boxscore/security
Wednesday, August 12, 2026 · all times UTC← 2026-08-11 · archive · 2026-08-13 →

433 CVEs published August 12, 2026: 69 critical, 149 high, 185 medium, 16 low; 0 in KEV; 11 with a public exploit reference; 14 awaiting enrichment. Elevated volume. 25 rendered as box scores below; the remaining 408 in the results table.

Standings

League
MTDYTD2025 same span2025 full
CVEs published40841288914102563
KEV catalog size1670

789 disclosures carry no usable vendor attribution (upstream records marked n/a or unknown) and are excluded from the vendor tables. KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; medians are over each vendor's YTD disclosures.

Operating Systems & Platforms
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
linux412199723412929802730.27.8.0017+399
microsoft439180013112164288378331.87.8.0038+385
google4946172140228187351.16.5.0023+49
red hat1253472216514218400.07.1.0025+111
apple2246576811229372.87.1.0027+2
canonical11149320000.09.9.0029+11
suse551220000.07.3.0022+5
android010100161100.08.4.01710
Network & Infrastructure
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
cisco315192590961427.57.8.0033+31
fortinet7253612128624.06.0.0051+7
palo alto networks015017514213.34.7.0028-10
sonicwall1012354017216.77.8.0024+10
vmware01247012100.08.7.00440
netgear990054800.04.3.0031+9
ivanti38130033562.57.9.5751+3
checkpoint1541003240.09.3.2062+1
Open Source Ecosystems
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
apache95232451167014020.97.5.0048+95
mozilla1734226501300.09.1.0031+1
gitlab132808162427.15.1.0026+13
github460420000.08.1.0040+4
docker140130100.05.7.0014+1
wordpress1412105250.08.8.3700+1
drupal01100051100.09.8.88320
kubernetes010001000.02.4.00240
Enterprise Applications
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
oracle01113212539304574030.37.6.00310
ibm1002084897603710.57.7.0029+100
adobe6010022512217544.07.8.0036+59
progress1639112080912.68.1.0027+16
solarwinds0201611011420.09.1.00500
veeam10123720400.08.6.0027+10
zohocorp252210000.08.5.0099+2
atlassian0303001300.08.0.00260
Industrial & Embedded
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
d-link1523150612614.39.3.0209+15
siemens171811610100.07.3.0011+17
hikvision0704202114.37.2.00250
bosch030300000.08.1.00280
schneider electric031200100.08.7.00200
synology110100000.07.3.0013+1
honeywell010010000.06.9.00310
mitsubishi electric010100000.07.1.00130
Other
VendorMTDYTDCHMLKEVKEV YTDKEV/100Med CVSSMed EPSSΔ
mongodb3258337162200.07.1.0024+32
surrealdb057326253000.07.1.00250
zephyrproject2244015236000.06.4.0017+22
grafana142314223000.06.5.0033-3
netty14262781000.07.5.0046+1
legion of the bouncy castle344152790000.08.7.0026+34
jfrog2538113231000.06.5.0023+25
sap_se343747224200.05.9.0022+34

Leaders (trailing 30 days unless noted)

Highest EPSS
CVEEPSS%ileCVSS
CVE-2026-8037.993199.99.8
CVE-2026-63030.956099.99.8
CVE-2026-39808.912199.8
CVE-2026-34486.829399.67.5
CVE-2026-50522.769899.59.8
CVE-2026-15410.763599.57.2
CVE-2026-15409.742299.410.0
CVE-2026-25089.736099.49.8
CVE-2026-16232.733099.49.3
CVE-2026-60137.731099.45.9
Highest CVSS
CVECVSSEPSSNote
CVE-2026-1540910.0.7422KEV
CVE-2026-7289810.0.1040KEV
CVE-2026-898510.0.0660
CVE-2026-651610.0.0473
CVE-2026-4766810.0.0434
CVE-2026-4836210.0.0207
CVE-2026-7329910.0.0121
CVE-2026-4435910.0.0100
CVE-2026-4561810.0.0095
CVE-2025-7138910.0.0093
Most disclosures (vendor)
VendorCVEs
oracle1109
linux1064
microsoft1043
google452
red hat234
apache200
ibm200
apple169
adobe88
mozilla68
Most KEV additions (YTD)
VendorKEV
microsoft33
cisco14
apple7
fortinet6
google5
ivanti5
adobe4
langflow4
solarwinds4
synacor4
Most-affected ecosystems
EcosystemAdvisories
Maven64
PyPI5
Go3
npm3
Packagist2
crates.io2
NuGet1
Fastest to KEV
CVEVendorDays
CVE-2021-27137DD-WRT0
CVE-2023-4346KNX Association0
CVE-2025-68686Fortinet0
CVE-2026-0770Langflow0
CVE-2026-15409SonicWall0
CVE-2026-15410SonicWall0
CVE-2026-16232checkpoint0
CVE-2026-16812Arista Networks0
CVE-2026-18556N-able0
CVE-2026-18577N-able0
Longest unpatched (KEV due date passed)
CVEVendorDueDays over
CVE-2021-27104Accellion2021-11-171729
CVE-2021-27102Accellion2021-11-171729
CVE-2021-27101Accellion2021-11-171729
CVE-2021-27103Accellion2021-11-171729
CVE-2021-21017Adobe2021-11-171729
CVE-2021-28550Adobe2021-11-171729
CVE-2021-42013Apache2021-11-171729
CVE-2021-41773Apache2021-11-171729
CVE-2021-30858Apple2021-11-171729
CVE-2021-30860Apple2021-11-171729

