AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N H H 9.1 .0267 84.5 —
AFFECTED Product Versions Fixed Avada (Fusion) Builder unspecified —
TIMELINE May 15 Reserved by CNA Jun 19 Published (CNA: Wordfence)
194 CVEs published June 19, 2026: 20 critical, 115 high, 51 medium, 8 low; 0 in KEV; 16 with a public exploit reference; 0 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 169 in the results table.
| MTD | YTD | 2025 same span | 2025 full | |
|---|---|---|---|---|
| CVEs published | 5062 | 9434 | 1165 | 2563 |
| KEV catalog size | 1670 | |||
437 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| linux | 100 | 1066 | 84 | 667 | 312 | 1 | 27 | 3 | 0.3 | 7.8 | .0013 | -116 |
| 684 | 858 | 83 | 450 | 293 | 29 | 74 | 6 | 0.7 | 8.1 | .0023 | +684 | |
| microsoft | 220 | 710 | 55 | 474 | 160 | 4 | 378 | 27 | 3.8 | 7.8 | .0044 | +76 |
| red hat | 75 | 139 | 8 | 63 | 62 | 6 | 4 | 0 | 0.0 | 7.0 | .0028 | +70 |
| apple | 14 | 61 | 0 | 16 | 36 | 2 | 93 | 7 | 11.5 | 5.7 | .0023 | +1 |
| canonical | 1 | 15 | 0 | 4 | 6 | 5 | 0 | 0 | 0.0 | 5.5 | .0009 | +1 |
| freebsd | 0 | 7 | 0 | 5 | 2 | 0 | 0 | 0 | 0.0 | 7.8 | .0020 | 0 |
| suse | 4 | 6 | 1 | 4 | 1 | 0 | 0 | 0 | 0.0 | 8.6 | .0029 | +4 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cisco | 9 | 22 | 4 | 3 | 8 | 0 | 96 | 10 | 45.5 | 6.8 | .0257 | +8 |
| netgear | 17 | 17 | 0 | 0 | 16 | 1 | 8 | 0 | 0.0 | 4.3 | .0024 | +17 |
| palo alto networks | 9 | 11 | 0 | 1 | 7 | 1 | 14 | 2 | 18.2 | 4.8 | .0022 | +8 |
| f5 | 6 | 9 | 4 | 3 | 1 | 0 | 7 | 1 | 11.1 | 8.9 | .0221 | +5 |
| ivanti | 4 | 9 | 2 | 3 | 0 | 0 | 33 | 5 | 55.6 | 8.8 | .5187 | +3 |
| checkpoint | 3 | 9 | 1 | 5 | 3 | 0 | 3 | 1 | 11.1 | 7.5 | .0410 | +3 |
| ubiquiti | 5 | 8 | 4 | 4 | 0 | 0 | 4 | 0 | 0.0 | 8.9 | .0052 | +5 |
| fortinet | 2 | 8 | 1 | 3 | 2 | 0 | 28 | 3 | 37.5 | 7.3 | .0066 | +1 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| apache | 86 | 118 | 18 | 42 | 50 | 7 | 40 | 1 | 0.8 | 7.0 | .0048 | +82 |
| mozilla | 49 | 55 | 11 | 18 | 26 | 0 | 13 | 0 | 0.0 | 7.3 | .0026 | +44 |
| gitlab | 11 | 20 | 0 | 4 | 12 | 2 | 4 | 2 | 10.0 | 4.8 | .0024 | +11 |
| docker | 4 | 7 | 0 | 5 | 2 | 0 | 1 | 0 | 0.0 | 8.2 | .0016 | +4 |
| drupal | 0 | 5 | 1 | 1 | 3 | 0 | 5 | 1 | 20.0 | 5.1 | .0026 | 0 |
| github | 0 | 2 | 1 | 1 | 0 | 0 | 0 | 0 | 0.0 | 8.1 | .0347 | 0 |
| jenkins | 0 | 0 | 0 | 0 | 0 | 0 | 6 | 0 | — | — | — | 0 |
| joomla | 0 | 0 | 0 | 0 | 0 | 0 | 1 | 0 | — | — | — | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| oracle | 243 | 270 | 131 | 116 | 18 | 4 | 40 | 2 | 0.7 | 8.8 | .0040 | +243 |
| adobe | 129 | 133 | 4 | 49 | 75 | 2 | 75 | 3 | 2.3 | 5.5 | .0021 | +129 |
| ibm | 11 | 60 | 13 | 29 | 18 | 0 | 7 | 0 | 0.0 | 7.5 | .0028 | +11 |
| progress | 5 | 9 | 1 | 7 | 1 | 0 | 9 | 0 | 0.0 | 7.5 | .0036 | +5 |
| solarwinds | 3 | 6 | 1 | 2 | 1 | 0 | 11 | 4 | 66.7 | 7.5 | .3995 | +3 |
| veeam | 1 | 4 | 2 | 2 | 0 | 0 | 4 | 0 | 0.0 | 9.0 | .0046 | +1 |
| zohocorp | 0 | 2 | 0 | 1 | 1 | 0 | 0 | 0 | 0.0 | 7.1 | .0104 | 0 |
| atlassian | 0 | 0 | 0 | 0 | 0 | 0 | 13 | 0 | — | — | — | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| synology | 5 | 23 | 2 | 5 | 13 | 3 | 0 | 0 | 0.0 | 5.6 | .0025 | +5 |
| d-link | 9 | 12 | 0 | 4 | 2 | 5 | 26 | 1 | 8.3 | 5.5 | .0058 | +9 |
| siemens | 7 | 8 | 0 | 4 | 4 | 0 | 1 | 0 | 0.0 | 7.5 | .0020 | +6 |
| rockwell automation | 7 | 7 | 1 | 5 | 1 | 0 | 0 | 0 | 0.0 | 8.7 | .0030 | +7 |
| abb | 5 | 5 | 0 | 4 | 1 | 0 | 0 | 0 | 0.0 | 7.2 | .0018 | +5 |
| moxa | 5 | 5 | 0 | 3 | 2 | 0 | 0 | 0 | 0.0 | 7.0 | .0029 | +5 |
| dahua | 3 | 3 | 0 | 1 | 1 | 1 | 2 | 0 | 0.0 | 6.9 | .0036 | +3 |
| mitsubishi electric | 3 | 3 | 0 | 3 | 0 | 0 | 0 | 0 | 0.0 | 8.7 | .0064 | +3 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| spring | 71 | 72 | 2 | 30 | 39 | 1 | 0 | 0 | 0.0 | 6.5 | .0023 | +71 |
