boxscore/security
Monday, June 29, 2026 · all times UTC← 2026-06-28 · archive · 2026-06-30 →

232 CVEs published June 29, 2026: 11 critical, 76 high, 101 medium, 44 low; 1 in KEV; 6 with a public exploit reference; 0 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 207 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published73051167711782563
KEV catalog size1670

526 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux514148011985450412730.27.8.0013-125
google70888286464300297460.78.1.0023+540
microsoft220710554741604378273.87.8.0044+50
red hat115179975878400.06.7.0025+74
apple52991236629377.16.5.0031+32
canonical6202585000.05.5.0011-8
freebsd91601240000.07.8.0015+2
suse682510000.08.7.0038+4
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco10234480961147.87.0.0431+5
netgear171700161800.04.3.0024+17
palo alto networks911017114218.24.8.0022+7
ubiquiti81174004327.39.9.0083+6
f56943107111.18.9.0221+4
ivanti49230033555.68.8.5187+2
checkpoint3915303111.17.5.0410-3
fortinet28132028337.57.3.0066+1
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache111143244959104010.77.1.0047+90
mozilla495511182601300.07.3.0026+43
gitlab243305215426.14.4.0022+17
docker470520100.08.2.0016+1
drupal0511305120.05.1.0026-5
github131110000.07.0.0039-1
jenkins000000600
joomla000000100
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle2432701311161844020.78.8.0040+218
adobe1321364507727532.25.5.0021+131
ibm32811935270700.07.5.0028-17
progress591710900.07.5.0036+1
solarwinds36121011466.77.5.3995+3
veeam142200400.09.0.0046-2
zohocorp131110000.08.4.0170-1
atlassian0000001300
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
synology52325133000.05.6.0025-13
d-link101305252617.75.8.0059+8
siemens780440100.07.5.0020+6
rockwell automation771510000.08.7.0030+7
abb660420000.07.2.0018+6
schneider electric660420100.07.8.0024+6
moxa550320000.07.0.0029+5
dahua330111200.06.9.0036+3
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
spring7273231391000.06.5.0024+71
sourcecodester4971003635000.05.5.0026+29
openclaw61670352210000.07.0.0021+55
edimax1465039026100.07.4.0059-30
themerex585855300000.08.1.0043+58
dell3856130240211.87.2.0016+26
itsourcecode4353001835000.02.1.0025+33
jenkins project364909391000.04.8.0021+23

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-10520.9990100.010.0
CVE-2026-20253.969499.99.8
CVE-2026-35273.954799.99.8
CVE-2026-34910.869699.710.0
CVE-2026-34908.851999.710.0
CVE-2026-20230.832199.78.6
CVE-2026-42271.830199.6
CVE-2026-50751.825599.69.3
CVE-2026-48907.688399.310.0
CVE-2026-34909.639099.210.0
Highest CVSS
CVECVSSEPSSNote
CVE-2026-1052010.0.9990KEV
CVE-2026-3491010.0.8696KEV
CVE-2026-3490810.0.8519KEV
CVE-2026-4890710.0.6883KEV
CVE-2026-3490910.0.6390KEV
CVE-2026-5357610.0.0219
CVE-2026-4977710.0.0166
CVE-2026-1142910.0.0115
CVE-2026-4925710.0.0093
CVE-2026-5281310.0.0092
Most disclosures (vendor)
VendorCVEs
google708
linux514
oracle243
microsoft220
adobe132
red hat115
apache111
spring72
openclaw61
themerex58
Most KEV additions (YTD)
VendorKEV
microsoft27
cisco11
apple7
google6
ivanti5
solarwinds4
synacor4
adobe3
fortinet3
linux3
Most-affected ecosystems
EcosystemAdvisories
Maven39
Packagist15
PyPI9
npm5
Fastest to KEV
CVEVendorDays
CVE-2022-0492Linux0
CVE-2024-21182Oracle0
CVE-2025-48595Google0
CVE-2025-67038Lantronix0
CVE-2026-10520ivanti0
CVE-2026-11645Google0
CVE-2026-12569PTC0
CVE-2026-20230Cisco0
CVE-2026-20245Cisco0
CVE-2026-20253Splunk0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104Accellion2021-11-171685
CVE-2021-27102Accellion2021-11-171685
CVE-2021-27101Accellion2021-11-171685
CVE-2021-27103Accellion2021-11-171685
CVE-2021-21017Adobe2021-11-171685
CVE-2021-28550Adobe2021-11-171685
CVE-2021-42013Apache2021-11-171685
CVE-2021-41773Apache2021-11-171685
CVE-2021-30858Apple2021-11-171685
CVE-2021-30860Apple2021-11-171685

Transactions

EXPLOIT PUBLISHEDCVE-2026-10647 (zephyrproject zephyr). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-10648 (zephyrproject zephyr). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-36848. Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-7656 (zephyrproject zephyr). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-8023 (zephyrproject zephyr). Public exploit reference added.

DUE DATE PASSEDCVE-2026-12569 (PTC Windchill PDMLink). CISA remediation deadline was June 28, 2026; still in catalog.

DUE DATE PASSEDCVE-2026-20230 (Cisco Unified Communications Manager). CISA remediation deadline was June 28, 2026; still in catalog.