Transactions

EXPLOIT PUBLISHEDCVE-2017-10271 (Oracle Corporation WebLogic Server). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2018-11138. Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2018-15982. Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2018-20250 (Check Point Software Technologies Ltd. WinRAR). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2018-7602 (Drupal core). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2018-8120 (Microsoft Windows Server 2008). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2018-8174 (Microsoft Windows 7). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2019-0752 (Microsoft Internet Explorer 11). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2019-1069 (Microsoft Windows 10 Version 1703). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2019-1458 (Microsoft Windows). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2019-1579 (Palo Alto Networks GlobalProtect Portal/Gateway Interface). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2020-0787 (Microsoft Windows). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2020-0796 (Microsoft Windows 10 Version 1903 for 32-bit Systems). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2020-3153 (Cisco AnyConnect Secure Mobility Client). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2020-3433 (Cisco AnyConnect Secure Mobility Client). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2021-1675 (Microsoft Windows 10 Version 1809). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2021-1732 (Microsoft Windows 10 Version 1803). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2021-21972 (VMware vCenter Server). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2021-21975 (VMware vRealize Operations). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2021-21983 (VMware vRealize Operations). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2021-21985 (VMware vCenter Server and VMware Cloud Foundation). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2021-26855 (Microsoft Exchange Server 2016 Cumulative Update 19). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2021-27065 (Microsoft Exchange Server 2019). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2023-42787 (Fortinet FortiAnalyzer). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2024-14042 (Open5GS). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-10681 (zephyrproject zephyr). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-14548 (Unknown Ray Enterprise Translation). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-14549 (Unknown Ray Enterprise Translation). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-17022 (Unknown Salon Booking System). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-19351 (dresende node-sql-query). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-19361 (macrozheng mall). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-19376 (Uasoft Badaso). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-19382 (Almico Speedfan). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-45799 (square wire). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-5241 (huggingface/transformers). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-55653 (Red Hat Enterprise Linux 10). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-55654 (Red Hat Enterprise Linux 10). Public exploit reference added.

EXPLOIT PUBLISHEDCVE-2026-67579 (ash-project ash). Public exploit reference added.

RESCOREDCVE-2019-2725 (Oracle Corporation Tape Library ACSLS). CVSS 7.5 → 9.8 (NVD).

RESCOREDCVE-2023-42787 (Fortinet FortiAnalyzer). CVSS 6.2 → 6.5 (NVD).

RESCOREDCVE-2024-14043 (Open5GS). CVSS 5.3 → 2.1 (NVD).

RESCOREDCVE-2024-26882 (Linux). CVSS 7.3 → 7.8 (NVD).

RESCOREDCVE-2024-31245 (ConvertKit). CVSS 5.3 → 7.5 (NVD).

RESCOREDCVE-2024-31249 (WPKube Subscribe To Comments Reloaded). CVSS 5.3 → 7.5 (NVD).

RESCOREDCVE-2025-61848 (Fortinet FortiManager). CVSS 6.5 → 7.2 (NVD).

RESCOREDCVE-2026-49261 (MariaDB server). CVSS 10 → 9.8 (NVD).

RESCOREDCVE-2026-4942 (IBM i). CVSS 5.9 → 7.5 (NVD).

RESCOREDCVE-2026-50656 (Microsoft Malware Protection Engine). CVSS 7.8 → 7 (NVD).

RESCOREDCVE-2026-5241 (huggingface/transformers). CVSS 8 → 9.6 (NVD).

RESCOREDCVE-2026-55653 (Red Hat Enterprise Linux 10). CVSS 4.3 → 6.5 (NVD).

RESCOREDCVE-2026-55655 (Red Hat Enterprise Linux 10). CVSS 5 → 6.1 (NVD).

ENRICHEDCVE-2018-9206 (Blueimp jQuery-File-Upload). Received CVSS 9.8 and CPE data from NVD.

ENRICHEDCVE-2021-21983 (VMware vRealize Operations). Received CVSS 6.5 and CPE data from NVD.

ENRICHEDCVE-2022-50073 (Linux). Received CVSS 5.5 and CPE data from NVD.

Yesterday's Results

433 CVEs published. 25 box scores and 375 table rows below; the remaining 33 continue on page 2 — every CVE is listed, nothing truncated.

