Vulnerabilities published in the last 7 days (2026-07-28 → 2026-08-04). Updated every 4 hours.
| CVE / ID | Title | Severity | CVSS | EPSS | Why urgent | Source | Date |
|---|---|---|---|---|---|---|---|
| CVE-2026-38709 | TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3600 v2 | CRITICAL | 9.8 | 84% | EPSS 84%ile | NVD | 2026-07-30 |
| CVE-2026-38711 | TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3600 v2 | CRITICAL | 9.8 | 84% | EPSS 84%ile | NVD | 2026-07-31 |
| CVE-2026-38708 | TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3600 v2 | CRITICAL | 9.8 | 84% | EPSS 84%ile | NVD | 2026-07-31 |
| CVE-2026-38713 | TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3600 v2 | CRITICAL | 9.8 | 84% | EPSS 84%ile | NVD | 2026-07-31 |
| CVE-2026-66066 | Action Pack is a framework for handling and responding to web requests. In versions prior to 7.2.3.2, 8.0.5.1 and 8.1.3. | CRITICAL | 9.5 | 75% | EPSS 75%ile | NVD | 2026-07-30 |
| CVE-2026-51785 | An issue in Hugo Leisink Hiawatha v.12.1 and before allows a remote attacker to execute arbitrary code via a crafted req | CRITICAL | 9.8 | 64% | EPSS 64%ile | NVD | 2026-07-31 |
| CVE-2026-59310 | VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access | CRITICAL | 9.8 | 64% | EPSS 64%ile | NVD | 2026-07-30 |
| CVE-2026-67208 | Juggle through 1.6.0 contains a remote code execution vulnerability that allows unauthenticated remote attackers to exec | CRITICAL | 9.3 | 62% | EPSS 62%ile | NVD | 2026-07-30 |
| CVE-2026-14959 | IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to execute arbitrary code due to | CRITICAL | 9.1 | 61% | EPSS 61%ile | NVD | 2026-07-28 |
| CVE-2026-18574 | An authentication bypass vulnerability in Check Point Security Management Server and Multi-Domain Security Management Se | CRITICAL | 9.3 | 59% | EPSS 59%ile | NVD | 2026-08-03 |
| CVE-2026-15969 | SGLang contains an unauthenticated RCE in /load_lora_adapter_from_tensors via bypass of SafeUnpickler’s incomplete denyl | CRITICAL | 9.8 | 59% | EPSS 59%ile | NVD | 2026-07-30 |
| CVE-2025-4318 | AWS Amplify Studio UI Component Properties Has an Input Validation Issue | CRITICAL | — | 57% | EPSS 57%ile | GitHub | 2026-07-30 |
| CVE-2026-12943 | IBM HMC V10.3.1050.0 through 10.3.1064.0 and IBM HMC V11.1.1110.0 through 11.1.1112.0 Management systems in IBM Power en | CRITICAL | 9.8 | 57% | EPSS 57%ile | NVD | 2026-07-30 |
| CVE-2026-41939 | Care Everywhere Gateway 14.3.10 contains a hard-coded credentials vulnerability in the bundled WildFly 8.2.0.Final manag | CRITICAL | 9.3 | 53% | EPSS 53%ile | NVD | 2026-07-29 |
| CVE-2026-52134 | An issue in the parseGoosePayload() function (/goose/goose_receiver.c) of libiec61850 v1.6 allows attackers to bypass au | CRITICAL | 9.8 | 53% | EPSS 53%ile | NVD | 2026-07-31 |
| CVE-2026-39932 | OpenEMR through 8.2.0 contains a remote code execution vulnerability in the document category tree component (library/cl | CRITICAL | 9.4 | 52% | EPSS 52%ile | NVD | 2026-08-03 |
| CVE-2026-59309 | VMware vCenter contains an authentication bypass vulnerability in the VMware Directory Service. A malicious actor with n | CRITICAL | 9.8 | 51% | EPSS 51%ile | NVD | 2026-07-30 |
| CVE-2026-15435 | IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 could allow a remote attacker to t | CRITICAL | 9.8 | 51% | EPSS 51%ile | NVD | 2026-07-30 |
| CVE-2026-14900 | The Cost Calculator Builder PRO plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and i | CRITICAL | 9.8 | 49% | EPSS 49%ile | NVD | 2026-07-29 |
| CVE-2026-48330 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL | CRITICAL | 10.0 | 49% | EPSS 49%ile | NVD | 2026-08-03 |
| CVE-2026-41452 | Krayin CRM 2.2.4 contains a missing authentication vulnerability in the installer middleware that allows unauthenticated | CRITICAL | 9.3 | 48% | EPSS 48%ile | NVD | 2026-08-03 |
| CVE-2026-28323 | SolarWinds Web Help Desk is found to be affected by a SAML authentication bypass vulnerability. This requires the SAML 2 | CRITICAL | 9.8 | 47% | EPSS 47%ile | NVD | 2026-07-30 |
| CVE-2026-58161 | Apache Traffic Server can crash from null dereferences and dangling references in TLS and SNI handling. This issue affe | CRITICAL | 9.2 | 47% | EPSS 47%ile | NVD | 2026-07-29 |
| CVE-2026-48323 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements Used in a Template Engine vul | CRITICAL | 10.0 | 46% | EPSS 46%ile | NVD | 2026-08-03 |
| CVE-2026-68771 | ComfyUI v0.23.0 contains an unsafe deserialization vulnerability in the LoadTrainingDataset node that allows unauthentic | CRITICAL | 9.3 | 46% | EPSS 46%ile | NVD | 2026-07-31 |
| CVE-2026-67192 | Xlight FTP Server before 3.9.5 contains a pre-authentication stack buffer overflow vulnerability that allows unauthentic | CRITICAL | 9.2 | 46% | EPSS 46%ile | NVD | 2026-07-29 |
| CVE-2026-14483 | The Realtyna Organic IDX plugin + WPL Real Estate plugin for WordPress is vulnerable to Arbitrary File Upload in all ver | CRITICAL | 9.8 | 46% | EPSS 46%ile | NVD | 2026-07-31 |
| CVE-2026-18588 | A vulnerability has been found in Wavlink WL-NU516U1 708c073-mt7628. This affects the function fgets of the file nas.cgi | CRITICAL | 9.3 | 46% | EPSS 46%ile | NVD | 2026-08-03 |
| CVE-2026-52887 | NocoBase: SQL injection in /api/myInAppChannels:list filter to PG-superuser RCE | CRITICAL | 10.0 | 45% | EPSS 45%ile | GitHub | 2026-07-31 |
| CVE-2026-18072 | The Advanced Responsive Video Embedder for Rumble, Odysee, YouTube, Vimeo, Kick … plugin for WordPress is vulnerable to | CRITICAL | 9.8 | 45% | EPSS 45%ile | NVD | 2026-07-29 |
| CVE-2026-67191 | Xlight FTP Server before 3.9.5 contains a pre-authentication heap buffer overflow vulnerability that allows remote unaut | CRITICAL | 9.3 | 44% | EPSS 44%ile | NVD | 2026-07-29 |
| CVE-2026-16610 | The Admin and Site Enhancements (ASE) Pro plugin for WordPress is vulnerable to Remote Code Execution in all versions up | CRITICAL | 9.8 | 44% | EPSS 44%ile | NVD | 2026-07-30 |
| CVE-2026-58179 | The Apache Traffic Server regex_remap plugin overflows the stack and integers from substitution input. This issue affec | CRITICAL | 9.2 | 43% | EPSS 43%ile | NVD | 2026-07-29 |
| CVE-2026-52680 | Apache Kyuubi REST batch multipart upload handling uses the client-supplied multipart filename when creating a temporary | CRITICAL | 9.8 | 43% | EPSS 43%ile | NVD | 2026-07-30 |
| CVE-2026-48449 | Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code | CRITICAL | 10.0 | 42% | EPSS 42%ile | NVD | 2026-07-30 |
| CVE-2026-14512 | IBM WebSphere Application Server 9.0, and 8.5 traditional is vulnerable to pre-authentication unsafe deserialization whi | CRITICAL | 9.8 | 42% | EPSS 42%ile | NVD | 2026-07-28 |
| CVE-2026-13423 | The Streamit WordPress theme through 4.5.0 does not perform any authorization or nonce verification on one of its unauth | CRITICAL | 9.8 | 42% | EPSS 42%ile | NVD | 2026-07-29 |
| CVE-2026-59243 | The FAB auth manager's Azure AD OAuth login defaulted `verify_signature=False` when decoding the ID token, so an attacke | CRITICAL | 9.8 | 42% | EPSS 42%ile | NVD | 2026-07-29 |
| CVE-2026-68502 | LazyOwn RedTeam/APT Framework is an AI-powered C2 and red-team operations framework. Prior to 0.2.154, LazyOwn's lazyc2. | CRITICAL | 9.8 | 42% | EPSS 42%ile | NVD | 2026-07-30 |
| CVE-2026-33591 | A vulnerability in Wapt Server before version 2.6.1.17813 allows a remote unauthenticated attacker to bypass security r | CRITICAL | 10.0 | 42% | EPSS 42%ile | NVD | 2026-08-03 |
| CVE-2026-67340 | ArcadeDB before 26.7.2 (arcadedb-engine) allows trigger scripts to look up host classes in java.lang.* (via Java.type) b | CRITICAL | 9.3 | 42% | EPSS 42%ile | NVD | 2026-08-01 |
| CVE-2026-14602 | The Remote API WordPress plugin through 0.2 does not authenticate a request before deserializing user-supplied input, al | CRITICAL | 9.0 | 42% | EPSS 42%ile | NVD | 2026-07-30 |
| CVE-2026-68770 | sentence-transformers contains a security control bypass vulnerability that allows attackers to achieve arbitrary code e | CRITICAL | 9.3 | 41% | EPSS 41%ile | NVD | 2026-07-31 |
| CVE-2026-14958 | IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to execute arbitrary code due to | CRITICAL | 9.1 | 41% | EPSS 41%ile | NVD | 2026-07-28 |
| CVE-2026-51992 | SQL Injection vulnerability in ClickHouse Server Versions <= 26.3.9.8 allows a remote attacker to execute arbitrary code | CRITICAL | 9.1 | 41% | EPSS 41%ile | NVD | 2026-07-29 |
| CVE-2026-58048 | Improper preservation of SQL mode when renaming databases in cPanel allows execution of SQL in root context. | CRITICAL | 9.4 | 40% | EPSS 40%ile | NVD | 2026-07-31 |
| CVE-2026-65883 | Joomla Extension - aimy-extensions.com - RCE via PHP object injection in Aimy Captcha-Less Form Guard 18.0 - 20.0 - A fo | CRITICAL | 10.0 | 40% | EPSS 40%ile | NVD | 2026-07-29 |
| CVE-2026-12118 | IBM webMethods Integration (on prem) 10.15, 10.11 could allow an unauthenticated remote attacker to execute arbitrary co | CRITICAL | 9.8 | 40% | EPSS 40%ile | NVD | 2026-07-30 |
| CVE-2026-67429 | Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.6, image.download and related fi | CRITICAL | 10.0 | 40% | EPSS 40%ile | NVD | 2026-07-29 |
| CVE-2026-66803 | Improper access control in Azure Cosmos DB allows an unauthorized attacker to execute code over a network. | CRITICAL | 10.0 | 40% | EPSS 40%ile | NVD | 2026-07-30 |
| CVE-2026-63223 | CodeIgniter is a PHP full-stack web framework. Prior to 4.7.4, the is_image and mime_in upload validation rules do not i | CRITICAL | 9.8 | 40% | EPSS 40%ile | NVD | 2026-07-31 |
| CVE-2025-10656 | The Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light plugin for WordPress is vulnerable to Missing Au | CRITICAL | 9.8 | 40% | EPSS 40%ile | NVD | 2026-07-29 |
| CVE-2026-67305 | FreeRDP Windows client before 3.29.0 contains a heap buffer overflow vulnerability in the clipboard virtual channel when | CRITICAL | 9.4 | 40% | EPSS 40%ile | NVD | 2026-08-01 |
| CVE-2026-15964 | The Single Sign On For TNG plugin for WordPress is vulnerable to Authentication Bypass via unauthenticated password rese | CRITICAL | 9.8 | 39% | EPSS 39%ile | NVD | 2026-08-01 |
| CVE-2026-12940 | IBM Langflow OSS 1.0.0 through 1.10.1 are vulnerable to unauthenticated remote code execution via environment variable | CRITICAL | 9.8 | 39% | EPSS 39%ile | NVD | 2026-07-30 |
| CVE-2026-48326 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL | CRITICAL | 9.9 | 39% | EPSS 39%ile | NVD | 2026-08-03 |
| CVE-2026-48317 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Directives in Dynamically Evaluated Code ('Eva | CRITICAL | 9.6 | 39% | EPSS 39%ile | NVD | 2026-08-03 |
| CVE-2026-48331 | Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in priv | CRITICAL | 10.0 | 38% | EPSS 38%ile | NVD | 2026-08-03 |
| CVE-2026-48333 | Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in privilege esca | CRITICAL | 9.8 | 38% | EPSS 38%ile | NVD | 2026-08-03 |
| CVE-2026-3141 | The FormGent plugin for WordPress is vulnerable to unauthorized arbitrary file deletion due to a missing capability chec | CRITICAL | 9.1 | 38% | EPSS 38%ile | NVD | 2026-08-01 |
| CVE-2026-44108 | Due to a flaw in the execution order of scripts during shutdown, the firewall is terminated prematurely during system sh | CRITICAL | 9.3 | 38% | EPSS 38%ile | NVD | 2026-07-30 |
| CVE-2026-38447 | osTicket 1.18.3 generates API keys using a predictable construction based on MD5 hashing. The use of MD5, combined with | CRITICAL | 9.8 | 37% | EPSS 37%ile | NVD | 2026-08-03 |
| CVE-2026-67594 | Spikster through commit e1cdf8c contains a missing authentication vulnerability that allows unauthenticated remote attac | CRITICAL | 9.3 | 37% | EPSS 37%ile | NVD | 2026-07-30 |
| CVE-2026-14973 | IBM Aspera Desktop App 1.0.5 through 1.0.19 IBM Aspera for desktop can allow files to be written outside of the user's s | CRITICAL | 9.3 | 37% | EPSS 37%ile | NVD | 2026-07-28 |
| CVE-2026-67308 | Wazuh workflows before 44bf114 contain a shell injection vulnerability in GitHub Actions that allows attackers to execut | CRITICAL | 9.3 | 37% | EPSS 37%ile | NVD | 2026-08-01 |
| CVE-2026-17351 | The fix for CVE-2026-12045 in pgAdmin 4 9.16 required the LLM-supplied query passed to the AI Assistant's execute_sql_qu | CRITICAL | 9.4 | 37% | EPSS 37%ile | NVD | 2026-07-31 |
| CVE-2026-65321 | PyAthena prior to 3.35.4 contains a sql injection vulnerability that allows unauthenticated attackers to inject arbitrar | CRITICAL | 9.3 | 36% | EPSS 36%ile | NVD | 2026-08-02 |
| CVE-2026-18452 | DMS+ (Non-Mobile) developed by Rich Source has a Use of Hard-coded Credentials vulnerability. Unauthenticated remote att | CRITICAL | 10.0 | 36% | EPSS 36%ile | NVD | 2026-07-31 |
| CVE-2026-54680 | Logging operator automates the deployment and configuration of Kubernetes logging pipelines. Prior to 6.6.0, the Fluentd | CRITICAL | 9.9 | 35% | EPSS 35%ile | NVD | 2026-07-29 |
| CVE-2026-17566 | pgAdmin 4's Import/Export Data tool builds a psql \copy (...) command line by interpolating a user-supplied SQL query in | CRITICAL | 9.4 | 35% | EPSS 35%ile | NVD | 2026-07-31 |
| CVE-2026-64827 | Telenia Software TVox 26.5.3 and prior 26.x versions, and 24.9.21 and prior 24.x versions, contain an authentication byp | CRITICAL | 9.3 | 35% | EPSS 35%ile | NVD | 2026-08-03 |
| CVE-2026-67595 | VaahCMS versions 2.0.0 through 2.3.4 contain a malicious obfuscated JavaScript payload embedded in the Blade template re | CRITICAL | 9.2 | 35% | EPSS 35%ile | NVD | 2026-07-29 |
| CVE-2026-17681 | Insufficient validation of untrusted input in Web Authentication in Google Chrome on Android prior to 151.0.7922.72 allo | CRITICAL | 9.6 | 35% | EPSS 35%ile | NVD | 2026-07-30 |
| CVE-2026-7849 | Due to improper neutralization of special elements, an unauthenticated remote attacker is able to inject a command into | CRITICAL | 9.3 | 34% | EPSS 34%ile | NVD | 2026-07-30 |
| CVE-2026-17652 | Use after free in Views in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the render | CRITICAL | 9.6 | 34% | EPSS 34%ile | NVD | 2026-07-30 |
| CVE-2026-17655 | Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to | CRITICAL | 9.6 | 34% | EPSS 34%ile | NVD | 2026-07-30 |
| CVE-2026-17656 | Use after free in Ozone in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandb | CRITICAL | 9.6 | 34% | EPSS 34%ile | NVD | 2026-07-30 |
| CVE-2026-53431 | Authentication Bypass by Capture-replay vulnerability in malach-it Boruta allows an attacker who has obtained a previous | CRITICAL | 9.1 | 34% | EPSS 34%ile | NVD | 2026-07-30 |
| CVE-2026-60112 | AMMOS Instrument Toolkit (AIT) GUI before 2.5.1 contains a missing authentication vulnerability that allows any unauthen | CRITICAL | 9.3 | 34% | EPSS 34%ile | NVD | 2026-07-29 |
| CVE-2026-60113 | AMMOS Instrument Toolkit (AIT) Deep Space Network (DSN) Interface before 2.2.2 contains a missing authentication vulnera | CRITICAL | 9.3 | 34% | EPSS 34%ile | NVD | 2026-07-29 |
| CVE-2026-15971 | SGLang contains an RCE vulnerability when the optional dumper subsystem is enabled, allowing for a sandbox escape when D | CRITICAL | 9.8 | 33% | EPSS 33%ile | NVD | 2026-07-30 |
| CVE-2026-17687 | Type Confusion in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the render | CRITICAL | 9.6 | 33% | EPSS 33%ile | NVD | 2026-07-30 |
| CVE-2026-17697 | Type Confusion in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandb | CRITICAL | 9.6 | 33% | EPSS 33%ile | NVD | 2026-07-30 |
| CVE-2026-44090 | Due to missing authentication, an unauthenticated remote attacker may access the MQTT broker, which is only protected fr | CRITICAL | 9.3 | 33% | EPSS 33%ile | NVD | 2026-07-30 |
| CVE-2026-44101 | Due to missing authentication the CHARX OCPP Agent service allows an unauthenticated remote attacker to reconfigure the | CRITICAL | 9.3 | 33% | EPSS 33%ile | NVD | 2026-07-30 |
| CVE-2026-8457 | The WooCommerce - Social Login plugin for WordPress is vulnerable to Authentication Bypass in all versions up to and inc | CRITICAL | 9.8 | 33% | EPSS 33%ile | NVD | 2026-08-02 |
| CVE-2026-17680 | Heap buffer overflow in Color in Google Chrome on ChromeOS prior to 151.0.7922.72 allowed a remote attacker who had comp | CRITICAL | 9.6 | 33% | EPSS 33%ile | NVD | 2026-07-30 |
| CVE-2026-17651 | Insufficient validation of untrusted input in Dawn in Google Chrome on Android prior to 151.0.7922.72 allowed a remote a | CRITICAL | 9.6 | 32% | EPSS 32%ile | NVD | 2026-07-30 |
| CVE-2026-54658 | Hypequery is a TypeScript semantic layer for ClickHouse. Prior to 2.0.2, escapeValue() in packages/clickhouse/src/core/u | CRITICAL | 9.8 | 32% | EPSS 32%ile | NVD | 2026-07-28 |
| CVE-2026-68503 | LazyOwn RedTeam/APT Framework is an AI-powered C2 and red-team operations framework. Prior to 0.2.154, LazyOwn ships def | CRITICAL | 9.8 | 32% | EPSS 32%ile | NVD | 2026-07-30 |
| CVE-2026-14175 | Unrestricted upload of file with dangerous type vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIS | CRITICAL | 9.8 | 32% | EPSS 32%ile | NVD | 2026-08-04 |
| CVE-2026-54363 | CentreStack before 17.5 contains a hardcoded cryptographic key vulnerability that allows unauthenticated attackers to fo | CRITICAL | 9.3 | 32% | EPSS 32%ile | NVD | 2026-07-30 |
| CVE-2026-58155 | Apache Traffic Server truncates over-long header names, allowing header aliasing, request smuggling, and policy bypass. | CRITICAL | 9.2 | 31% | EPSS 31%ile | NVD | 2026-07-29 |
| CVE-2026-18191 | VIN-DS783E-E6 developed by Vacron has a Hidden Functionality vulnerability, allowing unauthenticated remote attackers to | CRITICAL | 9.3 | 31% | EPSS 31%ile | NVD | 2026-07-29 |
| CVE-2026-67289 | FreeRDP before 3.29.0 (affected versions <= 3.28.0) does not validate CRLF and control characters in the server-controll | CRITICAL | 9.3 | 31% | EPSS 31%ile | NVD | 2026-08-01 |
| CVE-2026-67324 | GitPython 3.1.50 fails to recognize joined short-option forms such as -u<value> (the short form of --upload-pack=<value> | CRITICAL | 9.3 | 31% | EPSS 31%ile | NVD | 2026-08-01 |
| CVE-2026-63221 | CodeIgniter is a PHP full-stack web framework. From 4.3.0 through 4.7.3, Query Builder deleteBatch() substitutes bound v | CRITICAL | 9.4 | 30% | EPSS 30%ile | NVD | 2026-07-31 |
| CVE-2026-58154 | Apache Traffic Server can write out of bounds or overflow integers while parsing MIME and HTTP headers. This issue affe | CRITICAL | 9.2 | 30% | EPSS 30%ile | NVD | 2026-07-29 |
| CVE-2026-17669 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17670 | Use after free in Views in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the render | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17671 | Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker wh | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17672 | Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 151.0.7922.72 allowed a remote attack | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17673 | Integer overflow in QUIC in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the rende | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17676 | Inappropriate implementation in ANGLE in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who h | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17682 | Integer overflow in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the rend | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17684 | Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a re | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17688 | Use after free in Input in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the render | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17691 | Out of bounds write in ANGLE in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker to potentially | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17692 | Use after free in DataTransfer in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker who had comp | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17695 | Inappropriate implementation in ANGLE in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to potent | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17704 | Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the render | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17708 | Use after free in Audio in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the render | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17710 | Inappropriate implementation in MHTML in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had c | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17713 | Insufficient validation of untrusted input in Accessibility in Google Chrome on Android prior to 151.0.7922.72 allowed a | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17717 | Integer overflow in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a san | CRITICAL | 9.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-0667 | CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability that could cause arbitrary code execution, d | CRITICAL | 9.3 | 30% | EPSS 30%ile | NVD | 2026-07-29 |
| CVE-2026-35847 | An issue in dnsmgr v.2.15 and before allows a local attacker to execute arbitrary code via the ping function of the Chec | CRITICAL | 9.8 | 29% | EPSS 29%ile | NVD | 2026-07-30 |
| CVE-2026-18667 | A vulnerability in Tenable Sensor Proxy allows a remote attacker to execute code with elevated privileges by inducing an | CRITICAL | 9.3 | 29% | EPSS 29%ile | NVD | 2026-08-03 |
| CVE-2026-65886 | Joomla Extension - balbooa.com - Unauthenticated arbitrary file read in Gridbox < 2.20.2 - The photo viewer allows unaut | CRITICAL | 9.2 | 29% | EPSS 29%ile | NVD | 2026-07-29 |
| CVE-2026-17701 | Insufficient validation of untrusted input in ANGLE in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote atta | CRITICAL | 9.6 | 28% | EPSS 28%ile | NVD | 2026-07-30 |
| CVE-2026-67330 | @better-auth/scim (a better-auth plugin) versions >= 1.4.0-beta.27 through <= 1.6.21 and >= 1.7.0-beta.0 through <= 1.7. | CRITICAL | 9.4 | 28% | EPSS 28%ile | NVD | 2026-08-01 |
| CVE-2026-54735 | Prebid Server is an open-source solution for running real-time advertising auctions in the cloud. Prior to version 4.4.0 | CRITICAL | 10.0 | 28% | EPSS 28%ile | NVD | 2026-07-29 |
| CVE-2026-69083 | SiYuan versions before v3.7.3 contain SQL injection vulnerabilities in the fullTextSearchAssetContent endpoint reachable | CRITICAL | 9.9 | 28% | EPSS 28%ile | NVD | 2026-08-03 |
| CVE-2026-48031 | go-base is a Go RESTful API Boilerplate template with JWT Authentication, backed by PostgreSQL. In versions prior to 202 | CRITICAL | 9.1 | 27% | EPSS 27%ile | NVD | 2026-08-03 |
| CVE-2026-58046 | Improper neutralization in the Plesk XML-RPC API allows a remote authenticated low-privileged user to perform SQL inject | CRITICAL | 9.9 | 27% | EPSS 27%ile | NVD | 2026-07-30 |
| CVE-2026-12946 | IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to inject arbitrary code on the system, due to the i | CRITICAL | 9.9 | 27% | EPSS 27%ile | NVD | 2026-07-30 |
| CVE-2026-62325 | goshs is a feature-rich single-binary file server for red teamers and developers. From 2.1.3 until 2.1.4, the sftpserver | CRITICAL | 9.1 | 27% | EPSS 27%ile | NVD | 2026-07-28 |
| CVE-2026-17758 | Heap buffer overflow in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a | CRITICAL | 9.6 | 27% | EPSS 27%ile | NVD | 2026-07-30 |
| CVE-2026-66418 | OpenClaw Dashboard v3.0.0 contains a stored cross-site scripting vulnerability that allows unauthenticated remote attack | CRITICAL | 9.3 | 26% | EPSS 26%ile | NVD | 2026-07-30 |
| CVE-2025-69946 | SourceCodester Modern Loan Management System 1.0 is vulnerable to SQL Injection in ajaxData.php via the parameters distr | CRITICAL | 9.8 | 26% | EPSS 26%ile | NVD | 2026-07-31 |
| CVE-2026-64863 | goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.4, the httpserver/server. | CRITICAL | 9.1 | 26% | EPSS 26%ile | NVD | 2026-07-28 |
| CVE-2026-14529 | IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 t | CRITICAL | 9.4 | 26% | EPSS 26%ile | NVD | 2026-07-29 |
| CVE-2026-15976 | SGLang contains a RCE vulnerability when attempting to load model weights from a HuggingFace repository, specifically wi | CRITICAL | 9.8 | 26% | EPSS 26%ile | NVD | 2026-07-30 |
| CVE-2026-8763 | In Bouncy Castle for Java before 1.85, Name Constraints bypass via trailing dot in rfc822Name and URI. This issue also a | CRITICAL | 9.3 | 26% | EPSS 26%ile | NVD | 2026-08-03 |
| CVE-2026-16498 | The terraform-mcp-server before version 1.1.0 is vulnerable to a cross-tenant credential reuse issue in the streamable-H | CRITICAL | 10.0 | 26% | EPSS 26%ile | NVD | 2026-07-28 |
| CVE-2026-63227 | An unrestricted SCORM file upload vulnerability in Koollab LMS allowed an authenticated module designer to upload a SCOR | CRITICAL | 9.9 | 25% | EPSS 25%ile | NVD | 2026-07-29 |
| CVE-2026-12965 | The Super Store Finder WordPress plugin through 7.8 does not sanitize a parameter of an unauthenticated AJAX action befo | CRITICAL | 9.1 | 25% | EPSS 25%ile | NVD | 2026-08-03 |
| CVE-2026-65889 | Joomla Extension - balbooa.com - Unauthenticated recursive directory deletion < 2.20.2 - The generateNewApp method allow | CRITICAL | 9.2 | 25% | EPSS 25%ile | NVD | 2026-07-29 |
| CVE-2025-65336 | Ecommerce-project-with-php-and-mysqli-Fruits-Bazar 1.0 is vulnerable to SQL Injection in /show_price_by_pdtId.php. | CRITICAL | 9.8 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-69240 | Sequelize is a Node.js ORM tool. Prior to 6.37.4, SQL injection is possible with strings only if dialect is set to oracl | CRITICAL | 9.8 | 24% | EPSS 24%ile | NVD | 2026-08-03 |
| CVE-2026-54725 | vault-secrets-webhook is a Kubernetes mutating webhook that makes direct secret injection into Pods possible. Prior to 1 | CRITICAL | 9.6 | 24% | EPSS 24%ile | NVD | 2026-07-31 |
| CVE-2026-67341 | ArcadeDB versions before 26.7.2 fail to enforce scripting authorization checks on the SQL DEFINE FUNCTION statement with | CRITICAL | 9.3 | 24% | EPSS 24%ile | NVD | 2026-08-01 |
| CVE-2026-67342 | ArcadeDB versions before 26.7.2 contain an authorization bypass vulnerability in HTTP handlers for time series, batch, P | CRITICAL | 9.3 | 24% | EPSS 24%ile | NVD | 2026-08-01 |
| CVE-2026-17675 | Out of bounds write in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the r | CRITICAL | 9.6 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-17718 | Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandb | CRITICAL | 9.6 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-17721 | Out of bounds write in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a | CRITICAL | 9.6 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-17726 | Integer overflow in WebGL in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially pe | CRITICAL | 9.6 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-17727 | Out of bounds write in WebGL in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially | CRITICAL | 9.6 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-17801 | Out of bounds read and write in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially p | CRITICAL | 9.6 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-17804 | Use after free in Media in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the render | CRITICAL | 9.6 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-43830 | Full details and mitigation steps are currently restricted and will be published at a later date. | CRITICAL | 9.8 | 24% | EPSS 24%ile | NVD | 2026-07-31 |
| CVE-2026-17561 | Improper Control of Generation of Code ('Code Injection') vulnerability in Innotim Software, Telecommunications and Cons | CRITICAL | 9.8 | 24% | EPSS 24%ile | NVD | 2026-07-31 |
| CVE-2026-18753 | The product firmware contains an embedded, static RSA private key utilized by the Lighttpd web server for TLS terminatio | CRITICAL | 9.1 | 24% | EPSS 24%ile | NVD | 2026-08-04 |
| CVE-2026-18754 | The product firmware contains an embedded, static RSA private key utilized by the Lighttpd web server for TLS terminatio | CRITICAL | 9.1 | 24% | EPSS 24%ile | NVD | 2026-08-04 |
| CVE-2026-28812 | UserManager lack of checks allows impersonation in Apache JSPWiki up to 2.12.3 which may allow attackers to escalate pri | CRITICAL | 9.8 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-68584 | SiYuan versions before v3.7.3 contain an authentication bypass vulnerability in publish mode where content-returning end | CRITICAL | 9.2 | 24% | EPSS 24%ile | NVD | 2026-08-03 |
| CVE-2025-69948 | SourceCodester Modern Loan Management System 1.0 is vulnerable to SQL Injection in /admin/delete_group.php?id=1. | CRITICAL | 9.8 | 23% | EPSS 23%ile | NVD | 2026-07-31 |
| CVE-2026-14488 | The Meta Box AIO plugin for WordPress is vulnerable to Missing Authorization via the template_redirect dispatcher in the | CRITICAL | 9.1 | 23% | EPSS 23%ile | NVD | 2026-07-29 |
| CVE-2026-14804 | Use of hard-coded cryptographic key vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Hu | CRITICAL | 9.1 | 23% | EPSS 23%ile | NVD | 2026-08-04 |
| CVE-2026-52539 | Outstatic CMS <= 2.1.9 contains a hardcoded JWT signing secret. When the OST_TOKEN_SECRET environment variable is not se | CRITICAL | 9.1 | 23% | EPSS 23%ile | NVD | 2026-07-30 |
| CVE-2026-16300 | The ChamaWP WordPress plugin before 1.0.13 does not properly validate a password reset request, allowing unauthenticate | CRITICAL | 9.8 | 23% | EPSS 23%ile | NVD | 2026-08-03 |
| CVE-2026-17349 | /misc/workspace/adhoc_connect_server, part of the Workspaces feature introduced in pgAdmin 4 9.0, when passed the id of | CRITICAL | 9.3 | 22% | EPSS 22%ile | NVD | 2026-07-31 |
| CVE-2026-8338 | A Spring Security authentication and authorization bypass exists in Coverity Connect versions between 2023.6.0 and 2026. | CRITICAL | 9.2 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-16326 | In consul-mcp-server, versions 0.1.0 up to 0.1.3 did not properly isolate session state in stateless mode, which may all | CRITICAL | 10.0 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-18363 | A logic vulnerability in the password reset token validation routine implemented by osTicket in versions prior to v1.17. | CRITICAL | 9.1 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-63229 | A pre-authentication blind SQL injection vulnerability in Koollab LMS allowed an unauthenticated attacker to use a time- | CRITICAL | 9.1 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-63230 | A pre-authentication error-based SQL injection vulnerability in Koollab LMS allowed an unauthenticated attacker to read | CRITICAL | 9.1 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-63232 | A SQL injection and unsafe deserialisation vulnerability in Koollab LMS allowed an authenticated attacker to inject thro | CRITICAL | 9.9 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-63233 | A SQL injection and unsafe deserialisation vulnerability in Koollab LMS allowed an authenticated attacker to inject thro | CRITICAL | 9.9 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-63234 | A SQL injection and unsafe deserialisation vulnerability in Koollab LMS allowed an authenticated attacker to inject thro | CRITICAL | 9.9 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-67822 | Tenda W6-S 1.0.0.4(510) contains a stack-based buffer overflow vulnerability in the /goform/wifiSSIDset endpoint. The fu | CRITICAL | 9.8 | 22% | EPSS 22%ile | NVD | 2026-07-31 |
| CVE-2026-17709 | Race in Downloads in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the rende | CRITICAL | 9.6 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-17711 | Race in Downloads in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the rende | CRITICAL | 9.6 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-14446 | IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to broken access control/privilege escalation in the adminis | CRITICAL | 9.8 | 21% | EPSS 21%ile | NVD | 2026-07-28 |
| CVE-2026-17803 | Insufficient validation of untrusted input in Save to Drive in Google Chrome prior to 151.0.7922.72 allowed a remote att | CRITICAL | 9.6 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-67426 | Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.7, the standalone flyto-verifica | CRITICAL | 9.3 | 21% | EPSS 21%ile | NVD | 2026-07-29 |
| CVE-2026-69084 | SiYuan versions <= v3.7.2 expose the /api/search/searchEmbedBlock endpoint, which passes a client-supplied SQL statement | CRITICAL | 9.9 | 21% | EPSS 21%ile | NVD | 2026-08-03 |
| CVE-2026-66402 | FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains multiple TLS certificate identity validation weaknesses in | CRITICAL | 9.3 | 21% | EPSS 21%ile | NVD | 2026-08-01 |
| CVE-2026-9177 | A Server-Side Template Injection (SSTI) vulnerability was identified in the mail template functionality of the Axway Se | CRITICAL | 9.4 | 21% | EPSS 21%ile | NVD | 2026-07-29 |
| CVE-2026-13435 | IBM Langflow OSS 1.0.0 through 1.10.1 contains an improper input validation vulnerability in the PythonREPL sandbox impl | CRITICAL | 9.9 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-2346 | Authorization bypass through User-Controlled key vulnerability in Menulux Software Inc. Mobile App allows Software Integ | CRITICAL | 9.8 | 21% | EPSS 21%ile | NVD | 2026-08-03 |
| CVE-2026-9390 | XML::Sig versions before 0.71 for Perl allow XPath injection in ID lookup. verify() and _get_signed_xml() in lib/XML/Si | CRITICAL | 9.1 | 20% | EPSS 20%ile | NVD | 2026-08-03 |
| CVE-2026-47876 | VMware ESX contains an out-of-bounds write vulnerability in the VMXNET3 virtual network adapter. A malicious actor with | CRITICAL | 9.3 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-17738 | Insufficient validation of untrusted input in Payments in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | CRITICAL | 9.6 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-17768 | Insufficient validation of untrusted input in WebSockets in Google Chrome prior to 151.0.7922.72 allowed a remote attack | CRITICAL | 9.6 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-14919 | The ShopMonitor.io WordPress plugin before 1.2.0 does not properly restrict its email-rerouting test mode, gating it be | CRITICAL | 9.8 | 20% | EPSS 20%ile | NVD | 2026-07-31 |
| CVE-2025-69943 | kishan0725 Hospital Management System 4.0 is vulnerale to SQL Injection in get_doctor.php via the parameters doctor and | CRITICAL | 9.8 | 20% | EPSS 20%ile | NVD | 2026-07-29 |
| CVE-2026-59638 | In Bouncy Castle for Java before 1.85, JSSE hostname verifier CN-fallback enabled by default despite documented opt-in. | CRITICAL | 9.3 | 20% | EPSS 20%ile | NVD | 2026-08-03 |
| CVE-2026-17847 | Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to | CRITICAL | 9.6 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-17856 | Inappropriate implementation in Network in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had | CRITICAL | 9.6 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-17865 | Inappropriate implementation in Crypto in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had | CRITICAL | 9.6 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-52855 | Wings is the server control plane for Pterodactyl, a free, open-source game server management panel. Prior to 1.12.3, {{ | CRITICAL | 9.9 | 20% | EPSS 20%ile | NVD | 2026-07-31 |
| CVE-2025-67649 | A SQL injection vulnerability has been identified in PHP Jabbers - Car Rental Script . Improper neutralization of input | CRITICAL | 9.3 | 20% | EPSS 20%ile | NVD | 2026-07-31 |
| CVE-2026-67294 | FreeRDP before 3.29.0 improperly validates the Extended Key Usage (EKU) purpose of the peer certificate during client-si | CRITICAL | 9.3 | 19% | EPSS 19%ile | NVD | 2026-08-01 |
| CVE-2026-16504 | Deployment of the VPS.org one-click Zulip template deploys a hardcoded application signing key, a default database passw | CRITICAL | 9.8 | 19% | EPSS 19%ile | NVD | 2026-07-31 |
| CVE-2026-67292 | FreeRDP before 3.29.0 contains a buffer over-disclosure vulnerability in the gateway WebSocket transport (libfreerdp/cor | CRITICAL | 9.3 | 18% | EPSS 18%ile | NVD | 2026-08-01 |
| CVE-2026-59650 | In Bouncy Castle for Java before 1.85, MTI/A0 DH agreement exponentiates unvalidated peer value. This issue also affects | CRITICAL | 9.3 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-13596 | The Participants Database WordPress plugin before 2.7.8.4 does not properly sanitize and escape a user-supplied paramete | CRITICAL | 9.1 | 18% | EPSS 18%ile | NVD | 2026-08-01 |
| CVE-2026-16532 | The Link Library WordPress plugin before 7.9.3 does not properly sanitise and escape a user-supplied value before using | CRITICAL | 9.1 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2025-65340 | kishan0725 Hospital Management System 4.0 is vulnerable to SQL Injection in /betweendates-detailsreports.php. | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-29 |
| CVE-2025-67403 | Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in update_class.php via the paramete | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-29 |
| CVE-2025-67404 | Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in save_stud.php via the parameters | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-29 |
| CVE-2025-69942 | kishan0725 Hospital Management System 4.0 is vulnerable to SQL Injection in /hms/doctor/view-patient.php?viewid=1. | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-29 |
| CVE-2026-4978 | Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in UMAI Vision Traffi | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2025-69930 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /print_membership_card.php?id=1. | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2025-69931 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /delete_membership.php?id=1. | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2025-69933 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /memberProfile.php?id=1. | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2025-69934 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /delete_members.php?id=1. | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2025-69935 | CodeAstro Membership Management System 1.0 is vulnerale to SQL Injection in the report.php and revenue_report.php via th | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2025-69936 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /edit_member.php?id=1. | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2025-69937 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in the edit_type.php endpoint via the Paramete | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2025-69938 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in renew.php via the parameter membershipType. | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2025-69941 | SourceCodester Tailor Management System 1.0 is vulnerable to SQL Injection in addmeasurement.php?id=1. | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2025-69947 | SourceCodester Tailor Management System 1.0 is vulnerable to SQL Injection in customeredit.php?id=1. | CRITICAL | 9.8 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2025-71401 | better-auth (npm) before 1.4.2 allows an external request to configure baseURL when it is not otherwise defined (e.g., B | CRITICAL | 9.3 | 18% | EPSS 18%ile | NVD | 2026-08-02 |
| CVE-2026-17848 | Integer overflow in Codecs in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sa | CRITICAL | 9.6 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-17832 | Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the render | CRITICAL | 9.6 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-17834 | Insufficient validation of untrusted input in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacke | CRITICAL | 9.6 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-17837 | Insufficient validation of untrusted input in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | CRITICAL | 9.6 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-17924 | Use after free in DNS in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer | CRITICAL | 9.6 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-17940 | Insufficient validation of untrusted input in Picture-in-Picture in Google Chrome on Android prior to 151.0.7922.72 allo | CRITICAL | 9.6 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-17947 | Use after free in WebSockets in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a | CRITICAL | 9.6 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-65885 | Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows au | CRITICAL | 9.4 | 17% | EPSS 17%ile | NVD | 2026-07-29 |
| CVE-2026-69085 | SiYuan before v3.7.3 contains a SQL injection vulnerability in the /api/filetree/searchDocs endpoint, where the caller-s | CRITICAL | 9.9 | 16% | EPSS 16%ile | NVD | 2026-08-03 |
| CVE-2026-65884 | Joomla Extension - balbooa.com - Privilege Escalation in Gridbox < 2.20.2 - The registration method allows users provide | CRITICAL | 10.0 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-65887 | Joomla Extension - balbooa.com - Unauthenticated arbitrary password reset in Gridbox < 2.20.2 - The resetPassword method | CRITICAL | 10.0 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-65888 | Joomla Extension - balbooa.com - Account takeover vulnerability in Gridbox < 2.20.2 - The socialLogin method allows acto | CRITICAL | 10.0 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-16503 | Deployment of the VPS.org one-click Supabase template deploys a PostgreSQL instance that is published on all interfaces | CRITICAL | 9.1 | 16% | EPSS 16%ile | NVD | 2026-07-31 |
| CVE-2026-68587 | SiYuan versions before v3.7.3 contain an information disclosure vulnerability in the getHeadingDeleteTransaction, getHea | CRITICAL | 9.2 | 16% | EPSS 16%ile | NVD | 2026-08-03 |
| CVE-2026-58066 | Rocket.Chat's SAML SSO before versions 8.7.0, 8.6.1, 8.5.2, 8.4.5, 8.3.7, 8.2.7, 8.1.7, 8.0.8, and 7.10.14 verified XML | CRITICAL | 9.8 | 16% | EPSS 16%ile | NVD | 2026-07-30 |
| CVE-2026-17991 | Insufficient validation of untrusted input in AI in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who h | CRITICAL | 9.6 | 16% | EPSS 16%ile | NVD | 2026-07-30 |
| CVE-2026-44104 | The firmware update process for the basemodule of the charging controller only validates the CRC32 checksum without cryp | CRITICAL | 9.3 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-68586 | SiYuan before v3.7.3 fails to apply publish-access filters to the getBacklinkDoc and getBackmentionDoc content endpoints | CRITICAL | 9.2 | 15% | EPSS 15%ile | NVD | 2026-08-03 |
| CVE-2026-48499 | Activepieces is an open source AI workflow automation platform. Prior to 0.84.0, an unsanitized path segment in the Code | CRITICAL | 9.3 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-65890 | Joomla Extension - balbooa.com - Unauthenticated SQL injection in Gridbox < 2.20.2 - Multiple SQLi vectors allow unauthe | CRITICAL | 9.2 | 15% | EPSS 15%ile | NVD | 2026-07-29 |
| CVE-2026-53609 | Apostrophe has Server-Side Prototype Pollution in apos.util.set via patch operators that leads to process-wide authoriza | CRITICAL | 9.1 | 15% | EPSS 15%ile | GitHub | 2026-07-31 |
| CVE-2026-15930 | The Simple Membership WordPress plugin before 4.7.8 does not verify whether user creation failed during registration bef | CRITICAL | 9.4 | 14% | EPSS 14%ile | NVD | 2026-08-03 |
| CVE-2026-16534 | The Import and export users and customers WordPress plugin before 2.4.2 does not enforce WordPress's role-assignment and | CRITICAL | 9.1 | 14% | EPSS 14%ile | NVD | 2026-08-03 |
| CVE-2026-15721 | Cleartext storage of sensitive information vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Dig | CRITICAL | 9.8 | 14% | EPSS 14%ile | NVD | 2026-08-04 |
| CVE-2026-17987 | Insufficient validation of untrusted input in Notifications in Google Chrome prior to 151.0.7922.72 allowed a remote att | CRITICAL | 9.6 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-17990 | Insufficient validation of untrusted input in WebAuthn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | CRITICAL | 9.6 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-18108 | Net::SAML2 versions before 0.86 for Perl allow authentication bypass because _verify_encrypted_assertion accepts an Encr | CRITICAL | 9.8 | 13% | EPSS 13%ile | NVD | 2026-08-03 |
| CVE-2026-17855 | Race in DevTools in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the render | CRITICAL | 9.6 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-18248 | @fastify/aws-lambda version 6.4.0 decorates each Fastify request with request.awsLambda.event and request.awsLambda.cont | CRITICAL | 9.1 | 12% | EPSS 12%ile | NVD | 2026-08-03 |
| CVE-2026-11707 | IBM Tivoli System Automation Application Manager 4.1 and IBM WebSphere Application Server is affected by a cross-site sc | CRITICAL | 9.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17749 | Insufficient validation of untrusted input in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who | CRITICAL | 9.6 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-68582 | Vikunja versions >= 0.24.0 and <= 2.3.0 contain a broken object level authorization (BOLA) vulnerability in the task-col | CRITICAL | 9.3 | 11% | EPSS 11%ile | NVD | 2026-08-02 |
| CVE-2026-6881 | A SQL Injection in the Giving Reports functionality in Ellucian Advance Web and Legacy Advance allows an authenticated a | CRITICAL | 9.4 | 10% | EPSS 10%ile | NVD | 2026-07-28 |
| CVE-2026-58062 | In Bouncy Castle for Java before 1.85, Stapled OCSP response accepted without binding to the checked certificate. This i | CRITICAL | 9.3 | 10% | EPSS 10%ile | NVD | 2026-08-03 |
| CVE-2026-18002 | Insufficient validation of untrusted input in Google Lens in Google Chrome prior to 151.0.7922.72 allowed a remote attac | CRITICAL | 9.6 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-18236 | A vulnerability in the Agent Development Kit (ADK) allows for continuation forgery in tool confirmations. An attacker wh | CRITICAL | 9.3 | 10% | EPSS 10%ile | NVD | 2026-07-29 |
| CVE-2026-50736 | The pglogical queue mechanism, used to convey out-of-band commands such as replicated DDL from a publisher to a subscrib | CRITICAL | 9.0 | 9% | EPSS 9%ile | NVD | 2026-07-28 |
