CVSS EPSS %ile KEV — .0553 92.1 YES
AFFECTED Product Versions Fixed Kernel unspecified —
TIMELINE Jun 2 Added to CISA KEV, due Jun 5 Jun 2 Published
226 CVEs published June 2, 2026: 14 critical, 85 high, 97 medium, 29 low; 2 in KEV; 25 with a public exploit reference; 1 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 201 in the results table.
| MTD | YTD | 2025 same span | 2025 full | |
|---|---|---|---|---|
| CVEs published | 603 | 4975 | 1033 | 2563 |
| KEV catalog size | 1670 | |||
197 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| linux | 2 | 968 | 79 | 617 | 269 | 1 | 27 | 3 | 0.3 | 7.8 | .0013 | -59 |
| microsoft | 1 | 491 | 43 | 329 | 102 | 0 | 378 | 27 | 5.5 | 7.8 | .0045 | +1 |
| 61 | 235 | 11 | 149 | 61 | 11 | 74 | 5 | 2.1 | 8.0 | .0021 | +61 | |
| red hat | 5 | 69 | 8 | 30 | 27 | 4 | 4 | 0 | 0.0 | 7.3 | .0035 | +5 |
| apple | 0 | 47 | 0 | 12 | 27 | 1 | 93 | 7 | 14.9 | 6.2 | .0034 | 0 |
| canonical | 0 | 14 | 0 | 4 | 5 | 5 | 0 | 0 | 0.0 | 5.5 | .0009 | 0 |
| freebsd | 0 | 7 | 0 | 5 | 2 | 0 | 0 | 0 | 0.0 | 7.8 | .0020 | 0 |
| suse | 0 | 2 | 0 | 2 | 0 | 0 | 0 | 0 | 0.0 | 8.2 | .0020 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cisco | 0 | 13 | 3 | 1 | 2 | 0 | 96 | 8 | 61.5 | 8.6 | .1247 | 0 |
| ivanti | 1 | 6 | 0 | 2 | 0 | 0 | 33 | 4 | 66.7 | 8.8 | .5751 | +1 |
| checkpoint | 0 | 6 | 0 | 3 | 3 | 0 | 3 | 0 | 0.0 | 6.5 | .0338 | 0 |
| fortinet | 0 | 6 | 1 | 3 | 0 | 0 | 28 | 3 | 50.0 | 7.9 | .4330 | 0 |
| zyxel | 2 | 3 | 0 | 0 | 3 | 0 | 11 | 0 | 0.0 | 6.5 | .0017 | +2 |
| f5 | 0 | 3 | 2 | 0 | 0 | 0 | 7 | 1 | 33.3 | 9.2 | .0996 | 0 |
| ubiquiti | 0 | 3 | 1 | 2 | 0 | 0 | 4 | 0 | 0.0 | 8.8 | .0068 | 0 |
| broadcom | 0 | 2 | 0 | 0 | 0 | 0 | 4 | 2 | 100.0 | — | .1990 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| apache | 30 | 62 | 6 | 26 | 27 | 2 | 40 | 1 | 1.6 | 7.2 | .0055 | +30 |
| mozilla | 4 | 10 | 3 | 3 | 4 | 0 | 13 | 0 | 0.0 | 7.4 | .0035 | +4 |
| gitlab | 0 | 9 | 0 | 1 | 6 | 0 | 4 | 2 | 22.2 | 4.3 | .0032 | 0 |
| drupal | 0 | 5 | 1 | 1 | 3 | 0 | 5 | 1 | 20.0 | 5.1 | .0026 | 0 |
| docker | 1 | 4 | 0 | 4 | 0 | 0 | 1 | 0 | 0.0 | 8.8 | .0022 | +1 |
| github | 0 | 2 | 1 | 1 | 0 | 0 | 0 | 0 | 0.0 | 8.1 | .0347 | 0 |
| jenkins | 0 | 0 | 0 | 0 | 0 | 0 | 6 | 0 | — | — | — | 0 |
| joomla | 0 | 0 | 0 | 0 | 0 | 0 | 1 | 0 | — | — | — | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ibm | 5 | 54 | 13 | 26 | 15 | 0 | 7 | 0 | 0.0 | 7.5 | .0031 | +5 |
| oracle | 1 | 28 | 8 | 15 | 4 | 0 | 40 | 1 | 3.6 | 8.1 | .0027 | +1 |
| progress | 5 | 9 | 1 | 7 | 1 | 0 | 9 | 0 | 0.0 | 7.5 | .0036 | +5 |
| solarwinds | 1 | 4 | 1 | 1 | 0 | 0 | 11 | 3 | 75.0 | 8.7 | .7758 | +1 |
| adobe | 0 | 4 | 0 | 1 | 0 | 0 | 75 | 3 | 75.0 | 8.6 | .2776 | 0 |
| veeam | 0 | 3 | 1 | 2 | 0 | 0 | 4 | 0 | 0.0 | 8.6 | .0040 | 0 |
| zohocorp | 0 | 2 | 0 | 1 | 1 | 0 | 0 | 0 | 0.0 | 7.1 | .0104 | 0 |
| atlassian | 0 | 0 | 0 | 0 | 0 | 0 | 13 | 0 | — | — | — | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| synology | 0 | 18 | 2 | 3 | 10 | 3 | 0 | 0 | 0.0 | 5.6 | .0025 | 0 |
| d-link | 2 | 5 | 0 | 3 | 1 | 0 | 26 | 1 | 20.0 | 7.4 | .0059 | +2 |
| siemens | 1 | 2 | 0 | 1 | 1 | 0 | 1 | 0 | 0.0 | 7.3 | .0026 | +1 |
| hitachi energy | 0 | 2 | 0 | 0 | 2 | 0 | 0 | 0 | 0.0 | 5.7 | .0014 | 0 |
| hikvision | 0 | 1 | 0 | 0 | 0 | 0 | 2 | 1 | 100.0 | — | 1.0000 | 0 |
| dahua | 0 | 0 | 0 | 0 | 0 | 0 | 2 | 0 | — | — | — | 0 |
| qnap | 0 | 0 | 0 | 0 | 0 | 0 | 8 | 0 | — | — | — | 0 |
| schneider electric | 0 | 0 | 0 | 0 | 0 | 0 | 1 | 0 | — | — | — | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| edimax | 0 | 51 | 0 | 32 | 0 | 19 | 1 | 0 | 0.0 | 7.4 | .0059 | 0 |
| concrete cms | 0 | 44 | 1 | 9 | 13 | 21 | 0 | 0 | 0.0 | 5.7 | .0015 | 0 |
| open ises | 0 | 44 | 2 | 21 | 21 | 0 | 0 | 0 | 0.0 | 7.1 | .0021 | 0 |
| helmholz | 0 | 42 | 0 | 39 | 3 | 0 | 0 | 0 | 0.0 | 7.1 | .0026 | 0 |
| mb connect line | 0 | 42 | 0 | 39 | 3 | 0 | 0 | 0 | 0.0 | 7.1 | .0026 | 0 |
| sourcecodester | 15 | 37 | 0 | 0 | 11 | 26 | 0 | 0 | 0.0 | 2.1 | .0025 | +15 |
| nvidia | 2 | 35 | 8 | 20 | 7 | 0 | 0 | 0 | 0.0 | 7.8 | .0029 | +2 |
| totolink | 0 | 35 | 0 | 26 | 0 | 9 | 0 | 0 | 0.0 | 8.9 | .0191 | 0 |
| CVE | EPSS | %ile | CVSS |
|---|---|---|---|
| CVE-2008-4250 | .9875 | 99.9 | — |
| CVE-2026-0257 | .9391 | 99.8 | — |
| CVE-2026-43284 | .9324 | 99.8 | 8.8 |
| CVE-2026-43500 | .9285 | 99.8 | 7.8 |
| CVE-2010-0249 | .9188 | 99.8 | — |
| CVE-2026-20182 | .9152 | 99.8 | — |
