AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N H N H H H 8.5 .0218 81.4 —
AFFECTED Product Versions Fixed ipTIME C200E 1.094 – —
TIMELINE Sep 14 Reserved by CNA Sep 15 Published (CNA: VulDB)
A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?
1426 CVEs published, led by Oracle Corporation (634).
1426 CVEs published September 15, 2026: 169 critical, 790 high, 274 medium, 60 low; 0 in the KEV catalog at press time; 0 with a public exploit reference; 133 awaiting enrichment. Elevated volume. 25 rendered as box scores below; 375 more in the results table on this page; the remaining 1026 on continuation pages.
| MTD | YTD | 2025 same span | 2025 full | |
|---|---|---|---|---|
| CVEs published | 7917 | 42837 | — | — |
| KEV catalog size | 1710 | |||
Publication counts reflect the record since May 20, 2026 (archive start); KEV figures are catalog-wide.
Prior-year comparisons begin when the archive covers a full year; archive begins May 20, 2026.
2667 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| linux | 631 | 4722 | 491 | 2230 | 712 | 1 | 12 | 3 | 0.1 | 7.8 | .0016 | -630 ▼ |
| microsoft | 981 | 2880 | 189 | 1983 | 692 | 16 | 289 | 30 | 1.0 | 7.8 | .0044 | +539 ▲ |
| 499 | 2665 | 323 | 1014 | 1157 | 122 | 79 | 8 | 0.3 | 7.5 | .0025 | +450 ▲ | |
| red hat | 92 | 718 | 43 | 297 | 340 | 38 | 2 | 0 | 0.0 | 6.6 | .0027 | -50 ▼ |
| apple | 245 | 562 | 60 | 125 | 228 | 7 | 88 | 8 | 1.4 | 6.5 | .0019 | +243 ▲ |
| freebsd | 0 | 48 | 2 | 36 | 7 | 3 | 0 | 0 | 0.0 | 7.8 | .0016 | 0 |
| canonical | 0 | 42 | 13 | 11 | 13 | 5 | 0 | 0 | 0.0 | 7.8 | .0021 | -11 ▼ |
| suse | 12 | 40 | 7 | 21 | 11 | 1 | 0 | 0 | 0.0 | 7.6 | .0037 | +7 ▲ |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cisco | 18 | 102 | 29 | 47 | 26 | 0 | 58 | 15 | 14.7 | 7.5 | .0041 | -13 ▼ |
| ubiquiti | 0 | 59 | 36 | 22 | 1 | 0 | 3 | 3 | 5.1 | 9.1 | .0049 | 0 |
| palo alto networks | 9 | 46 | 1 | 4 | 26 | 15 | 13 | 2 | 4.3 | 4.7 | .0022 | -3 ▼ |
| fortinet | 10 | 40 | 10 | 10 | 17 | 3 | 29 | 7 | 17.5 | 7.0 | .0038 | +3 ▲ |
| netgear | 2 | 34 | 0 | 0 | 27 | 7 | 0 | 0 | 0.0 | 4.3 | .0025 | -7 ▼ |
| f5 | 8 | 25 | 6 | 14 | 4 | 1 | 4 | 1 | 4.0 | 8.7 | .0047 | +8 ▲ |
| ivanti | 10 | 24 | 10 | 12 | 2 | 0 | 25 | 5 | 20.8 | 8.8 | .0146 | +7 ▲ |
| sonicwall | 5 | 19 | 7 | 8 | 4 | 0 | 19 | 4 | 21.1 | 8.3 | .0050 | -5 ▼ |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| apache | 71 | 581 | 134 | 242 | 191 | 13 | 33 | 2 | 0.3 | 7.5 | .0048 | -29 ▼ |
| mozilla | 113 | 300 | 80 | 100 | 63 | 0 | 9 | 0 | 0.0 | 8.8 | .0029 | +112 ▲ |
| drupal | 26 | 94 | 11 | 9 | 66 | 8 | 4 | 1 | 1.1 | 5.7 | .0024 | +26 ▲ |
| gitlab | 6 | 82 | 5 | 19 | 49 | 9 | 5 | 3 | 3.7 | 5.3 | .0029 | -7 ▼ |
| github | 3 | 20 | 1 | 10 | 9 | 0 | 0 | 0 | 0.0 | 7.3 | .0044 | -2 ▼ |
| docker | 3 | 12 | 1 | 8 | 3 | 0 | 0 | 0 | 0.0 | 8.4 | .0016 | +2 ▲ |
| wordpress | 0 | 5 | 1 | 3 | 1 | 0 | 2 | 2 | 40.0 | 8.8 | .3120 | -1 ▼ |
| kubernetes | 0 | 1 | 0 | 0 | 0 | 1 | 0 | 0 | 0.0 | 2.4 | .0035 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| oracle | 634 | 2903 | 581 | 1658 | 563 | 101 | 28 | 4 | 0.1 | 7.8 | .0034 | +634 ▲ |
| ibm | 207 | 826 | 166 | 373 | 271 | 11 | 6 | 1 | 0.1 | 7.5 | .0029 | +15 ▲ |
| adobe | 170 | 776 | 57 | 343 | 366 | 10 | 20 | 4 | 0.5 | 7.5 | .0023 | +110 ▲ |
| progress | 3 | 64 | 15 | 39 | 10 | 0 | 6 | 1 | 1.6 | 8.1 | .0035 | -13 ▼ |
| solarwinds | 0 | 23 | 17 | 3 | 3 | 0 | 10 | 4 | 17.4 | 9.1 | .0058 | 0 |
| veeam | 0 | 19 | 6 | 10 | 3 | 0 | 1 | 0 | 0.0 | 8.6 | .0032 | -10 ▼ |
| zohocorp | 5 | 15 | 3 | 6 | 6 | 0 | 0 | 0 | 0.0 | 8.4 | .0099 | +1 ▲ |
| atlassian | 3 | 9 | 1 | 8 | 0 | 0 | 13 | 0 | 0.0 | 7.6 | .0032 | +3 ▲ |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| d-link | 21 | 66 | 19 | 24 | 11 | 12 | 3 | 0 | 0.0 | 8.5 | .0154 | +5 ▲ |
| siemens | 14 | 51 | 6 | 33 | 9 | 3 | 0 | 0 | 0.0 | 7.3 | .0018 | -5 ▼ |
| rockwell automation | 18 | 43 | 5 | 32 | 6 | 0 | 0 | 0 | 0.0 | 8.6 | .0029 | +18 ▲ |
| synology | 0 | 27 | 3 | 6 | 15 | 3 | 0 | 0 | 0.0 | 5.6 | .0025 | -1 ▼ |
| schneider electric | 9 | 18 | 2 | 11 | 5 | 0 | 0 | 0 | 0.0 | 8.5 | .0040 | +9 ▲ |
| hikvision | 3 | 9 | 0 | 5 | 4 | 0 | 0 | 0 | 0.0 | 7.1 | .0036 | +3 ▲ |
| hitachi energy | 4 | 7 | 0 | 3 | 4 | 0 | 0 | 0 | 0.0 | 6.9 | .0017 | +4 ▲ |
| abb | 0 | 7 | 0 | 4 | 3 | 0 | 0 | 0 | 0.0 | 7.2 | .0018 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| dell | 142 | 313 | 27 | 145 | 123 | 18 | 2 | 1 | 0.3 | 7.2 | .0020 | +124 ▲ |
| sourcecodester | 44 | 213 | 0 | 0 | 125 | 88 | 0 | 0 | 0.0 | 5.5 | .0027 | +25 ▲ |
| spring | 0 | 170 | 12 | 60 | 83 | 15 | 0 | 0 | 0.0 | 6.5 | .0024 | 0 |
| nvidia | 32 | 166 | 20 | 117 | 29 | 0 | 0 | 0 | 0.0 | 7.8 | .0029 | +16 ▲ |
| mongodb | 50 | 148 | 4 | 87 | 53 | 4 | 1 | 0 | 0.0 | 7.1 | .0026 | +18 ▲ |
| itsourcecode | 32 | 148 | 0 | 0 | 37 | 111 | 0 | 0 | 0.0 | 2.1 | .0026 | +22 ▲ |
| hewlett packard enterprise (hpe) | 129 | 138 | 15 | 71 | 46 | 6 | 1 | 1 | 0.7 | 7.2 | .0026 | +126 ▲ |
| wwbn | 92 | 132 | 21 | 44 | 67 | 0 | 0 | 0 | 0.0 | 6.9 | .0024 | +90 ▲ |
| CVE | EPSS | %ile | CVSS |
|---|---|---|---|
| CVE-2026-60004 | .8678 | 99.7 | 9.8 |
| CVE-2026-64849 | .1641 | 96.8 | 9.3 |
| CVE-2026-85706 | .1196 | 95.9 | 10.0 |
| CVE-2026-83549 | .0851 | 94.7 | 7.8 |
| CVE-2026-82329 | .0767 | 94.3 | 9.8 |
| CVE-2026-19478 | .0581 | 92.7 | 9.1 |
| CVE-2026-19586 | .0570 | 92.6 | 9.3 |
| CVE-2026-19490 | .0560 | 92.5 | 9.3 |
| CVE-2026-79756 | .0515 | 92.0 | 8.7 |
| CVE-2026-83548 | .0467 | 91.3 | 10.0 |
| CVE | CVSS | EPSS | Note |
|---|---|---|---|
| CVE-2026-85706 | 10.0 | .1196 | KEV |
| CVE-2026-83548 | 10.0 | .0467 | KEV |
| CVE-2026-75650 | 10.0 | .0215 | KEV |
| CVE-2026-86152 | 10.0 | .0186 | |
| CVE-2026-76195 | 10.0 | .0159 | |
| CVE-2026-76197 | 10.0 | .0159 | |
| CVE-2026-69836 | 10.0 | .0155 | |
| CVE-2026-82222 | 10.0 | .0155 | |
| CVE-2026-82004 | 10.0 | .0144 | |
| CVE-2026-87827 | 10.0 | .0107 |
| Vendor | CVEs |
|---|---|
| oracle | 1524 |
| microsoft | 1016 |
| linux | 1014 |
| 852 | |
| ibm | 405 |
| apple | 287 |
| adobe | 211 |
| dell | 196 |
| red hat | 178 |
| mozilla | 172 |
| Vendor | KEV |
|---|---|
| microsoft | 30 |
| cisco | 15 |
| apple | 8 |
| 8 | |
| fortinet | 7 |
| ivanti | 5 |
| adobe | 4 |
| berriai | 4 |
| jfrog | 4 |
| oracle | 4 |
| Ecosystem | Advisories |
|---|---|
| Maven | 82 |
| Packagist | 39 |
| npm | 20 |
| PyPI | 15 |
| RubyGems | 2 |
| Go | 1 |
| NuGet | 1 |
| crates.io | 1 |
| CVE | Vendor | Days |
|---|---|---|
| CVE-2026-72529 | TrueConf | 0 |
| CVE-2026-72530 | TrueConf | 0 |
| CVE-2026-75650 | Adobe | 0 |
| CVE-2026-83548 | SonicWall | 0 |
| CVE-2026-83549 | SonicWall | 0 |
| CVE-2026-85046 | 0 | |
| CVE-2026-87491 | 0 | |
| CVE-2026-64849 | mlflow | 1 |
| CVE-2026-84869 | ConnectWise | 2 |
| CVE-2026-86218 | N-able | 2 |
| CVE | Vendor | Due | Days over |
|---|---|---|---|
| CVE-2021-27104 | n/a | 2021-11-17 | 1763 |
| CVE-2021-27102 | n/a | 2021-11-17 | 1763 |
| CVE-2021-27101 | n/a | 2021-11-17 | 1763 |
| CVE-2021-27103 | n/a | 2021-11-17 | 1763 |
| CVE-2021-21017 | Adobe | 2021-11-17 | 1763 |
| CVE-2021-28550 | Adobe | 2021-11-17 | 1763 |
| CVE-2021-42013 | Apache Software Foundation | 2021-11-17 | 1763 |
| CVE-2021-41773 | Apache Software Foundation | 2021-11-17 | 1763 |
| CVE-2021-30858 | Apple | 2021-11-17 | 1763 |
| CVE-2021-30860 | Apple | 2021-11-17 | 1763 |
EXPLOIT PUBLISHED — curl: 40 CVEs (CVE-2025-10966, CVE-2025-14524, CVE-2025-15079, CVE-2025-15224, CVE-2026-3783, CVE-2026-3784, CVE-2026-4873, CVE-2026-5545, CVE-2026-5773, CVE-2026-6253, CVE-2026-6276, CVE-2026-6429, CVE-2026-7168, CVE-2026-8286, CVE-2026-8458, CVE-2026-8924, CVE-2026-8925, CVE-2026-8926, CVE-2026-8927, CVE-2026-8932, CVE-2026-9079, CVE-2026-9080, CVE-2026-9545, CVE-2026-9546, CVE-2026-9547, CVE-2026-10536, CVE-2026-11352, CVE-2026-11564, CVE-2026-11586, CVE-2026-11856, CVE-2026-12064, CVE-2026-13608, CVE-2026-18924, CVE-2026-19931, CVE-2026-80229, CVE-2026-80230, CVE-2026-80231, CVE-2026-80255, CVE-2026-82208, CVE-2026-82209). Public exploit references added.
