AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N C H H H 10.0 .9924 99.9 YES
AFFECTED Product Versions Fixed ColdFusion unspecified —
TIMELINE May 21 Reserved by CNA Jul 7 Added to CISA KEV, due Jul 10 Jul 7 Published (CNA: adobe)
170 CVEs published July 7, 2026: 25 critical, 70 high, 64 medium, 11 low; 4 in KEV; 7 with a public exploit reference; 0 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 145 in the results table.
| MTD | YTD | 2025 same span | 2025 full | |
|---|---|---|---|---|
| CVEs published | 1331 | 13649 | 1252 | 2563 |
| KEV catalog size | 1670 | |||
598 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| linux | 37 | 1517 | 120 | 866 | 528 | 1 | 27 | 3 | 0.2 | 7.5 | .0013 | +3 |
| 52 | 1316 | 148 | 586 | 542 | 37 | 74 | 6 | 0.5 | 7.8 | .0023 | -436 | |
| microsoft | 50 | 761 | 58 | 506 | 176 | 4 | 378 | 28 | 3.7 | 7.8 | .0044 | +43 |
| red hat | 27 | 219 | 12 | 90 | 107 | 10 | 4 | 0 | 0.0 | 6.5 | .0026 | +8 |
| apple | 0 | 99 | 1 | 23 | 66 | 2 | 93 | 7 | 7.1 | 6.5 | .0031 | 0 |
| canonical | 0 | 20 | 2 | 5 | 8 | 5 | 0 | 0 | 0.0 | 5.5 | .0011 | 0 |
| suse | 6 | 19 | 4 | 11 | 4 | 0 | 0 | 0 | 0.0 | 8.6 | .0036 | +6 |
| freebsd | 0 | 16 | 0 | 12 | 4 | 0 | 0 | 0 | 0.0 | 7.8 | .0015 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ubiquiti | 25 | 36 | 14 | 21 | 1 | 0 | 4 | 3 | 8.3 | 8.8 | .0036 | +25 |
| cisco | 8 | 31 | 4 | 12 | 8 | 0 | 96 | 11 | 35.5 | 7.5 | .0056 | +6 |
| netgear | 0 | 17 | 0 | 0 | 16 | 1 | 8 | 0 | 0.0 | 4.3 | .0024 | 0 |
| palo alto networks | 0 | 11 | 0 | 1 | 7 | 1 | 14 | 2 | 18.2 | 4.8 | .0022 | 0 |
| checkpoint | 0 | 9 | 1 | 5 | 3 | 0 | 3 | 1 | 11.1 | 7.5 | .0410 | 0 |
| f5 | 0 | 9 | 4 | 3 | 1 | 0 | 7 | 1 | 11.1 | 8.9 | .0221 | 0 |
| ivanti | 0 | 9 | 2 | 3 | 0 | 0 | 33 | 5 | 55.6 | 8.8 | .5187 | -1 |
| fortinet | 0 | 8 | 1 | 3 | 2 | 0 | 28 | 3 | 37.5 | 7.3 | .0066 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| apache | 50 | 203 | 37 | 79 | 75 | 11 | 40 | 1 | 0.5 | 7.3 | .0049 | +18 |
| mozilla | 3 | 59 | 12 | 18 | 29 | 0 | 13 | 0 | 0.0 | 7.3 | .0025 | -1 |
| gitlab | 0 | 33 | 0 | 5 | 21 | 5 | 4 | 2 | 6.1 | 4.4 | .0022 | 0 |
| github | 1 | 7 | 1 | 1 | 5 | 0 | 0 | 0 | 0.0 | 6.0 | .0026 | +1 |
| docker | 0 | 7 | 0 | 5 | 2 | 0 | 1 | 0 | 0.0 | 8.2 | .0016 | -2 |
| drupal | 0 | 5 | 1 | 1 | 3 | 0 | 5 | 1 | 20.0 | 5.1 | .0026 | 0 |
| jenkins | 0 | 0 | 0 | 0 | 0 | 0 | 6 | 0 | — | — | — | 0 |
| joomla | 0 | 0 | 0 | 0 | 0 | 0 | 1 | 0 | — | — | — | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| oracle | 0 | 270 | 131 | 116 | 18 | 4 | 40 | 2 | 0.7 | 8.8 | .0040 | -1 |
| adobe | 3 | 149 | 13 | 52 | 79 | 2 | 75 | 4 | 2.7 | 5.8 | .0021 | +3 |
| ibm | 0 | 124 | 36 | 42 | 46 | 0 | 7 | 0 | 0.0 | 7.5 | .0025 | -5 |
| progress | 2 | 11 | 1 | 9 | 1 | 0 | 9 | 0 | 0.0 | 7.5 | .0035 | -3 |
| solarwinds | 0 | 7 | 1 | 2 | 2 | 0 | 11 | 4 | 57.1 | 7.5 | .0835 | -2 |
| veeam | 0 | 4 | 2 | 2 | 0 | 0 | 4 | 0 | 0.0 | 9.0 | .0046 | 0 |
| zohocorp | 0 | 3 | 1 | 1 | 1 | 0 | 0 | 0 | 0.0 | 8.4 | .0170 | 0 |
| atlassian | 0 | 0 | 0 | 0 | 0 | 0 | 13 | 0 | — | — | — | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| synology | 0 | 23 | 2 | 5 | 13 | 3 | 0 | 0 | 0.0 | 5.6 | .0025 | -5 |
| d-link | 0 | 13 | 0 | 5 | 2 | 5 | 26 | 1 | 7.7 | 5.8 | .0059 | -5 |
| siemens | 0 | 9 | 0 | 4 | 5 | 0 | 1 | 0 | 0.0 | 6.9 | .0019 | -1 |
| rockwell automation | 0 | 7 | 1 | 5 | 1 | 0 | 0 | 0 | 0.0 | 8.7 | .0030 | 0 |
| abb | 0 | 6 | 0 | 4 | 2 | 0 | 0 | 0 | 0.0 | 7.2 | .0018 | -4 |
| schneider electric | 0 | 6 | 0 | 4 | 2 | 0 | 1 | 0 | 0.0 | 7.8 | .0024 | 0 |
| moxa | 0 | 5 | 0 | 3 | 2 | 0 | 0 | 0 | 0.0 | 7.0 | .0029 | 0 |
