boxscore/security
Thursday, May 21, 2026 · all times UTC← 2026-05-20 · archive · 2026-05-22 →

187 CVEs published May 21, 2026: 15 critical, 74 high, 69 medium, 28 low; 2 in KEV; 7 with a public exploit reference; 1 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 162 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published919204910092563
KEV catalog size1670

30 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux224550674463602720.47.8.0014+172
microsoft15247237319990378275.77.8.0044-24
apple134001022193717.56.2.0037+13
red hat93251782400.07.5.00410
google16220136074418.28.4.0035+15
freebsd770520000.07.8.0020+7
suse220200000.08.2.0020+2
android0000001500
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco513312096861.58.6.1247+2
fortinet16130028350.07.9.4330-2
ivanti140000334100.0.81040
f51210007150.09.2.3413+1
broadcom02000042100.0.19900
palo alto networks110000141100.0.3207+1
citrix010000191100.0.84470
ubiquiti010100400.08.8.00360
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache617311304015.97.5.0092+3
mozilla5532001300.09.6.0045+5
drupal220020500.05.1.0019+2
gitlab02000042100.0.44510
docker000000100
jenkins000000600
joomla000000100
wordpress000000500
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
progress440400900.07.5.0036+4
adobe14010075375.08.6.2776-2
solarwinds031000113100.09.8.83620
oracle0202004000.07.5.00650
zohocorp110100000.08.4.0170+1
atlassian0000001300
ibm000000700
sap0000001200
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
siemens110100100.08.7.0032+1
d-link010000261100.0.89640
hikvision01000021100.01.00000
dahua000000200
qnap000000800
schneider electric000000100
tp-link000000600
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
concrete cms4141191318000.06.3.0015+41
open ises3737214210000.06.9.0021+37
netatalk3333113910000.06.4.0030+33
grafana102727162000.06.5.0033+7
nvidia16167900000.08.4.0059+16
trend micro1616213101216.37.8.0030+16
givanz11152760000.08.3.0028+7
python software foundation2141391000.06.0.0042-3

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-31431.9991100.07.8
CVE-2008-4250.987599.9
CVE-2026-41940.979399.99.3
CVE-2026-39987.965899.9
CVE-2026-43284.932499.88.8
CVE-2026-43500.928599.87.8
CVE-2024-7399.919499.8
CVE-2010-0249.918899.8
CVE-2026-20182.915299.8
CVE-2025-29635.896499.8
Highest CVSS
CVECVSSEPSSNote
CVE-2026-4399710.0.0098
CVE-2026-3381910.0.0084
CVE-2026-4282610.0.0084
CVE-2026-2022310.0.0083
CVE-2026-4400510.0.0083
CVE-2026-4400610.0.0081
CVE-2026-3543110.0.0051
CVE-2026-4282210.0.0049
CVE-2026-915210.0.0034
CVE-2026-4544410.0.0028
Most disclosures (vendor)
VendorCVEs
linux337
microsoft163
concrete cms41
open ises37
netatalk33
google16
nvidia16
trend micro16
red hat14
apple13
Most KEV additions (YTD)
VendorKEV
microsoft27
cisco8
apple7
google4
ivanti4
synacor4
adobe3
fortinet3
smartertools3
solarwinds3
Most-affected ecosystems
EcosystemAdvisories
Maven1
PyPI1
Fastest to KEV
CVEVendorDays
CVE-2008-4250Microsoft0
CVE-2009-1537Microsoft0
CVE-2009-3459Adobe0
CVE-2010-0249Microsoft0
CVE-2010-0806Microsoft0
CVE-2024-1708ConnectWise0
CVE-2024-57726n/a0
CVE-2024-57728n/a0
CVE-2024-7399Samsung0
CVE-2025-29635D-Link0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104Accellion2021-11-171646
CVE-2021-27102Accellion2021-11-171646
CVE-2021-27101Accellion2021-11-171646
CVE-2021-27103Accellion2021-11-171646
CVE-2021-21017Adobe2021-11-171646
CVE-2021-28550Adobe2021-11-171646
CVE-2021-42013Apache2021-11-171646
CVE-2021-41773Apache2021-11-171646
CVE-2021-30858Apple2021-11-171646
CVE-2021-30860Apple2021-11-171646

Transactions

EXPLOIT PUBLISHEDCVE-2026-2734 (mlflow/mlflow). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-28764 (MediaArea MediaInfoLib). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-4093 (Drupal Term Reference Tree). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-43494 (Linux). Public exploit reference added.