| CVE-2026-50737 | When applying replicated changes for a row that is missing one or more columns, pglogical evaluates the affected table's | CRITICAL | 9.0 | 9% | EPSS 9%ile | NVD | 2026-07-28 |
| CVE-2026-46428 | lettre has TLS hostname verification disabled when using Boring TLS backend | CRITICAL | — | 9% | EPSS 9%ile | GitHub | 2026-07-28 |
| CVE-2026-17666 | Cryptographic Flaw in Enterprise in Google Chrome prior to 151.0.7922.72 allowed an attacker in a privileged network pos | CRITICAL | 9.1 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-18015 | Inappropriate implementation in Tint in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to potenti | CRITICAL | 9.6 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-46713 | Misskey is an open source, federated social media platform. Versions 12.37.0 and later, but prior to 2026.5.4, contain a | CRITICAL | 9.2 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-9487 | XML::Sig versions before 0.71 for Perl allow signature wrapping via duplicate ID. _get_signed_xml() in lib/XML/Sig.pm, | CRITICAL | 9.1 | 6% | EPSS 6%ile | NVD | 2026-08-03 |
| CVE-2026-67293 | FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains an improper certificate hostname validation vulnerability. | CRITICAL | 9.3 | 6% | EPSS 6%ile | NVD | 2026-08-01 |
| CVE-2026-67598 | Emlog Pro through 2.6.23 contains a disabled TLS certificate validation vulnerability in include/service/ai.php that all | CRITICAL | 9.1 | 6% | EPSS 6%ile | NVD | 2026-08-03 |
| CVE-2026-67336 | better-auth versions before 1.6.11 contain insecure cryptographic defaults in the oidcProvider and mcp plugins that adve | CRITICAL | 9.4 | 6% | EPSS 6%ile | NVD | 2026-08-01 |
| CVE-2026-48063 | Baileys is a cocket-based TS/JavaScript API for WhatsApp Web. In versions prior to both 6.7.22 and 7.0.0-rc12, any Baile | CRITICAL | 9.3 | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-64633 | A vulnerability allowing remote unauthenticated code execution on the agent host. | CRITICAL | 10.0 | — | — | NVD | 2026-08-04 |
| CVE-2026-63455 | Multiple vulnerabilities in the REST API interface of HPE Networking SD-WAN Orchestrator could allow an unauthenticated | CRITICAL | 9.8 | — | — | NVD | 2026-08-04 |
| CVE-2026-63456 | Multiple vulnerabilities in the REST API interface of HPE Networking SD-WAN Orchestrator could allow an unauthenticated | CRITICAL | 9.8 | — | — | NVD | 2026-08-04 |
| USN-8615-2 | USN-8615-2: Linux kernel (Raspberry Pi) vulnerabilities | CRITICAL | 9.8 | — | — | Ubuntu | 2026-07-29 |
| CVE-2026-25289 | Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with inv | CRITICAL | 9.6 | — | — | NVD | 2026-08-04 |
| DSA 6408-1 | [SECURITY] [DSA 6408-1] chromium security update | CRITICAL | 9.6 | — | — | Debian | 2026-08-01 |
| CVE-2026-58073 | A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to impersonate a managed agent an | CRITICAL | 9.5 | — | — | NVD | 2026-08-04 |
| CVE-2026-69254 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, executeJavaScri | CRITICAL | 9.4 | — | — | NVD | 2026-08-04 |
| CVE-2026-69256 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the CSVAgent no | CRITICAL | 9.4 | — | — | NVD | 2026-08-04 |
| CVE-2026-69259 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the SQLite Reco | CRITICAL | 9.4 | — | — | NVD | 2026-08-04 |
| CVE-2026-61514 | Puwell IP Camera firmware versions 2.x through 4.x contains an authentication bypass vulnerability that allows unauthent | CRITICAL | 9.3 | — | — | NVD | 2026-08-04 |
| CVE-2026-61515 | Puwell IP Camera firmware versions 2.x through 4.x contains an unauthenticated command injection vulnerability that allo | CRITICAL | 9.3 | — | — | NVD | 2026-08-04 |
| CVE-2026-18801 | OpenMeter contains a stored, or second-order, SQL injection vulnerability in the handling of customer usage-attribution | CRITICAL | 9.3 | — | — | NVD | 2026-08-04 |
| CVE-2026-69098 | kotaemon through 0.12.0 contains an insecure deserialization vulnerability in the check_connection endpoint that allows | CRITICAL | 9.3 | — | — | NVD | 2026-08-04 |
| CVE-2026-69110 | OpenCode Studio before 2.4.4 contains a missing authentication vulnerability that allows unauthenticated remote attacker | CRITICAL | 9.3 | — | — | NVD | 2026-08-04 |
| CVE-2026-69255 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the CSVAgent in | CRITICAL | 9.2 | — | — | NVD | 2026-08-04 |
| CVE-2026-60007 | In Eclipse Milo versions 0.6.0 through 1.1.4, username-token processing returns distinguishable errors for invalid RSA P | CRITICAL | 9.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-69251 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise record | CRITICAL | 9.0 | — | — | NVD | 2026-08-04 |
| CVE-2026-69253 | Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to version 3.1 | CRITICAL | 9.0 | — | — | NVD | 2026-08-04 |
| CVE-2026-58072 | A vulnerability in Veeam Service Provider Console allowing arbitrary file write on the management server, which can lead | CRITICAL | 9.0 | — | — | NVD | 2026-08-04 |
| CVE-2026-69264 | Flowise: RCE via CSVAgent csvFile data URI base64 segment is interpolated into Python source without validation | CRITICAL | — | — | — | GitHub | 2026-08-04 |
| CVE-2026-70470 | Flowise: Pyodide validator Unicode homoglyph bypass leads to RCE | CRITICAL | — | — | — | GitHub | 2026-08-04 |
| CVE-2026-34486 | Apache Tomcat Missing Encryption of Sensitive Data Vulnerability | HIGH | — | 99% | KEV PoC EPSS 99%ile | CISA-KEV | 2026-08-04 |
| CVE-2026-18686 | A vulnerability was detected in GL.iNet GL-MT3000 up to 4.4.5. The affected element is the function nas-web.add_user of | HIGH | 8.9 | 84% | EPSS 84%ile | NVD | 2026-08-04 |
| CVE-2026-38710 | TR1200 v2.4.15 and TR3000 v2.4.21 were discovered to contain a command injection vulnerability in the system.setclock in | HIGH | 7.2 | 83% | EPSS 83%ile | NVD | 2026-07-31 |
| CVE-2026-18577 | An incomplete patch for CVE-2026-18556 allows for authentication bypass and account takeover in N-central Versions throu | HIGH | 8.2 | 83% | KEV EPSS 83%ile | NVD | 2026-08-02 |
| CVE-2026-18601 | A vulnerability was found in GL.iNet GL-MT3000 up to 4.4.5. This impacts the function ovpn-client.check_config of the fi | HIGH | 8.9 | 82% | EPSS 82%ile | NVD | 2026-08-03 |
| CVE-2026-18612 | A flaw has been found in GL-iNet GL-MT3000 up to 4.4.5. This vulnerability affects the function plugins.remove_package/p | HIGH | 8.9 | 80% | EPSS 80%ile | NVD | 2026-08-03 |
| CVE-2026-18684 | A weakness has been identified in GL.iNet GL-MT3000 up to 4.4.5. This issue affects the function remove_profile of the f | HIGH | 8.9 | 79% | EPSS 79%ile | NVD | 2026-08-03 |
| CVE-2026-18614 | A vulnerability was found in GL-iNet GL-MT3000 up to 4.4.5. Impacted is the function s2s.enable_echo_server of the file | HIGH | 8.9 | 79% | EPSS 79%ile | NVD | 2026-08-03 |
| CVE-2026-18602 | A vulnerability was determined in GL.iNet GL-MT3000 up to 4.4.5. Affected is the function ovpn-client.get_recommend_conf | HIGH | 8.9 | 79% | EPSS 79%ile | NVD | 2026-08-03 |
| CVE-2026-18615 | A vulnerability was determined in GL-iNet GL-MT3000 up to 4.4.5. The affected element is the function wg-server.generate | HIGH | 8.9 | 79% | EPSS 79%ile | NVD | 2026-08-03 |
| CVE-2026-18616 | A vulnerability was identified in GL-iNet GL-MT3000 up to 4.4.5. The impacted element is the function server.set_peer of | HIGH | 8.9 | 79% | EPSS 79%ile | NVD | 2026-08-03 |
| CVE-2026-18685 | A security vulnerability has been detected in GL.iNet GL-MT3000 up to 4.4.5. Impacted is the function set_upgrade of the | HIGH | 8.9 | 79% | EPSS 79%ile | NVD | 2026-08-04 |
| CVE-2026-18600 | A vulnerability has been found in GL.iNet GL-MT3000 up to 4.4.5. This affects the function network.switch_info/network.s | HIGH | 7.4 | 78% | EPSS 78%ile | NVD | 2026-08-03 |
| CVE-2026-67599 | ClearOS 7.9 contains an OS command injection vulnerability in the Log Viewer component that allows authenticated attacke | HIGH | 8.6 | 78% | EPSS 78%ile | NVD | 2026-08-03 |
| CVE-2026-32203 | Microsoft Security Advisory CVE-2026-32203 – .NET and Visual Studio Denial of Service Vulnerability | HIGH | 7.5 | 78% | EPSS 78%ile | GitHub | 2026-07-28 |
| CVE-2026-9198 | IBM Langflow Code Injection Vulnerability | HIGH | — | 78% | KEV EPSS 78%ile | CISA-KEV | 2026-08-04 |
| CVE-2026-69096 | OpenWrt luci-app-dockerman (LuCI master and openwrt-25.12 snapshots containing the ucode docker_rpc.uc RPC backend after | HIGH | 8.7 | 74% | EPSS 74%ile | NVD | 2026-08-03 |
| CVE-2026-18598 | A vulnerability was detected in GL.iNet GL-MT3000 up to 4.4.5. The affected element is the function logread.get_system_l | HIGH | 7.4 | 74% | EPSS 74%ile | NVD | 2026-08-03 |
| CVE-2026-5487 | DriveLock Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclo | HIGH | 7.5 | 72% | EPSS 72%ile | NVD | 2026-07-29 |
| CVE-2026-5491 | DriveLock Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclo | HIGH | 7.5 | 72% | EPSS 72%ile | NVD | 2026-07-29 |
| CVE-2026-63362 | An unsigned integer underflow in the PubSub signature verification path in open62541 may allow a remote attacker to cau | HIGH | 8.2 | 72% | EPSS 72%ile | NVD | 2026-07-30 |
| CVE-2026-67608 | Telenia Software TVox 26.5.3 and prior 26.x versions, and 24.9.21 and prior 24.x versions, contain an OS command injecti | HIGH | 8.6 | 72% | EPSS 72%ile | NVD | 2026-08-03 |
| CVE-2026-67325 | GitPython before 3.1.51 contains an incomplete command injection blocklist that fails to account for git's long-option p | HIGH | 8.7 | 71% | EPSS 71%ile | NVD | 2026-08-01 |
| CVE-2026-18599 | A flaw has been found in GL.iNet GL-MT3000 up to 4.4.5. The impacted element is the function logread.set_config of the f | HIGH | 7.3 | 70% | EPSS 70%ile | NVD | 2026-08-03 |
| CVE-2026-44098 | This vulnerability allows an unauthenticated remote attacker with control over the OCPP backend via firewall-bypass to p | HIGH | 8.8 | 69% | EPSS 69%ile | NVD | 2026-07-30 |
| CVE-2026-12357 | Heimdall Data Database Proxy generateFileContent CRLF Injection Remote Code Execution Vulnerability. This vulnerability | HIGH | 7.2 | 62% | EPSS 62%ile | NVD | 2026-07-29 |
| CVE-2026-16524 | A command injection flaw in PCP's linux_sockets PMDA allows malicious shell metacharacters via the network.persocket.fil | HIGH | 7.8 | 62% | EPSS 62%ile | NVD | 2026-07-30 |
| CVE-2026-67323 | GitPython before 3.1.51 fails to guard against dangerous Git options passed as keyword arguments in Repo.archive() and g | HIGH | 8.6 | 60% | EPSS 60%ile | NVD | 2026-08-01 |
| CVE-2026-9044 | An OS command injection vulnerability exists in the VPN module of TP-Link AXE75 V1 routers. This vulnerability allows an | HIGH | 8.5 | 59% | EPSS 59%ile | NVD | 2026-07-31 |
| CVE-2026-6837 | A post-authentication command injection vulnerability in the "export-cgi" CGI program in Zyxel WAX650S firmware versions | HIGH | 7.2 | 58% | EPSS 58%ile | NVD | 2026-08-04 |
| CVE-2026-65802 | External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose informat | HIGH | 7.4 | 58% | EPSS 58%ile | NVD | 2026-08-04 |
| CVE-2026-66321 | Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized | HIGH | 7.4 | 58% | EPSS 58%ile | NVD | 2026-08-04 |
| CVE-2026-14266 | 7-Zip XZ Decompression Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote | HIGH | 7.0 | 57% | EPSS 57%ile | NVD | 2026-07-29 |
| CVE-2026-16843 | Some Hikvision Networking Products are vulnerable to authenticated command execution due to insufficient input validatio | HIGH | 7.2 | 56% | EPSS 56%ile | NVD | 2026-07-31 |
| CVE-2026-58222 | A security flaw combining LDAP filter injection and improper authorization checks was found in Samba Active Directory Do | HIGH | 8.8 | 54% | EPSS 54%ile | NVD | 2026-07-30 |
| CVE-2026-62870 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code over a network. | HIGH | 8.8 | 54% | EPSS 54%ile | NVD | 2026-08-04 |
| CVE-2026-15006 | The Bit integrations – Form Integration, Webhook, Spreadsheets, CRM, LMS & Email Automation plugin for WordPress is vuln | HIGH | 7.5 | 54% | EPSS 54%ile | NVD | 2026-08-01 |
| CVE-2026-12935 | The TL-WR940N v6 router contains a vulnerability in its RTSP connection tracking module that can lead to a stack-based b | HIGH | 8.7 | 53% | EPSS 53%ile | NVD | 2026-07-29 |
| CVE-2026-16526 | A flaw in the PCP linux_sockets module exposes an unsecured internal connection. An attacker with initial code execution | HIGH | 8.8 | 52% | EPSS 52%ile | NVD | 2026-07-30 |
| CVE-2026-59933 | PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet files. In versions 4.0.0 through 5.8.0, 3.3.0 t | HIGH | 7.5 | 49% | EPSS 49%ile | NVD | 2026-07-28 |
| CVE-2026-59932 | PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet files. In versions 4.0.0 through 5.8.0, 3.3.0 t | HIGH | 7.5 | 49% | EPSS 49%ile | NVD | 2026-07-28 |
| CVE-2026-16144 | The Kali Forms — Contact Form & Drag-and-Drop Builder plugin for WordPress is vulnerable to Remote Code Execution in all | HIGH | 8.1 | 49% | EPSS 49%ile | NVD | 2026-08-01 |
| CVE-2026-18352 | The User Access Manager plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, | HIGH | 7.5 | 49% | EPSS 49%ile | NVD | 2026-08-02 |
| CVE-2026-56671 | ComfyUI is a modular diffusion model GUI, api and backend with a graph/nodes interface. Prior to 0.28.0, get_model_previ | HIGH | 7.5 | 48% | EPSS 48%ile | NVD | 2026-07-31 |
| CVE-2026-58163 | Apache Traffic Server mishandles on-disk cache fields and object lifetimes, corrupting state or crashing. This issue af | HIGH | 8.3 | 48% | EPSS 48%ile | NVD | 2026-07-29 |
| CVE-2026-61523 | WebsiteBaker CMS before 2.13.10 contains a code injection vulnerability in the Droplets editor that allows authenticated | HIGH | 8.6 | 47% | EPSS 47%ile | NVD | 2026-08-03 |
| CVE-2026-13339 | The CubeWP Framework plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.1 | HIGH | 7.5 | 47% | EPSS 47%ile | NVD | 2026-08-02 |
| CVE-2026-58164 | Apache Traffic Server has use-after-free and time-of-check/time-of-use errors in remap configuration handling. This iss | HIGH | 8.3 | 47% | EPSS 47%ile | NVD | 2026-07-29 |
| CVE-2026-58175 | Apache Traffic Server leaks memory when handling HostDB SRV records. This issue affects Apache Traffic Server: from 8.0 | HIGH | 8.2 | 47% | EPSS 47%ile | NVD | 2026-07-29 |
| CVE-2026-58178 | The Apache Traffic Server ESI plugin can recurse without bound and fetch attacker-controlled URLs. This issue affects A | HIGH | 8.2 | 47% | EPSS 47%ile | NVD | 2026-07-29 |
| CVE-2026-58180 | The Apache Traffic Server txn_box plugin overflows the stack from attacker-controlled input. This issue affects Apache | HIGH | 8.2 | 47% | EPSS 47%ile | NVD | 2026-07-29 |
| CVE-2026-16236 | The Realtyna Organic IDX plugin for WordPress is vulnerable to Arbitrary File Upload in versions up to, and including, 5 | HIGH | 8.8 | 47% | EPSS 47%ile | NVD | 2026-07-31 |
| CVE-2026-12476 | The Easy Digital Downloads plugin for WordPress is vulnerable to Arbitrary File Upload in versions up to and including 3 | HIGH | 7.2 | 47% | EPSS 47%ile | NVD | 2026-07-29 |
| CVE-2026-14519 | IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 could allow a remote attacker to r | HIGH | 7.5 | 46% | EPSS 46%ile | NVD | 2026-07-30 |
| CVE-2026-66315 | Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. | HIGH | 7.5 | 46% | EPSS 46%ile | NVD | 2026-08-04 |
| CVE-2026-69095 | OpenWrt luci-app-bmx7 before commit 5890760a454dad2cb00389dba2cdc5e779e0ffdd contains a path traversal vulnerability in | HIGH | 8.7 | 46% | EPSS 46%ile | NVD | 2026-08-03 |
| CVE-2026-18589 | A vulnerability was found in Wavlink WL-NU516U1 708c073-mt7628. This impacts the function change_password of the file na | HIGH | 8.9 | 46% | EPSS 46%ile | NVD | 2026-08-03 |
| CVE-2026-65423 | An integer overflow in the UA_Variant arrayDimensions product computation in open62541 may allow a remote attacker to t | HIGH | 8.7 | 46% | EPSS 46%ile | NVD | 2026-07-30 |
| CVE-2026-58188 | Several Apache Traffic Server experimental plugins have memory-safety and limit-bypass errors. This issue affects Apach | HIGH | 8.4 | 45% | EPSS 45%ile | NVD | 2026-07-29 |
| CVE-2026-22621 | Improper input validation in one of the session management interface of Eaton's Tripp Lite Series PADM firmware could al | HIGH | 8.3 | 45% | EPSS 45%ile | NVD | 2026-07-30 |
| CVE-2026-63035 | A heap use-after-free vulnerability in the TransferSubscriptions service in open62541 may allow an authenticated attack | HIGH | 7.2 | 44% | EPSS 44%ile | NVD | 2026-07-30 |
| CVE-2026-1360 | The BuddyPress plugin for WordPress is vulnerable to Deserialization of Untrusted Data in all versions up to, and includ | HIGH | 7.5 | 44% | EPSS 44%ile | NVD | 2026-07-30 |
| CVE-2026-13308 | Autel MaxiCharger AC Elite Home WebSockets Integer Underflow Remote Code Execution Vulnerability. This vulnerability all | HIGH | 8.1 | 44% | EPSS 44%ile | NVD | 2026-07-29 |
| CVE-2026-58158 | Apache Traffic Server mishandles PROXY protocol input, truncating ports and overflowing the stack. This issue affects A | HIGH | 8.2 | 43% | EPSS 43%ile | NVD | 2026-07-29 |
| CVE-2026-61524 | WebsiteBaker CMS before 2.13.10 contains an unrestricted file upload vulnerability in the module installation feature th | HIGH | 8.6 | 43% | EPSS 43%ile | NVD | 2026-08-03 |
| CVE-2026-41703 | VMware ESX, Workstation, and Fusion contain an out-of-bounds read vulnerability. A malicious actor with VM deployment pr | HIGH | 7.6 | 43% | EPSS 43%ile | NVD | 2026-07-30 |
| CVE-2026-16308 | IBM Enterprise Build of Quarkus 3.27.1 through 3.27.4.SP2, and 3.33.1 through 3.33.2.SP2 Quarkus REST could allow a remo | HIGH | 7.5 | 43% | EPSS 43%ile | NVD | 2026-07-30 |
| CVE-2026-18613 | A vulnerability has been found in GL-iNet GL-MT3000 up to 4.4.5. This issue affects the function plugins.set_config of t | HIGH | 8.9 | 43% | EPSS 43%ile | NVD | 2026-08-03 |
| CVE-2026-14270 | The Extra Checkout Options (addon for Extra Product Options & Add-Ons for WooCommerce) plugin for WordPress is vulnerabl | HIGH | 8.8 | 43% | EPSS 43%ile | NVD | 2026-07-29 |
| CVE-2026-58177 | The Apache Traffic Server Cripts framework has out-of-bounds writes, path traversal, and use-after-free errors. This is | HIGH | 8.3 | 43% | EPSS 43%ile | NVD | 2026-07-29 |
| CVE-2026-56846 | A flaw in Node.js HTTP/2 handling can cause HTTP/2 retained header blocks evade maxSessionMemory and enable remote memor | HIGH | 7.5 | 43% | EPSS 43%ile | NVD | 2026-08-04 |
| CVE-2026-58186 | The Apache Traffic Server webp_transform plugin can decode unsafely and serve mislabeled, cacheable responses. This iss | HIGH | 8.2 | 43% | EPSS 43%ile | NVD | 2026-07-29 |
| CVE-2026-58182 | The Apache Traffic Server ts_lua plugin mishandles initialization, transform context, and per-instance state. This issu | HIGH | 8.2 | 42% | EPSS 42%ile | NVD | 2026-07-29 |
| CVE-2026-59931 | PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet files. In versions 4.0.0 through 5.8.0, 3.3.0 t | HIGH | 7.7 | 42% | EPSS 42%ile | NVD | 2026-07-28 |
| CVE-2026-58159 | Apache Traffic Server can bypass IP access controls on UDS listeners and through ACL matching errors. This issue affect | HIGH | 7.0 | 42% | EPSS 42%ile | NVD | 2026-07-29 |
| CVE-2026-58183 | The Apache Traffic Server prefetch plugin can crash when processing attacker-influenced input. This issue affects Apach | HIGH | 8.2 | 41% | EPSS 41%ile | NVD | 2026-07-29 |
| CVE-2026-15722 | A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). The get_ruvelement_from_berval() function | HIGH | 7.5 | 41% | EPSS 41%ile | NVD | 2026-07-31 |
| CVE-2026-11770 | A flaw was found in 389 Directory Server. An unauthenticated remote attacker can inject LDAP search filters into the Cle | HIGH | 7.5 | 40% | EPSS 40%ile | NVD | 2026-07-31 |
| CVE-2026-14522 | IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 could allow a remote attacker to e | HIGH | 8.8 | 40% | EPSS 40%ile | NVD | 2026-07-30 |
| CVE-2026-20479 | In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of serv | HIGH | 7.5 | 40% | EPSS 40%ile | NVD | 2026-08-03 |
| CVE-2026-66723 | MWDB Core versions >=2.2.0 and <2.19.0 contain a missing authorization vulnerability in the Remote Instances proxy API. | HIGH | 7.0 | 40% | EPSS 40%ile | NVD | 2026-07-29 |
| CVE-2026-58181 | The Apache Traffic Server uri_signing and url_sig plugins can exhaust the stack or crash on attacker input. This issue | HIGH | 8.2 | 40% | EPSS 40%ile | NVD | 2026-07-29 |
| CVE-2026-67309 | Traefik versions >= v3.7.0 and <= v3.7.7 contain a path traversal vulnerability in the Kubernetes Ingress NGINX provider | HIGH | 7.8 | 40% | EPSS 40%ile | NVD | 2026-08-01 |
| CVE-2026-11974 | The wp-media-folder-addon WordPress plugin through 4.1.6 does not validate a user-supplied parameter before using it in | HIGH | 8.6 | 39% | EPSS 39%ile | NVD | 2026-07-29 |
| CVE-2026-58189 | Apache Traffic Server allows redirect-limit bypass when plugins reset the retry counter, enabling SSRF amplification. T | HIGH | 8.2 | 39% | EPSS 39%ile | NVD | 2026-07-29 |
| CVE-2026-5057 | ATEN Unizon RpcProvider Missing Authentication Denial-of-Service Vulnerability. This vulnerability allows remote attacke | HIGH | 7.5 | 39% | EPSS 39%ile | NVD | 2026-07-29 |
| CVE-2026-5490 | DriveLock SQL Injection Privilege Escalation Vulnerability. This vulnerability allows remote attackers to escalate privi | HIGH | 8.8 | 39% | EPSS 39%ile | NVD | 2026-07-29 |
| CVE-2026-48399 | Adobe Campaign Classic (ACC) is affected by a Violation of Secure Design Principles vulnerability that could result in a | HIGH | 7.5 | 39% | EPSS 39%ile | NVD | 2026-08-03 |
| CVE-2026-58151 | Apache Traffic Server can be crashed or driven to resource exhaustion by abusive HTTP/2 framing and flow-control. This | HIGH | 8.7 | 38% | EPSS 38%ile | NVD | 2026-07-29 |
| CVE-2026-65324 | Apache Traffic Server drops the per-stream buffer cap when dechunking HTTP/2 or HTTP/3 responses, letting a slow client | HIGH | 8.2 | 38% | EPSS 38%ile | NVD | 2026-07-29 |
| CVE-2026-17658 | Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside | HIGH | 8.8 | 38% | EPSS 38%ile | NVD | 2026-07-30 |
| CVE-2026-17661 | Use after free in Loader in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code ins | HIGH | 8.8 | 38% | EPSS 38%ile | NVD | 2026-07-30 |
| CVE-2026-50559 | Quarkus: Authentication/Authorization Bypass via Advanced Path Normalization Vulnerabilities | HIGH | 7.5 | 38% | EPSS 38%ile | GitHub | 2026-07-29 |
| CVE-2026-47219 | find-my-way is a framework-independent HTTP router that internally uses a Radix Tree and supports route parameters and w | HIGH | 7.5 | 38% | EPSS 38%ile | NVD | 2026-07-28 |
| CVE-2026-58184 | The Apache Traffic Server header_rewrite plugin can crash or corrupt memory during cookie operations and CIDR condition | HIGH | 8.3 | 37% | EPSS 37%ile | NVD | 2026-07-29 |
| CVE-2026-63222 | CodeIgniter is a PHP full-stack web framework. Prior to 4.7.4, calling UploadedFile::move() without a second argument us | HIGH | 7.5 | 37% | EPSS 37%ile | NVD | 2026-07-31 |
| CVE-2026-58185 | The Apache Traffic Server intercept plugin has a use-after-free. This issue affects Apache Traffic Server: from 8.0.0 t | HIGH | 8.2 | 37% | EPSS 37%ile | NVD | 2026-07-29 |
| CVE-2026-17665 | Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside | HIGH | 8.8 | 36% | EPSS 36%ile | NVD | 2026-07-30 |
| CVE-2026-17685 | Use after free in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code i | HIGH | 8.8 | 36% | EPSS 36%ile | NVD | 2026-07-30 |
| CVE-2026-17694 | Use after free in DOM in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside | HIGH | 8.8 | 36% | EPSS 36%ile | NVD | 2026-07-30 |
| CVE-2026-17705 | Integer overflow in libxml in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code i | HIGH | 8.8 | 36% | EPSS 36%ile | NVD | 2026-07-30 |
| CVE-2026-67206 | Wolf CMS through 0.8.3.1 contains a remote code execution vulnerability in FileManagerController that allows authenticat | HIGH | 8.7 | 36% | EPSS 36%ile | NVD | 2026-07-30 |
| CVE-2026-18607 | A security vulnerability has been detected in Wavlink WN572, WN570H, WN573, WN529, WN530, WN531, WN535, etc. WN529, WN53 | HIGH | 7.4 | 36% | EPSS 36%ile | NVD | 2026-08-03 |
| CVE-2026-18140 | Uncontrolled recursion in the unknown-key skip path of the aws-smithy-json runtime crate before 0.62.7, which the smithy | HIGH | 8.7 | 36% | EPSS 36%ile | NVD | 2026-07-30 |
| CVE-2026-67432 | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Tran | HIGH | 7.5 | 36% | EPSS 36%ile | NVD | 2026-07-29 |
| CVE-2026-63559 | An integer overflow in the UA_Variant arrayDimensions product computation in open62541 may allow a remote attacker to r | HIGH | 8.7 | 36% | EPSS 36%ile | NVD | 2026-07-30 |
| CVE-2026-17346 | The fix for CVE-2026-12044 in pgAdmin 4 9.16 hardened qtLiteral and switched sixteen COMMENT ON / pgstattuple / pgstatin | HIGH | 8.7 | 36% | EPSS 36%ile | NVD | 2026-07-31 |
| CVE-2026-67290 | FreeRDP before 3.29.0 contains a heap out-of-bounds read vulnerability in the TSMF FFmpeg decoder when parsing AVC1 MPEG | HIGH | 8.7 | 36% | EPSS 36%ile | NVD | 2026-08-01 |
| CVE-2026-56673 | ComfyUI is a modular diffusion model GUI, API, and backend with a graph-and-node interface. Prior to 0.28.0, folder_path | HIGH | 7.5 | 35% | EPSS 35%ile | NVD | 2026-07-31 |
| CVE-2026-17544 | Attacker-provided inputs to bccomp() could lead to an out-of-bounds write with stack and heap corruption in PHP versions | HIGH | 8.1 | 35% | EPSS 35%ile | NVD | 2026-07-30 |
| CVE-2026-18358 | A flaw was found in gnome-remote-desktop as shipped in Red Hat Enterprise Linux. When the daemon is running in system mo | HIGH | 7.5 | 35% | EPSS 35%ile | NVD | 2026-07-31 |
| CVE-2026-5056 | GStreamer qtdemux Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote atta | HIGH | 7.8 | 35% | EPSS 35%ile | NVD | 2026-07-29 |
| CVE-2026-54635 | pytonapi is a Python SDK for TONAPI that provides REST API, streaming, and webhook access to the TON blockchain. From 2. | HIGH | 7.5 | 35% | EPSS 35%ile | NVD | 2026-07-28 |
| CVE-2026-17881 | Integer overflow in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code in | HIGH | 8.8 | 34% | EPSS 34%ile | NVD | 2026-07-30 |
| CVE-2026-53503 | Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, Thumbor's filters:convolution(<matrix>, | HIGH | 7.5 | 34% | EPSS 34%ile | NVD | 2026-07-31 |
| CVE-2026-12942 | IBM Langflow OSS 1.0.0 through 1.10.1 could allow a remote attacker to traverse directories on the system. An attacker c | HIGH | 7.5 | 34% | EPSS 34%ile | NVD | 2026-07-30 |
| CVE-2026-17725 | Type Confusion in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside | HIGH | 8.8 | 34% | EPSS 34%ile | NVD | 2026-07-30 |
| CVE-2026-21548 | In nr modem, there is a possible improper input validation. This could lead to remote denial of service with System exec | HIGH | 7.5 | 33% | EPSS 33%ile | NVD | 2026-08-03 |
| CVE-2026-21549 | In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional | HIGH | 7.5 | 33% | EPSS 33%ile | NVD | 2026-08-03 |
| CVE-2026-21550 | In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional | HIGH | 7.5 | 33% | EPSS 33%ile | NVD | 2026-08-03 |
| CVE-2026-21551 | In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional | HIGH | 7.5 | 33% | EPSS 33%ile | NVD | 2026-08-03 |
| CVE-2026-21552 | In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional | HIGH | 7.5 | 33% | EPSS 33%ile | NVD | 2026-08-03 |
| CVE-2026-21553 | In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional | HIGH | 7.5 | 33% | EPSS 33%ile | NVD | 2026-08-03 |
| CVE-2026-21554 | In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional | HIGH | 7.5 | 33% | EPSS 33%ile | NVD | 2026-08-03 |
| CVE-2026-21555 | In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional | HIGH | 7.5 | 33% | EPSS 33%ile | NVD | 2026-08-03 |
| CVE-2026-66310 | External control of file name or path in Microsoft Edge for Android allows an unauthorized attacker to disclose informat | HIGH | 7.7 | 33% | EPSS 33%ile | NVD | 2026-08-04 |
| CVE-2026-62391 | The security fix for CVE-2025-66518 is incomplete. Any client who can access to Apache Kyuubi Server via Kyuubi frontend | HIGH | 8.1 | 33% | EPSS 33%ile | NVD | 2026-07-31 |
| CVE-2026-17922 | Inappropriate implementation in Enterprise in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute | HIGH | 8.8 | 33% | EPSS 33%ile | NVD | 2026-07-30 |
| CVE-2026-57859 | e107 prior to version 2.3.8 contains a code execution vulnerability in the e_array deserialization handler that allows a | HIGH | 7.7 | 33% | EPSS 33%ile | NVD | 2026-07-30 |
| CVE-2026-69079 | CTI-Transmute contains an uncontrolled resource-consumption vulnerability in the unauthenticated /activity_timeline endp | HIGH | 8.7 | 32% | EPSS 32%ile | NVD | 2026-08-03 |
| CVE-2026-53510 | Savon is a Ruby SOAP client. From 0.9.8 until 2.17.2, Savon::Model .all_operations interpolates attacker-controlled WSDL | HIGH | 8.1 | 32% | EPSS 32%ile | NVD | 2026-07-31 |
| CVE-2026-12947 | IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 stores potentially sensitive infor | HIGH | 7.5 | 32% | EPSS 32%ile | NVD | 2026-07-30 |
| CVE-2026-16527 | An unauthenticated remote attacker can bypass access controls by sending crafted requests to the PCP pmproxy /store endp | HIGH | 7.3 | 32% | EPSS 32%ile | NVD | 2026-07-30 |
| CVE-2026-15975 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 11.8 before 19.0.5, 19.1 before 19.1.3, and 1 | HIGH | 7.5 | 32% | EPSS 32%ile | NVD | 2026-07-29 |
| CVE-2026-47427 | GitHub MCP Server has Nil Pointer Dereference DoS in completion/complete Handler | HIGH | 7.5 | 32% | EPSS 32%ile | GitHub | 2026-07-28 |
| CVE-2026-54368 | CentreStack before 17.4 contains a SQL injection vulnerability in GladDBFiles.SearchEx() and SearchExUnder() that allows | HIGH | 8.7 | 32% | EPSS 32%ile | NVD | 2026-07-30 |
| CVE-2026-67201 | V through 0.5.2, fixed in commit 85859f0, contains a server-side request forgery (SSRF) bypass vulnerability that allows | HIGH | 7.7 | 32% | EPSS 32%ile | NVD | 2026-07-29 |
| CVE-2026-60074 | Date::Manip versions through 6.99 for Perl return corrupted dates via non-ASCII decimal digits that pass the numeric ran | HIGH | 7.5 | 32% | EPSS 32%ile | NVD | 2026-07-30 |
| CVE-2026-60075 | Date::Manip versions through 6.99 for Perl allow CPU exhaustion via quadratic backtracking in the unanchored time substi | HIGH | 7.5 | 32% | EPSS 32%ile | NVD | 2026-07-30 |
| CVE-2026-17650 | Use after free in Compositing in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the | HIGH | 8.3 | 31% | EPSS 31%ile | NVD | 2026-07-30 |
| CVE-2026-17653 | Use after free in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the rendere | HIGH | 8.3 | 31% | EPSS 31%ile | NVD | 2026-07-30 |
| CVE-2026-17543 | Improper escaping of backslashes in attacker-provided parameters would allow for trivial SQL injection in PHP versions f | HIGH | 8.1 | 31% | EPSS 31%ile | NVD | 2026-07-30 |
| CVE-2026-17660 | Insufficient validation of untrusted input in Network in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | HIGH | 8.3 | 31% | EPSS 31%ile | NVD | 2026-07-30 |
| CVE-2026-62959 | Coturn is a free open source implementation of TURN and STUN Server. From 4.5.2 through 4.14.0, when Coturn is started w | HIGH | 8.2 | 31% | EPSS 31%ile | NVD | 2026-07-31 |
| CVE-2026-55100 | hashi-vault-js is a Node.js module for interacting with the HashiCorp Vault API. Prior to 0.5.2, src/Vault.js concatenat | HIGH | 8.7 | 31% | EPSS 31%ile | NVD | 2026-07-31 |
| CVE-2026-61372 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache Jena Fuseki. Thi | HIGH | 7.5 | 31% | EPSS 31%ile | NVD | 2026-08-03 |
| CVE-2026-68500 | Sylius Mollie Plugin provides Mollie payment integration for Sylius applications. Prior to 2.2.8, 3.2.4, and 3.3.1, Syli | HIGH | 7.5 | 31% | EPSS 31%ile | NVD | 2026-07-30 |
| CVE-2026-67298 | FreeRDP versions 3.28.0 and earlier contain a heap buffer overflow in the server-side RAIL channel handler (rail_server_ | HIGH | 8.7 | 31% | EPSS 31%ile | NVD | 2026-08-01 |
| CVE-2026-18192 | VIN-DS783E-E6 developed by Vacron has an Arbitrary File Read vulnerability, allowing authenticated remote attackers to e | HIGH | 7.1 | 31% | EPSS 31%ile | NVD | 2026-07-29 |
| CVE-2026-44092 | An unauthenticated remote attacker can inject malicious input into the ModbusServer application because it does not vali | HIGH | 8.8 | 31% | EPSS 31%ile | NVD | 2026-07-30 |
| CVE-2026-17719 | Use after free in Input in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code insi | HIGH | 8.8 | 31% | EPSS 31%ile | NVD | 2026-07-30 |
| CVE-2026-15450 | The Nex Forms – Ultimate Form Builder – Lite plugin for WordPress is vulnerable to arbitrary file deletion via path trav | HIGH | 8.1 | 30% | EPSS 30%ile | NVD | 2026-08-01 |
| CVE-2026-69089 | Grav CMS 2.0.10 contains a path traversal vulnerability in ImageMedium::watermark(), which passes its unsanitized $image | HIGH | 8.7 | 30% | EPSS 30%ile | NVD | 2026-08-03 |
| CVE-2026-17677 | Inappropriate implementation in ANGLE in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to po | HIGH | 8.8 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-17678 | Out of bounds read in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the re | HIGH | 8.8 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-67351 | Serendipity before 2.6.1 contains an authentication context confusion vulnerability where password validation and sessio | HIGH | 8.7 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-48448 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL | HIGH | 8.6 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-13392 | The ElementsKit Elementor Addons WordPress plugin before 3.10.01 does not prevent a custom-widget definition saved by a | HIGH | 7.2 | 30% | EPSS 30%ile | NVD | 2026-07-31 |
| CVE-2026-12144 | The Wholesale for WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and incl | HIGH | 8.8 | 30% | EPSS 30%ile | NVD | 2026-07-29 |
| CVE-2026-66318 | Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over | HIGH | 8.1 | 30% | EPSS 30%ile | NVD | 2026-08-04 |
| CVE-2026-6540 | Calico's Application Layer Policy (disabled by default), which enforces HTTP rules through Dikastes, fails to perform UR | HIGH | 7.9 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-69152 | The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.18, 2.1.4, 3 | HIGH | 7.5 | 30% | EPSS 30%ile | NVD | 2026-08-03 |
| CVE-2026-14974 | IBM WebSphere Application Server 8.5, and 9.0 traditional could allow a remote attacker to execute arbitrary code caused | HIGH | 8.1 | 29% | EPSS 29%ile | NVD | 2026-07-28 |
| CVE-2026-17751 | Inappropriate implementation in AdFilter in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute ar | HIGH | 8.8 | 29% | EPSS 29%ile | NVD | 2026-07-30 |
| CVE-2026-58060 | In Bouncy Castle for Java before 1.85, HSS public-key level count unbounded, enabling huge allocation on verify. This is | HIGH | 8.7 | 29% | EPSS 29%ile | NVD | 2026-08-03 |
| CVE-2026-56819 | Netty: HTTP/2 decompression leaks ByteBuf reference count when the decompressor channel is already closed (Direct memory | HIGH | 7.5 | 29% | EPSS 29%ile | GitHub | 2026-07-31 |
| CVE-2026-66421 | OpenClaw Dashboard contains a stored cross-site scripting vulnerability that allows unauthenticated remote attackers to | HIGH | 8.8 | 29% | EPSS 29%ile | NVD | 2026-07-30 |
| CVE-2026-41695 | Spring Data: Unbounded property-path cache keyed by externally-supplied path string | HIGH | 7.5 | 29% | EPSS 29%ile | GitHub | 2026-07-31 |
| CVE-2026-22620 | Improper input validation in the authentication component of Eaton's Tripp Lite series PADM firmware could allow an unau | HIGH | 8.6 | 29% | EPSS 29%ile | NVD | 2026-07-30 |
| CVE-2026-55389 | datamodel-code-generator generates Pydantic v2 models, dataclasses, TypedDict, and msgspec.Struct from OpenAPI, JSON Sch | HIGH | 7.5 | 29% | EPSS 29%ile | NVD | 2026-07-28 |
| CVE-2026-17896 | Use after free in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code i | HIGH | 7.5 | 29% | EPSS 29%ile | NVD | 2026-07-30 |
| CVE-2026-54650 | openhole exposes localhost to the internet in one command. In 0.1.1 and earlier, openhole-server in internal/server/publ | HIGH | 8.6 | 29% | EPSS 29%ile | NVD | 2026-07-28 |
| CVE-2026-55390 | datamodel-code-generator generates Python data models from schema definitions. From 0.59.0 until 0.62.0, XML Schema pars | HIGH | 7.5 | 29% | EPSS 29%ile | NVD | 2026-07-28 |
| CVE-2026-56845 | An unauthenticated path traversal (LFI) vulnerability exists under /custom-sounds/ when CustomSounds storage is configur | HIGH | 7.5 | 29% | EPSS 29%ile | NVD | 2026-08-04 |
| CVE-2026-17657 | Use after free in Navigation in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the r | HIGH | 8.3 | 29% | EPSS 29%ile | NVD | 2026-07-30 |
| CVE-2026-14818 | A path traversal vulnerability in the CLI command used to execute configuration files in Zyxel ATP series firmware versi | HIGH | 7.2 | 29% | EPSS 29%ile | NVD | 2026-08-04 |
| CVE-2026-16540 | The Simply Schedule Appointments WordPress plugin before 1.6.12.6 does not correctly restrict a bulk appointment operati | HIGH | 7.5 | 28% | EPSS 28%ile | NVD | 2026-08-02 |
| CVE-2026-53502 | Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, file_loader decodes percent-encoded path | HIGH | 8.7 | 28% | EPSS 28%ile | NVD | 2026-07-31 |
| CVE-2026-69091 | Admidio before 5.0.11 contains an authentication bypass vulnerability in the forum module when configured in login-only | HIGH | 8.7 | 28% | EPSS 28%ile | NVD | 2026-08-03 |
| CVE-2026-54593 | Pterodactyl's improper JWT scoping allows subuser to upload files when not explicitly granted `file.create` permissions | HIGH | 8.1 | 28% | EPSS 28%ile | GitHub | 2026-07-28 |
| CVE-2026-67304 | FreeRDP before 3.29.0 contains a null pointer dereference vulnerability in smartcard device control request cleanup when | HIGH | 8.7 | 28% | EPSS 28%ile | NVD | 2026-08-01 |
| CVE-2026-67437 | OliveTin gives access to predefined shell commands from a web interface. From 3000.0.0 until 3000.17.0, the service/inte | HIGH | 7.5 | 28% | EPSS 28%ile | NVD | 2026-07-29 |
| CVE-2026-17712 | Race in Skia in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a | HIGH | 8.8 | 28% | EPSS 28%ile | NVD | 2026-07-30 |
| CVE-2026-12932 | A memory leak in the tls-crypt-v2 client key extraction in OpenVPN 2.5.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 all | HIGH | 7.1 | 28% | EPSS 28%ile | NVD | 2026-07-30 |
| CVE-2026-17686 | Insufficient validation of untrusted input in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacke | HIGH | 8.1 | 28% | EPSS 28%ile | NVD | 2026-07-30 |
| CVE-2026-67288 | FreeRDP before 3.29.0 contains a null pointer dereference vulnerability in smartcard cache request decoders that accept | HIGH | 8.7 | 28% | EPSS 28%ile | NVD | 2026-08-01 |
| CVE-2026-41453 | Krayin CRM before 2.2.4 contains a blind SQL injection vulnerability in the leads DataGrid that allows authenticated use | HIGH | 8.7 | 28% | EPSS 28%ile | NVD | 2026-08-03 |
| CVE-2026-69086 | SiYuan versions before v3.7.3 fail to validate the avID parameter on all code branches in attribute-view read endpoints, | HIGH | 8.3 | 28% | EPSS 28%ile | NVD | 2026-08-03 |
| CVE-2026-54653 | datamodel-code-generator generates Pydantic v2 models, dataclasses, TypedDict, and msgspec.Struct from OpenAPI, JSON Sch | HIGH | 8.8 | 28% | EPSS 28%ile | NVD | 2026-07-28 |
| CVE-2026-50622 | Description: Missing Authorization in Apache Atlas. A missing authorization vulnerability in Apache Atlas's admin endpoi | HIGH | 8.8 | 28% | EPSS 28%ile | NVD | 2026-07-29 |
| CVE-2026-17778 | Use after free in Extensions in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code | HIGH | 8.8 | 28% | EPSS 28%ile | NVD | 2026-07-30 |
| CVE-2026-50782 | Jinher OA C6 contains an XML External Entity (XXE) injection vulnerability in the /c6/JHSoft.Web.HrmAttendance/sp_manage | HIGH | 7.5 | 28% | EPSS 28%ile | NVD | 2026-07-29 |
| CVE-2026-17663 | Insufficient validation of untrusted input in GPU in Google Chrome on Android prior to 151.0.7922.72 allowed a remote at | HIGH | 8.3 | 27% | EPSS 27%ile | NVD | 2026-07-30 |
| CVE-2026-67215 | cJSON through 1.7.19 is vulnerable to uncontrolled recursion leading to stack exhaustion when an untrusted RFC 6902 JSON | HIGH | 8.7 | 27% | EPSS 27%ile | NVD | 2026-07-29 |
| CVE-2026-54638 | gotd/td is a T Telegram MTProto API client in Go. Prior to 0.145.1, proto.UnencryptedMessage.Decode in proto/unencrypted | HIGH | 7.5 | 27% | EPSS 27%ile | NVD | 2026-07-28 |
| CVE-2026-69185 | Socket.IO enables bidirectional and low-latency communication for every platform. Prior to 4.2.7, 3.4.5, and 3.3.6, a sp | HIGH | 7.5 | 27% | EPSS 27%ile | NVD | 2026-08-03 |
| CVE-2026-55771 | Cedar-Java has policy injection, type confusion, and incorrect equality comparison vulnerabilities | HIGH | 8.8 | 27% | EPSS 27%ile | GitHub | 2026-07-28 |
| CVE-2026-67296 | FreeRDP before 3.29.0 contains a denial of service vulnerability in the RDPEI server channel handler that fails to valid | HIGH | 8.7 | 27% | EPSS 27%ile | NVD | 2026-08-01 |
| CVE-2026-67297 | FreeRDP before 3.29.0 fails to enforce the RESPONSE_SIZE_LIMIT when processing Transfer-Encoding: chunked HTTP responses | HIGH | 8.7 | 27% | EPSS 27%ile | NVD | 2026-08-01 |
| CVE-2026-18022 | Integer wraparound in IVFFlat index build in pgvector before 0.8.6 allows a database user to write data out-of-bounds, w | HIGH | 8.8 | 27% | EPSS 27%ile | NVD | 2026-07-29 |
| CVE-2026-54693 | ZITADEL is an open source identity management platform. From 2.43.0 through 2.71.19, from 3.0.0 until 3.4.11, and from 4 | HIGH | 8.2 | 27% | EPSS 27%ile | NVD | 2026-07-29 |
| CVE-2026-11771 | OpenVPN version 2.1.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows attackers via an off-by-one buffer write in the | HIGH | 7.0 | 27% | EPSS 27%ile | NVD | 2026-07-30 |
| CVE-2026-69149 | Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other | HIGH | 8.6 | 27% | EPSS 27%ile | NVD | 2026-08-03 |
| CVE-2026-17935 | Heap buffer overflow in Codecs in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary co | HIGH | 8.8 | 26% | EPSS 26%ile | NVD | 2026-07-30 |
| CVE-2026-67291 | FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains a heap out-of-bounds read in update_process_glyph_fragments | HIGH | 8.7 | 26% | EPSS 26%ile | NVD | 2026-08-01 |
| CVE-2026-67301 | FreeRDP before 3.29.0 contains out-of-bounds read vulnerabilities in the async update message proxy for the PolygonSC an | HIGH | 8.7 | 26% | EPSS 26%ile | NVD | 2026-08-01 |
| CVE-2026-67427 | Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.6, the workflow engine variable | HIGH | 8.6 | 26% | EPSS 26%ile | NVD | 2026-07-29 |
| CVE-2026-18064 | An incomplete fix for CVE-2026-15352 in the NASA core Flight System (cFS) Health and Safety (HS) application leaves a s | HIGH | 8.2 | 26% | EPSS 26%ile | NVD | 2026-07-30 |
| CVE-2026-53505 | Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, Thumbor's filters:proportion(<value>) fi | HIGH | 7.5 | 26% | EPSS 26%ile | NVD | 2026-07-31 |
| CVE-2026-57834 | Apache Traffic Server allows request smuggling if chunked messages are malformed. This issue affects Apache Traffic Ser | HIGH | 7.0 | 26% | EPSS 26%ile | NVD | 2026-07-29 |
| CVE-2026-57510 | SuperPlane before 0.27.0 contains a broken object-level authorization vulnerability in the CanvasService gRPC handlers t | HIGH | 8.7 | 26% | EPSS 26%ile | NVD | 2026-07-28 |
| CVE-2026-13395 | The Online Scheduling and Appointment Booking System WordPress plugin before 27.8 does not sanitize or properly cast a | HIGH | 8.6 | 26% | EPSS 26%ile | NVD | 2026-07-30 |
| CVE-2026-55502 | Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, POST /api/v4/admin/policy/oauth/signin r | HIGH | 7.1 | 26% | EPSS 26%ile | NVD | 2026-07-31 |
| CVE-2026-11536 | IBM WebSphere Application Server 9.0, and 8.5 is affected by a remote code execution vulnerability in the SOAP/JMX conne | HIGH | 8.5 | 26% | EPSS 26%ile | NVD | 2026-07-30 |
| CVE-2026-67428 | Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.7, HTTP-emitting modules includi | HIGH | 8.5 | 26% | EPSS 26%ile | NVD | 2026-07-29 |
| CVE-2026-15414 | The Subscriptions for WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and incl | HIGH | 8.8 | 26% | EPSS 26%ile | NVD | 2026-08-01 |
| CVE-2026-15280 | IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 ND Collective Controller is affected by a path-segm | HIGH | 7.5 | 26% | EPSS 26%ile | NVD | 2026-07-28 |
| CVE-2026-62663 | Banks generates meaningful LLM prompts using a simple template language. In versions prior to 2.4.4, all four media filt | HIGH | 7.5 | 26% | EPSS 26%ile | NVD | 2026-07-30 |
| CVE-2026-52856 | Wings is the server control plane for Pterodactyl, a free, open-source game server management panel. Prior to 1.13.0, a | HIGH | 7.5 | 26% | EPSS 26%ile | NVD | 2026-07-31 |
| CVE-2026-53504 | Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, the convolution filter regular expressio | HIGH | 7.5 | 26% | EPSS 26%ile | NVD | 2026-07-31 |
| CVE-2026-14893 | IBM Observability with Instana (Agent) Build 1.0.303 through 1.0.320 IBM Instana Node.js tracer component @instana/core | HIGH | 7.3 | 26% | EPSS 26%ile | NVD | 2026-07-28 |
| CVE-2026-16261 | The login-social WordPress plugin through 1.0.4 does not validate password-reset requests against a reset key or the req | HIGH | 7.5 | 26% | EPSS 26%ile | NVD | 2026-08-02 |
| CVE-2026-17868 | Insufficient policy enforcement in USB in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform priv | HIGH | 8.8 | 26% | EPSS 26%ile | NVD | 2026-07-30 |
| CVE-2026-6267 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.1.0 before 19.0.5, 19.1 before 19.1.3, and | HIGH | 8.5 | 26% | EPSS 26%ile | NVD | 2026-07-29 |
| CVE-2026-58162 | The Apache Traffic Server certifier plugin generates certificates based on attacker-controlled client SNI. This issue a | HIGH | 8.4 | 26% | EPSS 26%ile | NVD | 2026-07-29 |
| CVE-2026-67299 | FreeRDP before 3.29.0 contains a client-side heap use-after-free in the async update message proxy for WINDOW_ICON_ORDER | HIGH | 8.7 | 26% | EPSS 26%ile | NVD | 2026-08-01 |
| CVE-2026-67300 | FreeRDP before 3.29.0 contains client-side heap use-after-free vulnerabilities in the async update message proxy for RAI | HIGH | 8.7 | 26% | EPSS 26%ile | NVD | 2026-08-01 |
| CVE-2026-58059 | In Bouncy Castle for Java before 1.85, Quadratic-time escaping when stringifying X.500 distinguished names. This issue a | HIGH | 8.7 | 25% | EPSS 25%ile | NVD | 2026-08-03 |