| dahua | 0 | 3 | 0 | 1 | 1 | 1 | 2 | 0 | 0.0 | 6.9 | .0036 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| sourcecodester | 27 | 98 | 0 | 0 | 52 | 46 | 0 | 0 | 0.0 | 5.5 | .0026 | +5 |
| dell | 23 | 79 | 3 | 35 | 38 | 2 | 2 | 1 | 1.3 | 6.7 | .0018 | +20 |
| spring | 0 | 73 | 2 | 31 | 39 | 1 | 0 | 0 | 0.0 | 6.5 | .0024 | -2 |
| openclaw | 0 | 67 | 0 | 35 | 22 | 10 | 0 | 0 | 0.0 | 7.0 | .0021 | 0 |
| edimax | 0 | 65 | 0 | 39 | 0 | 26 | 1 | 0 | 0.0 | 7.4 | .0059 | 0 |
| itsourcecode | 10 | 63 | 0 | 0 | 19 | 44 | 0 | 0 | 0.0 | 2.1 | .0020 | -9 |
| capgo | 0 | 61 | 2 | 31 | 27 | 1 | 0 | 0 | 0.0 | 7.1 | .0031 | 0 |
| themerex | 2 | 60 | 5 | 54 | 1 | 0 | 0 | 0 | 0.0 | 8.1 | .0043 | +2 |
| CVE | EPSS | %ile | CVSS |
|---|---|---|---|
| CVE-2026-10520 | .9990 | 100.0 | 10.0 |
| CVE-2026-48282 | .9924 | 99.9 | 10.0 |
| CVE-2026-20253 | .9694 | 99.9 | 9.8 |
| CVE-2026-35273 | .9547 | 99.9 | 9.8 |
| CVE-2026-48908 | .8813 | 99.8 | 10.0 |
| CVE-2026-34910 | .8696 | 99.7 | 10.0 |
| CVE-2026-34908 | .8519 | 99.7 | 10.0 |
| CVE-2026-56290 | .8325 | 99.7 | 10.0 |
| CVE-2026-20230 | .8321 | 99.7 | 8.6 |
| CVE-2026-42271 | .8301 | 99.6 | — |
| CVE | CVSS | EPSS | Note |
|---|---|---|---|
| CVE-2026-10520 | 10.0 | .9990 | KEV |
| CVE-2026-48282 | 10.0 | .9924 | KEV |
| CVE-2026-48908 | 10.0 | .8813 | KEV |
| CVE-2026-34910 | 10.0 | .8696 | KEV |
| CVE-2026-34908 | 10.0 | .8519 | KEV |
| CVE-2026-56290 | 10.0 | .8325 | KEV |
| CVE-2026-48907 | 10.0 | .6883 | KEV |
| CVE-2026-34909 | 10.0 | .6390 | KEV |
| CVE-2026-50160 | 10.0 | .1775 | |
| CVE-2026-48276 | 10.0 | .0505 |
| Vendor | CVEs |
|---|---|
| 654 | |
| linux | 517 |
| microsoft | 264 |
| oracle | 242 |
| adobe | 145 |
| apache | 139 |
| red hat | 136 |
| ibm | 70 |
| spring | 70 |
| capgo | 61 |
| Vendor | KEV |
|---|---|
| microsoft | 28 |
| cisco | 11 |
| apple | 7 |
| 6 | |
| ivanti | 5 |
| adobe | 4 |
| solarwinds | 4 |
| synacor | 4 |
| fortinet | 3 |
| linux | 3 |
| Ecosystem | Advisories |
|---|---|
| Maven | 68 |
| Packagist | 15 |
| npm | 7 |
| PyPI | 6 |
| NuGet | 3 |
| CVE | Vendor | Days |
|---|---|---|
| CVE-2025-67038 | Lantronix | 0 |
| CVE-2026-10520 | ivanti | 0 |
| CVE-2026-11645 | 0 | |
| CVE-2026-12569 | PTC | 0 |
| CVE-2026-20230 | Cisco | 0 |
| CVE-2026-20245 | Cisco | 0 |
| CVE-2026-20253 | Splunk | 0 |
| CVE-2026-20262 | Cisco | 0 |
| CVE-2026-34908 | Ubiquiti Inc | 0 |
| CVE-2026-34909 | Ubiquiti Inc | 0 |
| CVE | Vendor | Due | Days over |
|---|---|---|---|
| CVE-2021-27104 | Accellion | 2021-11-17 | 1693 |
| CVE-2021-27102 | Accellion | 2021-11-17 | 1693 |
| CVE-2021-27101 | Accellion | 2021-11-17 | 1693 |
| CVE-2021-27103 | Accellion | 2021-11-17 | 1693 |
| CVE-2021-21017 | Adobe | 2021-11-17 | 1693 |
| CVE-2021-28550 | Adobe | 2021-11-17 | 1693 |
| CVE-2021-42013 | Apache | 2021-11-17 | 1693 |
| CVE-2021-41773 | Apache | 2021-11-17 | 1693 |
| CVE-2021-30858 | Apple | 2021-11-17 | 1693 |
| CVE-2021-30860 | Apple | 2021-11-17 | 1693 |
EXPLOIT PUBLISHED — CVE-2026-10659 (zephyrproject zephyr). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-49471 (oraios serena). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-55255 (langflow-ai langflow). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-55490 (openwrt). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-56290 (JoomlaCK.fr Page Builder CK extension for Joomla). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-56812 (phoenixframework phoenix). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-58384 (Red Hat Enterprise Linux 9). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-58583 (FluxInk Color Management Driver). Public exploit reference added.
