boxscore/security
Monday, August 3, 2026 · all times UTC← 2026-08-02 · archive · 2026-08-04 →

310 CVEs published August 3, 2026: 47 critical, 127 high, 118 medium, 18 low; 1 in KEV; 13 with a public exploit reference; 0 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 285 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published506931113902563
KEV catalog size1670

407 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; medians are over each vendor's YTD disclosures.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux0158520711279802730.27.8.0016-8
microsoft1613771069363108378322.37.8.0039-34
google041264104226157351.26.5.00220
apple0244566711229372.97.1.00270
red hat10232911010112400.07.1.0025+4
canonical030210000.07.8.00130
android010100161100.08.4.01710
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco0204620961365.08.2.18530
fortinet018249028633.36.1.00540
palo alto networks015017514213.34.7.00280
vmware01247012100.08.7.00440
checkpoint1541003240.09.3.2062+1
f50540007120.09.2.04020
ivanti051000335100.010.0.81520
broadcom0400204250.05.1.08770
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache514224774014010.77.5.0051+5
mozilla0724226401300.09.1.00310
gitlab015021014213.34.9.00290
docker030120100.05.7.00150
wordpress0311105266.78.6.73100
github020110000.06.1.00290
drupal01100051100.09.8.88320
kubernetes010001000.02.4.00240
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle01113212539304574030.37.6.00310
ibm01083143340700.07.5.00260
adobe7471623407548.58.6.0047+7
progress02331550900.08.1.00320
solarwinds0201611011420.09.1.00500
atlassian0303001300.08.0.00260
zohocorp031110000.07.1.00480
veeam020110400.06.8.00160
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
d-link08006126112.55.5.00730
hikvision0704202114.37.2.00250
bosch030300000.08.1.00280
schneider electric031200100.08.7.00200
synology110100000.07.3.0013+1
honeywell010010000.06.9.00310
mitsubishi electric010100000.07.1.00130
rockwell automation011000000.09.2.00300
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
surrealdb057326253000.07.1.00250
grafana041214223000.06.5.00330
netty04162771000.07.5.00460
legion of the bouncy castle323952590000.08.7.0026+32
open ises037214210000.06.9.00210
mediatek343404300100.06.0.0011+34
erlang032114143100.06.9.0033-6
freerdp233181841000.08.7.0034+23

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-48282.992499.9
CVE-2026-63030.956099.99.8
CVE-2026-39808.912199.8
CVE-2026-48908.881399.810.0
CVE-2026-56290.832599.710.0
CVE-2026-48939.825099.610.0
CVE-2026-50522.769899.59.8
CVE-2026-15410.763599.57.2
CVE-2026-56291.760799.510.0
CVE-2026-15409.742299.410.0
Highest CVSS
CVECVSSEPSSNote
CVE-2026-4890810.0.8813KEV
CVE-2026-5629010.0.8325KEV
CVE-2026-4893910.0.8250KEV
CVE-2026-5629110.0.7607KEV
CVE-2026-1540910.0.7422KEV
CVE-2026-898510.0.0660
CVE-2026-651610.0.0473
CVE-2026-4766810.0.0434
CVE-2026-4435910.0.0100
CVE-2025-7138910.0.0093
Most disclosures (vendor)
VendorCVEs
oracle1109
linux655
microsoft624
google403
apple167
red hat127
apache110
ibm100
mozilla67
surrealdb57
Most KEV additions (YTD)
VendorKEV
microsoft32
cisco13
apple7
fortinet6
google5
ivanti5
adobe4
langflow4
solarwinds4
synacor4
Most-affected ecosystems
EcosystemAdvisories
Maven29
Go3
crates.io2
npm2
NuGet1
Packagist1
PyPI1
Fastest to KEV
CVEVendorDays
CVE-2008-4128Cisco0
CVE-2021-27137DD-WRT0
CVE-2023-4346KNX Association0
CVE-2025-68686Fortinet0
CVE-2026-0770Langflow0
CVE-2026-15409SonicWall0
CVE-2026-15410SonicWall0
CVE-2026-16232checkpoint0
CVE-2026-16812Arista Networks0
CVE-2026-18577N-able0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104Accellion2021-11-171720
CVE-2021-27102Accellion2021-11-171720
CVE-2021-27101Accellion2021-11-171720
CVE-2021-27103Accellion2021-11-171720
CVE-2021-21017Adobe2021-11-171720
CVE-2021-28550Adobe2021-11-171720
CVE-2021-42013Apache2021-11-171720
CVE-2021-41773Apache2021-11-171720
CVE-2021-30858Apple2021-11-171720
CVE-2021-30860Apple2021-11-171720

Transactions

EXPLOIT PUBLISHEDCVE-2015-2291. Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2017-6884. Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2023-52355 (libtiff). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2024-9474 (Palo Alto Networks Cloud NGFW). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2025-0282 (Ivanti Connect Secure). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2025-15675 (Unknown Charitable). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2025-61884 (Oracle Corporation Oracle Configurator). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-10849 (zephyrproject zephyr). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-12586 (Unknown Lenxel WP). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-13389 (Unknown webtoffee-cookie-consent). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-14239 (Unknown tourmaster). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-14817 (Unknown Element Pack Addons for Elementor). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-14841 (Unknown King Addons for Elementor). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-14864 (Unknown JetEngine). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-14920 (Unknown AcyMailing). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-15151 (Unknown Five Star Restaurant Reservations). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-15206 (Unknown SMS Alert). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-15236 (Unknown Gallery for Google Photos). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-15241 (Unknown AI ChatBot for WooCommerce). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-15385 (Unknown RT Mega Menu). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16042 (Unknown LWS Optimize). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16062 (Unknown Event Booking Manager for WooCommerce). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16063 (Unknown Event Booking Manager for WooCommerce). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16064 (Unknown Event Booking Manager for WooCommerce). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16261 (Unknown login-social). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16273 (Unknown Narrative Publisher). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16285 (Unknown Product Attachment for WooCommerce). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16291 (Unknown ProfileGrid). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16292 (Unknown Frontend File Manager Plugin). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-16540 (Unknown Simply Schedule Appointments). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-23760 (SmarterTools SmarterMail). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-41940 (WebPros cPanel). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-66296 (lud oaskit). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-69152 (juliangruber brace-expansion). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-69153 (postcss). Public exploit reference added.

RESCOREDCVE-2024-21539 (@eslint/plugin-kit). CVSS 8.7 → 7.7 (NVD).

RESCOREDCVE-2025-14087 (GNOME glib). CVSS 5.6 → 9.8 (NVD).

RESCOREDCVE-2026-12188 (Grit42 Grit). CVSS 5.3 → 2.1 (NVD).

RESCOREDCVE-2026-44173 (MariaDB server). CVSS 5 → 5.3 (NVD).

RESCOREDCVE-2026-44248 (netty). CVSS 5.3 → 7.5 (NVD).

RESCOREDCVE-2026-48163 (MariaDB server). CVSS 8 → 7.2 (NVD).

RESCOREDCVE-2026-48165 (MariaDB server). CVSS 8 → 7.2 (NVD).

RESCOREDCVE-2026-53143 (Linux). CVSS 7 → 7.8 (NVD).

RESCOREDCVE-2026-6734 (undici). CVSS 7.5 → 8.8 (NVD).

PATCH SHIPPEDCVE-2024-0012 (Palo Alto Networks Cloud NGFW). Fixed in Cloud NGFW All.

PATCH SHIPPEDCVE-2024-1708 (ConnectWise ScreenConnect). Fixed in ScreenConnect 23.9.8.

PATCH SHIPPEDCVE-2024-36971 (Linux). Fixed in Linux 4.19.316.

PATCH SHIPPEDCVE-2024-9474 (Palo Alto Networks Cloud NGFW). Fixed in Cloud NGFW All.