| CVE-2026-67611 | OpenEMR through 8.2.0 contains an authentication bypass vulnerability that allows attackers with valid credentials to ci | HIGH | 8.6 | 25% | EPSS 25%ile | NVD | 2026-08-03 |
| CVE-2026-69151 | Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other | HIGH | 7.6 | 25% | EPSS 25%ile | NVD | 2026-08-03 |
| CVE-2026-44091 | An unauthenticated remote attacker can post a malicious ID to the MQTT Broker results in the creation of a new configura | HIGH | 8.8 | 25% | EPSS 25%ile | NVD | 2026-07-30 |
| CVE-2026-54722 | DSSRF is a Node.js library that provides a wide range of utilities and advanced SSRF defense checks. Prior to 1.0.4, is_ | HIGH | 8.7 | 25% | EPSS 25%ile | NVD | 2026-07-30 |
| CVE-2026-28814 | Arbitrary Wiki Markup rendering due to lack of authentication in Apache JSPWiki up to 2.12.3 allows attacker to obtain s | HIGH | 7.5 | 25% | EPSS 25%ile | NVD | 2026-07-30 |
| CVE-2026-39931 | OpenEMR through 8.2.0 contains an authenticated SQL injection vulnerability in the backup configuration import feature t | HIGH | 8.6 | 25% | EPSS 25%ile | NVD | 2026-08-03 |
| CVE-2026-10842 | IBM WebSphere Application Server 8.5, and 9.0 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 T | HIGH | 7.5 | 25% | EPSS 25%ile | NVD | 2026-07-30 |
| CVE-2026-67610 | OpenEMR through 8.2.0 contains an improper authentication vulnerability in the OAuth2 dynamic client registration endpoi | HIGH | 8.6 | 25% | EPSS 25%ile | NVD | 2026-08-03 |
| CVE-2026-33930 | Apache Traffic Server copies the client Host header into a fixed-size stack buffer without a bound during redirect handl | HIGH | 8.2 | 25% | EPSS 25%ile | NVD | 2026-07-29 |
| CVE-2026-18733 | A prompt injection vulnerability in the shell tool in Amazon Strands Agents Tools before 0.8.0 might allow remote actors | HIGH | 7.5 | 25% | EPSS 25%ile | NVD | 2026-08-03 |
| CVE-2026-16184 | IBM WebSphere Application Server 9.0, and 8.5 could allow a remote attacker to bypass authentication by sending a crafte | HIGH | 7.0 | 25% | EPSS 25%ile | NVD | 2026-07-28 |
| CVE-2026-11393 | AgentCore CLI Bedrock Agent Import Vulnerable to Code Injection via Improper Triple-Quote Escaping | HIGH | 9.0 | 25% | EPSS 25%ile | GitHub | 2026-07-29 |
| CVE-2026-68581 | Vikunja versions 0.22.0 through 2.3.0 fail to validate the principal type in API token management. Because user IDs and | HIGH | 8.6 | 25% | EPSS 25%ile | NVD | 2026-08-02 |
| CVE-2026-54078 | veraPDF validation model is an implementation of the veraPDF validation model. From 1.25.73 until 1.30.2 and 1.31.71, ve | HIGH | 8.7 | 24% | EPSS 24%ile | NVD | 2026-07-29 |
| CVE-2026-54079 | veraPDF validation provides PDF/A and PDF/UA validation, feature reporting, and metadata repair. From 1.17.35 until 1.30 | HIGH | 8.7 | 24% | EPSS 24%ile | NVD | 2026-07-29 |
| CVE-2026-67425 | Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.6, llm.chat reads provider keys | HIGH | 8.6 | 24% | EPSS 24%ile | NVD | 2026-07-29 |
| CVE-2026-68981 | Apache NiFi 1.5.0 through 2.10.0 support gzip-encoded HTTP requests for the application REST API using a Jersey encoding | HIGH | 8.8 | 24% | EPSS 24%ile | NVD | 2026-08-03 |
| CVE-2026-67213 | nanoid (Nano ID) before 5.1.6 contains an infinite loop in the customAlphabet and customRandom functions. When these fun | HIGH | 8.2 | 24% | EPSS 24%ile | NVD | 2026-07-29 |
| CVE-2026-67214 | nanoid (Nano ID) before 5.1.16 contains an infinite loop in the customAlphabet and nanoid functions of its non-secure mo | HIGH | 8.2 | 24% | EPSS 24%ile | NVD | 2026-07-29 |
| CVE-2026-67216 | cJSON through 1.7.19 contains an inefficient algorithmic complexity flaw in cJSON_Compare(). When comparing objects, the | HIGH | 8.2 | 24% | EPSS 24%ile | NVD | 2026-07-29 |
| CVE-2026-65310 | ANDRITZ HIPASE-250 (formerly 250 SCALA), in the default configuration of affected versions, exposes its data and configu | HIGH | 7.5 | 24% | EPSS 24%ile | NVD | 2026-07-31 |
| CVE-2026-17989 | Type Confusion in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside | HIGH | 8.8 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-17752 | Use after free in Views in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to potentially exploit | HIGH | 8.8 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-17967 | Use after free in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to potentially | HIGH | 8.8 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-58150 | Apache Traffic Server does not reject Transfer-Encoding in HTTP/2 requests, allowing downgrade request smuggling. This | HIGH | 7.8 | 24% | EPSS 24%ile | NVD | 2026-07-29 |
| CVE-2026-66745 | Artica Proxy before 4.50.000000 Service Pack 7 (fixed in hotfix 20260724-02) contains a session fixation vulnerability t | HIGH | 7.5 | 24% | EPSS 24%ile | NVD | 2026-07-28 |
| CVE-2026-14319 | The GiveWP WordPress plugin before 4.16.3 does not properly restrict access to a REST API endpoint that returns recurri | HIGH | 7.5 | 24% | EPSS 24%ile | NVD | 2026-07-31 |
| CVE-2026-53599 | REDAXO is a PHP-based content management system. From 5.18.2 until 5.21.1, rex_mediapool::isAllowedExtension in redaxo/s | HIGH | 7.5 | 24% | EPSS 24%ile | NVD | 2026-07-31 |
| CVE-2026-15397 | The Subscriptions for WooCommerce plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and | HIGH | 7.2 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-12733 | IBM DataPower Gateway could allow a remote attacker to cause a denial of service due to improper resource limitations. | HIGH | 7.5 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-13697 | undici's cache interceptor mishandles malformed Cache-Control private directives. In undici 7.0.0 up to before 7.29.0 an | HIGH | 7.4 | 24% | EPSS 24%ile | NVD | 2026-07-29 |
| CVE-2026-67345 | MaxKey through 4.1.12, fixed in commit ddbb72f, contains an insufficient redirect URI validation vulnerability in Defaul | HIGH | 8.5 | 23% | EPSS 23%ile | NVD | 2026-07-30 |
| CVE-2026-44107 | A reboot of the charging controller can be triggered via Modbus TCP without authentication. Therefore, when the Modbus f | HIGH | 8.7 | 23% | EPSS 23%ile | NVD | 2026-07-30 |
| CVE-2026-12436 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.0 before 19.0.5, 19.1 before 19.1.3, and 1 | HIGH | 8.4 | 23% | EPSS 23%ile | NVD | 2026-07-29 |
| CVE-2026-28811 | Debug Messages Revealing Unnecessary Information in Apache JSPWiki up to 2.12.3. Users are recommended to upgrade to ver | HIGH | 7.5 | 23% | EPSS 23%ile | NVD | 2026-07-30 |
| CVE-2026-16635 | The Pronamic Pay plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 10.1.0 | HIGH | 8.8 | 23% | EPSS 23%ile | NVD | 2026-08-01 |
| CVE-2026-23904 | Kyuubi Engine UI proxy accepts a host and port from the request path and proxies HTTP requests to that destination. A re | HIGH | 7.3 | 23% | EPSS 23%ile | NVD | 2026-07-29 |
| CVE-2026-54910 | FileBrowser Quantum's path traversal issue in subtitle handler allows any authenticated user to read arbitrary files | HIGH | 7.7 | 23% | EPSS 23%ile | GitHub | 2026-07-31 |
| CVE-2025-71399 | Better Auth relies on better-call, which uses the rou3 router library. In affected versions of rou3, paths are normalize | HIGH | 8.8 | 23% | EPSS 23%ile | NVD | 2026-08-02 |
| CVE-2026-67194 | Courier IMAP before 6.0.1 and Courier Mail Server before 2.0.2 allow authenticated IMAP users to crash the imapd process | HIGH | 7.1 | 23% | EPSS 23%ile | NVD | 2026-07-29 |
| CVE-2026-17875 | Use after free in PDFium in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code ins | HIGH | 8.8 | 23% | EPSS 23%ile | NVD | 2026-07-30 |
| CVE-2026-22622 | Improper input validation in one of the session management interface of Eaton's Tripp Lite series PADM firmware could al | HIGH | 8.8 | 23% | EPSS 23%ile | NVD | 2026-07-30 |
| CVE-2026-67320 | axios in a Node.js deployment using the HTTP adapter can route requests through an attacker-controlled proxy. axios hard | HIGH | 8.3 | 23% | EPSS 23%ile | NVD | 2026-08-01 |
| CVE-2026-9322 | IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 a | HIGH | 7.5 | 23% | EPSS 23%ile | NVD | 2026-07-30 |
| CVE-2026-12720 | The Kirki WordPress plugin before 6.0.13 does not restrict which classes may be instantiated when it deserialises data | HIGH | 7.5 | 23% | EPSS 23%ile | NVD | 2026-07-31 |
| CVE-2026-17887 | Use after free in TabStrip in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who convinced a user to eng | HIGH | 7.5 | 23% | EPSS 23%ile | NVD | 2026-07-30 |
| CVE-2026-16655 | The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin for WordPress is vulne | HIGH | 7.2 | 23% | EPSS 23%ile | NVD | 2026-07-29 |
| CVE-2026-17807 | Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside | HIGH | 8.8 | 23% | EPSS 23%ile | NVD | 2026-07-30 |
| CVE-2026-17836 | Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside | HIGH | 8.8 | 23% | EPSS 23%ile | NVD | 2026-07-30 |
| CVE-2026-17918 | Use after free in Sync in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code insid | HIGH | 8.8 | 23% | EPSS 23%ile | NVD | 2026-07-30 |
| CVE-2026-69078 | CTI-Transmute is affected by a server-side request forgery vulnerability in the evaluation report PDF-generation functio | HIGH | 8.8 | 22% | EPSS 22%ile | NVD | 2026-08-03 |
| CVE-2026-17698 | Insufficient validation of untrusted input in UI in Google Chrome on Android prior to 151.0.7922.72 allowed a local atta | HIGH | 7.5 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-67243 | freo2 provided by refirio contains an unrestricted upload of file with dangerous type vulnerability. A user with the hig | HIGH | 8.6 | 22% | EPSS 22%ile | NVD | 2026-08-04 |
| CVE-2026-65635 | Improper Isolation or Compartmentalization vulnerability in malach-it boruta (Elixir.Boruta.Openid module) allows attack | HIGH | 8.3 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-50738 | A use-after-free condition exists in pglogical's worker signaling code, where a worker structure can be dereferenced aft | HIGH | 7.7 | 22% | EPSS 22%ile | NVD | 2026-07-28 |
| CVE-2026-50567 | Fission: Zip Slip in pkg/utils/zip.go:Unarchive allows fetcher to write outside the destination directory | HIGH | 7.7 | 22% | EPSS 22%ile | GitHub | 2026-07-28 |
| CVE-2026-61536 | Banks generates meaningful LLM prompts using a simple template language. In versions prior to 2.4.3, banks parses Tool J | HIGH | 7.5 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-67207 | Wolf CMS through 0.8.3.1 contains an authorization bypass vulnerability in BackupRestoreController that allows authentic | HIGH | 8.7 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-11897 | IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to a denial of service, caused by sen | HIGH | 7.5 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-69244 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.3, an out-of-bounds heap r | HIGH | 7.1 | 22% | EPSS 22%ile | NVD | 2026-08-03 |
| CVE-2026-67343 | ArcadeDB versions before 26.7.2 fail to properly redact the cluster token in the GET /api/v1/server endpoint, allowing a | HIGH | 8.7 | 22% | EPSS 22%ile | NVD | 2026-08-01 |
| CVE-2026-66065 | Ouroboros is a local-first runtime for AI coding agents that records their actions and applies user-defined policies to | HIGH | 8.4 | 22% | EPSS 22%ile | NVD | 2026-08-03 |
| CVE-2026-46593 | A SQL injection vulnerability has been identified in the PHP Jabbers - PHP Poll Script. Improper neutralization of input | HIGH | 8.6 | 22% | EPSS 22%ile | NVD | 2026-07-31 |
| CVE-2026-12687 | The ProfileGrid WordPress plugin before 5.9.9.8 does not restrict which group an anonymous visitor may register into th | HIGH | 7.5 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-14333 | The Demi WordPress plugin before 0.0.7 stores its full-site backup archives in a publicly accessible location under a p | HIGH | 7.5 | 22% | EPSS 22%ile | NVD | 2026-07-31 |
| CVE-2026-41920 | Improper Access Control vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.0.0 th | HIGH | 7.0 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-17729 | Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer | HIGH | 8.8 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-67607 | LightFTP 2.3.1 contains a residual race condition vulnerability (an incomplete fix for CVE-2024-11144) in the worker_thr | HIGH | 8.2 | 22% | EPSS 22%ile | NVD | 2026-07-31 |
| CVE-2026-9856 | A vulnerability in huggingface/transformers versions <=5.8.0.dev0 allows an attacker to perform arbitrary file writes vi | HIGH | 7.1 | 22% | EPSS 22%ile | NVD | 2026-08-02 |
| CVE-2026-62999 | Copier is a library and CLI app for rendering project templates. From 9.5.0 through 9.16.0, percent-encoded parent-direc | HIGH | 7.5 | 22% | EPSS 22%ile | NVD | 2026-07-31 |
| CVE-2026-57862 | Kanboard 1.2.52 and prior contains a server-side request forgery vulnerability that allows authenticated users to bypass | HIGH | 8.4 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-15978 | SGLang contains a model weight exfiltration vulnerability when no API keys are configured, as SGLang will expose two end | HIGH | 7.5 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-54729 | DSSRF is a Node.js library that provides a wide range of utilities and advanced SSRF defense checks. Prior to 1.0.5, is_ | HIGH | 8.7 | 22% | EPSS 22%ile | NVD | 2026-07-31 |
| CVE-2026-14869 | The terraform-mcp-server before version 1.1.0 is vulnerable to a server-side request forgery issue in the streamable-HTT | HIGH | 8.6 | 22% | EPSS 22%ile | NVD | 2026-07-28 |
| CVE-2026-69192 | ip-address is a library for parsing and manipulating IPv4 and IPv6 addresses in JavaScript. Prior to 10.3.1, Address4 ac | HIGH | 7.7 | 22% | EPSS 22%ile | NVD | 2026-08-03 |
| CVE-2026-17956 | Inappropriate implementation in Scheduling in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute | HIGH | 8.8 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-17969 | Inappropriate implementation in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute a | HIGH | 8.8 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-59646 | In Bouncy Castle for Java before 1.85, DTLS handshake reassembler allocates buffer from unchecked 24-bit length. This is | HIGH | 8.7 | 21% | EPSS 21%ile | NVD | 2026-08-03 |
| CVE-2026-12695 | The miniOrange 2FA WordPress plugin before 6.2.6 does not validate the submitted one-time password against the targeted | HIGH | 8.1 | 21% | EPSS 21%ile | NVD | 2026-07-31 |
| CVE-2026-67247 | A path traversal vulnerability was found in the IHM Log handling of ADM. The vulnerability occurs because user-controlle | HIGH | 7.1 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-67346 | Swarms through 6.8.1, fixed in commit 8b0fc9e, contains a server-side request forgery vulnerability in the _is_safe_url | HIGH | 7.7 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-16529 | A signed integer overflow in the PCP __pmGetPDU() function can be exploited via crafted network packets during PDU proce | HIGH | 7.5 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-54366 | CentreStack before 17.4 contains an XML external entity (XXE) injection vulnerability that allows unauthenticated attack | HIGH | 8.7 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-53500 | Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, the ALLOWED_SOURCES configuration passes | HIGH | 8.2 | 21% | EPSS 21%ile | NVD | 2026-07-31 |
| CVE-2026-67349 | OpenCost before 1.121.0 fails to authenticate the GET /helmValues endpoint, exposing base64-decoded HELM_VALUES environm | HIGH | 8.7 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-54666 | swagger-typescript-api generates API clients for Fetch or Axios from an OpenAPI Specification. Prior to 13.12.2, src/sch | HIGH | 8.3 | 21% | EPSS 21%ile | NVD | 2026-07-29 |
| CVE-2026-66415 | Leantime 3.6.2 contains a server-side request forgery and local file inclusion vulnerability that allows authenticated a | HIGH | 8.4 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-48060 | Litestar is an Asynchronous Server Gateway Interface (ASGI) framework. Prior to version 2.20.0, Litestar instances which | HIGH | 8.1 | 21% | EPSS 21%ile | NVD | 2026-07-28 |
| CVE-2026-56428 | The SSH service on BSH ELP (Electronic Platform) modules contains a platform-specific vulnerability due to an improperly | HIGH | 8.1 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-54719 | goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.1, the httpserver/updown. | HIGH | 7.5 | 21% | EPSS 21%ile | NVD | 2026-07-28 |
| CVE-2026-49258 | Nebula Mesh is a self-hosted control plane for the Slack Nebula mesh VPN. In versions 0.3.5 and below, the web UI (/ui/* | HIGH | 8.8 | 20% | EPSS 20%ile | NVD | 2026-07-28 |
| CVE-2026-16572 | The LogMyTrip WordPress plugin through 1.9 does not sanitize and escape a value taken from a cookie before using it in a | HIGH | 8.6 | 20% | EPSS 20%ile | NVD | 2026-08-03 |
| CVE-2026-17784 | Use after free in Audio in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the | HIGH | 8.8 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2025-67650 | An authenticated SQL injection vulnerability has been identified in multiple PHP Jabbers scripts. Improper neutralizatio | HIGH | 8.6 | 20% | EPSS 20%ile | NVD | 2026-07-31 |
| CVE-2026-15236 | The Gallery for Google Photos WordPress plugin before 1.2.1 does not properly restrict access to the stored third-party | HIGH | 7.5 | 20% | EPSS 20%ile | NVD | 2026-08-02 |
| CVE-2026-17951 | Heap buffer overflow in WebRTC in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of bo | HIGH | 8.8 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-55768 | GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the b | HIGH | 8.7 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-12562 | The RCU II+ and Multiload II+ are vulnerable to an unauthenticated service that exposes a debug interface granting full | HIGH | 8.7 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-66360 | The ISO Presentation layer contains a flaw in the handling of specific parameters during normal mode negotiation. A mis | HIGH | 8.7 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-17722 | Object lifecycle issue in WebView in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had c | HIGH | 8.3 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-67328 | @better-auth/sso versions before 1.6.21 contain multiple authentication bypass vulnerabilities in SSO provider handling | HIGH | 8.6 | 20% | EPSS 20%ile | NVD | 2026-08-01 |
| CVE-2026-44100 | The CHARX JupiCore service allows an unauthenticated remote attacker to reconfigure charging points. This can lead to di | HIGH | 8.8 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-67431 | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Tran | HIGH | 8.3 | 20% | EPSS 20%ile | NVD | 2026-07-29 |
| CVE-2026-55415 | datamodel-code-generator generates Pydantic v2 models, dataclasses, TypedDict, and msgspec.Struct from OpenAPI, JSON Sch | HIGH | 7.5 | 20% | EPSS 20%ile | NVD | 2026-07-28 |
| CVE-2026-51953 | An issue in FeehiCMS v.2.1.1 allows an attacker to escalate privileges via the Session management module, authentication | HIGH | 7.4 | 20% | EPSS 20%ile | NVD | 2026-07-31 |
| CVE-2026-17884 | Object lifecycle issue in WebRTC in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially exploi | HIGH | 8.8 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-17886 | Use after free in Enterprise in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially exploit he | HIGH | 8.8 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-7769 | IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM | HIGH | 8.1 | 20% | EPSS 20%ile | NVD | 2026-07-28 |
| CVE-2026-15992 | The WP Password Policy plugin for WordPress is vulnerable to Privilege Escalation in all versions up to and including 3. | HIGH | 8.8 | 20% | EPSS 20%ile | NVD | 2026-07-28 |
| CVE-2026-50570 | Fission: Incomplete capability denylist in Environment/Function PodSpec validation allows tenant-added CAP_SYS_TIME and | HIGH | 8.5 | 20% | EPSS 20%ile | GitHub | 2026-07-28 |
| CVE-2026-16496 | The terraform-mcp-server before version 1.1.0 is vulnerable to an authorization bypass in the streamable-HTTP stateful t | HIGH | 8.9 | 19% | EPSS 19%ile | NVD | 2026-07-28 |
| CVE-2026-18255 | A flaw was found in Quay. A user configured in GLOBAL_READONLY_SUPER_USERS is able to view robot account tokens for repo | HIGH | 7.2 | 19% | EPSS 19%ile | NVD | 2026-07-29 |
| CVE-2026-17971 | Inappropriate implementation in Frame in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially p | HIGH | 8.8 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-18556 | Authentication bypass using an alternate path or channel vulnerability in N-able N-central allows Authentication Bypass. | HIGH | 8.2 | 19% | KEV EPSS 19%ile | NVD | 2026-08-01 |
| CVE-2026-54661 | swagger-typescript-api generates API clients for Fetch or Axios from an OpenAPI Specification. Prior to 13.12.2, templat | HIGH | 8.3 | 19% | EPSS 19%ile | NVD | 2026-07-29 |
| CVE-2026-54662 | swagger-typescript-api generates API clients for Fetch or Axios from OpenAPI specifications. Prior to 13.12.2, src/code- | HIGH | 8.3 | 19% | EPSS 19%ile | NVD | 2026-07-29 |
| CVE-2026-54664 | swagger-typescript-api generates API clients for Fetch or Axios from an OpenAPI Specification. Prior to 13.12.2, src/sch | HIGH | 8.3 | 19% | EPSS 19%ile | NVD | 2026-07-29 |
| CVE-2026-14541 | An authentication bypass and audience confusion vulnerability exists in the Google OAuth provider component of Google mc | HIGH | 8.0 | 19% | EPSS 19%ile | NVD | 2026-07-31 |
| CVE-2026-17950 | Inappropriate implementation in Safebrowsing in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to | HIGH | 8.8 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-14356 | The FleekDash V2 plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.6.2. | HIGH | 8.8 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-62246 | Kamaji is the Hosted Control Plane Manager for Kubernetes. Prior to 26.7.4-edge, Kamaji derives a TenantControlPlane dat | HIGH | 8.5 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-67337 | better-auth versions before 1.4.9 contain a two-factor authentication bypass vulnerability when session.cookieCache is e | HIGH | 7.1 | 19% | EPSS 19%ile | NVD | 2026-08-01 |
| CVE-2026-68579 | FreeRDP before 3.30.0 (<= 3.29.0) contains a heap-based buffer overflow in the Windows clipboard client's CliprdrStream_ | HIGH | 8.7 | 19% | EPSS 19%ile | NVD | 2026-08-02 |
| CVE-2026-54603 | OAuth2::Client#request: Protocol-relative redirect Location overrides authority, leaking bearer Authorization to attacke | HIGH | 8.6 | 19% | EPSS 19%ile | GitHub | 2026-07-28 |
| CVE-2026-18360 | The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the | HIGH | 7.6 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-18361 | The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the | HIGH | 7.6 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-17816 | Insufficient policy enforcement in Speech in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker w | HIGH | 7.5 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-17347 | The MASTER_PASSWORD_HOOK setting, introduced in pgAdmin 4 7.2, lets an administrator configure an external command that | HIGH | 7.7 | 19% | EPSS 19%ile | NVD | 2026-07-31 |
| CVE-2026-64816 | RapidRAW before 1.6.0 does not validate the lutPath field in preset files before passing it to File::open() in lut_proce | HIGH | 7.1 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-67322 | GitPython before 3.1.52 is vulnerable to environment-variable exfiltration in Repo.clone_from(). The caller-supplied rem | HIGH | 8.7 | 18% | EPSS 18%ile | NVD | 2026-08-01 |
| CVE-2026-10849 | The hawkBit device management client in subsys/mgmt/hawkbit accumulates the body of an HTTP response from the update ser | HIGH | 8.2 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-66322 | Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a ne | HIGH | 7.1 | 18% | EPSS 18%ile | NVD | 2026-08-04 |
| CVE-2026-54609 | QTINeon has unauthenticated relay-to-host amplification via unbounded RECONNECT_REQUEST forwarding | HIGH | 8.6 | 18% | EPSS 18%ile | GitHub | 2026-07-28 |
| CVE-2026-14981 | IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 a | HIGH | 7.5 | 18% | EPSS 18%ile | NVD | 2026-07-28 |
| CVE-2026-15057 | IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to a denial of service due to uncontr | HIGH | 7.5 | 18% | EPSS 18%ile | NVD | 2026-07-28 |
| CVE-2024-25039 | IBM Engineering Requirements Management DOORS and DOORS Web Access 9.7.2.1 through 9.7.2.11, and 9.6.1.1 through 9.6.1.1 | HIGH | 7.5 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-16192 | IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is affected by a denial of service vulnerability wh | HIGH | 7.1 | 18% | EPSS 18%ile | NVD | 2026-07-28 |
| CVE-2026-59640 | In Bouncy Castle for Java before 1.85, OpenPGP CFB quick-check oracle active on symmetric/session-key paths. This issue | HIGH | 8.7 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-59644 | In Bouncy Castle for Java before 1.85, MLS hash-ratchet honours arbitrary 32-bit generation counter from sender. | HIGH | 8.7 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-59645 | In Bouncy Castle for Java before 1.85, OER parser recurses without depth limit on self-referential IEEE 1609.2 schema. T | HIGH | 8.7 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-59649 | In Bouncy Castle for Java before 1.85, OpenPGP user-attribute subpacket length bounded only by JVM max memory. This issu | HIGH | 8.7 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-12852 | In Bouncy Castle for Java before 1.85, MLS wire decoder allocates attacker-declared opaque length before bounds check. | HIGH | 8.7 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-13506 | In Bouncy Castle for Java before 1.85, Lazy ASN.1 sequence forcing resets nesting-depth guard. This issue also affects B | HIGH | 8.7 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-14682 | In Bouncy Castle for Java before 1.85, Possible OOM from unbounded up-front allocation on a definite-length read. This i | HIGH | 8.7 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-16881 | A code injection vulnerability exists in the LINE Android app prior to version 26.7.2. The profile rendering component | HIGH | 8.7 | 18% | EPSS 18%ile | NVD | 2026-08-04 |
| CVE-2026-12721 | The Kirki WordPress plugin before 6.0.13 does not properly sanitise and escape a value taken from the request before us | HIGH | 8.6 | 18% | EPSS 18%ile | NVD | 2026-07-31 |
| CVE-2026-15206 | The SMS Alert WordPress plugin before 3.9.8 does not bind its "mobile verified" session flag to the phone number that w | HIGH | 7.5 | 18% | EPSS 18%ile | NVD | 2026-08-02 |
| CVE-2026-15241 | The AI ChatBot for WooCommerce WordPress plugin before 4.8.4 does not perform any authorization or nonce check on one o | HIGH | 7.5 | 18% | EPSS 18%ile | NVD | 2026-08-02 |
| CVE-2026-16285 | The Product Attachment for WooCommerce WordPress plugin before 2.3.3 does not perform any authorization check before str | HIGH | 7.5 | 18% | EPSS 18%ile | NVD | 2026-08-02 |
| CVE-2026-54737 | @phun-ky/defaults-deep is a library like lodash defaultsDeep with array preservation and no lodash dependency. Prior to | HIGH | 7.3 | 18% | EPSS 18%ile | NVD | 2026-07-31 |
| CVE-2026-54715 | GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the b | HIGH | 7.1 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-12185 | In Bouncy Castle for Java before 1.85, BKS/UBER keystore allocates from untrusted lengths before integrity check. This i | HIGH | 7.1 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-17869 | Out of bounds read in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of bound | HIGH | 8.1 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-62354 | Authorization handling for Parameter Context validation requests in Apache NiFi 1.10.0 through 2.10.0 allows clients wit | HIGH | 7.7 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-17723 | Use after free in Media in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker who had compromised | HIGH | 8.3 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-44094 | An unauthenticated remote attacker can enforce the system to fall back to a firmware partition with an insecure configur | HIGH | 8.3 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-14528 | IBM WebSphere Application Server 9.0, and 8.5 traditional could allow a remote attacker to obtain sensitive information. | HIGH | 7.4 | 17% | EPSS 17%ile | NVD | 2026-07-28 |
| CVE-2026-14838 | Use of GET request method with sensitive query strings vulnerability in Bilin Software and Informatics Consultancy Inc. | HIGH | 7.4 | 17% | EPSS 17%ile | NVD | 2026-08-04 |
| CVE-2026-67311 | Budibase before 3.38.1 contains a server-side request forgery vulnerability in the REST datasource integration that fail | HIGH | 8.2 | 17% | EPSS 17%ile | NVD | 2026-08-01 |
| CVE-2026-15048 | The Geeky Bot WordPress plugin before 1.2.8 does not perform an authorization check on one of its AJAX actions, allowin | HIGH | 7.5 | 17% | EPSS 17%ile | NVD | 2026-07-31 |
| CVE-2026-14839 | The Mapster WP Maps WordPress plugin before 1.24.0 does not perform any authorization or post-status check on a public R | HIGH | 7.5 | 17% | EPSS 17%ile | NVD | 2026-08-01 |
| CVE-2026-12722 | Missing authentication for critical function vulnerability in FTC Software IT Services FTC E-Commerce Management Panel a | HIGH | 8.2 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-13690 | The UsersWP WordPress plugin before 1.2.67 does not validate the selected authentication provider in its two-factor log | HIGH | 7.4 | 17% | EPSS 17%ile | NVD | 2026-07-29 |
| CVE-2026-67348 | Julep contains an insecure direct object reference vulnerability in the get_execution_details endpoint that allows authe | HIGH | 8.6 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-12500 | The WP Travel Engine WordPress plugin before 6.8.2 does not perform a capability check on an AJAX action that updates a | HIGH | 7.5 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-13178 | The Eventin WordPress plugin before 4.1.16 does not properly authorize order creation and accepts an attacker-supplied | HIGH | 7.5 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-63231 | A post-authentication SQL injection vulnerability in Koollab LMS allowed an authenticated attacker to use an error-based | HIGH | 8.1 | 17% | EPSS 17%ile | NVD | 2026-07-29 |
| CVE-2026-18655 | Improper restriction of intended endpoints in the RabbitMQ broker connection tools of the Amazon MQ MCP Server (awslabs. | HIGH | 7.1 | 17% | EPSS 17%ile | NVD | 2026-08-03 |
| CVE-2026-55995 | A Double Free vulnerability in open-iscsi allows an unauthenticated MITM attacker to cause DoS. This issue affects | HIGH | 8.7 | 17% | EPSS 17%ile | NVD | 2026-07-29 |
| CVE-2026-18141 | A flaw was found in aap-gateway, a component of Ansible Automation Platform's Event-Driven Ansible (EDA). An unauthentic | HIGH | 8.2 | 17% | EPSS 17%ile | NVD | 2026-07-31 |
| CVE-2026-67354 | guzzlehttp/guzzle versions before 7.15.1 contain an information disclosure vulnerability in RedirectMiddleware. When the | HIGH | 8.2 | 17% | EPSS 17%ile | NVD | 2026-08-01 |
| CVE-2026-15144 | @fastify/rate-limit before 11.2.0 keys rate-limit buckets by the verbatim client IP string returned from request.ip. Bec | HIGH | 7.3 | 17% | EPSS 17%ile | NVD | 2026-07-29 |
| CVE-2026-16771 | In firmware versions 2.7.7 and earlier, the Arris BGW210‑700 gateway fails to enforce any server‑side authentication on | HIGH | 8.8 | 16% | EPSS 16%ile | NVD | 2026-07-28 |
| CVE-2026-67357 | ArcadeDB versions before 26.7.3 contain an information disclosure vulnerability in the MCP get_server_settings tool that | HIGH | 7.7 | 16% | EPSS 16%ile | NVD | 2026-08-02 |
| CVE-2026-65981 | Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.15.0, a server using --mobility authenti | HIGH | 7.1 | 16% | EPSS 16%ile | NVD | 2026-07-31 |
| CVE-2026-67436 | Linuxfabrik monitoring-plugins provides Python monitoring plugins for Icinga, Nagios, and related monitoring systems. In | HIGH | 8.3 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-63550 | The MMS BER decoder contains a boundary-handling flaw in the processing of certain fields within confirmed-request mess | HIGH | 7.1 | 16% | EPSS 16%ile | NVD | 2026-07-30 |
| CVE-2026-13425 | The Database for CF7 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Array Form Field Values in al | HIGH | 7.2 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-43983 | Pocket ID: OIDC refresh token flow bypasses authorization revocation, account disabling, and group restrictions | HIGH | — | 16% | EPSS 16%ile | GitHub | 2026-07-28 |
| CVE-2026-13609 | The Frontend Admin by DynamiApps WordPress plugin before 3.29.9 decodes HTML entities in a submitted form field value af | HIGH | 8.8 | 16% | EPSS 16%ile | NVD | 2026-07-31 |
| CVE-2026-59901 | Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, | HIGH | 8.7 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-67356 | ArcadeDB before 26.7.3 binds the real LocalDatabase object into JavaScript trigger contexts with HostAccess.ALL, allowin | HIGH | 8.7 | 16% | EPSS 16%ile | NVD | 2026-08-02 |
| CVE-2026-33267 | Improper Input Validation vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.2.0 | HIGH | 7.7 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-43829 | Full details and mitigation steps are currently restricted and will be published at a later date. | HIGH | 7.5 | 16% | EPSS 16%ile | NVD | 2026-07-31 |
| CVE-2026-43831 | Full details and mitigation steps are currently restricted and will be published at a later date. | HIGH | 7.5 | 16% | EPSS 16%ile | NVD | 2026-07-31 |
| CVE-2026-43832 | Full details and mitigation steps are currently restricted and will be published at a later date. | HIGH | 7.5 | 16% | EPSS 16%ile | NVD | 2026-07-31 |
| CVE-2026-17894 | Use after free in Views in Google Chrome on Linux prior to 151.0.7922.72 allowed a remote attacker to potentially exploi | HIGH | 8.8 | 16% | EPSS 16%ile | NVD | 2026-07-30 |
| CVE-2026-54660 | swagger-typescript-api generates API clients for Fetch or Axios from OpenAPI specifications. Prior to 13.12.2, src/resol | HIGH | 7.4 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-18017 | Use after free in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code insid | HIGH | 8.8 | 16% | EPSS 16%ile | NVD | 2026-07-30 |
| CVE-2026-67244 | A format string vulnerability was found in the Notification OAuth settings of ADM. The vulnerability occurs because user | HIGH | 8.6 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-67527 | OpenProject is open-source, web-based project management software. Prior to 17.6.0, PATCH /api/v3/work_packages/{id} acc | HIGH | 7.6 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-18157 | A flaw was found in yggdrasil-worker-package-manager. A local attacker with existing access to the system could exploit | HIGH | 7.8 | 15% | EPSS 15%ile | NVD | 2026-07-31 |
| CVE-2026-3245 | A deserialization vulnerability in PRISMAproduction Version 6.5 or earlier that may lead to arbitrary code execution. | HIGH | 7.7 | 15% | EPSS 15%ile | NVD | 2026-08-03 |
| CVE-2026-15977 | SGLang contains a credential leakage vulnerability in the /server_info endpoint, which will return API keys and SSL keyf | HIGH | 7.5 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-16597 | The GTM4WP – A Google Tag Manager (GTM) plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scr | HIGH | 7.2 | 15% | EPSS 15%ile | NVD | 2026-07-29 |
| CVE-2026-15052 | The MailChimp Subscribe Form, Optin Builder, PopUp Builder, Form Builder plugin for WordPress is vulnerable to Stored Cr | HIGH | 7.2 | 15% | EPSS 15%ile | NVD | 2026-08-01 |
| CVE-2026-18737 | Shlink contains a blind SQL injection vulnerability that allows any authenticated API key holder to inject arbitrary SQL | HIGH | 7.1 | 15% | EPSS 15%ile | NVD | 2026-08-03 |
| CVE-2026-18353 | PIA's `POST /v1/upload/sbom` endpoint accepts a Bearer JWT and checks its **unverified** `iss` claim against an issuer a | HIGH | 8.8 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-67331 | better-auth SCIM versions from 1.5.0 before 1.7.0-beta.4 fail to bind non-organization SCIM providers to their creator b | HIGH | 8.7 | 15% | EPSS 15%ile | NVD | 2026-08-01 |
| CVE-2026-14300 | The miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) WordPress plugin before 7.8.0 does not bin | HIGH | 8.1 | 15% | EPSS 15%ile | NVD | 2026-07-29 |
| CVE-2026-14930 | The JS Help Desk WordPress plugin before 3.1.4 does not perform any authorization, nonce, or ownership check on a front | HIGH | 7.5 | 15% | EPSS 15%ile | NVD | 2026-07-31 |
| CVE-2026-18378 | A flaw was found in koku-metrics-operator. The operator's CostManagementMetricsConfig custom resource allows user able t | HIGH | 7.6 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-68580 | FreeRDP before 3.29.0 contains integer overflow vulnerabilities in the audio input redirection channel (audin) across AL | HIGH | 7.7 | 15% | EPSS 15%ile | NVD | 2026-08-02 |
| CVE-2026-47726 | nebula-mesh is a self-hosted control plane for Slack Nebula mesh virtual private network. Prior to version 0.3.2, intern | HIGH | 7.1 | 15% | EPSS 15%ile | NVD | 2026-07-28 |
| CVE-2025-71403 | better-auth versions before 1.1.20 contain a bypass vulnerability in trustedOrigins validation logic affecting absolute | HIGH | 7.1 | 15% | EPSS 15%ile | NVD | 2026-08-01 |
| CVE-2026-56672 | ComfyUI is a node-based diffusion model GUI, API, and backend. Prior to 0.28.0, GET /userdata/{file} served user-control | HIGH | 8.2 | 15% | EPSS 15%ile | NVD | 2026-07-31 |
| CVE-2026-17930 | Insufficient validation of untrusted input in Extensions in Google Chrome prior to 151.0.7922.72 allowed a remote attack | HIGH | 7.5 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-64557 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_ | HIGH | 8.8 | 15% | EPSS 15%ile | NVD | 2026-07-29 |
| CVE-2026-67424 | Flyto2 Core is an execution kernel for automation and AI-agent workflows. Prior to 2.26.7, the HTTP modules http.get, ht | HIGH | 8.5 | 15% | EPSS 15%ile | NVD | 2026-07-29 |
| CVE-2026-17995 | Out of bounds read in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of bounds | HIGH | 8.1 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-43910 | java-client Allows Network Pivot via Unvalidated directConnect Redirect in AppiumCommandExecutor | HIGH | 8.2 | 15% | EPSS 15%ile | GitHub | 2026-07-28 |
| CVE-2026-69088 | Grav CMS versions 2.0.7 through 2.0.10 fail to validate fully-qualified static method calls (Class::method) in blueprint | HIGH | 8.6 | 14% | EPSS 14%ile | NVD | 2026-08-03 |
| CVE-2026-12703 | TeamViewer Full Client and Host for macOS before version 15.80 contain a business logic error that can allow an authenti | HIGH | 8.0 | 14% | EPSS 14%ile | NVD | 2026-07-29 |
| CVE-2026-16347 | MikroTik RouterOS contains a weakness in its API authentication handling that lacks effective safeguards against excessi | HIGH | 8.7 | 14% | EPSS 14%ile | NVD | 2026-07-28 |
| CVE-2026-16328 | In consul-mcp-server, versions 0.1.0 up to 0.1.3 did not restrict how the Consul backend address was supplied, allowing | HIGH | 8.6 | 14% | EPSS 14%ile | NVD | 2026-07-29 |
| CVE-2026-65943 | Joomla Extension - rolandd.com - Unauthenticated directory creation RO CSVI < 9.11.0 | HIGH | 7.5 | 14% | EPSS 14%ile | NVD | 2026-07-29 |
| CVE-2025-60931 | An Insecure Direct Object Reference (IDOR) in the Employee Compensation View function of Infor Global HR v11.24.10.01.33 | HIGH | 7.5 | 14% | EPSS 14%ile | NVD | 2026-07-29 |
| CVE-2026-15151 | The Five Star Restaurant Reservations WordPress plugin before 2.7.23 does not perform a capability check on one of its | HIGH | 7.5 | 14% | EPSS 14%ile | NVD | 2026-08-02 |
| CVE-2026-44093 | A local privilege escalation vulnerability in the init-script for user-applications allows a low-privileged local user t | HIGH | 8.5 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-44095 | A privilege escalation vulnerability in a script used for network configuration allows a low-privileged local user to ex | HIGH | 8.5 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-44096 | A privilege escalation vulnerability in udhcpc allows a local user "charx-web" to execute arbitrary commands as root, re | HIGH | 8.5 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-44099 | A privilege escalation vulnerability in the system configuration allows a low-privileged local user to execute arbitrary | HIGH | 8.5 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-44106 | A privilege escalation vulnerability in the init-script for user-applications allows a low-privileged local user to exec | HIGH | 8.5 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-67327 | better-auth versions >= 1.1.3 and < 1.6.22 (and pre-release versions >= 1.7.0-beta.0 and < 1.7.0-beta.10) are vulnerable | HIGH | 8.7 | 14% | EPSS 14%ile | NVD | 2026-08-01 |
| CVE-2026-67248 | A stack-based buffer overflow vulnerability was found in the File Explorer on the ADM. The vulnerability occurs because | HIGH | 8.7 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-67355 | guzzlehttp/guzzle versions before 7.15.1 fail to preserve host-only cookie scope, storing the request host in the Domain | HIGH | 8.2 | 14% | EPSS 14%ile | NVD | 2026-08-01 |
| CVE-2026-48113 | Chisel is a TCP/UDP tunnel, transported over HTTP and secured via SSH. In versions prior to 1.11.5, authenticated client | HIGH | 8.5 | 14% | EPSS 14%ile | NVD | 2026-08-03 |
| CVE-2026-12251 | The Ultimate Member WordPress plugin before 2.12.1 does not filter administrator-level capabilities from the roles it m | HIGH | 8.1 | 13% | EPSS 13%ile | NVD | 2026-07-31 |
| CVE-2026-18186 | A stored format string vulnerability was found in the FTP Backup on the ADM. The vulnerability occurs because user-contr | HIGH | 7.1 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-18187 | A format string vulnerability was found in the Internal Backup on the ADM. The vulnerability occurs because user-control | HIGH | 7.1 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-18188 | A format string vulnerability was found in the Rsync Backup on the ADM. The vulnerability occurs because user-controlled | HIGH | 7.1 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-14996 | IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 has addressed a vulnerability related to session management. | HIGH | 8.2 | 13% | EPSS 13%ile | NVD | 2026-07-28 |
| CVE-2026-13463 | IBM Cloud Pak System 2.3.5.0 could allow a local attacker to obtain sensitive information due to the insertion of creden | HIGH | 7.5 | 13% | EPSS 13%ile | NVD | 2026-07-28 |
| CVE-2026-18012 | Use after free in PDFium in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code ins | HIGH | 8.8 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-56670 | ComfyUI is a modular diffusion model GUI, api and backend with a graph/nodes interface. Prior to 0.28.0, the /view endpo | HIGH | 8.2 | 13% | EPSS 13%ile | NVD | 2026-07-31 |
| CVE-2026-17920 | Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malic | HIGH | 8.8 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-15258 | The Product Feed Manager For WooCommerce WordPress plugin before 7.6.1 does not properly sanitise and escape product-fe | HIGH | 8.1 | 13% | EPSS 13%ile | NVD | 2026-07-31 |
| CVE-2026-16539 | The sm page duplicator WordPress plugin through 1.0.0 does not sanitise and escape a stored value before using it in a S | HIGH | 8.1 | 13% | EPSS 13%ile | NVD | 2026-08-03 |
| CVE-2026-10545 | IBM Planning Analytics Local 2.1.0 through 2.1.21 is vulnerable to an open redirect that allows an attacker to redirect | HIGH | 7.5 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-18446 | fast-uri before 4.1.2, 3.1.5, and 2.4.4 requires a literal double forward slash to recognize a URI authority, so a refer | HIGH | 7.5 | 13% | EPSS 13%ile | NVD | 2026-07-31 |
| CVE-2026-14980 | IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to cross-site request forgery which c | HIGH | 8.3 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-55735 | Improper Verification of Cryptographic Signature in ueberauth guardian allows an unauthenticated attacker to revoke a vi | HIGH | 8.2 | 13% | EPSS 13%ile | NVD | 2026-08-01 |
| CVE-2026-15064 | IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 i | HIGH | 8.7 | 13% | EPSS 13%ile | NVD | 2026-07-28 |
| CVE-2026-15988 | The AI Engine – The Chatbot, AI Framework & MCP for WordPress plugin for WordPress is vulnerable to Cross-Site Request F | HIGH | 8.8 | 12% | EPSS 12%ile | NVD | 2026-08-01 |
| CVE-2026-54365 | CentreStack before 17.3 contains an unauthenticated deserialization vulnerability in GSNamespace.dll that allows unauthe | HIGH | 8.7 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-12895 | SQL injection in Frappe's ERPNext, versions ERPNext 15.107.0 and Frappe 15.107.2. The application constructs SQL queries | HIGH | 7.1 | 12% | EPSS 12%ile | NVD | 2026-07-29 |
| CVE-2026-12945 | IBM Langflow OSS 1.0.0 through 1.10.1 allows authenticated users to access and manipulate other users' build jobs throug | HIGH | 7.1 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-68578 | ArcadeDB versions before 26.7.3 fail to bind the authenticated principal in the MCP HTTP transport, causing all engine p | HIGH | 7.7 | 12% | EPSS 12%ile | NVD | 2026-08-02 |
| CVE-2026-69087 | The Grav form plugin (getgrav/grav-plugin-form) before 9.1.13 contains an open redirect vulnerability. Since v9.1.11, th | HIGH | 7.1 | 12% | EPSS 12%ile | NVD | 2026-08-03 |
| CVE-2026-17786 | Insufficient validation of untrusted input in DevTools in Google Chrome prior to 151.0.7922.72 allowed an attacker who c | HIGH | 8.8 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-69246 | Guzzle is an extensible PHP HTTP client. Prior to 7.15.2 and 8.0.1, Guzzle gives a transport the request URI as text and | HIGH | 7.2 | 12% | EPSS 12%ile | NVD | 2026-08-03 |
| CVE-2026-69082 | CTI-Transmute contained a cross-site request forgery vulnerability in the administrative user deletion functionality. Th | HIGH | 8.8 | 12% | EPSS 12%ile | NVD | 2026-08-03 |
