boxscore/security
Monday, August 17, 2026 · all times UTC← 2026-08-16 · archive · 2026-08-18 →

338 CVEs published August 17, 2026: 66 critical, 111 high, 122 medium, 37 low; 0 in KEV; 40 with a public exploit reference; 2 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 313 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published62651507014442563
KEV catalog size1670

903 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; medians are over each vendor's YTD disclosures.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux1264284936316789802730.17.8.0017+1248
microsoft443180413112194298378331.87.8.0038-196
google4946172140228187351.16.5.0023+48
red hat1473692516815818400.07.1.0025+123
apple34278577113949372.56.5.0022+34
canonical11149320000.09.9.0029+11
suse551220000.07.3.0022+5
android010100161100.08.4.01710
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco315192590961427.57.8.0033+24
palo alto networks12270114101427.44.5.0019+2
fortinet7253612128624.06.0.0051-3
sonicwall1012354017216.77.8.0024+8
vmware01247012100.08.7.00440
netgear990054800.04.3.0031+9
ivanti38130033562.57.9.5751+3
checkpoint1541003240.09.3.2062+1
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache101238451207214020.87.5.0048+100
mozilla1734226501300.09.1.0031-1
gitlab153019162426.75.3.0026+15
github570520000.08.6.0041+4
wordpress2513105240.08.8.0089+2
docker140130100.05.7.0014+1
drupal01100051100.09.8.88320
kubernetes010001000.02.4.00240
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle01113212539304574030.37.6.0031-1
ibm19230061139946710.37.5.0030+161
adobe6010022512217544.07.8.0036+45
progress1942112380912.48.1.0028+19
solarwinds0201611011420.09.1.00500
veeam10123720400.08.6.0027+10
zohocorp472410000.08.8.0099+4
atlassian0303001300.08.0.00260
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
d-link1624150622614.29.3.0209+16
siemens192011612100.07.3.0011+19
hikvision0704202114.37.2.00250
bosch030300000.08.1.00280
schneider electric031200100.08.7.00200
synology110100000.07.3.0013+1
honeywell010010000.06.9.00310
mitsubishi electric010100000.07.1.00130
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
siyuan-note61683310231000.08.8.0025+61
elastic4867013540300.06.5.0027+48
mongodb3258337162200.07.1.0024+32
surrealdb057326253000.07.1.0025-2
zephyrproject3153018296000.06.3.0016+30
gitea4848715224000.06.5.0027+48
netty546629101000.07.5.0046+4
grafana243314233000.06.5.0033-4

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-8037.993199.99.8
CVE-2026-63030.956099.99.8
CVE-2026-34486.829399.67.5
CVE-2026-16232.733099.49.3
CVE-2026-60137.731099.45.9
CVE-2026-0770.568899.09.8
CVE-2026-62144.206297.39.1
CVE-2021-27137.164996.78.1
CVE-2026-15733.135496.19.8
CVE-2026-63077.107295.49.8
Highest CVSS
CVECVSSEPSSNote
CVE-2026-7289810.0.1040KEV
CVE-2026-898510.0.0660
CVE-2026-651610.0.0473
CVE-2026-4766810.0.0434
CVE-2026-4836210.0.0207
CVE-2026-1918810.0.0189
CVE-2026-7329910.0.0121
CVE-2026-4435910.0.0100
CVE-2026-4561810.0.0095
CVE-2025-7138910.0.0093
Most disclosures (vendor)
VendorCVEs
linux1915
oracle1108
microsoft462
google451
ibm261
red hat246
apache204
apple201
adobe74
siyuan-note68
Most KEV additions (YTD)
VendorKEV
microsoft33
cisco14
apple7
fortinet6
google5
ivanti5
adobe4
langflow4
solarwinds4
synacor4
Most-affected ecosystems
EcosystemAdvisories
Maven66
PyPI5
npm4
Go3
Packagist2
crates.io2
NuGet1
Fastest to KEV
CVEVendorDays
CVE-2021-27137DD-WRT0
CVE-2025-68686Fortinet0
CVE-2026-0770Langflow0
CVE-2026-16232checkpoint0
CVE-2026-16812Arista Networks0
CVE-2026-18556N-able0
CVE-2026-18577N-able0
CVE-2026-20316Cisco0
CVE-2026-20349Cisco0
CVE-2026-34486Apache Software Foundation0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104Accellion2021-11-171734
CVE-2021-27102Accellion2021-11-171734
CVE-2021-27101Accellion2021-11-171734
CVE-2021-27103Accellion2021-11-171734
CVE-2021-21017Adobe2021-11-171734
CVE-2021-28550Adobe2021-11-171734
CVE-2021-42013Apache2021-11-171734
CVE-2021-41773Apache2021-11-171734
CVE-2021-30858Apple2021-11-171734
CVE-2021-30860Apple2021-11-171734

Transactions

ADDED TO KEVCVE-2025-62593 (ray-project ray). Remediation due August 20, 2026.

EXPLOIT PUBLISHEDCVE-2018-8727. Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2019-10869. Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2025-23368 (wildfly-core). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-2332 (Eclipse Foundation Eclipse Jetty). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-24842 (isaacs node-tar). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-27606 (rollup). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-27727 (swaldman mchange-commons-java). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-27962 (authlib). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-28498 (authlib). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-28802 (authlib). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-29074 (svgo). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-32597 (jpadilla pyjwt). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-33487 (russellhaering goxmldsig). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-35172 (distribution). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-40938 (tektoncd pipeline). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-41134 (microsoft kiota). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-42041 (axios). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-42880 (argoproj argo-cd). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-42945 (F5 NGINX Plus). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-4598 (jsrsasign). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-4599 (jsrsasign). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-4600 (jsrsasign). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-4601 (jsrsasign). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-4602 (jsrsasign). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-48526 (jpadilla pyjwt). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-4878 (Red Hat Enterprise Linux 10). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-58010 (GNOME GLib). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-58012 (GNOME GLib). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-58013 (GNOME GLib). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-58014 (GNOME GLib). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-58015 (GNOME GLib). Public exploit reference added.

RESCOREDCVE-2023-6931 (Linux Kernel). CVSS 7.8 → 7 (NVD).

RESCOREDCVE-2025-6666 (motogadget mo.lock Ignition Lock). CVSS 1 → 0.3 (NVD).

RESCOREDCVE-2026-15370 (Red Hat Enterprise Linux 10). CVSS 6.7 → 7.3 (NVD).

RESCOREDCVE-2026-16713 (IBM Documentation Offline). CVSS 4.3 → 5.3 (NVD).

RESCOREDCVE-2026-16929 (IBM i). CVSS 5.3 → 6.5 (NVD).

RESCOREDCVE-2026-19895 (opensourcepos Open Source Point of Sale). CVSS 6.3 → 2.9 (NVD).

RESCOREDCVE-2026-19897 (mangroup dtale). CVSS 6.3 → 2.9 (NVD).

RESCOREDCVE-2026-19900 (LB-LINK X-PRO). CVSS 9.2 → 8.2 (NVD).

RESCOREDCVE-2026-19903 (SourceCodester Online Clothing Store). CVSS 6.9 → 5.5 (NVD).

RESCOREDCVE-2026-19917 (code-projects Online Food Order System). CVSS 5.3 → 2.1 (NVD).

RESCOREDCVE-2026-19920 (code-projects Online Shopping System). CVSS 5.3 → 2.1 (NVD).

RESCOREDCVE-2026-19922 (code-projects Online Shopping System). CVSS 5.1 → 2 (NVD).

RESCOREDCVE-2026-19925 (SourceCodester Stock Management System). CVSS 5.1 → 2 (NVD).

RESCOREDCVE-2026-19927 (OpenBoxes). CVSS 5.3 → 2.1 (NVD).

RESCOREDCVE-2026-19930 (Dolibarr). CVSS 5.3 → 2.1 (NVD).

RESCOREDCVE-2026-19933 (DefaultFuction Customer-Relationship-Management-In-C-Project). CVSS 5.3 → 2.1 (NVD).

RESCOREDCVE-2026-19958 (iatsiuk pptr-mcp). CVSS 5.3 → 2.1 (NVD).

RESCOREDCVE-2026-19961 (Edimax EW-7478APC). CVSS 9.4 → 8.6 (NVD).

RESCOREDCVE-2026-19962 (Edimax EW-7478APC). CVSS 5.3 → 2.1 (NVD).

RESCOREDCVE-2026-19963 (Edimax EW-7478APC). CVSS 5.3 → 2.1 (NVD).

RESCOREDCVE-2026-19964 (Jij-Inc Jij-MCP-Server). CVSS 5.1 → 2 (NVD).

RESCOREDCVE-2026-2100 (p11-glue p11-kit). CVSS 5.3 → 7.5 (NVD).

