AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N H H H 9.2 .0195 78.5 —
AFFECTED Product Versions Fixed Blocksy Companion unspecified 2.1.47
TIMELINE Jun 30 Reserved by CNA Jul 8 Published (CNA: VulnCheck)
362 CVEs published July 8, 2026: 26 critical, 170 high, 148 medium, 18 low; 0 in KEV; 45 with a public exploit reference; 0 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 337 in the results table.
| MTD | YTD | 2025 same span | 2025 full | |
|---|---|---|---|---|
| CVEs published | 1693 | 14011 | 1254 | 2563 |
| KEV catalog size | 1670 | |||
614 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. C/H/M/L = YTD disclosures by severity band. KEV = catalog entries all-time / YTD. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100. Med CVSS / Med EPSS = medians over the vendor's YTD disclosures. Δ = this month-to-date minus the same day-span of last month.
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| linux | 37 | 1517 | 120 | 866 | 528 | 1 | 27 | 3 | 0.2 | 7.5 | .0013 | -38 |
| 79 | 1343 | 149 | 604 | 549 | 38 | 74 | 6 | 0.4 | 7.8 | .0023 | -482 | |
| microsoft | 52 | 763 | 58 | 507 | 177 | 4 | 378 | 28 | 3.7 | 7.8 | .0044 | +45 |
| red hat | 31 | 223 | 12 | 90 | 110 | 11 | 4 | 0 | 0.0 | 6.5 | .0026 | +9 |
| apple | 0 | 99 | 1 | 23 | 66 | 2 | 93 | 7 | 7.1 | 6.5 | .0031 | 0 |
| canonical | 1 | 21 | 2 | 6 | 8 | 5 | 0 | 0 | 0.0 | 5.5 | .0011 | +1 |
| suse | 6 | 19 | 4 | 11 | 4 | 0 | 0 | 0 | 0.0 | 8.6 | .0036 | +6 |
| freebsd | 0 | 16 | 0 | 12 | 4 | 0 | 0 | 0 | 0.0 | 7.8 | .0015 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ubiquiti | 25 | 36 | 14 | 21 | 1 | 0 | 4 | 3 | 8.3 | 8.8 | .0036 | +25 |
| cisco | 8 | 31 | 4 | 12 | 8 | 0 | 96 | 11 | 35.5 | 7.5 | .0056 | +6 |
| netgear | 0 | 17 | 0 | 0 | 16 | 1 | 8 | 0 | 0.0 | 4.3 | .0024 | 0 |
| palo alto networks | 1 | 12 | 0 | 2 | 7 | 1 | 14 | 2 | 16.7 | 5.3 | .0024 | +1 |
| checkpoint | 0 | 9 | 1 | 5 | 3 | 0 | 3 | 1 | 11.1 | 7.5 | .0410 | -2 |
| f5 | 0 | 9 | 4 | 3 | 1 | 0 | 7 | 1 | 11.1 | 8.9 | .0221 | 0 |
| ivanti | 0 | 9 | 2 | 3 | 0 | 0 | 33 | 5 | 55.6 | 8.8 | .5187 | -1 |
| fortinet | 0 | 8 | 1 | 3 | 2 | 0 | 28 | 3 | 37.5 | 7.3 | .0066 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| apache | 51 | 204 | 38 | 79 | 75 | 11 | 40 | 1 | 0.5 | 7.3 | .0049 | +5 |
| mozilla | 3 | 59 | 12 | 18 | 29 | 0 | 13 | 0 | 0.0 | 7.3 | .0025 | -1 |
| gitlab | 7 | 40 | 0 | 5 | 27 | 6 | 4 | 2 | 5.0 | 4.7 | .0024 | +7 |
| github | 1 | 7 | 1 | 1 | 5 | 0 | 0 | 0 | 0.0 | 6.0 | .0026 | +1 |
| docker | 0 | 7 | 0 | 5 | 2 | 0 | 1 | 0 | 0.0 | 8.2 | .0016 | -2 |
| drupal | 0 | 5 | 1 | 1 | 3 | 0 | 5 | 1 | 20.0 | 5.1 | .0026 | 0 |
| jenkins | 0 | 0 | 0 | 0 | 0 | 0 | 6 | 0 | — | — | — | 0 |
| joomla | 0 | 0 | 0 | 0 | 0 | 0 | 1 | 0 | — | — | — | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| oracle | 0 | 270 | 131 | 116 | 18 | 4 | 40 | 2 | 0.7 | 8.8 | .0040 | -1 |
| adobe | 3 | 149 | 13 | 52 | 79 | 2 | 75 | 4 | 2.7 | 5.8 | .0021 | +3 |
| ibm | 2 | 126 | 38 | 42 | 46 | 0 | 7 | 0 | 0.0 | 7.5 | .0025 | -3 |
| progress | 10 | 19 | 3 | 14 | 2 | 0 | 9 | 0 | 0.0 | 7.5 | .0034 | +5 |
| solarwinds | 0 | 7 | 1 | 2 | 2 | 0 | 11 | 4 | 57.1 | 7.5 | .0835 | -2 |
| veeam | 0 | 4 | 2 | 2 | 0 | 0 | 4 | 0 | 0.0 | 9.0 | .0046 | 0 |
| zohocorp | 0 | 3 | 1 | 1 | 1 | 0 | 0 | 0 | 0.0 | 8.4 | .0170 | 0 |
| atlassian | 0 | 0 | 0 | 0 | 0 | 0 | 13 | 0 | — | — | — | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| synology | 0 | 23 | 2 | 5 | 13 | 3 | 0 | 0 | 0.0 | 5.6 | .0025 | -5 |
| d-link | 0 | 13 | 0 | 5 | 2 | 5 | 26 | 1 | 7.7 | 5.8 | .0059 | -8 |
| siemens | 0 | 9 | 0 | 4 | 5 | 0 | 1 | 0 | 0.0 | 6.9 | .0019 | -1 |
| rockwell automation | 0 | 7 | 1 | 5 | 1 | 0 | 0 | 0 | 0.0 | 8.7 | .0030 | 0 |
| abb | 0 | 6 | 0 | 4 | 2 | 0 | 0 | 0 | 0.0 | 7.2 | .0018 | -4 |
| schneider electric | 0 | 6 | 0 | 4 | 2 | 0 | 1 | 0 | 0.0 | 7.8 | .0024 | 0 |
| moxa | 0 | 5 | 0 | 3 | 2 | 0 | 0 | 0 | 0.0 | 7.0 | .0029 | 0 |
| dahua | 0 | 3 | 0 | 1 | 1 | 1 | 2 | 0 | 0.0 | 6.9 | .0036 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| sourcecodester | 27 | 98 | 0 | 0 | 52 | 46 | 0 | 0 | 0.0 | 5.5 | .0026 | -8 |
| dell | 27 | 83 | 3 | 38 | 38 | 3 | 2 | 1 | 1.2 | 6.8 | .0019 | +24 |
| spring | 0 | 73 | 2 | 31 | 39 | 1 | 0 | 0 | 0.0 | 6.5 | .0024 | -2 |
| capgo | 7 | 68 | 2 | 34 | 31 | 1 | 0 | 0 | 0.0 | 7.0 | .0030 | +7 |
| openclaw | 1 | 68 | 0 | 36 | 22 | 10 | 0 | 0 | 0.0 | 7.0 | .0021 | +1 |
| edimax | 0 | 65 | 0 | 39 | 0 | 26 | 1 | 0 | 0.0 | 7.4 | .0059 | 0 |
| itsourcecode | 10 | 63 | 0 | 0 | 19 | 44 | 0 | 0 | 0.0 | 2.1 | .0020 | -12 |
| themerex | 2 | 60 | 5 | 54 | 1 | 0 | 0 | 0 | 0.0 | 8.1 | .0043 | +2 |
| CVE | EPSS | %ile | CVSS |
|---|---|---|---|
| CVE-2026-10520 | .9990 | 100.0 | 10.0 |
| CVE-2026-48282 | .9924 | 99.9 | 10.0 |
| CVE-2026-20253 | .9694 | 99.9 | 9.8 |
| CVE-2026-35273 | .9547 | 99.9 | 9.8 |
| CVE-2026-48908 | .8813 | 99.8 | 10.0 |
| CVE-2026-34910 | .8696 | 99.7 | 10.0 |
| CVE-2026-34908 | .8519 | 99.7 | 10.0 |
| CVE-2026-56290 | .8325 | 99.7 | 10.0 |
| CVE-2026-20230 | .8321 | 99.7 | 8.6 |
| CVE-2026-48907 | .6883 | 99.3 | 10.0 |
| CVE | CVSS | EPSS | Note |
|---|---|---|---|
| CVE-2026-10520 | 10.0 | .9990 | KEV |
| CVE-2026-48282 | 10.0 | .9924 | KEV |
| CVE-2026-48908 | 10.0 | .8813 | KEV |
| CVE-2026-34910 | 10.0 | .8696 | KEV |
| CVE-2026-34908 | 10.0 | .8519 | KEV |
| CVE-2026-56290 | 10.0 | .8325 | KEV |
| CVE-2026-48907 | 10.0 | .6883 | KEV |
| CVE-2026-34909 | 10.0 | .6390 | KEV |
| CVE-2026-50160 | 10.0 | .1775 | |
| CVE-2026-48276 | 10.0 | .0505 |
| Vendor | CVEs |
|---|---|
| 608 | |
| linux | 476 |
| microsoft | 266 |
| oracle | 242 |
| adobe | 145 |
| red hat | 137 |
| apache | 126 |
| ibm | 72 |
| spring | 70 |
| capgo | 68 |
| Vendor | KEV |
|---|---|
| microsoft | 28 |
| cisco | 11 |
| apple | 7 |
| 6 | |
| ivanti | 5 |
| adobe | 4 |
| solarwinds | 4 |
| synacor | 4 |
| fortinet | 3 |
| linux | 3 |
| Ecosystem | Advisories |
|---|---|
| Maven | 69 |
| Packagist | 13 |
| PyPI | 6 |
| npm | 6 |
| NuGet | 3 |
| CVE | Vendor | Days |
|---|---|---|
| CVE-2025-67038 | Lantronix | 0 |
| CVE-2026-10520 | ivanti | 0 |
| CVE-2026-11645 | 0 | |
| CVE-2026-12569 | PTC | 0 |
| CVE-2026-20230 | Cisco | 0 |
| CVE-2026-20245 | Cisco | 0 |
| CVE-2026-20253 | Splunk | 0 |
| CVE-2026-20262 | Cisco | 0 |
| CVE-2026-34908 | Ubiquiti Inc | 0 |
| CVE-2026-34909 | Ubiquiti Inc | 0 |
| CVE | Vendor | Due | Days over |
|---|---|---|---|
| CVE-2021-27104 | Accellion | 2021-11-17 | 1694 |
| CVE-2021-27102 | Accellion | 2021-11-17 | 1694 |
| CVE-2021-27101 | Accellion | 2021-11-17 | 1694 |
| CVE-2021-27103 | Accellion | 2021-11-17 | 1694 |
| CVE-2021-21017 | Adobe | 2021-11-17 | 1694 |
| CVE-2021-28550 | Adobe | 2021-11-17 | 1694 |
| CVE-2021-42013 | Apache | 2021-11-17 | 1694 |
| CVE-2021-41773 | Apache | 2021-11-17 | 1694 |
| CVE-2021-30858 | Apple | 2021-11-17 | 1694 |
| CVE-2021-30860 | Apple | 2021-11-17 | 1694 |