Microsoft UFO: Unauthenticated Mobile MCP access allows remote Android device control and screen disclosure
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  L    9.4   .0261   84.1     —
AFFECTED
  Product  Versions   Fixed
  UFO      < 3.0.8 –  —
TIMELINE
  Aug 11  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-306, CWE-862 · CNA: GitHub_M · 3 references · NVD status: Received
Microsoft UFO: IPv6 transition address bypass of SSRF guard in URL validation
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   P   N   N   N   N   N    6.9   .0162   74.0     —
AFFECTED
  Product  Versions   Fixed
  UFO      < 3.0.8 –  —
TIMELINE
  Aug 11  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-918 · CNA: GitHub_M · 3 references · NVD status: Received
Red Hat Red Hat Advanced Cluster Management for Kubernetes 2 — Acm-search-v2-rhel9: search-v2-operator: hub search cr collector.imageoverride propagated to every spoke as arbitrary container image
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   H   N  C  H  H  L    9.0   .0145   71.2     —
AFFECTED
  Product                                               Versions     Fixed
  Red Hat Advanced Cluster Management for Kubernetes 2  unspecified  —
TIMELINE
  Aug 6   Reserved by CNA
  Aug 12  Published (CNA: redhat)
CWE-829 · CNA: redhat · 2 references · NVD status: Awaiting Analysis
microsoft prompty — Prompty: Server-Side Template Injection to Remote Code Execution in the @prompty/core Nunjucks Renderer
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  C  H  H  H   10.0   .0121   66.0     —
AFFECTED
  Product  Versions   Fixed
  prompty  < 0.1.5 –  —
TIMELINE
  Aug 11  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-94, CWE-1336 · CNA: GitHub_M · 6 references · NVD status: Received
frangoteam FUXA — FUXA's Unauthenticated Project Data Disclosure Exposes Server-Side Scripts and Device Configurations
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  N  N    7.5   .0120   65.6     —
AFFECTED
  Product  Versions   Fixed
  FUXA     = 1.3.0 –  —
TIMELINE
  May 19  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-201 · CNA: GitHub_M · 2 references · NVD status: Received
IBM Db2 Mirror for i is vulnerable to OS command injection []
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0104   61.3     —
AFFECTED
  Product           Versions  Fixed
  Db2 Mirror for i  7.4 –     —
TIMELINE
  Jul 24  Reserved by CNA
  Aug 12  Published (CNA: ibm)
CWE-78 · CNA: ibm · 1 reference · NVD status: Analyzed
Canonical LXD — Root RCE via image backup.yaml symlink
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  C  H  H  H    9.9   .0102   60.4     —
AFFECTED
  Product  Versions  Fixed
  LXD      4.0.0 –   —
TIMELINE
  Jul 16  Reserved by CNA
  Aug 12  Published (CNA: canonical)
CWE-59 · CNA: canonical · 1 reference · NVD status: Received
seriousm4x UpSnap — UpSnap vulnerable to Remote Code Execution via IP Field Template Injection in wake_cmd/shutdown_cmd
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  C  H  H  N    9.6   .0088   56.2     —
AFFECTED
  Product  Versions   Fixed
  UpSnap   < 5.4.0 –  —
TIMELINE
  May 30  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-78 · CNA: GitHub_M · 2 references · NVD status: Received
IBM i is Affected By privilege escalation in Navigator for i
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0081   53.8     —
AFFECTED
  Product  Versions  Fixed
  i        7.6 –     —
TIMELINE
  Aug 3   Reserved by CNA
  Aug 12  Published (CNA: ibm)
CWE-78 · CNA: ibm · 1 reference · NVD status: Analyzed
Apache Airflow: DAG-author remote code execution on the Scheduler via awaiting_input next_kwargs deserialization
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  L  L  L    7.3   .0078   52.9     —
AFFECTED
  Product         Versions  Fixed
  Apache Airflow  3.3.0 –   —
TIMELINE
  Jul 29  Reserved by CNA
  Aug 12  Published (CNA: apache)
CWE-502 · CNA: apache · 3 references · NVD status: Analyzed
n/a Open5GS — Open5GS CER init.c diam_log_func assertion
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   N   N   L    5.5   .0071   50.5     —
AFFECTED
  Product  Versions  Fixed
  Open5GS  2.7.0 –   2.7.7
TIMELINE
  Aug 9   Reserved by CNA
  Aug 12  Published (CNA: VulDB)
CWE-617 · CNA: VulDB · 8 references · NVD status: Deferred