170 CVEs published. 25 box scores, 145 table rows — nothing truncated.
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N C H H H 10.0 .9924 99.9 YES
AFFECTED Product Versions Fixed ColdFusion unspecified —
TIMELINE May 21 Reserved by CNA Jul 7 Added to CISA KEV, due Jul 10 Jul 7 Published (CNA: adobe)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 10.0 .8813 99.8 YES
AFFECTED Product Versions Fixed SP Page Builder extension for Joomla 1.0.0-6.6.1 – —
TIMELINE May 26 Reserved by CNA Jul 7 Added to CISA KEV, due Jul 10 Jul 7 Published (CNA: Joomla)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 10.0 .8325 99.7 YES
AFFECTED Product Versions Fixed JoomlaCK.fr Page Builder CK extension for Joomla 1.0-3.6.0 – —
TIMELINE Jun 20 Reserved by CNA Jul 7 Public exploit reference published Jul 7 Added to CISA KEV, due Jul 10 Jul 7 Published (CNA: Joomla)
AV AC PR UI S C I A CVSS EPSS %ile KEV N H L N C H H L 8.4 .2905 98.0 YES
AFFECTED Product Versions Fixed langflow < 1.9.1 – —
TIMELINE Jun 16 Reserved by CNA Jul 7 Public exploit reference published Jul 7 Added to CISA KEV, due Jul 10 Jul 7 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N R U H H H 8.8 .0135 69.2 —
AFFECTED Product Versions Fixed coder < 2.29.7 – —
TIMELINE May 6 Reserved by CNA Jul 7 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N H H H 9.2 .0134 68.9 —
AFFECTED Product Versions Fixed 9router unspecified 0.4.44
TIMELINE Jul 7 Reserved by CNA Jul 7 Published (CNA: VulnCheck)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N U H H H 7.2 .0114 64.0 —
AFFECTED Product Versions Fixed PowerProtect Data Domain unspecified —
TIMELINE Jun 9 Reserved by CNA Jul 7 Published (CNA: dell)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N H H H 8.7 .0107 62.1 —
AFFECTED Product Versions Fixed Vtiger CRM unspecified 8.4.0
TIMELINE Jan 14 Reserved by CNA Jul 7 Published (CNA: VulnCheck)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0099 59.7 —
AFFECTED Product Versions Fixed Apache Airflow unspecified —
TIMELINE Mar 18 Reserved by CNA Jul 7 Published (CNA: apache)
AV AC PR UI S C I A CVSS EPSS %ile KEV A L N N U N N H 6.5 .0099 59.5 —
AFFECTED Product Versions Fixed openwrt < 25.12.5 – —
TIMELINE Jun 16 Reserved by CNA Jul 7 Public exploit reference published Jul 7 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N H N H H H 8.6 .0087 55.7 —
AFFECTED Product Versions Fixed Vtiger CRM unspecified —
TIMELINE Jan 14 Reserved by CNA Jul 7 Published (CNA: VulnCheck)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0075 51.8 —
AFFECTED Product Versions Fixed WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell unspecified —
TIMELINE Jul 1 Reserved by CNA Jul 7 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N H H N C H H H 8.0 .0067 49.0 —
AFFECTED Product Versions Fixed Red Hat Enterprise Linux 10 unspecified 0:2.12.0-3.el10_2.1 Red Hat Enterprise Linux 10.0 Extended Update Support unspecified 0:2.10.2-3.el10_0.5 Red Hat Enterprise Linux 7 Extended Lifecycle Support unspecified 0:1.16.5-10.el7_9.18 Red Hat Enterprise Linux 8 unspecified 0:2.9.4-5.el8_10.5 Red Hat Enterprise Linux 8 unspecified 0:2.9.4-5.el8_10.5 Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support unspecified 0:2.4.0-9.el8_4.5 Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On unspecified 0:2.4.0-9.el8_4.5 Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support unspecified 0:2.6.2-4.el8_6.5 Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On unspecified 0:2.6.2-4.el8_6.5 Red Hat Enterprise Linux 8.8 Telecommunications Update Service unspecified 0:2.8.2-4.el8_8.4 + 10 more
TIMELINE Jul 2 Reserved by CNA Jul 7 Published (CNA: redhat)
AV AC PR UI S C I A CVSS EPSS %ile KEV N H L N U H H H 7.5 .0063 47.2 —
AFFECTED Product Versions Fixed AMP for WP – Accelerated Mobile Pages unspecified —
TIMELINE Apr 10 Reserved by CNA Jul 7 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0063 47.2 —
AFFECTED Product Versions Fixed 389-ds-base 1.3.2 – — Red Hat Directory Server 11.5 E4S for RHEL 8 unspecified 8060020260702180044.0ca98e7e Red Hat Directory Server 11.7 E4S for RHEL 8 unspecified 8080020260702180836.f969626e Red Hat Directory Server 11.9 for RHEL 8 unspecified 8100020260702145313.37ed7c03 Red Hat Directory Server 12.2 E4S for RHEL 9 unspecified 9020020260703060155.1674d574 Red Hat Directory Server 12.4 E4S for RHEL 9 unspecified 9040020260703055735.1674d574 Red Hat Enterprise Linux 10 unspecified 0:3.2.0-8.el10_2 Red Hat Enterprise Linux 10.0 Extended Update Support unspecified 0:3.0.6-19.el10_0 Red Hat Enterprise Linux 7 Extended Lifecycle Support unspecified 0:1.3.11.1-13.el7_9 Red Hat Enterprise Linux 8 unspecified 8100020260626120929.25e700aa + 14 more
