boxscore/security
Monday, June 8, 2026 · all times UTC← 2026-06-07 · archive · 2026-06-09 →

286 CVEs published June 8, 2026: 23 critical, 132 high, 82 medium, 48 low; 2 in KEV; 11 with a public exploit reference; 1 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 261 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published1893626510492563
KEV catalog size1670

263 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux7510418264930712730.37.8.0013-135
google56173565381267197450.78.1.0023+561
microsoft7497443331030378275.47.8.0046-5
red hat2286841325400.07.3.0033+18
apple04701227193714.96.2.00340
canonical0140455000.05.5.00090
freebsd070520000.07.8.00200
suse020200000.08.2.00200
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco215314096853.37.0.0694+2
checkpoint2814303112.57.5.0423+2
ivanti16020033466.78.8.57510
fortinet06130028350.07.9.43300
vmware3301202100.05.4.0031+3
zyxel2300301100.06.5.0017+2
f50320007133.39.2.09960
ubiquiti031200400.08.8.00680
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache467812333024011.37.3.0056+42
mozilla41033401300.07.4.00350
gitlab0901604222.24.3.00320
docker250500100.08.8.0021+2
drupal0511305120.05.1.00260
github021100000.08.1.03470
jenkins000000600
joomla000000100
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
ibm5541326150700.07.5.0031+5
oracle128815404013.68.1.0027+1
progress591710900.07.5.0036+5
solarwinds25120011480.07.5.7155+2
adobe04010075375.08.6.27760
veeam031200400.08.6.00400
zohocorp020110000.07.1.01040
atlassian0000001300
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
synology52325133000.05.6.0025+5
d-link81103252619.14.2.0059+8
abb440400000.07.3.0024+4
siemens120110100.07.3.0026+1
hitachi energy020020000.05.7.00140
hikvision01000021100.01.00000
dahua000000200
qnap000000800
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
sourcecodester3557002433000.02.1.0026+35
edimax051032019100.07.4.00590
concrete cms1451101321000.06.0.0015+1
open ises044221210000.07.1.00210
helmholz04203930000.07.1.00260
mb connect line04203930000.07.1.00260
totolink237026011000.08.9.0191+2
acer2636111960000.08.7.0024+26

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2008-4250.987599.9
CVE-2026-0257.939199.8
CVE-2026-43500.928599.87.8
CVE-2010-0249.918899.8
CVE-2026-20182.915299.8
CVE-2026-9082.883299.89.8
CVE-2009-3459.865899.7
CVE-2025-34291.838499.7
CVE-2026-42271.830199.6
CVE-2026-50751.825599.69.3
Highest CVSS
CVECVSSEPSSNote
CVE-2026-4817210.0.1891KEV
CVE-2026-4977710.0.0166
CVE-2026-805410.0.0158
CVE-2026-4508710.0.0147
CVE-2026-4919910.0.0134
CVE-2026-1142910.0.0115
CVE-2026-4399710.0.0098
CVE-2026-2022310.0.0083
CVE-2026-4400510.0.0083
CVE-2026-4400610.0.0081
Most disclosures (vendor)
VendorCVEs
google729
linux505
microsoft165
apache63
red hat59
sourcecodester57
ibm54
edimax51
concrete cms45
open ises44
Most KEV additions (YTD)
VendorKEV
microsoft27
cisco8
apple7
google5
ivanti4
solarwinds4
synacor4
adobe3
fortinet3
linux3
Most-affected ecosystems
EcosystemAdvisories
Maven24
PyPI10
Packagist9
npm3
crates.io2
Fastest to KEV
CVEVendorDays
CVE-2008-4250Microsoft0
CVE-2009-1537Microsoft0
CVE-2009-3459Adobe0
CVE-2010-0249Microsoft0
CVE-2010-0806Microsoft0
CVE-2022-0492Linux0
CVE-2024-21182Oracle0
CVE-2025-34291Langflow0
CVE-2025-48595Google0
CVE-2026-0257Palo Alto Networks0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104Accellion2021-11-171664
CVE-2021-27102Accellion2021-11-171664
CVE-2021-27101Accellion2021-11-171664
CVE-2021-27103Accellion2021-11-171664
CVE-2021-21017Adobe2021-11-171664
CVE-2021-28550Adobe2021-11-171664
CVE-2021-42013Apache2021-11-171664
CVE-2021-41773Apache2021-11-171664
CVE-2021-30858Apple2021-11-171664
CVE-2021-30860Apple2021-11-171664

Transactions

EXPLOIT PUBLISHEDCVE-2026-35058 (OpenVPN). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-42861 (FlowiseAI Flowise). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-42862 (FlowiseAI Flowise). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-42863 (FlowiseAI Flowise). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-46441 (FlowiseAI Flowise). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-46442 (FlowiseAI Flowise). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-46443 (FlowiseAI Flowise). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-46490 (tngan samlify). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-49755 (wojtekmach req). Public exploit reference added.

Yesterday's Results