Microsoft Container Migration Solution Accelerator: Authenticated IDOR allowing read/write/delete processes
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   H   H   H    8.7   .0068   49.3     —
AFFECTED
  Product                                   Versions    Fixed
  Container-Migration-Solution-Accelerator  <= 2.1.2 –  —
TIMELINE
  Aug 11  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-639 · CNA: GitHub_M · 1 reference · NVD status: Received
wolfsoftwaresystemsltd WolfStack — WolfStack < 25.9.2 Hard-coded Secret Authentication Bypass via X-WolfStack-Secret
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0062   46.7     —
AFFECTED
  Product    Versions     Fixed
  WolfStack  unspecified  —
TIMELINE
  Aug 12  Reserved by CNA
  Aug 12  Published (CNA: VulnCheck)
CWE-798 · CNA: VulnCheck · 3 references · NVD status: Received
seriousm4x UpSnap — UpSnap - Unauthenticated Initial-Superuser Takeover Chains to Root RCE via wake_cmd
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0062   46.6     —
AFFECTED
  Product  Versions             Fixed
  UpSnap   >= 4.4.1, < 5.4.0 –  —
TIMELINE
  Jun 1   Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-78, CWE-269, CWE-306, CWE-862 · CNA: GitHub_M · 2 references · NVD status: Received
n/a Open5GS — Open5GS SMF Diameter Gx Credit-Control-Answer smf_gx_cca_cb denial of service
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   L   N   N   N   L    2.1   .0061   46.4     —
AFFECTED
  Product  Versions  Fixed
  Open5GS  2.7.0 –   2.7.7
TIMELINE
  Aug 9   Reserved by CNA
  Aug 12  Published (CNA: VulDB)
CWE-404 · CNA: VulDB · 10 references · NVD status: Deferred
Apache Airflow: DAG-author remote code execution on the Scheduler via a Serde `Callback` deserialization gadget
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  H  H    8.8   .0061   46.4     —
AFFECTED
  Product         Versions  Fixed
  Apache Airflow  3.3.0 –   —
TIMELINE
  Jul 29  Reserved by CNA
  Aug 12  Published (CNA: apache)
CWE-502 · CNA: apache · 4 references · NVD status: Analyzed
Unknown wpmudev-updates — WPMU DEV Dashboard < 5.0.1 - Remote Code Execution via Hub Install Action
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0059   45.4     —
AFFECTED
  Product          Versions     Fixed
  wpmudev-updates  unspecified  —
TIMELINE
  Jul 17  Reserved by CNA
  Aug 12  Published (CNA: WPScan)
CWE-94 · CNA: WPScan · 1 reference · NVD status: Received
Fortinet FortiManager — A authentication bypass using an alternate path or channel vulnerability in Fortinet FortiManager 7.6.1, Fo…
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   H   N   N  U  H  H  H    8.1   .0059   45.3     —
AFFECTED
  Product             Versions  Fixed
  FortiManager        7.6.1 –   —
  FortiManager Cloud  7.6.1 –   —
TIMELINE
  Aug 4   Reserved by CNA
  Aug 12  Published (CNA: fortinet)
CWE-288 · CNA: fortinet · 1 reference · NVD status: Received
owen2345 CamaleonCMS — CamaleonCMS 2.9.1 Server-Side Template Injection via test_email Action
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   N   H   N   H   H   H    7.5   .0059   45.3     —
AFFECTED
  Product      Versions     Fixed
  CamaleonCMS  unspecified  —
TIMELINE
  Aug 11  Reserved by CNA
  Aug 12  Published (CNA: VulnCheck)
CWE-1336 · CNA: VulnCheck · 3 references · NVD status: Received
Phoenix Contact AXC F 1152 — Unauthenticated Buffer Overflow in PROFINET Service
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   L   N   N   N   H   H   H    9.3   .0059   45.3     —
AFFECTED
  Product                Versions    Fixed
  AXC F 1152             2019.0.4 –  —
  AXC F 1252             2019.0.4 –  —
  AXC F 2152             2019.0.4 –  —
  AXC F 3152             2019.0.4 –  —
  BPC 9102S              2019.0.4 –  —
  BPC 9202S              2019.0.4 –  —
  RFC 4072R              2019.0.4 –  —
  RFC 4072S              2019.0.4 –  —
  VL3 UPC 2440 EDGE      2019.0.4 –  —
  VPLCNEXT CONTROL 1000  2019.0.4 –  —
  + 5 more
TIMELINE
  Apr 16  Reserved by CNA
  Aug 12  Published (CNA: CERTVDE)
CWE-120 · CNA: CERTVDE · 1 reference · NVD status: Received
Apache Airflow: Arbitrary airflow.* class instantiation on the API server via the XCom deserialize endpoint
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  L  L  N    5.4   .0058   45.2     —
AFFECTED