TIMELINE Jun 8 Reserved by CNA Jul 7 Published (CNA: redhat)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N C H H H 9.9 .0058 44.7 —
AFFECTED Product Versions Fixed coolify < 4.0.0-beta.471 – —
TIMELINE Mar 25 Reserved by CNA Jul 7 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0057 44.4 —
AFFECTED Product Versions Fixed Red Hat Enterprise Linux 10 unspecified 0:2.12.0-3.el10_2.1 Red Hat Enterprise Linux 10.0 Extended Update Support unspecified 0:2.10.2-3.el10_0.5 Red Hat Enterprise Linux 7 Extended Lifecycle Support unspecified 0:1.16.5-10.el7_9.18 Red Hat Enterprise Linux 8 unspecified 0:2.9.4-5.el8_10.5 Red Hat Enterprise Linux 8 unspecified 0:2.9.4-5.el8_10.5 Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support unspecified 0:2.4.0-9.el8_4.5 Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On unspecified 0:2.4.0-9.el8_4.5 Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support unspecified 0:2.6.2-4.el8_6.5 Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On unspecified 0:2.6.2-4.el8_6.5 Red Hat Enterprise Linux 8.8 Telecommunications Update Service unspecified 0:2.8.2-4.el8_8.4 + 10 more
TIMELINE Jul 2 Reserved by CNA Jul 7 Published (CNA: redhat)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0054 43.0 —
AFFECTED Product Versions Fixed coolify < 4.0.0-beta.474 – —
TIMELINE Apr 25 Reserved by CNA Jul 7 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N N N L 6.3 .0051 41.0 —
AFFECTED Product Versions Fixed phoenix 1.2.0-rc.0 – — phoenix 1.2.0-rc.0 – — phoenix 2270aaf21bd02c6a6a1022820564efb605a97655 – 7f7b971c1ea0994e3fbd1c11ddb05e780bd38ad8
TIMELINE Jun 23 Reserved by CNA Jul 7 Public exploit reference published Jul 7 Published (CNA: EEF)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N H H H 8.7 .0050 40.6 —
AFFECTED Product Versions Fixed dataease < 2.10.24 – —
TIMELINE Jun 16 Reserved by CNA Jul 7 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0050 40.4 —
AFFECTED Product Versions Fixed mem0 unspecified —
TIMELINE Jul 6 Reserved by CNA Jul 7 Published (CNA: VulnCheck)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0048 39.3 —
AFFECTED Product Versions Fixed DBI unspecified —
TIMELINE Jul 1 Reserved by CNA Jul 7 Published (CNA: CPANSec)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N C H H H 9.9 .0045 37.3 —
AFFECTED Product Versions Fixed coolify < 4.0.0-beta.471 – —
TIMELINE Mar 25 Reserved by CNA Jul 7 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0045 37.2 —
AFFECTED Product Versions Fixed Module::Load unspecified —
TIMELINE Jul 5 Reserved by CNA Jul 7 Published (CNA: CPANSec)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0044 36.9 —
AFFECTED Product Versions Fixed PowerProtect Data Domain unspecified —
TIMELINE Jun 9 Reserved by CNA Jul 7 Published (CNA: dell)
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-42143 | 8.8 | 36.2 | coollabsio | coolify | CWE-78 | Coolify: OS Command Injection via Persistent Volume Names - Root RCE on Manag… |
| CVE-2026-13019 | 9.8 | 36.1 | Esri | Portal for ArcGIS | CWE-640 | Missing Authentication |
| CVE-2026-56811 | 8.7 | 35.0 | phoenixframework | phoenix | CWE-770 | Phoenix transports do not limit channel joins per connection, enabling proces… |
| CVE-2026-48828 | 6.5 | 34.1 | Apache Software Foundation | Apache Airflow | CWE-200 | Apache Airflow: Bulk JSON Variables bypass should_hide_value_for_key - redact… |
| CVE-2026-48892 | 6.5 | 34.1 | Apache Software Foundation | Apache Airflow | CWE-200 | Apache Airflow: Config API leaks per-key secrets backend kwargs - masker bypa… |
| CVE-2026-49487 | 6.5 | 34.1 | Apache Software Foundation | Apache Airflow | CWE-200 | Apache Airflow: Task-instance API exposes secrets in deferred trigger kwargs |
| CVE-2026-34034 | 8.8 | 33.5 | coollabsio | coolify | CWE-78 | Coolify: Host RCE via Sentinel token injection |
| CVE-2026-34168 | 8.8 | 33.5 | coollabsio | coolify | CWE-78 | Coolify: Command injection via unsanitized persistent storage name in docker … |
| CVE-2026-49296 | 6.5 | 33.1 | Apache Software Foundation | Apache Airflow | CWE-639 | Apache Airflow: Per-DAG read bypass discloses co-located DAGs' source via GET… |
| CVE-2026-53751 | 8.7 | 32.8 | dataease | dataease | CWE-94 | DataEase: H2 JDBC URL Filter Bypass Leads to Remote Code Execution (RCE) |
| CVE-2026-48891 | 4.3 | 32.4 | Apache Software Foundation | Apache Airflow | CWE-200 | Apache Airflow: /ui/dependencies scheduling graph leaks unreadable Dag identi… |
| CVE-2026-14739 | 9.8 | 32.3 | HMBRAND | DBI | CWE-787 | DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL s… |
| CVE-2026-53729 | 8.7 | 32.2 | dataease | dataease | CWE-639 | DataEase ExportCenter IDOR allows cross-user export task access |
