AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H L 9.4 .0261 84.1 —
AFFECTED Product Versions Fixed UFO < 3.0.8 – —
TIMELINE Aug 11 Reserved by CNA Aug 12 Published (CNA: GitHub_M)
433 CVEs published August 12, 2026: 69 critical, 149 high, 185 medium, 16 low; 0 in KEV; 11 with a public exploit reference; 14 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 408 in the results table.
| MTD | YTD | 2025 same span | 2025 full | |
|---|---|---|---|---|
| CVEs published | 4084 | 12889 | 1410 | 2563 |
| KEV catalog size | 1670 | |||
789 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; medians are over each vendor's YTD disclosures.
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| linux | 412 | 1997 | 234 | 1292 | 98 | 0 | 27 | 3 | 0.2 | 7.8 | .0017 | +399 |
| microsoft | 439 | 1800 | 131 | 1216 | 428 | 8 | 378 | 33 | 1.8 | 7.8 | .0038 | +385 |
| 49 | 461 | 72 | 140 | 228 | 18 | 73 | 5 | 1.1 | 6.5 | .0023 | +49 | |
| red hat | 125 | 347 | 22 | 165 | 142 | 18 | 4 | 0 | 0.0 | 7.1 | .0025 | +111 |
| apple | 2 | 246 | 57 | 68 | 112 | 2 | 93 | 7 | 2.8 | 7.1 | .0027 | +2 |
| canonical | 11 | 14 | 9 | 3 | 2 | 0 | 0 | 0 | 0.0 | 9.9 | .0029 | +11 |
| suse | 5 | 5 | 1 | 2 | 2 | 0 | 0 | 0 | 0.0 | 7.3 | .0022 | +5 |
| android | 0 | 1 | 0 | 1 | 0 | 0 | 16 | 1 | 100.0 | 8.4 | .0171 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cisco | 31 | 51 | 9 | 25 | 9 | 0 | 96 | 14 | 27.5 | 7.8 | .0033 | +31 |
| fortinet | 7 | 25 | 3 | 6 | 12 | 1 | 28 | 6 | 24.0 | 6.0 | .0051 | +7 |
| palo alto networks | 0 | 15 | 0 | 1 | 7 | 5 | 14 | 2 | 13.3 | 4.7 | .0028 | -10 |
| sonicwall | 10 | 12 | 3 | 5 | 4 | 0 | 17 | 2 | 16.7 | 7.8 | .0024 | +10 |
| vmware | 0 | 12 | 4 | 7 | 0 | 1 | 21 | 0 | 0.0 | 8.7 | .0044 | 0 |
| netgear | 9 | 9 | 0 | 0 | 5 | 4 | 8 | 0 | 0.0 | 4.3 | .0031 | +9 |
| ivanti | 3 | 8 | 1 | 3 | 0 | 0 | 33 | 5 | 62.5 | 7.9 | .5751 | +3 |
| checkpoint | 1 | 5 | 4 | 1 | 0 | 0 | 3 | 2 | 40.0 | 9.3 | .2062 | +1 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| apache | 95 | 232 | 45 | 116 | 70 | 1 | 40 | 2 | 0.9 | 7.5 | .0048 | +95 |
| mozilla | 1 | 73 | 42 | 26 | 5 | 0 | 13 | 0 | 0.0 | 9.1 | .0031 | +1 |
| gitlab | 13 | 28 | 0 | 8 | 16 | 2 | 4 | 2 | 7.1 | 5.1 | .0026 | +13 |
| github | 4 | 6 | 0 | 4 | 2 | 0 | 0 | 0 | 0.0 | 8.1 | .0040 | +4 |
| docker | 1 | 4 | 0 | 1 | 3 | 0 | 1 | 0 | 0.0 | 5.7 | .0014 | +1 |
| wordpress | 1 | 4 | 1 | 2 | 1 | 0 | 5 | 2 | 50.0 | 8.8 | .3700 | +1 |
| drupal | 0 | 1 | 1 | 0 | 0 | 0 | 5 | 1 | 100.0 | 9.8 | .8832 | 0 |
| kubernetes | 0 | 1 | 0 | 0 | 0 | 1 | 0 | 0 | 0.0 | 2.4 | .0024 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| oracle | 0 | 1113 | 212 | 539 | 304 | 57 | 40 | 3 | 0.3 | 7.6 | .0031 | 0 |
| ibm | 100 | 208 | 48 | 97 | 60 | 3 | 7 | 1 | 0.5 | 7.7 | .0029 | +100 |
| adobe | 60 | 100 | 22 | 51 | 22 | 1 | 75 | 4 | 4.0 | 7.8 | .0036 | +59 |
| progress | 16 | 39 | 11 | 20 | 8 | 0 | 9 | 1 | 2.6 | 8.1 | .0027 | +16 |
| solarwinds | 0 | 20 | 16 | 1 | 1 | 0 | 11 | 4 | 20.0 | 9.1 | .0050 | 0 |
| veeam | 10 | 12 | 3 | 7 | 2 | 0 | 4 | 0 | 0.0 | 8.6 | .0027 | +10 |
| zohocorp | 2 | 5 | 2 | 2 | 1 | 0 | 0 | 0 | 0.0 | 8.5 | .0099 | +2 |
| atlassian | 0 | 3 | 0 | 3 | 0 | 0 | 13 | 0 | 0.0 | 8.0 | .0026 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| d-link | 15 | 23 | 15 | 0 | 6 | 1 | 26 | 1 | 4.3 | 9.3 | .0209 | +15 |
| siemens | 17 | 18 | 1 | 16 | 1 | 0 | 1 | 0 | 0.0 | 7.3 | .0011 | +17 |
| hikvision | 0 | 7 | 0 | 4 | 2 | 0 | 2 | 1 | 14.3 | 7.2 | .0025 | 0 |
| bosch | 0 | 3 | 0 | 3 | 0 | 0 | 0 | 0 | 0.0 | 8.1 | .0028 | 0 |
| schneider electric | 0 | 3 | 1 | 2 | 0 | 0 | 1 | 0 | 0.0 | 8.7 | .0020 | 0 |
| synology | 1 | 1 | 0 | 1 | 0 | 0 | 0 | 0 | 0.0 | 7.3 | .0013 | +1 |
| honeywell | 0 | 1 | 0 | 0 | 1 | 0 | 0 | 0 | 0.0 | 6.9 | .0031 | 0 |
| mitsubishi electric | 0 | 1 | 0 | 1 | 0 | 0 | 0 | 0 | 0.0 | 7.1 | .0013 | 0 |
| Vendor | MTD | YTD | C | H | M | L | KEV | KEV YTD | KEV/100 | Med CVSS | Med EPSS | Δ |
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| mongodb | 32 | 58 | 3 | 37 | 16 | 2 | 2 | 0 | 0.0 | 7.1 | .0024 | +32 |
| surrealdb | 0 | 57 | 3 | 26 | 25 | 3 | 0 | 0 | 0.0 | 7.1 | .0025 | 0 |
| zephyrproject | 22 | 44 | 0 | 15 | 23 | 6 | 0 | 0 | 0.0 | 6.4 | .0017 | +22 |
| grafana | 1 | 42 | 3 | 14 | 22 | 3 | 0 | 0 | 0.0 | 6.5 | .0033 | -3 |
| netty | 1 | 42 | 6 | 27 | 8 | 1 | 0 | 0 | 0.0 | 7.5 | .0046 | +1 |
| legion of the bouncy castle | 34 | 41 | 5 | 27 | 9 | 0 | 0 | 0 | 0.0 | 8.7 | .0026 | +34 |
| jfrog | 25 | 38 | 1 | 13 | 23 | 1 | 0 | 0 | 0.0 | 6.5 | .0023 | +25 |
| sap_se | 34 | 37 | 4 | 7 | 22 | 4 | 2 | 0 | 0.0 | 5.9 | .0022 | +34 |
| CVE | EPSS | %ile | CVSS |
|---|---|---|---|
| CVE-2026-8037 | .9931 | 99.9 | 9.8 |
| CVE-2026-63030 | .9560 | 99.9 | 9.8 |
| CVE-2026-39808 | .9121 | 99.8 | — |
| CVE-2026-34486 | .8293 | 99.6 | 7.5 |
| CVE-2026-50522 | .7698 | 99.5 | 9.8 |
| CVE-2026-15410 | .7635 | 99.5 | 7.2 |
| CVE-2026-15409 | .7422 | 99.4 | 10.0 |
| CVE-2026-25089 | .7360 | 99.4 | 9.8 |
| CVE-2026-16232 | .7330 | 99.4 | 9.3 |
| CVE-2026-60137 | .7310 | 99.4 | 5.9 |
| CVE | CVSS | EPSS | Note |
|---|---|---|---|
| CVE-2026-15409 | 10.0 | .7422 | KEV |
| CVE-2026-72898 | 10.0 | .1040 | KEV |
| CVE-2026-8985 | 10.0 | .0660 | |
| CVE-2026-6516 | 10.0 | .0473 | |
| CVE-2026-47668 | 10.0 | .0434 | |
| CVE-2026-48362 | 10.0 | .0207 | |
| CVE-2026-73299 | 10.0 | .0121 | |
| CVE-2026-44359 | 10.0 | .0100 | |
| CVE-2026-45618 | 10.0 | .0095 | |
| CVE-2025-71389 | 10.0 | .0093 |
| Vendor | CVEs |
|---|---|
| oracle | 1109 |
| linux | 1064 |
| microsoft | 1043 |
| 452 | |
| red hat | 234 |
| apache | 200 |
| ibm | 200 |
| apple | 169 |
| adobe | 88 |
| mozilla | 68 |
| Vendor | KEV |
|---|---|
| microsoft | 33 |
| cisco | 14 |
| apple | 7 |
| fortinet | 6 |
| 5 | |
| ivanti | 5 |
| adobe | 4 |
| langflow | 4 |
| solarwinds | 4 |
| synacor | 4 |
| Ecosystem | Advisories |
|---|---|
| Maven | 64 |
| PyPI | 5 |
| Go | 3 |
| npm | 3 |
| Packagist | 2 |
| crates.io | 2 |
| NuGet | 1 |
| CVE | Vendor | Days |
|---|---|---|
| CVE-2021-27137 | DD-WRT | 0 |
| CVE-2023-4346 | KNX Association | 0 |
| CVE-2025-68686 | Fortinet | 0 |
| CVE-2026-0770 | Langflow | 0 |
| CVE-2026-15409 | SonicWall | 0 |
| CVE-2026-15410 | SonicWall | 0 |
| CVE-2026-16232 | checkpoint | 0 |
| CVE-2026-16812 | Arista Networks | 0 |
| CVE-2026-18556 | N-able | 0 |
| CVE-2026-18577 | N-able | 0 |
| CVE | Vendor | Due | Days over |
|---|---|---|---|
| CVE-2021-27104 | Accellion | 2021-11-17 | 1729 |
| CVE-2021-27102 | Accellion | 2021-11-17 | 1729 |
| CVE-2021-27101 | Accellion | 2021-11-17 | 1729 |
| CVE-2021-27103 | Accellion | 2021-11-17 | 1729 |
| CVE-2021-21017 | Adobe | 2021-11-17 | 1729 |
| CVE-2021-28550 | Adobe | 2021-11-17 | 1729 |
| CVE-2021-42013 | Apache | 2021-11-17 | 1729 |
| CVE-2021-41773 | Apache | 2021-11-17 | 1729 |
| CVE-2021-30858 | Apple | 2021-11-17 | 1729 |
| CVE-2021-30860 | Apple | 2021-11-17 | 1729 |
EXPLOIT PUBLISHED — CVE-2017-10271 (Oracle Corporation WebLogic Server). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2018-11138. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2018-15982. Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2018-20250 (Check Point Software Technologies Ltd. WinRAR). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2018-7602 (Drupal core). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2018-8120 (Microsoft Windows Server 2008). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2018-8174 (Microsoft Windows 7). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2019-0752 (Microsoft Internet Explorer 11). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2019-1069 (Microsoft Windows 10 Version 1703). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2019-1458 (Microsoft Windows). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2019-1579 (Palo Alto Networks GlobalProtect Portal/Gateway Interface). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2020-0787 (Microsoft Windows). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2020-0796 (Microsoft Windows 10 Version 1903 for 32-bit Systems). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2020-3153 (Cisco AnyConnect Secure Mobility Client). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2020-3433 (Cisco AnyConnect Secure Mobility Client). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2021-1675 (Microsoft Windows 10 Version 1809). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2021-1732 (Microsoft Windows 10 Version 1803). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2021-21972 (VMware vCenter Server). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2021-21975 (VMware vRealize Operations). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2021-21983 (VMware vRealize Operations). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2021-21985 (VMware vCenter Server and VMware Cloud Foundation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2021-26855 (Microsoft Exchange Server 2016 Cumulative Update 19). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2021-27065 (Microsoft Exchange Server 2019). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2023-42787 (Fortinet FortiAnalyzer). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2024-14042 (Open5GS). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-10681 (zephyrproject zephyr). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-14548 (Unknown Ray Enterprise Translation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-14549 (Unknown Ray Enterprise Translation). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-17022 (Unknown Salon Booking System). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-19351 (dresende node-sql-query). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-19361 (macrozheng mall). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-19376 (Uasoft Badaso). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-19382 (Almico Speedfan). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-45799 (square wire). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-5241 (huggingface/transformers). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-55653 (Red Hat Enterprise Linux 10). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-55654 (Red Hat Enterprise Linux 10). Public exploit reference added.