EXPLOIT PUBLISHED — wazuh: 11 CVEs (CVE-2026-44901, CVE-2026-45798, CVE-2026-48024, CVE-2026-48162, CVE-2026-49392, CVE-2026-49441, CVE-2026-54083, CVE-2026-54084, CVE-2026-61783, CVE-2026-61800, CVE-2026-61802). Public exploit references added.
EXPLOIT PUBLISHED — GPAC: 10 CVEs (CVE-2026-90577, CVE-2026-90578, CVE-2026-90610, CVE-2026-90611, CVE-2026-90683, CVE-2026-90687, CVE-2026-90791, CVE-2026-90824, CVE-2026-90825, CVE-2026-90827). Public exploit references added.
EXPLOIT PUBLISHED — FlowiseAI Flowise: 7 CVEs (CVE-2026-67621, CVE-2026-67622, CVE-2026-70636, CVE-2026-90533, CVE-2026-90534, CVE-2026-90535, CVE-2026-90580). Public exploit references added.
EXPLOIT PUBLISHED — open-webui: 6 CVEs (CVE-2026-87011, CVE-2026-87012, CVE-2026-87013, CVE-2026-87014, CVE-2026-87015, CVE-2026-87016). Public exploit references added.
EXPLOIT PUBLISHED — GNU Binutils: 4 CVEs (CVE-2026-90804, CVE-2026-90828, CVE-2026-90829, CVE-2026-90830). Public exploit references added.
EXPLOIT PUBLISHED — CVE-2026-46331 (Linux). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-52023. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-58014 (GNOME GLib). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-58015 (GNOME GLib). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-73698 (FileRun). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-79513. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-79514. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-79522. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-86137 (xmlsoft libxml2). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-86143 (xmlsoft libxml2). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-89009 (WAVLINK Technology WN535M1). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-89263 (moxi624 MoguBlog). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90488 (Xuxueli xxl-job). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90491 (sanjevirau gsubs). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90498 (lenve vhr). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90508 (Chengdu Qilu Technology Ludashi). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90514 (SourceCodester School Registration and Fee System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90519 (PHPGurukul Bank Locker Management System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90524 (jaychouchannel Tourism-Management-System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90572 (davenardella snap7). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90582 (evanchiu serverless-todo). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90595 (wxiaoqi Spring-Cloud-Platform). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90600 (itsourcecode Sales and Inventory System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90605 (Totolink A3002MU). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90606 (Totolink A3002MU). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90615 (SourceCodester Class and Exam Timetabling System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90617 (GH05TCREW PentestAgent). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90621 (ipa-lab HackingBuddyGPT). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90622 (GNU libredwg). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90682 (Matthias-Wandel jhead). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90697 (SourceCodester Inventory Management System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90698 (memcached). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90702 (D-Link DWR-M921). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90703 (D-Link DWR-M921). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90708 (Yot CMS). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90713 (vllm-project vLLM). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90714 (marcobambini Gravity). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90785 (Dvidelabs flatcc). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90786 (Dvidelabs flatcc). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90795 (itsourcecode Loan Management System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90796 (itsourcecode Leave Management System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90805 (subhajitkhan online-clinic-management-system). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90810 (cosmicstack-labs mercury-agent). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90814 (cosmicstack-labs mercury-agent). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90815 (FFmpeg). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-90835 (michaelliao itranswarp). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-91143 (snail007 goproxy). Public exploit reference added.
DUE DATE PASSED — CVE-2026-81578 (PaperCut MF/NG). CISA remediation deadline was September 14, 2026; still in catalog.
DUE DATE PASSED — CVE-2026-82078 (PaperCut MF/NG). CISA remediation deadline was September 14, 2026; still in catalog.
DUE DATE PASSED — CVE-2026-84869 (ConnectWise ScreenConnect). CISA remediation deadline was September 14, 2026; still in catalog.
DUE DATE PASSED — CVE-2026-85706 (GitLab). CISA remediation deadline was September 14, 2026; still in catalog.
REJECTED — CVE-2026-71269 (node-red). Record withdrawn by the CNA.
REJECTED — CVE-2026-75501 (Calix GS7 XGS (GS5239XG)). Record withdrawn by the CNA.
RESCORED — xmlsoft libxml2: 8 CVEs (CVE-2026-86137, CVE-2026-86138, CVE-2026-86139, CVE-2026-86140, CVE-2026-86141, CVE-2026-86142, CVE-2026-86143, CVE-2026-86144). CVSS rescored — before/after on each CVE page.
RESCORED — Portabilis i-Educar: 7 CVEs (CVE-2025-8538, CVE-2025-8539, CVE-2025-9236, CVE-2025-9531, CVE-2025-9606, CVE-2025-10012, CVE-2026-2015). CVSS rescored — before/after on each CVE page.
RESCORED — undici: 5 CVEs (CVE-2026-84933, CVE-2026-84947, CVE-2026-84961, CVE-2026-85008, CVE-2026-85014). CVSS rescored — before/after on each CVE page.
RESCORED — PHPGurukul Blood Donor Management System: 3 CVEs (CVE-2026-90840, CVE-2026-90841, CVE-2026-90842). CVSS rescored — before/after on each CVE page.
RESCORED — CVE-2023-5578 (Portábilis i-Educar). CVSS 5.1 → 2 (NVD).
RESCORED — CVE-2026-14199 (Grafana Enterprise). CVSS 7.1 → 8.1 (NVD).
RESCORED — CVE-2026-3416 (WSO2 API Manager). CVSS 5.9 → 7.5 (NVD).
RESCORED — CVE-2026-66014 (jfrog artifactory). CVSS 9.8 → 8.8 (NVD).
RESCORED — CVE-2026-75050 (JetBrains YouTrack). CVSS 7.1 → 6.5 (NVD).
RESCORED — CVE-2026-77822 (IBM ContextForge MCP Gateway). CVSS 8.2 → 9.6 (NVD).
RESCORED — CVE-2026-79418. CVSS 5.4 → 8.7 (NVD).
RESCORED — CVE-2026-81381 (Microsoft Visual Studio Code). CVSS 6.5 → 7.5 (NVD).
RESCORED — CVE-2026-9176 (IBM WebSphere Application Server). CVSS 6.7 → 7.1 (NVD).
RESCORED — CVE-2026-9327 (IBM WebSphere Application Server). CVSS 6.3 → 8.1 (NVD).
PATCH SHIPPED — CVE-2026-75092 (Red Hat Enterprise Linux 9). Fixed in Red Hat Enterprise Linux 9 0:0.24.0-1.el9_8.1.
How to read these box scores · glossary
1426 CVEs published. 25 box scores and 375 table rows below; the remaining 1026 continue on page 2 · page 3 — every CVE is listed, nothing truncated.
