cve_id": "CVE-2026-78964",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Sync in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78964"
    },
    {
      "rank": 133,
      "cve_id": "CVE-2026-78983",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78983"
    },
    {
      "rank": 134,
      "cve_id": "CVE-2026-79012",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Safebrowsing in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79012"
    },
    {
      "rank": 135,
      "cve_id": "CVE-2026-79047",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79047"
    },
    {
      "rank": 136,
      "cve_id": "CVE-2026-79052",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79052"
    },
    {
      "rank": 137,
      "cve_id": "CVE-2026-79054",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79054"
    },
    {
      "rank": 138,
      "cve_id": "CVE-2026-79056",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79056"
    },
    {
      "rank": 139,
      "cve_id": "CVE-2026-79078",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in FedCM in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79078"
    },
    {
      "rank": 140,
      "cve_id": "CVE-2026-79091",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Bluetooth in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79091"
    },
    {
      "rank": 141,
      "cve_id": "CVE-2026-79128",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79128"
    },
    {
      "rank": 142,
      "cve_id": "CVE-2026-79140",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79140"
    },
    {
      "rank": 143,
      "cve_id": "CVE-2026-79149",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79149"
    },
    {
      "rank": 144,
      "cve_id": "CVE-2026-79150",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79150"
    },
    {
      "rank": 145,
      "cve_id": "CVE-2026-79200",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79200"
    },
    {
      "rank": 146,
      "cve_id": "CVE-2026-79210",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Audio in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79210"
    },
    {
      "rank": 147,
      "cve_id": "CVE-2026-79224",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79224"
    },
    {
      "rank": 148,
      "cve_id": "CVE-2026-79232",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79232"
    },
    {
      "rank": 149,
      "cve_id": "CVE-2026-79235",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in WebGL in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79235"
    },
    {
      "rank": 150,
      "cve_id": "CVE-2026-79257",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79257"
    },
    {
      "rank": 151,
      "cve_id": "CVE-2026-79275",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79275"
    },
    {
      "rank": 152,
      "cve_id": "CVE-2026-79282",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in ANGLE in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79282"
    },
    {
      "rank": 153,
      "cve_id": "CVE-2026-79290",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79290"
    },
    {
      "rank": 154,
      "cve_id": "CVE-2026-57909",
      "cvss_base": 9.4,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "WatchGuard",
      "product": "WatchGuard Agent",
      "cwe": "CWE-94",
      "title": "WatchGuard Agent path traversal allows unauthenticated remote code execution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57909"
    },
    {
      "rank": 155,
      "cve_id": "CVE-2022-51000",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-416",
      "title": "Nokogiri before 1.13.2 Multiple Vulnerabilities via libxml2 libxslt",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-51000"
    },
    {
      "rank": 156,
      "cve_id": "CVE-2024-58377",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-427",
      "title": "Nokogiri before 1.16.5 libxml2 Dependency Update",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-58377"
    },
    {
      "rank": 157,
      "cve_id": "CVE-2024-58378",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-416",
      "title": "Nokogiri before 1.16.2 Use-After-Free via xmlTextReader",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-58378"
    },
    {
      "rank": 158,
      "cve_id": "CVE-2025-71407",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-787",
      "title": "Nokogiri before 1.18.3 Stack Buffer Overflow and Use-After-Free",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-71407"
    },
    {
      "rank": 159,
      "cve_id": "CVE-2026-57910",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "WatchGuard",
      "product": "WatchGuard Agent",
      "cwe": "CWE-306",
      "title": "WatchGuard Agent improper authentication allows unauthenticated remote code execution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57910"
    },
    {
      "rank": 160,
      "cve_id": "CVE-2026-79657",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nltk",
      "product": "nltk",
      "cwe": "CWE-502",
      "title": "NLTK before 3.10.3 Remote Code Execution via Unsafe Pickle Deserialization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79657"
    },
    {
      "rank": 161,
      "cve_id": "CVE-2026-79675",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nltk",
      "product": "nltk",
      "cwe": "CWE-88",
      "title": "NLTK before 3.10.3 JVM Argument Injection via Per-Call Options",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79675"
    },
    {
      "rank": 162,
      "cve_id": "CVE-2026-79774",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "wintercms",
      "product": "winter",
      "cwe": "CWE-693",
      "title": "Winter CMS before 1.2.13 Twig Sandbox Escape via SecurityPolicy",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79774"
    },
    {
      "rank": 163,
      "cve_id": "CVE-2026-79782",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "rclone",
      "product": "rclone",
      "cwe": "CWE-319",
      "title": "rclone before 1.74.4 Security Token Disclosure via HTTPS to HTTP Redirect",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79782"
    },
    {
      "rank": 164,
      "cve_id": "CVE-2026-79787",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Alluxio",
      "product": "alluxio",
      "cwe": "CWE-287",
      "title": "Alluxio through 2.9.5 S3 REST Proxy Authentication Bypass via Unverified Request Signature",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79787"
    },
    {
      "rank": 165,
      "cve_id": "CVE-2026-79911",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TOTOLINK",
      "product": "N600R",
      "cwe": "CWE-119",
      "title": "TOTOLINK N600R CGI cstecgi.cgi setSystemConfig stack-based overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79911"
    },
    {
      "rank": 166,
      "cve_id": "CVE-2026-80104",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "eosphoros-ai",
      "product": "DB-GPT",
      "cwe": "CWE-22",
      "title": "DB-GPT 0.8.0 Path Traversal Arbitrary File Write via Skill Upload Filename",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80104"
    },
    {
      "rank": 167,
      "cve_id": "CVE-2026-80202",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kimai",
      "product": "kimai",
      "cwe": "CWE-863",
      "title": "Kimai before 2.56.0 Authorization Bypass via TimesheetVoter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80202"
    },
    {
      "rank": 168,
      "cve_id": "CVE-2026-78379",
      "cvss_base": 9.2,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Amazon",
      "product": "strands-agents-tools",
      "cwe": "CWE-1427",
      "title": "Consent bypass in python_repl tool via batch kwargs forwarding in Amazon Strands Agents Tools",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78379"
    },
    {
      "rank": 169,
      "cve_id": "CVE-2026-80138",
      "cvss_base": 9.2,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MacWarrior",
      "product": "clipbucket-v5",
      "cwe": "CWE-78",
      "title": "ClipBucket V5 5.5.1 through 5.5.3-#153 OS Command Injection via Installer php_cli_filepath Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80138"
    },
    {
      "rank": 170,
      "cve_id": "CVE-2026-55536",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-284",
      "title": "Browser Server WebSocket origin validation bypass via unanchored regex (patch bypass of CVE-2026-40289 / GHSA-8x8f-54wf-vv92)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55536"
    },
    {
      "rank": 171,
      "cve_id": "CVE-2026-55640",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cbcoutinho",
      "product": "nextcloud-mcp-server",
      "cwe": "CWE-306",
      "title": "Nextcloud MCP Server: Unauthenticated `POST /webhooks/nextcloud` allows arbitrary vector data deletion when `WEBHOOK_SECRET` is unset ( default )",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55640"
    },
    {
      "rank": 172,
      "cve_id": "CVE-2026-62862",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "baptisteArno",
      "product": "typebot.io",
      "cwe": "CWE-307",
      "title": "TypeBot: Account takeover via brute-forceable 6-digit magic-link code",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62862"
    },
    {
      "rank": 173,
      "cve_id": "CVE-2026-79664",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-613",
      "title": "Ech0 before 4.7.3 Access Token Revocation Bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79664"
    },
    {
      "rank": 174,
      "cve_id": "CVE-2022-50999",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-119",
      "title": "Nokogiri before 1.13.5 Integer Overflow via libxml2",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-50999"
    },
    {
      "rank": 175,
      "cve_id": "CVE-2026-19949",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "servmask",
      "product": "All-in-One WP Migration and Backup",
      "cwe": "CWE-89",
      "title": "All-in-One WP Migration and Backup <= 7.109 - Unauthenticated Second-Order SQL Injection via Archive Restore to Remote Code Execution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19949"
    },
    {
      "rank": 176,
      "cve_id": "CVE-2026-24170",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "Unified Fabric Manager Enterprise - GA",
      "cwe": "CWE-287",
      "title": "NVIDIA UFM Enterprise contains a vulnerability in the web interface authorization component, where an authenticated user could cause improper authentication by sending specially crafted HTTP requests. A successful exploit of this vulnerability might lead to code execution and escalation of privileges.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24170"
    },
    {
      "rank": 177,
      "cve_id": "CVE-2026-49050",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache DolphinScheduler",
      "cwe": "CWE-863",
      "title": "Apache DolphinScheduler: General user can mint admin access tokens via /access-tokens",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49050"
    },
    {
      "rank": 178,
      "cve_id": "CVE-2026-55541",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-862",
      "title": "PraisonAI: `--api-key` flag on `praisonai serve` is not properly enforced",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55541"
    },
    {
      "rank": 179,
      "cve_id": "CVE-2026-55585",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "QWED-AI",
      "product": "qwed-verification",
      "cwe": "CWE-94",
      "title": "QWED: Authenticated Remote Code Execution via Unsafe SymPy `parse_expr()`",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55585"
    },
    {
      "rank": 180,
      "cve_id": "CVE-2026-55637",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GeiserX",
      "product": "genieacs-mcp",
      "cwe": "CWE-346",
      "title": "genieacs-mcp: DNS rebinding reaches local GenieACS MCP Streamable HTTP transport",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55637"
    },
    {
      "rank": 181,
      "cve_id": "CVE-2026-65091",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "OpenShell",
      "cwe": "CWE-78",
      "title": "NVIDIA OpenShell for all platforms contains a vulnerability where a malicious gateway could cause OS command injection. A successful exploit of this vulnerability might lead to code execution, data tampering, and information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65091"
    },
    {
      "rank": 182,
      "cve_id": "CVE-2026-78899",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78899"
    },
    {
      "rank": 183,
      "cve_id": "CVE-2026-78944",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78944"
    },
    {
      "rank": 184,
      "cve_id": "CVE-2026-78990",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Compositing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78990"
    },
    {
      "rank": 185,
      "cve_id": "CVE-2026-79097",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79097"
    },
    {
      "rank": 186,
      "cve_id": "CVE-2026-79119",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in PDF in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted PDF file. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79119"
    },
    {
      "rank": 187,
      "cve_id": "CVE-2026-79187",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79187"
    },
    {
      "rank": 188,
      "cve_id": "CVE-2026-79195",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Script in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79195"
    },
    {
      "rank": 189,
      "cve_id": "CVE-2026-79197",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79197"
    },
    {
      "rank": 190,
      "cve_id": "CVE-2026-79198",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Platform in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79198"
    },
    {
      "rank": 191,
      "cve_id": "CVE-2026-79202",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79202"
    },
    {
      "rank": 192,
      "cve_id": "CVE-2026-79244",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Animation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79244"
    },
    {
      "rank": 193,
      "cve_id": "CVE-2026-79266",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79266"
    },
    {
      "rank": 194,
      "cve_id": "CVE-2026-79662",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-601",
      "title": "Ech0 before 4.7.3 OAuth Redirect URI Validation Bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79662"
    },
    {
      "rank": 195,
      "cve_id": "CVE-2026-79674",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nltk",
      "product": "nltk",
      "cwe": "CWE-73",
      "title": "NLTK 3.10.2 Path Traversal via corpus-reader constructors",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79674"
    },
    {
      "rank": 196,
      "cve_id": "CVE-2021-47996",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-119",
      "title": "Nokogiri before 1.11.4 Multiple Vulnerabilities via libxml2",
      "url": "https://www.cve.org/CVERecord?id=CVE-2021-47996"
    },
    {
      "rank": 197,
      "cve_id": "CVE-2022-50998",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-476",
      "title": "Nokogiri before 1.13.9 Multiple Vulnerabilities via libxml2",
      "url": "https://www.cve.org/CVERecord?id=CVE-2022-50998"
    },
    {
      "rank": 198,
      "cve_id": "CVE-2023-54354",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-476",
      "title": "Nokogiri before 1.14.3 Null Pointer Dereference via libxml2",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-54354"
    },
    {
      "rank": 199,
      "cve_id": "CVE-2025-71346",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-125",
      "title": "Nokogiri before 1.18.8 Heap Buffer Under-read via XML Schema",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-71346"
    },
    {
      "rank": 200,
      "cve_id": "CVE-2025-71406",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-416",
      "title": "Nokogiri before 1.18.4 Use-After-Free via libxslt",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-71406"
    },
    {
      "rank": 201,
      "cve_id": "CVE-2026-12600",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Poppler",
      "product": "Innodata Labs",
      "cwe": "CWE-400",
      "title": "Uncontrolled memory usage in Innodata Labs’ Poppler JPX decoderUncontrolled memory usage in Innodata Labs’ Poppler JPX decoder",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12600"
    },
    {
      "rank": 202,
      "cve_id": "CVE-2026-57863",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "crater-invoice-inc",
      "product": "crater",
      "cwe": "CWE-22",
      "title": "Crater Invoice 6.0.6 Path Traversal RCE via update/unzip endpoint",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57863"
    },
    {
      "rank": 203,
      "cve_id": "CVE-2026-59335",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Cloud Foundry",
      "product": "UAA",
      "cwe": "CWE-178",
      "title": "Case-Sensitive Authorization Check Bypass via Identity Zone ID Case Manipulation Leads to Full UAA Compromise",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59335"
    },
    {
      "rank": 204,
      "cve_id": "CVE-2026-62865",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "baptisteArno",
      "product": "typebot.io",
      "cwe": "CWE-73",
      "title": "TypeBot: Arbitrary server file read via Send Email block attachment path",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62865"
    },
    {
      "rank": 205,
      "cve_id": "CVE-2026-63403",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "contribsys",
      "product": "faktory",
      "cwe": "CWE-248",
      "title": "Faktory: Unrecovered panic in command handlers allows full-server denial of service",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-63403"
    },
    {
      "rank": 206,
      "cve_id": "CVE-2026-77357",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "mesop-dev",
      "product": "mesop",
      "cwe": "CWE-400",
      "title": "Mesop: DoS in /hot-reload endpoint allows unauthenticated attacker to exhaust worker threads and crash the server",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77357"
    },
    {
      "rank": 207,
      "cve_id": "CVE-2026-79658",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-400",
      "title": "Ech0 before 5.0.1 Denial of Service via Accept-Language",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79658"
    },
    {
      "rank": 208,
      "cve_id": "CVE-2026-79665",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-862",
      "title": "Ech0 before 4.5.1 Authorization Bypass via Session Tokens",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79665"
    },
    {
      "rank": 209,
      "cve_id": "CVE-2026-79769",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-843",
      "title": "Nokogiri before 1.19.4 Invalid Memory Read via initialize_copy_with_args",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79769"
    },
    {
      "rank": 210,
      "cve_id": "CVE-2026-79770",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-1333",
      "title": "Nokogiri before 1.19.3 ReDoS via CSS selector tokenizer",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79770"
    },
    {
      "rank": 211,
      "cve_id": "CVE-2026-80049",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "airbytehq",
      "product": "airbyte-platform",
      "cwe": "CWE-639",
      "title": "Airbyte Platform through 2.0.0 Cross-Workspace Authorization Bypass via Caller-Supplied workspaceId",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80049"
    },
    {
      "rank": 212,
      "cve_id": "CVE-2026-80191",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GROWI, Inc.",
      "product": "GROWI",
      "cwe": "CWE-862",
      "title": "GROWI before 8.0.2 Missing Authorization on Attachment Retrieval for Unauthenticated Requests",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80191"
    },
    {
      "rank": 213,
      "cve_id": "CVE-2026-80193",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kimai",
      "product": "kimai",
      "cwe": "CWE-862",
      "title": "Kimai before 2.62.0 Authorization Bypass via QuickEntry",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80193"
    },
    {
      "rank": 214,
      "cve_id": "CVE-2026-80194",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kimai",
      "product": "kimai",
      "cwe": "CWE-200",
      "title": "Kimai before 2.64.0 Missing Authorization via ProjectViewController export",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80194"
    },
    {
      "rank": 215,
      "cve_id": "CVE-2026-80195",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kimai",
      "product": "kimai",
      "cwe": "CWE-841",
      "title": "Kimai before 2.63.0 Team Membership Removal via API",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80195"
    },
    {
      "rank": 216,
      "cve_id": "CVE-2026-80196",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kimai",
      "product": "kimai",
      "cwe": "CWE-640",
      "title": "Kimai before 2.58.0 Authentication Bypass via Password Reset Link",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80196"
    },
    {
      "rank": 217,
      "cve_id": "CVE-2026-80197",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kimai",
      "product": "kimai",
      "cwe": "CWE-639",
      "title": "Kimai before 2.57.0 Improper Authorization via Favorite Endpoints",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80197"
    },
    {
      "rank": 218,
      "cve_id": "CVE-2026-80198",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kimai",
      "product": "kimai",
      "cwe": "CWE-693",
      "title": "Kimai before 2.56.0 Information Disclosure via config() Twig Function",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80198"
    },
    {
      "rank": 219,
      "cve_id": "CVE-2026-12878",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Octopus Deploy",
      "product": "Codefresh",
      "cwe": "CWE-269",
      "title": "In affected versions of the Codefresh platform an authenticated user can utilize an API endpoint to elevate to Admin permissions.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12878"
    },
    {
      "rank": 220,
      "cve_id": "CVE-2026-52776",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "oscal-compass",
      "product": "compliance-trestle",
      "cwe": "CWE-184",
      "title": "Trestle URLSecurityValidator SSRF allowlist bypass via IPv4-mapped IPv6 and 0.0.0.0",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-52776"
    },
    {
      "rank": 221,
      "cve_id": "CVE-2026-55534",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-306",
      "title": "PraisonAI serve agents --api-key is ignored, allowing unauthenticated remote agent execution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55534"
    },
    {
      "rank": 222,
      "cve_id": "CVE-2026-55539",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-306",
      "title": "PraisonAI: [Auth Bypass] PraisonAI async Jobs API (`/api/v1/runs`) has no authentication — unauthenticated job execution, result theft, cancel and delete",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55539"
    },
    {
      "rank": 223,
      "cve_id": "CVE-2026-55557",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "That1Drifter",
      "product": "browse-mcp",
      "cwe": "CWE-22",
      "title": "browse-mcp: Arbitrary file write via unconfined download and state paths",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55557"
    },
    {
      "rank": 224,
      "cve_id": "CVE-2026-55580",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sonirico",
      "product": "mcp-shell",
      "cwe": "CWE-78",
