boxscore/security
Tuesday, June 30, 2026 · all times UTC← 2026-06-29 · archive · 2026-07-01 →

Edition of June 30, 2026, continued — page 2 of 2. Back to page 1

Results (continued, ranked) — ranks 401–641 of 641
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-139755.316.4GoogleChromeCWE-125Out of bounds read in ANGLE in Google Chrome on Mac prior to 150.0.7871.47 al…
CVE-2026-563287.116.3CapgoCapgoCWE-670Capgo - Integrity Issue in Release Routing via Multiple Public Channels
CVE-2026-140196.516.3GoogleChromeCWE-522Inappropriate implementation in Passwords in Google Chrome prior to 150.0.787…
CVE-2026-140118.116.1GoogleChromeCWE-125Out of bounds read in SurfaceCapture in Google Chrome prior to 150.0.7871.47 …
CVE-2026-567775.316.0n8nn8nCWE-184n8n - AST Validator Bypass in Python Code Node
CVE-2026-581658.715.8openzitizitiCWE-862OpenZiti - Privilege Escalation to Admin via Unauthorized Enrollment Creation
CVE-2026-140939.615.7GoogleChromeCWE-416Use after free in Cast in Google Chrome prior to 150.0.7871.47 allowed a remo…
CVE-2026-140959.615.7GoogleChromeCWE-20Insufficient policy enforcement in Browser in Google Chrome prior to 150.0.78…
CVE-2026-140979.615.7GoogleChromeCWE-693Inappropriate implementation in WebAppInstalls in Google Chrome on Mac prior …
CVE-2026-140058.815.7GoogleChromeCWE-416Use after free in Omnibox in Google Chrome on Android prior to 150.0.7871.47 …
CVE-2026-139406.515.7GoogleChromeCWE-457Uninitialized Use in Cast in Google Chrome prior to 150.0.7871.47 allowed an …
CVE-2026-140569.615.6GoogleChromeCWE-20Insufficient validation of untrusted input in Media in Google Chrome prior to…
CVE-2026-140848.815.6GoogleChromeCWE-20Insufficient validation of untrusted input in Chromoting in Google Chrome pri…
CVE-2026-141157.515.6GoogleChromeCWE-20Insufficient validation of untrusted input in Cast in Google Chrome prior to …
CVE-2026-98367.515.4IBMInfoSphere Information ServerCWE-200IBM DataStage Flow Designer application is affected by an information disclos…
CVE-2025-363215.715.5IBMwatsonx.data intelligenceCWE-80Vulnerabilities found in Watson Data Intelligence
CVE-2026-140625.915.3GoogleChromeCWE-200Inappropriate implementation in Views in Google Chrome on ChromeOS prior to 1…
CVE-2026-534325.615.4fzffzfCWE-190Integer Overflow in fzf
CVE-2026-125604.415.3wpqodeEditorial Rating – Product Review & Rating SystemCWE-79Editorial Rating <= 4.0.5 - Authenticated (Administrator+) Stored Cross-Site …
CVE-2026-141228.115.2GoogleChromeCWE-20Insufficient validation of untrusted input in WebAppInstalls in Google Chrome…
CVE-2026-123495.315.3octagonwebstudioPremium Addons for KingComposerCWE-862Premium Addons for KingComposer <= 1.1.1 - Missing Authorization to Unauthent…
CVE-2026-581677.115.1ccfosnightingaleCWE-862Nightingale < 9.0.0-beta.2 - Datasource Credential Disclosure to Low-Privileg…
CVE-2026-140696.515.0GoogleChromeCWE-472Integer overflow in WebNN in Google Chrome prior to 150.0.7871.47 allowed a r…
CVE-2026-140716.515.0GoogleChromeCWE-1300Side-channel information leakage in WebAudio in Google Chrome prior to 150.0.…
CVE-2026-140986.515.0GoogleChromeCWE-200Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 a…
CVE-2026-141006.515.0GoogleChromeCWE-20Insufficient data validation in NetworkCache in Google Chrome prior to 150.0.…
CVE-2026-140584.315.0GoogleChromeCWE-693Insufficient policy enforcement in Parser in Google Chrome prior to 150.0.787…
CVE-2026-139734.215.0GoogleChromeCWE-451Inappropriate implementation in UI in Google Chrome prior to 150.0.7871.47 al…