PATCH SHIPPEDCVE-2025-0282 (Ivanti Connect Secure). Fixed in Connect Secure 22.7R2.5.

PATCH SHIPPEDCVE-2025-22457 (Ivanti Connect Secure). Fixed in Connect Secure 22.7R2.6.

PATCH SHIPPEDCVE-2026-41940 (WebPros cPanel). Fixed in WP Squared 11.136.1.7.

ENRICHEDCVE-2025-38299 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-45897 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-45901 (Linux). Received CVSS 5.5 and CPE data from NVD.

ENRICHEDCVE-2026-46130 (Linux). Received CVSS 7.1 and CPE data from NVD.

ENRICHEDCVE-2026-53364 (Linux). Received CVSS 5.5 and CPE data from NVD.

Yesterday's Results

310 CVEs published. 25 box scores, 285 table rows — nothing truncated.

N-able N-central — Incomplete patch leads to administrative account takeover
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   N   N   N   H   N   N    8.2   .0410   89.9   YES
AFFECTED
  Product    Versions     Fixed
  N-central  unspecified  2026.3.1.7
TIMELINE
  Aug 1   Patch available
  Aug 2   Reserved by CNA
  Aug 3   Added to CISA KEV, due Aug 6
  Aug 3   Published (CNA: N-able)
CWE-288 · CNA: N-able · 5 references · NVD status: Analyzed · KEV due August 6, 2026
GL.iNet GL-MT3000 ovpn-client.so Native Plugin glc ovpn-client.check_config command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    8.9   .0238   82.5     —
AFFECTED
  Product    Versions  Fixed
  GL-MT3000  4.4.0 –   —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 5 references · NVD status: Deferred
GL-iNet GL-MT3000 plugins.so Native Plugin glc plugins.install_package command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    8.9   .0216   80.6     —
AFFECTED
  Product    Versions  Fixed
  GL-MT3000  4.4.0 –   —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 8 references · NVD status: Deferred
GL.iNet GL-MT3000 modem.so glc remove_profile command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    8.9   .0203   79.4     —
AFFECTED
  Product    Versions  Fixed
  GL-MT3000  4.4.0 –   —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 5 references · NVD status: Deferred
GL-iNet GL-MT3000 s2s.so Native Plugin glc s2s.enable_echo_server command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    8.9   .0201   79.2     —
AFFECTED
  Product    Versions  Fixed
  GL-MT3000  4.4.0 –   —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 5 references · NVD status: Deferred
GL.iNet GL-MT3000 ovpn-client.so Native Plugin glc ovpn-client.get_recommend_config command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    8.9   .0199   78.9     —
AFFECTED
  Product    Versions  Fixed
  GL-MT3000  4.4.0 –   —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 5 references · NVD status: Deferred
GL-iNet GL-MT3000 wg-server.so Native Plugin glc wg-server.generate_publickey command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    8.9   .0199   78.9     —
AFFECTED
  Product    Versions  Fixed
  GL-MT3000  4.4.0 –   —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 5 references · NVD status: Deferred
GL-iNet GL-MT3000 wg-server.so Native Plugin glc server.set_peer command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    8.9   .0199   78.9     —
AFFECTED
  Product    Versions  Fixed
  GL-MT3000  4.4.0 –   —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 5 references · NVD status: Deferred
GL.iNet GL-MT3000 modem.so glc set_upgrade command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    8.9   .0199   78.9     —
AFFECTED
  Product    Versions  Fixed
  GL-MT3000  4.4.0 –   —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 5 references · NVD status: Deferred
GL.iNet GL-MT3000 Network Lua RPC Plugin network network.switch_status command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    7.4   .0198   78.8     —
AFFECTED
  Product    Versions  Fixed
  GL-MT3000  4.4.0 –   —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 5 references · NVD status: Deferred
ClearFoundation ClearOS — ClearOS 7.9 OS Command Injection via Log Viewer filter parameter
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   H   N   H   H   H    8.6   .0191   78.1     —
AFFECTED
  Product  Versions  Fixed
  ClearOS  7.9 –     —
TIMELINE
  Jul 29  Reserved by CNA
  Aug 3   Published (CNA: VulnCheck)
CWE-78 · CNA: VulnCheck · 3 references · NVD status: Received
Sangfor Operation and Maintenance Security Management System Login Endpoint portal_login com.sbr.fort.foreignDP.DpLoginController os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   L   L   L    5.5   .0169   75.1     —
AFFECTED
  Product                                               Versions  Fixed
  Operation and Maintenance Security Management System  3.0.0 –   —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-77, CWE-78 · CNA: VulDB · 5 references · NVD status: Deferred
OpenWrt luci-app-dockerman Read ACL Remote Code Execution
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    8.7   .0167   74.9     —
AFFECTED
  Product  Versions                Fixed
  luci     26.162.29621~507ab5e –  —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulnCheck)
CWE-78 · CNA: VulnCheck · 4 references · NVD status: Received
GL.iNet GL-MT3000 Logread Lua RPC plugin logread logread.get_system_log command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    7.4   .0165   74.5     —
AFFECTED
  Product    Versions  Fixed
  GL-MT3000  4.4.0 –   —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 5 references · NVD status: Deferred
Telenia TVox 26.5.3 OS Command Injection via action_audio.php
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   H   N   H   H   H    8.6   .0152   72.5     —
AFFECTED
  Product  Versions  Fixed
  TVox     26.0.0 –  —
TIMELINE
  Jul 29  Reserved by CNA
  Aug 3   Published (CNA: VulnCheck)
CWE-78 · CNA: VulnCheck · 3 references · NVD status: Received
n/a n/a — An OS command injection vulnerability in the openmediavault-md plugin of OpenMediaVault v8.0.4-1 allows att…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0144   71.0     —
AFFECTED
  Product  Versions  Fixed
  n/a      n/a –     —
TIMELINE
  Jun 8   Reserved by CNA
  Aug 3   Published (CNA: mitre)
CWE-78 · CNA: mitre · 3 references · NVD status: Received
GL.iNet GL-MT3000 Logread Lua RPC Plugin logread logread.set_config command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   A   L   N   L   N   H   H   H    7.3   .0140   70.1     —
AFFECTED
  Product    Versions  Fixed
  GL-MT3000  4.4.0 –   —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-74, CWE-77 · CNA: VulDB · 5 references · NVD status: Deferred
