{
  "day": "2026-09-09",
  "boundary": "UTC calendar day",
  "published_count": 654,
  "by_severity": {
    "CRITICAL": 55,
    "HIGH": 188,
    "MEDIUM": 280,
    "LOW": 42
  },
  "kev_count": 1,
  "exploit_reference_count": 4,
  "awaiting_enrichment_count": 89,
  "ranking": "Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.",
  "results": [
    {
      "rank": 1,
      "cve_id": "CVE-2026-87491",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00291,
      "epss_percentile": 0.21438,
      "kev": true,
      "kev_due_at": "2026-09-23",
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87491"
    },
    {
      "rank": 2,
      "cve_id": "CVE-2026-11363",
      "cvss_base": 6.6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00679,
      "epss_percentile": 0.50265,
      "kev": false,
      "kev_due_at": null,
      "vendor": "kstover",
      "product": "Ninja Forms – The Contact Form Builder That Grows With You",
      "cwe": "CWE-502",
      "title": "Ninja Forms <= 3.14.6 - Authenticated (Administrator+) PHP Object Injection via Form Import",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11363"
    },
    {
      "rank": 3,
      "cve_id": "CVE-2026-15406",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00674,
      "epss_percentile": 0.50044,
      "kev": false,
      "kev_due_at": null,
      "vendor": "arraytics",
      "product": "Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce",
      "cwe": "CWE-98",
      "title": "Eventin <= 4.1.22 - Authenticated (Custom+) Local File Inclusion via 'event_layout' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15406"
    },
    {
      "rank": 4,
      "cve_id": "CVE-2026-15667",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00565,
      "epss_percentile": 0.45023,
      "kev": false,
      "kev_due_at": null,
      "vendor": "arraytics",
      "product": "Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce",
      "cwe": "CWE-98",
      "title": "Eventin <= 4.1.22 - Authenticated (Contirbutor+) Local File Inclusion via 'event_layout' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15667"
    },
    {
      "rank": 5,
      "cve_id": "CVE-2026-76009",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00515,
      "epss_percentile": 0.42175,
      "kev": false,
      "kev_due_at": null,
      "vendor": "martinnguyen1990",
      "product": "Next-Cart Store to WooCommerce Migration",
      "cwe": "CWE-287",
      "title": "Next-Cart Store to WooCommerce Migration <= 3.9.8 - Unauthenticated Authentication Bypass via Default '__token__' Fallback in REST Migration Endpoint",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76009"
    },
    {
      "rank": 6,
      "cve_id": "CVE-2026-80099",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00508,
      "epss_percentile": 0.41741,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Newfold",
      "product": "WP Plugin Web",
      "cwe": "CWE-287",
      "title": "Various Newfold Plugins Various Versions - Unauthenticated Authentication Bypass via Bearer Token Validation with Empty Secret",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80099"
    },
    {
      "rank": 7,
      "cve_id": "CVE-2026-76801",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00502,
      "epss_percentile": 0.41337,
      "kev": false,
      "kev_due_at": null,
      "vendor": "fireplugins",
      "product": "FireBox – WooCommerce Popup Builder, Exit Intent Popup, Email Optin & Cart Abandonment",
      "cwe": "CWE-269",
      "title": "FireBox <= 3.1.10 - Authenticated (Author+) Remote Code Execution to Privilege Escalation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-76801"
    },
    {
      "rank": 8,
      "cve_id": "CVE-2026-19729",
      "cvss_base": 4.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00493,
      "epss_percentile": 0.40762,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Build of Keycloak",
      "cwe": "CWE-22",
      "title": "Keycloak-services: keycloak-services: incomplete fix for arbitrary filesystem path probing via keystore parameters",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19729"
    },
    {
      "rank": 9,
      "cve_id": "CVE-2026-17553",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00441,
      "epss_percentile": 0.37153,
      "kev": false,
      "kev_due_at": null,
      "vendor": "levelfourstorefront",
      "product": "Shopping Cart & eCommerce Store",
      "cwe": "CWE-269",
      "title": "Shopping Cart & eCommerce Store <= 5.9.3 - Authenticated (Store Manager+) Privilege Escalation to ec_ajax_save_page_default_options AJAX Action",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-17553"
    },
    {
      "rank": 10,
      "cve_id": "CVE-2026-79696",
      "cvss_base": 10,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00437,
      "epss_percentile": 0.36886,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google Cloud",
      "product": "Agent Development Kit (ADK) for Python",
      "cwe": "CWE-184",
      "title": "Remote Code Execution in Google ADK for Python via Incomplete Standard Library Denylist",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79696"
    },
    {
      "rank": 11,
      "cve_id": "CVE-2026-21092",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00411,
      "epss_percentile": 0.34468,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Path traversal in ImsService prior to SMR Sep-2026 Release 1 allows remote attackers to create image files with system server privilege.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21092"
    },
    {
      "rank": 12,
      "cve_id": "CVE-2026-21095",
      "cvss_base": 9.2,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00408,
      "epss_percentile": 0.34246,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Heap-based buffer overflow in DNG decoder of libimagecodec.quram.so prior to SMR Sep-2026 Release 1 allows remote attackers to execute arbitrary code.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21095"
    },
    {
      "rank": 13,
      "cve_id": "CVE-2026-21096",
      "cvss_base": 9.2,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00408,
      "epss_percentile": 0.34246,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Heap-based buffer overflow in JPEG decoder of libimagecodec.quram.so prior to SMR Sep-2026 Release 1 allows remote attackers to execute arbitrary code.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21096"
    },
    {
      "rank": 14,
      "cve_id": "CVE-2026-87747",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00407,
      "epss_percentile": 0.34194,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Ragic",
      "product": "Enterprise Cloud Database",
      "cwe": "CWE-23",
      "title": "Ragic｜Enterprise Cloud Database - Arbitrary File Read",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87747"
    },
    {
      "rank": 15,
      "cve_id": "CVE-2026-87438",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00386,
      "epss_percentile": 0.32002,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in WebGL in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87438"
    },
    {
      "rank": 16,
      "cve_id": "CVE-2026-87021",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.0037,
      "epss_percentile": 0.30271,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-1336",
      "title": "Tanium addressed an unauthorized code execution vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87021"
    },
    {
      "rank": 17,
      "cve_id": "CVE-2026-87488",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00363,
      "epss_percentile": 0.296,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in WebGL in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87488"
    },
    {
      "rank": 18,
      "cve_id": "CVE-2026-87430",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00357,
      "epss_percentile": 0.28929,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-122",
      "title": "Buffer overflow in WebRTC in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87430"
    },
    {
      "rank": 19,
      "cve_id": "CVE-2026-87448",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00354,
      "epss_percentile": 0.28673,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in DevTools in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87448"
    },
    {
      "rank": 20,
      "cve_id": "CVE-2026-87474",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00354,
      "epss_percentile": 0.28673,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Payments in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87474"
    },
    {
      "rank": 21,
      "cve_id": "CVE-2026-87512",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00354,
      "epss_percentile": 0.28674,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87512"
    },
    {
      "rank": 22,
      "cve_id": "CVE-2026-87440",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00354,
      "epss_percentile": 0.28674,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in Media in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87440"
    },
    {
      "rank": 23,
      "cve_id": "CVE-2026-87444",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00354,
      "epss_percentile": 0.28673,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-119",
      "title": "Memory corruption in Codecs in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87444"
    },
    {
      "rank": 24,
      "cve_id": "CVE-2026-19802",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00349,
      "epss_percentile": 0.28104,
      "kev": false,
      "kev_due_at": null,
      "vendor": "stylemix",
      "product": "Checkout Custom Fields Builder for WooCommerce",
      "cwe": "CWE-862",
      "title": "Checkout Custom Fields Builder for WooCommerce <= 1.1.5 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin Installation via 'plugin' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19802"
    },
    {
      "rank": 25,
      "cve_id": "CVE-2026-75927",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00342,
      "epss_percentile": 0.27276,
      "kev": false,
      "kev_due_at": null,
      "vendor": "publishpress",
      "product": "User Role Editor – PublishPress Capabilities: Access Control and User Roles",
      "cwe": "CWE-269",
      "title": "PublishPress Capabilities <= 2.50.0 - Authenticated (Editor+) Privilege Escalation to Fresh-Install Default Capability Grant",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75927"
    },
    {
      "rank": 26,
      "cve_id": "CVE-2026-87487",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00341,
      "epss_percentile": 0.27192,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in FileSystem in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87487"
    },
    {
      "rank": 27,
      "cve_id": "CVE-2026-87639",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00338,
      "epss_percentile": 0.26851,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in WebPackaging in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87639"
    },
    {
      "rank": 28,
      "cve_id": "CVE-2026-87646",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00335,
      "epss_percentile": 0.26485,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Web Authentication in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87646"
    },
    {
      "rank": 29,
      "cve_id": "CVE-2026-87654",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00334,
      "epss_percentile": 0.26397,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-122",
      "title": "Buffer overflow in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87654"
    },
    {
      "rank": 30,
      "cve_id": "CVE-2026-87634",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.0033,
      "epss_percentile": 0.2588,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in WebPackaging in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87634"
    },
    {
      "rank": 31,
      "cve_id": "CVE-2026-87643",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.0033,
      "epss_percentile": 0.25879,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-190",
      "title": "Integer overflow in GPU in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87643"
    },
    {
      "rank": 32,
      "cve_id": "CVE-2026-87547",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00324,
      "epss_percentile": 0.25258,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-706",
      "title": "Incorrect reference resolution in FileSystem in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87547"
    },
    {
      "rank": 33,
      "cve_id": "CVE-2026-19800",
      "cvss_base": 4.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00316,
      "epss_percentile": 0.2428,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getwpfunnels",
      "product": "Mail Mint – Email Marketing, Newsletter, Email Automation & WooCommerce Emails",
      "cwe": "CWE-89",
      "title": "Mail Mint <= 1.31.0 - Authenticated (Custom+) SQL Injection via 'status' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19800"
    },
    {
      "rank": 34,
      "cve_id": "CVE-2026-87555",
      "cvss_base": 4.7,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00314,
      "epss_percentile": 0.24018,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in GPU in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87555"
    },
    {
      "rank": 35,
      "cve_id": "CVE-2026-57825",
      "cvss_base": 5.7,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00312,
      "epss_percentile": 0.23889,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OCaml",
      "product": "opam",
      "cwe": "CWE-61",
      "title": "In the opam package before 2.5.2 for OCaml, the sandbox protection mechanism can be bypassed because symlinks are mishandled during use of .install files.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57825"
    },
    {
      "rank": 36,
      "cve_id": "CVE-2026-87556",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00311,
      "epss_percentile": 0.2366,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Browser in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87556"
    },
    {
      "rank": 37,
      "cve_id": "CVE-2026-87434",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00311,
      "epss_percentile": 0.23661,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in CORS in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87434"
    },
    {
      "rank": 38,
      "cve_id": "CVE-2026-87442",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00311,
      "epss_percentile": 0.2366,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-441",
      "title": "Confused deputy in Prerender in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87442"
    },
    {
      "rank": 39,
      "cve_id": "CVE-2026-14505",
      "cvss_base": 6.6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0031,
      "epss_percentile": 0.23549,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Tanium Data Service",
      "cwe": "CWE-22",
      "title": "Tanium addressed a path traversal vulnerability in Tanium Data Service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14505"
    },
    {
      "rank": 40,
      "cve_id": "CVE-2026-87548",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00305,
      "epss_percentile": 0.23008,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-754",
      "title": "Improper state validation in Installer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87548"
    },
    {
      "rank": 41,
      "cve_id": "CVE-2026-83593",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00304,
      "epss_percentile": 0.2285,
      "kev": false,
      "kev_due_at": null,
      "vendor": "quantumcloud",
      "product": "WPBot – AI ChatBot for Live Support, Lead Generation, AI Services",
      "cwe": "CWE-79",
      "title": "WPBot <= 8.7.3 - Unauthenticated Stored Cross-Site Scripting via 'conversation' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-83593"
    },
    {
      "rank": 42,
      "cve_id": "CVE-2026-87023",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22761,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-22",
      "title": "Tanium addressed a path traversal vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87023"
    },
    {
      "rank": 43,
      "cve_id": "CVE-2026-87481",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00303,
      "epss_percentile": 0.22738,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in WebView in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87481"
    },
    {
      "rank": 44,
      "cve_id": "CVE-2025-3271",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00303,
      "epss_percentile": 0.22737,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OpenText™",
      "product": "Documentum Webtop",
      "cwe": "CWE-79",
      "title": "DOM-based XSS vulnerability in OpenText™ Documentum Webtop",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-3271"
    },
    {
      "rank": 45,
      "cve_id": "CVE-2026-87636",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00302,
      "epss_percentile": 0.22677,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in XML in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87636"
    },
    {
      "rank": 46,
      "cve_id": "CVE-2026-87470",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00297,
      "epss_percentile": 0.22187,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-1284",
      "title": "Improper quantity validation in Tint in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87470"
    },
    {
      "rank": 47,
      "cve_id": "CVE-2026-87520",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00297,
      "epss_percentile": 0.22188,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Dawn in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87520"
    },
    {
      "rank": 48,
      "cve_id": "CVE-2026-87558",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00297,
      "epss_percentile": 0.22187,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Payments in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87558"
    },
    {
      "rank": 49,
      "cve_id": "CVE-2026-87479",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00297,
      "epss_percentile": 0.22186,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-807",
      "title": "Insufficient policy enforcement in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87479"
    },
    {
      "rank": 50,
      "cve_id": "CVE-2026-87480",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00297,
      "epss_percentile": 0.22187,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Printing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87480"
    },
    {
      "rank": 51,
      "cve_id": "CVE-2026-87510",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00297,
      "epss_percentile": 0.22186,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in FileAPI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87510"
    },
    {
      "rank": 52,
      "cve_id": "CVE-2026-87524",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00297,
      "epss_percentile": 0.22186,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Core in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87524"
    },
    {
      "rank": 53,
      "cve_id": "CVE-2026-87553",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00297,
      "epss_percentile": 0.22187,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in SiteIsolation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87553"
    },
    {
      "rank": 54,
      "cve_id": "CVE-2026-87429",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00294,
      "epss_percentile": 0.2178,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in ServiceWorker in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87429"
    },
    {
      "rank": 55,
      "cve_id": "CVE-2026-87471",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00294,
      "epss_percentile": 0.2178,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in ServiceWorker in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87471"
    },
    {
      "rank": 56,
      "cve_id": "CVE-2026-87513",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00294,
      "epss_percentile": 0.2178,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in ControlledFrame in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87513"
    },
    {
      "rank": 57,
      "cve_id": "CVE-2026-84293",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00292,
      "epss_percentile": 0.21618,
      "kev": false,
      "kev_due_at": null,
      "vendor": "addonsorg",
      "product": "Repeater Fields for Gravity Forms",
      "cwe": "CWE-79",
      "title": "Repeater Fields for Gravity Forms <= 3.0.4 - Unauthenticated Stored Cross-Site Scripting via Repeated Multi-Input Sub-Field Values",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-84293"
    },
    {
      "rank": 58,
      "cve_id": "CVE-2026-87642",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00292,
      "epss_percentile": 0.21599,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in WebGL in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87642"
    },
    {
      "rank": 59,
      "cve_id": "CVE-2026-87527",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.0029,
      "epss_percentile": 0.21324,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-122",
      "title": "Buffer overflow in WebGL in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87527"
    },
    {
      "rank": 60,
      "cve_id": "CVE-2026-87734",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.0029,
      "epss_percentile": 0.21341,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OCaml",
      "product": "utcp",
      "cwe": "CWE-923",
      "title": "An issue was discovered in the utcp package before 0.0.6 for OCaml. Out-of-order segment reassembly allows remote denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87734"
    },
    {
      "rank": 61,
      "cve_id": "CVE-2026-87652",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00289,
      "epss_percentile": 0.21313,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in PushAPI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87652"
    },
    {
      "rank": 62,
      "cve_id": "CVE-2026-87478",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00288,
      "epss_percentile": 0.21125,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in Autofill in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87478"
    },
    {
      "rank": 63,
      "cve_id": "CVE-2026-87445",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00288,
      "epss_percentile": 0.21125,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Session in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87445"
    },
    {
      "rank": 64,
      "cve_id": "CVE-2026-87435",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00288,
      "epss_percentile": 0.21124,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in ControlledFrame in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87435"
    },
    {
      "rank": 65,
      "cve_id": "CVE-2026-87439",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00288,
      "epss_percentile": 0.21124,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in ServiceWorker in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87439"
    },
    {
      "rank": 66,
      "cve_id": "CVE-2026-87472",
      "cvss_base": 4.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00288,
      "epss_percentile": 0.21125,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in FedCM in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87472"
    },
    {
      "rank": 67,
      "cve_id": "CVE-2026-15398",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00287,
      "epss_percentile": 0.21091,
      "kev": false,
      "kev_due_at": null,
      "vendor": "arraytics",
      "product": "Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce",
      "cwe": "CWE-862",
      "title": "Eventin – Event Calendar, Event Registration, Tickets & Booking (AI Powered) <= 4.1.22 - Authenticated (Subscriber+) Missing Authorization to Order Completion / Free Ticket Redemption",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15398"
    },
    {
      "rank": 68,
      "cve_id": "CVE-2026-87447",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00287,
      "epss_percentile": 0.21044,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Network in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted Chrome extension. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87447"
    },
    {
      "rank": 69,
      "cve_id": "CVE-2026-87522",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00287,
      "epss_percentile": 0.21044,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in WebView in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to potentially bypass system access restrictions via crafted network traffic. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87522"
    },
    {
      "rank": 70,
      "cve_id": "CVE-2026-87030",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00282,
      "epss_percentile": 0.20554,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-22",
      "title": "Tanium addressed a path traversal vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87030"
    },
    {
      "rank": 71,
      "cve_id": "CVE-2026-87436",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00282,
      "epss_percentile": 0.20519,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-459",
      "title": "Incomplete cleanup in Browser in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87436"
    },
    {
      "rank": 72,
      "cve_id": "CVE-2026-87446",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00282,
      "epss_percentile": 0.20518,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-459",
      "title": "Incomplete cleanup in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87446"
    },
    {
      "rank": 73,
      "cve_id": "CVE-2026-87464",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00281,
      "epss_percentile": 0.20475,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in WebGL in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87464"
    },
    {
      "rank": 74,
      "cve_id": "CVE-2026-87529",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00279,
      "epss_percentile": 0.20226,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-197",
      "title": "Numeric truncation error in Media in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87529"
    },
    {
      "rank": 75,
      "cve_id": "CVE-2026-87616",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00279,
      "epss_percentile": 0.20226,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-665",
      "title": "Improper initialization in Views in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87616"
    },
    {
      "rank": 76,
      "cve_id": "CVE-2026-87549",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00279,
      "epss_percentile": 0.20267,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-459",
      "title": "Incomplete cleanup in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87549"
    },
    {
      "rank": 77,
      "cve_id": "CVE-2026-14989",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00278,
      "epss_percentile": 0.20092,
      "kev": false,
      "kev_due_at": null,
      "vendor": "wplegalpages",
      "product": "WPLP Cookie Consent – Cookie Banner & Consent Management for GDPR, CCPA & Google Consent Mode",
      "cwe": "CWE-79",
      "title": "Cookie Banner for GDPR / CCPA <= 4.4.1 - Unauthenticated Stored Cross-Site Scripting via 'wpl_user_preference' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14989"
    },
    {
      "rank": 78,
      "cve_id": "CVE-2026-87637",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00277,
      "epss_percentile": 0.19984,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Extensions in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87637"
    },
    {
      "rank": 79,
      "cve_id": "CVE-2026-87638",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00277,
      "epss_percentile": 0.19983,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in Media in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87638"
    },
    {
      "rank": 80,
      "cve_id": "CVE-2026-87650",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00277,
      "epss_percentile": 0.19983,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in WebGL in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87650"
    },
    {
      "rank": 81,
      "cve_id": "CVE-2026-87648",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00277,
      "epss_percentile": 0.19983,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87648"
    },
    {
      "rank": 82,
      "cve_id": "CVE-2026-87443",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00277,
      "epss_percentile": 0.1997,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Actor in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87443"
    },
    {
      "rank": 83,
      "cve_id": "CVE-2026-87432",
      "cvss_base": 4.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00277,
      "epss_percentile": 0.1997,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Navigation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87432"
    },
    {
      "rank": 84,
      "cve_id": "CVE-2026-87632",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00275,
      "epss_percentile": 0.19736,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-79",
      "title": "Cross-site scripting in SanitizerAPI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87632"
    },
    {
      "rank": 85,
      "cve_id": "CVE-2026-87526",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00274,
      "epss_percentile": 0.19682,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Passwords in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via UI Interaction. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87526"
    },
    {
      "rank": 86,
      "cve_id": "CVE-2026-75905",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00274,
      "epss_percentile": 0.19591,
      "kev": false,
      "kev_due_at": null,
      "vendor": "brechtvds",
      "product": "WP Recipe Maker",
      "cwe": "CWE-862",
      "title": "WP Recipe Maker <= 10.8.0 - Missing Authorization to Authenticated (Contributor+) Arbitrary Recipe Ownership Takeover and Unpublishing via '[wprm-recipe]' Shortcode",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75905"
    },
    {
      "rank": 87,
      "cve_id": "CVE-2026-87473",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00274,
      "epss_percentile": 0.19606,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in FileHandling in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87473"
    },
    {
      "rank": 88,