CVE-2026-105137.214.9pfefferleWebmentionCWE-79Webmention <= 5.8.0 - Unauthenticated Stored Cross-Site Scripting via MF2 'ph…
CVE-2026-546738.214.6electron-userlandelectron-builderCWE-200electron-updater: Cross-origin redirect leaks `PRIVATE-TOKEN` and mixed-case …
CVE-2026-584487.114.7YunaiVyudao-cloudCWE-862yudao-cloud < 2026.06 - BPM Module Broken Access Control via process-instance…
CVE-2026-141019.614.5GoogleChromeCWE-269Insufficient policy enforcement in Sandbox in Google Chrome on Mac prior to 1…
CVE-2026-120856.514.5IBMUCD - IBM UrbanCode DeployCWE-201IBM DevOps Deploy / IBM UrbanCode Deploy (UCD) is susceptable to an Insertion…
CVE-2026-563335.314.6CapgoCapgoCWE-20Capgo - Server-Side Validation Bypass via Direct Browser-Side Organization Se…
CVE-2026-95764.914.6UnknownFluent BookingFluent Booking < 2.1.2 - Calendar Manager+ Sensitive Information Disclosure v…
CVE-2026-140664.314.6GoogleChromeCWE-20Insufficient validation of untrusted input in Chrome for iOS in Google Chrome…
CVE-2026-123886.514.4Red HatRed Hat Build of KeycloakCWE-266Keycloak-broker: keycloak: privilege escalation to realm administrator via im…
CVE-2026-141175.314.4GoogleChromeCWE-20Insufficient validation of untrusted input in DevTools in Google Chrome on Wi…
CVE-2026-140344.314.4GoogleChromeCWE-284Inappropriate implementation in WebXR in Google Chrome on Android prior to 15…
CVE-2026-134499.114.3IBMBusiness Automation Manager Open EditionsCWE-611XXE attack in IBM Business Automation Manager Open Editions
CVE-2026-449497.014.3SUSERancherCWE-306Unauthenticated namespace creation and RBAC injection via rancher-webhook Fle…
CVE-2026-139784.314.1GoogleChromeCWE-451Insufficient policy enforcement in PageInfo in Google Chrome prior to 150.0.7…
CVE-2026-139794.314.1GoogleChromeCWE-451Inappropriate implementation in Paint in Google Chrome prior to 150.0.7871.47…
CVE-2026-141529.614.0GoogleChromeCWE-787Out of bounds read and write in ANGLE in Google Chrome prior to 150.0.7871.47…
CVE-2026-139804.314.1GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-139814.314.1GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-140524.314.0GoogleChromeCWE-284Insufficient policy enforcement in FileSystem in Google Chrome prior to 150.0…
CVE-2026-449476.913.9SUSERancherCWE-281Stale PSA ClusterRoleBinding Persists After RoleTemplate Downgrade in Rancher
CVE-2026-140356.513.9GoogleChromeCWE-284Insufficient policy enforcement in Bluetooth in Google Chrome prior to 150.0.…
CVE-2026-140616.513.9GoogleChromeCWE-284Inappropriate implementation in Dawn in Google Chrome prior to 150.0.7871.47 …
CVE-2026-140966.513.9GoogleChromeCWE-200Inappropriate implementation in Input in Google Chrome on Android prior to 15…
CVE-2026-563696.313.9ImageMagickImageMagickCWE-323ImageMagick - Information Disclosure via AES-CTR Nonce Reuse in PasskeyEnciph…
CVE-2026-140544.313.9GoogleChromeCWE-602Insufficient policy enforcement in Network in Google Chrome prior to 150.0.78…
CVE-2026-101409.613.8IBMLangflow OSSCWE-639Cross-Tenant API Key Reuse and Billing Fraud in Langflow Voice Mode Subsystem
CVE-2026-140146.513.6GoogleChromeCWE-451Inappropriate implementation in Paint in Google Chrome prior to 150.0.7871.47…
CVE-2026-141125.313.6GoogleChromeCWE-203Inappropriate implementation in Enterprise in Google Chrome prior to 150.0.78…
CVE-2026-584477.113.4iv-orgInvidiousCWE-639Invidious - Cross-User Playlist Video Deletion via Missing Ownership Check
CVE-2026-115469.813.1IBMWebSphere Application Server - LibertyCWE-918IBM WebSphere Application Server Liberty is affected by a server-side request…