      "title": "mcp-shell — Security Disabled by Default in Bare-Binary Deploy Path + Shell Interpreter in Secure-Mode Allowlist",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55580"
    },
    {
      "rank": 225,
      "cve_id": "CVE-2026-75496",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Webkul",
      "product": "QloApps",
      "cwe": "CWE-434",
      "title": "Webkul QloApps improper file upload validation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75496"
    },
    {
      "rank": 226,
      "cve_id": "CVE-2026-75497",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Webkul",
      "product": "QloApps",
      "cwe": "CWE-89",
      "title": "Webkul QloApps SQL injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75497"
    },
    {
      "rank": 227,
      "cve_id": "CVE-2026-75498",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Webkul",
      "product": "QloApps",
      "cwe": "CWE-89",
      "title": "Webkul QloApps SQL injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75498"
    },
    {
      "rank": 228,
      "cve_id": "CVE-2026-79784",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "gemelo-ai",
      "product": "vocos",
      "cwe": "CWE-470",
      "title": "Vocos through 0.1.0 Arbitrary Code Execution via Unrestricted class_path in Model Configuration",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79784"
    },
    {
      "rank": 229,
      "cve_id": "CVE-2026-80192",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "better-auth",
      "product": "sso",
      "cwe": "CWE-287",
      "title": "better-auth SSO before 1.6.27 Domain Ownership Authentication Bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80192"
    },
    {
      "rank": 230,
      "cve_id": "CVE-2026-16233",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NI",
      "product": "LabVIEW",
      "cwe": "CWE-787",
      "title": "Out-of-Bounds Write Vulnerability in NI LabVIEW when loading VI",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16233"
    },
    {
      "rank": 231,
      "cve_id": "CVE-2026-16234",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NI",
      "product": "LabVIEW",
      "cwe": "CWE-125",
      "title": "Out-of-Bounds Read Vulnerability in NI LabVIEW when loading VI",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16234"
    },
    {
      "rank": 232,
      "cve_id": "CVE-2026-55526",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-350",
      "title": "PraisonAI: SSRF protection bypass in `spider_tools._host_is_blocked()` via DNS-resolved hostnames (`127.0.0.1.nip.io`)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55526"
    },
    {
      "rank": 233,
      "cve_id": "CVE-2026-64201",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NI",
      "product": "LabVIEW",
      "cwe": "CWE-125",
      "title": "Out-of-Bounds Read Vulnerability in NI LabVIEW when loading VI",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-64201"
    },
    {
      "rank": 234,
      "cve_id": "CVE-2026-64202",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NI",
      "product": "LabVIEW",
      "cwe": "CWE-125",
      "title": "Out-of-Bounds Read Vulnerability in NI LabVIEW when loading VI",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-64202"
    },
    {
      "rank": 235,
      "cve_id": "CVE-2026-64203",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NI",
      "product": "LabVIEW",
      "cwe": "CWE-125",
      "title": "Out-of-Bounds Read Vulnerability in NI LabVIEW when loading VI",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-64203"
    },
    {
      "rank": 236,
      "cve_id": "CVE-2026-64204",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NI",
      "product": "LabVIEW",
      "cwe": "CWE-787",
      "title": "Out-of-Bounds Write Vulnerability in NI LabVIEW when loading VI",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-64204"
    },
    {
      "rank": 237,
      "cve_id": "CVE-2026-65092",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "OpenShell",
      "cwe": "CWE-22",
      "title": "NVIDIA OpenShell Sandbox for Linux contains a vulnerability where an attacker could cause a path traversal bypass of L7 REST network policy. A successful exploit of this vulnerability might lead to information disclosure and data tampering.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65092"
    },
    {
      "rank": 238,
      "cve_id": "CVE-2026-70551",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "jfrog",
      "product": "artifactory",
      "cwe": "CWE-918",
      "title": "Server-Side Request Forgery Via VCS remote download in JFrog Artifactory",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-70551"
    },
    {
      "rank": 239,
      "cve_id": "CVE-2026-79673",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-863",
      "title": "Ech0 before 4.4.3 Scope Bypass via profile:read Token",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79673"
    },
    {
      "rank": 240,
      "cve_id": "CVE-2026-55581",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sonirico",
      "product": "mcp-shell",
      "cwe": "CWE-78",
      "title": "mcp-shell: Secure Mode Allowlist Bypass via Default `/bin/bash` Executable",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55581"
    },
    {
      "rank": 241,
      "cve_id": "CVE-2026-55582",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sonirico",
      "product": "mcp-shell",
      "cwe": "CWE-78",
      "title": "mcp-shell: Secure Mode Allowlist Bypass via Git Shell Alias",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55582"
    },
    {
      "rank": 242,
      "cve_id": "CVE-2026-79659",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-918",
      "title": "Ech0 before 4.7.3 Server-Side Request Forgery via fetchPeerConnectInfo",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79659"
    },
    {
      "rank": 243,
      "cve_id": "CVE-2026-24262",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "DGX Spark",
      "cwe": "CWE-787",
      "title": "NVIDIA DGX Spark contains a vulnerability in the system firmware, where a privileged attacker could be able to cause an out-of-bounds write. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, denial of service, information disclosure, and data tampering.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24262"
    },
    {
      "rank": 244,
      "cve_id": "CVE-2026-24263",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "DGX Spark",
      "cwe": "CWE-476",
      "title": "NVIDIA DGX Spark contains a vulnerability in the system firmware, where a privileged attacker could be able to cause a NULL pointer dereference. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, denial of service, information disclosure, and data tampering.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24263"
    },
    {
      "rank": 245,
      "cve_id": "CVE-2026-47626",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "DGX Spark",
      "cwe": "CWE-787",
      "title": "NVIDIA DGX Spark contains a vulnerability in the system firmware, where a privileged attacker could be able to cause an out-of-bounds write. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, denial of service, information disclosure, and data tampering.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47626"
    },
    {
      "rank": 246,
      "cve_id": "CVE-2026-55528",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-306",
      "title": "praisonaiagents: AgentServer declares auth_token but never enforces it on any route (CWE-862)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55528"
    },
    {
      "rank": 247,
      "cve_id": "CVE-2026-55533",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-287",
      "title": "PraisonAI: Authentication fail-open in Recipe server allows unauthenticated access when API key or JWT auth is configured without a secret",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55533"
    },
    {
      "rank": 248,
      "cve_id": "CVE-2026-55571",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "djust-org",
      "product": "djust",
      "cwe": "CWE-285",
      "title": "djust authentication bypass: a login_required / on_mount LiveView mount redirect does not close the WebSocket, allowing an unauthenticated client to dispatch event-handler calls",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55571"
    },
    {
      "rank": 249,
      "cve_id": "CVE-2026-79676",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nltk",
      "product": "nltk",
      "cwe": "CWE-22",
      "title": "NLTK before 3.10.3 Path Traversal via Symlink Bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79676"
    },
    {
      "rank": 250,
      "cve_id": "CVE-2026-79785",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "CVHub520",
      "product": "X-AnyLabeling",
      "cwe": "CWE-295",
      "title": "X-AnyLabeling before 4.0.0-beta.9 Improper Certificate Validation in Model Downloads",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79785"
    },
    {
      "rank": 251,
      "cve_id": "CVE-2026-16231",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "hbs",
      "product": "hbs",
      "cwe": "CWE-79",
      "title": "hbs vulnerable to XSS via registerAsyncHelper output-escaping bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16231"
    },
    {
      "rank": 252,
      "cve_id": "CVE-2026-65081",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "NemoClaw",
      "cwe": "CWE-494",
      "title": "NVIDIA NemoClaw for Linux contains a vulnerability in its installation process, where an attacker could cause execution of untrusted code. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, information disclosure, and denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65081"
    },
    {
      "rank": 253,
      "cve_id": "CVE-2026-65084",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "NemoClaw",
      "cwe": "CWE-295",
      "title": "NVIDIA NemoClaw for Linux contains a vulnerability in its deployment process, where an attacker could cause improper certificate validation. A successful exploit of this vulnerability might lead to information disclosure, data tampering, code execution, and escalation of privileges.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65084"
    },
    {
      "rank": 254,
      "cve_id": "CVE-2026-65098",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "NemoClaw",
      "cwe": "CWE-1390",
      "title": "NVIDIA NemoClaw for Linux contains a vulnerability in its remote-access helper workflow, where an attacker could cause weak authentication. A successful exploit of this vulnerability might lead to code execution, information disclosure, and data tampering.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65098"
    },
    {
      "rank": 255,
      "cve_id": "CVE-2026-65105",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "NemoClaw",
      "cwe": "CWE-306",
      "title": "NVIDIA NemoClaw for Linux contains a vulnerability in its inference server setup, where a remote attacker may access the inference service without authentication. A successful exploit of this vulnerability may lead to information disclosure and denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65105"
    },
    {
      "rank": 256,
      "cve_id": "CVE-2026-78572",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "unknown",
      "product": "Kalles Addons",
      "cwe": "CWE-502",
      "title": "Kalles Addons <= 1.0.6 - Unauthenticated PHP Object Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78572"
    },
    {
      "rank": 257,
      "cve_id": "CVE-2026-79027",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via crafted network traffic. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79027"
    },
    {
      "rank": 258,
      "cve_id": "CVE-2026-24169",
      "cvss_base": 8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "Unified Fabric Manager Enterprise - GA",
      "cwe": "CWE-77",
      "title": "NVIDIA UFM Enterprise contains a vulnerability in the plugin management API, where an authenticated user with low privileges could inject code by sending a specially crafted API request. A successful exploit of this vulnerability might lead to code execution, escalation of privileges and information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24169"
    },
    {
      "rank": 259,
      "cve_id": "CVE-2026-48417",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Sampler",
      "cwe": "CWE-121",
      "title": "Substance3D - Sampler | Stack-based Buffer Overflow (CWE-121)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48417"
    },
    {
      "rank": 260,
      "cve_id": "CVE-2026-48418",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Sampler",
      "cwe": "CWE-787",
      "title": "Substance3D - Sampler | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48418"
    },
    {
      "rank": 261,
      "cve_id": "CVE-2026-48419",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Sampler",
      "cwe": "CWE-787",
      "title": "Substance3D - Sampler | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48419"
    },
    {
      "rank": 262,
      "cve_id": "CVE-2026-48420",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Sampler",
      "cwe": "CWE-787",
      "title": "Substance3D - Sampler | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48420"
    },
    {
      "rank": 263,
      "cve_id": "CVE-2026-48421",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Sampler",
      "cwe": "CWE-787",
      "title": "Substance3D - Sampler | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48421"
    },
    {
      "rank": 264,
      "cve_id": "CVE-2026-48422",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Sampler",
      "cwe": "CWE-122",
      "title": "Substance3D - Sampler | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48422"
    },
    {
      "rank": 265,
      "cve_id": "CVE-2026-48423",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Sampler",
      "cwe": "CWE-122",
      "title": "Substance3D - Sampler | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48423"
    },
    {
      "rank": 266,
      "cve_id": "CVE-2026-48424",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Sampler",
      "cwe": "CWE-122",
      "title": "Substance3D - Sampler | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48424"
    },
    {
      "rank": 267,
      "cve_id": "CVE-2026-48425",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Sampler",
      "cwe": "CWE-122",
      "title": "Substance3D - Sampler | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48425"
    },
    {
      "rank": 268,
      "cve_id": "CVE-2026-48426",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Designer",
      "cwe": "CWE-787",
      "title": "Substance3D - Designer | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48426"
    },
    {
      "rank": 269,
      "cve_id": "CVE-2026-48427",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Designer",
      "cwe": "CWE-787",
      "title": "Substance3D - Designer | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48427"
    },
    {
      "rank": 270,
      "cve_id": "CVE-2026-48428",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Designer",
      "cwe": "CWE-122",
      "title": "Substance3D - Designer | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48428"
    },
    {
      "rank": 271,
      "cve_id": "CVE-2026-48430",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Designer",
      "cwe": "CWE-122",
      "title": "Substance3D - Designer | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48430"
    },
    {
      "rank": 272,
      "cve_id": "CVE-2026-48431",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Designer",
      "cwe": "CWE-122",
      "title": "Substance3D - Designer | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48431"
    },
    {
      "rank": 273,
      "cve_id": "CVE-2026-48432",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Designer",
      "cwe": "CWE-122",
      "title": "Substance3D - Designer | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48432"
    },
    {
      "rank": 274,
      "cve_id": "CVE-2026-48433",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Designer",
      "cwe": "CWE-122",
      "title": "Substance3D - Designer | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48433"
    },
    {
      "rank": 275,
      "cve_id": "CVE-2026-54757",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "oscal-compass",
      "product": "compliance-trestle",
      "cwe": "CWE-94",
      "title": "Trestle has Server-Side Template Injection (SSTI) via Recursive Template Re-evaluation of Untrusted Data",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54757"
    },
    {
      "rank": 276,
      "cve_id": "CVE-2026-57170",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "oscal-compass",
      "product": "compliance-trestle",
      "cwe": "CWE-94",
      "title": "Trestle SSTI in Jinja2 include tags allows arbitrary code execution (Incomplete fix of CVE-2026-46439)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57170"
    },
    {
      "rank": 277,
      "cve_id": "CVE-2026-65089",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "NemoClaw",
      "cwe": "CWE-78",
      "title": "NVIDIA NemoClaw for Linux contains a vulnerability in its status and logs plugin commands, where an attacker could cause OS command injection. A successful exploit of this vulnerability might lead to code execution, data tampering, information disclosure, and denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65089"
    },
    {
      "rank": 278,
      "cve_id": "CVE-2026-65090",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "NemoClaw",
      "cwe": "CWE-78",
      "title": "NVIDIA NemoClaw for Linux contains a vulnerability in its NIM management component, where an attacker could cause OS command injection. A successful exploit of this vulnerability might lead to code execution, data tampering, information disclosure, and denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65090"
    },
    {
      "rank": 279,
      "cve_id": "CVE-2026-65096",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "NemoClaw",
      "cwe": "CWE-78",
      "title": "NVIDIA NemoClaw for Linux contains a vulnerability in the Telegram bridge component, where an attacker could cause an OS command injection. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65096"
    },
    {
      "rank": 280,
      "cve_id": "CVE-2026-65099",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "NemoClaw",
      "cwe": "CWE-78",
      "title": "NVIDIA NemoClaw for Linux contains a vulnerability in its command-line interface, where an attacker could cause OS command injection. A successful exploit of this vulnerability might lead to code execution, data tampering, information disclosure, and denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65099"
    },
    {
      "rank": 281,
      "cve_id": "CVE-2026-71382",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Sampler",
      "cwe": "CWE-787",
      "title": "Substance3D - Sampler | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71382"
    },
    {
      "rank": 282,
      "cve_id": "CVE-2026-71399",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe XD",
      "cwe": "CWE-120",
      "title": "Adobe XD | Buffer Overflow (CWE-120)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71399"
    },
    {
      "rank": 283,
      "cve_id": "CVE-2026-71564",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Designer",
      "cwe": "CWE-787",
      "title": "Substance3D - Designer | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71564"
    },
    {
      "rank": 284,
      "cve_id": "CVE-2026-75749",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Painter",
      "cwe": "CWE-787",
      "title": "Substance3D - Painter | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75749"
    },
    {
      "rank": 285,
      "cve_id": "CVE-2026-75750",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Painter",
      "cwe": "CWE-122",
      "title": "Substance3D - Painter | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75750"
    },
    {
      "rank": 286,
      "cve_id": "CVE-2026-75766",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Painter",
      "cwe": "CWE-122",
      "title": "Substance3D - Painter | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75766"
    },
    {
      "rank": 287,
      "cve_id": "CVE-2026-75767",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Painter",
      "cwe": "CWE-122",
      "title": "Substance3D - Painter | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75767"
    },
    {
      "rank": 288,
      "cve_id": "CVE-2026-75768",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Painter",
      "cwe": "CWE-426",
      "title": "Substance3D - Painter | Untrusted Search Path (CWE-426)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75768"
    },
    {
      "rank": 289,
      "cve_id": "CVE-2026-75769",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Painter",
      "cwe": "CWE-122",
      "title": "Substance3D - Painter | Heap-based Buffer Overflow (CWE-122)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75769"
    },
    {
      "rank": 290,
      "cve_id": "CVE-2026-75770",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Painter",
      "cwe": "CWE-787",
      "title": "Substance3D - Painter | Out-of-bounds Write (CWE-787)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75770"
    },
    {
      "rank": 291,
      "cve_id": "CVE-2026-79655",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-59",
      "title": "Sos: sos: path traversal in sos clean tar extraction via unvalidated symlink/hardlink targets leads to arbitrary file write",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79655"
    },
    {
      "rank": 292,
      "cve_id": "CVE-2026-79992",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-78",
      "title": "Emacs: local shell command injection through the user field in emacs tramp",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79992"
    },
    {
      "rank": 293,
      "cve_id": "CVE-2026-57171",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "oscal-compass",
      "product": "compliance-trestle",
      "cwe": "CWE-22",
      "title": "Trestle is vulnerable to arbitrary file write via path traversal in author generate commands (Incomplete fix of CVE-2026-46345)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57171"
    },
    {
      "rank": 294,
      "cve_id": "CVE-2026-55532",
      "cvss_base": 7.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-346",
      "title": "PraisonAI: Origin-validation bypass (startswith prefix match) enables unauthenticated cross-site request forgery against the PraisonAI MCP HTTP server",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55532"
    },
    {
      "rank": 295,
      "cve_id": "CVE-2026-69104",
      "cvss_base": 7.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "jfrog",
      "product": "artifactory",
      "cwe": "CWE-862",
      "title": "Potential unauthorized repository migration in JFrog Artifactory",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-69104"
    },
    {
      "rank": 296,
      "cve_id": "CVE-2026-80182",
      "cvss_base": 7.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OpenStack",
      "product": "Keystone",
      "cwe": "CWE-863",
      "title": "In OpenStack Keystone before 29.0.3, tokens obtained via OAuth1 access token, application credential, or trust-scoped authentication could create new long-lived credentials or authorize new delegations that persist independently of, and outlive, the credential used to obtain them. The delegation restrictions that block these operations did not consistently apply to all delegated token types, allowing an OAuth1-scoped token, for example, to create application credentials or authorize OAuth1 request tokens despite those operations being restricted for other delegated token types. All Keystone deployments that permit delegated authentication through OAuth1 access tokens, application credentials, or trusts are affected.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80182"
