AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV L L N L P N L N 1.1 .0082 55.2 —
AFFECTED Product Versions Fixed Checkov by Prisma Cloud 3.2.0 – 3.2.502
TIMELINE Nov 3 Reserved by CNA Sep 10 Published (CNA: palo_alto)
A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?
CISA adds 2 to KEV; 384 CVEs published, led by IBM (49).
384 CVEs published September 10, 2026: 59 critical, 170 high, 135 medium, 7 low; 0 in the KEV catalog at press time; 0 with a public exploit reference; 13 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 359 in the results table.
| MTD | YTD | 2025 same span | 2025 full | |
|---|---|---|---|---|
| CVEs published | 4785 | 39670 | — | — |
| KEV catalog size | 1705 | |||
Publication counts reflect the record since May 20, 2026 (archive start); KEV figures are catalog-wide.
Prior-year comparisons begin when the archive covers a full year; archive begins May 20, 2026.
2514 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| linux | 200 | 4283 | 420 | 2021 | 706 | 1 | 12 | 3 | 0.1 | 7.8 | .0016 | -190 ▼ |
| microsoft | 975 | 2874 | 189 | 1977 | 692 | 16 | 289 | 30 | 1.0 | 7.8 | .0044 | +942 ▲ |
| 360 | 2526 | 318 | 973 | 1109 | 120 | 79 | 8 | 0.3 | 7.5 | .0025 | +317 ▲ | |
| red hat | 67 | 692 | 43 | 288 | 324 | 37 | 2 | 0 | 0.0 | 6.7 | .0028 | -8 ▼ |
| apple | 0 | 316 | 59 | 85 | 165 | 7 | 88 | 8 | 2.5 | 6.5 | .0029 | -1 ▼ |
| freebsd | 0 | 48 | 2 | 36 | 7 | 3 | 0 | 0 | 0.0 | 7.8 | .0016 | 0 |
| canonical | 0 | 42 | 13 | 11 | 13 | 5 | 0 | 0 | 0.0 | 7.8 | .0020 | 0 |
| suse | 12 | 40 | 7 | 21 | 11 | 1 | 0 | 0 | 0.0 | 7.6 | .0037 | +7 ▲ |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cisco | 12 | 96 | 24 | 46 | 26 | 0 | 57 | 14 | 14.6 | 7.5 | .0041 | -18 ▼ |
| ubiquiti | 0 | 59 | 36 | 22 | 1 | 0 | 3 | 3 | 5.1 | 9.1 | .0049 | 0 |
| palo alto networks | 9 | 46 | 1 | 4 | 26 | 15 | 13 | 2 | 4.3 | 4.7 | .0021 | +9 ▲ |
| fortinet | 9 | 39 | 9 | 10 | 17 | 3 | 29 | 7 | 17.9 | 6.7 | .0038 | +9 ▲ |
| netgear | 2 | 34 | 0 | 0 | 27 | 7 | 0 | 0 | 0.0 | 4.3 | .0025 | +2 ▲ |
| ivanti | 10 | 24 | 10 | 12 | 2 | 0 | 25 | 5 | 20.8 | 8.8 | .0146 | +10 ▲ |
| f5 | 7 | 24 | 6 | 14 | 3 | 1 | 4 | 1 | 4.2 | 8.7 | .0047 | +7 ▲ |
| sonicwall | 5 | 19 | 7 | 8 | 4 | 0 | 19 | 4 | 21.1 | 8.3 | .0050 | +3 ▲ |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| apache | 30 | 539 | 116 | 228 | 181 | 13 | 33 | 2 | 0.4 | 7.5 | .0048 | -45 ▼ |
| mozilla | 35 | 222 | 80 | 79 | 63 | 0 | 9 | 0 | 0.0 | 8.1 | .0029 | +34 ▲ |
| drupal | 26 | 94 | 11 | 9 | 66 | 8 | 4 | 1 | 1.1 | 5.7 | .0024 | +26 ▲ |
| gitlab | 0 | 76 | 3 | 17 | 47 | 9 | 4 | 2 | 2.6 | 5.3 | .0029 | 0 |
| github | 3 | 20 | 1 | 10 | 9 | 0 | 0 | 0 | 0.0 | 7.3 | .0044 | +1 ▲ |
| docker | 0 | 9 | 0 | 6 | 3 | 0 | 0 | 0 | 0.0 | 7.2 | .0016 | 0 |
| wordpress | 0 | 5 | 1 | 3 | 1 | 0 | 2 | 2 | 40.0 | 8.8 | .3120 | -1 ▼ |
| kubernetes | 0 | 1 | 0 | 0 | 0 | 1 | 0 | 0 | 0.0 | 2.4 | .0035 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| oracle | 0 | 2269 | 484 | 1170 | 519 | 96 | 28 | 4 | 0.2 | 7.8 | .0034 | 0 |
| adobe | 170 | 776 | 57 | 343 | 366 | 10 | 20 | 4 | 0.5 | 7.5 | .0023 | +162 ▲ |
| ibm | 121 | 740 | 161 | 341 | 229 | 9 | 6 | 1 | 0.1 | 7.5 | .0029 | +89 ▲ |
| progress | 2 | 63 | 14 | 39 | 10 | 0 | 6 | 1 | 1.6 | 8.1 | .0035 | -9 ▼ |
| solarwinds | 0 | 23 | 17 | 3 | 3 | 0 | 10 | 4 | 17.4 | 9.1 | .0058 | 0 |
| veeam | 0 | 19 | 6 | 10 | 3 | 0 | 1 | 0 | 0.0 | 8.6 | .0032 | -10 ▼ |
| zohocorp | 5 | 15 | 3 | 6 | 6 | 0 | 0 | 0 | 0.0 | 8.4 | .0099 | +5 ▲ |
| atlassian | 0 | 6 | 1 | 5 | 0 | 0 | 13 | 0 | 0.0 | 8.1 | .0032 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| d-link | 8 | 53 | 16 | 19 | 10 | 8 | 3 | 0 | 0.0 | 8.5 | .0157 | -7 ▼ |
| siemens | 14 | 51 | 6 | 33 | 9 | 3 | 0 | 0 | 0.0 | 7.3 | .0018 | +14 ▲ |
| rockwell automation | 18 | 43 | 5 | 32 | 6 | 0 | 0 | 0 | 0.0 | 8.6 | .0029 | +18 ▲ |
| synology | 0 | 27 | 3 | 6 | 15 | 3 | 0 | 0 | 0.0 | 5.6 | .0025 | -1 ▼ |
| schneider electric | 7 | 16 | 1 | 11 | 4 | 0 | 0 | 0 | 0.0 | 8.5 | .0039 | +7 ▲ |
| hikvision | 3 | 9 | 0 | 5 | 4 | 0 | 0 | 0 | 0.0 | 7.1 | .0040 | +3 ▲ |
| hitachi energy | 4 | 7 | 0 | 3 | 4 | 0 | 0 | 0 | 0.0 | 6.9 | .0017 | +4 ▲ |
| abb | 0 | 7 | 0 | 4 | 3 | 0 | 0 | 0 | 0.0 | 7.2 | .0018 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| dell | 134 | 305 | 25 | 140 | 122 | 18 | 2 | 1 | 0.3 | 7.2 | .0020 | +126 ▲ |
| sourcecodester | 26 | 195 | 0 | 0 | 114 | 81 | 0 | 0 | 0.0 | 5.5 | .0028 | +14 ▲ |
| spring | 0 | 170 | 12 | 60 | 83 | 15 | 0 | 0 | 0.0 | 6.5 | .0024 | 0 |
| nvidia | 32 | 166 | 20 | 117 | 29 | 0 | 0 | 0 | 0.0 | 7.8 | .0029 | +16 ▲ |
| mongodb | 49 | 147 | 4 | 86 | 53 | 4 | 1 | 0 | 0.0 | 7.1 | .0026 | +49 ▲ |
| itsourcecode | 24 | 140 | 0 | 0 | 36 | 104 | 0 | 0 | 0.0 | 2.1 | .0026 | +16 ▲ |
| elastic | 42 | 129 | 1 | 27 | 98 | 3 | 1 | 0 | 0.0 | 6.5 | .0028 | +42 ▲ |
| splunk | 0 | 128 | 6 | 47 | 70 | 5 | 1 | 1 | 0.8 | 6.5 | .0025 | 0 |
| CVE | EPSS | %ile | CVSS |
|---|---|---|---|
| CVE-2026-60004 | .8678 | 99.7 | 9.8 |
| CVE-2026-73570 | .3238 | 98.2 | 8.9 |
| CVE-2026-64849 | .1641 | 96.8 | 9.3 |
| CVE-2026-83549 | .0851 | 94.7 | 7.8 |
| CVE-2026-19681 | .0780 | 94.3 | 9.4 |
| CVE-2026-82329 | .0767 | 94.2 | 9.8 |
| CVE-2026-19490 | .0600 | 92.9 | 9.3 |
| CVE-2026-19478 | .0581 | 92.7 | 9.1 |
| CVE-2026-19586 | .0570 | 92.6 | 9.3 |
| CVE-2026-79756 | .0515 | 91.9 | 8.7 |
| CVE | CVSS | EPSS | Note |
|---|---|---|---|
| CVE-2026-83548 | 10.0 | .0467 | KEV |
| CVE-2026-75650 | 10.0 | .0215 | KEV |
| CVE-2026-19188 | 10.0 | .0193 | |
| CVE-2026-86152 | 10.0 | .0186 | |
| CVE-2026-76195 | 10.0 | .0159 | |
| CVE-2026-76197 | 10.0 | .0159 | |
| CVE-2026-69836 | 10.0 | .0155 | |
| CVE-2026-82004 | 10.0 | .0144 | |
| CVE-2026-73299 | 10.0 | .0121 | |
| CVE-2026-73678 | 10.0 | .0114 |
| Vendor | CVEs |
|---|---|
| linux | 1455 |
| microsoft | 1017 |
| oracle | 890 |
| 713 | |
| ibm | 479 |
| adobe | 211 |
| dell | 198 |
| red hat | 191 |
| apache | 121 |
| splunk | 110 |
| Vendor | KEV |
|---|---|
| microsoft | 30 |
| cisco | 14 |
| apple | 8 |
| 8 | |
| fortinet | 7 |
| ivanti | 5 |
| adobe | 4 |
| berriai | 4 |
| oracle | 4 |
| solarwinds | 4 |
| Ecosystem | Advisories |
|---|---|
| Maven | 45 |
| Packagist | 38 |
| npm | 19 |
| PyPI | 15 |
| RubyGems | 2 |
| Go | 1 |
| NuGet | 1 |
| CVE | Vendor | Days |
|---|---|---|
| CVE-2026-72529 | TrueConf | 0 |
| CVE-2026-72530 | TrueConf | 0 |
| CVE-2026-75650 | Adobe | 0 |
| CVE-2026-83548 | SonicWall | 0 |
| CVE-2026-83549 | SonicWall | 0 |
| CVE-2026-85046 | 0 | |
| CVE-2026-87491 | 0 | |
| CVE-2026-64849 | mlflow | 1 |
| CVE-2026-86218 | N-able | 2 |
| CVE-2026-81578 | PaperCut | 3 |
| CVE | Vendor | Due | Days over |
|---|---|---|---|
| CVE-2021-27104 | n/a | 2021-11-17 | 1758 |
| CVE-2021-27102 | n/a | 2021-11-17 | 1758 |
| CVE-2021-27101 | n/a | 2021-11-17 | 1758 |
| CVE-2021-27103 | n/a | 2021-11-17 | 1758 |
| CVE-2021-21017 | Adobe | 2021-11-17 | 1758 |
| CVE-2021-28550 | Adobe | 2021-11-17 | 1758 |
| CVE-2021-42013 | Apache Software Foundation | 2021-11-17 | 1758 |
| CVE-2021-41773 | Apache Software Foundation | 2021-11-17 | 1758 |
| CVE-2021-30858 | Apple | 2021-11-17 | 1758 |
| CVE-2021-30860 | Apple | 2021-11-17 | 1758 |
ADDED TO KEV — CVE-2026-67277 (Mikrotik RouterOS). Remediation due September 13, 2026.
