boxscore/security
Friday, July 24, 2026 · all times UTC← 2026-07-23 · archive · 2026-07-25 →

192 CVEs published July 24, 2026: 18 critical, 91 high, 79 medium, 4 low; 0 in KEV; 10 with a public exploit reference; 0 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 167 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published3955670413242563
KEV catalog size1670

133 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; medians are over each vendor's YTD disclosures.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
microsoft65313561049273008378322.47.8.0039+434
linux36012781809998002730.27.8.0014+208
red hat761759857110400.07.1.0028+35
apple3801195219378.86.5.0036+3
google26356241173514.38.8.0030+23
canonical330210000.07.8.0013+3
android010100161100.08.4.0171-1
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco7194610961263.28.6.2459+5
fortinet1017248028529.46.3.0051+9
palo alto networks1015017514213.34.7.0028+7
vmware7716002100.08.7.0044+7
f51540007120.09.2.04020
ivanti051000335100.010.0.8152-1
checkpoint3431003250.09.2.4696+2
broadcom2400204250.05.1.0877+2
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
mozilla67724226401300.09.1.0031+67
apache275914331204011.77.5.0058+12
docker030120100.05.7.0015-3
wordpress22101052100.07.9.8435+2
gitlab02000042100.0.44510
github110010000.04.7.0017+1
kubernetes110001000.02.4.0024+1
drupal01100051100.09.8.88320
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle11091113212539304574030.37.6.0031+1107
ibm32401611130700.08.4.0028+31
adobe16279104075414.88.6.0144+9
solarwinds15191511011421.19.1.0044+14
progress181831050900.07.8.0031+18
atlassian3303001300.08.0.0026+3
zohocorp331110000.07.1.0048+3
veeam110100400.08.4.0013+1
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
d-link78006126112.55.5.0073+7
hikvision5603202116.77.2.0024+5
bosch220200000.08.0.0018+2
rockwell automation111000000.09.2.0030+1
siemens010100100.08.7.00320
dahua000000200
qnap000000800
schneider electric000000100
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
surrealdb5757326253000.07.1.0025+57
grafana841214223000.06.5.0033+2
open ises037214210000.06.9.00210
netty103262411000.07.5.0051-4
regularlabs.com292961490000.07.5.0022+29
watchguard172811890400.07.3.0026+17
nlnet labs242704176000.05.9.0024+24
mongodb262611771200.07.1.0023+26

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-48282.992499.9
CVE-2026-63030.956099.99.8
CVE-2026-39808.912199.8
CVE-2026-48908.881399.810.0
CVE-2026-56290.832599.710.0
CVE-2026-20230.832199.78.6
CVE-2026-48939.825099.610.0
CVE-2026-50522.769899.59.8
CVE-2026-15410.763599.57.2
CVE-2026-56291.760799.510.0
Highest CVSS
CVECVSSEPSSNote
CVE-2026-4890810.0.8813KEV
CVE-2026-5629010.0.8325KEV
CVE-2026-4893910.0.8250KEV
CVE-2026-5629110.0.7607KEV
CVE-2026-1540910.0.7422KEV
CVE-2026-898510.0.0660
CVE-2026-651610.0.0473
CVE-2026-4766810.0.0434
CVE-2026-4435910.0.0100
CVE-2025-7138910.0.0093
Most disclosures (vendor)
VendorCVEs
oracle1109
microsoft653
linux449
red hat90
mozilla67
surrealdb57
apple40
ibm39
regularlabs.com29
apache28
Most KEV additions (YTD)
VendorKEV
microsoft32
cisco12
apple7
fortinet5
google5
ivanti5
adobe4
langflow4
solarwinds4
synacor4
Most-affected ecosystems
EcosystemAdvisories
Maven16
crates.io1
npm1
Fastest to KEV
CVEVendorDays
CVE-2008-4128Cisco0
CVE-2021-27137DD-WRT0
CVE-2023-4346KNX Association0
CVE-2026-0770Langflow0
CVE-2026-12569PTC0
CVE-2026-15409SonicWall0
CVE-2026-15410SonicWall0
CVE-2026-16232checkpoint0
CVE-2026-20230Cisco0
CVE-2026-25089Fortinet0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104Accellion2021-11-171710
CVE-2021-27102Accellion2021-11-171710
CVE-2021-27101Accellion2021-11-171710
CVE-2021-27103Accellion2021-11-171710
CVE-2021-21017Adobe2021-11-171710
CVE-2021-28550Adobe2021-11-171710
CVE-2021-42013Apache2021-11-171710
CVE-2021-41773Apache2021-11-171710
CVE-2021-30858Apple2021-11-171710
CVE-2021-30860Apple2021-11-171710

Transactions

EXPLOIT PUBLISHEDCVE-2026-16372 (Mozilla Firefox). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16763 (localstack serverless-localstack). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16765 (CodeAstro Online Classroom). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16767 (Ne-Lexa php-zip). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-25244 (webdriverio). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-35397 (jupyter-server jupyter_server). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-38764. Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-47075 (benoitc hackney). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-56290 (JoomlaCK.fr Page Builder CK extension for Joomla). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-56291 (balbooa.com Balbooa Forms extension for Joomla). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-63765 (chatwoot). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-65010 (huggingface datasets). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-65012 (invoke-ai InvokeAI). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-65013 (onlook repo). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-65694 (microweber). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-65698 (voideditor void). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-65916 (usmannasir cyberpanel). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-65917 (usmannasir cyberpanel). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-65918 (pytorch vision). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-65920 (huggingface diffusers). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-66010 (cure53 DOMPurify). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-66041 (FFmpeg). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-7007 (zephyrproject zephyr). Public exploit reference added.