| CVE-2026-42208 | .8942 | 99.8 | — |
| CVE-2026-9082 | .8832 | 99.8 | 9.8 |
| CVE-2009-3459 | .8658 | 99.7 | — |
| CVE-2025-34291 | .8384 | 99.7 | — |
| CVE | CVSS | EPSS | Note |
|---|---|---|---|
| CVE-2026-48172 | 10.0 | .1891 | KEV |
| CVE-2026-8054 | 10.0 | .0158 | |
| CVE-2026-45087 | 10.0 | .0147 | |
| CVE-2026-49199 | 10.0 | .0134 | |
| CVE-2026-43997 | 10.0 | .0098 | |
| CVE-2026-42826 | 10.0 | .0084 | |
| CVE-2026-20223 | 10.0 | .0083 | |
| CVE-2026-44005 | 10.0 | .0083 | |
| CVE-2026-44006 | 10.0 | .0081 | |
| CVE-2026-46840 | 10.0 | .0073 |
| Vendor | CVEs |
|---|---|
| linux | 581 |
| 229 | |
| microsoft | 171 |
| ibm | 54 |
| apache | 51 |
| edimax | 51 |
| red hat | 46 |
| concrete cms | 44 |
| open ises | 44 |
| helmholz | 42 |
| Vendor | KEV |
|---|---|
| microsoft | 27 |
| cisco | 8 |
| apple | 7 |
| 5 | |
| ivanti | 4 |
| synacor | 4 |
| adobe | 3 |
| fortinet | 3 |
| linux | 3 |
| smartertools | 3 |
| Ecosystem | Advisories |
|---|---|
| Maven | 23 |
| Packagist | 7 |
| PyPI | 3 |
| crates.io | 2 |
| npm | 2 |
| CVE | Vendor | Days |
|---|---|---|
| CVE-2008-4250 | Microsoft | 0 |
| CVE-2009-1537 | Microsoft | 0 |
| CVE-2009-3459 | Adobe | 0 |
| CVE-2010-0249 | Microsoft | 0 |
| CVE-2010-0806 | Microsoft | 0 |
| CVE-2022-0492 | Linux | 0 |
| CVE-2024-21182 | Oracle | 0 |
| CVE-2025-34291 | Langflow | 0 |
| CVE-2025-48595 | 0 | |
| CVE-2026-0257 | Palo Alto Networks | 0 |
| CVE | Vendor | Due | Days over |
|---|---|---|---|
| CVE-2021-27104 | Accellion | 2021-11-17 | 1658 |
| CVE-2021-27102 | Accellion | 2021-11-17 | 1658 |
| CVE-2021-27101 | Accellion | 2021-11-17 | 1658 |
| CVE-2021-27103 | Accellion | 2021-11-17 | 1658 |
| CVE-2021-21017 | Adobe | 2021-11-17 | 1658 |
| CVE-2021-28550 | Adobe | 2021-11-17 | 1658 |
| CVE-2021-42013 | Apache | 2021-11-17 | 1658 |
| CVE-2021-41773 | Apache | 2021-11-17 | 1658 |
| CVE-2021-30858 | Apple | 2021-11-17 | 1658 |
| CVE-2021-30860 | Apple | 2021-11-17 | 1658 |
EXPLOIT PUBLISHED — CVE-2026-3198 (mlflow/mlflow). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-32625 (danny-avila LibreChat). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-3514 (prefecthq/prefect). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-35482 (alfio-event alf.io). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-42073 (Gitlawb openclaude). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-42074 (Gitlawb openclaude). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-44653 (danny-avila LibreChat). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-44654 (danny-avila LibreChat). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45676 (open-telemetry opentelemetry-ebpf-instrumentation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45678 (open-telemetry opentelemetry-ebpf-instrumentation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45679 (open-telemetry opentelemetry-ebpf-instrumentation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45680 (open-telemetry opentelemetry-ebpf-instrumentation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45681 (open-telemetry opentelemetry-ebpf-instrumentation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45682 (open-telemetry opentelemetry-ebpf-instrumentation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45683 (open-telemetry opentelemetry-ebpf-instrumentation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45684 (open-telemetry opentelemetry-ebpf-instrumentation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45685 (open-telemetry opentelemetry-ebpf-instrumentation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45686 (open-telemetry opentelemetry-ebpf-instrumentation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-48594 (elixir-tesla tesla). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-48595 (elixir-tesla tesla). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-48596 (elixir-tesla tesla). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-49443 (goauthentik authentik). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-49448 (goauthentik authentik). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-5422 (jupyter/jupyter). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-7299 (Appsmith). Public exploit reference added.
DUE DATE PASSED — CVE-2026-0257 (Palo Alto Networks PAN-OS). CISA remediation deadline was June 1, 2026; still in catalog.