RESCOREDCVE-2026-2332 (Eclipse Foundation Eclipse Jetty). CVSS 7.4 → 9.1 (NVD).

RESCOREDCVE-2026-32591 (Red Hat Quay 3.1). CVSS 5.2 → 5.5 (NVD).

RESCOREDCVE-2026-33216 (nats-io nats-server). CVSS 8.6 → 7.5 (NVD).

RESCOREDCVE-2026-33217 (nats-io nats-server). CVSS 7.1 → 6.5 (NVD).

RESCOREDCVE-2026-33247 (nats-io nats-server). CVSS 7.4 → 5.3 (NVD).

RESCOREDCVE-2026-33997 (moby). CVSS 6.8 → 8.1 (NVD).

RESCOREDCVE-2026-35425 (Microsoft Azure API Management (APIM)). CVSS 8 → 7.2 (NVD).

RESCOREDCVE-2026-40938 (tektoncd pipeline). CVSS 7.5 → 8.5 (NVD).

RESCOREDCVE-2026-42041 (axios). CVSS 4.8 → 6.5 (NVD).

RESCOREDCVE-2026-4598 (jsrsasign). CVSS 8.7 → 7.7 (NVD).

RESCOREDCVE-2026-45998 (Linux). CVSS 7 → 7.8 (NVD).

RESCOREDCVE-2026-4600 (jsrsasign). CVSS 9.1 → 8.1 (NVD).

RESCOREDCVE-2026-4601 (jsrsasign). CVSS 9.4 → 8.8 (NVD).

RESCOREDCVE-2026-4602 (jsrsasign). CVSS 8.7 → 7.7 (NVD).

RESCOREDCVE-2026-46579 (Red Hat OpenShift Container Platform 4.12). CVSS 7.4 → 7.5 (NVD).

RESCOREDCVE-2026-4878 (Red Hat Enterprise Linux 10). CVSS 6.7 → 7 (NVD).

RESCOREDCVE-2026-52972 (Linux). CVSS 7 → 5.5 (NVD).

RESCOREDCVE-2026-53059 (Linux). CVSS 6.3 → 7.8 (NVD).

RESCOREDCVE-2026-57104 (Microsoft Azure Storage Explorer). CVSS 8.8 → 9.6 (NVD).

RESCOREDCVE-2026-58010 (GNOME GLib). CVSS 6.5 → 8.2 (NVD).

RESCOREDCVE-2026-58011 (GNOME GLib). CVSS 6.5 → 7.5 (NVD).

RESCOREDCVE-2026-58012 (GNOME GLib). CVSS 6.5 → 8.2 (NVD).

RESCOREDCVE-2026-58013 (GNOME GLib). CVSS 6.5 → 8.2 (NVD).

RESCOREDCVE-2026-58014 (GNOME GLib). CVSS 7.3 → 8.6 (NVD).

RESCOREDCVE-2026-58015 (GNOME GLib). CVSS 5.9 → 7.5 (NVD).

RESCOREDCVE-2026-58612 (Microsoft PowerShell 7.4). CVSS 7.4 → 7.5 (NVD).

RESCOREDCVE-2026-59845 (Red Hat Enterprise Linux 10). CVSS 5.3 → 5.9 (NVD).

RESCOREDCVE-2026-59847 (Red Hat Enterprise Linux 10). CVSS 5.9 → 7.5 (NVD).

ENRICHEDCVE-2018-8727. Received CVSS 7.5 and CPE data from NVD.

ENRICHEDCVE-2019-10869. Received CVSS 8.1 and CPE data from NVD.

ENRICHEDCVE-2026-53325 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-53382 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-53385 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-53393 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-53403 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-63794 (Linux). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2026-63798 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-63804 (Linux). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2026-64187 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64192 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64205 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64207 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64244 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64245 (Linux). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2026-64246 (Linux). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2026-64248 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64249 (Linux). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2026-64250 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64252 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64253 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64254 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64256 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64258 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64262 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64263 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64264 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64267 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64270 (Linux). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2026-64271 (Linux). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2026-64272 (Linux). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2026-64273 (Linux). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2026-64274 (Linux). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2026-64275 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64278 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64282 (Linux). Received CVSS 4.7 and CPE data from NVD.

ENRICHEDCVE-2026-64283 (Linux). Received CVSS 7.0 and CPE data from NVD.

ENRICHEDCVE-2026-64285 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64288 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64289 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64290 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64291 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64292 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64294 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64295 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-64297 (Linux). Received CVSS 5.5 and CPE data from NVD.

+ 6 more transactions — continued on page 2. Every change is listed; nothing truncated.