RESCOREDCVE-2024-37129 (Dell Inventory Collector). CVSS 6.7 → 7.8 (NVD).

RESCOREDCVE-2026-47304 (Microsoft .NET 10.0). CVSS 8.1 → 9.8 (NVD).

RESCOREDCVE-2026-54120 (Microsoft Surface Management Services). CVSS 9.9 → 8.8 (NVD).

RESCOREDCVE-2026-56160 (Microsoft Azure Red Hat OpenShift (ARO)). CVSS 9.1 → 9.9 (NVD).

RESCOREDCVE-2026-56167 (Microsoft Azure AI Search). CVSS 8.5 → 8.8 (NVD).

ENRICHEDCVE-2022-49662 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2023-52494 (Linux). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2024-27390 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2025-39729 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2025-39936 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-20262 (Cisco Catalyst SD-WAN Manager). Received CVSS 6.5 and CPE data from NVD.

ENRICHEDCVE-2026-31610 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-33825 (Microsoft Defender). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2026-35616 (Fortinet FortiClient EMS). Received CVSS 9.8 and CPE data from NVD.

ENRICHEDCVE-2026-41091 (Microsoft Defender). Received CVSS 7.8 and CPE data from NVD.

ENRICHEDCVE-2026-43119 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-43216 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-45247 (Mirasvit Full Page Cache Warmer). Received CVSS 9.3 and CPE data from NVD.

ENRICHEDCVE-2026-5281 (Google Dawn). Received CVSS 8.8 and CPE data from NVD.

ENRICHEDCVE-2026-53027 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-53163 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-53332 (Linux). Received CVSS 5.5 and CPE data from NVD.

