boxscore/security
Monday, June 22, 2026 · all times UTC← 2026-06-21 · archive · 2026-06-23 →

220 CVEs published June 22, 2026: 21 critical, 80 high, 105 medium, 14 low; 0 in KEV; 22 with a public exploit reference; 0 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 195 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published5397976911672563
KEV catalog size1670

446 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux10110678466831212730.37.8.0013-123
google68485883450293297460.78.1.0023+668
microsoft220710554741604378273.87.8.0044+56
red hat79143865646400.07.0.0028+70
apple146101636293711.55.7.0023+1
canonical2161465000.05.5.0010+2
freebsd070520000.07.8.0020-7
suse461410000.08.6.0029+2
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco9224380961045.56.8.0257+4
netgear171700161800.04.3.0024+17
palo alto networks911017114218.24.8.0022+8
f56943107111.18.9.0221+4
ivanti49230033555.68.8.5187+2
checkpoint3915303111.17.5.0410+3
ubiquiti584400400.08.9.0052+3
fortinet28132028337.57.3.0066+1
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache9212418445384010.86.8.0048+83
mozilla495511182601300.07.3.0026+44
gitlab1120041224210.04.8.0024+11
docker470520100.08.2.0016+1
drupal0511305120.05.1.0026-3
github021100000.08.1.03470
jenkins000000600
joomla000000100
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle2432701311161844020.78.8.0040+243
adobe1291334497527532.35.5.0021+128
ibm32811935270700.07.5.0028+32
progress591710900.07.5.0036+1
solarwinds36121011466.77.5.3995+3
veeam142200400.09.0.0046+1
zohocorp020110000.07.1.0104-1
atlassian0000001300
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
synology52325133000.05.6.0025+5
d-link91204252618.35.5.0058+9
siemens780440100.07.5.0020+6
rockwell automation771510000.08.7.0030+7
abb550410000.07.2.0018+5
moxa550320000.07.0.0029+5
dahua330111200.06.9.0036+3
mitsubishi electric330300000.08.7.0064+3
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
spring7172230391000.06.5.0023+71
openclaw61670352210000.07.0.0021+61
sourcecodester3759002534000.02.1.0026+37
themerex585855300000.08.1.0043+58
edimax556033023100.07.4.0070+5
dell3149024240212.06.8.0015+19
concrete cms2461111321000.06.2.0015-42
open ises044221210000.07.1.0021-37

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-10520.9990100.010.0
CVE-2026-20253.969499.99.8
CVE-2026-35273.954799.99.8
CVE-2026-0257.939199.8
CVE-2026-42271.830199.6
CVE-2026-50751.825599.69.3
CVE-2026-48907.688399.310.0
CVE-2026-49160.538398.97.5
CVE-2026-10523.518798.99.8
CVE-2024-21182.499798.8
Highest CVSS
CVECVSSEPSSNote
CVE-2026-1052010.0.9990KEV
CVE-2026-4890710.0.6883KEV
CVE-2026-4817210.0.1891KEV
CVE-2026-4977710.0.0166
CVE-2026-805410.0.0158
CVE-2026-4508710.0.0147
CVE-2026-4919910.0.0134
CVE-2026-1142910.0.0115
CVE-2026-4925710.0.0093
CVE-2026-1056110.0.0091
Most disclosures (vendor)
VendorCVEs
google836
linux515
oracle268
microsoft226
adobe129
red hat111
apache104
ibm81
spring72
openclaw67
Most KEV additions (YTD)
VendorKEV
microsoft27
cisco10
apple7
google6
ivanti5
solarwinds4
synacor4
adobe3
fortinet3
linux3
Most-affected ecosystems
EcosystemAdvisories
Maven43
Packagist22
PyPI10
npm3
crates.io2
Fastest to KEV
CVEVendorDays
CVE-2022-0492Linux0
CVE-2024-21182Oracle0
CVE-2025-48595Google0
CVE-2026-0257Palo Alto Networks0
CVE-2026-10520ivanti0
CVE-2026-11645Google0
CVE-2026-20245Cisco0
CVE-2026-20253Splunk0
CVE-2026-20262Cisco0
CVE-2026-28318SolarWinds0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104Accellion2021-11-171678
CVE-2021-27102Accellion2021-11-171678
CVE-2021-27101Accellion2021-11-171678
CVE-2021-27103Accellion2021-11-171678
CVE-2021-21017Adobe2021-11-171678
CVE-2021-28550Adobe2021-11-171678
CVE-2021-42013Apache2021-11-171678
CVE-2021-41773Apache2021-11-171678
CVE-2021-30858Apple2021-11-171678
CVE-2021-30860Apple2021-11-171678

Transactions

EXPLOIT PUBLISHEDCVE-2025-66389. Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-10645 (zephyrproject zephyr). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-10651 (zephyrproject zephyr). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-12549 (Red Hat Enterprise Linux 10). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-41479 (authlib). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-41523 (vllm-project vllm). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-44311 (fabricjs fabric.js). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-48931 (nodejs node). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-50146 (withastro astro). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-53550 (nodeca js-yaml). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-53571 (vitejs vite). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-53655 (isaacs node-tar). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-54232 (vllm-project vllm). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-54235 (vllm-project vllm). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-54236 (vllm-project vllm). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-54293 (nltk). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-54298 (withastro astro). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-55599 (phpseclib). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-55602 (chimurai http-proxy-middleware). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-55603 (chimurai http-proxy-middleware). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-56268 (Flowise). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-6653 (GNOME libxml2). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-6858 (Unknown Transbank Webpay). Public exploit reference added.

DUE DATE PASSEDCVE-2026-20253 (Splunk Enterprise). CISA remediation deadline was June 21, 2026; still in catalog.