286 CVEs published. 25 box scores, 261 table rows — nothing truncated.

CVE-2026-42271AWAITING ENRICHMENT
BerriAI LiteLLM
  CVSS   EPSS    %ile   KEV
  —      .8301   99.6   YES
AFFECTED
  Product  Versions     Fixed
  LiteLLM  unspecified  —
TIMELINE
  Jun 8   Added to CISA KEV, due Jun 22
  Jun 8   Published
0 references · KEV due June 22, 2026
checkpoint Quantum Security Gateway — User Authentication Bypass in VPN Remote Access and Mobile Access
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  C  H  L  N    9.3   .8255   99.6   YES
AFFECTED
  Product                   Versions                                     Fixed
  Quantum Security Gateway  R82.10 with Jumbo Hotfix Take 19 or below –  —
  Spark Firewalls           R80.20.X, R81.10.X, and R82.00.X –           —
TIMELINE
  Jun 7   Reserved by CNA
  Jun 8   Added to CISA KEV, due Jun 11
  Jun 8   Published (CNA: checkpoint)
CWE-287 · CNA: checkpoint · 3 references · NVD status: Analyzed · KEV due June 11, 2026
Apache HTTP Server: mod_http2 denial of service
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .2798   97.9     —
AFFECTED
  Product             Versions  Fixed
  Apache HTTP Server  2.4.17 –  —
TIMELINE
  Jun 2   Reserved by CNA
  Jun 8   Published (CNA: apache)
CWE-789, CWE-409 · CNA: apache · 21 references · NVD status: Modified
Tenda HG7HG9/HG10 formDOMAINBLK stack-based overflow
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0656   93.2     —
AFFECTED
  Product  Versions             Fixed
  HG7HG9   300001138_en_xpon –  —
  HG10     300001138_en_xpon –  —
TIMELINE
  Jun 7   Reserved by CNA
  Jun 8   Published (CNA: VulDB)
CWE-119, CWE-121 · CNA: VulDB · 6 references · NVD status: Deferred
checkpoint Quantum Security Gateway — Certificate Validation Bypass in VPN Site-to-Site Connections Using IKEv1
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   N   N  U  H  H  N    7.4   .0455   90.8     —
AFFECTED
  Product                   Versions                                     Fixed
  Quantum Security Gateway  R82.10 with Jumbo Hotfix Take 19 or below –  —
  Spark Firewalls           R80.20.X, R81.10.X, and R82.00.X –           —
TIMELINE
  Jun 7   Reserved by CNA
  Jun 8   Published (CNA: checkpoint)
CWE-295 · CNA: checkpoint · 1 reference · NVD status: Awaiting Analysis
Tenda HG7HG9/HG10 Web Management voip_other_set asp_voip_OtherSet stack-based overflow
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    8.7   .0380   89.1     —
AFFECTED
  Product  Versions             Fixed
  HG7HG9   300001138_en_xpon –  —
  HG10     300001138_en_xpon –  —
TIMELINE
  Jun 7   Reserved by CNA
  Jun 8   Published (CNA: VulDB)
CWE-119, CWE-121 · CNA: VulDB · 6 references · NVD status: Deferred
FlowiseAI Flowise — Flowise: Authenticated Host RCE via POST /api/v1/node-custom-function and NodeVM Sandbox Escape
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    9.4   .0349   88.1     —
AFFECTED
  Product  Versions   Fixed
  Flowise  < 3.1.2 –  —
TIMELINE
  May 13  Reserved by CNA
  Jun 8   Public exploit reference published
  Jun 8   Published (CNA: GitHub_M)
CWE-94 · CNA: GitHub_M · 2 references · NVD status: Analyzed
Red Hat Red Hat Enterprise Linux 10 — Samba: denial of service against ad dc wins server
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0267   84.5     —
AFFECTED
  Product                                 Versions     Fixed
  Red Hat Enterprise Linux 10             unspecified  —
  Red Hat Enterprise Linux 6              unspecified  —
  Red Hat Enterprise Linux 6              unspecified  —
  Red Hat Enterprise Linux 7              unspecified  —
  Red Hat Enterprise Linux 8              unspecified  —
  Red Hat Enterprise Linux 9              unspecified  —
  Red Hat OpenShift Container Platform 4  unspecified  —
TIMELINE
  Feb 26  Reserved by CNA
  Jun 8   Published (CNA: redhat)
CWE-476 · CNA: redhat · 4 references · NVD status: Awaiting Analysis
OpenBullet2 0.3.2 Authentication Bypass via X-Api-Key Header
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0182   77.0     —
AFFECTED
  Product      Versions     Fixed
  openbullet2  unspecified  —
TIMELINE
  Feb 2   Reserved by CNA
  Jun 8   Published (CNA: VulnCheck)
CWE-305 · CNA: VulnCheck · 2 references · NVD status: Deferred
Tenda F451 Web Management WriteFacMac formWriteFacMac os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    7.4   .0161   73.9     —
AFFECTED
  Product  Versions   Fixed
  F451     1.0.0.7 –  —
TIMELINE
  Jun 8   Reserved by CNA
  Jun 8   Published (CNA: VulDB)
CWE-77, CWE-78 · CNA: VulDB · 6 references · NVD status: Deferred
Webkul Bagisto — Path Traversal Vulnerability in Bagisto
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   N   N    8.7   .0124   66.6     —
AFFECTED
  Product  Versions          Fixed
  Bagisto  version v2.4.1 –  —
TIMELINE
  May 25  Reserved by CNA
  Jun 8   Published (CNA: CERT-In)
CWE-22 · CNA: CERT-In · 1 reference · NVD status: Deferred
Apache HTTP Server: mod_proxy_html buffer overflow
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0112   63.4     —
AFFECTED
  Product             Versions  Fixed
  Apache HTTP Server  2.4.0 –   —
TIMELINE
  Mar 27  Reserved by CNA
  Jun 8   Published (CNA: apache)
CWE-122, CWE-120 · CNA: apache · 11 references · NVD status: Modified
Apache HTTP Server: mod_xml2enc heap overflow
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0099   59.5     —
AFFECTED
  Product             Versions  Fixed
  Apache HTTP Server  2.4.0 –   —
TIMELINE
  Apr 28  Reserved by CNA
  Jun 8   Published (CNA: apache)
CWE-122, CWE-120 · CNA: apache · 11 references · NVD status: Modified
n/a Neovim — Neovim View Branch secure.lua M.read command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   L   L   N   L   N   L   L   L    1.9   .0092   57.4     —
AFFECTED
  Product  Versions  Fixed