Yesterday's Results

187 CVEs published. 25 box scores, 162 table rows — nothing truncated.

CVE-2025-34291AWAITING ENRICHMENT
Langflow Langflow
  CVSS   EPSS    %ile   KEV
  —      .8384   99.7   YES
AFFECTED
  Product   Versions     Fixed
  Langflow  unspecified  —
TIMELINE
  May 21  Added to CISA KEV, due Jun 4
  May 21  Published
0 references · KEV due June 4, 2026
Trend Micro Apex One
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   L   H   H   N  C  H  L  L    6.7   .1268   95.9   YES
AFFECTED
  Product                        Versions       Fixed
  TrendAI Apex One               2019 (14.0) –  —
  TrendAI Apex One as a Service  SaaS –         —
TIMELINE
  Mar 31  Reserved by CNA
  May 21  Added to CISA KEV, due Jun 4
  May 21  Published (CNA: trendmicro)
CWE-23 · CNA: trendmicro · 5 references · NVD status: Analyzed · KEV due June 4, 2026
Trend Micro, Inc. TrendAI Apex One — A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to upload mali…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0381   89.1     —
AFFECTED
  Product                        Versions       Fixed
  TrendAI Apex One               2019 (14.0) –  —
  TrendAI Apex One as a Service  SaaS –         —
TIMELINE
  Feb 11  Reserved by CNA
  May 21  Published (CNA: trendmicro)
CWE-22 · CNA: trendmicro · 2 references · NVD status: Analyzed
Trend Micro, Inc. TrendAI Apex One — A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to upload mali…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0375   89.0     —
AFFECTED
  Product                        Versions       Fixed
  TrendAI Apex One               2019 (14.0) –  —
  TrendAI Apex One as a Service  SaaS –         —
TIMELINE
  Feb 11  Reserved by CNA
  May 21  Published (CNA: trendmicro)
CWE-22 · CNA: trendmicro · 2 references · NVD status: Analyzed
themefusion Avada (Fusion) Builder — Avada (Fusion) Builder <= 3.15.2 - Unauthenticated Remote Code Execution via PHP Function Injection via 'render_logics' Shortcode Attribute via Widget AJAX Handler
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0216   80.7     —
AFFECTED
  Product                 Versions     Fixed
  Avada (Fusion) Builder  unspecified  —
TIMELINE
  Apr 14  Reserved by CNA
  May 21  Published (CNA: Wordfence)
CWE-74 · CNA: Wordfence · 12 references · NVD status: Deferred
Zohocorp ManageEngine ADSelfService Plus — Remote Code Execution
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   L   N  C  H  H  L    8.4   .0170   75.3     —
AFFECTED
  Product                            Versions     Fixed
  ManageEngine ADSelfService Plus    unspecified  —
  ManageEngine DataSecurity Plus     unspecified  —
  ManageEngine RecoveryManager Plus  unspecified  —
TIMELINE
  Feb 19  Reserved by CNA
  May 21  Published (CNA: Zohocorp)
CWE-77 · CNA: Zohocorp · 1 reference · NVD status: Awaiting Analysis
Honeywell International Inc. Control Network Module (CNM) — Improper sanitization
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  C  H  H  H    9.1   .0097   59.0     —
AFFECTED
  Product                       Versions  Fixed
  Control Network Module (CNM)  100.1 –   —
TIMELINE
  Apr 2   Reserved by CNA
  May 21  Published (CNA: Honeywell)
CWE-77 · CNA: Honeywell · 1 reference · NVD status: Undergoing Analysis
Concrete CMS 9.5.0 and below is vulnerable to Authenticated RCE via Composer customTemplate Path Traversal leading to PHP File Inclusion
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   H   N   H   H   H    9.4   .0074   51.6     —
AFFECTED
  Product       Versions  Fixed
  Concrete CMS  5.0 –     —
TIMELINE
  May 7   Reserved by CNA
  May 21  Published (CNA: ConcreteCMS)
CWE-23, CWE-98, CWE-434 · CNA: ConcreteCMS · 1 reference · NVD status: Analyzed
BerriAI litellm — LiteLLM < 1.83.14 Privilege Escalation via API Key Generation
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    8.7   .0074   51.6     —
AFFECTED
  Product  Versions     Fixed
  litellm  unspecified  —
TIMELINE
  May 18  Reserved by CNA
  May 21  Published (CNA: VulnCheck)
CWE-863, CWE-639 · CNA: VulnCheck · 11 references · NVD status: Modified
Linux Linux — rtmutex: Use waiter::task instead of current in remove_waiter()
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   L   L   L   N  U  H  H  H    7.8   .0073   51.1     —
AFFECTED
  Product  Versions                                    Fixed
  Linux    8161239a8bcce9ad6b537c04a1fa3b5c68bae693 –  —
  Linux    2.6.39 –                                    5.10.261
TIMELINE
  May 1   Reserved by CNA
  May 21  Published (CNA: Linux)