Yesterday's Results

192 CVEs published. 25 box scores, 167 table rows — nothing truncated.

nuxsmin sysPass — sysPass 3.2.11 Authenticated OS Command Injection via Backup Path
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   H   N   H   H   H    8.6   .0241   82.7     —
AFFECTED
  Product  Versions     Fixed
  sysPass  unspecified  —
TIMELINE
  Jul 22  Reserved by CNA
  Jul 24  Published (CNA: VulnCheck)
CWE-78 · CNA: VulnCheck · 2 references · NVD status: Deferred
Microsoft M365 Copilot Remote Code Execution Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  C  H  H  H    9.9   .0125   67.0     —
AFFECTED
  Product                Versions  Fixed
  Microsoft 365 Copilot  - –       —
TIMELINE
  Jun 4   Reserved by CNA
  Jul 24  Published (CNA: microsoft)
CWE-502 · CNA: microsoft · 1 reference · NVD status: Analyzed
Microsoft Azure Portal — Azure Portal Information Disclosure Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0097   59.1     —
AFFECTED
  Product       Versions  Fixed
  Azure Portal  - –       —
TIMELINE
  Jul 14  Reserved by CNA
  Jul 24  Published (CNA: microsoft)
CWE-285 · CNA: microsoft · 1 reference · NVD status: Analyzed
Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  C  H  H  H   10.0   .0090   56.7     —
AFFECTED
  Product                   Versions  Fixed
  Azure Kubernetes Service  - –       —
TIMELINE
  Jun 19  Reserved by CNA
  Jul 24  Published (CNA: microsoft)
CWE-306 · CNA: microsoft · 1 reference · NVD status: Analyzed
Microsoft Microsoft Purview Data Governance — Data Quality Elevation of Privilege Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  C  H  H  H   10.0   .0090   56.7     —
AFFECTED
  Product                            Versions  Fixed
  Microsoft Purview Data Governance  - –       —
TIMELINE
  Jun 23  Reserved by CNA
  Jul 24  Published (CNA: microsoft)
CWE-918 · CNA: microsoft · 1 reference · NVD status: Analyzed
Microsoft Azure App Service for Linux — Azure App Service on Azure Stack Hub Elevation of Privilege Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0086   55.7     —
AFFECTED
  Product                      Versions  Fixed
  Azure App Service for Linux  - –       —
TIMELINE
  Jul 1   Reserved by CNA
  Jul 24  Published (CNA: microsoft)
CWE-284 · CNA: microsoft · 1 reference · NVD status: Analyzed
FELIPE TOML::XS — TOML::XS versions before 0.06 for Perl bundle an unsupported and vulnerable version of tomlc99
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0077   52.6     —
AFFECTED
  Product   Versions     Fixed
  TOML::XS  unspecified  —
TIMELINE
  Jul 22  Reserved by CNA
  Jul 24  Published (CNA: CPANSec)
CWE-1104 · CNA: CPANSec · 6 references · NVD status: Deferred
Microsoft Azure Key Vault — Azure Key Vault Elevation of Privilege Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0071   50.5     —
AFFECTED
  Product          Versions  Fixed
  Azure Key Vault  - –       —
TIMELINE
  Jul 14  Reserved by CNA
  Jul 24  Published (CNA: microsoft)
CWE-287 · CNA: microsoft · 1 reference · NVD status: Analyzed
Microsoft Azure DNS — Azure DNS Elevation of Privilege Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0068   49.6     —
AFFECTED
  Product    Versions  Fixed
  Azure DNS  - –       —
TIMELINE
  Jun 29  Reserved by CNA
  Jul 24  Published (CNA: microsoft)
CWE-862 · CNA: microsoft · 1 reference · NVD status: Analyzed
SUNNET Corporate Training Management System - Unrestricted Upload of File with Dangerous Type
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   H   N   H   H   H    9.3   .0067   49.0     —
AFFECTED
  Product                               Versions     Fixed
  Corporate Training Management System  unspecified  —
TIMELINE
  Jan 26  Reserved by CNA
  Jul 24  Published (CNA: ZUSO ART)
CWE-434 · CNA: ZUSO ART · 1 reference · NVD status: Deferred
Microsoft Exchange Online Tampering Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  C  H  H  H   10.0   .0067   48.9     —
AFFECTED
  Product                    Versions  Fixed
  Microsoft Exchange Online  - –       —
TIMELINE
  Jun 19  Reserved by CNA
  Jul 24  Published (CNA: microsoft)
CWE-287 · CNA: microsoft · 1 reference · NVD status: Analyzed
Tycon Systems TPDIN-Monitor-WEB2 Authentication Bypass Using an Alternate Path or Channel
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0066   48.8     —
AFFECTED
  Product             Versions  Fixed
  TPDIN-Monitor-WEB2  2.3.9 –   —
TIMELINE
  Jul 13  Reserved by CNA
  Jul 24  Published (CNA: icscert)
CWE-288 · CNA: icscert · 3 references · NVD status: Deferred
Apache NimBLE: NULL pointer dereference vulnerability in SMP LTK request
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0062   46.6     —
AFFECTED
  Product        Versions     Fixed
  Apache NimBLE  unspecified  —
TIMELINE
  May 13  Reserved by CNA
  Jul 24  Published (CNA: apache)
CWE-476 · CNA: apache · 3 references · NVD status: Analyzed
Apache NimBLE: Remote reachable assertion in ATT Read Multiple Variable Response handler