EXPLOIT PUBLISHED — CVE-2026-67579 (ash-project ash). Public exploit reference added.
RESCORED — CVE-2019-2725 (Oracle Corporation Tape Library ACSLS). CVSS 7.5 → 9.8 (NVD).
RESCORED — CVE-2023-42787 (Fortinet FortiAnalyzer). CVSS 6.2 → 6.5 (NVD).
RESCORED — CVE-2024-14043 (Open5GS). CVSS 5.3 → 2.1 (NVD).
RESCORED — CVE-2024-26882 (Linux). CVSS 7.3 → 7.8 (NVD).
RESCORED — CVE-2024-31245 (ConvertKit). CVSS 5.3 → 7.5 (NVD).
RESCORED — CVE-2024-31249 (WPKube Subscribe To Comments Reloaded). CVSS 5.3 → 7.5 (NVD).
RESCORED — CVE-2025-61848 (Fortinet FortiManager). CVSS 6.5 → 7.2 (NVD).
RESCORED — CVE-2026-49261 (MariaDB server). CVSS 10 → 9.8 (NVD).
RESCORED — CVE-2026-4942 (IBM i). CVSS 5.9 → 7.5 (NVD).
RESCORED — CVE-2026-50656 (Microsoft Malware Protection Engine). CVSS 7.8 → 7 (NVD).
RESCORED — CVE-2026-5241 (huggingface/transformers). CVSS 8 → 9.6 (NVD).
RESCORED — CVE-2026-55653 (Red Hat Enterprise Linux 10). CVSS 4.3 → 6.5 (NVD).
RESCORED — CVE-2026-55655 (Red Hat Enterprise Linux 10). CVSS 5 → 6.1 (NVD).
ENRICHED — CVE-2018-9206 (Blueimp jQuery-File-Upload). Received CVSS 9.8 and CPE data from NVD.
ENRICHED — CVE-2021-21983 (VMware vRealize Operations). Received CVSS 6.5 and CPE data from NVD.
ENRICHED — CVE-2022-50073 (Linux). Received CVSS 5.5 and CPE data from NVD.
433 CVEs published. 25 box scores and 375 table rows below; the remaining 33 continue on page 2 — every CVE is listed, nothing truncated.
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H L 9.4 .0261 84.1 —
AFFECTED Product Versions Fixed UFO < 3.0.8 – —
TIMELINE Aug 11 Reserved by CNA Aug 12 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L P N N N N N 6.9 .0162 74.0 —
AFFECTED Product Versions Fixed UFO < 3.0.8 – —
TIMELINE Aug 11 Reserved by CNA Aug 12 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L H N C H H L 9.0 .0145 71.2 —
AFFECTED Product Versions Fixed Red Hat Advanced Cluster Management for Kubernetes 2 unspecified —
TIMELINE Aug 6 Reserved by CNA Aug 12 Published (CNA: redhat)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N C H H H 10.0 .0121 66.0 —
AFFECTED Product Versions Fixed prompty < 0.1.5 – —
TIMELINE Aug 11 Reserved by CNA Aug 12 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H N N 7.5 .0120 65.6 —
AFFECTED Product Versions Fixed FUXA = 1.3.0 – —
TIMELINE May 19 Reserved by CNA Aug 12 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0104 61.3 —
AFFECTED Product Versions Fixed Db2 Mirror for i 7.4 – —
TIMELINE Jul 24 Reserved by CNA Aug 12 Published (CNA: ibm)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N C H H H 9.9 .0102 60.4 —
AFFECTED Product Versions Fixed LXD 4.0.0 – —
TIMELINE Jul 16 Reserved by CNA Aug 12 Published (CNA: canonical)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N C H H N 9.6 .0088 56.2 —
AFFECTED Product Versions Fixed UpSnap < 5.4.0 – —
TIMELINE May 30 Reserved by CNA Aug 12 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0081 53.8 —
AFFECTED Product Versions Fixed i 7.6 – —
TIMELINE Aug 3 Reserved by CNA Aug 12 Published (CNA: ibm)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U L L L 7.3 .0078 52.9 —
AFFECTED Product Versions Fixed Apache Airflow 3.3.0 – —
TIMELINE Jul 29 Reserved by CNA Aug 12 Published (CNA: apache)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N N N L 5.5 .0071 50.5 —
AFFECTED Product Versions Fixed Open5GS 2.7.0 – 2.7.7
TIMELINE Aug 9 Reserved by CNA Aug 12 Published (CNA: VulDB)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N H H H 8.7 .0068 49.3 —
AFFECTED Product Versions Fixed Container-Migration-Solution-Accelerator <= 2.1.2 – —
TIMELINE Aug 11 Reserved by CNA Aug 12 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0062 46.7 —
AFFECTED Product Versions Fixed WolfStack unspecified —
TIMELINE Aug 12 Reserved by CNA Aug 12 Published (CNA: VulnCheck)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0062 46.6 —
AFFECTED Product Versions Fixed UpSnap >= 4.4.1, < 5.4.0 – —
TIMELINE Jun 1 Reserved by CNA Aug 12 Published (CNA: GitHub_M)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N L N N N L 2.1 .0061 46.4 —
AFFECTED Product Versions Fixed Open5GS 2.7.0 – 2.7.7
TIMELINE Aug 9 Reserved by CNA Aug 12 Published (CNA: VulDB)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H H H 8.8 .0061 46.4 —
AFFECTED Product Versions Fixed Apache Airflow 3.3.0 – —
TIMELINE Jul 29 Reserved by CNA Aug 12 Published (CNA: apache)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0059 45.4 —
AFFECTED Product Versions Fixed wpmudev-updates unspecified —
TIMELINE Jul 17 Reserved by CNA Aug 12 Published (CNA: WPScan)
AV AC PR UI S C I A CVSS EPSS %ile KEV N H N N U H H H 8.1 .0059 45.3 —
AFFECTED Product Versions Fixed FortiManager 7.6.1 – — FortiManager Cloud 7.6.1 – —
TIMELINE Aug 4 Reserved by CNA Aug 12 Published (CNA: fortinet)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N H N H N H H H 7.5 .0059 45.3 —
AFFECTED Product Versions Fixed CamaleonCMS unspecified —
TIMELINE Aug 11 Reserved by CNA Aug 12 Published (CNA: VulnCheck)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N L N N N H H H 9.3 .0059 45.3 —
AFFECTED Product Versions Fixed AXC F 1152 2019.0.4 – — AXC F 1252 2019.0.4 – — AXC F 2152 2019.0.4 – — AXC F 3152 2019.0.4 – — BPC 9102S 2019.0.4 – — BPC 9202S 2019.0.4 – — RFC 4072R 2019.0.4 – — RFC 4072S 2019.0.4 – — VL3 UPC 2440 EDGE 2019.0.4 – — VPLCNEXT CONTROL 1000 2019.0.4 – — + 5 more
TIMELINE Apr 16 Reserved by CNA Aug 12 Published (CNA: CERTVDE)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U L L N 5.4 .0058 45.2 —
AFFECTED Product Versions Fixed Apache Airflow unspecified —
TIMELINE Jul 4 Reserved by CNA Aug 12 Published (CNA: apache)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0057 44.7 —
AFFECTED Product Versions Fixed WooCommerce Subscriptions 4.7.0 – —
TIMELINE Jul 30 Reserved by CNA Aug 12 Published (CNA: WPScan)
AV AC AT PR UI VC VI VA CVSS EPSS %ile KEV N H N N A H H L 7.5 .0057 44.7 —
AFFECTED Product Versions Fixed jupyterlab < 4.5.10 – —
TIMELINE Aug 12 Reserved by CNA Aug 12 Published (CNA: GitHub_M)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L L N U H N N 6.5 .0057 44.5 —
AFFECTED Product Versions Fixed Apache Airflow Google provider unspecified —
TIMELINE Jul 31 Reserved by CNA Aug 12 Published (CNA: apache)
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N N U H H H 9.8 .0057 44.4 —
AFFECTED Product Versions Fixed giftware unspecified —
TIMELINE Jul 8 Reserved by CNA Aug 12 Published (CNA: WPScan)
| CVE | CVSS | EPSS %ile | Vendor | Product | CWE | Title |
|---|---|---|---|---|---|---|
| CVE-2026-67282 | 10.0 | 44.4 | fabrikar.com | Fabrik extension for Joomla | CWE-94 | Joomla Extension - fabrikar.com - Unauthenticated remote code execution in Fa… |
| CVE-2026-71408 | 5.3 | 43.7 | Fortinet | FortiOS | CWE-770 | A allocation of resources without limits or throttling vulnerability in Forti… |
| CVE-2026-13476 | 7.3 | 43.4 | IBM | Informix Dynamic Server | CWE-78 | IBM Informix Wire Listener Vulnerable to Unauthenticated Remote Code Execution |
| CVE-2026-70465 | 8.1 | 43.3 | Fortinet | FortiClientWindows | CWE-120 | A buffer copy without checking size of input ('classic buffer overflow') vuln… |
| CVE-2026-17218 | 9.8 | 43.2 | IBM | i | CWE-787 | IBM i is Affected By Remote Code Execution Vulnerability in Line Printer Daem… |
| CVE-2026-73240 | 9.8 | 43.0 | Apache Software Foundation | Apache Allura | CWE-88 | Apache Allura: Git command injection |
| CVE-2025-59321 | 9.8 | 42.6 | n/a | n/a | CWE-1188 | CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 contains a default TPM… |
| CVE-2026-17431 | 6.1 | 42.6 | MITHALDU | PDF::WebKit | CWE-73 | PDF::WebKit versions through 1.2 for Perl allow OS command injection via a 2-… |
| CVE-2026-71193 | 9.6 | 42.1 | OpenStack | Designate | CWE-863 | In OpenStack Designate before 22.0.1, zone creation checks (_is_subzone, _is_… |
| CVE-2026-16906 | 8.8 | 42.0 | IBM | i | CWE-78 | IBM i is Affected By Multiple Vulnerabilities in Domain Name System |
| CVE-2026-16904 | 8.1 | 42.1 | IBM | i | CWE-269 | IBM i is Affected By improper privilege management in Navigator for i |
| CVE-2026-48553 | 7.7 | 42.0 | Nagios Enterprises, LLC. | Nagios Core | CWE-78 | Nagios Core / XI Authenticated RCE via Custom-Variable Macro Injection |