ADDED TO KEV — CVE-2026-86060 (Mikrotik RouterOS). Remediation due September 13, 2026.
EXPLOIT PUBLISHED — Google Chrome: 25 CVEs (CVE-2026-87441, CVE-2026-87445, CVE-2026-87447, CVE-2026-87475, CVE-2026-87482, CVE-2026-87483, CVE-2026-87484, CVE-2026-87486, CVE-2026-87496, CVE-2026-87497, CVE-2026-87501, CVE-2026-87503, CVE-2026-87505, CVE-2026-87513, CVE-2026-87515, CVE-2026-87528, CVE-2026-87532, CVE-2026-87533, CVE-2026-87535, CVE-2026-87540, CVE-2026-87577, CVE-2026-87586, CVE-2026-87596, CVE-2026-87599, CVE-2026-87615). Public exploit references added.
EXPLOIT PUBLISHED — axios: 14 CVEs (CVE-2025-62718, CVE-2026-25639, CVE-2026-42033, CVE-2026-42039, CVE-2026-42041, CVE-2026-42043, CVE-2026-42044, CVE-2026-44486, CVE-2026-44487, CVE-2026-44488, CVE-2026-44492, CVE-2026-44494, CVE-2026-44495, CVE-2026-44496). Public exploit references added.
EXPLOIT PUBLISHED — GNOME GLib: 5 CVEs (CVE-2026-58010, CVE-2026-58012, CVE-2026-58013, CVE-2026-58014, CVE-2026-58015). Public exploit references added.
EXPLOIT PUBLISHED — jsrsasign: 5 CVEs (CVE-2026-4598, CVE-2026-4599, CVE-2026-4600, CVE-2026-4601, CVE-2026-4602). Public exploit references added.
EXPLOIT PUBLISHED — XenForo: 5 CVEs (CVE-2026-73311, CVE-2026-73314, CVE-2026-73316, CVE-2026-73319, CVE-2026-73321). Public exploit references added.
EXPLOIT PUBLISHED — authlib: 3 CVEs (CVE-2026-27962, CVE-2026-28498, CVE-2026-28802). Public exploit references added.
EXPLOIT PUBLISHED — CVE-2022-41352. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2024-22373 (Grassroot DICOM). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2025-25249 (Fortinet FortiSwitchManager). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-20079 (Cisco Secure Firewall Management Center (FMC)). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-2332 (Eclipse Foundation Eclipse Jetty). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-24049 (pypa wheel). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-25896 (NaturalIntelligence fast-xml-parser). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-26278 (NaturalIntelligence fast-xml-parser). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-27606 (rollup). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-29063 (immutable-js). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-29074 (svgo). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-30922 (pyasn1). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-32286 (github.com/jackc/pgproto3/v2). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-32597 (jpadilla pyjwt). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-3833 (gnutls). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-42945 (F5 NGINX Plus). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45736 (websockets ws). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-48526 (jpadilla pyjwt). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-48779 (websockets ws). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-56101 (OpenBSD). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-5704 (Red Hat Enterprise Linux 10). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-61517 (Netis Systems NX10). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-67277 (Mikrotik RouterOS). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-6958 (Invicti Security Corp. Acunetix). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-80093 (Microsoft Windows 10 Version 1809). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-80113 (PassMark Software PerformanceTest). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-80118 (PassMark Software PerformanceTest). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-82533 (DeepSeek Harness). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-85639 (jofpin trape). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-85704 (ramon-victor freegpt-webui). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-86060 (Mikrotik RouterOS). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-86208 (SourceCodester Class and Exam Timetabling System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-86213 (Mstfakts College-Management-System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-86666 (aircheng-org iWebShop-5). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-86675 (itsourcecode Sales and Inventory System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-86776 (KeePass). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-87922 (Rizwan17 inventory-management-system). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-87924 (Rizwan17 inventory-management-system). Public exploit reference added.
DUE DATE PASSED — CVE-2015-3246. CISA remediation deadline was September 9, 2026; still in catalog.
DUE DATE PASSED — CVE-2015-5287. CISA remediation deadline was September 9, 2026; still in catalog.
DUE DATE PASSED — CVE-2021-23758 (AjaxPro.2). CISA remediation deadline was September 9, 2026; still in catalog.
DUE DATE PASSED — CVE-2022-0995 (kernel). CISA remediation deadline was September 9, 2026; still in catalog.
REJECTED — CVE-2026-73392 (highwarden Super Store Finder). Record withdrawn by the CNA.
RESCORED — Microsoft Windows 10 Version 1607: 5 CVEs (CVE-2026-69803, CVE-2026-69929, CVE-2026-69930, CVE-2026-70124, CVE-2026-78523). CVSS rescored — before/after on each CVE page.
RESCORED — CVE-2016-4117. CVSS 7.8 → 9.8 (NVD).
RESCORED — CVE-2020-14498 (HMS Industrial Networks AB eCatcher). CVSS 9.6 → 10 (NVD).
RESCORED — CVE-2024-14047 (Elastic Security). CVSS 7.2 → 7.1 (NVD).
RESCORED — CVE-2025-25249 (Fortinet FortiSwitchManager). CVSS 7.4 → 9.8 (NVD).
RESCORED — CVE-2026-16481 (Google MCP Toolbox for Databases (googleapis/mcp-toolbox)). CVSS 8.4 → 6 (NVD).
RESCORED — CVE-2026-18622 (Foxit Software Inc. Foxit PDF Editor). CVSS 4.7 → 5.5 (NVD).
RESCORED — CVE-2026-24301 (Microsoft Copilot Web). CVSS 8.8 → 7.5 (NVD).
RESCORED — CVE-2026-47878 (Spring Batch). CVSS 5.6 → 7.3 (NVD).
RESCORED — CVE-2026-47879 (Spring Cloud Gateway). CVSS 7.7 → 8.7 (NVD).
RESCORED — CVE-2026-73763 (Hewlett Packard Enterprise (HPE) AOS-CX). CVSS 7.1 → 8.8 (NVD).
RESCORED — CVE-2026-73778 (Hewlett Packard Enterprise (HPE) AOS-CX). CVSS 8.1 → 9.8 (NVD).
RESCORED — CVE-2026-75003 (Roundcube Webmail). CVSS 5.8 → 9.8 (NVD).
RESCORED — CVE-2026-81994 (Adobe Acrobat). CVSS 8.2 → 6.3 (NVD).
RESCORED — CVE-2026-87534 (Google Chrome). CVSS 6.5 → 9.8 (NVD).
RESCORED — CVE-2026-87641 (Google Chrome). CVSS 5.3 → 4.2 (NVD).
RESCORED — CVE-2026-87925 (Rizwan17 inventory-management-system). CVSS 6.9 → 5.5 (NVD).
RESCORED — CVE-2026-87926 (Rizwan17 inventory-management-system). CVSS 5.3 → 2.1 (NVD).
RESCORED — CVE-2026-87931 (Behavioral Technology Group Pavlok Behavioral Conditioning Wearable). CVSS 9.4 → 8.6 (NVD).
RESCORED — CVE-2026-9736 (IBM Netezza Software). CVSS 5.3 → 4.3 (NVD).
RESCORED — CVE-2026-9744 (IBM Netezza Software). CVSS 5.3 → 5.9 (NVD).
PATCH SHIPPED — CVE-2026-19654 (Red Hat Enterprise Linux 10.0 Extended Update Support). Fixed in Red Hat Enterprise Linux 10.0 Extended Update Support 0:8.2412.0-1.el10_0.1.
PATCH SHIPPED — CVE-2026-85150 (Red Hat Enterprise Linux 10). Fixed in Red Hat Enterprise Linux 10 0:1.26.7-2.el10_2.2.
ENRICHED — Google Chrome: 6 CVEs (CVE-2026-87544, CVE-2026-87546, CVE-2026-87551, CVE-2026-87571, CVE-2026-87575, CVE-2026-87656). Received CVSS/CPE analysis.