      "cve_id": "CVE-2026-87441",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00271,
      "epss_percentile": 0.19219,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87441"
    },
    {
      "rank": 89,
      "cve_id": "CVE-2026-19778",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00269,
      "epss_percentile": 0.18891,
      "kev": false,
      "kev_due_at": null,
      "vendor": "aukejomm",
      "product": "WPMR Google Feed Manager for WooCommerce – Sell on Google Merchant Center & Shopping",
      "cwe": "CWE-89",
      "title": "WPMR Google Feed Manager for WooCommerce <= 2.23.7 - Authenticated (Administrator+) SQL Injection via 'feed' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19778"
    },
    {
      "rank": 90,
      "cve_id": "CVE-2026-87437",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00268,
      "epss_percentile": 0.18812,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Frames in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to leak sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87437"
    },
    {
      "rank": 91,
      "cve_id": "CVE-2026-87477",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00268,
      "epss_percentile": 0.18811,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Core in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to leak sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87477"
    },
    {
      "rank": 92,
      "cve_id": "CVE-2026-87635",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00268,
      "epss_percentile": 0.18812,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Payments in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87635"
    },
    {
      "rank": 93,
      "cve_id": "CVE-2026-87644",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00267,
      "epss_percentile": 0.18708,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Views in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87644"
    },
    {
      "rank": 94,
      "cve_id": "CVE-2026-19944",
      "cvss_base": 4.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00266,
      "epss_percentile": 0.18682,
      "kev": false,
      "kev_due_at": null,
      "vendor": "themeum",
      "product": "WP Crowdfunding",
      "cwe": "CWE-89",
      "title": "WP Crowdfunding <= 2.2.1 - Authenticated (Shop Manager+) SQL Injection via 'wpneo_reward' Post Meta",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19944"
    },
    {
      "rank": 95,
      "cve_id": "CVE-2026-7804",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00261,
      "epss_percentile": 0.17808,
      "kev": false,
      "kev_due_at": null,
      "vendor": "woobewoo",
      "product": "Product Filter for WooCommerce by WBW",
      "cwe": "CWE-79",
      "title": "Product Filter for WooCommerce by WBW <= 3.4.2 - Reflected Cross-Site Scripting via 'wpf_fid' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-7804"
    },
    {
      "rank": 96,
      "cve_id": "CVE-2026-87508",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00261,
      "epss_percentile": 0.17812,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Loader in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87508"
    },
    {
      "rank": 97,
      "cve_id": "CVE-2026-87485",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00261,
      "epss_percentile": 0.17812,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in CORS in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87485"
    },
    {
      "rank": 98,
      "cve_id": "CVE-2026-87483",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00261,
      "epss_percentile": 0.17812,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Browser in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87483"
    },
    {
      "rank": 99,
      "cve_id": "CVE-2026-87656",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00261,
      "epss_percentile": 0.17806,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-754",
      "title": "Improper state validation in Safebrowsing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87656"
    },
    {
      "rank": 100,
      "cve_id": "CVE-2026-87724",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0026,
      "epss_percentile": 0.17653,
      "kev": false,
      "kev_due_at": null,
      "vendor": "torprject",
      "product": "Tor",
      "cwe": "CWE-669",
      "title": "Tor before 0.4.9.12 interprets the CC_RESPONSE extension even when CC_REQUEST was not sent, which allows remote attackers to cause a denial of service (crash) because of corrupted congestion-control state. This is TROVE-2026-032.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87724"
    },
    {
      "rank": 101,
      "cve_id": "CVE-2026-75966",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00259,
      "epss_percentile": 0.17535,
      "kev": false,
      "kev_due_at": null,
      "vendor": "eteubert",
      "product": "Podlove Podcast Publisher",
      "cwe": "CWE-79",
      "title": "Podlove Podcast Publisher <= 4.5.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'episode_contributor[..][..][comment]' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75966"
    },
    {
      "rank": 102,
      "cve_id": "CVE-2026-87455",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00256,
      "epss_percentile": 0.17199,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Aura in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87455"
    },
    {
      "rank": 103,
      "cve_id": "CVE-2026-87581",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00256,
      "epss_percentile": 0.17199,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Payments in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87581"
    },
    {
      "rank": 104,
      "cve_id": "CVE-2026-87607",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00256,
      "epss_percentile": 0.172,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Device in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87607"
    },
    {
      "rank": 105,
      "cve_id": "CVE-2026-87617",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00256,
      "epss_percentile": 0.172,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in DevTools in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87617"
    },
    {
      "rank": 106,
      "cve_id": "CVE-2026-87550",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00256,
      "epss_percentile": 0.17256,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-116",
      "title": "Improper encoding or escaping of output in CSS in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87550"
    },
    {
      "rank": 107,
      "cve_id": "CVE-2026-87431",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00256,
      "epss_percentile": 0.1715,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain sensitive information via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87431"
    },
    {
      "rank": 108,
      "cve_id": "CVE-2025-7062",
      "cvss_base": 5.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00253,
      "epss_percentile": 0.16752,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Lumi Education UG",
      "product": "h5p-nodejs-library",
      "cwe": "CWE-20",
      "title": "Stored Cross-Site Scripting via file upload in H5P module (h5p-nodejs-library) of Lumi Education",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-7062"
    },
    {
      "rank": 109,
      "cve_id": "CVE-2026-49310",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.0025,
      "epss_percentile": 0.16346,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Huawei",
      "product": "HarmonyOS",
      "cwe": "CWE-264",
      "title": "Permission control vulnerability in the event notification module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49310"
    },
    {
      "rank": 110,
      "cve_id": "CVE-2026-11838",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0025,
      "epss_percentile": 0.16341,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc.",
      "product": "Library Reservation System",
      "cwe": "CWE-306",
      "title": "Improper Authorization in Yordam Informatics' Library Reservation System",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11838"
    },
    {
      "rank": 111,
      "cve_id": "CVE-2026-87572",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00248,
      "epss_percentile": 0.16098,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-74",
      "title": "Injection in DevTools in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87572"
    },
    {
      "rank": 112,
      "cve_id": "CVE-2026-87557",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00247,
      "epss_percentile": 0.15957,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in LocalNetworkAccess in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87557"
    },
    {
      "rank": 113,
      "cve_id": "CVE-2026-87475",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00247,
      "epss_percentile": 0.15956,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Omnibox in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions into a privileged page via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87475"
    },
    {
      "rank": 114,
      "cve_id": "CVE-2026-87515",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00247,
      "epss_percentile": 0.15957,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in FileAPI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87515"
    },
    {
      "rank": 115,
      "cve_id": "CVE-2026-87519",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00247,
      "epss_percentile": 0.15957,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Safebrowsing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87519"
    },
    {
      "rank": 116,
      "cve_id": "CVE-2026-14359",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00246,
      "epss_percentile": 0.15831,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Yith",
      "product": "YITH WooCommerce Waitlist Premium",
      "cwe": "CWE-269",
      "title": "YITH WooCommerce Waitlist Premium <= 3.35.0 - Authenticated (Subscriber+) Privilege Escalation to Admin via wp_ajax_yith_wcwtl_add_user",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14359"
    },
    {
      "rank": 117,
      "cve_id": "CVE-2026-87582",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00246,
      "epss_percentile": 0.15912,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-441",
      "title": "Confused deputy in DataTransfer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87582"
    },
    {
      "rank": 118,
      "cve_id": "CVE-2026-19733",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00246,
      "epss_percentile": 0.15848,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc.",
      "product": "Library Information and Document Automation Program",
      "cwe": "CWE-918",
      "title": "SSRF in Yordam Informatics's Library Automation System",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19733"
    },
    {
      "rank": 119,
      "cve_id": "CVE-2026-19946",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00246,
      "epss_percentile": 0.1591,
      "kev": false,
      "kev_due_at": null,
      "vendor": "awesomesupport",
      "product": "Awesome Support – WordPress HelpDesk & Support Plugin",
      "cwe": "CWE-862",
      "title": "Awesome Support <= 6.3.9 - Missing Authorization to Authenticated (Subscriber+) Arbitrary User Denial via 'user_id' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19946"
    },
    {
      "rank": 120,
      "cve_id": "CVE-2026-87657",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00246,
      "epss_percentile": 0.15809,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87657"
    },
    {
      "rank": 121,
      "cve_id": "CVE-2026-87647",
      "cvss_base": 3.4,
      "cvss_severity": "LOW",
      "epss_score": 0.00245,
      "epss_percentile": 0.15751,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in GPU in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87647"
    },
    {
      "rank": 122,
      "cve_id": "CVE-2026-87433",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00244,
      "epss_percentile": 0.15541,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in FileAPI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87433"
    },
    {
      "rank": 123,
      "cve_id": "CVE-2026-84908",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00243,
      "epss_percentile": 0.15513,
      "kev": false,
      "kev_due_at": null,
      "vendor": "getwpfunnels",
      "product": "WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell",
      "cwe": "CWE-862",
      "title": "WPFunnels <= 3.12.13 - Missing Authorization to Unauthenticated Arbitrary Product Price Manipulation via 'wpfnl_load_payment' AJAX Action",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-84908"
    },
    {
      "rank": 124,
      "cve_id": "CVE-2026-87484",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00241,
      "epss_percentile": 0.15277,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Geometry in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87484"
    },
    {
      "rank": 125,
      "cve_id": "CVE-2026-87507",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00241,
      "epss_percentile": 0.15277,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87507"
    },
    {
      "rank": 126,
      "cve_id": "CVE-2026-87518",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00241,
      "epss_percentile": 0.15278,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in Safebrowsing in Google Chrome on on iOS prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87518"
    },
    {
      "rank": 127,
      "cve_id": "CVE-2026-87516",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00241,
      "epss_percentile": 0.15277,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in Navigation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87516"
    },
    {
      "rank": 128,
      "cve_id": "CVE-2026-87630",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00241,
      "epss_percentile": 0.15278,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-190",
      "title": "Integer overflow in WebRTC in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87630"
    },
    {
      "rank": 129,
      "cve_id": "CVE-2026-87559",
      "cvss_base": 4.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00241,
      "epss_percentile": 0.15277,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in UI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87559"
    },
    {
      "rank": 130,
      "cve_id": "CVE-2026-87521",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00241,
      "epss_percentile": 0.15278,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in WebMCP in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87521"
    },
    {
      "rank": 131,
      "cve_id": "CVE-2026-87645",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00239,
      "epss_percentile": 0.14888,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-754",
      "title": "Improper state validation in Safebrowsing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87645"
    },
    {
      "rank": 132,
      "cve_id": "CVE-2026-87649",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00239,
      "epss_percentile": 0.14888,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87649"
    },
    {
      "rank": 133,
      "cve_id": "CVE-2026-12956",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00238,
      "epss_percentile": 0.14776,
      "kev": false,
      "kev_due_at": null,
      "vendor": "arraytics",
      "product": "Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce",
      "cwe": "CWE-862",
      "title": "Eventin <= 4.1.22 - Missing Authorization to Unauthenticated Arbitrary Order Creation and Status Manipulation via 'status' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12956"
    },
    {
      "rank": 134,
      "cve_id": "CVE-2026-87579",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00237,
      "epss_percentile": 0.14698,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-122",
      "title": "Buffer overflow in WebRTC in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87579"
    },
    {
      "rank": 135,
      "cve_id": "CVE-2026-87655",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00237,
      "epss_percentile": 0.14631,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-1021",
      "title": "Clickjacking in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87655"
    },
    {
      "rank": 136,
      "cve_id": "CVE-2026-87504",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00236,
      "epss_percentile": 0.14582,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Core in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87504"
    },
    {
      "rank": 137,
      "cve_id": "CVE-2026-87609",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00236,
      "epss_percentile": 0.14582,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Sharing in Google Chrome on on iOS prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87609"
    },
    {
      "rank": 138,
      "cve_id": "CVE-2026-13359",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00236,
      "epss_percentile": 0.14601,
      "kev": false,
      "kev_due_at": null,
      "vendor": "bestweblayout",
      "product": "Contact Form to DB by BestWebSoft – Messages Database Plugin For WordPress",
      "cwe": "CWE-79",
      "title": "Contact Form to DB by BestWebSoft <= 1.7.5 - Unauthenticated Stored Cross-Site Scripting via cntctfrm_contact_dropdown Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-13359"
    },
    {
      "rank": 139,
      "cve_id": "CVE-2026-87528",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00234,
      "epss_percentile": 0.14308,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in Rust in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87528"
    },
    {
      "rank": 140,
      "cve_id": "CVE-2026-87612",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00234,
      "epss_percentile": 0.14309,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87612"
    },
    {
      "rank": 141,
      "cve_id": "CVE-2026-87618",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00234,
      "epss_percentile": 0.14309,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-706",
      "title": "Incorrect reference resolution in Storage in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87618"
    },
    {
      "rank": 142,
      "cve_id": "CVE-2026-87476",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00232,
      "epss_percentile": 0.14097,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Loader in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87476"
    },
    {
      "rank": 143,
      "cve_id": "CVE-2026-87629",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00232,
      "epss_percentile": 0.14096,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Sources in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to leak sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87629"
    },
    {
      "rank": 144,
      "cve_id": "CVE-2026-87658",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00227,
      "epss_percentile": 0.1336,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to obtain cross-origin data via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87658"
    },
    {
      "rank": 145,
      "cve_id": "CVE-2026-87564",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00226,
      "epss_percentile": 0.13328,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-843",
      "title": "Type confusion in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to read memory inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87564"
    },
    {
      "rank": 146,
      "cve_id": "CVE-2026-87456",
      "cvss_base": 3.4,
      "cvss_severity": "LOW",
      "epss_score": 0.00226,
      "epss_percentile": 0.13328,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in Media in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87456"
    },
    {
      "rank": 147,
      "cve_id": "CVE-2026-19945",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00225,
      "epss_percentile": 0.13068,
      "kev": false,
      "kev_due_at": null,
      "vendor": "themeum",
      "product": "WP Crowdfunding",
      "cwe": "CWE-79",
      "title": "WP Crowdfunding <= 2.2.1 - Authenticated (Subscriber+) Stored Cross-Site Scripting via 'first_name' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19945"
    },
    {
      "rank": 148,
      "cve_id": "CVE-2026-87653",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00225,
      "epss_percentile": 0.13108,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in FullScreen in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87653"
    },
    {
      "rank": 149,
      "cve_id": "CVE-2026-87640",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00225,
      "epss_percentile": 0.13107,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in WebView in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87640"
    },
    {
      "rank": 150,
      "cve_id": "CVE-2026-87466",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00224,
      "epss_percentile": 0.1304,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Workers in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87466"
    },
    {
      "rank": 151,
      "cve_id": "CVE-2026-87469",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.0022,
      "epss_percentile": 0.12524,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy into a privileged page via crafted network traffic. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87469"
    },
    {
      "rank": 152,
      "cve_id": "CVE-2026-87503",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.0022,
      "epss_percentile": 0.12535,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-841",
      "title": "Inappropriate implementation in Downloads in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87503"
    },
    {
      "rank": 153,
      "cve_id": "CVE-2026-87600",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.0022,
      "epss_percentile": 0.12535,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Safebrowsing in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87600"
    },
    {
      "rank": 154,
      "cve_id": "CVE-2026-87631",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00217,
      "epss_percentile": 0.1205,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in DOM in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially leak sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87631"
    },
    {
      "rank": 155,
      "cve_id": "CVE-2026-87651",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00217,
      "epss_percentile": 0.1205,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Paint in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87651"
    },
    {
      "rank": 156,
      "cve_id": "CVE-2026-87494",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00215,
      "epss_percentile": 0.11838,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Browser in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87494"
    },
    {
      "rank": 157,
      "cve_id": "CVE-2026-87500",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00215,
      "epss_percentile": 0.11838,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-129",
      "title": "Improper validation of array index in ANGLE in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87500"
    },
    {
      "rank": 158,
      "cve_id": "CVE-2026-87621",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00215,
      "epss_percentile": 0.11838,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-787",
      "title": "Out of bounds write in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87621"
    },
    {
      "rank": 159,
      "cve_id": "CVE-2026-87460",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00215,
      "epss_percentile": 0.11838,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Platform in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87460"
    },
    {
      "rank": 160,
      "cve_id": "CVE-2026-87536",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00215,
      "epss_percentile": 0.11839,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87536"
    },
    {
      "rank": 161,
      "cve_id": "CVE-2026-87542",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00215,
      "epss_percentile": 0.11839,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Input in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87542"
    },
    {
      "rank": 162,
      "cve_id": "CVE-2026-87587",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00215,
      "epss_percentile": 0.11839,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87587"
    },
    {
      "rank": 163,
      "cve_id": "CVE-2026-87588",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00215,
      "epss_percentile": 0.11839,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Chromecast in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87588"
    },
    {
      "rank": 164,
      "cve_id": "CVE-2026-87506",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00215,
      "epss_percentile": 0.11837,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-250",
      "title": "Privilege elevation in WebUI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87506"
    },
    {
      "rank": 165,
      "cve_id": "CVE-2026-87604",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00215,
      "epss_percentile": 0.11837,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in ANGLE in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87604"
    },
    {
      "rank": 166,
      "cve_id": "CVE-2026-80177",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00215,
      "epss_percentile": 0.11898,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-89",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to script injection.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80177"
    },
    {
      "rank": 167,
      "cve_id": "CVE-2026-19797",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00215,
      "epss_percentile": 0.1187,
      "kev": false,
      "kev_due_at": null,
      "vendor": "gm_alex",
      "product": "User Access Manager",
      "cwe": "CWE-79",
      "title": "User Access Manager <= 2.3.18 - Reflected Cross-Site Scripting via 'tab_group_section' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19797"
    },
    {
      "rank": 168,
      "cve_id": "CVE-2026-87511",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00215,
      "epss_percentile": 0.11807,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in DevTools in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain cross-origin data via a crafted Chrome extension. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87511"
    },
    {
      "rank": 169,
      "cve_id": "CVE-2026-87737",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00212,
      "epss_percentile": 0.11507,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OCaml",
      "product": "mirage-crypto-ec",
      "cwe": "CWE-208",
      "title": "An issue was discovered in the mirage-crypto-ec package before 2.4.0 for OCaml. There is a timing side channel for NIST elliptic-curve scalar multiplication: the time required for a lookup can depend on a secret.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87737"
    },
    {
      "rank": 170,
      "cve_id": "CVE-2026-87736",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00212,
      "epss_percentile": 0.11502,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OCaml",
      "product": "mirage-crypto-ec",
      "cwe": "CWE-125",
      "title": "An issue was discovered in the mirage-crypto-ec package before 2.3.0 for OCaml. There is an EC public key out-of-bounds read for compressed points.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87736"
    },
    {
      "rank": 171,
      "cve_id": "CVE-2026-80055",
      "cvss_base": 4.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00211,
      "epss_percentile": 0.11322,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-90",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to script injection.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80055"
    },
    {
      "rank": 172,
      "cve_id": "CVE-2026-87036",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.0021,
      "epss_percentile": 0.11247,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-862",
      "title": "Tanium addressed an improper access controls vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87036"
    },
    {
      "rank": 173,
      "cve_id": "CVE-2026-87075",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.0021,
      "epss_percentile": 0.11248,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-863",
      "title": "Tanium addressed an improper access controls vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87075"
    },
    {
      "rank": 174,
      "cve_id": "CVE-2026-87565",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00208,
      "epss_percentile": 0.10953,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Passwords in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to leak sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87565"
    },
    {
      "rank": 175,
      "cve_id": "CVE-2026-87458",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00208,
      "epss_percentile": 0.10952,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Geometry in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87458"
    },
    {
      "rank": 176,
      "cve_id": "CVE-2026-87496",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00208,
      "epss_percentile": 0.10952,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Browser in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87496"
    },
    {
      "rank": 177,
      "cve_id": "CVE-2026-81647",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00208,
      "epss_percentile": 0.10972,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Huawei",
      "product": "HarmonyOS",
      "cwe": "CWE-680",
      "title": "Out-of-bounds read vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-81647"
    },
    {
      "rank": 178,
      "cve_id": "CVE-2026-87574",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00208,
      "epss_percentile": 0.10952,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in ServiceWorker in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87574"
    },
    {
      "rank": 179,
      "cve_id": "CVE-2026-87451",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00208,
      "epss_percentile": 0.10952,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87451"
    },
    {
      "rank": 180,
      "cve_id": "CVE-2026-87539",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00208,
      "epss_percentile": 0.10953,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in Network in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87539"