CWE-416 · CNA: Linux · 9 references · NVD status: Modified
IINA < 1.4.3 Command Execution via iina://open URL Scheme
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   A   H   H   H    8.6   .0070   50.2     —
AFFECTED
  Product  Versions     Fixed
  iina     unspecified  —
TIMELINE
  May 18  Reserved by CNA
  May 21  Published (CNA: VulnCheck)
CWE-88 · CNA: VulnCheck · 4 references · NVD status: Deferred
Repute Infosystems BookingPress Appointment Booking Pro — BookingPress Pro <= 5.6 - Unauthenticated Arbitrary File Upload via Signature Custom Field
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0067   49.1     —
AFFECTED
  Product                               Versions     Fixed
  BookingPress Appointment Booking Pro  unspecified  —
TIMELINE
  Apr 24  Reserved by CNA
  May 21  Published (CNA: Wordfence)
CWE-434 · CNA: Wordfence · 2 references · NVD status: Deferred
BerriAI litellm — LiteLLM < 1.83.10 Privilege Escalation via User Update
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    8.7   .0065   48.4     —
AFFECTED
  Product  Versions     Fixed
  litellm  unspecified  —
TIMELINE
  May 18  Reserved by CNA
  May 21  Published (CNA: VulnCheck)
CWE-863, CWE-915 · CNA: VulnCheck · 11 references · NVD status: Modified
Linux Linux — ipv6: rpl: reserve mac_len headroom when recompressed SRH grows
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0060   45.6     —
AFFECTED
  Product  Versions                                    Fixed
  Linux    8610c7c6e3bd647ff98d21c8bc0580e77bc2f8b3 –  —
  Linux    5.7 –                                       5.10.258
TIMELINE
  May 1   Reserved by CNA
  May 21  Published (CNA: Linux)
CWE-787, CWE-131 · CNA: Linux · 18 references · NVD status: Modified
Apache Fory: PyFory ReduceSerializer Incomplete Policy Enforcement
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0057   44.7     —
AFFECTED
  Product      Versions  Fixed
  Apache Fory  0.13.0 –  —
TIMELINE
  May 21  Reserved by CNA
  May 21  Published (CNA: apache)
CWE-502 · CNA: apache · 2 references · NVD status: Analyzed
Concrete 9.5.0 and below has file usage disclosure via missing permission check in Usage controller
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   L   N   N    6.9   .0056   44.1     —
AFFECTED
  Product       Versions  Fixed
  Concrete CMS  5.0 –     —
TIMELINE
  Apr 21  Reserved by CNA
  May 21  Published (CNA: ConcreteCMS)
CWE-200 · CNA: ConcreteCMS · 1 reference · NVD status: Analyzed
Trend Micro, Inc. TrendAI Apex One — A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to esca…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   L   L   L   N  U  H  H  H    7.8   .0054   43.1     —
AFFECTED
  Product                        Versions       Fixed
  TrendAI Apex One               2019 (14.0) –  —
  TrendAI Apex One as a Service  SaaS –         —
TIMELINE
  Feb 11  Reserved by CNA
  May 21  Published (CNA: trendmicro)
CWE-59 · CNA: trendmicro · 2 references · NVD status: Analyzed
Netatalk Netatalk — Authentication bypass via admin auth user
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  U  H  H  H    7.2   .0053   42.5     —
AFFECTED
  Product   Versions  Fixed
  Netatalk  2.2.2 –   4.5.0
TIMELINE
  May 5   Reserved by CNA
  May 21  Published (CNA: securin)
CWE-287 · CNA: securin · 1 reference · NVD status: Deferred
Netatalk Netatalk — Out-of-bounds write in convert_charset() null termination
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   L   N  U  H  H  H    7.5   .0052   41.6     —
AFFECTED
  Product   Versions  Fixed
  Netatalk  2.0.4 –   4.4.3
TIMELINE
  May 5   Reserved by CNA
  May 21  Published (CNA: securin)
CWE-787 · CNA: securin · 1 reference · NVD status: Deferred
Divi Form Builder <= 5.1.2 - Unauthenticated Privilege Escalation via 'role'
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0049   39.8     —
AFFECTED
  Product            Versions     Fixed
  Divi Form Builder  unspecified  —
TIMELINE
  Mar 30  Reserved by CNA
  May 21  Published (CNA: Wordfence)
CWE-269 · CNA: Wordfence · 2 references · NVD status: Deferred
Netatalk Netatalk — Arbitrary file read via attacker-controlled symlink creation
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  N    8.1   .0048   39.1     —
AFFECTED
  Product   Versions  Fixed
  Netatalk  3.0.2 –   4.4.3
TIMELINE
  May 5   Reserved by CNA
  May 21  Published (CNA: securin)
CWE-59 · CNA: securin · 1 reference · NVD status: Deferred
Concrete CMS 9.5.0 and below is vulnerable to RCE due to insecure deserialization occurring in the ExpressEntryList block controller.