226 CVEs published. 25 box scores, 201 table rows — nothing truncated.
CVSS EPSS %ile KEV — .0553 92.1 YES
AFFECTED Product Versions Fixed Kernel unspecified —
TIMELINE Jun 2 Added to CISA KEV, due Jun 5 Jun 2 Published
AV AC PR UI S C I A CVSS EPSS %ile KEV L L N N U H H H 8.4 .0171 75.5 YES
AFFECTED Product Versions Fixed Android 16-qpr2 – —
TIMELINE May 22 Reserved by CNA Jun 2 Added to CISA KEV, due Jun 5 Jun 2 Published (CNA: google_android)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N C H H N 9.6 .0294 86.0 —
AFFECTED Product Versions Fixed LibreChat < 0.8.4-rc1 – —
TIMELINE Mar 12 Reserved by CNA Jun 2 Public exploit reference published Jun 2 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H N N 7.5 .0138 69.9 —
AFFECTED Product Versions Fixed ARMember Premium – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup unspecified —
TIMELINE Mar 28 Reserved by CNA Jun 2 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0126 67.1 —
AFFECTED Product Versions Fixed Kirki – Freeform Page Builder, Website Builder & Customizer 6.0.0 – —
TIMELINE May 9 Reserved by CNA Jun 2 Published (CNA: Wordfence)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N L L L 2.1 .0107 62.0 —
AFFECTED Product Versions Fixed eladmin 2.0 – —
TIMELINE Jun 1 Reserved by CNA Jun 2 Published (CNA: VulDB)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0092 57.2 —
AFFECTED Product Versions Fixed openmed unspecified —
TIMELINE May 18 Reserved by CNA Jun 2 Published (CNA: VulnCheck)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H N N 6.5 .0072 51.0 —
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Apr 6 Reserved by CNA Jun 2 Published (CNA: mitre)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N R U N N L 4.3 .0072 50.9 —
AFFECTED Product Versions Fixed Firefox unspecified 151.0.3
TIMELINE Jun 2 Reserved by CNA Jun 2 Published (CNA: mozilla)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0071 50.5 —
AFFECTED Product Versions Fixed Content Visibility for Divi Builder unspecified —
TIMELINE Feb 3 Reserved by CNA Jun 2 Published (CNA: Wordfence)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N H H H 9.2 .0066 48.8 —
AFFECTED Product Versions Fixed Sentinel 10.5.0 – —
TIMELINE Jan 5 Reserved by CNA Jun 2 Published (CNA: VulnCheck)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N A H H H 8.6 .0066 48.7 —
AFFECTED Product Versions Fixed Kiro IDE unspecified —
TIMELINE Jun 1 Reserved by CNA Jun 2 Published (CNA: AMZN)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0060 45.8 —
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Mar 4 Reserved by CNA Jun 2 Published (CNA: mitre)
AV AC PR UI S C I A CVSS EPSS %ile KEV N H N N U N L H 6.5 .0059 45.5 —
AFFECTED Product Versions Fixed crypto/x509 unspecified —
TIMELINE Feb 17 Reserved by CNA Jun 2 Published (CNA: Go)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N N H 7.5 .0056 44.0 —
AFFECTED Product Versions Fixed mime unspecified —
TIMELINE Apr 28 Reserved by CNA Jun 2 Published (CNA: Go)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0056 43.8 —
AFFECTED Product Versions Fixed Wirtualna Uczelnia unspecified —
TIMELINE Mar 31 Reserved by CNA Jun 2 Published (CNA: CERT-PL)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0054 43.1 —
AFFECTED Product Versions Fixed openclaude < 0.5.1 – —
TIMELINE Apr 23 Reserved by CNA Jun 2 Public exploit reference published Jun 2 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0052 41.9 —
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Mar 4 Reserved by CNA Jun 2 Published (CNA: mitre)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N L L L 5.5 .0050 40.5 —
AFFECTED Product Versions Fixed student-management-system n/a – —
TIMELINE Jun 2 Reserved by CNA Jun 2 Published (CNA: VulDB)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N N H 7.5 .0049 40.1 —
AFFECTED Product Versions Fixed Web Help Desk 2026.1 and all previous versions – —
TIMELINE Feb 26 Reserved by CNA Jun 2 Published (CNA: SolarWinds)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N H N N 8.2 .0049 39.8 —
AFFECTED Product Versions Fixed tesla 1.4.0 – — tesla 2d937d5813d7cda5cd726f41824985fb655c920f – —
TIMELINE May 22 Reserved by CNA Jun 2 Public exploit reference published Jun 2 Published (CNA: EEF)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H N N 7.5 .0048 39.1 —
AFFECTED Product Versions Fixed prefecthq/prefect unspecified – —
TIMELINE Mar 4 Reserved by CNA Jun 2 Public exploit reference published Jun 2 Published (CNA: @huntr_ai)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N R U H H N 8.1 .0047 38.7 —
AFFECTED Product Versions Fixed Sitefinity 14.1.0 – —
TIMELINE Apr 27 Reserved by CNA Jun 2 Published (CNA: ProgressSoftware)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N N H 7.5 .0046 38.2 —
AFFECTED Product Versions Fixed opentelemetry-ebpf-instrumentation >= 0.1.0, < 0.9.0 – —
TIMELINE May 13 Reserved by CNA Jun 2 Public exploit reference published Jun 2 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N N N H 8.2 .0046 37.7 —
AFFECTED Product Versions Fixed tesla 0.6.0 – — tesla 5bd90bb5cf0d15e375edc2a66fa322292940fce2 – —
TIMELINE May 22 Reserved by CNA Jun 2 Public exploit reference published Jun 2 Published (CNA: EEF)
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-7198 | 9.8 | 36.9 | Progress Software | Sitefinity | CWE-284 | CWE-284: Improper Access Control in web services in Progress Sitefinity |
| CVE-2026-10622 | 8.2 | 36.8 | Collibra | Collibra Platform (on-prem) | — | CVE-2026-10622 |
| CVE-2026-7312 | 7.5 | 36.7 | Progress Software | Sitefinity | CWE-522 | CWE‑522: Insufficiently Protected Credentials in web services in Progress Sit… |
| CVE-2026-5422 | 8.1 | 36.4 | jupyter | jupyter/jupyter | CWE-23 | Path Traversal in jupyter/jupyter |