    },
    {
      "rank": 297,
      "cve_id": "CVE-2026-80184",
      "cvss_base": 7.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OpenStack",
      "product": "Keystone",
      "cwe": "CWE-863",
      "title": "In OpenStack Keystone before 29.0.3, tokens obtained via delegated authentication mechanisms (OAuth1 access tokens, application credentials, trusts) could be submitted to the token-method authentication path for reauthentication to escape their intended project scope. When an application credential token was presented with no explicit scope, Keystone would issue a new token scoped to the credential owner's default project rather than the project for which the credential was issued, bypassing the intended project boundary. All Keystone deployments that permit delegated authentication through OAuth1 access tokens, application credentials, or trusts are affected.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80184"
    },
    {
      "rank": 298,
      "cve_id": "CVE-2026-80186",
      "cvss_base": 7.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-120",
      "title": "Bluez: stack overflow in name2utf8 causes dos and potential code execution",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80186"
    },
    {
      "rank": 299,
      "cve_id": "CVE-2026-14457",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OpenSSL",
      "product": "OpenSSL",
      "cwe": "CWE-476",
      "title": "RPK Server Signature Algorithm Selection Can Dereference a Missing Certificate",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14457"
    },
    {
      "rank": 300,
      "cve_id": "CVE-2026-18798",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OpenSSL",
      "product": "OpenSSL",
      "cwe": "CWE-415",
      "title": "QUIC Server May Trigger Double Free When Processing INITIAL Packet",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18798"
    },
    {
      "rank": 301,
      "cve_id": "CVE-2026-54874",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OpenSSL",
      "product": "OpenSSL",
      "cwe": "CWE-405",
      "title": "Excessive Memory Use Buffering DTLS Records for a Future Epoch",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54874"
    },
    {
      "rank": 302,
      "cve_id": "CVE-2026-55099",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "collective",
      "product": "icalendar",
      "cwe": "CWE-400",
      "title": "icalendar: Algorithmic Complexity in Equality",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55099"
    },
    {
      "rank": 303,
      "cve_id": "CVE-2026-55525",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-918",
      "title": "PraisonAI: SSRF via redirect-following in praisonaiagents web_crawl",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55525"
    },
    {
      "rank": 304,
      "cve_id": "CVE-2026-55553",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "node-modules",
      "product": "urllib",
      "cwe": "CWE-200",
      "title": "urllib: Cross-origin redirects preserve credential-bearing request headers, leading to potential credential leakage",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55553"
    },
    {
      "rank": 305,
      "cve_id": "CVE-2026-55620",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GOVCERT-LU",
      "product": "eml_parser",
      "cwe": "CWE-770",
      "title": "eml_parser: DoS via deeply nested parens in Received headers",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55620"
    },
    {
      "rank": 306,
      "cve_id": "CVE-2026-63072",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OpenSSL",
      "product": "OpenSSL",
      "cwe": "CWE-787",
      "title": "Heap Buffer Overflow in CMS Key Unwrapping",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-63072"
    },
    {
      "rank": 307,
      "cve_id": "CVE-2026-63075",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OpenSSL",
      "product": "OpenSSL",
      "cwe": "CWE-770",
      "title": "QUIC ACK-only Packet Retention Can Cause Memory Exhaustion",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-63075"
    },
    {
      "rank": 308,
      "cve_id": "CVE-2026-63076",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OpenSSL",
      "product": "OpenSSL",
      "cwe": "CWE-476",
      "title": "Invalid Pointer Dereference in CMP Server via Crafted protectionAlg",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-63076"
    },
    {
      "rank": 309,
      "cve_id": "CVE-2026-65097",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "NemoClaw",
      "cwe": "CWE-494",
      "title": "NVIDIA NemoClaw for Linux contains a vulnerability in its installation scripts, where an attacker could cause a download of code without integrity check. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, information disclosure, and data tampering.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65097"
    },
    {
      "rank": 310,
      "cve_id": "CVE-2026-71360",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "C2PA Tool",
      "cwe": "CWE-400",
      "title": "CAI Content Credentials | Uncontrolled Resource Consumption (CWE-400)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71360"
    },
    {
      "rank": 311,
      "cve_id": "CVE-2026-71442",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "C2PA Tool",
      "cwe": "CWE-191",
      "title": "CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71442"
    },
    {
      "rank": 312,
      "cve_id": "CVE-2026-71443",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "C2PA Tool",
      "cwe": "CWE-20",
      "title": "CAI Content Credentials | Improper Input Validation (CWE-20)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71443"
    },
    {
      "rank": 313,
      "cve_id": "CVE-2026-74932",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "WP Fastest Cache",
      "cwe": null,
      "title": "WP Fastest Cache 0.9.0.3 - 1.5.0 - Unauthenticated Stored XSS via Host Header Cache Poisoning",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-74932"
    },
    {
      "rank": 314,
      "cve_id": "CVE-2026-77996",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "yootheme.com",
      "product": "YOOtheme Pro extension for Joomla",
      "cwe": "CWE-79",
      "title": "Joomla Extension - yootheme.com - Authenticated, privileged stored XSS in YOOtheme Pro 1.0.0-5.0.41",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77996"
    },
    {
      "rank": 315,
      "cve_id": "CVE-2026-78576",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Readabler",
      "product": "Readabler",
      "cwe": "CWE-89",
      "title": "Readabler < 2.0.18 - Unauthenticated SQL Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78576"
    },
    {
      "rank": 316,
      "cve_id": "CVE-2026-41707",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Spring",
      "product": "Spring Security",
      "cwe": "CWE-294",
      "title": "Spring Security DPoPProofJwtDecoderFactory vulnerable to DPoP Proof Replay",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-41707"
    },
    {
      "rank": 317,
      "cve_id": "CVE-2026-55538",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-306",
      "title": "PraisonAI: [Auth Bypass] `praisonai serve agents --api-key` is silently ignored — agent-invocation routes (`POST /agents`, `POST /agents/{agent_name}`) run unauthenticated",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55538"
    },
    {
      "rank": 318,
      "cve_id": "CVE-2026-63404",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "contribsys",
      "product": "faktory",
      "cwe": "CWE-377",
      "title": "Faktory: Insecure predictable /tmp/redis.conf enables local Redis config hijack (network exposure / root RCE primitive)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-63404"
    },
    {
      "rank": 319,
      "cve_id": "CVE-2026-75037",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "ilya-zlobintsev",
      "product": "LACT",
      "cwe": "CWE-290",
      "title": "Polkit authentication bypass in LACT",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75037"
    },
    {
      "rank": 320,
      "cve_id": "CVE-2026-45019",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Chainlit",
      "product": "chainlit",
      "cwe": "CWE-918",
      "title": "Chainlit: SSRF via MCP SSE and streamable-http transports allows unauthenticated internal network access",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-45019"
    },
    {
      "rank": 321,
      "cve_id": "CVE-2026-75971",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "roxnor",
      "product": "ShopEngine Elementor WooCommerce Builder Addon – All in One WooCommerce Solution with eCommerce Templates & Woo Widgets",
      "cwe": "CWE-269",
      "title": "ShopEngine Elementor WooCommerce Builder Addon <= 4.9.4 - Authenticated (Shop Manager+) Privilege Escalation to WXR Import '<wp_option>' Nodes",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75971"
    },
    {
      "rank": 322,
      "cve_id": "CVE-2026-79667",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-285",
      "title": "Ech0 before 4.4.3 Authentication Bypass via Scope Enforcement",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79667"
    },
    {
      "rank": 323,
      "cve_id": "CVE-2026-55527",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-22",
      "title": "PraisonAI: Arbitrary file write via unsanitized `user_id` in `FileMemory.__init__()` — path traversal to any writable location",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55527"
    },
    {
      "rank": 324,
      "cve_id": "CVE-2026-55537",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-367",
      "title": "PraisonAI: Webhook SSRF via DNS fail-open in `JobSubmitRequest.validate_webhook_url()` — bypass of CVE-2026-40114",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55537"
    },
    {
      "rank": 325,
      "cve_id": "CVE-2026-55540",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-22",
      "title": "PraisonAI: [Path Traversal] agent tools escape the configured workspace via symlinks",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55540"
    },
    {
      "rank": 326,
      "cve_id": "CVE-2026-55609",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "ruvnet",
      "product": "sublinear-time-solver",
      "cwe": "CWE-73",
      "title": "sublinear-time-solver: Arbitrary file write in consciousness-explorer / sublinear-time-solver MCP export_state",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55609"
    },
    {
      "rank": 327,
      "cve_id": "CVE-2026-59184",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-416",
      "title": "OpenEXR: OpenEXRUtil FlatImageChannel row nonzero dataWindow heap OOB write",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59184"
    },
    {
      "rank": 328,
      "cve_id": "CVE-2026-59186",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-122",
      "title": "OpenEXR: Heap out-of-bounds write in TiledRgbaInputFile via integer overflow on 32-bit (ILP32) builds",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59186"
    },
    {
      "rank": 329,
      "cve_id": "CVE-2026-59187",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-122",
      "title": "OpenEXR: exrmetrics deep pixelmode heap buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59187"
    },
    {
      "rank": 330,
      "cve_id": "CVE-2026-59189",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-125",
      "title": "OpenEXR: Out-of-bounds read in DeepImageChannel::row() for non-zero dataWindow origin",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59189"
    },
    {
      "rank": 331,
      "cve_id": "CVE-2026-59981",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-125",
      "title": "OpenEXR: Heap OOB read in SampleCountChannel row when using nonzero dataWindow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59981"
    },
    {
      "rank": 332,
      "cve_id": "CVE-2026-59982",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-190",
      "title": "OpenEXR: DWAA InputFile AC buffer overflow on ILP32 platforms",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59982"
    },
    {
      "rank": 333,
      "cve_id": "CVE-2026-68513",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-122",
      "title": "OpenEXR: Heap buffer overflow in PyOpenEXR from literal/prefixed RGB channel name collision",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-68513"
    },
    {
      "rank": 334,
      "cve_id": "CVE-2026-68515",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-122",
      "title": "OpenEXR: Heap out-of-bounds write in exrmultiview with subsampled channel union",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-68515"
    },
    {
      "rank": 335,
      "cve_id": "CVE-2026-79666",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-862",
      "title": "Ech0 before 4.4.3 Missing Authorization via dashboard log endpoints",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79666"
    },
    {
      "rank": 336,
      "cve_id": "CVE-2026-79775",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "rclone",
      "product": "rclone",
      "cwe": "CWE-129",
      "title": "rclone Archive Backend SquashFS Parser Denial of Service",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79775"
    },
    {
      "rank": 337,
      "cve_id": "CVE-2026-79788",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "dradis",
      "product": "dradis-ce",
      "cwe": "CWE-918",
      "title": "Dradis Community Edition 5.1.0 through 5.2.0 Server-Side Request Forgery via Unrestricted AI Provider Address",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79788"
    },
    {
      "rank": 338,
      "cve_id": "CVE-2026-80050",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "continew-org",
      "product": "continew-admin",
      "cwe": "CWE-434",
      "title": "ContiNew Admin through 4.1.0 Missing Authorization and File-Type Allowlist on Multipart Upload Endpoints",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80050"
    },
    {
      "rank": 339,
      "cve_id": "CVE-2026-80189",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "perber",
      "product": "leafwiki",
      "cwe": "CWE-409",
      "title": "LeafWiki 0.10.0 through 0.12.0 Uncontrolled Resource Consumption via Unbounded ZIP Extraction",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80189"
    },
    {
      "rank": 340,
      "cve_id": "CVE-2026-65082",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "NemoClaw",
      "cwe": "CWE-94",
      "title": "NVIDIA NemoClaw for Linux contains a vulnerability in its migration command, where a local attacker could cause code injection. A successful exploit of this vulnerability might lead to code execution, data tampering, information disclosure, and denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65082"
    },
    {
      "rank": 341,
      "cve_id": "CVE-2026-79672",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-862",
      "title": "Ech0 before 4.4.3 Authentication Bypass via Comment Panel",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79672"
    },
    {
      "rank": 342,
      "cve_id": "CVE-2026-79786",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "coroot",
      "product": "coroot",
      "cwe": "CWE-601",
      "title": "Coroot 1.20.2 through 1.24.5 Unvalidated Redirect URI in MCP OAuth Client Registration",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79786"
    },
    {
      "rank": 343,
      "cve_id": "CVE-2026-18444",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NI",
      "product": "LabVIEW",
      "cwe": "CWE-195",
      "title": "Integer Conversion Vulnerability Resulting in an Out of Bounds Read in NI LabVIEW",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18444"
    },
    {
      "rank": 344,
      "cve_id": "CVE-2026-18445",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NI",
      "product": "LabVIEW",
      "cwe": "CWE-190",
      "title": "Integer Overflow Vulnerability Resulting in an Out of Bounds Write in NI LabVIEW",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18445"
    },
    {
      "rank": 345,
      "cve_id": "CVE-2026-53965",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "modelcontextprotocol",
      "product": "php-sdk",
      "cwe": "CWE-400",
      "title": "MCP PHP SDK: Unbounded SSE buffer in HttpTransport enables client-side denial of service",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-53965"
    },
    {
      "rank": 346,
      "cve_id": "CVE-2026-55529",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-306",
      "title": "PraisonAI: Origin validation bypass in MCP HTTP Stream transport allows browser-mediated unauthenticated tool execution on local MCP server",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55529"
    },
    {
      "rank": 347,
      "cve_id": "CVE-2026-75038",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "ilya-zlobintsev",
      "product": "LACT",
      "cwe": "CWE-61",
      "title": "Predictable temporary file in /tmp allows symlink attack in LACT",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75038"
    },
    {
      "rank": 348,
      "cve_id": "CVE-2026-78684",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "vllm-project",
      "product": "vllm",
      "cwe": "CWE-400",
      "title": "vLLM before 0.27.0 Denial of Service via DeepStream Backend",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78684"
    },
    {
      "rank": 349,
      "cve_id": "CVE-2026-79660",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-200",
      "title": "Ech0 before 4.7.3 Email Disclosure via Public API",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79660"
    },
    {
      "rank": 350,
      "cve_id": "CVE-2026-79661",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-770",
      "title": "Ech0 before 4.7.3 Unauthenticated fav_count Modification",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79661"
    },
    {
      "rank": 351,
      "cve_id": "CVE-2026-79668",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-306",
      "title": "Ech0 before 4.7.3 Unauthenticated Like Endpoint Metric Inflation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79668"
    },
    {
      "rank": 352,
      "cve_id": "CVE-2026-79771",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-401",
      "title": "Nokogiri before 1.19.3 Memory Leak via XSLT Transform",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79771"
    },
    {
      "rank": 353,
      "cve_id": "CVE-2026-79772",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "sparklemotion",
      "product": "nokogiri",
      "cwe": "CWE-252",
      "title": "Nokogiri before 1.19.1 Unchecked Return Value canonicalize",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79772"
    },
    {
      "rank": 354,
      "cve_id": "CVE-2026-79773",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "wintercms",
      "product": "winter",
      "cwe": "CWE-22",
      "title": "Winter CMS before 1.2.13 Local File Inclusion via JavaScript",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79773"
    },
    {
      "rank": 355,
      "cve_id": "CVE-2026-79776",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "rclone",
      "product": "rclone",
      "cwe": "CWE-200",
      "title": "rclone before 1.75.0 Authentication Bypass via pprof",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79776"
    },
    {
      "rank": 356,
      "cve_id": "CVE-2026-79781",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "rclone",
      "product": "rclone",
      "cwe": "CWE-22",
      "title": "rclone serve s3 Path Traversal via dot-dot object keys",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79781"
    },
    {
      "rank": 357,
      "cve_id": "CVE-2026-24167",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "Unified Fabric Manager Enterprise - GA",
      "cwe": "CWE-77",
      "title": "NVIDIA UFM Enterprise contains a vulnerability in the user management component, where an authenticated administrator could inject commands by sending a crafted API request. A successful exploit of this vulnerability might lead to code execution, escalation of privileges and information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24167"
    },
    {
      "rank": 358,
      "cve_id": "CVE-2026-24168",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "Unified Fabric Manager Enterprise - GA",
      "cwe": "CWE-77",
      "title": "NVIDIA UFM Enterprise contains a vulnerability in the IBDiagnet API where an authenticated attacker with administrative privileges may cause command injection by sending crafted API requests. A successful exploit of this vulnerability may lead to code execution, escalation of privileges and information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24168"
    },
    {
      "rank": 359,
      "cve_id": "CVE-2026-55535",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-367",
      "title": "PraisonAI: Server-Side Request Forgery via DNS rebinding bypass in webhook_url validation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55535"
    },
    {
      "rank": 360,
      "cve_id": "CVE-2026-65086",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "OpenShell",
      "cwe": "CWE-78",
      "title": "NVIDIA OpenShell for Linux contains a vulnerability in its sandbox exec handler, where an attacker could cause an OS command injection. A successful exploit of this vulnerability might lead to code execution, information disclosure, and data tampering.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65086"
    },
    {
      "rank": 361,
      "cve_id": "CVE-2026-65979",
      "cvss_base": 6.7,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-20",
      "title": "OpenEXR: Out-of-bounds read in HTJ2K decoder from unvalidated chunk header length (PLEN)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65979"
    },
    {
      "rank": 362,
      "cve_id": "CVE-2026-55531",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-400",
      "title": "PraisonAI: Unauthenticated unbounded session accumulation in the PraisonAI MCP HTTP server (memory exhaustion; session TTL never enforced)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55531"
    },
    {
      "rank": 363,
      "cve_id": "CVE-2026-55588",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "oras-project",
      "product": "oras",
      "cwe": "CWE-400",
      "title": "ORAS CLI: Cyclic Referrer Graph Can Cause Unbounded Recursion and Resource Consumption",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55588"
    },
    {
      "rank": 364,
      "cve_id": "CVE-2026-55618",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GOVCERT-LU",
      "product": "eml_parser",
      "cwe": "CWE-116",
      "title": "eml_parser: URL extraction bypass via HTML entities in URLs",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55618"
    },
    {
      "rank": 365,
      "cve_id": "CVE-2026-70550",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "jfrog",
      "product": "artifactory",
      "cwe": "CWE-862",
      "title": "Potential unauthorized access to private Composer repository metadata in JFrog Artifactory",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-70550"
    },
    {
      "rank": 366,
      "cve_id": "CVE-2026-78468",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "FluentCRM",
      "product": "FluentCRM Pro – Email Newsletter, Automation, Email Marketing, Email Campaigns, Optins, Leads, and CRM Solution",
      "cwe": "CWE-89",
      "title": "FluentCRM Pro <= 3.1.12 - Authenticated (Author+) SQL Injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78468"
    },
    {
      "rank": 367,