    },
    {
      "rank": 181,
      "cve_id": "CVE-2026-87492",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00207,
      "epss_percentile": 0.10843,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in DevTools in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87492"
    },
    {
      "rank": 182,
      "cve_id": "CVE-2026-77186",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00207,
      "epss_percentile": 0.10916,
      "kev": false,
      "kev_due_at": null,
      "vendor": "joedolson",
      "product": "My Calendar – Accessible Event Manager",
      "cwe": "CWE-79",
      "title": "My Calendar <= 3.8.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'fallback' Shortcode Attribute",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77186"
    },
    {
      "rank": 183,
      "cve_id": "CVE-2026-87561",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00207,
      "epss_percentile": 0.10824,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Web Authentication in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy via a crafted Chrome extension. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87561"
    },
    {
      "rank": 184,
      "cve_id": "CVE-2026-87626",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00207,
      "epss_percentile": 0.10887,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in DeviceBoundSessionCredentials in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87626"
    },
    {
      "rank": 185,
      "cve_id": "CVE-2026-17149",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00206,
      "epss_percentile": 0.10689,
      "kev": false,
      "kev_due_at": null,
      "vendor": "saadiqbal",
      "product": "Points Management System For Gamification, Ranks, Badges, and Loyalty Rewards Program – myCred",
      "cwe": "CWE-79",
      "title": "myCred – Points Management System For Gamification, Ranks, Badges, and Loyalty Rewards Program <= 3.2.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'wrapper' Shortcode Attribute",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-17149"
    },
    {
      "rank": 186,
      "cve_id": "CVE-2026-87083",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00206,
      "epss_percentile": 0.10812,
      "kev": false,
      "kev_due_at": null,
      "vendor": "tile-ai",
      "product": "tilelang",
      "cwe": "CWE-20",
      "title": "tile-ai tilelang Kernel Cache kernel_cache.py KernelCache._load_kernel_from_disk deserialization",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87083"
    },
    {
      "rank": 187,
      "cve_id": "CVE-2026-87517",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00205,
      "epss_percentile": 0.1052,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in Mobile in Google Chrome on on iOS prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87517"
    },
    {
      "rank": 188,
      "cve_id": "CVE-2026-87633",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00202,
      "epss_percentile": 0.10239,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Views in Google Chrome prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via UI Interaction. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87633"
    },
    {
      "rank": 189,
      "cve_id": "CVE-2026-87535",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00202,
      "epss_percentile": 0.10152,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-221",
      "title": "Information loss or omission in Safebrowsing in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87535"
    },
    {
      "rank": 190,
      "cve_id": "CVE-2026-87084",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00201,
      "epss_percentile": 0.10018,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Enforce",
      "cwe": "CWE-918",
      "title": "Tanium addressed a server-side request forgery vulnerability in Enforce.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87084"
    },
    {
      "rank": 191,
      "cve_id": "CVE-2025-46808",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00201,
      "epss_percentile": 0.10074,
      "kev": false,
      "kev_due_at": null,
      "vendor": "SUSE",
      "product": "neuvector",
      "cwe": "CWE-532",
      "title": "Sensitive information is leaked into NeuVector’s manager container logs",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-46808"
    },
    {
      "rank": 192,
      "cve_id": "CVE-2026-13709",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00201,
      "epss_percentile": 0.10042,
      "kev": false,
      "kev_due_at": null,
      "vendor": "iqonicdesign",
      "product": "Graphina – Charts and Graphs For Elementor",
      "cwe": "CWE-79",
      "title": "Graphina <= 3.1.11 - Authenticated (Author+) Stored Cross-Site Scripting via 'iq_tree_tree_chart_template' Widget Setting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-13709"
    },
    {
      "rank": 193,
      "cve_id": "CVE-2026-87453",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.002,
      "epss_percentile": 0.09923,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-441",
      "title": "Confused deputy in BackgroundFetch in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to leak sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87453"
    },
    {
      "rank": 194,
      "cve_id": "CVE-2026-87538",
      "cvss_base": 4.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.002,
      "epss_percentile": 0.09923,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-1021",
      "title": "Clickjacking in Input in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87538"
    },
    {
      "rank": 195,
      "cve_id": "CVE-2026-87452",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.002,
      "epss_percentile": 0.09923,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in GPU in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87452"
    },
    {
      "rank": 196,
      "cve_id": "CVE-2026-87613",
      "cvss_base": 9,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00198,
      "epss_percentile": 0.09716,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-706",
      "title": "Incorrect reference resolution in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87613"
    },
    {
      "rank": 197,
      "cve_id": "CVE-2026-87585",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00198,
      "epss_percentile": 0.09717,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-415",
      "title": "Double free in PDFium in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted PDF file. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87585"
    },
    {
      "rank": 198,
      "cve_id": "CVE-2026-87625",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00198,
      "epss_percentile": 0.09717,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87625"
    },
    {
      "rank": 199,
      "cve_id": "CVE-2026-87641",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00197,
      "epss_percentile": 0.09544,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-362",
      "title": "Race condition in Browser in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87641"
    },
    {
      "rank": 200,
      "cve_id": "CVE-2026-8615",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00196,
      "epss_percentile": 0.09432,
      "kev": false,
      "kev_due_at": null,
      "vendor": "ghera74",
      "product": "ilGhera Reviso Exporter for WooCommerce",
      "cwe": "CWE-862",
      "title": "ilGhera Reviso Exporter for WooCommerce <= 1.2.3 - Missing Authorization to Authenticated (Subscriber+) Agreement Grant Token Deletion via disconnect_callback Function",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-8615"
    },
    {
      "rank": 201,
      "cve_id": "CVE-2026-87591",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00196,
      "epss_percentile": 0.09435,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87591"
    },
    {
      "rank": 202,
      "cve_id": "CVE-2026-14892",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00195,
      "epss_percentile": 0.09268,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Tanium Server",
      "cwe": "CWE-863",
      "title": "Tanium addressed an improper access controls vulnerability in Tanium Server.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14892"
    },
    {
      "rank": 203,
      "cve_id": "CVE-2026-77187",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00193,
      "epss_percentile": 0.09102,
      "kev": false,
      "kev_due_at": null,
      "vendor": "joedolson",
      "product": "My Calendar – Accessible Event Manager",
      "cwe": "CWE-79",
      "title": "My Calendar <= 3.8.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'before' and 'after' Shortcode Attributes",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77187"
    },
    {
      "rank": 204,
      "cve_id": "CVE-2026-87523",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00193,
      "epss_percentile": 0.09038,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in DataTransfer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87523"
    },
    {
      "rank": 205,
      "cve_id": "CVE-2026-87590",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00192,
      "epss_percentile": 0.08932,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Passwords in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially leak sensitive information via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87590"
    },
    {
      "rank": 206,
      "cve_id": "CVE-2026-87537",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00191,
      "epss_percentile": 0.08845,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87537"
    },
    {
      "rank": 207,
      "cve_id": "CVE-2026-14962",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.0019,
      "epss_percentile": 0.08728,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "ELEX WooCommerce Request a Quote",
      "cwe": "CWE-89",
      "title": "ELEX WooCommerce Request a Quote < 2.4.1 - Unauthenticated SQLi via variation_id",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-14962"
    },
    {
      "rank": 208,
      "cve_id": "CVE-2026-11821",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0019,
      "epss_percentile": 0.08781,
      "kev": false,
      "kev_due_at": null,
      "vendor": "arraytics",
      "product": "Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce",
      "cwe": "CWE-862",
      "title": "Eventin <= 4.1.17 - Missing Authorization to Authenticated (Subscriber+) Notification Flow Management via notification-flow REST API Endpoint",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-11821"
    },
    {
      "rank": 209,
      "cve_id": "CVE-2026-87497",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0019,
      "epss_percentile": 0.08763,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in Codecs in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87497"
    },
    {
      "rank": 210,
      "cve_id": "CVE-2026-87562",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0019,
      "epss_percentile": 0.08763,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-706",
      "title": "Incorrect reference resolution in Accessibility in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker to potentially spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87562"
    },
    {
      "rank": 211,
      "cve_id": "CVE-2026-87576",
      "cvss_base": 3.4,
      "cvss_severity": "LOW",
      "epss_score": 0.0019,
      "epss_percentile": 0.08763,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-908",
      "title": "Uninitialized resource in GPU in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87576"
    },
    {
      "rank": 212,
      "cve_id": "CVE-2026-87034",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00189,
      "epss_percentile": 0.08659,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-89",
      "title": "Tanium addressed a SQL injection vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87034"
    },
    {
      "rank": 213,
      "cve_id": "CVE-2026-87560",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00188,
      "epss_percentile": 0.08565,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Browser in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87560"
    },
    {
      "rank": 214,
      "cve_id": "CVE-2026-87577",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00188,
      "epss_percentile": 0.08565,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Isolated in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy into a privileged page via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87577"
    },
    {
      "rank": 215,
      "cve_id": "CVE-2026-87598",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00188,
      "epss_percentile": 0.08563,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in ServiceWorker in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87598"
    },
    {
      "rank": 216,
      "cve_id": "CVE-2026-87622",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00188,
      "epss_percentile": 0.08564,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in FedCM in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87622"
    },
    {
      "rank": 217,
      "cve_id": "CVE-2026-87498",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00188,
      "epss_percentile": 0.08564,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in WebUI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87498"
    },
    {
      "rank": 218,
      "cve_id": "CVE-2026-87614",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00188,
      "epss_percentile": 0.08564,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in ServiceWorker in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87614"
    },
    {
      "rank": 219,
      "cve_id": "CVE-2026-87580",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00188,
      "epss_percentile": 0.08563,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in WebAppInstalls in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87580"
    },
    {
      "rank": 220,
      "cve_id": "CVE-2026-87584",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00188,
      "epss_percentile": 0.08564,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in WebUI in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions into a privileged page via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87584"
    },
    {
      "rank": 221,
      "cve_id": "CVE-2026-87489",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00185,
      "epss_percentile": 0.08158,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-119",
      "title": "Memory corruption in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code inside the sandbox via a crafted Chrome extension. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87489"
    },
    {
      "rank": 222,
      "cve_id": "CVE-2026-78377",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00185,
      "epss_percentile": 0.08243,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc.",
      "product": "Library Information and Document Automation Program",
      "cwe": "CWE-601",
      "title": "Open Redirect in Yordam Informatics's Library Automation System",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78377"
    },
    {
      "rank": 223,
      "cve_id": "CVE-2026-87573",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00185,
      "epss_percentile": 0.08201,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Network in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87573"
    },
    {
      "rank": 224,
      "cve_id": "CVE-2026-87450",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00185,
      "epss_percentile": 0.08153,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Permissions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted Chrome extension. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87450"
    },
    {
      "rank": 225,
      "cve_id": "CVE-2026-87532",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00185,
      "epss_percentile": 0.08202,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-754",
      "title": "Improper state validation in Safebrowsing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87532"
    },
    {
      "rank": 226,
      "cve_id": "CVE-2026-87541",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00185,
      "epss_percentile": 0.08201,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Navigation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87541"
    },
    {
      "rank": 227,
      "cve_id": "CVE-2026-80123",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00183,
      "epss_percentile": 0.08039,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-918",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Server-Side Request Forgery (SSRF) vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80123"
    },
    {
      "rank": 228,
      "cve_id": "CVE-2026-19855",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00183,
      "epss_percentile": 0.07994,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "CleanTalk",
      "cwe": "CWE-74",
      "title": "Spam protection, Honeypot, Anti-Spam by CleanTalk < 6.87 - Unauthenticated Arbitrary Shortcode Execution via Comment Text",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19855"
    },
    {
      "rank": 229,
      "cve_id": "CVE-2026-85117",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00183,
      "epss_percentile": 0.07994,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Contact Form 7 Captcha",
      "cwe": "CWE-74",
      "title": "Contact Form 7 Captcha 0.1.7 - 0.1.8 - Unauthenticated Arbitrary Shortcode Execution via Form Field Repopulation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-85117"
    },
    {
      "rank": 230,
      "cve_id": "CVE-2026-79974",
      "cvss_base": 6.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00183,
      "epss_percentile": 0.07995,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-287",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Authentication vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79974"
    },
    {
      "rank": 231,
      "cve_id": "CVE-2026-87486",
      "cvss_base": 4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00179,
      "epss_percentile": 0.07553,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-1021",
      "title": "Clickjacking in TrustedWebActivities in Google Chrome on on Android prior to 153.0.8010.36 allowed a local attacker to spoof address bar via a co-installed app. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87486"
    },
    {
      "rank": 232,
      "cve_id": "CVE-2026-87569",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00178,
      "epss_percentile": 0.07484,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Views in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87569"
    },
    {
      "rank": 233,
      "cve_id": "CVE-2026-87468",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00178,
      "epss_percentile": 0.07484,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Isolated in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87468"
    },
    {
      "rank": 234,
      "cve_id": "CVE-2026-87493",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00178,
      "epss_percentile": 0.07485,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in FileSystem in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87493"
    },
    {
      "rank": 235,
      "cve_id": "CVE-2026-87499",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00178,
      "epss_percentile": 0.07485,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Network in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87499"
    },
    {
      "rank": 236,
      "cve_id": "CVE-2026-87543",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00178,
      "epss_percentile": 0.07485,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Core in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87543"
    },
    {
      "rank": 237,
      "cve_id": "CVE-2026-87589",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00178,
      "epss_percentile": 0.07484,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in SiteIsolation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87589"
    },
    {
      "rank": 238,
      "cve_id": "CVE-2026-87595",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00178,
      "epss_percentile": 0.07485,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-918",
      "title": "Server-side request forgery in Mobile in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87595"
    },
    {
      "rank": 239,
      "cve_id": "CVE-2026-87603",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00178,
      "epss_percentile": 0.07486,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in FileSystem in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87603"
    },
    {
      "rank": 240,
      "cve_id": "CVE-2026-87606",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00178,
      "epss_percentile": 0.07484,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in SiteIsolation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87606"
    },
    {
      "rank": 241,
      "cve_id": "CVE-2026-87610",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00178,
      "epss_percentile": 0.07486,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Omnibox in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions into a privileged page via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87610"
    },
    {
      "rank": 242,
      "cve_id": "CVE-2026-84068",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00177,
      "epss_percentile": 0.0735,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Quentn WP",
      "cwe": "CWE-89",
      "title": "Quentn WP 1.2.13 - 1.2.14 - Unauthenticated SQLi via 'qntn_wp' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-84068"
    },
    {
      "rank": 243,
      "cve_id": "CVE-2026-87551",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00177,
      "epss_percentile": 0.07354,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-295",
      "title": "Improper certificate validation in CORS in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass web origin policy via crafted network traffic. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87551"
    },
    {
      "rank": 244,
      "cve_id": "CVE-2026-87032",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00176,
      "epss_percentile": 0.07276,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Tanium Server",
      "cwe": "CWE-200",
      "title": "Tanium addressed an information disclosure vulnerability in Tanium Server.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87032"
    },
    {
      "rank": 245,
      "cve_id": "CVE-2026-87035",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00176,
      "epss_percentile": 0.07277,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-200",
      "title": "Tanium addressed an information disclosure vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87035"
    },
    {
      "rank": 246,
      "cve_id": "CVE-2026-21103",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.06991,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Path traversal in GalaxyDiagnostics prior to SMR Sep-2026 Release 1 allows physical attackers to access files with system privilege.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21103"
    },
    {
      "rank": 247,
      "cve_id": "CVE-2026-87073",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07063,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-862",
      "title": "Tanium addressed an improper access controls vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87073"
    },
    {
      "rank": 248,
      "cve_id": "CVE-2026-87454",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07047,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Enterprise in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87454"
    },
    {
      "rank": 249,
      "cve_id": "CVE-2026-87459",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07046,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in Select in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87459"
    },
    {
      "rank": 250,
      "cve_id": "CVE-2026-87545",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07048,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Mobile in Google Chrome on on iOS prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to leak sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87545"
    },
    {
      "rank": 251,
      "cve_id": "CVE-2026-87620",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07046,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in SVG in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87620"
    },
    {
      "rank": 252,
      "cve_id": "CVE-2026-87623",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07049,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in DOM in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87623"
    },
    {
      "rank": 253,
      "cve_id": "CVE-2026-87462",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07046,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in FedCM in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87462"
    },
    {
      "rank": 254,
      "cve_id": "CVE-2026-87501",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07047,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Passwords in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87501"
    },
    {
      "rank": 255,
      "cve_id": "CVE-2026-87599",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07045,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Interstitials in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87599"
    },
    {
      "rank": 256,
      "cve_id": "CVE-2026-87566",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07048,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in Layout in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to leak sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87566"
    },
    {
      "rank": 257,
      "cve_id": "CVE-2026-87495",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07048,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Scroll in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87495"
    },
    {
      "rank": 258,
      "cve_id": "CVE-2026-87586",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07046,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in ANGLE in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87586"
    },
    {
      "rank": 259,
      "cve_id": "CVE-2026-87592",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07049,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in Tint in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87592"
    },
    {
      "rank": 260,
      "cve_id": "CVE-2026-87596",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07048,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in ANGLE in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87596"
    },
    {
      "rank": 261,
      "cve_id": "CVE-2026-87619",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00174,
      "epss_percentile": 0.07045,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-203",
      "title": "Observable discrepancy in Prefetch in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87619"
    },
    {
      "rank": 262,
      "cve_id": "CVE-2026-87531",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00174,
      "epss_percentile": 0.07047,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in CORS in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87531"
    },
    {
      "rank": 263,
      "cve_id": "CVE-2026-87534",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00174,
      "epss_percentile": 0.06984,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in WebView in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87534"
    },
    {
      "rank": 264,
      "cve_id": "CVE-2026-16960",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00173,
      "epss_percentile": 0.06915,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Loops & Logic",
      "cwe": "CWE-200",
      "title": "Loops & Logic < 4.3.0 - Unauthenticated User Data and Site Option Disclosure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16960"
    },
    {
      "rank": 265,
      "cve_id": "CVE-2026-87449",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00172,
      "epss_percentile": 0.06814,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-352",
      "title": "Cross-site request forgery in DeviceBoundSessionCredentials in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87449"
    },
    {
      "rank": 266,
      "cve_id": "CVE-2026-87072",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00171,
      "epss_percentile": 0.06678,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-862",
      "title": "Tanium addressed an improper access controls vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87072"
    },
    {
      "rank": 267,
      "cve_id": "CVE-2026-87546",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00171,
      "epss_percentile": 0.06668,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-704",
      "title": "Incorrect type conversion or cast in Safebrowsing in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions via a crafted file. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87546"
    },
    {
      "rank": 268,
      "cve_id": "CVE-2026-87627",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00171,
      "epss_percentile": 0.06668,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-436",
      "title": "Interpretation conflict in Safebrowsing in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted file. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87627"
    },
    {
      "rank": 269,
      "cve_id": "CVE-2026-87514",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.0017,
      "epss_percentile": 0.06575,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Views in Google Chrome prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87514"
    },
    {
      "rank": 270,
      "cve_id": "CVE-2026-87025",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0017,
      "epss_percentile": 0.0655,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-639",
      "title": "Tanium addressed an improper access controls vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87025"
    },
    {
      "rank": 271,
      "cve_id": "CVE-2026-87033",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0017,
      "epss_percentile": 0.06551,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-639",
      "title": "Tanium addressed an improper access controls vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87033"
    },
    {
      "rank": 272,
      "cve_id": "CVE-2026-87048",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0017,