EXPLOIT PUBLISHED — CVE-2026-15105 (davenardella snap7). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-15164 (Wireshark Foundation ciscodump). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-15165 (Wireshark Foundation Wireshark). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-15166 (Wireshark Foundation Wireshark). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-15167 (Wireshark Foundation Wireshark). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-15168 (Wireshark Foundation Wireshark). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-15169 (Wireshark Foundation Wireshark). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-15170 (Wireshark Foundation Wireshark). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-15171 (Wireshark Foundation Wireshark). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-15172 (Wireshark Foundation Wireshark). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-24700. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-44332 (gofiber fiber). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-44512 (onnx). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45045 (gofiber fiber). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-53624 (gofiber fiber). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-54499 (stanfordnlp stanza). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-54527 (jupyterlab-git). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-54528 (jupyterlab-git). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-55470 (hapifhir org.hl7.fhir.core). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-55471 (hapifhir org.hl7.fhir.core). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-55761 (portainer). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-56297 (FreeRDP). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-58191 (appium). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59868 (nodeca js-yaml). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59869 (nodeca js-yaml). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59870 (nodeca js-yaml). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59871 (isaacs node-tar). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59873 (isaacs node-tar). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59874 (isaacs node-tar). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59879 (immutable-js). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59880 (immutable-js). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59890 (pypa setuptools). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59922 (lepture mistune). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59923 (lepture mistune). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59924 (lepture mistune). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59925 (lepture mistune). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59927 (lepture mistune). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59928 (lepture mistune). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59929 (lepture mistune). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59930 (lepture mistune). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-59939 (httplib2). Public exploit reference added.
362 CVEs published. 25 box scores, 337 table rows — nothing truncated.
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N H H H 9.2 .0195 78.5 —
AFFECTED Product Versions Fixed Blocksy Companion unspecified 2.1.47
TIMELINE Jun 30 Reserved by CNA Jul 8 Published (CNA: VulnCheck)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P L N H H H 7.7 .0176 76.1 —
AFFECTED Product Versions Fixed Vfs unspecified —
TIMELINE Jul 8 Reserved by CNA Jul 8 Published (CNA: VulnCheck)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV L L N L N L L L 1.9 .0155 72.9 —
AFFECTED Product Versions Fixed OpenLLM 0.6.30 – —
TIMELINE Jul 8 Reserved by CNA Jul 8 Published (CNA: VulDB)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N U H H H 7.2 .0152 72.5 —
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Jan 23 Reserved by CNA Jul 8 Public exploit reference published Jul 8 Published (CNA: mitre)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0109 62.6 —
AFFECTED Product Versions Fixed fluentd < 1.19.3 – —
TIMELINE May 4 Reserved by CNA Jul 8 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N L L L 5.3 .0107 62.0 —
AFFECTED Product Versions Fixed check-peer-dependencies 4.3.0 – —
TIMELINE Jul 8 Reserved by CNA Jul 8 Published (CNA: VulDB)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N H H H 7.2 .0096 58.5 —
AFFECTED Product Versions Fixed Cloud NGFW unspecified All PAN-OS 12.1.0 – 12.1.8 Prisma Access 11.2.0 – 11.2.7-h18
TIMELINE Nov 3 Reserved by CNA Jul 8 Published (CNA: palo_alto)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N U H H H 7.2 .0096 58.5 —
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Jan 23 Reserved by CNA Jul 8 Published (CNA: mitre)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N U H H H 7.2 .0096 58.5 —
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Jan 23 Reserved by CNA Jul 8 Published (CNA: mitre)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N U H H H 7.2 .0096 58.5 —
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Jan 23 Reserved by CNA Jul 8 Published (CNA: mitre)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H N N 7.5 .0095 58.4 —
AFFECTED Product Versions Fixed My Calendar – Accessible Event Manager unspecified —
TIMELINE Apr 22 Reserved by CNA Jul 8 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N H H 9.1 .0074 51.7 —
AFFECTED Product Versions Fixed Simple Coherent Form unspecified —
TIMELINE Jul 2 Reserved by CNA Jul 8 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H N N 7.5 .0069 49.9 —
AFFECTED Product Versions Fixed Jssor Slider by jssor.com unspecified —
TIMELINE Jun 30 Reserved by CNA Jul 8 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0068 49.4 —
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Jun 8 Reserved by CNA Jul 8 Published (CNA: mitre)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N N L H 8.8 .0056 43.8 —
AFFECTED Product Versions Fixed u-boot unspecified —
TIMELINE Mar 3 Reserved by CNA Jul 8 Published (CNA: VulnCheck)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N N N H 8.7 .0055 43.5 —
AFFECTED Product Versions Fixed u-boot unspecified —
TIMELINE Mar 3 Reserved by CNA Jul 8 Published (CNA: VulnCheck)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N N N L 6.9 .0055 43.3 —
AFFECTED Product Versions Fixed u-boot unspecified —
TIMELINE Mar 3 Reserved by CNA Jul 8 Published (CNA: VulnCheck)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0054 43.2 —
AFFECTED Product Versions Fixed WHMCS Bridge unspecified —
TIMELINE Jul 2 Reserved by CNA Jul 8 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N N H 7.5 .0050 40.9 —
AFFECTED Product Versions Fixed nats-server < 2.12.12 – —
TIMELINE Jun 29 Reserved by CNA Jul 8 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N N H 7.5 .0050 40.9 —
AFFECTED Product Versions Fixed nats-server < 2.11.17 – —
TIMELINE Jun 29 Reserved by CNA Jul 8 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0050 40.6 —
AFFECTED Product Versions Fixed Widget Logic Visual unspecified —
TIMELINE Jun 30 Reserved by CNA Jul 8 Published (CNA: Wordfence)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N U H H H 7.2 .0050 40.3 —
AFFECTED Product Versions Fixed MOVEit Transfer 2025.0.0 – —
TIMELINE Jun 2 Reserved by CNA Jul 8 Published (CNA: ProgressSoftware)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N N N N 7.7 .0047 39.0 —
AFFECTED Product Versions Fixed Monsta FTP unspecified —
TIMELINE Jul 8 Reserved by CNA Jul 8 Published (CNA: VulnCheck)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N N H 7.5 .0047 38.6 —
AFFECTED Product Versions Fixed CoreWCF >= 1.9.0, < 1.9.1 – —
TIMELINE Jun 15 Reserved by CNA Jul 8 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U N N H 7.5 .0046 37.7 —
AFFECTED Product Versions Fixed opentelemetry-js < 2.9.0 – —
TIMELINE Jul 7 Reserved by CNA Jul 8 Published (CNA: GitHub_M)
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-55470 | 7.5 | 37.0 | hapifhir | org.hl7.fhir.core | CWE-1333 | HAPI FHIR: DSTU2 FHIRPathEngine.matches() missing RegexTimeout protection all… |
| CVE-2026-49866 | 7.5 | 36.7 | libp2p | js-libp2p | CWE-770 | libp2p: CPU DoS via oversized IHAVE and IWANT control message arrays |
| CVE-2026-60000 | 7.5 | 36.7 | OpenBSD | OpenSSH | CWE-770 | sshd in OpenSSH before 10.4 allows remote attackers to cause a denial of serv… |