Yesterday's Results

220 CVEs published. 25 box scores, 195 table rows — nothing truncated.

vllm-project vllm — vLLM: OpenAI auth bypass
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  H    9.1   .0115   64.3     —
AFFECTED
  Product  Versions              Fixed
  vllm     >= 0.3.0, < 0.22.0 –  —
TIMELINE
  May 22  Reserved by CNA
  Jun 22  Published (CNA: GitHub_M)
CWE-444, CWE-501 · CNA: GitHub_M · 14 references · NVD status: Modified
TP-Link Systems Inc. Archer MR200 v07 — Unauthenticated Command Injection via DHCP Option Handling in Multiple TP-Link Routers
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   A   L   N   N   N   H   H   H    8.7   .0102   60.6     —
AFFECTED
  Product           Versions     Fixed
  Archer MR200 v07  unspecified  —
  Archer MR200 v8   unspecified  —
  Archer MR402 v1   unspecified  —
  Archer VR2100 v1  unspecified  —
  Archer C20 v5     unspecified  —
  Archer C20 v6     unspecified  —
  TL-MR6400 v7      unspecified  —
TIMELINE
  Jun 9   Reserved by CNA
  Jun 22  Published (CNA: TPLink)
CWE-78 · CNA: TPLink · 8 references · NVD status: Awaiting Analysis
n/a n/a — GitHub Copilot 1.372.0 allows filesystem access outside of a workspace folder (without user approval) via a…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0094   58.0     —
AFFECTED
  Product  Versions  Fixed
  n/a      n/a –     —
TIMELINE
  Nov 28  Reserved by CNA
  Jun 22  Public exploit reference published
  Jun 22  Published (CNA: mitre)
CWE-552 · CNA: mitre · 3 references · NVD status: Analyzed
IBM Langflow OSS — Unauthenticated Remote Code Execution in Langflow OSS PythonREPLComponent via Builtins Injection
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  C  H  H  H   10.0   .0091   57.2     —
AFFECTED
  Product       Versions  Fixed
  Langflow OSS  1.0.0 –   —
TIMELINE
  Jun 1   Reserved by CNA
  Jun 22  Published (CNA: ibm)
CWE-94 · CNA: ibm · 1 reference · NVD status: Analyzed
vllm-project vllm — vLLM: incomplete CVE-2026-22778 fix leaks PIL repr addresses via Anthropic router
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  L  N  N    5.3   .0082   54.3     —
AFFECTED
  Product  Versions       Fixed
  vllm     < 0.23.1rc0 –  —
TIMELINE
  Jun 12  Reserved by CNA
  Jun 22  Public exploit reference published
  Jun 22  Published (CNA: GitHub_M)
CWE-532 · CNA: GitHub_M · 3 references · NVD status: Analyzed
vllm-project vllm — vLLM: Security Check Bypass via assert Statement in Activation Function Loading Allows Arbitrary Code Execution
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   N   R  U  H  H  H    7.5   .0075   51.8     —
AFFECTED
  Product  Versions    Fixed
  vllm     < 0.22.0 –  —
TIMELINE
  Apr 20  Reserved by CNA
  Jun 22  Public exploit reference published
  Jun 22  Published (CNA: GitHub_M)
CWE-94, CWE-617 · CNA: GitHub_M · 8 references · NVD status: Modified
Autodesk Fusion — MCP Extension Code Injection Vulnerability in Autodesk Fusion Desktop
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  C  H  H  H    9.6   .0070   50.2     —
AFFECTED
  Product  Versions     Fixed
  Fusion   2703.1.11 –  —
TIMELINE
  Jun 3   Reserved by CNA
  Jun 22  Published (CNA: autodesk)
CWE-94 · CNA: autodesk · 3 references · NVD status: Analyzed
Capgo - Unauthenticated Channel Enumeration and App Oracle via GET /channel_self
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   N   N    8.7   .0064   47.6     —
AFFECTED
  Product  Versions     Fixed
  Capgo    unspecified  12.128.2
TIMELINE
  Jun 20  Reserved by CNA
  Jun 22  Published (CNA: VulnCheck)
CWE-200 · CNA: VulnCheck · 2 references · NVD status: Deferred
picklescan - Arbitrary Code Execution via Undetected ensurepip._run_pip Function
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   P   H   H   N    7.6   .0064   47.6     —
AFFECTED
  Product     Versions     Fixed
  picklescan  unspecified  0.0.30
TIMELINE
  Jun 20  Reserved by CNA
  Jun 22  Published (CNA: VulnCheck)
CWE-502 · CNA: VulnCheck · 2 references · NVD status: Deferred
Pilz PMI v8xx — XSS vulnerability in Pilz PASvisu and PMI v8xx
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  N  H  H    8.1   .0063   47.2     —
AFFECTED
  Product   Versions  Fixed
  PMI v8xx  0.0.0 –   —
  PASvisu   0.0.0 –   —
TIMELINE
  Oct 13  Reserved by CNA
  Jun 22  Published (CNA: CERTVDE)
CWE-79 · CNA: CERTVDE · 1 reference · NVD status: Deferred
LY Corporation Central Dogma — A vulnerability has been identified in centraldogma-server-auth-shiro versions prior to 0.84.0, where the S…
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   L   L   N    6.9   .0062   46.7     —
AFFECTED
  Product        Versions     Fixed
  Central Dogma  unspecified  0.84.0
TIMELINE
  Jun 9   Reserved by CNA
  Jun 22  Published (CNA: LY-Corporation)
CWE-90 · CNA: LY-Corporation · 1 reference · NVD status: Deferred