  Neovim   0.12.0 –  —
TIMELINE
  Jun 7   Reserved by CNA
  Jun 8   Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 8 references · NVD status: Deferred
NginxProxyManager nginx-proxy-manager — Nginx Proxy Manager Authenticated RCE via setupCertbotPlugins()
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   L   N   H   H   H    7.7   .0092   57.4     —
AFFECTED
  Product              Versions  Fixed
  nginx-proxy-manager  2.9.14 –  a5db5ed156355e3088e7d1ceb0533d4bae922def
TIMELINE
  Apr 13  Reserved by CNA
  Jun 8   Published (CNA: VulnCheck)
CWE-78 · CNA: VulnCheck · 3 references · NVD status: Deferred
TP-Link Systems Inc. Archer MR600 v5 — Command Injection in TP-Link's Archer MR600 WireGuard Client Configuration
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   A   L   N   H   N   H   H   H    8.5   .0091   56.9     —
AFFECTED
  Product          Versions     Fixed
  Archer MR600 v5  unspecified  —
TIMELINE
  May 18  Reserved by CNA
  Jun 8   Published (CNA: TPLink)
CWE-78 · CNA: TPLink · 3 references · NVD status: Deferred
background-image-cropper Background Image Cropper — WordPress Background Image Cropper 1.2 Remote Code Execution
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0084   54.8     —
AFFECTED
  Product                   Versions  Fixed
  Background Image Cropper  1.2 –     —
TIMELINE
  Jun 5   Reserved by CNA
  Jun 8   Published (CNA: VulnCheck)
CWE-434 · CNA: VulnCheck · 4 references · NVD status: Deferred
Apache Software Foundation Cordova Plugin InAppBrowser — Cordova Plugin InAppBrowser: iOS: Arbitrary Cordova callback IDs can be dispatched without validation from InAppBrowser WebViews
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   N   N   N   H   H   H    9.5   .0072   51.0     —
AFFECTED
  Product                      Versions  Fixed
  Cordova Plugin InAppBrowser  3.1.0 –   —
TIMELINE
  May 19  Reserved by CNA
  Jun 8   Published (CNA: apache)
CWE-20 · CNA: apache · 2 references · NVD status: Analyzed
Apache HTTP Server: Stack Buffer Over-Read in mod_ssl OCSP `send_request`
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  L  L  L    7.3   .0071   50.6     —
AFFECTED
  Product             Versions  Fixed
  Apache HTTP Server  2.4.0 –   —
TIMELINE
  May 5   Reserved by CNA
  Jun 8   Published (CNA: apache)
CWE-126, CWE-125 · CNA: apache · 11 references · NVD status: Modified
Apache HTTP Server: ProxyPassReverseCookieMap buffer overflow
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0071   50.5     —
AFFECTED
  Product             Versions  Fixed
  Apache HTTP Server  2.4.0 –   —
TIMELINE
  Mar 27  Reserved by CNA
  Jun 8   Published (CNA: apache)
CWE-122 · CNA: apache · 2 references · NVD status: Analyzed
Apache HTTP Server: mod_ldap per-dir use-after-free
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0069   49.7     —
AFFECTED
  Product             Versions  Fixed
  Apache HTTP Server  2.4.0 –   —
TIMELINE
  Mar 4   Reserved by CNA
  Jun 8   Published (CNA: apache)
CWE-416 · CNA: apache · 3 references · NVD status: Analyzed
WP Travel Kit Travelscape — WordPress Theme Travelscape 1.0.3 Arbitrary File Upload
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0067   49.2     —
AFFECTED
  Product      Versions  Fixed
  Travelscape  1.0.3 –   —
TIMELINE
  Jun 6   Reserved by CNA
  Jun 8   Published (CNA: VulnCheck)
CWE-434 · CNA: VulnCheck · 2 references · NVD status: Deferred
WP Travel Kit Travelscape — WordPress Seotheme Remote Code Execution Unauthenticated
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0061   46.5     —
AFFECTED
  Product      Versions  Fixed
  Travelscape  1.0.3 –   —
TIMELINE
  Jan 10  Reserved by CNA
  Jun 8   Published (CNA: VulnCheck)
CWE-306 · CNA: VulnCheck · 2 references · NVD status: Deferred
UTT HiPER 2610G formConfigDnsFilterGlobal strcpy buffer overflow
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    7.4   .0060   45.9     —
AFFECTED
  Product      Versions        Fixed
  HiPER 2610G  3.0.0-171107 –  —
TIMELINE
  Jun 7   Reserved by CNA
  Jun 8   Published (CNA: VulDB)
CWE-119, CWE-120 · CNA: VulDB · 5 references · NVD status: Deferred
Apache HTTP Server: Loop in `proxy_ftp_handler` in mod_proxy_ftp
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  L  L  L    7.3   .0058   45.1     —
AFFECTED
  Product             Versions  Fixed
  Apache HTTP Server  2.4.0 –   —
TIMELINE
  May 5   Reserved by CNA
  Jun 8   Published (CNA: apache)
CWE-835 · CNA: apache · 2 references · NVD status: Analyzed
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-258558.744.5openbulletopenbullet2CWE-78OpenBullet2 0.3.2 Authenticated RCE via FileProxySource Script Upload
CVE-2026-255598.744.3openbulletopenbullet2CWE-22OpenBullet2 0.3.2 Path Traversal via Wordlist Endpoint
CVE-2026-527789.844.0YesWikiyeswikiCWE-94YesWiki has Unsafe eval() in Formula Calculator - Remote Code Execution (RCE)…
CVE-2026-439516.543.2Apache Software FoundationApache HTTP ServerCWE-125Apache HTTP Server: OOB Read in `merge_response_headers` can cause crash
CVE-2026-414489.243.0AdguardTeamAdGuardHomeCWE-22AdGuard Home Authentication Bypass via Path Traversal in Admin-Token Cookie
CVE-2026-425359.142.8Apache Software FoundationApache HTTP ServerCWE-668Apache HTTP Server: mod_dav_fs protected directory access
CVE-2023-543508.742.5webandprintAugmented RealityCWE-306WordPress Augmented-Reality Plugin Remote Code Execution Unauthenticated
CVE-2026-367897.542.3n/an/aCWE-121Shenzhen Tenda Technology Co., Ltd Tenda AC1206 v15.03.06.23 was discovered t…
CVE-2026-291706.142.0Apache Software FoundationApache HTTP ServerCWE-79Apache HTTP Server: mod_proxy_ftp XSS
CVE-2026-114922.141.2D-LinkDIR-823GCWE-266D-Link DIR-823G vsftpd vsftpd.conf least privilege violation
CVE-2026-446319.840.8Apache Software FoundationApache HTTP ServerCWE-124Apache HTTP Server: Heap Underflow in `ap_regname` via Signed Char Overflow