| CVE-2026-31309 | 9.8 | 36.6 | n/a | n/a | CWE-862 | Improper authorization in the /tequilapi/config/user endpoint of Mysterium No… |
| CVE-2026-59879 | 8.7 | 36.5 | immutable-js | immutable-js | CWE-190 | Immutable.js `List` 32-bit trie overflow → unrecoverable DoS |
| CVE-2026-14495 | 8.8 | 36.2 | wpdo5ea | DoLogin Security | CWE-338 | DoLogin Security <= 4.3 - Unauthenticated Authentication Bypass via Insuffici… |
| CVE-2026-59880 | 8.7 | 36.0 | immutable-js | immutable-js | CWE-407 | Immutable.js: Hash-collision algorithmic complexity denial of service in Immu… |
| CVE-2026-56002 | 8.8 | 35.7 | X.Org | libXfont2 | CWE-122 | libXfont2 PCF Font Parsing Heap Buffer Overflow |
| CVE-2026-59873 | 9.2 | 35.4 | isaacs | node-tar | CWE-770 | node-tar: Decompression/parse DoS via unlimited input |
| CVE-2026-59869 | 7.5 | 35.3 | nodeca | js-yaml | CWE-407 | js-yaml: YAML merge-key chains can force quadratic CPU consumption |
| CVE-2026-59874 | 8.7 | 34.9 | isaacs | node-tar | CWE-835 | node-tar: Negative tar entry size causes infinite loop in archive replace |
| CVE-2026-59922 | 7.5 | 34.9 | lepture | mistune | CWE-407 | Mistune plugins/formatting: quadratic-time parsing on long runs of `~~x~~`, `… |
| CVE-2026-55760 | 7.5 | 34.6 | jknack | handlebars.java | CWE-22 | handlebars.java FileTemplateLoader Path Traversal |
| CVE-2026-44025 | 7.5 | 34.5 | fluent | fluentd | CWE-306 | Fluentd: Exposure of Sensitive Information via Monitor Agent API |
| CVE-2026-59928 | 7.5 | 34.4 | lepture | mistune | CWE-407 | Mistune block_parser: quadratic-time parsing on long lists of repeated refere… |
| CVE-2026-55404 | 8.8 | 34.4 | yt-dlp | yt-dlp | CWE-74 | yt-dlp: Downstream command injection via improper sanitization of yt-dlp --wr… |
| CVE-2026-44332 | 5.3 | 34.2 | gofiber | fiber | CWE-203 | Fiber: Username Enumeration via Timing Oracle in BasicAuth Default Authorizer |
| CVE-2026-59868 | 7.5 | 34.1 | nodeca | js-yaml | CWE-770 | js-yaml: YAML merge-key chains can force quadratic CPU consumption |
| CVE-2026-59870 | 7.5 | 34.1 | nodeca | js-yaml | CWE-770 | js-yaml quadratic-complexity denial of service via YAML11_SCHEMA !!omap parsing |
| CVE-2026-59871 | 7.5 | 34.1 | isaacs | node-tar | CWE-704 | node-tar: Process crash via PAX numeric path type confusion |
| CVE-2026-59925 | 7.5 | 34.1 | lepture | mistune | CWE-407 | inline_parser: quadratic-time parsing on long runs of `**x**` and `***x***` e… |
| CVE-2026-59939 | 7.5 | 34.1 | httplib2 | httplib2 | CWE-409 | httplib2: Decompression Bomb Denial of Service via Unbounded gzip/deflate Res… |
| CVE-2026-59803 | 8.7 | 34.0 | smallnest | rpcx | CWE-409 | rpcx - Denial of Service via Gzip Decompression Bomb in Wire Protocol |
| CVE-2026-55778 | 2.1 | 33.8 | parse-community | parse-server | CWE-434 | Parse Server: Stored XSS via non-standard file extension bypassing file uploa… |
| CVE-2026-59890 | 6.1 | 33.7 | pypa | setuptools | CWE-176 | setuptools: MANIFEST.in exclusion bypass in sdist via Unicode normalization c… |
| CVE-2026-15053 | 7.5 | 33.5 | Tanium | Tanium Server | CWE-789 | Tanium addressed a denial of service vulnerability in Tanium Server. |
| CVE-2026-15112 | 8.8 | 33.3 | Chrome | CWE-416 | Use after free in Ozone in Google Chrome prior to 150.0.7871.115 allowed a re… | |
| CVE-2026-59924 | 5.9 | 33.2 | lepture | mistune | CWE-22 | Mistune: Arbitrary File Read via Include directive path traversal |
| CVE-2026-58207 | 6.5 | 32.9 | nats-io | nats-server | CWE-190 | NATS Server: Remote crash via integer overflow in Connz pagination |
| CVE-2026-12378 | 8.1 | 32.1 | Unknown | Appointment Booking Calendar Plugin and Scheduling Plugin | — | BookingPress <= 1.1.28 - Unauthenticated PHP Object Injection |
| CVE-2026-6896 | 5.4 | 32.0 | GitLab | GitLab | CWE-79 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scri… |
| CVE-2026-54061 | 9.1 | 31.9 | dgraph-io | dgraph | CWE-306 | Dgraph Alpha group stores can be replaced via unauthenticated external snapsh… |
| CVE-2026-59703 | 8.7 | 31.8 | repomix | repomix | CWE-552 | repomix - Local File Inclusion via file:// URL Scheme in Git Clone Endpoint |
| CVE-2026-57481 | 2.3 | 31.8 | parse-community | parse-server | CWE-200 | Parse Server: LiveQuery discloses object data to a subscriber across an ACL r… |
| CVE-2026-12153 | 9.8 | 31.7 | rabilal | WP Learn Manager | CWE-862 | WP Learn Manager <= 1.1.8 - Missing Authorization to Unauthenticated Arbitrar… |
| CVE-2026-55575 | 8.2 | 31.5 | harttle | liquidjs | CWE-770 | LiquidJS: `pop` filter bypasses `memoryLimit` accounting that its array-filte… |
| CVE-2026-42505 | 5.3 | 31.4 | Go standard library | crypto/tls | CWE-201 | Invoking Encrypted Client Hello privacy leak in crypto/tls |
| CVE-2026-56001 | 8.8 | 31.2 | X.Org | libXfont2 | CWE-122 | libXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow |
| CVE-2026-55471 | 8.7 | 30.8 | hapifhir | org.hl7.fhir.core | CWE-611 | HAPI FHIR: XXE in XsltUtilities.saxonTransform via unhardened Saxon Transform… |
| CVE-2026-10706 | 7.5 | 30.7 | Adalo No-Code App Builder | App Builder | — | Exposure of Sensitive Information to an Unauthorized attacker |
| CVE-2026-49146 | 7.5 | 30.6 | PETDANCE | App::Ack | CWE-770 | App::Ack versions before 3.10.0 for Perl allow memory exhaustion via an unbou… |
| CVE-2026-14454 | 9.8 | 30.5 | TONYC | Imager | CWE-196 | Imager versions before 1.033 for Perl treat unsigned EXIF IFD entry counts as… |
| CVE-2026-56003 | 8.8 | 30.5 | X.Org | libXfont2 | CWE-122 | libXfont2 computeProps Property Buffer Heap Buffer Overflow |
| CVE-2026-53482 | 7.5 | 30.3 | Dell | PowerProtect Data Domain | CWE-190 | Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release … |
| CVE-2026-15067 | 8.8 | 30.2 | Snowflake | Terraform Provider for Snowflake | CWE-89 | Multiple Security Vulnerabilities in Terraform Provider for Snowflake Could A… |
| CVE-2026-58525 | 8.2 | 30.1 | Microsoft | Microsoft Edge (Chromium-based) | CWE-284 | Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability |
| CVE-2026-59877 | 7.5 | 30.1 | protobufjs | protobuf.js | CWE-835 | protobufjs: Denial of Service via infinite loop in .proto option parsing |
| CVE-2026-35211 | 6.5 | 30.1 | OpenCTI-Platform | opencti | CWE-94 | OpenCTI: Elasticsearch Painless Script Injection via GraphQL `script` filter … |
| CVE-2026-44840 | 7.5 | 29.9 | dgraph-io | dgraph | CWE-943 | Dgraph Vulnerable to DQL Injection via checkUserPassword GraphQL Query |
| CVE-2026-59935 | 8.7 | 29.8 | py-pdf | pypdf | CWE-835 | pypdf: Possible infinite loop for not terminated inline images (ASCII85 and A… |
| CVE-2026-15129 | 8.8 | 29.7 | Chrome | CWE-416 | Use after free in Views in Google Chrome prior to 150.0.7871.115 allowed a re… | |
| CVE-2026-8650 | 7.5 | 29.6 | Progress | MOVEit Transfer | CWE-23 | Authenticated Path Traversal allows MOVEit admins to view arbitrary system files |
| CVE-2026-56843 | 9.9 | 29.5 | Webpros | Plesk | CWE-522 | Incorrect authorization in the XML-RPC API of WebPros Plesk before 18.0.78.4 … |
| CVE-2026-45045 | 5.3 | 29.4 | gofiber | fiber | CWE-290 | Fiber: X-Real-IP Spoofing via Header.Add() in BalancerForward |
| CVE-2026-54527 | 9.3 | 29.2 | jupyterlab | jupyterlab-git | CWE-79 | JupyterLab Git: Stored XSS leading to RCE |
| CVE-2026-56297 | 8.3 | 29.2 | FreeRDP | FreeRDP | CWE-362 | FreeRDP - Use-After-Free via Race Condition in DRDYNVC Channel Callback |
| CVE-2026-44160 | 7.5 | 29.1 | fluent | fluentd | CWE-409 | Fluentd: Denial of Service (DoS) via Gzip Decompression Bomb in `in_http` and… |
| CVE-2026-56669 | 7.5 | 28.9 | elysiajs | elysia | CWE-407 | Elysia: Inefficient Algorithmic Complexity and Interpretation Conflict |
| CVE-2026-59821 | 2.1 | 28.6 | BerriAI | litellm | CWE-94 | LiteLLM: Custom Code Guardrails production endpoints bypass code safety checks |