| CVE-2026-46718 | 6.5 | 36.3 | Apache Software Foundation | Apache Calcite | CWE-470 | Apache Calcite: A user-controled model can load arbitrary classes, leading to… |
| CVE-2026-10650 | 5.5 | 35.7 | warmcat | libwebsockets | CWE-400 | warmcat libwebsockets SSH Protocol sshd.c lws_ssh_parse_plaintext resource co… |
| CVE-2026-5076 | 9.8 | 34.9 | armember | ARMember Premium – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup | CWE-287 | ARMember Premium <= 7.3.1 - Insecure Password Reset Mechanism to Unauthentica… |
| CVE-2026-5385 | 8.4 | 34.8 | glpi-project | glpi | CWE-79 | GLPI 11.0.0 - Stored XSS in knowledge base |
| CVE-2026-42211 | 8.1 | 34.7 | remix-run | react-router | CWE-502 | React Router's vendored turbo-stream v2 allows arbitrary constructor invocati… |
| CVE-2025-53440 | 8.1 | 34.6 | Axiomthemes | Confidant | CWE-98 | WordPress Confidant theme <= 1.4 - Local File Inclusion vulnerability |
| CVE-2025-58705 | 8.1 | 34.6 | Axiomthemes | Crafti | CWE-98 | WordPress Crafti theme <= 1.12 - Local File Inclusion vulnerability |
| CVE-2026-49448 | 9.8 | 33.7 | goauthentik | authentik | CWE-287 | authentik: SourceStage bypass via empty POST |
| CVE-2026-10621 | 7.5 | 33.4 | Collibra | Collibra Platform (SaaS) | — | CVE-2026-10621 |
| CVE-2026-10617 | 5.5 | 33.2 | nextlevelbuilder | GoClaw | CWE-287 | nextlevelbuilder GoClaw Webhook Verification auth.go resolveAuth missing auth… |
| CVE-2026-49143 | 8.7 | 32.3 | browserstack | browserstack-runner | CWE-94 | BrowserStack Runner 0.9.5 Unauthenticated RCE via /_log HTTP Handler |
| CVE-2026-48862 | 8.2 | 31.5 | elixir-mint | mint | CWE-770 | Unbounded conn.streams growth in Mint HTTP/2 client via unenforced PUSH_PROMI… |
| CVE-2026-49754 | 8.2 | 31.5 | elixir-mint | mint | CWE-770 | HTTP/2 CONTINUATION flood in Mint client via unbounded header-block accumulation |
| CVE-2026-30649 | 7.3 | 30.8 | n/a | n/a | CWE-121 | Buffer Overflow vulnerability in VIVOTEK INC FD8136-VVTK-0300a allows a remot… |
| CVE-2026-42507 | 5.3 | 30.1 | Go standard library | net/textproto | — | Arbitrary inputs are included in errors without any escaping in net/textproto |
| CVE-2026-42849 | 9.3 | 28.6 | goauthentik | authentik | CWE-79 | authentik: Reflected XSS in SFE AutosubmitStage allows IDP account takeover |
| CVE-2026-45686 | 7.5 | 28.5 | open-telemetry | opentelemetry-ebpf-instrumentation | CWE-190 | OpenTelemetry eBPF Instrumentation: Memcached payload length overflow can cra… |
| CVE-2026-10691 | 2.1 | 28.5 | wonderwhy-er | DesktopCommanderMCP | CWE-400 | wonderwhy-er DesktopCommanderMCP start_search search-manager.ts redos |
| CVE-2026-10611 | 8.2 | 28.4 | misp | misp | CWE-287 | OTP bypass via plugin-based LDAP authentication in MISP when LDAP mixed authe… |
| CVE-2026-7201 | 8.8 | 27.8 | Progress Software | Sitefinity | CWE-639 | CWE-639: Authorization Bypass Through User-Controlled Key in web services in … |
| CVE-2026-45554 | 5.3 | 27.3 | zauberzeug | nicegui | CWE-248 | NiceGUI: Unauthenticated log-flood DoS via trailing slash on ESM and per-comp… |
| CVE-2026-45678 | 7.5 | 27.2 | open-telemetry | opentelemetry-ebpf-instrumentation | CWE-20 | OpenTelemetry eBPF Instrumentation: Postgres BIND parsing can panic on malfor… |
| CVE-2026-7299 | 5.4 | 27.1 | Appsmith | Appsmith | CWE-79 | CVE-2026-7299 |
| CVE-2025-58707 | 8.1 | 26.6 | Axiomthemes | Spin | CWE-98 | WordPress Spin theme <= 1.8 - Local File Inclusion vulnerability |
| CVE-2025-58897 | 8.1 | 26.6 | Axiomthemes | Fermentio | CWE-98 | WordPress Fermentio theme <= 1.5.0 - Local File Inclusion vulnerability |
| CVE-2025-68886 | 8.1 | 26.6 | androThemes | Cookiteer | CWE-98 | WordPress Cookiteer theme <= 1.4.8 - Local File Inclusion vulnerability |
| CVE-2026-39552 | 8.1 | 26.3 | Code Supply Co. | Blueprint | CWE-98 | WordPress Blueprint theme < 1.1.5 - Local File Inclusion vulnerability |
| CVE-2026-39553 | 8.1 | 26.3 | Select-Themes | WaveRide | CWE-98 | WordPress WaveRide theme <= 1.4 - Local File Inclusion vulnerability |
| CVE-2026-38967 | 9.8 | 26.1 | n/a | n/a | CWE-113 | CrowCpp Crow through v1.3.1 HTTP is vulnerable to response header injection v… |
| CVE-2025-69369 | 8.1 | 25.5 | Axiomthemes | Racquet | CWE-98 | WordPress Racquet theme <= 1.12.0 - Local File Inclusion vulnerability |
| CVE-2026-35716 | 6.3 | 25.0 | n/a | n/a | CWE-121 | A stack-based buffer overflow in the motion_privacy.cgi binary in VIVOTEK FD8… |
| CVE-2026-45680 | 7.5 | 24.6 | open-telemetry | opentelemetry-ebpf-instrumentation | CWE-400 | OpenTelemetry eBPF Instrumentation: Unbounded BPF internal metrics replay can… |
| CVE-2026-7313 | 4.9 | 24.7 | Progress Software | Sitefinity | CWE-522 | CWE‑522: Insufficiently Protected Credentials in web services in Progress Sit… |
| CVE-2026-41412 | 4.9 | 24.5 | alfio-event | alf.io | CWE-22 | alf.io vulnerable to Arbitrary File Read and Exfil via simpleHttpClient Exten… |
| CVE-2026-10607 | 5.5 | 24.0 | n/a | DedeCMS | CWE-74 | DedeCMS flink.php dede_htmlspecialchars sql injection |
| CVE-2026-10692 | 2.1 | 23.7 | johnhuang316 | code-index-mcp | CWE-400 | johnhuang316 code-index-mcp search_code_advanced is_safe_regex_pattern redos |
| CVE-2026-39550 | 8.1 | 23.4 | Elated-Themes | Aperitif | CWE-502 | WordPress Aperitif theme <= 1.6 - PHP Object Injection vulnerability |
| CVE-2026-39551 | 8.1 | 23.4 | Elated-Themes | Töbel | CWE-502 | WordPress Töbel theme <= 1.8.1 - PHP Object Injection vulnerability |
| CVE-2026-5074 | 6.5 | 23.5 | armember | ARMember Premium – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup | CWE-89 | ARMember Premium <= 7.3.1 - Authenticated (Subscriber+) SQL Injection via 'sS… |
| CVE-2026-10608 | 5.5 | 23.4 | n/a | DedeCMS | CWE-74 | DedeCMS carbuyaction.php RemoveXSS sql injection |