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0060   46.0     —
AFFECTED
  Product        Versions     Fixed
  Apache NimBLE  unspecified  —
TIMELINE
  May 13  Reserved by CNA
  Jul 24  Published (CNA: apache)
CWE-617 · CNA: apache · 3 references · NVD status: Analyzed
posimyththemes Nexter Blocks – Gutenberg Blocks, Page Builder & AI Website Builder — Nexter Blocks <= 5.0.0 - Authenticated (Subscriber+) Path Traversal to Arbitrary CSS/JS File Deletion via 'plus_name' Parameter
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  N  L  N    4.3   .0059   45.3     —
AFFECTED
  Product                                                              Versions     Fixed
  Nexter Blocks – Gutenberg Blocks, Page Builder & AI Website Builder  unspecified  —
TIMELINE
  Jul 10  Reserved by CNA
  Jul 24  Published (CNA: Wordfence)
CWE-22 · CNA: Wordfence · 10 references · NVD status: Deferred
Apache NimBLE: Mesh Proxy SAR reassembly unbounded append and unchecked failure
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  L    5.3   .0056   44.0     —
AFFECTED
  Product        Versions     Fixed
  Apache NimBLE  unspecified  —
TIMELINE
  May 14  Reserved by CNA
  Jul 24  Published (CNA: apache)
CWE-20 · CNA: apache · 3 references · NVD status: Analyzed
Microsoft Graph Information Disclosure Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  N  N    6.5   .0055   43.6     —
AFFECTED
  Product          Versions  Fixed
  Microsoft Graph  - –       —
TIMELINE
  May 27  Reserved by CNA
  Jul 24  Published (CNA: microsoft)
CWE-200 · CNA: microsoft · 1 reference · NVD status: Analyzed
Microsoft Azure API Management (APIM) — Azure API Management (APIM) Remote Code Execution Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  U  H  H  H    7.2   .0053   42.3     —
AFFECTED
  Product                      Versions  Fixed
  Azure API Management (APIM)  - –       —
TIMELINE
  Apr 2   Reserved by CNA
  Jul 24  Published (CNA: microsoft)
CWE-284 · CNA: microsoft · 1 reference · NVD status: Analyzed
huggingface datasets — Datasets Path Traversal via Unsanitized file_name Metadata
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   A   H   N   N    6.9   .0052   42.0     —
AFFECTED
  Product   Versions     Fixed
  datasets  unspecified  f989ef9b4cc6c0039a7a82458eebca49e2b58b4b
TIMELINE
  Jul 23  Reserved by CNA
  Jul 24  Published (CNA: VulnCheck)
CWE-22 · CNA: VulnCheck · 4 references · NVD status: Analyzed
FFmpeg Heap Out-of-Bounds Write via PNG/APNG eXIf Encoder
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   P   H   H   H    8.7   .0052   41.8     —
AFFECTED
  Product  Versions     Fixed
  FFmpeg   unspecified  b506fafec9a19fcbc2be5271875fd4a63d6615bc
TIMELINE
  Jul 23  Reserved by CNA
  Jul 24  Published (CNA: VulnCheck)
CWE-122 · CNA: VulnCheck · 3 references · NVD status: Analyzed
Apache Neethi: Missing global alternative-output budget across policy computation paths
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0051   41.3     —
AFFECTED
  Product        Versions     Fixed
  Apache Neethi  unspecified  —
TIMELINE
  Jul 24  Reserved by CNA
  Jul 24  Published (CNA: apache)
CWE-400 · CNA: apache · 2 references · NVD status: Analyzed
Apache OpenNLP: Arbitrary Class Instantiation in GeneratorFactory via Feature Descriptor XML
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   N   N  U  L  L  L    5.6   .0051   41.3     —
AFFECTED
  Product         Versions    Fixed
  Apache OpenNLP  3.0.0-M1 –  —
TIMELINE
  Jul 16  Reserved by CNA
  Jul 24  Published (CNA: apache)
CWE-470 · CNA: apache · 2 references · NVD status: Analyzed
Microweber CMS 2.0.20 Server-Side Template Injection via Mail Templates
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   H   N   H   H   H    8.6   .0048   39.6     —
AFFECTED
  Product     Versions     Fixed
  microweber  unspecified  —
TIMELINE
  Jul 22  Reserved by CNA
  Jul 24  Published (CNA: VulnCheck)
CWE-94 · CNA: VulnCheck · 2 references · NVD status: Deferred
Apache Neethi: Uncontrolled recursion in policy processing
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0048   39.2     —
AFFECTED
  Product        Versions     Fixed
  Apache Neethi  unspecified  —
TIMELINE
  Jul 24  Reserved by CNA
  Jul 24  Published (CNA: apache)
CWE-400 · CNA: apache · 2 references · NVD status: Analyzed
Apache Neethi: Remote PolicyReference fetch lacks resource bounds
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  N  N  H    7.5   .0048   39.2     —
AFFECTED
  Product        Versions     Fixed
  Apache Neethi  unspecified  —
TIMELINE
  Jul 24  Reserved by CNA
  Jul 24  Published (CNA: apache)
CWE-400 · CNA: apache · 2 references · NVD status: Analyzed
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-642329.838.2LinuxLinuxblock: recompute nr_integrity_segments in blk_insert_cloned_request
CVE-2026-642169.837.2LinuxLinuxCWE-416netfs: Fix potential UAF in netfs_unlock_abandoned_read_pages()