| CVE-2026-59725 | 7.5 | 28.5 | socketio | socket.io | CWE-404 | Socket.IO: Engine.IO Polling Transport Connection Exhaustion |
| CVE-2026-59927 | 5.3 | 28.2 | lepture | mistune | CWE-674 | Mistune directives/include: mutual `.. include::` recursion crashes the rende… |
| CVE-2026-54528 | 7.1 | 28.1 | jupyterlab | jupyterlab-git | CWE-178 | jupyterlab-git excluded_paths Case-Sensitivity Bypass Allows Reading Excluded… |
| CVE-2026-8801 | 9.8 | 27.5 | Progress | MOVEit Transfer | CWE-46 | File Extension Restriction Bypass in MOVEit Transfer |
| CVE-2026-9695 | 9.8 | 27.5 | Dassault Systèmes | DELMIA Apriso | CWE-287 | Improper Authentication vulnerability affecting DELMIA Apriso from Release 20… |
| CVE-2026-58192 | 8.6 | 27.5 | appium | appium | CWE-22 | Appium: Unauthenticated arbitrary file/directory deletion in @appium/storage-… |
| CVE-2026-54499 | 7.5 | 27.4 | stanfordnlp | stanza | CWE-502 | Stanza: Remote Code Execution via Unsafe Pickle Deserialization in Model Loaders |
| CVE-2026-59887 | 7.5 | 27.2 | markdown-it | linkify-it | CWE-407 | linkify-it: Quadratic-complexity DoS via the `mailto:` validator scan-loop on… |
| CVE-2026-58252 | 6.5 | 27.1 | nats-io | nats-server | CWE-285 | NATS Server: Subscribe Authz Bypass via Wildcard-Overlap |
| CVE-2026-59936 | 8.7 | 27.0 | py-pdf | pypdf | CWE-400 | pypdf: Possible infinite loop for not terminated inline images |
| CVE-2026-10699 | 7.5 | 27.0 | Progress | MOVEit Transfer | CWE-401 | Memory leak in SFTP service can result in a denial of service in MOVEit Transfer |
| CVE-2026-59937 | 6.9 | 27.0 | py-pdf | pypdf | CWE-400 | pypdf: Possible long runtimes for repeated malformed cross-reference entries |
| CVE-2026-58251 | 6.5 | 26.9 | nats-io | nats-server | CWE-285 | NATS Server: Queue Subscribe Authz Bypass |
| CVE-2026-59724 | 7.5 | 26.8 | socketio | socket.io | CWE-20 | Socket.IO: Engine.IO WebTransport SID DoS |
| CVE-2026-58208 | 7.5 | 26.6 | nats-io | nats-server | CWE-248 | NATS Server: MQTT-over-WebSocket Path Can Crash WebSocket-Only JetStream Serv… |
| CVE-2026-54775 | 6.5 | 26.5 | CoreWCF | CoreWCF | CWE-248 | CoreWCF: Kafka consume pump halts permanently on a Kafka tombstone (null-valu… |
| CVE-2026-57480 | 8.7 | 26.4 | parse-community | parse-server | CWE-407 | Parse Server: Denial of service via exponential-time processing of deeply nes… |
| CVE-2026-14500 | 5.3 | 26.1 | sayantandas20 | Bulk Order Update for WooCommerce | CWE-22 | Bulk Order Update for WooCommerce <= 1.6 - Unauthenticated Arbitrary File Rea… |
| CVE-2026-15132 | 8.8 | 26.1 | Chrome | CWE-457 | Uninitialized Use in V8 in Google Chrome prior to 150.0.7871.115 allowed a re… | |
| CVE-2026-13320 | 5.4 | 26.1 | GitLab | GitLab | CWE-79 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scri… |
| CVE-2026-36027 | 6.8 | 26.0 | n/a | n/a | CWE-1313 | An issue in Code27 Companion Hub SQ3A.220705.003.A1 allows a physically proxi… |
| CVE-2026-56273 | 4.9 | 25.9 | Flowise | Flowise | CWE-22 | Flowise - Path Traversal in Vector Store basePath Parameter |
| CVE-2026-49145 | 7.5 | 25.8 | PETDANCE | App::Ack | CWE-73 | App::Ack versions through 3.10.0 for Perl read arbitrary files via --files-fr… |
| CVE-2026-49147 | 7.5 | 25.8 | PETDANCE | App::Ack | CWE-150 | App::Ack versions through 3.10.0 for Perl print unsanitised terminal escape s… |
| CVE-2026-55874 | 7.7 | 25.6 | seaweedfs | seaweedfs | CWE-22 | SeaweedFS: Path traversal in the S3 gateway X-Amz-Copy-Source header allows c… |
| CVE-2026-59702 | 9.2 | 25.2 | repomix | repomix | CWE-918 | repomix - Server-Side Request Forgery via Unvalidated Repository URLs in POST… |
| CVE-2026-58213 | 7.1 | 25.2 | nats-io | nats-server | CWE-74 | NATS Server: MQTT SUBSCRIBE Protocol Injection via Leaf Node/Route Forwarding… |
| CVE-2026-59818 | 8.1 | 24.7 | etcd-io | etcd | CWE-295 | etcd: gRPC client listener does not enforce `--client-crl-file` certificate r… |
| CVE-2026-14482 | 8.8 | 24.6 | shen2 | 多说社会化评论框 | CWE-269 | 多说社会化评论框 <= 1.2 - Unauthenticated Privilege Escalation via api.php 'option'/'… |
| CVE-2026-14891 | 8.7 | 24.4 | HashiCorp | Nomad | CWE-59 | Nomad vulnerable to sandbox escape in Docker task driver |
| CVE-2026-56086 | 8.8 | 24.1 | Dell | PowerProtect Data Domain | CWE-863 | Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release … |
| CVE-2026-59257 | 5.3 | 24.2 | n8n | n8n | CWE-89 | n8n - SQL Injection in MySQL v1 executeQuery Operation via Expression Interpo… |
| CVE-2026-54591 | 8.1 | 24.0 | ronf | asyncssh | CWE-22 | AsyncSSH: SCP Path Traversal to Arbitrary File Write |
| CVE-2026-59820 | 6.1 | 24.1 | BerriAI | litellm | CWE-22 | LiteLLM: Improper Limitation of a Pathname to a Restricted Directory ('Path T… |
| CVE-2026-44161 | 7.2 | 23.2 | fluent | fluentd | CWE-918 | Fluentd: Server-Side Request Forgery (SSRF) via Placeholder Expansion in `out… |
| CVE-2026-15133 | 8.8 | 23.1 | Chrome | CWE-416 | Use after free in InterestGroups in Google Chrome prior to 150.0.7871.115 all… | |
| CVE-2026-59822 | 8.8 | 22.9 | BerriAI | litellm | CWE-287 | LiteLLM: MCP Authentication Bypass via OAuth2 Passthrough Fallback |
| CVE-2026-59938 | 6.9 | 22.9 | py-pdf | pypdf | CWE-789 | pypdf: Possible large memory usage for wrong image dimensions |
| CVE-2026-15154 | 6.5 | 22.8 | Red Hat | Red Hat OpenShift AI 2.25 | CWE-1333 | Guardrails-detectors: guardrails-detectors: unauthenticated regular-expressio… |
| CVE-2026-60002 | 9.4 | 22.5 | OpenBSD | OpenSSH | CWE-416 | ssh in OpenSSH before 10.4 can have a use-after-free when a server changes it… |
| CVE-2026-15041 | 3.7 | 22.6 | Red Hat | Red Hat Directory Server 11 | CWE-208 | 389-ds-base: 389-ds-base: non-constant-time comparison in pbkdf2-sha256 passw… |
| CVE-2026-15107 | 8.8 | 22.4 | Chrome | CWE-416 | Use after free in IndexedDB in Google Chrome prior to 150.0.7871.115 allowed … | |
| CVE-2026-15116 | 8.8 | 22.4 | Chrome | CWE-416 | Use after free in Actor in Google Chrome prior to 150.0.7871.115 allowed a re… | |
| CVE-2026-15118 | 8.8 | 22.4 | Chrome | CWE-416 | Use after free in Input in Google Chrome prior to 150.0.7871.115 allowed a re… | |
| CVE-2026-15121 | 8.8 | 22.4 | Chrome | CWE-416 | Use after free in WebRTC in Google Chrome prior to 150.0.7871.115 allowed a r… | |
| CVE-2026-15126 | 8.8 | 22.4 | Chrome | CWE-416 | Use after free in Forms in Google Chrome prior to 150.0.7871.115 allowed a re… | |
| CVE-2026-59875 | 5.3 | 21.7 | isaacs | node-tar | CWE-248 | node-tar: Uncaught Exception DoS via NUL byte in PAX path/linkpath records |
| CVE-2026-55761 | 7.1 | 21.6 | portainer | portainer | CWE-287 | Portainer: Unauthenticated Restore Endpoint Allows Admin Takeover on Uninitia… |
| CVE-2026-60001 | 6.5 | 21.6 | OpenBSD | OpenSSH | CWE-770 | sshd in OpenSSH before 10.4 does not always honor the minimum authentication … |
| CVE-2026-14966 | 3.1 | 21.6 | Black Lantern Security | BBOT | CWE-59 | Symlink guard bypass in unarchive module allows planting symlinks during extr… |
| CVE-2026-59807 | 8.9 | 21.4 | ComposioHQ | composio | CWE-73 | Composio SDK < 0.2.32-beta.283 - Sensitive File Upload via tool-file-uploads.ts |
| CVE-2026-15125 | 8.8 | 21.2 | Chrome | CWE-863 | Inappropriate implementation in Forms in Google Chrome prior to 150.0.7871.11… | |
| CVE-2026-55429 | 8.7 | 21.2 | coder | coder | CWE-639 | Coder's workspace app upsert allows cross-workspace agent rebinding via user-… |
| CVE-2026-54590 | 5.9 | 21.1 | ronf | asyncssh | CWE-22 | AsyncSSH AuthorizedKeysFile username substitution bypass through ~ and enviro… |
| CVE-2026-15062 | 9.6 | 21.0 | Snowflake | Snowpark Python SDK | CWE-89 | SQL Injection in Snowflake Snowpark Python SDK |
| CVE-2026-41042 | 9.1 | 21.0 | Apache Software Foundation | Apache Gravitino | CWE-20 | Apache Gravitino: Unauthenticated callers can supply a malicious H2 JDBC URL … |