| openclaw | 61 | 67 | 0 | 35 | 22 | 10 | 0 | 0 | 0.0 | 7.0 | .0021 | +61 |
| sourcecodester | 37 | 59 | 0 | 0 | 25 | 34 | 0 | 0 | 0.0 | 2.1 | .0026 | +37 |
| themerex | 58 | 58 | 5 | 53 | 0 | 0 | 0 | 0 | 0.0 | 8.1 | .0043 | +58 |
| edimax | 0 | 51 | 0 | 32 | 0 | 19 | 1 | 0 | 0.0 | 7.4 | .0059 | 0 |
| concrete cms | 2 | 46 | 1 | 11 | 13 | 21 | 0 | 0 | 0.0 | 6.2 | .0015 | +2 |
| dell | 27 | 45 | 0 | 21 | 23 | 0 | 2 | 1 | 2.2 | 6.7 | .0015 | +27 |
| open ises | 0 | 44 | 2 | 21 | 21 | 0 | 0 | 0 | 0.0 | 7.1 | .0021 | 0 |
| CVE | EPSS | %ile | CVSS |
|---|---|---|---|
| CVE-2026-10520 | .9990 | 100.0 | 10.0 |
| CVE-2026-20253 | .9694 | 99.9 | 9.8 |
| CVE-2026-35273 | .9547 | 99.9 | 9.8 |
| CVE-2026-0257 | .9391 | 99.8 | — |
| CVE-2026-9082 | .8832 | 99.8 | 9.8 |
| CVE-2025-34291 | .8384 | 99.7 | — |
| CVE-2026-42271 | .8301 | 99.6 | — |
| CVE-2026-50751 | .8255 | 99.6 | 9.3 |
| CVE-2026-48907 | .6883 | 99.3 | 10.0 |
| CVE-2026-49160 | .5383 | 98.9 | 7.5 |
| CVE | CVSS | EPSS | Note |
|---|---|---|---|
| CVE-2026-10520 | 10.0 | .9990 | KEV |
| CVE-2026-48907 | 10.0 | .6883 | KEV |
| CVE-2026-48172 | 10.0 | .1891 | KEV |
| CVE-2026-49777 | 10.0 | .0166 | |
| CVE-2026-8054 | 10.0 | .0158 | |
| CVE-2026-45087 | 10.0 | .0147 | |
| CVE-2026-49199 | 10.0 | .0134 | |
| CVE-2026-11429 | 10.0 | .0115 | |
| CVE-2026-49257 | 10.0 | .0093 | |
| CVE-2026-47140 | 10.0 | .0082 |
| Vendor | CVEs |
|---|---|
| 836 | |
| linux | 524 |
| oracle | 268 |
| microsoft | 238 |
| adobe | 129 |
| red hat | 107 |
| apache | 103 |
| spring | 72 |
| openclaw | 67 |
| ibm | 60 |
| Vendor | KEV |
|---|---|
| microsoft | 27 |
| cisco | 10 |
| apple | 7 |
| 6 | |
| ivanti | 5 |
| solarwinds | 4 |
| synacor | 4 |
| adobe | 3 |
| fortinet | 3 |
| linux | 3 |
| Ecosystem | Advisories |
|---|---|
| Maven | 42 |
| Packagist | 22 |
| PyPI | 11 |
| npm | 4 |
| crates.io | 2 |
| CVE | Vendor | Days |
|---|---|---|
| CVE-2022-0492 | Linux | 0 |
| CVE-2024-21182 | Oracle | 0 |
| CVE-2025-34291 | Langflow | 0 |
| CVE-2025-48595 | 0 | |
| CVE-2026-0257 | Palo Alto Networks | 0 |
| CVE-2026-10520 | ivanti | 0 |
| CVE-2026-11645 | 0 | |
| CVE-2026-20245 | Cisco | 0 |
| CVE-2026-20253 | Splunk | 0 |
| CVE-2026-20262 | Cisco | 0 |
| CVE | Vendor | Due | Days over |
|---|---|---|---|
| CVE-2021-27104 | Accellion | 2021-11-17 | 1675 |
| CVE-2021-27102 | Accellion | 2021-11-17 | 1675 |
| CVE-2021-27101 | Accellion | 2021-11-17 | 1675 |
| CVE-2021-27103 | Accellion | 2021-11-17 | 1675 |
| CVE-2021-21017 | Adobe | 2021-11-17 | 1675 |
| CVE-2021-28550 | Adobe | 2021-11-17 | 1675 |
| CVE-2021-42013 | Apache | 2021-11-17 | 1675 |
| CVE-2021-41773 | Apache | 2021-11-17 | 1675 |
| CVE-2021-30858 | Apple | 2021-11-17 | 1675 |
| CVE-2021-30860 | Apple | 2021-11-17 | 1675 |
EXPLOIT PUBLISHED — CVE-2025-62821. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-48772 (sysown proxysql). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-48773 (sysown proxysql). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-48774 (sysown proxysql). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-49293 (sunnyadn js-toml). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-49295 (strukturag libde265). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-49346 (strukturag libde265). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-50559 (quarkusio quarkus). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-51843. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-51844. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-51845. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-51846. Public exploit reference added.
DUE DATE PASSED — CVE-2026-54420 (LiteSpeed Technologies cPanel Plugin). CISA remediation deadline was June 18, 2026; still in catalog.