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   P   H   N   H   H   H    8.9   .0047   38.7     —
AFFECTED
  Product       Versions  Fixed
  Concrete CMS  5.0 –     —
TIMELINE
  May 7   Reserved by CNA
  May 21  Published (CNA: ConcreteCMS)
CWE-502 · CNA: ConcreteCMS · 1 reference · NVD status: Analyzed
mlflow mlflow/mlflow — Authorization Bypass in SearchModelVersions in mlflow/mlflow
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  N  N    6.5   .0044   36.7     —
AFFECTED
  Product        Versions       Fixed
  mlflow/mlflow  unspecified –  —
TIMELINE
  Feb 19  Reserved by CNA
  May 21  Public exploit reference published
  May 21  Published (CNA: @huntr_ai)
CWE-284 · CNA: @huntr_ai · 2 references · NVD status: Analyzed
Netatalk Netatalk — Heap buffer overflow in CNID daemon comm_rcv()
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  C  H  H  H    9.9   .0042   34.9     —
AFFECTED
  Product   Versions  Fixed
  Netatalk  2.0.0 –   4.4.3
TIMELINE
  May 5   Reserved by CNA
  May 21  Published (CNA: securin)
CWE-122 · CNA: securin · 1 reference · NVD status: Deferred
Netatalk Netatalk — Stack buffer overflow via UCS-2 type confusion in convert_charset()
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0042   34.9     —
AFFECTED
  Product   Versions  Fixed
  Netatalk  2.0.4 –   4.4.3
TIMELINE
  May 5   Reserved by CNA
  May 21  Published (CNA: securin)
CWE-121 · CNA: securin · 1 reference · NVD status: Deferred
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-464737.534.7TCHATZIAuthen::TOTPCWE-331Authen::TOTP versions before 0.1.1 for Perl generate secrets using rand
CVE-2026-452507.834.1FreeBSDFreeBSDCWE-121Stack buffer overflow via setcred(2)
CVE-2026-440615.932.0NetatalkNetatalkCWE-208DES-ECB auth with timing side channel
CVE-2026-440478.830.2NetatalkNetatalkCWE-89SQL injection in MySQL CNID backend
CVE-2026-420017.529.6PowerDNSAuthoritativeCWE-400Insufficient Validation of Autoprimary SOA Queries
CVE-2026-440557.529.1NetatalkNetatalkCWE-78Bitwise OR logic bug enables shell injection
CVE-2025-712147.828.8Trend Micro, Inc.TrendAI Apex One (Mac)CWE-346An origin validation error vulnerability in the Trend Micro Apex One (mac) ag…
CVE-2026-440627.528.7NetatalkNetatalkCWE-787Missing o_len bounds check in pull_charset_flags()
CVE-2026-423966.528.4PowerDNSAuthoritativeCWE-94Insufficient Validation of Member Zone Data May Cause Catalog Zone Transfer t…
CVE-2026-915210.026.9AltiumAltium 365CWE-306Unauthenticated SOAP Endpoint in Altium 365 SearchService Allows Cross-Tenant…
CVE-2025-712137.826.7Trend Micro, Inc.TrendAI Apex OneCWE-346An origin validation error vulnerability in Trend Micro Apex One could allow …
CVE-2026-15436.426.6themefusionAvada (Fusion) BuilderCWE-79Avada (Fusion) Builder <= 3.15.2 - Authenticated (Subscriber+) Stored Cross-S…
CVE-2026-440713.726.4NetatalkNetatalkCWE-693FORTIFY_SOURCE disabled
CVE-2026-440743.725.8NetatalkNetatalkCWE-682Bitwise OR of errno values
CVE-2026-440753.725.8NetatalkNetatalkCWE-484Missing break in DSI OpenSession
CVE-2026-440607.525.6NetatalkNetatalkCWE-191Integer underflow in dsi_writeinit() leads to denial of service
CVE-2026-48589.925.6MattermostMattermostCWE-22Path traversal in integration action URL leading to arbitrary API execution v…
CVE-2026-457608.125.4Apache Software FoundationApache Camel KCWE-610Apache Camel K: Camel K Cross-Namespace Build Deputy Attack
CVE-2025-712167.825.1Trend Micro, Inc.TrendAI Apex One (Mac)CWE-367A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) a…
CVE-2026-440687.624.9NetatalkNetatalkCWE-22EA path traversal via incomplete sanitization
CVE-2026-78353.124.6NetatalkNetatalkCWE-134Format string argument mismatch
CVE-2026-440703.124.6NetatalkNetatalkCWE-770Unbounded realloc in charset conversion
CVE-2026-90898.823.8ConnectWiseAutomateCWE-494The ConnectWise Automate™ Agent does not fully verify the authenticity of com…