MISP Core: Mass Assignment and Object Re-ownership via Unvalidated Request Fields
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    9.4   .0060   46.0     —
AFFECTED
  Product  Versions     Fixed
  misp     unspecified  —
TIMELINE
  Jun 22  Reserved by CNA
  Jun 22  Published (CNA: CIRCL)
CWE-639 · CNA: CIRCL · 16 references · NVD status: Awaiting Analysis
BerriAI litellm — LiteLLM: Authentication Bypass via Host Header Injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   H   H   H    9.5   .0059   45.5     —
AFFECTED
  Product  Versions    Fixed
  litellm  < 1.84.0 –  —
TIMELINE
  May 30  Reserved by CNA
  Jun 22  Published (CNA: GitHub_M)
CWE-290 · CNA: GitHub_M · 5 references · NVD status: Modified
webp-sh webp_server_go — WebP Server Go < 0.15.0 Path Traversal via Backslash Encoding on Windows
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   N   N    8.7   .0059   45.3     —
AFFECTED
  Product         Versions     Fixed
  webp_server_go  unspecified  —
TIMELINE
  Jun 10  Reserved by CNA
  Jun 22  Published (CNA: VulnCheck)
CWE-22 · CNA: VulnCheck · 3 references · NVD status: Deferred
vitejs vite — Vite: `server.fs.deny` bypass on Windows alternate paths
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   H   N   N    8.2   .0059   45.3     —
AFFECTED
  Product  Versions              Fixed
  vite     >= 8.0.0, < 8.0.16 –  —
TIMELINE
  Jun 9   Reserved by CNA
  Jun 22  Public exploit reference published
  Jun 22  Published (CNA: GitHub_M)
CWE-22, CWE-200 · CNA: GitHub_M · 1 reference · NVD status: Analyzed
AIL Framework - Missing Rate Limiting Enables Brute-Force Attacks Against Two-Factor Authentication Codes
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   A   L   N   N    5.1   .0058   44.8     —
AFFECTED
  Product        Versions     Fixed
  ail framework  unspecified  —
TIMELINE
  Jun 22  Reserved by CNA
  Jun 22  Published (CNA: CIRCL)
CWE-307 · CNA: CIRCL · 1 reference · NVD status: Deferred
Gaudire Assassin game — Multiple vulnerabilities in the Assassin game by Gaudire
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   N   L   L    6.9   .0057   44.5     —
AFFECTED
  Product        Versions        Fixed
  Assassin game  last version –  —
TIMELINE
  Apr 27  Reserved by CNA
  Jun 22  Published (CNA: INCIBE)
CWE-200 · CNA: INCIBE · 1 reference · NVD status: Deferred
JASEI Net::Statsite::Client — Net::Statsite::Client versions through 1.1.0 for Perl allow metric injections
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  N    9.1   .0057   44.4     —
AFFECTED
  Product                Versions     Fixed
  Net::Statsite::Client  unspecified  —
TIMELINE
  Jun 5   Reserved by CNA
  Jun 22  Published (CNA: CPANSec)
CWE-93, CWE-150 · CNA: CPANSec · 6 references · NVD status: Deferred
vllm-project vllm — vLLM: Dependency Confusion Vulnerability in vLLM Dockerfile
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  U  H  H  H    8.8   .0056   44.1     —
AFFECTED
  Product  Versions    Fixed
  vllm     < 0.22.1 –  —
TIMELINE
  Jun 12  Reserved by CNA
  Jun 22  Public exploit reference published
  Jun 22  Published (CNA: GitHub_M)
CWE-427 · CNA: GitHub_M · 1 reference · NVD status: Analyzed
Apache Doris MCP Server: SQL injection leading the authentication bypass
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  N    8.1   .0056   44.0     —
AFFECTED
  Product                  Versions  Fixed
  Apache Doris MCP Server  0.1.0 –   —
TIMELINE
  Nov 27  Reserved by CNA
  Jun 22  Published (CNA: apache)
CWE-89 · CNA: apache · 2 references · NVD status: Analyzed
NLTK: URL-Encoded Path Traversal in nltk.data.load() Allows Arbitrary Local File Read
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0056   43.7     —
AFFECTED
  Product  Versions        Fixed
  nltk     < 3.10.0-rc1 –  —
TIMELINE
  Jun 12  Reserved by CNA
  Jun 22  Public exploit reference published
  Jun 22  Published (CNA: GitHub_M)
CWE-22 · CNA: GitHub_M · 6 references · NVD status: Modified
IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by Uncontrolled Resource Consumption
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0055   43.4     —
AFFECTED
  Product                                 Versions    Fixed
  WebSphere Application Server            9.0.0 –     —
  WebSphere Application Server - Liberty  17.0.0.3 –  —
TIMELINE
  May 20  Reserved by CNA
  Jun 22  Published (CNA: ibm)
CWE-400 · CNA: ibm · 1 reference · NVD status: Analyzed
Gaudire Assassin game — Multiple vulnerabilities in the Assassin game by Gaudire
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   N   N    9.2   .0054   43.1     —
AFFECTED
  Product        Versions        Fixed
  Assassin game  last version –  —
TIMELINE
  Apr 27  Reserved by CNA
  Jun 22  Published (CNA: INCIBE)