CVE-2026-563207.113.0CapgoCapgoCWE-285Capgo - Org/App Scope Mismatch in Device Creation Endpoint
CVE-2026-279556.613.0coollabsiocoolifyCWE-78Coolify: Command Injection via Single-Quote Breakout in `executeInDocker()`
CVE-2026-283225.613.0SolarWindsDatabase Performance AnalyzerCWE-20SolarWinds Database Performance Analyzer Stored Cross-Site Scripting Vulnerab…
CVE-2026-139954.312.9GoogleChromeCWE-20Insufficient validation of untrusted input in Autofill in Google Chrome on An…
CVE-2026-142094.313.0Red HatRed Hat build of Keycloak 26.4CWE-639Keycloak-admin-ui: keycloak-admin-ui:admin ui extension brute-force-user endp…
CVE-2026-583767.212.9DolibarrdolibarrCWE-89Dolibarr - SQL Injection via sqlfilters Parameter in Multiple REST API List E…
CVE-2026-141486.512.8GoogleChromeCWE-843Type Confusion in CSS in Google Chrome prior to 150.0.7871.47 allowed a remot…
CVE-2026-138084.612.9GoogleChromeCWE-20Insufficient data validation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-141518.312.8GoogleChromeCWE-669Inappropriate implementation in AI in Google Chrome prior to 150.0.7871.47 al…
CVE-2026-139966.512.6GoogleChromeCWE-451Inappropriate implementation in Permissions in Google Chrome prior to 150.0.7…
CVE-2026-140026.512.6GoogleChromeCWE-451Inappropriate implementation in Geolocation in Google Chrome prior to 150.0.7…
CVE-2025-363284.312.7IBMwatsonx.data intelligenceCWE-209Error Message Containing Sensitive Information found in Watson Data Intelligence
CVE-2026-140408.812.5GoogleChromeCWE-416Use after free in BrowserTag in Google Chrome prior to 150.0.7871.47 allowed …
CVE-2026-139886.512.6GoogleChromeCWE-451Inappropriate implementation in Paint in Google Chrome prior to 150.0.7871.47…
CVE-2026-140826.512.5GoogleChromeCWE-362Race in Storage in Google Chrome prior to 150.0.7871.47 allowed a remote atta…
CVE-2026-140495.311.9GoogleChromeCWE-200Inappropriate implementation in GPU in Google Chrome prior to 150.0.7871.47 a…
CVE-2026-278835.011.9coollabsiocoolifyCWE-639Coolify: IDOR in Deployment API - Cross-Team Deployment Information Disclosure
CVE-2026-534335.711.8fzffzfCWE-407Denial of Service in fzf
CVE-2026-121144.411.8wpmartTeam Members – Multi Language Supported Team PluginCWE-79Team Members <= 8.7 - Authenticated (Administrator+) Stored Cross-Site Script…
CVE-2026-141556.511.6GoogleChromeCWE-284Insufficient policy enforcement in StorageAccessAPI in Google Chrome prior to…
CVE-2026-583712.311.4seaweedfsseaweedfsCWE-79SeaweedFS < 4.30 - Cross-Origin Information Disclosure via Unvalidated JSONP …
CVE-2025-363276.511.4IBMwatsonx.data intelligenceCWE-602Vulnerabilities found in Watson Data Intelligence
CVE-2026-91064.811.2GitHubEnterprise ServerCWE-451UI misrepresentation vulnerability in GitHub Enterprise Server allowed unauth…
CVE-2026-117149.811.1IBMWebSphere Application Server - LibertyCWE-918IBM WebSphere Application Server Liberty is affected by an authorization bypa…
CVE-2026-572046.911.0py-pdfpypdfCWE-400pypdf: Missing stream length values ignore defined limits
CVE-2026-141164.310.9GoogleChromeCWE-20Insufficient validation of untrusted input in DevTools in Google Chrome prior…
CVE-2026-140156.510.8GoogleChromeCWE-362Race in WebRTC in Google Chrome on Windows prior to 150.0.7871.47 allowed a r…
CVE-2026-140125.310.8GoogleChromeCWE-1300Side-channel information leakage in CSS in Google Chrome prior to 150.0.7871.…
CVE-2026-139864.210.8GoogleChromeCWE-451Inappropriate implementation in Media UI in Google Chrome on ChromeOS prior t…
CVE-2026-139823.110.8GoogleChromeCWE-451Incorrect security UI in Passwords in Google Chrome prior to 150.0.7871.47 al…
