Security Box Score — September 23, 2026 — page 2
Edition of September 23, 2026, continued — page 2 of 2. Back to page 1
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-88831 | 5.3 | — | Red Hat | Red Hat Hardened Images | CWE-636 | Busybox: busybox: httpd silently fails open when ip deny rules contain invali… |
| CVE-2026-88840 | 5.3 | — | Red Hat | Red Hat Hardened Images | CWE-125 | Busybox: busybox: tls ssl_server reads one byte out of bounds when parsing tr… |
| CVE-2026-90900 | 5.3 | — | joomshaper.com | Easy Store extension for Joomla | CWE-352 | Joomla Extension - joomshaper.com - Missing CSRF Token Verification in Storef… |
| CVE-2026-90950 | 5.3 | — | Unknown | Paid Membership Subscriptions | CWE-693 | Paid Member Subscriptions < 3.1.0 - Unauthenticated reCAPTCHA Bypass via Regi… |
| CVE-2026-92419 | 5.3 | — | WEBCON | WEBCON BPS | CWE-639 | IDOR in WEBCON BPS |
| CVE-2026-93421 | 5.3 | — | mesop-dev | mesop | CWE-117 | Mesop: Unauthenticated ANSI Escape Sequence Injection in CSP Reporting Endpoint |
| CVE-2026-93623 | 5.3 | — | Jordy Meow | AI Engine | CWE-639 | WordPress AI Engine plugin <= 3.7.8 - Insecure Direct Object References (IDOR… |
| CVE-2026-94079 | 5.3 | — | WP User Manager | WP User Manager | CWE-862 | WordPress WP User Manager plugin <= 2.9.19 - Broken Access Control vulnerability |
| CVE-2026-94080 | 5.3 | — | WebWizards | MarketKing | CWE-862 | WordPress MarketKing plugin <= 2.1.70 - Broken Access Control vulnerability |
| CVE-2026-95514 | 5.3 | — | netgsm | Netgsm | CWE-289 | WordPress Netgsm plugin <= 2.10.0 - Bypass Vulnerability vulnerability |
| CVE-2026-95524 | 5.3 | — | weDevs | WP User Frontend | CWE-290 | WordPress WP User Frontend plugin <= 4.3.11 - Bypass Vulnerability vulnerability |
| CVE-2026-95592 | 5.3 | — | Oleh RadiusTheme | Team | CWE-639 | WordPress Team plugin <= 6.0.0 - Insecure Direct Object References (IDOR) vul… |
| CVE-2026-95600 | 5.3 | — | TrustedLogin | TrustedLogin Connector | CWE-497 | WordPress TrustedLogin Connector plugin <= 2.0.3 - Sensitive Data Exposure vu… |
| CVE-2026-96652 | 5.3 | — | Plex | Media Server | CWE-918 | Plex Media Server SSRF |
| CVE-2026-96655 | 5.3 | — | Plex | Media Server | CWE-918 | Plex Media Server arbitrary-host SSRF |
| CVE-2026-96672 | 5.3 | — | Frappe | ERPNext | CWE-470 | Frappe ERPNext before 16.34.1 Unauthorized Method Invocation |
| CVE-2026-96739 | 5.3 | — | n/a | SEMCMS | CWE-79 | SEMCMS KindEditor Upload upload_json.php cross site scripting |
| CVE-2026-71458 | 5.0 | — | Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | CWE-204 | Automation-controller: automation-controller-container: automation-controller… |
| CVE-2026-71459 | 5.0 | — | Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | CWE-862 | Automation-controller: automation-controller-container: automation-controller… |
| CVE-2026-63001 | 4.8 | — | redaxo | core | CWE-79 | REDAXO: Stored XSS via Unescaped Media Manager Type Name in `mediaIsInUse()` |
| CVE-2026-63002 | 4.8 | — | redaxo | core | CWE-79 | REDAXO: Stored XSS in Mediapool Sync Page via Unescaped Filesystem Filenames |
| CVE-2026-86604 | 4.8 | — | Unknown | GTranslate | CWE-74 | GTranslate < 5.0.1 - Unauthenticated Arbitrary Shortcode Execution via Email … |
| CVE-2026-94457 | 4.8 | — | WebFactory | Captcha Code | CWE-290 | WordPress Captcha Code plugin <= 3.32 - Bypass Vulnerability vulnerability |