CWE-200 · CNA: INCIBE · 1 reference · NVD status: Deferred
Picklescan - Arbitrary Code Execution via numpy.f2py.crackfortran._eval_length Gadget
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   P   H   H   N    7.6   .0052   42.0     —
AFFECTED
  Product     Versions     Fixed
  Picklescan  unspecified  0.0.33
TIMELINE
  Jun 20  Reserved by CNA
  Jun 22  Published (CNA: VulnCheck)
CWE-502 · CNA: VulnCheck · 2 references · NVD status: Deferred
Google Cloud Cloud Console UIs — Cross-Project Information Leakage in Google App Engine UI
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   L   N   N    6.9   .0051   41.2     —
AFFECTED
  Product            Versions     Fixed
  Cloud Console UIs  unspecified  —
TIMELINE
  May 19  Reserved by CNA
  Jun 22  Published (CNA: GoogleCloud)
CWE-862 · CNA: GoogleCloud · 1 reference · NVD status: Awaiting Analysis
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-481098.241.1MessagePack-CSharpMessagePack-CSharpCWE-20MessagePack-CSharp: LZ4 decompression may fail with AccessViolationException …
CVE-2025-621985.440.9Apache Software FoundationApache AtlasCWE-80Apache Atlas: Stored XSS in Create Entity page
CVE-2026-76649.840.5IBMLangflow OSSCWE-287Unauthenticated Flow Execution via Webhook Endpoint in Langflow OSS
CVE-2026-542818.740.5nestjsnestCWE-863Nest: Middleware Bypass on Fastify via Trailing Slash
CVE-2026-472405.840.0rubynet-imapCWE-77Net::IMAP: Command Injection via non-synchronizing literal in "raw" argument
CVE-2026-71659.439.4GaudireAssassin gameCWE-20Multiple vulnerabilities in the Assassin game by Gaudire
CVE-2026-562669.239.1Crawl4AICrawl4AICWE-918Crawl4AI - Server-Side Request Forgery via Direct Crawl Endpoints
CVE-2026-485067.538.8MessagePack-CSharpMessagePack-CSharpCWE-674MessagePack-CSharp: MessagePackReader.Skip can recurse without enforcing maxi…
CVE-2026-108457.338.4IBMWebSphere Application ServerCWE-287IBM WebSphere Application Server is affected by an authentication bypass vuln…
CVE-2026-563248.838.3CapgoCapgoCWE-770Capgo - Rate Limit Bypass via User-Controlled device_id Parameter
CVE-2026-487127.538.0protobufjsprotobuf.jsCWE-674protobufjs: Denial of service through unbounded Any expansion during JSON con…
CVE-2026-563216.937.7CapgoCapgoCWE-306Capgo - Missing Authentication Middleware on GET /private/role_bindings Endpoint
CVE-2026-553888.137.7piscinajspiscinaCWE-94piscina: Prototype Pollution Gadget → RCE via inherited options.filename
CVE-2026-125817.737.6DigiwinEasyFlow .NETCWE-384Digiwin|EasyFlow .NET - Session Fixation
CVE-2026-128882.036.9Thinkst Applied ResearchCanarytokensCWE-74HTML injection in the Canarytoken Google Chat notification
CVE-2026-421297.736.8GrafanaGrafana OSSCWE-22Path traversal in the Loki data source plugin
CVE-2026-119424.836.7AkauntingAkauntingCWE-79Akaunting 3.1.21 - Stored XSS in delete confirmation modal
CVE-2026-119434.836.7AkauntingAkauntingCWE-79Akaunting 3.1.21 - Authenticated stored XSS in document timeline
CVE-2026-119944.836.7AkauntingAkauntingCWE-79Akaunting 3.1.21 - Authenticated stored XSS in report description rendering
CVE-2026-564488.336.4ail projectail frameworkCWE-22Authenticated Path Traversal in AIL Framework Investigation Downloads Allows …
CVE-2026-399047.136.3gophishgophishCWE-770Gophish 0.12.1 Denial of Service via Office Document Upload
CVE-2026-542865.936.1honojshonoCWE-22Hono: Path traversal in `serve-static` on Windows via encoded backslash (`%5C`)
CVE-2026-421277.536.0GrafanaGrafana EnterpriseCWE-400Pre-authentication denial of service in the public dashboard query endpoint
CVE-2025-713587.635.9picklescanpicklescanCWE-502picklescan - Remote Code Execution via idlelib.autocomplete.AutoComplete.get_…
CVE-2026-563147.135.5CapgoCapgoCWE-672Capgo - Deleted Bundle Selection via Missing Deletion Filter in /updates Endp…
CVE-2026-542336.535.2vllm-projectvllmCWE-409vLLM: OOM Denial of Service via Audio Decompression Bomb
CVE-2024-541786.535.0IBMDb2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for DataCWE-770Multiple vulnerabilities affect IBM Db2® on Cloud Pak for Data, and Db2 Wareh…
CVE-2026-81578.834.8UnknownViteposCWE-269Vitepos < 3.4.2 - Outlet Manager+ Privilege Escalation
CVE-2026-566985.334.4NuxtNuxtCWE-79Nuxt - Cross-Site Scripting via navigateTo open Option
CVE-2026-125494.834.2Red HatRed Hat Enterprise Linux 10CWE-805Libsoup: incomplete fix for cve-2026-2443: range suffix overflow in libsoup s…
CVE-2026-90729.834.1IBMWebSphere Application ServerCWE-94WebSphere Application Server Remote Code Execution
CVE-2026-127255.933.5Red HatRed Hat Enterprise Linux 10CWE-122Dnsmasq: dnsmasq: heap buffer overflow in log_query() when logging unsupporte…
CVE-2026-542695.333.4protobufjsprotobuf.jsCWE-674protobufjs: Schema-derived names can shadow runtime-significant properties