Yesterday's Results

338 CVEs published. 25 box scores, 313 table rows — nothing truncated.

COVESA Open1722 0.9.2 Stack Buffer Overflow via avtp_to_can() in acf-can-listener
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   N   H   N    8.7   .0236   82.3     —
AFFECTED
  Product   Versions     Fixed
  Open1722  unspecified  —
TIMELINE
  Aug 12  Reserved by CNA
  Aug 17  Published (CNA: VulnCheck)
CWE-121 · CNA: VulnCheck · 2 references · NVD status: Received
COMFAST CF-N1-S mbox-config sub_44A968 command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   H   N   L   L   L    2.0   .0205   79.7     —
AFFECTED
  Product  Versions   Fixed
  CF-N1-S  2.6.0.1 –  —
TIMELINE
  Aug 16  Public exploit reference published
  Aug 16  Reserved by CNA
  Aug 17  Published (CNA: VulDB)
CWE-77, CWE-74 · CNA: VulDB · 5 references · NVD status: Received
microsoft kiota — Kiota: Path traversal in generated plugin manifest static_template.file reference (percent-encoding bypass)
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   A   N   N   N    6.1   .0148   71.7     —
AFFECTED
  Product  Versions               Fixed
  kiota    >= 1.30.0, < 1.34.0 –  —
TIMELINE
  Aug 13  Reserved by CNA
  Aug 17  Published (CNA: GitHub_M)
CWE-22, CWE-829 · CNA: GitHub_M · 8 references · NVD status: Received
Roundcube Webmail — In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, mail search and LITERAL+ byte-count desynchroniz…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   L   N  U  H  H  L    7.1   .0132   68.5     —
AFFECTED
  Product  Versions  Fixed
  Webmail  1.6.0 –   —
TIMELINE
  Aug 17  Reserved by CNA
  Aug 17  Published (CNA: mitre)
CWE-77 · CNA: mitre · 5 references · NVD status: Received
GL.iNet XE3000 NAS Command Service gl_nas_sys os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   L   L   L    6.9   .0131   68.2     —
AFFECTED
  Product  Versions  Fixed
  A1300    4.8.* –   4.9.0
  AX1800   4.8.* –   4.9.0
  AXT1800  4.8.* –   4.9.0
  MT2500   4.8.* –   4.9.0
  MT3000   4.8.* –   4.9.0
  MT6000   4.8.* –   4.9.0
  X3000    4.8.* –   4.9.0
  XE3000   4.8.* –   4.9.0
TIMELINE
  Aug 16  Reserved by CNA
  Aug 17  Published (CNA: VulDB)
CWE-78, CWE-77 · CNA: VulDB · 5 references · NVD status: Received
kylecui NetForensicMCP index.js execAsync command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   L   L    2.1   .0109   62.5     —
AFFECTED
  Product         Versions  Fixed
  NetForensicMCP  2.1.0 –   —
TIMELINE
  Aug 16  Public exploit reference published
  Aug 17  Reserved by CNA
  Aug 17  Published (CNA: VulDB)
CWE-77, CWE-74 · CNA: VulDB · 6 references · NVD status: Received
GL.iNet XE3000 Wi-Fi Timer Power-Schedule Feature os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   L   L    5.3   .0105   61.4     —
AFFECTED
  Product  Versions  Fixed
  A1300    4.0 –     —
  AX1800   4.0 –     —
  AXT1800  4.0 –     —
  BE1400   4.0 –     —
  BE3600   4.0 –     —
  BE6500   4.0 –     —
  BE9300   4.0 –     —
  BE10000  4.0 –     —
  E5800    4.0 –     —
  MT2500   4.0 –     —
  + 7 more
TIMELINE
  Aug 16  Reserved by CNA
  Aug 17  Published (CNA: VulDB)
CWE-78, CWE-77 · CNA: VulDB · 5 references · NVD status: Received
GL.iNet BE9300/MT6000 Firewall-management RPC os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   L   L    5.3   .0105   61.4     —
AFFECTED
  Product  Versions  Fixed
  BE9300   4.8.* –   4.9.0
  MT6000   4.8.* –   4.9.0
TIMELINE
  Aug 16  Reserved by CNA
  Aug 17  Published (CNA: VulDB)
CWE-78, CWE-77 · CNA: VulDB · 5 references · NVD status: Received
Wavlink WN531P3/WN535M1 Export Pingortrace CGI export_pingortrace.cgi strcpy stack-based overflow
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0097   58.9     —
AFFECTED
  Product  Versions   Fixed
  WN531P3  V250922 –  —
  WN535M1  V250922 –  —
TIMELINE
  Aug 16  Public exploit reference published
  Aug 17  Reserved by CNA
  Aug 17  Published (CNA: VulDB)
CWE-121, CWE-119 · CNA: VulDB · 5 references · NVD status: Received
JetBrains YouTrack — In JetBrains YouTrack before 2026.2.18177 doS attack was possible via a decompression bomb in the import en…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  N  N  H    6.5   .0086   55.5     —
AFFECTED
  Product   Versions     Fixed
  YouTrack  unspecified  —
TIMELINE
  Aug 17  Reserved by CNA
  Aug 17  Published (CNA: JetBrains)
CWE-409 · CNA: JetBrains · 1 reference · NVD status: Received
uptrain-ai uptrain — UpTrain vulnerable to Remote code execution at `/create_project`
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    7.4   .0083   54.4     —
AFFECTED
  Product  Versions    Fixed
  uptrain  <= 0.7.1 –  —
TIMELINE
  Mar 6   Reserved by CNA
  Aug 17  Published (CNA: GitHub_M)
CWE-74 · CNA: GitHub_M · 2 references · NVD status: Received
uptrain-ai uptrain — Uptrain vulnerable to remote code execution via `/add_prompts` endpoint
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    7.4   .0083   54.4     —
AFFECTED
  Product  Versions    Fixed
  uptrain  <= 0.7.1 –  —
TIMELINE
  Mar 6   Reserved by CNA
  Aug 17  Published (CNA: GitHub_M)
CWE-74 · CNA: GitHub_M · 2 references · NVD status: Received
uptrain-ai uptrain — Uptrain vulnerable to remote code execution via `/new_run` endpoint
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    7.4   .0083   54.4     —
AFFECTED
  Product  Versions    Fixed
  uptrain  <= 0.7.1 –  —
TIMELINE
  Mar 6   Reserved by CNA
  Aug 17  Published (CNA: GitHub_M)
CWE-74 · CNA: GitHub_M · 2 references · NVD status: Received
WordPress is vulnerable to a remote code execution vulnerability via malicious Postscript file upload by an…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0081   54.0     —
AFFECTED
  Product    Versions     Fixed
  WordPress  unspecified  —
TIMELINE
  Jul 22  Reserved by CNA
  Aug 17  Published (CNA: hackerone)
CWE-434 · CNA: hackerone · 1 reference · NVD status: Received
JetBrains YouTrack — In JetBrains YouTrack before 2026.1.13901, 2026.2.17950 doS attack was possible via crafted type parameters
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  L  N  H    7.1   .0080   53.5     —
AFFECTED
  Product   Versions     Fixed
  YouTrack  unspecified  —
TIMELINE
  Aug 17  Reserved by CNA
  Aug 17  Published (CNA: JetBrains)
CWE-770 · CNA: JetBrains · 1 reference · NVD status: Received
Roundcube Webmail — In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the cmd_learn driver of the markasjunk plugin is…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0077   52.5     —
AFFECTED
  Product  Versions  Fixed
  Webmail  1.6.0 –   —
TIMELINE
  Aug 17  Reserved by CNA
  Aug 17  Published (CNA: mitre)
CWE-78 · CNA: mitre · 6 references · NVD status: Received
GitLab GitLab — Improper Control of Generation of Code ('Code Injection') in GitLab
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  L  H  H    9.4   .0072   50.8     —
AFFECTED
  Product  Versions  Fixed
  GitLab   18.2 –    —
TIMELINE
  Aug 10  Reserved by CNA
  Aug 16  Public exploit reference published
  Aug 17  Published (CNA: GitLab)
CWE-94 · CNA: GitLab · 3 references · NVD status: Undergoing Analysis
EFM ipTIME A3004T Session Validation httpcon_check_session_url improper authentication
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0071   50.6     —
AFFECTED
  Product        Versions   Fixed
  ipTIME A3004T  14.19.0 –  —
TIMELINE
  Aug 16  Public exploit reference published
  Aug 16  Reserved by CNA
  Aug 17  Published (CNA: VulDB)
CWE-287 · CNA: VulDB · 5 references · NVD status: Received
jiantao88 android-mcp-server Command Execution index.js child_process.exec os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   L   L   N   L   N   L   L   L    1.9   .0069   49.9     —
AFFECTED
  Product             Versions                                    Fixed
  android-mcp-server  cfb872b2446794193b58edd63f4dbf6af48a6292 –  —
TIMELINE
  Aug 16  Public exploit reference published
  Aug 16  Reserved by CNA
  Aug 17  Published (CNA: VulDB)