194 CVEs published. 25 box scores, 169 table rows — nothing truncated.
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N H H 9.1 .0267 84.5 —
AFFECTED Product Versions Fixed Avada (Fusion) Builder unspecified —
TIMELINE May 15 Reserved by CNA Jun 19 Published (CNA: Wordfence)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N H N H H H 8.6 .0132 68.4 —
AFFECTED Product Versions Fixed Bondix Server unspecified 1.25.7.6
TIMELINE Jun 12 Reserved by CNA Jun 19 Published (CNA: NCSC.ch)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N P H H H 9.4 .0128 67.6 —
AFFECTED Product Versions Fixed Rancher 2.14.0 – —
TIMELINE May 8 Reserved by CNA Jun 19 Published (CNA: suse)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N L N N 5.5 .0118 65.0 —
AFFECTED Product Versions Fixed kiota-typescript >= 1.0.0-preview.97, < 1.0.0-preview.102 – —
TIMELINE May 29 Reserved by CNA Jun 19 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H N H 9.1 .0105 61.5 —
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Oct 23 Reserved by CNA Jun 19 Public exploit reference published Jun 19 Published (CNA: mitre)
AV AC PR UI S C I A CVSS EPSS %ile KEV N H N N U H H H 8.1 .0095 58.3 —
AFFECTED Product Versions Fixed php-weasyprint < 2.6.0 – —
TIMELINE May 28 Reserved by CNA Jun 19 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0094 58.1 —
AFFECTED Product Versions Fixed BetterDocs Pro unspecified —
TIMELINE Apr 30 Reserved by CNA Jun 19 Published (CNA: Wordfence)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N H H H 8.7 .0089 56.5 —
AFFECTED Product Versions Fixed vBizz 1.0.7 – —
TIMELINE Jun 19 Reserved by CNA Jun 19 Published (CNA: VulnCheck)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N H N H H H 7.6 .0083 54.6 —
AFFECTED Product Versions Fixed slopsmith < 0.2.9-alpha.5 – —
TIMELINE May 28 Reserved by CNA Jun 19 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N R U H H H 8.8 .0076 52.2 —
AFFECTED Product Versions Fixed Microsoft 365 Copilot - – —
TIMELINE May 19 Reserved by CNA Jun 19 Published (CNA: microsoft)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0069 49.9 —
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Jun 8 Reserved by CNA Jun 19 Public exploit reference published Jun 19 Published (CNA: mitre)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N H H H 7.4 .0069 49.8 —
AFFECTED Product Versions Fixed gin-vue-admin = 2.9.1 – —
TIMELINE May 22 Reserved by CNA Jun 19 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N C H H N 9.6 .0069 49.8 —
AFFECTED Product Versions Fixed Microsoft Exchange Online - – —
TIMELINE May 21 Reserved by CNA Jun 19 Published (CNA: microsoft)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0066 48.8 —
AFFECTED Product Versions Fixed FileRise unspecified —
TIMELINE Jun 13 Reserved by CNA Jun 19 Published (CNA: TuranSec)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N L N 5.3 .0064 47.9 —
AFFECTED Product Versions Fixed STRABL – A checkout solution unspecified —
TIMELINE Mar 6 Reserved by CNA Jun 19 Published (CNA: Wordfence)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N N N H 8.7 .0064 47.6 —
AFFECTED Product Versions Fixed Mitsubishi Electric MELSEC iQ-F Series FX5-EIP EtherNet/IP Module FX5-EIP versions 1.000 and prior – —
TIMELINE May 18 Reserved by CNA Jun 19 Published (CNA: Mitsubishi)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N N N H 8.7 .0064 47.6 —
AFFECTED Product Versions Fixed Mitsubishi Electric MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP All versions – —
TIMELINE May 18 Reserved by CNA Jun 19 Published (CNA: Mitsubishi)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N L N N 5.3 .0063 47.5 —
AFFECTED Product Versions Fixed mercator < 2025.05.19 – —
TIMELINE May 29 Reserved by CNA Jun 19 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0063 47.1 —
AFFECTED Product Versions Fixed Branda – White Label & Branding, Free Login Page Customizer unspecified —
TIMELINE Jun 8 Reserved by CNA Jun 19 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0060 45.9 —
AFFECTED Product Versions Fixed Hub unspecified —
TIMELINE Jun 4 Reserved by CNA Jun 19 Published (CNA: JetBrains)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N U H N N 4.9 .0059 45.4 —
AFFECTED Product Versions Fixed Woosa – Marktplaats for WooCommerce unspecified —
TIMELINE Apr 30 Reserved by CNA Jun 19 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U L N N 5.3 .0058 44.9 —
AFFECTED Product Versions Fixed WP DSGVO Tools (GDPR) unspecified —
TIMELINE May 28 Reserved by CNA Jun 19 Published (CNA: Wordfence)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H N 9.3 .0057 44.7 —
AFFECTED Product Versions Fixed capgo unspecified 12.128.2
TIMELINE Jun 18 Reserved by CNA Jun 19 Published (CNA: VulnCheck)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0057 44.6 —
AFFECTED Product Versions Fixed Hub unspecified —