| CVE-2026-14740 | 9.1 | 31.8 | HMBRAND | DBI | CWE-125 | DBI versions before 1.650 for Perl read one byte out-of-bounds in preparse wh… |
| CVE-2026-14895 | 7.5 | 31.9 | BAKERSCOT | String::Util | CWE-1333 | String::Util versions before 1.36 for Perl are susceptible to a regular expre… |
| CVE-2026-14904 | 7.1 | 31.3 | AWS | res | CWE-59 | RES Auth.GetUserPrivateKey Arbitrary File Read |
| CVE-2026-37270 | 9.8 | 30.6 | n/a | n/a | CWE-287 | Trueview Security camera T18161- AF v4.9.60.0 contains an authentication bypa… |
| CVE-2026-57867 | 8.8 | 30.5 | MicroRealEstate | MicroRealEstate | CWE-288 | MicroRealEstate allows adversaries to bypass authentication due to a lack of … |
| CVE-2026-37271 | 9.8 | 30.4 | n/a | n/a | CWE-287 | Fire-Boltt Smartwatch FB BGS001 Firmware: MOY-JS14-2.0.4 is vulnerable to Imp… |
| CVE-2026-53483 | 9.8 | 30.3 | Dell | PowerProtect Data Domain | CWE-287 | Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release … |
| CVE-2026-58473 | 9.3 | 30.3 | topoteretes | cognee | CWE-306 | Cognee < 1.2.0 Unauthorized LLM Configuration Overwrite via /api/v1/settings |
| CVE-2026-34152 | 8.8 | 30.3 | coollabsio | coolify | CWE-78 | Coolify: Command Injection via Newline in Pre/Post Deployment Commands (Hered… |
| CVE-2026-57871 | 7.1 | 29.2 | MicroRealEstate | MicroRealEstate | CWE-23 | Relative path traversal vulnerability in MicroRealEstate file upload function… |
| CVE-2026-48588 | 2.3 | 29.2 | djangoproject | Django | CWE-524 | Potential exposure of private data via cached Set-Cookie response |
| CVE-2026-59707 | 9.2 | 29.1 | LocalAI | LocalAI | CWE-918 | LocalAI - Server-Side Request Forgery via POST /models/apply |
| CVE-2026-44938 | 8.8 | 28.9 | SUSE | Rancher | CWE-522 | Fleet has PSS Bypass through addLabelsFromOptions in Fleet Agent |
| CVE-2026-13696 | 8.8 | 28.6 | HAVELSAN Inc. | Liman MYS | CWE-90 | LDAP Injection in HAVELSAN's Liman MYS |
| CVE-2026-34158 | 8.8 | 28.5 | coollabsio | coolify | CWE-78 | Coolify: Command injection via single-quote breakout in Docker Compose custom… |
| CVE-2026-34058 | 8.8 | 28.2 | coollabsio | coolify | CWE-78 | Coolify: OS Command Injection via Unmanaged Container Operations - Remote Cod… |
| CVE-2026-58469 | 8.7 | 28.2 | gnuwget | wget | CWE-125 | GNU Wget 1.25.0 Heap Buffer Underread via Metalink URL Parsing |
| CVE-2026-51937 | 7.5 | 28.0 | n/a | n/a | CWE-306 | An issue in Oneblog V2.3.9 allows a remote attacker to obtain sensitive infor… |
| CVE-2026-34057 | 8.8 | 27.8 | coollabsio | coolify | CWE-78 | Coolify: Authenticated Remote Code Execution via Command Injection in Databas… |
| CVE-2026-59708 | 8.7 | 27.3 | ghostfolio | ghostfolio | CWE-862 | Ghostfolio - Unauthorized Portfolio Data Exposure via Public Endpoint |
| CVE-2026-34035 | 8.8 | 27.0 | coollabsio | coolify | CWE-78 | Coolify: Host RCE via Log Drain secret/env command injection |
| CVE-2026-55078 | 6.5 | 26.7 | coder | coder | CWE-409 | Coder: Zip upload decompression lacks aggregate size limit, enabling denial o… |
| CVE-2026-55077 | 7.2 | 26.5 | coder | coder | CWE-285 | Coder: User-admin role can reset owner account password |
| CVE-2026-55079 | 6.5 | 26.5 | coder | coder | CWE-789 | Coder's unbounded memory allocation in provisioner file upload allows authent… |
| CVE-2026-45796 | 6.5 | 26.4 | coder | coder | CWE-918 | Coder vulnerable to unauthenticated SSRF via Azure Instance Identity Endpoint |
| CVE-2026-55631 | 7.2 | 24.0 | dataease | dataease | CWE-22 | DataEase: Path Traversal Leading to Arbitrary File Deletion via Font Management |
| CVE-2026-55076 | 7.4 | 23.4 | coder | coder | CWE-287 | Coder's OIDC email_verified type coercion bypass enables account takeover via… |
| CVE-2026-55434 | 6.5 | 23.3 | coder | coder | CWE-770 | Coder vulnerable to denial of service via unbounded request body in AI Bridge… |
| CVE-2026-12375 | 9.8 | 22.9 | Unknown | uncanny-automator-pro | — | Uncanny Automator Pro 7.3.0.5 - Backdoor via Compromised Vendor Update Server |
| CVE-2026-54607 | 7.7 | 22.6 | labring | FastGPT | CWE-918 | FastGPT: SSRF in HTTP-tool OpenAPI schema importer via SwaggerParser $ref (by… |
| CVE-2026-55418 | 8.6 | 22.4 | labring | FastGPT | CWE-639 | FastGPT: S3 presign/read handlers do not bind the object key to the caller's … |
| CVE-2026-34037 | 9.9 | 22.2 | coollabsio | coolify | CWE-639 | Cross-Tenant Resource Cloning via Broken Object-Level Authorization in cloneTo() |
| CVE-2026-14940 | 5.3 | 21.9 | Red Hat | Red Hat Directory Server 11 | CWE-122 | 389-ds-base: 389-ds-base: heap-buffer-overflow in dn normalization via quoted… |
| CVE-2026-49471 | 8.3 | 21.6 | oraios | serena | CWE-306 | Serena: Unauthenticated Flask dashboard on fixed port enables DNS rebinding →… |