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N H N H H H 8.5 .0218 81.4 —
AFFECTED Product Versions Fixed ipTIME C200E 1.094 – —
TIMELINE Sep 14 Reserved by CNA Sep 15 Published (CNA: VulDB)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N L L L 5.5 .0137 70.4 —
AFFECTED Product Versions Fixed WebMap 8b95fe4dc301a3c09ddf145b895de0bf9f8d2a25 – —
TIMELINE Sep 14 Reserved by CNA Sep 15 Published (CNA: VulDB)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0109 63.5 —
AFFECTED Product Versions Fixed OpenAM < 16.1.2 – —
TIMELINE Jul 13 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N L L L 2.1 .0104 62.3 —
AFFECTED Product Versions Fixed DSL-3782 2016-07-28 – —
TIMELINE Sep 14 Reserved by CNA Sep 15 Published (CNA: VulDB)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N H H H 8.7 .0103 61.8 —
AFFECTED Product Versions Fixed FF-RFI079I4 unspecified — FF-RFI078I4 unspecified —
TIMELINE Sep 7 Reserved by CNA Sep 15 Published (CNA: jpcert)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H N 9.3 .0099 60.7 —
AFFECTED Product Versions Fixed OpenAM < 16.1.1 – —
TIMELINE May 15 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N H H H 9.2 .0089 57.5 —
AFFECTED Product Versions Fixed OpenAM < 16.1.2 – —
TIMELINE Jul 13 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0077 53.7 —
AFFECTED Product Versions Fixed PraisonAI < 1.7.2 – —
TIMELINE Jun 24 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0076 53.5 —
AFFECTED Product Versions Fixed PraisonAI >= 1.2.3, < 1.7.2 – —
TIMELINE Jun 24 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N P H H H 8.7 .0073 52.4 —
AFFECTED Product Versions Fixed wandb unspecified —
TIMELINE Sep 15 Reserved by CNA Sep 15 Published (CNA: VulnCheck)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N H H H 9.2 .0069 50.8 —
AFFECTED Product Versions Fixed OpenAM < 16.1.1 – —
TIMELINE May 8 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N A H H N 7.4 .0067 50.1 —
AFFECTED Product Versions Fixed OpenAM < 16.1.1 – —
TIMELINE May 15 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N C H H H 9.9 .0065 49.5 —
AFFECTED Product Versions Fixed PraisonAI >= 1.4.0, < 1.7.2 – —
TIMELINE Jun 24 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0064 48.9 —
AFFECTED Product Versions Fixed PraisonAI >= 1.5.0, < 1.7.2 – —
TIMELINE Jun 24 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N H P L N H H H 7.7 .0063 48.2 —
AFFECTED Product Versions Fixed OpenAM < 16.1.1 – —
TIMELINE May 13 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N A L H N 8.3 .0059 46.6 —
AFFECTED Product Versions Fixed OpenAM < 16.1.1 – —
TIMELINE May 5 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N A L H N 7.0 .0059 46.6 —
AFFECTED Product Versions Fixed OpenAM < 16.1.1 – —
TIMELINE May 7 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H L 9.4 .0056 45.2 —
AFFECTED Product Versions Fixed PraisonAI >= 1.6.0, < 1.7.2 – —
TIMELINE Jun 24 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H L 9.3 .0055 44.7 —
AFFECTED Product Versions Fixed OpenAM < 16.1.1 – —
TIMELINE May 8 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P L N H H N 7.6 .0055 44.7 —
AFFECTED Product Versions Fixed OpenAM < 16.1.1 – —
TIMELINE May 19 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N H P N N H H N 9.1 .0053 43.3 —
AFFECTED Product Versions Fixed OpenAM < 16.1.1 – —
TIMELINE May 22 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0053 43.2 —
AFFECTED Product Versions Fixed PraisonAI < 4.6.51 – — praisonai-platform < 0.1.6 – —
TIMELINE Jun 24 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N H L N 7.1 .0052 42.8 —
AFFECTED Product Versions Fixed kimai < 2.59.0 – —
TIMELINE Jun 8 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0051 42.2 —
AFFECTED Product Versions Fixed PraisonAI < 4.6.51 – — praisonai-platform < 0.1.6 – —
TIMELINE Jun 24 Reserved by CNA Sep 15 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N H N H H H 8.5 .0051 42.2 —
AFFECTED Product Versions Fixed DI-8300 16.07 – —
TIMELINE Sep 14 Reserved by CNA Sep 15 Published (CNA: VulDB)
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-57133 | 8.8 | 41.9 | MervinPraison | PraisonAI | CWE-78 | PraisonAI utility shell safe-command wrapper allowlist bypass via shell chaining |
| CVE-2026-41573 | 7.1 | 41.2 | OpenIdentityPlatform | OpenAM | CWE-90 | OpenAM LDAP Injection via `_queryId` Parameter |
| CVE-2026-91001 | 8.6 | 40.4 | D-Link | DI-8400 | CWE-119 | D-Link DI-8400 DDNS Configuration ddns.asp ddns_asp stack-based overflow |
| CVE-2026-47424 | 7.5 | 40.3 | OpenIdentityPlatform | OpenAM | CWE-693 | OpenAM Authenticated RCE via Groovy Sandbox Escape |
| CVE-2026-91859 | 5.3 | 39.7 | MISP | MISP | CWE-223 | MISP Access Log Entry Overwritten by Error Controller's Second beforeFilter Pass |
| CVE-2026-91002 | 5.5 | 37.6 | stamparm | maltrail | CWE-287 | stamparm maltrail Blacklist Endpoint httpd.py _blacklist missing authentication |
| CVE-2026-57137 | 8.8 | 37.4 | MervinPraison | PraisonAI | CWE-693 | PraisonAI AgentLoop onToolCall approval runs after tool execution |
| CVE-2026-57134 | 8.2 | 36.3 | MervinPraison | PraisonAI | CWE-287 | PraisonAI MCPSecurity Basic/OAuth authentication policies accept invalid cred… |
| CVE-2026-45048 | 8.5 | 36.3 | OpenIdentityPlatform | OpenAM | CWE-200 | OpenAM Authenticated Privilege Escalation via Raw Token Disclosure Session RPC |
| CVE-2026-52819 | 6.3 | 35.7 | kimai | kimai | CWE-863 | Kimai: Teamlead authorization bypass in GET /api/timesheets allows reading ot… |
| CVE-2026-46498 | 7.6 | 34.9 | OpenIdentityPlatform | OpenAM | CWE-639 | OpenAM Arbitrary OAuth Token Minting via Push Registration |
| CVE-2026-44202 | 5.3 | 34.9 | OpenIdentityPlatform | OpenAM | CWE-918 | OpenAM Authenticated Server-Side Request Forgery (SSRF) via `/sessionservice` |
| CVE-2026-52821 | 5.3 | 34.9 | kimai | kimai | CWE-639 | Kimai: Improper Authorization in Kimai Activity Creation with Preset Project … |
| CVE-2026-57135 | 7.6 | 34.7 | MervinPraison | PraisonAI | CWE-653 | PraisonAI SandboxExecutor network-isolated mode does not block non-proxy-awar… |
| CVE-2026-75983 | 7.5 | 34.7 | arraytics | Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce | CWE-269 | Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce <= 4.1… |
| CVE-2026-90881 | 5.5 | 34.5 | D-Link | DIR-882 | CWE-200 | D-Link DIR-882 CGI Binary dllog.cgi main information disclosure |
| CVE-2026-53660 | 7.4 | 34.1 | OpenIdentityPlatform | OpenAM | CWE-1004 | OpenAM Insecure SSO Cookie Initialization |
| CVE-2026-59341 | 4.2 | 33.9 | Bitnami | sealed-secrets | — | Sealed Secrets: decryption oracle via Go template injection in unauthenticate… |
| CVE-2026-52826 | 5.3 | 33.2 | kimai | kimai | CWE-285 | Kimai: Improper Authorization in Kimai Project, Customer, and Activity Rate E… |
| CVE-2026-52828 | 5.3 | 33.2 | kimai | kimai | CWE-862 | Kimai: ExportTemplate CRUD Missing Authorization Check Allows Unauthorized TE… |
| CVE-2026-91091 | 2.1 | 32.7 | n/a | GPAC | CWE-119 | GPAC Node Insertion base_scenegraph.c gf_node_list_insert_child memory corrup… |
| CVE-2026-91752 | 8.7 | 32.3 | GNU | libextractor | CWE-789 | GNU libextractor before 1.15 Stack Overflow via OLE2 |
| CVE-2026-52822 | 5.3 | 32.2 | kimai | kimai | CWE-285 | Kimai: Improper Authorization in Kimai Timesheet Restart and Duplicate Allows… |
| CVE-2026-52824 | 9.1 | 31.4 | kimai | kimai | CWE-1188 | Kimai: Default APP_SECRET in Docker Image Enables Cookie Forgery and Account … |
| CVE-2026-91087 | 5.5 | 30.7 | n/a | GPAC | CWE-119 | GPAC Compositor media_object.c gf_mo_get_od_id use after free |
| CVE-2026-52820 | 5.3 | 29.9 | kimai | kimai | CWE-639 | Kimai: Timesheet PATCH/POST allows assigning to project outside user's team v… |
| CVE-2026-52825 | 5.3 | 29.9 | kimai | kimai | CWE-285 | Kimai: Improper Authorization in Kimai Team Member and Team Activity Assignme… |
| CVE-2026-17495 | 5.9 | 29.1 | moment | moment | CWE-27 | moment vulnerable to Path Traversal via crafted non-string locale name |
| CVE-2026-91751 | 7.2 | 27.9 | flextype | flextype | CWE-22 | Flextype CMS through 1.0.0-alpha.3 Path Traversal via Entries REST API |
| CVE-2026-88262 | 8.7 | 26.0 | bizwell | xClick | CWE-613 | Insufficient session expiration vulnerability in bizwell xClick allows Authen… |
| CVE-2025-5802 | 5.3 | 26.0 | WSO2 | WSO2 API Manager | CWE-203 | Username Enumeration via Self Registration Flow in Multiple WSO2 Products All… |
| CVE-2026-62280 | 6.1 | 25.7 | OpenIdentityPlatform | OpenAM | CWE-79 | OpenAM Reflected XSS in the OAuth2/OIDC `wap` consent page |
| CVE-2026-91086 | 2.1 | 25.3 | n/a | GPAC | CWE-119 | GPAC MPEG Video Reframer reframe_mpgvid.c mpgviddmx_process heap-based overflow |
| CVE-2026-90852 | 5.5 | 24.3 | luben | zstd-jni | CWE-119 | luben zstd-jni Dictionary Sharing ZstdCompressCtx.java ZstdCompressCtx.loadDi… |
| CVE-2026-90858 | 5.5 | 23.6 | subhajitkhan | online-clinic-management-system | CWE-285 | subhajitkhan online-clinic-management-system adminappview.php session_start a… |
| CVE-2026-90878 | 2.1 | 22.9 | vllm-project | vLLM | CWE-400 | vllm-project vLLM Jinja Template Rendering completions resource consumption |
| CVE-2026-91089 | 2.1 | 21.8 | n/a | GPAC | CWE-119 | GPAC base_scenegraph.c gf_node_get_name_and_id use after free |
| CVE-2026-90856 | 5.5 | 21.4 | SourceCodester | College Notes Gallery Management System | CWE-266 | SourceCodester College Notes Gallery Management System Registration Flow sign… |
| CVE-2026-80217 | 8.7 | 20.9 | LITE-ON Technology Corporation | FF-RFI079I4 | CWE-912 | Hidden functionality issue exists in FF-RFI079I4 and FF-RFI078I4, which may a… |