TIMELINE Jun 19 Reserved by CNA Jun 19 Published (CNA: JetBrains)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H L N 8.8 .0056 44.2 —
AFFECTED Product Versions Fixed line-desktop-mcp < 1.1.2 – —
TIMELINE May 29 Reserved by CNA Jun 19 Published (CNA: GitHub_M)
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-45480 | 10.0 | 44.1 | Microsoft | Azure Active Directory | CWE-287 | Azure Active Directory Elevation of Privilege Vulnerability |
| CVE-2026-48137 | 9.3 | 44.0 | NI | grpc-device | CWE-822 | Untrusted pointer dereference in NI grpc-device sideband streaming API |
| CVE-2019-25760 | 6.9 | 43.0 | Joomtech | Easy Shop | CWE-98 | Joomla! Component Easy Shop 1.2.3 Local File Inclusion |
| CVE-2026-56080 | 6.9 | 43.0 | Cap-go | capgo | CWE-287 | Cap-go - Authentication Logic Flaw in Enforce Password Policy |
| CVE-2019-25762 | 8.7 | 42.9 | Joomboost | JoomProject | CWE-359 | Joomla! Component JoomProject 1.1.3.2 Information Disclosure |
| CVE-2023-54357 | 8.7 | 42.9 | Artio | Joomla! com_booking component | CWE-203 | Joomla com_booking 2.4.9 Information Disclosure via Account Enumeration |
| CVE-2026-32208 | 5.4 | 42.0 | Microsoft | Microsoft Edge (Chromium-based) | CWE-79 | Microsoft Entra ID Spoofing Vulnerability |
| CVE-2026-56141 | 9.8 | 41.9 | JetBrains | Hub | CWE-338 | In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.14… |
| CVE-2026-50519 | 7.5 | 41.4 | Microsoft | GitHub Copilot Chat | CWE-1188 | Microsoft Visual Studio Code CoPilot Chat Security Feature Bypass Vulnerability |
| CVE-2026-56138 | 5.3 | 41.2 | ail-project | ail-framework | CWE-22 | Authenticated Path Traversal in AIL framework /objects/item/diff Allows Readi… |
| CVE-2026-12644 | 5.5 | 41.0 | n/a | ts-deepmerge | CWE-248 | Versions of the package ts-deepmerge before 8.0.0 are vulnerable to Uncaught … |
| CVE-2026-48584 | 8.8 | 40.6 | Microsoft | Azure Synapse | CWE-250 | Microsoft Azure Synapse Elevation of Privilege Vulnerability |
| CVE-2026-11989 | 6.5 | 40.3 | bitpressadmin | Bit integrations – Form Integration, Webhook, Spreadsheets, CRM, LMS & Email Automation | CWE-918 | Bit integrations <= 2.8.7 - Unauthenticated Server-Side Request Forgery via F… |
| CVE-2026-48138 | 8.7 | 39.8 | NI | grpc-device | CWE-125 | Out-of-bounds read vulnerability in the NI grpc-device streaming API |
| CVE-2026-48139 | 8.7 | 39.8 | NI | grpc-device | CWE-476 | NULL pointer dereference vulnerability in NI grpc-device data moniker service |
| CVE-2026-49291 | 8.1 | 39.8 | doobidoo | mcp-memory-service | CWE-862 | mcp-memory-service: OAuth read-only clients can write and delete memories thr… |
| CVE-2026-48773 | 9.8 | 38.4 | sysown | proxysql | CWE-787 | ProxySQL pre-auth heap overflow in MySQL and PostgreSQL first-packet handling |
| CVE-2026-50559 | 7.5 | 38.2 | quarkusio | quarkus | CWE-287 | Authentication/Authorization Bypass via Advanced Path Normalization Vulnerabi… |
| CVE-2025-7737 | 8.6 | 38.0 | Hitachi | Hitachi Virtual Storage Platform E990, E1090, E1090H | CWE-770 | DoS Vulnerability in 10G iSCSI Interface of Hitachi Virtual Storage Platform |
| CVE-2026-11576 | 7.5 | 38.0 | Eclipse Foundation | Eclipse ThreadX - NetX Duo | CWE-459 | The security fix for CVE-2025-0728 in eclipse-threadx NetX Duo refactors erro… |
| CVE-2026-49287 | 7.4 | 37.9 | statamic | cms | CWE-470 | Statamic CMS vulnerable to unsafe method invocation via collection sorting al… |
| CVE-2026-6798 | 5.3 | 37.7 | 2download | 2Download Connector for 2DL Hosted Checkout | CWE-862 | 2Download Connector for 2DL Hosted Checkout <= 0.1.5 - Missing Authorization … |
| CVE-2026-47203 | 2.9 | 37.5 | authelia | authelia | CWE-178 | Authelia Missing Username Canonicalization in Basic Auth (LDAP) |
| CVE-2026-56211 | 7.1 | 37.5 | Red Hat | Red Hat Enterprise Linux AI 3.3 for RHEL 9 | CWE-787 | Libaom: libaom: remote code execution via svc layer context handling with att… |
| CVE-2017-20253 | 8.8 | 37.3 | Gegabyte | My Projects | CWE-89 | Joomla! Component My Projects 2.0 SQL Injection |
| CVE-2017-20254 | 8.8 | 37.3 | Gegabyte | User Bench | CWE-89 | Joomla! Component User Bench 1.0 SQL Injection via userid |
| CVE-2017-20255 | 8.8 | 37.3 | Joombooking | JB Visa | CWE-89 | Joomla! Component JB Visa 1.0 SQL Injection via visatype |
| CVE-2017-20256 | 8.8 | 37.3 | Joomplace | Survey Force Deluxe | CWE-89 | Joomla Survey Force Deluxe 3.2.4 SQL Injection via invite Parameter |
| CVE-2017-20257 | 8.8 | 37.3 | Joomplace | Quiz Deluxe | CWE-89 | Joomla! Component Quiz Deluxe 3.7.4 SQL Injection |
| CVE-2017-20258 | 8.8 | 37.3 | Extro | RPC | CWE-89 | Joomla! Component RPC Responsive Portfolio 1.6.1 SQL Injection |
| CVE-2017-20259 | 8.8 | 37.3 | Joomlashack | OSDownloads | CWE-89 | Joomla OSDownloads 1.7.4 SQL Injection via item view |
| CVE-2017-20260 | 8.8 | 37.3 | Weborange | Price Alert | CWE-89 | Joomla! Component Price Alert 3.0.2 SQL Injection |