CWE-78, CWE-77 · CNA: VulDB · 7 references · NVD status: Received
Netty: Memory Exhaustion in SctpMessageCompletionHandler
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0068   49.6     —
AFFECTED
  Product  Versions           Fixed
  netty    < 4.1.137.Final –  —
TIMELINE
  Jul 7   Reserved by CNA
  Aug 17  Published (CNA: GitHub_M)
CWE-400 · CNA: GitHub_M · 6 references · NVD status: Received
Progress ShareFile Storage Zones Controller — Arbitrary file write via path traversal in Progress ShareFile Storage Zones Controller potentially leading to remote code execution
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  U  H  H  H    7.2   .0065   48.3     —
AFFECTED
  Product                             Versions     Fixed
  ShareFile Storage Zones Controller  unspecified  —
TIMELINE
  Jul 17  Reserved by CNA
  Aug 17  Published (CNA: ProgressSoftware)
CWE-22, CWE-73, CWE-20 · CNA: ProgressSoftware · 1 reference · NVD status: Received
2100 Technology|Official Document Management System - Arbitrary File Upload
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    8.7   .0065   48.2     —
AFFECTED
  Product                              Versions     Fixed
  Official Document Management System  unspecified  —
TIMELINE
  Aug 17  Reserved by CNA
  Aug 17  Published (CNA: twcert)
CWE-434 · CNA: twcert · 3 references · NVD status: Received
SWE-agent Trajectory Inspector Path Traversal File Disclosure
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   N   N    8.7   .0062   47.0     —
AFFECTED
  Product    Versions     Fixed
  SWE-agent  unspecified  —
TIMELINE
  Aug 17  Reserved by CNA
  Aug 17  Published (CNA: VulnCheck)
CWE-22 · CNA: VulnCheck · 4 references · NVD status: Received
n/a n/a — File Upload vulnerability in T-Systems International GmbH ImageMaster Version: 9.14.2.8.1 allows a remote a…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0059   45.3     —
AFFECTED
  Product  Versions  Fixed
  n/a      n/a –     —
TIMELINE
  Jun 7   Reserved by CNA
  Aug 17  Published (CNA: mitre)
CWE-434 · CNA: mitre · 2 references · NVD status: Received
frappe erpnext — ERPNext: Server-Side Template Injection leading to Remote Code Execution
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  C  H  H  H    9.9   .0056   43.8     —
AFFECTED
  Product  Versions      Fixed
  erpnext  < 15.111.0 –  —
TIMELINE
  Jul 23  Reserved by CNA
  Aug 17  Published (CNA: GitHub_M)
CWE-1336 · CNA: GitHub_M · 4 references · NVD status: Received
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-714799.141.8QuantumNousnew-apiCWE-190New API: Integer overflow in quota billing yields negative charges (self-cred…
CVE-2026-161377.241.7ProgressShareFile Storage Zones ControllerCWE-22Path traversal via unsanitized upload filename leads to arbitrary file write …
CVE-2026-751109.341.5MemTensorMemOSCWE-697MemOS Authentication Bypass via Unset INTERNAL_SERVICE_SECRET
CVE-2026-566857.341.1DellObjectScaleCWE-78Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Improper Neutraliz…
CVE-2026-448456.740.6jumpserverjumpserverCWE-1336JumpServer: Remote Command Execution (RCE) via Jinja Template Injection in Ap…
CVE-2026-476989.840.1patriksimekvm2CWE-913vm2: Sandbox Breakout Using Dangerous Host Proto Mutators
CVE-2026-719798.739.4indilibindiCWE-121INDI indiserver 2.2.4.2 Stack Buffer Overflow via XML Tag Parsing
CVE-2026-572338.139.3notepad-plus-plusnotepad-plus-plusCWE-22Notepad++: Path Traversal (Zip Slip) in WinGup Plugin Extraction
CVE-2026-648687.538.5QuantumNousnew-apiCWE-400New API: Unauthenticated payment webhooks allow memory and disk DoS via unbou…
CVE-2026-352197.138.4BudibasebudibaseCWE-918Budibase: SSRF in Automation Steps - Webhook, Zapier, N8N, Slack, Discord Byp…
CVE-2026-648599.138.3QuantumNousnew-apiCWE-200New API: User List API Leaks Root User Access Token Leading to Privilege Esca…
CVE-2026-748729.338.0jahlivesopenssl_encryptCWE-426openssl_encrypt before 1.4.0 Arbitrary Code Execution via Whirlpool
CVE-2025-276217.737.9uptrain-aiuptrainCWE-287UpTrain has a Constant Default API Key
CVE-2026-566867.837.6DellObjectScaleCWE-78Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Improper Neutraliz…
CVE-2026-599107.837.6DellObjectScaleCWE-78Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Improper Neutraliz…
CVE-2026-405067.037.3openemropenemrCWE-22OpenEMR Path Traversal Arbitrary Directory Deletion via standard_tables_manag…
CVE-2026-152187.935.7Red HatRed Hat OpenShift AI (RHOAI)CWE-266Models-as-a-service: red hat openshift ai: maas-api and maas-controller servi…
CVE-2026-680049.835.1n/an/aCWE-284An issue in OSSRS SRS (Simple Realtime Server) <v5.0.213 allows a remote atta…
CVE-2026-748959.334.0jahlivesopenssl_encryptCWE-693openssl_encrypt before 1.4.0 Plugin Sandbox Bypass via Process Isolation
CVE-2026-680057.534.1n/an/aCWE-400An issue in ACME mini_httpd 1.30 and prior allows a remote attacker to cause …
CVE-2026-507767.533.6n/an/aCWE-22Directory Traversal vulnerability in Pronis Loisirs Billetterie CSE - < 04/20…
CVE-2026-513469.133.5n/an/aCWE-89SQL Injection vulnerability in StudIP 6.0.x before 6.0.3 and 5.4.x before 5.4…
CVE-2026-748869.332.8jahlivesopenssl_encryptCWE-184openssl_encrypt before 1.4.0 Plugin Import Guard Bypass
CVE-2026-199652.932.8n/aautomadCWE-204automad Password Reset Endpoint UserController.php requestPasswordResetToken …
CVE-2026-599036.532.7nettynettyCWE-524Netty: Cache Poisoning and Information Disclosure via CORS Vary Header Overwrite
CVE-2026-748949.332.5jahlivesopenssl_encryptCWE-287openssl_encrypt before 1.4.0 Authentication Bypass via Bearer Token
CVE-2026-199796.932.5GL.iNetA1300CWE-639GL.iNet XE3000 WebDAV Service MOVE authorization
CVE-2026-199972.032.5WebkulBagistoCWE-639Webkul Bagisto Backend Sales RMA Endpoint requests authorization
CVE-2026-751118.732.1evidentlyaievidentlyCWE-22Evidently UI Path Traversal via Dataset Materialization Filename
CVE-2026-714729.131.8Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-78Acm-search-v2-rhel9: search-v2-operator: shell-command and sql injection in p…
CVE-2026-747999.231.7siyuan-notesiyuanCWE-215SiYuan before 3.7.4 Unauthenticated Debug Endpoint Information Disclosure
CVE-2026-715188.731.6typemilltypemillCWE-863Typemill < 2.26.0 Authorization Bypass via Media File Download Route
CVE-2026-736467.530.8postcsspostcssCWE-22PostCSS: Path Traversal in Previous Source Map Auto-Loading (sourceMappingURL…
CVE-2026-742388.730.6tier4nebulaCWE-125TIER IV Nebula 1.2.0 Heap Out-of-Bounds Read via VLP32 UDP Decoder
CVE-2026-748688.730.6siyuan-notesiyuanCWE-307SiYuan before 3.7.4 Brute-Force Authentication via Publish Service
CVE-2026-199682.130.4Open Asset Import LibraryAssimpCWE-122Open Asset Import Library Assimp 3DGS MDL7 Model LWOLoader.h ReadFaces_3DGS_M…
CVE-2026-748789.330.3jahlivesopenssl_encryptCWE-770openssl_encrypt before 1.4.0 TOTP Rate Limiter Bypass
CVE-2026-747989.329.6siyuan-notesiyuanCWE-22SiYuan kernel Path Traversal via database_clean MCP tool
CVE-2026-199742.929.5treefrogframeworktreefrog-frameworkCWE-287treefrogframework treefrog-framework Session Cookie tsessioncookiestore.cpp s…
CVE-2026-648665.129.3QuantumNousnew-apiCWE-862New API: Admin can reset passkeys for same-level or higher-privileged users
CVE-2026-199715.329.3LB-LinkWR1210MCWE-306LB-Link WR1210M Backup Endpoint backup.cgi main missing authentication
CVE-2026-750125.729.1TOTOLINKEX1200LCWE-476TOTOLINK EX1200L Password Configuration cstecgi.cgi setPasswordCfg null point…
CVE-2026-750135.729.1TOTOLINKEX1200LCWE-476TOTOLINK EX1200L cstecgi.cgi setWizardCfg null pointer dereference
CVE-2026-754798.728.7jeecgbootjimureportCWE-306JimuReport Unauthenticated Report Listing and Share Token Disclosure
CVE-2026-543567.128.2BudibasebudibaseCWE-862Budibase authenticated arbitrary S3 signed upload URL issuance via `/api/atta…
CVE-2026-648499.327.9mlflowmlflowCWE-918MLflow: Unauthenticated full-read SSRF in webhook delivery: _validate_webhook…
CVE-2026-199982.127.8code-projectsOnline Shopping SystemCWE-79code-projects Online Shopping System offersmail.php cross site scripting