      "cve_id": "CVE-2026-18547",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "ultimatemember",
      "product": "Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin",
      "cwe": "CWE-79",
      "title": "Ultimate Member <= 2.12.1 - Authenticated (Subscriber+) Stored Cross-Site Scripting via Textarea Profile Field with HTML Support (DOM Gadget via id Attribute)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18547"
    },
    {
      "rank": 368,
      "cve_id": "CVE-2026-62861",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "baptisteArno",
      "product": "typebot.io",
      "cwe": "CWE-639",
      "title": "TypeBot: Cross-tenant custom-domain removal via unbound `name` in handleDeleteCustomDomain",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62861"
    },
    {
      "rank": 369,
      "cve_id": "CVE-2026-76128",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "implecode",
      "product": "eCommerce Product Catalog",
      "cwe": "CWE-79",
      "title": "eCommerce Product Catalog <= 3.5.10 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'style' Shortcode Attribute",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76128"
    },
    {
      "rank": 370,
      "cve_id": "CVE-2026-79717",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Ansible Automation Platform 2",
      "cwe": "CWE-918",
      "title": "Galaxy_ng: galaxy_ng: blind ssrf via namespace avatar_url with no private-address restriction",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79717"
    },
    {
      "rank": 371,
      "cve_id": "CVE-2026-44476",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "doorkeeper-gem",
      "product": "doorkeeper-openid_connect",
      "cwe": "CWE-287",
      "title": "Doorkeeper OpenID Connect: Dynamic Client Registration feature creates public clients with client_secret",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-44476"
    },
    {
      "rank": 372,
      "cve_id": "CVE-2026-78885",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "liketrek",
      "product": "TREK",
      "cwe": "CWE-287",
      "title": "liketrek TREK OIDC Service oidcService.ts findOrCreateUser improper authentication",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78885"
    },
    {
      "rank": 373,
      "cve_id": "CVE-2026-78886",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "liketrek",
      "product": "TREK",
      "cwe": "CWE-22",
      "title": "liketrek TREK Public Journey Photo Proxy journey-public.controller.ts path traversal",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78886"
    },
    {
      "rank": 374,
      "cve_id": "CVE-2026-78887",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "liketrek",
      "product": "TREK",
      "cwe": "CWE-285",
      "title": "liketrek TREK Journey Photo Proxy validateShareTokenForAsset authorization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78887"
    },
    {
      "rank": 375,
      "cve_id": "CVE-2026-80199",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kimai",
      "product": "kimai",
      "cwe": "CWE-208",
      "title": "Kimai before 2.54.0 Username Enumeration via Timing Oracle",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80199"
    },
    {
      "rank": 376,
      "cve_id": "CVE-2026-71444",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "C2PA Tool",
      "cwe": "CWE-191",
      "title": "CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71444"
    },
    {
      "rank": 377,
      "cve_id": "CVE-2026-76189",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "C2PA Tool",
      "cwe": "CWE-191",
      "title": "CAI Content Credentials | Integer Underflow (Wrap or Wraparound) (CWE-191)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76189"
    },
    {
      "rank": 378,
      "cve_id": "CVE-2026-13216",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zephyrproject",
      "product": "zephyr",
      "cwe": "CWE-787",
      "title": "Out-of-bounds stack write in Zephyr virtio PCI driver from unvalidated device-supplied capability length",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-13216"
    },
    {
      "rank": 379,
      "cve_id": "CVE-2026-55530",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MervinPraison",
      "product": "PraisonAI",
      "cwe": "CWE-862",
      "title": "PraisonAI: ast_grep_rewrite rewrites arbitrary files without the @require_approval gate enforced on every sibling mutation tool",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55530"
    },
    {
      "rank": 380,
      "cve_id": "CVE-2026-24225",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "DGX Spark",
      "cwe": "CWE-125",
      "title": "NVIDIA DGX Spark contains a vulnerability in the standalone MM firmware where an attacker could be able to cause an out-of-bounds read. A successful exploit of this vulnerability might lead to information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24225"
    },
    {
      "rank": 381,
      "cve_id": "CVE-2026-47624",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "DGX Spark",
      "cwe": "CWE-693",
      "title": "NVIDIA DGX Spark contains a vulnerability in UEFI where a Attacker may cause a/an CWE-693 by privileged local user. A successful exploit of this vulnerability may allow an attacker to bypass administrator password protection in UEFi.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47624"
    },
    {
      "rank": 382,
      "cve_id": "CVE-2026-79778",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "rclone",
      "product": "rclone",
      "cwe": "CWE-248",
      "title": "rclone before v1.75.0 Denial of Service via TUS nil-response panic",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79778"
    },
    {
      "rank": 383,
      "cve_id": "CVE-2026-79779",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "rclone",
      "product": "rclone",
      "cwe": "CWE-319",
      "title": "rclone before v1.75.0 WebDAV Credential Exposure via HTTPS-to-HTTP Redirect",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79779"
    },
    {
      "rank": 384,
      "cve_id": "CVE-2026-79780",
      "cvss_base": 6,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "rclone",
      "product": "rclone",
      "cwe": "CWE-200",
      "title": "rclone before v1.75.0 Credential Exposure via S3 Redirect",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79780"
    },
    {
      "rank": 385,
      "cve_id": "CVE-2026-13217",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zephyrproject",
      "product": "zephyr",
      "cwe": "CWE-476",
      "title": "NULL-pointer dereference in Zephyr OCPP CALLRESULT parsing via unchecked strtok_r/atoi",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-13217"
    },
    {
      "rank": 386,
      "cve_id": "CVE-2026-32637",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "velero-io",
      "product": "velero",
      "cwe": "CWE-22",
      "title": "Velero vulnerable to file path traversal when extracting from backup's tarball",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-32637"
    },
    {
      "rank": 387,
      "cve_id": "CVE-2026-63074",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OpenSSL",
      "product": "OpenSSL",
      "cwe": "CWE-770",
      "title": "CMP Indefinite Cache Growth of ExtraCerts",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-63074"
    },
    {
      "rank": 388,
      "cve_id": "CVE-2026-79652",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Build of Keycloak",
      "cwe": "CWE-862",
      "title": "Keycloak-services: keycloak-services: jwt bearer authorization grant does not enforce consentrequired",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79652"
    },
    {
      "rank": 389,
      "cve_id": "CVE-2026-80051",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "graphql-go project",
      "product": "graphql-go",
      "cwe": "CWE-1287",
      "title": "github.com/graphql-go/graphql (GraphQL for Go) through 0.8.1 does not validate that a scalar variable value matches its declared type. The built-in coerceString and coerceBool functions (scalars.go) accept input whose type does not match the declared String, ID, or Boolean scalar instead of raising the request error that the GraphQL specification mandates. In some cases (but not any typical case of JSON sent to a website), a deeply nested value leads to an unrecoverable \"fatal error: stack overflow\" condition.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80051"
    },
    {
      "rank": 390,
      "cve_id": "CVE-2026-80185",
      "cvss_base": 5.7,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-843",
      "title": "Bluez: sdp-xml: bluez 5.86: unprivileged-local and adjacent-le-peer leads to arbitrary code execution as root",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80185"
    },
    {
      "rank": 391,
      "cve_id": "CVE-2026-55663",
      "cvss_base": 5.6,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "versatica",
      "product": "mediasoup",
      "cwe": "CWE-345",
      "title": "mediasoup: SCTP state cookie lacks cryptographic authentication, enabling unauthorized association establishment (RFC 9260 violation)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55663"
    },
    {
      "rank": 392,
      "cve_id": "CVE-2026-65087",
      "cvss_base": 5.6,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "NemoClaw",
      "cwe": "CWE-522",
      "title": "NVIDIA NemoClaw contains a vulnerability where an attacker could cause insufficiently protected credentials . A successful exploit of this vulnerability might lead to information disclosure and data tampering.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65087"
    },
    {
      "rank": 393,
      "cve_id": "CVE-2026-13478",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zephyrproject",
      "product": "zephyr",
      "cwe": "CWE-125",
      "title": "Out-of-bounds read in Zephyr ext2 block-bitmap validation from a crafted s_blocks_count",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-13478"
    },
    {
      "rank": 394,
      "cve_id": "CVE-2026-48429",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Designer",
      "cwe": "CWE-476",
      "title": "Substance3D - Designer | NULL Pointer Dereference (CWE-476)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-48429"
    },
    {
      "rank": 395,
      "cve_id": "CVE-2026-59983",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-125",
      "title": "OpenEXR: Out-of-bounds read in DeepTiledInputFile sample-count table decode on ILP32",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59983"
    },
    {
      "rank": 396,
      "cve_id": "CVE-2026-59984",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-787",
      "title": "OpenEXR: Scratch buffer overflow decoding B44-compressed InputFile on ILP32",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59984"
    },
    {
      "rank": 397,
      "cve_id": "CVE-2026-59985",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-125",
      "title": "OpenEXR: Heap out-of-bounds read in OpenEXRCore RLE decoding on ILP32",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-59985"
    },
    {
      "rank": 398,
      "cve_id": "CVE-2026-61555",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-125",
      "title": "OpenEXR: Empty multiView viewFromChannelName file crash",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-61555"
    },
    {
      "rank": 399,
      "cve_id": "CVE-2026-64705",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apple",
      "product": "macOS",
      "cwe": "CWE-120",
      "title": "A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.7.7, macOS Sonoma 14.8.7. An app may be able to cause unexpected system termination or write kernel memory.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-64705"
    },
    {
      "rank": 400,
      "cve_id": "CVE-2026-65088",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "NemoClaw",
      "cwe": "CWE-214",
      "title": "NVIDIA NemoClaw contains a vulnerability where an attacker could cause invocation of process using visible sensitive information. A successful exploit of this vulnerability might lead to information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65088"
    },
    {
      "rank": 401,
      "cve_id": "CVE-2026-65367",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apple",
      "product": "iOS and iPadOS",
      "cwe": "CWE-476",
      "title": "A null pointer dereference was addressed with improved input validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5. An app may be able to cause unexpected system termination.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65367"
    },
    {
      "rank": 402,
      "cve_id": "CVE-2026-68514",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-122",
      "title": "OpenEXR: Heap buffer overflow in PyOpenEXR from literal/prefixed RGB channel name collision in deep images",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-68514"
    },
    {
      "rank": 403,
      "cve_id": "CVE-2026-71441",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Illustrator Desktop 2026",
      "cwe": "CWE-125",
      "title": "Illustrator | Out-of-bounds Read (CWE-125)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71441"
    },
    {
      "rank": 404,
      "cve_id": "CVE-2026-75752",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "Adobe Substance 3D Painter",
      "cwe": "CWE-125",
      "title": "Substance3D - Painter | Out-of-bounds Read (CWE-125)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75752"
    },
    {
      "rank": 405,
      "cve_id": "CVE-2026-76198",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Adobe",
      "product": "C2PA Tool",
      "cwe": "CWE-20",
      "title": "CAI Content Credentials | Improper Input Validation (CWE-20)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76198"
    },
    {
      "rank": 406,
      "cve_id": "CVE-2026-79622",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "dekdee",
      "product": "adobe-xd-mcp",
      "cwe": "CWE-22",
      "title": "dekdee adobe-xd-mcp file-access-from-request Endpoint xd-parser.ts path traversal",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79622"
    },
    {
      "rank": 407,
      "cve_id": "CVE-2026-79804",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SililaWijesinghe",
      "product": "Food Ordering System",
      "cwe": "CWE-74",
      "title": "SililaWijesinghe Food Ordering System search.php sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79804"
    },
    {
      "rank": 408,
      "cve_id": "CVE-2026-79845",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "code-projects",
      "product": "Simple Inventory System",
      "cwe": "CWE-74",
      "title": "code-projects Simple Inventory System edit.php sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79845"
    },
    {
      "rank": 409,
      "cve_id": "CVE-2026-79912",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TOTOLINK",
      "product": "N600R",
      "cwe": "CWE-74",
      "title": "TOTOLINK N600R cstecgi.cgi getCurrentTime command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79912"
    },
    {
      "rank": 410,
      "cve_id": "CVE-2026-21754",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "HCL Software",
      "product": "Hive",
      "cwe": "CWE-1004",
      "title": "HCL Hive is affected by multiple security vulnerabilities.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21754"
    },
    {
      "rank": 411,
      "cve_id": "CVE-2026-17587",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "formulaagile",
      "product": "My Agile Privacy® – CMP, Cookie Consent & Privacy Tools",
      "cwe": "CWE-862",
      "title": "My Agile Privacy® <= 3.3.6 - Missing Authorization to Unauthenticated Plugin Settings Modification via map_missing_cookie_shield / map_check_consent_mode_status AJAX Actions",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-17587"
    },
    {
      "rank": 412,
      "cve_id": "CVE-2026-55419",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pollen-robotics",
      "product": "reachy_mini",
      "cwe": "CWE-434",
      "title": "Reachy Mini: Unrestricted Upload of File with Dangerous Type",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55419"
    },
    {
      "rank": 413,
      "cve_id": "CVE-2026-55619",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GOVCERT-LU",
      "product": "eml_parser",
      "cwe": "CWE-770",
      "title": "eml_parser: Parser DoS via deeply nested parentheses in e-mail headers",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55619"
    },
    {
      "rank": 414,
      "cve_id": "CVE-2026-55624",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MintyItanium",
      "product": "Lost-Auction",
      "cwe": "CWE-670",
      "title": "MintyItanium Lost-Auction takes items like barrier blocks out from search GUI",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55624"
    },
    {
      "rank": 415,
      "cve_id": "CVE-2026-77585",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Okta",
      "product": "Okta Privileged Access Client",
      "cwe": "CWE-78",
      "title": "Improper Validation of SSH Target in Okta Privileged Access Client",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77585"
    },
    {
      "rank": 416,
      "cve_id": "CVE-2026-77680",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-407",
      "title": "Libsoup3: libsoup: quadratic cpu denial of service in http range coalescing after cve-2025-32907 fix",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77680"
    },
    {
      "rank": 417,
      "cve_id": "CVE-2026-78863",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "liketrek",
      "product": "TREK",
      "cwe": "CWE-287",
      "title": "liketrek TREK Pre-2FA mfa_token authService.ts loginUser improper authentication",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78863"
    },
    {
      "rank": 418,
      "cve_id": "CVE-2026-78864",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "liketrek",
      "product": "TREK",
      "cwe": "CWE-74",
      "title": "liketrek TREK Journey Entry Update journey.controller.t journeyService.updateEntry sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78864"
    },
    {
      "rank": 419,
      "cve_id": "CVE-2026-79406",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "macrozheng",
      "product": "mall",
      "cwe": "CWE-840",
      "title": "macrozheng mall quantity OmsCartItemServiceImpl.updateQuantity logic error",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79406"
    },
    {
      "rank": 420,
      "cve_id": "CVE-2026-79669",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-862",
      "title": "Ech0 before 4.4.3 Missing Authorization on System Logs",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79669"
    },
    {
      "rank": 421,
      "cve_id": "CVE-2026-65085",
      "cvss_base": 5.2,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "OpenShell",
      "cwe": "CWE-116",
      "title": "NVIDIA OpenShell for Linux contains a vulnerability in its inference proxy, where an attacker could cause an improper encoding or escaping of output. A successful exploit of this vulnerability might lead to information disclosure and data tampering.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65085"
    },
    {
      "rank": 422,
      "cve_id": "CVE-2026-16599",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "GNU",
      "product": "wget",
      "cwe": "CWE-606",
      "title": "Denial of Service in GNU wget",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16599"
    },
    {
      "rank": 423,
      "cve_id": "CVE-2026-24166",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NVIDIA",
      "product": "Unified Fabric Manager Enterprise - GA",
      "cwe": "CWE-321",
      "title": "NVIDIA UFM Enterprise contains a vulnerability in the session management component, where an attacker could use a hard-coded cryptographic key to extract information. A successful exploit of this vulnerability might lead to information disclosure and escalation of privileges.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-24166"
    },
    {
      "rank": 424,
      "cve_id": "CVE-2026-77997",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "yootheme.com",
      "product": "YOOtheme Pro extension for Joomla",
      "cwe": "CWE-284",
      "title": "Joomla Extension - yootheme.com - Authenticated, privileged information disclosure about site modules YOOtheme Pro 1.0.0-5.0.40",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77997"
    },
    {
      "rank": 425,
      "cve_id": "CVE-2026-79671",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-918",
      "title": "Ech0 before 4.4.3 SSRF via DNS Resolution Bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79671"
    },
    {
      "rank": 426,
      "cve_id": "CVE-2026-79777",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "rclone",
      "product": "rclone",
      "cwe": "CWE-209",
      "title": "rclone before v1.75.0 Information Disclosure via RC API",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79777"
    },
    {
      "rank": 427,
      "cve_id": "CVE-2026-77824",
      "cvss_base": 4.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "wpcreatix",
      "product": "Media Sweep – WordPress Media Cleaner",
      "cwe": "CWE-89",
      "title": "Media Sweep <= 1.1.3 - Authenticated (Administrator+) SQL Injection via 'fields' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77824"
    },
    {
      "rank": 428,
      "cve_id": "CVE-2026-26211",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Creativeitem",
      "product": "Ekushey Project Manager CRM",
      "cwe": "CWE-79",
      "title": "Ekushey Project Manager CRM 5.0 Stored XSS via System Name Field",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-26211"
    },
    {
      "rank": 429,
      "cve_id": "CVE-2026-79663",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-79",
      "title": "Ech0 before 4.7.3 Stored XSS via RSS feed tag names",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79663"
    },
    {
      "rank": 430,
      "cve_id": "CVE-2026-79670",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "lin-snow",
      "product": "Ech0",
      "cwe": "CWE-434",
      "title": "Ech0 before 4.4.3 Stored XSS via SVG Upload",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79670"
    },
    {
      "rank": 431,
      "cve_id": "CVE-2026-80101",
      "cvss_base": 4.4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 6",
      "cwe": "CWE-125",
      "title": "Gimp: multiple heap out-of-bounds reads in xwd loader from unrelated width and bytes-per-line validation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80101"
    },
    {
      "rank": 432,
      "cve_id": "CVE-2026-62986",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AcademySoftwareFoundation",
      "product": "openexr",
      "cwe": "CWE-200",
      "title": "OpenEXR: PyOpenEXR deep prefixed RGB stale lane disclosure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-62986"
    },
    {
      "rank": 433,
      "cve_id": "CVE-2026-75908",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "contrid",
      "product": "Newsletters",
      "cwe": "CWE-862",
      "title": "Newsletters <= 4.17 - Missing Authorization to Authenticated (Author+) Arbitrary Modification via 'newsletters_mailinglistsroles' POST Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75908"
    },
    {
      "rank": 434,
      "cve_id": "CVE-2026-21753",
      "cvss_base": 4.2,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "HCL Software",
      "product": "Hive",
      "cwe": "CWE-1104",
      "title": "HCL Hive is affected by multiple security vulnerabilities.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21753"
    },
    {
      "rank": 435,
      "cve_id": "CVE-2026-70665",
      "cvss_base": 4.2,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "doorkeeper-gem",