Wavlink WL-NU516U1 Config Import os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   N   N   P   H   H   H    6.8   .0126   67.0     —
AFFECTED
  Product     Versions          Fixed
  WL-NU516U1  708c073-mt7628 –  —
TIMELINE
  Aug 2   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-77, CWE-78 · CNA: VulDB · 6 references · NVD status: Deferred
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0110   62.9     —
AFFECTED
  Product                          Versions   Fixed
  Microsoft Edge (Chromium-based)  1.0.0.0 –  —
TIMELINE
  Jul 24  Reserved by CNA
  Aug 3   Published (CNA: microsoft)
CWE-126 · CNA: microsoft · 1 reference · NVD status: Analyzed
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  C  H  H  H    9.6   .0107   62.0     —
AFFECTED
  Product                          Versions   Fixed
  Microsoft Edge (Chromium-based)  1.0.0.0 –  —
TIMELINE
  Jul 24  Reserved by CNA
  Aug 3   Published (CNA: microsoft)
CWE-843 · CNA: microsoft · 1 reference · NVD status: Analyzed
Wavlink WL-NU516U1 Admin Password adm.cgi set_sys_adm os command injection
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   L   L   L    2.1   .0107   62.0     —
AFFECTED
  Product     Versions          Fixed
  WL-NU516U1  708c073-mt7628 –  —
TIMELINE
  Aug 2   Reserved by CNA
  Aug 3   Published (CNA: VulDB)
CWE-77, CWE-78 · CNA: VulDB · 7 references · NVD status: Deferred
n/a n/a — The "s init" command in Serverless-Devs @serverless-devs/s <= 3.1.11 passes unsanitized user input to child…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0104   61.3     —
AFFECTED
  Product  Versions  Fixed
  n/a      n/a –     —
TIMELINE
  Jun 7   Reserved by CNA
  Aug 3   Published (CNA: mitre)
CWE-78 · CNA: mitre · 1 reference · NVD status: Received
checkpoint Security Management Server — Authentication Bypass in Check Point Security Management Server
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0099   59.6     —
AFFECTED
  Product                                  Versions                                                 Fixed
  Security Management Server               R82.10 with Jumbo Hotfix Accumulator Take 39 or below –  —
  Multi-Domain Security Management Server  R82.10 with Jumbo Hotfix Accumulator Take 39 or below –  —
TIMELINE
  Aug 2   Reserved by CNA
  Aug 3   Published (CNA: checkpoint)
CWE-288 · CNA: checkpoint · 1 reference · NVD status: Awaiting Analysis
Microsoft Edge for Android Information Disclosure Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  C  H  N  N    7.4   .0092   57.4     —
AFFECTED
  Product                          Versions   Fixed
  Microsoft Edge (Chromium-based)  1.0.0.0 –  —
TIMELINE
  Jul 22  Reserved by CNA
  Aug 3   Published (CNA: microsoft)
CWE-73 · CNA: microsoft · 1 reference · NVD status: Analyzed
Microsoft Excel Remote Code Execution Vulnerability
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   R  U  H  H  H    8.8   .0082   54.2     —
AFFECTED
  Product                            Versions    Fixed
  Microsoft 365 Apps for Enterprise  16.0.1 –    —
  Microsoft Excel 2016               16.0.0.0 –  —
  Microsoft Office 2019              19.0.0 –    —
  Microsoft Office LTSC 2021         16.0.1 –    —
  Microsoft Office LTSC 2024         16.0.0 –    —
TIMELINE
  Jul 14  Reserved by CNA
  Aug 3   Published (CNA: microsoft)
CWE-416 · CNA: microsoft · 1 reference · NVD status: Analyzed
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-399329.452.7openemropenemrCWE-95OpenEMR 8.2.0 Remote Code Execution via CategoryTree eval() Injection
CVE-2026-663268.852.6MicrosoftMicrosoft Edge (Chromium-based)CWE-862Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2026-128729.849.8UnknownWebinfosCWE-434Webinfos <= 1.2 - Unauthenticated Arbitrary File Upload
CVE-2026-87936.949.5PaperCutPaperCut NG/MFCWE-307PaperCut NG/MF: Insufficient brute-force protection
CVE-2026-4833010.049.4AdobeAdobe Campaign ClassicCWE-89Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements us…
CVE-2026-87946.949.3PaperCutPaperCut NG/MFCWE-208PaperCut NG/MF: User enumeration via timing attack
CVE-2026-414529.348.6krayinlaravel-crmCWE-306Krayin CRM 2.2.4 Missing Authentication via install/api/admin-config-setup
CVE-2026-615238.647.9WebsiteBaker Org e.V.WebsiteBaker CMSCWE-94WebsiteBaker CMS < 2.13.10 Code Injection via Droplets Editor
CVE-2026-4832310.047.1AdobeAdobe Campaign ClassicCWE-1336Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements Us…
CVE-2026-690958.746.8openwrtluciCWE-22OpenWrt luci-app-bmx7 Path Traversal via bmx7-info
CVE-2026-185889.346.3WavlinkWL-NU516U1CWE-119Wavlink WL-NU516U1 nas.cgi fgets stack-based overflow
CVE-2026-185898.946.3WavlinkWL-NU516U1CWE-119Wavlink WL-NU516U1 nas.cgi change_password stack-based overflow
CVE-2026-663157.546.2MicrosoftMicrosoft Edge (Chromium-based)CWE-416Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2026-663145.344.7MicrosoftMicrosoft Edge (Chromium-based)CWE-367Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
CVE-2026-613727.544.4Apache Software FoundationApache Jena FusekiCWE-22Apache Jena Fuseki: Web requests using SPARQL Update can escape file restrict…
CVE-2026-615248.643.7WebsiteBaker Org e.V.WebsiteBaker CMSCWE-434WebsiteBaker CMS < 2.13.10 File Upload RCE via Module Installation
CVE-2026-186138.943.3GL-iNetGL-MT3000CWE-74GL-iNet GL-MT3000 plugins.so Native Plugin glc plugins.set_config injection
CVE-2026-186465.542.9danprosHTMLyCWE-22danpros HTMLy Author Name htmly.php path traversal
CVE-2026-3359110.042.0Tranquil IT SystemsWAPT ServerCWE-288Authentication bypass on WaptServer
CVE-2026-689795.941.9Apache Software FoundationApache NiFiCWE-862Apache NiFi: Missing Authorization for Components Referenced by Parameter Con…
CVE-2026-689818.841.6Apache Software FoundationApache NiFiCWE-409Apache NiFi: Uncontrolled Resource Consumption through Decompression of HTTP …
CVE-2026-162509.840.9UnknownPersonal QR MessageCWE-434Personal QR Message <= 1.0 - Unauthenticated Arbitrary File Upload
CVE-2026-204797.540.4MediaTek, Inc.MediaTek chipsetCWE-125In Modem, there is a possible out of bounds read due to a missing bounds chec…
CVE-2026-185825.540.4mz-automationlibiec61850CWE-590mz-automation libiec61850 Report Sending Path reporting.c Reporting_RCBWriteA…
CVE-2026-185835.540.4mz-automationlibiec61850CWE-119mz-automation libiec61850 MMS Request mms_mapping.c checkDataSetAccess out-of…
CVE-2026-483269.939.7AdobeAdobe Campaign ClassicCWE-89Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements us…