| CVE-2026-96674 | 4.8 | — | ALSA Project | alsa-lib | CWE-190 | alsa-lib through 1.2.16.1 Integer Overflow via Topology File |
| CVE-2026-96675 | 4.8 | — | ALSA Project | alsa-lib | CWE-129 | alsa-lib through 1.2.16.1 Denial of Service via pcm_multi |
| CVE-2026-19087 | 4.4 | — | IBM | Financial Transaction Manager (FTM) for RedHat OpenShift | CWE-250 | IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities |
| CVE-2026-96545 | 4.4 | — | Red Hat | Red Hat Enterprise Linux 10 | CWE-125 | Gimp: gimp: out-of-bounds heap read in the 4bpp tim image loader |
| CVE-2026-6327 | 4.3 | — | IBM | Concert | CWE-117 | Multiple Vulnerabilities in IBM Concert Software |
| CVE-2026-55632 | 4.3 | — | gocd | gocd | CWE-863 | GoCD is vulnerable to authorization bypass via pipeline structure API |
| CVE-2026-61834 | 4.3 | — | thomaspoignant | scim-patch | CWE-915 | scim-patch: Mutation of Inherited Built-in Method Objects |
| CVE-2026-62998 | 4.3 | — | redaxo | core | CWE-20 | REDAXO: Unwhitelisted ORDER BY Column in rex_list Allows Authenticated Column… |
| CVE-2026-71460 | 4.3 | — | Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | CWE-862 | Automation-controller: automation-controller-container: automation-controller… |
| CVE-2026-71461 | 4.3 | — | Red Hat | Red Hat Ansible Automation Platform 2.7 | CWE-209 | Automation-controller: automation-controller-container: automation-controller… |
| CVE-2026-84718 | 4.3 | — | Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | CWE-348 | Automation-controller: automation-controller: client ip spoofing in audit/acc… |
| CVE-2026-92529 | 4.3 | — | GitLab | GitLab | CWE-863 | Incorrect Authorization in GitLab |
| CVE-2026-92530 | 4.3 | — | GitLab | GitLab | CWE-348 | Use of Less Trusted Source in GitLab |
| CVE-2026-93513 | 4.3 | — | SiteSkite | SiteSkite | CWE-639 | WordPress SiteSkite plugin <= 2.1.7 - Insecure Direct Object References (IDOR… |
| CVE-2026-96446 | 4.2 | — | Red Hat | Red Hat Build of Keycloak | CWE-862 | Keycloak-services: keycloak-services: par single-use bypass via prompt=none s… |
| CVE-2026-71462 | 4.1 | — | Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | CWE-204 | Automation-controller: automation-controller-container: automation-controller… |
| CVE-2026-96807 | 4.0 | — | Flatpak | Flatpak | CWE-61 | In Flatpak before 1.18.1, a malicious sandboxed app can replace ~/.var/app/$a… |
| CVE-2026-71178 | 3.7 | — | Dell | Secure Connect Gateway (SCG) Policy Manager | CWE-647 | Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.1… |
| CVE-2026-77756 | 3.7 | — | Apache Software Foundation | Apache Tomcat | CWE-444 | Apache Tomcat: Transfer-Encoding honored for HTTP/1.0 requests |
| CVE-2026-87848 | 3.7 | — | Unknown | MPCX Lightbox | CWE-862 | MPCX Lightbox 1.2.2 - 1.2.5 - Unauthenticated Non-Public Post Content Disclosure |
| CVE-2026-71464 | 3.1 | — | Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | CWE-88 | Automation-controller: automation-controller-container: automation-controller… |
| CVE-2026-71465 | 3.1 | — | Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | CWE-88 | Automation-controller: automation-controller-container: automation-controller… |
| CVE-2026-92628 | 3.1 | — | GitLab | GitLab | CWE-362 | Concurrent Execution using Shared Resource with Improper Synchronization ('Ra… |
| CVE-2026-96548 | 2.9 | — | sfturing | hosp_order | CWE-259 | sfturing hosp_order jdbc.properties hard-coded credentials |