| CVE-2026-48554 | 7.7 | 42.0 | Nagios Enterprises, LLC. | Nagios Core | CWE-78 | Nagios Core / XI Authenticated RCE via Unfiltered NOTIFICATION-Family Macro S… |
| CVE-2026-16860 | 9.9 | 41.3 | IBM | i | CWE-427 | IBM i is Affected By Remote Code Execution Vulnerability [] |
| CVE-2026-11325 | 8.8 | 41.3 | Cloudflare | https://github.com/cloudflare/pages-action | CWE-78 | cloudflare/pages-action is deprecated — migration required by September 18th,… |
| CVE-2026-18669 | 8.8 | 41.3 | IBM | i | CWE-250 | IBM i is Affected By A Privilege Escalation Vulnerability [] |
| CVE-2026-26035 | 9.8 | 41.2 | Fortinet | FortiWeb | CWE-287 | An Improper Authentication vulnerability [CWE-287] vulnerability in Fortinet … |
| CVE-2025-15686 | 2.1 | 41.2 | n/a | Open5GS | CWE-404 | Open5GS HSS Service fd_msg_sess_get denial of service |
| CVE-2026-71194 | 6.8 | 41.1 | OpenStack | Designate | CWE-669 | In OpenStack Designate before 22.0.2, the mDNS handler performs pool-blind lo… |
| CVE-2026-18713 | 8.8 | 41.0 | IBM | i | CWE-269 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-71407 | 5.6 | 40.2 | Fortinet | FortiOS | CWE-121 | A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortin… |
| CVE-2026-17110 | 8.8 | 40.1 | IBM | i | CWE-250 | IBM i is Affected By Multiple Vulnerabilities in SQL |
| CVE-2026-58076 | 8.8 | 39.6 | Apache Software Foundation | Apache Airflow | CWE-502 | Apache Airflow: Unguarded import_string() of airflow_exc_ser / base_exc_ser e… |
| CVE-2024-14044 | 2.1 | 39.5 | n/a | Open5GS | CWE-119 | Open5GS Diameter Rx pcrf-rx-path.c pcrf_rx_aar_cb buffer overflow |
| CVE-2026-73414 | 9.2 | 39.3 | ericcornelissen | shescape | CWE-78 | Shescape: Shell injection via unescaped parentheses on Windows with CMD |
| CVE-2026-54183 | 4.3 | 38.5 | Apache Software Foundation | Apache Airflow | CWE-200 | Apache Airflow: Airflow Variables were not masked in the UI for authenticated… |
| CVE-2026-73418 | 7.5 | 38.1 | nextauthjs | next-auth | CWE-20 | NextAuth.js: getToken() throws an uncaught exception on malformed Bearer auth… |
| CVE-2025-59319 | 7.2 | 38.1 | n/a | n/a | CWE-290 | CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to certify the i… |
| CVE-2026-17083 | 9.8 | 37.7 | IBM | i | CWE-787 | IBM i is Affected By Multiple Vulnerabilities in the Debug Server |
| CVE-2026-18961 | 8.1 | 37.6 | fahdaslam | Social Login, Passkeys, Magic Link & Email OTP – Passwordless Login by VentraConnect | CWE-287 | Social Login, Passkeys, Magic Link & Email OTP – Passwordless Login by Ventra… |
| CVE-2026-73294 | 9.9 | 37.2 | semaphoreui | semaphore | CWE-78 | Semaphore U: OS Command Injection |
| CVE-2025-59326 | 9.8 | 37.2 | n/a | n/a | CWE-693 | CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to enforce IMA p… |
| CVE-2026-65941 | 8.8 | 36.4 | Progress Software Corporation | WhatsUp Gold | CWE-73 | WhatsUp Gold versions prior to 26.0.2 contain an unauthenticated remote code … |
| CVE-2026-17266 | 6.5 | 36.4 | IBM | i | CWE-22 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-73237 | 6.1 | 35.8 | Apache Software Foundation | Apache Allura | CWE-80 | Apache Allura: XSS in markdown pipeline |
| CVE-2026-73238 | 6.1 | 35.8 | Apache Software Foundation | Apache Allura | CWE-80 | Apache Allura: XSS in code display |
| CVE-2026-73407 | 9.0 | 35.3 | Budibase | budibase | CWE-22 | Budibase: Unauthenticated REST Datasource Credential Theft via Cross-Origin A… |
| CVE-2026-17417 | 8.8 | 34.9 | IBM | i | CWE-78 | IBM i is Affected By Remote Code Execution Vulnerabilities [, ] |
| CVE-2026-17642 | 8.8 | 34.9 | IBM | i | CWE-78 | IBM i is Affected By Remote Code Execution Vulnerabilities [, ] |
| CVE-2026-68968 | 7.5 | 34.7 | Apache Software Foundation | Apache Airflow | CWE-436 | Apache Airflow: Authorization bypass in the Backfill API through conflicting … |
| CVE-2026-57858 | 9.3 | 34.7 | Cal.com | Cal.com Self-Hosted (Cal.diy) | CWE-79 | Cal.com Cal.diy 6.2.0 Stored XSS via BookingPageTagManager Analytics Tracking ID |
| CVE-2026-19311 | 8.6 | 34.6 | AWS | OpenSearch | CWE-475 | Missing Authorization in Execute Monitor API in OpenSearch Alerting Plugin |
| CVE-2026-7427 | 5.3 | 34.5 | GitLab | GitLab | CWE-770 | Allocation of Resources Without Limits or Throttling in GitLab |
| CVE-2026-49467 | 8.8 | 34.3 | smp46 | pingvin-share-x | CWE-303 | TOTP enrollment hijack: password gate skipped due to unawaited promise |
| CVE-2026-16907 | 7.6 | 34.0 | IBM | i | CWE-787 | IBM i is Affected By Multiple Vulnerabilities in the Debug Server |
| CVE-2026-19654 | 7.5 | 33.4 | Red Hat | Red Hat Enterprise Linux 10 | CWE-125 | Rsyslog: a configuration-dependent issue in rsyslog's optional imptcp input m… |
| CVE-2026-73293 | 8.8 | 33.3 | semaphoreui | semaphore | CWE-269 | Semaphore UI: Manager-to-owner privilege escalation via custom-role slug coll… |
| CVE-2026-17094 | 7.1 | 33.0 | IBM | i | CWE-22 | IBM i is Affected By Path Traversal Vulnerability in Navigator for i |
| CVE-2026-18663 | 5.9 | 32.9 | Red Hat | Red Hat Directory Server 11 | CWE-415 | 389-ds-base: 389-ds-base: pre-authentication double-free in get_ldapmessage_c… |
| CVE-2026-73500 | 8.7 | 32.8 | etcd-io | etcd | CWE-770 | etcd: `tlsListener.acceptLoop` spawns unbounded handshake goroutines with no … |
| CVE-2026-19594 | 8.1 | 32.7 | Snowflake | Snowflake Python APIs | CWE-22 | Path Traversal and HTTP Parameter Pollution in Snowflake Python API (snowflak… |
| CVE-2026-16770 | 9.8 | 32.5 | MITHALDU | PDF::WebKit | CWE-88 | PDF::WebKit versions through 1.2 for Perl allow argument injection into wkhtm… |
| CVE-2026-65017 | 6.5 | 31.9 | Apache Software Foundation | Apache Airflow | CWE-200 | Apache Airflow: Config API: team-scoped Celery broker secret disclosed to a V… |
| CVE-2026-67579 | 7.5 | 31.9 | ash-project | ash | CWE-502 | Filter expression injection via forged keyset pagination cursor in Ash |
| CVE-2025-41770 | 8.7 | 31.8 | Phoenix Contact | AXC F 1152 | CWE-770 | Unauthenticated Denial of Service |
| CVE-2026-16931 | 7.5 | 31.8 | IBM | i | CWE-835 | IBM i is Affected By A Denial of Service Vulnerability [] |
| CVE-2026-17271 | 7.5 | 31.8 | IBM | i | CWE-770 | IBM i is Affected By Multiple Vulnerabilities in the Debug Server |
| CVE-2026-67286 | 6.3 | 31.6 | joomshaper.com | SP Page Builder extension for Joomla | CWE-22 | Joomla Extension - joomshaper.com - Unauthenticated arbitrary directory creat… |
| CVE-2026-18675 | 5.3 | 31.6 | Kong Inc. | Kong Mesh | CWE-248 | Kong Mesh: control plane denial of service via a malformed dataplane token wi… |
| CVE-2026-17095 | 8.3 | 31.5 | IBM | i | CWE-915 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-63293 | 9.9 | 31.4 | Canonical | LXD | CWE-59 | Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesys… |
| CVE-2025-15685 | 5.3 | 31.3 | n/a | Open5GS | CWE-119 | Open5GS freeDiameter memory corruption |
| CVE-2026-73300 | 9.6 | 31.2 | Budibase | budibase | CWE-89 | Budibase: SQL Injection via `multipleStatements: true` |
| CVE-2026-19001 | 9.5 | 30.8 | MongoDB | BI Connector ODBC Driver | CWE-190 | MongoDB BI Connector ODBC driver may write outside an allocated buffer when h… |
| CVE-2026-10534 | 9.8 | 30.7 | IBM | Db2 | CWE-121 | IBM® Db2® is vulnerable to buffer overflow in the IXF IMPORT parser |
| CVE-2026-67285 | 9.2 | 30.7 | joomshaper.com | SP Page Builder extension for Joomla | CWE-22 | Joomla Extension - joomshaper.com - Unauthenticated arbitrary local PHP file … |
| CVE-2026-68760 | 5.3 | 30.5 | jfrog | artifactory | CWE-287 | Potential remember-me authentication bypass in JFrog Artifactory |
| CVE-2026-73406 | 7.5 | 30.4 | Budibase | budibase | CWE-200 | Budibase: Unauthenticated user information disclosure via public tenant user … |
| CVE-2026-64826 | 7.1 | 30.4 | rConfig | rConfig | CWE-22 | rConfig < 8.2.13 Path Traversal File Read via FileDownloadController |
| CVE-2026-73268 | 9.9 | 30.1 | Red Hat | Multicluster Engine for Kubernetes | CWE-94 | Cluster-curator-controller: cluster-curator-controller: spec.install.override… |
| CVE-2026-50561 | 9.4 | 30.1 | xerrors | Yuxi | CWE-287 | Yuxi has a JWT Authentication Bypass Leading to Cross-Instance Administrator … |
| CVE-2026-12005 | 7.2 | 30.1 | IBM | Security Verify Access | CWE-78 | Security vulnerabilities have been found in IBM Verify Identity Access and IB… |
| CVE-2026-12618 | 7.2 | 30.1 | IBM | Security Verify Access | CWE-74 | Security vulnerabilities have been found in IBM Verify Identity Access and IB… |