| CVE-2026-1871 | 7.1 | 23.1 | TP-Link Systems Inc. | Tapo C200 v5 | CWE-121 | Authenticated Stack-based Buffer Overflow in RTSP Authentication of Tapo C200 |
| CVE-2026-38978 | 5.3 | 23.1 | n/a | n/a | CWE-113 | transmission through 4.1.1 was found to have a clickjacking weakness in the b… |
| CVE-2025-53345 | 8.8 | 22.8 | ThimPress | Thim Core | CWE-862 | WordPress Thim Core plugin <= 2.3.3 - Arbitrary Plugin Installation vulnerabi… |
| CVE-2026-48597 | 8.2 | 22.7 | elixir-tesla | tesla | CWE-770 | Atom table exhaustion via untrusted URL scheme in Tesla.Adapter.Mint |
| CVE-2026-10701 | 7.5 | 22.7 | Mozilla | Firefox | CWE-119 | Incorrect boundary conditions in the Graphics: Text component |
| CVE-2026-49753 | 6.3 | 22.7 | elixir-mint | mint | CWE-444 | HTTP response smuggling in Mint HTTP/1 client via lenient Content-Length parsing |
| CVE-2025-58024 | 7.5 | 22.6 | UnboundStudio | Accordion FAQ | CWE-98 | WordPress Accordion FAQ Plugin <= 2.2.1 - Local File Inclusion Vulnerability |
| CVE-2026-49943 | 6.3 | 22.6 | NIC | BIRD | CWE-121 | CZ.NIC BIRD Internet Routing Daemon through 2.19.0 contains a stack-based buf… |
| CVE-2026-42684 | 9.3 | 22.4 | Ahmad | WP Job Portal | CWE-89 | WordPress WP Job Portal plugin <= 2.5.1 - SQL Injection vulnerability |
| CVE-2026-42342 | 7.5 | 22.5 | remix-run | react-router | CWE-400 | React Router vulnerable to DoS via unbounded path expansion in __manifest end… |
| CVE-2026-49443 | 8.8 | 22.4 | goauthentik | authentik | CWE-287 | authentik: `UserSourceConnection.user` and `GroupSourceConnection.group` are … |
| CVE-2026-34077 | 7.5 | 21.9 | remix-run | react-router | CWE-770 | React Router vulnerable to Denial of Service via reflected user input in sing… |
| CVE-2026-41115 | 4.3 | 21.2 | Apache Software Foundation | Apache Kafka | CWE-285 | Apache Kafka: Improper Authorization in CONSUMER_GROUP_DESCRIBE API |
| CVE-2026-45681 | 5.9 | 21.2 | open-telemetry | opentelemetry-ebpf-instrumentation | CWE-125 | OpenTelemetry eBPF Instrumentation: CPU-mismatch fallback uses 256-byte buffe… |
| CVE-2026-34907 | 5.1 | 21.0 | Simple SA | Wirtualna Uczelnia | CWE-79 | Reflected Cross-Site Scripting (XSS) in Wirtualna Uczelnia |
| CVE-2024-14036 | 8.7 | 20.9 | Dräger | Core | CWE-400 | Dräger Core 1.0.5 Denial of Service via Malformed SDC Message |
| CVE-2026-35482 | 9.1 | 20.7 | alfio-event | alf.io | CWE-863 | alf.io has an Authenticated RCE via Extension Script Sandbox Escape |
| CVE-2026-44653 | 6.5 | 20.0 | danny-avila | LibreChat | CWE-201 | LibreChat Shared MCP Server View Leaks Decrypted Admin Secrets |
| CVE-2025-53209 | 9.8 | 19.9 | Themeisle | Masteriyo LMS PRO | CWE-266 | WordPress Masteriyo LMS PRO plugin <= 2.20.0 - Privilege Escalation Vulnerabi… |
| CVE-2026-40314 | 6.9 | 19.6 | NamelessMC | Nameless | CWE-862 | NamelessMC: Reactions on private or blocking profile posts can be read and mo… |
| CVE-2026-10620 | 5.5 | 19.6 | code-projects | Student Admission System | CWE-74 | code-projects Student Admission System index.php sql injection |
| CVE-2026-40108 | 7.1 | 19.0 | glpi-project | glpi | CWE-79 | GLPI Vulnerable to Stored XSS in ITIL Costs |
| CVE-2026-10549 | 5.3 | 19.0 | Yandex | Yandex Database | CWE-280 | Privilege escalation in Yandex Database |
| CVE-2026-40780 | 7.5 | 18.9 | Liquid Web / StellarWP | BookIt | CWE-288 | WordPress BookIt plugin < 2.5.4.1 - Broken Authentication vulnerability |
| CVE-2026-48682 | 5.9 | 18.9 | n/a | n/a | CWE-125 | FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read in … |
| CVE-2026-44654 | 5.7 | 18.5 | danny-avila | LibreChat | CWE-863 | LibreChat: Shared-agent editor can globally delete owner's file records — bre… |
| CVE-2026-35717 | 6.3 | 18.0 | n/a | n/a | CWE-121 | A stack-based buffer overflow in the export_language.cgi binary in VIVOTEK FD… |
| CVE-2026-3722 | 6.4 | 17.5 | arunbasillal | Auto Image Attributes From Filename With Bulk Updater (Add Alt Text, Image Title For Image SEO) | CWE-79 | Auto Image Attributes From Filename With Bulk Updater (Add Alt Text, Image Ti… |
| CVE-2026-39555 | 8.1 | 17.2 | Elated-Themes | Askka | CWE-502 | WordPress Askka theme <= 1.3.1 - PHP Object Injection vulnerability |
| CVE-2026-45553 | 7.5 | 17.2 | zauberzeug | nicegui | CWE-200 | NiceGUI: Local file disclosure via Docutils file insertion in ui.restructured… |
| CVE-2026-10606 | 5.5 | 17.1 | n/a | DedeCMS | CWE-74 | DedeCMS Feedback feedback.php TrimMsg sql injection |
| CVE-2026-42670 | 7.5 | 16.9 | Etoile Web Design Incorporated | Five Star Restaurant Reservations | CWE-862 | WordPress Five Star Restaurant Reservations plugin <= 2.7.14 - Payment Bypass… |
| CVE-2026-45080 | 6.9 | 16.5 | Aiven-Open | klaw | CWE-200 | Klaw: Improper Access Control Allows Disclosure of Password Hash |
| CVE-2026-10661 | 2.1 | 16.3 | ahujasid | blender-mcp | CWE-74 | ahujasid blender-mcp server.py open injection |
| CVE-2026-3620 | 4.4 | 16.1 | takien | Word Replacer | CWE-20 | Word Replacer <= 0.4 - Authenticated (Administrator+) Stored Cross-Site Scrip… |
| CVE-2026-3198 | 6.5 | 15.8 | mlflow | mlflow/mlflow | CWE-284 | Improper Access Control in mlflow/mlflow |
| CVE-2026-4080 | 6.4 | 15.7 | zeshanb | Easy Cart | CWE-79 | Easy Cart <= 1.8 - Authenticated (Contributor+) Stored Cross-Site Scripting v… |
| CVE-2026-10624 | 2.1 | 15.6 | SourceCodester | Human Resource Management | CWE-99 | SourceCodester Human Resource Management Employee View detailview.php resourc… |
| CVE-2026-4081 | 6.4 | 15.5 | jhdscript | ZeM STL | CWE-79 | ZeM STL <= 1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via… |
| CVE-2021-4479 | 6.3 | 15.5 | Dräger | Atlan A350 | CWE-1286 | Dräger Atlan A350 1.00 <= 1.01 DoS via Medibus Interface |