CVE-2026-642087.536.0LinuxLinuxcrypto/krb5, rxrpc: Fix lack of pre-decrypt/pre-verify length checks
CVE-2026-661387.235.3OpenStackIronic Python AgentCWE-78In OpenStack Ironic Python Agent through 11.6.0, a project-scoped user with t…
CVE-2026-458126.535.0Apache Software FoundationApache NimBLECWE-131Apache NimBLE: OOB Read via sizeof(pointer) in Legacy Advertising Report Handler
CVE-2026-585869.834.0ZAPADImage::WebPCWE-1395Image::WebP versions before 0.3.0 for Perl bundle a vulnerable version of lib…
CVE-2026-656238.732.3mtrudelbanditCWE-407Quadratic CPU blow-up reassembling fragmented WebSocket messages in Bandit
CVE-2026-660338.730.1libssh2libssh2CWE-125libssh2 Integer Underflow DoS via AES-GCM Cipher Negotiation
CVE-2026-168708.829.3SnowflakeSnowflake libsnowflakeclientCWE-121Multiple Security Vulnerabilities in Snowflake libsnowflakeclient
CVE-2026-124968.728.9LoytecLIP-ME20xCCWE-79Loytec LINX firmware: Unauthenticated stored XSS in OPC XML-DA server
CVE-2026-557308.728.9LoytecLWEB-802CWE-79Loytec LWEB802: Reflected Cross-Site Scripting in LWEB802
CVE-2026-157049.828.4Eclipse FoundationEclipse BaSyx Go ComponentsCWE-180CWE-863: ABAC authorization bypass via trailing slash route normalization in …
CVE-2026-126545.328.2paymentpluginsPayment Plugins for Stripe WooCommerceCWE-862Payment Plugins for Stripe WooCommerce <= 4.0.7 - Missing Authorization to Un…
CVE-2026-458138.828.2Apache Software FoundationApache NimBLECWE-191Apache NimBLE: Incorrect data validation in BASS add/modify source operation
CVE-2026-171078.527.7Red Hatmulticluster engine for Kubernetes 2.1CWE-441Cluster-proxy: cluster-proxy: impersonation header injection in service-proxy…
CVE-2026-660417.727.5FFmpegFFmpegCWE-787FFmpeg 7.0 - 8.1.2 Heap Out-of-Bounds Write via vf_quirc Filter
CVE-2026-642107.527.3LinuxLinuxnet/mlx5e: xsk: Fix unlocked writing to ICOSQ
CVE-2026-134645.327.3themeumKirki – Freeform Page Builder, Website Builder & CustomizerCWE-639Kirki <= 6.0.14 - Insecure Direct Object Reference to Unauthenticated Sensiti…
CVE-2026-458117.527.2Apache Software FoundationApache NimBLECWE-120Apache NimBLE: Buffer overflow in socket HCI transport
CVE-2026-154017.227.2e4jvikwpVikBooking Hotel Booking Engine & PMSCWE-79VikBooking Hotel Booking Engine & PMS <= 1.8.13 - Unauthenticated Stored Cros…
CVE-2026-127368.026.7wpifyWPify Woo – Withdrawal, CRN/VAT, QR payments, Heureka and more for WooCommerceCWE-269WPify Woo <= 5.4.16 - Authenticated (Shop Manager+) Privilege Escalation via …
CVE-2026-642358.126.0LinuxLinuxx86/ftrace: Relocate %rip-relative percpu refs in dynamic trampolines
CVE-2026-557328.724.9LoytecLIP-ME20xCCWE-125Loytec LINX firmware: Out-of-bounds Read in BACnet packet parsing (bacdt_date…
CVE-2026-557297.724.9LoytecLWEB-802CWE-200Loytec LWEB802: Exposure of Sensitive Information in browser localStorage
CVE-2026-557316.624.9LoytecLIP-ME20xCCWE-606Loytec LINX firmware: Unchecked input for loop condition in the SNMP agent
CVE-2026-660086.324.7parse-communityparse-serverCWE-209Parse Server 9.0.0 Information Disclosure via GraphQL Error Messages
CVE-2026-660357.724.5libssh2libssh2CWE-122libssh2 Heap Buffer Overflow via ETM Cipher Negotiation
CVE-2026-601348.724.2WeintekcMT3092X firmwareCWE-784Weintek cMT3092X Reliance on Cookies without Validation and Integrity Checkin…
CVE-2026-660066.924.3treeverselakeFSCWE-306lakeFS Unauthenticated Operator Metadata Overwrite via setup_comm_prefs
CVE-2026-493266.523.8Apache Software FoundationApache HBaseCWE-862Apache HBase: Missing scanner instance owner check in thrift delegation service
CVE-2026-660398.723.8FFmpegFFmpegCWE-122FFmpeg MACE6 Audio Decoder Heap Out-of-Bounds Write via CAF File
CVE-2026-480328.323.6kerberosmansourhulumiCWE-697Hulumi: IAM-role policy checks bypassed when the role trusts multiple OIDC pr…
CVE-2026-129817.523.1UnknownCAFEHAUS APICWE-269CAFEHAUS API <= 1.0.0 - Unauthenticated Arbitrary User Password Reset
CVE-2026-156634.922.8kstoverNinja Forms – The Contact Form Builder That Grows With YouCWE-89Ninja Forms <= 3.14.9 - Authenticated (Administrator+) SQL Injection via Impo…
CVE-2026-162809.822.0Imagination TechnologiesGraphics DDKCWE-190GPU DDK - Integer overflow in _PMRLogicalOffsetToPhysicalOffset
CVE-2026-660046.022.1ahujasidblender-mcpCWE-22BlenderMCP Path Traversal via download_polyhaven_asset API
CVE-2026-168008.822.0DevolutionsPowerShell UniversalCWE-94Improper control of generation of code ('Code Injection') in the schedule fea…
CVE-2026-168018.822.0DevolutionsPowerShell UniversalCWE-94Improper control of generation of code ('Code Injection') in the variables fe…
CVE-2026-480368.421.9kerberosmansourhulumiCWE-755Hulumi: Drift classifier fails open on adapter errors and over-promotes Mixed…
CVE-2026-661394.821.9OpenStackZaqarCWE-306OpenStack Zaqar through 22.0.0 allows authentication bypass via an EXTRA-SPEC…
CVE-2026-97657.121.2GrafanaGrafana IRMCWE-284CVE-2026-9765 CVE Record