| CVE-2026-15758 | 5.3 | 19.8 | iberezansky | 3D FlipBook – PDF Embedder, PDF Flipbook Viewer, Flipbook Image Gallery | CWE-200 | 3D FlipBook <= 1.16.20 - Unauthenticated Sensitive Information Exposure in 'i… |
| CVE-2026-81303 | 6.3 | 19.7 | Red Hat | Red Hat build of Apache Camel - HawtIO 4 | CWE-441 | Hawtio-operator: hawtio-operator: routes/custom-host confused-deputy via spec… |
| CVE-2026-89141 | 6.5 | 19.6 | tigroumeow | AI Engine – The Chatbot, AI Framework & MCP for WordPress | CWE-639 | AI Engine <= 3.7.7 - Insecure Direct Object Reference to Authenticated (Subsc… |
| CVE-2026-90876 | 5.5 | 19.0 | SourceCodester | Online Faculty Clearance System | CWE-74 | SourceCodester Online Faculty Clearance System delete_requirement.php sql inj… |
| CVE-2025-13166 | 3.7 | 19.1 | WSO2 | WSO2 Identity Server | CWE-203 | Username Enumeration via SMS OTP Flow in WSO2 Identity Server Allows User Acc… |
| CVE-2026-90849 | 5.5 | 18.5 | SourceCodester | College Notes Gallery Management System | CWE-74 | SourceCodester College Notes Gallery Management System login.php sql injection |
| CVE-2026-91750 | 7.1 | 18.4 | Tencent | WeKnora | CWE-918 | WeKnora before 0.7.0 SSRF via Unvalidated HTTP Redirects |
| CVE-2026-90844 | 5.5 | 18.2 | PHPGurukul | Daily Expense Tracker System | CWE-74 | PHPGurukul Daily Expense Tracker System Login index.php sql injection |
| CVE-2026-90846 | 5.5 | 18.2 | PHPGurukul | Daily Expense Tracker System | CWE-74 | PHPGurukul Daily Expense Tracker System forgot-password.php sql injection |
| CVE-2026-90877 | 5.5 | 18.2 | SourceCodester | Online Faculty Clearance System | CWE-74 | SourceCodester Online Faculty Clearance System update_requirement_status.php … |
| CVE-2026-90879 | 5.5 | 18.2 | zyx0814 | FilePress | CWE-74 | zyx0814 FilePress Publish search.php sql injection |
| CVE-2026-91004 | 5.5 | 18.3 | SourceCodester | Online Faculty Clearance System | CWE-74 | SourceCodester Online Faculty Clearance System delete_faculty1.php sql injection |
| CVE-2026-90848 | 5.3 | 18.3 | Governikus | AusweisApp | CWE-79 | Governikus AusweisApp StartPAOSResponse cross site scripting |
| CVE-2026-91851 | 5.3 | 17.9 | MISP | MISP | CWE-697 | MISP Dashboard Template ACL Bypass Due to VARCHAR-to-Integer Type Coercion in… |
| CVE-2026-90854 | 5.5 | 17.7 | SourceCodester | Online Food Ordering System | CWE-74 | SourceCodester/katojkalemba Online Food Ordering System category-foods.php sq… |
| CVE-2026-90855 | 5.5 | 17.7 | SourceCodester | Online Food Ordering System | CWE-74 | SourceCodester/katojkalemba Online Food Ordering System order.php sql injection |
| CVE-2026-91778 | 7.2 | 17.5 | Octopus Deploy | Octopus Server | CWE-863 | In affected versions of Octopus Server, users with certain scoped permission … |
| CVE-2026-91770 | 7.1 | 17.5 | gamonoid | icehrm | CWE-639 | IceHRM before 36.0.0 Broken Access Control via Employee ID |
| CVE-2026-15402 | 6.4 | 16.5 | arraytics | Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce | CWE-79 | Eventin <= 4.1.23 - Authenticated (Custom+) Stored Cross-Site Scripting via '… |
| CVE-2026-91825 | 7.1 | 15.6 | MISP | MISP | CWE-862 | MISP: Missing Authorization Check for Event Sharing Group When Distribution F… |
| CVE-2026-88261 | 5.1 | 12.9 | bizwell | xClick | CWE-20 | Improper input validation vulnerability in bizwell xClick allows Stored XSS. … |
| CVE-2026-91857 | 5.3 | 11.9 | MISP | MISP | CWE-352 | MISP: State-changing actions accessible via GET request enabling CSRF |
| CVE-2026-90850 | 1.9 | 11.4 | PHPGurukul | Hostel Management System | CWE-79 | PHPGurukul Hostel Management System manage-students.php cross site scripting |
| CVE-2026-90851 | 2.1 | 11.3 | PHPGurukul | Hostel Management System | CWE-266 | PHPGurukul Hostel Management System checklogin.php access control |
| CVE-2026-90857 | 2.1 | 11.3 | SourceCodester | College Notes Gallery Management System | CWE-284 | SourceCodester College Notes Gallery Management System Profile Upload userpro… |
| CVE-2026-91005 | 2.1 | 11.3 | SourceCodester | Online Faculty Clearance System | CWE-284 | SourceCodester Online Faculty Clearance System Profile Picture Upload edit_pi… |
| CVE-2026-91846 | 7.1 | 11.0 | MISP | MISP | CWE-639 | MISP Collection Element Add Missing Authorization on Referenced Object UUID |
| CVE-2026-52823 | 5.3 | 10.9 | kimai | kimai | CWE-352 | Kimai: Login CSRF in Kimai Timesheet Stop and Restart API Endpoints Allows Un… |
| CVE-2026-91773 | 5.3 | 9.9 | charmbracelet | soft-serve | CWE-639 | Soft Serve 0.7.1 through 0.11.6 Information Disclosure via LFS Locks |
| CVE-2026-91774 | 5.3 | 9.9 | YaoApp | yao | CWE-862 | Yao through v1.0.0-rc22 Missing Authorization via OpenAPI team endpoint |
| CVE-2026-90845 | 2.0 | 9.8 | PHPGurukul | Daily Expense Tracker System | CWE-79 | PHPGurukul Daily Expense Tracker System sidebar.php cross site scripting |
| CVE-2026-18063 | 6.4 | 9.7 | blueglassch | Job Postings | CWE-79 | Job Postings <= 2.8.1 - Authenticated (Contributor+) Stored Cross-Site Script… |
| CVE-2026-57112 | 8.3 | 8.6 | MervinPraison | PraisonAI | CWE-306 | PraisonAI ToolsMCPServer legacy SSE transport accepts attacker Host/Origin an… |
| CVE-2026-90711 | 9.1 | 8.5 | proxy-addr | proxy-addr | CWE-290 | proxy-addr vulnerable to IP spoofing via IPv4-mapped IPv6 trust subnet |
| CVE-2026-91772 | 5.3 | 8.1 | halo-dev | halo | CWE-601 | Halo through 2.26.1 Open Redirect via Unvalidated URI Parameter |
| CVE-2026-19515 | 7.0 | 6.5 | WSO2 | WSO2 Integrator: MI for Visual Studio Code | CWE-78 | OS Command Injection via Unit Test Execution in WSO2 Integrator MI VS Code Ex… |
| CVE-2026-85575 | 6.4 | 6.1 | roxnor | ShopEngine Elementor WooCommerce Builder Addon – All in One WooCommerce Solution with eCommerce Templates & Woo Widgets | CWE-79 | The ShopEngine Elementor WooCommerce Builder Addon – All in One WooCommerce S… |
| CVE-2026-16593 | 6.8 | 5.8 | Unknown | WP Directory Kit | CWE-89 | WP Directory Kit <= 1.5.7 - Editor+ SQL Injection via Elementor Category and … |
| CVE-2026-91819 | 6.9 | 5.3 | MISP | MISP | CWE-20 | MISP: HTTP Method Override Bypasses CSRF and Form Validation in BetterSecurit… |
| CVE-2026-18232 | 5.3 | 4.2 | Unknown | WP Directory Kit | CWE-200 | WP Directory Kit <= 1.5.7 - Unauthenticated Unpublished Listing Disclosure vi… |
| CVE-2026-16592 | 2.7 | 3.6 | Unknown | WP Directory Kit | CWE-200 | WP Directory Kit <= 1.5.7 - Contributor+ Non-Public Listing Field Disclosure … |
| CVE-2026-85657 | 5.4 | 3.5 | publishpress | Co-Authors, Multiple Authors and Guest Authors in an Author Box with PublishPress Authors | CWE-79 | Co-Authors, Multiple Authors and Guest Authors in an Author Box with PublishP… |
| CVE-2026-81320 | 5.5 | 3.3 | Red Hat | Red Hat build of Apache Camel - HawtIO 4 | CWE-532 | Hawtio-operator: hawtio-operator: tls private key written to operator log at … |
| CVE-2026-75092 | 7.3 | 2.8 | Red Hat | Red Hat Enterprise Linux 9 | CWE-250 | Leapp-repository: leapp-upgrade-el9toel10: leapp-upgrade-el9toel10: scan_mysq… |
| CVE-2026-91090 | 0.9 | 2.4 | n/a | GPAC | CWE-119 | GPAC base_scenegraph.c gf_node_activate_ex stack-based overflow |
| CVE-2026-91782 | 1.9 | 2.2 | GNU | Binutils | CWE-404 | GNU Binutils Dynamic Relocation Allocation elfxx-x86.c elf_x86_allocate_dynre… |
| CVE-2026-91781 | 1.9 | 2.1 | GNU | Binutils | CWE-404 | GNU Binutils ELF Section elf64-x86-64.c elf_x86_64_common_section_index null … |
| CVE-2026-91088 | 2.4 | 1.8 | n/a | GPAC | CWE-119 | GPAC URL url.c gf_url_concatenate_ex heap-based overflow |
| CVE-2026-91779 | 1.9 | 1.6 | GNU | Binutils | CWE-404 | GNU Binutils Eh Frame elf-eh-frame.c _bfd_elf_eh_frame_section_offset null po… |
| CVE-2026-91780 | 1.9 | 1.6 | GNU | Binutils | CWE-404 | GNU Binutils elflink.c elf_link_add_object_symbols null pointer dereference |
| CVE-2026-91826 | 4.4 | 1.5 | Samsung Opensource | rLottie | CWE-121 | Stack-based buffer overflow vulnerability in Samsung Opensource rLottie allow… |
| CVE-2026-76159 | 7.0 | 0.9 | Duplicati | Duplicati | CWE-732 | Duplicati for Windows - Incorrect Permission Assignment for Critical Resource |
| CVE-2026-86701 | 1.8 | 0.8 | NTT DOCOMO BUSINESS, Inc. | ManabiPocket for Parents | CWE-926 | Android application "ManabiPocket for Parents" contains an improper access co… |
| CVE-2026-53710 | 10.0 | — | IBM | mcp-context-forge | CWE-94 | MCP Context Forge: RestrictedPython sandbox bypass via getattr builtin in pyt… |
| CVE-2026-59971 | 10.0 | — | designcomputer | mysql_mcp_server | CWE-306 | MySQL MCP Server: Missing Origin/Host Validation in SSE Transport Enables Una… |
| CVE-2026-71133 | 10.0 | — | Oracle Corporation | Oracle Access Manager | CWE-287 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-83020 | 10.0 | — | Oracle Corporation | Oracle Platform Security for Java | CWE-287 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusi… |
| CVE-2026-83021 | 10.0 | — | Oracle Corporation | Oracle WebLogic Server | CWE-287 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middlewa… |
| CVE-2026-83059 | 10.0 | — | Oracle Corporation | Oracle Internet Directory | CWE-287 | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middl… |
| CVE-2026-83099 | 10.0 | — | Oracle Corporation | Oracle Forms | CWE-287 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (compon… |
| CVE-2026-87230 | 10.0 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-45579 | 9.9 | — | DIRACGrid | DIRAC | CWE-95 | DIRAC: RCE in RequestManager due to eval on untrusted input |
| CVE-2026-61667 | 9.9 | — | DIRACGrid | DIRAC | CWE-89 | DIRAC: RCE in FileCatalog DatasetManager via SQL injection + eval |