| CVE-2026-18106 | 4.3 | 29.9 | IBM | i | CWE-22 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-73499 | 7.1 | 29.6 | etcd-io | etcd | CWE-863 | etcd: Watch API authorization bypass via open-ended range requests |
| CVE-2026-19004 | 8.8 | 29.5 | MongoDB | BI Connector ODBC Driver | CWE-122 | MongoDB BI Connector ODBC Driver Memory-Safety Issue When Handling Stored Pro… |
| CVE-2025-59322 | 7.5 | 29.1 | n/a | n/a | CWE-329 | CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to properly hand… |
| CVE-2026-71469 | 7.5 | 29.0 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-770 | Acm-search-v2-api-rhel9: search-v2-api: unbounded tokenreviews cache allows u… |
| CVE-2026-73374 | 6.1 | 29.0 | vulnerability-lookup | vulnerability-lookup | CWE-79 | Stored Cross-Site Scripting (XSS) via Unescaped CNA Reference Tags in vulnera… |
| CVE-2026-68969 | 6.5 | 28.9 | Apache Software Foundation | Apache Airflow | CWE-532 | Apache Airflow: Bulk Variable and Connection endpoints record secret values i… |
| CVE-2026-63298 | 9.9 | 28.6 | Canonical | LXD | CWE-78 | LXD arbitrary lxc.conf directive injection via NVIDIA instance configuration |
| CVE-2026-73263 | 9.9 | 28.2 | prowler-cloud | prowler | CWE-78 | Prowler: RCE on Prowler App workers via kubeconfig auth-provider cmd-path |
| CVE-2026-18749 | 9.8 | 28.1 | CERT/CC | VINCE | CWE-639 | CVE-2026-18749 |
| CVE-2026-44741 | 8.8 | 28.1 | pimcore | pimcore | CWE-89 | Pimcore Admin Classic Bundle Vulnerable to SQL Injection in Translation Grid … |
| CVE-2026-19566 | 7.5 | 28.1 | RRWO | Net::CIDR::Set | CWE-789 | Net::CIDR::Set versions before 0.23 for Perl allow memory exhaustion and malf… |
| CVE-2026-69106 | 8.8 | 27.9 | jfrog | artifactory | CWE-20 | Potential cache poisoning in JFrog Artifactory |
| CVE-2026-12004 | 8.7 | 27.9 | IBM | Security Verify Access | CWE-134 | Security vulnerabilities have been found in IBM Verify Identity Access and IB… |
| CVE-2026-73412 | 6.3 | 27.9 | ericcornelissen | shescape | CWE-78 | Shescape: Path disclosure on Unix with Zsh |
| CVE-2026-73285 | 7.5 | 27.6 | rustfs | rustfs | CWE-863 | RustFS: OPA policy plugin omits ExistingObjectTag conditions, allowing tag-ba… |
| CVE-2026-73493 | 7.5 | 27.6 | http4s | blaze | CWE-770 | http4s-blaze-server: Unbounded WebSocket message aggregation |
| CVE-2026-16856 | 8.8 | 27.5 | IBM | i | CWE-78 | IBM i is Affected By Multiple Vulnerabilities in Domain Name System |
| CVE-2026-66898 | 9.9 | 27.5 | Canonical | LXD | CWE-22 | Path traversal via unvalidated instance name in backup tarball restore enable… |
| CVE-2026-73501 | 9.1 | 27.4 | getkin | kin-openapi | CWE-287 | kin-openapi: ValidationHandler.Load() Fail-Open Authentication Bypass via Noo… |
| CVE-2026-72508 | 9.9 | 27.3 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-250 | Multicloud-operators-subscription: multicloud-operators-subscription: hub and… |
| CVE-2026-13105 | 8.8 | 27.3 | IBM | i Access Client Solutions | CWE-22 | IBM i Access Client Solutions (ACS) is Affected By Multiple Vulnerabilities |
| CVE-2026-15803 | 8.7 | 27.3 | Eclipse Foundation | Eclipse RDF4J | CWE-611 | In Eclipse RDF4J, several XML parser entry points do not fully restrict XML E… |
| CVE-2026-73239 | 6.5 | 27.3 | Apache Software Foundation | Apache Allura | CWE-280 | Apache Allura: Missing permission checks IDOR |
| CVE-2026-16863 | 7.7 | 27.2 | IBM | i | CWE-125 | IBM i is Affected By Out-of-Bounds Read Vulnerability [] |
| CVE-2026-68076 | 5.4 | 27.2 | Apache Software Foundation | Apache Airflow | CWE-639 | Apache Airflow: Connections test API: team-scope guard bypass resolves anothe… |
| CVE-2026-68756 | 6.6 | 27.1 | jfrog | artifactory | CWE-502 | Potential insecure deserialization in JFrog Artifactory |
| CVE-2026-73413 | 8.7 | 26.5 | ericcornelissen | shescape | CWE-400 | Shescape: Quadratic-time denial of service in flag-protection |
| CVE-2026-73411 | 6.3 | 26.5 | ericcornelissen | shescape | CWE-116 | Shescape: Home-directory disclosure in assignment context on Unix with Dash |
| CVE-2026-68752 | 7.2 | 26.5 | jfrog | artifactory | CWE-269 | Project Resource Managers may escalate privileges in JFrog Artifactory |
| CVE-2026-16494 | 7.1 | 26.2 | GitLab | GitLab | CWE-862 | Missing Authorization in GitLab |
| CVE-2026-17248 | 6.5 | 26.1 | IBM | i | CWE-78 | IBM i is Affected By Multiple Vulnerabilities in the Debug Server |
| CVE-2026-19643 | 6.0 | 26.0 | AWS | aws-sdk-cpp | CWE-125 | Out-of-bounds read in the Base64 decoder in Amazon aws-sdk-cpp on signed-char… |
| CVE-2026-73430 | 5.3 | 26.1 | Eugeny | russh | CWE-754 | Russh: Pre-auth remote panic via all-zero Curve25519 peer public value (encod… |
| CVE-2026-68971 | 6.5 | 25.7 | Apache Software Foundation | Apache Airflow | CWE-862 | Apache Airflow: Cross-team authorization bypass in the asset materialization … |
| CVE-2026-73498 | 7.7 | 25.6 | sooperset | mcp-atlassian | CWE-22 | MCP Atlassian is a Model Context Protocol (MCP): Arbitrary file read via miss… |
| CVE-2026-72786 | 7.1 | 25.6 | craftcms | cms | CWE-285 | Craft CMS 5.0.0-RC1 before 5.10.8 Authentication Bypass via Password Reset |
| CVE-2026-64639 | 9.3 | 25.5 | WebPros | Plesk | CWE-266 | Incorrect database cloning process in Plesk from 18.0.52 before 18.0.79.6 and… |
| CVE-2026-17109 | 4.3 | 25.4 | IBM | i | CWE-20 | IBM i is Affected By Multiple Vulnerabilities in SQL |
| CVE-2026-73427 | 2.1 | 25.5 | basecamp | trix | CWE-79 | Trix: XSS via JSON deserialization bypass in drag-and-drop (Level0InputContro… |
| CVE-2026-12359 | 8.1 | 25.2 | IBM | Security Verify Access | CWE-287 | Security vulnerabilities have been found in IBM Verify Identity Access and IB… |
| CVE-2026-10543 | 9.8 | 24.9 | IBM | Db2 | CWE-285 | IBM® Db2® is vulnerable to privilege escalation with a specially crafted query |
| CVE-2026-73306 | 5.3 | 24.9 | Budibase | budibase | CWE-204 | Budibase: Account Enumeration via Login Lockout Response Differential |
| CVE-2026-18952 | 8.6 | 24.8 | AWS | Opensearch | CWE-918 | Missing Input Validation in Threat Intel Feed Parser in OpenSearch Security A… |
| CVE-2026-16480 | 7.1 | 24.8 | IBM | Db2 | CWE-602 | IBM® Db2® is affected by an improper authorization vulnerability in the certa… |
| CVE-2026-73264 | 7.6 | 24.6 | prowler-cloud | prowler | CWE-918 | Prowler: Server-Side Request Forgery (SSRF) in Lighthouse Provider |
| CVE-2024-27253 | 10.0 | 24.3 | IBM | DOORS Next | CWE-287 | IBM Engineering Requirements Management DOORS Next is impacted by vulnerabili… |
| CVE-2026-14925 | 7.5 | 24.3 | Unknown | Import WP | CWE-200 | Import WP < 2.14.23 - Unauthenticated Sensitive Information Exposure via Expo… |
| CVE-2026-18677 | 6.0 | 24.1 | Kong Inc. | Kong Mesh | CWE-290 | Kong Mesh: a dataplane token without a workload binding can claim any workloa… |
| CVE-2026-73307 | 4.9 | 24.1 | Budibase | budibase | CWE-918 | Budibase: SSRF via bare fetch() in uploadUrl during AI table generation |
| CVE-2026-18235 | 8.3 | 23.8 | IBM | i | CWE-78 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-18673 | 5.3 | 23.7 | Kong Inc. | Kong Mesh | CWE-200 | Kong Mesh: the kuma-dp readiness service exposes the Envoy admin API without … |
| CVE-2026-73422 | 5.3 | 23.7 | withastro | astro | CWE-79 | Astro: Reflected XSS via unescaped View Transition animation properties |
| CVE-2026-70466 | 5.3 | 23.6 | Fortinet | FortiWeb | CWE-184 | A incomplete list of disallowed inputs vulnerability in Fortinet FortiWeb 8.0… |
| CVE-2026-62420 | 9.9 | 23.4 | Canonical | LXD | CWE-863 | Cross-project cluster migration bypasses project restrictions via cluster not… |
| CVE-2026-72806 | 6.9 | 23.3 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Authentication Bypass via Attribute View |
| CVE-2026-12233 | 5.9 | 23.3 | zephyrproject | zephyr | CWE-665 | Uninitialized mutex in TLS trusted-credential backend causes kernel NULL-dere… |
| CVE-2026-67287 | 6.3 | 23.1 | joomshaper.com | SP Page Builder extension for Joomla | CWE-284 | Joomla Extension - joomshaper.com - Unauthenticated comment creation in SP Pa… |
| CVE-2026-73265 | 6.5 | 23.0 | rustfs | rustfs | CWE-862 | RustFS: Version-specific object reads authorize the non-version action |
| CVE-2026-18366 | 9.8 | 22.9 | Unknown | Events Manager | CWE-269 | Events Manager < 7.4.1 - Unauthenticated Privilege Escalation to Administrator |