| CVE-2026-57172 | 8.3 | 21.4 | dataease | dataease | CWE-321 | DataEase: Hardcoded JWT Signing Secret in ShareLink |
| CVE-2026-12277 | 8.7 | 21.2 | Unknown | Frontend File Manager Plugin | — | Frontend File Manager Plugin <= 23.6 - Unauthenticated Arbitrary File Deletio… |
| CVE-2026-50529 | 8.7 | 21.0 | dataease | dataease | CWE-863 | DataEase: Link Token Leakage Prior to Share Password/Ticket Validation |
| CVE-2026-55075 | 7.4 | 21.0 | coder | coder | CWE-287 | Coder vulnerable to OIDC account takeover via email-based user matching and e… |
| CVE-2026-53877 | 6.3 | 20.6 | djangoproject | Django | CWE-805 | Heap buffer over-read in GDALRaster |
| CVE-2026-50811 | 6.5 | 20.3 | n/a | n/a | CWE-125 | An out-of-bounds read vulnerability exists in FreeType 2.14.3 and versions be… |
| CVE-2026-44877 | 6.5 | 20.1 | Hewlett Packard Enterprise (HPE) | HPE Networking Instant On | CWE-200 | Unauthenticated Remote Disclosure of Cryptographic Secrets |
| CVE-2026-55647 | 5.1 | 19.1 | dataease | dataease | CWE-79 | DataEase: authenticated stored XSS in the dashboard text components |
| CVE-2026-12948 | 4.8 | 19.1 | Digi International | Digi PortServer TS | CWE-79 | Stored Cross-Site Scripting (XSS) |
| CVE-2026-13020 | 9.8 | 18.6 | Esri | Portal for ArcGIS | CWE-640 | Weak Password Recovery Mechanism in Portal for ArcGIS |
| CVE-2026-55635 | 8.7 | 18.5 | dataease | dataease | CWE-89 | DataEase: Authenticated SQL Injection in Chart Quota Filters |
| CVE-2026-55427 | 8.3 | 18.8 | coder | coder | CWE-74 | Coder vulnerable to SSH config injection via unsanitized server-supplied valu… |
| CVE-2026-48958 | 6.4 | 18.1 | Joomla! Project | Joomla! CMS | CWE-284 | Joomla! Core - [20260712] - Incorrect Access Control in com_fields webservice… |
| CVE-2026-46354 | 9.1 | 17.8 | coder | coder | CWE-347 | Coder: PKCS#7 signature bypass in Azure instance identity allows unauthentica… |
| CVE-2026-59706 | 9.2 | 17.7 | mem0 | mem0 | CWE-306 | mem0 - Unauthenticated Config API Exposure and SSRF via ollama_base_url |
| CVE-2026-12352 | 5.9 | 17.7 | Digi International | PortServer TS 1/2/4 | CWE-863 | Incorrect Authorization |
| CVE-2026-58384 | 7.8 | 17.5 | Red Hat | Red Hat Enterprise Linux 9 | CWE-190 | Gimp: gimp: integer overflow in read_rle_channel() |
| CVE-2026-7017 | 7.1 | 17.5 | HAARG | HTTP::Tiny | CWE-522 | HTTP::Tiny versions before 0.095 for Perl forward credential headers to cross… |
| CVE-2026-42147 | 4.9 | 17.3 | coollabsio | coolify | CWE-918 | Coolify: SSRF via S3 Storage Endpoint in testConnection() |
| CVE-2026-55592 | 3.9 | 17.2 | lissy93 | dashy | CWE-79 | Dashy: XSS in workspace url parameter |
| CVE-2026-49229 | 8.3 | 16.9 | actualbudget | actual | CWE-613 | Actual: Disabled OpenID users keep access through existing session tokens |
| CVE-2026-5799 | 7.5 | 16.8 | Idvlabs Software and Consulting Services Inc. | Ontime | CWE-639 | IDOR in Idvlabs' Ontime |
| CVE-2026-42145 | 3.1 | 16.6 | coollabsio | coolify | CWE-434 | Coolify: File Upload Without Type or Size Validation in Database Backup Restore |
| CVE-2026-55417 | 6.9 | 16.5 | chevereto | chevereto | CWE-862 | Chevereto private profile setting leaks username on /json endpoint |
| CVE-2026-4375 | 9.0 | 16.4 | Unknown | DoLeads Integrator | — | DoLeads Integrator <= 1.2.2 & wp2epub <= 0.65 - Unauthenticated RCE |
| CVE-2026-58470 | 6.9 | 16.2 | gnuwget | wget | CWE-190 | GNU Wget 1.25.0 Integer Overflow via Content-Range Header Parsing |
| CVE-2025-12799 | 6.5 | 16.2 | Red Hat | Red Hat JBoss Enterprise Application Platform 8.1.7.GA | CWE-79 | Jastow: jastow cross-site scripting attack due to unsanitized uri |
| CVE-2026-55428 | 8.2 | 16.1 | coder | coder | CWE-285 | Coder: Route hijacking through lack of validation of agent-supplied AllowedIP… |
| CVE-2026-5730 | 7.5 | 16.2 | Idvlabs Software and Consulting Services Inc. | Ontime | CWE-639 | IDOR in Idvlabs' Ontime |
| CVE-2026-50007 | 7.2 | 16.1 | actualbudget | actual | CWE-862 | Actual: Shared users can perform owner-only file management actions |
| CVE-2026-54601 | 6.3 | 16.1 | labring | FastGPT | CWE-915 | FastGPT: reTrainingCollection allows server-owned datasetId override causing … |
| CVE-2026-34044 | 7.7 | 15.8 | coollabsio | coolify | CWE-639 | Coolify: Cross-team IDOR in logs component (resource lookup not team-scoped) |
| CVE-2026-48948 | 6.4 | 15.4 | Joomla! Project | Joomla! CMS | CWE-284 | Joomla! Core - [20260702] - Incorrect Access Control in com_contact vcf download |
| CVE-2026-48957 | 6.4 | 15.4 | Joomla! Project | Joomla! CMS | CWE-284 | Joomla! Core - [20260711] - Incorrect Access Control in com_privacy webservic… |