| CVE-2026-71163 | 9.9 | — | Oracle Corporation | Oracle Access Manager | — | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-73945 | 9.9 | — | Oracle Corporation | Oracle Access Manager | — | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-73948 | 9.9 | — | Oracle Corporation | Oracle WebCenter Portal | — | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-76669 | 9.9 | — | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | — | Authorization Bypass Leading to Privilege Escalation in EdgeConnect SD-WAN Or… |
| CVE-2026-76670 | 9.9 | — | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | — | Authorization Bypass Leading to Privilege Escalation in EdgeConnect SD-WAN Or… |
| CVE-2026-76672 | 9.9 | — | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | — | Authenticated Sensitive Information Disclosure in HPE Networking EdgeConnect … |
| CVE-2026-82997 | 9.9 | — | Oracle Corporation | Service Delivery Platform | — | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middl… |
| CVE-2026-82998 | 9.9 | — | Oracle Corporation | Service Delivery Platform | — | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middl… |
| CVE-2026-82999 | 9.9 | — | Oracle Corporation | Service Delivery Platform | — | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middl… |
| CVE-2026-83031 | 9.9 | — | Oracle Corporation | Oracle WebCenter Sites | — | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middlewa… |
| CVE-2026-83038 | 9.9 | — | Oracle Corporation | Oracle WebLogic Server | — | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middlewa… |
| CVE-2026-83039 | 9.9 | — | Oracle Corporation | Oracle WebCenter Portal | — | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-83055 | 9.9 | — | Oracle Corporation | Oracle Internet Directory | — | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middl… |
| CVE-2026-83056 | 9.9 | — | Oracle Corporation | Oracle Internet Directory | — | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middl… |
| CVE-2026-83057 | 9.9 | — | Oracle Corporation | Oracle Internet Directory | — | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middl… |
| CVE-2026-83058 | 9.9 | — | Oracle Corporation | Oracle Internet Directory | — | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middl… |
| CVE-2026-83282 | 9.9 | — | Oracle Corporation | Oracle Business Intelligence Enterprise Edition | — | Vulnerability in the Oracle Business Intelligence Enterprise Edition product … |
| CVE-2026-87172 | 9.9 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-12351 | 9.8 | — | IBM | MQ | CWE-74 | IBM MQ is vulnerable to unauthenticated remote code execution via JNDI injection |
| CVE-2026-19773 | 9.8 | — | libwebsockets | libwebsockets | CWE-787 | libwebsockets HTTP/2 HPACK Path Header Parsing Out-Of-Bounds Write Remote Cod… |
| CVE-2026-54337 | 9.8 | — | ShaneIsrael | fireshare | CWE-88 | Fireshare has Unauthenticated Argument Injection to Arbitrary File Write/Over… |
| CVE-2026-55211 | 9.8 | — | equinor | surfio | CWE-125 | surfio IRAP header size fields cause out-of-bounds reads |
| CVE-2026-61560 | 9.8 | — | zereight | gitlab-mcp | CWE-22 | @zereight/mcp-gitlab's unauthenticated arbitrary file read via `upload_markdo… |
| CVE-2026-63695 | 9.8 | — | Dell | SmartFabric OS10 Software | CWE-284 | Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Sessio… |
| CVE-2026-70748 | 9.8 | — | Oracle Corporation | Oracle WebLogic Server | CWE-287 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middlewa… |
| CVE-2026-70756 | 9.8 | — | Oracle Corporation | Oracle WebLogic Server | CWE-287 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middlewa… |
| CVE-2026-70757 | 9.8 | — | Oracle Corporation | Oracle WebLogic Server | CWE-287 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middlewa… |
| CVE-2026-70913 | 9.8 | — | Oracle Corporation | Oracle Identity Manager | CWE-287 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middlew… |
| CVE-2026-73940 | 9.8 | — | Oracle Corporation | Oracle Access Manager | CWE-287 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-73947 | 9.8 | — | Oracle Corporation | Oracle Access Manager | CWE-287 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-73950 | 9.8 | — | Oracle Corporation | Oracle Access Manager | CWE-287 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-73953 | 9.8 | — | Oracle Corporation | Oracle WebCenter Portal | CWE-287 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-73956 | 9.8 | — | Oracle Corporation | Oracle WebCenter Portal | CWE-287 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-73961 | 9.8 | — | Oracle Corporation | Oracle JDeveloper | CWE-287 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (c… |
| CVE-2026-73963 | 9.8 | — | Oracle Corporation | Oracle WebCenter Portal | CWE-287 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-76673 | 9.8 | — | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | — | Authentication Bypass Vulnerabilities in API of EdgeConnect SD-WAN Orchestrator |
| CVE-2026-76674 | 9.8 | — | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | — | Unauthenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution… |
| CVE-2026-82994 | 9.8 | — | Oracle Corporation | Oracle Platform Security for Java | CWE-287 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusi… |
| CVE-2026-82995 | 9.8 | — | Oracle Corporation | Oracle Platform Security for Java | CWE-287 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusi… |
| CVE-2026-83000 | 9.8 | — | Oracle Corporation | Service Delivery Platform | CWE-287 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middl… |
| CVE-2026-83035 | 9.8 | — | Oracle Corporation | Oracle WebCenter Sites | CWE-287 | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middlewa… |
| CVE-2026-83036 | 9.8 | — | Oracle Corporation | Oracle WebCenter Sites | CWE-287 | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middlewa… |
| CVE-2026-83037 | 9.8 | — | Oracle Corporation | Oracle WebCenter Sites | CWE-287 | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middlewa… |
| CVE-2026-83042 | 9.8 | — | Oracle Corporation | Oracle Identity Manager | CWE-287 | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middlew… |
| CVE-2026-83054 | 9.8 | — | Oracle Corporation | Oracle Internet Directory | CWE-287 | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middl… |
| CVE-2026-83060 | 9.8 | — | Oracle Corporation | Oracle Internet Directory | CWE-287 | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middl… |
| CVE-2026-83061 | 9.8 | — | Oracle Corporation | Oracle Internet Directory | CWE-287 | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middl… |
| CVE-2026-83062 | 9.8 | — | Oracle Corporation | Oracle Internet Directory | CWE-287 | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middl… |
| CVE-2026-83066 | 9.8 | — | Oracle Corporation | Oracle Internet Directory | CWE-287 | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middl… |
| CVE-2026-83094 | 9.8 | — | Oracle Corporation | Oracle Forms | CWE-287 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (compon… |
| CVE-2026-83095 | 9.8 | — | Oracle Corporation | Oracle Forms | CWE-287 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (compon… |
| CVE-2026-83098 | 9.8 | — | Oracle Corporation | Oracle Forms | CWE-287 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (compon… |
| CVE-2026-83100 | 9.8 | — | Oracle Corporation | Oracle Forms | CWE-287 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (compon… |
| CVE-2026-83108 | 9.8 | — | Oracle Corporation | Oracle Forms | CWE-287 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (compon… |
| CVE-2026-83151 | 9.8 | — | Oracle Corporation | Service Delivery Platform | CWE-287 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middl… |
| CVE-2026-83232 | 9.8 | — | Oracle Corporation | Oracle Data Integrator | CWE-287 | Vulnerability in the Oracle Data Integrator product of Oracle Fusion Middlewa… |
| CVE-2026-83261 | 9.8 | — | Oracle Corporation | Oracle Product Lifecycle Analytics | CWE-287 | Vulnerability in the Oracle Product Lifecycle Analytics product of Oracle Sup… |
| CVE-2026-83269 | 9.8 | — | Oracle Corporation | Oracle BI Publisher | CWE-287 | Vulnerability in the Oracle BI Publisher product of Oracle Analytics (compone… |
| CVE-2026-83283 | 9.8 | — | Oracle Corporation | Oracle Business Intelligence Enterprise Edition | CWE-287 | Vulnerability in the Oracle Business Intelligence Enterprise Edition product … |
| CVE-2026-83327 | 9.8 | — | Oracle Corporation | Oracle Applications Framework | CWE-287 | Vulnerability in the Oracle Applications Framework product of Oracle E-Busine… |
| CVE-2026-83339 | 9.8 | — | Oracle Corporation | Oracle WebCenter Enterprise Capture | CWE-287 | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fu… |
| CVE-2026-83355 | 9.8 | — | Oracle Corporation | Oracle Enterprise Manager for Fusion Middleware | CWE-287 | Vulnerability in the Oracle Enterprise Manager for Fusion Middleware product … |
| CVE-2026-83452 | 9.8 | — | Oracle Corporation | Oracle Document Management and Collaboration | CWE-287 | Vulnerability in the Oracle Document Management and Collaboration product of … |
| CVE-2026-83462 | 9.8 | — | Oracle Corporation | Oracle Mobile Application Server | CWE-287 | Vulnerability in the Oracle Mobile Application Server product of Oracle E-Bus… |
| CVE-2026-87184 | 9.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | CWE-287 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87188 | 9.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | CWE-287 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-61559 | 9.6 | — | zereight | gitlab-mcp | CWE-918 | @zereight/mcp-gitlab Vulnerable to Server-Side Request Forgery |