CVE-2026-489137.339.3Apache Software FoundationApache HTTP ServerCWE-416Apache HTTP Server: mod_http2 memory corruption when file handles exhausted
CVE-2026-115537.439.2TendaHG7HG9CWE-119Tenda HG7HG9/HG10 formPPPEdit stack-based overflow
CVE-2026-115577.439.1TendaF451CWE-119Tenda F451 Web Management Natlimit fromNatlimit stack-based overflow
CVE-2026-258568.738.9openbulletopenbullet2CWE-94OpenBullet2 0.3.2 Authenticated RCE via Job Configuration Interface
CVE-2026-464908.738.6tngansamlifyCWE-91samlify: XML Injection in AttributeValue Allows Privilege Escalation in Signe…
CVE-2026-115037.438.4TendaCX12LCWE-119Tenda CX12L Wi-Fi Configuration Endpoint fast_setting_wifi_set form_fast_sett…
CVE-2026-115047.438.4TendaCX12LCWE-119Tenda CX12L Wi-Fi Schedule Configuration Endpoint openSchedWifi setSchedWifi …
CVE-2026-115227.438.4TendaW20ECWE-119Tenda W20E setPortMirror formSetPortMirror stack-based overflow
CVE-2026-115237.438.4TendaW20ECWE-119Tenda W20E Web Management PortalAuth formPortalAuth stack-based overflow
CVE-2026-115247.438.4TendaW20ECWE-119Tenda W20E Web Management modifyWifiFilterRules stack-based overflow
CVE-2026-115287.438.4TendaAC18CWE-119Tenda AC18 Web Management getRebootStatus sub_45304 stack-based overflow
CVE-2026-462899.837.9LinuxLinuxCWE-401lib/scatterlist: fix length calculations in extract_kvec_to_sg
CVE-2026-492338.337.0NLnet LabsRoutinatorCWE-22Routinator cache path traversal using rogue rsync URIs
CVE-2026-497558.236.5wojtekmachreqCWE-409Decompression bomb DoS in Req via auto-decoded archive and compressed respons…
CVE-2026-114975.536.0D-LinkDCS-5615CWE-266D-Link DCS-5615 Boa Webserver boa.conf least privilege violation
CVE-2026-96698.235.7Python Software FoundationCPythonCWE-121bz2.BZ2Decompressor reuse after error can cause a stack buffer overflow
CVE-2026-367867.534.6n/an/aCWE-121Shenzhen Tenda Technology Co., Ltd Tenda FH451 V1.0.0.9 was discovered to con…
CVE-2026-115552.933.7D-LinkDGS-1100-08PDCWE-266D-Link DGS-1100-08PD Web boa.conf least privilege violation
CVE-2026-417238.033.1VMwareVCF operationsCWE-79VMSA-2026-0004: VMware Cloud Foundation Operations updates address multiple v…
CVE-2026-350586.932.4OpenVPNOpenVPNCWE-617Improper validation of packet length during tls-crypt-v2 key extraction in Op…
CVE-2026-463047.532.0LinuxLinuxnvmet: avoid recursive nvmet-wq flush in nvmet_ctrl_free
CVE-2026-463067.532.0LinuxLinuxflow_dissector: do not dissect PPPoE PFC frames
CVE-2026-115182.132.0SourceCodesterInventory SystemCWE-79SourceCodester Inventory System User Management users.php cross site scripting
CVE-2026-402156.131.8OpenVPNOpenVPNCWE-125A race condition in OpenVPN 2.6.0 through 2.6.19 and 2.7_alpha1 through 2.7.1…
CVE-2026-439738.731.2nineninesgunCWE-770gun HTTP/1.1 response buffer has no size limit allowing server-controlled mem…
CVE-2026-439748.731.2nineninesgunCWE-841gun HTTP/1.1 client accepts unsolicited 101 Switching Protocols response allo…
CVE-2026-464865.330.8mvt-projectmvtCWE-22Mobile Verification Toolkit (MVT): Path Traversal via unsanitized File identi…
CVE-2026-464848.130.5taleheadplaneCWE-22Headplane: Path Traversal + RBAC Bypass in renameNode allows authenticated OI…
CVE-2026-115162.030.1UTTHiPER 2610GCWE-119UTT HiPER 2610G formNatStaticMap strcpy buffer overflow
CVE-2026-492358.729.8NLnet LabsRoutinatorCWE-755Routinator crashes on specifically crafted RRDP XML files
CVE-2026-473455.129.7TYPO3HTML SanitizerCWE-79TYPO3 HTML Sanitizer allows Cross-Site Scripting
CVE-2026-116628.829.0GoogleChromeCWE-843Type Confusion in Bindings in Google Chrome prior to 149.0.7827.103 allowed a…
CVE-2026-492328.727.2NLnet LabsRoutinatorCWE-755Routinator exits when accepting an incoming HTTP or RTR connection fails
CVE-2026-464787.727.2FlowiseAIFlowiseCWE-915Flowise: DatasetRow create+update mass-assignment allows cross-workspace row …
CVE-2022-509536.927.2brooks24admin-word-count-columnCWE-22WordPress Plugin admin-word-count-column 2.2 Local File Read
CVE-2026-221647.526.8Imagination TechnologiesGraphics DDKCWE-122GPU DDK - Kernel heap OOB write in DevmemIntComputeVirtualIndicesFromLogical
CVE-2026-116519.626.6GoogleChromeCWE-416Use after free in Network in Google Chrome prior to 149.0.7827.103 allowed a …
CVE-2026-464757.726.4FlowiseAIFlowiseCWE-915Flowise: Assistant create+update mass-assignment allows cross-workspace assis…
CVE-2026-464767.726.4FlowiseAIFlowiseCWE-915Flowise: CustomTemplate create+update mass-assignment allows cross-workspace …
CVE-2026-464777.726.4FlowiseAIFlowiseCWE-915Flowise: Dataset create+update mass-assignment allows cross-workspace dataset…
CVE-2026-464797.726.4FlowiseAIFlowiseCWE-915Flowise: Evaluation create+update mass-assignment allows cross-workspace eval…
CVE-2026-464807.726.4FlowiseAIFlowiseCWE-915Flowise: Evaluator create+update mass-assignment allows cross-workspace evalu…
CVE-2026-464448.725.6FlowiseAIFlowiseCWE-862Flowise: Vector Store No Permission Checks
CVE-2026-115305.525.7imvks786student_management_systemCWE-74imvks786 student_management_system Login index.ph sql injection
CVE-2026-115315.525.7imvks786student_management_systemCWE-74imvks786 student_management_system Administrator Login Endpoint admin_login.p…
CVE-2026-113938.824.9AWSAgentCore CLICWE-94Code injection via improper triple-quote escaping in AgentCore CLI Bedrock Ag…
CVE-2026-116498.824.2GoogleChromeCWE-416Use after free in V8 in Google Chrome prior to 149.0.7827.103 allowed a remot…
CVE-2026-116508.824.2GoogleChromeCWE-416Use after free in V8 in Google Chrome prior to 149.0.7827.103 allowed a remot…
CVE-2026-399087.124.1openbulletopenbullet2CWE-522OpenBullet2 0.3.2 NTLMv2 Hash Disclosure via UNC Path Proxy Source
CVE-2026-417245.424.0VMwareVCF operationsCWE-79VMSA-2026-0004: VMware Cloud Foundation Operations updates address multiple v…