| CVE-2026-18744 | 6.5 | 22.6 | CERT/CC | VINCE | CWE-639 | CVE-2026-18744 |
| CVE-2026-72526 | 9.9 | 22.4 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-441 | Multicloud-integrations: multicloud-integrations: pull-model propagation allo… |
| CVE-2026-42018 | 7.5 | 22.3 | jfrog | artifactory | CWE-287 | Anonymous user token generation exposure in JFrog Artifactory |
| CVE-2026-19426 | 8.8 | 22.2 | FitSoft | POS System | CWE-306 | FitSoft|POS Sytstem - Missing Authentication |
| CVE-2026-16627 | 7.7 | 22.1 | GitLab | GitLab | CWE-79 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scri… |
| CVE-2026-13613 | 8.8 | 22.0 | Unknown | KiviCare | CWE-89 | KiviCare < 4.5.2 - Doctor/Receptionist+ SQL Injection via settings/listing RE… |
| CVE-2026-16033 | 8.5 | 22.0 | Canonical | LXD | CWE-22 | Arbitrary file read+write on host via templates/ symlink in malicious image |
| CVE-2026-19642 | 6.0 | 22.0 | AWS | aws-sdk-cpp | CWE-787 | Out-of-bounds write in the Base64 decoder in Amazon aws-sdk-cpp |
| CVE-2026-19002 | 8.8 | 21.9 | MongoDB | BI Connector ODBC Driver | CWE-120 | Crafted database metadata may cause memory corruption in MongoDB BI Connector… |
| CVE-2026-72789 | 9.2 | 21.8 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Authentication Bypass via Encrypted Notebooks |
| CVE-2026-11932 | 7.5 | 21.8 | IBM | Security Verify Access | CWE-835 | Security vulnerabilities have been found in IBM Verify Identity Access and IB… |
| CVE-2026-73308 | 5.7 | 21.9 | Budibase | budibase | CWE-200 | Budibase: OAuth2 Token Disclosure via Automation Test Results Broadcast to Ot… |
| CVE-2026-72788 | 6.9 | 21.8 | siyuan-note | siyuan | CWE-863 | SiYuan before v3.7.4 Information Disclosure via UILayout Filter |
| CVE-2026-63300 | 9.9 | 21.6 | Canonical | LXD | CWE-862 | Cross-project instance move bypasses all project restrictions allowing host c… |
| CVE-2026-66659 | 9.3 | 21.6 | Essekia | Tablesome Table | CWE-89 | WordPress Tablesome Table plugin <= 1.2.9 - SQL Injection vulnerability |
| CVE-2026-66381 | 5.3 | 21.6 | jfrog | artifactory | CWE-22 | Repository readers may access content outside configured upstream paths |
| CVE-2026-73429 | 5.3 | 21.6 | Eugeny | russh | CWE-704 | Russh: client wrong-length X25519 `clone_from_slice` panic (pre-auth DoS) |
| CVE-2026-17485 | 8.2 | 21.5 | IBM | i | CWE-125 | IBM i is Affected By Denial of Service Vulnerability [] |
| CVE-2026-73495 | 7.4 | 21.4 | http4s | blaze | CWE-444 | blaze: Chunked-body trailer fields promoted into Request.headers in blaze-ser… |
| CVE-2026-18888 | 7.1 | 21.4 | MongoDB | BI Connector ODBC Driver | CWE-787 | MongoDB BI Connector ODBC driver may write outside an allocated buffer when r… |
| CVE-2026-19656 | 9.9 | 21.1 | SCADA-LTS | ScadaLTS | CWE-862 | ScadaLTS Authenticated Remote Code Execution |
| CVE-2026-73405 | 5.3 | 21.0 | vulnerability-lookup | vulnerability-lookup | CWE-862 | Authorization Bypass in SSE Pub/Sub Allows Unconfirmed Accounts to Access Str… |
| CVE-2026-63299 | 9.9 | 20.8 | Canonical | LXD | CWE-770 | Storage volume cross-project move and snapshot restore bypass project disk li… |
| CVE-2026-73284 | 8.8 | 20.8 | rustfs | rustfs | CWE-269 | RustFS: AddServiceAccount Handler Allows Creation of Root-Parent Service Acco… |
| CVE-2026-72808 | 6.9 | 20.8 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Information Disclosure via getFileAnnotation |
| CVE-2026-18474 | 8.6 | 20.6 | Unknown | WP Directory Kit | CWE-89 | WP Directory Kit < 1.5.6 - Unauthenticated SQL Injection via search_location … |
| CVE-2026-68433 | 8.6 | 20.6 | Linux | Linux | — | libceph: bound get_version reply decode to front len |
| CVE-2026-6821 | 4.3 | 20.6 | GitLab | GitLab | CWE-862 | Missing Authorization in GitLab |
| CVE-2026-16253 | 7.5 | 20.4 | Unknown | Total Upkeep | CWE-200 | Total Upkeep (BoldGrid Backup) < 1.17.3 - Unauthenticated Sensitive Data Disc… |
| CVE-2026-18049 | 7.5 | 20.4 | Unknown | WP Photo Album Plus | CWE-200 | WP Photo Album Plus < 9.2.07.002 - Unauthenticated Option Disclosure via gettogo |
| CVE-2026-73431 | 8.8 | 20.3 | vulnerability-lookup | vulnerability-lookup | CWE-294 | Reusable Account Activation and Recovery Tokens Allow Repeated Account Takeov… |
| CVE-2026-17082 | 8.8 | 20.1 | IBM | i | CWE-269 | IBM i is Affected By Multiple Vulnerabilities in the Debug Server |
| CVE-2026-49473 | 8.8 | 20.1 | cedar-policy | authorization-for-expressjs | CWE-436 | @cedar-policy/authorization-for-expressjs has an authorization bypass via que… |
| CVE-2026-66375 | 8.1 | 19.8 | jfrog | artifactory | CWE-862 | Low-privilege users may remove protected Artifactory metadata |
| CVE-2026-69107 | 5.9 | 19.9 | jfrog | artifactory | CWE-862 | Potential unauthorized artifact access in JFrog Artifactory |
| CVE-2026-73326 | 7.2 | 19.8 | owen2345 | CamaleonCMS | CWE-862 | CamaleonCMS Missing Authorization via Plugin Administration Endpoints |
| CVE-2026-73291 | 7.1 | 19.7 | seerr-team | seerr | CWE-22 | Seerr: Path traversal to RCE via /avatarproxy image cache filename from upstr… |
| CVE-2026-17616 | 9.8 | 19.3 | IBM | Security Verify Access | CWE-310 | Security vulnerabilities have been found in IBM Verify Identity Access and IB… |
| CVE-2026-47718 | 5.5 | 19.3 | frangoteam | FUXA | CWE-287 | FUXA provides guest and invalid-token access to protected read APIs in secure… |
| CVE-2026-18499 | 8.1 | 19.2 | IBM | WebSphere Application Server - Liberty | CWE-285 | IBM WebSphere Application Server Liberty is affected by a privilege escalation |
| CVE-2026-12976 | 6.5 | 19.2 | Unknown | LearnPress | CWE-200 | LearnPress < 4.4.4 - Subscriber+ Sensitive Information Exposure via AI Assistant |
| CVE-2026-13168 | 6.5 | 19.2 | Unknown | Eventin | CWE-200 | Eventin < 4.1.20 - Contributor+ Customer PII Disclosure via REST API |
| CVE-2026-17420 | 6.3 | 19.1 | IBM | i | CWE-78 | IBM i is Affected By Multiple Vulnerabilities in SQL |
| CVE-2026-13361 | 8.8 | 18.8 | IBM | Informix Dynamic Server | CWE-121 | IBM Informix Server Vulnerability in SQL Interface Handler Could Allow Remote… |
| CVE-2026-48550 | 5.1 | 18.5 | Nagios Enterprises, LLC. | Nagios Core | CWE-79 | Nagios Core / XI cmd.cgi Reflected XSS via NagFormId Parameter |
| CVE-2026-68431 | 9.1 | 18.5 | Linux | Linux | — | ksmbd: validate minimum PDU size for transform requests |
| CVE-2026-73331 | 7.1 | 18.4 | owen2345 | CamaleonCMS | CWE-89 | CamaleonCMS 2.9.1 Authenticated SQL Injection via Post Slug Field |
| CVE-2026-66384 | 5.3 | 18.4 | jfrog | artifactory | CWE-22 | Authenticated users may write data outside the intended Docker cache path |
| CVE-2026-18789 | 7.5 | 18.1 | Unknown | Ezoic | CWE-862 | Ezoic < 2.23.1 - Unauthenticated Database Export via Content Export REST Routes |
| CVE-2026-15216 | 8.7 | 17.9 | GitLab | GitLab | CWE-79 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scri… |
| CVE-2026-15217 | 8.7 | 17.9 | GitLab | GitLab | CWE-79 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scri… |
| CVE-2026-15423 | 8.5 | 17.7 | GitLab | GitLab | CWE-863 | Incorrect Authorization in GitLab |
| CVE-2026-17276 | 9.9 | 17.7 | IBM | i | CWE-269 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-71473 | 8.5 | 17.7 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-915 | Acm-search-v2-rhel9: search-v2-operator: addonfactory.getvaluesfromaddonannot… |
| CVE-2026-73325 | 8.4 | 17.7 | Fujitsu Research | OneCompression | CWE-502 | Fujitsu OneCompression 1.2.0 Arbitrary Code Execution via torch.load Deserial… |
| CVE-2026-68758 | 6.5 | 17.6 | jfrog | artifactory | CWE-862 | Authenticated users may access restricted Artifactory support information |
| CVE-2026-72796 | 6.9 | 17.5 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Access Control Bypass via Static Routes |
| CVE-2026-70467 | 3.8 | 17.5 | Fortinet | FortiSIEM | CWE-918 | A server-side request forgery (ssrf) vulnerability in Fortinet FortiSIEM 7.5.… |
| CVE-2026-72798 | 9.2 | 17.4 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Information Disclosure via renderAttributeView |
| CVE-2026-72804 | 9.2 | 17.2 | siyuan-note | siyuan | CWE-200 | SiYuan before v3.7.4 Authentication Bypass via Graph Endpoints |
| CVE-2026-66382 | 4.3 | 17.2 | jfrog | artifactory | CWE-22 | Authenticated users may write files outside the intended Artifactory work dir… |
| CVE-2026-17111 | 9.8 | 16.7 | IBM | i | CWE-89 | IBM i is Affected By Multiple Vulnerabilities in SQL |