How to read these box scores · glossary
384 CVEs published. 25 box scores, 359 table rows — nothing truncated.
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV L L N L P N L N 1.1 .0082 55.2 —
AFFECTED Product Versions Fixed Checkov by Prisma Cloud 3.2.0 – 3.2.502
TIMELINE Nov 3 Reserved by CNA Sep 10 Published (CNA: palo_alto)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0077 53.4 —
AFFECTED Product Versions Fixed Drag and Drop File Upload for Elementor Forms unspecified —
TIMELINE Jul 30 Reserved by CNA Sep 10 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N U H N N 4.9 .0075 52.7 —
AFFECTED Product Versions Fixed WP BackItUp Community Edition unspecified —
TIMELINE Jul 30 Reserved by CNA Sep 10 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H N N 7.5 .0068 50.2 —
AFFECTED Product Versions Fixed Direct Download for WooCommerce unspecified —
TIMELINE Jul 7 Reserved by CNA Sep 10 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N C H H L 9.9 .0060 46.8 —
AFFECTED Product Versions Fixed Velociraptor unspecified —
TIMELINE Aug 11 Reserved by CNA Sep 10 Published (CNA: rapid7)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N L N L 6.9 .0054 43.6 —
AFFECTED Product Versions Fixed T4 Page Builder extension for Joomla 1.0.0-2.2.0 – —
TIMELINE Aug 24 Reserved by CNA Sep 10 Published (CNA: Joomla)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0049 40.6 —
AFFECTED Product Versions Fixed SP Property extension for Joomla 1.0.0-4.1.3 – —
TIMELINE Aug 22 Reserved by CNA Sep 10 Published (CNA: Joomla)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV L L P H N H H H 4.0 .0045 37.7 —
AFFECTED Product Versions Fixed Cloud NGFW unspecified All PAN-OS 12.2.0 – 12.2.3 Prisma Access unspecified All
TIMELINE Nov 3 Reserved by CNA Sep 10 Published (CNA: palo_alto)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N H H H 9.5 .0044 36.9 —
AFFECTED Product Versions Fixed Container suse/kiosk/tigervnc-x11vnc:1.14-63.8 ? – — Container suse/kiosk/xorg:21.1-83.7 ? – — Image SLES15-SP6-SAP ? – — Image SLES15-SP6-SAP-Azure ? – — Image SLES15-SP6-SAP-Azure-3P ? – — Image SLES15-SP6-SAP-BYOS ? – — Image SLES15-SP6-SAP-BYOS-Azure ? – — Image SLES15-SP6-SAP-BYOS-EC2 ? – — Image SLES15-SP6-SAP-BYOS-GCE ? – — Image SLES15-SP6-SAP-EC2 ? – — + 96 more
TIMELINE May 8 Reserved by CNA Sep 10 Published (CNA: suse)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N A H H L 8.6 .0044 36.8 —
AFFECTED Product Versions Fixed SP Property extension for Joomla 1.0.0-4.1.3 – —
TIMELINE Aug 24 Reserved by CNA Sep 10 Published (CNA: Joomla)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N H N H H N 8.5 .0043 36.7 —
AFFECTED Product Versions Fixed BurgerEditor 3.2.0 through 3.4.0 – — BurgerEditor 2.28.0 through 2.30.0 – —
TIMELINE Sep 1 Reserved by CNA Sep 10 Published (CNA: jpcert)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N L N L 6.9 .0043 36.1 —
AFFECTED Product Versions Fixed SP Property extension for Joomla 1.0.0-4.1.3 – —
TIMELINE Aug 24 Reserved by CNA Sep 10 Published (CNA: Joomla)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N H N N N H H H 9.2 .0041 34.6 —
AFFECTED Product Versions Fixed Container suse/kiosk/tigervnc-x11vnc:1.14-63.8 ? – — Container suse/kiosk/xorg:21.1-83.7 ? – — Image SLES15-SP6-SAP ? – — Image SLES15-SP6-SAP-Azure ? – — Image SLES15-SP6-SAP-Azure-3P ? – — Image SLES15-SP6-SAP-BYOS ? – — Image SLES15-SP6-SAP-BYOS-Azure ? – — Image SLES15-SP6-SAP-BYOS-EC2 ? – — Image SLES15-SP6-SAP-BYOS-GCE ? – — Image SLES15-SP6-SAP-EC2 ? – — + 96 more
TIMELINE Jul 6 Reserved by CNA Sep 10 Published (CNA: suse)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N U H H H 7.2 .0037 30.5 —
AFFECTED Product Versions Fixed GV-LPC2011/LPC2211 1.13 – 1.14
TIMELINE Sep 10 Reserved by CNA Sep 10 Published (CNA: GV)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N U H H H 7.2 .0037 30.5 —
AFFECTED Product Versions Fixed GV-LPC2011/LPC2211 1.13 – 1.14
TIMELINE Sep 10 Reserved by CNA Sep 10 Published (CNA: GV)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N U H H H 7.2 .0037 30.5 —
AFFECTED Product Versions Fixed GV-LPC2011/LPC2211 1.13 – 1.14
TIMELINE Sep 10 Reserved by CNA Sep 10 Published (CNA: GV)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N U H H H 7.2 .0037 30.5 —
AFFECTED Product Versions Fixed GV-LPCLPC2011/2211 1.13 – 1.14
TIMELINE Sep 10 Reserved by CNA Sep 10 Published (CNA: GV)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H N N 6.5 .0037 29.9 —
AFFECTED Product Versions Fixed GV-LPC2011/LPC2211 1.13 – 1.14
TIMELINE Sep 10 Reserved by CNA Sep 10 Published (CNA: GV)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0034 27.4 —
AFFECTED Product Versions Fixed GV-LPCLPC2011/2211 1.13 – 1.14
TIMELINE Sep 10 Reserved by CNA Sep 10 Published (CNA: GV)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N H N N N H H H 7.2 .0034 26.8 —
AFFECTED Product Versions Fixed Cloud NGFW All – — PAN-OS 12.2.0 – 12.2.3 Prisma Access 11.2.0 – 12.1.0
TIMELINE Nov 3 Reserved by CNA Sep 10 Published (CNA: palo_alto)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N C L L N 6.4 .0033 26.4 —
AFFECTED Product Versions Fixed Redux Framework unspecified —
TIMELINE Apr 2 Reserved by CNA Sep 10 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N N H 7.5 .0033 25.6 —
AFFECTED Product Versions Fixed GV-LPC2011/LPC2211 1.14 20260903 – 1.14 20260909
TIMELINE Sep 10 Reserved by CNA Sep 10 Published (CNA: GV)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N N L L 6.9 .0032 25.3 —
AFFECTED Product Versions Fixed SP Property extension for Joomla 1.0.0-4.1.3 – —
TIMELINE Aug 22 Reserved by CNA Sep 10 Published (CNA: Joomla)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0032 24.8 —
AFFECTED Product Versions Fixed Access Control System unspecified —
TIMELINE Apr 27 Reserved by CNA Sep 10 Published (CNA: TR-CERT)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N N H 7.5 .0031 24.0 —
AFFECTED Product Versions Fixed GV-LPC2011/LPC2211 1.13 – 1.14
TIMELINE Sep 10 Reserved by CNA Sep 10 Published (CNA: GV)
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-87803 | 7.1 | 23.3 | Countly | countly-server | CWE-863 | An authorization bypass vulnerability exists in the Countly Server DBViewer d… |
| CVE-2026-87933 | 5.5 | 23.2 | DaveGamble | cJSON | CWE-119 | DaveGamble cJSON cJSON_Utils.c cJSONUtils_MergePatch use after free |
| CVE-2026-88272 | 7.2 | 22.5 | GeoVision Inc. | GV-LPC2011/LPC2211 | CWE-78 | GV-LPC2011/LPC2211 - Stored Administrator-Username Command Injection |
| CVE-2026-88282 | 7.2 | 22.5 | GeoVision Inc. | GV-LPCLPC2011/2211 | CWE-78 | GV-LPCLPC2011/2211 - Stored FTP-Username Command Injection |
| CVE-2026-13745 | 9.2 | 22.4 | Google Cloud | Gemini CLI | CWE-20 | Arbitrary Code Execution in Gemini CLI via Symlinked Environment Variables |
| CVE-2026-84062 | 5.3 | 22.1 | D-ZERO CO.,LTD. | BurgerEditor | CWE-639 | BurgerEditor 3.0.0 through 3.4.0 contains an issue with authorization bypass … |
| CVE-2026-67593 | 9.1 | 21.2 | Apache Software Foundation | Apache Artemis | CWE-306 | Apache Artemis, Apache Artemis, Apache ActiveMQ Artemis, Apache ActiveMQ Arte… |
| CVE-2026-82925 | 8.1 | 21.2 | Unknown | Site Reviews | CWE-502 | Site Reviews 7.2.2 - 8.2.2 - Unauthenticated PHP Object Injection via Form Si… |
| CVE-2026-49363 | 7.5 | 21.0 | Apache Software Foundation | Apache Artemis | CWE-306 | Apache Artemis, Apache ActiveMQ Artemis: Pre-Authentication Information Discl… |
| CVE-2026-57967 | 9.8 | 20.2 | Apache Software Foundation | Apache Artemis | CWE-306 | Apache Artemis, Apache ActiveMQ Artemis: Missing authentication on CORE proto… |
| CVE-2026-88285 | 9.4 | 19.6 | GeoVision Inc. | GV-LPC2011/LPC2211 | CWE-306 | GV-LPC2011/LPC2211 - Unauthenticated PTZ Control Service |
| CVE-2026-88278 | 9.8 | 18.9 | GeoVision Inc. | GV-LPCLPC2011/2211 | CWE-294 | GV-LPCLPC2011/2211 - ONVIF WS-Security PasswordDigest Replay |
| CVE-2026-0308 | 1.1 | 18.4 | Palo Alto Networks | Cloud NGFW | CWE-79 | PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface |
| CVE-2026-88286 | 7.5 | 18.0 | GeoVision Inc. | GV-LPC2011/LPC2211 | CWE-400 | GV-LPC2011/LPC2211 - PTZ Connection-State Accept-Loop Denial of Service |
| CVE-2026-88290 | 7.5 | 18.0 | GeoVision Inc. | GV-LPC2011/LPC2211 | CWE-400 | GV-LPC2011/LPC2211 - Unauthenticated VLSVR Slowloris and Memory Resource Exha… |
| CVE-2026-8323 | 9.3 | 16.9 | Armiya Information Technologies Ltd. Co. | Access Control System | CWE-601 | Open Redirect in Armiya Information Technologies' Access Control System |
| CVE-2026-42804 | 7.6 | 16.9 | Bosch Sensortec | BHI360_SensorAPI (C-Library) | CWE-121 | A stack-based buffer overflow vulnerability exists in the Bosch Sensortec BHI… |
| CVE-2026-88279 | 4.9 | 16.6 | GeoVision Inc. | GV-LPC2011/LPC2211 | CWE-121 | GV-LPC2011/LPC2211 - ONVIF CreateUsers Username/Password Stack-Frame Overflow… |
| CVE-2026-88280 | 4.9 | 16.6 | GeoVision Inc. | GV-LPC2011/LPC2211 | CWE-121 | GV-LPC2011/LPC2211 - ONVIF SetUser Stack-Frame Overflow Denial of Service |
| CVE-2026-88281 | 4.9 | 16.6 | GeoVision Inc. | GV-LPC2011/LPC2211 | CWE-121 | GV-LPC2011/LPC2211 - ONVIF DeleteUsers Repeated-Element Stack Overflow Denial… |
| CVE-2026-88283 | 4.9 | 16.6 | GeoVision Inc. | GV-LPC2011/LPC2211 | CWE-121 | GV-LPC2011/LPC2211 - ONVIF CreateUsers Repeated-Element Stack-Frame Overflow … |
| CVE-2026-88284 | 4.9 | 16.6 | GeoVision Inc. | GV-LPC2011/LPC2211 - | CWE-121 | GV-LPC2011/LPC2211 - ONVIF SetUser Repeated-Element Stack-Frame Overflow Deni… |