| CVE-2026-58061 | In Bouncy Castle for Java before 1.85, CCM-family modes write plaintext to caller buffer before tag check. This issue al | HIGH | 8.7 | 12% | EPSS 12%ile | NVD | 2026-08-03 |
| CVE-2026-13444 | IBM Langflow OSS 1.0.0 through 1.10.1 can allow an attacker to access another user's private vector documents by creatin | HIGH | 8.1 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-53608 | @apostrophecms/seo Vulnerable to Stored XSS via Unsanitized Google Analytics / GTM ID Injected into Script Tag | HIGH | 8.7 | 11% | EPSS 11%ile | GitHub | 2026-07-31 |
| CVE-2026-54690 | datamodel-code-generator generates Pydantic v2 models, dataclasses, TypedDict, and msgspec.Struct from OpenAPI, JSON Sch | HIGH | 8.2 | 11% | EPSS 11%ile | NVD | 2026-07-28 |
| CVE-2026-54691 | datamodel-code-generator generates Python data models from schema definitions. From 0.9.1 until 0.61.0, src/datamodel_co | HIGH | 8.2 | 11% | EPSS 11%ile | NVD | 2026-07-28 |
| CVE-2026-15325 | IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 i | HIGH | 8.7 | 11% | EPSS 11%ile | NVD | 2026-07-28 |
| CVE-2026-53501 | Thumbor is an open-source photo thumbnail service by globo.com. Prior to 7.8.0, Thumbor’s HMAC validation can be bypasse | HIGH | 8.2 | 11% | EPSS 11%ile | NVD | 2026-07-31 |
| CVE-2026-14830 | The FlxWoo WordPress plugin before 3.1.1 does not verify with the payment processor that a checkout session was actually | HIGH | 7.5 | 11% | EPSS 11%ile | NVD | 2026-07-31 |
| CVE-2026-15328 | IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 i | HIGH | 7.4 | 11% | EPSS 11%ile | NVD | 2026-07-28 |
| CVE-2026-67245 | A path traversal vulnerability was found in the VPN Clients on the ADM. The vulnerability occurs because user-controlled | HIGH | 7.0 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-14537 | Incorrect Authorization in the direct HTTP API tool invocation endpoint in Google mcp-toolbox versions v1.3.0 and v1.4.0 | HIGH | 8.1 | 11% | EPSS 11%ile | NVD | 2026-07-31 |
| CVE-2026-18718 | Ghidra contains an arbitrary code execution vulnerability in the Swift demangler analyzer that allows an attacker to exe | HIGH | 7.1 | 11% | EPSS 11%ile | NVD | 2026-08-03 |
| CVE-2026-15240 | The Customer Switching WordPress plugin before 2.1.3 does not securely bind an active user-switching session to the oper | HIGH | 7.5 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-17741 | Insufficient validation of untrusted input in WebView in Google Chrome on Android prior to 151.0.7922.72 allowed a remot | HIGH | 7.1 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-17750 | Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandb | HIGH | 7.1 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-8339 | A SQL injection vulnerability exists in the Coverity Connect SOAP API for versions between 2024.6.0 and 2026.3.0 (inclus | HIGH | 8.7 | 10% | EPSS 10%ile | NVD | 2026-07-29 |
| CVE-2026-20465 | In wlan AP driver, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (pro | HIGH | 8.1 | 10% | EPSS 10%ile | NVD | 2026-08-03 |
| CVE-2026-17979 | Race in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox | HIGH | 7.5 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2025-67406 | https://www.sourcecodester.com Advocate office management system 1.0 is affected by: SQL Injection. The impact is: execu | HIGH | 7.3 | 10% | EPSS 10%ile | NVD | 2026-07-29 |
| CVE-2025-71400 | better-auth passkey versions before 1.4.0 contain an insecure direct object reference vulnerability in the passkey delet | HIGH | 7.1 | 10% | EPSS 10%ile | NVD | 2026-08-02 |
| CVE-2026-12927 | CWE-787 Out-of-bounds write vulnerability exists that could cause loss of data or potentially risk arbitrary code execut | HIGH | 8.4 | 10% | EPSS 10%ile | NVD | 2026-07-29 |
| CVE-2026-15658 | A vulnerability in the foreUP customer REST API allows any authenticated, low-privilege customer to access an endpoint t | HIGH | 8.1 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-14540 | A Server-Side Request Forgery (SSRF) vulnerability exists in the generic HTTP source and tool components of Google mcp-t | HIGH | 8.0 | 10% | EPSS 10%ile | NVD | 2026-07-31 |
| CVE-2026-47858 | Starting Spring Boot applications in the Spring Tools with the live information mode enabled makes the running applicati | HIGH | 8.0 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-18381 | A flaw was found in the koku-metrics-operator for Red Hat OpenShift. The operator's CostManagementMetricsConfig custom r | HIGH | 7.6 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-55391 | datamodel-code-generator generates Pydantic v2 models, dataclasses, TypedDict, and msgspec.Struct from OpenAPI, JSON Sch | HIGH | 7.5 | 10% | EPSS 10%ile | NVD | 2026-07-28 |
| CVE-2026-17744 | Inappropriate implementation in File Input in Google Chrome on Linux prior to 151.0.7922.72 allowed a remote attacker to | HIGH | 7.1 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-18092 | Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass via XML signature wrapping because new_from_xm | HIGH | 8.1 | 10% | EPSS 10%ile | NVD | 2026-08-03 |
| CVE-2026-67329 | @better-auth/stripe versions >= 1.4.11 and < 1.6.21, and >= 1.7.0-beta.0 and < 1.7.0-beta.10, contain an authorization b | HIGH | 7.1 | 10% | EPSS 10%ile | NVD | 2026-08-01 |
| CVE-2026-10848 | The OCPP 1.6 client in subsys/net/lib/ocpp parsed inbound WAMP RPC frames in parse_rpc_msg() (subsys/net/lib/ocpp/ocpp_j | HIGH | 7.0 | 10% | EPSS 10%ile | NVD | 2026-08-02 |
| CVE-2026-17898 | Use after free in DevTools in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a | HIGH | 7.5 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17948 | Type Confusion in V8 in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malic | HIGH | 7.5 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-68945 | Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other | HIGH | 8.8 | 9% | EPSS 9%ile | NVD | 2026-08-03 |
| CVE-2026-17899 | Insufficient policy enforcement in DevTools in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a | HIGH | 8.8 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-69249 | python-cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to | HIGH | 8.7 | 9% | EPSS 9%ile | NVD | 2026-08-03 |
| CVE-2026-18568 | XML::Sig versions from 0.29 before 0.72 for Perl allow signature verification bypass because verify returns true when ev | HIGH | 7.5 | 9% | EPSS 9%ile | NVD | 2026-08-03 |
| CVE-2026-67326 | GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attac | HIGH | 7.3 | 9% | EPSS 9%ile | NVD | 2026-08-01 |
| CVE-2026-48374 | Bridge is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability th | HIGH | 7.8 | 9% | EPSS 9%ile | NVD | 2026-07-28 |
| CVE-2026-14976 | IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is affected by remote code execution with the colle | HIGH | 7.1 | 9% | EPSS 9%ile | NVD | 2026-07-28 |
| CVE-2026-54367 | CentreStack before 17.2 contains an authentication bypass vulnerability that allows unauthenticated attackers to read, w | HIGH | 8.8 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17952 | Inappropriate implementation in V8 in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to i | HIGH | 7.5 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-69097 | GitPython before 3.1.53 fails to properly escape section names in git config files, allowing attackers to inject arbitra | HIGH | 7.3 | 9% | EPSS 9%ile | NVD | 2026-08-03 |
| CVE-2026-48372 | Format Plugins is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution i | HIGH | 7.8 | 8% | EPSS 8%ile | NVD | 2026-07-28 |
| CVE-2026-18220 | An out-of-bounds write vulnerability was found in the BFD library's DLX ELF backend (bfd/elf32-dlx.c) in GNU binutils. T | HIGH | 7.8 | 8% | EPSS 8%ile | NVD | 2026-07-29 |
| CVE-2026-47873 | The Boot Dashboard Docker integration in Spring Tools publishes container control ports on all of the host's network int | HIGH | 8.0 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-16969 | The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the | HIGH | 7.6 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-47746 | Misskey is an open source, federated social media platform. Versions 12.37.0 and later, but prior to 2026.5.4, are vulne | HIGH | 8.9 | 8% | EPSS 8%ile | NVD | 2026-08-03 |
| CVE-2025-9291 | A certification validation weakness exists in communication between affected Omada devices and cloud controllers. Certif | HIGH | 7.7 | 8% | EPSS 8%ile | NVD | 2026-08-03 |
| CVE-2026-10685 | The Zephyr Bluetooth GATT client CCC-write response handler gatt_write_ccc_rsp() in subsys/bluetooth/host/gatt.c invoked | HIGH | 7.6 | 8% | EPSS 8%ile | NVD | 2026-07-31 |
| CVE-2026-58263 | Jodit Editor: Mutation XSS in jodit clean-html via a MathML/style rawtext carrier | HIGH | 7.2 | 8% | EPSS 8%ile | GitHub | 2026-07-31 |
| CVE-2026-17867 | Insufficient validation of untrusted input in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to | HIGH | 7.1 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-65313 | A provisioning script used when installing HIPASE-250 (formerly 250 SCALA) engineering workstations sets a fixed, hard-c | HIGH | 8.1 | 7% | EPSS 7%ile | NVD | 2026-07-31 |
| CVE-2025-69949 | kishan0725 Hospital Management System 4.0 is vulnerable to SQL Injection in check_availability.php via the parameters em | HIGH | 7.3 | 7% | EPSS 7%ile | NVD | 2026-07-29 |
| CVE-2026-69247 | cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 44.0.0 unti | HIGH | 8.2 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-18089 | Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass by verifying responses against the response-em | HIGH | 7.5 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-59639 | In Bouncy Castle for Java before 1.85, CMS verifySignatures returns true for SignedData with zero signers. This issue al | HIGH | 8.7 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-59643 | In Bouncy Castle for Java before 1.85, OpenPGP inline-signature policy failures silently ignored. This issue also affect | HIGH | 8.7 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-12860 | In Bouncy Castle for Java before 1.85, RSA PKCS#1 verification skips last two hash bytes in NULL-omitted path. This issu | HIGH | 8.7 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-47882 | When enabling Spring Boot DevTools support for a remote application target (for example a Docker container or Cloud Foun | HIGH | 8.3 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-13442 | IBM Langflow OSS 1.0.0 through 1.10.1 can allow an attacker to reuse another user's FAISS namespace to access owner-only | HIGH | 7.1 | 7% | EPSS 7%ile | NVD | 2026-07-28 |
| CVE-2026-15929 | Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in LG Electronics Sma | HIGH | 7.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-65421 | The MMS BER decoder contains a flaw in decoding fixed-width BER fields (boolean/integer): an attacker-supplied length v | HIGH | 7.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-66364 | The GOOSE payload parser contains a boundary handling flaw that can be triggered by a single unauthenticated Layer 2 mu | HIGH | 7.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-66369 | The GOOSE parser contains an off-by-one boundary-handling flaw that can be triggered by a single unauthenticated Layer- | HIGH | 7.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-66720 | The GOOSE subscriber component improperly validates the UTC timestamp field in unauthenticated IEC 61850 GOOSE (EtherTy | HIGH | 7.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-59651 | In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue als | HIGH | 7.1 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-59641 | In Bouncy Castle for Java before 1.85, S/MIME validator trusts signer-asserted signingTime for path validation. This iss | HIGH | 8.7 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-12803 | In Bouncy Castle for Java before 1.85, KCCMBlockCipher MAC does not bind nonce when AAD is absent (cross-nonce AEAD forg | HIGH | 8.7 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-47211 | Ouroboros is a local-first runtime for AI coding agents that records their actions and applies user-defined policies to | HIGH | 8.4 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-48388 | Adobe Photoshop Installer was affected by an Uncontrolled Search Path Element vulnerability that could have resulted in | HIGH | 8.6 | 7% | EPSS 7%ile | NVD | 2026-07-28 |
| CVE-2026-12802 | In Bouncy Castle for Java before 1.85, CMS AuthEnvelopedData fails to enforce tag-length on decryption. This issue also | HIGH | 8.7 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-35226 | An out‑of‑bounds write vulnerability in the CODESYS PROFINET Controller allows an unauthenticated attacker on the same n | HIGH | 7.1 | 7% | EPSS 7%ile | NVD | 2026-07-29 |
| CVE-2026-11980 | IBM Aspera Desktop App 1.0.5 through 1.0.19 can allow arbitrary code execution by loading DLL files at start-up. | HIGH | 7.3 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-48395 | Bridge is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the contex | HIGH | 8.6 | 7% | EPSS 7%ile | NVD | 2026-07-28 |
| CVE-2025-67405 | Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in update_password.php via the param | HIGH | 7.3 | 7% | EPSS 7%ile | NVD | 2026-07-29 |
| CVE-2025-67407 | Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in update_student.php via parameters | HIGH | 7.3 | 7% | EPSS 7%ile | NVD | 2026-07-29 |
| CVE-2025-67408 | Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in /save_user.php via the parameter | HIGH | 7.3 | 7% | EPSS 7%ile | NVD | 2026-07-29 |
| CVE-2025-69945 | kishan0725 Hospital Management System 4.0 is vulnerable to SQL Injection in /doctor/edit-patient.php?editid=1. | HIGH | 7.3 | 7% | EPSS 7%ile | NVD | 2026-07-29 |
| CVE-2026-17811 | Use after free in ANGLE in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker to potentially perf | HIGH | 7.1 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-67307 | Wazuh 5.0.0-beta1 (fixed in 5.0.0-beta3) does not validate or override the cluster_name and cluster_node fields in inven | HIGH | 7.0 | 6% | EPSS 6%ile | NVD | 2026-08-01 |
| CVE-2026-10079 | A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). When processing Kubernetes Deployments, AC | HIGH | 8.5 | 6% | EPSS 6%ile | NVD | 2026-07-31 |
| CVE-2026-17916 | Insufficient policy enforcement in Settings in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had co | HIGH | 7.5 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-66420 | MeshCentral 1.1.21 contains a cross-site WebSocket hijacking protection bypass vulnerability that allows unauthenticated | HIGH | 8.6 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-66416 | Leantime 3.6.2 contains a cross-site request forgery vulnerability that allows unauthenticated attackers to perform stat | HIGH | 8.6 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-5846 | The affected Watchfire Controller Software contains self-signed hard-coded RSA private keys and corresponding X.509 cert | HIGH | 7.6 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-48396 | Bridge is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the cont | HIGH | 8.6 | 6% | EPSS 6%ile | NVD | 2026-07-28 |
| CVE-2026-50641 | Streamsoft Business Intelligence (BI) stores users' passwords in plaintext form in the database This issue was fixed in | HIGH | 7.1 | 6% | EPSS 6%ile | NVD | 2026-07-29 |
| CVE-2026-59642 | In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue | HIGH | 8.7 | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-12816 | In Bouncy Castle for Java before 1.85, IESEngine stream-mode MAC forgery via length-dependent KDF split. This issue also | HIGH | 8.7 | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-12817 | In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also af | HIGH | 8.7 | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-16463 | A maliciously crafted DXF file, when parsed through Autodesk AutoCAD, can force a Heap-Based Overflow vulnerability. A m | HIGH | 7.8 | 5% | EPSS 5%ile | NVD | 2026-07-29 |
| CVE-2026-17888 | Insufficient validation of untrusted input in WebUI in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to | HIGH | 7.1 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-48391 | Bridge is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the contex | HIGH | 8.2 | 5% | EPSS 5%ile | NVD | 2026-07-28 |
| CVE-2026-18536 | Data::Entropy versions before 0.010 for Perl read remote entropy sources over plain HTTP. The Data::Entropy::RawSource: | HIGH | 7.5 | 5% | EPSS 5%ile | NVD | 2026-08-01 |
| CVE-2026-65309 | ANDRITZ HIPASE-250 (formerly 250 SCALA) in affected versions stores and transmits user passwords using a reversible form | HIGH | 7.5 | 5% | EPSS 5%ile | NVD | 2026-07-31 |
| CVE-2026-13268 | G DATA Total Security Backup Service Link Following Local Privilege Escalation Vulnerability. This vulnerability allows | HIGH | 7.8 | 5% | EPSS 5%ile | NVD | 2026-07-29 |
| CVE-2026-54656 | datamodel-code-generator generates Pydantic v2 models, dataclasses, TypedDict, and msgspec.Struct from OpenAPI, JSON Sch | HIGH | 7.8 | 5% | EPSS 5%ile | NVD | 2026-07-28 |
| CVE-2026-17699 | Use after free in Views in Google Chrome prior to 151.0.7922.72 allowed a local attacker to potentially perform a sandbo | HIGH | 8.6 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-54545 | @wakaru/cli arbitrary file write during bundle unpack | HIGH | 7.1 | 5% | EPSS 5%ile | GitHub | 2026-07-28 |
| CVE-2026-28813 | Apache JSPWiki, up to 2.12.3, is vulnerable to JSON Hijacking, which leads to csrf vulnerabilities. Users are recommende | HIGH | 8.8 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-48392 | Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context | HIGH | 7.8 | 4% | EPSS 4%ile | NVD | 2026-07-28 |
| CVE-2026-48393 | Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context | HIGH | 7.8 | 4% | EPSS 4%ile | NVD | 2026-07-28 |
| CVE-2026-48394 | Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context | HIGH | 7.8 | 4% | EPSS 4%ile | NVD | 2026-07-28 |
| CVE-2026-54574 | proot-distro is a utility for managing proot containers. Prior to version 5.1.5, proot-distro install extracted plain ta | HIGH | 8.2 | 4% | EPSS 4%ile | NVD | 2026-07-29 |
| CVE-2026-54655 | datamodel-code-generator generates Python data models from schema definitions. From 0.51.0 until 0.60.2, x-python-type v | HIGH | 7.8 | 4% | EPSS 4%ile | NVD | 2026-07-28 |
| CVE-2026-67344 | ArcadeDB before 26.7.2 fails to enforce the UPDATE_SCHEMA database permission on the ALTER TYPE ... CUSTOM and ALTER TYP | HIGH | 8.5 | 4% | EPSS 4%ile | NVD | 2026-08-01 |
| CVE-2026-48390 | Bridge is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker co | HIGH | 8.2 | 4% | EPSS 4%ile | NVD | 2026-07-28 |
| CVE-2026-54621 | datamodel-code-generator generates Python data models from schema definitions. Prior to 0.60.1, GraphQL Union descriptio | HIGH | 7.8 | 4% | EPSS 4%ile | NVD | 2026-07-28 |
| CVE-2026-54654 | datamodel-code-generator generates Python data models from schema definitions. From 0.14.1 until 0.60.2, the --extra-tem | HIGH | 7.8 | 4% | EPSS 4%ile | NVD | 2026-07-28 |
| CVE-2026-67609 | Telenia Software TVox 26.5.3 and prior 26.x versions, and 24.9.21 and prior 24.x versions, contain a privilege escalatio | HIGH | 8.5 | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-17774 | Insufficient validation of untrusted input in Variations in Google Chrome prior to 151.0.7922.72 allowed an attacker in | HIGH | 7.5 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-58043 | A flaw in Node.js Permission Model enforcement can over-grant filesystem access across radix-tree prefix boundaries. | HIGH | 7.5 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-56821 | Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, | HIGH | 7.4 | 4% | EPSS 4%ile | NVD | 2026-07-29 |
| CVE-2026-15228 | Kong Kubernetes Ingress Controller (KIC) allows a user with namespace-scoped Secret creation privileges to cause a clust | HIGH | 7.1 | 4% | EPSS 4%ile | NVD | 2026-07-29 |
| CVE-2026-16543 | Kong Operator's embedded Kong Kubernetes Ingress Controller (KIC) allows a user with namespace-scoped Secret creation pr | HIGH | 7.1 | 4% | EPSS 4%ile | NVD | 2026-07-29 |
| CVE-2026-34641 | Premiere Pro is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the co | HIGH | 7.8 | 4% | EPSS 4%ile | NVD | 2026-07-31 |
| CVE-2026-17716 | Use after free in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to perform privilege e | HIGH | 8.4 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-50986 | PrestaShop module, totadministrativemandate <1.8.1 is vulnerable to Cross Site Request Forgery (CSRF). The payment valid | HIGH | 8.8 | 3% | EPSS 3%ile | NVD | 2026-07-31 |
| CVE-2026-5219 | Cross-Site request forgery (CSRF) vulnerability in Softtr Information Technology Trade Ltd. Co. E-Commerce Pack allows C | HIGH | 8.3 | 3% | EPSS 3%ile | NVD | 2026-07-30 |
| CVE-2026-18642 | Deserialization of untrusted data vulnerability in TUBITAK BILGEM Software Technologies Research Institute eta-otp-lock | HIGH | 7.8 | 3% | EPSS 3%ile | NVD | 2026-08-03 |
| CVE-2026-4793 | An incorrect default permissions vulnerability in Synology Assistant before 7.0.7-50095 allows local users to read or wr | HIGH | 7.3 | 3% | EPSS 3%ile | NVD | 2026-08-03 |
| CVE-2026-54605 | OAuth: Cross-origin token-request redirects can expose signed request metadata | HIGH | 7.2 | 3% | EPSS 3%ile | GitHub | 2026-07-28 |
| CVE-2026-65944 | Joomla Extension - rolandd.com - CSRF vectors in AJAX endpoint handlers RO CSVI < 9.11.0 | HIGH | 8.8 | 3% | EPSS 3%ile | NVD | 2026-07-29 |
| CVE-2026-54639 | Style Dictionary - Prototype Pollution in convertTokenData utility function | HIGH | 8.8 | 3% | EPSS 3%ile | GitHub | 2026-07-28 |
| CVE-2026-59247 | Insufficient Verification of Data Authenticity vulnerability in Gleam allows an adversary in the middle to substitute fo | HIGH | 7.6 | 3% | EPSS 3%ile | NVD | 2026-07-29 |
| CVE-2026-42169 | A heap-buffer-overflow vulnerability exists in the APNG (Animated PNG) file loader of GIMP. This flaw occurs when the `f | HIGH | 7.3 | 3% | EPSS 3%ile | NVD | 2026-08-04 |
| CVE-2026-18755 | A DLL hijacking vulnerability in GeoVision GV-ASManager allows a local attacker with write access to an unsafe search di | HIGH | 7.3 | 3% | EPSS 3%ile | NVD | 2026-08-04 |
| CVE-2026-13584 | Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in Mitsubishi Ele | HIGH | 7.1 | 3% | EPSS 3%ile | NVD | 2026-07-30 |
| CVE-2026-65947 | Joomla Extension - balbooa.com - Various CSRF vectors in the admin interface in Gridbox < 2.20.2 | HIGH | 7.3 | 3% | EPSS 3%ile | NVD | 2026-07-29 |
| CVE-2026-20483 | In Telephony, there is a possible escalation of privilege due to a missing permission check. This could lead to local es | HIGH | 7.7 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-10535 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to buffer overflow in setgid helper db2flacc. | HIGH | 8.4 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-54727 | proot-distro is a utility for managing proot containers. Prior to version 5.1.6, proot-distro restore accepted hardlink | HIGH | 8.2 | 2% | EPSS 2%ile | NVD | 2026-07-29 |
| CVE-2026-64556 | In the Linux kernel, the following vulnerability has been resolved: perf/core: Detach event groups during remove_on_exe | HIGH | 7.8 | 2% | EPSS 2%ile | NVD | 2026-07-29 |
| CVE-2026-64560 | In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: Prevent UAF caused by non-leader | HIGH | 7.8 | 2% | EPSS 2%ile | NVD | 2026-07-29 |
| CVE-2026-64558 | In the Linux kernel, the following vulnerability has been resolved: s390/pkey: Check length in pkey_pckmo handler imple | HIGH | 7.8 | 2% | EPSS 2%ile | NVD | 2026-07-29 |
| CVE-2026-64559 | In the Linux kernel, the following vulnerability has been resolved: s390/pkey: Check length in PKEY_VERIFYPROTK ioctl | HIGH | 7.8 | 2% | EPSS 2%ile | NVD | 2026-07-29 |
| CVE-2026-14354 | CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorize | HIGH | 8.7 | 2% | EPSS 2%ile | NVD | 2026-07-29 |
| CVE-2026-18759 | The background service of ABP or AES runs as NT AUTHORITY\SYSTEM and implements a file-based inter-process communication | HIGH | 8.5 | 2% | EPSS 2%ile | NVD | 2026-08-04 |
| CVE-2026-9593 | A vulnerability in the iDTM FDI allows an attacker with elevated privileges and access to the host system to enable the | HIGH | 8.4 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-17654 | Race in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to perform OS-level privilege es | HIGH | 7.8 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-41447 | FirmaCheck for Windows before 1.3.16 contains a dll hijacking vulnerability that allows local attackers to execute arbit | HIGH | 8.5 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-18107 | A flaw was found in CRIU's handling of restartable sequences (rseq) during checkpoint/restore. A malicious process insid | HIGH | 7.8 | 2% | EPSS 2%ile | NVD | 2026-07-28 |
| CVE-2026-17862 | Use after free in Tracing in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to perform OS-leve | HIGH | 7.8 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-59913 | Dell Display and Peripheral Manager (DDPM Mac), versions prior to 2.3.0.1005, contain a Missing Authentication for Criti | HIGH | 7.8 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-56822 | Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, | HIGH | 7.4 | 2% | EPSS 2%ile | NVD | 2026-07-29 |
| CVE-2026-40272 | Improper Input Validation in the decode() function of the traceparser library could allow an attacker with a corrupted k | HIGH | 7.0 | 2% | EPSS 2%ile | NVD | 2026-07-29 |
| CVE-2026-69093 | Admidio before 5.0.11 does not validate the adm_csrf_token in modules/category-report/preferences.php, which performs pe | HIGH | 7.1 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-18606 | A weakness has been identified in Razer RzUpdateService 1.10.14.0. Affected by this vulnerability is an unknown function | HIGH | 7.1 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-17861 | Insufficient validation of untrusted input in Updater in Google Chrome prior to 151.0.7922.72 allowed a local attacker t | HIGH | 7.8 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-17863 | Inappropriate implementation in Browser in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to p | HIGH | 7.8 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2025-15628 | Affected Omada devices rely on embedded certificates that are shared across deployments to establish trust between contr | HIGH | 8.2 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-17877 | Inappropriate implementation in Chromoting in Google Chrome on Linux prior to 151.0.7922.72 allowed a local attacker to | HIGH | 8.4 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-17864 | Inappropriate implementation in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to perfo | HIGH | 7.8 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-59912 | Dell Display and Peripheral Manager (DDPM Mac), versions prior to 2.3.0.1005, contain an Improper Access Control vulnera | HIGH | 7.8 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-11885 | IBM PowerVM Hypervisor FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H1 A careful | HIGH | 8.4 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-14234 | The WOLF WordPress plugin before 1.1.0 does not perform a nonce or capability check on one of its AJAX actions, allowin | HIGH | 7.1 | 1% | EPSS 1%ile | NVD | 2026-07-29 |
| CVE-2026-44944 | An Incorrect Authorization vulnerability in open-iscsi allows unprivilidged local users to use the isscsiuio control soc | HIGH | 8.5 | 1% | EPSS 1%ile | NVD | 2026-07-29 |
| CVE-2026-6102 | MSI Center NTIOLib_X64 Origin Validation Error Local Privilege Escalation Vulnerability. This vulnerability allows local | HIGH | 7.8 | 0% | EPSS 0%ile | NVD | 2026-07-29 |
| CVE-2026-16727 | Concurrent Execution using Shared Resource with Improper Synchronization (“Race Condition”) in ASUS Armoury Crate allows | HIGH | 7.3 | 0% | EPSS 0%ile | NVD | 2026-07-30 |
| CVE-2026-8497 | Improper certificate validation in the Devolutions Server connection handling in Devolutions Password Manager 2026.2.1.0 | HIGH | 7.4 | 0% | EPSS 0%ile | NVD | 2026-07-29 |
| CVE-2026-17993 | Race in Updater in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to perform privilege escalat | HIGH | 7.0 | 0% | EPSS 0%ile | NVD | 2026-07-30 |
| CVE-2026-58080 | In Eclipse Milo versions 1.0.0 through 1.1.4, `OpcUaServerConfig.copy()` fails to preserve a configured `RoleMapper`. On | HIGH | 8.8 | — | — | NVD | 2026-08-04 |
| CVE-2026-17070 | Missing Authorization vulnerability in HAVELSAN Inc. Liman MYS allows Accessing Functionality Not Properly Constrained b | HIGH | 8.8 | — | — | NVD | 2026-08-04 |
| CVE-2026-18650 | Missing Authorization vulnerability in HAVELSAN Inc. Liman MYS allows Privilege Escalation. This issue affects Liman MY | HIGH | 8.8 | — | — | NVD | 2026-08-04 |
| CVE-2026-69258 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the unauthentic | HIGH | 8.8 | — | — | NVD | 2026-08-04 |
| CVE-2026-10050 | In Eclipse Jetty, the Digest authentication server-side component uses ISO-8859-1 to encode the password as bytes. Th | HIGH | 8.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-62927 | In Eclipse Milo versions 1.0.0 through 1.1.4, the Call service dispatches the original mixed batch to address-space hand | HIGH | 8.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-63252 | In Eclipse Milo versions 0.6.0 through 1.1.4, UASC server transport handlers fail to release retained partial message ch | HIGH | 8.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-67195 | Perspective 5.0.0 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitr | HIGH | 8.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-67198 | Perspective 5.0.0 contains a denial-of-service vulnerability in the VirtualServer protocol dispatcher that allows unauth | HIGH | 8.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-67200 | Perspective 5.0.0 contains a path traversal vulnerability that allows unauthenticated remote attackers to read arbitrary | HIGH | 8.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-68494 | The fix released in jackson-core 2.18.6 and 2.21.1 for CVE-2026-18401 (GHSA-72hv-8253-57qq, number length constraint byp | HIGH | 8.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-69100 | LAMP Rapid Development Platform through 5.6.2, fixed in commit 84b0c27, contains a remote code execution vulnerability i | HIGH | 8.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-15307 | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDjango spatial lookups optimistically parse | HIGH | 8.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-58067 | A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to exhaust host memory and cause | HIGH | 8.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-58075 | A vulnerability allowing an unauthenticated attacker to read arbitrary files from the host, which can be further leverag | HIGH | 8.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-69263 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the mitigation | HIGH | 8.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-58074 | A vulnerability allowing a high-privileged user to execute arbitrary code on the server. | HIGH | 8.6 | — | — | NVD | 2026-08-04 |
| CVE-2026-12075 | Natural Language Toolkit (NLTK): DNS-rebinding SSRF filter bypass in nltk.pathsec.urlopen (nltk.download / nltk.data.loa | HIGH | 8.6 | — | — | GitHub | 2026-07-31 |
| CVE-2026-69250 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the OAuth2 toke | HIGH | 8.5 | — | — | NVD | 2026-08-04 |
| CVE-2026-64631 | A vulnerability allowing a low-privileged user to inject SQL and extract database contents. | HIGH | 8.5 | — | — | NVD | 2026-08-04 |
| CVE-2026-64634 | A vulnerability allowing local privilege escalation to the Reporter service context. | HIGH | 8.4 | — | — | NVD | 2026-08-04 |
| CVE-2026-58071 | A vulnerability in Veeam Service Provider Console allowing an unauthenticated attacker to access the proxied appliance A | HIGH | 8.2 | — | — | NVD | 2026-08-04 |
| CVE-2026-24079 | Cryptographic Issue while processing registration requests with malformed or missing authentication parameters. | HIGH | 8.1 | — | — | NVD | 2026-08-04 |
| GHSA-3f7w-8rr8-f37f | GitPython: Unguarded git option forwarding in IndexFile.checkout() and TagReference.create() enables arbitrary file over | HIGH | 8.1 | — | — | GitHub | 2026-08-03 |
| DSA 6406-1 | [SECURITY] [DSA 6406-1] php8.4 security update | HIGH | 8.1 | — | — | Debian | 2026-07-31 |
| CVE-2026-10709 | A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerab | HIGH | 7.8 | — | — | NVD | 2026-08-04 |
| CVE-2026-10710 | A maliciously crafted FBX file, when parsed through Autodesk FBX SDK, can trigger a stack-based buffer overflow vulnerab | HIGH | 7.8 | — | — | NVD | 2026-08-04 |
| CVE-2026-21366 | Memory corruption while processing a packet with a size close to the maximum allowed value. | HIGH | 7.8 | — | — | NVD | 2026-08-04 |
| CVE-2026-24080 | Memory Corruption when handling malformed request parameters in the fingerprint TA. | HIGH | 7.8 | — | — | NVD | 2026-08-04 |
| CVE-2026-24083 | Memory Corruption while processing IOCTL device driver requests with invalid arguments. | HIGH | 7.8 | — | — | NVD | 2026-08-04 |
| DSA 6405-1 | [SECURITY] [DSA 6405-1] linux security update | HIGH | 7.8 | — | — | Debian | 2026-07-31 |
| FG-IR-26-144 | Linux Kernel vulnerability Dirty Frag | HIGH | 7.8 | — | — | Fortinet | 2026-06-03 |
| CVE-2026-25292 | Memory Corruption when processing untrusted user input in the fastboot command handler for audio framework configuration | HIGH | 7.6 | — | — | NVD | 2026-08-04 |
| CVE-2026-69257 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise's HTTP | HIGH | 7.6 | — | — | NVD | 2026-08-04 |
| CVE-2026-24084 | Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed cap | HIGH | 7.5 | — | — | NVD | 2026-08-04 |
| CVE-2026-56848 | A flaw in Node.js HTTP/2 handling allows `nghttp2_session_mem_send()` to be called re-entrantly while `nghttp2_session_m | HIGH | 7.5 | — | — | NVD | 2026-08-04 |
| CVE-2026-12061 | Natural Language Toolkit (NLTK): ReDoS in NLTK ReviewsCorpusReader FEATURES regex | HIGH | 7.5 | — | — | GitHub | 2026-07-31 |
| CVE-2026-12072 | Natural Language Toolkit (NLTK): Path Traversal in NKJPCorpusReader leads to Arbitrary File Read and bypasses the nltk.p | HIGH | 7.5 | — | — | GitHub | 2026-07-31 |
| CVE-2026-12074 | Natural Language Toolkit (NLTK) has path traversal in FramenetCorpusReader.frame() that allows arbitrary XML file read, | HIGH | 7.5 | — | — | GitHub | 2026-07-31 |
| CVE-2026-54632 | SIPSorcery: Malformed UDP packet on the RTP/ICE socket can remotely terminate a media session (DoS) | HIGH | 7.5 | — | — | GitHub | 2026-07-28 |
| GHSA-p7w7-4929-vpj5 | `@dynatrace-oss/dynatrace-mcp-server` has Unauthenticated HTTP MCP Tool Invocation | HIGH | 7.5 | — | — | GitHub | 2026-07-31 |
| DSA 6404-1 | [SECURITY] [DSA 6404-1] expat security update | HIGH | 7.5 | — | — | Debian | 2026-07-30 |
| CVE-2026-25288 | Transient DOS when processing a short target wake time channel usage response frame with insufficient packet size. | HIGH | 7.4 | — | — | NVD | 2026-08-04 |
| CVE-2026-18787 | A vulnerability was identified in GL.iNet AX1800 up to 4.8.3. The affected element is the function remove_rule of the fi | HIGH | 7.4 | — | — | NVD | 2026-08-04 |
| CVE-2026-0392 | eParakstītājs 3.0 for Windows before version 1.10.0 retrieves and executes its automatic updates over a channel that is | HIGH | 7.3 | 0% | EPSS 0%ile | NVD | 2026-08-03 |
| CVE-2026-69252 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the /api/v1/fil | HIGH | 7.2 | — | — | NVD | 2026-08-04 |
| CVE-2026-18806 | External control of file name or path vulnerability in TÜBİTAK BİLGEM Software Technologies Research Institute pardus-im | HIGH | 7.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-11368 | The Bluetooth host ATT layer (subsys/bluetooth/host/att.c) associates each in-flight ATT TX buffer with its owning chann | HIGH | 7.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-67199 | Perspective 5.0.0 contains a denial of service vulnerability that allows remote attackers to block the server event loop | HIGH | 7.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-67618 | marimo before 0.23.15 contains a configuration injection vulnerability that allows notebook authors to exfiltrate operat | HIGH | 7.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-15314 | Tapo P110 v1 smart Wi-Fi Plug contains an improper boundary validation vulnerability in the handling of authenticated HT | HIGH | 7.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-69262 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, `DELETE /api/v1 | HIGH | 7.1 | — | — | NVD | 2026-08-04 |
| USN-8623-1 | USN-8623-1: Linux kernel (NVIDIA) vulnerabilities | HIGH | 7.1 | — | — | Ubuntu | 2026-07-29 |
| USN-8622-1 | USN-8622-1: Linux kernel (NVIDIA) vulnerabilities | HIGH | 7.1 | — | — | Ubuntu | 2026-07-29 |
| CVE-2026-70472 | Flowise: Cross-workspace credential IDOR in openai-assistants-vector-store | HIGH | — | — | — | GitHub | 2026-08-04 |
| CVE-2026-70471 | Flowise: RBAC Bypass Leading to Unauthorized Workspace Variables Disclosure | HIGH | — | — | — | GitHub | 2026-08-04 |
| CVE-2026-42170 | CVE-2026-42170 | HIGH | — | — | — | Red Hat | 2026-08-04 |
| GHSA-xvg2-cgv6-6h7v | netfoil: Incorrect block responses could lead to localhost traffic | HIGH | — | — | — | GitHub | 2026-07-29 |
| GHSA-88pr-878c-24wf | Flowise: Authenticated arbitrary file write in the `S3 Directory` document loader via unsanitized S3 object keys | HIGH | — | — | — | GitHub | 2026-08-04 |
| CVE-2026-18641 | A vulnerability was determined in Sangfor Operation and Maintenance Security Management System up to 3.0.13. Affected by | MEDIUM | 5.5 | 75% | EPSS 75%ile | NVD | 2026-08-03 |
| CVE-2026-5492 | DriveLock Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclo | MEDIUM | 6.5 | 73% | EPSS 73%ile | NVD | 2026-07-29 |
| CVE-2026-5489 | DriveLock Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclo | MEDIUM | 5.3 | 67% | EPSS 67%ile | NVD | 2026-07-29 |
| CVE-2026-18587 | A flaw has been found in Wavlink WL-NU516U1 708c073-mt7628. The impacted element is an unknown function of the component | MEDIUM | 6.8 | 67% | EPSS 67%ile | NVD | 2026-08-03 |
| CVE-2026-58218 | A flaw was found in Samba's internal DNS server where unauthenticated TKEY registration requests were added to the TKEY | MEDIUM | 5.3 | 62% | EPSS 62%ile | NVD | 2026-07-30 |
| CVE-2026-67438 | OliveTin gives access to predefined shell commands from a web interface. From 3000.2.0 until 3000.17.0, the service/inte | MEDIUM | 6.6 | 59% | EPSS 59%ile | NVD | 2026-07-29 |
| CVE-2026-66312 | Buffer over-read in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network. | MEDIUM | 6.5 | 59% | EPSS 59%ile | NVD | 2026-08-04 |
| CVE-2026-17614 | A path traversal flaw was found in WildFly's domain mode implementation. The LocalFileRepository.getFile() and getCo | MEDIUM | 4.4 | 55% | EPSS 55%ile | NVD | 2026-08-04 |
| CVE-2026-54753 | `nx graph` dev server permissive CORS policy | MEDIUM | 5.9 | 54% | EPSS 54%ile | GitHub | 2026-07-31 |
| CVE-2026-20316 | A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenti | MEDIUM | 5.3 | 53% | KEV EPSS 53%ile | NVD | 2026-07-29 |
| CVE-2026-15601 | The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to Path Traversal (Zi | MEDIUM | 4.9 | 52% | EPSS 52%ile | NVD | 2026-08-01 |
| CVE-2026-66314 | Time-of-check time-of-use (toctou) race condition in Microsoft Edge (Chromium-based) allows an unauthorized attacker to | MEDIUM | 6.5 | 50% | EPSS 50%ile | NVD | 2026-08-04 |
| CVE-2026-17605 | The Payment forms, Buy now buttons, and Invoicing System | GetPaid plugin for WordPress is vulnerable to Local File Incl | MEDIUM | 6.6 | 50% | EPSS 50%ile | NVD | 2026-08-01 |
| CVE-2026-8793 | PaperCut NG/MF does not properly restrict excessive authentication attempts within its login component. An unauthenticat | MEDIUM | 6.9 | 49% | EPSS 49%ile | NVD | 2026-08-03 |
| CVE-2026-8794 | PaperCut NG/MF contains an observable timing discrepancy in its authentication component. An unauthenticated remote atta | MEDIUM | 6.9 | 49% | EPSS 49%ile | NVD | 2026-08-03 |
| CVE-2026-66326 | Missing authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network. | MEDIUM | 6.5 | 48% | EPSS 48%ile | NVD | 2026-08-04 |
| CVE-2026-9335 | A vulnerability in keras-team/keras versions <= 3.14.0 allows arbitrary local HDF5 file content disclosure due to improp | MEDIUM | 6.5 | 47% | EPSS 47%ile | NVD | 2026-08-02 |
| CVE-2026-56722 | Dompdf is an HTML to PDF converter for PHP. In versions 3.15 and prior, aAn attacker who controls the HTML input can byp | MEDIUM | 6.3 | 43% | EPSS 43%ile | NVD | 2026-07-28 |
| CVE-2026-58160 | Apache Traffic Server reads out of bounds while parsing DNS answers. This issue affects Apache Traffic Server: from 8.0 | MEDIUM | 6.3 | 43% | EPSS 43%ile | NVD | 2026-07-29 |
| CVE-2026-8508 | An improper authentication vulnerability in the "social_login.cgi" CGI program in Zyxel WAX650S firmware versions throug | MEDIUM | 6.5 | 43% | EPSS 43%ile | NVD | 2026-08-04 |
| CVE-2026-18646 | A weakness has been identified in danpros HTMLy up to 3.1.1. This vulnerability affects unknown code of the file /system | MEDIUM | 5.5 | 42% | EPSS 42%ile | NVD | 2026-08-03 |
| CVE-2026-55497 | Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, the built-in thumbnail and avatar image | MEDIUM | 6.5 | 42% | EPSS 42%ile | NVD | 2026-07-31 |
| CVE-2026-59952 | Valibot helps validate data using a schema. Versions prior to 1.4.2 can throw a TypeError inside its flatten() helper wh | MEDIUM | 6.9 | 42% | EPSS 42%ile | NVD | 2026-07-30 |
| CVE-2026-18245 | Improper control of code generation in Amazon @aws-amplify/codegen-ui-react before 2.20.6 might allow a remote authentic | MEDIUM | 6.4 | 41% | EPSS 41%ile | NVD | 2026-07-30 |
| CVE-2026-58216 | An out-of-bounds read flaw was found in Samba's Kerberos Key Distribution Center's (KDC) password change (kpasswd) servi | MEDIUM | 5.3 | 41% | EPSS 41%ile | NVD | 2026-07-30 |
| CVE-2026-59941 | Dompdf is an HTML to PDF converter for PHP. Versions 3.15 and prior accept a BMP image and generates a PDF-compatible PN | MEDIUM | 6.3 | 40% | EPSS 40%ile | NVD | 2026-07-28 |
| CVE-2026-44615 | Path traversal vulnerability in Apache Zeppelin. When FileSystemNotebookRepo is configured, an authenticated attacker wi | MEDIUM | 6.5 | 40% | EPSS 40%ile | NVD | 2026-07-31 |
| CVE-2026-18582 | A security flaw has been discovered in mz-automation libiec61850 up to 1.6.1. This vulnerability affects the function Re | MEDIUM | 5.5 | 40% | EPSS 40%ile | NVD | 2026-08-03 |
| CVE-2026-18583 | A weakness has been identified in mz-automation libiec61850 up to 1.6.1. This issue affects the function checkDataSetAcc | MEDIUM | 5.5 | 40% | EPSS 40%ile | NVD | 2026-08-03 |
| CVE-2026-58153 | Apache Traffic Server forwards HTTP/2 origin trailers to HTTP/1 clients without proper chunked framing when converting H | MEDIUM | 6.3 | 38% | EPSS 38%ile | NVD | 2026-07-29 |
| CVE-2026-58157 | Apache Traffic Server can reuse server sessions and tunnels improperly, exposing data across client connections. This i | MEDIUM | 6.9 | 37% | EPSS 37%ile | NVD | 2026-07-29 |
| CVE-2026-58187 | The Apache Traffic Server multiplexer plugin overruns its chunk-decode buffer on upstream input, enabling denial of serv | MEDIUM | 6.3 | 37% | EPSS 37%ile | NVD | 2026-07-29 |
| CVE-2026-65100 | Apache Traffic Server updates the HTTP/2 HPACK dynamic table before confirming the header block encoded successfully, so | MEDIUM | 6.3 | 37% | EPSS 37%ile | NVD | 2026-07-29 |
| CVE-2026-58047 | HTTP Smuggling in cPanel allows potential leak of credentials. | MEDIUM | 5.6 | 36% | EPSS 36%ile | NVD | 2026-07-31 |
| CVE-2026-14194 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Bilin Software and Infor | MEDIUM | 6.5 | 36% | EPSS 36%ile | NVD | 2026-08-04 |
| CVE-2026-46678 | Pydantic AI is a Python agent framework for building Generative AI applications. In versions 1.56.0 through 1.98.0, when | MEDIUM | 6.8 | 36% | EPSS 36%ile | NVD | 2026-07-29 |
| CVE-2026-63563 | Sharp and Toshiba Tec MFPs (multifunction printers) for a certain market have been shipped with the user authentication | MEDIUM | 6.9 | 35% | EPSS 35%ile | NVD | 2026-08-03 |
| CVE-2026-53551 | free5GC is an open-source implementation of the 5G core network. Prior to 1.4.5, the free5GC AUSF (Authentication Server | MEDIUM | 6.9 | 35% | EPSS 35%ile | NVD | 2026-07-31 |
| CVE-2026-65804 | Improper control of generation of code ('code injection') in Microsoft Edge (Chromium-based) allows an unauthorized atta | MEDIUM | 6.1 | 35% | EPSS 35%ile | NVD | 2026-08-04 |
| CVE-2026-34495 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Johnson Controls F | MEDIUM | 4.8 | 34% | EPSS 34%ile | NVD | 2026-07-31 |
| CVE-2026-34497 | Improper neutralization of Script-Related HTML tags in a web page (basic XSS) vulnerability in Johnson Controls FM Syste | MEDIUM | 4.8 | 34% | EPSS 34%ile | NVD | 2026-07-31 |
| CVE-2026-66311 | Missing authorization in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering locally. | MEDIUM | 6.2 | 34% | EPSS 34%ile | NVD | 2026-08-04 |
| CVE-2026-10700 | IBM Langflow OSS 1.0.0 through 1.8.4 contains multiple broken access control vulnerabilities in its file handling API th | MEDIUM | 6.5 | 34% | EPSS 34%ile | NVD | 2026-07-30 |
| CVE-2026-21662 | Unrestricted upload of file with dangerous type vulnerability in Johnson Controls FM Systems Employee allows Using Malic | MEDIUM | 4.8 | 34% | EPSS 34%ile | NVD | 2026-07-31 |
| CVE-2026-58042 | A flaw in Node.js can cause dns.resolveAny() Aborts the Node.js Process When a DNS Response Contains More Than 256 A Rec | MEDIUM | 5.9 | 33% | EPSS 33%ile | NVD | 2026-08-04 |
| CVE-2026-66325 | Server-side request forgery (ssrf) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofin | MEDIUM | 6.1 | 33% | EPSS 33%ile | NVD | 2026-08-04 |