      "epss_percentile": 0.0655,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-862",
      "title": "Tanium addressed an improper access controls vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87048"
    },
    {
      "rank": 273,
      "cve_id": "CVE-2026-87628",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00168,
      "epss_percentile": 0.06398,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Cast in Google Chrome prior to 153.0.8010.36 allowed an adjacent attacker to potentially execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Critical)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87628"
    },
    {
      "rank": 274,
      "cve_id": "CVE-2026-87540",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06358,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Isolated in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87540"
    },
    {
      "rank": 275,
      "cve_id": "CVE-2026-87594",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06357,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in DataTransfer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87594"
    },
    {
      "rank": 276,
      "cve_id": "CVE-2026-87465",
      "cvss_base": 4.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06358,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87465"
    },
    {
      "rank": 277,
      "cve_id": "CVE-2026-87502",
      "cvss_base": 4.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00168,
      "epss_percentile": 0.06357,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-441",
      "title": "Confused deputy in Fullscreen in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87502"
    },
    {
      "rank": 278,
      "cve_id": "CVE-2026-87611",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00168,
      "epss_percentile": 0.06357,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in FileSystem in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87611"
    },
    {
      "rank": 279,
      "cve_id": "CVE-2026-87530",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00167,
      "epss_percentile": 0.06232,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-427",
      "title": "Uncontrolled search path element in CredentialProvider in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87530"
    },
    {
      "rank": 280,
      "cve_id": "CVE-2026-87544",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00166,
      "epss_percentile": 0.06144,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass system access restrictions into a privileged page via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87544"
    },
    {
      "rank": 281,
      "cve_id": "CVE-2026-87575",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00166,
      "epss_percentile": 0.06145,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Loader in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87575"
    },
    {
      "rank": 282,
      "cve_id": "CVE-2026-87601",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00165,
      "epss_percentile": 0.06026,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-362",
      "title": "Race condition in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87601"
    },
    {
      "rank": 283,
      "cve_id": "CVE-2026-87570",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.00164,
      "epss_percentile": 0.05968,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in SiteIsolation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to bypass site isolation via a crafted file. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87570"
    },
    {
      "rank": 284,
      "cve_id": "CVE-2026-87505",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00164,
      "epss_percentile": 0.05968,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in FileSystem in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted PDF file. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87505"
    },
    {
      "rank": 285,
      "cve_id": "CVE-2025-15690",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00163,
      "epss_percentile": 0.0584,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Content Mask",
      "cwe": "CWE-79",
      "title": "Content Mask 1.7.1 - 1.8.5.5 - Contributor+ Stored XSS via Post Scripts and Styles",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-15690"
    },
    {
      "rank": 286,
      "cve_id": "CVE-2026-78491",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00162,
      "epss_percentile": 0.05712,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-295",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78491"
    },
    {
      "rank": 287,
      "cve_id": "CVE-2026-87490",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00162,
      "epss_percentile": 0.05768,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Transactions Platform in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87490"
    },
    {
      "rank": 288,
      "cve_id": "CVE-2026-87593",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00162,
      "epss_percentile": 0.05768,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Editing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87593"
    },
    {
      "rank": 289,
      "cve_id": "CVE-2026-87583",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00162,
      "epss_percentile": 0.05767,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Passwords in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87583"
    },
    {
      "rank": 290,
      "cve_id": "CVE-2026-87602",
      "cvss_base": 4.7,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00162,
      "epss_percentile": 0.05768,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in ANGLE in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to potentially read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87602"
    },
    {
      "rank": 291,
      "cve_id": "CVE-2026-87624",
      "cvss_base": 4.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00162,
      "epss_percentile": 0.05767,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in Passwords in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87624"
    },
    {
      "rank": 292,
      "cve_id": "CVE-2026-87597",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00161,
      "epss_percentile": 0.05616,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in CustomTabs in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to spoof address bar via a co-installed app. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87597"
    },
    {
      "rank": 293,
      "cve_id": "CVE-2026-87567",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00161,
      "epss_percentile": 0.05617,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-451",
      "title": "UI misrepresentation in UrlFormatting in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to spoof address bar via a crafted domain name. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87567"
    },
    {
      "rank": 294,
      "cve_id": "CVE-2026-87568",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00161,
      "epss_percentile": 0.05616,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-20",
      "title": "Improper input validation in Chromium in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to spoof UI elements via crafted network traffic. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87568"
    },
    {
      "rank": 295,
      "cve_id": "CVE-2026-87605",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00156,
      "epss_percentile": 0.05137,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in Contacts in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87605"
    },
    {
      "rank": 296,
      "cve_id": "CVE-2026-84113",
      "cvss_base": 4.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00156,
      "epss_percentile": 0.05101,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Quentn WP",
      "cwe": "CWE-89",
      "title": "Quentn WP < 1.2.15 - Admin+ SQLi via 'orderby'/'order' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-84113"
    },
    {
      "rank": 297,
      "cve_id": "CVE-2026-87047",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00154,
      "epss_percentile": 0.04811,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-639",
      "title": "Tanium addressed an improper access controls vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87047"
    },
    {
      "rank": 298,
      "cve_id": "CVE-2026-80440",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00154,
      "epss_percentile": 0.04875,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Hustle",
      "cwe": "CWE-74",
      "title": "Hustle < 7.8.14.2 - Unauthenticated Arbitrary Shortcode Execution via Success Message Placeholders",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80440"
    },
    {
      "rank": 299,
      "cve_id": "CVE-2026-87509",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00152,
      "epss_percentile": 0.04709,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Updater in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87509"
    },
    {
      "rank": 300,
      "cve_id": "CVE-2026-83541",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00152,
      "epss_percentile": 0.04689,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Sina Extension for Elementor",
      "cwe": "CWE-79",
      "title": "Sina Extension for Elementor 3.7.1 - 3.10.3 - Contributor+ Stored XSS via Table Widget",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-83541"
    },
    {
      "rank": 301,
      "cve_id": "CVE-2026-85418",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00152,
      "epss_percentile": 0.04689,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Orbit Fox: Duplicate Page, Menu Icons, SVG Support, Cookie Notice, Custom Fonts & More",
      "cwe": "CWE-79",
      "title": "Orbit Fox < 3.0.9 - Contributor+ Stored XSS via Beaver Builder Pricing Table Widget",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-85418"
    },
    {
      "rank": 302,
      "cve_id": "CVE-2026-87019",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00152,
      "epss_percentile": 0.04681,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-639",
      "title": "Tanium addressed an improper access controls vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87019"
    },
    {
      "rank": 303,
      "cve_id": "CVE-2026-87046",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00152,
      "epss_percentile": 0.04675,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-863",
      "title": "Tanium addressed an improper access controls vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87046"
    },
    {
      "rank": 304,
      "cve_id": "CVE-2026-78494",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.0015,
      "epss_percentile": 0.04487,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-295",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78494"
    },
    {
      "rank": 305,
      "cve_id": "CVE-2026-87461",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0015,
      "epss_percentile": 0.04499,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-200",
      "title": "Information leak in Core in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to leak cross-origin data via a crafted Chrome extension. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87461"
    },
    {
      "rank": 306,
      "cve_id": "CVE-2026-87482",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.0015,
      "epss_percentile": 0.04503,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-319",
      "title": "Cleartext transmission of sensitive data in HttpsUpgrades in Google Chrome on on iOS prior to 153.0.8010.36 allowed a remote attacker to leak sensitive information via crafted network traffic. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87482"
    },
    {
      "rank": 307,
      "cve_id": "CVE-2026-87552",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.0015,
      "epss_percentile": 0.04519,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-862",
      "title": "Missing authorization in TrustedWebActivities in Google Chrome on on Android prior to 153.0.8010.36 allowed a local attacker to obtain sensitive information via a co-installed app. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87552"
    },
    {
      "rank": 308,
      "cve_id": "CVE-2026-79640",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00148,
      "epss_percentile": 0.04316,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-89",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79640"
    },
    {
      "rank": 309,
      "cve_id": "CVE-2026-87525",
      "cvss_base": 2.7,
      "cvss_severity": "LOW",
      "epss_score": 0.00148,
      "epss_percentile": 0.04304,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-125",
      "title": "Out of bounds read in Chromoting in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to read memory outside the sandbox via a local program. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87525"
    },
    {
      "rank": 310,
      "cve_id": "CVE-2026-87608",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00148,
      "epss_percentile": 0.04323,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-295",
      "title": "Improper certificate validation in FedCM in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass web origin policy via crafted network traffic. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87608"
    },
    {
      "rank": 311,
      "cve_id": "CVE-2026-18042",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00146,
      "epss_percentile": 0.04209,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "WP Travel",
      "cwe": "CWE-862",
      "title": "WP Travel < 12.0.2 - Unauthenticated Arbitrary Booking Cancellation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18042"
    },
    {
      "rank": 312,
      "cve_id": "CVE-2026-13144",
      "cvss_base": 3.7,
      "cvss_severity": "LOW",
      "epss_score": 0.00146,
      "epss_percentile": 0.04209,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "WP Travel",
      "cwe": "CWE-284",
      "title": "WP Travel < 12.0.2 - Unauthenticated Arbitrary Booking Payment Reset",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-13144"
    },
    {
      "rank": 313,
      "cve_id": "CVE-2026-13146",
      "cvss_base": 3.7,
      "cvss_severity": "LOW",
      "epss_score": 0.00146,
      "epss_percentile": 0.04208,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "WP Travel",
      "cwe": "CWE-639",
      "title": "WP Travel < 12.0.2 - Unauthenticated Booking Payment State Tampering via IDOR",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-13146"
    },
    {
      "rank": 314,
      "cve_id": "CVE-2026-80339",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00145,
      "epss_percentile": 0.04145,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Payment Plugins for Stripe WooCommerce",
      "cwe": "CWE-200",
      "title": "Payment Plugins for Stripe WooCommerce < 4.0.12 - Unauthenticated Customer PII Disclosure via order-pay",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80339"
    },
    {
      "rank": 315,
      "cve_id": "CVE-2026-80340",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00145,
      "epss_percentile": 0.04145,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Payment Plugins for PayPal WooCommerce",
      "cwe": "CWE-200",
      "title": "Payment Plugins for PayPal WooCommerce < 2.0.26 - Unauthenticated Customer PII Disclosure via order-pay",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80340"
    },
    {
      "rank": 316,
      "cve_id": "CVE-2026-81021",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00145,
      "epss_percentile": 0.04144,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "SupportCandy",
      "cwe": "CWE-200",
      "title": "SupportCandy 3.2.9 - 3.5.2 - Unauthenticated Ticket Attachment Disclosure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-81021"
    },
    {
      "rank": 317,
      "cve_id": "CVE-2026-81022",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00145,
      "epss_percentile": 0.04144,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "SupportCandy",
      "cwe": "CWE-200",
      "title": "SupportCandy 3.3.6 - 3.5.2 - Unauthenticated Ticket Content Disclosure via Auth Code Leak",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-81022"
    },
    {
      "rank": 318,
      "cve_id": "CVE-2026-84222",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00145,
      "epss_percentile": 0.04145,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Kirki",
      "cwe": "CWE-200",
      "title": "Kirki 6.2.1 - 6.2.5 - Unauthenticated Non-Public Post Content Disclosure via 'kirki_data' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-84222"
    },
    {
      "rank": 319,
      "cve_id": "CVE-2026-16272",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00144,
      "epss_percentile": 0.0403,
      "kev": false,
      "kev_due_at": null,
      "vendor": "PayTR Payment and Electronic Money Institution Inc.",
      "product": "PayTR Virtual Pos iFrame API (v9x) WHMCS Module",
      "cwe": "CWE-348",
      "title": "Client IP Spoofing via Untrusted HTTP Headers in PayTR's PayTR Virtual Pos iFrame API (v9x) WHMCS Module",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-16272"
    },
    {
      "rank": 320,
      "cve_id": "CVE-2026-75861",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00142,
      "epss_percentile": 0.03799,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Ultimate Gift Cards for WooCommerce",
      "cwe": "CWE-862",
      "title": "Ultimate Gift Cards for WooCommerce < 3.2.10 - Subscriber+ Gift Card Theft and Destruction via Unauthorized Redemption",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75861"
    },
    {
      "rank": 321,
      "cve_id": "CVE-2026-87735",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00141,
      "epss_percentile": 0.03779,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OCaml",
      "product": "mirage-crypto-pk",
      "cwe": "CWE-1284",
      "title": "An issue was discovered in the mirage-crypto-pk package before 2.3.0 for OCaml. There is an undocumented exception for a small message during RSA decryption or encryption.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87735"
    },
    {
      "rank": 322,
      "cve_id": "CVE-2026-87766",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": 0.0014,
      "epss_percentile": 0.03646,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-59",
      "title": "Bubblewrap: bubblewrap: symlink traversal via /oldroot allows writing files outside sandbox during setup",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87766"
    },
    {
      "rank": 323,
      "cve_id": "CVE-2026-87615",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00139,
      "epss_percentile": 0.03616,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-362",
      "title": "Race condition in Payments in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87615"
    },
    {
      "rank": 324,
      "cve_id": "CVE-2026-87037",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00138,
      "epss_percentile": 0.0349,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Comply",
      "cwe": "CWE-862",
      "title": "Tanium addressed an improper access controls vulnerability in Comply.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87037"
    },
    {
      "rank": 325,
      "cve_id": "CVE-2026-80122",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00136,
      "epss_percentile": 0.03358,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-295",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80122"
    },
    {
      "rank": 326,
      "cve_id": "CVE-2026-21094",
      "cvss_base": 6.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00136,
      "epss_percentile": 0.03339,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Improper input validation in wpa_supplicant prior to SMR Sep-2026 Release 1 allows adjacent attackers to write out-of-bounds memory.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21094"
    },
    {
      "rank": 327,
      "cve_id": "CVE-2026-82848",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00136,
      "epss_percentile": 0.03388,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Masteriyo LMS",
      "cwe": "CWE-862",
      "title": "Masteriyo LMS 1.3.1 - 2.3.3 - Unauthenticated Course Enrollment Disclosure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-82848"
    },
    {
      "rank": 328,
      "cve_id": "CVE-2026-85037",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00136,
      "epss_percentile": 0.03388,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Sunshine Photo Cart",
      "cwe": "CWE-639",
      "title": "Sunshine Photo Cart < 3.7 - Unauthenticated Price Manipulation via IDOR",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-85037"
    },
    {
      "rank": 329,
      "cve_id": "CVE-2026-81741",
      "cvss_base": 4.7,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00136,
      "epss_percentile": 0.03388,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Groundhogg — CRM, Newsletters, and Marketing Automation",
      "cwe": "CWE-601",
      "title": "Groundhogg < 4.7.2 - Open Redirect via 'redirect_to' Parameter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-81741"
    },
    {
      "rank": 330,
      "cve_id": "CVE-2026-81644",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00136,
      "epss_percentile": 0.03339,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Huawei",
      "product": "HarmonyOS",
      "cwe": "CWE-264",
      "title": "DoS vulnerability in the preview service module. Impact: Successful exploitation of this vulnerability may affect availability.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-81644"
    },
    {
      "rank": 331,
      "cve_id": "CVE-2026-87563",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00136,
      "epss_percentile": 0.03395,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-346",
      "title": "Origin validation error in Paint in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87563"
    },
    {
      "rank": 332,
      "cve_id": "CVE-2026-87554",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00135,
      "epss_percentile": 0.03294,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in Chromoting in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87554"
    },
    {
      "rank": 333,
      "cve_id": "CVE-2026-79973",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00135,
      "epss_percentile": 0.03324,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-567",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Unsynchronized Access to Shared Data in a Multithreaded Context vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79973"
    },
    {
      "rank": 334,
      "cve_id": "CVE-2026-79636",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.00132,
      "epss_percentile": 0.03131,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-297",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Validation of Certificate with Host Mismatch vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79636"
    },
    {
      "rank": 335,
      "cve_id": "CVE-2026-80341",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00132,
      "epss_percentile": 0.03112,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "Payment Plugins for PayPal WooCommerce",
      "cwe": "CWE-863",
      "title": "Payment Plugins for PayPal WooCommerce < 2.0.26 - Subscriber+ Stored Payment Method Assignment via IDOR",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80341"
    },
    {
      "rank": 336,
      "cve_id": "CVE-2026-85133",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00132,
      "epss_percentile": 0.03112,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "WPLP Cookie Consent",
      "cwe": "CWE-862",
      "title": "WPLP Cookie Consent < 4.4.2 - Subscriber+ Missing Authorization via Multiple Settings AJAX Actions",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-85133"
    },
    {
      "rank": 337,
      "cve_id": "CVE-2026-82185",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00132,
      "epss_percentile": 0.03112,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "WPLP Cookie Consent",
      "cwe": "CWE-862",
      "title": "WPLP Cookie Consent < 4.4.2 - Subscriber+ Banner Settings Overwrite and A/B Test Data Reset",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-82185"
    },
    {
      "rank": 338,
      "cve_id": "CVE-2026-85132",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00132,
      "epss_percentile": 0.03112,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "WPLP Cookie Consent",
      "cwe": "CWE-862",
      "title": "WPLP Cookie Consent 4.0.2 - 4.4.1 - Subscriber+ Cookie Scan Schedule Disclosure via gcc_get_schedule_scan",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-85132"
    },
    {
      "rank": 339,
      "cve_id": "CVE-2026-21097",
      "cvss_base": 4.6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00129,
      "epss_percentile": 0.02848,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Improper authentication in ActivityTaskManagerService prior to SMR Sep-2026 Release 1 allows local privileged attackers to launch arbitrary activity.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21097"
    },
    {
      "rank": 340,
      "cve_id": "CVE-2026-87578",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00128,
      "epss_percentile": 0.02811,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in Receiver in Google Chrome prior to 153.0.8010.36 allowed an adjacent attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87578"
    },
    {
      "rank": 341,
      "cve_id": "CVE-2026-87571",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": 0.00128,
      "epss_percentile": 0.02743,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-295",
      "title": "Improper certificate validation in Loader in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass web origin policy via crafted network traffic. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87571"
    },
    {
      "rank": 342,
      "cve_id": "CVE-2026-12855",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00125,
      "epss_percentile": 0.02487,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Insyde Software",
      "product": "InsydeH2O",
      "cwe": "CWE-20",
      "title": "H19WMIHandlerSmm: unvalidated memory boundary could result in arbitrary code execution.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12855"
    },
    {
      "rank": 343,
      "cve_id": "CVE-2026-87533",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00123,
      "epss_percentile": 0.02362,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-416",
      "title": "Use after free in DevTools in Google Chrome prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87533"
    },
    {
      "rank": 344,
      "cve_id": "CVE-2026-6485",
      "cvss_base": 8.2,
      "cvss_severity": "HIGH",
      "epss_score": 0.00122,
      "epss_percentile": 0.02237,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Insyde Software",
      "product": "InsydeH2O",
      "cwe": "CWE-489",
      "title": "UEFI BIOS embedded Shell can be used to bypass Secure Boot",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-6485"
    },
    {
      "rank": 345,
      "cve_id": "CVE-2026-87463",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00122,
      "epss_percentile": 0.02283,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-863",
      "title": "Incorrect authorization in Certificate in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker to potentially spoof address bar via crafted network traffic. (Chromium security severity: Low)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87463"
    },
    {
      "rank": 346,
      "cve_id": "CVE-2026-21087",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": 0.00121,
      "epss_percentile": 0.02204,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Out-of-bounds write in libmdnie.so prior to SMR Sep-2026 Release 1 allows local attackers to execute arbitrary code with system server privilege.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21087"
    },
    {
      "rank": 347,
      "cve_id": "CVE-2026-87088",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": 0.0012,
      "epss_percentile": 0.02077,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Tanium",
      "product": "Enforce",
      "cwe": "CWE-78",
      "title": "Tanium addressed an unauthorized code execution vulnerability in Enforce.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87088"
    },
    {
      "rank": 348,
      "cve_id": "CVE-2026-21088",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0012,
      "epss_percentile": 0.02031,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Improper input validation in loading a subtitle frame in libsubextractor.so prior to SMR Sep-2026 Release 1 allows local attackers to write out-of-bounds memory.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21088"
    },
    {
      "rank": 349,
      "cve_id": "CVE-2026-21102",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": 0.00116,
      "epss_percentile": 0.01817,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Use after free in DualDAR prior to SMR Sep-2026 Release 1 allows local privileged attackers to execute arbitrary code with root privilege.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21102"
    },
    {
      "rank": 350,
      "cve_id": "CVE-2026-21101",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00116,
      "epss_percentile": 0.01817,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Improper input validation in DualDAR driver prior to SMR Sep-2026 Release 1 allows local privileged attackers to potentially execute arbitrary code with root privilege.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21101"
    },
    {
      "rank": 351,
      "cve_id": "CVE-2026-83537",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00114,
      "epss_percentile": 0.01689,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "WP Express Checkout",
      "cwe": "CWE-345",
      "title": "WP Express Checkout < 2.5.0 - Unauthenticated Payment Bypass via wpec_process_empty_payment",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-83537"
    },
    {
      "rank": 352,
      "cve_id": "CVE-2026-21089",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00111,
      "epss_percentile": 0.01487,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Improper input validation in removing style tag in libsubextractor.so prior to SMR Sep-2026 Release 1 allows local attackers to write out-of-bounds memory.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21089"
    },
    {
      "rank": 353,
      "cve_id": "CVE-2026-21106",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00111,