CVE-2026-483179.639.7AdobeAdobe Campaign ClassicCWE-95Adobe Campaign Classic (ACC) | Improper Neutralization of Directives in Dynam…
CVE-2026-4833110.038.9AdobeAdobe Campaign ClassicCWE-918Adobe Campaign Classic (ACC) | Server-Side Request Forgery (SSRF) (CWE-918)
CVE-2026-483339.838.9AdobeAdobe Campaign ClassicCWE-863Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863)
CVE-2025-156728.138.6UnknownChamaWPCWE-502Chama < 1.0.13 - Unauthenticated PHP Object Injection
CVE-2026-160609.838.6UnknownInsert or Embed Articulate Content into WordPressCWE-434Insert or Embed Articulate Content into WordPress <= 4.3000000027 - Editor+ A…
CVE-2026-483997.538.3AdobeAdobe Campaign ClassicCWE-657Adobe Campaign Classic (ACC) | Violation of Secure Design Principles (CWE-657)
CVE-2026-384479.837.7n/an/aCWE-331osTicket 1.18.3 generates API keys using a predictable construction based on …
CVE-2026-186077.436.5WavlinkWN572CWE-119Wavlink NU516 lighttpd upload.cgi strcpy stack-based overflow
CVE-2026-648279.336.3Telenia SoftwareTVoxCWE-807Telenia TVox 26.5.3 Authentication Bypass via set_env.php
CVE-2026-635636.935.9Sharp CorporationSharp MFPsCWE-1188Sharp and Toshiba Tec MFPs (multifunction printers) for a certain market have…
CVE-2026-186452.135.6danprosHTMLyCWE-22danpros HTMLy Admin Content Endpoint admin.php add_content path traversal
CVE-2026-658046.134.5MicrosoftMicrosoft Edge (Chromium-based)CWE-94Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2026-691527.534.2juliangruberbrace-expansionCWE-400brace-expansion: DoS via unbounded intermediate arrays, bypassing the CVE-202…
CVE-2026-663116.233.7MicrosoftMicrosoft Edge (Chromium-based)CWE-862Microsoft Edge (Chromium-based) Tampering Vulnerability
CVE-2026-215487.533.6Unisoc (Shanghai) Technologies Co., Ltd.T8100/T9100/T8200/T8300CWE-20In nr modem, there is a possible improper input validation. This could lead t…
CVE-2026-215497.533.6Unisoc (Shanghai) Technologies Co., Ltd.T8100/T9100/T8200/T8300CWE-20In modem, there is a possible improper input validation. This could lead to r…
CVE-2026-215507.533.6Unisoc (Shanghai) Technologies Co., Ltd.T8100/T9100/T8200/T8300CWE-20In modem, there is a possible improper input validation. This could lead to r…
CVE-2026-215517.533.6Unisoc (Shanghai) Technologies Co., Ltd.T8100/T9100/T8200/T8300CWE-20In modem, there is a possible improper input validation. This could lead to r…
CVE-2026-215527.533.6Unisoc (Shanghai) Technologies Co., Ltd.T8100/T9100/T8200/T8300CWE-20In modem, there is a possible improper input validation. This could lead to r…
CVE-2026-215537.533.6Unisoc (Shanghai) Technologies Co., Ltd.T8100/T9100/T8200/T8300CWE-20In modem, there is a possible improper input validation. This could lead to r…
CVE-2026-215547.533.6Unisoc (Shanghai) Technologies Co., Ltd.UDX710CWE-20In modem, there is a possible improper input validation. This could lead to r…
CVE-2026-215557.533.6Unisoc (Shanghai) Technologies Co., Ltd.UDX710CWE-20In modem, there is a possible improper input validation. This could lead to r…
CVE-2026-186105.532.8NewTypeWebEIPCWE-287NewType WebEIP EIP_Com_FileList.aspx improper authentication
CVE-2026-690798.732.8mispcti-transmuteCWE-770Unauthenticated Denial of Service via Unbounded Activity-Timeline Range in CT…
CVE-2026-186679.332.4Tenable, Inc.Sensor ProxyCWE-94Sensor Proxy Version 1.4.2 Fixes One Vulnerability
CVE-2026-663256.132.4MicrosoftMicrosoft Edge (Chromium-based)CWE-918Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2026-187385.131.3shlinkioShlinkCWE-1236Shlink CSV Formula Injection via Visit Export CLI
CVE-2026-186312.131.1jeequanjeepayCWE-285jeequan jeepay PreAuthorize SysLogController.java WebSecurityConfig authoriza…
CVE-2026-186322.130.7langgeniusdifyCWE-791langgenius dify Jinja2 jinja2_transformer.py jinja2.Template special elements…
CVE-2026-690898.730.4getgravgravCWE-22Grav CMS before 2.0.11 Path Traversal via watermark
CVE-2026-186442.130.3danprosHTMLyCWE-22danpros HTMLy Delete Username Endpoint htmly.php unlink path traversal
CVE-2026-580608.729.6Legion of the Bouncy Castle Inc.BC-JAVACWE-789HSS public-key level count unbounded, enabling huge allocation on verify
CVE-2026-663107.129.5MicrosoftMicrosoft Edge for AndroidCWE-73Microsoft Edge for Android Information Disclosure Vulnerability
CVE-2026-663188.129.1MicrosoftMicrosoft Edge (Chromium-based)CWE-346Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
CVE-2026-690918.728.7AdmidioadmidioCWE-306Admidio before 5.0.11 Authentication Bypass via forum.php
CVE-2026-624166.928.7Sharp CorporationNetwork Scanner Tool LiteCWE-1188Network Scanner Tool and Network Scanner Tool Lite provided by Sharp Corporat…
CVE-2026-145579.128.6UnknownSoftMarket — Digital MarketplaceCWE-287SoftMarket <= 1.0.0 - Unauthenticated Account Takeover via Email Verification…
CVE-2026-186475.528.5jina-aireaderCWE-918jina-ai reader Crawler/Puppeteer crawler.ts isValidTLD server-side request fo…
CVE-2026-204646.528.3MediaTek, Inc.MediaTek chipsetCWE-787In hevc decoder, there is a possible out of bounds write due to an integer ov…
CVE-2025-156734.928.2UnknownImport and export users and customersCWE-22Import and export users and customers < 2.4.3 - Admin+ Arbitrary File Read
CVE-2026-690839.928.1siyuan-notesiyuanCWE-89SiYuan before v3.7.3 SQL Injection via fullTextSearchAssetContent
CVE-2026-414538.728.1krayinlaravel-crmCWE-89Krayin CRM < 2.2.4 Blind SQL Injection via LeadDataGrid.php rotten_lead Param…
CVE-2026-690868.328.1siyuan-notesiyuanCWE-22SiYuan before v3.7.3 Path Traversal via unvalidated avID
CVE-2025-156276.927.9TP-Link Systems Inc.Omada GatewaysCWE-321Hardcoded Cryptographic Keys in TP-Link Omada Adoption Protocol Authentication
CVE-2026-691857.527.6socketiosocket.ioCWE-20Socket.IO: Zero-attachment Memory Exhaustion
CVE-2026-480319.127.5dhaxgo-baseCWE-798Go Restful API Boilerplate: Hardcoded JWT Secret "random" Allows Token Forgery
CVE-2026-596526.927.1Legion of the Bouncy Castle Inc.BC-JAVACWE-90LDAP filter injection in legacy jdk1.4 LDAPStoreHelper
CVE-2026-87639.326.0Legion of the Bouncy Castle Inc.BC-JAVACWE-295Name Constraints bypass via trailing dot in rfc822Name and URI
CVE-2026-580598.725.8Legion of the Bouncy Castle Inc.BC-JAVACWE-407Quadratic-time escaping when stringifying X.500 distinguished names
CVE-2026-676118.625.8openemropenemrCWE-308OpenEMR 8.2.0 OAuth2 Password Grant Authentication Bypass via SMART Configura…
CVE-2026-580635.325.8Legion of the Bouncy Castle Inc.BC-JAVACWE-770BCFKS keystore load honours unbounded KDF cost from untrusted file