| CVE-2026-15889 | 6.4 | 16.3 | arubadev | Aruba HiSpeed Cache | CWE-79 | Aruba HiSpeed Cache <= 3.0.14 - Authenticated (Contributor+) Stored Cross-Sit… |
| CVE-2026-88763 | 5.9 | 16.3 | Red Hat | Red Hat Service Interconnect 2 | CWE-674 | Skupper-router: skupper-router: unbounded recursion in amqp field parser lead… |
| CVE-2026-4657 | 6.4 | 15.2 | sunny_johal | Easy Google Fonts | CWE-79 | Easy Google Fonts <= 2.0.4 - Authenticated (Author+) Stored Cross-Site Script… |
| CVE-2026-88268 | 6.5 | 14.8 | GeoVision Inc. | GV-LPCLPC2011/2211 | CWE-121 | GV-LPC2011/LPC2211 - SSVR Fragment-Reassembly Stack Overflow Denial of Service |
| CVE-2026-76562 | 7.2 | 14.6 | otwthemes | Sidebar Manager Light | CWE-79 | Sidebar Manager Light <= 1.18 - Unauthenticated Stored Cross-Site Scripting v… |
| CVE-2026-14873 | 8.0 | 14.5 | rubenw | Bulk Password Reset | CWE-862 | Bulk Password Reset <= 1.3.3 - Authenticated (Subscriber+) Arbitrary Password… |
| CVE-2026-88271 | 8.8 | 14.0 | GeoVision Inc. | GV-LPC2011/LPC2211 | CWE-862 | GV-LPC2011/LPC2211 - SSVR Guest Configuration Overwrite and Administrative Cr… |
| CVE-2026-49362 | 7.5 | 13.3 | Apache Software Foundation | Apache Artemis | CWE-306 | Apache Artemis, Apache ActiveMQ Artemis: Missing Authentication in CORE Proto… |
| CVE-2026-0304 | 4.8 | 12.2 | Palo Alto Networks | Cortex XDR Broker VM | CWE-88 | Cortex XDR Broker VM: Privilege Escalation Vulnerability |
| CVE-2026-85645 | 6.1 | 11.9 | 10web | Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder | CWE-79 | Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder <= 1.1… |
| CVE-2026-88770 | 6.5 | 11.6 | Red Hat | Red Hat Build of Keycloak | CWE-307 | Keycloak-services: keycloak-services: device authorization grant issues token… |
| CVE-2026-18594 | 4.3 | 11.6 | vsourz1td | Advanced Contact form 7 DB | CWE-862 | Advanced Contact form 7 DB <= 2.1.3 - Missing Authorization to Authenticated … |
| CVE-2026-84939 | 9.1 | 11.5 | Apache Software Foundation | Apache FreeMarker | CWE-23 | Apache FreeMarker, Apache FreeMarker: A malformed locale may be exploitable f… |
| CVE-2026-88270 | 6.5 | 11.2 | GeoVision Inc. | GV-LPC2011/LPC2211 | CWE-862 | GV-LPC2011/LPC2211 - SSVR Guest Firmware-Mode Pre-Validation Service Teardown… |
| CVE-2026-87870 | 6.4 | 10.8 | Saturday Drive | Ninja Forms - Scheduled Exports | CWE-79 | Ninja Forms - Scheduled Exports <= 3.0.3 - Authenticated (Subscriber+) Stored… |
| CVE-2026-15823 | 4.3 | 10.9 | builderall | Builderall for WordPress | CWE-862 | Builderall for WordPress <= 3.0.2 - Missing Authorization to Authenticated (S… |
| CVE-2026-78083 | 7.1 | 10.6 | joomshaper.com | SP Property extension for Joomla | CWE-352 | Joomla Extension - joomshaper.com - Missing CSRF Token Verification in Proper… |
| CVE-2026-42807 | 8.0 | 10.4 | Bosch Sensortec | COINES_SDK | CWE-122 | A heap-based buffer overflow vulnerability in the PC bridge protocol decoder … |
| CVE-2026-88269 | 6.5 | 10.0 | GeoVision Inc. | GV-LPC2011/LPC2211 | CWE-862 | GV-LPC2011/LPC2211 - SSVR Guest Configuration and Credential Disclosure |
| CVE-2026-15820 | 6.4 | 10.0 | builderall | Builderall for WordPress | CWE-79 | Builderall for WordPress <= 3.0.2 - Authenticated (Contributor+) Stored Cross… |
| CVE-2026-82582 | 5.3 | 10.0 | SHIRASAGI Project | SHIRASAGI | CWE-639 | An authorization bypass vulnerability exists in SHIRASAGI through a user-cont… |
| CVE-2026-15796 | 6.4 | 9.1 | builderall | Builderall for WordPress | CWE-79 | Builderall for WordPress <= 3.0.2 - Authenticated (Contributor+) Stored Cross… |
| CVE-2026-42808 | 6.8 | 8.8 | Bosch Sensortec | COINES_SDK | CWE-120 | An issue was discovered in Bosch Sensortec COINES_SDK versions 2.0 through 2.… |
| CVE-2026-19584 | 7.7 | 8.7 | Rapid7 | Velociraptor | CWE-94 | Velociraptor VQL injection during notebook restore from backup |
| CVE-2026-80351 | 9.8 | 7.9 | Apache Software Foundation | Apache Camel K | CWE-95 | Apache Camel K: Camel K Tenant repositories reach Maven execution inside oper… |
| CVE-2026-57822 | 6.5 | 6.7 | Apache Software Foundation | Apache Artemis | CWE-502 | Apache Artemis, Apache ActiveMQ Artemis: Message-based management parameter d… |
| CVE-2026-80352 | 9.8 | 5.9 | Apache Software Foundation | Apache Camel K | CWE-94 | Apache Camel K: Camel K Master trait serviceAccountName YAML injection lets C… |
| CVE-2026-49364 | 9.1 | 5.8 | Apache Software Foundation | Apache Artemis | CWE-306 | Apache Artemis, Apache Artemis, Apache ActiveMQ Artemis, Apache ActiveMQ Arte… |
| CVE-2026-75880 | 6.5 | 5.4 | Apache Software Foundation | Apache Artemis | CWE-1333 | Apache Artemis, Apache ActiveMQ Artemis: Message selector wildcard handling c… |
| CVE-2026-82079 | 7.0 | 5.2 | Nintendo | Nintendo Switch | CWE-121 | Potential Leakage of Nintendo Switch System Information Through a Proximity-B… |
| CVE-2026-42806 | 4.3 | 4.8 | Bosch Sensortec | BME690 SensorAPI (C) | CWE-125 | An out-of-bounds read vulnerability was discovered in the Bosch BME690 Sensor… |
| CVE-2026-81635 | 5.1 | 4.6 | SHIRASAGI Project | SHIRASAGI | CWE-79 | A cross-site scripting vulnerability exists in SHIRASAGI, which may allow an … |
| CVE-2026-19439 | 7.5 | 4.1 | Unknown | Ultimate Gift Cards for WooCommerce | CWE-200 | Ultimate Gift Cards for WooCommerce 3.0.3 - 3.2.9 - Unauthenticated Gift Card… |
| CVE-2026-42805 | 8.4 | 3.8 | Bosch Sensortec | BHI385 SensorAPI (C Library) | CWE-121 | A stack-based buffer overflow vulnerability exists in the Bosch Sensortec BHI… |
| CVE-2026-80354 | 8.1 | 3.7 | Apache Software Foundation | Apache Camel K | CWE-639 | Apache Camel K: Camel K Builder trait mavenProfiles ValueSources resolve tena… |
| CVE-2026-78361 | 9.1 | 3.4 | Unknown | zipMoney(Zip Co) Payments Plugin for WooCommerce | CWE-862 | zipMoney(Zip Co) Payments Plugin for WooCommerce < 2.4.0 - Unauthenticated Ar… |
| CVE-2026-19436 | 7.5 | 3.4 | Unknown | Ultimate Gift Cards for WooCommerce | CWE-284 | Ultimate Gift Cards For WooCommerce < 3.2.10 - Unauthenticated Gift Card Valu… |
| CVE-2026-77770 | 10.0 | 3.1 | Unknown | miniOrange 2FA | CWE-862 | miniOrange 2FA (Free & Pro) - Unauthenticated Arbitrary Option Deletion via O… |
| CVE-2026-77771 | 7.5 | 3.1 | Unknown | miniOrange 2FA | CWE-287 | miniOrange 2FA (Free & Pro) - 2FA Bypass via Session-Scoped OTP Lockout |
| CVE-2026-81431 | 7.2 | 3.1 | Unknown | Registration Form for WooCommerce | CWE-269 | Registration Form for WooCommerce 1.1.0 - 1.1.2 - Contributor+ Privilege Esca… |
| CVE-2026-19840 | 6.5 | 3.1 | Unknown | Notiqoo | CWE-863 | Notiqoo < 1.4.14 - Contributor+ Arbitrary Option Update via Multiple AJAX Act… |
| CVE-2026-0303 | 2.4 | 2.8 | Palo Alto Networks | Checkov by Prisma Cloud | CWE-829 | Checkov by Prisma Cloud: Code Execution via Auto-Loaded Configuration File |
| CVE-2026-88265 | 5.6 | 2.0 | Red Hat | Red Hat Hardened Images | CWE-59 | Crun: crun: /dev/null symlink follow during stdio reopen allows host bind-mou… |
| CVE-2026-88264 | 5.6 | 1.9 | Red Hat | Red Hat Hardened Images | CWE-59 | Crun: crun: /dev/console symlink follow allows root-owned file creation outsi… |
| CVE-2026-0307 | 5.9 | 1.2 | Palo Alto Networks | GlobalProtect App | CWE-426 | GlobalProtect App: Local Privilege Escalation Vulnerabilities |
| CVE-2026-0306 | 5.8 | 1.2 | Palo Alto Networks | Prisma Access Agent | CWE-693 | Prisma Access Agent: EndPoint DLP Bypass Vulnerability on Windows |
| CVE-2026-84042 | 7.8 | 0.9 | Red Hat | Red Hat Hardened Images | CWE-269 | Crun: crun: rootful krun with passt executes container payload as host root |
| CVE-2026-0305 | 4.3 | 0.9 | Palo Alto Networks | Prisma Access Agent | CWE-200 | Prisma Access Agent: Information Disclosure Vulnerability on Linux |
| CVE-2026-68487 | 9.9 | — | WebPros | Plesk | CWE-36 | Path traversal in Plesk's Backup Manager causes arbitrary file write as root … |
| CVE-2026-68488 | 9.9 | — | WebPros | Plesk | CWE-367 | A Time-of-check Time-of-use (TOCTOU) race condition leading to insecure symli… |
| CVE-2026-89094 | 9.9 | — | Forgejo | Forgejo | CWE-1336 | Forgejo before 16.0.4 allows remote code execution via a crafted template rep… |
| CVE-2026-9163 | 9.8 | — | GIS Informatics | GisLab Laboratory Management System | CWE-89 | SQLi in GIS Informatics' GisLab Laboratory Management System |
| CVE-2026-52098 | 9.8 | — | n/a | n/a | CWE-94 | An issue in Flowise 3.1.2 allows a remote attacker to execute arbitrary code … |
| CVE-2026-78573 | 9.8 | — | IBM | ContextForge MCP Gateway | CWE-1392 | IBM ContextForge MCP Gateway is affected by use of default credentials |
| CVE-2026-79724 | 9.8 | — | IBM | Langflow OSS | CWE-78 | Langflow is vulnerable to arbitrary code execution due to multiple incomplete… |
| CVE-2026-81204 | 9.8 | — | IBM | Langflow OSS | CWE-94 | Langflow is vulnerable to arbitrary code execution due to multiple incomplete… |
| CVE-2026-81467 | 9.8 | — | Dell | ThinOS 10 | CWE-78 | Dell ThinOS 10, versions prior to 2605_10. 2616, contains an Improper Neutral… |
| CVE-2026-85025 | 9.8 | — | IBM | Langflow OSS | CWE-863 | Langflow is vulnerable to arbitrary code execution due to multiple incomplete… |
| CVE-2026-88018 | 9.8 | — | rclone | rclone | CWE-287 | rclone serve s3: --auth-proxy without --auth-key authenticates nobody - full … |
| CVE-2026-81048 | 9.6 | — | Dell | ThinOS 10 | CWE-77 | Dell ThinOS 10, versions prior to 2605_10.2616, contain an Improper Neutraliz… |
| CVE-2026-82100 | 9.6 | — | IBM | DataStage on Cloud Pak for Data | CWE-22 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-82107 | 9.6 | — | IBM | DataStage on Cloud Pak for Data | CWE-287 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-65639 | 9.5 | — | WebPros | ConfigServer Security & Firewall | CWE-78 | OS command injection in the advanced-rule parser of ConfigServer Security & F… |