      "epss_percentile": 0.01447,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Cloud Assistant",
      "cwe": null,
      "title": "Improper verification of intent by broadcast receiver in Samsung Cloud Assistant prior to version 9.0.5 allows local attackers to disable enhanced data protection settings.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21106"
    },
    {
      "rank": 354,
      "cve_id": "CVE-2026-21110",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00108,
      "epss_percentile": 0.01329,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "libsavscmn.so",
      "cwe": null,
      "title": "Out-of-bounds write in libsavscmn.so prior to One UI 8.5 allows local attackers to execute arbitrary code.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21110"
    },
    {
      "rank": 355,
      "cve_id": "CVE-2026-21085",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": 0.00106,
      "epss_percentile": 0.01218,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Out-of-bounds write in Keymaster trustlet prior to SMR Sep-2026 Release 1 allows local privileged attackers to write out-of-bounds memory.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21085"
    },
    {
      "rank": 356,
      "cve_id": "CVE-2026-21086",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00106,
      "epss_percentile": 0.01224,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Improper authorization in ProxyHandler prior to SMR Aug-2026 Release 1 allows local attackers to access proxy configuration.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21086"
    },
    {
      "rank": 357,
      "cve_id": "CVE-2026-21098",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00105,
      "epss_percentile": 0.01169,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Improper access control in Link to Windows prior to SMR Sep-2026 Release 1 allows local attackers to establish a connection with the PC without proper user interaction.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21098"
    },
    {
      "rank": 358,
      "cve_id": "CVE-2026-21100",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00105,
      "epss_percentile": 0.0117,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Improper access control in SystemUI prior to SMR Sep-2026 Release 1 allows local attackers to launch arbitrary activity.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21100"
    },
    {
      "rank": 359,
      "cve_id": "CVE-2026-21108",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00105,
      "epss_percentile": 0.0117,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Bixby Touch",
      "cwe": "CWE-926",
      "title": "Improper export of android application components in Bixby Touch prior to version 4.3.01.17 allows local attackers to access sensitive information.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21108"
    },
    {
      "rank": 360,
      "cve_id": "CVE-2026-87733",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00105,
      "epss_percentile": 0.01159,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OCaml",
      "product": "mirage-crypto-ec",
      "cwe": "CWE-295",
      "title": "An issue was discovered in the mirage-crypto-ec function before 2.2.0 for OCaml. The ECDSA functions {P256,P384,P521}.Dsa.pub_of_octets accept 0x00, the encoding of the point at infinity, as a public key. With that public key, signatures can be forged without a private key.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87733"
    },
    {
      "rank": 361,
      "cve_id": "CVE-2026-21105",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00105,
      "epss_percentile": 0.01169,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Collection",
      "cwe": null,
      "title": "Improper access control in Collection prior to version 1.0.1.14 in Android 15 and 2.0.02.7 in Android 16 allows local attackers to access sensitive information.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21105"
    },
    {
      "rank": 362,
      "cve_id": "CVE-2026-79967",
      "cvss_base": 5.6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00105,
      "epss_percentile": 0.01161,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-295",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79967"
    },
    {
      "rank": 363,
      "cve_id": "CVE-2026-21099",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00105,
      "epss_percentile": 0.0117,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Improper access control in SettingsProvider prior to SMR Sep-2026 Release 1 allows local attackers to access sensitive information.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21099"
    },
    {
      "rank": 364,
      "cve_id": "CVE-2026-21109",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": 0.00105,
      "epss_percentile": 0.01169,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Watch Plugin",
      "cwe": null,
      "title": "Improper access control in Watch Plugin prior to Android Watch 17 allows local attackers to access sensitive information.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21109"
    },
    {
      "rank": 365,
      "cve_id": "CVE-2026-21104",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.001,
      "epss_percentile": 0.0091,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Heap-based buffer overflow in KnoxVault trustlet prior to SMR Sep-2026 Release 1 allows local privileged attackers to execute arbitrary code.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21104"
    },
    {
      "rank": 366,
      "cve_id": "CVE-2026-80124",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.001,
      "epss_percentile": 0.00954,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-532",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to information exposure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80124"
    },
    {
      "rank": 367,
      "cve_id": "CVE-2026-82184",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.001,
      "epss_percentile": 0.0093,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Unknown",
      "product": "WPLP Cookie Consent",
      "cwe": "CWE-862",
      "title": "WPLP Cookie Consent < 4.4.2 - Unauthenticated IAB TCF Consent Option Update",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-82184"
    },
    {
      "rank": 368,
      "cve_id": "CVE-2026-21112",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.001,
      "epss_percentile": 0.00912,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Tips",
      "cwe": null,
      "title": "Improper input validation in Samsung Tips prior to Android 17 allows local attackers to launch arbitrary activity with Samsung Tips privilege. User interaction is required for triggering this vulnerability.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21112"
    },
    {
      "rank": 369,
      "cve_id": "CVE-2026-21107",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00099,
      "epss_percentile": 0.00887,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Notes",
      "cwe": "CWE-787",
      "title": "Out-of-bounds write in Samsung Notes prior to version 4.4.45.5 allows local attackers to write out-of-bounds memory.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21107"
    },
    {
      "rank": 370,
      "cve_id": "CVE-2026-21111",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00099,
      "epss_percentile": 0.00888,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "libsthmbc",
      "cwe": null,
      "title": "Out-of-bounds write in libsthmbc.so prior to One UI 8.5 allows local attackers to write out-of-bounds memory.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21111"
    },
    {
      "rank": 371,
      "cve_id": "CVE-2026-21090",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00099,
      "epss_percentile": 0.00886,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Out-of-bounds write in libsaviextractor.so prior to SMR Sep-2026 Release 1 allows local attackers to write out-of-bounds memory.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21090"
    },
    {
      "rank": 372,
      "cve_id": "CVE-2026-21091",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00099,
      "epss_percentile": 0.00887,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Out-of-bounds write in libcodec2secevrcdec.so prior to SMR Sep-2026 Release 1 allows local attackers to write out-of-bounds memory.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21091"
    },
    {
      "rank": 373,
      "cve_id": "CVE-2026-87457",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00097,
      "epss_percentile": 0.00824,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-367",
      "title": "Race condition in Updater in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Medium)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87457"
    },
    {
      "rank": 374,
      "cve_id": "CVE-2026-87467",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.00097,
      "epss_percentile": 0.00825,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "Chrome",
      "cwe": "CWE-362",
      "title": "Race condition in Updater in Google Chrome on on Windows prior to 153.0.8010.36 allowed a local attacker to potentially execute arbitrary code outside the sandbox via a local program. (Chromium security severity: High)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87467"
    },
    {
      "rank": 375,
      "cve_id": "CVE-2026-12858",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": 0.00096,
      "epss_percentile": 0.00743,
      "kev": false,
      "kev_due_at": null,
      "vendor": "ESET spol. s.r.o.",
      "product": "ESET AV Remover (standalone)",
      "cwe": "CWE-269",
      "title": "Local privilege escalation vulnerability in ESET AV Remover",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-12858"
    },
    {
      "rank": 376,
      "cve_id": "CVE-2026-80175",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": 0.00095,
      "epss_percentile": 0.00718,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-538",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insertion of Sensitive Information into Externally-Accessible File or Directory vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to information exposure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80175"
    },
    {
      "rank": 377,
      "cve_id": "CVE-2026-49311",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00093,
      "epss_percentile": 0.00611,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Huawei",
      "product": "HarmonyOS",
      "cwe": "CWE-275",
      "title": "Permission control vulnerability in the event notification module.Impact: Successful exploitation of this vulnerability may affect availability.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49311"
    },
    {
      "rank": 378,
      "cve_id": "CVE-2026-21093",
      "cvss_base": 5.6,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00092,
      "epss_percentile": 0.00559,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Samsung Mobile Devices",
      "cwe": null,
      "title": "Stack-based buffer overflow in PROCA trustlet prior to SMR Sep-2026 Release 1 allows local privileged attackers to write out-of-bounds memory.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21093"
    },
    {
      "rank": 379,
      "cve_id": "CVE-2026-21113",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00091,
      "epss_percentile": 0.00526,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Samsung Mobile",
      "product": "Visual Voicemail",
      "cwe": null,
      "title": "Improper export of android application components in Visual Voicemail prior to version 20.1.00.05 allows local attackers to initiate call without proper permission.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-21113"
    },
    {
      "rank": 380,
      "cve_id": "CVE-2026-81646",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00088,
      "epss_percentile": 0.00424,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Huawei",
      "product": "HarmonyOS",
      "cwe": "CWE-125",
      "title": "Out-of-bounds read vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-81646"
    },
    {
      "rank": 381,
      "cve_id": "CVE-2026-49314",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": 0.00084,
      "epss_percentile": 0.00279,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Huawei",
      "product": "HarmonyOS",
      "cwe": "CWE-125",
      "title": "OOB write vulnerability in the rendering and composition module. Impact: Successful exploitation of this vulnerability may affect availability.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49314"
    },
    {
      "rank": 382,
      "cve_id": "CVE-2026-49309",
      "cvss_base": 4.8,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00084,
      "epss_percentile": 0.00279,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Huawei",
      "product": "HarmonyOS",
      "cwe": "CWE-264",
      "title": "Permission control vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49309"
    },
    {
      "rank": 383,
      "cve_id": "CVE-2026-49315",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": 0.0008,
      "epss_percentile": 0.0018,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Huawei",
      "product": "HarmonyOS",
      "cwe": "CWE-264",
      "title": "DoS vulnerability in the input device module. Impact: Successful exploitation of this vulnerability may affect availability.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49315"
    },
    {
      "rank": 384,
      "cve_id": "CVE-2026-41987",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.0008,
      "epss_percentile": 0.0018,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Huawei",
      "product": "HarmonyOS",
      "cwe": "CWE-264",
      "title": "Permission control vulnerability in the app management module. Impact: Successful exploitation of this vulnerability may affect availability.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-41987"
    },
    {
      "rank": 385,
      "cve_id": "CVE-2026-87732",
      "cvss_base": 6.2,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00077,
      "epss_percentile": 0.00109,
      "kev": false,
      "kev_due_at": null,
      "vendor": "OCaml",
      "product": "mirage-crypto",
      "cwe": "CWE-347",
      "title": "An issue was discovered in the mirage-crypto package before 2.2.0 for OCaml. The AES.GCM.authenticate_decrypt_into and Chacha20.authenticate_decrypt_into functions write the decrypted plaintext into a caller-provided buffer and only then compares the tag. On a forged tag, the functions returns false, but the destination buffer already holds the full plaintext.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87732"
    },
    {
      "rank": 386,
      "cve_id": "CVE-2026-49313",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00076,
      "epss_percentile": 0.00106,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Huawei",
      "product": "HarmonyOS",
      "cwe": "CWE-264",
      "title": "Permission control vulnerability in the app lock module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49313"
    },
    {
      "rank": 387,
      "cve_id": "CVE-2026-49312",
      "cvss_base": 4,
      "cvss_severity": "MEDIUM",
      "epss_score": 0.00076,
      "epss_percentile": 0.00101,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Huawei",
      "product": "HarmonyOS",
      "cwe": "CWE-264",
      "title": "Permission control vulnerability in the window module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-49312"
    },
    {
      "rank": 388,
      "cve_id": "CVE-2026-85978",
      "cvss_base": 10,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Perforce",
      "product": "Akana",
      "cwe": "CWE-41",
      "title": "Unauthenticated Remote Code Execution in Akana API Platform",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-85978"
    },
    {
      "rank": 389,
      "cve_id": "CVE-2026-87827",
      "cvss_base": 10,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "KGUARD",
      "product": "KGUARD_firmware",
      "cwe": "CWE-1188",
      "title": "KGUARD DVR unauthenticated remote command execution vulnerability",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87827"
    },
    {
      "rank": 390,
      "cve_id": "CVE-2026-67401",
      "cvss_base": 9.9,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "WebPros",
      "product": "cPanel",
      "cwe": "CWE-89",
      "title": "A vulnerability in cPanel allows a mail-enabled account to achieve remote code execution as root through SQLi in EmailTrack component",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-67401"
    },
    {
      "rank": 391,
      "cve_id": "CVE-2026-79689",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-78",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to script injection.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79689"
    },
    {
      "rank": 392,
      "cve_id": "CVE-2026-79941",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-77",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to script injection.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79941"
    },
    {
      "rank": 393,
      "cve_id": "CVE-2026-80172",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-345",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insufficient Verification of Data Authenticity vulnerability. An unauthenticated attacker with remote access could exploit this, leading to unauthorized access. This vulnerability is considered critical as an unauthenticated attacker can repeatedly reuse a captured request to generate ADMIN access and refresh tokens. Since there is no nonce validation or time limit on requests, the attack can be performed indefinitely. Dell recommends customers to upgrade at the earliest opportunity",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80172"
    },
    {
      "rank": 394,
      "cve_id": "CVE-2026-85102",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "checkpoint",
      "product": "Quantum Security Gateway",
      "cwe": "CWE-295",
      "title": "Improper Certificate Validation in Quantum Security Gateway",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-85102"
    },
    {
      "rank": 395,
      "cve_id": "CVE-2026-85103",
      "cvss_base": 9.8,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "checkpoint",
      "product": "Quantum Security Gateway",
      "cwe": "CWE-122",
      "title": "Heap-based Buffer Overflow in VPN Certificate ASN.1 Decoding",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-85103"
    },
    {
      "rank": 396,
      "cve_id": "CVE-2026-54694",
      "cvss_base": 9.6,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "NationalSecurityAgency",
      "product": "skills-service",
      "cwe": "CWE-20",
      "title": "NationalSecurityAgency/skills-service has Stored XSS via User Registration Enabling Admin Account Takeover",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54694"
    },
    {
      "rank": 397,
      "cve_id": "CVE-2026-87931",
      "cvss_base": 9.4,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Behavioral Technology Group",
      "product": "Pavlok Behavioral Conditioning Wearable",
      "cwe": "CWE-120",
      "title": "Behavioral Technology Group Pavlok Behavioral Conditioning Wearable Apple Notification Center Service Event buffer overflow",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87931"
    },
    {
      "rank": 398,
      "cve_id": "CVE-2026-47156",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "mantisbt",
      "product": "mantisbt",
      "cwe": "CWE-287",
      "title": "MantisBT: SOAP API Authentication Bypass with Privilege Escalation to Administrator",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-47156"
    },
    {
      "rank": 399,
      "cve_id": "CVE-2026-87929",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MaxSite",
      "product": "MaxSite CMS",
      "cwe": "CWE-321",
      "title": "MaxSite CMS through 109.6 Authentication Bypass via Hardcoded Encryption Key",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87929"
    },
    {
      "rank": 400,
      "cve_id": "CVE-2026-88069",
      "cvss_base": 9.3,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pandora-analysis",
      "product": "pandora",
      "cwe": "CWE-22",
      "title": "Path traversal in Pandora archive extractor allows arbitrary file writes outside the extraction directory in pandora analysis",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-88069"
    },
    {
      "rank": 401,
      "cve_id": "CVE-2026-87930",
      "cvss_base": 9.2,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MaxSite",
      "product": "MaxSite CMS",
      "cwe": "CWE-502",
      "title": "MaxSite CMS through 109.6 PHP Object Injection via ci_session",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87930"
    },
    {
      "rank": 402,
      "cve_id": "CVE-2026-22590",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "eProsima",
      "product": "Fast-DDS",
      "cwe": "CWE-125",
      "title": "Fast-DDS Discovery Server: Out-of-Bounds Read & Heap Memory Disclosure via DATA_FRAG sampleSize / fragmentsInSubmessage",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22590"
    },
    {
      "rank": 403,
      "cve_id": "CVE-2026-87806",
      "cvss_base": 9.1,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "parse-community",
      "product": "parse-server",
      "cwe": "CWE-287",
      "title": "Parse Server 9.0.0 Authentication Bypass via LDAP Empty Password",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87806"
    },
    {
      "rank": 404,
      "cve_id": "CVE-2026-67403",
      "cvss_base": 9,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sage",
      "product": "Sage AR Automation",
      "cwe": "CWE-639",
      "title": "Cash Collect contains an improper authorization vulnerability in the Sage AR Automation API. Insufficient tenant-level authorization checks allow authenticated users to access administrative resources belonging to other tenants by specifying a valid non predictable tenant identifier.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-67403"
    },
    {
      "rank": 405,
      "cve_id": "CVE-2026-68484",
      "cvss_base": 9,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Sage",
      "product": "Sage AR Automation",
      "cwe": "CWE-862",
      "title": "Cash Collect contains an improper authorization vulnerability in the Sage AR Automation API. Administrative functions do not properly verify user privileges, allowing authenticated low-privileged users to create administrator accounts and obtain elevated privileges.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-68484"
    },
    {
      "rank": 406,
      "cve_id": "CVE-2026-87911",
      "cvss_base": 9,
      "cvss_severity": "CRITICAL",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AWS",
      "product": "AWS Labs postgres MCP Server",
      "cwe": "CWE-78",
      "title": "Read-only enforcement bypass enabling operating system command execution in the SQL validation component of Amazon awslabs postgres-mcp-server",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87911"
    },
    {
      "rank": 407,
      "cve_id": "CVE-2026-80914",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Linux",
      "product": "Linux",
      "cwe": null,
      "title": "Bluetooth: ISO: fix use-after-free of listener socket in iso_conn_ready",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80914"
    },
    {
      "rank": 408,
      "cve_id": "CVE-2026-80921",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Linux",
      "product": "Linux",
      "cwe": null,
      "title": "KVM: s390: vsie: zero stale crypto bits",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80921"
    },
    {
      "rank": 409,
      "cve_id": "CVE-2026-86099",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Chainlit",
      "product": "chainlit",
      "cwe": "CWE-22",
      "title": "Chainlit through 2.12.0 Path Traversal via socket.io sessionId",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86099"
    },
    {
      "rank": 410,
      "cve_id": "CVE-2026-86775",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "knowns-dev",
      "product": "knowns",
      "cwe": "CWE-22",
      "title": "knowns before 0.30.0 Path Traversal via Document API",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86775"
    },
    {
      "rank": 411,
      "cve_id": "CVE-2026-87795",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "luben",
      "product": "zstd-jni",
      "cwe": "CWE-125",
      "title": "zstd-jni 1.2.0 through 1.5.7-13 Out-of-Bounds Read via ZstdDictCompress",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87795"
    },
    {
      "rank": 412,
      "cve_id": "CVE-2026-87823",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "luben",
      "product": "zstd-jni",
      "cwe": "CWE-190",
      "title": "zstd-jni 1.1.1 through 1.5.7-13 Out-of-Bounds Read via Direct ByteBuffer Frame-Size Methods",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87823"
    },
    {
      "rank": 413,
      "cve_id": "CVE-2026-87927",
      "cvss_base": 8.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MaxSite",
      "product": "MaxSite CMS",
      "cwe": "CWE-98",
      "title": "MaxSite CMS through 109.6 Local File Inclusion via ajax dispatcher",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87927"
    },
    {
      "rank": 414,
      "cve_id": "CVE-2023-54355",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-347",
      "title": "PocketMine-MP 5.2.0 Server Crash via Incorrect EC Curve",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-54355"
    },
    {
      "rank": 415,
      "cve_id": "CVE-2023-54390",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-1025",
      "title": "PocketMine-MP before 5.3.1 Denial of Service via LoginPacket",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-54390"
    },
    {
      "rank": 416,
      "cve_id": "CVE-2023-54393",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-20",
      "title": "PocketMine-MP before 4.20.5 Denial of Service via LoginPacket",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-54393"
    },
    {
      "rank": 417,
      "cve_id": "CVE-2024-58381",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-502",
      "title": "PocketMine-MP before 5.11.1 Denial of Service via LoginPacket",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-58381"
    },
    {
      "rank": 418,
      "cve_id": "CVE-2024-58382",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "thephpleague",
      "product": "commonmark",
      "cwe": "CWE-407",
      "title": "league/commonmark before 2.6.0 Denial of Service via Quadratic Complexity",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-58382"
    },
    {
      "rank": 419,
      "cve_id": "CVE-2026-77120",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Schneider Electric",
      "product": "PowerLogic T300",
      "cwe": "CWE-78",
      "title": "CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause privilege escalation to root and unauthorized execution of administrative functions when an authenticated user with SSH enabled interacts with the operating system console that improperly processes user-controlled input.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77120"
    },
    {
      "rank": 420,
      "cve_id": "CVE-2026-81640",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Softish",
      "product": "EarVision Android application",
      "cwe": "CWE-798",
      "title": "Softish C6 Ear Camera and EarVision Android Application Use of Hard-coded Credentials",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-81640"
    },
    {
      "rank": 421,
      "cve_id": "CVE-2026-86199",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-184",
      "title": "PocketMine-MP before 5.43.1 Denial of Service via unauthenticated login",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86199"
    },
    {
      "rank": 422,
      "cve_id": "CVE-2026-86201",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-400",
      "title": "PocketMine-MP before 5.41.1 LogDoS via LoginPacket clientData",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86201"
    },
    {
      "rank": 423,
      "cve_id": "CVE-2026-87807",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "siyuan-note",
      "product": "siyuan",
      "cwe": "CWE-89",
      "title": "siyuan before v3.8.2 SQL Injection via fullTextSearchBlock",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87807"
    },
    {
      "rank": 424,
      "cve_id": "CVE-2026-87808",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "siyuan-note",
      "product": "siyuan",
      "cwe": "CWE-693",
      "title": "SiYuan before v3.8.2 Read-Only Boundary Bypass via fullTextSearchBlock",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87808"
    },
    {
      "rank": 425,
      "cve_id": "CVE-2026-87816",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pglombardo",
      "product": "PasswordPusher",
      "cwe": "CWE-362",
      "title": "PasswordPusher before 2.11.1 Race Condition View Limit Bypass",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87816"
    },
    {
      "rank": 426,
      "cve_id": "CVE-2026-87817",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "gitpython-developers",
      "product": "GitPython",
      "cwe": "CWE-94",
      "title": "GitPython before 3.1.60 Remote Code Execution via Git Directory Impersonation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87817"
    },
    {
      "rank": 427,
      "cve_id": "CVE-2026-87819",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "gitpython-developers",
      "product": "GitPython",
      "cwe": "CWE-1333",
      "title": "GitPython before 3.1.60 Denial of Service via ReDoS",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87819"
    },
    {
      "rank": 428,
      "cve_id": "CVE-2026-87822",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "tdunning",
      "product": "t-digest",
      "cwe": "CWE-407",
      "title": "t-digest 3.1 through 3.3 Denial of Service via NaN Centroid Means in MergingDigest.fromBytes",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87822"
    },
    {
      "rank": 429,
      "cve_id": "CVE-2026-87824",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "luben",
      "product": "zstd-jni",
      "cwe": "CWE-125",
      "title": "zstd-jni 1.3.3-1 through 1.5.7-13 Out-of-Bounds Read via Zstd.trainFromBufferDirect",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87824"
    },
    {
      "rank": 430,
      "cve_id": "CVE-2026-87995",
      "cvss_base": 8.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-79",
      "title": "Open WebUI: Same-origin XSS to account takeover via terminal port-preview iframe hardcoding allow-same-origin",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87995"
    },
    {
      "rank": 431,