CVE-2026-48114.923.8wpbeanWPB Floating Menu or Categories – Sticky Floating Side Menu & Categories with IconsCWE-79WPB Floating Menu or Categories – Sticky Floating Side Menu & Categories with…
CVE-2026-395936.523.3VillaThemeHAPPYCWE-862WordPress HAPPY plugin <= 1.0.10 - Broken Access Control vulnerability
CVE-2026-482419.223.1Open ISESTicketsCWE-798Open ISES Tickets < 3.44.2 Hardcoded MySQL Database Credentials in loader.php
CVE-2026-452557.523.1FreeBSDFreeBSDCWE-78Remote code execution via installer Wi-Fi access point scans
CVE-2026-83507.522.7Concrete CMSConcrete CMSCWE-863Concrete CMS 9.5.0 and below is vulnerable to missing authorization in the bu…
CVE-2026-440537.422.7NetatalkNetatalkCWE-327Weak cryptography in DHCAST128 UAM
CVE-2025-712157.022.7Trend Micro, Inc.TrendAI Apex One (Mac)CWE-367A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) a…
CVE-2026-452087.822.5Trend Micro, Inc.TrendAI Apex OneCWE-367A time-of-check time-of-use vulnerability in the Apex One/SEP agent could all…
CVE-2026-434947.822.4LinuxLinuxCWE-1341net/rds: reset op_nents when zerocopy page pin fails
CVE-2026-482429.222.2Open ISESTicketsCWE-798Open ISES Tickets < 3.44.2 Hardcoded MySQL Database Credentials in import_mdb…
CVE-2025-712177.822.1Trend Micro, Inc.TrendAI Apex One (Mac)CWE-346An origin validation error vulnerability in the Trend Micro Apex One (mac) ag…
CVE-2026-440674.221.7NetatalkNetatalkCWE-125EA header parsing heap over-read
CVE-2026-440667.121.5NetatalkNetatalkCWE-125Heap out-of-bounds reads in Spotlight RPC unmarshalling
CVE-2026-78862.321.3Concrete CMSConcrete CMSCWE-639Concrete CMS 9.5.0 and below is vulnerable to IDOR in AddMessage/UpdateMessag…
CVE-2026-452525.520.9FreeBSDFreeBSDCWE-122Heap overflow in FUSE_LISTXATTR
CVE-2026-440546.520.5NetatalkNetatalkCWE-330Predictable afpd session token
CVE-2026-440735.020.2NetatalkNetatalkCWE-273seteuid failure ignored in auth modules
CVE-2026-420027.518.3PowerDNSAuthoritativeCWE-364Concurrency and locking defects in GSS-TSIG
CVE-2026-434958.818.0LinuxLinuxCWE-125net: wwan: t7xx: validate port_count against message length in t7xx_port_enum…
CVE-2026-482185.117.8Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via icons/buttons/landb.php frm_name…
CVE-2026-482245.117.8Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via ics214.php frm_add_str Parameter
CVE-2026-78363.117.5NetatalkNetatalkCWE-682hextoint macro uppercase bug
CVE-2026-440566.417.0NetatalkNetatalkCWE-121Stack buffer overflow in desktop.c
CVE-2025-134797.516.7PosCube Hardware Software and Consulting Ltd.QR MenuCWE-639IDOR in PosCube's QR Menu
CVE-2026-349277.816.1Trend Micro, Inc.TrendAI Apex OneCWE-346An origin validation vulnerability in the Apex One/SEP agent could allow a lo…
CVE-2026-349297.816.1Trend Micro, Inc.TrendAI Apex OneCWE-346An origin validation vulnerability in the Apex One/SEP agent could allow a lo…
CVE-2026-440527.516.0NetatalkNetatalkCWE-532LDAP simple-bind password exposure in log output
CVE-2026-03936.915.8CODESYSVisualizationCWE-522CODESYS Visualization - Insufficiently Protected Credentials
CVE-2026-395319.315.7Wp Directory KitWP Directory KitCWE-89WordPress WP Directory Kit plugin <= 1.5.0 - SQL Injection vulnerability
CVE-2026-420008.615.6PowerDNSAuthoritativeCWE-77Insufficient Validation of Names During AXFR
CVE-2026-482358.815.4Open ISESTicketsCWE-89Open ISES Tickets < 3.44.2 SQL Injection in incs/remotes.inc.php via External…
CVE-2026-78373.714.8NetatalkNetatalkCWE-367TOCTOU with root privilege in ad_flush
CVE-2026-68415.114.6Best PracticalRequest TrackerCWE-79Reflected XSS in Request Tracker
CVE-2025-134777.113.3Digital Operations Services Inc.WifiBuradaCWE-359OTP Bypass in Digital Operation Services' WifiBurada
CVE-2026-482436.913.3Open ISESTicketsCWE-798Open ISES Tickets < 3.44.2 Hardcoded WhitePages API Key in wp1.php