CVE-2026-542705.333.4protobufjsprotobuf.jsCWE-770protobufjs: Memory amplification from preserved unknown fields in binary decode
CVE-2026-542837.532.9KludexstarletteCWE-770Starlette: request.form() limits silently ignored for application/x-www-form-…
CVE-2026-542786.632.9aio-libsaiohttpCWE-409AIOHTTP: Unread Compressed Request Bodies Bypass client_max_size During Cleanup
CVE-2026-449147.532.5Apache Software FoundationApache NiFiCWE-862Apache NiFi: Missing Authorization of Restricted Permissions when Replacing F…
CVE-2026-564468.732.2mispmispCWE-94Authenticated Remote Code Execution via Arbitrary NDJSON Error Log Path in MISP
CVE-2026-449135.231.7Apache Software FoundationApache NiFiCWE-116Apache NiFi: Improper Escaping of Table Names in CaptureChangeMySQL
CVE-2026-124796.131.5keras-teamkeras-team/kerasCWE-22Path Traversal in keras-team/keras
CVE-2026-128625.131.3pretixVenuelessCWE-148XLSX formula injection in exports
CVE-2026-535397.531.2Kludexpython-multipartCWE-400Python-Multipart: Quadratic-time querystring parsing with semicolon separator…
CVE-2026-562217.131.1Cap-gocapgoCWE-89Cap-go - SQL Injection in Cloudflare Analytics Engine Queries via cloudflare.ts
CVE-2026-535505.330.9nodecajs-yamlCWE-407js-yaml: Quadratic-complexity DoS in merge key handling via repeated aliases
CVE-2026-562555.330.5CapgoCapgoCWE-770Capgo - Denial of Service via Unlimited Demo App Creation
CVE-2026-562807.130.3Cap-gocapgoCWE-862Cap-go - Privilege Inversion in Build Log Stream via SSE Disconnect
CVE-2026-556026.930.1chimuraihttp-proxy-middlewareCWE-20http-proxy-middleware `router` host+path substring matching allows Host-heade…
CVE-2026-86469.129.6IBMWebSphere Application ServerCWE-444IBM WebSphere Application Server and WebSphere Application Server Liberty are…
CVE-2026-563116.929.5CapgoCapgoCWE-285Capgo - Unauthenticated Cross-Tenant Disclosure via get_current_plan_max_org RPC
CVE-2026-563265.329.3NuxtNuxtCWE-601Nuxt - Server-Side Open Redirect via Path-Normalization Bypass in navigateTo
CVE-2026-564247.129.2mispmispCWE-639Broken access control in MISP core allows cross-organization unauthorized mod…
CVE-2026-126289.128.8IBMStorage Protect ClientCWE-798Hardcoded credential in the IBM Storage Protect Snapshot For Windows leads to…
CVE-2026-66537.028.6GNOMElibxml2CWE-416libxml2: Use after free in xmlParseInternalSubset via improper entity resolut…
CVE-2026-450349.228.2PHPOfficePhpSpreadsheetCWE-502PhpSpreadsheet: File::prohibitWrappers bypass
CVE-2026-128635.128.1pretixVenuelessCWE-601Open redirect
CVE-2026-93207.528.0IBMWebSphere Application ServerCWE-400IBM WebSphere Application Server and WebSphere Application Server Liberty are…
CVE-2026-536325.528.0vitejslaunch-editorCWE-73NTLMv2 hash disclosure via UNC path handling on Windows
CVE-2026-481665.327.5filamentphpfilamentCWE-208Filament: Timing-based user enumeration on login page
CVE-2026-563065.327.5CapgoCapgoCWE-20Capgo - Subkey Enforcement Bypass via x-limited-key-id Header Parsing
CVE-2026-489313.727.5nodejsnodeCWE-367A flaw in Node.js HTTP Agent can cause a client to accept as valid a response…
CVE-2026-542855.327.4open-telemetryopentelemetry-jsCWE-770opentelemetry-js: Unbounded memory allocation in W3C Baggage propagation
CVE-2026-485006.527.3filamentphpfilamentCWE-862Filament: Unauthenticated temporary file upload on auth pages
CVE-2026-564479.327.2mispmispCWE-829MISP remote code execution via arbitrary rdkafka configuration path
CVE-2026-562685.326.6FlowiseFlowiseCWE-863Flowise - Cross-Workspace Information Disclosure via chatflows/apikey Endpoint
CVE-2026-566975.326.6NuxtNuxtCWE-601Nuxt - Open Redirect via Protocol-Relative Paths in reloadNuxtApp
CVE-2026-91624.326.4MattermostMattermostCWE-613Global session revocation does not invalidate active WebSocket connections
CVE-2026-542997.526.1withastroastroCWE-20Astro: Host-header full-read SSRF in core prerendered error-page fetch (prere…
CVE-2025-49948.726.0SafeLineSafeLine SL6/SL6+CWE-305Authentication Bypass for SafeLine SL6 and SL6+
CVE-2026-542907.125.7honojshonoCWE-942Hono: CORS Middleware reflects any Origin with credentials when `origin` defa…
CVE-2026-564239.425.5mispmispCWE-862MISP Core: Broken access control allows instance-wide unauthorized deletion o…
CVE-2026-542688.225.5angularangularCWE-400Angular: Denial of Service (DoS) via OOM in Date Formatting (formatDate)
CVE-2026-449112.325.5Apache Software FoundationApache NiFiCWE-863Apache NiFi: Incorrect Authorization for Configuration Verification Requests
CVE-2026-542776.625.0aio-libsaiohttpCWE-770AIOHTTP: C HTTP Parser Bypasses max_line_size for Fragmented Lines
CVE-2026-80743.824.5MattermostMattermostCWE-863Improper Permission Check Allows User Manager to Deactivate Bot Accounts
CVE-2026-88233.824.5MattermostMattermostCWE-863User Manager can demote bot accounts to guest without bot-management permission