Yesterday's Results

232 CVEs published. 25 box scores, 207 table rows — nothing truncated.

SimpleHelp Authentication Bypass via Missing OIDC JWT Signature Verification
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   H   H   H    9.5   .1148   95.6   YES
AFFECTED
  Product     Versions  Fixed
  SimpleHelp  5.5.0 –   —
TIMELINE
  May 21  Reserved by CNA
  Jun 12  Public exploit reference published
  Jun 29  Added to CISA KEV, due Jul 2
  Jun 29  Published (CNA: VulnCheck)
CWE-347 · CNA: VulnCheck · 5 references · NVD status: Analyzed · KEV due July 2, 2026
joomshaper.com Helix3 extension for Joomla — Joomla Extension - joomshaper.com - Unauthenticated access to Helix3 template ajax handler
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  H  N    7.5   .2831   98.0     —
AFFECTED
  Product                      Versions     Fixed
  Helix3 extension for Joomla  1.0-3.1.1 –  —
TIMELINE
  May 27  Reserved by CNA
  Jun 29  Published (CNA: Joomla)
CWE-284 · CNA: Joomla · 1 reference · NVD status: Analyzed
Apache Tomcat: XSS in number guess example
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  C  L  L  N    6.1   .0425   90.2     —
AFFECTED
  Product        Versions     Fixed
  Apache Tomcat  11.0.0-M1 –  —
TIMELINE
  Jun 4   Reserved by CNA
  Jun 29  Published (CNA: apache)
CWE-80 · CNA: apache · 2 references · NVD status: Analyzed
gorse-io gorse — Gorse - Unauthenticated Database Dump and Restore via /api/dump and /api/restore Endpoints
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0334   87.6     —
AFFECTED
  Product  Versions     Fixed
  gorse    unspecified  0.5.10
TIMELINE
  Jun 23  Reserved by CNA
  Jun 29  Published (CNA: VulnCheck)
CWE-306 · CNA: VulnCheck · 4 references · NVD status: Deferred
D-Link DCS-935L POST Parameter setconf.cgi sub_400E40 os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    7.4   .0323   87.2     —
AFFECTED
  Product   Versions   Fixed
  DCS-935L  1.10.01 –  —
TIMELINE
  Jun 28  Reserved by CNA
  Jun 29  Published (CNA: VulDB)
CWE-77, CWE-78 · CNA: VulDB · 6 references · NVD status: Analyzed
Apache Tomcat: Authentication bypass with JNDIRealm and GSSAPI authenticated bind
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  L  L  L    7.3   .0286   85.6     —
AFFECTED
  Product        Versions     Fixed
  Apache Tomcat  11.0.0-M1 –  —
TIMELINE
  Jun 17  Reserved by CNA
  Jun 29  Published (CNA: apache)
CWE-304 · CNA: apache · 2 references · NVD status: Analyzed
Apache Tomcat: Security constraints for default servlet ignored method
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  L  L  N    6.5   .0153   72.6     —
AFFECTED
  Product        Versions     Fixed
  Apache Tomcat  11.0.0-M1 –  —
TIMELINE
  Jun 17  Reserved by CNA
  Jun 29  Published (CNA: apache)
CWE-285 · CNA: apache · 2 references · NVD status: Analyzed
openwrt luci-proto-openvpn — luci-proto-openvpn - Command Injection via cl_meta Parameter in generateKey
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    8.7   .0140   70.2     —
AFFECTED
  Product             Versions     Fixed
  luci-proto-openvpn  unspecified  e4ff45ecbc6ad212951815c8c99b2749fbd7de6b
TIMELINE
  Jun 26  Reserved by CNA
  Jun 29  Published (CNA: VulnCheck)
CWE-78 · CNA: VulnCheck · 3 references · NVD status: Deferred
Wavlink WL-NU516U1-A POST Parameter wireless.cgi sub_401D68 command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   L   L    2.1   .0131   68.2     —
AFFECTED
  Product       Versions         Fixed
  WL-NU516U1-A  M16U1_V240425 –  —
TIMELINE
  Jun 28  Reserved by CNA
  Jun 29  Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 10 references · NVD status: Deferred
openwrt luci-app-tailscale-community — luci-app-tailscale-community - Command Injection via tailscale.do_login RPC
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   L   N   H   H   H    7.7   .0118   65.0     —
AFFECTED
  Product                       Versions     Fixed
  luci-app-tailscale-community  unspecified  —
TIMELINE
  Jun 26  Reserved by CNA
  Jun 29  Published (CNA: VulnCheck)
CWE-78 · CNA: VulnCheck · 2 references · NVD status: Deferred
Edimax EW-7478APC POST Request formAccept os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   L   L    2.1   .0116   64.4     —
AFFECTED
  Product     Versions  Fixed
  EW-7478APC  1.04 –    —
TIMELINE
  Jun 28  Reserved by CNA
  Jun 29  Published (CNA: VulDB)
CWE-77, CWE-78 · CNA: VulDB · 5 references · NVD status: Deferred
Edimax EW-7478APC POST Request formiNICbasic os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   L   L    2.1   .0116   64.4     —
AFFECTED
  Product     Versions  Fixed
  EW-7478APC  1.04 –    —
TIMELINE
  Jun 28  Reserved by CNA
  Jun 29  Published (CNA: VulDB)
CWE-77, CWE-78 · CNA: VulDB · 5 references · NVD status: Deferred
Edimax EW-7478APC POST Request formStaDrvSetup os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   L   L    2.1   .0116   64.4     —
AFFECTED
  Product     Versions  Fixed
  EW-7478APC  1.04 –    —
TIMELINE
  Jun 28  Reserved by CNA
  Jun 29  Published (CNA: VulDB)
CWE-77, CWE-78 · CNA: VulDB · 5 references · NVD status: Deferred