| CVE-2026-88062 | 9.5 | — | diegosouzapw | OmniRoute | CWE-94 | OmniRoute ACP Custom-Agent Remote Code Execution (RCE) |
| CVE-2026-81046 | 9.4 | — | Dell | ThinOS 10 | CWE-284 | Dell ThinOS 10, versions prior to 2605_10.2616, contain a Protection Mechanis… |
| CVE-2026-75940 | 9.3 | — | Lenovo | Health Application | CWE-798 | A vulnerability was reported in Lenovo Health Android Application, distribute… |
| CVE-2026-81800 | 9.3 | — | Par avisverifies | Verified Reviews (Avis Vérifiés) | CWE-89 | WordPress Verified Reviews (Avis Vérifiés) plugin <= 2.4.6 - SQL Injection vu… |
| CVE-2026-88860 | 9.3 | — | Cap-go | capgo.app | CWE-863 | Capgo Authorization Bypass via Stale Channel Permission Overrides |
| CVE-2026-88864 | 9.3 | — | Cap-go | capgo.app | CWE-284 | Capgo SSO Provider Authentication Bypass via PostgREST Direct Write |
| CVE-2026-88866 | 9.3 | — | WWBN | AVideo | CWE-79 | WWBN AVideo LoginControl Stored XSS via User-Agent Header |
| CVE-2026-88867 | 9.3 | — | WWBN | AVideo | CWE-79 | WWBN AVideo Stored XSS via Category Name and Icon Class |
| CVE-2026-88868 | 9.3 | — | WWBN | AVideo | CWE-79 | AVideo LiveLinks Stored XSS via title and description fields |
| CVE-2026-88869 | 9.3 | — | WWBN | AVideo | CWE-79 | AVideo AD_Server Stored XSS via log.php label parameter |
| CVE-2026-88877 | 9.3 | — | traefik | traefik | CWE-639 | Traefik v3.7.0 Authentication Bypass via from-to-www-redirect |
| CVE-2026-88899 | 9.3 | — | knowns-dev | knowns | CWE-73 | knowns before 0.31.0 External Control of Agent Working Directory via x-openco… |
| CVE-2026-89042 | 9.3 | — | krakenjs | passport-saml-encrypted | CWE-347 | passport-saml-encrypted through 0.1.13 Authentication Bypass via Missing Sign… |
| CVE-2026-65638 | 9.2 | — | WebPros | ConfigServer Security & Firewall | CWE-78 | Improper escaping of a request URL in ConfigServer Security & Firewall allows… |
| CVE-2026-88880 | 9.2 | — | renovatebot | renovate | CWE-601 | Renovate before 44.11.3 Credential Exfiltration via Link Header |
| CVE-2026-88881 | 9.2 | — | renovatebot | renovate | CWE-601 | Renovate before 44.11.3 Credential Exfiltration via Link Header |
| CVE-2026-88882 | 9.2 | — | renovatebot | renovate | CWE-601 | Renovate before 44.11.2 Credential Exfiltration via Link Header |
| CVE-2026-88887 | 9.2 | — | renovatebot | renovate | CWE-601 | Renovate before 44.11.2 Credential Exfiltration via Link Header |
| CVE-2026-19646 | 9.1 | — | IBM | Common Licensing | CWE-1149 | Multiple vulnerabilities affect IBM License Key Server Administration and Rep… |
| CVE-2026-45764 | 9.1 | — | OISF | suricata | CWE-843 | Suricata http2: protocol-change type confusion can lead to denial of service |
| CVE-2026-80424 | 9.1 | — | IBM | DataStage on Cloud Pak for Data | CWE-22 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-81468 | 9.1 | — | Dell | ThinOS 10 | CWE-78 | Dell ThinOS 10, versions prior to 2605_10. 2616, contains an Improper Neutral… |
| CVE-2026-88007 | 9.1 | — | traefik | traefik | CWE-287 | Traefik HTTP/3 Backend NTLM Connection Reuse |
| CVE-2026-88044 | 9.1 | — | rclone | rclone | CWE-863 | rclone: RC per-server auth-proxy bypass |
| CVE-2026-89043 | 9.1 | — | krakenjs | passport-saml-encrypted | CWE-347 | passport-saml-encrypted through 0.1.13 XML Signature Wrapping via Assertion P… |
| CVE-2026-89086 | 9.1 | — | OCaml | jose | CWE-347 | In the jose package before 0.11.0 for OCaml, library calls to validate an RSA… |
| CVE-2026-75624 | 8.8 | — | IBM | App Connect Enterprise | CWE-863 | IBM App Connect Enterprise is vulnerable to privilege escalation and Denial o… |
| CVE-2026-75777 | 8.8 | — | IBM | Aspera Enterprise WebApps | CWE-269 | Multiple vulnerabilities in IBM Aspera Enterprise Webapps |
| CVE-2026-76059 | 8.8 | — | IBM | Langflow OSS | CWE-693 | Langflow is vulnerable to arbitrary code execution due to multiple incomplete… |
| CVE-2026-78569 | 8.8 | — | IBM | Langflow OSS | CWE-78 | Langflow is vulnerable to arbitrary code execution due to multiple incomplete… |
| CVE-2026-78571 | 8.8 | — | IBM | Langflow OSS | CWE-94 | Langflow is vulnerable to arbitrary code execution due to multiple incomplete… |
| CVE-2026-78575 | 8.8 | — | IBM | Langflow OSS | CWE-78 | Langflow is vulnerable to arbitrary code execution due to multiple incomplete… |
| CVE-2026-79742 | 8.8 | — | IBM | Langflow OSS | CWE-94 | Langflow is vulnerable to arbitrary code execution due to multiple incomplete… |
| CVE-2026-81211 | 8.8 | — | IBM | Langflow OSS | CWE-862 | Langflow is vulnerable to arbitrary code execution due to multiple incomplete… |
| CVE-2026-81550 | 8.8 | — | IBM | DataStage on Cloud Pak for Data | CWE-78 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-81551 | 8.8 | — | IBM | DataStage on Cloud Pak for Data | CWE-22 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-81554 | 8.8 | — | IBM | DataStage on Cloud Pak for Data | CWE-22 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-81940 | 8.8 | — | IBM | Langflow OSS | CWE-94 | Langflow is vulnerable to arbitrary code execution due to multiple incomplete… |
| CVE-2026-81941 | 8.8 | — | IBM | Langflow OSS | CWE-284 | Langflow is vulnerable to arbitrary code execution due to multiple incomplete… |
| CVE-2026-82092 | 8.8 | — | IBM | DataStage on Cloud Pak for Data | CWE-36 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-82095 | 8.8 | — | IBM | DataStage on Cloud Pak for Data | CWE-78 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-82097 | 8.8 | — | IBM | DataStage on Cloud Pak for Data | CWE-918 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-82098 | 8.8 | — | IBM | DataStage on Cloud Pak for Data | CWE-78 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-82099 | 8.8 | — | IBM | DataStage on Cloud Pak for Data | CWE-78 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-84889 | 8.8 | — | IBM | Langflow OSS | CWE-22 | A path traversal vulnerability in file handling components could allow an aut… |
| CVE-2026-85228 | 8.8 | — | Amazon | Deep Java Library | CWE-190 | Integer overflow in tensor buffer validation in Deep Java Library |
| CVE-2026-88009 | 8.8 | — | traefik | traefik | CWE-444 | Traefik: Rootless HTTP/1 request-target routes as "/" but is forwarded verbat… |
| CVE-2026-89046 | 8.8 | — | luben | zstd-jni | CWE-125 | zstd-jni 1.5.5-6 through 1.5.7-13 Out-of-Bounds Read via Negative Offset |
| CVE-2026-16174 | 8.7 | — | Netskope | Endpoint DLP | CWE-190 | Netskope Endpoint DLP Driver Integer Overflow Leading to Kernel Pool Overflow |
| CVE-2026-64836 | 8.7 | — | ICEcoder | ICEcoder | CWE-22 | ICEcoder through 8.1 Path Traversal via Ineffective File::check() Confinement |
| CVE-2026-64837 | 8.7 | — | ICEcoder | ICEcoder | CWE-78 | ICEcoder through 8.1 OS Command Injection via lib/properties.php |
| CVE-2026-64838 | 8.7 | — | ICEcoder | ICEcoder | CWE-22 | ICEcoder through 8.1 Path Traversal via oldFileName Parameter |
| CVE-2026-73693 | 8.7 | — | FileRun | FileRun | CWE-78 | FileRun < 2026.3.0 OS Command Injection via PhotoProofSheet Handler |
| CVE-2026-75584 | 8.7 | — | nasa-jpl | ION-DTN | CWE-617 | ION-DTN < 4.2.1-a.1 Denial of Service via canonicalizePayloadBlock() Assertion |
| CVE-2026-79987 | 8.7 | — | craftcms | cms | CWE-470 | Low-privilege RCE through element-search eager loading |
| CVE-2026-87962 | 8.7 | — | tdunning | t-digest | CWE-1284 | t-digest 3.1 through 3.3 Denial of Service via Unvalidated Length Fields in M… |
| CVE-2026-88861 | 8.7 | — | Cap-go | capgo.app | CWE-288 | Capgo AAL1 Session MFA Bypass via Direct RBAC Authorization |
| CVE-2026-88862 | 8.7 | — | Cap-go | capgo.app | CWE-863 | Capgo API Key Manager Authentication Bypass via x-limited-key-id |
| CVE-2026-88874 | 8.7 | — | WWBN | AVideo | CWE-200 | AVideo through c3edcc274c389816d434acadac07ee78eaf330c1 Authentication Bypass |
| CVE-2026-88876 | 8.7 | — | WWBN | AVideo | CWE-200 | AVideo PlayerSkins seo.php Missing Authorization Password-Protected VOD |
| CVE-2026-88893 | 8.7 | — | Openpanel-dev | openpanel | CWE-200 | OpenPanel Unauthenticated Share Lookup Information Disclosure |
| CVE-2026-88939 | 8.7 | — | knowns-dev | knowns | CWE-863 | knowns through 0.33.0 Authorization Bypass via project.set Bootstrap Exemption |
| CVE-2026-88959 | 8.7 | — | anchorcms | Anchor CMS | CWE-862 | Anchor CMS through 0.12.7 Privilege Escalation via Missing Authorization on A… |
| CVE-2026-4129 | 8.6 | — | NI | SystemLink | CWE-862 | Improper Access Controls in NI SystemLink |
| CVE-2026-73694 | 8.6 | — | FileRun | FileRun | CWE-78 | FileRun < 2026.3.0 OS Command Injection via escapeshellcmd() No-Op Redefinition |
| CVE-2026-73698 | 8.6 | — | FileRun | FileRun | CWE-89 | FileRun < 2026.3.0 Authenticated SQL Injection via Groups Add Action |
| CVE-2026-73699 | 8.6 | — | FileRun | FileRun | CWE-502 | FileRun < 2026.3.0 PHP Object Injection via Perms::getPerms() |
| CVE-2026-81213 | 8.6 | — | IBM | Langflow OSS | CWE-918 | Langflow is vulnerable to server-side request forgery due to missing egress v… |
| CVE-2026-81789 | 8.6 | — | Maarten B | Advanced Product Fields Extended for WooCommerce | CWE-22 | WordPress Advanced Product Fields Extended for WooCommerce plugin <= 3.1.6 - … |
| CVE-2026-85217 | 8.6 | — | Autodesk | Fusion | CWE-15 | Man-in-the-Middle (MITM) Vulnerability in Autodesk Fusion Desktop |
| CVE-2026-88047 | 8.6 | — | tesseract-ocr | tesseract | CWE-121 | Tesseract: ReadNormProtos stack buffer overflow |