CVE-2026-139895.310.7GoogleChromeCWE-451Inappropriate implementation in PageInfo in Google Chrome prior to 150.0.7871…
CVE-2025-363726.510.6IBMDb2CWE-538IBM® Db2® could disclose sensitive information to an authenticated user from …
CVE-2026-141274.310.5GoogleChromeCWE-20Inappropriate implementation in Printing in Google Chrome prior to 150.0.7871…
CVE-2026-141304.310.5GoogleChromeCWE-20Incorrect security UI in Omnibox in Google Chrome prior to 150.0.7871.47 allo…
CVE-2026-141404.310.5GoogleChromeCWE-20Insufficient validation of untrusted input in Input in Google Chrome on Andro…
CVE-2026-141414.310.5GoogleChromeCWE-451Incorrect security UI in Document Picture-in-Picture in Google Chrome on Andr…
CVE-2025-248166.510.3NokiaMantaRay NMCWE-284An Improper Access Control vulnerability in Nokia MantaRay NM
CVE-2026-139295.510.3GoogleChromeCWE-20Insufficient policy enforcement in DevTools in Google Chrome on Android prior…
CVE-2026-140454.310.3GoogleChromeCWE-20Insufficient validation of untrusted input in Network in Google Chrome prior …
CVE-2026-141566.510.2GoogleChromeCWE-862Insufficient policy enforcement in StorageAccessAPI in Google Chrome prior to…
CVE-2026-583735.310.2cvat-aicvatCWE-862CVAT < 2.69.0 - Missing Authorization on Quality Reports parent_id Filter Lea…
CVE-2026-140754.310.2GoogleChromeCWE-602Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS pri…
CVE-2026-105648.210.1IBMLangflow OSSCWE-918SSRF Vulnerability in Langflow OSS Legacy Components Bypasses Protection
CVE-2026-140166.59.9GoogleChromeCWE-352Inappropriate implementation in SVG in Google Chrome prior to 150.0.7871.47 a…
CVE-2026-545005.39.9ohler55ojCWE-125Oj: intern.c form_attr has an uninitialized stack read
CVE-2026-140204.39.9GoogleChromeCWE-20Insufficient validation of untrusted input in WebXR in Google Chrome prior to…
CVE-2026-140424.39.9GoogleChromeCWE-451Inappropriate implementation in Isolated Web Apps in Google Chrome prior to 1…
CVE-2026-140724.39.9GoogleChromeCWE-451Inappropriate implementation in SplitView in Google Chrome prior to 150.0.787…
CVE-2026-140894.39.9GoogleChromeCWE-20Insufficient validation of untrusted input in PopupBlocker in Google Chrome p…
CVE-2026-139574.210.0GoogleChromeCWE-79Incorrect security UI in Extensions in Google Chrome prior to 150.0.7871.47 a…
CVE-2026-106543.19.9zephyrprojectzephyrCWE-362RFCOMM session-disconnect race leaks session/L2CAP and denies further RFCOMM …
CVE-2026-138226.59.5GoogleChromeCWE-346Inappropriate implementation in Extensions in Google Chrome on Android prior …
CVE-2026-139906.59.4GoogleChromeCWE-20Insufficient validation of untrusted input in DataTransfer in Google Chrome o…
CVE-2026-562245.19.4CapgoCapgoCWE-384Capgo - Login CSRF and Session Fixation via URL Query Parameters
CVE-2026-141104.39.5GoogleChromeCWE-1021Inappropriate implementation in DarkMode in Google Chrome prior to 150.0.7871…
CVE-2026-481926.89.4SiemensMendix Studio Pro 10.11CWE-94A vulnerability has been identified in Mendix Studio Pro 10.11 (All versions)…
CVE-2025-363596.59.3IBMDevOps AutomationCWE-613IBM DevOps Loop is susceptible to an Insufficient Session Expiration vulnerab…
CVE-2026-139453.19.3GoogleChromeCWE-451Insufficient policy enforcement in Extensions in Google Chrome on Linux prior…
CVE-2026-139483.19.3GoogleChromeCWE-451Insufficient policy enforcement in Extensions in Google Chrome prior to 150.0…
CVE-2026-563345.39.2CapgoCapgoCWE-284Capgo - Missing UPDATE RLS Policy for Build Status Persistence
CVE-2026-140134.39.0GoogleChromeCWE-451Inappropriate implementation in SVG in Google Chrome prior to 150.0.7871.47 a…