  Product         Versions     Fixed
  Apache Airflow  unspecified  —
TIMELINE
  Jul 4   Reserved by CNA
  Aug 12  Published (CNA: apache)
CWE-502 · CNA: apache · 3 references · NVD status: Analyzed
Unknown WooCommerce Subscriptions — WooCommerce Subscriptions < 9.1.0 - Unauthenticated RCE via PHP Object Injection
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0057   44.7     —
AFFECTED
  Product                    Versions  Fixed
  WooCommerce Subscriptions  4.7.0 –   —
TIMELINE
  Jul 30  Reserved by CNA
  Aug 12  Published (CNA: WPScan)
CWE-434 · CNA: WPScan · 1 reference · NVD status: Received
jupyterlab: Image viewer in JupyterLab allows XSS when opening malicious image in new browser tab
  AV  AC  AT  PR  UI  VC  VI  VA   CVSS    EPSS   %ile   KEV
   N   H   N   N   A   H   H   L    7.5   .0057   44.7     —
AFFECTED
  Product     Versions    Fixed
  jupyterlab  < 4.5.10 –  —
TIMELINE
  Aug 12  Reserved by CNA
  Aug 12  Published (CNA: GitHub_M)
CWE-79 · CNA: GitHub_M · 10 references · NVD status: Received
Apache Airflow Google provider: google Secret Manager backend: team scope is never applied, exposing every team's Connections and Variables
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   L   N  U  H  N  N    6.5   .0057   44.5     —
AFFECTED
  Product                         Versions     Fixed
  Apache Airflow Google provider  unspecified  —
TIMELINE
  Jul 31  Reserved by CNA
  Aug 12  Published (CNA: apache)
CWE-1220 · CNA: apache · 3 references · NVD status: Analyzed
Unknown giftware — Gift Cards For WooCommerce Pro < 4.2.10 - Unauthenticated Arbitrary File Upload
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   N   L   N   N  U  H  H  H    9.8   .0057   44.4     —
AFFECTED
  Product   Versions     Fixed
  giftware  unspecified  —
TIMELINE
  Jul 8   Reserved by CNA
  Aug 12  Published (CNA: WPScan)
CWE-434 · CNA: WPScan · 1 reference · NVD status: Received
Remainder (ranked, continued)
CVECVSSEPSS %ileVendorProductCWETitle
CVE-2026-6728210.044.4fabrikar.comFabrik extension for JoomlaCWE-94Joomla Extension - fabrikar.com - Unauthenticated remote code execution in Fa…
CVE-2026-714085.343.7FortinetFortiOSCWE-770A allocation of resources without limits or throttling vulnerability in Forti…
CVE-2026-134767.343.4IBMInformix Dynamic ServerCWE-78IBM Informix Wire Listener Vulnerable to Unauthenticated Remote Code Execution
CVE-2026-704658.143.3FortinetFortiClientWindowsCWE-120A buffer copy without checking size of input ('classic buffer overflow') vuln…
CVE-2026-172189.843.2IBMiCWE-787IBM i is Affected By Remote Code Execution Vulnerability in Line Printer Daem…
CVE-2026-732409.843.0Apache Software FoundationApache AlluraCWE-88Apache Allura: Git command injection
CVE-2025-593219.842.6n/an/aCWE-1188CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 contains a default TPM…
CVE-2026-174316.142.6MITHALDUPDF::WebKitCWE-73PDF::WebKit versions through 1.2 for Perl allow OS command injection via a 2-…
CVE-2026-711939.642.1OpenStackDesignateCWE-863In OpenStack Designate before 22.0.1, zone creation checks (_is_subzone, _is_…
CVE-2026-169068.842.0IBMiCWE-78IBM i is Affected By Multiple Vulnerabilities in Domain Name System
CVE-2026-169048.142.1IBMiCWE-269IBM i is Affected By improper privilege management in Navigator for i
CVE-2026-485537.742.0Nagios Enterprises, LLC.Nagios CoreCWE-78Nagios Core / XI Authenticated RCE via Custom-Variable Macro Injection
CVE-2026-485547.742.0Nagios Enterprises, LLC.Nagios CoreCWE-78Nagios Core / XI Authenticated RCE via Unfiltered NOTIFICATION-Family Macro S…
CVE-2026-168609.941.3IBMiCWE-427IBM i is Affected By Remote Code Execution Vulnerability []
CVE-2026-113258.841.3Cloudflarehttps://github.com/cloudflare/pages-actionCWE-78cloudflare/pages-action is deprecated — migration required by September 18th,…
CVE-2026-186698.841.3IBMiCWE-250IBM i is Affected By A Privilege Escalation Vulnerability []
CVE-2026-260359.841.2FortinetFortiWebCWE-287An Improper Authentication vulnerability [CWE-287] vulnerability in Fortinet …
CVE-2025-156862.141.2n/aOpen5GSCWE-404Open5GS HSS Service fd_msg_sess_get denial of service
CVE-2026-711946.841.1OpenStackDesignateCWE-669In OpenStack Designate before 22.0.2, the mDNS handler performs pool-blind lo…