| CVE-2026-8472 | 4.3 | 21.0 | GitLab | GitLab | CWE-862 | Missing Authorization in GitLab |
| CVE-2026-9701 | 9.8 | 20.7 | joe007 | Eventer | CWE-289 | Eventer <= 4.4.2 - Insecure Password Reset Mechanism to Unauthenticated Privi… |
| CVE-2026-9074 | 9.8 | 20.6 | IBM | API Connect | CWE-89 | IBM API Connect SQL Injection |
| CVE-2026-11903 | 5.4 | 20.6 | Progress | MOVEit Transfer | CWE-79 | Stored XSS in MOVEit Transfer Ad Hoc module |
| CVE-2026-51535 | 7.5 | 20.3 | n/a | n/a | CWE-400 | In OpENer 2.3.0 (commit 76b95cf), a resource exhaustion (Denial of Service) v… |
| CVE-2026-35552 | 8.1 | 20.1 | n/a | n/a | CWE-862 | In CAXperts UPVWebServices 2.4.2212.603 through 2.7.6 and UDiTH Portal 2026.0… |
| CVE-2026-47646 | 6.1 | 19.8 | Microsoft | Dynamics 365 Customer Voice | CWE-79 | Dynamics 365 Customer Voice Spoofing Vulnerability |
| CVE-2026-6230 | 7.5 | 19.7 | tainacan | Tainacan | CWE-89 | Tainacan <= 1.0.3 - Unauthenticated SQL Injection via 'geoquery' REST API Par… |
| CVE-2026-9700 | 7.5 | 19.7 | joe007 | Eventer | CWE-89 | Eventer <= 4.4.2 - Unauthenticated SQL Injection via 'code' Parameter |
| CVE-2026-15109 | 6.5 | 19.6 | Chrome | CWE-457 | Uninitialized Use in ANGLE in Google Chrome prior to 150.0.7871.115 allowed a… | |
| CVE-2026-58656 | 8.7 | 19.5 | getgrav | grav | CWE-598 | Grav API Plugin - Cross-Origin Admin Account Takeover via CORS Wildcard and J… |
| CVE-2026-55999 | 7.8 | 19.1 | X.Org | xorg-server | CWE-122 | xorg-server / xwayland glamor font atlas Heap Buffer Overflow |
| CVE-2026-55668 | 6.3 | 19.1 | filebrowser | filebrowser | CWE-22 | File Browser: ScopedFs follows a dangling symlink on write, letting a scoped … |
| CVE-2026-15135 | 5.5 | 19.1 | code-projects | Online Food Order System | CWE-74 | code-projects Online Food Order System edit_food_items.php sql injection |
| CVE-2026-54779 | 5.9 | 19.0 | CoreWCF | CoreWCF | CWE-294 | CoreWCF: SAML token replay protection is inoperative |
| CVE-2026-59731 | 8.2 | 18.9 | withastro | astro | CWE-647 | Astro 6.4.7 Authorization Bypass via Decode Iteration Limit and Rewrite Path … |
| CVE-2026-58501 | 5.9 | 18.9 | mvantellingen | python-zeep | CWE-918 | Zeep SSRF because Settings.forbid_external is not enforced |
| CVE-2026-8307 | 9.8 | 18.5 | Webbeyaz Web Design | Mediküm Web | CWE-89 | SQLi in Webbeyaz's Mediküm Web |
| CVE-2026-12936 | 4.9 | 18.8 | devitemsllc | Recurio – Ultimate Subscription for WooCommerce | CWE-89 | Recurio <= 1.1.3 - Authenticated (Shop Manager+) SQL Injection via 'data' Par… |
| CVE-2026-15105 | 2.1 | 18.5 | davenardella | snap7 | CWE-119 | davenardella snap7 ReadVar Request s7_server.cpp PerformFunctionRead out-of-b… |
| CVE-2026-6352 | 2.7 | 18.4 | GitLab | GitLab | CWE-863 | Incorrect Authorization in GitLab |
| CVE-2026-15134 | 5.5 | 18.2 | CodeAstro | Simple Online Leave Management System | CWE-74 | CodeAstro Simple Online Leave Management System index.php sql injection |
| CVE-2026-53480 | 2.7 | 18.2 | Dell | PowerProtect Data Domain | CWE-22 | Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release … |
| CVE-2026-58654 | 5.3 | 18.0 | Grav | Grav | CWE-434 | Grav - Arbitrary File Upload via Avatar Endpoint |
| CVE-2025-3110 | 6.9 | 17.8 | OpenVPN | Access Server | CWE-444 | OpenVPN Access Server 2.7.2 through 3.1.0 accepts bare line-feed sequences in… |
| CVE-2026-8649 | 9.8 | 17.7 | Progress | MOVEit Transfer | CWE-943 | Institution scope bypass vulnerability in custom reports |
| CVE-2026-56250 | 8.7 | 17.6 | Capgo | Capgo | CWE-862 | Capgo - Arbitrary R2 Object Deletion via Mutable r2_path in app_versions |
| CVE-2026-59819 | 2.1 | 17.6 | BerriAI | litellm | CWE-73 | LiteLLM: Local file read via request-supplied OIDC file references |
| CVE-2026-35210 | 7.1 | 17.5 | OpenCTI-Platform | opencti | CWE-639 | OpenCTI: Authorization Bypass via `synchronized-upsert` HTTP Header Injection |
| CVE-2026-9842 | 7.5 | 17.3 | pixelgrade | Backstage – Customizer Demo Access | CWE-269 | Backstage <= 1.4.2 - Unauthenticated Privilege Escalation via Permissive Demo… |
| CVE-2026-11827 | 4.9 | 17.3 | GitLab | GitLab | CWE-522 | Insufficiently Protected Credentials in GitLab |
| CVE-2026-58214 | 4.3 | 17.4 | nats-io | nats-server | CWE-863 | NATS Server: MQTT subscribe ACL bypass via $MQTT.deliver.pubrel prefix (incom… |
| CVE-2026-15113 | 9.6 | 17.2 | Chrome | CWE-416 | Use after free in Autofill in Google Chrome on Android prior to 150.0.7871.11… | |
| CVE-2026-15123 | 8.8 | 17.2 | Chrome | CWE-122 | Inappropriate implementation in DOM in Google Chrome prior to 150.0.7871.115 … | |
| CVE-2026-56226 | 8.7 | 17.2 | Cap-go | capgo | CWE-200 | Capgo - Unauthenticated Organization Data Disclosure via get_orgs_v6 RPC |
| CVE-2026-12097 | 5.3 | 17.3 | saadiqbal | User Management | CWE-862 | User Management <= 1.2 - Missing Authorization to Unauthenticated Plugin Sett… |
| CVE-2026-7492 | 5.3 | 17.1 | GitLab | GitLab | CWE-862 | Missing Authorization in GitLab |
| CVE-2026-58191 | 6.1 | 16.8 | appium | appium | CWE-79 | Appium: Reflected XSS / arbitrary JS in @appium/base-driver /test/guinea-pig*… |
| CVE-2026-14362 | 4.9 | 16.8 | HashiCorp | Shared library | CWE-770 | Denial of service via crafted push/pull gossip message in memberlist |
| CVE-2026-58209 | 4.3 | 16.7 | nats-io | nats-server | CWE-863 | NATS Server: MQTT retained and QoS replay bypass subscribe deny filters |
| CVE-2026-59995 | 5.4 | 16.6 | OpenBSD | OpenSSH | CWE-23 | sftp in OpenSSH before 10.4 does not properly constrain the location of downl… |
| CVE-2026-59996 | 5.4 | 16.6 | OpenBSD | OpenSSH | CWE-23 | scp in OpenSSH before 10.4 may place a file in the parent directory of an int… |
| CVE-2026-14373 | 7.7 | 16.4 | HashiCorp | Nomad | CWE-862 | Nomad Docker driver Linux host namespace bypass |
| CVE-2026-59806 | 4.9 | 16.2 | gradio-app | gradio | CWE-601 | Gradio < 6.20.0 - Open Redirect and SSRF via /gradio_api/file= endpoint |
| CVE-2026-54782 | 10.0 | 16.2 | CoreWCF | CoreWCF | CWE-290 | CoreWCF: Authentication bypass in CoreWCF SAML 1.1 / 2.0 token signature vali… |
| CVE-2026-15122 | 8.3 | 16.2 | Chrome | CWE-20 | Insufficient validation of untrusted input in Codecs in Google Chrome on Wind… | |
| CVE-2026-55596 | 8.7 | 15.5 | udecode | plate | CWE-79 | Plate: Media embed provider metadata can bypass URL sanitization and execute … |
| CVE-2026-59923 | 6.1 | 15.1 | lepture | mistune | CWE-79 | Mistune: XSS via percent-encoded javascript URI bypass in safe_url() |
| CVE-2026-59262 | 7.1 | 15.1 | affine | monorepo | CWE-862 | AFFiNE - Unauthorized Document Edit History Access via GraphQL histories Field |
| CVE-2026-54773 | 5.9 | 15.1 | CoreWCF | CoreWCF | CWE-347 | CoreWCF: WS-Security signature substitution via document-wide Signature lookup |
| CVE-2026-15036 | 2.1 | 15.1 | n/a | Harness | CWE-285 | Harness gitspaces Endpoint list_all.go getAuthorizedSpaces authorization |
| CVE-2026-36028 | 6.8 | 14.9 | n/a | n/a | CWE-288 | A protection mechanism failure in the Code 27 Companion Hub allows an attacke… |
| CVE-2026-6818 | 7.2 | 14.9 | e4jvikwp | VikBooking Hotel Booking Engine & PMS | CWE-79 | VikBooking Hotel Booking Engine & PMS <= 1.8.8 - Unauthenticated Stored Cross… |
| CVE-2026-15114 | 8.8 | 14.7 | Chrome | CWE-125 | Out of bounds read and write in Codecs in Google Chrome prior to 150.0.7871.1… | |
| CVE-2026-3144 | 9.8 | 14.5 | IBM | API Connect | CWE-1392 | IBM API Connect Default Credentials |
| CVE-2026-5922 | 5.9 | 14.5 | HP Inc. | Poly CCX | CWE-79 | Poly Voice – Potential Unauthorized Modification of WebUI using XSS Attack |
| CVE-2026-39822 | 7.8 | 14.3 | Go standard library | os | CWE-61 | Root escape via symlink plus trailing slash in os |