CVE-2026-139924.29.1GoogleChromeCWE-451Inappropriate implementation in UI in Google Chrome on Mac prior to 150.0.787…
CVE-2026-81417.29.0Connekt MediaAjax Load More - FiltersCWE-79Ajax Load More - Filters <= 3.4.1 - Unauthenticated Stored Cross-Site Scripti…
CVE-2026-140686.18.9GoogleChromeCWE-79Inappropriate implementation in Omnibox in Google Chrome on iOS prior to 150.…
CVE-2026-140836.18.9GoogleChromeCWE-20Insufficient validation of untrusted input in HTML in Google Chrome prior to …
CVE-2026-140734.38.8GoogleChromeCWE-20Insufficient validation of untrusted input in WebXR in Google Chrome prior to…
CVE-2026-140764.38.8GoogleChromeCWE-693Insufficient policy enforcement in Network in Google Chrome prior to 150.0.78…
CVE-2026-140574.38.8GoogleChromeCWE-346Inappropriate implementation in FedCM in Google Chrome prior to 150.0.7871.47…
CVE-2026-140794.38.8GoogleChromeCWE-346Insufficient policy enforcement in Network in Google Chrome prior to 150.0.78…
CVE-2026-140804.38.8GoogleChromeCWE-20Insufficient validation of untrusted input in TabSwitcher in Google Chrome on…
CVE-2026-568095.18.6Ricoh Company, Ltd.Multiple laser printers and MFPs which implement Ricoh Web Image MonitorCWE-79Multiple laser printers and MFPs (multifunction printers) which implement Ric…
CVE-2026-139423.38.6GoogleChromeCWE-20Inappropriate implementation in Video Capture in Google Chrome on ChromeOS pr…
CVE-2026-138007.88.5GoogleChromeCWE-284Inappropriate implementation in Updater in Google Chrome on Windows prior to …
CVE-2026-101298.58.4IBMLangflow OSSCWE-918SSRF via HTTP Redirect Following in Langflow API Request Component
CVE-2026-138637.88.4GoogleChromeCWE-20Insufficient validation of untrusted input in CustomTabs in Google Chrome on …
CVE-2026-139277.88.4GoogleChromeCWE-20Insufficient validation of untrusted input in UI in Google Chrome on Android …
CVE-2026-36025.58.4IBMApp Connect EnterpriseCWE-89IBM App Connect Enterprise and IBM Integration Bus for z/OS toolkit is vulner…
CVE-2026-105856.38.2GitHubEnterprise ServerCWE-79Stored cross-site scripting vulnerability in GitHub Enterprise Server allowed…
CVE-2026-137787.88.1GoogleChromeCWE-416Use after free in WebUSB in Google Chrome on Mac prior to 150.0.7871.47 allow…
CVE-2026-139844.38.2GoogleChromeCWE-290Incorrect security UI in TabStrip in Google Chrome prior to 150.0.7871.47 all…
CVE-2026-139874.38.2GoogleChromeCWE-451Incorrect security UI in Mobile in Google Chrome on Android prior to 150.0.78…
CVE-2026-139944.38.2GoogleChromeCWE-451Inappropriate implementation in Credential Management in Google Chrome on And…
CVE-2026-141264.38.2GoogleChromeCWE-451Incorrect security UI in UI in Google Chrome on Android prior to 150.0.7871.4…
CVE-2026-141344.38.2GoogleChromeCWE-451Inappropriate implementation in Autofill in Google Chrome on Android prior to…
CVE-2026-140474.38.0GoogleChromeCWE-602Insufficient policy enforcement in Extensions in Google Chrome prior to 150.0…
CVE-2026-140816.58.0GoogleChromeCWE-602Insufficient policy enforcement in DevTools in Google Chrome prior to 150.0.7…
CVE-2026-139145.57.9GoogleChromeCWE-284Inappropriate implementation in Passwords in Google Chrome on Mac prior to 15…
CVE-2026-141535.38.0GoogleChromeCWE-451Inappropriate implementation in Glic in Google Chrome prior to 150.0.7871.47 …
CVE-2026-140464.37.9GoogleChromeCWE-346Inappropriate implementation in CustomTabs in Google Chrome on Android prior …
CVE-2026-139765.87.8GoogleChromeCWE-122Insufficient data validation in Storage in Google Chrome prior to 150.0.7871.…