      "cve_id": "CVE-2026-8044",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Schneider Electric",
      "product": "EcoStruxure™ IT Data Center Expert (Formerly known as StruxureWare Data Center Expert)",
      "cwe": "CWE-88",
      "title": "CWE-88: Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability exists that could cause remote code execution by an attacker with a privileged account when malicious arguments are provided as backup configuration parameters.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-8044"
    },
    {
      "rank": 432,
      "cve_id": "CVE-2026-19233",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Schneider Electric",
      "product": "EcoStruxure™ IT Data Center Expert (Formerly known as StruxureWare Data Center Expert)",
      "cwe": "CWE-918",
      "title": "CWE-918: Server-Side Request Forgery (SSRF) vulnerability exists that could cause unauthorized command execution and disclosure of server data when an attacker with a privileged account sends crafted, unvalidated parameters to a server endpoint.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-19233"
    },
    {
      "rank": 433,
      "cve_id": "CVE-2026-26212",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rara Themes",
      "product": "Rara One Click Demo Import",
      "cwe": "CWE-434",
      "title": "Rara One Click Demo Import < 1.3.5 Arbitrary File Upload RCE",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-26212"
    },
    {
      "rank": 434,
      "cve_id": "CVE-2026-56711",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "VideoLAN",
      "product": "VLC media player",
      "cwe": "CWE-190",
      "title": "VLC media player 3.0.0 through 3.0.23 Heap Out-of-Bounds Write via Integer Overflow in Picture Allocation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56711"
    },
    {
      "rank": 435,
      "cve_id": "CVE-2026-79322",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-89",
      "title": "SQL injection in the RelatedProduct block in Mageplaza Blog for Magento 2 (mageplaza/magento-2-blog-extension) through 4.3.2 allows remote unauthenticated attackers to execute arbitrary SQL commands and read arbitrary database contents via the id parameter to /mpblog/post/view.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79322"
    },
    {
      "rank": 436,
      "cve_id": "CVE-2026-86762",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-862",
      "title": "Snipe-IT before 8.7.0 Authentication Bypass via API Middleware",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86762"
    },
    {
      "rank": 437,
      "cve_id": "CVE-2026-86770",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-178",
      "title": "Snipe-IT before 8.7.0 Authentication Bypass via SAML Username Collation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86770"
    },
    {
      "rank": 438,
      "cve_id": "CVE-2026-87794",
      "cvss_base": 8.6,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "nfriedly",
      "product": "bestzip",
      "cwe": "CWE-88",
      "title": "bestzip 2.2.6 and 3.0.2 Argument Injection via the Native Zip Destination",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87794"
    },
    {
      "rank": 439,
      "cve_id": "CVE-2026-77974",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Softish",
      "product": "EarVision Android application",
      "cwe": "CWE-306",
      "title": "Softish C6 Ear Camera and EarVision Android Application Missing authentication for critical function",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-77974"
    },
    {
      "rank": 440,
      "cve_id": "CVE-2026-86754",
      "cvss_base": 8.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-863",
      "title": "Snipe-IT before 8.7.0 Authorization Bypass via OAuth Clients",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86754"
    },
    {
      "rank": 441,
      "cve_id": "CVE-2026-82563",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Softish",
      "product": "EarVision Android application",
      "cwe": "CWE-290",
      "title": "Softish C6 Ear Camera and EarVision Android Application Authentication bypass by spoofing",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-82563"
    },
    {
      "rank": 442,
      "cve_id": "CVE-2026-86741",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-73",
      "title": "Snipe-IT before 8.7.0 Arbitrary File Read and SSRF via Category EULA",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86741"
    },
    {
      "rank": 443,
      "cve_id": "CVE-2026-86751",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-73",
      "title": "Snipe-IT before 8.7.0 Arbitrary File Read and SSRF via Markdown",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86751"
    },
    {
      "rank": 444,
      "cve_id": "CVE-2026-87811",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "siyuan-note",
      "product": "siyuan",
      "cwe": "CWE-79",
      "title": "SiYuan before v3.8.2 Stored XSS via notebook template paths",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87811"
    },
    {
      "rank": 445,
      "cve_id": "CVE-2026-87813",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "siyuan-note",
      "product": "siyuan",
      "cwe": "CWE-79",
      "title": "SiYuan before v3.8.2 Stored XSS via unescaped asset filenames",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87813"
    },
    {
      "rank": 446,
      "cve_id": "CVE-2026-87814",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "siyuan-note",
      "product": "siyuan",
      "cwe": "CWE-79",
      "title": "SiYuan before v3.8.2 Stored XSS via Asset Preview",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87814"
    },
    {
      "rank": 447,
      "cve_id": "CVE-2026-87815",
      "cvss_base": 8.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "siyuan-note",
      "product": "siyuan",
      "cwe": "CWE-73",
      "title": "SiYuan before v3.8.2 Path Traversal via removeRiffDeck",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87815"
    },
    {
      "rank": 448,
      "cve_id": "CVE-2026-86750",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-863",
      "title": "snipe-it before 8.7.0 Authorization Bypass via API User Create/Update",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86750"
    },
    {
      "rank": 449,
      "cve_id": "CVE-2026-86771",
      "cvss_base": 8.3,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-918",
      "title": "Snipe-IT before 8.7.0 Server-Side Request Forgery via employee_num",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86771"
    },
    {
      "rank": 450,
      "cve_id": "CVE-2026-18147",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-79",
      "title": "Freeipa: ipa: freeipa/idm: cross-site scripting vulnerability allows arbitrary code execution via crafted url",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-18147"
    },
    {
      "rank": 451,
      "cve_id": "CVE-2026-65181",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Impala",
      "cwe": "CWE-913",
      "title": "Apache Impala: RCE via External Data Source Class Loading",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-65181"
    },
    {
      "rank": 452,
      "cve_id": "CVE-2026-87016",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-155",
      "title": "Open WebUI: Sign-in as another user via wildcard characters in the OAuth subject claim on SQLite",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87016"
    },
    {
      "rank": 453,
      "cve_id": "CVE-2026-87874",
      "cvss_base": 8.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Ceph Storage 5",
      "cwe": "CWE-502",
      "title": "Community.general: community.general: memcached cache plugin deserializes untrusted pickle data from memcached, enabling cache-poisoning remote code execution on the ansible controller",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87874"
    },
    {
      "rank": 454,
      "cve_id": "CVE-2026-78482",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-89",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to command execution.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78482"
    },
    {
      "rank": 455,
      "cve_id": "CVE-2026-78484",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-77",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to command execution.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78484"
    },
    {
      "rank": 456,
      "cve_id": "CVE-2026-78493",
      "cvss_base": 7.8,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-77",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to command execution.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78493"
    },
    {
      "rank": 457,
      "cve_id": "CVE-2026-15140",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Everpure",
      "product": "Portworx Operator",
      "cwe": "CWE-266",
      "title": "A privilege-escalation issue in the Portworx Operator when deployed on Red Hat OpenShift (OCP). Only under specific conditions during the initial provisioning of a Portworx storage cluster, a user holding only limited, namespace-scoped permissions could cause the operator to grant broader access than intended, potentially resulting in elevated privileges within the Kubernetes cluster.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15140"
    },
    {
      "rank": 458,
      "cve_id": "CVE-2026-15913",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Fortra",
      "product": "GoAnywhere MFT",
      "cwe": "CWE-23",
      "title": "Path Traversal in Fortra's GoAnywhere MFT Endpoint",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15913"
    },
    {
      "rank": 459,
      "cve_id": "CVE-2026-79637",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-295",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79637"
    },
    {
      "rank": 460,
      "cve_id": "CVE-2026-87996",
      "cvss_base": 7.7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-367",
      "title": "Open WebUI: SSRF into internal services via DNS rebinding in the Playwright web loader",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87996"
    },
    {
      "rank": 461,
      "cve_id": "CVE-2026-22591",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "eProsima",
      "product": "Fast-DDS",
      "cwe": "CWE-400",
      "title": "Fast DDS DDSSQLFilter Recursive Parser Stack Exhaustion (Remote DoS)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-22591"
    },
    {
      "rank": 462,
      "cve_id": "CVE-2026-73786",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Hewlett Packard Enterprise (HPE)",
      "product": "ClearPass Policy Manager (CPPM)",
      "cwe": null,
      "title": "Unauthenticated Network-Based Denial of Service in CPPM systems",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-73786"
    },
    {
      "rank": 463,
      "cve_id": "CVE-2026-78490",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-307",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Restriction of Excessive Authentication Attempts vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to client-side request forgery.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78490"
    },
    {
      "rank": 464,
      "cve_id": "CVE-2026-79323",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-200",
      "title": "Information disclosure in the blogComments GraphQL query in Magefan Blog GraphQL for Magento 2 (magefan/module-blog-graph-ql) through 2.2.1 allows remote unauthenticated attackers to obtain blog commenter email addresses and internal customer and admin identifiers via a POST request to /graphql.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79323"
    },
    {
      "rank": 465,
      "cve_id": "CVE-2026-79324",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-639",
      "title": "Missing authorization in the Address Delete controller in Mageplaza GDPR for Magento 2 (mageplaza/module-gdpr) through 4.2.9 allows remote unauthenticated attackers to delete any customer's saved address, and to erase all stored addresses by iterating the address id, via a GET request to /customer/address/delete/id/{id}. The controller extends the legacy Action class instead of AbstractAccount, so no authentication, ownership or form key check is enforced.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79324"
    },
    {
      "rank": 466,
      "cve_id": "CVE-2026-79641",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-78",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to elevation of privileges.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79641"
    },
    {
      "rank": 467,
      "cve_id": "CVE-2026-79738",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-798",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Use of Hard-coded Credentials vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to information exposure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79738"
    },
    {
      "rank": 468,
      "cve_id": "CVE-2026-79740",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-798",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Use of Hard-coded Credentials vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to information exposure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79740"
    },
    {
      "rank": 469,
      "cve_id": "CVE-2026-79950",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-798",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Use of Hard-coded Credentials vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to information exposure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79950"
    },
    {
      "rank": 470,
      "cve_id": "CVE-2026-80924",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Linux",
      "product": "Linux",
      "cwe": null,
      "title": "crypto: krb5 - use kfree_sensitive() for derived key buffers",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80924"
    },
    {
      "rank": 471,
      "cve_id": "CVE-2026-87011",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-405",
      "title": "Open WebUI: Unauthenticated requests can stall the server via uncached OIDC fetches in back-channel logout",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87011"
    },
    {
      "rank": 472,
      "cve_id": "CVE-2026-87853",
      "cvss_base": 7.5,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-187",
      "title": "Sssd: sssd: idp authentication prefix comparison allows cross-user impersonation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87853"
    },
    {
      "rank": 473,
      "cve_id": "CVE-2026-78492",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-295",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78492"
    },
    {
      "rank": 474,
      "cve_id": "CVE-2026-79963",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-494",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Download of Code Without Integrity Check vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to command execution.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79963"
    },
    {
      "rank": 475,
      "cve_id": "CVE-2026-86746",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-269",
      "title": "Snipe-IT before 8.7.0 Authorization Bypass via Livewire Snapshot Replay",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86746"
    },
    {
      "rank": 476,
      "cve_id": "CVE-2026-87812",
      "cvss_base": 7.4,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "siyuan-note",
      "product": "siyuan",
      "cwe": "CWE-79",
      "title": "SiYuan before v3.8.2 Stored XSS via Bazaar iconURL",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87812"
    },
    {
      "rank": 477,
      "cve_id": "CVE-2026-78485",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-22",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78485"
    },
    {
      "rank": 478,
      "cve_id": "CVE-2026-79635",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-918",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Server-Side Request Forgery (SSRF) vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79635"
    },
    {
      "rank": 479,
      "cve_id": "CVE-2026-79692",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-73",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an External Control of File Name or Path vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to filesystem access for attacker.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79692"
    },
    {
      "rank": 480,
      "cve_id": "CVE-2026-79695",
      "cvss_base": 7.3,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-409",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Handling of Highly Compressed Data (Data Amplification) vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79695"
    },
    {
      "rank": 481,
      "cve_id": "CVE-2026-23855",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "iDRAC9",
      "cwe": "CWE-78",
      "title": "Dell iDRAC9, 14G versions prior to 7.00.00.184, 15G/16G versions prior to 7.30.10.50, and Dell iDRAC10, 17G versions prior to 1.30.30.50, contain an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to command injection.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-23855"
    },
    {
      "rank": 482,
      "cve_id": "CVE-2026-73769",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Hewlett Packard Enterprise (HPE)",
      "product": "ClearPass Policy Manager (CPPM)",
      "cwe": null,
      "title": "Authenticated Remote Code Execution in CPPM Web Interface",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-73769"
    },
    {
      "rank": 483,
      "cve_id": "CVE-2026-73787",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Hewlett Packard Enterprise (HPE)",
      "product": "ClearPass Policy Manager (CPPM)",
      "cwe": null,
      "title": "Authenticated Arbitrary File Write allows Remote Code Execution via CPPM Web Interface",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-73787"
    },
    {
      "rank": 484,
      "cve_id": "CVE-2026-79972",
      "cvss_base": 7.2,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-89",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79972"
    },
    {
      "rank": 485,
      "cve_id": "CVE-2023-54392",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-20",
      "title": "PocketMine-MP before 4.22.3 Denial of Service via BlockActorDataPacket",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-54392"
    },
    {
      "rank": 486,
      "cve_id": "CVE-2023-54396",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-129",
      "title": "PocketMine-MP before 4.8.1 Server Crash via Banner NBT",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-54396"
    },
    {
      "rank": 487,
      "cve_id": "CVE-2024-58380",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-20",
      "title": "PocketMine-MP before 5.11.2 Denial of Service via BookEditPacket",
      "url": "https://www.cve.org/CVERecord?id=CVE-2024-58380"
    },
    {
      "rank": 488,
      "cve_id": "CVE-2025-71417",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-20",
      "title": "PocketMine-MP before 5.32.1 Denial of Service via ResourcePackClientResponsePacket",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-71417"
    },
    {
      "rank": 489,
      "cve_id": "CVE-2026-50165",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "alfio-event",
      "product": "alf.io",
      "cwe": "CWE-284",
      "title": "alf.io has Improper Access Control for Organization Owners that Exposes System Secrets",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-50165"
    },
    {
      "rank": 490,
      "cve_id": "CVE-2026-79617",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "TÜBİTAK BİLGEM Software Technologies Research Institute",
      "product": "Pardus LightDM Greeter",
      "cwe": "CWE-732",
      "title": "Improper Access Control Leading to Display Exposure in TÜBİTAK BİLGEM's Pardus LightDM Greeter",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79617"
    },
    {
      "rank": 491,
      "cve_id": "CVE-2026-81330",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Softish",
      "product": "EarVision Android application",
      "cwe": "CWE-319",
      "title": "Softish C6 Ear Camera and EarVision Android Application Cleartext transmission of sensitive information",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-81330"
    },
    {
      "rank": 492,
      "cve_id": "CVE-2026-86204",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-400",
      "title": "PocketMine-MP before 5.39.2 Denial of Service via ModalFormResponsePacket",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86204"
    },
    {
      "rank": 493,
      "cve_id": "CVE-2026-86757",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-862",
      "title": "Snipe-IT before 8.7.0 Information Disclosure via Custom Fields",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86757"
    },
    {
      "rank": 494,
      "cve_id": "CVE-2026-86758",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-204",
      "title": "Snipe-IT before 8.7.0 License Key Exposure via CSV Export",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86758"
    },
    {
      "rank": 495,
      "cve_id": "CVE-2026-86759",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-862",
      "title": "Snipe-IT before 8.7.0 Missing Authorization via asset-history CSV importer",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86759"
    },
    {
      "rank": 496,
      "cve_id": "CVE-2026-86764",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-862",
      "title": "Snipe-IT 8.6.4 before 8.7.0 Permission Bypass via assigned components",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86764"
    },
    {
      "rank": 497,
      "cve_id": "CVE-2026-86765",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-862",
      "title": "Snipe-IT 8.6.3 Authorization Bypass via Asset Update Endpoint",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86765"
    },
    {
      "rank": 498,
      "cve_id": "CVE-2026-86766",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-362",
      "title": "Snipe-IT 8.6.3 Race Condition via Consumable Checkout",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86766"
    },
    {
      "rank": 499,
      "cve_id": "CVE-2026-87809",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "siyuan-note",
      "product": "siyuan",
      "cwe": "CWE-639",
      "title": "Siyuan before v3.8.2 Information Disclosure via Export Preview",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87809"
    },
    {
      "rank": 500,
      "cve_id": "CVE-2026-87818",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "gitpython-developers",
      "product": "GitPython",
      "cwe": "CWE-88",
      "title": "GitPython 3.1.59 Local File Content Oracle via --no-index",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87818"
    },
    {
      "rank": 501,
      "cve_id": "CVE-2026-87821",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "laradashboard",
      "product": "laradashboard",
      "cwe": "CWE-918",
      "title": "Lara Dashboard 0.9.2 through 1.3.1 Server-Side Request Forgery in Builder Markdown Fetch",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87821"
    },
    {
      "rank": 502,
      "cve_id": "CVE-2026-87998",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-269",
      "title": "Open WebUI: Non-admin users can delete admin-owned external knowledge connections via knowledge base deletion",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87998"
    },
    {
      "rank": 503,
      "cve_id": "CVE-2026-87999",
      "cvss_base": 7.1,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-918",
      "title": "Open WebUI: Any authenticated user can reach the Azure platform channel via server-side web fetch",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87999"
    },
    {
      "rank": 504,
      "cve_id": "CVE-2026-86749",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-252",
      "title": "snipe-it before 8.7.0 Data Loss via Failed Image Write",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86749"
    },
    {
      "rank": 505,
      "cve_id": "CVE-2026-87825",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "luben",
      "product": "zstd-jni",
      "cwe": "CWE-416",
      "title": "zstd-jni 1.3.8-4 through 1.5.7-13 Use-After-Free of Compression and Decompression Dictionaries",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87825"
    },
    {
      "rank": 506,
      "cve_id": "CVE-2026-87877",
      "cvss_base": 7,
      "cvss_severity": "HIGH",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "luben",
      "product": "zstd-jni",
      "cwe": "CWE-416",
      "title": "zstd-jni 1.3.8-4 through 1.5.7-13 Use-After-Free via Setters Called After close()",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87877"
    },
    {
      "rank": 507,
      "cve_id": "CVE-2025-71418",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-400",
      "title": "PocketMine-MP before 5.25.2 Denial of Service via explode",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-71418"
    },
    {
      "rank": 508,
      "cve_id": "CVE-2026-73324",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "VideoLAN",
      "product": "VLC media player",
      "cwe": "CWE-125",
      "title": "VLC media player 3.0.0 through 3.0.23 Heap Out-of-Bounds Read via Unterminated RealRTSP Response Line",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-73324"
    },
    {
      "rank": 509,
      "cve_id": "CVE-2026-82530",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "IP2Location",
      "product": "IP2Location Country Blocker",
      "cwe": "CWE-290",
      "title": "IP2Location Country Blocker < 2.45.0 Access Control Bypass via X-Real-IP Header",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-82530"
    },
    {
      "rank": 510,
      "cve_id": "CVE-2026-83530",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Google",
      "product": "cel-go",
      "cwe": "CWE-789",
      "title": "Uncontrolled Memory Allocation in cel-go",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-83530"
    },
    {
      "rank": 511,
      "cve_id": "CVE-2026-86200",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-779",
      "title": "PocketMine-MP before 5.42.1 LogDoS via LoginPacket clientData JWT",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86200"
    },
    {
      "rank": 512,
      "cve_id": "CVE-2026-86547",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "mrubyc",
      "product": "mrubyc",
      "cwe": "CWE-476",
      "title": "mrubyc through 4.0.0 NULL Pointer Dereference via OP_ENTER",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86547"
    },
    {
      "rank": 513,
      "cve_id": "CVE-2026-86748",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-460",
      "title": "Snipe-IT before 8.7.0 Database Wipe via Invalid Backup Archive",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86748"
    },
    {
      "rank": 514,
      "cve_id": "CVE-2026-86777",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AlchemyCMS",
      "product": "alchemy_cms",
      "cwe": "CWE-862",
      "title": "AlchemyCMS before 7.4.16 and 8.x before 8.3.6 Missing Authorization on GET /api/nodes",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86777"
    },
    {
      "rank": 515,
      "cve_id": "CVE-2026-87810",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "siyuan-note",
      "product": "siyuan",
      "cwe": "CWE-200",
      "title": "Siyuan before v3.8.2 Information Disclosure via fullTextSearchBlock",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87810"
    },
    {
      "rank": 516,
      "cve_id": "CVE-2026-87820",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "usmannasir",
      "product": "cyberpanel",
      "cwe": "CWE-200",
      "title": "CyberPanel 2.4.3 through 2.4.5 Information Disclosure via AI Scanner",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87820"
    },
    {
      "rank": 517,
      "cve_id": "CVE-2026-87925",
      "cvss_base": 6.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rizwan17",
      "product": "inventory-management-system",
      "cwe": "CWE-89",
      "title": "Rizwan17 inventory-management-system manage.php storeCustomerOrderInvoice sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87925"
    },
    {
      "rank": 518,
      "cve_id": "CVE-2026-87015",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-201",
      "title": "Open WebUI: A user's session cookies are sent to tool servers configured for bearer authentication",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87015"
    },
    {
      "rank": 519,
      "cve_id": "CVE-2026-87872",
      "cvss_base": 6.8,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Ceph Storage 5",
      "cwe": "CWE-295",
      "title": "Community.general: community.general: ocapi module_utils (ocapi_command, ocapi_info) hardcode validate_certs=false with no override, enabling tls man-in-the-middle and credential disclosure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87872"
    },
    {
      "rank": 520,
      "cve_id": "CVE-2026-70425",
      "cvss_base": 6.7,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "PowerScale OneFS",
      "cwe": "CWE-78",
      "title": "Dell PowerScale OneFS, Versions 9.5.0.0 through 9.7.1.0, Versions 9.8.0.0 through 9.10.1.0, and Versions 9.11.0.0 through 9.14.0.1, contain a command injection vulnerability. An admin privileged local attacker could potentially exploit this vulnerability, leading to elevation of privileges to root, impacting confidentiality, integrity, and availability.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-70425"
    },
    {
      "rank": 521,
      "cve_id": "CVE-2026-73788",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Hewlett Packard Enterprise (HPE)",
      "product": "ClearPass Policy Manager (CPPM)",
      "cwe": null,
      "title": "Privilege Escalation in ClearPass OnGuard Agent",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-73788"
    },
    {
      "rank": 522,
      "cve_id": "CVE-2026-78481",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-321",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Use of Hard-coded Cryptographic Key vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78481"
    },
    {
      "rank": 523,
      "cve_id": "CVE-2026-79513",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "A divide-by-zero vulnerability in the gf_dash_get_timeline_duration function (src/media_tools/dash_client.c) of GPAC v26.07.0 allows attackers to cause a Denial of Service (DoS) via a crafted MPD SegmentTimeline. Fixed in 2fd5a06ab226767900fd86edb5a1e8bfc1010640.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79513"
    },
    {
      "rank": 524,
      "cve_id": "CVE-2026-79514",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "An out-of-bounds read in the gf_dm_data_received function (downloader.c) of GPAC v26.07.0 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request. Fixed in 2fd5a06ab226767900fd86edb5a1e8bfc1010640.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79514"