| CVE-2026-9844 | 8.8 | 15.3 | Roche Diagnostics | navify Digital Pathology | CWE-1392 | Vulnerability in navify® Digital Pathology |
| CVE-2026-10567 | 2.0 | 15.0 | 1Panel-dev | CordysCRM | CWE-79 | 1Panel-dev CordysCRM ModuleFormController ModuleFormService.java save cross s… |
| CVE-2026-8293 | 7.5 | 14.8 | Unknown | Really Simple Security | CWE-287 | Really Simple Security < 9.5.10.1 - Authentication Bypass via Two-Factor OTP … |
| CVE-2019-25723 | 6.3 | 14.9 | Dräger | Perseus A500 | CWE-1286 | Dräger Perseus A500 2.00-2.02 DoS via Medibus Interface |
| CVE-2026-35447 | 5.3 | 14.8 | NamelessMC | Nameless | CWE-201 | NamelessMC: Private or blocking profile pages can be bypassed with direct POS… |
| CVE-2026-44367 | 2.7 | 14.8 | Aiven-Open | klaw | CWE-20 | Klaw: user lockout due to case sensitivity inconsistency |
| CVE-2026-35049 | 6.5 | 14.6 | wireapp | wire-ios | CWE-20 | wire-ios has Persistent Remote DoS via Integer Underflow |
| CVE-2026-35443 | 5.3 | 14.7 | NamelessMC | Nameless | CWE-862 | NamelessMC: Forum reactions bypass the "view own topics only" restriction |
| CVE-2026-40571 | 5.3 | 14.7 | NamelessMC | Nameless | CWE-862 | NamelessMC: Reactions on private or blocking profile posts can be modified wi… |
| CVE-2026-49120 | 6.3 | 13.9 | medplum | medplum | CWE-918 | Medplum < 5.1.14 SSRF via FHIR Subscription Endpoint |
| CVE-2026-10558 | 2.1 | 13.6 | SourceCodester | Pizzafy Ecommerce System | CWE-73 | SourceCodester Pizzafy Ecommerce System index.php file inclusion |
| CVE-2026-10559 | 2.1 | 13.6 | SourceCodester | Pizzafy Ecommerce System | CWE-73 | SourceCodester Pizzafy Ecommerce System index.php file inclusion |
| CVE-2026-10662 | 2.1 | 13.6 | ahujasid | blender-mcp | CWE-918 | ahujasid blender-mcp ZIP File server.py requests.get server-side request forgery |
| CVE-2026-10583 | 2.0 | 13.6 | nextlevelbuilder | GoClaw | CWE-918 | nextlevelbuilder GoClaw TTS Configuration Endpoint tts_config.go import serve… |
| CVE-2026-33398 | 7.1 | 13.4 | NamelessMC | Nameless | CWE-285 | Authenticated users can read hidden forum posts through `/forum/get_quotes` |
| CVE-2026-8993 | 6.5 | 13.5 | Ditec a.s. | D.Launcher 2 | CWE-74 | Improper URL Handler Processing in D.Launcher 2 enables NTLM Credential Discl… |
| CVE-2026-30586 | 6.1 | 13.3 | n/a | n/a | CWE-79 | Cross Site Scripting vulnerability in usememos Memos v.0.26.0 allows a remote… |
| CVE-2026-10565 | 1.3 | 13.3 | n/a | Open5GS | CWE-362 | Open5GS NGAP Handover gmm-sm.c gmm_state_security_mode race condition |
| CVE-2026-10690 | 2.1 | 12.9 | wonderwhy-er | DesktopCommanderMCP | CWE-918 | wonderwhy-er DesktopCommanderMCP read_file filesystem.ts readFileFromUrl serv… |
| CVE-2026-42073 | 6.5 | 12.6 | Gitlawb | openclaude | CWE-352 | OpenClaude's MCP OAuth Callback: State Check Bypass via error Param Leads to DoS |
| CVE-2026-45679 | 6.5 | 11.7 | open-telemetry | opentelemetry-ebpf-instrumentation | CWE-117 | OpenTelemetry eBPF Instrumentation: Redis error text is exported in span stat… |
| CVE-2026-35202 | 2.3 | 11.8 | pterodactyl | panel | CWE-367 | Pterodactyl has a database resource limit bypass via race condition in Client… |
| CVE-2026-10529 | 1.9 | 11.5 | westboy | CicadasCMS | CWE-79 | westboy CicadasCMS Task Scheduling Management ScheduleJobController.java cros… |
| CVE-2026-49144 | 7.1 | 11.2 | browserstack | browserstack-runner | CWE-22 | BrowserStack Runner 0.9.5 Path Traversal via _default HTTP Handler |
| CVE-2026-1451 | 6.1 | 11.2 | federicocarrara | rognone | CWE-79 | rognone <= 0.6.2 - Reflected Cross-Site Scripting via 'a' Parameter |
| CVE-2026-2425 | 6.1 | 11.2 | den-media | hiWeb Migration Simple | CWE-79 | hiWeb Migration Simple <= 2.0.0.1 - Reflected Cross-Site Scripting via 'new_d… |
| CVE-2026-7421 | 4.4 | 11.3 | passeum | Passeum Ticketing | CWE-79 | Passeum Ticketing <= 1.0 - Authenticated (Administrator+) Stored Cross-Site S… |
| CVE-2026-42654 | 7.1 | 11.1 | WP Swings | Wallet System for WooCommerce | CWE-288 | WordPress Wallet System for WooCommerce plugin <= 2.7.5 - Broken Authenticati… |
| CVE-2026-31942 | 7.1 | 10.9 | danny-avila | LibreChat | CWE-862 | LibreChat has IDOR in API Keys Management that allows any authenticated user … |
| CVE-2026-10616 | 2.1 | 10.9 | nextlevelbuilder | GoClaw | CWE-862 | nextlevelbuilder GoClaw Team Task Completion team_tasks_lifecycle.go TeamTask… |
| CVE-2026-1450 | 6.1 | 10.7 | federicocarrara | rognone | CWE-79 | rognone <= 0.6.2 - Reflected Cross-Site Scripting via 'mode' Parameter |
| CVE-2019-25717 | 5.3 | 10.5 | Dräger | Infinity Delta | CWE-538 | Dräger Infinity Delta/Kappa Patient Monitors Unauthenticated Log File Disclosure |
| CVE-2026-42669 | 7.5 | 10.4 | EventPrime | EventPrime | CWE-862 | WordPress EventPrime plugin <= 4.3.2.0 - Broken Access Control vulnerability |
| CVE-2025-5085 | 5.5 | 10.3 | ariyes | WP Nano AD | CWE-79 | wp-nano-ad <= 1.31 - Authenticated (Administrator+) Stored Cross-Site Scripti… |
| CVE-2026-10581 | 2.1 | 10.4 | n/a | DedeCMS | CWE-918 | DedeCMS download.php base64_decode server-side request forgery |
| CVE-2026-10568 | 2.1 | 10.2 | itsourcecode | Fees Management System | CWE-74 | itsourcecode Fees Management System manage_payment.php sql injection |
| CVE-2026-49782 | 5.4 | 10.0 | Elementor | Elementor Website Builder | CWE-862 | WordPress Elementor Website Builder plugin <= 4.1.0 - Broken Access Control v… |
| CVE-2026-9234 | 4.3 | 9.9 | ntbyk | JTL-Connector for WooCommerce | CWE-862 | JTL-Connector for WooCommerce <= 2.4.1 - Missing Authorization to Authenticat… |
| CVE-2026-1784 | 8.8 | 9.4 | Red Hat | Red Hat OpenShift Container Platform 4.13 | CWE-15 | Ose-cluster-ingress-operator: remote code execution through haproxy configura… |
| CVE-2026-41918 | 5.9 | 9.4 | Siemens | RUGGEDCOM RST2428P | CWE-525 | A vulnerability has been identified in RUGGEDCOM RST2428P (6GK6242-6PA00) (Al… |