CVE-2026-660328.720.0libssh2libssh2CWE-415libssh2 Double-Free Heap Corruption via sftp_open()
CVE-2026-660367.720.0FFmpegFFmpegCWE-122FFmpeg Heap Out-of-Bounds Write in vf_hqdn3d Filter
CVE-2026-480338.419.9kerberosmansourhulumiCWE-693Hulumi: Policy packs bypassed by a forged Pulumi-URN logical name
CVE-2026-618928.719.8WeintekcMT3092X firmwareCWE-732Weintek cMT3092X Incorrect Permission Assignment for Critical Resource
CVE-2026-158108.719.0Google CloudLookerCWE-79Cross-Site Scripting (XSS) in Looker allows Admin Account Takeover
CVE-2026-657078.518.6likeadmin-likeshoplikeshopCWE-89Likeshop 3.0.5 Authenticated SQL Injection via adjustAccount Endpoint
CVE-2026-660096.318.2parse-communityparse-serverCWE-209Parse Server 9.0.0 Information Disclosure via GraphQL Error Messages
CVE-2026-153466.117.9e4jvikwpVikBooking Hotel Booking Engine & PMSCWE-79VikBooking Hotel Booking Engine & PMS <= 1.8.13 - Reflected Cross-Site Script…
CVE-2026-480357.117.8kerberosmansourhulumiCWE-1059Hulumi: AccountFoundation audit-delivery S3 bucket could be silently weakened
CVE-2026-480376.317.8kerberosmansourhulumiCWE-693Hulumi: AccountFoundation reuse paths silently downgrade GuardDuty / Security…
CVE-2026-480348.517.6kerberosmansourhulumiCWE-284HULUMI-H5 bypass via decoy sibling resources targeting a different bucket
CVE-2026-642238.117.4LinuxLinuxCWE-125wifi: mac80211: consume only present negotiated TTLM maps
CVE-2026-660278.717.3kortix-aisunaCWE-862Suna < 0.9.102 Broken Access Control via Message Queue API
CVE-2026-661407.817.2EximEximCWE-24Exim before 4.99.5 allows directory traversal to access files outside of the …
CVE-2026-660347.716.9libssh2libssh2CWE-125libssh2 Heap Out-of-Bounds Read via publickey subsystem
CVE-2026-153336.416.7cozythemesCozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & TemplatesCWE-79Cozy Blocks <= 2.2.11 - Authenticated (Contributor+) Stored Cross-Site Script…
CVE-2026-153346.416.7cozythemesCozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & TemplatesCWE-79Cozy Blocks <= 2.2.11 - Authenticated (Contributor+) Stored Cross-Site Script…
CVE-2026-575315.116.5MilkdownmilkdownCWE-79Milkdown < 7.21.3 DOM XSS via innerHTML Assignment
CVE-2026-660387.116.0FFmpegFFmpegCWE-908FFmpeg LCL/ZLIB Video Decoder Information Disclosure via lcldec.c
CVE-2026-157396.415.5widgetpackRich Showcase for Google ReviewsCWE-79Rich Showcase for Google Reviews <= 6.9.9 - Authenticated (Contributor+) Stor…
CVE-2026-157556.415.5100pluginsOpen User Map – Interactive Leaflet MapsCWE-79Open User Map <= 1.4.45 - Authenticated (Contributor+) Stored Cross-Site Scri…
CVE-2026-146037.515.3UnknownWowOptin: Next-Gen Popup MakerCWE-284WowOptin < 1.4.38 - Unauthenticated Opt-in Deactivation and Template Row Inje…
CVE-2026-113545.315.3xnauParticipants DatabaseCWE-862Participants Database <= 2.7.8.3 - Missing Authorization to Unauthenticated A…
CVE-2026-128779.115.1UnknownProject Management, Bug and Issue Tracking PluginCWE-287Software Issue Manager < 5.1.0 - Unauthenticated SQL Injection via Search Par…
CVE-2026-124977.514.3UnknownPaid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict ContentCWE-269ProfilePress < 4.16.18 - Unauthenticated Privilege Escalation via Registratio…
CVE-2026-618867.114.1WeintekcMT3092X firmwareCWE-256Weintek cMT3092X Plaintext Storage of a Password
CVE-2026-663376.513.9Red HatRed Hat Enterprise Linux 10CWE-125Libsoup: libsoup: heap buffer over-read via integer underflow in soup_filter_…
CVE-2026-663396.513.9Red HatRed Hat Enterprise Linux 10CWE-201Libsoup: libsoup: proxy credentials leak to destination server via proxy-auth…
CVE-2026-642558.813.5LinuxLinuxCWE-125wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers
CVE-2026-167986.513.2DevolutionsPowerShell UniversalCWE-201Insertion of sensitive information into sent data in the automation jobs API …
CVE-2026-657098.713.2nuxsminsysPassCWE-639sysPass 3.2.11 Missing Object-Level Authorization via JSON-RPC API
CVE-2026-87898.113.1easyappointmentsEasy AppointmentsCWE-863Easy Appointments <= 3.12.27 - Missing Authorization to Authenticated (Contri…
CVE-2026-657088.612.9nuxsminsysPassCWE-639sysPass 3.2.11 Insecure Direct Object Reference via AccountFileController
CVE-2026-601357.111.9WeintekcMT3092X firmwareCWE-286Weintek cMT3092X Incorrect User Management
CVE-2026-660377.111.9FFmpegFFmpegCWE-770FFmpeg IAMF Demuxer Uncontrolled Resource Consumption via mix_presentation_obu()
CVE-2026-169105.511.9Red HatRed Hat OpenShift Update ServiceCWE-918Quay: ssrf in red hat quay notification webhooks (slack/generic)
CVE-2026-170393.111.6Red HatRed Hat Certificate System 10CWE-863Pki-core: dogtag-pki: redhat-pki: pki-core: ca renewal request processing omi…
CVE-2026-64546.410.9firelightwpFirelight LightboxCWE-79Firelight Lightbox <= 2.3.20 - Authenticated (Contributor+) Stored DOM Cross-…
CVE-2026-100337.310.5EventONEventON Action UserCWE-862EventON Action User <= 2.5.14 - Missing Authorization to Unauthenticated Priv…