| CVE-2025-71404 | better-auth versions after v0.0.2 and before 1.1.16 contain a reflected cross-site scripting (XSS) vulnerability on the | MEDIUM | 5.1 | 33% | EPSS 33%ile | NVD | 2026-08-01 |
| CVE-2026-12996 | A use-after-free in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers to poten | MEDIUM | 6.0 | 32% | EPSS 32%ile | NVD | 2026-07-30 |
| CVE-2026-18610 | A vulnerability was detected in NewType WebEIP up to 3.0. This affects an unknown part of the file /EIP_Com_FileList.asp | MEDIUM | 5.5 | 32% | EPSS 32%ile | NVD | 2026-08-03 |
| CVE-2026-59942 | Dompdf is an HTML to PDF converter for PHP. Versions 3.15 and prior are vulnerable to a Denial of Service (DoS) attack v | MEDIUM | 6.3 | 32% | EPSS 32%ile | NVD | 2026-07-28 |
| CVE-2026-17674 | Inappropriate implementation in HTML in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass content | MEDIUM | 6.5 | 32% | EPSS 32%ile | NVD | 2026-07-30 |
| CVE-2026-54345 | GoPacket's Diameter AVP decoder: uint32 underflow on vendor header size leads to unbounded ~4 GiB allocation (unauthenti | MEDIUM | — | 32% | EPSS 32%ile | GitHub | 2026-07-28 |
| CVE-2026-17667 | Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data v | MEDIUM | 6.5 | 31% | EPSS 31%ile | NVD | 2026-07-30 |
| CVE-2026-17668 | Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data v | MEDIUM | 6.5 | 31% | EPSS 31%ile | NVD | 2026-07-30 |
| CVE-2026-17707 | Uninitialized Use in Media in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker who had compromi | MEDIUM | 6.5 | 31% | EPSS 31%ile | NVD | 2026-07-30 |
| CVE-2026-17714 | Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain potentially sensi | MEDIUM | 6.5 | 31% | EPSS 31%ile | NVD | 2026-07-30 |
| CVE-2026-18738 | Shlink versions 5.0.0 through 5.1.5 contain a CSV formula injection vulnerability that allows unauthenticated remote att | MEDIUM | 5.1 | 31% | EPSS 31%ile | NVD | 2026-08-03 |
| CVE-2026-17567 | The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin for WordPress is vulne | MEDIUM | 5.3 | 30% | EPSS 30%ile | NVD | 2026-07-31 |
| CVE-2026-53573 | GeoNetwork is a catalog application to manage spatially referenced resources. From 3.12.0 until 4.2.16 and 4.4.11, unsaf | MEDIUM | 4.8 | 30% | EPSS 30%ile | NVD | 2026-07-31 |
| CVE-2026-55495 | Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, the WOPI PUT_RELATIVE handler passes X-W | MEDIUM | 4.3 | 30% | EPSS 30%ile | NVD | 2026-07-31 |
| CVE-2026-54885 | Server-Side Request Forgery vulnerability in malach-it Boruta allows an unauthenticated remote attacker to cause the OAu | MEDIUM | 6.9 | 30% | EPSS 30%ile | NVD | 2026-07-30 |
| CVE-2026-54909 | pion/stun is a Go implementation of STUN. Prior to 3.1.3, XORMappedAddress.GetFromAs can panic while parsing a malformed | MEDIUM | 5.3 | 30% | EPSS 30%ile | NVD | 2026-07-31 |
| CVE-2026-54659 | Pagy is agnostic pagination in plain Ruby. From 43.0.0 until 43.5.6, Pagy::I18n.locale= in gem/lib/pagy/modules/i18n/i18 | MEDIUM | 6.9 | 30% | EPSS 30%ile | NVD | 2026-07-28 |
| CVE-2026-17664 | Insufficient validation of untrusted input in Loader in Google Chrome prior to 151.0.7922.72 allowed a remote attacker w | MEDIUM | 6.5 | 29% | EPSS 29%ile | NVD | 2026-07-30 |
| CVE-2026-54332 | GoPacket's sFlow ExtendedGatewayFlow decoder: unbounded attacker-controlled allocation (104-byte UDP datagram -> up to 1 | MEDIUM | — | 29% | EPSS 29%ile | GitHub | 2026-07-28 |
| CVE-2026-13117 | An incomplete guard in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers to tr | MEDIUM | 6.0 | 29% | EPSS 29%ile | NVD | 2026-07-30 |
| CVE-2026-67314 | axios versions >=1.15.2 and <1.18.0 contain prototype-pollution read-side gadgets in Basic auth subfield handling (lib/a | MEDIUM | 6.3 | 29% | EPSS 29%ile | NVD | 2026-08-01 |
| CVE-2026-55496 | Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, GET /api/v4/user/search calls SearchActi | MEDIUM | 4.3 | 29% | EPSS 29%ile | NVD | 2026-07-31 |
| CVE-2026-44617 | LDAP filter injection vulnerability in Apache Zeppelin. LdapRealm used RFC 4514 distinguished-name escaping when constru | MEDIUM | 6.5 | 29% | EPSS 29%ile | NVD | 2026-07-30 |
| CVE-2026-67317 | axios versions 1.7.0 before 1.18.0 fail to enforce maxBodyLength for WHATWG ReadableStream request bodies in the fetch a | MEDIUM | 6.3 | 29% | EPSS 29%ile | NVD | 2026-08-01 |
| CVE-2026-69153 | PostCSS takes a CSS file and provides an API to analyze and modify its rules by transforming the rules into an Abstract | MEDIUM | 6.3 | 28% | EPSS 28%ile | NVD | 2026-08-03 |
| CVE-2026-18362 | The IRIS web application in version 2.4.26 and possibly others does not protect its user authentication against brute-fo | MEDIUM | 5.9 | 28% | EPSS 28%ile | NVD | 2026-07-30 |
| CVE-2026-16531 | An unauthenticated remote attacker can exploit a path traversal vulnerability in the PCP pmproxy logger servlet using a | MEDIUM | 5.3 | 28% | EPSS 28%ile | NVD | 2026-07-30 |
| CVE-2026-62416 | Network Scanner Tool and Network Scanner Tool Lite provided by Sharp Corporation, with the initial configuration, requir | MEDIUM | 6.9 | 28% | EPSS 28%ile | NVD | 2026-08-03 |
| CVE-2026-67318 | axios versions >=1.13.0 (Node.js HTTP adapter) fail to enforce the configured maxBodyLength limit on streamed request bo | MEDIUM | 6.3 | 28% | EPSS 28%ile | NVD | 2026-08-01 |
| CVE-2026-15344 | The WP Photo Album Plus plugin for WordPress is vulnerable to generic SQL Injection via the 'table' parameter in all ver | MEDIUM | 4.9 | 28% | EPSS 28%ile | NVD | 2026-07-29 |
| CVE-2026-18647 | A security vulnerability has been detected in jina-ai reader up to 1574bfd380d249c86c82db4dace0d9c8fe17e2b1. This issue | MEDIUM | 5.5 | 28% | EPSS 28%ile | NVD | 2026-08-03 |
| CVE-2026-20464 | In hevc decoder, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalatio | MEDIUM | 6.5 | 28% | EPSS 28%ile | NVD | 2026-08-03 |
| CVE-2026-68979 | Apache NiFI 1.10.0 through 2.10.0 provide a Parameter Context update REST API method that does not enforce authorization | MEDIUM | 5.9 | 28% | EPSS 28%ile | NVD | 2026-08-03 |
| CVE-2026-17679 | Insufficient validation of untrusted input in Print Preview in Google Chrome prior to 151.0.7922.72 allowed a remote att | MEDIUM | 6.5 | 28% | EPSS 28%ile | NVD | 2026-07-30 |
| CVE-2026-17683 | Inappropriate implementation in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain potent | MEDIUM | 6.5 | 28% | EPSS 28%ile | NVD | 2026-07-30 |
| CVE-2026-46594 | A reflected cross-site scripting (XSS) vulnerability has been identified in the PHP Jabbers - PHP Poll Script. A malicio | MEDIUM | 5.1 | 28% | EPSS 28%ile | NVD | 2026-07-31 |
| CVE-2026-13346 | pip would incorrectly handle doubly-encoded package URLs from indexes allowing for files to be installed to arbitrary lo | MEDIUM | 5.6 | 27% | EPSS 27%ile | NVD | 2026-07-29 |
| CVE-2026-13307 | Autel MaxiCharger AC Elite Home USB Heap-based Buffer Overflow Arbitrary Code Execution Vulnerability. This vulnerabilit | MEDIUM | 6.8 | 27% | EPSS 27%ile | NVD | 2026-07-29 |
| CVE-2026-44616 | LDAP injection vulnerability in Apache Zeppelin. ActiveDirectoryGroupRealm constructed LDAP search filters without escap | MEDIUM | 6.5 | 27% | EPSS 27%ile | NVD | 2026-07-30 |
| CVE-2026-45376 | Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.3 | MEDIUM | 5.5 | 27% | EPSS 27%ile | NVD | 2026-07-31 |
| CVE-2026-59652 | In Bouncy Castle for Java before 1.85, LDAP filter injection in legacy jdk1.4 LDAPStoreHelper. | MEDIUM | 6.9 | 27% | EPSS 27%ile | NVD | 2026-08-03 |
| CVE-2026-68501 | Sylius Mollie Plugin provides Mollie payment integration for Sylius applications. Prior to 2.2.8, 3.2.4, and 3.3.1, Syli | MEDIUM | 6.5 | 27% | EPSS 27%ile | NVD | 2026-07-30 |
| CVE-2026-5114 | The SpeedyCache plugin for WordPress is vulnerable to Arbitrary File Read via Path Traversal in all versions up to, and | MEDIUM | 4.9 | 27% | EPSS 27%ile | NVD | 2026-07-28 |
| CVE-2026-67312 | axios versions from 0.28.0 before 0.33.0 and from 1.0.0 before 1.18.0 contain uncontrolled recursion in formDataToJSON ( | MEDIUM | 6.3 | 26% | EPSS 26%ile | NVD | 2026-08-01 |
| CVE-2026-67313 | axios versions 0.28.0 and later contain uncontrolled recursion in formDataToJSON when processing FormData field names wi | MEDIUM | 6.3 | 26% | EPSS 26%ile | NVD | 2026-08-01 |
| CVE-2026-18059 | The PixelYourSite – Your smart PIXEL (TAG) & API Manager plugin for WordPress is vulnerable to Sensitive Information Exp | MEDIUM | 5.3 | 26% | EPSS 26%ile | NVD | 2026-08-01 |
| CVE-2026-55499 | Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, a single-file share event-stream subscri | MEDIUM | 4.3 | 26% | EPSS 26%ile | NVD | 2026-07-31 |
| CVE-2026-44943 | An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows rem | MEDIUM | 6.9 | 26% | EPSS 26%ile | NVD | 2026-07-29 |
| CVE-2026-14202 | Observable response discrepancy vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human | MEDIUM | 5.3 | 26% | EPSS 26%ile | NVD | 2026-08-04 |
| CVE-2026-58063 | In Bouncy Castle for Java before 1.85, BCFKS keystore load honours unbounded KDF cost from untrusted file. This issue al | MEDIUM | 5.3 | 25% | EPSS 25%ile | NVD | 2026-08-03 |
| CVE-2026-13723 | A vulnerability in the `zipx.Unzip` extraction routine of Develar's app-builder allows an attacker to overwrite arbitrar | MEDIUM | 6.5 | 25% | EPSS 25%ile | NVD | 2026-07-29 |
| CVE-2026-17759 | Uninitialized Use in Codecs in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain potentially sens | MEDIUM | 6.5 | 25% | EPSS 25%ile | NVD | 2026-07-30 |
| CVE-2026-14341 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.8 before 19.0.5, 19.1 before 19.1.3, and 1 | MEDIUM | 4.9 | 25% | EPSS 25%ile | NVD | 2026-07-29 |
| CVE-2026-58152 | Apache Traffic Server mishandles integers while decoding HPACK/XPACK headers, corrupting memory. This issue affects Apa | MEDIUM | 6.9 | 25% | EPSS 25%ile | NVD | 2026-07-29 |
| CVE-2026-11995 | The Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder plugin for WordPress | MEDIUM | 5.3 | 25% | EPSS 25%ile | NVD | 2026-08-01 |
| CVE-2026-54908 | Pion DTLS vulnerable to denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message | MEDIUM | — | 24% | EPSS 24%ile | GitHub | 2026-07-31 |
| CVE-2026-17703 | Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attack | MEDIUM | 6.5 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-16971 | The IRIS web application in version 2.4.26 and possibly others does not protect its MFA validation against brute-force a | MEDIUM | 5.9 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-14318 | The GiveWP WordPress plugin before 4.16.3 does not escape a donation-form template setting before outputting it in an H | MEDIUM | 6.8 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-67302 | FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains a divide-by-zero vulnerability in the rdpecam camera redire | MEDIUM | 5.3 | 24% | EPSS 24%ile | NVD | 2026-08-01 |
| CVE-2026-66756 | Improper Protection of Alternate Path vulnerability in Apache Tika. This issue affects Apache Tika: from 4.0.0-alpha-1 | MEDIUM | 6.9 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-67246 | A path traversal vulnerability was found in the Wallpaper component of ADM. The vulnerability occurs because user-contro | MEDIUM | 6.9 | 24% | EPSS 24%ile | NVD | 2026-07-30 |
| CVE-2026-17580 | The Advanced Views – Display Custom Fields (ACF, Pods, MetaBox), Posts, CPT and Woo Products anywhere in Gutenberg, Elem | MEDIUM | 6.5 | 24% | EPSS 24%ile | NVD | 2026-08-01 |
| CVE-2026-18207 | A flaw was found in the client policy enforcement mechanism of Keycloak. The issue occurs when the system checks group m | MEDIUM | 6.5 | 24% | EPSS 24%ile | NVD | 2026-07-29 |
| CVE-2026-17689 | Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data v | MEDIUM | 4.3 | 23% | EPSS 23%ile | NVD | 2026-07-30 |
| CVE-2026-66296 | Improper Neutralization of Input During Web Page Generation (XSS) vulnerability in lud oaskit allows reflected cross-sit | MEDIUM | 5.1 | 23% | EPSS 23%ile | NVD | 2026-08-03 |
| CVE-2026-59943 | Dompdf is an HTML to PDF converter for PHP. In versions 3.15 and prior, if a malicious actor can supply unrestricted con | MEDIUM | 6.3 | 23% | EPSS 23%ile | NVD | 2026-07-28 |
| CVE-2026-66064 | goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.5, the httpserver/handler | MEDIUM | 5.3 | 23% | EPSS 23%ile | NVD | 2026-07-28 |
| CVE-2026-13458 | The GenerateBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Dynamic Tag Injection in HTML A | MEDIUM | 6.4 | 23% | EPSS 23%ile | NVD | 2026-08-01 |
| CVE-2026-62323 | Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, ViewerSessionValidation uses only the se | MEDIUM | 6.3 | 23% | EPSS 23%ile | NVD | 2026-07-31 |
| CVE-2026-38444 | osTicket v1.18.3 is vulnerable to Stored Cross-Site Scripting (XSS) via the email From-header display name. The value is | MEDIUM | 6.1 | 23% | EPSS 23%ile | NVD | 2026-08-03 |
| CVE-2026-59232 | Cross-site Scripting in the lead index view in Roskus Prospero Flow CRM before 5.3.7 allows authenticated users holding | MEDIUM | 5.3 | 23% | EPSS 23%ile | NVD | 2026-07-31 |
| CVE-2026-54080 | veraPDF PDF parser is a PDF parser for veraPDF. Prior to 1.30.2 and 1.31.23, veraPDF-parser contains a denial-of-service | MEDIUM | 6.9 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-54081 | veraPDF PDF parser is a PDF parser for veraPDF. Prior to 1.30.2 and 1.31.23, veraPDF-parser contains a denial-of-service | MEDIUM | 6.9 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-59881 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.2, the WebSocket client ac | MEDIUM | 6.9 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-65841 | Jodit Editor is a WYSIWYG editor with a built-in file browser & image editor. Prior to 4.13.6, Jodit's clean-html denyTa | MEDIUM | 5.3 | 22% | EPSS 22%ile | NVD | 2026-07-31 |
| CVE-2026-50642 | diff‑so‑fancy does not properly sanitize non‑SGR terminal control sequences before outputting diff data. The application | MEDIUM | 4.8 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-17796 | Side-channel information leakage in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain po | MEDIUM | 6.5 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-17800 | Inappropriate implementation in MediaRecording in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obta | MEDIUM | 6.5 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-16530 | A flaw was found in the PCP (Performance Co-Pilot) `pmproxy` service. A remote attacker can exploit a vulnerability in t | MEDIUM | 6.5 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-18585 | A vulnerability was detected in GL.iNet MT3000, MT6000, BE9300, BE3600, MT3600BE, E5800, BE6500, MT5000, X3000, XE3000 a | MEDIUM | 5.3 | 22% | EPSS 22%ile | NVD | 2026-08-03 |
| CVE-2026-17706 | Insufficient validation of untrusted input in Media in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote | MEDIUM | 4.3 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-15153 | The WP Hotel Booking WordPress plugin before 2.3.2 does not sanitise and escape a search parameter on an administrative | MEDIUM | 6.8 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-18201 | Keycloak provides a way to manage identity providers and organizations through its administrative API. A flaw was discov | MEDIUM | 5.5 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-18437 | The MailerPress – Newsletter, email marketing & AI automation plugin for WordPress is vulnerable to unauthorized access | MEDIUM | 5.3 | 22% | EPSS 22%ile | NVD | 2026-07-31 |
| CVE-2026-16751 | Authorization Bypass in the emergency recovery approval component in Ente Technologies Ente Museum Server allows an auth | MEDIUM | 6.5 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-10782 | The RealHomes Memberships plugin for WordPress is vulnerable to authorization bypass in all versions up to, and includin | MEDIUM | 4.3 | 22% | EPSS 22%ile | NVD | 2026-08-01 |
| CVE-2026-18394 | Incorrect authorization in the http_request tool in Strands Agents Tools before 0.8.2 might allow remote attackers to ob | MEDIUM | 6.9 | 22% | EPSS 22%ile | NVD | 2026-07-31 |
| CVE-2026-13389 | The webtoffee-cookie-consent WordPress plugin before 3.5.3 does not perform authorization checks on several of its REST | MEDIUM | 6.5 | 22% | EPSS 22%ile | NVD | 2026-08-02 |
| CVE-2026-11973 | The WP-Lister Lite for eBay plugin for WordPress is vulnerable to generic SQL Injection via the 'orderby' parameter in a | MEDIUM | 4.9 | 22% | EPSS 22%ile | NVD | 2026-07-29 |
| CVE-2026-13586 | In Bouncy Castle for Java before 1.85, PKCS#12 MAC and bag-decryption KDF iteration-count bound (DoS). This issue also a | MEDIUM | 5.3 | 22% | EPSS 22%ile | NVD | 2026-08-03 |
| CVE-2026-58139 | The DuckDB AWS extension for DuckDB contains a security policy bypass vulnerability that allows any database user with S | MEDIUM | 6.0 | 22% | EPSS 22%ile | NVD | 2026-08-03 |
| CVE-2026-11904 | IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 and IBM Verify Ident | MEDIUM | 5.3 | 22% | EPSS 22%ile | NVD | 2026-07-30 |
| CVE-2026-48025 | nebula-mesh is a self-hosted control plane for Slack Nebula mesh virtual private network. Prior to version 0.3.7, intern | MEDIUM | 6.9 | 21% | EPSS 21%ile | NVD | 2026-07-28 |
| CVE-2026-59899 | Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, | MEDIUM | 6.9 | 21% | EPSS 21%ile | NVD | 2026-07-29 |
| CVE-2026-59900 | Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, | MEDIUM | 6.9 | 21% | EPSS 21%ile | NVD | 2026-07-29 |
| CVE-2026-67430 | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Tran | MEDIUM | 5.3 | 21% | EPSS 21%ile | NVD | 2026-07-29 |
| CVE-2026-67315 | axios versions 0.31.0 before 0.33.0 and 1.15.0 before 1.18.0 fail to recognize 0.0.0.0 as a loopback address in shouldBy | MEDIUM | 6.9 | 21% | EPSS 21%ile | NVD | 2026-08-01 |
| CVE-2026-67321 | axios versions 0.31.1 before 0.33.0 and 1.15.1 before 1.18.0 contain an incomplete depth-limit bypass in toFormData.js w | MEDIUM | 6.9 | 21% | EPSS 21%ile | NVD | 2026-08-01 |
| CVE-2026-69075 | FlowIntel is affected by a stored cross-site scripting vulnerability through multiple user-controlled or administrator-c | MEDIUM | 6.9 | 21% | EPSS 21%ile | NVD | 2026-08-03 |
| CVE-2026-18654 | Key exchange without entity authentication in the EMR SSH helper commands in Amazon AWS CLI before 1.45.28 and AWS CLI v | MEDIUM | 6.9 | 21% | EPSS 21%ile | NVD | 2026-08-03 |
| CVE-2026-1918 | IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM | MEDIUM | 4.9 | 21% | EPSS 21%ile | NVD | 2026-07-28 |
| CVE-2026-18720 | A flaw has been found in kalcaddle kodbox 1.67 Build 02. This vulnerability affects unknown code of the file /index.php? | MEDIUM | 5.5 | 21% | EPSS 21%ile | NVD | 2026-08-04 |
| CVE-2026-58041 | A flaw in Node.js node:sqlite allows a stale StatementSyncIterator created through DatabaseSync#createTagStore() to cont | MEDIUM | 5.3 | 21% | EPSS 21%ile | NVD | 2026-08-04 |
| CVE-2026-67435 | linuxfabrik-lib provides Python modules for database access, caching, shell execution, and API integrations. Prior to ve | MEDIUM | 6.0 | 21% | EPSS 21%ile | NVD | 2026-07-29 |
| CVE-2026-13379 | The Windows interactive service in OpenVPN 2.7_alpha1 through 2.7.4 allows remote attackers to cause persistent DNS stat | MEDIUM | 5.1 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-4672 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.4 before 19.0.5, 19.1 before 19.1.3, and 1 | MEDIUM | 4.3 | 21% | EPSS 21%ile | NVD | 2026-07-29 |
| CVE-2026-17696 | Side-channel information leakage in Media in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cros | MEDIUM | 4.3 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-17700 | Insufficient validation of untrusted input in Actor in Google Chrome prior to 151.0.7922.72 allowed a remote attacker wh | MEDIUM | 4.3 | 21% | EPSS 21%ile | NVD | 2026-07-30 |
| CVE-2026-48061 | Litestar is an Asynchronous Server Gateway Interface (ASGI) framework. In versions prior to 2.22.0, an attacker can bypa | MEDIUM | 5.9 | 20% | EPSS 20%ile | NVD | 2026-08-03 |
| CVE-2026-17756 | Insufficient policy enforcement in Presentation in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to byp | MEDIUM | 6.5 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-17764 | Inappropriate implementation in FedCM in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass same o | MEDIUM | 6.5 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-6453 | The CubeWP Framework plugin for WordPress is vulnerable to SQL Injection in all versions up to and including 1.1.30. Thi | MEDIUM | 6.5 | 20% | EPSS 20%ile | NVD | 2026-08-01 |
| CVE-2026-18481 | Stored cross-site scripting in the participant URL handling in AWS Ops Wheel before PR #168 might allow an authenticate | MEDIUM | 6.2 | 20% | EPSS 20%ile | NVD | 2026-07-31 |
| CVE-2026-59921 | Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, | MEDIUM | 5.7 | 20% | EPSS 20%ile | NVD | 2026-07-28 |
| CVE-2026-18382 | A flaw was found in koku-metrics-operator. The operator's CostManagementMetricsConfig custom resource allows a user able | MEDIUM | 6.8 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-45330 | Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.3 | MEDIUM | 4.9 | 20% | EPSS 20%ile | NVD | 2026-07-31 |
| CVE-2026-54768 | WPGraphQL provides a GraphQL API for WordPress sites. From 2.0.0 until 2.15.1, the deprecated user field on SendPassword | MEDIUM | 6.9 | 20% | EPSS 20%ile | NVD | 2026-07-31 |
| CVE-2026-6089 | The WP CTA plugin for WordPress is vulnerable to Server-Side Request Forgery via the 'sticky_s_media' parameter in impor | MEDIUM | 4.9 | 20% | EPSS 20%ile | NVD | 2026-07-29 |
| CVE-2026-69198 | ip-address is a library for parsing and manipulating IPv4 and IPv6 addresses in JavaScript. From 10.1.1 until 10.2.2, ev | MEDIUM | 6.9 | 20% | EPSS 20%ile | NVD | 2026-08-03 |
| CVE-2026-67347 | Vendure through 3.7.1, fixed in commit f67ef5f, contains a cross-channel authorization bypass vulnerability in stock-loc | MEDIUM | 6.1 | 20% | EPSS 20%ile | NVD | 2026-07-30 |
| CVE-2026-67306 | FreeRDP versions 3.28.0 and earlier contain an out-of-bounds read vulnerability in the RDP6 planar RLE bitmap decoder fu | MEDIUM | 5.3 | 20% | EPSS 20%ile | NVD | 2026-08-01 |
| CVE-2026-69243 | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.2, the HTTP parsers were v | MEDIUM | 6.3 | 20% | EPSS 20%ile | NVD | 2026-08-03 |
| CVE-2026-45377 | Decidim is a participatory democracy framework. Prior to 0.30.9, from 0.31.0 before 0.31.5, and in 0.32.0.rc1 before 0.3 | MEDIUM | 6.5 | 20% | EPSS 20%ile | NVD | 2026-07-31 |
| CVE-2026-54756 | Jodit has prototype pollution via Jodit.configure() / ConfigMerge | MEDIUM | — | 20% | EPSS 20%ile | GitHub | 2026-07-31 |
| CVE-2026-17690 | Insufficient validation of untrusted input in PDF in Google Chrome on Android prior to 151.0.7922.72 allowed a local att | MEDIUM | 6.5 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-17814 | Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a re | MEDIUM | 6.5 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-41187 | Calico's apiserver wraps tier-scoped resources so that every operation runs through AuthorizeTierOperation, but the Dele | MEDIUM | 6.2 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-58040 | An incomplete fix has been identified in Node.js: HTTPS Agent TLS session reuse skips hostname verification across ident | MEDIUM | 6.3 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-14465 | Insufficient session expiration vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human | MEDIUM | 6.5 | 19% | EPSS 19%ile | NVD | 2026-08-04 |
| CVE-2026-52888 | NocoBase: Sensitive Data Exposure via SQL Blacklist Bypass | MEDIUM | 6.8 | 19% | EPSS 19%ile | GitHub | 2026-07-28 |
| CVE-2026-17946 | Uninitialized Use in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the rend | MEDIUM | 6.5 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-17968 | Uninitialized Use in WebXR in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to obtain potent | MEDIUM | 6.5 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-16087 | The Icegram Engage – Popups, Optins, CTAs & Lead Generation plugin for WordPress is vulnerable to second-order SQL Injec | MEDIUM | 6.5 | 19% | EPSS 19%ile | NVD | 2026-08-01 |
| CVE-2026-18197 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Link Library allow | MEDIUM | 6.4 | 19% | EPSS 19%ile | NVD | 2026-07-29 |
| CVE-2026-66724 | MWDB Core versions >=2.0.0 and <2.19.0 contain a missing authorization vulnerability in the deprecated config and blob u | MEDIUM | 5.3 | 19% | EPSS 19%ile | NVD | 2026-07-29 |
| CVE-2026-65311 | The HTTP server component of ANDRITZ HIPASE-250 (formerly 250 SCALA) in affected versions exposes an undocumented endpoi | MEDIUM | 5.3 | 19% | EPSS 19%ile | NVD | 2026-07-31 |
| CVE-2026-65834 | Capsule is a multi-tenancy and policy-based framework for Kubernetes. Prior to 0.13.8, CapsuleConfiguration.Spec.NodeMet | MEDIUM | 6.8 | 19% | EPSS 19%ile | NVD | 2026-07-30 |
| CVE-2026-15403 | The Pinpoint Booking System – Version 2 plugin for WordPress is vulnerable to blind SQL Injection via the 'field' parame | MEDIUM | 4.9 | 19% | EPSS 19%ile | NVD | 2026-08-01 |
| CVE-2026-15951 | The Icegram Mailer plugin for WordPress is vulnerable to SQL Injection via the 'fields' parameter in versions up to, and | MEDIUM | 4.9 | 19% | EPSS 19%ile | NVD | 2026-08-01 |
| CVE-2026-16614 | The GSheetConnector – CF7 Google Sheets Connector with Real-Time Sync plugin for WordPress is vulnerable to generic SQL | MEDIUM | 4.9 | 19% | EPSS 19%ile | NVD | 2026-08-01 |
| CVE-2026-17555 | The WPvivid Backup & Migration plugin for WordPress is vulnerable to SQL Injection via the export_data parameter in vers | MEDIUM | 4.9 | 19% | EPSS 19%ile | NVD | 2026-08-01 |
| CVE-2026-59898 | Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, | MEDIUM | 6.3 | 18% | EPSS 18%ile | NVD | 2026-07-29 |
| CVE-2026-15018 | The Database Collation Fix plugin for WordPress is vulnerable to time-based SQL Injection via the 'force-collation-algor | MEDIUM | 5.3 | 18% | EPSS 18%ile | NVD | 2026-08-01 |
| CVE-2026-17740 | Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data v | MEDIUM | 4.3 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-17757 | Uninitialized Use in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data vi | MEDIUM | 4.3 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-17790 | Uninitialized Use in ANGLE in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker to obtain potent | MEDIUM | 4.3 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-17808 | Uninitialized Use in WebGL in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to leak cross-or | MEDIUM | 4.3 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-17810 | Uninitialized Use in Dawn in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data vi | MEDIUM | 4.3 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-17793 | Inappropriate implementation in Messages in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to | MEDIUM | 6.5 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-17831 | Insufficient validation of untrusted input in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacke | MEDIUM | 6.5 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-67193 | Xlight FTP Server before 3.9.5 contains an information disclosure vulnerability that allows unauthenticated attackers to | MEDIUM | 6.9 | 18% | EPSS 18%ile | NVD | 2026-07-29 |
| CVE-2026-61893 | A crafted IEC 60870-5-104 I-frame with TypeID 104 (C_TS_NA_1) and an inflated object count causes TestCommand_getFromBu | MEDIUM | 6.9 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-63033 | A crafted IEC 60870-5-104 I-frame with a declared object count exceeding what fits in the ASDU body causes InformationO | MEDIUM | 6.9 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-54712 | OpenTelemetry Javaagent RMI context propagation allows resource exhaustion | MEDIUM | 5.3 | 18% | EPSS 18%ile | GitHub | 2026-07-29 |
| CVE-2026-59647 | In Bouncy Castle for Java before 1.85, CRMF/CMP password-MAC honours unbounded iteration count. This issue also affects | MEDIUM | 6.9 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-59648 | In Bouncy Castle for Java before 1.85, OpenPGP Argon2 S2K honours attacker-chosen memory and passes. This issue also aff | MEDIUM | 6.9 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-17830 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 6.5 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-17892 | Inappropriate implementation in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain potent | MEDIUM | 6.5 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-23981 | An Improper Authorization vulnerability exists in Apache Superset allowing an authenticated user with permissions to upd | MEDIUM | 5.3 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-55777 | GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the b | MEDIUM | 5.3 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-15055 | In Bouncy Castle for Java before 1.85, PKCS#8 / PBES2 decryptors honour unbounded KDF cost from input. This issue also a | MEDIUM | 5.3 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-46714 | Misskey is an open source, federated social media platform. IVersions 8.63.0 and later, but prior to 2026.5.4, contain a | MEDIUM | 5.1 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-17659 | Inappropriate implementation in SiteIsolation in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had | MEDIUM | 4.2 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-17992 | Uninitialized Use in Skia in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker to obtain potenti | MEDIUM | 6.5 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-14923 | The Sync Post With Other Site WordPress plugin before 1.9.3 does not correctly enforce the page-editing capability on a | MEDIUM | 6.5 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-59231 | Server-Side Request Forgery in the PDF export component in maalfer Pentestify before 1.1.0 allows authenticated users to | MEDIUM | 5.3 | 18% | EPSS 18%ile | NVD | 2026-07-31 |
| CVE-2026-17851 | Side-channel information leakage in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had c | MEDIUM | 4.3 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-17859 | Inappropriate implementation in Favicons in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross | MEDIUM | 4.3 | 18% | EPSS 18%ile | NVD | 2026-07-30 |
| CVE-2026-67316 | axios is vulnerable to read-side prototype-pollution gadgets that can alter request construction when Object.prototype h | MEDIUM | 6.3 | 17% | EPSS 17%ile | NVD | 2026-08-01 |
| CVE-2026-67319 | axios before 0.33.0 (and 1.x before 1.18.0) can consume inherited properties from nested request option objects when the | MEDIUM | 6.3 | 17% | EPSS 17%ile | NVD | 2026-08-01 |
| CVE-2026-23985 | A Regular Expression Denial of Service (ReDoS) vulnerability exists in Apache Superset versions 1.5.0 through 5.0.0. The | MEDIUM | 5.3 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-12231 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘ exad_info | MEDIUM | 6.4 | 17% | EPSS 17%ile | NVD | 2026-08-02 |
| CVE-2026-6336 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.6 before 19.0.5, 19.1 before 19.1.3, and 1 | MEDIUM | 5.3 | 17% | EPSS 17%ile | NVD | 2026-07-29 |
| CVE-2026-16553 | GitLab has remediated an issue in GitLab EE affecting all versions from 18.8 before 19.0.5, 19.1 before 19.1.3, and 19.2 | MEDIUM | 5.4 | 17% | EPSS 17%ile | NVD | 2026-07-29 |
| CVE-2026-54272 | ip-address: misclassification of IPv4-mapped/NAT64 IPv6 addresses can bypass SSRF and trust-boundary checks | MEDIUM | — | 17% | EPSS 17%ile | GitHub | 2026-08-03 |
| CVE-2026-67616 | Camaleon CMS through 2.9.2, fixed in commit 88ab703, contains a missing authorization vulnerability on the drafts endpoi | MEDIUM | 5.3 | 17% | EPSS 17%ile | NVD | 2026-08-03 |
| CVE-2026-48910 | A carefully crafted editing request could trigger an XSS vulnerability on Apache JSPWiki when parsing errors on the mar | MEDIUM | 6.5 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-67439 | OliveTin gives safe and simple access to predefined shell commands from a web interface. Prior to 3000.17.0, the service | MEDIUM | 4.3 | 17% | EPSS 17%ile | NVD | 2026-07-29 |
| CVE-2026-54364 | CentreStack before 17.4 contains a session variable injection vulnerability that allows unauthenticated attackers to inj | MEDIUM | 6.9 | 17% | EPSS 17%ile | NVD | 2026-07-30 |
| CVE-2026-14351 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.8 before 19.0.5, 19.1 before 19.1.3, and 19 | MEDIUM | 4.3 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-15077 | GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.3 and 19.2 before 19.2.1 that u | MEDIUM | 4.3 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-59920 | Netty is an asynchronous, event-driven network application framework. In versions prior to 4.1.136.Final and 4.2.16.Fina | MEDIUM | 6.5 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-50558 | Penelope Shell Handler is a post-exploitation shell handler for authorized security testing. Prior to 0.20.0, the Unix d | MEDIUM | 5.9 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-17348 | In SERVER mode, pgAdmin 4 enforces authentication per route via the @pga_login_required decorator; the application's bef | MEDIUM | 6.9 | 16% | EPSS 16%ile | NVD | 2026-07-31 |
| CVE-2026-15304 | The Plugin Organizer plugin for WordPress is vulnerable to SQL Injection via the 'PO_plugin_path' parameter in versions | MEDIUM | 6.5 | 16% | EPSS 16%ile | NVD | 2026-07-28 |
| CVE-2026-16092 | The Improved Save Button plugin for WordPress is vulnerable to second-order SQL Injection via 'meta_key' Custom Field vi | MEDIUM | 6.5 | 16% | EPSS 16%ile | NVD | 2026-07-30 |
| CVE-2026-48115 | Misskey is an open source, federated social media platform. All Misskey servers running versions 2024.5.0 and later, but | MEDIUM | 6.3 | 16% | EPSS 16%ile | NVD | 2026-08-03 |
| CVE-2026-67303 | FreeRDP before 3.29.0 contains a reachable assertion (WINPR_ASSERT(OutputBufferLength == BytesReturned)) in serial_proce | MEDIUM | 5.3 | 16% | EPSS 16%ile | NVD | 2026-08-01 |
| CVE-2026-38446 | A stored cross-site scripting (XSS) vulnerability exists in osTicket 1.18.3 due to improper sanitization of the thread e | MEDIUM | 6.1 | 16% | EPSS 16%ile | NVD | 2026-08-03 |
| CVE-2026-67353 | guzzlehttp/guzzle versions before 7.15.1 contain a denial of service vulnerability in the CookieJar that accepts unlimit | MEDIUM | 6.9 | 16% | EPSS 16%ile | NVD | 2026-08-01 |
| CVE-2026-10686 | Zephyr's IPv6 forwarding path re-sent routed unicast packets without ever decrementing the IPv6 hop limit. Both routing | MEDIUM | 5.8 | 16% | EPSS 16%ile | NVD | 2026-07-31 |
| CVE-2026-18573 | A flaw was found in the keycloak-services component of Keycloak, which is used for managing authentication and authoriza | MEDIUM | 6.5 | 16% | EPSS 16%ile | NVD | 2026-08-02 |
| CVE-2026-13345 | The Essential Addons for Elementor WordPress plugin before 6.6.10 does not perform authorization, status, or visibility | MEDIUM | 5.3 | 16% | EPSS 16%ile | NVD | 2026-07-30 |
| CVE-2026-44097 | A low-privileged remote attacker with "operator" access can upload arbitrary files via the REST endpoint intended for fi | MEDIUM | 5.3 | 16% | EPSS 16%ile | NVD | 2026-07-30 |
| CVE-2026-67295 | FreeRDP before 3.29.0 fails to properly validate server-supplied RDPDR paths in drive redirection, allowing attackers to | MEDIUM | 5.3 | 16% | EPSS 16%ile | NVD | 2026-08-01 |
| CVE-2026-18266 | Dify AI Workflow oauth_redirect_url Open Redirect Vulnerability. This vulnerability allows remote attackers to disclose | MEDIUM | 5.4 | 16% | EPSS 16%ile | NVD | 2026-07-29 |
| CVE-2026-54706 | OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with frien | MEDIUM | 4.8 | 16% | EPSS 16%ile | NVD | 2026-07-31 |
| CVE-2026-17730 | Side-channel information leakage in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who convi | MEDIUM | 4.3 | 16% | EPSS 16%ile | NVD | 2026-07-30 |
| CVE-2026-17760 | Side-channel information leakage in NoStatePrefetch in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to | MEDIUM | 4.3 | 16% | EPSS 16%ile | NVD | 2026-07-30 |
| CVE-2026-18736 | Shlink contains a server-side request forgery vulnerability that allows authenticated API key holders to cause the serve | MEDIUM | 5.3 | 16% | EPSS 16%ile | NVD | 2026-08-03 |
| CVE-2026-8791 | The Booking System Trafft plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `bookingWebsiteUrl` | MEDIUM | 6.4 | 15% | EPSS 15%ile | NVD | 2026-07-29 |
| CVE-2026-16685 | The Download Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'icon' Shortcode Attribute in | MEDIUM | 6.4 | 15% | EPSS 15%ile | NVD | 2026-08-01 |
| CVE-2025-36374 | IBM DataPower Gateway is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A privile | MEDIUM | 5.5 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-33385 | A Blind SQL injection vulnerability has been identified in Quick.CMS. Improper neutralization of input provided by a hig | MEDIUM | 5.1 | 15% | EPSS 15%ile | NVD | 2026-07-29 |
| CVE-2026-4912 | The Media Cleaner: Clean your WordPress! plugin for WordPress is vulnerable to Server-Side Request Forgery in all versio | MEDIUM | 4.1 | 15% | EPSS 15%ile | NVD | 2026-07-28 |
| CVE-2026-66313 | Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering locally. | MEDIUM | 6.8 | 15% | EPSS 15%ile | NVD | 2026-08-04 |
| CVE-2026-17840 | Incorrect security UI in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform domain s | MEDIUM | 6.5 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-3093 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.0 before 19.0.5, 19.1 before 19.1.3, and 1 | MEDIUM | 4.7 | 15% | EPSS 15%ile | NVD | 2026-07-29 |
| CVE-2026-17850 | Inappropriate implementation in Permissions in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass | MEDIUM | 6.5 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-17852 | Inappropriate implementation in Media Router in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass | MEDIUM | 6.5 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-64607 | HttpClient based on the classic i/o model fails to correctly release the underlying connection back to the connection ma | MEDIUM | 5.3 | 15% | EPSS 15%ile | NVD | 2026-07-31 |
| CVE-2026-17693 | Insufficient policy enforcement in FileSystem in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak | MEDIUM | 4.3 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-17934 | Insufficient validation of untrusted input in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-18571 | A flaw was found in the user creation component of Keycloak when Fine-Grained Admin Permissions V2 (FGAP V2) is enabled. | MEDIUM | 6.6 | 15% | EPSS 15%ile | NVD | 2026-08-02 |
| CVE-2026-17824 | Insufficient policy enforcement in ServiceWorker in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to by | MEDIUM | 6.5 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-17873 | Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attack | MEDIUM | 6.5 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-17975 | Inappropriate implementation in IME in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker to obtain p | MEDIUM | 6.5 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-67529 | OpenProject is open-source, web-based project management software. Prior to 17.6.0, GET /api/v3/time_entries and GET /ap | MEDIUM | 4.3 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-44103 | An unauthenticated remote attacker can inject malicious firmware into the internal charging module because the JupiCore | MEDIUM | 6.9 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-13605 | The PhotoSwipe WordPress plugin through 4.1.1.1 uses the title attribute of author-supplied link markup as a lightbox ca | MEDIUM | 6.8 | 15% | EPSS 15%ile | NVD | 2026-07-29 |
| CVE-2026-14833 | The Lightbox with PhotoSwipe WordPress plugin before 5.9.0 does not sanitise or escape a link data attribute before rend | MEDIUM | 6.8 | 15% | EPSS 15%ile | NVD | 2026-07-31 |
| CVE-2026-57511 | SuperPlane before 0.30.0 contains an SMTP header injection vulnerability that allows unauthenticated attackers to inject | MEDIUM | 6.3 | 15% | EPSS 15%ile | NVD | 2026-07-28 |
| CVE-2026-17771 | Uninitialized Use in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data vi | MEDIUM | 4.3 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-17785 | Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data v | MEDIUM | 4.3 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-15662 | The Advanced Woo Labels – Product Labels & Badges for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Sit | MEDIUM | 6.4 | 14% | EPSS 14%ile | NVD | 2026-08-01 |
| CVE-2026-4604 | The Klubraum Membership Request plugin for WordPress is vulnerable to unauthorized modification of data due to a missing | MEDIUM | 5.3 | 14% | EPSS 14%ile | NVD | 2026-07-29 |
| CVE-2026-17791 | Insufficient validation of untrusted input in Payments in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 6.5 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-17792 | Inappropriate implementation in Credential Management in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 6.5 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-41186 | When Calico's shared debug server is enabled (disabled by default), the Calico kube-controllers and Goldmane components | MEDIUM | 6.0 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-17858 | Uninitialized Use in WebNN in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker to leak cross-or | MEDIUM | 4.3 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-17889 | Uninitialized Use in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data v | MEDIUM | 4.3 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-67217 | cJSON through 1.7.19 applies RFC 6902 JSON Patch operations non-atomically in apply_patch() in cJSON_Utils.c. For a repl | MEDIUM | 6.9 | 14% | EPSS 14%ile | NVD | 2026-07-29 |
| CVE-2026-67339 | guzzlehttp/guzzle versions before 7.14.2 fail to properly isolate Proxy-Authorization headers from origin servers in cUR | MEDIUM | 6.9 | 14% | EPSS 14%ile | NVD | 2026-08-01 |
| CVE-2026-66063 | goshs is a feature-rich single-binary file server for red teamers and developers. Prior to 2.1.5, the httpserver/updown. | MEDIUM | 6.5 | 14% | EPSS 14%ile | NVD | 2026-07-28 |
| CVE-2026-17166 | The Event Booking Manager for WooCommerce – Sell Tickets, Event Registration, RSVP & Event Calendar plugin for WordPress | MEDIUM | 4.3 | 14% | EPSS 14%ile | NVD | 2026-07-29 |
| CVE-2026-60011 | Sharp and Toshiba Tec MFPs (multifunction printers) fail to properly authorize requests to directly access certain image | MEDIUM | 6.9 | 14% | EPSS 14%ile | NVD | 2026-08-03 |
| CVE-2026-17350 | The per-tool permission system (custom roles / role-based tool permissions, introduced in pgAdmin 4 9.3) did not enforce | MEDIUM | 5.3 | 14% | EPSS 14%ile | NVD | 2026-07-31 |
| CVE-2025-14073 | The WooCommerce PayPal Payments plugin for WordPress is vulnerable to Sensitive Information Disclosure due to an Insecur | MEDIUM | 5.3 | 14% | EPSS 14%ile | NVD | 2026-08-01 |
| CVE-2026-54082 | veraPDF validation model is an implementation of the veraPDF validation model. From 1.25.73 until 1.30.2 and 1.31.71, ve | MEDIUM | 6.5 | 14% | EPSS 14%ile | NVD | 2026-07-29 |
| CVE-2026-14554 | The Check & Log Email WordPress plugin before 2.0.15 does not properly sanitize and escape parameters before using them | MEDIUM | 6.5 | 14% | EPSS 14%ile | NVD | 2026-07-31 |
| CVE-2026-14305 | The WP Delicious WordPress plugin before 1.10.2 does not perform an authorization check on one of its AJAX actions, all | MEDIUM | 5.3 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-17794 | Insufficient validation of untrusted input in Mobile in Google Chrome on Android prior to 151.0.7922.72 allowed a remote | MEDIUM | 4.3 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-17938 | Inappropriate implementation in FullScreen in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-17941 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 14% | EPSS 14%ile | NVD | 2026-07-30 |
| CVE-2026-54707 | OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with frien | MEDIUM | 5.4 | 14% | EPSS 14%ile | NVD | 2026-07-31 |
| CVE-2026-18584 | A security vulnerability has been detected in GL.iNet E5800, E750, X2000, X3000, XE3000 and XE300 up to 20260707. Impact | MEDIUM | 5.3 | 14% | EPSS 14%ile | NVD | 2026-08-03 |
| CVE-2026-16297 | The Clearfy Cache WordPress plugin before 2.4.3 does not restrict the classes allowed when unserializing settings-impor | MEDIUM | 4.1 | 14% | EPSS 14%ile | NVD | 2026-08-03 |
| CVE-2026-14643 | undici's cache interceptor mishandles optional whitespace placed around the equals sign of a qualified no-cache or priva | MEDIUM | 5.9 | 14% | EPSS 14%ile | NVD | 2026-07-29 |
| CVE-2026-13309 | Autel MaxiCharger AC Elite Home NFC Stack-based Buffer Overflow Arbitrary Code Execution Vulnerability. This vulnerabili | MEDIUM | 6.8 | 14% | EPSS 14%ile | NVD | 2026-07-29 |
| CVE-2026-18436 | The MailPress plugin for WordPress is vulnerable to unauthorized access in versions up to, and including, 1.5.0 via the | MEDIUM | 5.3 | 14% | EPSS 14%ile | NVD | 2026-07-31 |
| CVE-2026-50569 | Fission: HTTPTrigger admission omits RelativeURL / Prefix validation; kubectl apply bypasses CLI checks | MEDIUM | 4.3 | 14% | EPSS 14%ile | GitHub | 2026-07-28 |
| CVE-2026-15382 | The Ultimate Addons for WPBakery Page Builder WordPress plugin before 3.21.4 does not perform a capability or nonce chec | MEDIUM | 6.5 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-17849 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-16581 | In igloohome Smart Lock Mobile App versions 3.2.3 and prior, an Inclusion of Sensitive Information in Source Code vulner | MEDIUM | 6.9 | 13% | EPSS 13%ile | NVD | 2026-07-28 |