| CVE-2026-96550 | 2.9 | — | sfturing | hosp_order | CWE-310 | sfturing hosp_order MailUtil.java getProperties cleartext transmission |
| CVE-2026-96872 | 2.9 | — | The Wikimedia Foundation | Mediawiki - WikiLambda Extension | CWE-280 | WikiLambda public function execution bypasses the unsaved-code permission thr… |
| CVE-2026-4921 | 2.7 | — | IBM | Guardium Data Protection | CWE-209 | IBM Guardium Data Protection is affected by multiple vulnerabilities. |
| CVE-2026-71463 | 2.7 | — | Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | CWE-209 | Automation-controller: automation-controller-container: automation-controller… |
| CVE-2026-96546 | 2.5 | — | Red Hat | Red Hat Enterprise Linux 10 | CWE-125 | Gimp: gimp: one-byte out-of-bounds heap read in the uncompressed dds loader |
| CVE-2026-77285 | 2.4 | — | openbao | openbao | CWE-532 | OpenBao Agent Writes Secrets to Stdout |
| CVE-2026-66069 | 2.3 | — | rabbitmq | rabbitmq-server | CWE-862 | RabbitMQ: Monitoring-tag DELETE of auth-attempt metrics |
| CVE-2026-66075 | 2.3 | — | rabbitmq | rabbitmq-server | CWE-862 | RabbitMQ: Monitoring-tag user can restart federation links |
| CVE-2026-66076 | 2.3 | — | rabbitmq | rabbitmq-server | CWE-862 | RabbitMQ: Cross-vhost quorum-queue status and stream tracking disclosure |
| CVE-2026-67240 | 2.3 | — | rabbitmq | rabbitmq-server | CWE-1333 | RabbitMQ: ReDoS via AMQP 1.0 SQL filter LIKE wildcard |
| CVE-2026-78253 | 2.3 | — | qt | qt | CWE-674 | Denial-of-service (stack-exhaustion) vulnerability in QXmlStreamReader::readE… |
| CVE-2026-67218 | 2.1 | — | rabbitmq | rabbitmq-server | CWE-862 | RabbitMQ: Super-stream HTTP creation skips configure-permission check |
| CVE-2026-67224 | 2.1 | — | rabbitmq | rabbitmq-server | CWE-22 | RabbitMQ: Admin path-traversal write via trace name |
| CVE-2026-96551 | 2.1 | — | sfturing | hosp_order | CWE-352 | sfturing hosp_order CommonUserController.java cross-site request forgery |
| CVE-2026-96676 | 2.1 | — | Fast | FAC1900R | CWE-119 | Fast FAC1900R uhttpd get_alias_name stack-based overflow |
| CVE-2026-96678 | 2.1 | — | weiqingwen | spring-boot-forum | CWE-22 | weiqingwen spring-boot-forum Avatar Upload NewUserFormValidator.java validate… |
| CVE-2026-96680 | 2.1 | — | ByteDance | Coze Scraper Extension | CWE-862 | ByteDance Coze Scraper Extension External Message index.js chrome.runtime.onM… |
| CVE-2026-96549 | 1.9 | — | sfturing | hosp_order | CWE-310 | sfturing hosp_order CommonUserServiceImpl.java cleartext storage |
| CVE-2026-96552 | 1.3 | — | sfturing | hosp_order | CWE-325 | sfturing hosp_order User Password MD5.java MD5.getMD5 hash without salt |
| CVE-2026-82356 | await | — | Imprivata | Imprivata Enterprise Access Management | — | Imprivata EAM: Unrotatable X.509 RSA Key Pair in Production |
| CVE-2026-86867 | await | — | Cinnamon AI | Kotaemon | — | Cinnamon's kotaemon contains improper authorization checks in multi‑user chat… |
| CVE-2026-86926 | await | — | Claris | FileMaker Server | — | A heap buffer overflow vulnerability in the FileMaker Server database engine … |
| CVE-2026-86930 | await | — | Claris | FileMaker Server | — | An out-of-bounds read vulnerability in FileMaker Server for Linux allowed an … |
| CVE-2026-86934 | await | — | Claris | FileMaker Server | — | An authorization bypass vulnerability in the FileMaker Server Web Publishing … |
| CVE-2026-86938 | await | — | Claris | FileMaker Pro | — | A DLL hijacking vulnerability in the FileMaker Pro installer for Windows allo… |