    },
    {
      "rank": 525,
      "cve_id": "CVE-2026-79522",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "An out-of-bounds read in the gf_dm_get_chunk_data function (src/utils/downloader.c) of GPAC v26.07.0 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request. Fixed in 2fd5a06ab226767900fd86edb5a1e8bfc1010640.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79522"
    },
    {
      "rank": 526,
      "cve_id": "CVE-2026-79728",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-23",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Relative Path Traversal vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to filesystem access for attacker.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79728"
    },
    {
      "rank": 527,
      "cve_id": "CVE-2026-87014",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-613",
      "title": "Open WebUI: Admin demoted through SSO role sync keeps read and write access to all users' notes",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87014"
    },
    {
      "rank": 528,
      "cve_id": "CVE-2026-88000",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-835",
      "title": "Open WebUI: Any authenticated user can hang the server via message deletion in a cyclic chat tree",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-88000"
    },
    {
      "rank": 529,
      "cve_id": "CVE-2026-88002",
      "cvss_base": 6.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-835",
      "title": "Open WebUI: Any authenticated user can hang the server via a cyclic chat message history",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-88002"
    },
    {
      "rank": 530,
      "cve_id": "CVE-2026-86203",
      "cvss_base": 6.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-664",
      "title": "PocketMine-MP before 5.39.2 Item Duplication via Despawn State",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86203"
    },
    {
      "rank": 531,
      "cve_id": "CVE-2026-78483",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-295",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78483"
    },
    {
      "rank": 532,
      "cve_id": "CVE-2026-78489",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-295",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78489"
    },
    {
      "rank": 533,
      "cve_id": "CVE-2026-79962",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-567",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79962"
    },
    {
      "rank": 534,
      "cve_id": "CVE-2026-79968",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-367",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79968"
    },
    {
      "rank": 535,
      "cve_id": "CVE-2026-79969",
      "cvss_base": 5.9,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-567",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79969"
    },
    {
      "rank": 536,
      "cve_id": "CVE-2026-85788",
      "cvss_base": 5.7,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "AWS",
      "product": "AWS Labs MySQL MCP Server",
      "cwe": "CWE-184",
      "title": "Incomplete list of disallowed inputs in awslabs mysql-mcp-server",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-85788"
    },
    {
      "rank": 537,
      "cve_id": "CVE-2026-79730",
      "cvss_base": 5.6,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-367",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79730"
    },
    {
      "rank": 538,
      "cve_id": "CVE-2026-79970",
      "cvss_base": 5.6,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-347",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Verification of Cryptographic Signature vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79970"
    },
    {
      "rank": 539,
      "cve_id": "CVE-2025-51619",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-20",
      "title": "A vulnerability in the Thesycon DPC Latency Checker driver (dpc.sys) thru 1.4.0 allows local unprivileged users to cause a denial-of-service (BSOD) condition on Windows systems. The driver exposes an IOCTL interface (0x81772008) that accepts user-controlled input without validating pointers before passing them to kernel APIs. Specifically, it dereferences a user-supplied pointer and uses the resulting value in a call to ExSetTimerResolution, leading to an arbitrary kernel memory access. Exploiting this flaw results in a system crash.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2025-51619"
    },
    {
      "rank": 540,
      "cve_id": "CVE-2026-39020",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": "CWE-20",
      "title": "An issue in WIngs3D v.2.4.1 allows a local attacker to cause a denial of service via a crafted Wavefront OBJ file",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-39020"
    },
    {
      "rank": 541,
      "cve_id": "CVE-2026-79694",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-215",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insertion of Sensitive Information Into Debugging Code vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to information exposure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79694"
    },
    {
      "rank": 542,
      "cve_id": "CVE-2026-79945",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-77",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to command execution.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79945"
    },
    {
      "rank": 543,
      "cve_id": "CVE-2026-79947",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-89",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to script injection.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79947"
    },
    {
      "rank": 544,
      "cve_id": "CVE-2026-87921",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rizwan17",
      "product": "inventory-management-system",
      "cwe": "CWE-74",
      "title": "Rizwan17 inventory-management-system manage.php update_record sql injection",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87921"
    },
    {
      "rank": 545,
      "cve_id": "CVE-2026-87922",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rizwan17",
      "product": "inventory-management-system",
      "cwe": "CWE-287",
      "title": "Rizwan17 inventory-management-system AJAX Backend process.php DBOperation.addCategory missing authentication",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87922"
    },
    {
      "rank": 546,
      "cve_id": "CVE-2026-87924",
      "cvss_base": 5.5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rizwan17",
      "product": "inventory-management-system",
      "cwe": "CWE-287",
      "title": "Rizwan17 inventory-management-system Invoice Generation invoice_bill.php missing authentication",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87924"
    },
    {
      "rank": 547,
      "cve_id": "CVE-2026-15460",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "zephyrproject",
      "product": "zephyr",
      "cwe": "CWE-666",
      "title": "Missing channel-state validation in Zephyr Bluetooth Classic L2CAP receive path",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-15460"
    },
    {
      "rank": 548,
      "cve_id": "CVE-2026-40635",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "PowerScale OneFS",
      "cwe": "CWE-377",
      "title": "Dell PowerScale OneFS versions 9.12.0.0 through 9.13.1.0 contain an Insecure Temporary File vulnerability. A low privileged remote attacker could potentially exploit this vulnerability, leading to denial of service and information tampering.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-40635"
    },
    {
      "rank": 549,
      "cve_id": "CVE-2026-53956",
      "cvss_base": 5.4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "conda",
      "product": "rattler_cache",
      "cwe": "CWE-22",
      "title": "Rattler vulnerable to package cache path traversal via conda package build string",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-53956"
    },
    {
      "rank": 550,
      "cve_id": "CVE-2023-54394",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-770",
      "title": "PocketMine-MP before 4.18.0-ALPHA2 Bandwidth Amplification via InventoryTransactionPacket",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-54394"
    },
    {
      "rank": 551,
      "cve_id": "CVE-2023-54395",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-407",
      "title": "PocketMine-MP before 4.12.5 Denial of Service via ModalFormResponsePacket",
      "url": "https://www.cve.org/CVERecord?id=CVE-2023-54395"
    },
    {
      "rank": 552,
      "cve_id": "CVE-2026-64857",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "tirrenotechnologies",
      "product": "tirreno",
      "cwe": "CWE-384",
      "title": "tirreno has Session Fixation in Login Authentication",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-64857"
    },
    {
      "rank": 553,
      "cve_id": "CVE-2026-73789",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Hewlett Packard Enterprise (HPE)",
      "product": "ClearPass Policy Manager (CPPM)",
      "cwe": null,
      "title": "Unauthenticated Insecure Parameter Manipulation allows Data Tampering In CPPM Web Interface",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-73789"
    },
    {
      "rank": 554,
      "cve_id": "CVE-2026-79638",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-693",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Alternate XSS Syntax vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to script injection.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79638"
    },
    {
      "rank": 555,
      "cve_id": "CVE-2026-79741",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-77",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to script injection.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79741"
    },
    {
      "rank": 556,
      "cve_id": "CVE-2026-79946",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-87",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Alternate XSS Syntax vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to script injection.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79946"
    },
    {
      "rank": 557,
      "cve_id": "CVE-2026-79952",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-116",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Encoding or Escaping of Output vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to launch of phishing attacks.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79952"
    },
    {
      "rank": 558,
      "cve_id": "CVE-2026-79961",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-306",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79961"
    },
    {
      "rank": 559,
      "cve_id": "CVE-2026-79964",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-116",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Neutralization of Escape, Meta, or Control Sequences vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to launch of phishing attacks.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79964"
    },
    {
      "rank": 560,
      "cve_id": "CVE-2026-79965",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-625",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an External Control of Critical State Data vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79965"
    },
    {
      "rank": 561,
      "cve_id": "CVE-2026-79971",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-1236",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Sanitization of Custom Special Characters vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to script injection.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79971"
    },
    {
      "rank": 562,
      "cve_id": "CVE-2026-80174",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-613",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insufficient Session Expiration vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to session theft.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80174"
    },
    {
      "rank": 563,
      "cve_id": "CVE-2026-86202",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-406",
      "title": "PocketMine-MP before 5.39.2 Network Amplification via ActorEventPacket",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86202"
    },
    {
      "rank": 564,
      "cve_id": "CVE-2026-86743",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-639",
      "title": "Snipe-IT before 8.7.0 Authorization Bypass via Asset Acceptance Report",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86743"
    },
    {
      "rank": 565,
      "cve_id": "CVE-2026-86747",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-863",
      "title": "snipe-it before 8.7.0 Authorization Bypass via Pivot-Only User",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86747"
    },
    {
      "rank": 566,
      "cve_id": "CVE-2026-86752",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-863",
      "title": "snipe-it before 8.7.0 Authorization Bypass via Asset Audit Endpoints",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86752"
    },
    {
      "rank": 567,
      "cve_id": "CVE-2026-86753",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-863",
      "title": "snipe-it before 8.7.0 Business Logic Bypass via asset_model endpoint",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86753"
    },
    {
      "rank": 568,
      "cve_id": "CVE-2026-86755",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-863",
      "title": "Snipe-IT 4.2.0 through 8.6.3 Permission Bypass via OAuth",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86755"
    },
    {
      "rank": 569,
      "cve_id": "CVE-2026-86756",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-601",
      "title": "Snipe-IT 8.5.0 through 8.6.3 Open Redirect via SAML RelayState",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86756"
    },
    {
      "rank": 570,
      "cve_id": "CVE-2026-86760",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-863",
      "title": "snipe-it 8.2.0 before 8.7.0 Authentication Bypass via activated flag",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86760"
    },
    {
      "rank": 571,
      "cve_id": "CVE-2026-86761",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-639",
      "title": "snipe-it 8.6.3 before 8.7.0 Authorization Bypass via print endpoints",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86761"
    },
    {
      "rank": 572,
      "cve_id": "CVE-2026-86767",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-200",
      "title": "Snipe-IT before 8.7.0 Cross-Company Read via requested-assets",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86767"
    },
    {
      "rank": 573,
      "cve_id": "CVE-2026-86768",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-20",
      "title": "Snipe-IT before 8.7.0 Improper Input Validation via API Checkout",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86768"
    },
    {
      "rank": 574,
      "cve_id": "CVE-2026-86769",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-282",
      "title": "Snipe-IT before 8.7.0 Audit Log Misattribution via Consumables Checkout",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86769"
    },
    {
      "rank": 575,
      "cve_id": "CVE-2026-86773",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-863",
      "title": "Snipe-IT 8.6.3 Broken Access Control via Kit Update Endpoints",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86773"
    },
    {
      "rank": 576,
      "cve_id": "CVE-2026-86774",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-284",
      "title": "Snipe-IT before 8.7.0 Broken Access Control via AssetModelPolicy",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86774"
    },
    {
      "rank": 577,
      "cve_id": "CVE-2026-87926",
      "cvss_base": 5.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rizwan17",
      "product": "inventory-management-system",
      "cwe": "CWE-79",
      "title": "Rizwan17 inventory-management-system Login Page index.php cross site scripting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87926"
    },
    {
      "rank": 578,
      "cve_id": "CVE-2026-86740",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-212",
      "title": "Snipe-IT before 8.7.0 Attachment Deletion Reports Success While File Remains",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86740"
    },
    {
      "rank": 579,
      "cve_id": "CVE-2026-86742",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-1236",
      "title": "Snipe-IT before 8.7.0 CSV Formula Injection via Asset Acceptance Report",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86742"
    },
    {
      "rank": 580,
      "cve_id": "CVE-2026-86745",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-1236",
      "title": "Snipe-IT before 8.7.0 CSV Formula Injection via Location-Scoping Export",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86745"
    },
    {
      "rank": 581,
      "cve_id": "CVE-2026-86763",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-639",
      "title": "snipe-it 7.0.12 through 8.6.3 Authorization Bypass via Importer",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86763"
    },
    {
      "rank": 582,
      "cve_id": "CVE-2026-86772",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-79",
      "title": "Snipe-IT 8.6.3 Stored XSS via Department Names",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86772"
    },
    {
      "rank": 583,
      "cve_id": "CVE-2026-87928",
      "cvss_base": 5.1,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "MaxSite",
      "product": "MaxSite CMS",
      "cwe": "CWE-434",
      "title": "MaxSite CMS 0.94 through 109.6 HTML Upload XSS via admin_page",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87928"
    },
    {
      "rank": 584,
      "cve_id": "CVE-2026-88001",
      "cvss_base": 5,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-918",
      "title": "Open WebUI: Server-side fetches reach blocked and internal hosts via unvalidated HTTP redirect targets",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-88001"
    },
    {
      "rank": 585,
      "cve_id": "CVE-2026-80171",
      "cvss_base": 4.7,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-331",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insufficient Entropy in PRNG vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to elevation of privileges.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80171"
    },
    {
      "rank": 586,
      "cve_id": "CVE-2026-86776",
      "cvss_base": 4.6,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "KeePass",
      "product": "KeePass",
      "cwe": "CWE-789",
      "title": "KeePass 2.35 through 2.61.1 Memory Exhaustion via KDBX Header Field Size",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86776"
    },
    {
      "rank": 587,
      "cve_id": "CVE-2026-78486",
      "cvss_base": 4.4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-321",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Use of Hard-coded Cryptographic Key vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-78486"
    },
    {
      "rank": 588,
      "cve_id": "CVE-2026-79731",
      "cvss_base": 4.4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-798",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Use of Hard-coded Credentials vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to information exposure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79731"
    },
    {
      "rank": 589,
      "cve_id": "CVE-2026-79735",
      "cvss_base": 4.4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-321",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Use of Hard-coded Cryptographic Key vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to information disclosure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79735"
    },
    {
      "rank": 590,
      "cve_id": "CVE-2026-61907",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cyrusimap",
      "product": "Cyrus IMAP",
      "cwe": "CWE-863",
      "title": "An issue was discovered in Cyrus IMAP before 3.12.4. JMAP snooze bypasses the destination-mailbox ACL. An authenticated user with insert permissions on another user's snoozed mailbox could cause insertion of mail to that user's inbox, or any other of their mailboxes whose id was known to the user, despite having no insert permissions to the target mailbox.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-61907"
    },
    {
      "rank": 591,
      "cve_id": "CVE-2026-61911",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cyrusimap",
      "product": "Cyrus IMAP",
      "cwe": "CWE-497",
      "title": "An issue was discovered in Cyrus IMAP before 3.12.4. There is a Sieve mailbox existence oracle. An authenticated user could install a Sieve script that probed whether another user's private mailbox existed, or read the value of shared mailbox annotations, by observing which fileinto branch fired during LMTP delivery.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-61911"
    },
    {
      "rank": 592,
      "cve_id": "CVE-2026-79515",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "An out-of-bounds read in the stbtt_GetGlyphShape component of nothings stb commit 31c1ad3 allows attackers to cause a Denial of Service (DoS) via sending a crafted TTF file.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79515"
    },
    {
      "rank": 593,
      "cve_id": "CVE-2026-87012",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-754",
      "title": "Open WebUI: Any authenticated user can suppress calendar alerts instance-wide via a non-numeric alert value",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87012"
    },
    {
      "rank": 594,
      "cve_id": "CVE-2026-87013",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-835",
      "title": "Open WebUI: Any authenticated user can start a non-terminating request via a folder parent cycle",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87013"
    },
    {
      "rank": 595,
      "cve_id": "CVE-2026-87017",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-200",
      "title": "Open WebUI: Inaccessible knowledge bases are exposed through the built-in knowledge tool on most vector backends",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87017"
    },
    {
      "rank": 596,
      "cve_id": "CVE-2026-87875",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-125",
      "title": "Cups: openprinting cups: heap out-of-bounds read in cupsutf32toutf8() via missing source-length bound",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87875"
    },
    {
      "rank": 597,
      "cve_id": "CVE-2026-87994",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-639",
      "title": "Open WebUI: Channel members can overwrite another member's message via the chat completions endpoint",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87994"
    },
    {
      "rank": 598,
      "cve_id": "CVE-2026-87997",
      "cvss_base": 4.3,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "open-webui",
      "product": "open-webui",
      "cwe": "CWE-639",
      "title": "Open WebUI: Any authenticated user can inject chats into another user's folder via chat completions",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87997"
    },
    {
      "rank": 599,
      "cve_id": "CVE-2026-61915",
      "cvss_base": 4.2,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cyrusimap",
      "product": "Cyrus IMAP",
      "cwe": "CWE-415",
      "title": "An issue was discovered in Cyrus IMAP before 3.12.4. There is a VPATCH BYPARAM double-free. An authenticated calendar user could crash a Cyrus CalDAV worker with a PATCH containing PATCH-ACTION=\"BYPARAM@...\" against a resource with two or more properties of the matched kind. The memory holding the selector would be freed once on each iteration over the properties.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-61915"
    },
    {
      "rank": 600,
      "cve_id": "CVE-2026-79516",
      "cvss_base": 4,
      "cvss_severity": "MEDIUM",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "An out-of-bounds read in the stbsp_vsnprintf function (stb_sprintf.h) of nothings stb commit 31c1ad3 allows attackers to cause a Denial of Service (DoS) via sending a crafted input.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79516"
    },
    {
      "rank": 601,
      "cve_id": "CVE-2026-79690",
      "cvss_base": 3.7,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-295",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79690"
    },
    {
      "rank": 602,
      "cve_id": "CVE-2026-79729",
      "cvss_base": 3.7,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-295",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79729"
    },
    {
      "rank": 603,
      "cve_id": "CVE-2026-79732",
      "cvss_base": 3.7,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-295",
      "title": "Dell Secure Connect Gateway (SCG) 5.0 Appliance, versions prior to 5.36.00.xx, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to protection mechanism bypass.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79732"
    },
    {
      "rank": 604,
      "cve_id": "CVE-2026-79736",
      "cvss_base": 3.7,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-295",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79736"
    },
    {
      "rank": 605,
      "cve_id": "CVE-2026-46460",
      "cvss_base": 3.5,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "PowerScale OneFS",
      "cwe": "CWE-863",
      "title": "Dell PowerScale OneFS, versions 9.5.0.0 through 9.7.1.15, versions 9.8.0.0 through 9.13.1.0, and versions prior to 9.15.0.0, contain an Incorrect Authorization vulnerability. A low privileged adjacent network attacker could potentially exploit this vulnerability, leading to unauthorized modification of system logs.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-46460"
    },
    {
      "rank": 606,
      "cve_id": "CVE-2026-61909",
      "cvss_base": 3.5,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cyrusimap",
      "product": "Cyrus IMAP",
      "cwe": "CWE-420",
      "title": "An issue was discovered in Cyrus IMAP before 3.12.4. CalDAV/CardDAV multiget bypasses a per-href ACL. An authenticated DAV user with some shared access to another user's calendar or address book could read even unshared events or contacts by including the target hrefs in a calendar-multiget or addressbook-multiget REPORT.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-61909"
    },
    {
      "rank": 607,
      "cve_id": "CVE-2026-61910",
      "cvss_base": 3.5,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cyrusimap",
      "product": "Cyrus IMAP",
      "cwe": "CWE-863",
      "title": "An issue was discovered in Cyrus IMAP before 3.12.4. Mailbox/set let a sharee change a special-use role on shared mailboxes. An authenticated user with maySetKeywords on another user's mailbox could change that mailbox's specialuse annotation. This could allow the sharee to change the shared mailbox to perform the archived, snoozed, or other role, which might cause mail mail to be written to the shared mailbox, sharing more content than intended. (This is likely to be an unusual situation, made more unusual because if the target already has an non-shared mailbox with that role, role duplication suppression will prevent the update.)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-61910"
    },
    {
      "rank": 608,
      "cve_id": "CVE-2026-79693",
      "cvss_base": 3.4,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-272",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Least Privilege Violation vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79693"
    },
    {
      "rank": 609,
      "cve_id": "CVE-2026-79942",
      "cvss_base": 3.4,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-250",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Execution with Unnecessary Privileges vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79942"
    },
    {
      "rank": 610,
      "cve_id": "CVE-2026-79944",
      "cvss_base": 3.4,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-272",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Least Privilege Violation vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to unauthorized access.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79944"
    },
    {
      "rank": 611,
      "cve_id": "CVE-2026-79727",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-1258",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Exposure of Sensitive System Information Due to Uncleared Debug Information vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to information exposure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79727"
    },
    {
      "rank": 612,
      "cve_id": "CVE-2026-79966",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-532",
      "title": "CWE-532: Insertion of Sensitive Information into Log File",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79966"
    },
    {
      "rank": 613,
      "cve_id": "CVE-2026-80169",
      "cvss_base": 3.3,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-532",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to information exposure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80169"
    },
    {
      "rank": 614,
      "cve_id": "CVE-2026-61908",
      "cvss_base": 3.1,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "cyrusimap",
      "product": "Cyrus IMAP",
      "cwe": "CWE-125",
      "title": "An issue was discovered in Cyrus IMAP before 3.12.4. A JMAP email-header blob ID can reference an out-of-bounds index. An authenticated user could attempt to download a crafted JMAP blob ID of the form H<emailid>-<index>, which could read past the end of the internal blob_headers array during download, exposing adjacent heap memory.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-61908"
    },
    {
      "rank": 615,
      "cve_id": "CVE-2026-87876",
      "cvss_base": 3,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Red Hat",
      "product": "Red Hat Enterprise Linux 10",
      "cwe": "CWE-178",
      "title": "Cups: openprinting cups: remaining case-insensitive username matching in scheduler side paths (cve-2026-27447 follow-up)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87876"
    },
    {
      "rank": 616,
      "cve_id": "CVE-2026-80239",
      "cvss_base": 2.4,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Dell",
      "product": "Secure Connect Gateway 5.0 - Application",
      "cwe": "CWE-1258",
      "title": "Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Exposure of Sensitive System Information Due to Uncleared Debug Information vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to information exposure.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80239"
    },
    {
      "rank": 617,
      "cve_id": "CVE-2026-86198",