CVE-2026-141315.47.9GoogleChromeCWE-20Insufficient validation of untrusted input in WebAppInstalls in Google Chrome…
CVE-2026-141325.47.8GoogleChromeCWE-451Inappropriate implementation in WebXR in Google Chrome prior to 150.0.7871.47…
CVE-2026-141234.37.8GoogleChromeCWE-451Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior to 150.…
CVE-2026-141284.37.8GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2026-141364.37.7GoogleChromeCWE-451Insufficient validation of untrusted input in Chrome for iOS in Google Chrome…
CVE-2026-141434.37.8GoogleChromeCWE-451Incorrect security UI in Passwords in Google Chrome on iOS prior to 150.0.787…
CVE-2026-141374.27.7GoogleChromeCWE-20Insufficient validation of untrusted input in Chrome for iOS in Google Chrome…
CVE-2026-563565.17.5n8nn8nCWE-79n8n - Stored Cross-Site Scripting in Chat Trigger Node Custom CSS Field
CVE-2026-584505.37.4invoiceninjainvoiceninjaCWE-601Invoice Ninja 5.13.26 - Open Redirect in Client Portal Login via intended Par…
CVE-2026-139994.37.4GoogleChromeCWE-20Insufficient validation of untrusted input in Extensions in Google Chrome pri…
CVE-2026-279564.37.4coollabsiocoolifyCWE-639Coolify: Cross-team application domain enumeration via domains_by_server endp…
CVE-2026-570825.97.3SANKONet::BitTorrentCWE-330Net::BitTorrent versions before 2.1.0 for Perl generate the MSE Diffie-Hellma…
CVE-2026-140314.37.3GoogleChromeCWE-451Inappropriate implementation in File Input in Google Chrome prior to 150.0.78…
CVE-2026-140774.37.3GoogleChromeCWE-451Inappropriate implementation in Select in Google Chrome on Mac prior to 150.0…
CVE-2026-115946.17.0IBMWebSphere Application ServerCWE-79IBM WebSphere Application Server is affected by multiple cross-site scripting…
CVE-2026-141355.47.0GoogleChromeCWE-20Insufficient validation of untrusted input in Network in Google Chrome prior …
CVE-2026-141425.47.1GoogleChromeCWE-1021Inappropriate implementation in Extensions in Google Chrome prior to 150.0.78…
CVE-2026-141054.37.1GoogleChromeCWE-346Insufficient policy enforcement in Speech in Google Chrome prior to 150.0.787…
CVE-2026-141147.56.9GoogleChromeCWE-451Inappropriate implementation in WebAppInstalls in Google Chrome on Android pr…
CVE-2026-139775.46.9GoogleChromeCWE-79Inappropriate implementation in HTMLParser in Google Chrome prior to 150.0.78…
CVE-2026-140006.16.9GoogleChromeCWE-79Inappropriate implementation in XML in Google Chrome prior to 150.0.7871.47 a…
CVE-2026-140016.16.9GoogleChromeCWE-79Inappropriate implementation in Network in Google Chrome prior to 150.0.7871.…
CVE-2026-140534.36.8GoogleChromeCWE-346Insufficient policy enforcement in Extensions in Google Chrome prior to 150.0…
CVE-2026-139553.36.8GoogleChromeCWE-20Insufficient validation of untrusted input in CustomTabs in Google Chrome on …
CVE-2025-363334.36.7IBMwatsonx.data intelligenceCWE-841Vulnerabilities found in Watson Data Intelligence
CVE-2026-139914.36.6GoogleChromeCWE-20Insufficient validation of untrusted input in Chrome for iOS in Google Chrome…
CVE-2026-563641.86.7ImageMagickImageMagickCWE-401ImageMagick - Memory Leak in LoadOpenCLDeviceBenchmark() via Malformed XML
CVE-2026-78749.16.5IBMLangflow OSSCWE-338Weak Cryptographic Key Derivation Exposed All Stored Credentials
CVE-2026-90026.56.2IBMWebSphere Extreme ScaleCWE-400IBM WebSphere eXtremes Scale is affected by uncontrolled resource consumption…
CVE-2026-563774.86.1ImageMagickImageMagickCWE-22ImageMagick - Policy Bypass via Incorrect Path Validation
CVE-2026-140284.26.0GoogleChromeCWE-451Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior to 150.…