CVE-2026-116838.823.3GoogleChromeCWE-416Use after free in WebCodecs in Google Chrome prior to 149.0.7827.103 allowed …
CVE-2026-114772.122.9hs-webhsweb-frameworkCWE-601hs-web hsweb-framework OAuth2 Client OAuth2Client.java OAuth2Client redirect
CVE-2026-399109.322.8STACKITIaaS APICWE-862STACKIT IaaS API Privilege Escalation via Service Account Attachment
CVE-2026-417225.422.8VMwareVCF operationsCWE-79VMSA-2026-0004: VMware Cloud Foundation Operations updates address multiple v…
CVE-2026-114702.122.7hs-webhsweb-frameworkCWE-22hs-web hsweb-framework File Upload FileUploadProperties.java denied path trav…
CVE-2026-445417.022.3ethycafidesCWE-79Fides: DOM-based XSS vulnerability in fides.js via fides_description override
CVE-2026-466568.821.9bluditbluditCWE-285Bludit CMS has improper authorization and mediation failure leading to persis…
CVE-2026-114825.521.5SourceCodesterClass and Exam Timetabling SystemCWE-74SourceCodester Class and Exam Timetabling System archive5.php sql injection
CVE-2026-114905.521.5code-projectsOnline Music SiteCWE-74code-projects Online Music Site Search.php sql injection
CVE-2026-114745.521.3Kushan2kstudent-management-systemCWE-284Kushan2k student-management-system Registration Endpoint RegisterService.php …
CVE-2026-115525.521.1SourceCodesterOnlne Examination & Learning Management SystemCWE-255SourceCodester Onlne Examination & Learning Management System import_users.ph…
CVE-2026-473442.120.7TYPO3HTML SanitizerCWE-79TYPO3 HTML Sanitizer allows Cross-Site Scripting
CVE-2026-115001.320.6n/aWeaviateCWE-285Weaviate Static API Key client.go validateConfig authorization
CVE-2026-463038.220.3LinuxLinuxCWE-401isofs: validate Rock Ridge CE continuation extent against volume size
CVE-2026-115155.520.0SourceCodesterBarangay Resident Profiling and Information Management SystemCWE-255SourceCodester Barangay Resident Profiling and Information Management System …
CVE-2026-116397.519.9GoogleChromeCWE-416Use after free in Compositing in Google Chrome on Mac prior to 149.0.7827.103…
CVE-2026-116417.519.9GoogleChromeCWE-416Use after free in Bluetooth in Google Chrome on Windows prior to 149.0.7827.1…
CVE-2026-114835.519.9SourceCodesterClass and Exam Timetabling SystemCWE-74SourceCodester Class and Exam Timetabling System archive4.php sql injection
CVE-2026-114845.519.9SourceCodesterClass and Exam Timetabling SystemCWE-74SourceCodester Class and Exam Timetabling System archive3.php sql injection
CVE-2026-114855.519.9SourceCodesterClass and Exam Timetabling SystemCWE-74SourceCodester Class and Exam Timetabling System archive2.php sql injection
CVE-2026-114865.519.9SourceCodesterClass and Exam Timetabling SystemCWE-74SourceCodester Class and Exam Timetabling System archive1.php sql injection
CVE-2026-114885.519.9code-projectsSimple Flight Ticket Booking SystemCWE-74code-projects Simple Flight Ticket Booking System POST Parameter checkUser.ph…
CVE-2026-114895.519.9code-projectsOnline Music SiteCWE-74code-projects Online Music Site AdminDeleteAlbum.php sql injection
CVE-2026-464417.619.8FlowiseAIFlowiseCWE-284Flowise: Mass Assignment in Assistant Update Endpoint Allows Cross-Workspace …
CVE-2026-115122.119.7itsourcecodeHospital Management SystemCWE-79itsourcecode Hospital Management System billing.php cross site scripting
CVE-2026-115212.119.5Mohammed-eid35bank-management-system-springbootCWE-266Mohammed-eid35 bank-management-system-springboot Transaction Endpoint Transac…
CVE-2026-116438.119.5GoogleChromeCWE-416Use after free in Proxy in Google Chrome prior to 149.0.7827.103 allowed a re…
CVE-2026-466577.119.3bluditbluditCWE-212Bludit's persistent authentication tokens not revoked upon account disablement
CVE-2026-464437.019.4FlowiseAIFlowiseCWE-200Flowise: Credential Data Leak
CVE-2026-116298.819.3GoogleChromeCWE-416Use after free in Ozone in Google Chrome prior to 149.0.7827.103 allowed a re…
CVE-2026-115322.119.2imvks786student_management_systemCWE-266imvks786 student_management_system Student Record add.php access control
CVE-2026-115825.519.1CodeAstroStudent Attendance Management SystemCWE-74CodeAstro Student Attendance Management System index.php sql injection
CVE-2026-428637.619.0FlowiseAIFlowiseCWE-284Flowise: Mass Assignment in Chatflow Update Endpoint Allows Cross-Workspace A…
CVE-2026-492348.218.6NLnet LabsRoutinatorCWE-20Routinator crashes on specifically crafted ASN strings in the API
CVE-2026-116327.518.4GoogleChromeCWE-416Use after free in TabStrip in Google Chrome prior to 149.0.7827.103 allowed a…
CVE-2026-116488.818.2GoogleChromeCWE-416Use after free in FullScreen in Google Chrome on Windows prior to 149.0.7827.…
CVE-2026-114715.518.2SourceCodesterClass and Exam Timetabling SystemCWE-74SourceCodester Class and Exam Timetabling System index2.php sql injection
CVE-2026-114725.518.2SourceCodesterClass and Exam Timetabling SystemCWE-74SourceCodester Class and Exam Timetabling System index1.php sql injection
CVE-2026-115015.518.2SourceCodesterHospitals Patient Records Management SystemCWE-74SourceCodester Hospitals Patient Records Management System Master.php save_pa…
CVE-2026-116378.818.1GoogleChromeCWE-416Use after free in Views in Google Chrome on Mac prior to 149.0.7827.103 allow…
CVE-2026-116468.818.1GoogleChromeCWE-416Use after free in ViewTransitions in Google Chrome prior to 149.0.7827.103 al…
CVE-2026-115192.118.0SourceCodesterInventory SystemCWE-266SourceCodester Inventory System Account Creation users_handler.php improper a…
CVE-2026-116608.317.6GoogleChromeCWE-20Insufficient validation of untrusted input in New Tab Page in Google Chrome p…
CVE-2026-116888.817.3GoogleChromeCWE-94Inappropriate implementation in SVG in Google Chrome prior to 149.0.7827.103 …
CVE-2026-428617.617.1FlowiseAIFlowiseCWE-284Flowise: Mass Assignment in Variable Update Endpoint Allows Cross-Workspace R…
