| CVE / ID | Title | Severity | CVSS | Source | Date |
|---|
| CVE-2026-14560 | The teddy-bear-customize-addon WordPress plugin through 1.0.5 does not properly validate uploaded files, relying on a cl | CRITICAL | 10.0 | NVD | 2026-09-11 |
| CVE-2026-80462 | A vulnerability in the Chef Automate API gateway and identity validation path may allow an unauthenticated actor to gain | CRITICAL | 10.0 | NVD | 2026-09-11 |
| CVE-2026-87985 | An arbitrary code execution vulnerability in Mistral Vibe allows an attacker to bypass command permission checks using A | CRITICAL | 10.0 | NVD | 2026-09-11 |
| CVE-2026-87986 | An arbitrary code execution vulnerability in Mistral Vibe allows an attacker to bypass command permission checks using s | CRITICAL | 10.0 | NVD | 2026-09-11 |
| CVE-2026-87987 | An arbitrary code execution vulnerability in Mistral Vibe allows an attacker to bypass command permission checks using e | CRITICAL | 10.0 | NVD | 2026-09-11 |
| CVE-2026-87988 | An arbitrary file access vulnerability in Mistral Vibe allows an attacker to bypass workspace restrictions through comma | CRITICAL | 10.0 | NVD | 2026-09-11 |
| CVE-2026-82617 | The two built-in name-finder patterns exposed by
opennlp.tools.namefind.RegexNameFinderFactory - DEFAULT_REGEX_NAME_FIND | CRITICAL | 10.0 | NVD | 2026-09-11 |
| CVE-2026-85706 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 before 19.1.8, 19.2 before 19.2.6, and 1 | CRITICAL | 10.0 | NVD | 2026-09-12 |
| CVE-2026-81648 | The CryptoPayment Gateway WordPress plugin from 1.2.1 to 1.2.2 does not apply an authorization check on one of its AJAX | CRITICAL | 10.0 | NVD | 2026-09-13 |
| CVE-2026-82434 | Description
When ZooKeeper authentication is configured, Storm deliberately retains
`storm.zookeeper.topology.auth.payl | CRITICAL | 10.0 | NVD | 2026-09-14 |
| CVE-2026-65381 | A validation issue existed in the entitlement verification. This issue was addressed with improved validation of the pro | CRITICAL | 10.0 | NVD | 2026-09-14 |
| CVE-2026-59971 | MySQL MCP Server is a Model Context Protocol server that enables secure interaction with MySQL databases. Prior to 0.4.2 | CRITICAL | 10.0 | NVD | 2026-09-15 |
| CVE-2026-53710 | MCP Context Forge is an AI gateway, registry, and proxy for MCP, A2A, REST, and gRPC APIs. Prior to 1.0.2, the python_sa | CRITICAL | 10.0 | NVD | 2026-09-15 |
| CVE-2026-71133 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supp | CRITICAL | 10.0 | NVD | 2026-09-15 |
| CVE-2026-83020 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Third | CRITICAL | 10.0 | NVD | 2026-09-15 |
| CVE-2026-83021 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Container). Supported v | CRITICAL | 10.0 | NVD | 2026-09-15 |
| CVE-2026-83059 | Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server). Suppor | CRITICAL | 10.0 | NVD | 2026-09-15 |
| CVE-2026-83099 | Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode). Suppo | CRITICAL | 10.0 | NVD | 2026-09-15 |
| CVE-2026-87230 | Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor | CRITICAL | 10.0 | NVD | 2026-09-15 |
| CVE-2026-70416 | Dell ObjectScale, versions prior to 4.4.0.0, contains a Deserialization of Untrusted Data vulnerability. An unauthentica | CRITICAL | 10.0 | NVD | 2026-09-16 |
| CVE-2026-20130 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE | CRITICAL | 10.0 | NVD | 2026-09-16 |
| CVE-2026-20192 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE | CRITICAL | 10.0 | NVD | 2026-09-16 |
| CVE-2026-76423 | A vulnerability in the REST API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to gain a | CRITICAL | 10.0 | NVD | 2026-09-16 |
| CVE-2026-92808 | A server-side request forgery (SSRF) vulnerability exists in the UnifiedLogin service of Altium Enterprise Server. An un | CRITICAL | 10.0 | NVD | 2026-09-16 |
| CVE-2026-76460 | A vulnerability in an API of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to byp | CRITICAL | 10.0 | NVD | 2026-09-16 |
| CVE-2026-62104 | Unauthenticated Remote Code Execution (RCE) in Migratico Lite <= 2.6.8 versions. | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-92937 | vm2 3.11.6 is vulnerable to a sandbox escape leading to remote code execution in the host Node.js process. The fix for G | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-92940 | vm2 versions 3.11.3 through 3.11.6 expose the host process's real https.globalAgent to sandboxed code when a NodeVM is e | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-92941 | vm2 versions from 3.11.3 before 3.11.7 expose the host tls module to NodeVM sandbox code, allowing attackers to call tls | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-92946 | vm2 before 3.11.7 contains a remote code execution vulnerability when require.external is enabled without an explicit re | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-92947 | vm2 before 3.11.7 exposes Node's shared Buffer pool to sandboxed code, allowing disclosure of host memory used by Buffer | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-92955 | vm2 before 3.11.8 contains a sandbox escape vulnerability in NodeVM that allows attackers to access the host __proto__ g | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-92956 | vm2 versions 3.10.1 through 3.11.6 contain a sandbox escape reachable from a default `new VM()` sandbox when running on | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-92960 | vm2 before 3.11.6 fails to restrict access to os and dns builtins under the builtin: ['*'] configuration, allowing sandb | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-54734 | Prebid Server Java is the Java version of Prebid Server. Prior to 3.43.0, certain bidder adapters interpolate user-suppl | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-69399 | Azure Arc Elevation of Privilege Vulnerability | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-69865 | Authorization bypass through user-controlled key in Microsoft Container Registry allows an unauthorized attacker to elev | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-70200 | Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorize | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-83944 | Improper access control in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network. | CRITICAL | 10.0 | NVD | 2026-09-17 |
| CVE-2026-85889 | Missing authentication for critical function in Azure AI Foundry allows an unauthorized attacker to elevate privileges o | CRITICAL | 10.0 | NVD | 2026-09-17 |