| CVE-2026-15120 | 8.3 | 14.2 | Chrome | CWE-416 | Use after free in Core in Google Chrome on Windows prior to 150.0.7871.115 al… | |
| CVE-2026-54652 | 8.1 | 14.1 | blakeblackshear | frigate | CWE-269 | Frigate viewer can read logs exposing admin and camera credentials |
| CVE-2026-15111 | 7.5 | 14.2 | Chrome | CWE-416 | Use after free in Views in Google Chrome prior to 150.0.7871.115 allowed a re… | |
| CVE-2026-15117 | 7.5 | 14.2 | Chrome | CWE-416 | Use after free in Payments in Google Chrome prior to 150.0.7871.115 allowed a… | |
| CVE-2026-6820 | 7.2 | 13.9 | e4jvikwp | VikBooking Hotel Booking Engine & PMS | CWE-79 | VikBooking Hotel Booking Engine & PMS <= 1.8.8 - Unauthenticated Stored Cross… |
| CVE-2026-6280 | 6.5 | 13.7 | NOMYSOFT Informatics Education and Consulting Inc. | Nomysem | CWE-213 | Improper Access Control in Nomysoft Informatics' Nomysem |
| CVE-2026-48492 | 4.9 | 13.7 | grokability | snipe-it | CWE-862 | Snipe-IT's selectlist visibility is too permissive |
| CVE-2026-58253 | 8.8 | 13.5 | nats-io | nats-server | CWE-287 | NATS Server: Route API Auth Bypass |
| CVE-2026-55830 | 8.3 | 13.6 | zopefoundation | RestrictedPython | CWE-184 | RestrictedPython guard hooks can be shadowed via positional-only arguments |
| CVE-2026-60104 | 9.3 | 13.4 | bitwarden | server | CWE-639 | Bitwarden Server < 2026.6.0 Authorization Bypass via Admin Auth Request |
| CVE-2026-15169 | 7.5 | 13.3 | Wireshark Foundation | Wireshark | CWE-122 | Heap-based Buffer Overflow in Wireshark |
| CVE-2026-59929 | 6.1 | 13.4 | lepture | mistune | CWE-79 | Mistune renderers/html.safe_url: HARMFUL_PROTOCOLS list misses legacy and cha… |
| CVE-2026-55433 | 5.4 | 13.2 | coder | coder | CWE-862 | Coder: Devcontainer recreate endpoint missing write authorization allows read… |
| CVE-2026-56246 | 7.2 | 13.1 | Capgo | Capgo | CWE-285 | Capgo - Cross-Organization Authorization Bypass via Scoped API Key Privilege … |
| CVE-2026-56000 | 9.0 | 13.0 | X.Org | xorg-x11-server | CWE-416 | xorg-x11-server / xwayland GLX contextTags Use-After-Free in CommonMakeCurrent() |
| CVE-2026-41122 | 7.1 | 13.0 | Dell | PowerProtect Data Domain | CWE-79 | Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release … |
| CVE-2026-15034 | 2.1 | 13.0 | flask-dashboard | Flask-MonitoringDashboard | CWE-352 | flask-dashboard Flask-MonitoringDashboard cross-site request forgery |
| CVE-2026-59805 | 7.1 | 12.8 | antiwork | gumroad | CWE-862 | Gumroad < 2026.07.06.2 - Insecure Direct Object Reference in PurchasesController |
| CVE-2026-60124 | 5.3 | 12.7 | misp | misp | CWE-862 | MISP importModule missing authorization allows read-only users to modify even… |
| CVE-2026-59876 | 4.8 | 12.7 | protobufjs | protobuf.js | CWE-1321 | protobufjs: Text Format string map parsing can mutate returned map object pro… |
| CVE-2026-57259 | 6.5 | 12.4 | Foxit Software Inc. | Foxit PDF Editor | CWE-611 | Foxit PDF Editor/Reader XDP XFA XXE arbitrary local file read |
| CVE-2026-58657 | 4.8 | 12.4 | Grav | Grav | CWE-79 | Grav - Stored CSS Injection via Markdown Image resize() Action |
| CVE-2026-15130 | 4.3 | 12.4 | Chrome | CWE-602 | Insufficient policy enforcement in Navigation in Google Chrome prior to 150.0… | |
| CVE-2026-15131 | 4.3 | 12.4 | Chrome | CWE-20 | Inappropriate implementation in Navigation in Google Chrome prior to 150.0.78… | |
| CVE-2026-3688 | 8.1 | 12.3 | wclovers | WCFM Membership – WooCommerce Memberships for Multivendor Marketplace | CWE-639 | WCFM - WooCommerce Multivendor Membership <= 2.11.10 - Insecure Direct Object… |
| CVE-2026-8651 | 7.5 | 12.1 | Progress | MOVEit Transfer | CWE-290 | IPv6 Loopback Spoof via Trusted Host Header Bypasses Origin Check in MOVEit T… |
| CVE-2026-56217 | 5.3 | 12.2 | Capgo | Capgo | CWE-284 | Capgo - Encrypted Bundle Policy Bypass via Direct PostgREST Update |
| CVE-2026-56284 | 6.9 | 12.0 | Cap-go | capgo | CWE-200 | Capgo - Unauthenticated Metrics Disclosure via get_total_metrics RPC |
| CVE-2026-59804 | 7.6 | 11.9 | web-infra-dev | midscene | CWE-306 | Midscene Bridge Server - Session Hijack via Unauthenticated WebSocket |
| CVE-2026-15124 | 4.3 | 11.8 | Chrome | CWE-20 | Insufficient policy enforcement in Passwords in Google Chrome prior to 150.0.… | |
| CVE-2026-8800 | 8.8 | 11.4 | Progress | MOVEit Transfer | CWE-863 | Cross-Org External Token Metadata accessible to AuditUser role |
| CVE-2026-55195 | 8.7 | 11.4 | miurahr | py7zr | CWE-409 | py7zr: Decompression bomb (zip bomb) denial of service via unchecked extracti… |
| CVE-2026-55206 | 8.7 | 11.4 | miurahr | py7zr | CWE-407 | py7zr: O(n^2) algorithmic complexity DoS in PackInfo._read() |
| CVE-2026-5356 | 7.5 | 11.5 | latepoint | LatePoint – Calendar Booking Plugin for Appointments and Events | CWE-862 | LatePoint - Calendar Booking Plugin for Appointments and Events <= 5.4.0 - Un… |
| CVE-2026-14250 | 6.3 | 11.3 | themehunk | TH Login Registration | CWE-269 | Themehunk Login Registration <= 1.0.2 - Unauthenticated Privilege Escalation … |
| CVE-2026-58211 | 5.4 | 11.1 | nats-io | nats-server | CWE-863 | NATS Server: `no_auth_user` pre-CONNECT fast path bypasses user connection re… |
| CVE-2026-60125 | 5.3 | 11.1 | misp | misp | CWE-863 | importModule function in MISP ignores per-organisation import module restrict… |
| CVE-2026-11798 | 6.1 | 10.7 | the_champ | Social Share, Social Login and Social Comments Plugin – Super Socializer | CWE-79 | Social Share, Social Login and Social Comments Plugin <= 7.14.5 - Reflected C… |
| CVE-2026-56220 | 7.1 | 10.5 | Capgo | Capgo | CWE-863 | Capgo - Unauthorized Manifest Insertion via Read-Only Org Member |
| CVE-2026-60092 | 5.1 | 10.1 | AVideo | AVideo | CWE-79 | AVideo - Stored Cross-Site Scripting via Unescaped User-Agent in Participants… |
| CVE-2026-55873 | 4.3 | 10.1 | seaweedfs | seaweedfs | CWE-863 | SeaweedFS: Improper authorization in the S3Tables / Iceberg REST management A… |
| CVE-2026-59895 | 6.1 | 9.9 | honojs | hono | CWE-79 | Hono: Server-Side XSS via JSX Escaping Bypass in cx() Utility |
| CVE-2026-14967 | 3.1 | 10.0 | Black Lantern Security | BBOT | CWE-22 | Path traversal in github_workflows allows writing artifacts outside output di… |
| CVE-2026-10708 | 7.5 | 9.7 | Adalo No-Code App Builder | App Builder | — | Insufficiently Protected Credentials |
| CVE-2026-12041 | 4.4 | 9.3 | chatra | Chatra Live Chat + ChatBot + Cart Saver | CWE-79 | Chatra Live Chat + ChatBot + Cart Saver <= 1.0.12 - Authenticated (Administra… |
| CVE-2026-59261 | 8.4 | 9.2 | OpenClaw | OpenClaw | CWE-522 | OpenClaw < 2026.5.28 - Credential Override via Workspace Dotenv Files |
| CVE-2026-59802 | 6.3 | 9.2 | PasswordPusher | PasswordPusher | CWE-183 | PasswordPusher < 2.8.1 - Redirect-Based XSS via data URI in URL Push Payload |
| CVE-2026-59896 | 6.5 | 9.1 | honojs | hono | CWE-362 | hono/jsx does not isolate context per request, leading to cross-request data … |
| CVE-2026-55877 | 6.1 | 9.1 | symfony | ux | CWE-79 | Symfony UX: XSS in symfony/ux-icons via unsanitized SVG content in local file… |
| CVE-2026-15119 | 8.3 | 9.0 | Chrome | CWE-362 | Race in GetUserMedia in Google Chrome prior to 150.0.7871.115 allowed a remot… | |
| CVE-2026-53951 | 8.8 | 8.9 | copier-org | copier | CWE-22 | Copier: trust-prefix bypass via path traversal runs tasks unprompted |
| CVE-2026-59926 | 5.3 | 8.8 | lepture | mistune | CWE-79 | Mistune: XSS via unescaped class option in Admonition directive |
| CVE-2026-56362 | 2.1 | 8.8 | ImageMagick | ImageMagick | CWE-125 | ImageMagick - Heap-buffer-overflow Read in GetPixelIndex via OpenPixelCache M… |
| CVE-2026-56298 | 5.3 | 8.6 | Capgo | Capgo | CWE-200 | Capgo - EXIF Metadata Exposure in App Information Image Upload |
| CVE-2025-12506 | 4.3 | 8.6 | GitLab | GitLab | CWE-706 | Use of Incorrectly-Resolved Name or Reference in GitLab |
