boxscore/security

A daily page of record for published software vulnerabilities — the previous UTC day, closed and final. New here?

Sunday, October 4, 2026 · all times UTC← 2026-10-03 · archive

Security Box Score — October 4, 2026

CISA adds 1 to KEV; 64 CVEs published, led by zitadel (10).

64 CVEs published October 4, 2026: 13 critical, 13 high, 27 medium, 11 low; 1 in the KEV catalog at press time; 4 with a public exploit reference; 0 awaiting enrichment. 25 rendered as box scores below; the remaining 39 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published97150959——
KEV catalog size1734

Publication counts reflect the record since May 20, 2026 (archive start); KEV figures are catalog-wide.

Prior-year comparisons begin when the archive covers a full year; archive begins May 20, 2026.

3334 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux06205530264072611560.17.8.0019-188 ▼
microsoft12902201199369216290311.17.8.0047-8 ▼
google112842358110212471318090.37.5.0026-27 ▼
red hat219205438842553200.06.8.0035-12 ▼
apple056467166317148991.66.5.00190
suse053827162000.07.5.0036-9 ▼
canonical2521612195000.07.8.0022+2 ▲
freebsd04823673000.07.8.00160
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco0182547255160179.37.8.0046-11 ▼
ubiquiti065362810334.69.1.00500
palo alto networks0461426151324.34.7.00220
fortinet142121017330819.07.2.0040+1 ▲
netgear03400277000.04.3.00270
f502671441527.78.7.0050-7 ▼
ivanti0246162025520.88.8.01520
sonicwall019784019421.18.3.0050-5 ▼
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache97804165365249183320.27.5.0057+89 ▲
mozilla0379122169870900.08.8.0031-34 ▼
gitlab11058246211532.95.3.0035+1 ▲
drupal094119668411.15.7.0027-26 ▼
github023211100000.07.4.0054-3 ▼
docker0121830000.08.4.00170
wordpress0614103350.08.7.03920
eclipse022000000.09.3.00500
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle0290558116605631012840.17.8.00360
ibm0102319647333618610.17.5.0037-70 ▼
adobe08308236437592150.67.5.0036-2 ▼
progress0661540110611.58.1.0045-2 ▼
zohocorp04262970000.08.3.0117-1 ▼
solarwinds0261853010415.49.1.00670
veeam01961030100.08.6.00420
servicenow0107300200.09.4.00360
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
d-link07422281212300.08.5.0164-3 ▼
siemens052633103000.07.3.0026-1 ▼
synology046510256000.05.6.00320
rockwell automation04353260000.08.6.0029-18 ▼
advantech02021710000.08.6.00710
schneider electric01821150000.08.5.0044-4 ▼
hitachi energy0122460000.07.0.0025-4 ▼
abb0111640000.07.2.00180
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
dell03783417015222210.37.2.0027-19 ▼
nvidia030125206700000.07.8.0019-30 ▼
sourcecodester22390014396000.05.5.0042+1 ▲
openclaw022341148421000.07.1.00310
spring017013608314000.06.5.00330
mongodb0169699604100.07.1.0038-10 ▼
hewlett packard enterprise (hpe)01662280559110.67.2.0042-86 ▼
itsourcecode51580037121000.02.1.0033-1 ▼