| CVE-2026-17805 | Insufficient policy enforcement in Glic in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to | MEDIUM | 6.5 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-17813 | Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attack | MEDIUM | 6.5 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-17921 | Insufficient validation of untrusted input in Navigation in Google Chrome prior to 151.0.7922.72 allowed a remote attack | MEDIUM | 6.5 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-17926 | Insufficient validation of untrusted input in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 6.5 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-17931 | Inappropriate implementation in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass nav | MEDIUM | 6.5 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-17953 | Insufficient policy enforcement in WebView in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 6.5 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-17779 | Inappropriate implementation in Site Isolation in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypa | MEDIUM | 5.4 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-69092 | Admidio versions before 5.0.11 contain a reflected cross-site scripting vulnerability in the SSO/SAML endpoint that echo | MEDIUM | 6.9 | 13% | EPSS 13%ile | NVD | 2026-08-03 |
| CVE-2026-52371 | A Server-Side Request Forgery (SSRF) in the xxl-job-admin/jobinfo/trigger component of xxl-job v3.4.0 allows authenticat | MEDIUM | 6.5 | 13% | EPSS 13%ile | NVD | 2026-07-31 |
| CVE-2026-54704 | OpenTelemetry Java Instrumentation: JDBC Auto-Instrumentation Logging Clear-Text Passwords | MEDIUM | 6.5 | 13% | EPSS 13%ile | GitHub | 2026-07-29 |
| CVE-2026-49447 | Cosmos provides users the ability self-host a home server by acting as a secure gateway to your application, as well as | MEDIUM | 5.3 | 13% | EPSS 13%ile | NVD | 2026-07-28 |
| CVE-2026-14226 | The Easy Appointments WordPress plugin through 3.12.26 does not require a sufficient capability on one of its appointmen | MEDIUM | 4.3 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-14231 | The LifterLMS WordPress plugin before 10.0.10 does not perform a capability check in one of its select2 query AJAX hand | MEDIUM | 4.3 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-15235 | The MotoPress Hotel Booking WordPress plugin before 6.0.4 does not perform a capability check before returning a booking | MEDIUM | 4.3 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-14227 | An API session‑management flaw in products with the MikroTik RouterOS API enabled are vulnerable to a Insufficient Sessi | MEDIUM | 6.9 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-18208 | A flaw was found in the OIDC token introspection endpoint of the keycloak-services component. Keycloak is an open-source | MEDIUM | 6.5 | 13% | EPSS 13%ile | NVD | 2026-07-31 |
| CVE-2026-58156 | Apache Traffic Server mis-parses ports in URLs and userinfo, allowing port-based access-control bypass. This issue affe | MEDIUM | 6.3 | 13% | EPSS 13%ile | NVD | 2026-07-29 |
| CVE-2026-15831 | GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.3 and 19.2 before 19.2.1 that u | MEDIUM | 4.3 | 13% | EPSS 13%ile | NVD | 2026-07-29 |
| CVE-2026-5060 | The MasterStudy LMS WordPress Plugin – for Online Courses and Education plugin for WordPress is vulnerable to Insecure D | MEDIUM | 6.5 | 13% | EPSS 13%ile | NVD | 2026-07-29 |
| CVE-2026-53466 | ImageMagick: Heap Buffer Over-Read in XCF decoder due to integer conversion overflow | MEDIUM | 6.5 | 13% | EPSS 13%ile | GitHub | 2026-07-31 |
| CVE-2026-11782 | The Points and Rewards for WooCommerce WordPress plugin before 2.10.1 does not have authorisation checks in place on a w | MEDIUM | 5.9 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-13143 | The WP Travel WordPress plugin before 11.8.1 does not verify PayPal Instant Payment Notifications through the PayPal po | MEDIUM | 5.3 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-14317 | The GiveWP WordPress plugin before 4.16.3 does not restrict the set of available payment gateways to those enabled by t | MEDIUM | 5.3 | 13% | EPSS 13%ile | NVD | 2026-07-31 |
| CVE-2026-12966 | The Direct Payments for WooCommerce WordPress plugin before 2.5.3 does not verify that the requester owns the targeted | MEDIUM | 5.3 | 13% | EPSS 13%ile | NVD | 2026-08-01 |
| CVE-2026-17914 | Side-channel information leakage in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain pot | MEDIUM | 5.3 | 13% | EPSS 13%ile | NVD | 2026-07-30 |
| CVE-2026-68562 | A flaw was found in ansible-collection-redhat-leapp. An attacker with privileged write access to a managed node's Leapp | MEDIUM | 6.2 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-3157 | IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM | MEDIUM | 4.3 | 12% | EPSS 12%ile | NVD | 2026-07-28 |
| CVE-2026-17949 | Uninitialized Use in GPU in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to leak cross-orig | MEDIUM | 4.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17819 | Inappropriate implementation in WebAppInstalls in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perf | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17828 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17835 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17838 | Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to perf | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17839 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-14928 | The JS Help Desk WordPress plugin before 3.1.4 does not perform authorization or ownership checks before returning supp | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-31 |
| CVE-2026-14931 | The JS Help Desk WordPress plugin before 3.1.4 grants a support-agent capability to the Contributor role on activation | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-31 |
| CVE-2026-2916 | The Jeg Kit for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, an | MEDIUM | 4.3 | 12% | EPSS 12%ile | NVD | 2026-08-01 |
| CVE-2026-17825 | Insufficient policy enforcement in Passwords in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacke | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17917 | Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attack | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2025-51684 | CleverTap Web SDK v1.15.1 is vulnerable to Cross Site Scripting (XSS). The application does not sanitize untrusted data | MEDIUM | 6.1 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-66316 | Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a ne | MEDIUM | 5.4 | 12% | EPSS 12%ile | NVD | 2026-08-04 |
| CVE-2026-66317 | Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering over a n | MEDIUM | 5.4 | 12% | EPSS 12%ile | NVD | 2026-08-04 |
| CVE-2026-63238 | An authentication bypass vulnerability in Koollab LMS allowed an unauthenticated attacker to take over any account, incl | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-29 |
| CVE-2026-17985 | Insufficient policy enforcement in Speech in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass si | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17988 | Insufficient validation of untrusted input in Navigation in Google Chrome prior to 151.0.7922.72 allowed a remote attack | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17767 | Insufficient validation of untrusted input in WebView in Google Chrome on Android prior to 151.0.7922.72 allowed a remot | MEDIUM | 4.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17769 | Insufficient validation of untrusted input in Cast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to | MEDIUM | 4.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17772 | Out of bounds read in WebGL in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform an out of bound | MEDIUM | 4.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17773 | Insufficient validation of untrusted input in Cast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to | MEDIUM | 4.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17795 | Inappropriate implementation in GetUserMedia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had c | MEDIUM | 4.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17747 | Insufficient validation of untrusted input in Payments in Google Chrome on Android prior to 151.0.7922.72 allowed a remo | MEDIUM | 4.2 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-14539 | An allocation of resources without limits vulnerability in the HTTP handler component of Google mcp-toolbox versions up | MEDIUM | 6.6 | 12% | EPSS 12%ile | NVD | 2026-07-31 |
| CVE-2026-17789 | Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a re | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-18344 | The Wp Responsive Thumbnail Slider plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'id' par | MEDIUM | 6.1 | 12% | EPSS 12%ile | NVD | 2026-08-01 |
| CVE-2026-64870 | MaxKB is an open-source AI assistant for enterprise. In versions 2.0.0 through 2.10.4-lts, UpdateStoreTool.update_tool p | MEDIUM | 5.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-67352 | luci-app-https-dns-proxy contains a stored cross-site scripting vulnerability in the resolver_url parameter that allows | MEDIUM | 6.8 | 12% | EPSS 12%ile | NVD | 2026-08-01 |
| CVE-2026-17909 | Insufficient validation of untrusted input in Isolated Web Apps in Google Chrome prior to 151.0.7922.72 allowed a remote | MEDIUM | 5.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-68930 | Russh is a Rust SSH client & server library. Prior to 0.62.5, russh dispatches channel-scoped Handler callbacks for reci | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-08-03 |
| CVE-2026-17879 | Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross | MEDIUM | 4.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17880 | Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross | MEDIUM | 4.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2025-15627 | A cryptographic weakness exists in the Omada adoption protocol. The protocol relies on hard-coded cryptographic keys to | MEDIUM | 6.9 | 12% | EPSS 12%ile | NVD | 2026-08-03 |
| CVE-2026-11867 | The Frontend Admin by DynamiApps WordPress plugin before 3.29.7 does not perform capability checks on its taxonomy term | MEDIUM | 6.5 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-12938 | The Newsletters Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'target' attribute of the | MEDIUM | 6.4 | 12% | EPSS 12%ile | NVD | 2026-07-29 |
| CVE-2026-12939 | The Newsletters Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'link' attribute of the p | MEDIUM | 6.4 | 12% | EPSS 12%ile | NVD | 2026-07-29 |
| CVE-2026-15250 | The Appointment Booking Plugin WordPress plugin before 5.6.8 does not restrict which booking fields an unauthenticated | MEDIUM | 5.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17978 | Side-channel information leakage in WebCodecs in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtai | MEDIUM | 5.3 | 12% | EPSS 12%ile | NVD | 2026-07-30 |
| CVE-2026-17571 | The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin for WordPress is vulne | MEDIUM | 6.1 | 11% | EPSS 11%ile | NVD | 2026-08-01 |
| CVE-2026-17874 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 5.4 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-67528 | OpenProject is open-source, web-based project management software. Prior to 17.6.0, GET /api/v3/custom_options/:id resol | MEDIUM | 4.3 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-44102 | An unauthenticated remote attacker can trigger a firmware update download via the OCPP backend by supplying an invalid f | MEDIUM | 6.9 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-14592 | The WP Real IP-based Access Control WordPress plugin through 1.3.1 does not perform any capability or nonce checks befor | MEDIUM | 6.1 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-22068 | Regular Expression without Anchors vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: fr | MEDIUM | 6.9 | 11% | EPSS 11%ile | NVD | 2026-07-29 |
| CVE-2026-17986 | Insufficient policy enforcement in Bluetooth in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had c | MEDIUM | 6.5 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-15974 | SGLang contains an SSRF and local file read in the multimodal generation endpoint /v1/chat/completions due to unsanitize | MEDIUM | 6.5 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-54705 | MathLive provides web components for math display and input. Prior to 0.110.0, MathLive fails to escape text-mode conten | MEDIUM | 6.3 | 11% | EPSS 11%ile | NVD | 2026-07-29 |
| CVE-2026-65975 | Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. In versions 1.88.0 u | MEDIUM | 6.5 | 11% | EPSS 11%ile | NVD | 2026-07-29 |
| CVE-2026-17923 | Policy bypass in Enterprise in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass navigation restr | MEDIUM | 6.5 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-17929 | Insufficient validation of untrusted input in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 6.5 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-15227 | Missing authorization in Checkmk <2.5.0p10, <2.4.0p35, <2.3.0p49, and 2.2.0 (EOL) allows an authenticated user lacking t | MEDIUM | 5.3 | 11% | EPSS 11%ile | NVD | 2026-07-31 |
| CVE-2026-7623 | The SureForms – Contact Form, Payment Form & Other Custom Form Builder plugin for WordPress is vulnerable to Stored Cros | MEDIUM | 6.4 | 11% | EPSS 11%ile | NVD | 2026-08-01 |
| CVE-2026-15644 | The Powerkit – Supercharge your WordPress Site plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'st | MEDIUM | 6.4 | 11% | EPSS 11%ile | NVD | 2026-08-01 |
| CVE-2026-15645 | The Powerkit – Supercharge your WordPress Site plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'na | MEDIUM | 6.4 | 11% | EPSS 11%ile | NVD | 2026-08-01 |
| CVE-2026-18062 | The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to Stored Cross-Site S | MEDIUM | 6.4 | 11% | EPSS 11%ile | NVD | 2026-08-01 |
| CVE-2026-11351 | The ShinyStat Analytics WordPress plugin before 1.0.17 does not perform any authorization check on one of its REST API e | MEDIUM | 5.3 | 11% | EPSS 11%ile | NVD | 2026-07-29 |
| CVE-2026-66489 | Joomla Extension - balbooa.com - Various unauthenticated file system disclosure in Gridbox < 2.20.2 | MEDIUM | 5.3 | 11% | EPSS 11%ile | NVD | 2026-07-29 |
| CVE-2026-17662 | Insufficient policy enforcement in Prefetch in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cr | MEDIUM | 4.3 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-14223 | The Easy Appointments WordPress plugin through 3.12.26 does not verify ownership or capability when returning stored cus | MEDIUM | 4.3 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-66488 | Joomla Extension - balbooa.com - Payment bypass in Gridbox < 2.20.2 | MEDIUM | 5.3 | 11% | EPSS 11%ile | NVD | 2026-07-29 |
| CVE-2026-17782 | Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to spoo | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-18203 | A flaw was found in the group policy evaluation logic of Keycloak, an identity and access management solution. When a gr | MEDIUM | 6.5 | 10% | EPSS 10%ile | NVD | 2026-07-31 |
| CVE-2026-18572 | Keycloak provides authorization services that allow administrators to restrict access to resources based on time policie | MEDIUM | 6.5 | 10% | EPSS 10%ile | NVD | 2026-08-02 |
| CVE-2026-13362 | The SendPulse Email Marketing Newsletter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via _sp_form_ | MEDIUM | 6.4 | 10% | EPSS 10%ile | NVD | 2026-08-01 |
| CVE-2026-14538 | An improper authorization and security-boundary bypass vulnerability in the bigquery-execute-sql tool component of Googl | MEDIUM | 5.7 | 10% | EPSS 10%ile | NVD | 2026-07-31 |
| CVE-2026-15255 | The RegistrationMagic WordPress plugin before 6.0.9.4 does not properly validate that a one-time password presented in | MEDIUM | 5.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-15649 | The Powerkit – Supercharge your WordPress Site plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Sho | MEDIUM | 6.4 | 10% | EPSS 10%ile | NVD | 2026-08-01 |
| CVE-2026-16091 | The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is | MEDIUM | 6.4 | 10% | EPSS 10%ile | NVD | 2026-08-01 |
| CVE-2026-17731 | Inappropriate implementation in Autofill in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17733 | Inappropriate implementation in QUIC in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to lea | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17742 | Insufficient policy enforcement in Payments in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cr | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17753 | Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17763 | Inappropriate implementation in GPU in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromise | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17765 | Inappropriate implementation in WebProtect in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had com | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17815 | Insufficient policy enforcement in GuestView in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak c | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17820 | Insufficient policy enforcement in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cr | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17829 | Insufficient policy enforcement in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak c | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17928 | Inappropriate implementation in DataTransfer in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak c | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17942 | Side-channel information leakage in SVG in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross- | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-69090 | Admidio before 5.0.11 fails to validate target organization membership in role handlers, allowing authenticated role adm | MEDIUM | 6.9 | 10% | EPSS 10%ile | NVD | 2026-08-03 |
| CVE-2026-13113 | GitLab has remediated an issue in GitLab EE affecting all versions from 17.0 before 19.0.5, 19.1 before 19.1.3, and 19.2 | MEDIUM | 6.5 | 10% | EPSS 10%ile | NVD | 2026-07-29 |
| CVE-2026-15657 | A vulnerability in the foreUP customer REST API allows any authenticated user to read cleartext payment-processor mercha | MEDIUM | 6.5 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-15209 | The JS Help Desk WordPress plugin before 3.1.5 does not verify that the requesting user owns the ticket being loaded: a | MEDIUM | 6.5 | 10% | EPSS 10%ile | NVD | 2026-07-31 |
| CVE-2026-15254 | The Simply Schedule Appointments WordPress plugin before 1.6.12.11 does not perform a capability check on an administrat | MEDIUM | 6.5 | 10% | EPSS 10%ile | NVD | 2026-08-03 |
| CVE-2026-16563 | The Academy LMS WordPress plugin before 3.8.3 does not verify course enrollment or lesson publication status when return | MEDIUM | 6.5 | 10% | EPSS 10%ile | NVD | 2026-08-03 |
| CVE-2026-16105 | A flaw was found in the RoleContainerResource component of Keycloak. The issue occurs because certain name-based endpoin | MEDIUM | 4.9 | 10% | EPSS 10%ile | NVD | 2026-07-31 |
| CVE-2026-5626 | The Survey Form Block plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability chec | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-29 |
| CVE-2026-18214 | Keycloak allows users to log in using Google accounts and can be configured to only allow users from specific Google Wor | MEDIUM | 6.8 | 10% | EPSS 10%ile | NVD | 2026-07-31 |
| CVE-2026-67334 | better-auth versions before 1.6.11 fail to delete cached sessions when removing users via admin, anonymous, or SCIM endp | MEDIUM | 5.1 | 10% | EPSS 10%ile | NVD | 2026-08-01 |
| CVE-2026-63118 | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Tran | MEDIUM | 6.9 | 10% | EPSS 10%ile | NVD | 2026-07-29 |
| CVE-2026-17799 | Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 151.0.7922.72 allowed a remote att | MEDIUM | 5.4 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17812 | Inappropriate implementation in DigitalCredentials in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to | MEDIUM | 5.4 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17915 | Inappropriate implementation in WebView in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to | MEDIUM | 5.4 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-54249 | Pydantic AI is a Python agent framework for building Generative AI applications. In versions 1.65.0 through 1.105.0, and | MEDIUM | 6.8 | 10% | EPSS 10%ile | NVD | 2026-07-29 |
| CVE-2026-18001 | Inappropriate implementation in WebGL in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain potent | MEDIUM | 6.5 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-18005 | Inappropriate implementation in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain potent | MEDIUM | 6.5 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-64685 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1. | MEDIUM | 5.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-43833 | Full details and mitigation steps are currently restricted and will be published at a later date. | MEDIUM | 5.3 | 10% | EPSS 10%ile | NVD | 2026-07-31 |
| CVE-2026-66414 | Leantime 3.6.2 contains an open redirect vulnerability in the Login controller that allows unauthenticated attackers to | MEDIUM | 5.1 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17937 | Insufficient validation of untrusted input in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17943 | Inappropriate implementation in Parser in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass conte | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-17960 | Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attack | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-13145 | The WP Travel WordPress plugin before 11.8.1 does not verify that the booking requested on its customer account dashboa | MEDIUM | 4.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-65891 | Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function | MEDIUM | 6.5 | 10% | EPSS 10%ile | NVD | 2026-07-29 |
| CVE-2026-1982 | The Persian Elementor (المنتور فارسی) plugin for WordPress is vulnerable to Price Manipulation in all versions up to, an | MEDIUM | 5.3 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-62845 | Kamaji is the Hosted Control Plane Manager for Kubernetes. Prior to 26.7.4-edge, the PostgreSQL and MySQL datastore driv | MEDIUM | 4.7 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-68585 | SiYuan versions before v3.7.3 contain a metadata disclosure vulnerability in the /api/block/getBlockInfo endpoint that r | MEDIUM | 6.9 | 9% | EPSS 9%ile | NVD | 2026-08-03 |
| CVE-2026-17780 | Inappropriate implementation in Isolated Web Apps in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to b | MEDIUM | 6.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-50735 | pglogical's apply worker does not sufficiently validate the length of certain fields in incoming replication protocol me | MEDIUM | 6.1 | 9% | EPSS 9%ile | NVD | 2026-07-28 |
| CVE-2026-18369 | A flaw was found in Dogtag PKI's ACME responder where the HTTP-01 challenge validator accepts IP address literals as dns | MEDIUM | 5.8 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17842 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 6.5 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17846 | Inappropriate implementation in Media in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker who h | MEDIUM | 6.5 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17854 | Insufficient policy enforcement in WebMCP in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass sa | MEDIUM | 6.5 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17883 | Inappropriate implementation in Headless in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass sam | MEDIUM | 6.5 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-61526 | AdonisJS HTTP Server is a package for handling HTTP requests in the AdonisJS framework. In versions 8.0.0-next.0 through | MEDIUM | 6.1 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-48058 | nebula-mesh is a self-hosted control plane for Slack Nebula mesh virtual private network. Prior to version 0.3.2, intern | MEDIUM | 4.6 | 9% | EPSS 9%ile | NVD | 2026-07-28 |
| CVE-2026-17907 | Side-channel information leakage in Network in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cr | MEDIUM | 4.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-15735 | The Contact Form to Any API plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'cf7anyapi_form_field' | MEDIUM | 6.4 | 9% | EPSS 9%ile | NVD | 2026-07-29 |
| CVE-2026-17161 | The WowStore – Store Builder & Product Blocks for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Sc | MEDIUM | 6.4 | 9% | EPSS 9%ile | NVD | 2026-07-29 |
| CVE-2026-17162 | The WowStore – Store Builder & Product Blocks for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Sc | MEDIUM | 6.4 | 9% | EPSS 9%ile | NVD | 2026-07-29 |
| CVE-2026-7436 | The WPC Badge Management for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'text | MEDIUM | 6.4 | 9% | EPSS 9%ile | NVD | 2026-07-29 |
| CVE-2026-15950 | The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress | MEDIUM | 6.4 | 9% | EPSS 9%ile | NVD | 2026-08-01 |
| CVE-2026-16090 | The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is | MEDIUM | 6.4 | 9% | EPSS 9%ile | NVD | 2026-08-01 |
| CVE-2026-16684 | The Easy Property Listings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'facebook' User Contact | MEDIUM | 6.4 | 9% | EPSS 9%ile | NVD | 2026-08-01 |
| CVE-2026-18435 | The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to Stored Cross-Site S | MEDIUM | 6.4 | 9% | EPSS 9%ile | NVD | 2026-08-01 |
| CVE-2026-18174 | @fastify/forwarded resolves client addresses from the X-Forwarded-For header. In versions before 3.0.2, when the header | MEDIUM | 5.3 | 9% | EPSS 9%ile | NVD | 2026-07-29 |
| CVE-2026-65835 | Capsule is a multi-tenancy and policy-based framework for Kubernetes. From 0.13.0 until 0.13.8, after the incomplete CVE | MEDIUM | 6.6 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-14207 | The LifterLMS WordPress plugin before 10.0.10 does not strip event-handler attributes from a course pricing field befor | MEDIUM | 6.1 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17736 | Insufficient validation of untrusted input in WebView in Google Chrome on Android prior to 151.0.7922.72 allowed a remot | MEDIUM | 5.8 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-64635 | Improper handling of the returnUrl parameter in the Forgot Password function of Veeam Service Provider Console allows an | MEDIUM | 5.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17945 | Insufficient validation of untrusted input in Navigation in Google Chrome prior to 151.0.7922.72 allowed a remote attack | MEDIUM | 4.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17955 | Insufficient validation of untrusted input in Payments in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17958 | Inappropriate implementation in Views in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform UI sp | MEDIUM | 4.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17964 | Incorrect security UI in UI in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to perform doma | MEDIUM | 4.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17965 | Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to perf | MEDIUM | 4.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17972 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-18211 | A flaw was found in the secure-client-uris client policy executor within Keycloak core services. This component is respo | MEDIUM | 4.2 | 9% | EPSS 9%ile | NVD | 2026-07-31 |
| CVE-2026-58045 | A flaw in Node.js allows a spoofed `TypedArray` `byteLength` to trigger a reachable assertion in the synchronous `node:z | MEDIUM | 6.2 | 9% | EPSS 9%ile | NVD | 2026-08-04 |
| CVE-2026-15257 | The RegistrationMagic WordPress plugin before 6.0.9.4 does not perform authorization, ownership or nonce checks on a fr | MEDIUM | 5.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17912 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17944 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-17961 | Inappropriate implementation in Session in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to | MEDIUM | 4.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2025-15630 | A race condition exists in the cloud-based Omada device adoption process when an attacker may be able to interact with t | MEDIUM | 5.8 | 9% | EPSS 9%ile | NVD | 2026-08-03 |
| CVE-2026-17982 | Insufficient validation of untrusted input in Cast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to | MEDIUM | 4.3 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-18215 | Keycloak provides a way to let users log in using Microsoft accounts while restricting access to a specific organization | MEDIUM | 6.8 | 9% | EPSS 9%ile | NVD | 2026-07-31 |
| CVE-2026-17882 | Policy bypass in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install | MEDIUM | 6.5 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-11870 | The WP Ghost (Hide My WP Ghost) WordPress plugin before 7.0.05 does not verify that client IP information comes from a | MEDIUM | 5.4 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-18003 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-17743 | Insufficient policy enforcement in ControlledFrame in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to | MEDIUM | 6.5 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-17748 | Inappropriate implementation in Extensions in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had com | MEDIUM | 6.5 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-17754 | Inappropriate implementation in Blink in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass same o | MEDIUM | 6.5 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-17787 | Inappropriate implementation in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass sam | MEDIUM | 6.5 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-11391 | Tanium addressed a SQL injection vulnerability in Patch. | MEDIUM | 6.3 | 8% | EPSS 8%ile | NVD | 2026-07-28 |
| CVE-2025-62347 | HCL iControl was affected by Improper Input Validation vulnerability. It is vulnerable to unexpected system behavior and | MEDIUM | 4.3 | 8% | EPSS 8%ile | NVD | 2026-07-31 |
| CVE-2026-69248 | cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 49.0.0, | MEDIUM | 6.9 | 8% | EPSS 8%ile | NVD | 2026-08-03 |
| CVE-2026-17797 | Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to inject arbitrar | MEDIUM | 6.1 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-17728 | Inappropriate implementation in Extensions in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to inject a | MEDIUM | 5.4 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-17734 | Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to inject arb | MEDIUM | 5.4 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-13306 | Autel MaxiCharger AC Elite Home USB Authentication Bypass Vulnerability. This vulnerability allows physically present at | MEDIUM | 4.3 | 8% | EPSS 8%ile | NVD | 2026-07-29 |
| CVE-2026-17983 | Inappropriate implementation in Global Media Controls in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-18243 | Certain HP DesignJet products may be potentially vulnerable to cross-site scripting (XSS), which may allow unauthenticat | MEDIUM | 6.9 | 8% | EPSS 8%ile | NVD | 2026-08-03 |
| CVE-2026-17845 | Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to inject arbitrar | MEDIUM | 6.1 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-13692 | The PayU CommercePro Plugin WordPress plugin through 3.8.9 does not verify the payment-gateway signature before applying | MEDIUM | 5.3 | 8% | EPSS 8%ile | NVD | 2026-07-29 |
| CVE-2026-14843 | The Events Made Easy WordPress plugin before 3.1.4 does not verify that the requester is authorized to modify the target | MEDIUM | 5.3 | 8% | EPSS 8%ile | NVD | 2026-07-31 |
| CVE-2026-67310 | OpenRemote (org.openremote:openremote) versions <= 1.26.2 contain an insecure direct object reference vulnerability in t | MEDIUM | 5.3 | 8% | EPSS 8%ile | NVD | 2026-08-01 |
| CVE-2026-16970 | The IRIS web application in version 2.4.26 and possibly others contains a logout functionality which is ineffective. Sto | MEDIUM | 4.2 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-56758 | The ACSE layer contains a flaw in the processing of AARQ PDUs during MMS connection establishment. When parsing certain | MEDIUM | 6.9 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-66349 | The MMS server connection handler contains a flaw in its processing of BER-encoded request data. When an MMS confirmed | MEDIUM | 6.9 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-20482 | In wlan STA FW, there is a possible system becoming unresponsive due to logging. This could lead to remote (proximal/adj | MEDIUM | 6.5 | 8% | EPSS 8%ile | NVD | 2026-08-03 |
| CVE-2026-54663 | swagger-typescript-api generates API clients for Fetch or Axios from OpenAPI specifications. Prior to 13.12.2, src/resol | MEDIUM | 6.1 | 8% | EPSS 8%ile | NVD | 2026-07-29 |
| CVE-2026-11881 | The Fluent Forms WordPress plugin before 6.2.6 does not sanitise and escape one of its form field configuration setting | MEDIUM | 6.1 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-13330 | The Animation Addons for Elementor WordPress plugin before 2.7.0 does not sanitise uploaded SVG/SVGZ files, which it ad | MEDIUM | 6.1 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-14841 | The King Addons for Elementor WordPress plugin before 51.1.76 does not escape a user-supplied grid setting before refle | MEDIUM | 6.1 | 8% | EPSS 8%ile | NVD | 2026-08-02 |
| CVE-2026-13340 | The SVG Support WordPress plugin before 2.5.17 does not apply its SVG sanitisation to uploaded files using the .svgz ext | MEDIUM | 6.1 | 8% | EPSS 8%ile | NVD | 2026-08-03 |
| CVE-2026-17901 | Insufficient validation of untrusted input in Sharing in Google Chrome on Android prior to 151.0.7922.72 allowed a remot | MEDIUM | 4.3 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-17994 | Inappropriate implementation in Media in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to by | MEDIUM | 4.3 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-3158 | IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM | MEDIUM | 4.3 | 8% | EPSS 8%ile | NVD | 2026-07-28 |
| CVE-2026-17745 | Out of bounds read in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the ren | MEDIUM | 5.8 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-17746 | Use after free in GPU in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised the r | MEDIUM | 5.8 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-62324 | Jodit Editor is a WYSIWYG editor with a built-in file browser & image editor. Prior to 4.12.31, Jodit's sanitizeHTMLElem | MEDIUM | 5.4 | 8% | EPSS 8%ile | NVD | 2026-07-31 |
| CVE-2026-17737 | Use after free in Bluetooth in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had comprom | MEDIUM | 5.0 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-17781 | Inappropriate implementation in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a u | MEDIUM | 4.3 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-17802 | Side-channel information leakage in GPU in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to | MEDIUM | 4.3 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-17823 | Insufficient policy enforcement in WebXR in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass sam | MEDIUM | 6.5 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-17936 | Inappropriate implementation in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who convinced | MEDIUM | 6.5 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-14515 | IBM WebSphere Application Server 8.5, and 9.0 traditional could allow a remote attacker to conduct a cross-site scriptin | MEDIUM | 6.1 | 8% | EPSS 8%ile | NVD | 2026-07-28 |
| CVE-2026-17776 | Policy bypass in Receiver in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the rend | MEDIUM | 5.8 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-15252 | The Search Atlas SEO WordPress plugin before 2.6.12 does not perform a capability or nonce check in one of its AJAX han | MEDIUM | 5.4 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-7362 | IBM Sterling B2B Integrator 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.2.1 | MEDIUM | 4.3 | 8% | EPSS 8%ile | NVD | 2026-07-28 |
| CVE-2026-16547 | The REST API Log WordPress plugin before 1.7.1 does not bind the token protecting its log download feature to the log en | MEDIUM | 5.9 | 7% | EPSS 7%ile | NVD | 2026-08-04 |
| CVE-2026-16729 | undici's setCookie function does not fully sanitize cookie attributes. In undici before 6.28.0, from 7.0.0 up to before | MEDIUM | 4.8 | 7% | EPSS 7%ile | NVD | 2026-07-29 |
| CVE-2026-10773 | The DHCPv4 client helper net_dhcpv4_msg_type_name() in subsys/net/lib/dhcpv4/dhcpv4.c indexes a static 8-element const c | MEDIUM | 5.4 | 7% | EPSS 7%ile | NVD | 2026-08-01 |
| CVE-2026-16728 | undici's retry interceptor can deliver a response whose body length does not match the Content-Length header exposed to | MEDIUM | 4.8 | 7% | EPSS 7%ile | NVD | 2026-07-29 |
| CVE-2026-63240 | An information disclosure vulnerability in Koollab LMS allowed an authenticated learner to obtain correct quiz answers f | MEDIUM | 4.3 | 7% | EPSS 7%ile | NVD | 2026-07-29 |
| CVE-2026-17939 | Insufficient validation of untrusted input in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacke | MEDIUM | 4.3 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-10569 | IBM UCD - IBM UrbanCode Deploy 7.2 through 7.2.3.23, and 7.3 through 7.3.2.18 and IBM UCD - IBM DevOps Deploy 8.0 throug | MEDIUM | 4.3 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-28144 | Insertion of Sensitive Information Into Sent Data vulnerability in Flipper Code WP Maps allows Retrieve Embedded Sensiti | MEDIUM | 4.3 | 7% | EPSS 7%ile | NVD | 2026-07-31 |
| CVE-2026-17853 | Inappropriate implementation in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compr | MEDIUM | 6.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17878 | Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to inject arbitrar | MEDIUM | 6.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-14310 | The Tutor LMS WordPress plugin before 4.0.0 does not properly verify that a user has access to the course a Q&A thread | MEDIUM | 5.4 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-14192 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Bilin Software and | MEDIUM | 5.4 | 7% | EPSS 7%ile | NVD | 2026-08-04 |
| CVE-2026-17822 | Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing v | MEDIUM | 6.5 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17841 | Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing v | MEDIUM | 6.5 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-13329 | The Buckaroo Woocommerce Payments Plugin WordPress plugin before 4.9.0 does not perform any capability check or nonce va | MEDIUM | 6.5 | 7% | EPSS 7%ile | NVD | 2026-08-01 |
| CVE-2026-18651 | A flaw was found in 389 Directory Server. During SASL PLAIN authentication, the server installs connection-level bind cr | MEDIUM | 5.4 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-67338 | JupyterLab before 4.5.9 contains a stored cross-site scripting vulnerability in the Extension Manager that fails to vali | MEDIUM | 5.1 | 7% | EPSS 7%ile | NVD | 2026-08-01 |
| CVE-2026-17843 | Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-orig | MEDIUM | 4.3 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17857 | Inappropriate implementation in Network in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross- | MEDIUM | 4.3 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17871 | Inappropriate implementation in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who convince | MEDIUM | 4.3 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17876 | Inappropriate implementation in Payments in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross | MEDIUM | 4.3 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17885 | Inappropriate implementation in Paint in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-or | MEDIUM | 4.3 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17895 | Inappropriate implementation in DataTransfer in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who convi | MEDIUM | 4.3 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17897 | Inappropriate implementation in ORB in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-orig | MEDIUM | 4.3 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-13344 | The Essential Addons for Elementor WordPress plugin before 6.6.10 does not validate the HTML tag name of the Pricing Ta | MEDIUM | 4.8 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2025-15669 | The Bit Form WordPress plugin before 3.1.4 does not sanitise one of its conversational-form display settings before ren | MEDIUM | 4.8 | 7% | EPSS 7%ile | NVD | 2026-08-01 |
| CVE-2025-15675 | The Charitable WordPress plugin before 1.8.5.3 does not sanitise and escape one of its campaign image text fields befor | MEDIUM | 4.8 | 7% | EPSS 7%ile | NVD | 2026-08-02 |
| CVE-2026-25552 | Ghost CLI before 1.30.1 contains an IP spoofing vulnerability that allows unauthenticated remote attackers to bypass rat | MEDIUM | 6.3 | 7% | EPSS 7%ile | NVD | 2026-07-31 |
| CVE-2026-17821 | Insufficient policy enforcement in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced | MEDIUM | 6.5 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17974 | Insufficient policy enforcement in DevTools in Google Chrome prior to 151.0.7922.72 allowed a local attacker to bypass n | MEDIUM | 6.5 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17818 | Inappropriate implementation in Network in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to inject arbi | MEDIUM | 6.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17827 | Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to inject arbitrar | MEDIUM | 6.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17962 | Inappropriate implementation in Blink in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to inject arbitr | MEDIUM | 6.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-44613 | Cross-Site Request Forgery (CSRF) vulnerability in Apache Zeppelin. The default CORS configuration allowed cross-origin | MEDIUM | 6.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-67335 | better-auth versions before 1.6.2 fail to validate the OAuth state parameter against the stored nonce when using cookie- | MEDIUM | 6.0 | 7% | EPSS 7%ile | NVD | 2026-08-01 |
| CVE-2026-17866 | Type Confusion in Tab in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised t | MEDIUM | 5.8 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-45086 | Decidim is a participatory democracy framework. From 0.31.1 before 0.31.5 and in 0.32.0.rc1 before 0.32.0.rc2, a partici | MEDIUM | 5.4 | 7% | EPSS 7%ile | NVD | 2026-07-31 |
| CVE-2026-17761 | Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a re | MEDIUM | 5.4 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-12697 | The wpForo Forum WordPress plugin before 3.1.2 does not verify that an AI chat conversation belongs to the requesting us | MEDIUM | 5.4 | 7% | EPSS 7%ile | NVD | 2026-07-31 |
| CVE-2026-28147 | Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templa | MEDIUM | 5.4 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-24033 | Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in Apache Traffic Server. | MEDIUM | 6.9 | 6% | EPSS 6%ile | NVD | 2026-07-29 |
| CVE-2026-18014 | Insufficient validation of untrusted input in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 6.5 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17890 | Insufficient validation of untrusted input in DevTools in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 5.8 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17893 | Insufficient validation of untrusted input in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote at | MEDIUM | 5.8 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-7260 | Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP | MEDIUM | 5.4 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17770 | Out of bounds read in Media in Google Chrome on Mac prior to 151.0.7922.72 allowed a remote attacker who had compromised | MEDIUM | 5.8 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2025-67651 | A Cross-Site Request Forgery (CSRF) vulnerability has been identified in multiple PHP Jabbers scripts. The lack of CSRF | MEDIUM | 6.9 | 6% | EPSS 6%ile | NVD | 2026-07-31 |
| CVE-2026-65325 | Apache Traffic Server reuses multiplexed HTTP/2 origin connections without verifying the server certificate covers the n | MEDIUM | 6.3 | 6% | EPSS 6%ile | NVD | 2026-07-29 |
| CVE-2026-49131 | OPNsense before 26.1.9 contains a stored cross-site scripting vulnerability that allows authenticated attackers with fir | MEDIUM | 5.1 | 6% | EPSS 6%ile | NVD | 2026-08-03 |
| CVE-2026-14834 | The Mailgun for WordPress plugin before 2.2.1 does not perform any capability or nonce check on an unauthenticated AJAX | MEDIUM | 6.5 | 6% | EPSS 6%ile | NVD | 2026-07-31 |
| CVE-2026-14315 | The Pixel Tag Manager for WooCommerce WordPress plugin before 2.2.1 does not perform an authorization check on one of i | MEDIUM | 6.5 | 6% | EPSS 6%ile | NVD | 2026-08-01 |
| CVE-2026-14561 | The Authora : Easy login with mobile number WordPress plugin before 1.7.7 does not keep its one-time login code confiden | MEDIUM | 6.5 | 6% | EPSS 6%ile | NVD | 2026-08-01 |
| CVE-2026-20471 | In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service | MEDIUM | 4.6 | 6% | EPSS 6%ile | NVD | 2026-08-03 |
| CVE-2026-20466 | In sec boot, there is a possible escalation of privilege due to a heap buffer overflow. This could lead to local escalat | MEDIUM | 6.1 | 6% | EPSS 6%ile | NVD | 2026-08-03 |