| CVE-2026-59882 | 6.5 | 8.5 | guzzle | psr7 | CWE-436 | guzzlehttp/psr7: Host Confusion via Weak URI Host Validation |
| CVE-2026-56360 | 6.3 | 8.4 | n8n | n8n | CWE-290 | n8n - Webhook Forgery via Unsigned POST Requests in ZendeskTrigger |
| CVE-2026-15163 | 7.5 | 8.3 | Wireshark Foundation | Wireshark | CWE-835 | Loop with Unreachable Exit Condition ('Infinite Loop') in Wireshark |
| CVE-2026-15063 | 6.3 | 8.3 | Red Hat | Red Hat OpenShift AI (RHOAI) | CWE-306 | Trustyai-service-operator: trustyai service operator: gorch port bypass when … |
| CVE-2026-15110 | 8.8 | 8.1 | Chrome | CWE-416 | Use after free in Extensions in Google Chrome prior to 150.0.7871.115 allowed… | |
| CVE-2026-55431 | 6.1 | 8.1 | coder | coder | CWE-522 | Coder's session token leaked to arbitrary hosts via `coder open app` for exte… |
| CVE-2026-44512 | 5.5 | 8.2 | onnx | onnx | CWE-476 | ONNX: Null Pointer Dereference in Upsample Version Converter Adapter (Zero In… |
| CVE-2026-5459 | 5.3 | 8.2 | wedevs | User Frontend: AI Powered Frontend Posting, User Directory, Profile Builder, Membership & User Registration | CWE-639 | User Frontend: AI Powered Frontend Posting, User Directory, Profile, Membersh… |
| CVE-2026-6459 | 6.4 | 8.0 | wpdevteam | Essential Addons for Elementor – Popular Elementor Templates & Widgets | CWE-79 | Essential Addons for Elementor <= 6.6.2 - Authenticated (Author+) Stored Cros… |
| CVE-2026-10570 | 6.4 | 8.0 | idocoh | Sympl Repeater for ACF and Elementor | CWE-79 | Sympl Repeater for ACF and Elementor <= 2.3 - Authenticated (Author+) Stored … |
| CVE-2026-55432 | 5.4 | 8.0 | coder | coder | CWE-862 | Coder's sub-agent app registration bypasses template port-sharing policy enfo… |
| CVE-2026-59998 | 6.5 | 7.8 | OpenBSD | OpenSSH | CWE-573 | sshd in OpenSSH before 10.4 has an undocumented security-relevant behavior: G… |
| CVE-2026-58254 | 5.3 | 7.8 | nats-io | nats-server | CWE-863 | NATS Server: Incomplete fix for CVE-2026-33249: Leaf node connections bypass … |
| CVE-2026-55437 | 5.4 | 7.7 | coder | coder | CWE-79 | Coder vulnerable to stored HTML injection via workspace agent logs in AgentLo… |
| CVE-2026-54781 | 7.4 | 7.7 | CoreWCF | CoreWCF | CWE-287 | CoreWCF: SAML SubjectConfirmation methods and holder-of-key proof keys are no… |
| CVE-2026-53624 | 4.8 | 7.7 | gofiber | fiber | CWE-319 | Fiber: HSTS header never set in helmet middleware due to incorrect protocol c… |
| CVE-2026-56775 | 5.3 | 7.4 | n8n | n8n | CWE-863 | n8n - Incorrect OAuth Scope Validation in Evaluation Test Runs Endpoints |
| CVE-2026-54784 | 7.4 | 7.2 | CoreWCF | CoreWCF | CWE-311 | CoreWCF: SPNEGO SecurityContextToken proof key wrapped without confidentiality |
| CVE-2026-59997 | 5.4 | 7.2 | OpenBSD | OpenSSH | CWE-1284 | internal-sftp in sshd in OpenSSH before 10.4 recognizes only the first 9 comm… |
| CVE-2026-56778 | 5.3 | 7.2 | n8n | n8n | CWE-863 | n8n - Authorization Bypass in Public API Execution Retry Endpoint |
| CVE-2026-15127 | 6.1 | 7.0 | Chrome | CWE-79 | Inappropriate implementation in WebGL in Google Chrome prior to 150.0.7871.11… | |
| CVE-2026-15128 | 6.1 | 7.0 | Chrome | CWE-79 | Inappropriate implementation in Forms in Google Chrome prior to 150.0.7871.11… | |
| CVE-2026-55542 | 1.3 | 6.9 | grokability | snipe-it | CWE-862 | Snipe-IT's S3 signature image retrieval lacks authorization before temporary URL |
| CVE-2026-15167 | 5.5 | 6.8 | Wireshark Foundation | Wireshark | CWE-121 | Stack-based Buffer Overflow in Wireshark |
| CVE-2026-54344 | 4.7 | 6.8 | ToolJet | ToolJet | CWE-78 | ToolJet GitHub Actions comment body shell injection exposes deployment secrets |
| CVE-2026-22927 | 7.8 | 6.8 | Omnissa | Omnissa Workspace ONE® Tunnel for Windows | CWE-22 | Omnissa Workspace ONE® Tunnel for Windows addresses a Local Privilege Escalat… |
| CVE-2026-57239 | 7.8 | 6.7 | Foxit Software Inc. | Foxit PDF Editor | CWE-427 | Foxit PDF Editor/Reader Local Privilege Escalation |
| CVE-2026-57260 | 7.8 | 6.8 | Foxit Software Inc. | Foxit PDF Editor | CWE-787 | Security vulnerability in Foxit PDF Editor/Reader — U3D Adobe Mesh Decompress… |
| CVE-2026-15044 | 6.3 | 6.7 | Red Hat | Red Hat OpenShift AI (RHOAI) | CWE-200 | Trustyai-service-operator: trustyai service operator: unauthenticated access … |
| CVE-2026-59253 | 5.3 | 6.3 | n8n | n8n | CWE-639 | n8n - Improper Authorization in Workflow Assignment to Folders |
| CVE-2026-13126 | 7.8 | 6.1 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulne… |
| CVE-2026-55849 | 8.5 | 5.8 | CycloneDX | cyclonedx-node-npm | CWE-78 | @cyclonedx/cyclonedx-npm: Shell Injection via Unsanitized `--workspace` Argument |
| CVE-2026-56776 | 5.3 | 5.8 | n8n | n8n | CWE-863 | n8n - Incorrect OAuth Scope Validation in Workflow Test Run Endpoint |
| CVE-2026-55436 | 7.4 | 5.7 | coder | coder | CWE-295 | Coder's AI Bridge Proxy skips TLS certificate verification in default configu… |
| CVE-2026-14896 | 4.2 | 5.7 | HashiCorp | Nomad | CWE-863 | Nomad vulnerable to cross-namespace host volume claim deletion |
| CVE-2026-59999 | 7.5 | 5.6 | OpenBSD | OpenSSH | CWE-348 | In sshd in OpenSSH before 10.4, DisableForwarding=yes was supposed to take pr… |
| CVE-2026-39178 | 6.3 | 5.4 | n/a | n/a | CWE-89 | A SQL injection vulnerability in SOGo before 5.12.7 allows authenticated user… |
| CVE-2026-39179 | 6.3 | 5.4 | n/a | n/a | CWE-89 | A SQL injection vulnerability in SOGo before 5.12.7 allows authenticated user… |
| CVE-2026-15165 | 5.5 | 5.4 | Wireshark Foundation | Wireshark | CWE-122 | Heap-based Buffer Overflow in Wireshark |
| CVE-2026-15166 | 5.5 | 5.3 | Wireshark Foundation | Wireshark | CWE-121 | Stack-based Buffer Overflow in Wireshark |
| CVE-2026-15170 | 5.5 | 5.3 | Wireshark Foundation | Wireshark | CWE-122 | Heap-based Buffer Overflow in Wireshark |
| CVE-2026-56374 | 4.8 | 5.4 | ImageMagick | ImageMagick | CWE-125 | ImageMagick - Heap Buffer Overflow in FTXT Encoder via format Parameter |
| CVE-2026-54780 | 3.7 | 5.4 | CoreWCF | CoreWCF | CWE-327 | CoreWCF: WS-Security Reference DigestMethod Algorithm-Suite Bypass |
| CVE-2025-14785 | 6.4 | 4.8 | seedprod | Website Builder by SeedProd — Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode | CWE-79 | Website Builder by SeedProd - Theme Builder, Landing Page Builder, Coming Soo… |
| CVE-2026-6740 | 6.4 | 4.8 | posimyththemes | Nexter Blocks – Gutenberg Blocks, Page Builder & AI Website Builder | CWE-79 | Nexter Blocks <= 4.7.4 - Authenticated (Contributor+) Stored Cross-Site Scrip… |
| CVE-2026-6742 | 6.4 | 4.8 | mdempfle | Advanced iFrame | CWE-79 | Advanced iFrame <= 2026.1 - Authenticated (Contributor+) Stored Cross-Site Sc… |
| CVE-2026-54774 | 7.4 | 4.7 | CoreWCF | CoreWCF | CWE-345 | CoreWCF: SamlSerializer skips SignatureValue verification when SAML signing t… |
| CVE-2026-55438 | 6.8 | 4.7 | coder | coder | CWE-346 | Coder's workspace app CORS origin check can be bypassed via UUID-based subdom… |
| CVE-2026-8310 | 6.1 | 4.6 | Webbeyaz Web Design | Mediküm Web | CWE-79 | Reflected XSS in Webbeyaz's Mediküm Web |
| CVE-2026-57246 | 7.8 | 4.5 | Foxit Software Inc. | Foxit PDF Editor | CWE-120 | Foxit PDF Editor/Reader Signature Buffer Overflow Vulnerability |
| CVE-2026-6371 | 4.8 | 4.6 | Limatek System Inc. | LimRAD NAC | CWE-79 | Stored XSS in Limatek's LimRAD NAC |
| CVE-2026-15108 | 4.3 | 4.5 | Chrome | CWE-190 | Integer overflow in Extensions API in Google Chrome prior to 150.0.7871.115 a… | |
| CVE-2026-57248 | 7.8 | 4.5 | Foxit Software Inc. | Foxit PDF Editor | CWE-763 | Foxit PDF Editor/Reader Annotation Improper Release Vulnerability |
| CVE-2026-55878 | 7.8 | 4.4 | symfony | ux | CWE-22 | Symfony: Path Traversal in symfony/ux-toolkit Allows Arbitrary File Write and… |