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-85706.929699.810.0
CVE-2026-87902.455098.88.1
CVE-2026-76461.282798.19.8
CVE-2026-93616.196597.39.8
CVE-2026-76460.140396.510.0
CVE-2026-86218.129396.210.0
CVE-2026-85102.075594.39.8
CVE-2026-12269.069994.08.8
CVE-2026-67276.064593.59.2
CVE-2026-86060.063993.59.2
Highest CVSS
CVECVSSEPSSNote
CVE-2026-8570610.0.9296KEV
CVE-2026-7646010.0.1403KEV
CVE-2026-8621810.0.1293KEV
CVE-2026-7565010.0.0395KEV
CVE-2026-8200410.0.0325
CVE-2026-8615210.0.0288
CVE-2026-8597810.0.0144
CVE-2026-7336910.0.0125
CVE-2026-7569910.0.0125
CVE-2026-7570310.0.0125
Most disclosures (vendor)
VendorCVEs
linux1927
microsoft994
google635
oracle634
ibm334
apache284
red hat252
apple247
adobe222
dell188
Most KEV additions (YTD)
VendorKEV
microsoft31
cisco17
apple9
google9
fortinet8
linux6
adobe5
ivanti5
berriai4
checkpoint4
Most-affected ecosystems
EcosystemAdvisories
Maven120
NuGet24
Packagist24
npm23
PyPI13
crates.io10
Go9
RubyGems4
Fastest to KEV
CVEVendorDays
CVE-2026-58704Google0
CVE-2026-75650Adobe0
CVE-2026-86950Apple0
CVE-2026-87491Google0
CVE-2026-88779NetScaler0
CVE-2026-93952Arista Networks0
CVE-2026-102489Zammad GmbH1
CVE-2026-102490Zammad GmbH1
CVE-2026-84869ConnectWise2
CVE-2026-86218N-able2
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104n/a2021-11-171782
CVE-2021-27102n/a2021-11-171782
CVE-2021-27101n/a2021-11-171782
CVE-2021-27103n/a2021-11-171782
CVE-2021-21017Adobe2021-11-171782
CVE-2021-28550Adobe2021-11-171782
CVE-2021-42013Apache Software Foundation2021-11-171782
CVE-2021-41773Apache Software Foundation2021-11-171782
CVE-2021-30858Apple2021-11-171782
CVE-2021-30860Apple2021-11-171782

Transactions

ADDED TO KEV — CVE-2026-88779 (NetScaler ADC). Remediation due October 7, 2026.

DUE DATE PASSED — CVE-2026-76504 (Cisco Catalyst SD-WAN Manager). CISA remediation deadline was October 3, 2026; still in catalog.

PATCH SHIPPED — Red Hat Enterprise Linux 9: 3 CVEs (CVE-2026-90947, CVE-2026-90948, CVE-2026-97185). Fix versions published.

PATCH SHIPPED — CVE-2026-39601 (WPdevelop Booking Calendar). Fixed in Booking Calendar 11.9.

PATCH SHIPPED — CVE-2026-92248 (GNOME GIMP). Fixed in Red Hat Enterprise Linux 9 2:3.0.4-4.el9_8.14.