CVE-2026-199962.127.4WebkulBagistoCWE-269Webkul Bagisto Backend Customer Behavior Data Endpoint customers privileges m…
CVE-2026-636676.527.1apostrophecmsapostropheCWE-22ApostropheCMS: Arbitrary file read via import-export attachment-name path tra…
CVE-2026-714864.327.2vllm-projectvllmCWE-400vLLM: Derender endpoints decode caller-supplied GenerateResponse token IDs wi…
CVE-2026-199702.127.1Open Asset Import LibraryAssimpCWE-122Open Asset Import Library Assimp Node MDLLoader.cpp AddBonesToNodeGraph_3DGS_…
CVE-2026-750065.827.1RoundcubeWebmailCWE-918In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, insufficient Casca…
CVE-2026-748999.326.9jahlivesopenssl_encryptCWE-95openssl_encrypt before 1.4.0 Sandbox Escape via Type Hierarchy
CVE-2026-719808.726.8BelledonneCommunicationsbcg729CWE-125Belledonne Communications bcg729 1.1.2 Out-of-Bounds Read via decodeSIDframe()
CVE-2026-616668.926.8fayewebsocket-driver-rubyCWE-248websocket-driver: Denial of service via malformed Host header
CVE-2026-751038.726.8crawlab-teamcrawlabCWE-639Crawlab Missing Authorization on Password Change Endpoint Allows Account Take…
CVE-2026-556749.326.6discoursediscourseCWE-79Discourse: Cache poisoning/XSS via color scheme cookies
CVE-2026-748969.326.6jahlivesopenssl_encryptCWE-693openssl_encrypt before 1.4.0 Sandbox Escape via Dunder Attribute Traversal
CVE-2026-749009.326.6jahlivesopenssl_encryptCWE-391openssl_encrypt before 1.4.0 Weak Shared Secret via PQC Simulation Mode
CVE-2026-448466.225.7jumpserverjumpserverCWE-863JumpServer: Privilege Overwrite via Organization Invite Logic Flaw
CVE-2026-750145.525.7SourceCodesterPet Grooming Management SoftwareCWE-89SourceCodester Pet Grooming Management Software get_barcode_data.php sql inje…
CVE-2026-735238.725.2COVESAOpen1722CWE-197COVESA Open1722 0.9.2 Stack Memory Disclosure via acf-can-listener.c Integer …
CVE-2026-755317.025.3pandora-analysispandoraCWE-79Stored Cross-Site Scripting in URL Observables via Lookyloo Submission Handle…
CVE-2026-7425310.025.1regularlabs.comSourcerer extension for JoomlaCWE-94Joomla Extension - regularlabs.com - Unauthenticated RCE through unverified r…
CVE-2026-457915.925.0DokploydokployCWE-613Dokploy: Password Change Does Not Revoke Active Sessions
CVE-2026-750005.825.0RoundcubeWebmailCWE-669In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, improper HTML/CSS …
CVE-2026-735606.524.7vllm-projectvllmCWE-918vLLM: SSRF + arbitrary local file read in MiMoV2OmniMultiModalProcessor `_fet…
CVE-2026-476869.924.2patriksimekvm2CWE-693vm2: Missing Error.cause Sanitization Enables VM2 Sandbox Escape to RCE
CVE-2026-659766.524.2deskflowdeskflowCWE-400Deskflow: Clipboard receiver can accumulate data beyond Deskflow's configured…
CVE-2026-125538.923.8HP Inc.Web JetadminCWE-787HP Web Jetadmin (WJA) - Potential Arbitrary File Read/Write
CVE-2026-715537.124.0apostrophecmsapostropheCWE-1321ApostropheCMS: 2nd-order prototype pollution via PATCH leading to single-requ…
CVE-2026-476838.723.6patriksimekvm2CWE-770vm2: bufferAllocLimit cap bypassed by Buffer.concat and Buffer.from arrayLike
CVE-2026-748809.323.4jahlivesopenssl_encryptCWE-598openssl_encrypt before 1.4.0 Token Leakage via Query Parameters
CVE-2026-658328.223.3deskflowdeskflowCWE-125Deskflow - Unauthenticated server-controlled out-of-bounds read in ServerProx…
CVE-2026-750035.823.3RoundcubeWebmailCWE-669In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, an unclosed url() …
CVE-2026-748928.723.2jahlivesopenssl_encryptCWE-798openssl_encrypt before 1.4.0 Hardcoded Secret Key
CVE-2026-751069.323.1OpnFormOpnFormCWE-340OpnForm Editable Submission Secret Derivation via Empty Hashids Salt
CVE-2026-199921.323.1Orange View LimitedDualSafe Password Manager & Digital Vault ExtensionCWE-200Orange View Limited DualSafe Password Manager & Digital Vault Extension postM…
CVE-2026-667929.922.9Red HatMulticluster Global HubCWE-863Multicloud-operators-subscription: multicloud-operators-subscription: isclust…
CVE-2026-199876.922.8SourceCodesterBest Employee Management SystemCWE-548SourceCodester Best Employee Management System Profile exposure of informatio…
CVE-2026-750459.122.4JetBrainsYouTrackCWE-288In JetBrains YouTrack before 2025.3.156085, 2026.1.13913, 2026.2.18112 an una…
CVE-2026-401264.822.3OutSystemsService CenterCWE-79DOM-based Cross-Site Scripting in OutSystems Service Center
CVE-2026-679199.821.8n/an/aCWE-94An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code vi…
CVE-2026-164677.521.8Dolusoft Software TechnologiesFortiloggerCWE-862Broken Access Control in Dolusoft Software's Fortilogger
CVE-2026-199692.121.8Open Asset Import LibraryAssimpCWE-120Open Asset Import Library Assimp 3DGS MDL7 Model Output Mesh Generator MDLLoa…
CVE-2026-714249.621.6onyx-dot-apponyxCWE-200Onyx: Cross-user OAuth-token leak via /api/mcp/servers* for per-user MCP servers
CVE-2026-176396.921.4HP IncHP Smart Tank 5101 All-in-One PrinterCWE-400Certain HP Smart Tank All in One – Potential Denial of Service
CVE-2026-100806.521.4MattermostMattermostCWE-704Boards plugin panics on WebSocket command with non-string field types
CVE-2026-748009.421.3siyuan-notesiyuanCWE-79SiYuan before v3.7.4 Stored XSS via assets endpoint
CVE-2026-687625.921.1JetBrainsKtorCWE-835In JetBrains Ktor before 3.4.1 potential DoS attack via WebSocket decompressi…
CVE-2026-750044.321.1RoundcubeWebmailCWE-77In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, improper rule name…
CVE-2026-631786.521.0onyx-dot-apponyxCWE-639Onyx Curator-scope IDOR: any curator can modify membership of arbitrary user …
CVE-2026-199942.121.0WebkulBagistoCWE-639Webkul Bagisto Configuration Management execute authorization
CVE-2026-748918.720.9jahlivesopenssl_encryptCWE-798openssl_encrypt before 1.4.0 Hardcoded Database Credentials
CVE-2026-457908.020.9DokploydokployCWE-269Dokploy: Invitation Role Escalation Allows Organization Takeover
CVE-2026-754818.720.8skypilot-orgskypilotCWE-269SkyPilot Authentication Bypass via Service Account Role Escalation
CVE-2026-480535.820.6learningequalitykolibriCWE-918Kolibri has Unauthenticated Server-Side Request Forgery (SSRF) in RemoteFacil…
CVE-2026-742549.320.6joomlack.frPage Builder CK extension for JoomlaCWE-89Joomla Extension - joomlack.fr - SQL injection in Page Builder CK < 3.6.5
CVE-2026-196938.120.5max-mapperextract-zipCWE-59extract-zip arbitrary file write outside the destination directory via a syml…
CVE-2026-748817.120.5jahlivesopenssl_encryptCWE-942openssl_encrypt before 1.4.0 CORS Misconfiguration via Wildcard Origins
CVE-2026-742345.120.5LegoraLegoraCWE-95Legora < 2026-08-14 XSS via Mermaid gray-matter JavaScript Engine
CVE-2026-598937.520.4andialbrechtsqlparseCWE-1333sqlparse: Inefficient Regex Handling of Dollar-Quoted SQL Literals Leads to R…
CVE-2026-750106.420.3RoundcubeWebmailCWE-669In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the modoboa driver…
CVE-2026-334378.120.3Stirling-ToolsStirling-PDFCWE-79Stirling PDF: Stored XSS in Info Summary
CVE-2026-750772.120.3SourceCodesterClass and Exam Timetabling SystemCWE-79SourceCodester Class and Exam Timetabling System BSCE2.php cross site scripting
CVE-2026-751058.720.1phpipamphpipamCWE-639phpIPAM Temporary Subnet Share Information Disclosure via Address Parameter
CVE-2026-755296.920.1pandora-analysispandoraCWE-79Stored Cross-Site Scripting via MIME-Type Confusion in PDF Downloads of Pandora
CVE-2026-137005.919.7UnknownWooMSCWE-918WooMS <= 9.14 - Unauthenticated Server-Side Request Forgery and Sensitive Inf…
CVE-2026-199992.119.7Open Asset Import Library AssimpAssimpCWE-120Open Asset Import Library Assimp 3DGS MDL7 Bone Transformation Key MDLLoader.…
CVE-2026-750782.119.7SourceCodesterClass and Exam Timetabling SystemCWE-79SourceCodester Class and Exam Timetabling System BSHRM1.php cross site scripting
CVE-2026-678689.819.6n/an/aCWE-122A heap-based out-of-bounds write vulnerability exists in S2OPC 1.7.3 in serve…