| CVE-2026-59723 | 8.8 | 4.3 | cline | cline | CWE-346 | Cline: Cross-Origin WebSocket Hijacking in Cline Hub Dashboard (`/browser` en… |
| CVE-2026-54783 | 7.4 | 4.1 | CoreWCF | CoreWCF | CWE-294 | CoreWCF: XML Signature Wrapping in WS-Security endorsing/supporting signature… |
| CVE-2026-56293 | 5.3 | 4.1 | Capgo | Capgo | CWE-285 | Capgo - Stale Cross-Organization Authorization via Incomplete deploy_history … |
| CVE-2026-59946 | 6.1 | 4.0 | composer | composer | CWE-22 | Composer: Path traversal in package bin field lets dependencies chmod arbitra… |
| CVE-2026-56359 | 4.8 | 4.0 | n8n | n8n | CWE-79 | n8n - Cross-Site Scripting in Credential Management OAuth2 Authorization URL |
| CVE-2026-55430 | 6.8 | 3.9 | coder | coder | CWE-345 | Coder's subdomain workspace app routing trusts unauthenticated X-Forwarded-Ho… |
| CVE-2026-5923 | 6.0 | 3.8 | HP Inc. | Poly CCX | CWE-352 | Poly Voice – Potential Unauthorized Modification of WebUI using CSRF Attack |
| CVE-2026-59948 | 7.0 | 3.6 | composer | composer | CWE-22 | Composer: Arbitrary file write outside vendor via malicious transitive packag… |
| CVE-2026-56283 | 4.8 | 3.7 | Capgo | Capgo | CWE-79 | Capgo - HTML Injection Leading to Open Redirection in Organization Settings |
| CVE-2026-59930 | 4.3 | 3.7 | lepture | mistune | CWE-345 | Mistune toc / TableOfContents directive: heading IDs use predictable `toc_N` … |
| CVE-2026-56437 | 8.4 | 3.4 | Fuji Electric Co.,Ltd. | Pupsman | CWE-427 | Uncontrolled search path element issue exists in Pupsman versions prior to 3.… |
| CVE-2026-8315 | 5.4 | 3.3 | Webbeyaz Web Design | Mediküm Web | CWE-79 | Stored XSS in Webbeyaz's Mediküm Web |
| CVE-2026-57240 | 7.8 | 2.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Form Field Use-After-Free Remote Code Execution Vulne… |
| CVE-2026-9731 | 4.3 | 2.9 | wpkuf | Wp Js Detect | CWE-352 | Wp Js Detect <= 1.0.9 - Cross-Site Request Forgery to Plugin Settings Update |
| CVE-2026-15168 | 3.3 | 2.9 | Wireshark Foundation | Wireshark | CWE-457 | Use of Uninitialized Variable in Wireshark |
| CVE-2026-57256 | 7.8 | 2.7 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit Editor/Reader List Box Format Use-After-Free Vulnerability |
| CVE-2026-59897 | 5.3 | 2.7 | honojs | hono | CWE-348 | Hono: API Gateway v1 adapter can drop a distinct repeated request header valu… |
| CVE-2026-15164 | 5.5 | 2.3 | Wireshark Foundation | ciscodump | CWE-122 | Heap-based Buffer Overflow in ciscodump |
| CVE-2026-15171 | 5.5 | 2.3 | Wireshark Foundation | Wireshark | CWE-476 | NULL Pointer Dereference in Wireshark |
| CVE-2026-15172 | 5.5 | 2.4 | Wireshark Foundation | Wireshark | CWE-606 | Unchecked Input for Loop Condition in Wireshark |
| CVE-2026-10037 | 8.8 | 2.2 | Canonical | Ubuntu | CWE-20 | Sandbox Escape in Ubuntu OpenJDK Packages via xdg-desktop-portal |
| CVE-2026-59947 | 4.7 | 2.2 | composer | composer | CWE-532 | Composer: URL-embedded HTTP-Basic username leaks to verbose logs (GitHub PAT … |
| CVE-2026-58494 | 6.5 | 2.1 | bytecodealliance | wasmtime | CWE-281 | Wasmtime: WASI hard links bypass wasmtime-wasi's FilePerms for destination |
| CVE-2026-57251 | 7.8 | 2.0 | Foxit Software Inc. | Foxit PDF Editor | CWE-129 | Foxit PDF Editor/Reader Cloud Appearance Buffer Overflow Vulnerability |
| CVE-2026-59883 | 6.1 | 2.0 | guzzle | guzzle | CWE-346 | Guzzle: Cookie Disclosure and Injection via IP-Address Domains |
| CVE-2026-13127 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulne… |
| CVE-2026-13128 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Doc Object Use-After-Free Remote Code Execution Vulne… |
| CVE-2026-13129 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulne… |
| CVE-2026-57237 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulne… |
| CVE-2026-57238 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulne… |
| CVE-2026-57242 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Page Use-After-Free Vulnerability |
| CVE-2026-57244 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Form Control Use-After-Free Vulnerability |
| CVE-2026-57245 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Signature Hyperlink Use-After-Free Vulnerability |
| CVE-2026-57247 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Field Use-After-Free Vulnerability |
| CVE-2026-57249 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Annotation Use-After-Free Vulnerability |
| CVE-2026-57250 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader Form Field Use-After-Free Vulnerability |
| CVE-2026-57252 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-416 | Foxit PDF Editor/Reader AcroForm Use-After-Free Remote Code Execution Vulnera… |
| CVE-2026-57254 | 7.8 | 1.9 | Foxit Software Inc. | Foxit PDF Editor | CWE-843 | Foxit PDF Editor/Reader Annotation Type Confusion Vulnerability |
| CVE-2026-57258 | 6.1 | 1.6 | Foxit Software Inc. | Foxit PDF Editor | CWE-125 | Foxit PDF Editor/Reader Crash via Malformed PRC 3D Stream |
| CVE-2026-50812 | 5.5 | 1.6 | n/a | n/a | CWE-476 | A NULL pointer dereference in the SQLite Session Extension in SQLite 3.53.1 a… |
| CVE-2026-57895 | 8.5 | 1.4 | Fuji Electric Co.,Ltd. | Pupsman | CWE-276 | Incorrect default permissions issue exists in Pupsman versions prior to 3.9.0… |
| CVE-2026-50813 | 6.1 | 1.5 | n/a | n/a | CWE-126 | An issue in SQLite before Fossil check-in 869a51ae84df allows a local attacke… |
| CVE-2026-57255 | 6.1 | 1.4 | Foxit Software Inc. | Foxit PDF Editor | CWE-125 | Security vulnerability in Foxit PDF Editor/Reader — OOB Read via NaN-Bypass C… |
| CVE-2026-54776 | 4.4 | 1.4 | CoreWCF | CoreWCF | CWE-306 | CoreWCF: Unix Domain Socket PosixIdentity transport accepts connections that … |
| CVE-2026-57241 | 6.1 | 1.3 | Foxit Software Inc. | Foxit PDF Editor | CWE-125 | Foxit PDF Editor/Reader Page Out-of-bounds Read Vulnerability |
| CVE-2026-57243 | 6.1 | 1.3 | Foxit Software Inc. | Foxit PDF Editor | CWE-125 | Foxit PDF Editor/Reader Page Out-of-bounds Read Vulnerability |
| CVE-2026-57253 | 6.1 | 1.3 | Foxit Software Inc. | Foxit PDF Editor | CWE-125 | Foxit PDF Editor/Reader PDF File Parsing Out-Of-Bounds Read Information Discl… |
| CVE-2026-57257 | 6.1 | 1.3 | Foxit Software Inc. | Foxit PDF Editor | CWE-125 | Security vulnerability in Foxit PDF Editor/Reader — PRC 3D BRep Renderer Heap… |
| CVE-2026-14361 | 4.7 | 1.2 | HashiCorp | Tooling | CWE-59 | Consul-template is vulnerable to path redirection in writeToFile through syml… |
| CVE-2026-12002 | 4.7 | 1.1 | smub | Smash Balloon Social Photo Feed – Easy Social Feeds Plugin | CWE-352 | Smash Balloon Social Photo Feed – Easy Social Feeds Plugin <= 6.11.1 - Cross-… |
| CVE-2026-54778 | 6.2 | 1.0 | CoreWCF | CoreWCF | CWE-362 | CoreWCF: UnixDomainSocket Non-Reentrant POSIX Identity Resolution |
| CVE-2026-15115 | 3.3 | 0.9 | Chrome | CWE-20 | Insufficient validation of untrusted input in WebAppInstalls in Google Chrome… | |
| CVE-2026-57439 | 5.0 | 0.7 | gchq | CyberChef | CWE-79 | CyberChef: Prototype pollution in Series Chart operation |
| CVE-2026-15174 | 5.5 | 0.6 | Wireshark Foundation | Wireshark | CWE-122 | Heap-based Buffer Overflow in Wireshark |
| CVE-2026-15173 | 5.5 | 0.5 | Wireshark Foundation | Wireshark | CWE-122 | Heap-based Buffer Overflow in Wireshark |
| CVE-2026-54777 | 6.5 | 0.5 | CoreWCF | CoreWCF | CWE-367 | CoreWCF NetNamedPipe transport accepts attach to a pre-existing named pipe in… |
Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.
Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.
Day boundary. A day is a UTC calendar day. This page covers 2026-07-08 00:00:00–23:59:59 UTC. All times shown are UTC.
Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.
Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.