| CVE-2026-17222 | 4.3 | 16.8 | IBM | i | CWE-89 | IBM i is Affected By Multiple Vulnerabilities in SQL |
| CVE-2026-73301 | 4.3 | 16.7 | Budibase | budibase | CWE-862 | Budibase: Missing RBAC on GET /api/global/groups allows BASIC users to enumer… |
| CVE-2026-72794 | 9.2 | 16.5 | siyuan-note | siyuan | CWE-522 | siyuan before v3.7.4 Session Cookie Key Disclosure via getConf |
| CVE-2026-46382 | 8.7 | 16.5 | meeting-room-booking-system | mrbs-code | CWE-918 | Meeting Room Booking System has server-side request forgery in import functio… |
| CVE-2026-46688 | 6.9 | 16.5 | meeting-room-booking-system | mrbs-code | CWE-601 | Meeting Room Booking System has an unauthenticated open redirect |
| CVE-2026-13267 | 8.1 | 16.3 | IBM | Security Verify Access | CWE-302 | Security vulnerabilities have been found in IBM Verify Identity Access and IB… |
| CVE-2026-67283 | 6.9 | 16.3 | tabaoca.org | Cotton Cloud extension for Joomla | CWE-284 | Joomla Extension - tabaoca.org - Improper ACL implementation allows allow fil… |
| CVE-2026-63296 | 9.9 | 16.1 | Canonical | LXD | CWE-863 | Project restriction bypass via instance migration config override |
| CVE-2026-73288 | 6.1 | 15.9 | rustfs | rustfs | CWE-693 | RustFS: Object Lock (WORM) protections are treated as absent when bucket meta… |
| CVE-2026-73491 | 2.3 | 15.9 | flavorjones | loofah | CWE-184 | Loofah `allowed_uri?` does not detect `javascript:` URIs split by named white… |
| CVE-2026-73492 | 2.3 | 15.9 | flavorjones | loofah | CWE-79 | Loofah `allowed_uri?` does not detect `javascript:` URIs split by numeric cha… |
| CVE-2026-66377 | 5.3 | 15.9 | jfrog | artifactory | CWE-862 | Anonymous users may access restricted Artifactory repository information |
| CVE-2026-18048 | 7.5 | 15.7 | Unknown | WP Photo Album Plus | CWE-73 | WP Photo Album Plus < 9.2.07.002 - Unauthenticated Arbitrary ZIP File Deletio… |
| CVE-2026-11923 | 7.4 | 15.7 | IBM | Security Verify Access | CWE-287 | Security vulnerabilities have been found in IBM Verify Identity Access and IB… |
| CVE-2026-17419 | 6.5 | 15.8 | IBM | i | CWE-89 | IBM i is Affected By Multiple Vulnerabilities in SQL |
| CVE-2026-73290 | 5.3 | 15.7 | rustfs | rustfs | CWE-863 | RustFS: Anonymous ListObjectVersions bypasses RestrictPublicBuckets through t… |
| CVE-2026-4879 | 4.3 | 15.7 | GitLab | GitLab | CWE-862 | Missing Authorization in GitLab |
| CVE-2026-18433 | 4.3 | 15.7 | GitLab | GitLab | CWE-863 | Incorrect Authorization in GitLab |
| CVE-2026-65937 | 8.0 | 15.6 | Progress Software Corporation | WhatsUp Gold | CWE-79 | WhatsUp Gold versions prior to 26.0.2 contain multiple stored cross-site scri… |
| CVE-2026-73432 | 5.1 | 15.6 | vulnerability-lookup | vulnerability-lookup | CWE-918 | Stored Server-Side Request Forgery in Remote-Instance Synchronization Allows … |
| CVE-2026-72793 | 9.2 | 15.5 | siyuan-note | siyuan | CWE-522 | SiYuan before v3.7.4 Information Disclosure via /api/system/getConf |
| CVE-2026-72795 | 9.2 | 15.5 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Information Disclosure via Embed Block |
| CVE-2026-72801 | 8.7 | 15.5 | siyuan-note | siyuan | CWE-522 | SiYuan before v3.7.4 Information Disclosure via Encryption Key Material |
| CVE-2026-8667 | 4.3 | 15.1 | GitLab | GitLab | CWE-863 | Incorrect Authorization in GitLab |
| CVE-2026-73286 | 8.1 | 15.1 | rustfs | rustfs | CWE-863 | RustF: Request headers can populate server-derived IAM condition keys, lettin… |
| CVE-2026-65939 | 6.8 | 15.1 | Progress Software Corporation | WhatsUp Gold | CWE-22 | WhatsUp Gold versions prior to 26.0.2 contain an arbitrary file write vulnera… |
| CVE-2026-68753 | 5.3 | 15.1 | jfrog | artifactory | CWE-862 | Anonymous users may access restricted Artifactory content under specific conf… |
| CVE-2026-72790 | 6.9 | 14.9 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Information Disclosure via getNotebookInfo |
| CVE-2026-72791 | 6.9 | 14.9 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Information Disclosure via getAttributeViewFieldViews |
| CVE-2026-72792 | 6.9 | 14.9 | siyuan-note | siyuan | CWE-863 | SiYuan before v3.7.4 Information Disclosure via Tag API |
| CVE-2026-72797 | 6.9 | 14.9 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Information Disclosure via getEncryptedNotebookStatus |
| CVE-2026-72799 | 6.9 | 14.9 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Information Disclosure via Path Resolution |
| CVE-2026-72800 | 6.9 | 14.9 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Information Disclosure via Unfiltered API |
| CVE-2026-72802 | 6.9 | 14.9 | siyuan-note | siyuan | CWE-639 | SiYuan before v3.7.4 Information Disclosure via resolveAssetPath |
| CVE-2026-72803 | 6.9 | 14.9 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Information Disclosure via getBlockAttrs |
| CVE-2026-72805 | 6.9 | 14.9 | siyuan-note | siyuan | CWE-862 | SiYuan before v3.7.4 Information Disclosure via Block Endpoints |
| CVE-2026-17445 | 6.5 | 15.0 | IBM | i | CWE-250 | IBM i is Affected By Improper Validation Vulnerability in Line Printer Daemon [] |
| CVE-2026-18750 | 5.3 | 14.9 | CERT/CC | VINCE | CWE-639 | CVE-2026-18750 |
| CVE-2026-15388 | 4.3 | 14.8 | Unknown | Cookie Consent | CWE-863 | Cookie Consent < 0.0.10 - Subscriber+ Consent Settings Update and Consent Log… |
| CVE-2026-18144 | 4.3 | 14.8 | IBM | i | CWE-285 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-13171 | 8.2 | 14.7 | Unknown | Eventin | CWE-284 | Eventin < 4.1.20 - Unauthenticated Account Creation via Waiting List Endpoint |
| CVE-2026-47227 | 6.5 | 14.7 | Admidio | admidio | CWE-639 | Admidio module-administrator can delete or reorder categories owned by other … |
| CVE-2026-73269 | 9.9 | 14.5 | Red Hat | Multicluster Engine for Kubernetes | CWE-269 | Cluster-curator-controller: cluster-curator-controller: tenant-controllable t… |
| CVE-2026-16538 | 9.1 | 14.3 | Unknown | Wallet for WooCommerce | CWE-284 | TeraWallet - Wallet for WooCommerce < 1.6.10 - Subscriber+ Wallet Balance Inf… |
| CVE-2026-64954 | 8.2 | 14.3 | Rapid7 | Velociraptor | CWE-862 | Velociraptor collect_client() Permissions Bypass |
| CVE-2026-73303 | 8.2 | 14.3 | Budibase | budibase | CWE-639 | Budibase: Email Change IDOR via POST /api/v2/email allows full Account Takeov… |
| CVE-2026-73289 | 8.1 | 14.1 | rustfs | rustfs | CWE-863 | RustFS: ForAllValues/ForAnyValue negated string conditions are transposed, in… |
| CVE-2026-19228 | 8.5 | 14.1 | GitLab | GitLab | CWE-639 | Authorization Bypass Through User-Controlled Key in GitLab |
| CVE-2026-59244 | 6.5 | 14.0 | Apache Software Foundation | Apache Airflow | CWE-312 | Apache Airflow: Secrets masker: `var.json` Variable values not masked in the … |
| CVE-2026-68970 | 6.5 | 14.0 | Apache Software Foundation | Apache Airflow | CWE-312 | Apache Airflow: Values of a list-shaped Variable are not masked in task logs … |
| CVE-2026-18676 | 5.1 | 14.1 | Kong Inc. | Kong Mesh | CWE-346 | Kong Mesh: default control plane config leaks the admin token cross-origin vi… |
| CVE-2026-73329 | 9.2 | 13.9 | owen2345 | CamaleonCMS | CWE-79 | CamaleonCMS Stored XSS via Draft Post Title Creation Endpoint |
| CVE-2026-73332 | 9.2 | 13.9 | owen2345 | CamaleonCMS | CWE-89 | CamaleonCMS cama_contact_form Plugin Stored XSS via before_html Field |
| CVE-2026-68759 | 7.2 | 13.9 | jfrog | artifactory | CWE-347 | Integration credential holders may impersonate users in JFrog Access |
| CVE-2026-11937 | 3.1 | 13.6 | IBM | Security Verify Access | CWE-416 | Security vulnerabilities have been found in IBM Verify Identity Access and IB… |
| CVE-2026-70398 | 9.6 | 13.4 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-441 | Multicloud-integrations: multicloud-integrations: gitopscluster.spec.argoserv… |
| CVE-2025-9486 | 3.3 | 13.4 | GitLab | GitLab | CWE-266 | Incorrect Privilege Assignment in GitLab |
| CVE-2026-64955 | 6.1 | 13.3 | Rapid7 | Velociraptor | CWE-1236 | Velociraptor CSV Formula Injection in Export Pipeline |
| CVE-2026-18652 | 4.9 | 13.0 | Rapid7 | Velociraptor | CWE-862 | Velociraptor STACK Type Download Path Bypasses Denied Prefix Check |
| CVE-2026-16977 | 8.1 | 12.9 | Unknown | Form Maker by 10Web | CWE-89 | Form Maker by 10Web < 1.15.45 - Subscriber+ SQL Injection via display_name |
| CVE-2026-18057 | 8.1 | 12.9 | Unknown | Events Manager | CWE-89 | Events Manager < 7.4.1 - Subscriber+ Booking Consent Record Tampering via SQL… |