| CVE-2026-50530 | 7.1 | 15.1 | dataease | dataease | CWE-639 | DataEase: Token with Overly Broad Privileges in Share Mode: Access to Unshare… |
| CVE-2026-53730 | 8.7 | 14.7 | dataease | dataease | CWE-862 | DataEase: Unauthorized Access to Engine Database via previewSql Endpoint |
| CVE-2026-57868 | 7.1 | 14.7 | MicroRealEstate | MicroRealEstate | CWE-639 | MicroRealEstate is affected by broken object-level access controls in PDF gen… |
| CVE-2026-11328 | 6.4 | 14.3 | timstrifler | Exclusive Addons for Elementor | CWE-79 | Exclusive Addons for Elementor <= 2.7.9.8 - Authenticated (Contributor+) Stor… |
| CVE-2026-54602 | 7.1 | 13.7 | labring | FastGPT | CWE-639 | FastGPT: Cross-team LLM request/response disclosure (IDOR) via /api/core/ai/r… |
| CVE-2026-27790 | 2.7 | 13.7 | Gallagher | T-20 Readers | CWE-248 | Uncaught Exception (CWE-248) in the T20 Readers allows an authenticated and a… |
| CVE-2026-27844 | 2.7 | 13.7 | Gallagher | Controller 7000 and 6000 | CWE-248 | Uncaught Exception (CWE-248) in the Controller 6000 and Controller 7000 diagn… |
| CVE-2026-58471 | 6.0 | 12.9 | gnuwget | wget | CWE-122 | GNU Wget 1.25.0 Heap Buffer Overflow via convert_fname() in url.c |
| CVE-2026-58472 | 6.0 | 12.9 | gnuwget | wget | CWE-190 | GNU Wget 1.25.0 Heap Buffer Overflow via HTML Attribute Encoding |
| CVE-2026-34149 | 3.3 | 12.9 | coollabsio | coolify | CWE-78 | Coolify: Authenticated Host-Level RCE via Unescaped Database Credentials in B… |
| CVE-2026-59704 | 7.1 | 12.3 | Cap | Cap | CWE-862 | Cap - Missing Access Control in Video AI Metadata Endpoint |
| CVE-2026-57869 | 7.1 | 12.2 | MicroRealEstate | MicroRealEstate | CWE-639 | Broken object-level access controls and the use of a deterministic pattern du… |
| CVE-2026-57870 | 5.3 | 12.2 | MicroRealEstate | MicroRealEstate | CWE-639 | Broken object-level access control on the Template API in MicroRealEstate all… |
| CVE-2026-53935 | 6.9 | 11.6 | cilium | cilium | CWE-863 | CiliumLocalRedirectPolicy addressMatcher allows cross-namespace service traff… |
| CVE-2026-48955 | 6.4 | 11.2 | Joomla! Project | Joomla! CMS | CWE-284 | Joomla! Core - [20260709] - Incorrect Access Control in com_workflow |
| CVE-2026-53878 | 5.3 | 11.0 | djangoproject | Django | CWE-144 | Header injection possibility since DomainNameValidator accepted newlines in i… |
| CVE-2026-59709 | 5.3 | 10.2 | Ghostfolio | Ghostfolio | CWE-862 | Ghostfolio - Unauthorized Portfolio Holding Tag Modification via Missing Perm… |
| CVE-2026-58468 | 5.1 | 10.2 | nocobase | nocobase | CWE-918 | NocoBase 2.1.20 Server-Side Request Forgery via serverRequest wrapper |
| CVE-2026-46700 | 4.3 | 10.1 | actualbudget | actual | CWE-285 | Actual: Missing authorization on GET /secret/:name allows non-admin OpenID us… |
| CVE-2026-8377 | 8.2 | 9.9 | Armiya Information Technologies Ltd. Co. | Access Control System (GKS) | CWE-862 | Improper Authorization in Armiya Technologies' Access Control System |
| CVE-2026-48947 | 6.4 | 9.8 | Joomla! Project | Joomla! CMS | CWE-284 | Joomla! Core - [20260701] - Incorrect Access Control in com_media webservice … |
| CVE-2026-55435 | 5.4 | 9.6 | coder | coder | CWE-863 | Suspended Coder users retain access to AI Bridge LLM proxy endpoints |
| CVE-2026-11340 | 8.3 | 9.5 | HAVELSAN Inc. | Liman MYS | CWE-862 | Authorization Bypass in HAVELSAN's Open Source Project Liman MYS |
| CVE-2026-42201 | 3.3 | 9.6 | coollabsio | coolify | CWE-78 | Coolify: OS Command Injection via Database Credential Fields in Docker Compos… |
| CVE-2026-55408 | 8.4 | 8.7 | koodo-reader | koodo-reader | CWE-94 | Koodo Reader: Remote code execution via malicious epub file |
| CVE-2026-42172 | 3.1 | 8.7 | coollabsio | coolify | CWE-613 | Coolify: Sanctum API Tokens Have No Expiration — Leaked Tokens Grant Permanen… |
| CVE-2026-11348 | 8.1 | 8.4 | HAVELSAN Inc. | Liman MYS | CWE-347 | Authentication Bypass in HAVELSAN's Open Source Project Liman MYS |
| CVE-2026-59153 | 2.1 | 7.7 | ankitects | anki | CWE-346 | Anki's local HTTP server does not sufficiently validate requests |
| CVE-2026-50179 | 4.2 | 7.2 | actualbudget | actual | CWE-1236 | Actual: CSV Formula Injection in Transaction Export via Imported Payee/Notes … |
| CVE-2026-54698 | 6.0 | 6.9 | hasura | graphql-engine | CWE-863 | Hasura: Row-level authorization bypass on table computed fields |
| CVE-2026-34170 | 4.3 | 6.8 | coollabsio | coolify | CWE-918 | Coolify: Server-Side Request Forgery via attacker-controlled GitHub App API URL |
| CVE-2026-57851 | 8.5 | 6.7 | Micro-Star International (MSI) | KernCoreLib64.sys | CWE-782 | MSI KernCoreLib64.sys Privilege Escalation via IOCTL Handlers |
| CVE-2026-48956 | 6.4 | 6.5 | Joomla! Project | Joomla! CMS | CWE-284 | Joomla! Core - [20260710] - Incorrect Access Control in com_modules |