| CVE-2026-88048 | 8.6 | — | tesseract-ocr | tesseract | CWE-125 | Tesseract: Heap out-of-bounds write/read in FullyConnected::Forward via layer… |
| CVE-2026-88049 | 8.6 | — | tesseract-ocr | tesseract | CWE-787 | Tesseract: Heap out-of-bounds write in LSTM::Forward via na_/gate-matrix dime… |
| CVE-2026-88051 | 8.6 | — | tesseract-ocr | tesseract | CWE-787 | Tesseract: Heap out-of-bounds write in GenericVector<T>::read due to independ… |
| CVE-2026-88053 | 8.6 | — | tesseract-ocr | tesseract | CWE-787 | Tesseract: Heap out-of-bounds write in Classify::ReadIntTemplates via unvalid… |
| CVE-2026-88056 | 8.6 | — | angular | angular | CWE-918 | Angular: SSRF and Cross-Origin Credential Disclosure via URL Resolution Discr… |
| CVE-2026-88058 | 8.6 | — | angular | angular | CWE-79 | Angular: SSR XSS via Unescaped Processing Instruction (<?...?>) Nodes in Fall… |
| CVE-2026-88060 | 8.6 | — | angular | angular | CWE-79 | Angular: SSR XSS via Unescaped <template> Content Across DocumentFragment Bou… |
| CVE-2026-88863 | 8.6 | — | Cap-go | capgo.app | CWE-269 | capgo.app through 12.207.1 Privilege Escalation via invite_new_user_to_org |
| CVE-2026-88865 | 8.6 | — | WWBN | AVideo | CWE-639 | AVideo Missing Authorization via getRestream.json.php |
| CVE-2026-88895 | 8.6 | — | usmannasir | cyberpanel | CWE-287 | CyberPanel before 3.0.5 Authentication Bypass via API |
| CVE-2026-88937 | 8.6 | — | knowns-dev | knowns | CWE-22 | knowns through 0.33.0 Path Traversal via Template Engine |
| CVE-2026-11813 | 8.5 | — | Lenovo | FileZ Client | CWE-276 | A potential improper permissions vulnerability was reported in the Lenovo Fil… |
| CVE-2026-63427 | 8.5 | — | Lenovo | Software Fix | CWE-290 | An authentication bypass vulnerability was discovered in Lenovo Software Fix … |
| CVE-2026-80378 | 8.5 | — | IBM | DataStage on Cloud Pak for Data | CWE-285 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-80436 | 8.5 | — | IBM | DataStage on Cloud Pak for Data | CWE-285 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-81207 | 8.5 | — | IBM | DataStage on Cloud Pak for Data | CWE-918 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-81540 | 8.5 | — | IBM | DataStage on Cloud Pak for Data | CWE-22 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-88886 | 8.5 | — | renovatebot | renovate | CWE-78 | Renovate before 44.14.7 Command Injection via gradle-wrapper |
| CVE-2026-88889 | 8.5 | — | renovatebot | renovate | CWE-78 | Renovate before 44.14.7 Command Injection via distributionType |
| CVE-2026-89049 | 8.5 | — | AWS | Amazon SSM Agent | CWE-918 | Server-side request forgery in the Session Manager port forwarding functional… |
| CVE-2026-4130 | 8.4 | — | NI | SystemLink | CWE-312 | Storage of Sensitive Information in Cleartext in NI SystemLink |
| CVE-2026-18994 | 8.4 | — | Lenovo | File Manager Application | CWE-926 | A potential improper authorization vulnerability was reported in the Lenovo F… |
| CVE-2026-19136 | 8.4 | — | Lenovo | Tianxi AI Agent PC Application | CWE-78 | A potential command injection vulnerability was reported in the Tianxi AI Age… |
| CVE-2026-88022 | 8.4 | — | MongoDB | Laravel MongoDB (PHP) | CWE-943 | Unauthorized document disclosure and deletion via query-operator injection in… |
| CVE-2026-88890 | 8.4 | — | Openpanel-dev | openpanel | CWE-89 | OpenPanel SQL Injection via unvalidated profile filter column identifier |
| CVE-2026-87090 | 8.3 | — | HashiCorp | Consul | CWE-863 | Consul vulnerable to an authorization bypass in the catalog node-write path |
| CVE-2026-88883 | 8.3 | — | renovatebot | renovate | CWE-532 | Renovate before 44.14.4 TLS Private Key Log Sanitisation |
| CVE-2026-88032 | 8.2 | — | MongoDB | Java Driver | CWE-416 | Application denial of service via cancellation race in reactive client-side e… |
| CVE-2026-88897 | 8.2 | — | flextype | flextype | CWE-598 | Flextype CMS through 1.0.0-alpha.3 API Token Exposure via Query String |
| CVE-2026-89054 | 8.2 | — | The OpenNMS Group | Horizon | CWE-862 | OpenNMS missing authorization on /api/v2 PATCH endpoints allows unauthenticat… |
| CVE-2026-81268 | 8.1 | — | IBM | Langflow OSS | CWE-613 | Langflow is vulnerable to authentication bypass and insufficient session expi… |
| CVE-2026-81784 | 8.1 | — | Marcin | Wise Chat | CWE-502 | WordPress Wise Chat plugin <= 3.4 - PHP Object Injection vulnerability |
| CVE-2026-81801 | 8.1 | — | UDX Usability Dynamics | WP-Stateless | CWE-862 | WordPress WP-Stateless plugin <= 4.4.1 - Settings Change vulnerability |
| CVE-2026-81805 | 8.1 | — | SiteSkite | SiteSkite | CWE-266 | WordPress SiteSkite plugin <= 2.1.5 - Privilege Escalation vulnerability |
| CVE-2026-87958 | 8.1 | — | IBM | Db2 | CWE-269 | IBM® Db2® is vulnerable to a denial of service where a specific functionality… |
| CVE-2026-2310 | 7.8 | — | IBM | webMethods Integration Server | CWE-91 | IBM webMethods Integration Server is vulnerable to an XML external entity inj… |
| CVE-2026-88052 | 7.8 | — | tesseract-ocr | tesseract | CWE-129 | Tesseract: Heap out-of-bounds write in UNICHARSET::load_via_fgets via count/i… |
| CVE-2026-17176 | 7.7 | — | TP-Link Systems Inc. | Deco BE11000 V2 | CWE-78 | OS command injection Vulnerability in Deco BE11000 |
| CVE-2026-81210 | 7.7 | — | IBM | DataStage on Cloud Pak for Data | CWE-639 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-87993 | 7.7 | — | HashiCorp | Tooling | CWE-532 | Consul-template vulnerable to an information disclosure issue in error handling |
| CVE-2026-6285 | 7.5 | — | Ankaref Innovation and Technology Inc. | LIBRID/LIBREF | CWE-640 | Improper Authentication in Ankaref's LIBRID/LIBREF |
| CVE-2026-9166 | 7.5 | — | GIS Informatics | GisLab Laboratory Management System | CWE-22 | LFI in GIS Informatics' GisLab Laboratory Management System |
| CVE-2026-45747 | 7.5 | — | OISF | suricata | CWE-476 | Suricata lua/tls: null dereference in TlsGetCertInfo |
| CVE-2026-45759 | 7.5 | — | OISF | suricata | CWE-400 | Suricata http1: quadratic Content-Disposition processing can lead to denial o… |
| CVE-2026-45762 | 7.5 | — | OISF | suricata | CWE-843 | Suricata defrag: missing address-family check can lead to remote crash |
| CVE-2026-45765 | 7.5 | — | OISF | suricata | CWE-400 | Suricata dnp3: unbounded reassembly can lead to resource exhaustion |
| CVE-2026-45766 | 7.5 | — | OISF | suricata | CWE-400 | Suricata nfs: unbounded stateful structures can lead to resource exhaustion |
| CVE-2026-45768 | 7.5 | — | OISF | suricata | CWE-400 | Suricata ldap: unbounded responses per transaction can lead to resource exhau… |
| CVE-2026-45769 | 7.5 | — | OISF | suricata | CWE-400 | ikev2: unbounded client transform storage can lead to resource exhaustion |
| CVE-2026-45770 | 7.5 | — | OISF | suricata | CWE-693 | Suricata lua: excessive flow variable registration can bypass sandbox |
| CVE-2026-46387 | 7.5 | — | OISF | suricata | CWE-409 | Suricata http2: decompression bomb can cause denial of service in Suricata |
| CVE-2026-77807 | 7.5 | — | acyba | AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress | CWE-22 | AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution … |
| CVE-2026-81265 | 7.5 | — | IBM | Langflow OSS | CWE-918 | Langflow is vulnerable to server-side request forgery due to missing egress v… |
| CVE-2026-81786 | 7.5 | — | VillaTheme | Thank You Page Customizer for WooCommerce | CWE-862 | WordPress Thank You Page Customizer for WooCommerce plugin <= 1.2.2 - Broken … |
| CVE-2026-81794 | 7.5 | — | mlfactory | Shirt Product Designer for WooCommerce | CWE-862 | WordPress Shirt Product Designer for WooCommerce plugin 1.0.4 - Broken Access… |
| CVE-2026-81799 | 7.5 | — | WP Swings | Return Refund and Exchange For WooCommerce | CWE-862 | WordPress Return Refund and Exchange For WooCommerce plugin <= 4.6.4 - Broken… |
| CVE-2026-81803 | 7.5 | — | Ateeq Rafeeq | RepairBuddy | CWE-94 | WordPress RepairBuddy plugin <= 4.1224 - Remote Code Execution (RCE) vulnerab… |
| CVE-2026-81804 | 7.5 | — | Zain Hassan | ZHBackup – Backup, Restore & Migration | CWE-201 | WordPress ZHBackup – Backup, Restore & Migration plugin <= 2.4.2 - Sensitive … |
| CVE-2026-84821 | 7.5 | — | Epsiloncool | WP Fast Total Search | CWE-862 | WordPress WP Fast Total Search plugin <= 1.82.284 - Broken Access Control vul… |
| CVE-2026-86093 | 7.5 | — | IBM | Db2 | CWE-121 | IBM® Db2® federated server could allow an attacker with the ability to contro… |
| CVE-2026-88045 | 7.5 | — | rclone | rclone | CWE-789 | rclone: S3 multipart declared-length memory exhaustion |
| CVE-2026-80434 | 7.4 | — | IBM | DataStage on Cloud Pak for Data | CWE-639 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-81796 | 7.3 | — | WP Travel | WP Travel | CWE-288 | WordPress WP Travel plugin <= 12.0.3 - Broken Authentication vulnerability |
| CVE-2026-88017 | 7.3 | — | rclone | rclone | CWE-488 | rclone: FTP cross-session auth-proxy backend confusion |
| CVE-2026-88885 | 7.3 | — | renovatebot | renovate | CWE-78 | Renovate before 44.14.7 Command Injection via depName |
| CVE-2026-88888 | 7.3 | — | renovatebot | renovate | CWE-78 | Renovate before 44.14.7 Command Injection via Mix organization |
| CVE-2026-89087 | 7.3 | — | OCaml | cstruct | CWE-573 | The cstruct package before 6.3.0 for OCaml mishandles indexes. |
| CVE-2026-88891 | 7.2 | — | Openpanel-dev | openpanel | CWE-269 | OpenPanel Read-Only Access Level Enforcement Bypass via Mutations |
| CVE-2026-80380 | 7.1 | — | IBM | DataStage on Cloud Pak for Data | CWE-352 | DataStage on Cloud Pak for Data has several vulnerabilities due to open sourc… |