| CVE-2017-20261 | 8.8 | 37.3 | Weborange | Bargain Product VM3 | CWE-89 | Joomla! Component Bargain Product VM3 1.0 SQL Injection |
| CVE-2017-20262 | 8.8 | 37.3 | Webkul | Ajax Quiz | CWE-89 | Joomla! Component Ajax Quiz 1.8 SQL Injection |
| CVE-2017-20263 | 8.8 | 37.3 | Focalpointx | FocalPoint Pro / Free | CWE-89 | Joomla! FocalPoint Pro Free 1.2.3 SQL Injection via location |
| CVE-2017-20266 | 8.8 | 37.3 | Joomshaper | SP Movie Database | CWE-89 | Joomla SP Movie Database 1.3 SQL Injection via searchword |
| CVE-2017-20267 | 8.8 | 37.3 | Joomlathat | Calendar Planner | CWE-89 | Joomla! Component Calendar Planner 1.0.1 SQL Injection |
| CVE-2017-20268 | 8.8 | 37.3 | Zcontent | Zap Calendar Lite | CWE-89 | Joomla! Component Zap Calendar Lite 4.3.4 SQL Injection |
| CVE-2017-20269 | 8.8 | 37.3 | Terrywcarter | KissGallery | CWE-89 | Joomla! Component KissGallery 1.0.0 SQL Injection |
| CVE-2017-20270 | 8.8 | 37.3 | Raindropsinfotech | Twitch Tv | CWE-89 | Joomla! Component Twitch Tv 1.1 SQL Injection |
| CVE-2019-25748 | 8.8 | 37.3 | Cmsjunkie | JHotelReservation | CWE-89 | Joomla JHotelReservation 6.0.7 SQL Injection via search-hotels |
| CVE-2019-25750 | 8.8 | 37.3 | Cmsjunkie | MultipleHotelReservation | CWE-89 | Joomla J-MultipleHotelReservation 6.0.7 SQL Injection |
| CVE-2019-25751 | 8.8 | 37.3 | Cmsjunkie | ClassifiedsManager | CWE-89 | Joomla J-ClassifiedsManager 3.0.5 SQL Injection |
| CVE-2019-25752 | 8.8 | 37.3 | Cmsjunkie | J-BusinessDirectory | CWE-89 | Joomla! Component J-BusinessDirectory 4.9.7 SQL Injection |
| CVE-2019-25753 | 8.8 | 37.3 | Wdmtech | VMap | CWE-89 | Joomla! Component VMap 1.9.6 SQL Injection via loadmarker |
| CVE-2019-25754 | 8.8 | 37.3 | Wdmtech | vRestaurant | CWE-89 | Joomla vRestaurant 1.9.4 SQL Injection via menu-listing-layout |
| CVE-2019-25755 | 8.8 | 37.3 | Wdmtech | vReview | CWE-89 | Joomla vReview 1.9.11 SQL Injection via editReview |
| CVE-2019-25756 | 8.8 | 37.3 | Wdmtech | vAccount | CWE-89 | Joomla! Component vAccount 2.0.2 SQL Injection via vaccount-dashboard |
| CVE-2026-48140 | 7.1 | 37.0 | NI | grpc-device | CWE-704 | Unchecked enum cast vulnerability in NI grpc-device in BeginSidebandStream |
| CVE-2026-48129 | 6.5 | 37.0 | kestra-io | kestra | CWE-22 | Kestra task inputFiles accepts traversal filenames for worker file writes |
| CVE-2026-9013 | 4.3 | 36.8 | rocklobsterinc | Bogo | CWE-862 | Bogo <= 3.9.1 - Missing Authorization to Authenticated (Subscriber+) Sensitiv… |
| CVE-2026-51843 | 9.8 | 36.5 | n/a | n/a | CWE-121 | Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the … |
| CVE-2026-51844 | 9.8 | 36.5 | n/a | n/a | CWE-121 | Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the … |
| CVE-2026-51845 | 9.8 | 36.5 | n/a | n/a | CWE-121 | Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the … |
| CVE-2026-9142 | 9.3 | 36.1 | NI | grpc-device | CWE-306 | Insecure Default Credentials vulnerability in NI grpc-device when TLS configu… |
| CVE-2017-20252 | 8.8 | 36.2 | nextgeneditor | NextGen Editor | CWE-89 | Joomla NextGen Editor 2.1.0 SQL Injection via plname Parameter |
| CVE-2017-20281 | 8.8 | 36.2 | Joomlaboat | Extra Search | CWE-89 | Joomla! Component Extra Search 2.2.8 SQL Injection |
| CVE-2017-20282 | 8.8 | 36.2 | Soft-Php | jCart for OpenCart | CWE-89 | Joomla! Component jCart for OpenCart 2.0 SQL Injection |
| CVE-2026-47341 | 6.3 | 35.9 | Apache Software Foundation | Apache APISIX | CWE-294 | Apache APISIX: Session replay issue in hmac-auth |
| CVE-2026-49340 | 8.1 | 35.7 | sentriz | gonic | CWE-22 | gonic has arbitrary file write in createPlaylist: any authenticated user can … |
| CVE-2026-39999 | 7.0 | 35.4 | Apache Software Foundation | Apache APISIX | CWE-290 | Apache APISIX: JWT Algorithm Confusion allows authentication bypass |
| CVE-2026-49359 | 6.5 | 35.3 | pontedilana | php-weasyprint | CWE-918 | PhpWeasyPrint vulnerable to SSRF and local file disclosure via the attachment… |
| CVE-2017-20277 | 8.8 | 34.4 | Joomboost | Joomla JoomRecipe | CWE-89 | Joomla JoomRecipe 1.0.4 Component Blind SQL Injection via search_author |
| CVE-2026-27878 | 6.5 | 34.2 | Grafana | Enterprise Traces (GET) | CWE-400 | Tempo TraceQL query with exemplar hint could result in unbounded memory usage |
| CVE-2026-49293 | 7.5 | 34.1 | sunnyadn | js-toml | CWE-400 | CPU exhaustion via O(n^2) BigInt construction on radix-prefixed integer literals |
| CVE-2026-56079 | 7.1 | 34.1 | Capgo | Capgo | CWE-200 | Capgo - Cross-Tenant Authorization Bypass via PostgREST Webhook Access |
| CVE-2026-48895 | 2.1 | 34.1 | Apache Software Foundation | Apache APISIX | CWE-601 | Apache APISIX: Cas-auth Host header influence on CAS service URL |
| CVE-2017-20264 | 7.1 | 33.9 | Pulseextensions | Sponsor Wall | CWE-89 | Joomla! Component Sponsor Wall 8.0 SQL Injection |
| CVE-2017-20265 | 7.1 | 33.9 | Pulseextensions | Flip Wall | CWE-89 | Joomla! Component Flip Wall 8.0 SQL Injection |