CVE-2026-399318.625.5openemropenemrCWE-434OpenEMR Authenticated SQL Injection via backup.php Import Feature
CVE-2026-676108.625.4openemropenemrCWE-306OpenEMR 8.2.0 OAuth2 Dynamic Client Registration Unauthorized FHIR Access
CVE-2026-129659.125.2UnknownSuper Store Finder WordPressCWE-89Super Store Finder <= 7.8 - Unauthenticated SQL Injection via ssf_tracking
CVE-2026-187337.525.0AWSstrands-agents-toolsCWE-1427Prompt injection bypasses shell tool consent gate in Strands Agents Tools
CVE-2026-692409.824.8sequelizesequelizeCWE-89Sequelize: SQL Injection (Oracle DB)
CVE-2026-689802.324.6Apache Software FoundationApache NiFiCWE-863Apache NiFi: Authorization Bypass for Parameter Context Asset Deletion
CVE-2026-691536.324.0postcsspostcssCWE-22PostCSS: incomplete fix of CVE-2026-45623 — attacker-controlled sourceMapping…
CVE-2026-685849.223.8siyuan-notesiyuanCWE-288SiYuan before v3.7.3 Authentication Bypass via Content Endpoints
CVE-2026-623547.723.8Apache Software FoundationApache NiFiCWE-863Apache NiFi: Incorrect Authorization for Parameter Context Validation Requests
CVE-2026-384446.123.1n/an/aCWE-79osTicket v1.18.3 is vulnerable to Stored Cross-Site Scripting (XSS) via the e…
CVE-2026-163009.822.9UnknownChamaWPCWE-862Chama < 1.0.13 - Unauthenticated Arbitrary User Password Reset
CVE-2026-690788.822.7mispcti-transmuteCWE-918Server-Side Request Forgery and Local File Disclosure in CTI-Transmute Evalua…
CVE-2026-679747.522.6n/an/aCWE-20A parser boundary flaw in the Software Bus Network (SBN) application's peer s…
CVE-2026-692447.122.5aio-libsaiohttpCWE-125AIOHTTP: Out-of-bounds heap read in C HTTP response parser error path (malfor…
CVE-2026-185855.322.5GL.iNetMT3000CWE-119GL.iNet MT2500 APPS-NAS nas-web.get_file_list heap-based overflow
CVE-2026-660658.422.2Q00ouroborosCWE-15Ouroboros: Untrusted project .env can still reach RCE via omitted execution-r…
CVE-2026-135865.321.9Legion of the Bouncy Castle Inc.BC-JAVACWE-770PKCS#12 MAC and bag-decryption KDF iteration-count bound (DoS)
CVE-2026-691927.721.7beaugundersonip-addressCWE-20ip-address: Address4 decodes leading-zero octets as decimal while resolvers d…
CVE-2026-581396.021.7duckdbduckdb-awsCWE-863DuckDB AWS Extension Security Policy Bypass via load_aws_credentials Procedure
CVE-2026-596468.721.6Legion of the Bouncy Castle Inc.BC-JAVACWE-789DTLS handshake reassembler allocates buffer from unchecked 24-bit length
CVE-2026-690756.921.5flowintelflowintelCWE-79Stored Cross-Site Scripting via Vue Template Injection in FlowIntel
CVE-2026-690849.921.5siyuan-notesiyuanCWE-89SiYuan before v3.7.3 SQL Injection via searchEmbedBlock
CVE-2026-186546.921.5AWSaws-cliCWE-322Disabled SSH host key verification in Amazon AWS CLI EMR helper commands
CVE-2026-23469.821.0Menulux Software Inc.Mobile AppCWE-639IDOR in Menulux Software's Mobile App
CVE-2026-93909.120.7TIMLEGGEXML::SigCWE-643XML::Sig versions before 0.71 for Perl allow XPath injection in ID lookup
CVE-2026-165728.620.6UnknownLogMyTripCWE-89LogMyTrip <= 1.9 - Unauthenticated SQL Injection via 'tid' Cookie
CVE-2026-480615.920.7litestar-orglitestarCWE-644Litestar: AllowedHostsMiddleware bypasses host validation via client-controll…
CVE-2026-108497.520.5zephyrprojectzephyrCWE-122Heap out-of-bounds write in Zephyr hawkBit OTA client when terminating server…
CVE-2026-679737.520.3n/an/aCWE-400An issue in the CFDP receive path of NASA cFS v7.0.1 allows attackers to caus…
CVE-2026-679767.520.3n/an/aCWE-400The Ref::SignalGen component of fprime framework v4.2.2 does not validate the…
CVE-2026-679777.520.3n/an/aCWE-400An integer overflow in the Svc::FileDownlink::SendPartial component of fprime…
CVE-2026-596389.320.1Legion of the Bouncy Castle Inc.BC-JAVACWE-297JSSE hostname verifier CN-fallback enabled by default despite documented opt-in
CVE-2026-691986.920.1beaugundersonip-addressCWE-20ip-address: a CIDR suffix on the parsed address suppresses special-use classi…
CVE-2026-692436.319.9aio-libsaiohttpCWE-444AIOHTTP: HTTP request smuggling via WebSocket upgrade
CVE-2026-185932.918.6vxcontrolPentAGICWE-264vxcontrol PentAGI Tool Management Protocol pentester.tmpl sandbox
CVE-2026-596509.318.2Legion of the Bouncy Castle Inc.BC-JAVACWE-20MTI/A0 DH agreement exponentiates unvalidated peer value
CVE-2026-128528.718.2Legion of the Bouncy Castle Inc.BC-JAVACWE-789MLS wire decoder allocates attacker-declared opaque length before bounds check
CVE-2026-135068.718.2Legion of the Bouncy Castle Inc.BC-JAVACWE-674Lazy ASN.1 sequence forcing resets nesting-depth guard
CVE-2026-146828.718.2Legion of the Bouncy Castle Inc.BC-JAVACWE-789Possible OOM from unbounded up-front allocation on a definite-length read
CVE-2026-596408.718.2Legion of the Bouncy Castle Inc.BC-JAVACWE-203OpenPGP CFB quick-check oracle active on symmetric/session-key paths
CVE-2026-596448.718.2Legion of the Bouncy Castle Inc.BC-JAVACWE-834MLS hash-ratchet honours arbitrary 32-bit generation counter from sender
CVE-2026-596458.718.2Legion of the Bouncy Castle Inc.BC-JAVACWE-674OER parser recurses without depth limit on self-referential IEEE 1609.2 schema
CVE-2026-596498.718.2Legion of the Bouncy Castle Inc.BC-JAVACWE-789OpenPGP user-attribute subpacket length bounded only by JVM max memory
CVE-2026-679787.518.2n/an/aCWE-20An issue in the SBN UDP interface of NASA cFS v7.0.1 allows attackers to caus…
CVE-2026-121857.118.2Legion of the Bouncy Castle Inc.BC-JAVACWE-789BKS/UBER keystore allocates from untrusted lengths before integrity check
CVE-2026-596476.918.2Legion of the Bouncy Castle Inc.BC-JAVACWE-770CRMF/CMP password-MAC honours unbounded iteration count
CVE-2026-596486.918.2Legion of the Bouncy Castle Inc.BC-JAVACWE-770OpenPGP Argon2 S2K honours attacker-chosen memory and passes
CVE-2026-150555.318.2Legion of the Bouncy Castle Inc.BC-JAVACWE-770PKCS#8 / PBES2 decryptors honour unbounded KDF cost from input
CVE-2026-467145.118.2misskey-devmisskeyCWE-674Misskey: Denial of Service via Uncontrolled Recursion in Theme Compilation
CVE-2026-165329.118.1UnknownLink LibraryCWE-89Link Library < 7.9.3 - Unauthenticated SQL Injection via the Front-End Link S…
CVE-2026-517759.817.9n/an/aCWE-89SQL injection vulnerability in Fastadmin v.1.6.1.20250430 allows an attacker …
CVE-2026-679727.517.7n/an/aCWE-200An issue in the CF_CFDP_RecvMd() component of NASA cFS v7.0.1 allows attacker…
CVE-2026-676165.317.0owen2345camaleon-cmsCWE-862Camaleon CMS 2.9.2 Missing Authorization via /admin/post_type drafts endpoint