| CVE-2026-81783 | 7.1 | — | mailmunch | MailMunch – Grow your Email List | CWE-288 | WordPress MailMunch – Grow your Email List plugin <= 3.2.5 - Broken Authentic… |
| CVE-2026-81795 | 7.1 | — | Denis Botić | Page Visits Counter – Lite | CWE-79 | WordPress Page Visits Counter – Lite plugin <= 1.2.3 - Cross Site Scripting (… |
| CVE-2026-84816 | 7.1 | — | RealMag777 | WPCS | CWE-79 | WordPress WPCS plugin <= 1.3.2 - Cross Site Scripting (XSS) vulnerability |
| CVE-2026-84819 | 7.1 | — | Greg Winiarski | WPAdverts | CWE-79 | WordPress WPAdverts plugin <= 2.3.3 - Cross Site Scripting (XSS) vulnerability |
| CVE-2026-85545 | 7.1 | — | Hikvision | HikCentral Access Control | CWE-284 | There is an Vulnerability in some HikCentral Access Control versions. Authent… |
| CVE-2026-87961 | 7.1 | — | schreibfaul1 | ESP32-audioI2S | CWE-125 | ESP32-audioI2S 3.4.4 through 4.0.0 Heap-based Out-of-Bounds Read via Shadowed… |
| CVE-2026-88016 | 7.1 | — | rclone | rclone | CWE-59 | rclone: Directory metadata (chmod/chown/chtimes) applied through a planted sy… |
| CVE-2026-88021 | 7.1 | — | HashiCorp | Consul | CWE-185 | Consul vulnerable to an authorization bypass in the Connect service mesh |
| CVE-2026-88026 | 7.1 | — | MongoDB | C# Driver | CWE-943 | Regular expression injection via unescaped characters in LINQ query translati… |
| CVE-2026-88027 | 7.1 | — | MongoDB | Laravel MongoDB (PHP) | CWE-943 | Mass deletion and overwrite of embedded documents via query-operator injectio… |
| CVE-2026-88028 | 7.1 | — | MongoDB | Laravel MongoDB (PHP) | CWE-943 | Unauthorized document disclosure via query-operator injection in polymorphic … |
| CVE-2026-88870 | 7.1 | — | WWBN | AVideo | CWE-352 | WWBN AVideo LoginControl PGP Key CSRF via GET Request |
| CVE-2026-88872 | 7.1 | — | WWBN | AVideo | CWE-352 | AVideo CustomizeUser setPassword.json.php CSRF |
| CVE-2026-88873 | 7.1 | — | WWBN | AVideo | CWE-352 | WWBN AVideo Cross-Site Request Forgery via logArchive.json.php |
| CVE-2026-88898 | 7.1 | — | AppFlowy-IO | AppFlowy-Cloud | CWE-862 | AppFlowy-Cloud 0.7.2 through 0.9.64 Missing Workspace Authorization on Bulk P… |
| CVE-2026-88915 | 7.1 | — | MISP | MISP | CWE-862 | MISP Event Template Instantiation Bypasses Sharing Group and Tagging Authoriz… |
| CVE-2026-88938 | 7.1 | — | knowns-dev | knowns | CWE-22 | knowns through 0.33.0 Path Traversal via code.find MCP tool |
| CVE-2026-89011 | 7.1 | — | isomorphic-git | isomorphic-git | CWE-1321 | isomorphic-git < 1.42.0 Prototype Pollution via getRemoteInfo |
| CVE-2026-15419 | 7.0 | — | Silicon Labs | silabser.sys driver | CWE-121 | CP210x Driver Memory Corruption results in Arbitrary Code Execution |
| CVE-2026-88004 | 7.0 | — | traefik | traefik | CWE-436 | Traefik entrypoint header-name sanitization bypassed via request trailers |
| CVE-2026-88008 | 7.0 | — | traefik | traefik | CWE-444 | Traefik: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response… |
| CVE-2026-88924 | 7.0 | — | Red Hat | Red Hat Enterprise Linux 10 | CWE-367 | Gvfs: gvfs-admin socket ownership race permits local root |
| CVE-2026-15417 | 6.9 | — | Silicon Labs | silabser.sys driver | CWE-369 | CP210x Denial of Service |
| CVE-2026-17038 | 6.9 | — | drEryk | drEryk Gabinet | CWE-798 | Use of Hard-coded Credentials in drEryk Gabinet |
| CVE-2026-78085 | 6.9 | — | joomshaper.com | SP Property extension for Joomla | CWE-22 | Joomla Extension - joomshaper.com - Path Traversal in Gallery Image Managemen… |
| CVE-2026-84941 | 6.9 | — | TP-Link Systems Inc. | Omada Software Controller (Windows) | CWE-611 | Omada Controller XML External Entity (XXE) Injection in SAML IdP Metadata Par… |
| CVE-2026-88050 | 6.9 | — | tesseract-ocr | tesseract | CWE-787 | Tesseract: Out-of-bounds write in UnicharCompress via unvalidated recoder cod… |
| CVE-2026-88054 | 6.9 | — | tesseract-ocr | tesseract | CWE-125 | Tesseract: Denial of service via empty-stack dereference in Plumbing/Series a… |
| CVE-2026-88878 | 6.9 | — | traefik | traefik | CWE-770 | Traefik v2.8.2 through v3.6 HTTP/3 Timeout Bypass |
| CVE-2026-88884 | 6.9 | — | renovatebot | renovate | CWE-863 | Renovate before 44.3.1 Authentication Bypass via Digest Updates |
| CVE-2026-88896 | 6.9 | — | espocrm | espocrm | CWE-918 | EspoCRM before 10.0.4 SSRF via IPv6 Transition Address Bypass |
| CVE-2026-88940 | 6.9 | — | knowns-dev | knowns | CWE-22 | knowns through 0.33.0 Arbitrary Directory Enumeration via workspace browse en… |
| CVE-2026-89044 | 6.9 | — | netty | netty | CWE-444 | Netty 4.1.133.Final through 4.1.137.Final and 4.2.13.Final through 4.2.17.Fin… |
| CVE-2026-52097 | 6.8 | — | n/a | n/a | CWE-94 | An issue in AppFlowy 0.11.8 allows a remote attacker to execute arbitrary cod… |
| CVE-2026-81052 | 6.8 | — | Dell | ThinOS 10 | CWE-494 | Dell ThinOS 10, versions prior to 2605_10.2616, contain a Download of Code Wi… |
| CVE-2026-9176 | 6.7 | — | IBM | WebSphere Application Server | CWE-94 | IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected … |
| CVE-2026-81051 | 6.6 | — | Dell | ThinOS 10 | CWE-1328 | Dell ThinOS 10, versions prior to 2605_10.2616, contain a Security Version Nu… |
| CVE-2026-9225 | 6.5 | — | IBM | Langflow OSS | CWE-639 | Langflow is vulnerable to unauthorized file system access due to path travers… |
| CVE-2026-9336 | 6.5 | — | IBM | WebSphere Application Server | CWE-306 | IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected … |
| CVE-2026-54054 | 6.5 | — | transmute-app | transmute | CWE-918 | Transmute has full-read SSRF in URL file import (POST /api/files/url) — no ho… |
| CVE-2026-66632 | 6.5 | — | Elliot Sowers/ RelyWP | Simple Cloudflare Turnstile | CWE-94 | WordPress Simple Cloudflare Turnstile plugin <= 1.42.1 - Content Injection vu… |
| CVE-2026-78536 | 6.5 | — | robokassa | Robokassa payment gateway for Woocommerce | CWE-862 | WordPress Robokassa payment gateway for Woocommerce plugin <= 1.8.9 - Broken … |
| CVE-2026-79725 | 6.5 | — | IBM | Langflow OSS | CWE-284 | Langflow is vulnerable to unauthorized file system access due to path travers… |
| CVE-2026-81275 | 6.5 | — | Youzify | Youzify | CWE-22 | WordPress Youzify plugin <= 1.3.7 - Arbitrary File Download vulnerability |
| CVE-2026-81782 | 6.5 | — | Fahad Mahmood | WP Docs | CWE-79 | WordPress WP Docs plugin <= 2.3.1 - Cross Site Scripting (XSS) vulnerability |
| CVE-2026-81785 | 6.5 | — | Themekraft | BuddyForms | CWE-862 | WordPress BuddyForms plugin <= 2.9.0 - Broken Access Control vulnerability |
| CVE-2026-81787 | 6.5 | — | IDX Broker | IMPress for IDX Broker | CWE-288 | WordPress IMPress for IDX Broker plugin <= 3.3.0 - Broken Authentication vuln… |
| CVE-2026-81791 | 6.5 | — | Ashan Perera | EventON | CWE-79 | WordPress EventON plugin <= 2.5.7 - Cross Site Scripting (XSS) vulnerability |
| CVE-2026-81793 | 6.5 | — | Dimitri Grassi | Salon booking system | CWE-862 | WordPress Salon booking system plugin <= 10.31.5 - Broken Access Control vuln… |
| CVE-2026-84828 | 6.5 | — | Red Hat | Red Hat Enterprise Linux 10 | CWE-732 | Pcs: pcs: non-root haclient users can read arbitrary files via pcs host auth … |
| CVE-2026-85310 | 6.5 | — | Adrian Tobey | Groundhogg | CWE-35 | WordPress Groundhogg plugin <= 4.7.1 - Path Traversal vulnerability |
| CVE-2026-87106 | 6.5 | — | HashiCorp | Consul | CWE-400 | Consul vulnerable to a denial of service in the native RPC listener |
| CVE-2026-88005 | 6.5 | — | open-webui | open-webui | CWE-863 | Open WebUI: Users denied by the OAuth domain allowlist or role policy can sti… |
| CVE-2026-88006 | 6.5 | — | open-webui | open-webui | CWE-863 | Open WebUI: Users denied by the OAuth role policy can still sign in via token… |
| CVE-2026-89089 | 6.5 | — | The OpenNMS Group | Meridian | CWE-89 | OpenNMS SQL injection in shipped Asset Management JasperReports via the DATE_… |
| CVE-2026-9327 | 6.3 | — | IBM | WebSphere Application Server | CWE-269 | IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected … |
| CVE-2026-18121 | 6.3 | — | Concrete CMS | Concrete CMS | CWE-862 | Concrete CMS 9.5.2 and below is vulnerable to an authorization bypass (IDOR) … |
| CVE-2026-81788 | 6.3 | — | IDX Broker | IMPress for IDX Broker | CWE-862 | WordPress IMPress for IDX Broker plugin <= 3.3.0 - Broken Access Control vuln… |
| CVE-2026-81905 | 6.3 | — | Concrete CMS | Concrete CMS | CWE-863 | Concrete CMS below 9.5.3 does not enforce validation-hash type on redemption,… |
| CVE-2026-81906 | 6.3 | — | Concrete CMS | Concrete CMS | CWE-288 | [UNREVIEWED] OAuth Callback Login Bypasses Deactivated-Account Checks |
| CVE-2026-88014 | 6.3 | — | rclone | rclone | CWE-22 | rclone archive/zip: Zip Slip via unsanitized zip entry names lets a malicious… |
| CVE-2026-88859 | 6.3 | — | Red Hat | Red Hat Enterprise Linux 6 | CWE-84 | Evolution: evolution: javascript execution via spoofed vcard control bypasses… |
| CVE-2026-88023 | 6.1 | — | MongoDB | MongoDB PHP Library | CWE-943 | GridFS data disclosure and deletion via query-operator injection in file IDs … |
| CVE-2026-88024 | 6.1 | — | MongoDB | Rust Driver | CWE-943 | GridFS data disclosure and deletion via query-operator injection in file IDs … |
| CVE-2026-88025 | 6.1 | — | MongoDB | C# Driver | CWE-943 | GridFS data disclosure and deletion via query-operator injection in file IDs … |
| CVE-2026-88029 | 6.1 | — | MongoDB | Python Driver | CWE-943 | GridFS data disclosure and deletion via query-operator injection in file IDs … |
| CVE-2026-88030 | 6.1 | — | MongoDB | Ruby Driver | CWE-943 | GridFS data disclosure and deletion via query-operator injection in file IDs … |
| CVE-2026-88031 | 6.1 | — | MongoDB | Go Driver | CWE-943 | GridFS data deletion via query-operator injection in file IDs in the MongoDB … |