CVE-2026-543005.324.0withastroastroCWE-918@astrojs/netlify broadens Astro image.remotePatterns in Netlify Image CDN config
CVE-2026-542875.323.7honojshonoCWE-116Hono: AWS Lambda adapter merges multiple `Set-Cookie` headers into one value,…
CVE-2026-447279.323.1jupyter-serverjupyter_serverCWE-79Jupyter Server: Stored XSS in `NbconvertFileHandler` / `NbconvertPostHandler`…
CVE-2026-542746.623.1aio-libsaiohttpCWE-770AIOHTTP: Incomplete websocket frame payloads bypass memory limits
CVE-2026-542718.222.9protobufjsprotobufjs-cliCWE-94protobufjs-cli: Code injection in pbjs static output from crafted JSON descri…
CVE-2026-502692.722.7aio-libsaiohttpCWE-93AIOHTTP: CRLF injection in multipart headers
CVE-2026-480676.522.5filamentphpfilamentCWE-639Filament: Inconsistent scope enforcement for AttachAction and AssociateAction…
CVE-2026-66736.422.5MattermostMattermostCWE-306Mattermost Jira plugin had unauthenticated {{/ac/installed}} lifecycle callba…
CVE-2026-485057.422.2filamentphpfilamentCWE-362Filament: Multi-factor authentication (app) recovery codes can still be used …
CVE-2026-108527.521.8IBMWebSphere Application ServerCWE-476Websphere Application Server is Affected By a Denial of Service
CVE-2026-68587.121.8UnknownTransbank WebpayCWE-79Transbank Webpay < 1.14.0 - Unauthenticated Stored XSS
CVE-2026-51395.421.2MattermostMattermostCWE-862GitLab Plugin Allows Non-Admin Users to Modify Default Instance Configuration
CVE-2026-541008.321.0Red HatRed Hat OpenShift for Windows Containers 10.22CWE-295Windows-machine-config-operator: windows-machine-config-operator: ssh host ke…
CVE-2026-554097.620.9filamentphpfilamentCWE-79Filament: Disabled RichEditor field state can be used for XSS
CVE-2026-539235.320.6vllm-projectvllmCWE-200vLLM GGUF Kernels: int64_t to int truncation of tensor dimensions causes GPU …
CVE-2026-542801.720.6aio-libsaiohttpCWE-404AIOHTTP: Payload Response Resources Are Not Closed After Mid-Body Disconnect
CVE-2026-106516.520.5zephyrprojectzephyrCWE-20Out-of-bounds read in Bluetooth Classic SDP attribute parsing (`bt_sdp_parse_…
CVE-2026-125805.120.5DigiwinEasyFlow .NETCWE-79Digiwin|EasyFlow .NET - Stored Cross-Site Scripting
CVE-2026-89187.120.4ASUSArmoury CrateCWE-183A permissive list of allowed inputs in ASUS Armoury Crate allows a local admi…
CVE-2026-542736.620.4aio-libsaiohttpCWE-770AIOHTTP: HTTP/1 Pipelined Requests Queue Without Limit
CVE-2026-542791.320.4aio-libsaiohttpCWE-665AIOHTTP: Host-Only Cookies Become Domain Cookies After CookieJar Persistence
CVE-2026-501788.719.9angularangularCWE-79Angular: Remote Code Execution via JSDoc Hover Command Injection in VS Code A…
CVE-2026-549116.519.6ultrajsonultrajsonCWE-20UltraJSON: Malformed/Truncated UTF-8 Accepted and Silently Rewritten in ujson…
CVE-2026-542356.919.3vllm-projectvllmCWE-1287vLLM: temperature=NaN and temperature=Infinity bypass validation and propagat…
CVE-2026-501708.219.0angularangularCWE-524Angular: Information Leak via Default Caching of Credentialed Requests in Htt…
CVE-2026-546656.318.9Apache Software FoundationApache NiFiCWE-346Apache NiFi: Missing Validation for Proxy Host Headers
CVE-2026-501466.119.0withastroastroCWE-80Astro: Reflected XSS via unescaped slot name
CVE-2026-542752.718.6aio-libsaiohttpCWE-297AIOHTTP: TLS Server Hostname Override Is Ignored When Reusing HTTPS Connections
CVE-2026-556037.518.5chimuraihttp-proxy-middlewareCWE-93http-proxy-middleware: multipart/form-data field injection via unescaped CRLF…
CVE-2026-563485.318.1n8nn8nCWE-918n8n - Credential Exfiltration via Allowed HTTP Request Domains Bypass in Dyna…
CVE-2026-88588.817.9IBMWebSphere Application ServerCWE-94WebSphere Application Server Remote Code Execution
CVE-2026-564259.317.7mispmispCWE-384MISP AAD authentication plugin - Improper OAuth State Handling, Missing Sessi…
CVE-2026-106014.317.7GrafanaGrafana OSSCWE-22Path traversal in the Tempo and Loki data source plugins
CVE-2026-561048.817.4ChainlitchainlitCWE-862Chainlit < 2.10.1 Session Hijacking via WebSocket Session Restoration
CVE-2026-485028.217.3MessagePack-CSharpMessagePack-CSharpCWE-125MessagePack-CSharp: Denial of service vulnerabilities can swamp the CPU or cr…
CVE-2026-41106.117.0Unknownultimate-woocommerce-auction-proUltimate WooCommerce Auction Pro <= 2.4.5 - Reflected XSS via uwa_auctions_bi…
CVE-2026-42597.116.8Unknownultimate-woocommerce-auction-proCWE-79Ultimate WooCommerce Auction Pro <= 2.4.5 - Reflected XSS via uwa_manage_auct…
CVE-2026-90295.416.7GrafanaGrafana OSSCWE-79Stored XSS in the Geomap panel tile-layer attribution
CVE-2023-338545.316.7IBMDb2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for DataCWE-294Multiple vulnerabilities affect IBM Db2® on Cloud Pak for Data, and Db2 Wareh…
CVE-2026-442718.816.6DellWyse Management Suite (WMS)CWE-89Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Impr…