      "cvss_base": 2.3,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "pmmp",
      "product": "PocketMine-MP",
      "cwe": "CWE-837",
      "title": "PocketMine-MP before 5.44.2 Denial of Service via ResourcePackClientResponsePacket",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86198"
    },
    {
      "rank": 618,
      "cve_id": "CVE-2026-86739",
      "cvss_base": 2.3,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-252",
      "title": "Snipe-IT before 8.7.0 Acceptance Finalization Without Stored Evidence",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86739"
    },
    {
      "rank": 619,
      "cve_id": "CVE-2026-86744",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "grokability",
      "product": "snipe-it",
      "cwe": "CWE-362",
      "title": "snipe-it before 8.7.0 Race Condition in Asset Checkout",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-86744"
    },
    {
      "rank": 620,
      "cve_id": "CVE-2026-87923",
      "cvss_base": 2.1,
      "cvss_severity": "LOW",
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Rizwan17",
      "product": "inventory-management-system",
      "cwe": "CWE-79",
      "title": "Rizwan17 inventory-management-system List DBOperation.php cross site scripting",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-87923"
    },
    {
      "rank": 621,
      "cve_id": "CVE-2026-36433",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "An issue in Actions Semiconductor Co. Ltd Tool- Media Player Utilities v.4.46 allows a physically proximate attacker execute arbitrary code via the Production.dll and RdiskUpgrade.exe components",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-36433"
    },
    {
      "rank": 622,
      "cve_id": "CVE-2026-38998",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "A use-after-free in the SocketDescriptor::tcpReadHandler1 function (liveMedia/RTPInterface.cpp) of LIVE555 Streaming Media (version 2026.02.26) allows attackers to cause a Denial of Service (DoS) via sending a series of crafted RTSP and HTTP requests to the server.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-38998"
    },
    {
      "rank": 623,
      "cve_id": "CVE-2026-41869",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Nutch",
      "cwe": "CWE-404",
      "title": "Apache Nutch: Unauthenticated forced shutdown and job interruption in Nutch Server (Nutch REST API)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-41869"
    },
    {
      "rank": 624,
      "cve_id": "CVE-2026-41870",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Nutch",
      "cwe": "CWE-94",
      "title": "Apache Nutch: Unauthenticated remote code execution (RCE) via JEXL injection in Nutch Server (Nutch REST API)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-41870"
    },
    {
      "rank": 625,
      "cve_id": "CVE-2026-41871",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Nutch",
      "cwe": "CWE-470",
      "title": "Apache Nutch: Unauthenticated reflection-based job execution in Nutch Server (Nutch REST API)",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-41871"
    },
    {
      "rank": 626,
      "cve_id": "CVE-2026-52482",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "An issue in SJRC F11 SJ-GPS-PRO firmware build 2019-09-17 allows a remote attacker to obtain sensitive information via the inetd service spawns /app/sh_for_telnet",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-52482"
    },
    {
      "rank": 627,
      "cve_id": "CVE-2026-54048",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Impala",
      "cwe": "CWE-918",
      "title": "Apache Impala: Avro Schema URL Server-Side Request Forgery",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-54048"
    },
    {
      "rank": 628,
      "cve_id": "CVE-2026-56207",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Impala",
      "cwe": "CWE-347",
      "title": "Apache Impala: SAML authentication bypass via forged bearer token",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-56207"
    },
    {
      "rank": 629,
      "cve_id": "CVE-2026-57866",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Impala",
      "cwe": "CWE-918",
      "title": "Apache Impala: Secrets Exfiltration via SSRF",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-57866"
    },
    {
      "rank": 630,
      "cve_id": "CVE-2026-71612",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "Buffer Overflow vulnerability in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the nhntdmx_process() function. Fixed in fac50e6a12ac27ffabdd5d3080b51afcc44ad8d6.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71612"
    },
    {
      "rank": 631,
      "cve_id": "CVE-2026-71613",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "Buffer Overflow vulnerability in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the j2kdec_process() function. Fixed in 9a253a07fd3f6b48022bba74302bf39388dda859.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71613"
    },
    {
      "rank": 632,
      "cve_id": "CVE-2026-71614",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "An issue in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the src/media_tools/dvb_mpe.c, descriptorTime_slice_fec_identifier() and gf_m2ts_ipdatagram_reader() components. Fixed in 0e4093392e1f847c90d20e031e893cd942fef938.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71614"
    },
    {
      "rank": 633,
      "cve_id": "CVE-2026-71616",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "An issue in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to cause a denial of service via the function gf_route_media_complete_object(). Fixed in 3c4e6c5b3e0c6fa9b16d55599701a08354538fab.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71616"
    },
    {
      "rank": 634,
      "cve_id": "CVE-2026-71801",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "An issue was discovered in s-pms SPMS-Server through v1.0. The application contains a hardcoded default access token secret within its core configuration file, which is not overridden or removed in the production environment profile. A remote, unauthenticated attacker can locally forge valid administrative session tokens to completely bypass the authentication mechanism gaining full unauthorized access to protected backend APIs.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71801"
    },
    {
      "rank": 635,
      "cve_id": "CVE-2026-71802",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "A stored Cross-Site Scripting (XSS) vulnerability exists in the announcement preview component of REBUILD 4.4.3. Although the announcement content undergoes HTML escaping on the server side, the client-side preview code reverses the escaped entities using jQuery's `html().text()` method and subsequently injects the result into the DOM. An administrator or attacker capable of controlling the announcement content can exploit this vulnerability to execute arbitrary JavaScript code in the browsers of users viewing the affected pages \"which may include the dashboard, activity feed, or login page, depending on the announcement's visibility settings.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71802"
    },
    {
      "rank": 636,
      "cve_id": "CVE-2026-71803",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "money-pos 1.0 contains a stored Cross-Site Scripting (XSS) vulnerability. When processing returns, the backend fails to filter or escape the goodsName parameter, directly concatenating it into the order log description; the frontend subsequently renders this content using v-html. An attacker with product creation privileges can inject a malicious JavaScript payload, causing unauthorized code execution when an administrator views the order logs.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71803"
    },
    {
      "rank": 637,
      "cve_id": "CVE-2026-71805",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "An arbitrary file upload and path traversal vulnerability exists in LZ-litchi 1.0.0. Unauthenticated remote attackers can upload arbitrary files and write them outside the intended storage directory via the directory parameter in POST /app-api/infra/file/upload.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71805"
    },
    {
      "rank": 638,
      "cve_id": "CVE-2026-71807",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "In RuoYi-Cloud-Plus <= 2.6.2 in the ruoyi-workflow module, multiple core task APIs in FlwTaskController lack permission annotations, and the Service layer does not verify whether the current user is the task handler/related user. Authenticated low-privileged remote attackers can read sensitive workflow task details (/task/getTask/{taskId}) and trigger unauthorized workflow executions (/task/startWorkFlow).",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71807"
    },
    {
      "rank": 639,
      "cve_id": "CVE-2026-71808",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "A SQL Injection vulnerability in Siam Ordering (siam-server) 1.0.0 allows remote authenticated attackers to execute arbitrary SQL commands via the ${} string concatenation in AdminMapper.java and multiple other Mapper files (including MerchantWithdrawRecordMapper.java and MemberWithdrawRecordMapper.java).",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71808"
    },
    {
      "rank": 640,
      "cve_id": "CVE-2026-71809",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "Authentication Bypass via Hardcoded Master Verification Code vulnerability in Siam Ordering (siam-server) 1.0.0 allows remote unauthenticated attackers to log in as any user, merchant, or administrator.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-71809"
    },
    {
      "rank": 641,
      "cve_id": "CVE-2026-73334",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache Parquet Hadoop",
      "cwe": "CWE-20",
      "title": "Apache Parquet Hadoop: File-controlled KMS URL is forwarded to pluggable KmsClient that skips host validation",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-73334"
    },
    {
      "rank": 642,
      "cve_id": "CVE-2026-74761",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Apache Software Foundation",
      "product": "Apache ActiveMQ Broker",
      "cwe": "CWE-20",
      "title": "Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Spoofing of RemoveSubscription clientId",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-74761"
    },
    {
      "rank": 643,
      "cve_id": "CVE-2026-75307",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "zhitan-ems 1.0.0 is vulnerable to Cross Site Scripting (XSS) via SVG file upload through the /equipmentFile/upload endpoint.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75307"
    },
    {
      "rank": 644,
      "cve_id": "CVE-2026-75308",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "yshopmall <=3.3 is vulnerable to Cross Site Scripting (XSS). The file upload endpoint /api/upload of the system lacks file type validation. Attackers can upload files of any type, including HTML, JSP, and other executable files.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-75308"
    },
    {
      "rank": 645,
      "cve_id": "CVE-2026-79387",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "n/a",
      "product": "n/a",
      "cwe": null,
      "title": "SQL injection vulnerability in PbootCMS versions 3.2.0 through 3.2.5 allows an authenticated user to modify arbitrary user account fields (including passwords and roles) via crafted parameters to the User/mod interface, enabling account takeover.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-79387"
    },
    {
      "rank": 646,
      "cve_id": "CVE-2026-80915",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Linux",
      "product": "Linux",
      "cwe": null,
      "title": "drm/xe: Fix DPT allocation paths.",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80915"
    },
    {
      "rank": 647,
      "cve_id": "CVE-2026-80916",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Linux",
      "product": "Linux",
      "cwe": null,
      "title": "kcov: fix data corruption and race conditions on PREEMPT_RT",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80916"
    },
    {
      "rank": 648,
      "cve_id": "CVE-2026-80917",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Linux",
      "product": "Linux",
      "cwe": null,
      "title": "PCI: host-generic: Fix NULL pointer dereference on 32-bit CAM systems",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80917"
    },
    {
      "rank": 649,
      "cve_id": "CVE-2026-80918",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Linux",
      "product": "Linux",
      "cwe": null,
      "title": "HID: core: fix number/pointer type confusion on long items",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80918"
    },
    {
      "rank": 650,
      "cve_id": "CVE-2026-80919",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Linux",
      "product": "Linux",
      "cwe": null,
      "title": "drm/amdgpu: fix recursive ww_mutex acquire in amdgpu_devcoredump_format",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80919"
    },
    {
      "rank": 651,
      "cve_id": "CVE-2026-80920",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Linux",
      "product": "Linux",
      "cwe": null,
      "title": "io_uring: defer eventfd signaling when queued from a wakeup handler",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80920"
    },
    {
      "rank": 652,
      "cve_id": "CVE-2026-80922",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Linux",
      "product": "Linux",
      "cwe": null,
      "title": "crypto: qcom-rng - Allow zero as a random number",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80922"
    },
    {
      "rank": 653,
      "cve_id": "CVE-2026-80923",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Linux",
      "product": "Linux",
      "cwe": null,
      "title": "xhci: dbgtty: Fix unregister on tty_register_driver() failure",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80923"
    },
    {
      "rank": 654,
      "cve_id": "CVE-2026-80925",
      "cvss_base": null,
      "cvss_severity": null,
      "epss_score": null,
      "epss_percentile": null,
      "kev": false,
      "kev_due_at": null,
      "vendor": "Linux",
      "product": "Linux",
      "cwe": null,
      "title": "vlan: fix skb_under_panic and races when toggling HW VLAN offload",
      "url": "https://www.cve.org/CVERecord?id=CVE-2026-80925"
    }
  ],
  "transactions": [
    {
      "type": "KEV_ADDED",
      "cve_id": "CVE-2025-25249",
      "detail": "ADDED TO KEV — CVE-2025-25249 (Fortinet FortiSwitchManager). Remediation due September 12, 2026."
    },
    {
      "type": "KEV_ADDED",
      "cve_id": "CVE-2026-19490",
      "detail": "ADDED TO KEV — CVE-2026-19490 (NetScaler ADC). Remediation due September 12, 2026."
    },
    {
      "type": "KEV_ADDED",
      "cve_id": "CVE-2026-20079",
      "detail": "ADDED TO KEV — CVE-2026-20079 (Cisco Secure Firewall Management Center (FMC)). Remediation due September 12, 2026."
    },
    {
      "type": "KEV_ADDED",
      "cve_id": "CVE-2026-87491",
      "detail": "ADDED TO KEV — CVE-2026-87491 (Google Chrome). Remediation due September 23, 2026."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2025-5914",
      "detail": "EXPLOIT PUBLISHED — CVE-2025-5914 (libarchive). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-2332",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-2332 (Eclipse Foundation Eclipse Jetty). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-24049",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-24049 (pypa wheel). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-25639",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-25639 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-29063",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-29063 (immutable-js). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-29181",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-29181 (open-telemetry opentelemetry-go). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-30922",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-30922 (pyasn1). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-33231",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-33231 (nltk). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-33487",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-33487 (russellhaering goxmldsig). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-33870",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-33870 (netty). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-35172",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-35172 (distribution). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-37171",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-37171. Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-39883",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-39883 (open-telemetry opentelemetry-go). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-40175",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-40175 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-41242",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-41242 (protobufjs protobuf.js). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42033",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42033 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42039",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42039 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42041",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42041 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42043",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42043 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42338",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42338 (beaugunderson ip-address). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42578",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42578 (netty). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42579",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42579 (netty). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42581",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42581 (netty). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42584",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42584 (netty). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42587",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42587 (netty). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-42945",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-42945 (F5 NGINX Plus). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44486",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44486 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44487",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44487 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44488",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44488 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44492",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44492 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44495",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44495 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-44496",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-44496 (axios). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-45736",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-45736 (websockets ws). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-46625",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-46625 (js-cookie). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-48779",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-48779 (websockets ws). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-4878",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-4878 (Red Hat Enterprise Linux 10). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-54293",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-54293 (nltk). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-58010",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-58010 (GNOME GLib). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-58012",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-58012 (GNOME GLib). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-58013",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-58013 (GNOME GLib). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-58014",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-58014 (GNOME GLib). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-58015",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-58015 (GNOME GLib). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-71625",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-71625. Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73309",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73309 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73310",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73310 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73311",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73311 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73312",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73312 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73313",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73313 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73314",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73314 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73315",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73315 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73316",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73316 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73317",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73317 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73318",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73318 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73319",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73319 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73320",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73320 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-73321",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-73321 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-74239",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-74239 (XenForo). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-85089",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-85089 (FreeRDP). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-85090",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-85090 (FreeRDP). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86170",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86170 (DefaultFuction CRM). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86181",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86181 (code-projects Task Management System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86210",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86210 (SourceCodester Class and Exam Timetabling System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86215",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86215 (Mstfakts College-Management-System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86222",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86222 (SourceCodester Class and Exam Timetabling System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86227",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86227 (valkey-io valkey). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86234",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86234 (itsourcecode Sales and Inventory System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86239",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86239 (liufee FeehiCMS). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86260",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86260 (sfturing hosp_order). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86265",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86265 (itsourcecode Sales and Inventory System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86271",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86271 (FluentCMS). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86276",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86276 (SourceCodester Syllabus-Aligned Learning Management & Examination System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86279",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86279 (SourceCodester Syllabus-Aligned Learning Management & Examination System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86285",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86285 (BookStack). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86292",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86292 (SourceCodester Simple Traffic Offense System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86297",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86297 (D-Link DIR-605). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86302",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86302 (code-projects Hospital Information System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86308",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86308 (light0011 cms). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86319",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86319 (java-json-tools json-patch). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86431",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86431 (thephpleague commonmark). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86512",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86512 (java-json-tools json-patch). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-86517",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-86517 (itsourcecode Sales and Inventory System). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-87528",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-87528 (Google Chrome). Public exploit reference added."
    },
    {
      "type": "EXPLOIT_PUBLISHED",
      "cve_id": "CVE-2026-87629",
      "detail": "EXPLOIT PUBLISHED — CVE-2026-87629 (Google Chrome). Public exploit reference added."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17442",
      "detail": "RESCORED — CVE-2026-17442 (IBM App Connect Enterprise). CVSS 5.1 → 5.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17443",
      "detail": "RESCORED — CVE-2026-17443 (IBM App Connect Enterprise). CVSS 5.3 → 6.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17444",
      "detail": "RESCORED — CVE-2026-17444 (IBM App Connect Enterprise). CVSS 5.3 → 6.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17469",
      "detail": "RESCORED — CVE-2026-17469 (IBM i). CVSS 5.3 → 5.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17470",
      "detail": "RESCORED — CVE-2026-17470 (IBM i). CVSS 5.3 → 7.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17483",
      "detail": "RESCORED — CVE-2026-17483 (IBM Db2 Mirror for i). CVSS 4.3 → 3.3 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17499",
      "detail": "RESCORED — CVE-2026-17499 (IBM i). CVSS 4.4 → 7.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17627",
      "detail": "RESCORED — CVE-2026-17627 (IBM Langflow OSS). CVSS 4.9 → 7.1 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-17631",
      "detail": "RESCORED — CVE-2026-17631 (IBM Langflow OSS). CVSS 5 → 6.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-19649",
      "detail": "RESCORED — CVE-2026-19649 (IBM App Connect Enterprise). CVSS 6.2 → 5.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-21042",
      "detail": "RESCORED — CVE-2026-21042 (Samsung Mobile Devices). CVSS 8.4 → 8.7 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-4765",
      "detail": "RESCORED — CVE-2026-4765 (RD Station Conversas Tallos Chat). CVSS 5.1 → 0 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-69402",
      "detail": "RESCORED — CVE-2026-69402 (Microsoft SharePoint Server Subscription Edition). CVSS 7.3 → 5.4 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-69417",
      "detail": "RESCORED — CVE-2026-69417 (Microsoft SharePoint Server Subscription Edition). CVSS 7.3 → 5.4 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-69615",
      "detail": "RESCORED — CVE-2026-69615 (Microsoft SharePoint Server Subscription Edition). CVSS 3.5 → 4.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-69683",
      "detail": "RESCORED — CVE-2026-69683 (Microsoft SharePoint Server Subscription Edition). CVSS 6.5 → 7.7 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-69690",
      "detail": "RESCORED — CVE-2026-69690 (Microsoft SharePoint Server Subscription Edition). CVSS 4.6 → 5.4 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-69739",
      "detail": "RESCORED — CVE-2026-69739 (Microsoft 365 Apps for Enterprise). CVSS 6.5 → 7.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-69857",
      "detail": "RESCORED — CVE-2026-69857 (Microsoft Azure Cosmos DB). CVSS 8.5 → 8.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-77503",
      "detail": "RESCORED — CVE-2026-77503 (Microsoft Windows 10 Version 1607). CVSS 8.4 → 7.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-78543",
      "detail": "RESCORED — CVE-2026-78543 (IBM App Connect Enterprise). CVSS 5.3 → 7.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-79734",
      "detail": "RESCORED — CVE-2026-79734 (Dell Secure Connect Gateway 5.0 - Application). CVSS 5.9 → 7.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-80128",
      "detail": "RESCORED — CVE-2026-80128 (Dell Secure Connect Gateway 5.0 - Application). CVSS 6.4 → 6.5 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-80129",
      "detail": "RESCORED — CVE-2026-80129 (Dell Secure Connect Gateway 5.0 - Application). CVSS 6.5 → 9.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-80130",
      "detail": "RESCORED — CVE-2026-80130 (Dell Secure Connect Gateway 5.0 - Application). CVSS 7.1 → 8.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-80131",
      "detail": "RESCORED — CVE-2026-80131 (Dell Secure Connect Gateway 5.0 - Application). CVSS 7.4 → 9.8 (NVD)."
    },
    {
      "type": "RESCORED",
      "cve_id": "CVE-2026-80164",
      "detail": "RESCORED — CVE-2026-80164 (Dell Secure Connect Gateway 5.0 - Application). CVSS 7.4 → 9.1 (NVD)."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-19546",
      "detail": "PATCH SHIPPED — CVE-2026-19546 (Red Hat Enterprise Linux 10). Fixed in Red Hat Enterprise Linux 10 0:1.643-26.el10_2.4."
    },
    {
      "type": "PATCH_SHIPPED",
      "cve_id": "CVE-2026-74860",
      "detail": "PATCH SHIPPED — CVE-2026-74860 (Red Hat Hardened Images). Fixed in Red Hat Hardened Images 2.15.4-0.1.hum1."
    }
  ],
  "attribution": "CVE Program, NVD (NIST), CISA KEV, FIRST EPSS, OSV. See /security/methodology/."
}