CVE-2026-187138.841.0IBMiCWE-269IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-714075.640.2FortinetFortiOSCWE-121A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortin…
CVE-2026-171108.840.1IBMiCWE-250IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-580768.839.6Apache Software FoundationApache AirflowCWE-502Apache Airflow: Unguarded import_string() of airflow_exc_ser / base_exc_ser e…
CVE-2024-140442.139.5n/aOpen5GSCWE-119Open5GS Diameter Rx pcrf-rx-path.c pcrf_rx_aar_cb buffer overflow
CVE-2026-734149.239.3ericcornelissenshescapeCWE-78Shescape: Shell injection via unescaped parentheses on Windows with CMD
CVE-2026-541834.338.5Apache Software FoundationApache AirflowCWE-200Apache Airflow: Airflow Variables were not masked in the UI for authenticated…
CVE-2026-734187.538.1nextauthjsnext-authCWE-20NextAuth.js: getToken() throws an uncaught exception on malformed Bearer auth…
CVE-2025-593197.238.1n/an/aCWE-290CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to certify the i…
CVE-2026-170839.837.7IBMiCWE-787IBM i is Affected By Multiple Vulnerabilities in the Debug Server
CVE-2026-189618.137.6fahdaslamSocial Login, Passkeys, Magic Link & Email OTP – Passwordless Login by VentraConnectCWE-287Social Login, Passkeys, Magic Link & Email OTP – Passwordless Login by Ventra…
CVE-2026-732949.937.2semaphoreuisemaphoreCWE-78Semaphore U: OS Command Injection
CVE-2025-593269.837.2n/an/aCWE-693CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to enforce IMA p…
CVE-2026-659418.836.4Progress Software CorporationWhatsUp GoldCWE-73WhatsUp Gold versions prior to 26.0.2 contain an unauthenticated remote code …
CVE-2026-172666.536.4IBMiCWE-22IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-732376.135.8Apache Software FoundationApache AlluraCWE-80Apache Allura: XSS in markdown pipeline
CVE-2026-732386.135.8Apache Software FoundationApache AlluraCWE-80Apache Allura: XSS in code display
CVE-2026-734079.035.3BudibasebudibaseCWE-22Budibase: Unauthenticated REST Datasource Credential Theft via Cross-Origin A…
CVE-2026-174178.834.9IBMiCWE-78IBM i is Affected By Remote Code Execution Vulnerabilities [, ]
CVE-2026-176428.834.9IBMiCWE-78IBM i is Affected By Remote Code Execution Vulnerabilities [, ]
CVE-2026-689687.534.7Apache Software FoundationApache AirflowCWE-436Apache Airflow: Authorization bypass in the Backfill API through conflicting …
CVE-2026-578589.334.7Cal.comCal.com Self-Hosted (Cal.diy)CWE-79Cal.com Cal.diy 6.2.0 Stored XSS via BookingPageTagManager Analytics Tracking ID
CVE-2026-193118.634.6AWSOpenSearchCWE-475Missing Authorization in Execute Monitor API in OpenSearch Alerting Plugin
CVE-2026-74275.334.5GitLabGitLabCWE-770Allocation of Resources Without Limits or Throttling in GitLab
CVE-2026-494678.834.3smp46pingvin-share-xCWE-303TOTP enrollment hijack: password gate skipped due to unawaited promise
CVE-2026-169077.634.0IBMiCWE-787IBM i is Affected By Multiple Vulnerabilities in the Debug Server
CVE-2026-196547.533.4Red HatRed Hat Enterprise Linux 10CWE-125Rsyslog: a configuration-dependent issue in rsyslog's optional imptcp input m…
CVE-2026-732938.833.3semaphoreuisemaphoreCWE-269Semaphore UI: Manager-to-owner privilege escalation via custom-role slug coll…
CVE-2026-170947.133.0IBMiCWE-22IBM i is Affected By Path Traversal Vulnerability in Navigator for i
CVE-2026-186635.932.9Red HatRed Hat Directory Server 11CWE-415389-ds-base: 389-ds-base: pre-authentication double-free in get_ldapmessage_c…
CVE-2026-735008.732.8etcd-ioetcdCWE-770etcd: `tlsListener.acceptLoop` spawns unbounded handshake goroutines with no …
CVE-2026-195948.132.7SnowflakeSnowflake Python APIsCWE-22Path Traversal and HTTP Parameter Pollution in Snowflake Python API (snowflak…
CVE-2026-167709.832.5MITHALDUPDF::WebKitCWE-88PDF::WebKit versions through 1.2 for Perl allow argument injection into wkhtm…
CVE-2026-650176.531.9Apache Software FoundationApache AirflowCWE-200Apache Airflow: Config API: team-scoped Celery broker secret disclosed to a V…
CVE-2026-675797.531.9ash-projectashCWE-502Filter expression injection via forged keyset pagination cursor in Ash
CVE-2025-417708.731.8Phoenix ContactAXC F 1152CWE-770Unauthenticated Denial of Service
CVE-2026-169317.531.8IBMiCWE-835IBM i is Affected By A Denial of Service Vulnerability []
CVE-2026-172717.531.8IBMiCWE-770IBM i is Affected By Multiple Vulnerabilities in the Debug Server