Yesterday's Results

How to read these box scores · glossary

64 CVEs published. 25 box scores, 39 table rows — nothing truncated.

NetScaler ADC — Memory overflow vulnerability leading to Denial of Service
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   N   N   H    8.7   .0028   18.2   YES
AFFECTED
  Product  Versions     Fixed
  ADC      unspecified  —
  Gateway  unspecified  —
TIMELINE
  Sep 10  Reserved by CNA
  Oct 4   Added to CISA KEV, due Oct 7
  Oct 4   Published (CNA: NetScaler)
CWE-119 · CNA: NetScaler · CVSS v4.0 · 3 references · NVD status: Undergoing Analysis · KEV due October 7, 2026
Ahsay AhsayCBS Replication Receiver UpdateReceivers.do os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0184   78.3     —
AFFECTED
  Product   Versions  Fixed
  AhsayCBS  10.3.0 –  10.3.4
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulDB)
CWE-77, CWE-78 · CNA: VulDB · CVSS v4.0 · 5 references · NVD status: Received
InternLM MindSearch Planner Agent graph.py ExecutionAction.run code injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0077   54.1     —
AFFECTED
  Product     Versions  Fixed
  MindSearch  0.1.0 –   —
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulDB)
CWE-74, CWE-94 · CNA: VulDB · CVSS v4.0 · 5 references · NVD status: Received
n/a Drogon — Drogon Static File Router StaticFileRouter.cc route path traversal
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   L   N   N    5.5   .0054   43.4     —
AFFECTED
  Product  Versions    Fixed
  Drogon   1.9.13-1 –  —
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulDB)
CWE-22 · CNA: VulDB · CVSS v4.0 · 4 references · NVD status: Received
Ahsay AhsayCBS API ApiStructsAction.java checkSysPwd improper authentication
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   L   L   L    5.5   .0038   30.0     —
AFFECTED
  Product   Versions  Fixed
  AhsayCBS  10.3.0 –  10.3.4
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulDB)
CWE-287 · CNA: VulDB · CVSS v4.0 · 5 references · NVD status: Received
topoteretes cognee JWT Signing Key get_api_auth_backend.py get_user_id_by_email hard-coded credentials
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   L   L    5.3   .0034   24.8     —
AFFECTED
  Product  Versions  Fixed
  cognee   1.5.0 –   1.6.0
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulDB)
CWE-259, CWE-798 · CNA: VulDB · CVSS v4.0 · 9 references · NVD status: Received
Omega Solution CoinEx Crypto Customer Information API customer-currency authorization
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   N   N    2.1   .0029   19.9     —
AFFECTED
  Product        Versions  Fixed
  CoinEx Crypto  2025 –    —
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulDB)
CWE-285, CWE-639 · CNA: VulDB · CVSS v4.0 · 5 references · NVD status: Received
Omega Solution CoinEx Crypto Customer Profile API customer authorization
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   L   L    2.1   .0029   19.1     —
AFFECTED
  Product        Versions  Fixed
  CoinEx Crypto  2025 –    —
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulDB)
CWE-285, CWE-639 · CNA: VulDB · CVSS v4.0 · 5 references · NVD status: Received
Omega Solution CoinEx Crypto Support Ticket API customer information disclosure
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   N   N    2.1   .0028   18.5     —
AFFECTED
  Product        Versions  Fixed
  CoinEx Crypto  2025 –    —
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulDB)
CWE-200, CWE-284 · CNA: VulDB · CVSS v4.0 · 5 references · NVD status: Received
Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) — WordPress Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin <= 2.0.20 - SQL Injection vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  C  H  N  L    9.3   .0025   14.8     —
AFFECTED
  Product                                                             Versions     Fixed