coollabsio coolify — Coolify: Authenticated Remote Code Execution via Command Injection in Destination Network Management
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0109   62.6     —
AFFECTED
  Product  Versions            Fixed
  coolify  < 4.0.0-beta.471 –  —
TIMELINE
  Mar 30  Reserved by CNA
  Jun 29  Published (CNA: GitHub_M)
CWE-78 · CNA: GitHub_M · 1 reference · NVD status: Deferred
Apple iOS and iPadOS — This issue was addressed with improved input validation. This issue is fixed in iOS 18.7.10 and iPadOS 18.7…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  H  H    9.1   .0096   58.5     —
AFFECTED
  Product         Versions     Fixed
  iOS and iPadOS  unspecified  —
  macOS           unspecified  —
  tvOS            unspecified  —
  visionOS        unspecified  —
  watchOS         unspecified  —
TIMELINE
  Apr 7   Reserved by CNA
  Jun 29  Published (CNA: apple)
CWE-20 · CNA: apple · 8 references · NVD status: Modified
zephyrproject zephyr — Path traversal in Zephyr HTTP server static-filesystem resource handler allows unauthenticated remote arbitrary file read
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0091   57.1     —
AFFECTED
  Product  Versions  Fixed
  zephyr   4.0.0 –   —
TIMELINE
  May 5   Reserved by CNA
  Jun 29  Public exploit reference published
  Jun 29  Published (CNA: zephyr)
CWE-22, CWE-23 · CNA: zephyr · 2 references · NVD status: Modified
Apple Safari — A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5.2,…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  U  H  H  H    8.8   .0089   56.5     —
AFFECTED
  Product         Versions     Fixed
  Safari          unspecified  —
  iOS and iPadOS  unspecified  —
  macOS           unspecified  —
  tvOS            unspecified  —
  visionOS        unspecified  —
  watchOS         unspecified  —
TIMELINE
  May 1   Reserved by CNA
  Jun 29  Published (CNA: apple)
CWE-416 · CNA: apple · 6 references · NVD status: Modified
Apple Safari — The issue was addressed with improved input validation. This issue is fixed in Safari 26.5.2, iOS 18.7.10 a…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  C  L  L  L    7.1   .0083   54.5     —
AFFECTED
  Product         Versions     Fixed
  Safari          unspecified  —
  iOS and iPadOS  unspecified  —
  macOS           unspecified  —
  tvOS            unspecified  —
  visionOS        unspecified  —
  watchOS         unspecified  —
TIMELINE
  May 1   Reserved by CNA
  Jun 29  Published (CNA: apple)
CWE-20 · CNA: apple · 7 references · NVD status: Modified
TP-Link Systems Inc. TL-WR841N v14 — Authenticated Stack-Based Buffer Overflow in TP-Link TL-WR841N Web Interface
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   A   L   N   H   N   N   N   H    6.8   .0080   53.8     —
AFFECTED
  Product        Versions     Fixed
  TL-WR841N v14  unspecified  —
TIMELINE
  May 20  Reserved by CNA
  Jun 29  Published (CNA: TPLink)
CWE-787, CWE-121 · CNA: TPLink · 3 references · NVD status: Analyzed
n/a n/a — Gigamon GVOS v5.16.1 and below is vulnerable to Directory Traversal in the GVOS H-VUE subsystem.
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0069   50.0     —
AFFECTED
  Product  Versions  Fixed
  n/a      n/a –     —
TIMELINE
  Apr 6   Reserved by CNA
  Jun 29  Public exploit reference published
  Jun 29  Published (CNA: mitre)
CWE-22 · CNA: mitre · 2 references · NVD status: Analyzed
Apple Safari — A memory corruption issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  U  N  N  H    6.5   .0069   49.7     —
AFFECTED
  Product         Versions     Fixed
  Safari          unspecified  —
  iOS and iPadOS  unspecified  —
  macOS           unspecified  —
  tvOS            unspecified  —
  visionOS        unspecified  —
  watchOS         unspecified  —
TIMELINE
  May 1   Reserved by CNA
  Jun 29  Published (CNA: apple)
CWE-119 · CNA: apple · 6 references · NVD status: Modified
Apple Safari — An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in Safari 26…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  U  N  N  H    6.5   .0068   49.4     —
AFFECTED
  Product         Versions     Fixed
  Safari          unspecified  —
  iOS and iPadOS  unspecified  —
  macOS           unspecified  —
  tvOS            unspecified  —
  visionOS        unspecified  —
  watchOS         unspecified  —
TIMELINE
  May 1   Reserved by CNA
  Jun 29  Published (CNA: apple)
CWE-787 · CNA: apple · 7 references · NVD status: Modified
FrontAccounting < 2.4.20 Path Traversal RCE via attachment upload
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    8.7   .0063   47.2     —
AFFECTED
  Product          Versions     Fixed
  FrontAccounting  unspecified  701fea6848da4a02fb83d30f07a9c0473d6b7e33
TIMELINE
  Apr 13  Reserved by CNA
  Jun 29  Published (CNA: VulnCheck)
CWE-22 · CNA: VulnCheck · 4 references · NVD status: Deferred
Apple Safari — The issue was addressed with improved memory handling. This issue is fixed in Safari 26.5.2, iOS 26.5.2 and…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  U  N  N  H    6.5   .0060   45.8     —
AFFECTED
  Product         Versions     Fixed
  Safari          unspecified  —
  iOS and iPadOS  unspecified  —
  macOS           unspecified  —
TIMELINE