CVE-2026-158216.410.3brainstormforceSureDash – Community, Courses & Member DashboardCWE-79SureDash <= 1.10.0 - Authenticated (Contributor+) Stored Cross-Site Scripting…
CVE-2026-170596.510.1Red HatRed Hat Build of KeycloakCWE-639Keycloak-services: keycloak-services: information disclosure via role-users e…
CVE-2026-170484.910.0Red HatRed Hat build of Keycloak 26.6CWE-200Keycloak-services: keycloak-services: vault-resolved rotated client secrets l…
CVE-2026-156656.49.9wpmanageninjaFluent Support – Helpdesk & Customer Support Ticket SystemCWE-79Fluent Support <= 2.3.0 - Authenticated (Contributor+) Stored Cross-Site Scri…
CVE-2026-74845.39.8ABIS Technology Ltd. Co.AVESİSCWE-472Improper Access Control in Abis Technology's AVESİS
CVE-2026-151006.49.3wpxpoPost Grid Gutenberg Blocks – PostXCWE-79Post Grid Gutenberg Blocks <= 5.0.32 - Authenticated (Contributor+) Stored Cr…
CVE-2026-154646.49.3thimpressWP Hotel BookingCWE-79WP Hotel Booking <= 2.3.2 - Authenticated (Contributor+) Stored Cross-Site Sc…
CVE-2026-156486.49.3berocketBrands for WooCommerceCWE-79Brands for WooCommerce <= 3.8.8 - Authenticated (Contributor+) Stored Cross-S…
CVE-2026-156536.49.3themeisleVisualizer – Tables & Charts Manager with Built-in AI GeneratorCWE-79Visualizer <= 4.0.5 - Authenticated (Contributor+) Stored Cross-Site Scriptin…
CVE-2026-127025.19.3Octopus DeployOctopus ServerCWE-284In affected versions of Octopus Deploy Insufficient checks on the project tri…
CVE-2025-92056.48.6oyatekMapSVG – Vector maps, Image maps, Google MapsCWE-79MapSVG Lite <= 8.14.0 - Authenticated (Contributor+) Stored Cross-Site Scripting
CVE-2026-660055.38.6janhqjanCWE-183Jan Local API Server CORS Origin Reflection via 0.0.0.0 Binding
CVE-2025-714088.58.2ntlkntlkCWE-95NLTK < 3.9.3 Eval Injection via collocations.py Command-Line Arguments
CVE-2026-119226.57.7zenml-iozenml-io/zenmlCWE-290Rate-limit Bypass in zenml-io/zenml
CVE-2026-657107.17.6nuxsminsysPassCWE-639sysPass 3.2.11 Missing Authorization via PublicLinkController Account Decryption
CVE-2026-575305.17.6MilkdownmilkdownCWE-79Milkdown < 7.21.3 Stored XSS via javascript: URL in link href
CVE-2026-663385.47.1Red HatRed Hat Enterprise Linux 10CWE-444Libsoup: libsoup: http request smuggling via permissive chunk-size parsing in…
CVE-2026-152437.46.7ApereoJava Apereo CAS ClientCWE-297Improper Validation of Certificate in CAS Client
CVE-2026-660105.16.1cure53DOMPurifyCWE-79DOMPurify before 3.4.12 Hook Bypass via CUSTOM_ELEMENT_HANDLING
CVE-2026-126886.56.1UnknownProfileGridCWE-284ProfileGrid < 5.9.9.7 - Unauthenticated Payment Bypass and Forced Group Membe…
CVE-2026-70074.66.1zephyrprojectzephyrCWE-369Division by zero in Zephyr ext2 superblock parsing allows DoS via crafted fil…
CVE-2026-167995.04.9DevolutionsPowerShell UniversalCWE-862Improper access control in the automation tests and workflows features in Dev…
CVE-2026-126903.84.9UnknownProfileGridCWE-862ProfileGrid < 5.9.9.7 - Subscriber+ Premium License Tampering via Missing Aut…
CVE-2026-83086.14.6Polen Media Software and Information ServicesWebsite TemplateCWE-79Reflected XSS Polen Media's Website Template
CVE-2026-559855.34.7Tycon SystemsTPDIN-Monitor-WEB2CWE-312Tycon Systems TPDIN-Monitor-WEB2 Cleartext Storage of Sensitive Information
CVE-2026-563921.84.6GNUcoreutilsCWE-122Heap-based Buffer Overflow in GNU coreutils
CVE-2026-106108.54.1ESET spol. s.r.o.ESET Endpoint Security for macOSCWE-269Local privilege escalation in ESET security applications for macOS
CVE-2026-126895.43.6UnknownProfileGridCWE-862ProfileGrid < 5.9.9.7 - Subscriber+ Cross-User Private Message Thread Deletio…
CVE-2026-125039.23.5LoytecLIP-ME20xCCWE-59Loytec LINX firmware: Improper Link Resolution in /usr/bin/larm_starter
CVE-2026-642197.03.4LinuxLinuxCWE-674drm/amd/display: Validate payload length and link_index in dc_process_dmub_au…
CVE-2026-563914.63.4GNUcoreutilsCWE-125Out‑of‑bounds Read in GNU coreutils
CVE-2026-125048.43.0LoytecLIP-ME20xCCWE-287Loytec LINX firmware: Improper Authentication in PAM configuration
CVE-2026-642177.83.0LinuxLinuxCWE-787netfs: Fix overrun check in netfs_extract_user_iter()
CVE-2026-642187.83.0LinuxLinuxbatman-adv: bla: fix report_work leak on backbone_gw purge
CVE-2026-642257.83.0LinuxLinuxCWE-129octeontx2-af: CGX: add bounds check to cgx_speed_mbps index
CVE-2026-642267.83.0LinuxLinuxCWE-416sched_ext: Avoid UAF in scx_root_enable_workfn() init failure path
CVE-2026-642247.82.8LinuxLinuxCWE-415octeontx2-pf: fix double free in rvu_rep_rsrc_init()
CVE-2026-642217.82.7LinuxLinuxCWE-416spi: ti-qspi: fix use-after-free after DMA setup failure
CVE-2026-74838.52.6ESET spol. s.r.o.ESET Endpoint Security for macOSCWE-269Local privilege escalation in ESET security applications for macOS
CVE-2026-543428.12.6med-unitedepa4allCWE-295TLS Certificate Verification Disabled on CXF Transport Clients in epa4all
CVE-2026-480219.12.6med-unitedepa4allCWE-295epa4all Security Incident: Implement keystore based on Telematik TSL, impleme…