CVE-2026-116349.616.9GoogleChromeCWE-416Use after free in Gamepad in Google Chrome on Windows prior to 149.0.7827.103…
CVE-2026-116389.616.9GoogleChromeCWE-416Use after free in Printing in Google Chrome prior to 149.0.7827.103 allowed a…
CVE-2026-116549.616.9GoogleChromeCWE-416Use after free in CameraCapture in Google Chrome on Mac prior to 149.0.7827.1…
CVE-2026-116599.616.9GoogleChromeCWE-20Integer overflow in UI in Google Chrome on Linux prior to 149.0.7827.103 allo…
CVE-2026-116308.816.9GoogleChromeCWE-416Use after free in File Input in Google Chrome prior to 149.0.7827.103 allowed…
CVE-2026-116578.816.8GoogleChromeCWE-416Use after free in Payments in Google Chrome on Mac prior to 149.0.7827.103 al…
CVE-2026-116648.816.9GoogleChromeCWE-416Use after free in Payments in Google Chrome prior to 149.0.7827.103 allowed a…
CVE-2026-464409.116.8FlowiseAIFlowiseCWE-522Flowise: Basic Auth Credentials Exposed via API
CVE-2026-439666.316.6nineninescowlibCWE-113HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_stri…
CVE-2026-115021.316.7n/aJeecgBootCWE-601JeecgBoot Third-Party Login ThirdLoginController.java HttpServletResponse.sen…
CVE-2026-115202.016.3SourceCodesterInventory SystemCWE-79SourceCodester Inventory System header.php cross site scripting
CVE-2026-116116.515.8Red HatRed Hat Directory Server 11CWE-400389-ds-base: 389-ds-base: content sync plugin unbounded queue growth and race…
CVE-2026-116719.615.7GoogleChromeCWE-416Use after free in Navigation in Google Chrome prior to 149.0.7827.103 allowed…
CVE-2026-116738.815.7GoogleChromeCWE-416Use after free in InterestGroups in Google Chrome prior to 149.0.7827.103 all…
CVE-2026-116748.815.7GoogleChromeCWE-416Use after free in Guest View in Google Chrome prior to 149.0.7827.103 allowed…
CVE-2026-116808.815.7GoogleChromeCWE-416Use after free in Media in Google Chrome on Windows prior to 149.0.7827.103 a…
CVE-2026-116528.315.6GoogleChromeCWE-416Use after free in Extensions in Google Chrome prior to 149.0.7827.103 allowed…
CVE-2026-116558.315.6GoogleChromeCWE-472Integer overflow in Media in Google Chrome on Mac prior to 149.0.7827.103 all…
CVE-2026-116618.315.6GoogleChromeCWE-416Use after free in Views in Google Chrome on Windows prior to 149.0.7827.103 a…
CVE-2026-464818.315.4open-metadataOpenMetadataCWE-201OpenMetadata: TEST_CONNECTION workflow leaks ingestion-bot JWT and database p…
CVE-2026-116728.315.0GoogleChromeCWE-787Heap buffer overflow in GPU in Google Chrome on Android prior to 149.0.7827.1…
CVE-2026-116338.814.3GoogleChromeCWE-416Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 a…
CVE-2026-116408.314.1GoogleChromeCWE-472Integer overflow in libyuv in Google Chrome prior to 149.0.7827.103 allowed a…
CVE-2026-116428.314.1GoogleChromeCWE-416Use after free in Web Apps in Google Chrome prior to 149.0.7827.103 allowed a…
CVE-2026-116768.314.0GoogleChromeCWE-20Insufficient validation of untrusted input in Dawn in Google Chrome on Linux …
CVE-2026-255584.814.0QloAppsQloAppsCWE-79QloApps 1.7.0 Stored XSS via SVG File Upload in Admin File Manager
CVE-2026-115332.114.0imvks786student_management_systemCWE-266imvks786 student_management_system Student Deletion Endpoint see.php improper…
CVE-2026-116536.513.3GoogleChromeCWE-20Inappropriate implementation in Extensions in Google Chrome prior to 149.0.78…
CVE-2026-116586.513.3GoogleChromeCWE-20Insufficient validation of untrusted input in Extensions in Google Chrome pri…
CVE-2026-116708.813.3GoogleChromeCWE-416Use after free in PDF in Google Chrome prior to 149.0.7827.103 allowed a remo…
CVE-2026-114931.313.3TendaAC15CWE-521Tenda AC15 Samba smb.conf weak password
CVE-2026-114911.913.2CodeAstroHuman Resource Management SystemCWE-79CodeAstro Human Resource Management System Notice Board Management All_notice…
CVE-2026-116318.313.0GoogleChromeCWE-416Use after free in Aura in Google Chrome on Windows prior to 149.0.7827.103 al…
CVE-2026-116358.313.0GoogleChromeCWE-416Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 a…
CVE-2026-116478.313.0GoogleChromeCWE-416Use after free in Printing in Google Chrome on Android prior to 149.0.7827.10…
CVE-2026-116638.313.0GoogleChromeCWE-416Use after free in Skia in Google Chrome prior to 149.0.7827.103 allowed a rem…
CVE-2026-116367.513.0GoogleChromeCWE-416Use after free in Autofill in Google Chrome on Windows prior to 149.0.7827.10…
CVE-2026-463078.312.8LinuxLinuxCWE-125wifi: ath5k: do not access array OOB
CVE-2026-116898.112.5GoogleChromeCWE-20Insufficient policy enforcement in Passwords in Google Chrome prior to 149.0.…
CVE-2026-116654.312.4GoogleChromeCWE-125Out of bounds read in Dawn in Google Chrome on Windows prior to 149.0.7827.10…
CVE-2026-491415.112.2ArnasDonwacrmCWE-639WACRM Authorization Bypass via Automation Engine Endpoint
CVE-2026-116677.512.2GoogleChromeCWE-125Out of bounds read in WebRTC in Google Chrome prior to 149.0.7827.103 allowed…
CVE-2026-439726.312.1nineninesgunCWE-346gun HTTP/2 PUSH_PROMISE authority not validated against connection origin all…
CVE-2026-114942.112.2TOTOLINKAC1200 T8CWE-266TOTOLINK AC1200 T8 vsftpd vsftpd.conf least privilege violation
CVE-2026-116907.512.0GoogleChromeCWE-125Out of bounds read and write in Media in Google Chrome on Mac prior to 149.0.…
CVE-2026-116947.512.0GoogleChromeCWE-416Use after free in ServiceWorker in Google Chrome prior to 149.0.7827.103 allo…
CVE-2026-116665.412.0GoogleChromeCWE-20Insufficient validation of untrusted input in Input in Google Chrome prior to…
CVE-2026-116695.311.9GoogleChromeCWE-472Out of bounds read in Media in Google Chrome on ChromeOS prior to 149.0.7827.…
CVE-2026-114762.111.4Kushan2kstudent-management-systemCWE-266Kushan2k student-management-system Profile Update Endpoint AdminController.ph…
CVE-2026-115582.111.4CodeAstroPayroll SystemCWE-74CodeAstro Payroll System home_salary.php sql injection