  May 1   Reserved by CNA
  Jun 29  Published (CNA: apple)
CWE-119, CWE-416 · CNA: apple · 3 references · NVD status: Analyzed
Apache Tomcat: Bad ornext processing in RewriteValve
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  L  L  L    7.3   .0058   45.0     —
AFFECTED
  Product        Versions     Fixed
  Apache Tomcat  11.0.0-M1 –  —
TIMELINE
  Jun 9   Reserved by CNA
  Jun 29  Published (CNA: apache)
CWE-670 · CNA: apache · 2 references · NVD status: Analyzed
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-437206.543.8AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-556077.743.5anthropicsclaude-codeCWE-22Claude Code: Sandbox Escape via Git Worktree Path Confusion Allows Unsandboxe…
CVE-2026-552769.143.1Apache Software FoundationApache TomcatCWE-670Apache Tomcat: Logged effective web.xml is incomplete
CVE-2026-345978.842.1coollabsiocoolifyCWE-78Coolify: Authenticated Host RCE
CVE-2026-534349.142.1Apache Software FoundationApache TomcatCWE-390Apache Tomcat: Invalid CRL configuration doesn't trigger failure for FFM Conn…
CVE-2026-437017.140.6AppleSafariCWE-284The issue was addressed with improved checks. This issue is fixed in Safari 2…
CVE-2026-437136.539.4AppleSafariCWE-284A permissions issue was addressed with additional restrictions. This issue is…
CVE-2026-512197.539.1n/an/aCWE-122A heap buffer overflow in the HighPriorityASDUQueue_hasUnconfirmedIMessages f…
CVE-2026-137637.938.9AWSAWS Application Load BalancerCWE-444HTTP/2 Stream Parser Confusion Body-Inspection Bypass in AWS Application Load…
CVE-2026-376379.138.7n/an/aCWE-94An issue in Alexantr filemanager v.1.0 allows a remote attacker to execute ar…
CVE-2026-559556.538.5Apache Software FoundationApache TomcatCWE-287Apache Tomcat: EncryptInterceptor not protected against replay attacks
CVE-2026-135177.438.4TendaJD12LCWE-119Tenda JD12L WifiBasicSet formWifiBasicSet stack-based overflow
CVE-2026-135187.438.4TendaJD12LCWE-119Tenda JD12L addressNat fromAddressNat stack-based overflow
CVE-2026-135197.438.4TendaJD12LCWE-119Tenda JD12L NatStaticSetting fromNatStaticSetting stack-based overflow
CVE-2026-135397.438.4WavlinkWL-NU516U1-ACWE-119Wavlink WL-NU516U1-A POST Parameter wireless.cgi sub_407504 stack-based overflow
CVE-2026-560187.538.0GTERMARSJavaScript::Minifier::XSCWE-400JavaScript::Minifier::XS versions before 0.16 for Perl leak memory on every c…
CVE-2026-437058.837.9AppleSafariCWE-843A type confusion issue was addressed with improved checks. This issue is fixe…
CVE-2026-135827.437.7EdimaxEW-7478APCCWE-119Edimax EW-7478APC POST Request formUSBAccount buffer overflow
CVE-2026-135285.537.2YunaiVruoyi-vue-proCWE-22YunaiV/zhijiantianya ruoyi-vue-pro AppFileController File Upload Endpoint Fil…
CVE-2026-135627.437.0EdimaxEW-7478APCCWE-119Edimax EW-7478APC POST Request formiNICSiteSurvey buffer overflow
CVE-2026-135637.437.0EdimaxEW-7478APCCWE-119Edimax EW-7478APC POST Request formL2TPSetup stack-based overflow
CVE-2026-135647.437.0EdimaxEW-7478APCCWE-119Edimax EW-7478APC POST Request formPPPoESetup stack-based overflow
CVE-2026-135807.437.0EdimaxEW-7478APCCWE-119Edimax EW-7478APC POST Request formQoS buffer overflow
CVE-2026-135837.437.0EdimaxEW-7478APCCWE-119Edimax EW-7478APC POST Request formUSBFolder buffer overflow
CVE-2026-137627.936.5AWSAmazon CloudFrontCWE-444HTTP/2 Stream Parser Confusion Body-Inspection Bypass in Amazon CloudFront wi…
CVE-2026-437186.536.4AppleSafariCWE-121A stack overflow was addressed with improved input validation. This issue is …
CVE-2026-437216.536.4AppleSafariCWE-732This issue was addressed through improved state management. This issue is fix…
CVE-2026-437326.536.4AppleSafariCWE-22A path handling issue was addressed with improved validation. This issue is f…
CVE-2026-257078.835.1SUSElibzyppCWE-23Handcrafted repo metadata may cause arbitrary local files to be overwritten b…
CVE-2026-135872.935.0seladbPcapPlusPlusCWE-119seladb PcapPlusPlus LightPcapNg light_pcapng.c parse_by_block_type heap-based…
CVE-2026-131658.634.9Krajowa Izba RozliczeniowaSzafirHostCWE-434Remote Code Execution in SzafirHost
CVE-2026-410529.434.5SUSERancherCWE-305Rancher Privilege Escalation from Project Owner to Host
CVE-2026-512187.534.1n/an/aCWE-122A heap buffer overflow in the TS7Worker::PerformFunctionWrite() function (/co…
CVE-2026-534272.333.7leandrocpmdexCWE-79Cross-site scripting in MDEx via unescaped highlight_lines_class code-fence a…
CVE-2026-437036.533.7AppleiOS and iPadOSCWE-125The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-436766.532.7AppleSafariCWE-125An out-of-bounds access issue was addressed with improved bounds checking. Th…
CVE-2026-135892.932.6seladbPcapPlusPlusCWE-119seladb PcapPlusPlus Telnet Subnegotiation Packet TelnetLayer.cpp getSubComman…
CVE-2026-135902.932.6seladbPcapPlusPlusCWE-119seladb PcapPlusPlus Modbus Protocol ModbusLayer.h getLength heap-based overflow
CVE-2026-437426.532.5AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-560177.532.2GTERMARSJavaScript::Minifier::XSCWE-125JavaScript::Minifier::XS versions before 0.16 for Perl crash with a NULL poin…
CVE-2026-136767.531.6fast-urifast-uriCWE-436fast-uri vulnerable to host confusion via failed IDN canonicalization