| CVE-2019-25722 | 7.2 | 9.3 | Dräger | SC 6002XL | CWE-798 | Dräger SC Monitoring Devices Hard-coded Credentials and DoS |
| CVE-2026-2382 | 6.4 | 9.1 | frankpw | FPW Category Thumbnails | CWE-79 | FPW Category Thumbnails <= 1.9.5 - Authenticated (Subscriber+) Stored Cross-S… |
| CVE-2026-41569 | 6.9 | 9.0 | goauthentik | authentik | CWE-601 | authentik: WS-Federation wreply origin bypass can exfiltrate signed login res… |
| CVE-2026-48598 | 2.1 | 8.9 | elixir-tesla | tesla | CWE-116 | CRLF injection in Tesla.Multipart disposition parameters allows multipart par… |
| CVE-2026-33245 | 4.7 | 8.8 | remix-run | react-router | CWE-79 | React Router vulnerable to XSS in unstable RSC redirect handling via javascri… |
| CVE-2019-25721 | 7.1 | 8.7 | Dräger | Infinity M300 | CWE-400 | Dräger Infinity M300 VG2.3.1 Network-Based Denial of Service |
| CVE-2025-53302 | 5.3 | 8.6 | Anton Shevchuk | Constructor | CWE-862 | WordPress Constructor theme <= 1.6.5 - Broken Access Control Vulnerability |
| CVE-2026-48596 | 2.1 | 8.6 | elixir-tesla | tesla | CWE-113 | CRLF injection in Tesla.Multipart.add_content_type_param/2 allows HTTP header… |
| CVE-2026-32250 | 4.3 | 8.3 | NamelessMC | Nameless | CWE-79 | NamelessMC has Reflected Cross-Site Scripting (XSS) in id parameter of /index… |
| CVE-2026-9590 | 5.3 | 8.3 | Devolutions | Server | CWE-284 | Improper access control in the permission validation component in Devolutions… |
| CVE-2026-10100 | 4.4 | 8.2 | pattihis | Simple Custom Login Page | CWE-79 | Simple Custom Login Page <= 1.0.3 - Authenticated (Admin+) Stored Cross-Site … |
| CVE-2026-47201 | 8.5 | 8.0 | goauthentik | authentik | CWE-347 | authentik: XML Signature Wrapping in SAML Source ACS allows authentication as… |
| CVE-2026-8885 | 6.4 | 8.0 | marcqueralt | DeMomentSomTres Shortcodes | CWE-79 | DeMomentSomTres Shortcodes <= 1.1.1 - Authenticated (Contributor+) Stored Cro… |
| CVE-2026-34993 | 7.3 | 7.7 | aio-libs | aiohttp | CWE-502 | AIOHTTP Vulnerable to Deserialization of Untrusted Data |
| CVE-2026-25861 | 8.2 | 7.6 | QloApps | QloApps | CWE-916 | QloApps 1.7.0 Weak Password Hashing via MD5 in Tools.php |
| CVE-2026-10688 | 2.0 | 7.6 | ahujasid | blender-mcp | CWE-74 | ahujasid blender-mcp server.py execute_blender_code code injection |
| CVE-2019-25724 | 7.1 | 7.2 | Dräger | Infinity M300 | CWE-400 | Dräger Infinity M300 VG2.x Network-Based Denial of Service |
| CVE-2026-10629 | 7.4 | 7.2 | Verizon | VoLTE | — | CVE-2026-10629 |
| CVE-2025-52766 | 6.5 | 7.2 | Printeers | Printeers Print & Ship | CWE-862 | WordPress Printeers Print & Ship plugin <= 1.17.0 - Broken Access Control vul… |
| CVE-2026-45683 | 3.8 | 7.2 | open-telemetry | opentelemetry-ebpf-instrumentation | CWE-127 | OpenTelemetry eBPF Instrumentation: Java TLS ioctl kprobe allows kernel memor… |
| CVE-2026-45684 | 5.3 | 6.9 | open-telemetry | opentelemetry-ebpf-instrumentation | CWE-126 | OpenTelemetry eBPF Instrumentation: Log enricher writev path can overread and… |
| CVE-2026-24221 | 7.8 | 6.7 | NVIDIA | NVTabular | CWE-502 | NVIDIA NVTabular contains a vulnerability where an attacker could cause impro… |
| CVE-2026-24237 | 7.8 | 6.7 | NVIDIA | NVTabular | CWE-502 | NVIDIA NVTabular contains a vulnerability where an attacker could cause impro… |
| CVE-2025-15653 | 7.0 | 6.7 | Dräger | Zeus IE | CWE-668 | Dräger Zeus IE Anesthesia Workstation USB Interface Privilege Escalation |
| CVE-2026-41577 | 6.9 | 6.7 | goauthentik | authentik | CWE-345 | authentik: SAML source does not validate Conditions, timing, or audience on a… |
| CVE-2026-3870 | 6.5 | 6.5 | Zyxel | VMG4005-B50B firmware | CWE-120 | A buffer overflow vulnerability in the UPnP AddPortMapping() command in Zyxel… |
| CVE-2026-3871 | 6.5 | 6.5 | Zyxel | VMG4005-B50B firmware | CWE-120 | A buffer overflow vulnerability in the UPnP DeletePortMapping() command in Zy… |
| CVE-2026-48861 | 2.1 | 6.4 | elixir-mint | mint | CWE-93 | CRLF injection in HTTP/1 request line via unvalidated method in Mint |
| CVE-2026-33553 | 6.1 | 6.3 | n/a | n/a | CWE-79 | Northern.tech CFEngine Enterprise 3.24.3 before 3.24.4 and 3.27.0 before 3.27… |
| CVE-2026-27351 | 5.4 | 6.2 | Sekander Badsha | Crew HRM | CWE-862 | WordPress Crew HRM plugin <= 1.2.2 - Broken Access Control vulnerability |
| CVE-2026-40181 | 6.6 | 5.9 | remix-run | react-router | CWE-601 | React Router's same-origin redirect with path starting // causes open redirec… |
| CVE-2026-45676 | 5.5 | 5.9 | open-telemetry | opentelemetry-ebpf-instrumentation | CWE-20 | OpenTelemetry eBPF Instrumentation: Unsafe fastelf parsing allows malformed E… |
| CVE-2026-45682 | 5.5 | 5.8 | open-telemetry | opentelemetry-ebpf-instrumentation | CWE-401 | OpenTelemetry eBPF Instrumentation: CappedConcurrentHashMap leaks keys after … |
| CVE-2022-4992 | 8.8 | 5.7 | Dräger | Infinity Acute Care System | CWE-345 | Dräger Infinity M540 VG4.1.1 Spoofed Network Message Handling DoS/Tampering |
| CVE-2026-10510 | 6.1 | 5.1 | TECNO Mobile | com.transsion.aiassistantlifestyle | CWE-79 | GeniexWebView XSS in com.transsion.aiassistantlifestyle |
| CVE-2026-40713 | 6.1 | 4.9 | Dell | ThinOS 10 | CWE-284 | Dell ThinOS 10, versions prior to ThinOS10 2602_10.0765, contain an Improper … |
| CVE-2026-43965 | 5.6 | 4.8 | Gleam | Gleam | CWE-22 | Path Traversal in build/packages/packages.toml Allows Arbitrary Directory Del… |
| CVE-2026-32685 | 4.6 | 4.8 | Gleam | Gleam | CWE-22 | Path Traversal in gleam docs build via documentation.pages Allows Arbitrary F… |
| CVE-2025-53346 | 4.3 | 4.9 | ThimPress | Thim Core | CWE-862 | WordPress Thim Core Plugin <= 2.3.3 - Broken Access Control Vulnerability |