CVE-2026-544225.52.5OpenStackIronic Python AgentCWE-522In OpenStack Ironic Python Agent through 11.5.0, a malicious bootc container,…
CVE-2026-642145.52.5LinuxLinuxCWE-476powerpc/time: Remove redundant preempt_disable|enable() calls from arch_irq_w…
CVE-2026-642205.52.5LinuxLinuxCWE-908device property: set fwnode->secondary to NULL in fwnode_init()
CVE-2026-642315.52.5LinuxLinuxdrm/msm/dsi: don't dump registers past the mapped region
CVE-2026-642227.02.3LinuxLinuxCWE-415octeontx2-pf: avoid double free of pool->stack on AQ init failure
CVE-2026-642275.52.4LinuxLinuxCWE-476ACPI: driver: Check ACPI_COMPANION() against NULL during probe
CVE-2026-642427.82.2LinuxLinuxCWE-415usb: gadget: net2280: Fix double free in probe error path
CVE-2026-642135.52.2LinuxLinuxhwmon: (lm90) Add lock protection to lm90_alert
CVE-2026-642285.52.2LinuxLinuxCWE-476net: ethtool: phy: avoid NULL deref when PHY driver is unbound
CVE-2026-642295.52.3LinuxLinuxCWE-476x86/mm: Disable broadcast TLB flush when PCID is disabled
CVE-2026-642305.52.3LinuxLinuxCWE-476regulator: tps65219: fix irq_data.rdev not being assigned
CVE-2026-642457.82.1LinuxLinuxCWE-416fbdev: modedb: fix a possible UAF in fb_find_mode()
CVE-2026-165197.32.0GeoVision Inc.GV-IP Device UtilityCWE-427GeoVision GV-IP Device Utility DLL Search Order Hijacking Vulnerability
CVE-2026-642467.82.0LinuxLinuxCWE-416power: reset: linkstation-poweroff: fix use-after-free in the linkstation_pow…
CVE-2026-642497.82.0LinuxLinuxCWE-416fpga: region: fix use-after-free in child_regions_with_firmware()
CVE-2026-642517.81.9LinuxLinuxCWE-416pwrseq: core: fix use-after-free in pwrseq_debugfs_seq_next()
CVE-2026-642097.11.9LinuxLinuxCWE-125phy: qcom: qmp-usbc: Fix out-of-bounds array access in dp swing config
CVE-2026-642377.12.0LinuxLinuxCWE-125Input: elan_i2c - validate firmware size before use
CVE-2026-642437.12.0LinuxLinuxCWE-129ASoC: codecs: simple-mux: Fix enum control bounds check
CVE-2026-642125.52.0LinuxLinuxCWE-476wifi: iwlwifi: mld: don't dereference a pointer before NULL checking it
CVE-2026-642397.81.9LinuxLinuxCWE-416mm/damon/sysfs-schemes: delete tried region in regions_rmdirs()
CVE-2026-642478.41.7LinuxLinuxCWE-125KVM: x86: hyper-v: Bound the bank index when querying sparse banks
CVE-2026-642335.51.7LinuxLinuxusb: gadget: uvc: hold opts->lock across XU walks in uvc_function_bind
CVE-2026-642345.51.8LinuxLinuxCWE-476tty: serial: pch_uart: add check for dma_alloc_coherent()
CVE-2026-642405.51.8LinuxLinuxmedia: rc: igorplugusb: fix control request setup packet
CVE-2026-642415.51.7LinuxLinuxCWE-401gpio: rockchip: teardown bugs and resource leaks
CVE-2026-642445.51.8LinuxLinuxdrivers/base/memory: set mem->altmap after successful device registration
CVE-2026-642525.51.8LinuxLinuxMIPS: DEC: Prevent initial console buffer from landing in XKPHYS
CVE-2026-642535.51.7LinuxLinuxCWE-476kernel/fork: clear PF_BLOCK_TS in copy_process()
CVE-2026-642545.51.7LinuxLinuxCWE-617NTB: epf: Avoid pci_iounmap() with offset when PEER_SPAD and CONFIG share BAR
CVE-2026-642365.51.6LinuxLinuxCWE-369i2c: davinci: fix division by zero on missing clock-frequency
CVE-2026-557283.81.7LoytecLIP-ME20xCCWE-121Loytec LINX firmware: Stack-based Buffer Overflow in cmd_ipaddr_conflict
CVE-2026-642485.51.5LinuxLinuxMIPS: smp: report dying CPU to RCU in stop_this_cpu()
CVE-2026-642505.51.5LinuxLinuxLoongArch: Report dying CPU to RCU in stop_this_cpu()
CVE-2026-497437.81.5Imagination TechnologiesGraphics DDKCWE-416GPU DDK - Write UAF of sync checkpoint in GPU kick function after export fenc…
CVE-2026-497447.81.5Imagination TechnologiesGraphics DDKCWE-823GPU DDK - Unchecked ui32TracePointer in rgxfw_log_ex()
CVE-2026-497457.81.5Imagination TechnologiesGraphics DDKCWE-823GPU DDK - Unvalidated sHWPerfCtlDMABuf GPU-VA, DMA-write into FW privdata via…
CVE-2026-642155.51.4LinuxLinuxCWE-476drm/msm/a6xx: Check kzalloc return in a8xx_hfi_send_perf_table
CVE-2026-141727.81.3Rapid7InsightVMCWE-250Rapid7 InsightVM, Nexpose, and Insight Agent Local Privilege Escalation via U…
CVE-2026-167305.51.3Red HatRed Hat Enterprise Linux 10CWE-755Dbus-broker: dbus-broker: session bus denial of service via emfile during pee…
CVE-2026-642115.51.3LinuxLinuxsrcu: Don't queue workqueue handlers to never-online CPUs
CVE-2026-125028.41.2LoytecLIP-ME20xCCWE-269Loytec LINX firmware: Improper Privilege Management in /usr/bin/ltsudo
CVE-2026-167435.50.9Red HatRed Hat Enterprise Linux 10CWE-269Accountsservice: accountsservice: arbitrary file read via seticonfile for sys…
CVE-2026-661417.80.8EximEximCWE-829Exim before 4.99.5 allows .forward privilege escalation because force_command…
CVE-2026-642385.50.2LinuxLinuxCWE-667gpio: shared: fix deadlock on shared proxy's parent removal
CVE-2026-168026.50.1DevolutionsPowerShell UniversalCWE-312Cleartext storage of sensitive information in the variables feature in Devolu…

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-07-24 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.