CVE-2026-135465.531.5FeehiCMSCWE-287Feehi CMS REST API Endpoint articles missing authentication
CVE-2026-135715.531.5SourceCodesterSimple Food Ordering SystemCWE-840SourceCodester Simple Food Ordering System cart.php logic error
CVE-2026-437045.331.3AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-117209.331.3GoogleMCP Toolbox for Databases (googleapis/mcp-toolbox)CWE-22Path Traversal in googleapis/mcp-toolbox HTTP Tool URL Builder
CVE-2026-135882.931.1seladbPcapPlusPlusCWE-119seladb PcapPlusPlus TLS Hello SSLHandshake.cpp getHandshakeVersion heap-based…
CVE-2026-137498.830.9SnowflakeSnowflake CLICWE-94Snowflake CLI Arbitrary Code Execution via Snowpark Annotation Processor Temp…
CVE-2026-135925.530.3liftoff-srCIPsterCWE-119liftoff-sr CIPster EtherNet IP Message append out-of-bounds write
CVE-2026-437084.330.2AppleSafariCWE-20The issue was addressed with improved input validation. This issue is fixed i…
CVE-2026-437066.529.9AppleiOS and iPadOSCWE-415A double free issue was addressed with improved memory management. This issue…
CVE-2026-561248.729.6shimosyanphpUploaderCWE-359phpUploader < 2.0.2 Unauthenticated Database Exposure via index model
CVE-2026-135432.929.5n/aDocumensoCWE-287Documenso Google OAuth Login handle-oauth-callback-url.ts improper authentica…
CVE-2026-437406.529.3AppleSafariCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-562857.729.1zedeusnitterCWE-918Nitter - Server-Side Request Forgery in /video Media Proxy Endpoint
CVE-2026-437126.529.1AppleSafariCWE-125The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-512217.528.1n/an/aCWE-284A buffer overflow in the Get_Attribute_List function of EIPStackGroup OpENer …
CVE-2026-437276.528.0AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-579608.326.9HiEventsDevHi.EventsCWE-359Hi.Events 1.9.0 - Unauthenticated Attendee PII Exposure via Check-in List sho…
CVE-2026-419926.926.4GNUgzipCWE-126Global Buffer Overflow in GNU gzip
CVE-2026-573319.926.4videowhisperPaid Videochat Turnkey SiteCWE-22WordPress Paid Videochat Turnkey Site plugin <= 7.4.8 - Arbitrary File Deleti…
CVE-2026-137448.824.7SnowflakeSnowflake CLICWE-89Snowflake CLI SQL Injection Through Improper Neutralization of User-Controlle…
CVE-2026-437466.524.3AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-76566.823.9zephyrprojectzephyrCWE-290Broken IPv6 Neighbor Discovery input validation allows spoofed RA/NS/NA accep…
CVE-2026-548895.123.6leandrocpmdexCWE-79Unsanitized URL schemes in MDEx Quill Delta output allow javascript: injectio…
CVE-2026-126166.923.4Eclipse FoundationEclipse CSI - PIACWE-117The /v1/upload/sbom endpoint extracts the iss claim from the attacker-supplie…
CVE-2026-437247.823.3AppleiOS and iPadOSCWE-20The issue was addressed with improved input sanitization. This issue is fixed…
CVE-2026-437358.122.8AppleSafariCWE-352The issue was addressed with improved checks. This issue is fixed in Safari 2…
CVE-2026-289796.522.5AppleSafariCWE-125An out-of-bounds access issue was addressed with improved bounds checking. Th…
CVE-2026-137583.722.0MIKCryptXCWE-208CryptX versions before 0.088_001 for Perl compare AEAD authentication tags in…
CVE-2026-579508.622.0Yunairuoyi-vue-proCWE-863ruoyi-vue-pro - Incorrect Permission Namespace in ErpSaleOrderController
CVE-2026-135222.121.9InvestintechSlimPDFReaderCWE-119Investintech SlimPDFReader PDF File SlimPDFReader.exe TeighaDo+0x25cde0 out-o…
CVE-2026-135492.121.8CodeAstroComplaint Management SystemCWE-285CodeAstro Complaint Management System Report Endpoint Report.php deletereport…
CVE-2026-128568.821.7Red HatRed Hat OpenShift Dev Spaces 3.29CWE-88Vscode-java: vscode: command injection vulnerability in the javadoc hover pro…
CVE-2026-436996.521.6AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-437346.521.6AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-135535.521.3itsourcecodeOnline Hotel Management SystemCWE-284itsourcecode Online Hotel Management System controller.php add unrestricted u…
CVE-2026-135335.521.1agentejoCockpit CMSCWE-425agentejo Cockpit CMS htaccess config.yaml YAMLLoad file access
CVE-2026-437096.521.0AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-135362.120.9n/aGotoHTTPCWE-79GotoHTTP reg.12x cross site scripting
CVE-2026-567837.120.4parseablehqparseableCWE-522Parseable < 2.9.2 - Cleartext Credential Exposure in Notification Target API
CVE-2026-135475.520.3Hanwange-Face General Management PlatformCWE-284Hanwang e-Face General Management Platform upload.do unrestricted upload
CVE-2026-135685.520.3SourceCodesterInventory Management SystemCWE-266SourceCodester Inventory Management System User Registration Endpoint users_h…
CVE-2026-405237.220.1FrontAccountingFrontAccountingCWE-89FrontAccounting < 2.4.20 SQL Injection via reporting/rep710.php
CVE-2026-405247.220.1FrontAccountingFrontAccountingCWE-89FrontAccounting < 2.4.20 SQL Injection via get_gl_transactions()
CVE-2026-135542.119.7itsourcecodeOnline Hotel Management SystemCWE-79itsourcecode Online Hotel Management System POST Request controller.php add c…
CVE-2026-135562.119.7itsourcecodeOnline Hotel Management SystemCWE-79itsourcecode Online Hotel Management System POST Request controller.php edit …