CVE-2026-482446.913.3Open ISESTicketsCWE-798Open ISES Tickets < 3.44.2 Hardcoded Google Maps API Key in settings.inc.php
CVE-2026-482456.913.3Open ISESTicketsCWE-798Open ISES Tickets < 3.44.2 Hardcoded Google Maps API Key in tables.php
CVE-2026-78796.313.3Concrete CMSConcrete CMSCWE-862Concrete CMS 9.5.0 and below is vulnerable to File Download Authorization Byp…
CVE-2026-226785.112.9WebminWebminCWE-79Webmin < 2.641 Stored XSS via System and Server Status
CVE-2026-18814.312.6broadstreetadsBroadstreetCWE-639Broadstreet <= 1.52.2 - Authenticated (Subscriber+) Private Post Meta Disclos…
CVE-2026-482407.112.5Open ISESTicketsCWE-89Open ISES Tickets < 3.44.2 SQL Injection via ajax/statistics.php tick_id and …
CVE-2026-482317.112.0Open ISESTicketsCWE-89Open ISES Tickets < 3.44.2 SQL Injection via tables.php Multiple Parameters
CVE-2026-482327.112.0Open ISESTicketsCWE-89Open ISES Tickets < 3.44.2 SQL Injection via ajax/fullsit_incidents.php offse…
CVE-2026-482337.112.0Open ISESTicketsCWE-89Open ISES Tickets < 3.44.2 SQL Injection via ajax/sit_incidents.php offset Pa…
CVE-2026-482347.112.0Open ISESTicketsCWE-89Open ISES Tickets < 3.44.2 SQL Injection via portal/ajax/list_requests.php so…
CVE-2026-482367.112.0Open ISESTicketsCWE-89Open ISES Tickets < 3.44.2 SQL Injection via db_loader.php Multiple Parameters
CVE-2026-482377.112.0Open ISESTicketsCWE-89Open ISES Tickets < 3.44.2 SQL Injection via message.php frm_ticket_id and fr…
CVE-2026-482387.112.0Open ISESTicketsCWE-89Open ISES Tickets < 3.44.2 SQL Injection via ajax/mobile_main.php id Parameter
CVE-2026-482397.112.0Open ISESTicketsCWE-89Open ISES Tickets < 3.44.2 SQL Injection via ajax/reports.php tick_id Parameter
CVE-2026-349287.811.9Trend Micro, Inc.TrendAI Apex OneCWE-346An origin validation vulnerability in the Apex One/SEP agent could allow a lo…
CVE-2026-349307.811.9Trend Micro, Inc.TrendAI Apex OneCWE-346An origin validation vulnerability in the Apex One/SEP agent could allow a lo…
CVE-2026-452067.811.9Trend Micro, Inc.TrendAI Apex OneCWE-346An origin validation vulnerability in the Apex One/SEP agent could allow a lo…
CVE-2026-452077.811.9Trend Micro, Inc.TrendAI Apex OneCWE-346An origin validation vulnerability in the Apex One/SEP agent could allow a lo…
CVE-2026-440634.211.9NetatalkNetatalkCWE-90LDAP filter injection
CVE-2026-482145.111.8Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via add_nm.php ticket_id Parameter
CVE-2026-482155.111.8Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via circle.php frm_id Parameter
CVE-2026-482165.111.8Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via db_loader.php Multiple POST Para…
CVE-2026-482175.111.8Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via delete_module.php Multiple POST …
CVE-2026-482195.111.8Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via ics202.php frm_add_str Parameter
CVE-2026-482205.111.8Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via ics205.php frm_add_str Parameter
CVE-2026-482215.111.8Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via ics205a.php frm_add_str Parameter
CVE-2026-482225.111.8Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via ics213.php frm_add_str Parameter
CVE-2026-482235.111.8Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via ics213rr.php frm_add_str Parameter
CVE-2026-482255.111.7Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via landb.php _type Parameter
CVE-2026-482305.111.7Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via ticketsmdb_import.php Multiple P…
CVE-2026-82046.311.7Concrete CMSConcrete CMSCWE-639Concrete CMS 9.5.0 and below is vulnerable to Authorization Bypass in the Cal…
CVE-2026-82056.311.7Concrete CMSConcrete CMSCWE-425Concrete CMS 9.5.0 and below is vulnerable to authorization bypass in Calenda…
CVE-2026-54345.911.2Honeywell International Inc.Control Network Module (CNM)CWE-538Improper storage of sensitive information