| CVE-2026-61568 | 9.6 | — | zereight | gitlab-mcp | CWE-350 | @zereight/mcp-gitlab: DNS rebinding reaches local Streamable HTTP MCP transport |
| CVE-2026-73962 | 9.6 | — | Oracle Corporation | Oracle Access Manager | — | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-83029 | 9.6 | — | Oracle Corporation | Oracle Managed File Transfer | — | Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Mi… |
| CVE-2026-83040 | 9.6 | — | Oracle Corporation | Oracle WebCenter Portal | — | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-83043 | 9.6 | — | Oracle Corporation | Oracle WebCenter Portal | — | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-87186 | 9.6 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-91710 | 9.6 | — | Chrome | CWE-416 | Use after free in WebAppInstalls in Google Chrome prior to 153.0.8010.47 allo… | |
| CVE-2026-91718 | 9.6 | — | Chrome | CWE-416 | Use after free in Core in Google Chrome prior to 153.0.8010.47 allowed a remo… | |
| CVE-2026-91728 | 9.6 | — | Chrome | CWE-190 | Integer overflow in V8 in Google Chrome prior to 153.0.8010.47 allowed a remo… | |
| CVE-2026-91749 | 9.6 | — | Chrome | CWE-416 | Use after free in Workers in Google Chrome prior to 153.0.8010.47 allowed a r… | |
| CVE-2026-15640 | 9.5 | — | Delinea | Secret Server (On-Prem) | CWE-290 | Authentication Bypass via SAML Response Manipulation |
| CVE-2026-78225 | 9.5 | — | Wärtsilä | FOS-Onboard | CWE-321 | Wärtsilä FOS-Onboard Use of Hard-coded Cryptographic Key |
| CVE-2026-66887 | 9.4 | — | Digital Watchdog | VMAX A1 G4 DVR | CWE-862 | Missing Authorization in Digital Watchdog VMAX DVR and NVR Product Lineups |
| CVE-2026-66890 | 9.4 | — | Digital Watchdog | VMAX A1 G4 DVR | CWE-798 | Use of Hard-coded Credentials in Digital Watchdog VMAX DVR and NVR Product Li… |
| CVE-2026-68491 | 9.4 | — | Webpros | SolusVM | CWE-59 | An insufficient check allowed for the overwrite of arbitrary files via a syml… |
| CVE-2026-77179 | 9.4 | — | Docker | Docker Sandboxes | CWE-59 | Docker Sandboxes guest can write arbitrary macOS host files via a symlink in … |
| CVE-2026-91998 | 9.4 | — | casdoor | casdoor | CWE-863 | Casdoor through 4.4.0 Cross-Organization User Administration via /api/mcp |
| CVE-2023-54398 | 9.3 | — | Yonyou | U8 Cloud | CWE-502 | Yonyou U8 Cloud Java Deserialization RCE via FileManageServlet |
| CVE-2024-58385 | 9.3 | — | Yonyou | U8 CRM | CWE-89 | Yonyou U8 CRM SQL Injection via fillbacksettingedit.php |
| CVE-2026-15639 | 9.3 | — | Delinea | Secret Server (On-Prem) | CWE-79 | Reflected Cross-Site Scripting |
| CVE-2026-39919 | 9.3 | — | Artifex Software | Ghostscript | CWE-122 | Ghostscript < 10.08.0 Heap Buffer Overflow via JPEG 2000 Output Adapter |
| CVE-2026-53459 | 9.3 | — | maziggy | bambuddy | CWE-636 | Bambuddy's authentication fails open on database errors, allowing unauthentic… |
| CVE-2026-73807 | 9.3 | — | mySCADA Technologies | mySCADA myPRO | CWE-862 | mySCADA myPRO Manager Missing Authorization |
| CVE-2026-73957 | 9.3 | — | Oracle Corporation | Oracle WebCenter Portal | — | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-81855 | 9.3 | — | Wärtsilä | FOS-Onboard | CWE-321 | Wärtsilä FOS-Onboard Use of Hard-coded Cryptographic Key |
| CVE-2026-83027 | 9.3 | — | Oracle Corporation | Oracle Identity Manager Connector | — | Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusi… |
| CVE-2026-89026 | 9.3 | — | Issabel Foundation | Issabel Framework | CWE-321 | Issabel Framework Hard-coded JWT Key RCE via pbxapi/manager/originate |
| CVE-2026-89040 | 9.3 | — | Tencent | Mass Service Engine in Cluster (MSEC) | CWE-22 | Tencent Mass Service Engine in Cluster (MSEC) path traversal |
| CVE-2026-89308 | 9.3 | — | TREXOM | TrxTimeATTENDANCE | CWE-78 | Arbitrary command execution in TrxTimeATTENDANCE |
| CVE-2026-91939 | 9.3 | — | Cotonti | Cotonti | CWE-502 | Cotonti 1.0.0 Comments Plugin PHP Object Injection via ci Parameter |
| CVE-2026-91995 | 9.3 | — | pig-mesh | pig | CWE-620 | pig before 4.1.0 Unverified Password Change via /register/password |
| CVE-2026-46495 | 9.2 | — | OpenIdentityPlatform | OpenDJ | CWE-502 | OpenDJ Pre-Auth RCE via Java Deserialization in JMX RMI |
| CVE-2026-69204 | 9.2 | — | http4s | http4s | CWE-444 | Http4s: Ember accepts Transfer-Encoding combined with Content-Length (CL.TE r… |
| CVE-2026-73458 | 9.2 | — | Arista Networks | EOS | CWE-303 | On affected platforms running Arista EOS with authenticated Bidirectional For… |
| CVE-2026-91949 | 9.2 | — | FreeRDP | FreeRDP | CWE-693 | FreeRDP 3.0.0 through 3.30.0 Protocol Negotiation Bypass |
| CVE-2026-91988 | 9.2 | — | dep0we | atomic-agents-stack | CWE-319 | atomic-agents-stack before 1.1.0 Remote Code Execution via HTTP MCP |
| CVE-2026-15638 | 9.1 | — | Delinea | Secret Server (On-Prem) | CWE-327 | Cryptographic Padding Oracle |
| CVE-2026-46488 | 9.1 | — | motioneye-project | motioneye | CWE-256 | motionEye: Authentication possible via password hash |
| CVE-2026-55158 | 9.1 | — | wktk | conflibot | CWE-78 | Conflibot: Command injection via crafted pull request branch names under pull… |
| CVE-2026-63696 | 9.1 | — | Dell | SmartFabric OS10 Software | CWE-494 | Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Downlo… |
| CVE-2026-73944 | 9.1 | — | Oracle Corporation | Oracle Access Manager | CWE-287 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-73946 | 9.1 | — | Oracle Corporation | Oracle Access Manager | — | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-73952 | 9.1 | — | Oracle Corporation | Oracle WebCenter Portal | CWE-287 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-76675 | 9.1 | — | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | — | Authenticated Command Injection Vulnerability Leads to Privilege Escalation i… |
| CVE-2026-83001 | 9.1 | — | Oracle Corporation | Oracle Access Manager | — | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middlewar… |
| CVE-2026-83006 | 9.1 | — | Oracle Corporation | Oracle WebCenter Enterprise Capture | — | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fu… |
| CVE-2026-83064 | 9.1 | — | Oracle Corporation | Oracle WebCenter Portal | — | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-83103 | 9.1 | — | Oracle Corporation | Oracle Forms | — | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (compon… |
| CVE-2026-83104 | 9.1 | — | Oracle Corporation | Oracle Forms | CWE-287 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (compon… |
| CVE-2026-83107 | 9.1 | — | Oracle Corporation | Oracle Forms | — | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (compon… |
| CVE-2026-83149 | 9.1 | — | Oracle Corporation | Oracle Application Testing Suite | — | Vulnerability in Oracle Application Testing Suite. The supported version that… |
| CVE-2026-83154 | 9.1 | — | Oracle Corporation | Siebel CRM End User | CWE-287 | Vulnerability in the Siebel CRM End User product of Oracle Siebel CRM (compon… |
| CVE-2026-83196 | 9.1 | — | Oracle Corporation | Siebel CRM Deployment | — | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (comp… |
| CVE-2026-83197 | 9.1 | — | Oracle Corporation | Siebel Apps - Financial Services | — | Vulnerability in the Siebel Apps - Financial Services product of Oracle Siebe… |
| CVE-2026-83201 | 9.1 | — | Oracle Corporation | Siebel CRM Deployment | CWE-287 | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (comp… |
| CVE-2026-83202 | 9.1 | — | Oracle Corporation | Siebel CRM Deployment | CWE-287 | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (comp… |
| CVE-2026-83229 | 9.1 | — | Oracle Corporation | Siebel CRM Deployment | — | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (comp… |
| CVE-2026-83260 | 9.1 | — | Oracle Corporation | Oracle Agile PLM | — | Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (compone… |
| CVE-2026-83268 | 9.1 | — | Oracle Corporation | Oracle BI Publisher | — | Vulnerability in the Oracle BI Publisher product of Oracle Analytics (compone… |
| CVE-2026-87128 | 9.1 | — | Oracle Corporation | Oracle Hyperion Data Relationship Management | CWE-287 | Vulnerability in the Oracle Hyperion Data Relationship Management product of … |
| CVE-2026-87129 | 9.1 | — | Oracle Corporation | Oracle Hyperion Data Relationship Management | CWE-287 | Vulnerability in the Oracle Hyperion Data Relationship Management product of … |
| CVE-2026-87170 | 9.1 | — | Oracle Corporation | Oracle Hyperion Financial Management | CWE-287 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87173 | 9.1 | — | Oracle Corporation | Oracle Hyperion Financial Management | CWE-287 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87175 | 9.1 | — | Oracle Corporation | Oracle Hyperion Financial Management | CWE-287 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87176 | 9.1 | — | Oracle Corporation | Oracle Hyperion Financial Management | CWE-287 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87189 | 9.1 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87214 | 9.1 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87217 | 9.1 | — | Oracle Corporation | Oracle Hyperion Financial Management | CWE-287 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87223 | 9.1 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-89022 | 9.1 | — | bookstackapp | bookstack | CWE-290 | BookStack < 26.05.5 Authentication Bypass via Social Login Provider Confusion |
| CVE-2023-54397 | 9.0 | — | tornadoweb | tornado | CWE-444 | Tornado before 6.3.3 HTTP Request Smuggling via Content-Length |