      "product": "doorkeeper-openid_connect",
      "cwe": "CWE-285",
      "title": "Doorkeeper OpenID Connect: DCR endpoint persists unvalidated client-supplied scopes",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-70665"
    },
    {
      "rank": 436,
      "cve_id": "CVE-2026-78581",
      "cvss_base": 4.2,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Elastic",
      "product": "Kibana",
      "cwe": "CWE-639",
      "title": "Authorization Bypass Through User-Controlled Key in Kibana Leading to Unauthorized Data Modification in Kibana",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78581"
    },
    {
      "rank": 437,
      "cve_id": "CVE-2026-21758",
      "cvss_base": 3.7,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "HCL Software",
      "product": "Hive",
      "cwe": "CWE-200",
      "title": "HCL Hive is affected by multiple security vulnerabilities.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21758"
    },
    {
      "rank": 438,
      "cve_id": "CVE-2026-70548",
      "cvss_base": 3.5,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "jfrog",
      "product": "artifactory",
      "cwe": "CWE-918",
      "title": "SSRF In CocoaPods Via JFrog Artifactory External Dependency",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-70548"
    },
    {
      "rank": 439,
      "cve_id": "CVE-2026-43657",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apple",
      "product": "iOS and iPadOS",
      "cwe": "CWE-269",
      "title": "A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 26.5 and iPadOS 26.5. A malicious app may be able to enumerate installed apps.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-43657"
    },
    {
      "rank": 440,
      "cve_id": "CVE-2026-79792",
      "cvss_base": 2.9,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zackees",
      "product": "transcribe-anything",
      "cwe": "CWE-77",
      "title": "zackees transcribe-anything Yt-dlp Download ytldp_download.py ytdlp_download os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79792"
    },
    {
      "rank": 441,
      "cve_id": "CVE-2026-15310",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Python Software Foundation",
      "product": "CPython",
      "cwe": "CWE-400",
      "title": "zipfile: bzip2/LZMA/Zstandard members decompress without a max_length bound, defeating chunked-read memory limits",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15310"
    },
    {
      "rank": 442,
      "cve_id": "CVE-2026-72924",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cli",
      "product": "cli",
      "cwe": "CWE-668",
      "title": "GitHub CLI: `gh codespace ports forward` exposes forwarded services on all network interfaces by default",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-72924"
    },
    {
      "rank": 443,
      "cve_id": "CVE-2026-79623",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "FishCodeTech",
      "product": "Muteki",
      "cwe": "CWE-77",
      "title": "FishCodeTech Muteki Default Local Worker Backend settings.json os command injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79623"
    },
    {
      "rank": 444,
      "cve_id": "CVE-2026-79793",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "code-projects",
      "product": "Online Shopping System",
      "cwe": "CWE-79",
      "title": "code-projects Online Shopping System sumit_form.php cross site scripting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79793"
    },
    {
      "rank": 445,
      "cve_id": "CVE-2026-79783",
      "cvss_base": 2,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "rclone",
      "product": "rclone",
      "cwe": "CWE-732",
      "title": "rclone before 1.74.4 Privilege Escalation via setuid Metadata",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79783"
    },
    {
      "rank": 446,
      "cve_id": "CVE-2026-80201",
      "cvss_base": 2,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kimai",
      "product": "kimai",
      "cwe": "CWE-94",
      "title": "Kimai before 2.53.0 API Token Leakage via Invoice Template",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80201"
    },
    {
      "rank": 447,
      "cve_id": "CVE-2026-80200",
      "cvss_base": 0,
      "cvss_severity": "NONE",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kimai",
      "product": "kimai",
      "cwe": "CWE-601",
      "title": "Kimai before 2.53.0 Open Redirect via RelayState",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80200"
    },
    {
      "rank": 448,
      "cve_id": "CVE-2026-15088",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Development Environment",
      "cwe": null,
      "title": "Development Environment - Critical - Unsupported - SA-CONTRIB-2026-089",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15088"
    },
    {
      "rank": 449,
      "cve_id": "CVE-2026-15916",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Drupal core",
      "cwe": "CWE-862",
      "title": "Drupal core - Moderately critical - Information disclosure - SA-CORE-2026-010",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15916"
    },
    {
      "rank": 450,
      "cve_id": "CVE-2026-15917",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Drupal core",
      "cwe": "CWE-79",
      "title": "Drupal core - Moderately critical - Cross-site scripting - SA-CORE-2026-011",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15917"
    },
    {
      "rank": 451,
      "cve_id": "CVE-2026-16638",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Media Folders",
      "cwe": "CWE-79",
      "title": "Media Folders - Moderately critical - Cross site scripting - SA-CONTRIB-2026-080",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16638"
    },
    {
      "rank": 452,
      "cve_id": "CVE-2026-16639",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Internationalization Single Sign-On",
      "cwe": "CWE-288",
      "title": "Internationalization Single Sign-On - Critical - Access bypass - SA-CONTRIB-2026-081",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16639"
    },
    {
      "rank": 453,
      "cve_id": "CVE-2026-16640",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Search API Autocomplete",
      "cwe": "CWE-79",
      "title": "Search API Autocomplete - Moderately critical - Cross-site Scripting - SA-CONTRIB-2026-082",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16640"
    },
    {
      "rank": 454,
      "cve_id": "CVE-2026-16641",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Commerce Elavon",
      "cwe": null,
      "title": "Commerce Elavon - Critical - Unsupported - SA-CONTRIB-2026-084",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16641"
    },
    {
      "rank": 455,
      "cve_id": "CVE-2026-16642",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Email Login OTP",
      "cwe": null,
      "title": "Email Login OTP - Critical - Unsupported - SA-CONTRIB-2026-085",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16642"
    },
    {
      "rank": 456,
      "cve_id": "CVE-2026-16643",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Lunr exposed filters",
      "cwe": null,
      "title": "Lunr exposed filters - Critical - Unsupported - SA-CONTRIB-2026-086",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16643"
    },
    {
      "rank": 457,
      "cve_id": "CVE-2026-16644",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Webform REST",
      "cwe": "CWE-863",
      "title": "Webform REST - Moderately critical - Access bypass - SA-CONTRIB-2026-087",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16644"
    },
    {
      "rank": 458,
      "cve_id": "CVE-2026-16645",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "PhotoSwipe - Responsive JavaScript Modal Image Gallery",
      "cwe": "CWE-862",
      "title": "PhotoSwipe - Responsive JavaScript Modal Image Gallery - Moderately critical - Access bypass - SA-CONTRIB-2026-088",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16645"
    },
    {
      "rank": 459,
      "cve_id": "CVE-2026-16646",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "PanKM",
      "cwe": null,
      "title": "PanKM - Critical - Unsupported - SA-CONTRIB-2026-083",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16646"
    },
    {
      "rank": 460,
      "cve_id": "CVE-2026-18259",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Token Content Access",
      "cwe": "CWE-208",
      "title": "Token Content Access - Moderately critical - Access bypass - SA-CONTRIB-2026-090",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18259"
    },
    {
      "rank": 461,
      "cve_id": "CVE-2026-18260",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Disable Login Page",
      "cwe": null,
      "title": "Disable Login Page - Critical - Unsupported - SA-CONTRIB-2026-091",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18260"
    },
    {
      "rank": 462,
      "cve_id": "CVE-2026-18261",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Powerful Surveys",
      "cwe": null,
      "title": "Powerful Surveys - Critical - Unsupported - SA-CONTRIB-2026-092",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18261"
    },
    {
      "rank": 463,
      "cve_id": "CVE-2026-18985",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Edit in-place field",
      "cwe": "CWE-863",
      "title": "Edit in-place field - Moderately critical - Access bypass - SA-CONTRIB-2026-093",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18985"
    },
    {
      "rank": 464,
      "cve_id": "CVE-2026-19912",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Kaltura",
      "product": "Kaltura HTML5 Video Player, html5 library",
      "cwe": null,
      "title": "CVE-2026-19912",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19912"
    },
    {
      "rank": 465,
      "cve_id": "CVE-2026-19913",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Kaltura",
      "product": "Kaltura HTML5 Video Player, html5lib library",
      "cwe": null,
      "title": "CVE-2026-19913",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19913"
    },
    {
      "rank": 466,
      "cve_id": "CVE-2026-38465",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "A Stored XSS vulnerability in the donor avatar mouse-over text feature in GazellePW (GazellePosterWall) commit 86c4bedf727691b5a97af42a4864869d18446449 allows remote authenticated users to inject arbitrary JavaScript via the avatar_mouse_over_text parameter, which is stored and later rendered in avatar tooltip.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-38465"
    },
    {
      "rank": 467,
      "cve_id": "CVE-2026-38466",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "A Stored XSS vulnerability in the torrent remaster custom title feature in GazellePW (GazellePosterWall) commit 86c4bedf727691b5a97af42a4864869d18446449 allows remote authenticated users to inject arbitrary JavaScript via the remaster_custom_title parameter, which is stored during torrent upload or edit and later rendered in torrent title output.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-38466"
    },
    {
      "rank": 468,
      "cve_id": "CVE-2026-38467",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "A SQL injection vulnerability in the tags manager in GazellePW (GazellePosterWall) commit 86c4bedf727691b5a97af42a4864869d18446449 allows remote authenticated users with users_mod privileges to execute arbitrary SQL commands via the tagid or type parameter in a crafted POST request to tools.php?action=manage_tags.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-38467"
    },
    {
      "rank": 469,
      "cve_id": "CVE-2026-38468",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "A SQL injection vulnerability in the country-code lookup endpoint in GazellePW (GazellePosterWall) commit 86c4bedf727691b5a97af42a4864869d18446449 allows remote authenticated users with users_view_ips privileges to execute arbitrary SQL commands via the ip parameter in a crafted request to tools.php?action=get_cc.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-38468"
    },
    {
      "rank": 470,
      "cve_id": "CVE-2026-38469",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "A Stored XSS vulnerability in the custom bonus title feature in GazellePW (GazellePosterWall) commit 86c4bedf727691b5a97af42a4864869d18446449 allows remote authenticated users to inject arbitrary JavaScript via the title parameter in /bonus.php and /user.php?action=staff_tool.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-38469"
    },
    {
      "rank": 471,
      "cve_id": "CVE-2026-38470",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "A Broken access control vulnerability in the API user endpoint in GazellePW (GazellePosterWall) commit 86c4bedf727691b5a97af42a4864869d18446449 allows unprivileged, authenticated users to enable or disable arbitrary user accounts via the req=disable or req=enable action using a normal user-created API token.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-38470"
    },
    {
      "rank": 472,
      "cve_id": "CVE-2026-38472",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "A Stored XSS vulnerability in forum reward comments in GazellePW (GazellePosterWall) commit 86c4bedf727691b5a97af42a4864869d18446449 allows remote attackers to inject arbitrary JavaScript via the c parameter in /forums.php?action=ajax_get_jf which is later rendered in the data-tooltip attribute in /forums.php?action=viewthread and interpreted as HTML by the Tooltipster configuration.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-38472"
    },
    {
      "rank": 473,
      "cve_id": "CVE-2026-38473",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "A Stored XSS vulnerability in the subtitle deletion flow in GazellePW (GazellePosterWall) commit 86c4bedf727691b5a97af42a4864869d18446449 allows remote authenticated users to inject arbitrary JavaScript via a crafted subtitle filename, which is stored during upload and later rendered in /subtitles.php?action=delete.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-38473"
    },
    {
      "rank": 474,
      "cve_id": "CVE-2026-38474",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "GazellePW (GazellePosterWall) commit 86c4bedf727691b5a97af42a4864869d18446449 suffers from a Broken access control vulnerability in the IP lock manager, which allows remote authenticated users to add, modify, or delete IP lock entries for arbitrary accounts via tools.php?action=iplock.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-38474"
    },
    {
      "rank": 475,
      "cve_id": "CVE-2026-39113",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "Buffer Overflow vulnerability in SQLite affected version source snapshots/builds containing Fossil check-in 8bdc0d485e3ad0c7a1e818da66f106951d496b05cbe61d12c2c448f2f24b6d5d (Git mirror 169f68ed88b34cb68f720191c64c058f2ccec508, 2026-03-11) and later snapshots/builds allows an attacker to cause a denial of service via the ext/misc/sqlar.c, sqlarUncompressFunc(), sqlar_uncompress(), sqlite3_value_int64(), sqlite3_malloc(int), uncompress() components",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-39113"
    },
    {
      "rank": 476,
      "cve_id": "CVE-2026-43670",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apple",
      "product": "Safari",
      "cwe": null,
      "title": "A Content Security Policy bypass was addressed with improved enforcement in AudioWorklet contexts. This issue is fixed in Safari 26.5, iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5. Processing maliciously crafted web content may bypass Content Security Policy.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-43670"
    },
    {
      "rank": 477,
      "cve_id": "CVE-2026-51368",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "An issue in Beijing Tongtech Co., Ltd tongweb v.7.0.24 in the Spring HttpInovkerServiceExporter component allows a remote attacker to execute arbitrary code via a crafted request to the console/heimdall endpoint",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-51368"
    },
    {
      "rank": 478,
      "cve_id": "CVE-2026-52489",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "Buffer Overflow vulnerability in gpac 31becc9e08b88e525a4a62013a4000de1c0f8fd9 allows an attacker to execute arbitrary code via the svgNameToImplementationName() function",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-52489"
    },
    {
      "rank": 479,
      "cve_id": "CVE-2026-52491",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "An issue in libtiff 85f2ac8e0b01cb7db2bbecf4a3b891bdbef67938 allows an attacker to execute arbitrary code via the libtiff/tools/thumbnail.c: main() component",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-52491"
    },
    {
      "rank": 480,
      "cve_id": "CVE-2026-53561",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Hive",
      "cwe": "CWE-287",
      "title": "Apache Hive: Unauthenticated authentication bypass in HiveServer2 HTTP SAML bearer-token validation allows impersonation of any Hive user",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-53561"
    },
    {
      "rank": 481,
      "cve_id": "CVE-2026-55805",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Drupal",
      "product": "Drupal core",
      "cwe": "CWE-79",
      "title": "Drupal core - Moderately critical - Cross-site scripting - SA-CORE-2026-012",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55805"
    },
    {
      "rank": 482,
      "cve_id": "CVE-2026-55976",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Hive",
      "cwe": "CWE-918",
      "title": "Apache Hive: SSRF vulnerability in Hive Avro Serde due to Insufficient input validation on avro.schema.url",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-55976"
    },
    {
      "rank": 483,
      "cve_id": "CVE-2026-63073",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OpenSSL",
      "product": "OpenSSL",
      "cwe": "CWE-134",
      "title": "Untrusted Sender DN Used as Format String in CMP Response Validation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-63073"
    },
    {
      "rank": 484,
      "cve_id": "CVE-2026-65182",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Tomcat",
      "cwe": "CWE-284",
      "title": "Apache Tomcat: Bypass longest prefix security constraint",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65182"
    },
    {
      "rank": 485,
      "cve_id": "CVE-2026-65183",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Tomcat",
      "cwe": "CWE-367",
      "title": "Apache Tomcat: TOCTOU when setting specific permissions for Unix Domain Sockets",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65183"
    },
    {
      "rank": 486,
      "cve_id": "CVE-2026-65637",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Tomcat",
      "cwe": "CWE-20",
      "title": "Apache Tomcat: HTTP/2 no-authority bypass of strict SNI validation - CVE-2026-32990 fix incomplete",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65637"
    },
    {
      "rank": 487,
      "cve_id": "CVE-2026-65905",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Tomcat",
      "cwe": "CWE-294",
      "title": "Apache Tomcat: Limited replay attack possible with DIGEST authentication",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65905"
    },
    {
      "rank": 488,
      "cve_id": "CVE-2026-65927",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Tomcat",
      "cwe": "CWE-193",
      "title": "Apache Tomcat: RewriteValve [N] restarts at the second rule and may bypass access control",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65927"
    },
    {
      "rank": 489,
      "cve_id": "CVE-2026-66152",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SonicWall",
      "product": "NetExtender",
      "cwe": "CWE-29",
      "title": "A Path traversal vulnerability in OPSWAT tarball in the SonicWall NetExtender Linux client allows an attacker to write arbitrary file as root.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-66152"
    },
    {
      "rank": 490,
      "cve_id": "CVE-2026-66153",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SonicWall",
      "product": "NetExtender",
      "cwe": "CWE-59",
      "title": "The NEService auto-upgrade process insecurely handles temporary files in SonicWall NetExtender Linux client which allows an attacker to manipulate file paths.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-66153"
    },
    {
      "rank": 491,
      "cve_id": "CVE-2026-66422",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Tomcat",
      "cwe": "CWE-285",
      "title": "Apache Tomcat: Servlet role references can bypass declarative role constraints",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-66422"
    },
    {
      "rank": 492,
      "cve_id": "CVE-2026-68525",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Tomcat",
      "cwe": "CWE-863",
      "title": "Apache Tomcat: Redirect after FORM auth may bypass method specific constraints",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-68525"
    },
    {
      "rank": 493,
      "cve_id": "CVE-2026-68569",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Tomcat",
      "cwe": "CWE-287",
      "title": "Apache Tomcat: Principal lookup can fail open in some cases",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-68569"
    },
    {
      "rank": 494,
      "cve_id": "CVE-2026-68763",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Tomcat",
      "cwe": "CWE-400",
      "title": "Apache Tomcat: DoS via allocation leak in HTTP/2 backlog tracking when a stream is reset",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-68763"
    },
    {
      "rank": 495,
      "cve_id": "CVE-2026-73180",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Tomcat",
      "cwe": "CWE-613",
      "title": "Apache Tomcat: Authenticated WebSocket session survives end of HTTP session",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-73180"
    },
    {
      "rank": 496,
      "cve_id": "CVE-2026-75421",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "aria2 <=1.37.0 has a stack-buffer-underflow vulnerability in the IOFile::getLine() function.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75421"
    },
    {
      "rank": 497,
      "cve_id": "CVE-2026-75465",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "The /api.php/user/get_list endpoint in Maccms v10 v2026.1000.4055 is vulnerable to an Incorrect Access Control issue. The interface fails to perform any authentication or authorization checks. An unauthenticated remote attacker can send a crafted HTTP GET request with limit and offset parameters to paginate and retrieve sensitive information of all registered users.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75465"
    },
    {
      "rank": 498,
      "cve_id": "CVE-2026-75803",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OpenSSL",
      "product": "OpenSSL",
      "cwe": "CWE-354",
      "title": "AEAD Forgeries with Empty Ciphertext When Using EVP_Cipher()",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75803"
    },
    {
      "rank": 499,
      "cve_id": "CVE-2026-78619",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": null,
      "product": "Punk-TOTP",
      "cwe": "CWE-305",
      "title": "Punk::Plugin::TOTP versions before 0.05 for Perl accept another account's recovery code at the two-factor challenge because totp_use_recovery compares user identifiers numerically",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78619"
    },
    {
      "rank": 500,
      "cve_id": "CVE-2026-78655",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": null,
      "product": "Punk-TOTP",
      "cwe": "CWE-307",
      "title": "Punk::Plugin::TOTP versions before 0.05 for Perl allow the second-factor attempt limit to be reset by replaying an earlier session cookie because the challenge route counts failures in the session",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78655"