CVE-2026-141384.26.0GoogleChromeCWE-451Inappropriate implementation in WebAppInstalls in Google Chrome on Windows pr…
CVE-2026-141394.26.0GoogleChromeCWE-451Inappropriate implementation in TabStrip in Google Chrome prior to 150.0.7871…
CVE-2026-138498.65.9GoogleChromeCWE-20Insufficient validation of untrusted input in Chromoting in Google Chrome on …
CVE-2026-138277.85.9GoogleChromeCWE-416Use after free in Updater in Google Chrome on Mac prior to 150.0.7871.47 allo…
CVE-2026-138447.85.9GoogleChromeCWE-416Use after free in Updater in Google Chrome on Windows prior to 150.0.7871.47 …
CVE-2026-120847.55.9IBMUCD - IBM DevOps DeployCWE-942IBM DevOps Deploy / IBM UrbanCode Deploy (UCD) is susceptible to a Permissive…
CVE-2026-278815.05.8coollabsiocoolifyCWE-639Coolify: Cross-team deployment information disclosure via GET /api/v1/deploym…
CVE-2025-363244.35.9IBMwatsonx.data intelligenceCWE-918Vulnerabilities found in Watson Data Intelligence
CVE-2026-140394.35.8GoogleChromeCWE-346Insufficient policy enforcement in GetUserMedia in Google Chrome prior to 150…
CVE-2026-140264.25.6GoogleChromeCWE-451Incorrect security UI in SplitView in Google Chrome prior to 150.0.7871.47 al…
CVE-2026-140304.25.6GoogleChromeCWE-451Inappropriate implementation in SplitView in Google Chrome on Linux prior to …
CVE-2025-363365.95.4IBMwatsonx.data intelligenceCWE-319Cleartext Transmission of Sensitive Information in Watson Data Intelligence
CVE-2026-139834.25.5GoogleChromeCWE-451Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior …
CVE-2025-363206.45.3IBMwatsonx.data intelligenceCWE-79Vulnerabilities found in Watson Data Intelligence
CVE-2026-350965.15.3KTM Systeme-BOKCWE-352Cross-Site Request Forgery (CSRF) in KTM System e-BOK
CVE-2026-139054.25.4GoogleChromeCWE-362Race in Chrome for iOS in Google Chrome on iOS prior to 150.0.7871.47 allowed…
CVE-2026-139934.25.1GoogleChromeCWE-451Incorrect security UI in WebAppInstalls in Google Chrome prior to 150.0.7871.…
CVE-2026-139974.25.1GoogleChromeCWE-451Incorrect security UI in Extensions in Google Chrome on Android prior to 150.…
CVE-2026-139984.25.0GoogleChromeCWE-451Incorrect security UI in File Input in Google Chrome on Mac prior to 150.0.78…
CVE-2026-141294.25.1GoogleChromeCWE-451Inappropriate implementation in PreviewTab in Google Chrome on Android prior …
CVE-2026-141505.44.9GoogleChromeCWE-20Insufficient validation of untrusted input in Speech in Google Chrome prior t…
CVE-2026-583028.44.7LinuxCNCLinuxCNCCWE-22rtapi_app in linuxcnc-uspace in LinuxCNC before 2.9.9 allows privilege escala…
CVE-2026-84036.14.6Eksagate Electronic Engineering and Computer Industry Trade Inc.SYSGUARD 6001CWE-79Stored XSS in Exagate's SYSGUARD 6001
CVE-2026-141334.24.6GoogleChromeCWE-362Race in History Embeddings in Google Chrome prior to 150.0.7871.47 allowed a …
CVE-2026-141456.14.5GoogleChromeCWE-79Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 a…
CVE-2026-140034.34.5GoogleChromeCWE-284Insufficient policy enforcement in Extensions in Google Chrome prior to 150.0…
CVE-2026-140924.34.5GoogleChromeCWE-693Insufficient policy enforcement in Privacy in Google Chrome prior to 150.0.78…
CVE-2026-125788.44.4deltawwDTMSoftCWE-502DTMSoft - Deserialization of Untrusted Data Vulnerability
CVE-2026-105466.54.4IBMLangflow OSSCWE-918DNS Rebinding TOCTOU Bypass of SSRF Protection in Langflow OSS URL Component
CVE-2026-278824.84.4coollabsiocoolifyCWE-208Coolify: Timing Attack in GitLab Webhook Token Validation
CVE-2026-141476.14.3GoogleChromeCWE-79Inappropriate implementation in CSS in Google Chrome prior to 150.0.7871.47 a…