CVE-2026-482488.210.8Open ISESTicketsCWE-295Open ISES Tickets < 3.44.2 Disabled TLS Certificate Verification in incs/logi…
CVE-2026-78816.310.8Concrete CMSConcrete CMSCWE-639Concrete CMS 9.5.0 and below is vulnerable to IDOR in the Express Entry Detai…
CVE-2026-49295.110.8DrupalSimple Hierarchical Select (shs)CWE-79Simple Hierarchical Select (Drupal 7) XSS in term-derived output
CVE-2026-287647.810.6MediaAreaMediaInfoLibCWE-823MediaArea MediaInfoLib LXF element parsing heap-based buffer overflow vulnera…
CVE-2026-82366.310.5Concrete CMSConcrete CMSCWE-862Concrete CMS 9.5.0 and below is vulnerable to IDOR combined with a missing au…
CVE-2026-82376.310.3Concrete CMSConcrete CMSCWE-862Concrete CMS 9.5.0 and below is vulnerable to IDOR in the`/ccm/frontend/conve…
CVE-2026-82386.310.3Concrete CMSConcrete CMSCWE-862Concrete CMS 9.5.0 and below is vulnerable to IDOR in '/ccm/frontend/conversa…
CVE-2026-452538.49.7FreeBSDFreeBSDCWE-787Missing validation in ptrace(PT_SC_REMOTE)
CVE-2026-50915.19.6JJNAPIORKCatalyst::Plugin::AuthenticationCWE-208Catalyst::Plugin::Authentication versions through 0.10024 for Perl is suscept…
CVE-2026-82396.39.5Concrete CMSConcrete CMSCWE-862Concrete CMS 9.5.0 and below is vulnerable to IDOR in '/ccm/frontend/conversa…
CVE-2026-82406.39.5Concrete CMSConcrete CMSCWE-284Concrete CMS 9.5.0 and below is vulnerable to unauthenticated page metadata d…
CVE-2026-452546.59.4FreeBSDFreeBSDCWE-269Incorrect libcap_net limitation list manipulation
CVE-2026-83376.39.5Concrete CMSConcrete CMSCWE-565Concrete CMS 9.5.0 and below is vulnerable to IDOR in surveys when sites are …
CVE-2026-48434.39.2mrdollar4444GSheet For Woo ImporterCWE-862GSheet For Woo Importer <= 2.3.1 - Missing Authorization to Authenticated (Su…
CVE-2026-440573.18.5NetatalkNetatalkCWE-561Dead bounds check in Spotlight RPC unmarshaller
CVE-2026-18166.38.3Turkiye Electricity Transmission Corporation (TEİAŞ)Mobile ApplicationCWE-307OTP Bypass in TEİAŞ's Mobile Application
CVE-2026-81977.38.0Concrete CMSConcrete CMSCWE-79Concrete CMS 9.5.0 and below is vulnerable to Stored XSS via OAuth integratio…
CVE-2026-83275.38.1Concrete CMSConcrete CMSCWE-269Concrete CMS below 9.5.0 and below is vulnerable to password change without r…
CVE-2026-18155.77.6Turkiye Electricity Transmission Corporation (TEİAŞ)Mobile ApplicationCWE-613Session Hijacking in TEİAŞ's Mobile Application
CVE-2026-482478.27.0Open ISESTicketsCWE-295Open ISES Tickets < 3.44.2 Disabled TLS Certificate Verification in incs/func…
CVE-2026-482498.27.0Open ISESTicketsCWE-295Open ISES Tickets < 3.44.2 Disabled TLS Certificate Verification in rm/incs/m…
CVE-2026-394618.87.0FreeBSDFreeBSDCWE-121select(2) file descriptor set overflow causes stack overflow
CVE-2026-40935.16.9DrupalTerm Reference TreeCWE-79Stored XSS in Drupal 7 Term Reference Tree module (token display templates an…
CVE-2026-482135.17.0Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via add.php ticket_id Parameter
CVE-2026-78872.37.0Concrete CMSConcrete CMSCWE-1287For Concrete CMS 9.5.0 and below, OAuth 2.0 Authorization-Code Handler Bypass…
CVE-2026-84217.56.8Concrete CMSConcrete CMSCWE-352Concrete CMS 9.5.0 and below is vulnerable to CSRF on install_package() with …
CVE-2026-84267.56.8Concrete CMSConcrete CMSCWE-352Concrete CMS 9.5.0 and below is vulnerable to CSRF on prepare_remote_upgrade(…
CVE-2026-440647.16.8NetatalkNetatalkCWE-125ASP session ID out-of-bounds access
CVE-2026-273935.36.8TobiasCF7 WOW StylerCWE-862WordPress CF7 WOW Styler plugin <= 1.7.6 - Broken Access Control vulnerability
CVE-2026-273494.36.9WPFunnels TeamMail MintCWE-497WordPress Mail Mint plugin <= 1.19.5 - Sensitive Data Exposure vulnerability
CVE-2026-452517.86.8FreeBSDFreeBSDCWE-416Kernel use-after-free via file descriptor syscalls