CVE-2026-30116.411.0wpzoomRecipe Card Blocks LiteCWE-79Recipe Card Blocks Lite <= 3.4.13 - Authenticated (Author+) Stored Cross-Site…
CVE-2026-115542.110.9TOTOLINKCP450CWE-266TOTOLINK CP450 vsftpd vsftpd.conf least privilege violation
CVE-2026-115292.110.8designcomputermysql-mcp-serverCWE-74designcomputer mysql-mcp-server mysql URI server.py read_resource sql injection
CVE-2026-114735.310.7jflyfoxjfinal_cmsCWE-74jflyfox jfinal_cms AdvicefeedbackController.java list sql injection
CVE-2026-115592.110.7CodeAstroPayroll SystemCWE-74CodeAstro Payroll System view_account.php sql injection
CVE-2026-115832.110.7CodeAstroStudent Attendance Management SystemCWE-74CodeAstro Student Attendance Management System createClass.php sql injection
CVE-2026-115842.110.7CodeAstroStudent Attendance Management SystemCWE-74CodeAstro Student Attendance Management System createClass.php edit sql injec…
CVE-2026-116979.610.5GoogleChromeCWE-20Insufficient validation of untrusted input in UI in Google Chrome prior to 14…
CVE-2026-116818.810.5GoogleChromeCWE-416Use after free in Ozone in Google Chrome on Linux prior to 149.0.7827.103 all…
CVE-2026-116878.810.5GoogleChromeCWE-416Use after free in Dawn in Google Chrome on Mac prior to 149.0.7827.103 allowe…
CVE-2026-116988.810.5GoogleChromeCWE-416Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 a…
CVE-2026-116998.810.5GoogleChromeCWE-416Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 a…
CVE-2026-116447.510.5GoogleChromeCWE-416Use after free in Views in Google Chrome on Linux prior to 149.0.7827.103 all…
CVE-2026-116753.110.2GoogleChromeCWE-20Out of bounds read in Skia in Google Chrome prior to 149.0.7827.103 allowed a…
CVE-2026-114802.110.2Chengdu Everbrite Network TechnologyBeikeShopCWE-74Chengdu Everbrite Network Technology BeikeShop Admin Design Builder Endpoint …
CVE-2026-114952.110.2CodeAstroIngredients Stock Management SystemCWE-74CodeAstro Ingredients Stock Management System add_stock.php sql injection
CVE-2026-115062.110.2CodeAstroLeave Management SystemCWE-74CodeAstro Leave Management System search_staff_for_deletion.php sql injection
CVE-2026-115072.110.2CodeAstroLeave Management SystemCWE-74CodeAstro Leave Management System delete_leave_type.php sql injection
CVE-2026-115082.110.2CodeAstroLeave Management SystemCWE-74CodeAstro Leave Management System search_staff_to_assign_pc.php sql injection
CVE-2026-115102.110.2CodeAstroLeave Management SystemCWE-74CodeAstro Leave Management System add_leave.php sql injection
CVE-2026-115132.110.2itsourcecodeHospital Management SystemCWE-74itsourcecode Hospital Management System adminaccount.php sql injection
CVE-2026-115142.110.2itsourcecodeHospital Management SystemCWE-74itsourcecode Hospital Management System addpatient.php sql injection
CVE-2026-115852.110.2CodeAstroStudent Attendance Management SystemCWE-74CodeAstro Student Attendance Management System createClassArms.php sql injection
CVE-2026-115342.010.0imvks786student_management_systemCWE-79imvks786 student_management_system add.php cross site scripting
CVE-2026-115052.39.8GL.iNetA1300CWE-320GL.iNet XE3000 glnassys hard-coded key
CVE-2026-105446.59.7DevolutionsServerCWE-78Improper neutralization of special elements in the built-in PAM provider pass…
CVE-2026-428627.69.5FlowiseAIFlowiseCWE-284Flowise: Mass Assignment in Tool Update Endpoint Allows Cross-Workspace Resou…
CVE-2026-485077.19.5grokabilitysnipe-itCWE-863Snipe-IT: Bulk editing users allowed `ldap_import` and `activated_in` bulk ed…
CVE-2026-116965.39.3GoogleChromeCWE-457Uninitialized Use in Video in Google Chrome on Windows prior to 149.0.7827.10…
CVE-2026-116684.39.4GoogleChromeCWE-457Uninitialized Use in Codecs in Google Chrome on Linux, ChromeOS prior to 149.…
CVE-2026-116828.39.2GoogleChromeCWE-20Inappropriate implementation in Views in Google Chrome on Linux prior to 149.…
CVE-2026-115095.39.2CodeAstroLeave Management SystemCWE-74CodeAstro Leave Management System search_staff_for_updation.php sql injection
CVE-2026-115112.09.1BoltCMSCWE-74Bolt CMS HTML Attribute TextType.php HTML injection
CVE-2026-77656.38.6Checkmk GmbHCheckmkCWE-863User Messages widget leaked issuer messages on shared dashboards
CVE-2021-479825.18.6maxfoundryWP-PaginateCWE-79WordPress Plugin WP-Paginate 2.1.3 Stored XSS via preset
CVE-2021-479835.18.6mra13Accept Stripe PaymentsCWE-79WordPress Plugin Stripe Payments 2.0.39 Stored XSS via currency_code
CVE-2021-479845.18.6WP24WP24 Domain CheckCWE-79WordPress Plugin WP24 Domain Check 1.6.2 Stored XSS
CVE-2020-372486.58.5OfflineIMAPOfflineIMAPCWE-348OfflineIMAP before 8.0.3 trusts the server with their STARTTLS capability pri…
CVE-2026-462757.88.4LinuxLinuxCWE-362Bluetooth: hci_uart: fix UAFs and race conditions in close and init paths
CVE-2026-116938.18.3GoogleChromeCWE-346Inappropriate implementation in Plugins in Google Chrome prior to 149.0.7827.…
CVE-2023-543515.18.3SonaarSonaar Music PluginCWE-79WordPress Sonaar Music Plugin 4.7 Stored XSS via Comments
CVE-2026-484882.78.1thorstenphpMyFAQCWE-328phpMyFAQ has Weak Cryptography - SHA1 for Password Hashing
CVE-2026-116286.87.9GoogleChromeCWE-416Use after free in Ozone in Google Chrome prior to 149.0.7827.103 allowed a lo…
CVE-2026-116798.37.8GoogleChromeCWE-416Use after free in Codecs in Google Chrome on Windows prior to 149.0.7827.103 …
CVE-2026-116928.37.8GoogleChromeCWE-416Use after free in Read Anything in Google Chrome prior to 149.0.7827.103 allo…
CVE-2026-117008.37.8GoogleChromeCWE-416Use after free in Tracing in Google Chrome prior to 149.0.7827.103 allowed a …
CVE-2026-117015.47.6GoogleChromeCWE-20Inappropriate implementation in Guest View in Google Chrome prior to 149.0.78…
CVE-2026-497562.17.7wojtekmachreqCWE-93Multipart form-data header injection in Req via unescaped name/filename/conte…
CVE-2026-441195.57.6Apache Software FoundationApache HTTP ServerCWE-269Apache HTTP Server: escalation of privilege through expressions in .htaccess …