    },
    {
      "rank": 501,
      "cve_id": "CVE-2026-78891",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-122",
      "title": "Buffer overflow in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78891"
    },
    {
      "rank": 502,
      "cve_id": "CVE-2026-78892",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Chromoting in Google Chrome on on Windows prior to 152.0.7977.65 allowed a local attacker to bypass system access restrictions via a local program. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78892"
    },
    {
      "rank": 503,
      "cve_id": "CVE-2026-78893",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in QUIC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to leak sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78893"
    },
    {
      "rank": 504,
      "cve_id": "CVE-2026-78894",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in Payments in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78894"
    },
    {
      "rank": 505,
      "cve_id": "CVE-2026-78895",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Paint in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78895"
    },
    {
      "rank": 506,
      "cve_id": "CVE-2026-78896",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in StorageAccessAPI in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78896"
    },
    {
      "rank": 507,
      "cve_id": "CVE-2026-78897",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in BrowserTag in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted Chrome extension. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78897"
    },
    {
      "rank": 508,
      "cve_id": "CVE-2026-78898",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Downloads in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78898"
    },
    {
      "rank": 509,
      "cve_id": "CVE-2026-78900",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78900"
    },
    {
      "rank": 510,
      "cve_id": "CVE-2026-78901",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-362",
      "title": "Race condition in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78901"
    },
    {
      "rank": 511,
      "cve_id": "CVE-2026-78903",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-459",
      "title": "Incomplete cleanup in SiteIsolation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78903"
    },
    {
      "rank": 512,
      "cve_id": "CVE-2026-78904",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78904"
    },
    {
      "rank": 513,
      "cve_id": "CVE-2026-78905",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78905"
    },
    {
      "rank": 514,
      "cve_id": "CVE-2026-78906",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-362",
      "title": "Race condition in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78906"
    },
    {
      "rank": 515,
      "cve_id": "CVE-2026-78907",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in WebProtect in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to leak sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78907"
    },
    {
      "rank": 516,
      "cve_id": "CVE-2026-78908",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Canvas in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78908"
    },
    {
      "rank": 517,
      "cve_id": "CVE-2026-78910",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-121",
      "title": "Buffer overflow in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78910"
    },
    {
      "rank": 518,
      "cve_id": "CVE-2026-78911",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in USB in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78911"
    },
    {
      "rank": 519,
      "cve_id": "CVE-2026-78912",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Browser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78912"
    },
    {
      "rank": 520,
      "cve_id": "CVE-2026-78913",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Chromoting in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78913"
    },
    {
      "rank": 521,
      "cve_id": "CVE-2026-78914",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78914"
    },
    {
      "rank": 522,
      "cve_id": "CVE-2026-78915",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-362",
      "title": "Race condition in Enterprise in Google Chrome on on Windows prior to 152.0.7977.65 allowed an adjacent attacker to potentially execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78915"
    },
    {
      "rank": 523,
      "cve_id": "CVE-2026-78934",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-362",
      "title": "Race condition in ReadAloud in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78934"
    },
    {
      "rank": 524,
      "cve_id": "CVE-2026-78935",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-457",
      "title": "Use of uninitialized variable in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78935"
    },
    {
      "rank": 525,
      "cve_id": "CVE-2026-78936",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to obtain cross-origin data via a co-installed app. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78936"
    },
    {
      "rank": 526,
      "cve_id": "CVE-2026-78938",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78938"
    },
    {
      "rank": 527,
      "cve_id": "CVE-2026-78940",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-665",
      "title": "Improper initialization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78940"
    },
    {
      "rank": 528,
      "cve_id": "CVE-2026-78941",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Core in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78941"
    },
    {
      "rank": 529,
      "cve_id": "CVE-2026-78942",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-706",
      "title": "Incorrect reference resolution in Loader in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78942"
    },
    {
      "rank": 530,
      "cve_id": "CVE-2026-78943",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Editing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78943"
    },
    {
      "rank": 531,
      "cve_id": "CVE-2026-78946",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Select in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78946"
    },
    {
      "rank": 532,
      "cve_id": "CVE-2026-78947",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-459",
      "title": "Incomplete cleanup in Chromium in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted Chrome extension. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78947"
    },
    {
      "rank": 533,
      "cve_id": "CVE-2026-78948",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-122",
      "title": "Buffer overflow in WebGL in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78948"
    },
    {
      "rank": 534,
      "cve_id": "CVE-2026-78949",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to obtain cross-origin data via a co-installed app. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78949"
    },
    {
      "rank": 535,
      "cve_id": "CVE-2026-78950",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-190",
      "title": "Integer overflow in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78950"
    },
    {
      "rank": 536,
      "cve_id": "CVE-2026-78952",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in Crashpad in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78952"
    },
    {
      "rank": 537,
      "cve_id": "CVE-2026-78953",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in SiteIsolation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted PDF file. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78953"
    },
    {
      "rank": 538,
      "cve_id": "CVE-2026-78954",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78954"
    },
    {
      "rank": 539,
      "cve_id": "CVE-2026-78955",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in PerformanceAPIs in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78955"
    },
    {
      "rank": 540,
      "cve_id": "CVE-2026-78956",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78956"
    },
    {
      "rank": 541,
      "cve_id": "CVE-2026-78957",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a local attacker to obtain sensitive information via a crafted file. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78957"
    },
    {
      "rank": 542,
      "cve_id": "CVE-2026-78958",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78958"
    },
    {
      "rank": 543,
      "cve_id": "CVE-2026-78959",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-178",
      "title": "Improper handling of case sensitivity in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78959"
    },
    {
      "rank": 544,
      "cve_id": "CVE-2026-78960",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain cross-origin data via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78960"
    },
    {
      "rank": 545,
      "cve_id": "CVE-2026-78961",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Core in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78961"
    },
    {
      "rank": 546,
      "cve_id": "CVE-2026-78962",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in WebXR in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78962"
    },
    {
      "rank": 547,
      "cve_id": "CVE-2026-78963",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78963"
    },
    {
      "rank": 548,
      "cve_id": "CVE-2026-78965",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78965"
    },
    {
      "rank": 549,
      "cve_id": "CVE-2026-78966",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-610",
      "title": "Externally controlled reference in QUIC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78966"
    },
    {
      "rank": 550,
      "cve_id": "CVE-2026-78967",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in BFCache in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78967"
    },
    {
      "rank": 551,
      "cve_id": "CVE-2026-78968",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Core in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially spoof address bar via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78968"
    },
    {
      "rank": 552,
      "cve_id": "CVE-2026-78969",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in Video in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78969"
    },
    {
      "rank": 553,
      "cve_id": "CVE-2026-78974",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Linux Toolkit Theming in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78974"
    },
    {
      "rank": 554,
      "cve_id": "CVE-2026-78975",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in DOM in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78975"
    },
    {
      "rank": 555,
      "cve_id": "CVE-2026-78976",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in StorageAccessAPI in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78976"
    },
    {
      "rank": 556,
      "cve_id": "CVE-2026-78977",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in GPU in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78977"
    },
    {
      "rank": 557,
      "cve_id": "CVE-2026-78978",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78978"
    },
    {
      "rank": 558,
      "cve_id": "CVE-2026-78979",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-362",
      "title": "Race condition in Core in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78979"
    },
    {
      "rank": 559,
      "cve_id": "CVE-2026-78980",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in ReaderMode in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy into a privileged page via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78980"
    },
    {
      "rank": 560,
      "cve_id": "CVE-2026-78981",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a local attacker to potentially obtain sensitive information via a local program. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78981"
    },
    {
      "rank": 561,
      "cve_id": "CVE-2026-78984",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in GPU in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78984"
    },
    {
      "rank": 562,
      "cve_id": "CVE-2026-78985",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-706",
      "title": "Incorrect reference resolution in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78985"
    },
    {
      "rank": 563,
      "cve_id": "CVE-2026-78986",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in GPU in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78986"
    },
    {
      "rank": 564,
      "cve_id": "CVE-2026-78987",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Canvas in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78987"
    },
    {
      "rank": 565,
      "cve_id": "CVE-2026-78989",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78989"
    },
    {
      "rank": 566,
      "cve_id": "CVE-2026-78991",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in WebProtect in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78991"
    },
    {
      "rank": 567,
      "cve_id": "CVE-2026-78999",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-269",
      "title": "Improper privilege management in Navigation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78999"
    },
    {
      "rank": 568,
      "cve_id": "CVE-2026-79000",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in DeviceBoundSessionCredentials in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy via crafted network traffic. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79000"
    },
    {
      "rank": 569,
      "cve_id": "CVE-2026-79001",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Bluetooth in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79001"
    },
    {
      "rank": 570,
      "cve_id": "CVE-2026-79002",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in SiteIsolation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79002"
    },
    {
      "rank": 571,
      "cve_id": "CVE-2026-79003",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Device in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79003"
    },
    {
      "rank": 572,
      "cve_id": "CVE-2026-79004",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79004"
    },
    {
      "rank": 573,
      "cve_id": "CVE-2026-79005",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in StorageAccessAPI in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79005"
    },
    {
      "rank": 574,
      "cve_id": "CVE-2026-79006",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-693",
      "title": "Protection mechanism failure in HttpsUpgrades in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79006"
    },
    {
      "rank": 575,
      "cve_id": "CVE-2026-79007",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in GPU in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79007"
    },
    {
      "rank": 576,
      "cve_id": "CVE-2026-79008",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in GPU in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79008"
    },
    {
      "rank": 577,
      "cve_id": "CVE-2026-79009",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in UI in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79009"
    },
    {
      "rank": 578,
      "cve_id": "CVE-2026-79010",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-672",
      "title": "Operation on a resource after expiration or release in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79010"
    },
    {
      "rank": 579,
      "cve_id": "CVE-2026-79011",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Browser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79011"
    },
    {
      "rank": 580,
      "cve_id": "CVE-2026-79013",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Sync in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79013"
    },
    {
      "rank": 581,
      "cve_id": "CVE-2026-79014",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-362",
      "title": "Race condition in Autofill in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79014"
    },
    {
      "rank": 582,
      "cve_id": "CVE-2026-79015",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79015"
    },
    {
      "rank": 583,
      "cve_id": "CVE-2026-79016",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in SVG in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79016"
    },
    {
      "rank": 584,
      "cve_id": "CVE-2026-79017",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted Chrome extension. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79017"
    },
    {
      "rank": 585,
      "cve_id": "CVE-2026-79018",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in FoldableAPIs in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79018"
    },
    {
      "rank": 586,
      "cve_id": "CVE-2026-79019",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79019"
    },
    {
      "rank": 587,
      "cve_id": "CVE-2026-79020",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted media file. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79020"
    },
    {
      "rank": 588,
      "cve_id": "CVE-2026-79021",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in InterestGroups in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass system access restrictions via a crafted PDF file. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79021"
    },
    {
      "rank": 589,
      "cve_id": "CVE-2026-79022",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Transactions Platform in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially spoof UI elements via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79022"
    },
    {
      "rank": 590,
      "cve_id": "CVE-2026-79023",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Editing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79023"
    },
    {
      "rank": 591,
      "cve_id": "CVE-2026-79024",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79024"
    },
    {
      "rank": 592,
      "cve_id": "CVE-2026-79025",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79025"
    },
    {
      "rank": 593,
      "cve_id": "CVE-2026-79026",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted Chrome extension. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79026"
    },
    {
      "rank": 594,
      "cve_id": "CVE-2026-79028",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79028"
    },
    {
      "rank": 595,
      "cve_id": "CVE-2026-79030",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in Autofill in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79030"
    },
    {
      "rank": 596,
      "cve_id": "CVE-2026-79031",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-668",
      "title": "Improper resource exposure in Preload in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79031"
    },
    {
      "rank": 597,
      "cve_id": "CVE-2026-79032",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79032"
    },
    {
      "rank": 598,
      "cve_id": "CVE-2026-79033",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-691",
      "title": "Insufficient control flow management in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79033"
    },
    {
      "rank": 599,
      "cve_id": "CVE-2026-79034",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in CORS in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79034"
    },
    {
      "rank": 600,
      "cve_id": "CVE-2026-79038",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in WebProtect in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79038"
    },
    {
      "rank": 601,
      "cve_id": "CVE-2026-79039",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79039"
    },
    {
      "rank": 602,
      "cve_id": "CVE-2026-79040",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in GPU in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79040"
    },
    {
      "rank": 603,
      "cve_id": "CVE-2026-79041",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Browser in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy into a privileged page via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79041"
    },
    {
      "rank": 604,
      "cve_id": "CVE-2026-79042",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Payments in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79042"
    },
    {
      "rank": 605,
      "cve_id": "CVE-2026-79043",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79043"
    },
    {
      "rank": 606,
      "cve_id": "CVE-2026-79044",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in WebAppInstalls in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79044"
    },
    {
      "rank": 607,
      "cve_id": "CVE-2026-79045",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79045"
    },
    {
      "rank": 608,
      "cve_id": "CVE-2026-79046",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in Permissions in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79046"
    },
    {
      "rank": 609,
      "cve_id": "CVE-2026-79048",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79048"
    },
    {
      "rank": 610,
      "cve_id": "CVE-2026-79049",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-706",
      "title": "Incorrect reference resolution in Passwords in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted file. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79049"
    },
    {
      "rank": 611,
      "cve_id": "CVE-2026-79050",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79050"
    },
    {
      "rank": 612,
      "cve_id": "CVE-2026-79051",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Loader in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79051"
    },
    {
      "rank": 613,
      "cve_id": "CVE-2026-79053",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Lighthouse in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79053"
    },
    {
      "rank": 614,
      "cve_id": "CVE-2026-79055",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Sharing in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker leveraging social engineering to obtain sensitive information via a co-installed app. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79055"
    },
    {
      "rank": 615,
      "cve_id": "CVE-2026-79057",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in Start in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a co-installed app. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79057"
    },
    {
      "rank": 616,
      "cve_id": "CVE-2026-79058",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Passwords in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79058"
    },
    {
      "rank": 617,
      "cve_id": "CVE-2026-79059",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in BFCache in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79059"
    },
    {
      "rank": 618,
      "cve_id": "CVE-2026-79060",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in StorageAccessAPI in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79060"
    },
    {
      "rank": 619,
      "cve_id": "CVE-2026-79064",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Network in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79064"
    },
    {
      "rank": 620,
      "cve_id": "CVE-2026-79065",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79065"
    },
    {
      "rank": 621,
      "cve_id": "CVE-2026-79066",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Navigation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79066"
    },
    {
      "rank": 622,