CVE-2026-456987.519.5NetatalknetatalkCWE-191Netatalk has Integer Underflow → Stack Buffer Overflow in deletedir()
CVE-2026-381659.819.3n/an/aCWE-94A Server-Side Template Injection (SSTI) vulnerability in the Velocity templat…
CVE-2026-566778.619.4decolua9routerCWE-3069Router: Authenticated Server-Side Request Forgery (SSRF) via OIDC Provider T…
CVE-2026-750815.319.4WebkulBagistoCWE-841Webkul Bagisto store behavioral workflow
CVE-2026-199932.119.4WebkulBagistoCWE-841Webkul Bagisto RMA State Validation update-status behavioral workflow
CVE-2026-749987.219.0RoundcubeWebmailCWE-79In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, responses from the…
CVE-2026-748848.718.6jahlivesopenssl_encryptCWE-73openssl_encrypt before 1.4.0 Path Traversal via plugin_id
CVE-2026-543365.418.6jumpserverjumpserverCWE-22JumpServer: KoKo Web Terminal SFTP Path Traversal on Authorized Asset
CVE-2026-748018.618.4siyuan-notesiyuanCWE-78SiYuan before 3.7.4 Local Privilege Escalation via elevator.exe
CVE-2026-748938.718.3jahlivesopenssl_encryptCWE-798openssl_encrypt before 1.4.0 JWT Token Forgery via Hardcoded Secrets
CVE-2026-658227.618.3frappeerpnextCWE-89ERPNext: SQL Injection in "Inactive Customers" report via unvalidated `doctyp…
CVE-2026-199672.118.4Open Asset Import LibraryAssimpCWE-122Open Asset Import Library Assimp File Compression.cpp decompressBlock heap-ba…
CVE-2026-542848.718.2andialbrechtsqlparseCWE-407sqlparse: TokenList.__init__ materializes O(subtree) value per group, causing…
CVE-2026-714918.718.2andialbrechtsqlparseCWE-400sqlparse: Quadratic O(n²) DoS in group_comments
CVE-2026-750796.918.2SourceCodesterClass and Exam Timetabling SystemCWE-89SourceCodester Class and Exam Timetabling System edit_subject2.php sql injection
CVE-2026-750806.918.2SourceCodesterClass and Exam Timetabling SystemCWE-89SourceCodester Class and Exam Timetabling System edit_subject1.php sql injection
CVE-2026-199882.118.3AlaevSEO Tools ExtensionCWE-80Alaev SEO Tools Extension Popup UI popup.html addDiv cross site scripting
CVE-2026-132027.318.1OpenTextOpentext Directory ServicesCWE-79HTML Injection in OTDS Swagger UI
CVE-2026-748422.118.1Kira-PgrPromptShopMCPCWE-918Kira-Pgr PromptShopMCP Image-Toolkit-MCP-Server server.py download_image serv…
CVE-2026-748778.718.0jahlivesopenssl_encryptCWE-639openssl_encrypt before 1.4.0 Missing Ownership Verification via revoke_key
CVE-2026-748798.717.7jahlivesopenssl_encryptCWE-209openssl_encrypt before 1.4.0 Information Disclosure via /ready endpoint
CVE-2026-750496.517.7JetBrainsYouTrackCWE-862In JetBrains YouTrack before 2026.1.13903, 2026.2.17950 an authenticated user…
CVE-2026-676789.817.7n/an/aCWE-434File Upload vulnerability in RainyGao-Hithub DocSys v.2.02.80 allows a remote…
CVE-2026-748698.317.6stoatchatstoatchatCWE-862stoatchat before 0.15.0 Missing Authorization via Subscribe
CVE-2026-634098.217.6deskflowdeskflowCWE-125Deskflow: Odd-length DSOP options vector causes out-of-bounds read in Deskflo…
CVE-2026-679187.517.6n/an/aCWE-22Directory Traversal vulnerability in hermes-studio v.0.6.26 allows a remote a…
CVE-2026-148325.317.5UnknownShopSmart Loyalty for WooCommerceCWE-639ShopSmart Loyalty for WooCommerce <= 1.0.0 - Unauthenticated Sensitive Inform…
CVE-2026-748838.717.4jahlivesopenssl_encryptCWE-693openssl_encrypt before 1.4.0 Sandbox Bypass via pathlib and io
CVE-2026-574858.517.3Stirling-ToolsStirling-PDFCWE-200Stirling-PDF: Internal Service Account API Key Disclosure via Pipeline Endpoint
CVE-2026-685176.517.4nicolargoglancesCWE-942Glances: REST API CORS Credentials Guard Uses Exact-Match Instead of Membersh…
CVE-2026-748748.717.2jahlivesopenssl_encryptCWE-338openssl_encrypt before 1.4.0 Weak PRNG Steganography Pixel Selection
CVE-2026-161388.017.3ProgressShareFile Storage Zones ControllerCWE-502Remote code execution via unsafe deserialization in Progress ShareFile Storag…
CVE-2026-118175.317.3GrafanaGrafana OSSCWE-863CVE-2026-11817 CVE Record
CVE-2026-220728.316.9OPPOOPPO HealthCWE-20Arbitrary URL Loading in WebView Leading to Token Leakage Risk
CVE-2026-98596.517.0MattermostMattermostCWE-863Mattermost Boards plugin didn’t enforce role-based authorization on board cha…
CVE-2026-199722.116.6itsourcecodeHospital Management SystemCWE-89itsourcecode Hospital Management System viewpatient.php sql injection
CVE-2026-750075.416.4RoundcubeWebmailCWE-77In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the LDAP search fi…
CVE-2026-98168.316.0MattermostMattermostCWE-863Insufficient server-side validation of board member role fields permits privi…
CVE-2026-646578.415.8BudibasebudibaseCWE-89Budibase: Database Connector SQL Injections in PostgreSQL, MS SQL, and MySQL
CVE-2026-751097.115.7determined-aideterminedCWE-862Determined Missing Authorization Check on Generic Task Endpoints
CVE-2026-648656.015.8QuantumNousnew-apiCWE-362New API: Redis user quota cache overwrite via PUT /api/user/self allows quota…
CVE-2026-199862.115.6n/aAdblock for Youtube ExtensionCWE-285Adblock for Youtube Extension Event Listener contentscript.js updateDynamicRu…
CVE-2026-507729.815.4n/an/aCWE-94An issue in Squirro Cognitive Search < 3.14.2 allows a remote attacker to exe…
CVE-2026-507759.815.4n/an/aCWE-918A blind SSRF attack in DataHub v.1.5.0.1 allows a remote attacker to execute …
CVE-2026-749019.315.4jahlivesopenssl_encryptCWE-347openssl_encrypt before 1.4.0 Authentication Bypass via AES-CTR Fallback
CVE-2026-196507.115.3GitLabGitLabCWE-352Cross-Site Request Forgery (CSRF) in GitLab
CVE-2026-506016.615.3AcerPlanet9 desktop applicationCWE-798Planet9 Hardcoded Credentials Vulnerability Information
CVE-2026-145649.015.0Innotim Software Telecommunications and Consulting Trade Ltd. Co.Logsign SIEMCWE-522Sensitive Data Exposure in Innotim Software's Logsign SIEM
CVE-2026-754807.115.1volcengineOpenVikingCWE-863OpenViking Debug Vector Endpoints Multi-tenant Data Exposure
CVE-2026-685205.314.9nicolargoglancesCWE-200Glances: as_dict_secure() Value-Level Bypass Leaks Credentials in URL Values …
CVE-2026-636706.114.8apostrophecmsapostropheCWE-79ApostropheCMS: Mutation-XSS / allowedTags bypass via literal `</textarea/>` s…
CVE-2026-199662.114.7CodeCanyonTimeCamp Integration for CRMCWE-639CodeCanyon TimeCamp Integration for CRM Contact Information Update save_conta…
CVE-2026-186747.014.6Kong Inc.Kong MeshCWE-345Kong Mesh multi-zone: the global control plane attributes KDS-synced resource…
CVE-2026-164717.514.3Dolusoft Software TechnologiesSonloggerCWE-862Broken Access Control in Dolusoft Software's Sonlogger
CVE-2026-750448.114.1JetBrainsYouTrackCWE-862In JetBrains YouTrack before 2025.3.156085, 2026.1.13914, 2026.2.18095 missin…
CVE-2026-199805.313.7GL.iNetA1300CWE-94GL.iNet XE3000 Language Update ui.update_langs code injection
CVE-2026-598294.313.7discoursediscourseCWE-862Discourse: Review queue exposes flag-related private message excerpts to cate…
CVE-2026-748738.713.7jahlivesopenssl_encryptCWE-214openssl_encrypt before 1.4.0 Password Exposure via CLI Argument
CVE-2026-679179.813.6n/an/aCWE-89zuraCast versions up to and including 0.23.7 contain a SQL injection vulnerab…
CVE-2026-734246.513.3withastroastroCWE-441Astro: Unauthenticated path override in the @astrojs/vercel ISR function
CVE-2026-636696.512.8apostrophecmsapostropheCWE-639ApostropheCMS: Missing destination-parent authorization in page `move()` allo…
CVE-2026-691466.512.9mlflowmlflowCWE-862MLflow: LogInputs endpoint bypasses per-run UPDATE authorization in basic-auth
CVE-2026-750518.112.7JetBrainsYouTrackCWE-862In JetBrains YouTrack before 2026.2.17917 unauthorised project transfer betwe…
CVE-2026-653437.512.7AppleiOS and iPadOSCWE-416A use after free issue was addressed with improved memory management. This is…
CVE-2026-160494.312.5MattermostMattermostCWE-862_GitLab Plugin allows cross-channel post injection and phishing via missing c…
CVE-2026-691487.112.3mlflowmlflowCWE-862MLflow: CreateModelVersion source validation does not check READ permission o…