CVE-2026-672866.331.6joomshaper.comSP Page Builder extension for JoomlaCWE-22Joomla Extension - joomshaper.com - Unauthenticated arbitrary directory creat…
CVE-2026-186755.331.6Kong Inc.Kong MeshCWE-248Kong Mesh: control plane denial of service via a malformed dataplane token wi…
CVE-2026-170958.331.5IBMiCWE-915IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-632939.931.4CanonicalLXDCWE-59Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesys…
CVE-2025-156855.331.3n/aOpen5GSCWE-119Open5GS freeDiameter memory corruption
CVE-2026-733009.631.2BudibasebudibaseCWE-89Budibase: SQL Injection via `multipleStatements: true`
CVE-2026-190019.530.8MongoDBBI Connector ODBC DriverCWE-190MongoDB BI Connector ODBC driver may write outside an allocated buffer when h…
CVE-2026-105349.830.7IBMDb2CWE-121IBM® Db2® is vulnerable to buffer overflow in the IXF IMPORT parser
CVE-2026-672859.230.7joomshaper.comSP Page Builder extension for JoomlaCWE-22Joomla Extension - joomshaper.com - Unauthenticated arbitrary local PHP file …
CVE-2026-687605.330.5jfrogartifactoryCWE-287Potential remember-me authentication bypass in JFrog Artifactory
CVE-2026-734067.530.4BudibasebudibaseCWE-200Budibase: Unauthenticated user information disclosure via public tenant user …
CVE-2026-648267.130.4rConfigrConfigCWE-22rConfig < 8.2.13 Path Traversal File Read via FileDownloadController
CVE-2026-732689.930.1Red HatMulticluster Engine for KubernetesCWE-94Cluster-curator-controller: cluster-curator-controller: spec.install.override…
CVE-2026-505619.430.1xerrorsYuxiCWE-287Yuxi has a JWT Authentication Bypass Leading to Cross-Instance Administrator …
CVE-2026-120057.230.1IBMSecurity Verify AccessCWE-78Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-126187.230.1IBMSecurity Verify AccessCWE-74Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-181064.329.9IBMiCWE-22IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-734997.129.6etcd-ioetcdCWE-863etcd: Watch API authorization bypass via open-ended range requests
CVE-2026-190048.829.5MongoDBBI Connector ODBC DriverCWE-122MongoDB BI Connector ODBC Driver Memory-Safety Issue When Handling Stored Pro…
CVE-2025-593227.529.1n/an/aCWE-329CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to properly hand…
CVE-2026-714697.529.0Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-770Acm-search-v2-api-rhel9: search-v2-api: unbounded tokenreviews cache allows u…
CVE-2026-733746.129.0vulnerability-lookupvulnerability-lookupCWE-79Stored Cross-Site Scripting (XSS) via Unescaped CNA Reference Tags in vulnera…
CVE-2026-689696.528.9Apache Software FoundationApache AirflowCWE-532Apache Airflow: Bulk Variable and Connection endpoints record secret values i…
CVE-2026-632989.928.6CanonicalLXDCWE-78LXD arbitrary lxc.conf directive injection via NVIDIA instance configuration
CVE-2026-732639.928.2prowler-cloudprowlerCWE-78Prowler: RCE on Prowler App workers via kubeconfig auth-provider cmd-path
CVE-2026-187499.828.1CERT/CCVINCECWE-639CVE-2026-18749
CVE-2026-447418.828.1pimcorepimcoreCWE-89Pimcore Admin Classic Bundle Vulnerable to SQL Injection in Translation Grid …
CVE-2026-195667.528.1RRWONet::CIDR::SetCWE-789Net::CIDR::Set versions before 0.23 for Perl allow memory exhaustion and malf…
CVE-2026-691068.827.9jfrogartifactoryCWE-20Potential cache poisoning in JFrog Artifactory
CVE-2026-120048.727.9IBMSecurity Verify AccessCWE-134Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-734126.327.9ericcornelissenshescapeCWE-78Shescape: Path disclosure on Unix with Zsh
CVE-2026-732857.527.6rustfsrustfsCWE-863RustFS: OPA policy plugin omits ExistingObjectTag conditions, allowing tag-ba…
CVE-2026-734937.527.6http4sblazeCWE-770http4s-blaze-server: Unbounded WebSocket message aggregation
CVE-2026-168568.827.5IBMiCWE-78IBM i is Affected By Multiple Vulnerabilities in Domain Name System
CVE-2026-668989.927.5CanonicalLXDCWE-22Path traversal via unvalidated instance name in backup tarball restore enable…
CVE-2026-735019.127.4getkinkin-openapiCWE-287kin-openapi: ValidationHandler.Load() Fail-Open Authentication Bypass via Noo…
CVE-2026-725089.927.3Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-250Multicloud-operators-subscription: multicloud-operators-subscription: hub and…
CVE-2026-131058.827.3IBMi Access Client SolutionsCWE-22IBM i Access Client Solutions (ACS) is Affected By Multiple Vulnerabilities