      "cve_id": "CVE-2026-79067",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79067"
    },
    {
      "rank": 623,
      "cve_id": "CVE-2026-79068",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-668",
      "title": "Improper resource exposure in StreamsAPI in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy into a privileged page via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79068"
    },
    {
      "rank": 624,
      "cve_id": "CVE-2026-79069",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-119",
      "title": "Memory corruption in Tint in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79069"
    },
    {
      "rank": 625,
      "cve_id": "CVE-2026-79070",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-706",
      "title": "Incorrect reference resolution in Cache in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79070"
    },
    {
      "rank": 626,
      "cve_id": "CVE-2026-79071",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in GPU in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79071"
    },
    {
      "rank": 627,
      "cve_id": "CVE-2026-79072",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-754",
      "title": "Improper state validation in Performance in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79072"
    },
    {
      "rank": 628,
      "cve_id": "CVE-2026-79073",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-754",
      "title": "Improper state validation in Parser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79073"
    },
    {
      "rank": 629,
      "cve_id": "CVE-2026-79074",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79074"
    },
    {
      "rank": 630,
      "cve_id": "CVE-2026-79075",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Geolocation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79075"
    },
    {
      "rank": 631,
      "cve_id": "CVE-2026-79076",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Sync in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79076"
    },
    {
      "rank": 632,
      "cve_id": "CVE-2026-79077",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in WebProtect in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79077"
    },
    {
      "rank": 633,
      "cve_id": "CVE-2026-79082",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Transactions Platform in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79082"
    },
    {
      "rank": 634,
      "cve_id": "CVE-2026-79083",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-841",
      "title": "Improper enforcement of behavioral workflow in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79083"
    },
    {
      "rank": 635,
      "cve_id": "CVE-2026-79084",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-326",
      "title": "Inadequate encryption strength in Notifications in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79084"
    },
    {
      "rank": 636,
      "cve_id": "CVE-2026-79085",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79085"
    },
    {
      "rank": 637,
      "cve_id": "CVE-2026-79086",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to obtain sensitive information via a co-installed app. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79086"
    },
    {
      "rank": 638,
      "cve_id": "CVE-2026-79087",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-74",
      "title": "Injection in Chrome Tabs in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79087"
    },
    {
      "rank": 639,
      "cve_id": "CVE-2026-79088",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79088"
    },
    {
      "rank": 640,
      "cve_id": "CVE-2026-79089",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in Transactions Platform in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79089"
    },
    {
      "rank": 641,
      "cve_id": "CVE-2026-79090",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-269",
      "title": "Improper privilege management in Actor in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79090"
    },
    {
      "rank": 642,
      "cve_id": "CVE-2026-79093",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Paint in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79093"
    },
    {
      "rank": 643,
      "cve_id": "CVE-2026-79094",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-362",
      "title": "Race condition in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79094"
    },
    {
      "rank": 644,
      "cve_id": "CVE-2026-79095",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Payments in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79095"
    },
    {
      "rank": 645,
      "cve_id": "CVE-2026-79098",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in PermissionElement in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79098"
    },
    {
      "rank": 646,
      "cve_id": "CVE-2026-79099",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79099"
    },
    {
      "rank": 647,
      "cve_id": "CVE-2026-79103",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-706",
      "title": "Incorrect reference resolution in Speech in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79103"
    },
    {
      "rank": 648,
      "cve_id": "CVE-2026-79104",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Sensor in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79104"
    },
    {
      "rank": 649,
      "cve_id": "CVE-2026-79105",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79105"
    },
    {
      "rank": 650,
      "cve_id": "CVE-2026-79106",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Input in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79106"
    },
    {
      "rank": 651,
      "cve_id": "CVE-2026-79107",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in TabGroups in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially leak sensitive information via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79107"
    },
    {
      "rank": 652,
      "cve_id": "CVE-2026-79108",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Web Authentication (Passkeys & Security Keys) in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79108"
    },
    {
      "rank": 653,
      "cve_id": "CVE-2026-79109",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Printing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79109"
    },
    {
      "rank": 654,
      "cve_id": "CVE-2026-79110",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Preload in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79110"
    },
    {
      "rank": 655,
      "cve_id": "CVE-2026-79111",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Dawn in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79111"
    },
    {
      "rank": 656,
      "cve_id": "CVE-2026-79112",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79112"
    },
    {
      "rank": 657,
      "cve_id": "CVE-2026-79116",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Viz in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79116"
    },
    {
      "rank": 658,
      "cve_id": "CVE-2026-79117",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-362",
      "title": "Race condition in WebAppInstalls in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy via a co-installed app. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79117"
    },
    {
      "rank": 659,
      "cve_id": "CVE-2026-79118",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79118"
    },
    {
      "rank": 660,
      "cve_id": "CVE-2026-79120",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79120"
    },
    {
      "rank": 661,
      "cve_id": "CVE-2026-79121",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79121"
    },
    {
      "rank": 662,
      "cve_id": "CVE-2026-79122",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in SignIn in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79122"
    },
    {
      "rank": 663,
      "cve_id": "CVE-2026-79123",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in NTP Footer in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79123"
    },
    {
      "rank": 664,
      "cve_id": "CVE-2026-79124",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Intents in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to leak sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79124"
    },
    {
      "rank": 665,
      "cve_id": "CVE-2026-79125",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in XR in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79125"
    },
    {
      "rank": 666,
      "cve_id": "CVE-2026-79126",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-684",
      "title": "Incorrect provision of specified functionality in Proxy in Google Chrome on on Windows prior to 152.0.7977.65 allowed an adjacent attacker to potentially obtain sensitive information via crafted network traffic. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79126"
    },
    {
      "rank": 667,
      "cve_id": "CVE-2026-79127",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79127"
    },
    {
      "rank": 668,
      "cve_id": "CVE-2026-79129",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Sessions in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via UI Interaction. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79129"
    },
    {
      "rank": 669,
      "cve_id": "CVE-2026-79130",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-122",
      "title": "Buffer overflow in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79130"
    },
    {
      "rank": 670,
      "cve_id": "CVE-2026-79131",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79131"
    },
    {
      "rank": 671,
      "cve_id": "CVE-2026-79132",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Input in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79132"
    },
    {
      "rank": 672,
      "cve_id": "CVE-2026-79133",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Forms in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79133"
    },
    {
      "rank": 673,
      "cve_id": "CVE-2026-79134",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in GetUserMedia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79134"
    },
    {
      "rank": 674,
      "cve_id": "CVE-2026-79136",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79136"
    },
    {
      "rank": 675,
      "cve_id": "CVE-2026-79137",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79137"
    },
    {
      "rank": 676,
      "cve_id": "CVE-2026-79138",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79138"
    },
    {
      "rank": 677,
      "cve_id": "CVE-2026-79139",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Media in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79139"
    },
    {
      "rank": 678,
      "cve_id": "CVE-2026-79141",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Browser in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79141"
    },
    {
      "rank": 679,
      "cve_id": "CVE-2026-79142",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-122",
      "title": "Buffer overflow in ANGLE in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79142"
    },
    {
      "rank": 680,
      "cve_id": "CVE-2026-79143",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79143"
    },
    {
      "rank": 681,
      "cve_id": "CVE-2026-79144",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79144"
    },
    {
      "rank": 682,
      "cve_id": "CVE-2026-79146",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to obtain cross-origin data via a co-installed app. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79146"
    },
    {
      "rank": 683,
      "cve_id": "CVE-2026-79147",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79147"
    },
    {
      "rank": 684,
      "cve_id": "CVE-2026-79148",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-193",
      "title": "Off-by-one error in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially read memory inside the sandbox via a crafted Chrome extension. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79148"
    },
    {
      "rank": 685,
      "cve_id": "CVE-2026-79151",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Safebrowsing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted file. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79151"
    },
    {
      "rank": 686,
      "cve_id": "CVE-2026-79152",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to bypass web origin policy via a co-installed app. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79152"
    },
    {
      "rank": 687,
      "cve_id": "CVE-2026-79154",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain sensitive information via UI Interaction. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79154"
    },
    {
      "rank": 688,
      "cve_id": "CVE-2026-79155",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79155"
    },
    {
      "rank": 689,
      "cve_id": "CVE-2026-79173",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in WebAppInstalls in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79173"
    },
    {
      "rank": 690,
      "cve_id": "CVE-2026-79174",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy into a privileged page via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79174"
    },
    {
      "rank": 691,
      "cve_id": "CVE-2026-79175",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in Accessibility in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79175"
    },
    {
      "rank": 692,
      "cve_id": "CVE-2026-79176",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79176"
    },
    {
      "rank": 693,
      "cve_id": "CVE-2026-79177",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Media in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79177"
    },
    {
      "rank": 694,
      "cve_id": "CVE-2026-79178",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Web Authentication (Passkeys & Security Keys) in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79178"
    },
    {
      "rank": 695,
      "cve_id": "CVE-2026-79179",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in DOM in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially leak sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79179"
    },
    {
      "rank": 696,
      "cve_id": "CVE-2026-79180",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79180"
    },
    {
      "rank": 697,
      "cve_id": "CVE-2026-79181",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in Glic in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79181"
    },
    {
      "rank": 698,
      "cve_id": "CVE-2026-79182",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79182"
    },
    {
      "rank": 699,
      "cve_id": "CVE-2026-79183",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Accessibility in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via UI Interaction. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79183"
    },
    {
      "rank": 700,
      "cve_id": "CVE-2026-79184",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Preload in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79184"
    },
    {
      "rank": 701,
      "cve_id": "CVE-2026-79185",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in DOM in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79185"
    },
    {
      "rank": 702,
      "cve_id": "CVE-2026-79186",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79186"
    },
    {
      "rank": 703,
      "cve_id": "CVE-2026-79188",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79188"
    },
    {
      "rank": 704,
      "cve_id": "CVE-2026-79189",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79189"
    },
    {
      "rank": 705,
      "cve_id": "CVE-2026-79190",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79190"
    },
    {
      "rank": 706,
      "cve_id": "CVE-2026-79191",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in SiteIsolation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79191"
    },
    {
      "rank": 707,
      "cve_id": "CVE-2026-79192",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Variations in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79192"
    },
    {
      "rank": 708,
      "cve_id": "CVE-2026-79193",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Canvas in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79193"
    },
    {
      "rank": 709,
      "cve_id": "CVE-2026-79194",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Chromoting in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79194"
    },
    {
      "rank": 710,
      "cve_id": "CVE-2026-79196",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in Editing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79196"
    },
    {
      "rank": 711,
      "cve_id": "CVE-2026-79199",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79199"
    },
    {
      "rank": 712,
      "cve_id": "CVE-2026-79201",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-284",
      "title": "Improper access control in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79201"
    },
    {
      "rank": 713,
      "cve_id": "CVE-2026-79203",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79203"
    },
    {
      "rank": 714,
      "cve_id": "CVE-2026-79204",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Input in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79204"
    },
    {
      "rank": 715,
      "cve_id": "CVE-2026-79205",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79205"
    },
    {
      "rank": 716,
      "cve_id": "CVE-2026-79206",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79206"
    },
    {
      "rank": 717,
      "cve_id": "CVE-2026-79207",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Passwords in Google Chrome on on iOS prior to 152.0.7977.65 allowed a local attacker to obtain sensitive information via a crafted file. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79207"
    },
    {
      "rank": 718,
      "cve_id": "CVE-2026-79208",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in HTTP2 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to leak sensitive information via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79208"
    },
    {
      "rank": 719,
      "cve_id": "CVE-2026-79209",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in Animation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79209"
    },
    {
      "rank": 720,
      "cve_id": "CVE-2026-79211",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in USB in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79211"
    },
    {
      "rank": 721,
      "cve_id": "CVE-2026-79212",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Passwords in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79212"
    },
    {
      "rank": 722,
      "cve_id": "CVE-2026-79213",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in WebAppInstalls in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79213"
    },
    {
      "rank": 723,
      "cve_id": "CVE-2026-79214",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Preload in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79214"
    },
    {
      "rank": 724,
      "cve_id": "CVE-2026-79215",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-190",
      "title": "Integer overflow in WebGL in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79215"
    },
    {
      "rank": 725,
      "cve_id": "CVE-2026-79216",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-122",
      "title": "Buffer overflow in Blink in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79216"
    },
    {
      "rank": 726,
      "cve_id": "CVE-2026-79217",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79217"
    },
    {
      "rank": 727,
      "cve_id": "CVE-2026-79218",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Sandbox in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79218"
    },
    {
      "rank": 728,
      "cve_id": "CVE-2026-79219",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Bluetooth in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted Chrome extension. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79219"
    },
    {
      "rank": 729,
      "cve_id": "CVE-2026-79220",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79220"
    },
    {
      "rank": 730,
      "cve_id": "CVE-2026-79221",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in Dawn in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79221"
    },
    {
      "rank": 731,
      "cve_id": "CVE-2026-79222",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to bypass web origin policy via a co-installed app. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79222"
    },
    {
      "rank": 732,
      "cve_id": "CVE-2026-79223",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-190",
      "title": "Integer overflow in Chromium in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to read memory inside the sandbox via a crafted file. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79223"
    },
    {
      "rank": 733,
      "cve_id": "CVE-2026-79225",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Browser in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via UI Interaction. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79225"
    },
    {
      "rank": 734,
      "cve_id": "CVE-2026-79226",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-269",
      "title": "Improper privilege management in Regional Capabilities in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79226"
    },
    {
      "rank": 735,
      "cve_id": "CVE-2026-79227",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79227"
    },
    {
      "rank": 736,
      "cve_id": "CVE-2026-79228",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in SiteIsolation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation into a privileged page via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79228"
    },
    {
      "rank": 737,
      "cve_id": "CVE-2026-79229",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79229"
    },
    {
      "rank": 738,
      "cve_id": "CVE-2026-79230",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in ANGLE in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79230"
    },
    {
      "rank": 739,
      "cve_id": "CVE-2026-79231",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-122",
      "title": "Buffer overflow in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79231"
    },
    {
      "rank": 740,
      "cve_id": "CVE-2026-79233",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to spoof address bar via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79233"
    },
    {
      "rank": 741,
      "cve_id": "CVE-2026-79234",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-74",
      "title": "Injection in CSS in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79234"
    },
    {
      "rank": 742,
      "cve_id": "CVE-2026-79236",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79236"
    },
    {
      "rank": 743,
      "cve_id": "CVE-2026-79237",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Navigation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79237"
    },
    {
      "rank": 744,
      "cve_id": "CVE-2026-79238",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79238"
    },
    {
      "rank": 745,
      "cve_id": "CVE-2026-79239",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in Tint in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79239"
    },
    {
      "rank": 746,
      "cve_id": "CVE-2026-79240",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79240"
    },
    {
      "rank": 747,
      "cve_id": "CVE-2026-79241",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in GPU in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79241"