CVE-2026-135572.119.7itsourcecodeOnline Hotel Management SystemCWE-79itsourcecode Online Hotel Management System POST Request controller.php add c…
CVE-2026-135672.119.7code-projectsOnline Music SiteCWE-79code-projects Online Music Site POST Request Feedback.php cross site scripting
CVE-2026-579466.319.6iv-orgInvidiousCWE-862Invidious - Private Playlist Disclosure via Unauthenticated RSS Feed Endpoint
CVE-2026-135215.519.1SourceCodesterClass and Exam Timetabling SystemCWE-74SourceCodester Class and Exam Timetabling System preview5.php sql injection
CVE-2026-567807.718.5modoboamodoboaCWE-639Modoboa < 2.9.0 - Insecure Direct Object Reference in Account Password Change…
CVE-2026-135242.918.3CherryHQcherry-studioCWE-266CherryHQ cherry-studio MCP OAuth Local Callback Server callback.ts improper a…
CVE-2026-135265.518.2SourceCodesterClass and Exam Timetabling SystemCWE-74SourceCodester Class and Exam Timetabling System edit_class.php sql injection
CVE-2026-135275.518.2SourceCodesterClass and Exam Timetabling SystemCWE-74SourceCodester Class and Exam Timetabling System preview4.php sql injection
CVE-2026-135505.518.2itsourcecodeBaptism Information Management SystemCWE-74itsourcecode Baptism Information Management System delbaptism.php sql injection
CVE-2026-135515.518.2itsourcecodeBaptism Information Management SystemCWE-74itsourcecode Baptism Information Management System editBaptism.php sql injection
CVE-2026-135525.518.2itsourcecodeOnline Hotel Management SystemCWE-74itsourcecode Online Hotel Management System controller.php edit sql injection
CVE-2026-135555.518.2itsourcecodeOnline Hotel Management SystemCWE-74itsourcecode Online Hotel Management System controller.php add sql injection
CVE-2026-135595.518.2code-projectsReal State ServicesCWE-74code-projects Real State Services single-list_sale.php add sql injection
CVE-2026-135655.518.2SourceCodesterClass and Exam Timetabling SystemCWE-74SourceCodester Class and Exam Timetabling System edit_class1.php sql injection
CVE-2026-135665.518.2SourceCodesterClass and Exam Timetabling SystemCWE-74SourceCodester Class and Exam Timetabling System preview3.php sql injection
CVE-2026-579535.318.3its-a-featureMythicCWE-863Mythic < 3.4.0.60 - Unauthorized Automation Workflow Modification via eventin…
CVE-2026-437318.818.1AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-437225.518.0AppleiOS and iPadOSCWE-20The issue was addressed with improved input sanitization. This issue is fixed…
CVE-2026-129127.317.6Red HatRed Hat Enterprise Linux 10CWE-122Libtiff: libtiff: heap-based buffer overflow via crafted pixarlog-compressed …
CVE-2026-573467.117.5EpiphytEmbed PrivacyCWE-22WordPress Embed Privacy plugin <= 1.12.3 - Arbitrary File Deletion vulnerability
CVE-2026-573327.117.4WP SwingsWallet System for WooCommerceCWE-862WordPress Wallet System for WooCommerce plugin <= 2.7.6 - Broken Access Contr…
CVE-2026-134376.517.2DevolutionsPowerShell UniversalCWE-201Insertion of sensitive information into sent data in the AI Agent job API in …
CVE-2026-574989.617.0coollabsiocoolifyCWE-639Coolify Cross-Team IDOR: Livewire Components Accept Unscoped server_id and de…
CVE-2026-573416.516.7ColissimoColissimo Officiel : Méthodes de livraison pour WooCommerceCWE-639WordPress Colissimo Officiel : Méthodes de livraison pour WooCommerce plugin …
CVE-2026-398726.516.6AppleSafariCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-436636.516.6AppleSafariCWE-119The issue was addressed with improved memory handling. This issue is fixed in…
CVE-2026-579572.316.6papermarkpapermarkCWE-942Papermark 0.22.0 - CORS Misconfiguration in Viewer Upload Endpoint
CVE-2026-573276.316.5mainwpMainWPCWE-862WordPress MainWP plugin <= 6.1.1 - Broken Access Control vulnerability
CVE-2026-579517.116.2its-a-featureMythicCWE-863Mythic < 3.4.0.60 - Broken Permission Filter in payload_build_step Table
CVE-2026-437006.515.9AppleSafariCWE-346A cross-origin issue was addressed with improved tracking of security origins…
CVE-2026-437266.515.7AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-579476.315.1pinpoint-apmpinpointCWE-918Pinpoint - Server-Side Request Forgery via Alarm Webhook Registration
CVE-2026-135292.915.2n/aYzmCMSCWE-74YzmCMS index.php sql injection
CVE-2026-437176.515.0AppleSafariCWE-416A use-after-free issue was addressed with improved memory management. This is…
CVE-2026-579558.314.7SigNozsignozCWE-89SigNoz 0.130.1 - SQL Injection in Alert History Endpoints via Rule ID Parameter
CVE-2026-418967.514.2coollabsiocoolifyCWE-287Coolify: Unauthenticated Deployment Trigger via Webhook HMAC Bypass with Null…
CVE-2026-579497.114.1Yunairuoyi-vue-proCWE-862ruoyi-vue-pro - Missing Authorization in CRM Follow-up Record GET Endpoint
CVE-2026-567816.914.2teableioteableCWE-639Teable - Unauthenticated Hidden Field Disclosure via Projection Parameter Ove…
CVE-2026-135936.514.0GTERMARSCSS::Minifier::XSCWE-401CSS::Minifier::XS versions before 0.14 for Perl have a memory leak when the e…
CVE-2026-573356.514.0Ads WPQuadsAds by WPQuadsCWE-862WordPress Ads by WPQuads plugin <= 3.0.3 - Broken Access Control vulnerability