| CVE-2024-42206 | 3.1 | 4.8 | HCL | iReflection | CWE-1395 | HCL iReflection Use of Third party vulnerable and outdated components issue w… |
| CVE-2026-47265 | 6.6 | 4.7 | aio-libs | aiohttp | CWE-346 | AIOHTTP vulnerable to cross-origin redirect with per-request cookies |
| CVE-2026-35212 | 5.3 | 4.6 | OpenCTI-Platform | opencti | CWE-79 | OpenCTI has XSS in the rendering of email-message observable body data |
| CVE-2025-52759 | 7.1 | 4.4 | UnboundStudio | Accordion FAQ | CWE-79 | WordPress Accordion FAQ plugin <= 2.2.1 - Cross Site Scripting (XSS) vulnerab… |
| CVE-2026-42685 | 7.1 | 4.4 | Ahmad | WP Job Portal | CWE-79 | WordPress WP Job Portal plugin <= 2.5.1 - Cross Site Scripting (XSS) vulnerab… |
| CVE-2026-33244 | 5.4 | 4.2 | remix-run | react-router | CWE-79 | React Router has stored XSS via unescaped Location header in prerendered redi… |
| CVE-2026-45289 | 5.3 | 3.9 | CloudburstMC | Protocol | CWE-287 | CloudburstMC Protocol: Partially missing validation for FULL type authenticat… |
| CVE-2026-10548 | 1.9 | 3.8 | NousResearch | hermes-agent | CWE-287 | NousResearch hermes-agent Credential Pool Synchronization credential_pool.py … |
| CVE-2026-9522 | 5.4 | 3.7 | Devolutions | Server | CWE-284 | Improper access control in the PAM account discovery feature in Devolutions S… |
| CVE-2026-28116 | 5.9 | 3.5 | Emilia Projects | Progress Planner | CWE-79 | WordPress Progress Planner plugin <= 1.9.0 - Cross Site Scripting (XSS) vulne… |
| CVE-2026-5191 | 5.4 | 3.4 | raja3c | Tiled Gallery Carousel Without JetPack | CWE-79 | Tiled Gallery Carousel Without JetPack <= 3.1 - Authenticated (Contributor+) … |
| CVE-2019-25719 | 8.8 | 3.2 | Dräger | Infinity Acute Care System | CWE-924 | Dräger Infinity M540 VG4.1.1 Spoofing and DoS via Network Message Handling |
| CVE-2026-42795 | 5.1 | 3.2 | Gleam | Gleam | CWE-59 | Symlink Following in Hex Package Export Allows Embedding Files Outside Projec… |
| CVE-2026-8422 | 4.3 | 3.2 | mr_mat | Remove meta boxes per user role | CWE-352 | Remove meta boxes per user role <= 1.01 - Cross-Site Request Forgery to Setti… |
| CVE-2026-4071 | 4.3 | 3.1 | birdseedapp | BirdSeed | CWE-352 | BirdSeed <= 2.2.0 - Cross-Site Request Forgery via BirdSeed Token Change |
| CVE-2026-9722 | 4.3 | 3.1 | pcis | Laiser Tag | CWE-352 | Laiser Tag <= 1.2.5 - Cross-Site Request Forgery to Plugin Settings Update vi… |
| CVE-2026-9730 | 4.3 | 3.1 | jamesmuga | Remove NoFollow Commenter URL | CWE-352 | Remove NoFollow Commenter URL <= 1.0 - Cross-Site Request Forgery to Settings… |
| CVE-2026-9599 | 4.3 | 2.9 | russellr | Tectite Forms | CWE-352 | Tectite Forms <= 1.3 - Cross-Site Request Forgery to Settings Update |
| CVE-2026-9723 | 4.3 | 2.9 | ddd2500 | Google Plus One Bottom | CWE-352 | Google Plus One Bottom <= 0.0.2 - Cross-Site Request Forgery to Plugin Settin… |
| CVE-2026-9732 | 4.3 | 2.9 | planetshaker | EmergencyWP – Dead Man's switch & legacy deliverance | CWE-352 | EmergencyWP <= 1.4.2 - Cross-Site Request Forgery to Plugin Settings Update |
| CVE-2026-10528 | 1.9 | 2.5 | Orthanc | DICOM Server | CWE-119 | Orthanc DICOM Server DCMTK FromDcmtkBridge.cpp read stack-based overflow |
| CVE-2021-4478 | 8.3 | 2.3 | Dräger | CC-Vision Basic | CWE-787 | Dräger CC-Vision Basic and CC-Vision E-Cal Out-of-Bounds Write via Malicious … |
| CVE-2026-10566 | 1.9 | 2.3 | FoundationAgents | MetaGPT | CWE-20 | FoundationAgents MetaGPT schema.py Message.check_instruct_content deserializa… |
| CVE-2026-10046 | 8.5 | 2.0 | Bitdefender | Napoca bare-metal hypervisor | CWE-787 | Out-of-bounds write in Napoca BIOS INT 0x15 E820 memory map handler (VA-13905) |
| CVE-2026-10047 | 8.5 | 2.0 | Bitdefender | Napoca bare-metal hypervisor | CWE-787 | Out-of-bounds write in Napoca real-mode hook handler via guest-controlled SS:… |
| CVE-2026-8936 | 8.2 | 1.8 | Docker | Docker Desktop | CWE-674 | Unbounded recursion in grpcfuse kernel module allows container to crash Docke… |
| CVE-2026-40619 | 7.8 | 1.8 | Genetec Inc. | Genetec Security Center | CWE-532 | A high security vulnerability affecting Security Center main server installat… |
| CVE-2026-34460 | 5.4 | 1.7 | NamelessMC | Nameless | CWE-302 | NamelessMC: OAuth callback `state` is not validated, allowing login CSRF / se… |
| CVE-2026-10718 | 4.6 | 1.7 | — | openSeaChest | CWE-787 | Open Seachest/Seachest NVMe Trim (Deallocate) Vulnerability |
| CVE-2026-8036 | 8.4 | 1.3 | NI | NI-PAL | CWE-1285 | Local privilege escalation in NI-PAL |
| CVE-2021-4480 | 8.3 | 1.3 | Dräger | Protector Software | CWE-732 | Dräger Protector Software Local Privilege Escalation via Insecure File Permis… |
| CVE-2021-4481 | 8.3 | 1.3 | Dräger | Protector Software | CWE-732 | Dräger Protector Software Local Privilege Escalation via Insecure File Permis… |
| CVE-2026-10717 | 1.8 | 1.1 | — | openSeaChest | CWE-787 | Open-Seachest/Seachest show SCSI Defect List Vulnerability |
| CVE-2026-10719 | 1.8 | 1.1 | — | openSeaChest | CWE-787 | Open Seachest/Seachest NVMe show Format Descriptors Vulnerability |
| CVE-2026-10584 | 8.2 | 1.1 | AWS | Graph Explorer | CWE-319 | HTTPS Fallback to HTTP in Graph Explorer |
| CVE-2026-40715 | 7.8 | 1.0 | Dell | ThinOS 10 | CWE-284 | Dell ThinOS 10, versions prior to ThinOS10 2602_10.0765, contain an Improper … |
| CVE-2026-8035 | 6.9 | 0.8 | NI | NI-PAL | CWE-476 | NULL pointer dereference in NI-PAL |
| CVE-2025-64390 | 7.4 | 0.4 | Sony | PS4 | CWE-367 | A privilege escalation vulnerability exists in PlayStation 4 firmware version… |
Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.
Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.
Day boundary. A day is a UTC calendar day. This page covers 2026-06-02 00:00:00–23:59:59 UTC. All times shown are UTC.
Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.
Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.