    },
    {
      "rank": 748,
      "cve_id": "CVE-2026-79242",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in HTML in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79242"
    },
    {
      "rank": 749,
      "cve_id": "CVE-2026-79243",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in ReadingList in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79243"
    },
    {
      "rank": 750,
      "cve_id": "CVE-2026-79245",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in UI in Google Chrome prior to 152.0.7977.65 allowed a local attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79245"
    },
    {
      "rank": 751,
      "cve_id": "CVE-2026-79246",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in DataTransfer in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79246"
    },
    {
      "rank": 752,
      "cve_id": "CVE-2026-79247",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Chromoting in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79247"
    },
    {
      "rank": 753,
      "cve_id": "CVE-2026-79248",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Input in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79248"
    },
    {
      "rank": 754,
      "cve_id": "CVE-2026-79249",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-94",
      "title": "Code injection in Bisection in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted file. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79249"
    },
    {
      "rank": 755,
      "cve_id": "CVE-2026-79250",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Navigation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to spoof address bar via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79250"
    },
    {
      "rank": 756,
      "cve_id": "CVE-2026-79251",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79251"
    },
    {
      "rank": 757,
      "cve_id": "CVE-2026-79252",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79252"
    },
    {
      "rank": 758,
      "cve_id": "CVE-2026-79253",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Network in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to leak sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79253"
    },
    {
      "rank": 759,
      "cve_id": "CVE-2026-79254",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-706",
      "title": "Incorrect reference resolution in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79254"
    },
    {
      "rank": 760,
      "cve_id": "CVE-2026-79255",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79255"
    },
    {
      "rank": 761,
      "cve_id": "CVE-2026-79256",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-610",
      "title": "Externally controlled reference in WebView in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79256"
    },
    {
      "rank": 762,
      "cve_id": "CVE-2026-79258",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in WebXR in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79258"
    },
    {
      "rank": 763,
      "cve_id": "CVE-2026-79259",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Safebrowsing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted file. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79259"
    },
    {
      "rank": 764,
      "cve_id": "CVE-2026-79260",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Cookies in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79260"
    },
    {
      "rank": 765,
      "cve_id": "CVE-2026-79261",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Controls in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79261"
    },
    {
      "rank": 766,
      "cve_id": "CVE-2026-79262",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79262"
    },
    {
      "rank": 767,
      "cve_id": "CVE-2026-79263",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via crafted network traffic. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79263"
    },
    {
      "rank": 768,
      "cve_id": "CVE-2026-79264",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-706",
      "title": "Incorrect reference resolution in Preload in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79264"
    },
    {
      "rank": 769,
      "cve_id": "CVE-2026-79265",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-459",
      "title": "Incomplete cleanup in GetUserMedia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79265"
    },
    {
      "rank": 770,
      "cve_id": "CVE-2026-79267",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79267"
    },
    {
      "rank": 771,
      "cve_id": "CVE-2026-79269",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79269"
    },
    {
      "rank": 772,
      "cve_id": "CVE-2026-79270",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79270"
    },
    {
      "rank": 773,
      "cve_id": "CVE-2026-79271",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in DOM in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79271"
    },
    {
      "rank": 774,
      "cve_id": "CVE-2026-79272",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in FindInPage in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79272"
    },
    {
      "rank": 775,
      "cve_id": "CVE-2026-79273",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-706",
      "title": "Incorrect reference resolution in WebView in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79273"
    },
    {
      "rank": 776,
      "cve_id": "CVE-2026-79274",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in GPU in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79274"
    },
    {
      "rank": 777,
      "cve_id": "CVE-2026-79276",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-269",
      "title": "Improper privilege management in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79276"
    },
    {
      "rank": 778,
      "cve_id": "CVE-2026-79283",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Geometry in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79283"
    },
    {
      "rank": 779,
      "cve_id": "CVE-2026-79284",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Core in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79284"
    },
    {
      "rank": 780,
      "cve_id": "CVE-2026-79285",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79285"
    },
    {
      "rank": 781,
      "cve_id": "CVE-2026-79286",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to potentially execute arbitrary code outside the sandbox via a co-installed app. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79286"
    },
    {
      "rank": 782,
      "cve_id": "CVE-2026-79287",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in Forms in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79287"
    },
    {
      "rank": 783,
      "cve_id": "CVE-2026-79288",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Autofill in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79288"
    },
    {
      "rank": 784,
      "cve_id": "CVE-2026-79289",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-664",
      "title": "Improper control of a resource through its lifetime in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79289"
    },
    {
      "rank": 785,
      "cve_id": "CVE-2026-79291",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in CSS in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79291"
    },
    {
      "rank": 786,
      "cve_id": "CVE-2026-79292",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-190",
      "title": "Integer overflow in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79292"
    },
    {
      "rank": 787,
      "cve_id": "CVE-2026-79293",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Animation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79293"
    }
  ],
  "transactions": [
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2020-1938",
      "detail": "EXPLOIT PUBLISHED — CVE-2020-1938 (Apache Tomcat). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2020-37268",
      "detail": "EXPLOIT PUBLISHED — CVE-2020-37268 (rocq-prover rocq). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2022-37315",
      "detail": "EXPLOIT PUBLISHED — CVE-2022-37315. Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2023-6610",
      "detail": "EXPLOIT PUBLISHED — CVE-2023-6610 (Linux kernel). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2025-5914",
      "detail": "EXPLOIT PUBLISHED — CVE-2025-5914 (libarchive). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2025-62718",
      "detail": "EXPLOIT PUBLISHED — CVE-2025-62718 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-25639",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-25639 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-29063",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-29063 (immutable-js). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-29181",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-29181 (open-telemetry opentelemetry-go). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-33487",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-33487 (russellhaering goxmldsig). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-34070",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-34070 (langchain-ai langchain). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-3832",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-3832 (gnutls). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-3833",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-3833 (gnutls). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-39363",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-39363 (vitejs vite). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-40175",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-40175 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-41523",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-41523 (vllm-project vllm). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42033",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42033 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42041",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42041 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42043",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42043 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42945",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42945 (F5 NGINX Plus). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44486",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44486 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44487",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44487 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44488",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44488 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44492",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44492 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44494",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44494 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44495",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44495 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44496",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44496 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-45186",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-45186 (libexpat project libexpat). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-45736",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-45736 (websockets ws). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-4740",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-4740 (Red Hat multicluster engine for Kubernetes 2.10). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-4878",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-4878 (Red Hat Enterprise Linux 10). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-48864",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-48864 (Red Hat Enterprise Linux 10). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-55653",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-55653 (Red Hat Enterprise Linux 10). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-55654",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-55654 (Red Hat Enterprise Linux 10). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-58010",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-58010 (GNOME GLib). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-58012",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-58012 (GNOME GLib). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-58013",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-58013 (GNOME GLib). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-58014",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-58014 (GNOME GLib). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-58015",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-58015 (GNOME GLib). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-58016",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-58016 (GNOME GLib). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-71225",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-71225 (Stephan Muelle libkcapi). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-71227",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-71227 (Stephan Muelle libkcapi). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-72704",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-72704 (rocq-prover rocq). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-72714",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-72714 (rocq-prover rocq). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-76574",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-76574 (code-projects Hospital Information System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-76589",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-76589 (TRENDnet TEW-755AP). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-76762",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-76762 (code-projects Assessment Management). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-76795",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-76795 (AeternaLabsHQ PullMD). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-76989",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-76989 (liftoff-sr CIPster). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-76996",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-76996 (SourceCodester Simple Online Food Ordering System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-77019",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-77019 (CodeAstro Apartment Visitor Management System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-77036",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-77036 (elunez eladmin). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-77945",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-77945 (TRENDnet TEW-821DAP). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-78434",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-78434 (Faveo Helpdesk). Public exploit reference added."
    },
    {
      "type": "DUE_DATE_PASSED",
      "cve_id": "CVE-2026-73570",
      "detail": "DUE DATE PASSED — CVE-2026-73570 (Zimbra Collaboration). CISA remediation deadline was August 24, 2026; still in catalog."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-15961",
      "detail": "RESCORED — CVE-2026-15961 (IBM PowerVM Hypervisor). CVSS 5.2 → 6 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-1615",
      "detail": "RESCORED — CVE-2026-1615 (jsonpath). CVSS 9.2 → 8.2 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17000",
      "detail": "RESCORED — CVE-2026-17000 (IBM AIX). CVSS 8.1 → 9.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17003",
      "detail": "RESCORED — CVE-2026-17003 (IBM AIX). CVSS 7.7 → 9.1 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17006",
      "detail": "RESCORED — CVE-2026-17006 (IBM AIX). CVSS 8.3 → 9.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17007",
      "detail": "RESCORED — CVE-2026-17007 (IBM AIX). CVSS 6.7 → 7.1 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17009",
      "detail": "RESCORED — CVE-2026-17009 (IBM AIX). CVSS 4.7 → 5.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17024",
      "detail": "RESCORED — CVE-2026-17024 (IBM AIX). CVSS 7.7 → 9.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17060",
      "detail": "RESCORED — CVE-2026-17060 (IBM AIX). CVSS 8.1 → 9.1 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17097",
      "detail": "RESCORED — CVE-2026-17097 (IBM PowerVM Hypervisor). CVSS 7.3 → 6.7 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17120",
      "detail": "RESCORED — CVE-2026-17120 (IBM AIX). CVSS 5.3 → 7.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17138",
      "detail": "RESCORED — CVE-2026-17138 (IBM AIX). CVSS 8.1 → 9.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17168",
      "detail": "RESCORED — CVE-2026-17168 (IBM AIX). CVSS 8.5 → 8.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17414",
      "detail": "RESCORED — CVE-2026-17414 (IBM PowerVM Hypervisor). CVSS 8.1 → 8.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17422",
      "detail": "RESCORED — CVE-2026-17422 (IBM AIX). CVSS 9.3 → 8.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17423",
      "detail": "RESCORED — CVE-2026-17423 (IBM AIX). CVSS 7.7 → 9.1 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17424",
      "detail": "RESCORED — CVE-2026-17424 (IBM AIX). CVSS 4.8 → 6.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17436",
      "detail": "RESCORED — CVE-2026-17436 (IBM AIX). CVSS 8.8 → 9.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-18670",
      "detail": "RESCORED — CVE-2026-18670 (IBM AIX). CVSS 8.2 → 9.1 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-18716",
      "detail": "RESCORED — CVE-2026-18716 (IBM AIX). CVSS 7.9 → 9.1 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-18821",
      "detail": "RESCORED — CVE-2026-18821 (IBM PowerVM Hypervisor). CVSS 7.5 → 8.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-18822",
      "detail": "RESCORED — CVE-2026-18822 (IBM AIX). CVSS 4.4 → 5.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-18828",
      "detail": "RESCORED — CVE-2026-18828 (IBM AIX). CVSS 5.4 → 7.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-18832",
      "detail": "RESCORED — CVE-2026-18832 (IBM AIX). CVSS 8.8 → 9.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-18840",
      "detail": "RESCORED — CVE-2026-18840 (IBM AIX). CVSS 8.2 → 7.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-18842",
      "detail": "RESCORED — CVE-2026-18842 (IBM AIX). CVSS 8.4 → 7.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-19437",
      "detail": "RESCORED — CVE-2026-19437 (IBM AIX). CVSS 8.1 → 9.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-19442",
      "detail": "RESCORED — CVE-2026-19442 (IBM AIX). CVSS 8.2 → 8.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-19448",
      "detail": "RESCORED — CVE-2026-19448 (IBM AIX). CVSS 6.5 → 7.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-19653",
      "detail": "RESCORED — CVE-2026-19653 (IBM AIX). CVSS 6.5 → 5.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-19783",
      "detail": "RESCORED — CVE-2026-19783 (IBM AIX). CVSS 6.7 → 7.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-35385",
      "detail": "RESCORED — CVE-2026-35385 (OpenBSD OpenSSH). CVSS 7.5 → 8.1 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-35535",
      "detail": "RESCORED — CVE-2026-35535 (Sudo project Sudo). CVSS 7.4 → 7.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-45186",
      "detail": "RESCORED — CVE-2026-45186 (libexpat project libexpat). CVSS 2.9 → 7.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-4936",
      "detail": "RESCORED — CVE-2026-4936 (IBM PowerVM Hypervisor). CVSS 5.1 → 6.2 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-4937",
      "detail": "RESCORED — CVE-2026-4937 (IBM PowerVM Hypervisor). CVSS 5.3 → 6 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-56847",
      "detail": "RESCORED — CVE-2026-56847 (nodejs node). CVSS 3.3 → 6.1 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-56850",
      "detail": "RESCORED — CVE-2026-56850 (nodejs node). CVSS 4.1 → 4.4 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-58043",
      "detail": "RESCORED — CVE-2026-58043 (nodejs node). CVSS 7.5 → 8.4 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-7141",
      "detail": "RESCORED — CVE-2026-7141 (vLLM). CVSS 6.3 → 2.9 (NVD)."
    },
    {
      "type": "REJECTED",
      "cve_id": "CVE-2026-73189",
      "detail": "REJECTED — CVE-2026-73189 (Themeum WP Crowdfunding). Record withdrawn by the CNA."
    },
    {
      "type": "REJECTED",
      "cve_id": "CVE-2026-78154",
      "detail": "REJECTED — CVE-2026-78154 (the-momentum open-wearables). Record withdrawn by the CNA."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-10059",
      "detail": "PATCH SHIPPED — CVE-2026-10059 (Red Hat multicluster engine for Kubernetes 2.10). Fixed in multicluster engine for Kubernetes 2.10 1787201612."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-15809",
      "detail": "PATCH SHIPPED — CVE-2026-15809 (Red Hat OpenShift Container Platform 4.22). Fixed in Red Hat OpenShift Container Platform 4.22 0:1.35.6-5.rhaos4.22.git41f610b.el9."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-17527",
      "detail": "PATCH SHIPPED — CVE-2026-17527 (Red Hat Container Native Virtualization 4.19). Fixed in Red Hat Container Native Virtualization 4.19 1787234290."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-19130",
      "detail": "PATCH SHIPPED — CVE-2026-19130 (Red Hat multicluster engine for Kubernetes 2.10). Fixed in multicluster engine for Kubernetes 2.10 1787176886."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-66794",
      "detail": "PATCH SHIPPED — CVE-2026-66794 (Red Hat multicluster engine for Kubernetes 2.10). Fixed in multicluster engine for Kubernetes 2.10 1787173361."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-66795",
      "detail": "PATCH SHIPPED — CVE-2026-66795 (Red Hat multicluster engine for Kubernetes 2.10). Fixed in multicluster engine for Kubernetes 2.10 1787078272."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-73266",
      "detail": "PATCH SHIPPED — CVE-2026-73266 (Red Hat multicluster engine for Kubernetes 2.10). Fixed in multicluster engine for Kubernetes 2.10 1787196014."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-73267",
      "detail": "PATCH SHIPPED — CVE-2026-73267 (Red Hat multicluster engine for Kubernetes 2.10). Fixed in multicluster engine for Kubernetes 2.10 1787196014."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-73268",
      "detail": "PATCH SHIPPED — CVE-2026-73268 (Red Hat multicluster engine for Kubernetes 2.10). Fixed in multicluster engine for Kubernetes 2.10 1787201612."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-73269",
      "detail": "PATCH SHIPPED — CVE-2026-73269 (Red Hat multicluster engine for Kubernetes 2.10). Fixed in multicluster engine for Kubernetes 2.10 1787201612."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-75569",
      "detail": "PATCH SHIPPED — CVE-2026-75569 (Red Hat multicluster engine for Kubernetes 2.10). Fixed in multicluster engine for Kubernetes 2.10 1787263075."
    },
    {
      "type": "ENRICHED",
      "cve_id": "CVE-2021-4090",
      "detail": "ENRICHED — CVE-2021-4090 (Linux kernel). Received CVSS 7.1 and CPE data from NVD."
    },
    {
      "type": "ENRICHED",
      "cve_id": "CVE-2022-37315",
      "detail": "ENRICHED — CVE-2022-37315. Received CVSS 7.5 and CPE data from NVD."
    }
  ],
  "attribution": "CVE Program, NVD (NIST), CISA KEV, FIRST EPSS, OSV. See /security/methodology/."
}