CVE-2025-73866.813.6HitachiHitachi Virtual Storage Platform 5100, 5200, 5500, 5600, 5100H, 5200H, 5500H, 5600H, VX8CWE-522Information exposure vulnerability in Hitachi Storage Navigator
CVE-2026-135402.113.6n/aGitBucketCWE-918GitBucket RepositoryCreationService.scala Git.cloneRepository.setURI server-s…
CVE-2026-135442.112.1FeehiCMSCWE-266Feehi CMS API users access control
CVE-2026-579566.111.9SigNozsignozCWE-639SigNoz < 0.133.0 - Cross-Organization Insecure Direct Object Reference in Ale…
CVE-2026-345927.711.8coollabsiocoolifyCWE-639Coolify: Cross-Team IDOR via Unscoped Server and Project Lookups Exposes SSH …
CVE-2026-579436.011.4LibrePhotoslibrephotosCWE-639LibrePhotos < 1.0.0 - Insecure Direct Object Reference in SetPhotosShared End…
CVE-2026-135692.011.5weng-xianhuEyouCMSCWE-74weng-xianhu EyouCMS API index.php sql injection
CVE-2026-106475.311.0zephyrprojectzephyrCWE-667Deadlock denial of service in USB CDC-NCM device class on TX enqueue failure
CVE-2026-573286.510.8Strategy11 TeamBusiness DirectoryCWE-79WordPress Business Directory plugin <= 6.4.22 - Cross Site Scripting (XSS) vu…
CVE-2026-573296.510.8WOOCOMMERCE DESIGNER PROWooCommerce Designer ProCWE-79WordPress WooCommerce Designer Pro plugin <= 1.9.34 - Cross Site Scripting (X…
CVE-2026-100837.510.7UnknownAPCu ManagerAPCu Manager < 4.5.0 - Unauthenticated Stored XSS via Cache Key Pollution
CVE-2026-135322.110.7itsourcecodeHospital Management SystemCWE-74itsourcecode Hospital Management System departmentDoctor.php sql injection
CVE-2026-135352.110.7CodeAstroHuman Resource Management SystemCWE-74CodeAstro Human Resource Management System View Endpoint Employee_model.php G…
CVE-2026-135202.110.2itsourcecodeHospital Management SystemCWE-74itsourcecode Hospital Management System Appointment appointmentapproval.php s…
CVE-2026-135252.110.2CodeAstroHuman Resource Management SystemCWE-74CodeAstro Human Resource Management System Update_Earn_Leave Endpoint Employe…
CVE-2026-135302.110.2itsourcecodeHospital Management SystemCWE-74itsourcecode Hospital Management System Appointment appointmentdetail.php sql…
CVE-2026-135312.110.2itsourcecodeHospital Management SystemCWE-74itsourcecode Hospital Management System department.php sql injection
CVE-2026-135412.110.2itsourcecodeHospital Management SystemCWE-74itsourcecode Hospital Management System doctorchangepassword.php sql injection
CVE-2026-135422.110.2itsourcecodeHospital Management SystemCWE-74itsourcecode Hospital Management System doctorprofile.php sql injection
CVE-2026-135482.110.2itsourcecodeHospital Management SystemCWE-74itsourcecode Hospital Management System doctortimings.php sql injection
CVE-2026-135722.110.2itsourcecodeHospital Management SystemCWE-74itsourcecode Hospital Management System insertbillingrecord.php sql injection
CVE-2026-135782.110.2itsourcecodeHospital Management SystemCWE-74itsourcecode Hospital Management System patientdetail.php sql injection
CVE-2026-135792.110.2itsourcecodeHospital Management SystemCWE-74itsourcecode Hospital Management System patientchangepassword.php sql injection
CVE-2025-29028.310.0HitachiHitachi Virtual Storage Platform E390, E590, E790, E990, E1090, E390H, E590H, E790H, E1090HCWE-862Improper Authorization Vulnerability of Maintenance Utility in Hitachi Virtua…
CVE-2026-135582.010.0CodeAstroComplaint Management SystemCWE-79CodeAstro Complaint Management System Report addreport cross site scripting
CVE-2026-135341.310.1CherryHQcherry-studioCWE-285CherryHQ cherry-studio CherryIN Preload API MemoryService.ts sha256 authoriza…
CVE-2026-135911.310.0DeepMystMystiCWE-266DeepMyst Mysti Contact Tracking ChannelBridge.ts _isTrackedConversation impro…
CVE-2026-579598.29.3HiEventsDevHi.EventsCWE-367Hi.Events 1.9.0 - Promo Code Max-Usage Bypass via Asynchronous Job Race Condi…
CVE-2026-579426.99.2LibreTranslateLibreTranslateCWE-348LibreTranslate - IP Spoofing via X-Forwarded-For Header
CVE-2026-573346.59.0weDevsWP User FrontendCWE-862WordPress WP User Frontend plugin <= 4.3.7 - Broken Access Control vulnerability
CVE-2026-573396.59.0Strategy11 TeamBusiness DirectoryCWE-862WordPress Business Directory plugin <= 6.4.23 - Broken Access Control vulnera…
CVE-2026-573406.59.0shohei.tanakaJapanized For WooCommerceCWE-862WordPress Japanized For WooCommerce plugin <= 2.9.12 - Broken Access Control …
CVE-2026-135702.09.1SourceCodesterInventory Management SystemCWE-79SourceCodester Inventory Management System User Registration Endpoint users_h…
CVE-2026-579455.38.9photoprismphotoprismCWE-639PhotoPrism - Unauthorized User Profile Modification via PUT /api/v1/users/{ui…
CVE-2026-137528.08.7SnowflakeSnowflake CLICWE-89Snowflake CLI SQL Injection Through Improper Neutralization of Parameters in …
CVE-2026-310166.58.4n/an/aCWE-352Cross Site Request Forgery vulnerability in Squidex.io Squidex CMS v.7.21.0 a…
CVE-2026-564574.37.9HCLSoftwareHCL DevOps Deploy / HCL LaunchCWE-532HCL DevOps Deploy / HCL Launch is susceptible to an exposure of sensitive inf…
CVE-2026-573266.17.4Strategy11 TeamBusiness DirectoryCWE-79WordPress Business Directory plugin <= 6.4.22 - Cross Site Scripting (XSS) vu…
CVE-2026-576764.37.4Matteo MannaSimple User AvatarCWE-639WordPress Simple User Avatar plugin <= 4.9 - Insecure Direct Object Reference…