CVE-2026-116785.37.5GoogleChromeCWE-472Integer overflow in libyuv in Google Chrome prior to 149.0.7827.103 allowed a…
CVE-2026-116854.37.5GoogleChromeCWE-20Inappropriate implementation in MediaCapture in Google Chrome on Mac prior to…
CVE-2026-116954.37.5GoogleChromeCWE-693Inappropriate implementation in Passwords in Google Chrome prior to 149.0.782…
CVE-2026-116843.16.9GoogleChromeCWE-693Insufficient policy enforcement in Network in Google Chrome prior to 149.0.78…
CVE-2026-116863.16.9GoogleChromeCWE-20Insufficient validation of untrusted input in Dawn in Google Chrome on macOS …
CVE-2026-116568.36.7GoogleChromeCWE-416Use after free in ServiceWorker in Google Chrome prior to 149.0.7827.103 allo…
CVE-2026-116913.16.7GoogleChromeCWE-20Insufficient validation of untrusted input in New Tab Page in Google Chrome p…
CVE-2026-114791.35.7yoanbernabeugrepaiCWE-327yoanbernabeu grepai Qdrant Backend chunker.go weak hash
CVE-2026-107874.35.2DevolutionsServerCWE-862Missing authorization in the deleted user groups API in Devolutions Server al…
CVE-2026-116778.34.5GoogleChromeCWE-362Race in Network in Google Chrome on Mac prior to 149.0.7827.103 allowed a rem…
CVE-2026-107866.54.6DevolutionsServerCWE-312Improper access control in the ticketing integration settings in Devolutions …
CVE-2026-462947.84.1LinuxLinuxCWE-787dm: fix a buffer overflow in ioctl processing
CVE-2026-80784.84.1Checkmk GmbHCheckmkCWE-79Fix stored XSS in global settings change log
CVE-2026-95494.84.1Checkmk GmbHCheckmkCWE-79Fix XSS in service discovery active check output
CVE-2026-88338.53.9Checkmk GmbHCheckmkCWE-79XSS in urls
CVE-2026-462888.43.8LinuxLinuxCWE-416of: unittest: fix use-after-free in of_unittest_changeset()
CVE-2026-462817.83.9LinuxLinuxCWE-787vmalloc: fix buffer overflow in vrealloc_node_align()
CVE-2026-462747.83.7LinuxLinuxCWE-416io-wq: check that the predecessor is hashed in io_wq_remove_pending()
CVE-2026-115695.43.7Red HatRed Hat Quay 3CWE-79Quay: quay: stored xss via filedrop svg upload
CVE-2026-71868.53.5Checkmk GmbHCheckmkCWE-79Fix stored XSS in URL dashboard widget via dangerous URI schemes
CVE-2026-114752.13.3Kushan2kstudent-management-systemCWE-74Kushan2k student-management-system Certificate Verification Endpoint GradeCon…
CVE-2026-462797.82.8LinuxLinuxCWE-415mm/alloc_tag: clear codetag for pages allocated before page_ext initialization
CVE-2026-462807.82.7LinuxLinuxCWE-416lib: test_hmm: evict device pages on file close to avoid use-after-free
CVE-2026-462857.82.7LinuxLinuxCWE-416mtd: docg3: fix use-after-free in docg3_release()
CVE-2026-462937.12.7LinuxLinuxCWE-125clk: microchip: mpfs-ccc: fix out of bounds access during output registration
CVE-2026-463097.02.6LinuxLinuxCWE-401drm/xe/uapi: Reject coh_none PAT index for CPU cached memory in madvise
CVE-2026-462765.52.4LinuxLinuxdrm/amdgpu: fix zero-size GDS range init on RDNA4
CVE-2026-462915.52.4LinuxLinuxcrypto: caam - guard HMAC key hex dumps in hash_digest_key
CVE-2026-462925.52.5LinuxLinuxCWE-772pmdomain: core: Fix detach procedure for virtual devices in genpd
CVE-2026-462825.52.4LinuxLinuxCWE-476iio: frequency: admv1013: fix NULL pointer dereference on str
CVE-2026-462835.52.4LinuxLinuxtpm: Use kfree_sensitive() to free auth session in tpm_dev_release()
CVE-2026-462865.52.4LinuxLinuxleds: qcom-lpg: Check for array overflow when selecting the high resolution
CVE-2026-462875.52.4LinuxLinuxCWE-617net: txgbe: fix RTNL assertion warning when remove module
CVE-2026-462845.52.2LinuxLinuxCWE-476mm/hugetlb: fix early boot crash on parameters without '=' separator
CVE-2026-462905.52.2LinuxLinuxx86/efi: Fix graceful fault handling after FPU softirq changes
CVE-2026-462777.82.2LinuxLinuxmm/zone_device: do not touch device folio after calling ->folio_free()
CVE-2026-463017.81.9LinuxLinuxCWE-416spi: topcliff-pch: fix use-after-free on unbind
CVE-2026-341947.11.9Imagination TechnologiesGraphics DDKCWE-468GPU DDK - UAF read and/or write to arbitrary physical pages in DevmemIntChang…
CVE-2026-463087.81.8LinuxLinuxCWE-416pmdomain: mediatek: fix use-after-free in scpsys_get_bus_protection_legacy()
CVE-2026-463145.51.8LinuxLinuxCWE-835drm/v3d: Reject empty multisync extension to prevent infinite loop
CVE-2026-462965.51.7LinuxLinuxCWE-476spi: s3c64xx: fix NULL-deref on driver unbind
CVE-2026-463125.51.7LinuxLinuxmedia: videobuf2: Set vma_flags in vb2_dma_sg_mmap
CVE-2026-463135.51.7LinuxLinuxCWE-476media: intel/ipu6: fix error pointer dereference
CVE-2026-114781.91.7kokketiny-regex-cCWE-400kokke tiny-regex-c Pattern re.c matchstar redos
CVE-2026-463117.81.6LinuxLinuxdrm/amdgpu/userq: fix access to stale wptr mapping
CVE-2025-713155.51.6LinuxLinuxdrm/vkms: Convert to DRM's vblank timer
CVE-2026-462955.51.6LinuxLinuxKVM: x86: Do IRR scan in __kvm_apic_update_irr even if PIR is empty
CVE-2026-462975.51.6LinuxLinuxnet: libwx: use request_irq for VF misc interrupt
CVE-2026-463105.51.6LinuxLinuxCWE-476media: renesas: vsp1: Fix NULL pointer deref on module unload
CVE-2026-462785.51.3LinuxLinuxCWE-476drm/imagination: Fix segfault when updating ftrace mask
CVE-2026-455815.51.3hyperledgerfabric-chaincode-javaCWE-532fabric-chaincode-java: TLS Private Key Password Disclosed in INFO Startup Log…
CVE-2026-463025.51.0LinuxLinuxselinux: allow multiple opens of /sys/fs/selinux/policy
CVE-2026-463055.51.0LinuxLinuxCWE-476staging: rtl8723bs: os_dep: avoid NULL pointer dereference in rtw_cbuf_alloc
CVE-2026-462997.00.6LinuxLinuxCWE-667hfsplus: fix held lock freed on hfsplus_fill_super()
CVE-2026-114811.10.3yoanbernabeugrepaiCWE-327yoanbernabeu grepai Postgres Embedding Cache chunker.go PostgresStore.LookupB…
CVE-2026-462984.70.1LinuxLinuxCWE-362pseries/papr-hvpipe: Fix race with interrupt handler

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-06-08 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.