| CVE-2026-39998 | 5.8 | 33.5 | Apache Software Foundation | Apache APISIX | CWE-20 | Apache APISIX: Identity Injection via forward-auth Plugin Missing Header Cleanup |
| CVE-2026-49342 | 5.3 | 33.5 | lsegal | yard | CWE-22 | YARD static cache reads raw traversal paths before router sanitization |
| CVE-2026-44915 | 2.1 | 33.3 | Apache Software Foundation | Apache APISIX | CWE-601 | Apache APISIX: Cas-auth plugin open redirect via unsanitized cookie value |
| CVE-2026-42895 | 7.5 | 33.1 | Microsoft | Microsoft 365 Copilot | CWE-77 | Microsoft Copilot Tampering Vulnerability |
| CVE-2017-20271 | 8.8 | 32.6 | Nordmograph | StreetGuessr Game | CWE-89 | Joomla StreetGuessr Game 1.1.8 SQL Injection via catid |
| CVE-2017-20272 | 8.8 | 32.6 | Faboba | Ultimate Property Listing | CWE-89 | Joomla Ultimate Property Listing 1.0.2 SQL Injection via sf_selectuser_id |
| CVE-2017-20273 | 8.8 | 32.6 | Joomlashowroom | Event Registration Pro Calendar | CWE-89 | Joomla Event Registration Pro Calendar 4.1.3 SQL Injection |
| CVE-2017-20274 | 8.8 | 32.6 | King-products | LMS King Professional | CWE-89 | Joomla LMS King Professional 3.2.4.0 SQL Injection via learningpath |
| CVE-2017-20275 | 8.8 | 32.6 | Henryschorradt | Bridge | CWE-89 | Joomla! Component PHP-Bridge 1.2.3 SQL Injection via id Parameter |
| CVE-2017-20276 | 8.8 | 32.6 | Simbunch | SIMGenealogy | CWE-89 | Joomla! Component SIMGenealogy 2.1.5 SQL Injection |
| CVE-2017-20278 | 8.8 | 32.6 | Joomboost | JoomRecipe | CWE-89 | Joomla JoomRecipe 1.0.3 SQL Injection via category parameter |
| CVE-2017-20279 | 8.8 | 32.6 | Extensions | Joomla Payage | CWE-89 | Joomla Payage 2.05 SQL Injection via aid Parameter |
| CVE-2017-20280 | 8.8 | 32.6 | Myportfolio | Myportfolio | CWE-89 | Joomla Component Myportfolio 3.0.2 SQL Injection via pid Parameter |
| CVE-2026-49339 | 7.1 | 32.0 | sentriz | gonic | CWE-22 | Path traversal in getPlaylist/deletePlaylist bypasses ownership check: any au… |
| CVE-2026-8118 | 6.5 | 31.7 | wproyal | Royal Addons for Elementor – Addons and Templates Kit for Elementor | CWE-73 | Royal Addons for Elementor – Addons and Templates Kit for Elementor 1.7.1058 … |
| CVE-2026-49344 | 7.1 | 31.3 | sourcentis | mercator | CWE-359 | Mercator has a Personal Identifiable Information Leak from Query Executor fea… |
| CVE-2026-56082 | 8.7 | 30.3 | Cap-go | capgo | CWE-284 | Capgo - Unauthenticated Cross-Tenant Billing Log Tampering via public.record_… |
| CVE-2026-10779 | 4.3 | 30.2 | techlabpro1 | Classified Listing – AI-Powered Classified ads & Business Directory | CWE-862 | Classified Listing <= 5.4.2 - Missing Authorization to Authenticated (Subscri… |
| CVE-2019-25749 | 7.1 | 29.8 | Cmsjunkie | J-CruisePortal | CWE-89 | Joomla J-CruisePortal 6.0.4 SQL Injection via cruises |
| CVE-2019-25757 | 7.1 | 29.8 | Wdmtech | vWishlist | CWE-89 | Joomla vWishlist 1.0.1 SQL Injection via vproductid Parameter |
| CVE-2019-25761 | 7.1 | 29.8 | Joomboost | JoomCRM | CWE-89 | Joomla! Component JoomCRM 1.1.1 SQL Injection via deal_id |
| CVE-2026-48089 | 7.1 | 29.5 | l3montree-dev | devguard | CWE-285 | DevGuard has improper authorization on public assets |
| CVE-2026-49231 | 2.3 | 29.0 | Apache Software Foundation | Apache APISIX | CWE-290 | Apache APISIX: Identity spoofing issue in APISIX opa plugin |
| CVE-2026-4026 | 8.7 | 28.1 | Flexera | FlexNet Manager Suite | CWE-284 | FlexNet Manager Suite Privilege Escalation Vulnerability |
| CVE-2026-4027 | 7.1 | 28.1 | Flexera | FlexNet Manager Suite | CWE-284 | FlexNet Manager Suite Attachment File Disclosure |
| CVE-2026-12157 | 6.4 | 27.9 | wpdevteam | BetterDocs – AI Documentation, Knowledge Base, Docs, Wikis, FAQ with Chatbot | CWE-79 | BetterDocs <= 4.5.3 - Authenticated (Contributor+) Stored Cross-Site Scriptin… |
| CVE-2026-56208 | 7.6 | 27.6 | Red Hat | Red Hat Enterprise Linux 10.0 Extended Update Support | CWE-122 | Libaom: libaom: heap buffer overflow in av1 encoder first-pass stats buffer v… |
| CVE-2026-4328 | 6.4 | 27.2 | addonspress | Advanced Import | CWE-918 | Advanced Import: One-Click Demo Import for WordPress <= 1.4.6 - Authenticated… |
| CVE-2026-12238 | 5.3 | 27.2 | wpgmaps | WP Go Maps – Google Map, OpenStreetMap, Leaflet Map | CWE-862 | WP Go Maps <= 10.1.01 - Unauthenticated Arbitrary Record Creation |
| CVE-2026-9822 | 6.5 | 27.0 | Unknown | WP Hotel Booking | — | WP Hotel Booking < 2.3.1 - Subscriber+ Missing Authorization in Multiple AJAX… |
| CVE-2026-12430 | 4.4 | 26.4 | creativethemeshq | Blocksy Companion | CWE-79 | Blocksy Companion <= 2.1.45 - Authenticated (Editor+) Stored Cross-Site Scrip… |
| CVE-2026-1856 | 6.4 | 26.0 | creavi | Creavi Appointment Booking Calendar | CWE-79 | Appointment Booking Calendar <= 1.4.4 - Authenticated (Author+) Stored Cross-… |
| CVE-2026-56209 | 7.1 | 25.7 | Red Hat | Red Hat Enterprise Linux AI 3.3 for RHEL 9 | CWE-787 | Libaom: libaom: arbitrary address write via svc layer context oob and cyclic … |