CVE-2026-573207.17.2RealMag777BEARCWE-79WordPress BEAR plugin <= 1.1.8 - Cross Site Scripting (XSS) vulnerability
CVE-2026-579526.06.8its-a-featureMythicCWE-862Mythic < 3.4.0.60 - Unauthorized C2 Profile Configuration Access via Unverifi…
CVE-2026-548886.96.5leandrocpmdexCWE-674Uncontrolled recursion over deeply nested Markdown crashes the BEAM in mdex
CVE-2026-579545.36.5yahooelideCWE-862Elide 7.1.17 - Permission Bypass in Sort Expression Validation
CVE-2026-579585.16.6inovectormixpostCWE-79Mixpost 2.6.0 - Reflected XSS via OAuth Callback Error Parameter
CVE-2026-92676.96.3Eclipse FoundationEclipse tinydtlsCWE-125Eclipse tinydtls before commit b3efd41ad111a4920f599f51ffa4f5e9f1e72221 conta…
CVE-2026-573306.56.4StylemixMasterStudy LMSCWE-79WordPress MasterStudy LMS plugin <= 3.7.27 - Cross Site Scripting (XSS) vulne…
CVE-2026-135372.15.9CodeAstroHuman Resource Management SystemCWE-352CodeAstro Human Resource Management System cross-site request forgery
CVE-2026-558447.55.7home-assistantcoreCWE-319Home Assistant: iOS Companion App ignores internal SSID allowlist for connect…
CVE-2026-543698.45.0acl projectaclCWE-59acl < 2.4.0 Symlink Traversal Privilege Escalation via libacl Functions
CVE-2026-106485.54.6zephyrprojectzephyrCWE-476NULL-pointer dereference in MCUmgr serial/console SMP transport on buffer-poo…
CVE-2026-405227.14.5FrontAccountingFrontAccountingCWE-89FrontAccounting < 2.4.20 SQL Injection via rep601.php
CVE-2026-137576.24.5Red HatRed Hat Enterprise Linux 10CWE-674P11-kit: stack exhaustion via unbounded recursion in rpc attribute parsing
CVE-2026-579976.34.5strapistrapiCWE-327Strapi users-permissions - JWT Algorithm Confusion via Missing Algorithm Conf…
CVE-2026-573337.14.0Spencer HawsLink Whisper FreeCWE-79WordPress Link Whisper Free plugin <= 0.9.4 - Reflected Cross Site Scripting …
CVE-2026-573367.14.0AstoundifyJobifyCWE-79WordPress Jobify theme <= 4.3.2 - Cross Site Scripting (XSS) vulnerability
CVE-2026-573377.14.0PluginOpsLanding Page BuilderCWE-79WordPress Landing Page Builder plugin <= 1.5.3.5 - Cross Site Scripting (XSS)…
CVE-2026-573387.14.0Repute InfoSystemsARFormsCWE-79WordPress ARForms plugin <= 7.1.2 - Reflected Cross Site Scripting (XSS) vuln…
CVE-2026-534286.94.0leandrocpmdexCWE-789Unbounded memory allocation in highlight_lines range expansion in mdex
CVE-2026-137486.33.8SnowflakeSnowflake CLICWE-22Snowflake CLI Arbitrary Local File Read and Exfiltration Through Improper Fil…
CVE-2026-136016.53.2Red HatRed Hat Enterprise Linux 8CWE-693Yelp: yelp-xsl: overly permissive content security policy in yelp allows host…
CVE-2026-543718.43.1attr projectattrCWE-59attr < 2.6.0 Symlink Traversal Privilege Escalation via getfattr/setfattr
CVE-2026-579197.83.1n/an/aCWE-276PBackupVSS.exe in Matrix42 Empirum before 25.5 and 26.x before 26.2 creates a…
CVE-2026-137465.43.1SnowflakeSnowflake CLICWE-89Snowflake CLI SQL Injection Through Improper Neutralization of Local CLI Para…
CVE-2026-534268.22.7leandrocpmdexCWE-770Atom-table exhaustion denial-of-service via JSON parse_document in MDEx
CVE-2026-579487.62.7pinpoint-apmpinpointCWE-614Pinpoint - Insecure Session Cookie Attributes in pinpointJwt
CVE-2026-534296.92.7leandrocpmdexCWE-401Unbounded native memory leak in mdex escaped-tag rendering enables unauthenti…
CVE-2026-533255.52.7LinuxLinuxCWE-476agp/amd64: Fix broken error propagation in agp_amd64_probe()
CVE-2026-579664.42.7Red HatRed Hat Enterprise Linux 10CWE-22Spice-vdagent: path traversal in file transfer via unsanitized filename
CVE-2026-137519.62.0SnowflakeSnowflake CLICWE-829Snowflake CLI Server-Side Request Forgery via Arbitrary URL Fetch in !source/…
CVE-2026-464064.42.0anthropicsclaude-codeCWE-59Claude Code: Insecure Temporary File in /copy Command Enables Response Disclo…
CVE-2026-419912.02.0GNUgzipCWE-377Predictable Temporary File in GNU gzip
CVE-2026-579655.11.7Red HatRed Hat Enterprise Linux 10CWE-190Spice-vdagent: integer overflow in udscs_write() leading to heap buffer overflow
CVE-2026-437434.71.6AppleiOS and iPadOSCWE-362A race condition was addressed with improved state handling. This issue is fi…
CVE-2026-135231.91.6n/aGPACCWE-404GPAC ISOBMFF base_encoding.c data amplification
CVE-2026-135955.31.5Red HatRed Hat Hardened ImagesCWE-416Util-linux: util-linux: heap use-after-free in libblkid nested partition probing
CVE-2026-137505.51.4SnowflakeSnowflake CLICWE-532Snowflake CLI Sensitive Credential Exposure Through Debug Logging
CVE-2026-96764.31.1UnknownF4 Post Treef4 Post Tree < 2.0.5 - Subscriber+ Arbitrary Post Parent/Menu Order Modification
CVE-2026-543707.20.5acl projectaclCWE-367acl < 2.4.0 TOCTOU Symlink Traversal via getfacl/setfacl/chacl
CVE-2026-220787.30.4OPPOO+ ConnectCWE-266O+ Connect's lack of authentication for IPC channels led to a local privilege…
CVE-2026-137425.90.3Honeywell TechnologiesIQ MultiAccessCWE-367Lack of signature verification before execution of downloaded content
CVE-2025-08243.70.3HitachiHitachi Virtual Storage Platform One Block 23, 24, 26, 28CWE-347lack of validation for firmware update in Hitachi Virtual Storage

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-06-29 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.