| CVE-2026-58266 | 6.5 | 6.3 | ankitects | anki | CWE-346 | Anki: User scripts in iframes have access to the internal Anki API |
| CVE-2026-26053 | 5.3 | 4.9 | Gallagher | Command Centre Server | CWE-266 | An Incorrect Privilege Assignment (CWE-266) vulnerability in the Command Cent… |
| CVE-2026-53511 | 8.5 | 4.8 | kovidgoyal | calibre | CWE-94 | calibre: Arbitrary Code Execution in Template Formatter via Book Metadata |
| CVE-2026-14935 | 3.7 | 4.7 | Red Hat | Red Hat Enterprise Linux 10 | CWE-670 | Gstreamer: gstreamer: webrtcbin accepts remote sdp without a=fingerprint due … |
| CVE-2026-7380 | 6.1 | 4.6 | Armiya Information Technologies Ltd. Co. | Access Control System (GKS) | CWE-80 | HTML Injection in Armiya Technologies' Access Control System |
| CVE-2026-8306 | 6.1 | 4.6 | Armiya Information Technologies Ltd. Co. | Access Control System (GKS) | CWE-79 | Stored XSS in Armiya Technologies' Access Control System |
| CVE-2026-48949 | 5.9 | 4.5 | Joomla! Project | Joomla! CMS | CWE-79 | Joomla! Core - [20260703] - XSS in MFA method management |
| CVE-2026-48950 | 5.9 | 4.4 | Joomla! Project | Joomla! CMS | CWE-79 | Joomla! Core - [20260704] - XSS in com_templates |
| CVE-2026-48951 | 5.9 | 4.4 | Joomla! Project | Joomla! CMS | CWE-79 | Joomla! Core - [20260705] - XSS in various modalreturn layouts |
| CVE-2026-48952 | 5.9 | 4.5 | Joomla! Project | Joomla! CMS | CWE-79 | Joomla! Core - [20260706] - XSS in com_installer |
| CVE-2026-48953 | 5.9 | 4.4 | Joomla! Project | Joomla! CMS | CWE-79 | Joomla! Core - [20260707] - XSS in the generic image output layout |
| CVE-2026-48954 | 5.9 | 4.5 | Joomla! Project | Joomla! CMS | CWE-79 | Joomla! Core - [20260708] - XSS through language overrides |
| CVE-2026-34171 | 8.0 | 4.4 | coollabsio | coolify | CWE-352 | Coolify: Account takeover via CSRF-able GET endpoint that resets password to … |
| CVE-2026-10834 | 4.6 | 4.0 | Unknown | WP Travel Engine | — | WP Travel Engine < 6.8.1 - Subscriber+ Arbitrary Media File Move via user_pro… |
| CVE-2026-36162 | 5.4 | 3.9 | n/a | n/a | CWE-79 | An authenticated stored cross-site scripting (XSS) vulnerability in the Uploa… |
| CVE-2026-36163 | 5.4 | 3.9 | n/a | n/a | CWE-79 | An HTML injection vulnerability in the file view endpoint of LiquidFiles v4.2… |
| CVE-2026-42953 | 8.4 | 3.9 | Labcenter | Proteus | CWE-787 | Out-of-bounds write in Labcenter Proteus |
| CVE-2026-34198 | 5.3 | 3.8 | coollabsio | coolify | CWE-346 | Coolify: Password reset link poisoning via X-Forwarded-Host header spoofing |
| CVE-2026-28378 | 2.7 | 3.5 | Grafana | Grafana Enterprise | CWE-284 | Cross-Organization Public Dashboard Deletion via Missing Org Isolation |
| CVE-2026-10659 | 4.7 | 3.4 | zephyrproject | zephyr | CWE-476 | NULL pointer dereference in Zephyr Dhara FTL disk driver on flash read error … |
| CVE-2026-8309 | 5.4 | 3.3 | Armiya Information Technologies Ltd. Co. | Access Control System (GKS) | CWE-79 | Reflected XSS in Armiya Technologies' Access Control System |
| CVE-2026-46672 | 4.6 | 3.2 | actualbudget | actual | CWE-1236 | Actual: CSV Formula Injection in `@actual-app/cli` `--format csv` Output via … |
| CVE-2026-49033 | 8.4 | 3.1 | Labcenter | Proteus | CWE-121 | Stack-Based Buffer Overflow in Labcenter Proteus |
| CVE-2026-42958 | 8.4 | 2.9 | Labcenter | Proteus | CWE-416 | Use After Free in Labcenter Proteus |
| CVE-2026-50810 | 5.5 | 2.3 | n/a | n/a | CWE-476 | A NULL pointer dereference in smooth_parse_stream_index() in src/media_tools/… |
| CVE-2026-13199 | 5.1 | 1.8 | Raspberry Pi | Raspberry Pi 5 and Compute Module 5 | CWE-331 | Insufficient Entropy in Raspberry Pi 5 and Compute Module 5 |
| CVE-2026-58315 | 5.1 | 1.1 | SEIKO EPSON CORPORATION | Web Config | CWE-352 | Cross-site request forgery vulnerability exists in SEIKO EPSON Web Config. If… |
| CVE-2026-58583 | 8.4 | 1.1 | FluxInk | Color Management Driver | CWE-269 | FluxInk Color Management Driver local privilege escalation |
| CVE-2026-14867 | 6.8 | 0.6 | arcinfo | PcVue | CWE-256 | Insecure password storage in User directory |
| CVE-2026-14969 | 4.4 | 0.1 | Red Hat | Red Hat Directory Server 11 | CWE-329 | 389-ds-base: 389-ds-base: static initialization vector in aes-cbc/3des-cbc at… |
| CVE-2026-14868 | 8.4 | 0.0 | arcinfo | PcVue | CWE-326 | Weak encryption mechanism for User directory |
Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.
Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.
Day boundary. A day is a UTC calendar day. This page covers 2026-07-07 00:00:00–23:59:59 UTC. All times shown are UTC.
Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.
Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.