CVE-2026-186557.116.9AWSamazon-mq-mcp-serverCWE-923Broker Credential and OAuth Token Disclosure in AWS Labs Amazon MQ MCP Server…
CVE-2026-690859.916.7siyuan-notesiyuanCWE-89SiYuan before v3.7.3 SQL Injection via searchDocs
CVE-2026-481156.316.5misskey-devmisskeyCWE-285Misskey: Improper Authorization in the Announcements API
CVE-2026-384466.116.3n/an/aCWE-79A stored cross-site scripting (XSS) vulnerability exists in osTicket 1.18.3 d…
CVE-2026-186821.316.2n/aOpenAkitaCWE-79OpenAkita File Upload API upload cross site scripting
CVE-2026-685879.216.0siyuan-notesiyuanCWE-862SiYuan before v3.7.3 Information Disclosure via getHeading*Transaction
CVE-2026-187365.315.7shlinkioShlinkCWE-918Shlink Server-Side Request Forgery via Short URL Title Auto-Resolution
CVE-2026-685869.215.5siyuan-notesiyuanCWE-862SiYuan before v3.7.3 Content Disclosure via getBacklinkDoc
CVE-2026-187377.115.4shlinkioShlinkCWE-89Shlink Blind SQL Injection via tags/stats orderBy Parameter
CVE-2026-690888.614.5getgravgravCWE-94Grav CMS 2.0.7 through 2.0.10 Arbitrary Method Invocation via Blueprint
CVE-2026-663136.814.5MicrosoftMicrosoft Edge (Chromium-based)CWE-346Microsoft Edge (Chromium-based) Tampering Vulnerability
CVE-2026-159309.414.4UnknownSimple MembershipCWE-862Simple Membership < 4.7.8 - Unauthenticated Administrator Account Takeover vi…
CVE-2026-165349.114.3UnknownImport and export users and customersCWE-269Import and export users and customers < 2.4.2 - Custom Role Privilege Escalat…
CVE-2026-679707.514.3n/an/aCWE-284Incorrect access control in the DS_SetDestPathCmd() component of NASA cFS v7.…
CVE-2026-160576.514.4UnknownContest GalleryCWE-862Contest Gallery < 30.0.7 - Author+ Arbitrary Post Deletion via post_cg_youtub…
CVE-2026-600116.914.2Sharp CorporationSharp MFPsCWE-425Sharp and Toshiba Tec MFPs (multifunction printers) fail to properly authoriz…
CVE-2026-525218.114.0n/an/aCWE-89A SQL injection vulnerability in Z-BlogPHP 1.7.5 allows authenticated attacke…
CVE-2026-185845.314.1GL.iNetE5800CWE-266GL.iNet E5800/E750/X2000/X3000/XE3000/XE300 eSIM LPA API v1 improper authoriz…
CVE-2026-162974.114.1UnknownClearfy CacheCWE-502Clearfy < 2.4.3 - Admin+ PHP Object Injection via Settings Import
CVE-2026-481138.513.8jpillorachiselCWE-863Chisel: ACL Bypass via Post-Handshake SSH Channel ExtraData Injection
CVE-2026-663225.413.5MicrosoftMicrosoft Edge (Chromium-based)CWE-346Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2026-690926.913.3AdmidioadmidioCWE-79Admidio before 5.0.11 Reflected XSS via SSO/SAML Endpoint
CVE-2025-156288.213.0TP-Link Systems Inc.Omada GatewaysCWE-798Hardcoded Certificates in TP-Link Omada Device Communications
CVE-2026-165398.112.9Unknownsm page duplicatorCWE-89SM Page Duplicator <= 1.0.0 - Editor+ SQL Injection via Page Duplication
CVE-2026-679697.512.9n/an/aCWE-20An issue in the HS_MonitorApplications() component of NASA cFS v7.0.1 allows …
CVE-2026-181089.812.8TIMLEGGENet::SAML2CWE-347Net::SAML2 versions before 0.86 for Perl allow authentication bypass because …
CVE-2026-182489.112.5@fastify/aws-lambda@fastify/aws-lambdaCWE-345@fastify/aws-lambda vulnerable to Lambda event spoofing via client-controlled…
CVE-2026-152312.712.5UnknownTag, Category, and Taxonomy ManagerCWE-639TaxoPress < 3.51.0 - Contributor+ Private Post Disclosure via IDOR
CVE-2026-467122.312.2misskey-devmisskeyCWE-639Misskey: Lack of proper permission checks in Direct Messaging feature
CVE-2026-692467.211.9guzzleguzzleCWE-180Guzzle: Noncanonical host can bypass host-based checks
CVE-2026-690877.111.9getgravgrav-plugin-formCWE-601Grav Form Plugin before 9.1.13 Open Redirect via form.value() Twig
CVE-2026-689306.511.9EugenyrusshCWE-666Russh: Channel-scoped server callbacks can be reached without an open channel
CVE-2026-690828.811.7mispcti-transmuteCWE-352Cross-Site Request Forgery in the Administrative User Deletion Endpoint
CVE-2026-580618.711.8Legion of the Bouncy Castle Inc.BC-JAVACWE-354CCM-family modes write plaintext to caller buffer before tag check
CVE-2026-663165.411.7MicrosoftMicrosoft Edge (Chromium-based)CWE-346Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2026-663175.411.7MicrosoftMicrosoft Edge (Chromium-based)CWE-346Microsoft Edge (Chromium-based) Tampering Vulnerability
CVE-2026-679757.511.4n/an/aCWE-284Incorrect access control in NASA cFS v7.0.1 allows attackers to arbitrarily r…
CVE-2026-662965.111.2ludoaskitCWE-79Reflected XSS in oaskit's default HTML error handler
CVE-2026-187187.110.9National Security AgencyGhidraCWE-427Ghidra Swift Demangler Analyzer Arbitrary Code Execution via Project State
CVE-2026-580629.310.5Legion of the Bouncy Castle Inc.BC-JAVACWE-295Stapled OCSP response accepted without binding to the checked certificate
CVE-2026-204658.110.6MediaTek, Inc.MediaTek chipsetCWE-122In wlan AP driver, there is a possible out of bounds write due to a missing b…
CVE-2026-185922.010.4n/aosCommerceCWE-74osCommerce Email Template Configuration EmailController.php EmailController s…
CVE-2025-155446.910.3TP-Link Systems Inc.Omada GatewaysCWE-759Weak Credential Protection During TP-Link Omada Device Adoption
CVE-2026-690906.910.3AdmidioadmidioCWE-862Admidio before 5.0.11 Cross-Organization Role Modification
CVE-2026-152546.510.3UnknownSimply Schedule AppointmentsCWE-863Simply Schedule Appointments < 1.6.12.11 - Contributor+ Sensitive Data Disclo…
CVE-2026-165636.510.3UnknownAcademy LMSCWE-284Academy LMS < 3.8.3 - Subscriber+ Arbitrary Lesson Content Disclosure via les…
CVE-2026-691517.610.0angularangularCWE-79Angular i18n: Cross-Site Scripting (XSS) via event-handler attributes
CVE-2025-156305.810.1TP-Link Systems Inc.Omada GatewaysCWE-362Device Provisioning Race Condition in TP-Link Omada Adoption Workflow
CVE-2026-180928.19.6TIMLEGGENet::SAML2CWE-347Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass via…
CVE-2026-691498.69.5angularangularCWE-79Angular SSR: Missing Fallback Raw-Content Serialization Escaping leads to Cro…
CVE-2026-685856.99.5siyuan-notesiyuanCWE-862SiYuan before v3.7.3 Metadata Disclosure via getBlockInfo
CVE-2026-692498.79.2pycacryptographyCWE-400python-cryptography: Duplicate self-signed intermediates can cause exponentia…
CVE-2026-185687.59.0TIMLEGGEXML::SigCWE-347XML::Sig versions from 0.29 before 0.72 for Perl allow signature verification…
CVE-2026-690977.38.6gitpython-developersGitPythonCWE-74GitPython before 3.1.53 Config Injection via Submodule Names
CVE-2026-692486.98.4pycacryptographyCWE-295python-cryptography verifier accepts wildcard DNS names allowing escape from …