| CVE-2024-14029 | 9.0 | — | tornadoweb | tornado | CWE-444 | Tornado before 6.4.1 HTTP Request Smuggling via Transfer-Encoding |
| CVE-2026-61549 | 9.0 | — | woodpecker-ci | woodpecker | CWE-269 | Woodpecker: Privilege escalation via unrestricted serviceAccountName in the K… |
| CVE-2026-77866 | 9.0 | — | Slab | safeurl | CWE-636 | SSRF protection bypass in safeurl via IPv6 addresses and unresolvable hosts |
| CVE-2026-77972 | 9.0 | — | Slab | safeurl | CWE-367 | safeurl validated address is not bound to the request, allowing DNS rebinding |
| CVE-2026-83105 | 9.0 | — | Oracle Corporation | Oracle Forms | — | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (compon… |
| CVE-2026-91931 | 9.0 | — | FlowiseAI | Flowise | CWE-78 | Flowise before 3.1.4 Remote Code Execution via Custom MCP npx |
| CVE-2026-91932 | 9.0 | — | FlowiseAI | Flowise | CWE-20 | Flowise before 3.1.4 Remote Code Execution via cwd Parameter |
| CVE-2026-83304 | 8.9 | — | Oracle Corporation | Oracle Business Intelligence Enterprise Edition | — | Vulnerability in the Oracle Business Intelligence Enterprise Edition product … |
| CVE-2026-0159 | 8.8 | — | Android | CWE-787 | In Cellular Modem, there is a possible out-of-bounds write due to a missing b… | |
| CVE-2026-0170 | 8.8 | — | Android | CWE-787 | In Vp9DecodeFrameTag of vp9hwd_headers.cc, there is a possible out-of-bounds … | |
| CVE-2026-0171 | 8.8 | — | Android | CWE-787 | In multiple locations, there is a possible out-of-bounds write due to a logic… | |
| CVE-2026-0200 | 8.8 | — | Android | CWE-122 | In Cellular Modem, there is a possible out-of-bounds write due to a heap buff… | |
| CVE-2026-12728 | 8.8 | — | IBM | MQ | — | IBM MQ Java messaging is vulnerable to remote code execution |
| CVE-2026-14805 | 8.8 | — | StylemixThemes | Consulting - Business, Finance WordPress Theme | CWE-269 | Consulting - Business, Finance WordPress Theme <= 6.7.16 - Authenticated (Sub… |
| CVE-2026-16140 | 8.8 | — | OpenBMC | phosphor-net-ipmid | CWE-863 | OpenBMC IPMI Privilege Escalation via Retargeted RAKP 1 |
| CVE-2026-19780 | 8.8 | — | Koha | Koha | CWE-95 | Koha Eval Code Injection Remote Code Execution Vulnerability |
| CVE-2026-40058 | 8.8 | — | CrowdStrike | Falcon sensor for Windows | CWE-367 | Vulnerability Affecting Office Macro Removal in CrowdStrike Falcon Sensor for… |
| CVE-2026-44300 | 8.8 | — | opencost | opencost | CWE-20 | OpenCost ServiceKey Endpoint Unauthorized Credential Overwrite/Injection |
| CVE-2026-52484 | 8.8 | — | n/a | n/a | CWE-78 | An issue in MitraStar GPT-2742GX4X5v6-SV GL_g2.5_100XNT0b23_3 allows an authe… |
| CVE-2026-55318 | 8.8 | — | Android | CWE-362 | In multiple locations, there is a possible use-after-free due to a race condi… | |
| CVE-2026-55331 | 8.8 | — | Android | CWE-120 | In IP Multimedia Subsystem, there is a possible out-of-bounds write due to an… | |
| CVE-2026-56882 | 8.8 | — | Android | CWE-200 | In Cellular Modem, there is a possible information disclosure due to a logic … | |
| CVE-2026-56920 | 8.8 | — | Android | CWE-787 | In s_decode_vui_param of fw_hevc_dec_header.c, there is a possible out-of-bou… | |
| CVE-2026-56942 | 8.8 | — | Android | CWE-787 | In ReadTileInfo of vp9hwd_headers.cc, there is a possible out-of-bounds write… | |
| CVE-2026-56974 | 8.8 | — | Android | CWE-20 | In Start of AudioRtpPayloadEncoderNode.cpp, there is a possible out-of-bounds… | |
| CVE-2026-56997 | 8.8 | — | Android | CWE-787 | In Av1DecodeFrameTag of vp9hwd_headers.cc, there is a possible out-of-bounds … | |
| CVE-2026-58683 | 8.8 | — | Android | CWE-20 | In IP Multimedia Subsystem, there is a possible out-of-bounds write due to im… | |
| CVE-2026-58710 | 8.8 | — | Android | CWE-120 | In DecodeFilmGrainParams of film_grain_dec.cc, there is a possible out-of-bou… | |
| CVE-2026-59160 | 8.8 | — | DerYeger | yeger | CWE-306 | Yeger: Unauthenticated Network-Exposed Turborepo Task Execution via /api/run |
| CVE-2026-69486 | 8.8 | — | Microsoft | Microsoft Edge (Chromium-based) | CWE-122 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2026-70915 | 8.8 | — | Oracle Corporation | Oracle Identity Manager | — | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middlew… |
| CVE-2026-71047 | 8.8 | — | Oracle Corporation | Oracle Identity Manager | — | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middlew… |
| CVE-2026-73942 | 8.8 | — | Oracle Corporation | Oracle Identity Manager | — | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middlew… |
| CVE-2026-73949 | 8.8 | — | Oracle Corporation | Oracle WebCenter Portal | — | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-73959 | 8.8 | — | Oracle Corporation | Oracle WebCenter Portal | — | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-76676 | 8.8 | — | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | — | Unauthenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution… |
| CVE-2026-76677 | 8.8 | — | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | — | Authorization Bypass Leading to Privilege Escalation in HPE Networking EdgeCo… |
| CVE-2026-76678 | 8.8 | — | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | — | Authenticated Command Injection Vulnerability leads to Remote Code Execution … |
| CVE-2026-83005 | 8.8 | — | Oracle Corporation | Oracle WebCenter Enterprise Capture | — | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fu… |
| CVE-2026-83008 | 8.8 | — | Oracle Corporation | Oracle WebCenter Enterprise Capture | — | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fu… |
| CVE-2026-83009 | 8.8 | — | Oracle Corporation | Oracle WebCenter Enterprise Capture | — | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fu… |
| CVE-2026-83013 | 8.8 | — | Oracle Corporation | Oracle WebCenter Enterprise Capture | — | Vulnerability in the Oracle WebCenter Enterprise Capture product of Oracle Fu… |
| CVE-2026-83017 | 8.8 | — | Oracle Corporation | PeopleSoft Enterprise PeopleTools | — | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle Peop… |
| CVE-2026-83032 | 8.8 | — | Oracle Corporation | Oracle WebCenter Sites | — | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middlewa… |
| CVE-2026-83033 | 8.8 | — | Oracle Corporation | Oracle WebCenter Sites | — | Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middlewa… |
| CVE-2026-83053 | 8.8 | — | Oracle Corporation | Oracle WebCenter Portal | — | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middlew… |
| CVE-2026-83069 | 8.8 | — | Oracle Corporation | Oracle Fusion Middleware Control | — | Vulnerability in the Oracle Fusion Middleware Control product of Oracle Fusio… |
| CVE-2026-83086 | 8.8 | — | Oracle Corporation | Siebel CRM Cloud Applications | — | Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel C… |
| CVE-2026-83090 | 8.8 | — | Oracle Corporation | Oracle Spares Management | — | Vulnerability in the Oracle Spares Management product of Oracle E-Business Su… |
| CVE-2026-83119 | 8.8 | — | Oracle Corporation | Oracle User Management | — | Vulnerability in the Oracle User Management product of Oracle E-Business Suit… |
| CVE-2026-83120 | 8.8 | — | Oracle Corporation | Oracle Alert | — | Vulnerability in the Oracle Alert product of Oracle E-Business Suite (compone… |
| CVE-2026-83121 | 8.8 | — | Oracle Corporation | Oracle Marketing | — | Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (com… |
| CVE-2026-83122 | 8.8 | — | Oracle Corporation | Oracle Report Manager | — | Vulnerability in the Oracle Report Manager product of Oracle E-Business Suite… |
| CVE-2026-83124 | 8.8 | — | Oracle Corporation | Oracle Sales Online | — | Vulnerability in the Oracle Sales Online product of Oracle E-Business Suite (… |
| CVE-2026-83125 | 8.8 | — | Oracle Corporation | Oracle Report Manager | — | Vulnerability in the Oracle Report Manager product of Oracle E-Business Suite… |
| CVE-2026-83136 | 8.8 | — | Oracle Corporation | Oracle Spares Management | — | Vulnerability in the Oracle Spares Management product of Oracle E-Business Su… |
| CVE-2026-83137 | 8.8 | — | Oracle Corporation | Oracle Spares Management | — | Vulnerability in the Oracle Spares Management product of Oracle E-Business Su… |
| CVE-2026-83148 | 8.8 | — | Oracle Corporation | Oracle Application Testing Suite | — | Vulnerability in Oracle Application Testing Suite. The supported version that… |
| CVE-2026-83153 | 8.8 | — | Oracle Corporation | Siebel CRM Deployment | — | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (comp… |
| CVE-2026-83160 | 8.8 | — | Oracle Corporation | Oracle Database Server | — | Vulnerability in the RDBMS component of Oracle Database Server. Supported ver… |
| CVE-2026-83163 | 8.8 | — | Oracle Corporation | Oracle Application Object Library | — | Vulnerability in the Oracle Application Object Library product of Oracle E-Bu… |
| CVE-2026-83164 | 8.8 | — | Oracle Corporation | Oracle Customer Interaction History | — | Vulnerability in the Oracle Customer Interaction History product of Oracle E-… |
| CVE-2026-83165 | 8.8 | — | Oracle Corporation | Oracle Customer Interaction History | — | Vulnerability in the Oracle Customer Interaction History product of Oracle E-… |
| CVE-2026-83168 | 8.8 | — | Oracle Corporation | Oracle Applications Manager | — | Vulnerability in the Oracle Applications Manager product of Oracle E-Business… |
| CVE-2026-83180 | 8.8 | — | Oracle Corporation | Siebel CRM Deployment | — | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (comp… |
| CVE-2026-83189 | 8.8 | — | Oracle Corporation | Oracle User Management | — | Vulnerability in the Oracle User Management product of Oracle E-Business Suit… |