CVE-2026-667959.112.3Red HatMulticluster Engine for KubernetesCWE-295Managedcluster-import-controller: managedcluster-import-controller: csr auto-…
CVE-2026-749995.412.1RoundcubeWebmailCWE-79In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, the "Add to addres…
CVE-2026-392549.811.7n/an/aCWE-120Buffer Overflow vulnerability in SteelSeries GG (macOS) v.107.0.0 allows a re…
CVE-2026-392559.811.7n/an/aCWE-120Buffer Overflow vulnerability in SteelSeries GG (macOS) v.107.0.0 allows a re…
CVE-2026-715669.311.7openshift-metal3fakefishCWE-306KubeVirt backend is not authenticated
CVE-2026-748585.311.4jae-jaefetcher-mcpCWE-918jae-jae fetcher-mcp URL Validation security-credentials fetch_urls server-sid…
CVE-2026-199842.111.4jkawamotomcp-florence2CWE-918jkawamoto mcp-florence2 __init__.py get_images server-side request forgery
CVE-2026-679269.811.3n/an/aCWE-94An issue in JeecgBoot v.3.9.2 allows a remote attacker to execute arbitrary c…
CVE-2026-679659.811.3n/an/aCWE-78An issue in Tneda W20E v.16.01.0.6(2782) allows a remote attacker to execute …
CVE-2026-679256.111.3n/an/aCWE-79Cross Site Scripting vulnerability in JeecgBoot v.3.9.2 allows a remote attac…
CVE-2026-748879.311.0jahlivesopenssl_encryptCWE-338openssl_encrypt before 1.4.0 Insecure Random Import in PQC Module
CVE-2026-507709.810.9n/an/aCWE-269An issue in Squirro Cognitive Search before v.3.14.2 allows a remote attacker…
CVE-2026-507749.810.9n/an/aCWE-269An issue in GAPTEQ Designer v.3.5 allows a remote attacker to escalate privil…
CVE-2026-507737.810.9n/an/aCWE-427An issue in CGM Germany - CompuGroup Medical CGM ISIS MED 2510.1.0.20 allows …
CVE-2026-750464.310.9JetBrainsYouTrackCWE-862In JetBrains YouTrack before 2026.2.18112 an authenticated user could enumera…
CVE-2026-156239.410.6Google CloudGoogle SecOps (Chronicle SOAR)CWE-89Authenticated Blind SQL Injection in Google Cloud SecOps SOAR Dashboard Widge…
CVE-2026-748769.310.4jahlivesopenssl_encryptCWE-347openssl_encrypt before 1.4.0 Unverified Key Bundle Encryption
CVE-2026-748899.310.4jahlivesopenssl_encryptCWE-326openssl_encrypt before 1.4.0 Weak Key Derivation via HKDF
CVE-2026-750488.210.2JetBrainsYouTrackCWE-79In JetBrains YouTrack before 2026.2.18068 stored XSS via the fenced code-bloc…
CVE-2026-199732.110.2itsourcecodeHospital Management SystemCWE-89itsourcecode Hospital Management System viewpaymentreport.php sql injection
CVE-2026-200002.110.2itsourcecodeHospital Management SystemCWE-89itsourcecode Hospital Management System viewprescriptionrecord.php sql injection
CVE-2026-678549.810.1n/an/aCWE-89SQL Injection vulnerability in Qcms v.6.0.6 allows a remote attacker to execu…
CVE-2026-715677.79.6openshift-metal3fakefishCWE-78User-controlled variables inserted unescaped into shell scripts and Kubernete…
CVE-2026-653295.99.5AppleiOS and iPadOSCWE-287An authentication issue was addressed with improved state management. This is…
CVE-2026-539605.39.6discoursediscourseCWE-862Discourse: Hidden first-post excerpt is emitted in Q&A schema JSON-LD
CVE-2026-160454.39.5MattermostMattermostCWE-863Delegated OAuth tokens could revoke unrelated OAuth application authorizations
CVE-2026-547587.89.4notepad-plus-plusnotepad-plus-plusCWE-121Notepad++: Stack Buffer Overflow in expandNppEnvironmentStrs
CVE-2026-704123.59.4DelliDRAC9CWE-1330Dell iDRAC9, versions prior to 7.20.30.50, and Dell iDRAC10, version prior to…
CVE-2026-199952.09.1WebkulBagistoCWE-79Webkul Bagisto RMA Message send-message cross site scripting
CVE-2026-751046.88.9huggingfacetransformersCWE-22Hugging Face Transformers Path Traversal via Checkpoint Index
CVE-2026-679669.88.8n/an/aCWE-306Tenda W20E V16.01.0.6(2782) /goform/telnet endpoint allows unauthenticated re…
CVE-2026-748759.38.8jahlivesopenssl_encryptCWE-345openssl_encrypt before 1.4.0 Schema Validation Bypass
CVE-2026-748708.78.7jahlivesopenssl_encryptCWE-532openssl_encrypt before 1.4.8 Hardware Pepper Information Disclosure
CVE-2026-507716.18.3n/an/aCWE-79Cross Site Scripting vulnerability in Squirro Cognitive Search < 3.14.2 allow…
CVE-2026-750535.48.1JetBrainsIntelliJ IDEACWE-918In JetBrains IntelliJ IDEA before 2026.2.1 sSRF was possible via the DevKit d…
CVE-2026-528865.18.1notepad-plus-plusnotepad-plus-plusCWE-22Notepad++: session.xml backupFilePath starts_with Bypass
CVE-2026-653395.06.9AppleiOS and iPadOSCWE-693A logic issue was addressed with improved checks. This issue is fixed in iOS …
CVE-2026-126304.37.0zephyrprojectzephyrCWE-1256LoWPAN IPHC uncompression out-of-bounds read on reserved destination address…
CVE-2026-734108.56.8BudibasebudibaseCWE-367Budibase: SSRF via DNS rebinding in the REST datasource integration
CVE-2026-751085.36.9next-terminalnext-terminalCWE-862Next Terminal Missing Per-Asset Authorization on Portal Endpoints
CVE-2026-160445.46.7MattermostMattermostCWE-863Insufficient validation of guest board admin privileges on archive import
CVE-2026-199751.36.7AzuriomCMSCWE-367Azuriom CMS Money Transfer ProfileController.php transferMoney toctou
CVE-2026-679679.86.6n/an/aCWE-121Buffer Overflow vulnerability in Tenda W20E V16.01.0.6(2782) allows an attack…
CVE-2026-653468.86.7AppleiOS and iPadOSCWE-190An integer overflow was addressed with improved input validation. This issue …
CVE-2026-557044.36.6discoursediscourseCWE-862Discourse: Shared-draft titles and excerpts leak through group post serializa…
CVE-2026-748888.76.4jahlivesopenssl_encryptCWE-327openssl_encrypt before 1.4.0 Non-Standard PBKDF2 Key Derivation
CVE-2026-126294.66.3zephyrprojectzephyrCWE-835PL011 UART error interrupts never cleared, enabling an external-peer interrup…
CVE-2026-748909.36.2jahlivesopenssl_encryptCWE-345openssl_encrypt before 1.4.0 HMAC Authentication Bypass via Environment Variable
CVE-2026-125195.06.0zephyrprojectzephyrCWE-787Out-of-bounds stack read and write in Zephyr WNC-M14A2A modem socket-notify p…
CVE-2026-507699.85.9n/an/aCWE-89The CRM+ application before and including version 2025.6 from Brainformatik i…
CVE-2026-160474.35.8MattermostMattermostCWE-862Board channel linking without read channel permission validation
CVE-2026-679609.85.5n/an/aCWE-94An issue in PbootCMS v.3.2.15 allows an attacker to execute arbitrary code vi…
CVE-2026-463458.45.5oscal-compasscompliance-trestleCWE-22compliance-trestle - jinja has an Arbitrary File Write via Path Traversal
CVE-2026-74579await5.3LinuxLinuxnetfilter: nft_payload: fix mask build for partial field offload
CVE-2026-96933.55.3MattermostMattermostCWE-459Mattermost thread memberships persist after team removal, exposing private ch…
CVE-2026-653496.65.1AppleiOS and iPadOSCWE-125An out-of-bounds read was addressed with improved input validation. This issu…
CVE-2026-653306.55.1AppleiOS and iPadOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-653476.55.1AppleiOS and iPadOSCWE-400The issue was addressed with improved checks. This issue is fixed in iOS 26.6…
CVE-2026-105276.35.0MattermostMattermostCWE-863Boards plugin retains Board Admin rights for users demoted to System Guest
CVE-2026-160486.35.0MattermostMattermostCWE-863Channel member roles accept out-of-scope roles
CVE-2026-343987.85.0FreeCADFreeCADCWE-95FreeCAD: Arbitrary Code Execution via eval() on untrusted project file metada…
CVE-2026-436676.55.0AppleiOS and iPadOSCWE-617A reachable assertion was addressed with improved input validation. This issu…
CVE-2026-750567.84.9JetBrainsIntelliJ IDEACWE-78In JetBrains IntelliJ IDEA before 2026.2.1 rCE via Markdown export tool was p…
CVE-2026-160464.34.9MattermostMattermostCWE-863Missing run-state validation on finished playbook runs
CVE-2026-679617.84.8n/an/aCWE-94An issue in O2OA v.10.0.2 allows a local attacker to execute arbitrary code v…
CVE-2026-421639.84.7n/an/aCWE-284Mahara before 25.04.5 and 26.04.0 is vulnerable to unauthorized access to int…
CVE-2026-519779.14.7n/an/aCWE-321An issue in Trueview T18061 WiFi 3MP Robot Pan-Tilt Security Camera Version 1…
CVE-2026-157544.24.7MattermostMattermostCWE-863Missing per-channel team-scope check in ABAC access control policy unassign a…