CVE-2026-477468.98.1misskey-devmisskeyCWE-367Misskey: JSON-LD signature validation + compaction is vulnerable to timing at…
CVE-2026-182436.98.1HP IncHP DesignJet T3500CWE-79HP DesignJet T3500 - Potential Cross-Site Scripting (XSS)
CVE-2026-204826.58.0MediaTek, Inc.MediaTek chipsetCWE-770In wlan STA FW, there is a possible system becoming unresponsive due to loggi…
CVE-2025-156296.97.9TP-Link Systems Inc.Omada GatewaysCWE-331Weak Session Key Generation in TP-Link Omada Adoption Protocol
CVE-2026-133406.18.0UnknownSVG SupportCWE-79SVG Support < 2.5.17 - Author+ Stored XSS via .svgz Sanitization Bypass
CVE-2026-162742.77.7UnknownClassified ListingCWE-862Classified Listing < 5.4.4 - Contributor+ Unpublished Post Content Disclosure…
CVE-2026-162762.77.7UnknownClassified ListingCWE-862Classified Listing < 5.4.4 - Contributor+ Store Revenue Total Disclosure via …
CVE-2025-156315.77.5TP-Link Systems Inc.Omada GatewaysCWE-759Weak Credential Storage in TP-Link Omada Devices
CVE-2026-692478.27.3pycacryptographyCWE-208cryptography: PKCS#7 EnvelopedData decryption exposes a Bleichenbacher oracle…
CVE-2026-180897.57.3TIMLEGGENet::SAML2CWE-295Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass by …
CVE-2026-467139.27.2misskey-devmisskeyCWE-347Misskey: JSON-LD signature validation + compaction may lead to improper activ…
CVE-2026-128038.77.1Legion of the Bouncy Castle Inc.BC-JAVACWE-354KCCMBlockCipher MAC does not bind nonce when AAD is absent (cross-nonce AEAD …
CVE-2026-128608.77.2Legion of the Bouncy Castle Inc.BC-JAVACWE-347RSA PKCS#1 verification skips last two hash bytes in NULL-omitted path
CVE-2026-596398.77.2Legion of the Bouncy Castle Inc.BC-JAVACWE-347CMS verifySignatures returns true for SignedData with zero signers
CVE-2026-596418.77.1Legion of the Bouncy Castle Inc.BC-JAVACWE-345S/MIME validator trusts signer-asserted signingTime for path validation
CVE-2026-596438.77.2Legion of the Bouncy Castle Inc.BC-JAVACWE-347OpenPGP inline-signature policy failures silently ignored
CVE-2026-596517.17.2Legion of the Bouncy Castle Inc.BC-JAVACWE-326BKS keystore accepts legacy version with 16-bit integrity MAC key
CVE-2026-472118.47.1Q00ouroborosCWE-426Ouroboros: Remote Code Execution via Untrusted Project-Directory .env
CVE-2026-128028.76.9Legion of the Bouncy Castle Inc.BC-JAVACWE-354CMS AuthEnvelopedData fails to enforce tag-length on decryption
CVE-2026-281475.46.7Unlimited ElementsUnlimited Elements For Elementor (Free Widgets, Addons, Templates)CWE-862WordPress Unlimited Elements For Elementor (Free Widgets, Addons, Templates) …
CVE-2026-186481.96.8BlixEmail Blue Mail Calendar AppCWE-22Blix Email Blue Mail Calendar App react-native-receive-sharing-intent FileDir…
CVE-2026-94879.16.4TIMLEGGEXML::SigCWE-347XML::Sig versions before 0.71 for Perl allow signature wrapping via duplicate ID
CVE-2026-186515.46.4Red HatRed Hat Directory Server 11CWE-287389-ds-base: 389-ds-base: sasl plain bind installs connection credentials bef…
CVE-2026-204666.16.3MediaTek, Inc.MediaTek chipsetCWE-787In sec boot, there is a possible escalation of privilege due to a heap buffer…
CVE-2026-525205.46.1n/an/aCWE-79Emlog CMS <= 2.6.14 contains a stored cross-site scripting (XSS) vulnerabilit…
CVE-2026-491315.16.2Deciso B.V.OPNsenseCWE-79OPNsense < 26.1.9 Stored XSS via Firewall Rule Description Field
CVE-2026-204714.66.1MediaTek, Inc.MediaTek chipsetCWE-787In DA, there is a possible out of bounds write due to a missing bounds check.…
CVE-2026-566085.36.0HCL SoftwareHCL iControlCWE-284HCL iControl is affected by multiple security vulnerabilities(CVE-2026-56608 …
CVE-2026-675989.15.9emlogemlogCWE-295Emlog Pro 2.6.23 TLS Certificate Validation Disabled in ai.php
CVE-2026-153836.15.9UnknownBlog Floating ButtonCWE-79Blog Floating Button <= 1.4.20 - Unauthenticated Stored XSS via User-Agent He…
CVE-2026-159316.15.9UnknownSimple MembershipCWE-79Simple Membership < 4.7.8 - Unauthenticated Stored XSS via PayPal Subscriptio…
CVE-2026-162894.35.8UnknownProfileGridCWE-862ProfileGrid < 6.0.0.0 - Subscriber+ Group Join Request Disclosure via pm_get_…
CVE-2026-676174.85.7microwebermicroweberCWE-79Microweber CMS 2.0.20 Stored XSS via tag_names Parameter
CVE-2026-690945.35.5AdmidioadmidioCWE-639Admidio before 5.0.11 IDOR via save_temporary mylist_function.php
CVE-2026-480639.35.3WhiskeySocketsBaileysCWE-290Baileys has message upsert / hist sync spoofing and app state corruption when…
CVE-2026-128168.75.3Legion of the Bouncy Castle Inc.BC-JAVACWE-354IESEngine stream-mode MAC forgery via length-dependent KDF split
CVE-2026-128178.75.3Legion of the Bouncy Castle Inc.BC-JAVACWE-354OpenPGP AEAD decryption skips final tag on chunk-aligned data
CVE-2026-596428.75.3Legion of the Bouncy Castle Inc.BC-JAVACWE-354CMS AuthenticatedData content not bound to MAC when authAttrs present
CVE-2026-66955.54.8Red HatRed Hat Enterprise Linux 6CWE-805Gimp: gimp: remote code execution via crafted paa file
CVE-2026-658755.14.9baserCMS Users CommunityBaserCMSCWE-1236BaserCMS provided by baserCMS Users Community contains a CSV file injection v…
CVE-2026-676734.64.9n/an/aCWE-121A stack-based buffer overflow vulnerability exists in the cmd_edl function of…
CVE-2026-152604.34.9UnknownGEO my WPCWE-639Geo My WP < 4.5.5.3 - Subscriber+ Arbitrary Geolocation Record Modification a…
CVE-2026-165644.34.9UnknownDokan: AI Powered WooCommerce Multivendor Marketplace SolutionCWE-639Dokan < 5.0.9 - Vendor+ Arbitrary Order Status Modification via orders/bulk-a…
CVE-2026-165654.34.9UnknownDokan: AI Powered WooCommerce Multivendor Marketplace SolutionCWE-639Dokan < 5.0.9 - Vendor+ Cross-Vendor Product Attribute Modification via Produ…
CVE-2026-635452.44.8Sharp CorporationSharp MFPsCWE-459Sharp and Toshiba Tec MFPs (multifunction printers) caches data internally wh…
CVE-2026-66945.54.6Red HatRed Hat Enterprise Linux 6CWE-120Gimp: gimp file-png plugin: denial of service via oversized apng trns chunk
CVE-2026-676124.84.5openemropenemrCWE-79OpenEMR 8.2.0 Stored XSS via import_template.php Template Management
CVE-2026-676098.53.9Telenia SoftwareTVoxCWE-250Telenia TVox 26.5.3 Privilege Escalation via Insecure sudoers Configuration
CVE-2026-692456.53.6guzzleguzzleCWE-180Guzzle: Noncanonical cookie domain keeps subdomain scope
CVE-2026-185084.43.6Red HatRed Hat Hardened ImagesCWE-59Tar: tar: --one-top-level hardlink targets not confined to top-level director…
CVE-2026-687425.53.5Red HatRed Hat Enterprise Linux 10CWE-125Sssd: sssd: nss responder out-of-bounds read via unchecked addrlen in gethost…