| CVE-2026-18230 | 8.1 | 12.9 | Unknown | WP Directory Kit | CWE-89 | WP Directory Kit < 1.5.6 - Subscriber+ SQL Injection via section Parameter |
| CVE-2026-47233 | 6.5 | 12.8 | Admidio | admidio | CWE-862 | Admidio: Any logged-in user can delete inventory fields via `mode=field_delet… |
| CVE-2026-68754 | 6.5 | 12.8 | jfrog | artifactory | CWE-862 | Publishers without delete permission can overwrite docker layer information |
| CVE-2026-49349 | 6.8 | 12.7 | regclient | regclient | CWE-522 | regclient may leak authentication credentials to external blob stores |
| CVE-2026-16747 | 6.5 | 12.7 | Unknown | Kirki | CWE-74 | Kirki < 6.2.1 - Unauthenticated Arbitrary Shortcode Execution via Form Email … |
| CVE-2026-18943 | 6.5 | 12.6 | Unknown | WPC Admin Columns | CWE-200 | WPC Admin Columns < 2.3.4 - Subscriber+ Arbitrary User/Post/Term Meta Disclosure |
| CVE-2026-18726 | 6.5 | 12.2 | Red Hat | Red Hat Enterprise Linux 10 | CWE-835 | Open-iscsi: open-iscsi: denial of service in iscsiuio router advertisement pa… |
| CVE-2026-73262 | 5.4 | 12.1 | prowler-cloud | prowler | CWE-79 | Prowler: Stored XSS in HTML reports through unescaped cloud resource tags |
| CVE-2026-63295 | 4.3 | 11.8 | Canonical | LXD | CWE-863 | Project restriction `restricted.containers.privilege=isolated` bypassable by … |
| CVE-2026-47231 | 8.1 | 11.8 | Admidio | admidio | CWE-639 | Admidio has IDOR in `documents-files.php` `mode=move_save` that lets any fold… |
| CVE-2026-66878 | 7.7 | 11.8 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-639 | Multicloud-operators-subscription: multicloud-operators-subscription: fetchch… |
| CVE-2026-73122 | 7.7 | 11.8 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-269 | Multicloud-operators-channel: multicloud-operators-channel: auto-generated ro… |
| CVE-2026-65940 | 6.8 | 11.7 | Progress Software Corporation | WhatsUp Gold | CWE-276 | WhatsUp Gold versions prior to 26.0.2 excessive file system permissions allow… |
| CVE-2026-73287 | 5.4 | 11.7 | rustfs | rustfs | CWE-862 | RustFS: FTPS MKD bypasses IAM CreateBucket authorization |
| CVE-2026-16737 | 5.3 | 11.6 | Unknown | WP Travel Engine | CWE-639 | WP Travel Engine < 6.8.5 - Unauthenticated Booking Details Disclosure and Mod… |
| CVE-2026-18035 | 5.3 | 11.6 | Unknown | User Access Manager | CWE-862 | User Access Manager < 2.3.15 - Unauthenticated Restricted Content Disclosure … |
| CVE-2026-19503 | 6.3 | 11.5 | MongoDB | Atlas SQL ODBC Driver | CWE-20 | Insufficient OIDC endpoint validation could invoke unintended local protocol … |
| CVE-2026-17268 | 6.8 | 11.3 | IBM | i | CWE-294 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-65370 | 7.5 | 11.1 | Apple | servicetalk | CWE-444 | ServiceTalk HTTP/1.x incorrectly handles malformed Transfer-Encoding which co… |
| CVE-2026-67284 | 5.3 | 11.1 | tabaoca.org | Cotton Cloud extension for Joomla | CWE-284 | Joomla Extension - tabaoca.org - Improper ACL checks allow file operations in… |
| CVE-2026-72809 | 7.1 | 11.0 | siyuan-note | siyuan | CWE-290 | SiYuan before v3.7.4 Authentication Bypass via Localhost Trust |
| CVE-2026-19073 | 5.3 | 11.0 | Unknown | Order Sync with Zendesk for WooCommerce | CWE-200 | Order Sync with Zendesk for WooCommerce < 2.2.3 - Unauthenticated Customer Or… |
| CVE-2026-18148 | 4.3 | 11.0 | IBM | i | CWE-117 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-18244 | 4.3 | 10.8 | GitLab | GitLab | CWE-862 | Missing Authorization in GitLab |
| CVE-2026-66378 | 4.3 | 10.7 | jfrog | artifactory | CWE-862 | Authenticated users may access private NuGet metadata |
| CVE-2026-66379 | 4.3 | 10.7 | jfrog | artifactory | CWE-862 | Authenticated users may view private Puppet module metadata |
| CVE-2026-66380 | 4.3 | 10.7 | jfrog | artifactory | CWE-862 | Authenticated users may access private OCI referrer metadata |
| CVE-2026-70547 | 4.3 | 10.7 | jfrog | artifactory | CWE-862 | Potential unauthorized metadata exposure in JFrog Artifactory |
| CVE-2026-47226 | 6.5 | 10.5 | Admidio | admidio | CWE-639 | Admidio: Authorization bypass in file_delete enables cross-folder file remova… |
| CVE-2026-19588 | 6.5 | 10.5 | Samsung Open Source | rlottie | CWE-680 | Integer Overflow to Buffer Overflow vulnerability in Samsung Open Source rlot… |
| CVE-2026-72807 | 8.8 | 10.1 | siyuan-note | siyuan | CWE-89 | SiYuan before v3.7.4 SQL Injection via queryBlocks template |
| CVE-2026-19587 | 6.5 | 10.1 | Samsung Open Source | rlottie | CWE-400 | Uncontrolled Resource Consumption vulnerability in Samsung Open Source rlotti… |
| CVE-2026-18727 | 6.5 | 9.7 | Red Hat | Red Hat Enterprise Linux 10 | CWE-191 | Open-iscsi: open-iscsi: integer underflow in iscsiuio dhcpv6 parsing |
| CVE-2026-19657 | 6.1 | 9.8 | SCADA-LTS | ScadaLTS | CWE-79 | ScadaLTS Unauthenticated Reflected XSS |
| CVE-2026-14858 | 4.3 | 9.8 | Unknown | WP Crowdfunding | CWE-639 | WP Crowdfunding < 2.2.1 - Subscriber+ Order Data Disclosure via IDOR |
| CVE-2026-63297 | 9.9 | 9.7 | Canonical | LXD | CWE-367 | Cross-project instance copy bypasses target project restrictions via TOCTOU i… |
| CVE-2026-15045 | 6.5 | 9.6 | Unknown | Wallet System for WooCommerce | CWE-472 | Wallet System for WooCommerce < 2.7.10 - Customer+ Checkout Price Manipulatio… |
| CVE-2026-68757 | 7.5 | 9.4 | jfrog | artifactory | CWE-347 | Potential improper SAML signature verification in JFrog Artifactory |
| CVE-2026-16990 | 5.3 | 9.4 | Unknown | Payment Button for PayPal | — | Payment Button for PayPal <= 1.2.3.44 - Unauthenticated Payment Price Manipul… |
| CVE-2026-73419 | 6.8 | 9.3 | nextauthjs | next-auth | CWE-345 | NextAuth.js: OAuth state, nonce, and PKCE check cookies are not bound to the … |
| CVE-2026-18246 | 4.3 | 9.3 | IBM | i | CWE-436 | IBM i is Affected By security restrictions bypass in Navigator for i |
| CVE-2026-68755 | 4.3 | 9.2 | jfrog | artifactory | CWE-863 | Bundle writers may alter trusted release information in JFrog Artifactory |
| CVE-2026-73409 | 5.1 | 9.1 | Budibase | budibase | CWE-203 | Budibase: Server Filesystem Existence/Read Oracle via Builder-Controlled Mong… |
| CVE-2026-18098 | 8.1 | 9.0 | IBM | i | CWE-346 | IBM i is Affected By XML injection flaw in Navigator for i |
| CVE-2026-72787 | 5.1 | 9.0 | craftcms | cms | CWE-79 | Craft CMS 5.0.0-RC1 before 5.10.8 Stored XSS via Draft Name |
| CVE-2026-73292 | 8.3 | 8.7 | semaphoreui | semaphore | CWE-352 | Semaphore UI: CSRF vulnerability on password change endpoint - No CSRF token … |
| CVE-2026-65926 | 3.1 | 8.7 | jfrog | artifactory | CWE-862 | Private Release Bundle versions may be disclosed under specific configurations |
| CVE-2026-73295 | 5.4 | 8.4 | squidfunk | mkdocs-material | CWE-79 | Material for MkDocs: DOM XSS in search suggestions via query parameter |
| CVE-2026-13177 | 4.3 | 8.4 | Unknown | Eventin | CWE-639 | Eventin < 4.1.20 - Contributor+ Order Information Disclosure via IDOR |
| CVE-2026-13612 | 4.3 | 8.4 | Unknown | KiviCare | CWE-639 | KiviCare < 4.5.2 - Patient+ Cross-Patient Bill, Invoice and Appointment Discl… |
| CVE-2026-14857 | 4.3 | 8.4 | Unknown | WP Crowdfunding | CWE-639 | WP Crowdfunding < 2.2.1 - Subscriber+ Campaign Update Modification via IDOR |
| CVE-2026-14859 | 4.3 | 8.4 | Unknown | WP Crowdfunding | CWE-284 | WP Crowdfunding < 2.2.1 - Subscriber+ Campaign Creation via Missing Authoriza… |
| CVE-2026-18046 | 4.3 | 8.3 | Unknown | Cookie Consent | CWE-863 | Cookie Consent < 0.0.10 - Subscriber+ MaxMind License Key Update |
| CVE-2026-18099 | 5.4 | 8.3 | IBM | i | CWE-79 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-73423 | 5.1 | 8.1 | withastro | astro | CWE-352 | Astro: composable `astro/hono` pipeline bypasses `security.checkOrigin` when … |
| CVE-2026-9318 | 4.8 | 7.9 | Jazzband | tablib | CWE-79 | tablib versions prior to 3.10.0 Stored XSS via HTML Export Dataset Title |
| CVE-2025-59320 | 4.6 | 8.0 | n/a | n/a | CWE-922 | CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 stores TPM2.0 secrets … |
| CVE-2026-73490 | 4.7 | 7.9 | flavorjones | loofah | CWE-79 | Loofah: SVG `href` attribute bypasses local-reference restriction |
| CVE-2026-19130 | 5.8 | 7.7 | Red Hat | Multicluster Engine for Kubernetes | CWE-639 | Provider-credential-controller: provider-credential-controller: cross-namespa… |