CVE-2026-647156.54.4AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-647804.34.4AppleSafariCWE-119The issue was addressed with improved checks. This issue is fixed in Safari 2…
CVE-2026-647814.34.4AppleSafariCWE-20The issue was addressed with improved input validation. This issue is fixed i…
CVE-2026-647793.14.4AppleSafariCWE-362A memory corruption vulnerability was addressed with improved locking. This i…
CVE-2026-421649.84.3n/an/aCWE-200Mahara before 25.04.5 and 26.04.0 is vulnerable in the Text block/section fun…
CVE-2026-421629.14.3n/an/aCWE-22Mahara before 25.04.5 and 26.04.0 is vulnerable to artefacts being accessible…
CVE-2026-750608.44.3JetBrainsPyCharmCWE-306In JetBrains PyCharm before 2026.2.1 code execution was possible via unauthen…
CVE-2026-195897.14.2HashiCorpPackerCWE-22Packer vulnerable to arbitrary file write via crafted plugin archive during i…
CVE-2026-647605.54.1AppleiOS and iPadOSCWE-200An information leakage was addressed with additional validation. This issue i…
CVE-2026-750594.43.9JetBrainsPyCharmCWE-79In JetBrains PyCharm before 2026.2.1 code execution via Quick Documentation w…
CVE-2026-685188.83.8nicolargoglancesCWE-78Glances: Command injection bypass of action-template sanitizer via cross-fiel…
CVE-2026-629828.83.7nicolargoglancesCWE-78Glances: Incomplete fix of CVE-2026-32608: action-template sanitizer is bypas…
CVE-2026-347897.03.6FreeCADFreeCADCWE-94FreeCAD: Arbitrary code execution via unsandboxed PyImport_ImportModule in Pr…
CVE-2026-560893.33.6DellObjectScaleCWE-35Dell ObjectScale, versions prior to 4.3.0.1, contain(s) a Path Traversal vuln…
CVE-2026-437948.83.5AppleSafariCWE-119A memory corruption issue was addressed with improved memory handling. This i…
CVE-2026-647786.53.5AppleSafariCWE-200The issue was addressed with improved checks. This issue is fixed in Safari 2…
CVE-2026-653415.43.5AppleSafariCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-437954.33.5AppleSafariCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-647844.33.5AppleSafariCWE-125An out-of-bounds access issue was addressed with improved bounds checking. Th…
CVE-2026-653314.33.5AppleSafariCWE-703This issue was addressed through improved state management. This issue is fix…
CVE-2026-653324.33.5AppleSafariCWE-703This issue was addressed through improved state management. This issue is fix…
CVE-2026-653334.33.5AppleSafariCWE-119This issue was addressed through improved state management. This issue is fix…
CVE-2026-653344.33.5AppleSafariCWE-119A memory corruption issue was addressed with improved state management. This …
CVE-2026-653354.33.5AppleSafariCWE-119This issue was addressed through improved state management. This issue is fix…
CVE-2026-653364.33.5AppleSafariCWE-20This issue was addressed through improved state management. This issue is fix…
CVE-2026-653374.33.5AppleSafariCWE-20This issue was addressed through improved state management. This issue is fix…
CVE-2026-653384.33.5AppleSafariCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-653404.33.5AppleSafariCWE-20This issue was addressed through improved state management. This issue is fix…
CVE-2026-647823.13.5AppleSafariCWE-362A memory corruption vulnerability was addressed with improved locking. This i…
CVE-2026-343997.83.4FreeCADFreeCADCWE-95FreeCAD: Arbitrary Code Execution via eval() on untrusted SVG template scale …
CVE-2026-647876.53.3AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-647885.43.3AppleiOS and iPadOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-653514.33.3AppleSafariCWE-703This issue was addressed through improved state management. This issue is fix…
CVE-2026-750576.23.2JetBrainsIntelliJ IDEACWE-532In JetBrains IntelliJ IDEA before 2026.1.5 git credentials were written in pl…
CVE-2026-750523.63.2JetBrainsIntelliJ IDEACWE-77In JetBrains IntelliJ IDEA before 2026.2.1 command execution via crafted Mark…
CVE-2026-748828.73.0jahlivesopenssl_encryptCWE-345openssl_encrypt before 1.4.0 Insecure Default Configuration
CVE-2026-598946.23.0andialbrechtsqlparseCWE-94sqlparse: Generated Python and PHP snippets allow SQL string breakout through…
CVE-2026-687655.23.0hashcathashcatCWE-122hashcat KeePass KDBX v4 Module Heap Buffer Overflow via Token Field
CVE-2026-560907.32.7DellObjectScaleCWE-427Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Uncontrolled Searc…
CVE-2026-685197.12.7nicolargoglancesCWE-78Glances: `--disable-config-exec` does not cover on-alert action commands (inc…
CVE-2026-748859.32.3jahlivesopenssl_encryptCWE-117openssl_encrypt before 1.4.0 Logging Bug and Race Condition
CVE-2026-289844.32.4AppleiOS and iPadOSCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-750546.32.1JetBrainsIntelliJ IDEACWE-918In JetBrains IntelliJ IDEA before 2026.2.1 sSRF was possible via the OpenAPI …
CVE-2026-750555.52.1JetBrainsIntelliJ IDEACWE-611In JetBrains IntelliJ IDEA before 2026.2.1 hadoop ResourceManager could read …
CVE-2026-750585.52.1JetBrainsIntelliJ IDEACWE-611In JetBrains IntelliJ IDEA before 2026.2.1 xXE was possible in the Eclipse se…
CVE-2026-754834.82.2romkatvpowerlevel10kCWE-150powerlevel10k Control Character Injection via package.json Version
CVE-2026-599097.12.0DellObjectScaleCWE-35Dell ObjectScale, versions prior to 4.3.0.1, contain(s) a Path Traversal vuln…
CVE-2026-599115.51.4DellObjectScaleCWE-532Dell ObjectScale, versions prior to 4.3.0.1, contain(s) an Insertion of Sensi…
CVE-2026-401457.11.4BeyondTrustEndpoint Privilege Management (Windows deployment)CWE-1220Control protections bypass in BeyondTrust Endpoint Privilege Management (Wind…
CVE-2026-401447.31.3BeyondTrustEndpoint Privilege Management (Windows deployments)CWE-125Memory corruption vulnerability in Endpoint Privilege Management (Windows dep…
CVE-2026-97718.81.3zephyrprojectzephyrCWE-822Missing device-pointer validation in flash_copy() syscall allows userspace pr…
CVE-2026-755873.61.2MattermostMattermostCWE-200Plaintext pre-auth secret exposure via Desktop App diagnostics report
CVE-2026-748020.01.2siyuan-notesiyuanCWE-346SiYuan 3.7.3 Cross-Site WebSocket Hijacking via network proxy
CVE-2026-748672.31.2siyuan-notesiyuanCWE-352SiYuan before 3.7.4 Cross-Site Request Forgery via CheckAuth
CVE-2026-704958.81.0Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-269Search-v2-operator: search-v2-operator: cluster-wide impersonate on users/gro…
CVE-2026-506028.51.0AcerPlanet9 background serviceCWE-732Planet9 Incorrect Permission Assignment Vulnerability Information
CVE-2026-718585.40.9notepad-plus-plusnotepad-plus-plusCWE-78Notepad++: shortcuts.xml Macro HMAC Bypass Enables Conditional Elevated Comma…
CVE-2026-748716.90.7jahlivesopenssl_encryptCWE-916openssl_encrypt before 1.4.6 KDF Bypass via Sequential-XOR
CVE-2026-493026.20.6HuaweiHarmonyOSCWE-200Permission control vulnerability in the notification service module. Impact: …
CVE-2026-493076.20.6HuaweiHarmonyOSCWE-200Permission control vulnerability in the multi-mode input module. Impact: Succ…
CVE-2026-585604.00.5HuaweiHarmonyOSCWE-476Null pointer dereference issue in the image codec module. Impact: Successful …
CVE-2026-585614.00.5HuaweiHarmonyOSCWE-476Null pointer dereference issue in the image codec module. Impact: Successful …
CVE-2026-493085.50.4HuaweiHarmonyOSCWE-264Permission control vulnerability in the clipboard module. Impact: Successful …
CVE-2026-493016.20.4HuaweiHarmonyOSCWE-200Permission control vulnerability in the Gallery module. Impact: Successful ex…
CVE-2026-493046.20.2HuaweiHarmonyOSCWE-264Permission control vulnerability in the device key management module. Impact:…
CVE-2026-493056.20.2HuaweiHarmonyOSCWE-755Permission control vulnerability in the Wi-Fi enhancement module. Impact: Suc…
CVE-2026-493063.30.2HuaweiHarmonyOSCWE-416UAF vulnerability in the time and time zone module. Impact: Successful exploi…
CVE-2026-493035.10.2HuaweiHarmonyOSCWE-264Permission control vulnerability in the notification module. Impact: Successf…

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-08-17 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.