| CVE-2026-17817 | Inappropriate implementation in ReportingAndNEL in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to lea | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17833 | Inappropriate implementation in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cros | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17904 | Insufficient policy enforcement in NFC in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to l | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17905 | Inappropriate implementation in SurfaceCapture in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17910 | Insufficient policy enforcement in NFC in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to l | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17911 | Insufficient policy enforcement in SVG in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-o | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17933 | Inappropriate implementation in DOMStorage in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cro | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17959 | Inappropriate implementation in Network in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross- | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17963 | Inappropriate implementation in SVG in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-orig | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-18019 | Side-channel information leakage in Media in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cros | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2025-0152 | IBM Engineering Requirements Management DOORS and DOORS Web Access 9.7.2.1 through 9.7.2.11, and 9.6.1.1 through 9.6.1.1 | MEDIUM | 6.1 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-14845 | The NewStatPress WordPress plugin before 1.4.5 does not sanitise and escape data derived from unauthenticated visitor re | MEDIUM | 6.1 | 6% | EPSS 6%ile | NVD | 2026-07-31 |
| CVE-2026-15383 | The Blog Floating Button WordPress plugin through 1.4.20 does not sanitize or escape the visitor User-Agent header, whic | MEDIUM | 6.1 | 6% | EPSS 6%ile | NVD | 2026-08-03 |
| CVE-2026-15931 | The Simple Membership WordPress plugin before 4.7.8 does not sanitise a subscriber name value received from an unauthent | MEDIUM | 6.1 | 6% | EPSS 6%ile | NVD | 2026-08-03 |
| CVE-2026-67332 | @better-auth/oauth-provider before 1.7.0-beta.4 fails to bind access-token audience to the authorization grant, allowing | MEDIUM | 5.3 | 6% | EPSS 6%ile | NVD | 2026-08-01 |
| CVE-2026-17977 | Policy bypass in CSS in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a c | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-59328 | Spring Tools for Eclipse renders Spring Boot starter wizard dependency tooltips in a native embedded browser (SWT Browse | MEDIUM | 4.2 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2025-36298 | IBM Sterling B2B Integrator 6.1.2.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 | MEDIUM | 5.4 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2025-36431 | IBM Sterling B2B Integrator 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.2.2.0 through 6.2.2.0_1 is vulnera | MEDIUM | 5.4 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-11383 | IBM Tivoli System Automation Application Manager 4.1 and IBM WebSphere Application Server is affected by cross-site scri | MEDIUM | 5.4 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-12376 | The Academy LMS WordPress plugin through 3.8.2 does not restrict access to quiz attempt records to their owner, allowing | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-31 |
| CVE-2026-14847 | The Paid Membership Subscriptions WordPress plugin before 3.0.7 does not perform capability or nonce checks on one of i | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-07-31 |
| CVE-2026-16289 | The ProfileGrid WordPress plugin before 6.0.0.0 does not perform authorization checks when listing a group's pending me | MEDIUM | 4.3 | 6% | EPSS 6%ile | NVD | 2026-08-03 |
| CVE-2026-66755 | Relative Path Traversal in the ISA-Tab parser in Apache Software Foundation Apache Tika from 1.8 through 3.3.1, and 4.0. | MEDIUM | 5.9 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-14219 | URL redirection to untrusted site ('open redirect') vulnerability in Bilin Software and Informatics Consultancy Inc. HUM | MEDIUM | 5.4 | 6% | EPSS 6%ile | NVD | 2026-08-04 |
| CVE-2026-67617 | Microweber CMS through 2.0.20 contains a stored cross-site scripting vulnerability in the content tagging system that al | MEDIUM | 4.8 | 6% | EPSS 6%ile | NVD | 2026-08-03 |
| CVE-2026-14292 | The Download Manager WordPress plugin before 3.3.66 does not properly escape a package's title before outputting it in t | MEDIUM | 5.4 | 6% | EPSS 6%ile | NVD | 2026-08-01 |
| CVE-2026-16548 | The Chat Widget: Floating Customer Support Button for 30+ Channels, Supporting SMS, Calls, and Chat WordPress plugin be | MEDIUM | 5.4 | 6% | EPSS 6%ile | NVD | 2026-08-04 |
| CVE-2026-16107 | IBM TS4500 CLI tool Versions: 0.1.31 through 1.12.0.0 does not validate or improperly validates TLS certificate validat | MEDIUM | 5.9 | 6% | EPSS 6%ile | NVD | 2026-07-28 |
| CVE-2026-17806 | Insufficient validation of untrusted input in Extensions in Google Chrome prior to 151.0.7922.72 allowed a remote attack | MEDIUM | 5.8 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17809 | Insufficient validation of untrusted input in Extensions in Google Chrome prior to 151.0.7922.72 allowed a remote attack | MEDIUM | 5.8 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17906 | Insufficient validation of untrusted input in Bluetooth in Google Chrome prior to 151.0.7922.72 allowed a remote attacke | MEDIUM | 5.8 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17908 | Insufficient validation of untrusted input in Printing in Google Chrome on Windows prior to 151.0.7922.72 allowed a remo | MEDIUM | 5.8 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-17891 | Use after free in ANGLE in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised | MEDIUM | 5.8 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-69094 | Admidio before 5.0.11 contains an insecure direct object reference vulnerability in the save_temporary mode of mylist_fu | MEDIUM | 5.3 | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-67333 | better-auth before 1.6.13 (and pre-release builds 1.7.0-beta.0 through 1.7.0-beta.3) fail to validate the scheme of redi | MEDIUM | 5.1 | 5% | EPSS 5%ile | NVD | 2026-08-01 |
| CVE-2026-17981 | Inappropriate implementation in Blink in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-or | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-18004 | Insufficient policy enforcement in Speech in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had comp | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-67530 | WACRM is a self-hostable CRM template for WhatsApp. In 0.7.0 and earlier, the automation send_webhook action in src/lib/ | MEDIUM | 6.4 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-18570 | A flaw was found in the full-scope-disabled client-policy executor within the keycloak-services component. This componen | MEDIUM | 5.4 | 5% | EPSS 5%ile | NVD | 2026-08-02 |
| CVE-2026-17755 | Incorrect security UI in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-17925 | Inappropriate implementation in Cast in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to byp | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-17954 | Policy bypass in MHTML in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-47725 | nebula-mesh is a self-hosted control plane for Slack Nebula mesh virtual private network. Prior to version 0.3.3, every | MEDIUM | 6.9 | 5% | EPSS 5%ile | NVD | 2026-07-28 |
| CVE-2026-56389 | GNU Bison allows for an execution of an arbitrary program during HTML report generation due to improper handling of gram | MEDIUM | 6.8 | 5% | EPSS 5%ile | NVD | 2026-07-29 |
| CVE-2026-66490 | Joomla Extension - balbooa.com - Stored cross-site scripting via a comment avatar in Gridbox < 2.20.2 | MEDIUM | 6.1 | 5% | EPSS 5%ile | NVD | 2026-07-29 |
| CVE-2025-65337 | Sourcecodester Fantastic Blog CMS 1.0 is vulnerable to Cross Site Scripting (XSS) in pageEditMember.php via the address | MEDIUM | 6.1 | 5% | EPSS 5%ile | NVD | 2026-07-29 |
| CVE-2026-18006 | Inappropriate implementation in Google Lens in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had co | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-18007 | Inappropriate implementation in Input in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to pe | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-18013 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2024-40683 | IBM Operations Analytics - Log Analysis 1.3.5.0, 1.3.5.1, 1.3.5.2, 1.3.5.3, 1.3.6.0, 1.3.6.1, 1.3.7.0, 1.3.7.1, 1.3.7.2, | MEDIUM | 6.3 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-15157 | undici does not validate the type property of a duck-typed blob-like request body before using it as the Content-Type he | MEDIUM | 4.2 | 5% | EPSS 5%ile | NVD | 2026-07-29 |
| CVE-2026-16069 | The Brizy WordPress plugin before 2.8.19 does not sanitize or escape featured-image focal-point coordinates submitted t | MEDIUM | 6.8 | 5% | EPSS 5%ile | NVD | 2026-08-04 |
| CVE-2026-16293 | The PowerPress Podcasting plugin by Blubrry WordPress plugin before 11.16.11 does not sanitise and escape some of its Po | MEDIUM | 6.8 | 5% | EPSS 5%ile | NVD | 2026-08-04 |
| CVE-2026-66400 | Grav Login Plugin versions before 3.8.13 contain an insufficient session expiration vulnerability in TokenStorage.php wh | MEDIUM | 6.3 | 5% | EPSS 5%ile | NVD | 2026-07-29 |
| CVE-2026-63242 | A business logic vulnerability in Koollab LMS allowed an authenticated learner to set their lesson completion status to | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-07-29 |
| CVE-2026-14929 | The JS Help Desk WordPress plugin before 3.1.4 does not verify ownership of the targeted reply before updating it, allo | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-07-31 |
| CVE-2026-15260 | The GEO my WP WordPress plugin before 4.5.5.3 does not perform any ownership or capability check on two of its logged-in | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-16564 | The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.9 does not verify order | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-16565 | The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.9 does not verify produc | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-17724 | Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to inject arbitrary scri | MEDIUM | 4.2 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-54785 | gemini-bridge is a lightweight MCP server bridging AI agents to Google's Gemini AI via the official CLI. From 1.0.0 unti | MEDIUM | 6.2 | 5% | EPSS 5%ile | NVD | 2026-07-31 |
| CVE-2026-6695 | A flaw was found in GIMP. A remote attacker could exploit this by tricking a user into opening a specially crafted PAA ( | MEDIUM | 5.5 | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-65875 | BaserCMS provided by baserCMS Users Community contains a CSV file injection vulnerability. If a user downloads and opens | MEDIUM | 5.1 | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-17900 | Inappropriate implementation in Enterprise in Google Chrome on Windows prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-65946 | Joomla Extension - rolandd.com - XSS vectors in AJAX endpoint handlers RO CSVI < 9.11.0 | MEDIUM | 6.1 | 5% | EPSS 5%ile | NVD | 2026-07-29 |
| CVE-2025-65341 | Ecommerce Fruits Bazar 1.0 is vulnerable to Cross Site Scripting (XSS) in admin/edit_product.php. | MEDIUM | 6.1 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2025-65342 | code-projects Blood System 1.0 is vulnerable to Cross Site Scripting (XSS) in /don.php via the city field. | MEDIUM | 6.1 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-14921 | The Ultimate Addons for WPBakery Page Builder WordPress plugin before 3.21.5's shared link-rendering function, Ultimate_ | MEDIUM | 6.1 | 5% | EPSS 5%ile | NVD | 2026-07-31 |
| CVE-2026-14922 | WP Photo Album Plus is vulnerable to stored Cross-Site Scripting in all versions up to, and including, 9.2.03.001 throug | MEDIUM | 6.1 | 5% | EPSS 5%ile | NVD | 2026-07-31 |
| CVE-2026-52232 | A reflected cross-site scripting (XSS) vulnerability in the /logo.asp component of FS Inc S3150-8T2F Switch 2.2.0D Build | MEDIUM | 6.1 | 5% | EPSS 5%ile | NVD | 2026-07-31 |
| CVE-2026-6694 | A flaw was found in GIMP's file-png plugin. A remote attacker can exploit this by crafting a malicious Animated Portable | MEDIUM | 5.5 | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-67612 | OpenEMR through 8.2.0 contains a stored cross-site scripting vulnerability in the patient portal template system that al | MEDIUM | 4.8 | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-14816 | The GDPR Framework By Data443 WordPress plugin before 2.4.0 does not properly verify authorization or the identity of th | MEDIUM | 6.5 | 4% | EPSS 4%ile | NVD | 2026-08-04 |
| CVE-2026-17762 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | MEDIUM | 4.3 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-17775 | Inappropriate implementation in PresentationAPI in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to lea | MEDIUM | 4.3 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-17777 | Inappropriate implementation in Autofill in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross | MEDIUM | 4.3 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-17788 | Inappropriate implementation in Blink in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-or | MEDIUM | 4.3 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-17798 | Inappropriate implementation in Cast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-ori | MEDIUM | 4.3 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-17999 | Race in PictureInPicture in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to perform domain | MEDIUM | 6.5 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-17550 | A maliciously crafted DWG or DXF file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerabili | MEDIUM | 5.5 | 4% | EPSS 4%ile | NVD | 2026-07-29 |
| CVE-2026-14224 | The Easy Appointments WordPress plugin through 3.12.26 does not verify that the appointment targeted by its customer-dat | MEDIUM | 5.4 | 4% | EPSS 4%ile | NVD | 2026-07-29 |
| CVE-2026-17970 | Insufficient validation of untrusted input in Passwords in Google Chrome prior to 151.0.7922.72 allowed an attacker in a | MEDIUM | 4.3 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-16465 | A maliciously crafted DWG or DXF file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerabili | MEDIUM | 6.1 | 4% | EPSS 4%ile | NVD | 2026-07-29 |
| CVE-2026-10526 | The EmbedPress WordPress plugin before 4.6.1 does not validate user-supplied URLs before making server-side requests th | MEDIUM | 5.8 | 4% | EPSS 4%ile | NVD | 2026-08-04 |
| CVE-2026-18008 | Inappropriate implementation in Settings in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform UI | MEDIUM | 4.3 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-18009 | Insufficient validation of untrusted input in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacke | MEDIUM | 4.3 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-18010 | Inappropriate implementation in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform U | MEDIUM | 4.3 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-12698 | The wpForo Forum WordPress plugin before 3.1.3 does not restrict which profile fields a member may set when editing thei | MEDIUM | 4.3 | 4% | EPSS 4%ile | NVD | 2026-08-04 |
| CVE-2026-17739 | Insufficient policy enforcement in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced | MEDIUM | 4.2 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-17976 | Insufficient policy enforcement in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced | MEDIUM | 4.3 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-8155 | The BuddyPress WordPress plugin before 14.5.0 does not properly enforce authorization on its private messaging endpoints | MEDIUM | 5.4 | 4% | EPSS 4%ile | NVD | 2026-07-31 |
| CVE-2026-16064 | The Event Booking Manager for WooCommerce WordPress plugin before 5.3.7 does not properly verify authorization on the o | MEDIUM | 5.4 | 4% | EPSS 4%ile | NVD | 2026-08-02 |
| CVE-2026-68583 | luci-app-adblock-fast before 1.2.4-4 contains a stored cross-site scripting vulnerability in the blocklist name field th | MEDIUM | 5.1 | 4% | EPSS 4%ile | NVD | 2026-08-02 |
| CVE-2026-69245 | Guzzle is an extensible PHP HTTP client. Prior to 7.15.2 and 8.0.1, SetCookie::matchesDomain() gives every subdomain of | MEDIUM | 6.5 | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-68742 | A flaw was found in SSSD. The sss_nss_protocol_parse_addr() function in the NSS responder does not validate the addrlen | MEDIUM | 5.5 | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-53606 | sanitize-html has incomplete URI scheme validation in that allows javascript: URIs through action, formaction, data, pos | MEDIUM | 5.4 | 4% | EPSS 4%ile | GitHub | 2026-07-31 |
| CVE-2026-16536 | The Simple Google Calendar Outlook Events Widget WordPress plugin before 3.1.0 does not validate a user-supplied URL bef | MEDIUM | 5.3 | 4% | EPSS 4%ile | NVD | 2026-08-04 |
| CVE-2026-16296 | The Clearfy Cache WordPress plugin before 2.4.3 does not validate the redirect target in its Cyrlitera old-URL redirect | MEDIUM | 4.7 | 4% | EPSS 4%ile | NVD | 2026-08-04 |
| CVE-2026-63220 | CodeIgniter is a PHP full-stack web framework. In versions prior to 4.7.4, IncomingRequest::isSecure() trusted the X-For | MEDIUM | 4.8 | 3% | EPSS 3%ile | NVD | 2026-07-31 |
| CVE-2026-18772 | Improper input validation vulnerability in Samsung Open Source rlottie allows Oversized Serialized Data Payloads. | MEDIUM | 5.5 | 3% | EPSS 3%ile | NVD | 2026-08-04 |
| CVE-2026-12696 | The wpForo Forum WordPress plugin before 3.1.2 does not sanitize and escape a user profile field before outputting it in | MEDIUM | 5.4 | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2026-15234 | The Codeless Page Builder WordPress plugin through 1.1.4 does not sanitize or validate a shortcode attribute before usin | MEDIUM | 5.4 | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2026-15262 | The Admin Columns for ACF Fields WordPress plugin through 0.3.2 does not escape Advanced Custom Fields values before out | MEDIUM | 5.4 | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2026-14864 | The JetEngine WordPress plugin before 3.8.12 does not escape a post meta value before outputting it through one of its s | MEDIUM | 5.4 | 3% | EPSS 3%ile | NVD | 2026-08-02 |
| CVE-2026-15385 | The RT Mega Menu WordPress plugin before 1.5.2 does not perform a capability check on the AJAX action that saves mega-m | MEDIUM | 5.4 | 3% | EPSS 3%ile | NVD | 2026-08-02 |
| CVE-2026-16063 | The Event Booking Manager for WooCommerce WordPress plugin before 5.3.7 does not sanitise or escape event timeline cont | MEDIUM | 5.4 | 3% | EPSS 3%ile | NVD | 2026-08-02 |
| CVE-2026-62363 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1. | MEDIUM | 5.0 | 3% | EPSS 3%ile | NVD | 2026-07-30 |
| CVE-2026-56390 | GNU Bison improperly handles grammar‑defined output paths. Grammar directives such as %output and %header allow specifyi | MEDIUM | 4.6 | 3% | EPSS 3%ile | NVD | 2026-07-29 |
| CVE-2026-16273 | The Narrative Publisher WordPress plugin through 1.0.7 does not restrict write access to a REST-exposed post meta field | MEDIUM | 4.6 | 3% | EPSS 3%ile | NVD | 2026-08-02 |
| CVE-2026-18016 | Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attack | MEDIUM | 4.3 | 3% | EPSS 3%ile | NVD | 2026-07-30 |
| CVE-2026-5582 | The FuseWP plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.24 | MEDIUM | 4.3 | 3% | EPSS 3%ile | NVD | 2026-07-30 |
| CVE-2026-16295 | The Clearfy Cache WordPress plugin before 2.4.3 does not perform a capability check in one of its admin-page dispatch p | MEDIUM | 4.3 | 3% | EPSS 3%ile | NVD | 2026-08-04 |
| CVE-2026-16546 | The Wired Impact Volunteer Management WordPress plugin before 2.8.2 does not have authorisation checks in one of its AJA | MEDIUM | 4.3 | 3% | EPSS 3%ile | NVD | 2026-08-04 |
| CVE-2026-18508 | A flaw was found in GNU tar. When extracting an archive with the --one-top-level option, hardlink targets are not confin | MEDIUM | 4.4 | 3% | EPSS 3%ile | NVD | 2026-08-03 |
| CVE-2026-18218 | A flaw was found in the TokenManager component of the Keycloak identity management service. When an administrator attemp | MEDIUM | 4.2 | 3% | EPSS 3%ile | NVD | 2026-07-31 |
| CVE-2026-55734 | Allocation of Resources Without Limits or Throttling vulnerability in ueberauth guardian (Guardian.Permissions module) a | MEDIUM | 6.9 | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2025-15544 | A cryptographic weakness exists in the Omada device adoption process. During adoption, authentication credentials assoc | MEDIUM | 6.9 | 3% | EPSS 3%ile | NVD | 2026-08-03 |
| CVE-2026-63119 | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Tran | MEDIUM | 6.2 | 3% | EPSS 3%ile | NVD | 2026-07-29 |
| CVE-2026-68499 | re2 provides Node.js bindings for Google's RE2 regular expression engine. Prior to 1.25.2, re2's String.prototype.match | MEDIUM | 6.2 | 3% | EPSS 3%ile | NVD | 2026-07-30 |
| CVE-2026-20470 | In Telephony, there is a possible information disclosure due to a missing permission check. This could lead to local inf | MEDIUM | 6.2 | 3% | EPSS 3%ile | NVD | 2026-08-03 |
| CVE-2026-9720 | The Facturación Electrónica Costa Rica plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions | MEDIUM | 4.3 | 3% | EPSS 3%ile | NVD | 2026-07-29 |
| CVE-2025-14469 | The Theme Editor plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, | MEDIUM | 4.3 | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2026-54894 | Allocation of Resources Without Limits or Throttling in ueberauth guardian allows denial of service via unbounded atom c | MEDIUM | 6.9 | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2026-55733 | Allocation of Resources Without Limits or Throttling in ueberauth guardian allows denial of service via unbounded atom c | MEDIUM | 6.9 | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2026-2411 | Zephyr's Bluetooth host declares a GATT characteristic as two consecutive attributes: a Characteristic Declaration whose | MEDIUM | 6.5 | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2026-17927 | Insufficient policy enforcement in DevTools in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a | MEDIUM | 4.3 | 3% | EPSS 3%ile | NVD | 2026-07-30 |
| CVE-2026-62946 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to both | MEDIUM | 5.1 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-62343 | ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 6.9. | MEDIUM | 4.7 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-13305 | Autel MaxiCharger AC Elite Home Software Update Improper Verification of Cryptographic Signature Arbitrary Code Executio | MEDIUM | 6.4 | 2% | EPSS 2%ile | NVD | 2026-07-29 |
| CVE-2026-63239 | A hard-coded AWS IAM credentials vulnerability in Koollab LMS allowed an attacker to access shared multi-tenant S3 bucke | MEDIUM | 5.4 | 2% | EPSS 2%ile | NVD | 2026-07-29 |
| CVE-2026-67550 | re2 provides Node.js bindings for Google's RE2 regular expression engine. Prior to 1.25.2, re2 validates lastIndex again | MEDIUM | 5.7 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-17919 | Insufficient policy enforcement in Enterprise in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to | MEDIUM | 6.8 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-17783 | Inappropriate implementation in Loader in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-o | MEDIUM | 4.3 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-10695 | IBM Db2 12.1.0 through 12.1.4 federated server is vulnerable to a denial of service when running non fenced federated qu | MEDIUM | 6.2 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-17903 | Insufficient policy enforcement in Chromecast in Google Chrome prior to 151.0.7922.72 allowed an attacker on the local n | MEDIUM | 5.4 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-20484 | In TFA, there is a possible information disclosure due to a missing permission check. This could lead to local informati | MEDIUM | 4.4 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-20488 | In display, there is a possible information disclosure due to a missing bounds check. This could lead to local informati | MEDIUM | 4.4 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-20489 | In display, there is a possible information disclosure due to an integer overflow. This could lead to local information | MEDIUM | 4.4 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-17998 | Incorrect security UI in Extensions in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to | MEDIUM | 4.3 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-18605 | A security flaw has been discovered in CheckMAL AppCheck Pro 3.1.43.10. Affected is an unknown function in the library A | MEDIUM | 6.4 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-63237 | A TOTP two-factor authentication bypass vulnerability in Koollab LMS allowed an attacker to supply a client-controlled s | MEDIUM | 4.8 | 2% | EPSS 2%ile | NVD | 2026-07-29 |
| CVE-2026-17844 | Insufficient validation of untrusted input in Cast in Google Chrome prior to 151.0.7922.72 allowed an attacker on the lo | MEDIUM | 4.3 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-17870 | Insufficient validation of untrusted input in Cast in Google Chrome prior to 151.0.7922.72 allowed an attacker on the lo | MEDIUM | 4.3 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-20467 | In apusys, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalatio | MEDIUM | 6.0 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-20468 | In apusys, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of | MEDIUM | 6.0 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-20469 | In trusted_mem, there is a possible escalation of privilege due to improper input validation. This could lead to local e | MEDIUM | 6.0 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-20473 | In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privileg | MEDIUM | 6.0 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-20475 | In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o | MEDIUM | 6.0 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-20477 | In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o | MEDIUM | 6.0 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-40717 | Dell Monitor driver, version 1.0.0.0, contains an Improper Link Resolution Before File Access ('Link Following') vulnera | MEDIUM | 6.6 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-52857 | Wings is the server control plane for Pterodactyl, a free, open-source game server management panel. Prior to 1.13.0, un | MEDIUM | 5.5 | 2% | EPSS 2%ile | NVD | 2026-07-31 |
| CVE-2026-56567 | HCL iControl v4.3.0 was affected by Security Misconfiguration vulnerabilities. It involves the public exposure of intern | MEDIUM | 5.1 | 2% | EPSS 2%ile | NVD | 2026-07-31 |
| CVE-2026-56569 | HCL iControl was affected by Sensitive Data Exposure vulnerabilities. It involves the public exposure of internal config | MEDIUM | 4.0 | 2% | EPSS 2%ile | NVD | 2026-07-31 |
| CVE-2026-20476 | In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of servic | MEDIUM | 5.5 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-28145 | Insufficient Verification of Data Authenticity vulnerability in StylemixThemes MasterStudy LMS allows Manipulating User | MEDIUM | 5.3 | 2% | EPSS 2%ile | NVD | 2026-07-31 |
| CVE-2026-49132 | OPNsense before 26.1.9 contains a stored cross-site scripting vulnerability that allows authenticated attackers to injec | MEDIUM | 5.1 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-67596 | CSL 1010 M2M 3G WiFi Module firmware through 2.2.1.4 contains a weak encryption vulnerability that allows unauthenticate | MEDIUM | 6.9 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-20481 | In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation | MEDIUM | 6.0 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-20485 | In HFRP, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p | MEDIUM | 6.0 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-20497 | In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation | MEDIUM | 6.0 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-20498 | In geniezone, there is a possible escalation of privilege due to a missing permission check. This could lead to local es | MEDIUM | 6.0 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-47768 | nebula-mesh is a self-hosted control plane for Slack Nebula mesh virtual private network. Prior to version 0.3.2, newly- | MEDIUM | 5.5 | 1% | EPSS 1%ile | NVD | 2026-07-28 |
| CVE-2026-59919 | Netty is an asynchronous, event-driven network application framework. In versions prior to 4.1.136.Final and 4.2.16.Fina | MEDIUM | 5.5 | 1% | EPSS 1%ile | NVD | 2026-07-29 |
| CVE-2026-15430 | Improper access control in the IRP_MJ_WRITE command interface in Wellbia XIGNCODE3 xhunter2.sys, version 2026.6.1.192, | MEDIUM | 6.2 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-17932 | Use after free in DataTransfer in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to obtain pot | MEDIUM | 5.5 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-20472 | In TFA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of servic | MEDIUM | 4.4 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-20496 | In geniezone, there is a possible out of bounds read due to a missing bounds check. This could lead to local information | MEDIUM | 4.4 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-17966 | Inappropriate implementation in Views in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to obtain | MEDIUM | 6.2 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2025-15631 | A cryptographic weakness exists in affected Omada devices where site credentials are protected using a legacy hashing al | MEDIUM | 5.7 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-20478 | In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of | MEDIUM | 5.5 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-20480 | In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of | MEDIUM | 5.5 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-20491 | In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of ser | MEDIUM | 5.5 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-20494 | In wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc | MEDIUM | 5.5 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-34490 | Cleartext storage of sensitive information vulnerability in Johnson Controls XAAP Application on Android allows an attac | MEDIUM | 4.8 | 1% | EPSS 1%ile | NVD | 2026-07-31 |
| CVE-2025-15629 | A cryptographic weakness exists in the Omada adoption protocol where session encryption keys used to protect communicati | MEDIUM | 6.9 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-18257 | Improper validity period check for root issuer certificate in CycloneCrypto cryptographic wrapper of S2OPC allows a cert | MEDIUM | 5.6 | 1% | EPSS 1%ile | NVD | 2026-07-29 |
| CVE-2026-17973 | Inappropriate implementation in Views in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to obtain | MEDIUM | 5.5 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-68563 | A flaw was found in ansible-collection-redhat-leapp. When a remediation task is executed with elevated privileges and th | MEDIUM | 5.5 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-12259 | In nltk version 3.9.4, the `nltk.downloader.Downloader._download_package()` function writes downloaded package bytes to | MEDIUM | 5.3 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-20486 | In imgsensor, there is a possible application crash due to incorrect error handling. This could lead to local escalation | MEDIUM | 4.4 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-20490 | In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of servic | MEDIUM | 4.4 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-20493 | In wifi, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of servi | MEDIUM | 4.4 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-20495 | In Bluetooth driver, there is a possible permission bypass due to a missing permission check. This could lead to local e | MEDIUM | 4.4 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-56609 | HCL iControl is affected by Weak SSL/TLS Version Supported vulnerability. It was observed that the application was using | MEDIUM | 4.8 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-18477 | A TOCTOU (Time-of-Check Time-of-Use) vulnerability in GNU tar's incremental dumpdir 'X' rename handling allows a local a | MEDIUM | 4.4 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-44105 | The credentials for the local user "user-app" may be exposed in log files, potentially enabling a low-privileged local a | MEDIUM | 5.8 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-20474 | In display, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of | MEDIUM | 6.0 | 0% | EPSS 0%ile | NVD | 2026-08-03 |
| CVE-2026-17996 | Inappropriate implementation in Browser in Google Chrome on Mac prior to 151.0.7922.72 allowed a local attacker to bypas | MEDIUM | 6.2 | 0% | EPSS 0%ile | NVD | 2026-07-30 |
| CVE-2026-59327 | Spring Tools for Eclipse stores the Spring Boot DevTools remote secret (spring.devtools.remote.secret) as a plain string | MEDIUM | 4.4 | 0% | EPSS 0%ile | NVD | 2026-07-30 |
| CVE-2026-11835 | Time-of-check time-of-use (TOCTOU) vulnerability combined with missing input validation in Caliptra Core ROM (UpdateRese | MEDIUM | 5.6 | 0% | EPSS 0%ile | NVD | 2026-08-04 |
| CVE-2026-20492 | In Audio HAL, there is a possible system becoming unresponsive due to a race condition. This could lead to local denial | MEDIUM | 5.5 | 0% | EPSS 0%ile | NVD | 2026-08-03 |
| CVE-2026-18321 | Buffer overflow in NTPsec's Zyfer refclock allows local attacker to crash ntpd | MEDIUM | 4.7 | 0% | EPSS 0%ile | NVD | 2026-07-31 |
| CVE-2026-4932 | IBM PowerVM Hypervisor FW1110.00 through FW1110.20, and FW1060.00 through FW1060.71 could allow an attacker with physica | MEDIUM | 4.2 | 0% | EPSS 0%ile | NVD | 2026-07-28 |
| CVE-2026-56850 | A flaw in Node.js HTTPS Agent connection reuse can cause PFX object-array key collisions, allowing mutual TLS (mTLS) cli | MEDIUM | 4.1 | 0% | EPSS 0%ile | NVD | 2026-07-30 |
| CVE-2026-67433 | Linuxfabrik monitoring-plugins provides Python monitoring plugins for Icinga, Nagios, and related monitoring systems. In | MEDIUM | 5.8 | 0% | EPSS 0%ile | NVD | 2026-07-29 |
| CVE-2026-61387 | In Eclipse Milo versions 1.0.0 through 1.1.4, monitored-item quota accounting is not exception-safe: if item creation fa | MEDIUM | 6.9 | — | — | NVD | 2026-08-04 |
| CVE-2026-63248 | In Eclipse Milo versions 0.6.0 through 1.1.4, OPC UA server diagnostics nodes do not enforce access authorization. An an | MEDIUM | 6.9 | — | — | NVD | 2026-08-04 |
| CVE-2026-18401 | The non-blocking (asynchronous) JSON parser in jackson-core does not enforce the maxNumberLength constraint defined in S | MEDIUM | 6.9 | — | — | NVD | 2026-08-04 |
| CVE-2026-15337 | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. `django.utils.translation.check_for_language() | MEDIUM | 6.9 | — | — | NVD | 2026-08-04 |
| CVE-2026-15830 | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDjango's `django.contrib.gis.geos.GEOSGeome | MEDIUM | 6.9 | — | — | NVD | 2026-08-04 |
| GHSA-vg6v-j97m-h5xq | @novu/application-generic: `validateUrlSsrf` permits CGNAT (100.64.0.0/10) destinations — affects Workflow HTTP request | MEDIUM | 6.8 | — | — | GitHub | 2026-07-28 |
| CVE-2026-24076 | Memory Corruption when processing registry values with incorrect types using a direct query method. | MEDIUM | 6.7 | — | — | NVD | 2026-08-04 |
| CVE-2026-48121 | @langchain/langgraph-checkpoint-mongodb provides a LangGraph.js CheckpointSaver implementation that uses MongoDB for sto | MEDIUM | 6.7 | — | — | NVD | 2026-08-04 |
| GHSA-hc4m-q9jh-xw4j | nono-cli'scregistry pack verification can fail open when provenance metadata is absent | MEDIUM | 6.6 | — | — | GitHub | 2026-07-28 |
| CVE-2026-70368 | A stack-based out-of-bounds read vulnerability exists in the "s_vlog" function of stunnel, when handling oversized log m | MEDIUM | 6.5 | — | — | NVD | 2026-08-04 |
| CVE-2026-24077 | Information Disclosure when processing wireless network channel switch information with improperly formatted length fiel | MEDIUM | 6.5 | — | — | NVD | 2026-08-04 |
| CVE-2026-24078 | Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling. | MEDIUM | 6.5 | — | — | NVD | 2026-08-04 |
| GHSA-539m-9xh6-q6rr | GitPython: Incomplete unsafe_git_archive_options denylist omits --add-file / --add-virtual-file, enabling arbitrary file | MEDIUM | 6.5 | — | — | GitHub | 2026-08-03 |
| GHSA-6xx4-9wp6-65p7 | skilo add follows symbolic links, allowing arbitrary local file disclosure from a malicious skill source | MEDIUM | 6.5 | — | — | GitHub | 2026-07-28 |
| DSA 6410-1 | [SECURITY] [DSA 6410-1] libssh security update | MEDIUM | 6.5 | — | — | Debian | 2026-08-02 |
| CVE-2026-66883 | Improper Handling of Case Sensitivity vulnerability in Erlang Ecosystem Foundation oidcc_plug (Oidcc.Plug.Authorize modu | MEDIUM | 6.3 | — | — | NVD | 2026-08-04 |
| CVE-2026-17872 | Cryptographic Flaw in WebAppInstalls in Google Chrome on Android prior to 151.0.7922.72 allowed a local attacker to pote | MEDIUM | 6.1 | 0% | EPSS 0%ile | NVD | 2026-07-30 |
| CVE-2026-10032 | The openUrl function in @a2ui/web_core passes an agent-controlled URL directly to window.open() without validating the U | MEDIUM | 6.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-49446 | Cosmos-Server has an authentication bypass via forward-auth header smuggling on Constellation tunnel | MEDIUM | 6.1 | — | — | GitHub | 2026-07-28 |
| CVE-2026-18770 | A vulnerability has been found in vibesurf-ai VibeSurf up to cd6e519d507cdd4d63061300bf60fb176e1f57e0. Impacted is an un | MEDIUM | 5.5 | — | — | NVD | 2026-08-04 |
| USN-8620-4 | USN-8620-4: Linux kernel (Intel IoTG) vulnerabilities | MEDIUM | 5.5 | — | — | Ubuntu | 2026-07-31 |
| USN-8620-3 | USN-8620-3: Linux kernel (Intel IoTG) vulnerabilities | MEDIUM | 5.5 | — | — | Ubuntu | 2026-07-31 |
| USN-8620-2 | USN-8620-2: Linux kernel (Azure FIPS) vulnerabilities | MEDIUM | 5.5 | — | — | Ubuntu | 2026-07-29 |
| FG-IR-26-139 | Linux Kernel Vulnerability copy.fail - CVE-2026-31431 | MEDIUM | 5.5 | — | — | Fortinet | 2026-05-13 |
| CVE-2026-70367 | A Server-Side Request Forgery (SSRF) bypass vulnerability exists in “stunnel” 5.79 and lower when configured in SOCKS pr | MEDIUM | 5.4 | — | — | NVD | 2026-08-04 |
| GHSA-p538-c434-8v24 | GitPython: Arbitrary file truncation via git rev-list --output argument injection in unguarded Commit.count | MEDIUM | 5.4 | — | — | GitHub | 2026-08-03 |
| CVE-2026-64630 | A vulnerability allowing a low-privileged user to retrieve report data outside the scope of a shared report link. | MEDIUM | 5.3 | — | — | NVD | 2026-08-04 |
| CVE-2026-69207 | Hono: ReDoS in CORS middleware via Access-Control-Request-Headers | MEDIUM | 5.3 | — | — | GitHub | 2026-08-03 |
| CVE-2026-67196 | Perspective 5.0.0 contains a cross-site scripting vulnerability in the built-in Debug plugin that allows attackers to in | MEDIUM | 5.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-15920 | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. `django.contrib.admin.utils.display_for_field( | MEDIUM | 5.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-14337 | Pega Platform versions 23.1.0 through 25.1.3 are affected by an Stored Cross-site scripting (XSS) vulnerability in a use | MEDIUM | 4.6 | — | — | NVD | 2026-08-04 |
| GHSA-pqh8-p93p-2rx7 | @dynatrace-oss/dynatrace-mcp-server has a DQL injection via parameters not documented as DQL | MEDIUM | 4.3 | — | — | GitHub | 2026-07-31 |
| GHSA-xrmj-5g4g-8987 | @dynatrace-oss/dynatrace-mcp-server has a workflow template injection via create_workflow_for_notification | MEDIUM | 4.2 | — | — | GitHub | 2026-07-31 |
| CVE-2026-18018 | Inappropriate implementation in Updater in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to p | MEDIUM | 4.0 | 0% | EPSS 0%ile | NVD | 2026-07-30 |
| CVE-2016-1000305 | guard-livereload has a directory traversal vulnerability | MEDIUM | — | — | — | GitHub | 2026-07-31 |
| CVE-2026-68743 | CVE-2026-68743 | MEDIUM | — | — | — | Red Hat | 2026-08-03 |
| GHSA-hp74-gm6m-2qm5 | Pocket ID has a reauthentication bypass via one-time access token login — passkey step-up requirement defeated by JWT fr | MEDIUM | — | — | — | GitHub | 2026-07-28 |
| GHSA-wchh-9x6h-7f6p | olm dependency deprecation: CVE-2022-39255 and CVE-2024-45193 | MEDIUM | — | — | — | GitHub | 2026-07-29 |
| GHSA-2364-jh4q-m9vm | Flowise: IDOR vulnerability exists at the GET /api/v1/organization/customer-default-source endpoint | MEDIUM | — | — | — | GitHub | 2026-08-04 |
| GHSA-3whf-vgf2-9w6g | zaino-state has a Non-Finalized State Reorg — No Cycle Detection or Depth Limit | MEDIUM | — | — | — | GitHub | 2026-07-31 |
| CVE-2026-18590 | A vulnerability was determined in Wavlink WL-NU516U1 708c073-mt7628. Affected is the function set_sys_adm of the file ad | LOW | 2.1 | 62% | EPSS 62%ile | NVD | 2026-08-03 |
| CVE-2026-55555 | Dompdf is an HTML to PDF converter for PHP. Versions 3.15 and prior are vulnerable to a File Existence Oracle attack thr | LOW | 2.3 | 40% | EPSS 40%ile | NVD | 2026-07-28 |
| CVE-2026-18645 | A security flaw has been discovered in danpros HTMLy up to 3.1.1. This affects the function add_content of the file /sys | LOW | 2.1 | 35% | EPSS 35%ile | NVD | 2026-08-03 |
| CVE-2026-41709 | VMware ESX contains an insufficient logging vulnerability. A malicious administrator could exploit this issue to perform | LOW | 2.7 | 31% | EPSS 31%ile | NVD | 2026-07-30 |
| CVE-2026-18631 | A vulnerability was identified in jeequan jeepay up to 3.2.9. This vulnerability affects the function WebSecurityConfig | LOW | 2.1 | 31% | EPSS 31%ile | NVD | 2026-08-03 |
| CVE-2026-18632 | A security flaw has been discovered in langgenius dify up to 1.14.2. This issue affects the function jinja2.Template of | LOW | 2.1 | 30% | EPSS 30%ile | NVD | 2026-08-03 |
| CVE-2026-18644 | A vulnerability was identified in danpros HTMLy up to 3.1.1. Affected by this issue is the function unlink of the file / | LOW | 2.1 | 30% | EPSS 30%ile | NVD | 2026-08-03 |
| CVE-2026-58044 | A flaw in Node.js HTTP client can cause a request desynchronization for Node.js-based forwarding proxies that rebuild ou | LOW | 3.7 | 20% | EPSS 20%ile | NVD | 2026-08-04 |
| CVE-2026-55554 | Dompdf is an HTML to PDF converter for PHP. In versions 3.15 and prior, the validateLocalUri() method enforces chroot bo | LOW | 2.3 | 20% | EPSS 20%ile | NVD | 2026-07-28 |
| CVE-2026-18593 | A weakness has been identified in vxcontrol PentAGI up to 2.1.0. This affects an unknown part of the file backend/pkg/te | LOW | 2.9 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-68980 | Apache NiFi 2.0.0 through 2.10.0 support creating, reading, and deleting Assets associated with Parameter Contexts throu | LOW | 2.3 | 18% | EPSS 18%ile | NVD | 2026-08-03 |
| CVE-2026-18721 | A vulnerability has been found in kalcaddle kodbox 1.67 Build 02. This issue affects some unknown processing of the file | LOW | 2.1 | 16% | EPSS 16%ile | NVD | 2026-08-04 |
| CVE-2026-18682 | A security flaw has been discovered in OpenAkita up to 1.27.12. This vulnerability affects unknown code of the file /api | LOW | 1.3 | 16% | EPSS 16%ile | NVD | 2026-08-03 |
| CVE-2026-14222 | The Easy Appointments WordPress plugin through 3.12.26 does not perform any capability or nonce check in one of its conn | LOW | 3.8 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-14188 | The Easy Appointments WordPress plugin through 3.12.26 does not perform a per-request capability or nonce check on one o | LOW | 2.7 | 15% | EPSS 15%ile | NVD | 2026-07-30 |
| CVE-2026-53607 | @apostrophecms/file pretty-URL Vulnerable to Unauthenticated SSRF via Host header | LOW | 3.7 | 13% | EPSS 13%ile | GitHub | 2026-07-31 |
| CVE-2025-14562 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 10.6 before 19.0.5, 19.1 before 19.1.3, and 1 | LOW | 3.1 | 13% | EPSS 13%ile | NVD | 2026-07-29 |
| CVE-2026-18206 | A flaw was found in the keycloak-services component of Keycloak, which provides identity and access management services. | LOW | 3.7 | 12% | EPSS 12%ile | NVD | 2026-07-31 |
| CVE-2026-46712 | Misskey is an open source, federated social media platform. Versions 2025.3.2 and later, but prior to 2026.5.4, contain | LOW | 2.3 | 12% | EPSS 12%ile | NVD | 2026-08-03 |
| CVE-2026-55403 | datamodel-code-generator generates Python data models from schema definitions. Prior to 0.63.0, src/datamodel_code_gener | LOW | 3.7 | 12% | EPSS 12%ile | NVD | 2026-07-28 |
| CVE-2026-18722 | A vulnerability was found in diaowen DWSurvey up to 6.14.0. Impacted is the function in DwDeisgnSurveyController.devSurv | LOW | 2.1 | 12% | EPSS 12%ile | NVD | 2026-08-04 |
| CVE-2026-55825 | Contao is an Open Source CMS. In versions 5.7.0 through 5.7.6, an authenticated backend user who can access one job can | LOW | 3.1 | 11% | EPSS 11%ile | NVD | 2026-07-31 |
| CVE-2025-71402 | better-auth versions greater than 1.3.34 and before 1.4.0 contain a vulnerability in the multi-session plugin's /sign-ou | LOW | 2.0 | 11% | EPSS 11%ile | NVD | 2026-08-01 |
| CVE-2026-17702 | Inappropriate implementation in Skia in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromis | LOW | 3.1 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-17715 | Inappropriate implementation in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who convince | LOW | 3.1 | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-67350 | Serendipity before 2.6.1 contains an open redirect vulnerability in exit.php that allows unauthenticated attackers to re | LOW | 2.1 | 11% | EPSS 11%ile | NVD | 2026-07-31 |