| CVE-2026-12726 | 6.3 | 25.5 | Red Hat | Red Hat Ansible Automation Platform 2 | CWE-918 | Awx: automation-controller: awx: github webhook second-order ssrf via unvalid… |
| CVE-2026-49872 | 5.3 | 24.8 | Apache Software Foundation | Apache APISIX | CWE-287 | Apache APISIX: Improper authentication in cas-auth plugin |
| CVE-2026-11752 | 5.9 | 24.4 | LY Corporation | Armeria | — | A vulnerability has been identified in armeria-xds versions 1.38.0 through 1.… |
| CVE-2026-8296 | 5.6 | 24.4 | Octopus Deploy | Octopus Server | CWE-79 | In affected versions of Octopus Server with certain access levels it was poss… |
| CVE-2026-44046 | 2.3 | 24.1 | Apache Software Foundation | Apache APISIX | CWE-348 | Apache APISIX: wolf-rbac plugin Identity Spoofing |
| CVE-2026-10720 | 5.1 | 22.5 | Canonical | Microceph | CWE-23 | MicroCeph path traversal issue in the remote-import API |
| CVE-2026-56210 | 7.1 | 21.4 | Red Hat | Red Hat Enterprise Linux AI 3.3 for RHEL 9 | CWE-125 | Libaom: libaom: heap-buffer-overflow read via missing bounds check in ctrl_se… |
| CVE-2026-53915 | 8.8 | 21.3 | JetBrains | GoLand | CWE-73 | In JetBrains GoLand before 2026.1.3 remote code execution was possible via un… |
| CVE-2026-49338 | 7.1 | 21.4 | sentriz | gonic | CWE-285 | Subsonic API: any authenticated user can delete or read any other user's play… |
| CVE-2026-47339 | 5.3 | 21.0 | Apache Software Foundation | Apache APISIX | CWE-863 | Apache APISIX: authz-casdoor incorrect session sharing |
| CVE-2026-48794 | 1.3 | 20.8 | authelia | authelia | CWE-178 | Authelia has an Edge Case Access Control Rule Mismatch |
| CVE-2026-48774 | 7.5 | 19.8 | sysown | proxysql | CWE-20 | ProxySQL MCP run_sql_readonly executes side-effecting MySQL multi-statements … |
| CVE-2026-56073 | 9.3 | 19.2 | Cap-go | capgo | CWE-345 | Cap-go - OTP Bypass via Response Manipulation in Email Verification |
| CVE-2026-49288 | 4.3 | 19.2 | statamic | cms | CWE-200 | Statamic CMS missing authorization on Control Panel fieldtype endpoints allow… |
| CVE-2019-25759 | 7.1 | 18.3 | Wdmtech | vBizz | CWE-89 | Joomla! Component vBizz 1.0.7 SQL Injection |
| CVE-2026-49871 | 2.1 | 17.9 | Apache Software Foundation | Apache APISIX | CWE-352 | Apache APISIX: cas-auth login CSRF / session injection issue |
| CVE-2026-11941 | 5.6 | 16.7 | Cloudflare | Quiche | CWE-416 | Use-after-free in connection ID iterator and FFI functions |
| CVE-2026-12706 | 6.5 | 16.0 | Red Hat | Red Hat Enterprise Linux AI (RHEL AI) 3 | CWE-416 | Ffmpeg: ffmpeg: heap use-after-free read in rasc decoder decode_move() |
| CVE-2026-48141 | 6.0 | 15.3 | NI | grpc-device | CWE-401 | Memory leak in NI grpc-device BeginSidebandStream |
| CVE-2026-49295 | 7.1 | 13.7 | strukturag | libde265 | CWE-787 | libde265 has an out-of-bounds write in process_reference_picture_set via pred… |
| CVE-2026-49346 | 7.1 | 13.7 | strukturag | libde265 | CWE-190 | libde265 has a heap buffer overflow in de265_image_get_buffer via SPS dimensi… |
| CVE-2026-12620 | 4.6 | 13.6 | Microchip | GridTime 3000 | CWE-200 | Access Token Exposure in URL Parameters in GridTime™ 3000 GNSS Time Server |
| CVE-2026-49260 | 8.2 | 13.4 | pontedilana | php-weasyprint | CWE-78 | PhpWeasyPrint: shell command injection via configurable WeasyPrint binary pat… |
| CVE-2026-49230 | 6.3 | 13.3 | Apache Software Foundation | Apache APISIX | CWE-354 | Apache APISIX: Authentication bypass in jwe-decrypt |
| CVE-2026-44087 | 5.3 | 11.8 | Apache Software Foundation | Apache APISIX | CWE-345 | Apache APISIX: Openid-connect plugin Identity Header Spoofing |
| CVE-2026-48772 | 10.0 | 11.7 | sysown | proxysql | CWE-348 | ProxySQL: PROXY-Protocol-v1 UNKNOWN parses spoofed source IP, bypassing mysql… |
| CVE-2022-50971 | 8.5 | 10.8 | Malwarebytes | Malwarebytes | CWE-428 | Malwarebytes 4.5 Unquoted Service Path Privilege Escalation |
| CVE-2026-48715 | 7.7 | 10.6 | radvd-project | radvdump | CWE-121 | radvdump's Route Information Option Parser has a Stack Buffer Overflow |
| CVE-2026-49271 | 6.5 | 10.1 | strukturag | libheif | CWE-125 | libheif: Wrapped icef compressed-unit range check causes out-of-bounds read i… |
| CVE-2026-49337 | 4.3 | 9.5 | strukturag | libde265 | CWE-770 | libde265 has an unbounded memory leak via orphaned slice headers in `read_sli… |
| CVE-2026-11775 | 4.3 | 9.0 | adamsilverstein | User Admin Simplifier | CWE-352 | User Admin Simplifier <= 3.0.0 - Cross-Site Request Forgery |
| CVE-2025-71326 | 8.5 | 8.1 | Avast | AVAST Antivirus | CWE-428 | AVAST Antivirus 25.11 Unquoted Service Path Privilege Escalation |
| CVE-2016-20094 | 8.5 | 8.0 | Anydesk | AnyDesk | CWE-428 | AnyDesk 2.5.0 Unquoted Service Path Elevation of Privilege |
| CVE-2026-9143 | 6.3 | 7.9 | NI | grpc-device | CWE-681 | Incorrect Conversion between Numeric Types in NI grpc-device due to missing r… |
| CVE-2016-20087 | 8.5 | 7.3 | Networkdls | Fortitude HTTP | CWE-428 | Fortitude HTTP 1.0.4.0 Unquoted Service Path Elevation of Privilege |