  Unlimited Elements For Elementor (Free Widgets, Addons, Templates)  unspecified  2.0.21
TIMELINE
  Sep 30  Reserved by CNA
  Oct 4   Published (CNA: Patchstack)
CWE-89 · CNA: Patchstack · CVSS v3.1 · 1 reference · NVD status: Received
mayswind ezBookkeeping 1.2.0 before 2.0.1 Privilege Escalation via Token Refresh Endpoint
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   L   N    5.3   .0020    8.7     —
AFFECTED
  Product        Versions  Fixed
  ezBookkeeping  1.2.0 –   —
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulnCheck)
CWE-863 · CNA: VulnCheck · CVSS v4.0 · 6 references · NVD status: Received
Omega Solution CoinEx Crypto Ticket Attachment Upload ticket cross site scripting
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   P   N   L   N    2.0   .0019    7.9     —
AFFECTED
  Product        Versions  Fixed
  CoinEx Crypto  2025 –    —
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulDB)
CWE-79, CWE-94 · CNA: VulDB · CVSS v4.0 · 5 references · NVD status: Received
Unknown Horizontal scrolling announcements — Horizontal Scrolling Announcements <= 2.6 - Contributor+ Stored XSS via Style Field
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   R  U  H  H  H    6.8   .0015    3.7     —
AFFECTED
  Product                             Versions     Fixed
  Horizontal scrolling announcements  unspecified  —
TIMELINE
  Jul 24  Reserved by CNA
  Oct 4   Published (CNA: WPScan)
CWE-79 · CNA: WPScan · CVSS v3.1 · 1 reference · NVD status: Received
Unknown Simple Shopping Cart — Simple Shopping Cart < 5.2.6 - Admin+ Stored XSS via PayPal API Credentials
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   R  U  L  L  N    3.5   .0015    3.7     —
AFFECTED
  Product               Versions     Fixed
  Simple Shopping Cart  unspecified  —
TIMELINE
  Oct 1   Reserved by CNA
  Oct 4   Published (CNA: WPScan)
CWE-79 · CNA: WPScan · CVSS v3.1 · 1 reference · NVD status: Received
VeronaLabs WP Statistics — WordPress WP Statistics plugin <= 14.16.14 - Cross Site Scripting (XSS) vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  C  L  L  L    7.1   .0015    3.3     —
AFFECTED
  Product        Versions     Fixed
  WP Statistics  unspecified  14.16.15
TIMELINE
  Sep 24  Reserved by CNA
  Oct 4   Published (CNA: Patchstack)
CWE-79 · CNA: Patchstack · CVSS v3.1 · 1 reference · NVD status: Received
Cozmoslabs TranslatePress — WordPress TranslatePress plugin <= 3.3.6 - Cross Site Scripting (XSS) vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  C  L  L  L    7.1   .0015    3.3     —
AFFECTED
  Product         Versions     Fixed
  TranslatePress  unspecified  3.3.7
TIMELINE
  Sep 30  Reserved by CNA
  Oct 4   Published (CNA: Patchstack)
CWE-79 · CNA: Patchstack · CVSS v3.1 · 1 reference · NVD status: Received
Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) — WordPress Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin <= 2.0.20 - Cross Site Scripting (XSS) vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  C  L  L  L    7.1   .0015    3.3     —
AFFECTED
  Product                                                             Versions     Fixed
  Unlimited Elements For Elementor (Free Widgets, Addons, Templates)  unspecified  2.0.21
TIMELINE
  Sep 30  Reserved by CNA
  Oct 4   Published (CNA: Patchstack)
CWE-79 · CNA: Patchstack · CVSS v3.1 · 1 reference · NVD status: Received
Liquid Web / StellarWP Gutenberg Blocks by Kadence Blocks — WordPress Gutenberg Blocks by Kadence Blocks plugin <= 3.7.11.1 - Cross Site Scripting (XSS) vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  C  L  L  L    7.1   .0015    3.3     —
AFFECTED
  Product                             Versions     Fixed
  Gutenberg Blocks by Kadence Blocks  unspecified  3.7.12
TIMELINE
  Sep 30  Reserved by CNA
  Oct 4   Published (CNA: Patchstack)
CWE-79 · CNA: Patchstack · CVSS v3.1 · 1 reference · NVD status: Received