CVE-2026-186427.83.4TUBITAK BILGEM Software Technologies Research Instituteeta-otp-lockCWE-502Remote Code Execution via Insecure Deserialization in TÜBİTAK BİLGEM's eta-ot…
CVE-2026-47937.33.3SynologySynology AssistantCWE-276An incorrect default permissions vulnerability in Synology Assistant before 7…
CVE-2025-92917.73.1TP-Link Systems Inc.Omada GatewaysCWE-295Improper Certificate Validation in TP-Link Omada Cloud Communications
CVE-2026-204706.23.1MediaTek, Inc.MediaTek chipsetCWE-926In Telephony, there is a possible information disclosure due to a missing per…
CVE-2026-204837.72.7MediaTek, Inc.MediaTek chipsetCWE-862In Telephony, there is a possible escalation of privilege due to a missing pe…
CVE-2026-204884.42.5MediaTek, Inc.MediaTek chipsetCWE-125In display, there is a possible information disclosure due to a missing bound…
CVE-2026-204894.42.5MediaTek, Inc.MediaTek chipsetCWE-125In display, there is a possible information disclosure due to an integer over…
CVE-2026-204676.02.3MediaTek, Inc.MediaTek chipsetCWE-749In apusys, there is a possible escalation of privilege due to a missing bound…
CVE-2026-204736.02.3MediaTek, Inc.MediaTek chipsetCWE-416In display, there is a possible memory corruption due to use after free. This…
CVE-2026-204756.02.3MediaTek, Inc.MediaTek chipsetCWE-787In display, there is a possible out of bounds write due to a missing bounds c…
CVE-2026-204776.02.3MediaTek, Inc.MediaTek chipsetCWE-787In display, there is a possible out of bounds write due to a missing bounds c…
CVE-2026-689458.82.1angularangularCWE-345Angular: Cache-Key Ambiguity in HttpTransferCache Leading to Cross-Request Re…
CVE-2026-204844.42.0MediaTek, Inc.MediaTek chipsetCWE-201In TFA, there is a possible information disclosure due to a missing permissio…
CVE-2026-186056.41.9CheckMALAppCheck ProCWE-426CheckMAL AppCheck Pro Kernel Mini-Filter Driver AppCheckD.sys uncontrolled se…
CVE-2026-95938.41.8Endress+HauserFDI Package libraryCWE-427iDTM FDI Unauthorized Debug Interface Enablement
CVE-2026-407177.81.8DellMonitor driverCWE-59Dell Monitor driver, version 1.0.0.0, contains an Improper Link Resolution Be…
CVE-2026-204686.01.8MediaTek, Inc.MediaTek chipsetCWE-787In apusys, there is a possible escalation of privilege due to a confused depu…
CVE-2026-204696.01.8MediaTek, Inc.MediaTek chipsetCWE-123In trusted_mem, there is a possible escalation of privilege due to improper i…
CVE-2026-414478.51.7Zucchetti S.p.a.FirmaCheckCWE-426FirmaCheck < 1.3.16 DLL Hijacking via Unvalidated OpenSSL Configuration Path
CVE-2026-204866.71.7MediaTek, Inc.MediaTek chipsetCWE-754In imgsensor, there is a possible application crash due to incorrect error ha…
CVE-2026-204816.01.6MediaTek, Inc.MediaTek chipsetCWE-787In geniezone, there is a possible out of bounds write due to a missing bounds…
CVE-2026-204976.01.6MediaTek, Inc.MediaTek chipsetCWE-787In geniezone, there is a possible out of bounds write due to a missing bounds…
CVE-2026-204986.01.7MediaTek, Inc.MediaTek chipsetCWE-1287In geniezone, there is a possible escalation of privilege due to a missing pe…
CVE-2026-599137.81.6DellDisplay and Peripheral Manager (DDPM Mac)CWE-306Dell Display and Peripheral Manager (DDPM Mac), versions prior to 2.3.0.1005,…
CVE-2026-204964.41.6MediaTek, Inc.MediaTek chipsetCWE-125In geniezone, there is a possible out of bounds read due to a missing bounds …
CVE-2026-185811.91.6ggml-orgllama.cppCWE-617ggml-org llama.cpp Jinja Minja Template parser.cpp assertion
CVE-2026-186067.11.5RazerRzUpdateServiceCWE-266Razer RzUpdateService Named Pipe RzUpdateService.exe privileges management
CVE-2026-690937.11.5AdmidioadmidioCWE-352Admidio before 5.0.11 CSRF via category-report preferences
CVE-2026-204765.51.5MediaTek, Inc.MediaTek chipsetCWE-787In ccci, there is a possible out of bounds read due to a missing bounds check…
CVE-2026-491325.11.5Deciso B.V.OPNsenseCWE-79OPNsense < 26.1.9 Stored XSS via Certificate Description Field
CVE-2026-204957.81.4MediaTek, Inc.MediaTek chipsetCWE-862In Bluetooth driver, there is a possible permission bypass due to a missing p…
CVE-2026-154306.21.3WellbiaXIGNCODE3CWE-269CVE-2026-15430
CVE-2026-204856.01.4MediaTek, Inc.MediaTek chipsetCWE-787In HFRP, there is a possible out of bounds write due to a missing bounds chec…
CVE-2026-204724.41.3MediaTek, Inc.MediaTek chipsetCWE-787In TFA, there is a possible out of bounds write due to a missing bounds check…
CVE-2026-204785.51.2MediaTek, Inc.MediaTek chipsetCWE-787In Audio HAL, there is a possible out of bounds write due to a heap buffer ov…
CVE-2026-204805.51.2MediaTek, Inc.MediaTek chipsetCWE-122In Audio HAL, there is a possible out of bounds write due to a heap buffer ov…
CVE-2026-184774.41.2Red HatRed Hat Hardened ImagesCWE-367Tar: tar: toctou in incremental dumpdir 'x' rename handling allows restore pa…
CVE-2026-186041.91.1textPlusText Message and Call AppCWE-926textPlus Text Message and Call App com.gogii.textplus DialerActivity improper…
CVE-2026-599127.81.1DellDisplay and Peripheral Manager (DDPM Mac)CWE-284Dell Display and Peripheral Manager (DDPM Mac), versions prior to 2.3.0.1005,…
CVE-2026-204915.51.1MediaTek, Inc.MediaTek chipsetCWE-787In med, there is a possible out of bounds write due to an incorrect bounds ch…
CVE-2026-204945.51.1MediaTek, Inc.MediaTek chipsetCWE-125In wifi, there is a possible out of bounds read due to a missing bounds check…
CVE-2026-122595.31.0nltknltk/nltkCWE-494Improper Input Validation in nltk/nltk
CVE-2026-204904.41.0MediaTek, Inc.MediaTek chipsetCWE-125In ccci, there is a possible out of bounds read due to a missing bounds check…
CVE-2026-204934.41.0MediaTek, Inc.MediaTek chipsetCWE-787In wifi, there is a possible out of bounds write due to a missing bounds chec…
CVE-2026-566096.50.9HCL SoftwareHCL iControlCWE-327HCL iControl is affected by multiple security vulnerabilities(CVE-2026-56608 …
CVE-2026-204746.00.7MediaTek, Inc.MediaTek chipsetCWE-367In display, there is a possible escalation of privilege due to a race conditi…
CVE-2026-204925.50.3MediaTek, Inc.MediaTek chipsetCWE-367In Audio HAL, there is a possible system becoming unresponsive due to a race …
CVE-2026-185910.90.2MeeshoOnline Shopping AppCWE-310Meesho Online Shopping App com.meesho.supply cleartext storage
CVE-2026-03927.30.0Latvijas Valsts radio un televīzijas centrs (LVRTC)eParakstītājs 3.0CWE-295eParakstītājs 3.0 for Windows – remote code execution via unauthenticated aut…

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-08-03 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.