| CVE-2026-18592 | A security flaw has been discovered in osCommerce 4.14.63493. Affected by this issue is the function EmailController of | LOW | 2.0 | 10% | EPSS 10%ile | NVD | 2026-08-03 |
| CVE-2026-15054 | The Bit Form WordPress plugin before 3.1.2 does not enforce a form's active/published status on its public form-submiss | LOW | 3.7 | 10% | EPSS 10%ile | NVD | 2026-07-30 |
| CVE-2026-18723 | A vulnerability was determined in diaowen DWSurvey up to 6.14.0. The affected element is an unknown function of the file | LOW | 2.1 | 10% | EPSS 10%ile | NVD | 2026-08-04 |
| CVE-2026-63235 | An improper access control vulnerability in Koollab LMS allowed an unauthenticated attacker to forcibly terminate the se | LOW | 3.7 | 10% | EPSS 10%ile | NVD | 2026-07-29 |
| CVE-2026-56568 | HCL iControl was affected by Information Exposure Through Verbose Client-Side API Error Messages vulnerabilities. It inv | LOW | 3.7 | 9% | EPSS 9%ile | NVD | 2026-07-31 |
| CVE-2026-14221 | The Easy Appointments WordPress plugin through 3.12.26 does not perform capability checks in several of its appointment- | LOW | 3.8 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-18209 | A flaw was found in the keycloak-services component of Keycloak, which handles OpenID Connect (OIDC) authentication flow | LOW | 3.4 | 9% | EPSS 9%ile | NVD | 2026-07-31 |
| CVE-2026-18217 | A flaw was found in the SAML protocol implementation of Keycloak, an open-source identity and access management solution | LOW | 3.4 | 9% | EPSS 9%ile | NVD | 2026-07-31 |
| CVE-2026-18719 | A vulnerability was detected in cemtan sar2html 4.0.0. This affects an unknown part of the file sar2html.py of the compo | LOW | 2.1 | 9% | EPSS 9%ile | NVD | 2026-08-04 |
| CVE-2026-17902 | Inappropriate implementation in Editing in Google Chrome on Linux prior to 151.0.7922.72 allowed a remote attacker to le | LOW | 3.5 | 9% | EPSS 9%ile | NVD | 2026-07-30 |
| CVE-2026-57232 | Contao is an Open Source CMS. From 5.3.35 through 5.3.47 and from 5.7.0-RC1 through 5.7.8, the Feed Reader front-end mod | LOW | 3.1 | 8% | EPSS 8%ile | NVD | 2026-07-31 |
| CVE-2026-10031 | SFTPGo prior to 2.7.4 contains a permission bypass vulnerability that allows authenticated users to circumvent per-direc | LOW | 2.3 | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-15381 | The WP Go Maps WordPress plugin before 10.1.04 does not properly sanitise and escape a parameter before using it in a S | LOW | 3.7 | 8% | EPSS 8%ile | NVD | 2026-07-31 |
| CVE-2026-14849 | The Paid Membership Subscriptions WordPress plugin before 3.0.7 does not protect the member and payment export files it | LOW | 3.7 | 8% | EPSS 8%ile | NVD | 2026-07-31 |
| CVE-2026-56570 | HCL iControl was affected by Auto complete Enabled vulnerabilities. It involves expose sensitive information such as: Va | LOW | 3.7 | 7% | EPSS 7%ile | NVD | 2026-07-31 |
| CVE-2026-17720 | Insufficient policy enforcement in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had c | LOW | 3.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17732 | Inappropriate implementation in SVG in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-orig | LOW | 3.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17826 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | LOW | 3.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-17980 | Inappropriate implementation in UI in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who conv | LOW | 3.1 | 7% | EPSS 7%ile | NVD | 2026-07-30 |
| CVE-2026-56571 | HCL iControl was affected by Improper Error Handling vulnerabilities. It involves Out of memory, null pointer exceptions | LOW | 3.7 | 7% | EPSS 7%ile | NVD | 2026-07-31 |
| CVE-2026-18648 | A vulnerability was detected in Blix Email Blue Mail Calendar App 2.2.305. Impacted is the function FileDirectory.getDat | LOW | 1.9 | 7% | EPSS 7%ile | NVD | 2026-08-03 |
| CVE-2026-58039 | A flaw in Node.js Permission Model enforcement allows process.report writes (and overwrites) files outside --allow-fs-wr | LOW | 3.3 | 7% | EPSS 7%ile | NVD | 2026-07-31 |
| CVE-2026-63236 | An improper access control vulnerability in Koollab LMS allowed an unauthenticated attacker to read another user's name, | LOW | 3.7 | 6% | EPSS 6%ile | NVD | 2026-07-29 |
| CVE-2026-14862 | The Support Genix WordPress plugin before 1.4.48 does not properly authorize access to support-ticket attachment downlo | LOW | 3.7 | 6% | EPSS 6%ile | NVD | 2026-07-31 |
| CVE-2026-14927 | The FluentCart A New Era of eCommerce WordPress plugin before 1.5.3 does not perform any authorization or ownership che | LOW | 3.7 | 6% | EPSS 6%ile | NVD | 2026-07-31 |
| CVE-2026-56608 | HCL iControl is affected by Missing Access Control vulnerability. The application failed to enforce proper granular acce | LOW | 3.7 | 6% | EPSS 6%ile | NVD | 2026-08-03 |
| CVE-2026-18569 | A flaw was found in the backchannel logout endpoint of the keycloak-services component, which is part of the Red Hat Bui | LOW | 3.7 | 6% | EPSS 6%ile | NVD | 2026-08-04 |
| CVE-2026-56847 | A flaw in Node.js Permission Model enforcement allows `trace_events.createTracing().enable()` Writes Trace Logs Outside | LOW | 3.3 | 6% | EPSS 6%ile | NVD | 2026-07-30 |
| CVE-2026-55824 | Contao is an Open Source CMS. In versions 4.13.40 through 5.3.46 and 5.7.0-RC1 through 5.7.6, the crawler leaks auth cre | LOW | 2.6 | 5% | EPSS 5%ile | NVD | 2026-07-31 |
| CVE-2026-18000 | Insufficient policy enforcement in USB in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who | LOW | 3.1 | 5% | EPSS 5%ile | NVD | 2026-07-30 |
| CVE-2026-66401 | FreeRDP before 3.29.0 contains an out-of-bounds heap read vulnerability in the UVC H.264 extension-unit parser that fail | LOW | 2.4 | 5% | EPSS 5%ile | NVD | 2026-08-01 |
| CVE-2026-10774 | Zephyr's Bluetooth Mesh subnet key management leaks one PSA Crypto key slot on every subnet-key teardown. In subsys/blue | LOW | 2.4 | 5% | EPSS 5%ile | NVD | 2026-08-02 |
| CVE-2026-63545 | Sharp and Toshiba Tec MFPs (multifunction printers) caches data internally when printing, and leave them uncleared. They | LOW | 2.4 | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-11366 | The MonsterInsights WordPress plugin before 11.1.0 does not correctly validate the signature on one of its unauthentica | LOW | 3.7 | 4% | EPSS 4%ile | NVD | 2026-08-04 |
| CVE-2026-17957 | Inappropriate implementation in CORS in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromis | LOW | 3.1 | 4% | EPSS 4%ile | NVD | 2026-07-30 |
| CVE-2026-13393 | The ElementsKit Elementor Addons WordPress plugin before 3.10.01 does not sanitize or escape certain megamenu menu-item | LOW | 3.5 | 4% | EPSS 4%ile | NVD | 2026-07-31 |
| CVE-2026-65636 | Improper Neutralization of CRLF Sequences vulnerability in ufirstgroup ymlr (Elixir.Ymlr module) allows attackers to inj | LOW | 2.1 | 4% | EPSS 4%ile | NVD | 2026-07-31 |
| CVE-2026-63241 | An insecure direct object reference vulnerability in Koollab LMS allowed an authenticated user to query the course compl | LOW | 3.1 | 4% | EPSS 4%ile | NVD | 2026-07-29 |
| CVE-2026-16070 | The Brizy WordPress plugin before 2.8.19 does not properly verify authorization on the object being modified before upd | LOW | 2.7 | 3% | EPSS 3%ile | NVD | 2026-08-04 |
| CVE-2026-63228 | An unrestricted image upload vulnerability in Koollab LMS allowed an authenticated attacker to upload malicious content | LOW | 2.6 | 3% | EPSS 3%ile | NVD | 2026-07-29 |
| CVE-2026-17997 | Inappropriate implementation in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had comp | LOW | 3.1 | 3% | EPSS 3%ile | NVD | 2026-07-30 |
| CVE-2026-17766 | Insufficient validation of untrusted input in Clipboard in Google Chrome on Android prior to 151.0.7922.72 allowed a loc | LOW | 3.3 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-54522 | MessagePack for Ruby is an implementation of the MessagePack binary serialization format. Prior to 1.8.2, MessagePack::B | LOW | 2.1 | 2% | EPSS 2%ile | NVD | 2026-07-30 |
| CVE-2026-50568 | Fission: SanitizeFilePath lexical HasPrefix bypass permits sibling-directory escape | LOW | 3.6 | 2% | EPSS 2%ile | GitHub | 2026-07-28 |
| CVE-2026-18581 | A vulnerability was determined in ggml-org llama.cpp e15efe0. Affected by this issue is some unknown functionality of th | LOW | 1.9 | 2% | EPSS 2%ile | NVD | 2026-08-03 |
| CVE-2026-62995 | joserfc is a Python library that provides an implementation of several JSON Object Signing and Encryption (JOSE) standar | LOW | 2.3 | 1% | EPSS 1%ile | NVD | 2026-07-29 |
| CVE-2026-54620 | sqlite3-ruby has Use-After-Free in SQLite Aggregate Function Callbacks | LOW | — | 1% | EPSS 1%ile | GitHub | 2026-07-28 |
| CVE-2026-54619 | sqlite3-ruby has Use-After-Free When Redefining SQLite Functions with Different Arity | LOW | — | 1% | EPSS 1%ile | GitHub | 2026-07-28 |
| CVE-2026-52791 | fuse-overlayfs is an implementation of overlayfs in FUSE for rootless containers. Prior to 1.17, the release-1.x C branc | LOW | 2.0 | 1% | EPSS 1%ile | NVD | 2026-07-29 |
| CVE-2026-18604 | A vulnerability was identified in textPlus Text Message and Call App up to 8.3.5 on Android. This impacts the function D | LOW | 1.9 | 1% | EPSS 1%ile | NVD | 2026-08-03 |
| CVE-2026-10684 | In subsys/debug/coredump/coredump_shell.c, print_coredump_hdr() used the 16-bit tgt_code field of a stored Zephyr coredu | LOW | 3.0 | 1% | EPSS 1%ile | NVD | 2026-07-29 |
| CVE-2026-68744 | A flaw was found in SSSD. The sss_nss_protocol_fill_initgr() function in the NSS responder pre-allocates reply space for | LOW | 3.3 | 1% | EPSS 1%ile | NVD | 2026-08-04 |
| CVE-2026-59326 | The Spring Boot language server logs the raw value of the https_proxy/HTTPS_PROXY/http_proxy/HTTP_PROXY environment vari | LOW | 3.3 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-17860 | Insufficient validation of untrusted input in Mobile in Google Chrome on Android prior to 151.0.7922.72 allowed a local | LOW | 3.3 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-18739 | A flaw was found in popt, a command-line option parsing library. An off-by-one error in the poptStuffArgs function, when | LOW | 2.5 | 1% | EPSS 1%ile | NVD | 2026-08-04 |
| CVE-2026-17984 | Inappropriate implementation in Browser in Google Chrome on Android prior to 151.0.7922.72 allowed a local attacker to l | LOW | 3.3 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-54787 | sigstore-go is a Go library for Sigstore signing and verification. Prior to 1.2.1, sigstore-go does not check a bundle s | LOW | 3.1 | 1% | EPSS 1%ile | NVD | 2026-07-31 |
| CVE-2026-18011 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a local attacker t | LOW | 2.4 | 1% | EPSS 1%ile | NVD | 2026-07-30 |
| CVE-2026-2482 | IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to cross-site request forgery which c | LOW | 3.1 | 0% | EPSS 0%ile | NVD | 2026-07-29 |
| CVE-2026-11836 | Insufficient verification of data authenticity in Caliptra Core ROM and Core Firmware (validate_debug_unlock_token()) in | LOW | 1.8 | 0% | EPSS 0%ile | NVD | 2026-08-04 |
| CVE-2026-18591 | A vulnerability was identified in Meesho Online Shopping App up to 20260607 on Android. Affected by this vulnerability i | LOW | 0.9 | 0% | EPSS 0%ile | NVD | 2026-08-03 |
| GHSA-pc2w-4mq8-32qw | @dynatrace-oss/dynatrace-mcp-server's create_dynatrace_notebook missing the human-approval gate | LOW | 3.7 | — | — | GitHub | 2026-07-29 |
| CVE-2026-66884 | Cross-Site Request Forgery vulnerability in Erlang Ecosystem Foundation oidcc_plug (Oidcc.Plug.AuthorizationCallback mod | LOW | 2.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-18766 | A flaw has been found in chetans9 core-php-admin-panel up to 90d07ed5aac5e0f09b6a5828d7bb2eb83010763f. This issue affect | LOW | 2.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-18773 | A vulnerability was detected in NousResearch hermes-agent up to 2026.6.5. Affected by this issue is the function _check_ | LOW | 2.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-18774 | A flaw has been found in NousResearch hermes-agent up to 0.16.0. This affects the function save_url_image of the file ag | LOW | 2.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-18775 | A vulnerability has been found in NousResearch hermes-agent up to 0.16.0. This vulnerability affects the function browse | LOW | 2.1 | — | — | NVD | 2026-08-04 |
| CVE-2026-18784 | A vulnerability was found in o6 open62541 up to 1.5.5. This issue affects the function UA_Client_readNodeClassAttribute | LOW | 1.9 | — | — | NVD | 2026-08-04 |
| CVE-2026-18785 | A vulnerability was determined in o6 open62541 ca356b088ada7dee824d1b4acd07c1ff07ce242b. Impacted is the function UA_Cli | LOW | 1.9 | — | — | NVD | 2026-08-04 |
| GHSA-pmwx-rm49-xv39 | ActiveRecord::Tenanted::Storage::DiskService#path_for has a possible path traversal | LOW | — | — | — | GitHub | 2026-07-29 |
| CVE-2026-52102 | An OS command injection vulnerability in the openmediavault-md plugin of OpenMediaVault v8.0.4-1 allows attackers to exe | UNKNOWN | — | 46% | EPSS 46%ile | NVD | 2026-08-03 |
| CVE-2026-15244 | The HUSKY WordPress plugin before 1.4.1 does not sanitize a stored setting value against directory traversal before con | UNKNOWN | — | 40% | EPSS 40%ile | NVD | 2026-08-01 |
| CVE-2026-51190 | The "s init" command in Serverless-Devs @serverless-devs/s <= 3.1.11 passes unsanitized user input to child_process.spaw | UNKNOWN | — | 39% | EPSS 39%ile | NVD | 2026-08-03 |
| CVE-2026-12872 | The Webinfos WordPress plugin through 1.2 does not validate the type or name of uploaded files, nor restrict the upload | UNKNOWN | — | 20% | EPSS 20%ile | NVD | 2026-08-03 |
| CVE-2026-15932 | The Support Genix WordPress plugin before 1.4.48 does not prevent directory traversal in its ticket-attachment download | UNKNOWN | — | 17% | EPSS 17%ile | NVD | 2026-08-01 |
| CVE-2025-15672 | The ChamaWP WordPress plugin before 1.0.13 does not properly validate user input before passing it to a PHP deserializa | UNKNOWN | — | 13% | EPSS 13%ile | NVD | 2026-08-03 |
| CVE-2026-16250 | The Personal QR Message WordPress plugin through 1.0 does not restrict the file types that can be uploaded through an un | UNKNOWN | — | 13% | EPSS 13%ile | NVD | 2026-08-03 |
| CVE-2026-16062 | The Event Booking Manager for WooCommerce WordPress plugin before 5.3.7 does not prevent the deserialization of user-co | UNKNOWN | — | 11% | EPSS 11%ile | NVD | 2026-08-02 |
| CVE-2026-17735 | Insufficient validation of untrusted input in BFCache in Google Chrome prior to 151.0.7922.72 allowed a remote attacker | UNKNOWN | — | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-17913 | Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker | UNKNOWN | — | 11% | EPSS 11%ile | NVD | 2026-07-30 |
| CVE-2026-16060 | The Insert or Embed Articulate Content into WordPress plugin through 4.3000000027 does not correctly validate the conten | UNKNOWN | — | 11% | EPSS 11%ile | NVD | 2026-08-03 |
| CVE-2026-16618 | The Improve SEO WordPress plugin through 2.0.11 does not properly validate uploaded files, checking only the file conten | UNKNOWN | — | 10% | EPSS 10%ile | NVD | 2026-08-04 |
| CVE-2026-52520 | Emlog CMS <= 2.6.14 contains a stored cross-site scripting (XSS) vulnerability in the article publishing module (/admin/ | UNKNOWN | — | 10% | EPSS 10%ile | NVD | 2026-08-03 |
| CVE-2026-14557 | The SoftMarket — Digital Marketplace WordPress plugin through 1.0.0 does not properly validate an authentication token i | UNKNOWN | — | 8% | EPSS 8%ile | NVD | 2026-08-03 |
| CVE-2026-14920 | ## Summary | UNKNOWN | — | 8% | EPSS 8%ile | NVD | 2026-08-02 |
| CVE-2022-4994 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86: wean fast IN from emulator_pio_in Use __ | UNKNOWN | — | 8% | EPSS 8%ile | NVD | 2026-07-30 |
| CVE-2026-11882 | The Builderall for WordPress plugin before 3.0.2 does not bind the state value of its public OAuth authentication routes | UNKNOWN | — | 7% | EPSS 7%ile | NVD | 2026-08-01 |
| CVE-2026-13725 | The Dynamic Pricing With Discount Rules for WooCommerce WordPress plugin before 5.0.0 does not validate a nonce or user | UNKNOWN | — | 7% | EPSS 7%ile | NVD | 2026-08-01 |
| CVE-2026-64565 | In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - fix heap-buffer-overflow in ims_pc | UNKNOWN | — | 7% | EPSS 7%ile | NVD | 2026-08-04 |
| CVE-2026-15248 | The Meta Box WordPress plugin before 5.13.1 does not verify that a user is authorized to delete the supplied attachment | UNKNOWN | — | 6% | EPSS 6%ile | NVD | 2026-08-02 |
| CVE-2026-14817 | The Element Pack Addons for Elementor WordPress plugin before 8.7.13 does not sanitize option values passed through cer | UNKNOWN | — | 6% | EPSS 6%ile | NVD | 2026-08-02 |
| CVE-2026-14824 | The Quiz and Survey Master (QSM) WordPress plugin before 11.2.2 does not properly escape a question setting before outp | UNKNOWN | — | 6% | EPSS 6%ile | NVD | 2026-08-04 |
| CVE-2025-15673 | The Import and export users and customers WordPress plugin before 2.4.3 does not restrict the path of a file it reads an | UNKNOWN | — | 6% | EPSS 6%ile | NVD | 2026-08-03 |
| CVE-2026-16068 | The Brizy WordPress plugin before 2.8.19 does not properly restrict who can modify its site-global design data and does | UNKNOWN | — | 6% | EPSS 6%ile | NVD | 2026-08-04 |
| CVE-2026-67974 | A parser boundary flaw in the Software Bus Network (SBN) application's peer subscription message handling in NASA cFS v7 | UNKNOWN | — | 5% | EPSS 5%ile | NVD | 2026-08-03 |
| CVE-2026-14872 | The Database for Contact Form 7, WPforms, Elementor forms WordPress plugin before 1.5.5 does not properly sanitise and e | UNKNOWN | — | 5% | EPSS 5%ile | NVD | 2026-08-04 |
| CVE-2026-64561 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Check for invalid/obsolete root *after* m | UNKNOWN | — | 5% | EPSS 5%ile | NVD | 2026-08-04 |
| CVE-2026-64562 | In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Hide shadow VMCS right after VMCLEAR fr | UNKNOWN | — | 5% | EPSS 5%ile | NVD | 2026-08-04 |
| CVE-2026-64564 | In the Linux kernel, the following vulnerability has been resolved: sctp: don't free the ASCONF's own transport in DEL- | UNKNOWN | — | 5% | EPSS 5%ile | NVD | 2026-08-04 |
| CVE-2026-64563 | In the Linux kernel, the following vulnerability has been resolved: rhashtable: clear stale iter->p on table restart r | UNKNOWN | — | 5% | EPSS 5%ile | NVD | 2026-08-04 |
| CVE-2026-15233 | The Nested Pages WordPress plugin before 3.2.15 does not properly escape post titles before outputting them into HTML at | UNKNOWN | — | 5% | EPSS 5%ile | NVD | 2026-08-04 |
| CVE-2026-16623 | The Create Block WordPress plugin before 2.10.0 does not correctly escape user-supplied text before writing it into a g | UNKNOWN | — | 5% | EPSS 5%ile | NVD | 2026-08-04 |
| CVE-2026-16256 | The POUCO Import Users WordPress plugin through 1.0.0 does not perform any capability or nonce checks on AJAX actions av | UNKNOWN | — | 5% | EPSS 5%ile | NVD | 2026-08-02 |
| CVE-2026-52521 | A SQL injection vulnerability in Z-BlogPHP 1.7.5 allows authenticated attackers to execute arbitrary SQL commands via th | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-67969 | An issue in the HS_MonitorApplications() component of NASA cFS v7.0.1 allows attackers to force the processor to reset v | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-67973 | An issue in the CFDP receive path of NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via replaying f | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-67975 | Incorrect access control in NASA cFS v7.0.1 allows attackers to arbitrarily remove low-index subscriptions and add new s | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-67977 | An integer overflow in the Svc::FileDownlink::SendPartial component of fprime framework v4.2.2 allows attackers to cause | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-14840 | The YOP Poll WordPress plugin before 7.0.6 does not validate the connection's origin IP address and instead trusts clien | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-01 |
| CVE-2026-67972 | An issue in the CF_CFDP_RecvMd() component of NASA cFS v7.0.1 allows attackers to contrl where received content and data | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-67976 | The Ref::SignalGen component of fprime framework v4.2.2 does not validate the safety of user-controlled parameters, allo | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-67673 | A stack-based buffer overflow vulnerability exists in the cmd_edl function of OreSat Firmware v1.0. The vulnerability is | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2025-69944 | kishan0725 Hospital Management System 4.0 is vulnerable to SQL Injection in the view-medhistory.php endpoint via the vie | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-07-29 |
| CVE-2026-11872 | The Clever Mega Menu for Visual Composer WordPress plugin through 1.0.1 does not perform a nonce or capability check in | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-02 |
| CVE-2026-51775 | SQL injection vulnerability in Fastadmin v.1.6.1.20250430 allows an attacker to exectue arbitrary code via the applicati | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-15231 | The Tag, Category, and Taxonomy Manager WordPress plugin before 3.51.0 does not verify that a user is authorized to acc | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-13157 | The Demo Import WordPress plugin through 1.1.3 does not validate the type of files uploaded during demo-content import | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-01 |
| CVE-2026-13158 | The Everest Toolkit WordPress plugin through 1.2.3 does not validate the type of files uploaded during demo-content impo | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-01 |
| CVE-2026-67970 | Incorrect access control in the DS_SetDestPathCmd() component of NASA cFS v7.0.1 allows attackers to access sensitive co | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-67978 | An issue in the SBN UDP interface of NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via transmittin | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-03 |
| CVE-2026-14309 | The Chat On Desk Order Notifications WordPress plugin before 1.0.9 does not verify that the one-time password has been | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-01 |
| CVE-2026-14596 | The DynamicKit for Elementor WordPress plugin before 1.0.3 does not validate the host of a user-supplied URL used as the | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-01 |
| CVE-2026-14822 | The Event Tickets and Registration WordPress plugin before 5.29.0.1 does not perform any authorization check on one of i | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-01 |
| CVE-2026-14836 | The Login & Register Forms WordPress plugin before 3.2.5 does not properly enforce the rate limit on its password-reset | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-01 |
| CVE-2026-15368 | The User Profile Builder WordPress plugin before 3.16.4 does not correctly bind the automatic login performed after use | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-01 |
| CVE-2026-15958 | The Easy Integration for Dropbox WordPress plugin before 2.2.0 does not perform authorization checks on several of its | UNKNOWN | — | 4% | EPSS 4%ile | NVD | 2026-08-04 |
| CVE-2026-14939 | The Visualizer WordPress plugin before 4.0.6 does not restrict a user-supplied URL to safe address ranges before fetchi | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-04 |
| CVE-2026-13604 | The Pixelavo WordPress plugin before 1.5.4 registers an unauthenticated AJAX action, gated only by a nonce that it emit | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2026-14195 | The Brizy WordPress plugin before 2.8.18 does not properly verify authorization on a request handler before returning p | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2026-14197 | The Fluent Support WordPress plugin before 2.3.1 does not perform a per-ticket access check before reassigning a ticket | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2026-14214 | The Booking for Appointments and Events Calendar WordPress plugin before 2.4.4 does not restrict which fields can be wr | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2026-14823 | The Event Tickets and Registration WordPress plugin before 5.29.0.1 does not properly verify authorization on some of it | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-01 |
| CVE-2026-14938 | The FluentBoards WordPress plugin before 1.95.3 does not verify that the items selected for a board import operation be | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-02 |
| CVE-2026-15939 | The Simple Restrict WordPress plugin before 1.2.9 does not enforce its content-restriction permission check on the REST | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-02 |
| CVE-2026-16042 | The LWS Optimize WordPress plugin before 3.4 does not perform a capability check on its cache-clearing actions, allowin | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-02 |
| CVE-2026-16291 | The ProfileGrid WordPress plugin before 5.9.9.8 does not verify that a notification belongs to the requesting user befo | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-02 |
| CVE-2026-16057 | The Contest Gallery WordPress plugin before 30.0.7 does not perform per-object capability or nonce checks in one of its | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-03 |
| CVE-2026-16274 | The Classified Listing WordPress plugin before 5.4.4 does not perform a capability or ownership check on an AJAX action | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-03 |
| CVE-2026-16276 | The Classified Listing WordPress plugin before 5.4.4 does not perform a capability check on an AJAX action that returns | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-03 |
| CVE-2026-14848 | The Paid Membership Subscriptions WordPress plugin before 3.0.8 does not verify that the subscription being modified th | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-04 |
| CVE-2026-16035 | The miniOrange 2FA WordPress plugin before 6.2.7 does not restrict who can trigger its second-factor configuration OTP | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-04 |
| CVE-2026-16056 | The Contest Gallery WordPress plugin before 30.0.7 does not perform any capability or nonce check in one of its handler | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-08-04 |
| CVE-2026-64531 | RE: OVSwrap (CVE-2026-64531): Linux kernel/OVS local root vulnerability | UNKNOWN | — | 3% | EPSS 3%ile | OSS-Security | 2026-08-01 |
| CVE-2026-14239 | The tourmaster WordPress plugin before 5.4.8 does not perform a nonce check when storing a custom-filter label taken fro | UNKNOWN | — | 3% | EPSS 3%ile | NVD | 2026-07-30 |
| CVE-2026-10827 | The Spectra Legacy WordPress plugin before 2.20.0 does not validate or escape several block style attributes before usi | UNKNOWN | — | 2% | EPSS 2%ile | NVD | 2026-08-01 |
| CVE-2026-12586 | The Lenxel WP WordPress theme through 1.0.31 does not perform any authorization or ownership check on its password-reset | UNKNOWN | — | 2% | EPSS 2%ile | NVD | 2026-08-02 |
| CVE-2026-0011 | [NotCVE-2026-0011] Nmap 7.99 and Earlier nselib/packet.lua Zero-Length TCP Option Infinite Loop Allows Remote Denial of | UNKNOWN | — | 2% | EPSS 2%ile | OSS-Security | 2026-07-29 |
| CVE-2026-16292 | The Frontend File Manager Plugin WordPress plugin through 23.6 does not perform nonce validation on one of its file-meta | UNKNOWN | — | 1% | EPSS 1%ile | NVD | 2026-08-02 |
| CVE-2026-13729 | The Podlove Podcast Publisher WordPress plugin before 4.5.3 does not perform nonce validation on some of its administrat | UNKNOWN | — | 1% | EPSS 1%ile | NVD | 2026-08-01 |
| CVE-2026-66051 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. | UNKNOWN | — | — | — | NVD | 2026-07-29 |
| CVE-2026-67188 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. | UNKNOWN | — | — | — | NVD | 2026-07-29 |
| CVE-2026-66737 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. | UNKNOWN | — | — | — | NVD | 2026-07-29 |
| CVE-2026-18060 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r | UNKNOWN | — | — | — | NVD | 2026-07-29 |
| CVE-2026-16339 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. | UNKNOWN | — | — | — | NVD | 2026-07-29 |
| CVE-2026-51290 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-30 |
| CVE-2026-51291 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-30 |
| CVE-2026-51292 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-30 |
| CVE-2026-51293 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-30 |
| CVE-2026-51294 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-30 |
| CVE-2026-51295 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-30 |
| CVE-2026-51272 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-30 |
| CVE-2026-6889 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-6890 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-17592 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-68574 | Rejected reason: Reserved via standalone CLI outside the OSIM flaw workflow; releasing so the CVE ID can be properly res | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-68575 | Rejected reason: Reserved via standalone CLI outside the OSIM flaw workflow; releasing so the CVE ID can be properly res | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-68576 | Rejected reason: Reserved via standalone CLI outside the OSIM flaw workflow; releasing so the CVE ID can be properly res | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-68577 | Rejected reason: Reserved via standalone CLI outside the OSIM flaw workflow; releasing so the CVE ID can be properly res | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-9611 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51229 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51230 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51231 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51232 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51233 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51234 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51236 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51237 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51238 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51239 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51240 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51241 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51242 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51243 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51245 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51246 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51247 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51248 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51249 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51250 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51253 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51255 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51256 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51257 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51258 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51262 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51264 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51265 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51276 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51277 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51278 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51279 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51280 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51281 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51282 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51283 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51284 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51285 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51286 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51287 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51288 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51289 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51299 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-51301 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv | UNKNOWN | — | — | — | NVD | 2026-07-31 |
| CVE-2026-10772 | Rejected reason: ** DUPLICATE ** This CVE Record has been rejected by the Zephyr Project CNA. CVE-2026-10772 was assigne | UNKNOWN | — | — | — | NVD | 2026-08-01 |
| CVE-2026-17002 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. | UNKNOWN | — | — | — | NVD | 2026-08-01 |
| CVE-2026-68869 | Rejected reason: This CVE ID was assigned in error. Upon further review, the reported issue does not represent a securit | UNKNOWN | — | — | — | NVD | 2026-08-03 |
| CVE-2026-18809 | Information disclosure in Firefox for Android and Firefox Focus for Android. This vulnerability was fixed in Firefox 153 | UNKNOWN | — | — | — | NVD | 2026-08-04 |
| CVE-2026-70369 | Koha's reports/acquisitions_stats.pl builds its per-cell statistics query in sub calculate by interpolating the user-con | UNKNOWN | — | — | — | NVD | 2026-08-04 |
| CVE-2026-70370 | Koha's reports/catalogue_stats.pl builds dynamic SQL in sub calculate by interpolating the user-controlled Line and Colu | UNKNOWN | — | — | — | NVD | 2026-08-04 |
| CVE-2026-70371 | Koha's reports/issues_avg_stats.pl builds dynamic SQL in sub calculate by concatenating several user-controlled request | UNKNOWN | — | — | — | NVD | 2026-08-04 |
| CVE-2026-70372 | Koha's reports/bor_issues_top.pl builds dynamic SQL in sub calculate by concatenating several user-controlled request pa | UNKNOWN | — | — | — | NVD | 2026-08-04 |
| CVE-2026-70373 | Koha's reports/issues_stats.pl (the circulation statistics report) builds its calculation query in sub calculate by conc | UNKNOWN | — | — | — | NVD | 2026-08-04 |
| CVE-2025-29296 | H3C Magic BE18000 V200R007, H3C NX400 V100R015, H3C Magic NX30 Pro V100R0011, H3C Magic R3010 V100R009, H3C Magic NX15 V | UNKNOWN | — | — | — | NVD | 2026-08-04 |
| CVE-2026-55707 | [OSSA-2026-032] OpenStack Neutron: Subnetpool onboarding cross-project subnet mutation (CVE-2026-55707) | UNKNOWN | — | — | — | OSS-Security | 2026-07-29 |
| USN-8625-1 | USN-8625-1: OpenSSL vulnerability | UNKNOWN | — | — | — | Ubuntu | 2026-07-30 |
| USN-8624-1 | USN-8624-1: Sinatra vulnerability | UNKNOWN | — | — | — | Ubuntu | 2026-07-29 |
| USN-8561-2 | USN-8561-2: FreeRDP regression | UNKNOWN | — | — | — | Ubuntu | 2026-07-28 |
| DSA 6403-1 | [SECURITY] [DSA 6403-1] nss security update | UNKNOWN | — | — | — | Debian | 2026-07-29 |
| DSA 6407-1 | [SECURITY] [DSA 6407-1] incus security update | UNKNOWN | — | — | — | Debian | 2026-07-31 |
| DSA 6409-1 | [SECURITY] [DSA 6409-1] libgd2 security update | UNKNOWN | — | — | — | Debian | 2026-08-01 |
| OSS-20260804-1 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-04 |
| OSS-20260804-2 | Bouncy Castle 1.85 release fixes 32 CVEs | UNKNOWN | — | — | — | OSS-Security | 2026-08-04 |
| OSS-20260804-3 | Re: Bouncy Castle 1.85 release fixes 32 CVEs | UNKNOWN | — | — | — | OSS-Security | 2026-08-04 |
| OSS-20260804-4 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-04 |
| OSS-20260804-5 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-04 |
| OSS-20260804-7 | Re: Bouncy Castle 1.85 release fixes 32 CVEs | UNKNOWN | — | — | — | OSS-Security | 2026-08-04 |
| OSS-20260803-1 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-03 |
| OSS-20260803-2 | mpg123 release 1.33.7 with lots of security-relevant fixes | UNKNOWN | — | — | — | OSS-Security | 2026-08-03 |
| OSS-20260803-3 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-03 |
| OSS-20260803-6 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-03 |
| OSS-20260803-7 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-03 |
| OSS-20260803-9 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-03 |
| OSS-20260802-2 | [CVE requested] iwd <= 3.12: stack buffer overflow in the 802.11k beacon report handler, plus three parser/validatio | UNKNOWN | — | — | — | OSS-Security | 2026-08-02 |
| OSS-20260802-3 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-02 |
| OSS-20260802-4 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-02 |
| OSS-20260802-5 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-02 |
| OSS-20260802-6 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-02 |
| OSS-20260801-2 | Rejected CVE reports against SQLite, libraw, ESP32-audioI2S | UNKNOWN | — | — | — | OSS-Security | 2026-08-01 |
| OSS-20260801-4 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-01 |
| OSS-20260801-5 | Re: 33 Vulnerabilities in cJSON | UNKNOWN | — | — | — | OSS-Security | 2026-08-01 |
| OSS-20260801-7 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-08-01 |
| OSS-20260801-9 | Re: 33 Vulnerabilities in cJSON | UNKNOWN | — | — | — | OSS-Security | 2026-08-01 |
| OSS-20260731-1 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-4 | Re: 33 Vulnerabilities in cJSON | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-5 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-6 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-7 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-8 | Re: 33 Vulnerabilities in cJSON | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-9 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-10 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-11 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-12 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-13 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-14 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-15 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260731-16 | Re: Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-31 |
| OSS-20260730-22 | 33 Vulnerabilities in cJSON | UNKNOWN | — | — | — | OSS-Security | 2026-07-30 |
| OSS-20260730-25 | o6 Automation open62541: multiple CISA-coordinated OPC UA vulnerabilities | UNKNOWN | — | — | — | OSS-Security | 2026-07-30 |
| OSS-20260730-26 | Re: 33 Vulnerabilities in cJSON | UNKNOWN | — | — | — | OSS-Security | 2026-07-30 |
| OSS-20260730-27 | Some Changes to GNOME Security Tracking | UNKNOWN | — | — | — | OSS-Security | 2026-07-30 |
| OSS-20260730-29 | PHP 30 July 2026 security releases | UNKNOWN | — | — | — | OSS-Security | 2026-07-30 |
| OSS-20260729-2 | Re: Fwd: Heads-up: Upcoming important Samba security releases on 2026-07-28 | UNKNOWN | — | — | — | OSS-Security | 2026-07-29 |
| OSS-20260729-6 | Fwd: Node.js security updates for all active release lines, June 2026 | UNKNOWN | — | — | — | OSS-Security | 2026-07-29 |
| OSS-20260729-10 | Re: Fwd: Node.js security updates for all active release lines, June 2026 | UNKNOWN | — | — | — | OSS-Security | 2026-07-29 |
| GHSA-g6cj-pr64-35w5 | GHSA-g6cj-pr64-35w5 | UNKNOWN | — | — | — | OSV | 2026-08-04 |
| GHSA-jwv3-5hgf-82ww | GHSA-jwv3-5hgf-82ww | UNKNOWN | — | — | — | OSV | 2026-08-04 |
| GHSA-m2h6-j472-rp4c | GHSA-m2h6-j472-rp4c | UNKNOWN | — | — | — | OSV | 2026-08-04 |
| PYSEC-2026-3552 | PYSEC-2026-3552 | UNKNOWN | — | — | — | OSV | 2026-08-04 |
| PYSEC-2026-3553 | PYSEC-2026-3553 | UNKNOWN | — | — | — | OSV | 2026-08-04 |
| PYSEC-2026-3554 | PYSEC-2026-3554 | UNKNOWN | — | — | — | OSV | 2026-08-04 |
| GHSA-993g-76c3-p5m4 | GHSA-993g-76c3-p5m4 | UNKNOWN | — | — | — | OSV | 2026-07-31 |
| GHSA-fhv5-28vv-h8m8 | GHSA-fhv5-28vv-h8m8 | UNKNOWN | — | — | — | OSV | 2026-07-31 |
| GHSA-42h9-826w-cgv3 | GHSA-42h9-826w-cgv3 | UNKNOWN | — | — | — | OSV | 2026-08-02 |
| GHSA-7q8q-rj6j-mhjq | GHSA-7q8q-rj6j-mhjq | UNKNOWN | — | — | — | OSV | 2026-08-02 |
| GHSA-f4gw-2p7v-4548 | GHSA-f4gw-2p7v-4548 | UNKNOWN | — | — | — | OSV | 2026-08-02 |
| GHSA-gcfj-64vw-6mp9 | GHSA-gcfj-64vw-6mp9 | UNKNOWN | — | — | — | OSV | 2026-08-02 |
| GHSA-hcpx-6fm6-wx23 | GHSA-hcpx-6fm6-wx23 | UNKNOWN | — | — | — | OSV | 2026-08-02 |
| GHSA-jqh4-m9w3-8hp9 | GHSA-jqh4-m9w3-8hp9 | UNKNOWN | — | — | — | OSV | 2026-08-02 |
| GHSA-mmx7-hfxf-jppx | GHSA-mmx7-hfxf-jppx | UNKNOWN | — | — | — | OSV | 2026-08-02 |
| GHSA-mwf2-3pr3-8698 | GHSA-mwf2-3pr3-8698 | UNKNOWN | — | — | — | OSV | 2026-08-02 |
| GHSA-pmv8-rq9r-6j72 | GHSA-pmv8-rq9r-6j72 | UNKNOWN | — | — | — | OSV | 2026-08-02 |
| GHSA-xj6q-8x83-jv6g | GHSA-xj6q-8x83-jv6g | UNKNOWN | — | — | — | OSV | 2026-08-02 |
| GHSA-659m-px2c-25wj | GHSA-659m-px2c-25wj | UNKNOWN | — | — | — | OSV | 2026-07-31 |
| GHSA-5gvw-p9qm-jgwh | GHSA-5gvw-p9qm-jgwh | UNKNOWN | — | — | — | OSV | 2026-08-03 |
| GHSA-rmj7-2vxq-3g9f | GHSA-rmj7-2vxq-3g9f | UNKNOWN | — | — | — | OSV | 2026-07-30 |
| FG-IR-26-154 | Buffer overread in authd and wad daemon | UNKNOWN | — | — | — | Fortinet | 2026-07-14 |
| FG-IR-26-149 | Cross-Site Scripting in Domain parameter | UNKNOWN | — | — | — | Fortinet | 2026-07-14 |
| FG-IR-26-152 | Header injection in Web Filter warning page | UNKNOWN | — | — | — | Fortinet | 2026-07-14 |
| FG-IR-26-153 | Header injection in captive portal authentication form | UNKNOWN | — | — | — | Fortinet | 2026-07-14 |
| FG-IR-26-147 | Missed certificate verification in AD Connector communication with FortiClient EMS | UNKNOWN | — | — | — | Fortinet | 2026-07-14 |
| FG-IR-26-146 | Out of bounds read in GUI | UNKNOWN | — | — | — | Fortinet | 2026-07-14 |
| FG-IR-26-151 | Path traversal in CLI command allows deletion of root file system | UNKNOWN | — | — | — | Fortinet | 2026-07-14 |
| FG-IR-26-150 | SSL-VPN Reflected XSS | UNKNOWN | — | — | — | Fortinet | 2026-07-14 |
| FG-IR-26-148 | Stack Buffer Overflow in Log Report | UNKNOWN | — | — | — | Fortinet | 2026-07-14 |
| FG-IR-26-155 | Supers override fails to properly override supervisor address | UNKNOWN | — | — | — | Fortinet | 2026-07-14 |
| FG-IR-26-145 | Unauthenticated VNC access exposed on all interfaces | UNKNOWN | — | — | — | Fortinet | 2026-07-14 |
| FG-IR-25-1052 | LDAP authentication bypass in Agentless VPN and FSSO | UNKNOWN | — | — | — | Fortinet | 2026-02-10 |
| FG-IR-26-140 | Improper access control in API endpoints | UNKNOWN | — | — | — | Fortinet | 2026-06-09 |
| FG-IR-26-143 | Restricted CLI escape using Lua | UNKNOWN | — | — | — | Fortinet | 2026-06-09 |
| FG-IR-26-141 | Second-Order OS Command Injection via JSON Input on start vnc feature | UNKNOWN | — | — | — | Fortinet | 2026-06-09 |
| FG-IR-24-452 | Insertion of Sensitive 2FA Information in logs and debug command | UNKNOWN | — | — | — | Fortinet | 2025-10-14 |
| FG-IR-25-545 | Trusted hosts bypass via SSH | UNKNOWN | — | — | — | Fortinet | 2025-11-18 |
| FG-IR-26-138 | Arbitrary log file read in administrative interface | UNKNOWN | — | — | — | Fortinet | 2026-05-12 |
| FG-IR-26-131 | Command injection in CLI | UNKNOWN | — | — | — | Fortinet | 2026-05-12 |
| FG-IR-26-137 | DoS due to unsafe function in signal handler | UNKNOWN | — | — | — | Fortinet | 2026-05-12 |
| FG-IR-26-129 | Hardcoded Encryption Key Used for VPN Saved Passwords | UNKNOWN | — | — | — | Fortinet | 2026-05-12 |
| FG-IR-26-128 | Improper access control on API endpoints | UNKNOWN | — | — | — | Fortinet | 2026-05-12 |
| FG-IR-26-136 | Incorrect global authorization | UNKNOWN | — | — | — | Fortinet | 2026-05-12 |
| FG-IR-26-133 | OS command injection in CLI | UNKNOWN | — | — | — | Fortinet | 2026-05-12 |
| FG-IR-26-130 | OTP Disclosure via Exported TokenContentProvider | UNKNOWN | — | — | — | Fortinet | 2026-05-12 |
| FG-IR-26-123 | Out-of-bounds access in CAPWAP daemon | UNKNOWN | — | — | — | Fortinet | 2026-05-12 |
| FG-IR-26-132 | SQL command injection in administrative portal | UNKNOWN | — | — | — | Fortinet | 2026-05-12 |
| FG-IR-26-134 | User controlled SQL commands | UNKNOWN | — | — | — | Fortinet | 2026-05-12 |
| FG-IR-26-127 | Out-Of-Bounds Write in administrative interface | UNKNOWN | — | — | — | Fortinet | 2026-04-15 |
| FG-IR-26-101 | 2FA request can be replayed without a valid token after one successful request | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-115 | Arbitrary directory delete on vmimages delete feature | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-126 | Axios npm Package Compromised | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-105 | Clear-text credentials retrievable with IP modification for LDAP | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-104 | Clear-text credentials retrievable with IP modification for connectors | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-106 | Cleartext Credentials in response for API endpoints | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-113 | Credential disclosure in LDAP configuration web page. | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-107 | Hardcoded symmetric encryption key for Postgresql | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-121 | Heap-based buffer overflow in oftpd daemon | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-108 | Integer Overflow Denial of Service in administrative interface | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-125 | Missing Authentication for critical function in CAPWAP daemon | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-114 | Multiple Path traversals in CLI | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-102 | Multiple SQL Injections | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-110 | Multiple Stored XSS | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-100 | OS Command Injection through API endpoint | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-118 | Open Redirection via Import CSV option | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| FG-IR-26-122 | Path Traversal in CLI | UNKNOWN | — | — | — | Fortinet | 2026-04-14 |
| OSSA-2026-031 | OSSA-2026-031: Swift proxy denial of service via Accept header | UNKNOWN | — | — | — | OpenStack | 2026-07-28 |
| OSSA-2026-030 | OSSA-2026-030: Swift S3API header authorization bypass | UNKNOWN | — | — | — | OpenStack | 2026-07-28 |
| OSSN-0103 | OSSN-0103: Manila resource-lock list trusts a foreign project_id filter | UNKNOWN | — | — | — | OpenStack | 2026-08-03 |
Updated 2026-08-04. Sources: NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB and more. JSON API available for automation.