Unknown Five Star Business Profile and Schema — Five Star Business Profile and Schema 2.3.20 - 2.3.21 - Author+ Sensitive Data Disclosure via Schema Field Default Callback
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  U  H  N  N    4.9   .0014    2.8     —
AFFECTED
  Product                                Versions  Fixed
  Five Star Business Profile and Schema  2.3.20 –  —
TIMELINE
  Sep 8   Reserved by CNA
  Oct 4   Published (CNA: WPScan)
CWE-200 · CNA: WPScan · CVSS v3.1 · 1 reference · NVD status: Received
Unknown User Private Files — User Private Files < 2.2.0 - Unauthenticated Private File Disclosure via .htaccess Rewrite Rule Bypass (Multisite)
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  L  N  N    5.3   .0014    2.6     —
AFFECTED
  Product             Versions     Fixed
  User Private Files  unspecified  —
TIMELINE
  Sep 24  Reserved by CNA
  Oct 4   Published (CNA: WPScan)
CWE-284 · CNA: WPScan · CVSS v3.1 · 1 reference · NVD status: Received
Unknown Razorpay for WooCommerce — Razorpay for WooCommerce < 4.8.8 - Unauthenticated Order Shipping Modification via IDOR
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  L  N    5.3   .0014    2.6     —
AFFECTED
  Product                   Versions     Fixed
  Razorpay for WooCommerce  unspecified  —
TIMELINE
  Oct 1   Reserved by CNA
  Oct 4   Published (CNA: WPScan)
CWE-639 · CNA: WPScan · CVSS v3.1 · 1 reference · NVD status: Received
n/a Laradock — Laradock Build Process Dockerfile code download
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   N   N   P   L   L   L    1.3   .0013    2.2     —
AFFECTED
  Product   Versions  Fixed
  Laradock  20.0 –    —
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulDB)
CWE-494 · CNA: VulDB · CVSS v4.0 · 5 references · NVD status: Received
Unknown CoCart — CoCart 4.9.0 - 4.9.6 - Administrator Account Creation via REST API Authentication Bypass
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  U  H  H  H    8.8   .0011    1.3     —
AFFECTED
  Product  Versions  Fixed
  CoCart   4.9.0 –   —
TIMELINE
  Sep 18  Reserved by CNA
  Oct 4   Published (CNA: WPScan)
CWE-352 · CNA: WPScan · CVSS v3.1 · 1 reference · NVD status: Received
WWBN AVideo 12.4 through 29.2.0 Stored XSS via Double-Encoded Video Title
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS   EPSS   %ile   KEV
   N   L   N   L   P   H   H   N    9.3      —      —     —
AFFECTED
  Product  Versions  Fixed
  AVideo   12.4 –    —
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulnCheck)
CWE-79 · CNA: VulnCheck · CVSS v4.0 · 3 references · NVD status: Received
WWBN AVideo through 29.2.0 Stored XSS via trailer1 in YouPHPFlix2 Templates
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS   EPSS   %ile   KEV
   N   L   N   L   P   H   H   N    9.3      —      —     —
AFFECTED
  Product  Versions     Fixed
  AVideo   unspecified  —
TIMELINE
  Oct 3   Reserved by CNA
  Oct 4   Published (CNA: VulnCheck)
CWE-79 · CNA: VulnCheck · CVSS v4.0 · 3 references · NVD status: Received
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-1052079.3—zitadelzitadelCWE-306ZITADEL before 4.17.3 Account Takeover via External IdP Linking
CVE-2026-1052099.3—zitadelzitadelCWE-862ZITADEL before 3.4.15 and 4.17.1 Cross-Organization Account Takeover via Pass…
CVE-2026-1052159.3—zitadelzitadelCWE-290ZITADEL before 4.16.2 Account Pre-Hijacking via Forged External IdP Callback
CVE-2026-1052119.2—zitadelzitadelCWE-200ZITADEL before 4.17.1 Authentication Bypass via Login V2 OTP returnCode
CVE-2026-1052169.1—microgo-microCWE-295go-micro before 6.0.0 Disabled TLS Certificate Verification via tls.Config He…
CVE-2026-1052189.1—go-paygopayCWE-295gopay before 1.5.119 Disabled TLS Certificate Verification in xhttp Client
CVE-2026-1052219.1—defunktgistCWE-295Gist RubyGem before 6.1.0 Disabled TLS Certificate Verification
CVE-2026-1052229.1—alexpechkarevgoogle-mapsCWE-295alexpechkarev/google-maps through 12.16 Disabled TLS Certificate Verification…