| CVE-2026-88033 | 6.1 | — | MongoDB | Java Driver | CWE-943 | GridFS data disclosure and deletion via query-operator injection in file IDs … |
| CVE-2026-88034 | 6.1 | — | MongoDB | C++ Driver | CWE-943 | GridFS data disclosure and deletion via query-operator injection in file IDs … |
| CVE-2026-88036 | 6.1 | — | MongoDB | C Driver | CWE-943 | GridFS data disclosure and deletion via query-operator injection in file IDs … |
| CVE-2026-16172 | 6.0 | — | Netskope | Endpoint DLP | CWE-125 | Netskope Endpoint DLP Service Out-of-Bounds Read Leading to Process Crash |
| CVE-2026-19596 | 5.9 | — | The OpenNMS Group | Meridian | CWE-611 | OpenNMS XML collector XXE allows arbitrary file read from the OpenNMS host |
| CVE-2026-45751 | 5.9 | — | OISF | suricata | CWE-416 | Suricata detect/transform: use-after-free in dotprefix transform |
| CVE-2026-45752 | 5.9 | — | OISF | suricata | CWE-416 | Suricata detect/transform: use-after-free in decompress transforms |
| CVE-2026-45763 | 5.9 | — | OISF | suricata | CWE-770 | Suricata lua: sandbox allocation limit not enforced for new allocations |
| CVE-2026-49837 | 5.9 | — | osrg | gobgp | CWE-125 | GoBGP: BGP OPEN capability parser may read capability values outside declared… |
| CVE-2026-49838 | 5.9 | — | osrg | gobgp | CWE-129 | GoBGP confederation validation panics on empty AS_PATH attribute |
| CVE-2026-68527 | 5.9 | — | Concrete CMS | Concrete CMS | CWE-639 | Concrete CMS 8.3.0 through 9.5.2 is vulnerable to an authorization bypass thr… |
| CVE-2026-88061 | 5.8 | — | santifer | career-ops | CWE-352 | career-ops: Local dashboard API accepted cross-origin and non-loopback reques… |
| CVE-2026-88035 | 5.7 | — | MongoDB | C Driver | CWE-190 | Heap buffer overflow via wrapped size check during SASL username canonicaliza… |
| CVE-2026-66674 | 5.6 | — | Elliot Sowers/ RelyWP | Simple Cloudflare Turnstile | CWE-290 | WordPress Simple Cloudflare Turnstile plugin <= 1.42.1 - Captcha Bypass vulne… |
| CVE-2026-88055 | 5.5 | — | Mintplex-Labs | anything-llm | CWE-79 | AnythingLLM: Stored XSS Due to Unescaped Server-Side HTML Concatenation in Me… |
| CVE-2026-12682 | 5.4 | — | Ankaref Innovation and Technology Inc. | LIBRID/LIBREF | CWE-79 | Stored XSS in Ankaref's LIBRID/LIBREF |
| CVE-2026-12683 | 5.4 | — | Ankaref Innovation and Technology Inc. | LIBRID/LIBREF | CWE-79 | Stored XSS Yönetim panel in Ankaref's LIBRID/LIBREF |
| CVE-2026-87107 | 5.4 | — | HashiCorp | Consul | CWE-863 | Consul vulnerable to an authorization bypass in the catalog deregistration path |
| CVE-2026-9161 | 5.3 | — | DernekPlus | Website Template | CWE-204 | User Enumeration in DernekPlus' Website Template |
| CVE-2026-9338 | 5.3 | — | IBM | WebSphere Application Server | CWE-400 | IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected … |
| CVE-2026-9667 | 5.3 | — | IBM | WebSphere Application Server | CWE-918 | IBM WebSphere Application Server prior to 9.0.5.29 and 8.5.5.31 are affected … |
| CVE-2026-15461 | 5.3 | — | zephyrproject | zephyr | CWE-843 | Type confusion in Zephyr HL78xx GNSS NMEA driver causes wild-pointer write fr… |
| CVE-2026-76653 | 5.3 | — | TP-Link Systems Inc. | TL-MR6400 v8 | CWE-126 | Missing Authentication in VPN Configuration Management in TP-Link TL-MR6400 a… |
| CVE-2026-84432 | 5.3 | — | Concrete CMS | Concrete CMS | CWE-352 | Concrete CMS 9 through 9.5.2 is vulnerable to CSRFin the Boards custom slot d… |
| CVE-2026-88011 | 5.3 | — | traefik | traefik | CWE-290 | Traefik: ForwardAuth identity spoofing via dot-form header alias |
| CVE-2026-88012 | 5.3 | — | traefik | traefik | CWE-770 | Traefik: respondingTimeouts.readTimeout is not applied to HTTP/3, leaving slo… |
| CVE-2026-88015 | 5.3 | — | rclone | rclone | CWE-190 | rclone local: crafted Range request against a translated symlink panics (DoS) |
| CVE-2026-88046 | 5.3 | — | rclone | rclone | CWE-22 | rclone: source object names can escape the configured root on upload |
| CVE-2026-88057 | 5.3 | — | angular | angular | CWE-79 | Angular: Sanitization bypass via directive host bindings on concrete host ele… |
| CVE-2026-88871 | 5.3 | — | WWBN | AVideo | CWE-352 | WWBN AVideo CustomizeUser setSubscribers CSRF via GET |
| CVE-2026-88875 | 5.3 | — | WWBN | AVideo | CWE-359 | AVideo Incomplete API Sanitization Information Disclosure |
| CVE-2026-88879 | 5.3 | — | traefik | traefik | CWE-290 | Traefik before v2.11.56 Identity Spoofing via Header Alias |
| CVE-2026-88892 | 5.3 | — | Openpanel-dev | openpanel | CWE-918 | OpenPanel SSRF via Unguarded Importer File URL Fetch |
| CVE-2026-88894 | 5.3 | — | grokability | snipe-it | CWE-863 | Snipe-IT before 8.7.2 Authorization Bypass via Predefined Kit Checkout |
| CVE-2026-85544 | 5.2 | — | Hikvision | DS-KV9503 | CWE-1310 | There is an Improper Encryption Configuration Vulnerability in some Hikvision… |
| CVE-2026-87912 | 5.1 | — | AWS | AWS Security Agent plugin | CWE-283 | Missing S3 bucket ownership verification in the AWS Security Agent plugin for… |
| CVE-2026-87913 | 5.1 | — | AWS | AWS Security Agent MCP server | CWE-283 | Missing S3 bucket ownership verification in the AWS Security Agent MCP server |
| CVE-2026-88921 | 5.1 | — | MISP | MISP | CWE-79 | MISP: Unescaped HTML Injection in PDF Report Element Rendering |
| CVE-2026-89045 | 5.1 | — | luben | zstd-jni | CWE-835 | zstd-jni 1.4.8-4 through 1.5.7-13 Denial of Service via Negative Length |
| CVE-2026-79723 | 5.0 | — | IBM | Langflow OSS | CWE-918 | Langflow is vulnerable to server-side request forgery due to missing egress v… |
| CVE-2026-76652 | 4.8 | — | TP-Link Systems Inc. | TL-MR6400 v8 | CWE-22 | Authenticated Directory Traversal Vulnerability in File Upload Functionality … |
| CVE-2026-88038 | 4.8 | — | cookies | cookies | CWE-74 | cookies vulnerable to Set-Cookie attribute injection via unvalidated domain a… |
| CVE-2026-3096 | 4.7 | — | WSO2 | WSO2 API Control Plane | CWE-20 | Reverse Tabnabbing via New Tab Navigation in Multiple WSO2 Products Allows Ph… |
| CVE-2026-49836 | 4.6 | — | psd-tools | psd-tools | CWE-22 | psd-tools: arbitrary file write via smart-object filename |
| CVE-2026-45767 | 4.4 | — | OISF | suricata | CWE-22 | Suricata datasets: save to absolute filename can be bypassed when combined wi… |
| CVE-2026-81049 | 4.4 | — | Dell | ThinOS 10 | CWE-353 | Dell ThinOS 10, versions prior to 2605_10.2616, contain a Missing Support for… |
| CVE-2026-85543 | 4.3 | — | Hikvision | Wi-Fi series camera | CWE-285 | Some Wi-Fi series camera products have insufficient permission validation on … |
| CVE-2026-86087 | 4.3 | — | IBM | Db2 | CWE-22 | IBM® Db2® could allow an authenticated user to send a specially crafted reque… |
| CVE-2026-88059 | 4.0 | — | angular | angular | CWE-200 | Angular: Information Leak via `HttpTransferCache` Bypass When Using `withRequ… |
| CVE-2026-88013 | 3.7 | — | rclone | rclone | CWE-200 | rclone: http backend forwards custom/auth headers to a different host on redi… |
| CVE-2026-45761 | 3.3 | — | OISF | suricata | CWE-122 | Suricata detect: case-insensitive frame handling can cause heap buffer overfl… |
| CVE-2026-15418 | 2.4 | — | Silicon Labs | silabser.sys driver | CWE-130 | CP210x Memory Leakage |
| CVE-2026-88790 | 0.9 | — | proma-ai | Proma | CWE-22 | proma-ai Proma File Preview Service file-preview-service.ts resolveTargetPath… |
| CVE-2022-26962 | await | — | n/a | n/a | — | Italtel NFV 11.1.2-20210318 allows Multiple Stored XSS under NP_BCCAS-RMCTRL-… |
| CVE-2025-57231 | await | — | n/a | n/a | — | Path Traversal in avatar attachments in Docmost v0.21.0 allows an unauthentic… |
| CVE-2026-36392 | await | — | n/a | n/a | — | FairSketch Rise CRM Version 3.9.6 is vulnerable to Cross Site Scripting (XSS)… |
| CVE-2026-38626 | await | — | n/a | n/a | — | Garlic-Hub v1.0.1 is vulnerable to SQL Injection in src/Modules/Items/Reposit… |
| CVE-2026-68006 | await | — | n/a | n/a | — | An issue in Puma v.5.0.0 and before v.8.0.3 allows an attacker to execute arb… |
| CVE-2026-71640 | await | — | n/a | n/a | — | An issue in ZJU-FAST-Lab EGO-Planner-v2 All versions up to commit 5c99a958804… |
| CVE-2026-71642 | await | — | n/a | n/a | — | An issue in ZJU-FAST-Lab EGO-Planner-v2 All versions up to commit 5c99a958804… |
| CVE-2026-71643 | await | — | n/a | n/a | — | An issue in ZJU-FAST-Lab EGO-Planner-v2 All versions up to commit 5c99a958804… |
| CVE-2026-71645 | await | — | n/a | n/a | — | An issue in Robotics-STAR-Lab (SYSU STAR Group) RACER Tested affected version… |
| CVE-2026-71647 | await | — | n/a | n/a | — | An issue in EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d56… |
| CVE-2026-79590 | await | — | n/a | n/a | — | A NULL pointer dereference vulnerability exists in the Prism parser component… |
| CVE-2026-79591 | await | — | n/a | n/a | — | A heap-buffer-overflow and use-after-free vulnerability exists in the xls_get… |
| CVE-2026-79592 | await | — | n/a | n/a | — | An out-of-bounds read vulnerability exists in the xls_dumpSummary() function … |
Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.
Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.
Day boundary. A day is a UTC calendar day. This page covers 2026-09-10 00:00:00–23:59:59 UTC. All times shown are UTC.
Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.
Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.
Machine-readable. This edition as JSON or CSV — the ranked results, transactions, and counts, for citation or ingestion. Frozen at publication; later changes appear as transactions on later editions.