CVE-2026-442728.816.6DellWyse Management Suite (WMS)CWE-89Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Impr…
CVE-2026-485096.316.6MessagePack-CSharpMessagePack-CSharpCWE-1188MessagePack-CSharp: ASP.NET Core MessagePackInputFormatter defaults to Truste…
CVE-2026-471556.516.5vllm-projectvllmCWE-345vLLM: Artifact Pin Decay in vLLM allows pinned deployments to load unpinned c…
CVE-2026-481676.416.2filamentphpfilamentCWE-79Filament: Unvalidated ImageColumn and ImageEntry values can be used for XSS
CVE-2026-485176.316.2MessagePack-CSharpMessagePack-CSharpCWE-470MessagePack-CSharp: Typeless deserialization type restrictions do not recurse…
CVE-2026-60626.415.3MattermostMattermostCWE-639IDOR in Jira plugin subscription edit endpoint
CVE-2026-90069.115.3IBMWebSphere Application ServerCWE-918IBM WebSphere Application Server is affected by server-side request forgery
CVE-2026-472412.115.2rubynet-imapCWE-162Net::IMAP: Denial of Service via incomplete raw argument validation
CVE-2026-505568.614.8angularangularCWE-79Angular: Missing `<noscript>` Raw-Text Serialization Escaping leads to Cross-…
CVE-2026-485106.314.9MessagePack-CSharpMessagePack-CSharpCWE-409MessagePack-CSharp: LZ4 decompression allocates from unbounded declared outpu…
CVE-2026-80596.114.8IBMDatacapCWE-79Multiple Vulnerabilities in IBM Datacap
CVE-2026-542648.314.7angularangularCWE-200Angular: Sensitive Header Leakage on Cross-Origin Redirects in Angular Servic…
CVE-2026-527255.314.6angularangularCWE-79Angular Template and Dynamic Component Namespace Bypass leading to Cross-Site…
CVE-2026-485116.314.2MessagePack-CSharpMessagePack-CSharpCWE-407MessagePack-CSharp: ExpandoObject formatter can perform quadratic insertion w…
CVE-2026-485126.314.2MessagePack-CSharpMessagePack-CSharpCWE-674MessagePack-CSharp: JSON conversion APIs can recurse without consistent depth…
CVE-2026-485136.314.2MessagePack-CSharpMessagePack-CSharpCWE-674MessagePack-CSharp: DynamicUnionResolver generated deserializers miss depth e…
CVE-2026-485156.314.2MessagePack-CSharpMessagePack-CSharpCWE-770MessagePack-CSharp: Multi-dimensional array formatters allocate from unchecke…
CVE-2026-485146.314.2MessagePack-CSharpMessagePack-CSharpCWE-770MessagePack-CSharp: Unity unsafe blit formatter allocates from unbounded byte…
CVE-2026-485166.314.2MessagePack-CSharpMessagePack-CSharpCWE-407MessagePack-CSharp: InterfaceLookupFormatter bypasses collision-resistant com…
CVE-2025-331285.414.2IBMEngineering Workflow ManagementCWE-79IBM Engineering Lifecycle Management - Engineering Workflow Management is imp…
CVE-2026-113725.414.2IBMTRIRIGA Application PlatformCWE-79IBM TRIRIGA Cross-Site Scripting Vulnerability
CVE-2026-443116.113.8fabricjsfabric.jsCWE-79Fabric.js: Improper escaping in fabric.Gradient colorStops leads to XSS in SV…
CVE-2026-542986.113.8withastroastroCWE-79Astro: XSS via Unescaped Attribute Names in Spread Props
CVE-2026-464178.812.9angularangularCWE-918Angular: SSRF via Hostname Hijacking in @angular/platform-server
CVE-2026-117458.812.6LY CorporationCentral DogmaCWE-322A vulnerability has been identified in centraldogma-server-mirror-git version…
CVE-2026-535403.712.4Kludexpython-multipartCWE-1284Python-Multipart: Negative Content-Length in parse_form buffers the entire bo…
CVE-2023-457957.811.4PilzPMI v8xxCWE-79Pilz: XSS vulnerability in Pilz PASvisu and PMI v8xx
CVE-2026-72536.011.0IBMSterling B2B IntegratorCWE-89IBM Sterling File Gateway SQL Injection
CVE-2026-283818.110.8GrafanaSnowflake DatasourceCWE-284Local File Read/Write to Potential Privilege Escalation via Snowflake GET/PUT
CVE-2026-105305.310.7UnknownPie RegisterPie Register < 3.8.4.10 - Unauthenticated Email Verification Bypass via Predi…
CVE-2026-505575.310.6angularangularCWE-79Angular: Template and Attribute Namespace Sanitization Bypass (XSS)
CVE-2026-542655.310.6angularangularCWE-79Angular: Two-Way Property Binding Sanitization Bypass (XSS)
CVE-2025-26696.59.8IBMDb2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for DataCWE-295Multiple vulnerabilities affect IBM Db2® on Cloud Pak for Data, and Db2 Wareh…
CVE-2026-501688.89.4angularangularCWE-346Angular: URL Parser Differential in @angular/platform-server leading to SSRF …
CVE-2026-96105.38.8IBMDatacapCWE-425Multiple Vulnerabilities in IBM Datacap
CVE-2026-542825.38.6KludexstarletteCWE-706Starlette: Unvalidated request path concatenated into authority poisons reque…
CVE-2026-563576.38.5n8nn8nCWE-290n8n - Webhook Forgery via Missing HMAC-SHA256 Signature Verification in GitHu…
CVE-2026-410467.38.4presireqSnapperCWE-23path traversal via `config` parameter in qSnapper
CVE-2026-414795.48.1authlibauthlibCWE-601Authlib OAuth 2.0 authorization endpoint open redirects to attacker-controlle…
CVE-2026-542678.67.9angularangularCWE-79Angular Client Hydration DOM Clobbering & Response-Cache Poisoning