| CVE-2026-18847 | 9.8 | 7.4 | IBM | i | CWE-346 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-47230 | 6.5 | 7.2 | Admidio | admidio | CWE-639 | Admidio: IDOR in documents-files.php allows cross-folder file rename and desc… |
| CVE-2026-64952 | 6.5 | 7.2 | Rapid7 | Velociraptor | CWE-863 | Velociraptor Hunt Deletion With Insufficient Permission Check |
| CVE-2026-48551 | 6.1 | 7.0 | Nagios Enterprises, LLC. | Nagios Core | CWE-352 | Nagios Core / XI CSRF Protection Bypass via Double-Submit Cookie |
| CVE-2026-17418 | 7.8 | 6.8 | IBM | i | CWE-89 | IBM i is Affected By Multiple Vulnerabilities in SQL |
| CVE-2026-16294 | 7.1 | 6.8 | Unknown | PowerPress Podcasting plugin by Blubrry | CWE-918 | Blubrry PowerPress < 11.17.1 - Contributor+ Server-Side Request Forgery via P… |
| CVE-2026-73425 | 3.7 | 6.8 | withastro | astro | CWE-185 | @astrojs/netlify generates an overly-broad Netlify Image CDN allowlist becaus… |
| CVE-2026-68443 | await | 6.6 | Linux | Linux | — | hwmon: (gigabyte_waterforce) Stop device IO before calling hid_hw_stop |
| CVE-2026-18150 | 5.3 | 6.5 | IBM | i | CWE-362 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-68429 | await | 6.6 | Linux | Linux | — | drm/dp_mst: Handle torn-down topology gracefully in drm_dp_mst_topology_queue… |
| CVE-2026-68430 | await | 6.5 | Linux | Linux | — | drm/amdgpu/gfx8: drop unecessary BUG_ON() |
| CVE-2026-68434 | await | 6.6 | Linux | Linux | — | serial: 8250_mid: Fix NULL function pointer dereference on DNV/ICX-D/SNR plat… |
| CVE-2026-68444 | await | 6.6 | Linux | Linux | — | firmware: arm_ffa: Fix NULL dereference in ffa_partition_info_get() |
| CVE-2025-59325 | 7.5 | 6.3 | n/a | n/a | CWE-311 | CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to encrypt the i… |
| CVE-2026-16694 | 5.4 | 6.2 | IBM | i | CWE-79 | IBM i is Affected By Stored Cross-site Scripting for i |
| CVE-2026-48552 | 5.1 | 6.2 | Nagios Enterprises, LLC. | Nagios Core | CWE-79 | Nagios Core / XI DOM-based XSS via jsonquery.js |
| CVE-2026-70560 | 4.8 | 6.2 | Ultimate Fosters | Ultimate POS (Stock Management & Point of Sale) | CWE-79 | Ultimate POS Stored XSS via First Name Field in Leave Notifications |
| CVE-2026-7366 | 4.2 | 6.0 | IBM | DataPower Gateway 11.0.0 | CWE-362 | IBM DataPower Gateway affected by HTTP request header leakage in XML-Firewall |
| CVE-2026-17013 | 6.1 | 6.0 | Unknown | WP Photo Album Plus | CWE-79 | WP Photo Album Plus < 9.2.07.002 - Reflected XSS via lbstart |
| CVE-2025-41771 | 5.3 | 6.0 | Phoenix Contact | AXC F 1152 | CWE-89 | SQL injection |
| CVE-2026-64951 | 3.5 | 6.0 | Rapid7 | Velociraptor | CWE-369 | Velociraptor DoS triggered by Divide by Zero panic |
| CVE-2026-49466 | 6.5 | 5.9 | dartiss | draft-list | CWE-79 | Draft List - Contributor Stored Cross-Site Scripting via Draft Title in Custo… |
| CVE-2026-15249 | 5.4 | 5.9 | Unknown | Patterns Kit | CWE-79 | Patterns Kit <= 1.0.3 - Contributor+ Stored XSS via YouTube Popup Link |
| CVE-2026-16066 | 5.4 | 5.9 | Unknown | Welcart e-Commerce | CWE-79 | Welcart e-Commerce < 2.11.34 - Author+ Stored XSS via Product Name |
| CVE-2026-18250 | 5.0 | 5.9 | IBM | i | CWE-362 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
| CVE-2026-65938 | 4.3 | 5.8 | Progress Software Corporation | WhatsUp Gold | CWE-602 | WhatsUp Gold versions prior to 26.0.2 contain an improper authorization vulne… |
| CVE-2026-66376 | 4.2 | 5.7 | jfrog | artifactory | CWE-613 | Deleted users may temporarily retain access to JFrog Artifactory |
| CVE-2026-13622 | 8.8 | 5.4 | Red Hat | Red Hat Container Native Virtualization 4.12 | CWE-22 | Kubevirt: virt-handler-rhel9: kubevirt: virt-handler migration proxy follows … |
| CVE-2026-68437 | await | 5.3 | Linux | Linux | — | drm/imagination: Fit paired fragment job in the correct CCCB |
| CVE-2026-68449 | await | 5.3 | Linux | Linux | — | ata: sata_dwc_460ex: fix infinite loop in NCQ tag completion bit-scanning |
| CVE-2026-68450 | await | 5.3 | Linux | Linux | — | btrfs: free mapping node on duplicate reloc root insert |
| CVE-2026-68439 | await | 5.3 | Linux | Linux | — | wifi: mt76: mt7925: fix possible NULL-pointer deref in mt7925_mcu_bss_he_tlv() |
| CVE-2026-68435 | await | 5.2 | Linux | Linux | — | LoongArch: Fix address space mismatch in kexec command line lookup |
| CVE-2026-68448 | await | 5.2 | Linux | Linux | — | ovl: check access to copy_file_range source with src mounter creds |
| CVE-2026-18962 | 4.3 | 4.9 | Unknown | WP Photo Album Plus | CWE-639 | WP Photo Album Plus < 9.2.09.002 - Subscriber+ Cross-Album File Upload via Mi… |
| CVE-2026-19052 | 4.3 | 4.9 | Unknown | ProSolution WP Client | CWE-862 | ProSolution WP Client < 2.0.9 - Subscriber+ proSol_ajaxTablesync and proSol_a… |
| CVE-2025-59324 | 9.1 | 4.7 | n/a | n/a | CWE-347 | CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to properly vali… |
| CVE-2026-16695 | 7.8 | 4.7 | IBM | i Access Client Solutions | CWE-78 | IBM i Access Client Solutions (ACS) is Affected By Multiple Vulnerabilities |
| CVE-2025-59327 | 7.5 | 4.7 | n/a | n/a | CWE-347 | In CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4, bootxsa.efi fails … |
| CVE-2026-68441 | await | 4.6 | Linux | Linux | — | net/sched: Handle TC_ACT_REDIRECT from qdisc filter chains |
| CVE-2026-13094 | 7.8 | 4.4 | IBM | i Access Client Solutions | CWE-94 | IBM i Access Client Solutions (ACS) is Affected By Multiple Vulnerabilities |
| CVE-2026-18097 | 5.5 | 4.4 | IBM | Db2 | CWE-532 | IBM® Db2® federated server could allow a local attacker to obtain sensitive i… |
| CVE-2026-68436 | await | 4.3 | Linux | Linux | — | drm/amd/display: use kvzalloc to allocate struct dc |
| CVE-2026-68438 | await | 4.3 | Linux | Linux | — | smp: Make CSD lock acquisition atomic for debug mode |
| CVE-2026-6484 | 8.2 | 4.2 | Insyde Software | InsydeH2O | CWE-1277 | Lack of verified boot to certain FV may cause arbitrary code execution |
| CVE-2026-64927 | 6.4 | 4.1 | Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | CWE-639 | Multicloud-operators-channel: multicloud-operators-channel: cross-namespace s… |
| CVE-2026-19050 | 6.4 | 3.6 | Unknown | ProSolution WP Client | CWE-918 | ProSolution WP Client < 2.0.9 - Subscriber+ SSRF via proSol_url_validate |
| CVE-2026-19217 | 5.4 | 3.3 | Unknown | Royal Addons for Elementor | CWE-79 | Royal Elementor Addons < 1.7.1065 - Contributor+ Stored XSS via Icon Box Widget |
| CVE-2026-73433 | 6.6 | 3.1 | GStreamer | gst-plugins-good | CWE-191 | Gstreamer1-plugins-good: gstreamer: unsigned integer underflow in avidemux fu… |
| CVE-2026-73434 | 6.1 | 3.1 | GStreamer | gst-plugins-good | CWE-125 | Gstreamer1-plugins-good: gstreamer: out-of-bounds read in avidemux vprp video… |
| CVE-2026-18096 | 3.3 | 3.1 | IBM | Db2 | CWE-770 | IBM® Db2® could allow a local attacker to cause a denial of service due to a … |
| CVE-2026-49262 | 3.0 | 3.2 | aimeos | pagible | CWE-367 | Aimeos Pagible CMS vulnerable to Server Side Request Forgery (SSRF) via DNS r… |
| CVE-2026-47234 | 4.4 | 3.1 | Admidio | admidio | CWE-200 | Admidio writes session IDs and auto-login cookie values to application logs |
| CVE-2026-68432 | 8.8 | 3.0 | Linux | Linux | — | vxlan: require CAP_NET_ADMIN in the device netns for changelink |
| CVE-2026-69105 | 8.1 | 2.9 | jfrog | artifactory | CWE-345 | Potential package cache integrity issue in JFrog Artifactory |
| CVE-2026-16999 | 6.3 | 2.9 | Ministry of Justice | UYAP Document Editor | CWE-611 | XXE in Ministry of Justice's UYAP Document Editor |
| CVE-2026-19003 | 8.4 | 2.7 | MongoDB | BI Connector ODBC Driver | CWE-121 | MongoDB BI Connector ODBC driver may write outside an allocated buffer when t… |
| CVE-2026-68445 | 7.8 | 2.7 | Linux | Linux | — | drm/vc4: Prevent shader BO mappings from becoming writable |
| CVE-2026-68440 | 7.8 | 2.5 | Linux | Linux | — | net: txgbe: fix heap overflow when reading module EEPROM |
| CVE-2026-46731 | 7.8 | 2.5 | Dell | Display and Peripheral Manager (DDPM Windows) | CWE-290 | Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3.0.1… |
Results continue: ranks 401–433.
Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.
Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.
Day boundary. A day is a UTC calendar day. This page covers 2026-08-12 00:00:00–23:59:59 UTC. All times shown are UTC.
Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.
Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.