| CVE-2026-83194 | 8.8 | — | Oracle Corporation | Oracle Depot Repair | — | Vulnerability in the Oracle Depot Repair product of Oracle E-Business Suite (… |
| CVE-2026-83199 | 8.8 | — | Oracle Corporation | Siebel CRM Deployment | — | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (comp… |
| CVE-2026-83205 | 8.8 | — | Oracle Corporation | Oracle Applications Framework | — | Vulnerability in the Oracle Applications Framework product of Oracle E-Busine… |
| CVE-2026-83208 | 8.8 | — | Oracle Corporation | Siebel CRM Deployment | — | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (comp… |
| CVE-2026-83209 | 8.8 | — | Oracle Corporation | Siebel CRM Development | — | Vulnerability in the Siebel CRM Development product of Oracle Siebel CRM (com… |
| CVE-2026-83210 | 8.8 | — | Oracle Corporation | Siebel CRM Deployment | — | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (comp… |
| CVE-2026-83212 | 8.8 | — | Oracle Corporation | Siebel Apps - Self Service | — | Vulnerability in the Siebel Apps - Self Service product of Oracle Siebel CRM … |
| CVE-2026-83271 | 8.8 | — | Oracle Corporation | Oracle Database Server | — | Vulnerability in the RDBMS component of Oracle Database Server. Supported ver… |
| CVE-2026-83301 | 8.8 | — | Oracle Corporation | Oracle Business Intelligence Enterprise Edition | — | Vulnerability in the Oracle Business Intelligence Enterprise Edition product … |
| CVE-2026-83306 | 8.8 | — | Oracle Corporation | Oracle JDeveloper | — | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (c… |
| CVE-2026-83315 | 8.8 | — | Oracle Corporation | Oracle BI Publisher | — | Vulnerability in the Oracle BI Publisher product of Oracle Analytics (compone… |
| CVE-2026-83329 | 8.8 | — | Oracle Corporation | Oracle Applications Framework | — | Vulnerability in the Oracle Applications Framework product of Oracle E-Busine… |
| CVE-2026-83331 | 8.8 | — | Oracle Corporation | Oracle Applications Framework | — | Vulnerability in the Oracle Applications Framework product of Oracle E-Busine… |
| CVE-2026-83335 | 8.8 | — | Oracle Corporation | Oracle Business Intelligence Enterprise Edition | — | Vulnerability in the Oracle Business Intelligence Enterprise Edition product … |
| CVE-2026-83338 | 8.8 | — | Oracle Corporation | Oracle Applications Manager | — | Vulnerability in the Oracle Applications Manager product of Oracle E-Business… |
| CVE-2026-83340 | 8.8 | — | Oracle Corporation | Oracle Identity Manager | — | Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middlew… |
| CVE-2026-83348 | 8.8 | — | Oracle Corporation | Oracle Database Server | — | Vulnerability in the RDBMS component of Oracle Database Server. Supported ver… |
| CVE-2026-83410 | 8.8 | — | Oracle Corporation | Oracle Coherence | — | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-83411 | 8.8 | — | Oracle Corporation | Oracle Coherence | — | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (co… |
| CVE-2026-83423 | 8.8 | — | Oracle Corporation | Oracle JDeveloper | — | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (c… |
| CVE-2026-83444 | 8.8 | — | Oracle Corporation | Oracle Product Hub | — | Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (c… |
| CVE-2026-83445 | 8.8 | — | Oracle Corporation | Oracle Complex Maintenance, Repair and Overhaul | — | Vulnerability in the Oracle Complex Maintenance, Repair and Overhaul product … |
| CVE-2026-83454 | 8.8 | — | Oracle Corporation | Oracle Document Management and Collaboration | — | Vulnerability in the Oracle Document Management and Collaboration product of … |
| CVE-2026-83456 | 8.8 | — | Oracle Corporation | Oracle Demand Signal Repository | — | Vulnerability in the Oracle Demand Signal Repository product of Oracle E-Busi… |
| CVE-2026-83479 | 8.8 | — | Oracle Corporation | Oracle Contracts | — | Vulnerability in the Oracle Contracts product of Oracle E-Business Suite (com… |
| CVE-2026-85893 | 8.8 | — | Microsoft | Microsoft Edge (Chromium-based) | CWE-416 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2026-87150 | 8.8 | — | Oracle Corporation | Oracle Bills of Material | — | Vulnerability in the Oracle Bills of Material product of Oracle E-Business Su… |
| CVE-2026-87155 | 8.8 | — | Oracle Corporation | Oracle Product Hub | — | Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (c… |
| CVE-2026-87162 | 8.8 | — | Oracle Corporation | Oracle Contract Lifecycle Management for Public Sector | — | Vulnerability in the Oracle Contract Lifecycle Management for Public Sector p… |
| CVE-2026-87163 | 8.8 | — | Oracle Corporation | Oracle Purchasing | — | Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (co… |
| CVE-2026-87165 | 8.8 | — | Oracle Corporation | Oracle Contract Lifecycle Management for Public Sector | — | Vulnerability in the Oracle Contract Lifecycle Management for Public Sector p… |
| CVE-2026-87179 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87180 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87181 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87182 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87185 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87187 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87201 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87202 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87204 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87224 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87226 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87227 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-87238 | 8.8 | — | Oracle Corporation | Oracle Hyperion Financial Management | — | Vulnerability in the Oracle Hyperion Financial Management product of Oracle H… |
| CVE-2026-88616 | 8.8 | — | n/a | n/a | CWE-863 | An issue in RuoYi-Vue-Plus 6.0.0 allows a remote attacker to execute arbitrar… |
| CVE-2026-91709 | 8.8 | — | Chrome | CWE-843 | Type confusion in ServiceWorker in Google Chrome prior to 153.0.8010.47 allow… | |
| CVE-2026-91721 | 8.8 | — | Chrome | CWE-416 | Use after free in Internals in Google Chrome prior to 153.0.8010.47 allowed a… | |
| CVE-2026-91731 | 8.8 | — | Chrome | CWE-843 | Type confusion in Compositing in Google Chrome prior to 153.0.8010.47 allowed… | |
| CVE-2026-91736 | 8.8 | — | Chrome | CWE-416 | Use after free in DOM in Google Chrome prior to 153.0.8010.47 allowed a remot… | |
| CVE-2026-91741 | 8.8 | — | Chrome | CWE-843 | Type confusion in CacheStorage in Google Chrome prior to 153.0.8010.47 allowe… | |
| CVE-2026-92006 | 8.8 | — | Mozilla | Firefox | CWE-120 | Privilege escalation due to incorrect boundary conditions in the Graphics: Ca… |
| CVE-2026-92007 | 8.8 | — | Mozilla | Firefox | CWE-120 | Privilege escalation due to incorrect boundary conditions in the Graphics: Ca… |
| CVE-2026-92008 | 8.8 | — | Mozilla | Firefox | CWE-120 | Privilege escalation due to incorrect boundary conditions in the Graphics: Ca… |
| CVE-2026-92009 | 8.8 | — | Mozilla | Firefox | CWE-120 | Privilege escalation due to incorrect boundary conditions in the Graphics: Ca… |
| CVE-2026-92010 | 8.8 | — | Mozilla | Firefox | CWE-120 | Privilege escalation due to incorrect boundary conditions in the Graphics: Ca… |
| CVE-2026-92011 | 8.8 | — | Mozilla | Firefox | CWE-120 | Privilege escalation due to incorrect boundary conditions in the Graphics: Ca… |
| CVE-2026-92012 | 8.8 | — | Mozilla | Firefox | CWE-120 | Privilege escalation due to incorrect boundary conditions in the Graphics: Ca… |
| CVE-2026-92013 | 8.8 | — | Mozilla | Firefox | CWE-120 | Privilege escalation due to incorrect boundary conditions in the Graphics: Ca… |
| CVE-2026-92014 | 8.8 | — | Mozilla | Firefox | CWE-120 | Privilege escalation due to incorrect boundary conditions in the Graphics com… |
| CVE-2026-92015 | 8.8 | — | Mozilla | Firefox | CWE-269 | Privilege escalation in the WebExtensions component |
| CVE-2026-92017 | 8.8 | — | Mozilla | Firefox | CWE-269 | Privilege escalation in the DOM: Service Workers component |
| CVE-2026-92020 | 8.8 | — | Mozilla | Firefox | CWE-120 | Privilege escalation due to incorrect boundary conditions in the Graphics: We… |
| CVE-2026-92033 | 8.8 | — | Mozilla | Firefox | CWE-269 | Privilege escalation in Firefox for Android |
| CVE-2026-92043 | 8.8 | — | Mozilla | Firefox | CWE-120 | Privilege escalation due to incorrect boundary conditions in the Audio/Video … |
| CVE-2026-92047 | 8.8 | — | Mozilla | Firefox | CWE-269 | Privilege escalation in the Crash Reporting component |
| CVE-2026-92052 | 8.8 | — | Mozilla | Firefox | CWE-457 | Privilege escalation due to uninitialized memory in the Graphics: CanvasWebGL… |
| CVE-2026-92053 | 8.8 | — | Mozilla | Firefox | CWE-269 | Privilege escalation in the Graphics: CanvasWebGL component |
| CVE-2026-92054 | 8.8 | — | Mozilla | Firefox | CWE-119 | Privilege escalation in the Memory component |
| CVE-2026-92055 | 8.8 | — | Mozilla | Firefox | CWE-269 | Privilege escalation in the DevTools component |
Results continue: ranks 401–1426.
Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.
Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.
Day boundary. A day is a UTC calendar day. This page covers 2026-09-15 00:00:00–23:59:59 UTC. All times shown are UTC.
Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.
Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.
Machine-readable. This edition as JSON or CSV — the ranked results, transactions, and counts, for citation or ingestion. Frozen at publication; later changes appear as transactions on later editions.