CVE-2026-1052108.8—zitadelzitadelCWE-287ZITADEL before 4.17.1 Unauthenticated MFA Enrollment via Login V1 Init Handlers
CVE-2026-1052138.8—zitadelzitadelCWE-287ZITADEL before 4.17.1 Authentication Bypass via Login V2 for Deactivated Orga…
CVE-2026-1052088.7—zitadelzitadelCWE-649ZITADEL before 4.17.3 Session Hijacking via Forgeable IdP Intent Tokens
CVE-2026-1052128.7—zitadelzitadelCWE-287ZITADEL before 3.4.14 and 4.16.2 Account Takeover via Passkey Enrollment
CVE-2026-1052198.7—mwilliamsonmammoth.jsCWE-1333Mammoth.js 1.3.0 before 1.12.3 ReDoS via Style Map Tokeniser
CVE-2026-1052208.5—klembottwinejsCWE-79Twine 2 Desktop through 2.12.0 Arbitrary Code Execution via Imported Story Files
CVE-2026-973077.5—StylemixThemesCost Calculator BuilderCWE-201WordPress Cost Calculator Builder plugin <= 4.0.17 - Sensitive Data Exposure …
CVE-2026-1051616.9—invariant-systems-aiaiirCWE-345invariant-systems-ai aiir Policy Gate signature verification
CVE-2026-1051636.9—crossplanecrossplane-runtimeCWE-362crossplane crossplane-runtime ImageConfig client.go Get toctou
CVE-2026-1051696.9—kishor-23food-waste-management-systemCWE-89kishor-23 food-waste-management-system Take Order delivery.php sql injection
CVE-2026-1051706.9—kishor-23food-waste-management-systemCWE-306kishor-23 food-waste-management-system Admin Signup signup.php missing authen…
CVE-2026-1052056.9—siyuan-notesiyuanCWE-200SiYuan before 3.8.5 Information Disclosure via /api/block/getDocInfo and getD…
CVE-2026-1051455.5—WeaviateVerbaCWE-200Weaviate Verba generate_stream Endpoint util.py get_environment information d…
CVE-2026-1051475.5—SciPhi-AIR2RCWE-259SciPhi-AI R2R JWT Secret hard-coded credentials
CVE-2026-1051485.5—SciPhi-AIR2RCWE-918SciPhi-AI R2R Retrieval Completion API Endpoint llm.py server-side request fo…
CVE-2026-1051495.5—n/amooSocialCWE-74mooSocial all-products sql injection
CVE-2026-1051585.5—RainyGaoDocSysCWE-74RainyGao DocSys Database Management BaseController.java BaseController.create…
CVE-2026-1051665.5—kishor-23food-waste-management-systemCWE-74kishor-23 food-waste-management-system Food Donation Form fooddonateform.php …
CVE-2026-1051675.5—kishor-23food-waste-management-systemCWE-74kishor-23 food-waste-management-system donate.php sql injection
CVE-2026-1051655.3—devopspolissecrets-replicatorCWE-275devopspolis secrets-replicator AssumeRole handler.py process_single_secret pe…
CVE-2026-1051685.3—kishor-23food-waste-management-systemCWE-89kishor-23 food-waste-management-system Order Assignment Block admin.php sql i…
CVE-2026-1051715.3—kishor-23food-waste-management-systemCWE-639kishor-23 food-waste-management-system Role Attribute admin.php authorization
CVE-2026-1052065.3—zitadelzitadelCWE-863ZITADEL before 4.17.3 Cross-Organization Authentication Method Enumeration vi…
CVE-2026-1051645.1—NASAcFSCWE-119NASA cFS cfe_fs_api.c CFE_FS_ParseInputFileNameEx out-of-bounds
CVE-2026-1052245.1—YesWikiyeswikiCWE-79YesWiki before 4.6.7 Stored XSS via Bazar valeur Action
CVE-2026-1044024.3—farvisunMindio Magic MCPCWE-201WordPress Mindio Magic MCP plugin <= 0.5.6 - Sensitive Data Exposure vulnerab…
CVE-2026-1051562.9—n/aYzmCMSCWE-326YzmCMS MD5 system.func.php password weak password hash
CVE-2026-1052142.3—zitadelzitadelCWE-918Zitadel before 4.16.2 SSRF via Organization Domain HTTP Verification
CVE-2026-1052172.3—cockpit-hqcockpitCWE-295Cockpit CMS 2.12.0 before 2.14.1 Disabled TLS Verification via cron.php
CVE-2026-1051572.1—RainyGaoDocSysCWE-22RainyGao DocSys Document Controller doGetTmpFile.do DocController.doGetTmp pa…
CVE-2026-1051462.0—ComsenzDiscuz!CWE-74Comsenz Discuz! Admin Medal Moderation mod.php modmedalsubmit sql injection

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-10-04 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.

Machine-readable. This edition as JSON or CSV — the ranked results, transactions, and counts, for citation or ingestion. Frozen at publication; later changes appear as transactions on later editions.