CVE-2026-482468.26.7Open ISESTicketsCWE-295Open ISES Tickets < 3.44.2 Disabled TLS Certificate Verification in ajax/repo…
CVE-2026-482265.16.6Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via os_watch.php ref and mode_orig P…
CVE-2026-482275.16.6Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via patient.php id and ticket_id Par…
CVE-2026-482285.16.6Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via patient_w.php id and ticket_id P…
CVE-2026-482295.16.6Open ISESTicketsCWE-79Open ISES Tickets < 3.44.2 Reflected XSS via routes_i.php ticket_id Parameter
CVE-2026-40554.34.9MattermostMattermostCWE-863Insufficient permission validation on cross-team playbook run creation
CVE-2026-78902.14.9Concrete CMSConcrete CMSCWE-918Concrete CMS 9.5.0 is vulnerable to SSRF via RSS Displayer Block
CVE-2026-81392.04.7Concrete CMSConcrete CMSCWE-79Concrete CMS 9.5.0 and below is vulnerable to Stored XSS via external-link pa…
CVE-2026-419994.84.0PowerDNSAuthoritativeCWE-284Incorrect Behaviour of Views with TCP PROXY Requests
CVE-2026-84092.34.0Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-84102.34.0Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-82456.03.8Concrete CMSConcrete CMSCWE-83Concrete CMS 9.5.0 and below is vulnerable to Reflected XSS in Legacy Paginat…
CVE-2026-361896.23.3n/an/aCWE-120Buffer Overflow vulnerability in Uncrustify Project Affected v.Uncrustify_d-0…
CVE-2026-84287.53.2Concrete CMSConcrete CMSCWE-352CSRF token is not validated in the core CMS update controller for Concrete CM…
CVE-2026-440766.73.1NetatalkNetatalkCWE-78Shell injection via volume path
CVE-2026-440654.23.1NetatalkNetatalkCWE-193Off-by-two in papd lp_write()
CVE-2026-84112.33.1Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-84122.33.1Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-84132.33.1Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-84142.33.1Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-84152.33.1Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-84162.33.1Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-84272.33.1Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-84322.33.1Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-84332.33.1Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-84342.33.1Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-435027.82.5LinuxLinuxnet/rds: handle zerocopy send cleanup before the message is queued
CVE-2026-84177.52.3Concrete CMSConcrete CMSCWE-352Concrete CMS 9.5.0 and below is vulnerable to CSRF in do_update() in the pack…
CVE-2026-82037.32.3Concrete CMSConcrete CMSCWE-79Concrete CMS 9.5.0 and below has Stored XSS on the height parameter
CVE-2026-91578.62.1GmissionWeb FaxCWE-20Remote Code Execution in Gmission Web FAX
CVE-2026-81407.52.0Concrete CMSConcrete CMSCWE-352Concrete CMS 9.5.0 and below is vulnerable to CSRF on download() in the packa…
CVE-2026-434965.52.0LinuxLinuxCWE-476net/sched: sch_red: Replace direct dequeue call with peek and qdisc_dequeue_p…
CVE-2026-228806.12.0MattermostMattermostCWE-352Mobile SSO authentication flow allows credential theft via malicious server
CVE-2026-78822.31.9Concrete CMSConcrete CMSCWE-352Concrete CMS 9.5.0 and below is vulnerable to CSRF via the DeleteFile controller
CVE-2026-84352.31.8Concrete CMSConcrete CMSCWE-352Concrete CMS 9 before 9.5.0 is vulnerable to Cross Site Request Forgery (CSRF…
CVE-2026-434987.81.6LinuxLinuxCWE-787accel/ivpu: Disallow re-exporting imported GEM objects
CVE-2026-434977.31.7LinuxLinuxCWE-416fbdev: udlfb: add vm_ops to dlfb_ops_mmap to prevent use-after-free
CVE-2026-440693.90.7NetatalkNetatalkCWE-191Integer underflow in volxlate
CVE-2026-440723.00.6NetatalkNetatalkCWE-78system() after failed chdir()
CVE-2026-440594.50.0NetatalkNetatalkCWE-362Non-reentrant privilege toggle

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-05-21 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.