| CVE-2016-20088 | 8.5 | 7.3 | Comodo | Chromodo Browser | CWE-428 | Comodo Chromodo Browser 52.15.25.664 Unquoted Service Path Privilege Escalation |
| CVE-2016-20089 | 8.5 | 7.3 | Iperiusremote | Iperius Remote | CWE-428 | Iperius Remote 1.7.0 Unquoted Service Path Elevation of Privilege |
| CVE-2016-20090 | 8.5 | 7.3 | Comodo | Dragon Browser | CWE-428 | Comodo Dragon Browser 52.15.25.663 Privilege Escalation via Unquoted Service … |
| CVE-2016-20092 | 8.5 | 7.3 | Netdrive | NetDrive | CWE-428 | NetDrive 2.6.12 Unquoted Service Path Elevation of Privilege |
| CVE-2016-20093 | 8.5 | 7.3 | Wisecleaner | Wise Care 365 | CWE-428 | Wise Care 365 4.27 and Wise Disk Cleaner 9.29 Unquoted Service Path Privilege… |
| CVE-2019-25747 | 8.5 | 7.3 | Network-Inventory-Advisor | Network Inventory Advisor | CWE-428 | Network Inventory Advisor 5.0.26.0 Unquoted Service Path Privilege Escalation |
| CVE-2020-37254 | 8.5 | 7.3 | Wondershare | PDFelement | CWE-428 | Wondershare PDFelement 5.2.9 Privilege Escalation via Unquoted Service Path |
| CVE-2023-54353 | 8.5 | 7.3 | Personifyinc | Chromacam | CWE-428 | Chromacam 4.0.3.0 Unquoted Service Path Privilege Escalation |
| CVE-2016-20095 | 8.5 | 7.1 | Matrix42 | Matrix42 Remote Control Host | CWE-428 | Matrix42 Remote Control Host 3.20.0031 Unquoted Path Privilege Escalation |
| CVE-2020-37250 | 8.5 | 7.1 | Weird-Solutions | TFTP Broadband | CWE-428 | TFTP Broadband 4.3.0.1465 Unquoted Service Path Privilege Escalation |
| CVE-2020-37251 | 8.5 | 7.1 | Real | RealTimes Desktop Service | CWE-428 | RealTimes Desktop Service 18.1.4 Unquoted Service Path Privilege Escalation |
| CVE-2020-37252 | 8.5 | 7.1 | Realtek | Realtek Audio Service | CWE-428 | Realtek Audio Service 1.0.0.55 Unquoted Service Path Privilege Escalation |
| CVE-2026-3195 | 7.4 | 6.9 | — | qemu | CWE-122 | Qemu-kvm: virtio-snd: heap buffer overflow in virtio_snd_pcm_in_cb (incomplet… |
| CVE-2016-20085 | 8.5 | 6.5 | Realtek | Realtek High Definition Audio Driver | CWE-428 | Realtek High Definition Audio Driver 6.0.1.6730 Privilege Escalation |
| CVE-2016-20086 | 8.5 | 6.5 | Vembu | Vembu StoreGrid | CWE-428 | Vembu StoreGrid 4.0 Unquoted Service Path Privilege Escalation |
| CVE-2016-20091 | 8.5 | 6.1 | Binisoft | Windows Firewall Control | CWE-428 | Windows Firewall Control 4.8.6.0 Unquoted Service Path Privilege Escalation |
| CVE-2021-47985 | 8.5 | 6.1 | Brother | SAPSprint | CWE-428 | Brother SAPSprint 7.60 Unquoted Service Path Privilege Escalation |
| CVE-2026-34192 | 7.7 | 5.8 | Imagination Technologies | Graphics DDK | CWE-416 | GPU DDK - _MMU_AllocLevel error recovery paths leave dangling page table entries |
| CVE-2026-41156 | 7.7 | 5.8 | Imagination Technologies | Graphics DDK | CWE-416 | GPU DDK - kernel<->fw CCB contains SYNC_PRIMITIVE_BLOCK firmware address with… |
| CVE-2020-37253 | 8.5 | 5.4 | Winstep | Winstep | CWE-428 | Winstep 18.06.0096 Unquoted Service Path Privilege Escalation |
| CVE-2026-21768 | 6.3 | 5.3 | HCLSoftware | Verse for Android | CWE-20 | HCL Verse for Android is susceptible to an injection vulnerability |
| CVE-2026-49358 | 3.0 | 4.7 | pontedilana | php-weasyprint | CWE-73 | PhpWeasyPrint vulnerable to arbitrary file deletion at shutdown via public $t… |
| CVE-2026-3196 | 5.5 | 4.1 | — | qemu | CWE-190 | Qemu-kvm: virtio-snd: integer overflow leading to unbounded memory allocation |
| CVE-2026-46461 | 7.8 | 3.6 | Dell | Server Hardware Manager | CWE-284 | Dell Server Hardware Manager, versions prior to 3.2.2, contains an Improper A… |
| CVE-2026-12621 | 5.3 | 3.5 | Microchip | GridTime 3000 | CWE-79 | Cross-Site Scripting (XSS) Vulnerability in Password Reset Redirect in GridTi… |
| CVE-2026-12619 | 5.1 | 3.5 | Microchip | GridTime 3000 | CWE-79 | GridTime™ 3000 GNSS Time Server CSRF to XSS |
| CVE-2026-56131 | 4.9 | 3.4 | libexpat project | libexpat | CWE-416 | libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_Resu… |
| CVE-2026-52908 | 7.8 | 2.9 | Linux | Linux | — | RDMA: During rereg_mr ensure that REREG_ACCESS is compatible |
| CVE-2026-12622 | 5.3 | 2.3 | Microchip | GridTime 3000 | CWE-601 | Open Redirect Vulnerability in Password Reset Submission in GridTime™ 3000 GN… |
| CVE-2026-52909 | 7.8 | 2.2 | Linux | Linux | — | ip6_vti: set netns_immutable on the fallback device. |
| CVE-2026-56132 | 6.9 | 1.3 | libexpat project | libexpat | CWE-821 | In libexpat before 2.8.2, there is a heap-based buffer overflow in doProlog i… |
| CVE-2026-52910 | 7.8 | 1.2 | Linux | Linux | CWE-125 | bpf: Free reuseport cBPF prog after RCU grace period. |
Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.
Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.
Day boundary. A day is a UTC calendar day. This page covers 2026-06-19 00:00:00–23:59:59 UTC. All times shown are UTC.
Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.
Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.