CVE-2024-514546.18.0IBMEngineering Workflow ManagementCWE-644IBM Engineering Lifecycle Management - Engineering Workflow Management is imp…
CVE-2026-66457.37.7PaperCutPrint DeployCWE-427Insecure Search Path Vulnerability in PaperCut Print Deploy Client for Windows
CVE-2026-542766.37.6aio-libsaiohttpCWE-601AIOHTTP: DigestAuthMiddleware Applies Credentials to Cross-Origin Redirect Ch…
CVE-2026-542894.87.7honojshonoCWE-348Hono: Lambda@Edge adapter keeps only the last value of a repeated request hea…
CVE-2026-535375.37.5Kludexpython-multipartCWE-20Python-Multipart: Content-Disposition parameter smuggling via RFC 2231/5987 e…
CVE-2026-535383.77.4Kludexpython-multipartCWE-436Python-Multipart: Semicolon treated as querystring field separator enables pa…
CVE-2026-126028.87.2ArubaArubaSignCWE-276Incorrect permissions in ArubaSign by Aruba
CVE-2026-106587.17.0zephyrprojectzephyrCWE-787Out-of-bounds access in Bluetooth ISO receive (`bt_iso_recv`) due to missing …
CVE-2026-505558.66.5angularangularCWE-79Angular: Improper Neutralization of Input During Web Page Generation ('Cross-…
CVE-2026-501695.76.2angularangularCWE-200Angular Service Worker Policy-Bypass & Credential-Stripping Vulnerabilities
CVE-2026-78595.35.9UnknownMotorsCWE-862Motors Car Dealership & Classified Listings < 1.4.110 - Unauthenticated Post-…
CVE-2026-448896.15.8PylonswebobCWE-601WebOb: Location header normalization during redirect leads to open redirect
CVE-2026-501718.25.8angularangularCWE-400Angular: Denial of Service (DoS) via OOM in Number Formatting (digitsInfo)
CVE-2026-554435.55.4langchain-ailangchainCWE-22LangChain: Path traversal and sandbox escape in LangChain file-search middlew…
CVE-2026-555995.85.2phpseclibphpseclibCWE-918phpseclib: X.509 certificate validation sends attacker-controlled outbound re…
CVE-2026-492418.75.1angularangularCWE-79Angular: Multiple Remote Code Execution Vulnerabilities in Angular Language S…
CVE-2026-501845.74.8angularangularCWE-200Angular: Request Credential & Cache Policy Stripping in Angular Service Worker
CVE-2026-106455.54.8zephyrprojectzephyrCWE-125Out-of-bounds read in Zephyr ext2 directory entry traversal from a crafted fi…
CVE-2026-410476.94.7presireqSnapperCWE-306Information leak via “diff” methods in qSnapper
CVE-2026-536633.14.5remix-runreact-routerCWE-352React Router: `handleDocumentRequest` CSRF check covers `POST` only; PUT/PATC…
CVE-2026-542886.54.5honojshonoCWE-345Hono: Body Limit Middleware can be bypassed on AWS Lambda by understating `Co…
CVE-2026-86367.54.4IBMDatacapCWE-316Multiple Vulnerabilities in IBM Datacap
CVE-2026-117469.44.3LY CorporationCentral DogmaCWE-798A vulnerability has been identified in centraldogma-server versions prior to …
CVE-2026-122499.04.1adsysCWE-348Canonical ADSys Trust Store Poisoning via Plaintext HTTP Certificate Auto-Enr…
CVE-2026-536556.94.0isaacsnode-tarCWE-436node-tar applies PAX size override to intermediary GNU long-name/long-link he…
CVE-2026-561097.03.7alsa-projectalsa-libCWE-415ALSA Library < 1.2.16.1 Double-Free via parse_def() in conf.c
CVE-2026-410498.43.6presireqSnapperCWE-863Caching of Authentication allows Authentication Bypass between users in qSnapper
CVE-2026-410457.03.5presireqSnapperCWE-367Weak polkit authentication check in qSnapper
CVE-2026-410488.43.3presireqSnapperCWE-863Caching of Authentication allows Authentication Bypass in qSnapper
CVE-2026-472425.83.2rubynet-imapCWE-77Net::IMAP: Command Injection via ID command argument
CVE-2026-442747.82.8DellWyse Management Suite (WMS)CWE-59Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain an Impr…
CVE-2026-493563.62.7babelbabelCWE-22Babel: Arbitrary File Read via sourceMappingURL Comment in @babel/core
CVE-2026-494616.92.3py-pdfpypdfCWE-400pypdf: Possible large memory usage for form XObjects during text extraction
CVE-2026-545306.92.3py-pdfpypdfCWE-835pypdf: Possible infinite loop when retrieving fonts for layout-mode text extr…
CVE-2026-545316.92.3py-pdfpypdfCWE-835pypdf: Possible infinite loop when processing outlines/bookmarks in writer
CVE-2026-494605.11.9py-pdfpypdfCWE-407pypdf: Inefficient decoding of FlateDecode PNG predictor streams
CVE-2026-540998.81.5Red HatRed Hat OpenShift for Windows Containers 10.22CWE-269Windows-machine-config-operator: windows-machine-config-operator: wicd csr ex…
CVE-2026-546516.91.5py-pdfpypdfCWE-835pypdf: Possible infinite loop when processing threads/articles in writer
CVE-2026-442734.41.2DellWyse Management Suite (WMS)CWE-1392Dell Wyse Management Suite (WMS), versions prior to WMS 2605, contain a Use o…
CVE-2026-542668.80.5angularangularCWE-328Angular: Weak 32-Bit Cache Key Hashing in `HttpTransferCache` Leading to Cros…

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-06-22 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.