CVE-2026-350954.84.3KTM Systeme-BOKCWE-384Session fixation in KTM System e-BOK
CVE-2026-501109.33.9StoneFlyStorage ConcentratorCWE-798Use of Hard-coded Credentials in StoneFly Storage Concentrator
CVE-2026-140635.73.9GoogleChromeCWE-125Out of bounds read in Chromecast in Google Chrome prior to 150.0.7871.47 allo…
CVE-2026-115815.93.8UnknownKali Forms — Contact Form & Drag-and-Drop BuilderKali Forms < 2.4.13 - Contributor+ Stored XSS via Form Field Caption
CVE-2026-562776.93.5FlowiseFlowiseCWE-346Flowise - Hardcoded CORS Wildcard in TTS Endpoint
CVE-2025-125305.93.5IBMwatsonx.data intelligenceCWE-319Vulnerabilities found in Watson Data Intelligence
CVE-2025-363235.43.5IBMwatsonx.data intelligenceCWE-79Vulnerabilities found in Watson Data Intelligence
CVE-2026-141444.23.5GoogleChromeCWE-451Incorrect security UI in Views in Google Chrome prior to 150.0.7871.47 allowe…
CVE-2026-141544.83.0GoogleChromeCWE-451Inappropriate implementation in DevTools in Google Chrome prior to 150.0.7871…
CVE-2026-140607.83.0GoogleChromeCWE-20Insufficient validation of untrusted input in Chromoting in Google Chrome on …
CVE-2026-546727.83.0electron-userlandelectron-builderCWE-427electron-updater: Uncontrolled search path elements within `AppImage` built b…
CVE-2026-563614.82.9ImageMagickImageMagickCWE-125ImageMagick - Heap Buffer Overflow via Off-by-One in Morphology Processing
CVE-2026-126106.42.3Red HatRed Hat Enterprise Linux 10CWE-825Sssd: use-after-free crash in sssd' 'sssd_pam' process
CVE-2026-140486.52.2GoogleChromeCWE-416Use after free in Chromecast in Google Chrome prior to 150.0.7871.47 allowed …
CVE-2026-548962.12.1ohler55ojCWE-122Oj: Heap Buffer Overflow in Oj.dump Exception Serialization via Large Indent
CVE-2026-134554.32.0DALIBOPostgreSQL AnonymizerCWE-328PostgreSQL Anonymizer: Unrestricted function can leak the secret salt
CVE-2026-548972.12.0ohler55ojCWE-416Oj : Use-After-Free in Oj::Doc Iterators via Reentrant Close
CVE-2026-548982.12.0ohler55ojCWE-416Oj: Use-After-Free in Oj::Parser SAJ Callback via Input Mutation
CVE-2026-141196.51.9GoogleChromeCWE-843Type Confusion in Bluetooth in Google Chrome on Windows prior to 150.0.7871.4…
CVE-2026-563634.81.5ImageMagickImageMagickCWE-190ImageMagick - Division by Zero in Binomial Kernel Processing
CVE-2025-248157.81.5NokiaMantaRay NMCWE-434An unrestricted file upload vulnerability in Nokia MantaRay NM
CVE-2026-140187.81.4GoogleChromeCWE-416Use after free in Updater in Google Chrome on Windows prior to 150.0.7871.47 …
CVE-2026-88647.31.4HP Inc.HP Fan Control AppCWE-428HP Fan Control App – Potential Escalation of Privilege
CVE-2026-133164.41.2Red HatRed Hat Satellite 6CWE-918Foreman: ssrf to cloud metada service through unvalidated test_url parameters…
CVE-2026-141247.81.1GoogleChromeCWE-269Inappropriate implementation in CredentialProvider in Google Chrome on Window…
CVE-2026-89444.31.1engagementanalyticsPlugin for Google Analytics by IO technologiesCWE-352Plugin for Google Analytics by IO technologies <= 1.1 - Cross-Site Request Fo…
CVE-2026-120865.51.1IBMUCD - IBM UrbanCode DeployCWE-532IBM DevOps Deploy / IBM UrbanCode Deploy (UCD) is susceptible to a Insertion …
CVE-2025-74067.80.7NokiaMantaRay NMCWE-269A Sudo Privilege Escalation Vulnerability in Nokia MantaRay NM
CVE-2026-140947.80.6GoogleChromeCWE-416Use after free in Installer in Google Chrome on Windows prior to 150.0.7871.4…
CVE-2026-141605.90.5Samsung Open SourceEscargotCWE-367Time-of-check time-of-use (TOCTOU) race condition vulnerability in Samsung Op…
CVE-2026-536925.90.3RedeightRedeight CMSCWE-328Weak hashing algorithm in Redeight CMS