CVE-2026-158038.727.3Eclipse FoundationEclipse RDF4JCWE-611In Eclipse RDF4J, several XML parser entry points do not fully restrict XML E…
CVE-2026-732396.527.3Apache Software FoundationApache AlluraCWE-280Apache Allura: Missing permission checks IDOR
CVE-2026-168637.727.2IBMiCWE-125IBM i is Affected By Out-of-Bounds Read Vulnerability []
CVE-2026-680765.427.2Apache Software FoundationApache AirflowCWE-639Apache Airflow: Connections test API: team-scope guard bypass resolves anothe…
CVE-2026-687566.627.1jfrogartifactoryCWE-502Potential insecure deserialization in JFrog Artifactory
CVE-2026-734138.726.5ericcornelissenshescapeCWE-400Shescape: Quadratic-time denial of service in flag-protection
CVE-2026-734116.326.5ericcornelissenshescapeCWE-116Shescape: Home-directory disclosure in assignment context on Unix with Dash
CVE-2026-687527.226.5jfrogartifactoryCWE-269Project Resource Managers may escalate privileges in JFrog Artifactory
CVE-2026-164947.126.2GitLabGitLabCWE-862Missing Authorization in GitLab
CVE-2026-172486.526.1IBMiCWE-78IBM i is Affected By Multiple Vulnerabilities in the Debug Server
CVE-2026-196436.026.0AWSaws-sdk-cppCWE-125Out-of-bounds read in the Base64 decoder in Amazon aws-sdk-cpp on signed-char…
CVE-2026-734305.326.1EugenyrusshCWE-754Russh: Pre-auth remote panic via all-zero Curve25519 peer public value (encod…
CVE-2026-689716.525.7Apache Software FoundationApache AirflowCWE-862Apache Airflow: Cross-team authorization bypass in the asset materialization …
CVE-2026-734987.725.6soopersetmcp-atlassianCWE-22MCP Atlassian is a Model Context Protocol (MCP): Arbitrary file read via miss…
CVE-2026-727867.125.6craftcmscmsCWE-285Craft CMS 5.0.0-RC1 before 5.10.8 Authentication Bypass via Password Reset
CVE-2026-646399.325.5WebProsPleskCWE-266Incorrect database cloning process in Plesk from 18.0.52 before 18.0.79.6 and…
CVE-2026-171094.325.4IBMiCWE-20IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-734272.125.5basecamptrixCWE-79Trix: XSS via JSON deserialization bypass in drag-and-drop (Level0InputContro…
CVE-2026-123598.125.2IBMSecurity Verify AccessCWE-287Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-105439.824.9IBMDb2CWE-285IBM® Db2® is vulnerable to privilege escalation with a specially crafted query
CVE-2026-733065.324.9BudibasebudibaseCWE-204Budibase: Account Enumeration via Login Lockout Response Differential
CVE-2026-189528.624.8AWSOpensearchCWE-918Missing Input Validation in Threat Intel Feed Parser in OpenSearch Security A…
CVE-2026-164807.124.8IBMDb2CWE-602IBM® Db2® is affected by an improper authorization vulnerability in the certa…
CVE-2026-732647.624.6prowler-cloudprowlerCWE-918Prowler: Server-Side Request Forgery (SSRF) in Lighthouse Provider
CVE-2024-2725310.024.3IBMDOORS NextCWE-287IBM Engineering Requirements Management DOORS Next is impacted by vulnerabili…
CVE-2026-149257.524.3UnknownImport WPCWE-200Import WP < 2.14.23 - Unauthenticated Sensitive Information Exposure via Expo…
CVE-2026-186776.024.1Kong Inc.Kong MeshCWE-290Kong Mesh: a dataplane token without a workload binding can claim any workloa…
CVE-2026-733074.924.1BudibasebudibaseCWE-918Budibase: SSRF via bare fetch() in uploadUrl during AI table generation
CVE-2026-182358.323.8IBMiCWE-78IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-186735.323.7Kong Inc.Kong MeshCWE-200Kong Mesh: the kuma-dp readiness service exposes the Envoy admin API without …
CVE-2026-734225.323.7withastroastroCWE-79Astro: Reflected XSS via unescaped View Transition animation properties
CVE-2026-704665.323.6FortinetFortiWebCWE-184A incomplete list of disallowed inputs vulnerability in Fortinet FortiWeb 8.0…
CVE-2026-624209.923.4CanonicalLXDCWE-863Cross-project cluster migration bypasses project restrictions via cluster not…
CVE-2026-728066.923.3siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Authentication Bypass via Attribute View
CVE-2026-122335.923.3zephyrprojectzephyrCWE-665Uninitialized mutex in TLS trusted-credential backend causes kernel NULL-dere…
CVE-2026-672876.323.1joomshaper.comSP Page Builder extension for JoomlaCWE-284Joomla Extension - joomshaper.com - Unauthenticated comment creation in SP Pa…
CVE-2026-732656.523.0rustfsrustfsCWE-862RustFS: Version-specific object reads authorize the non-version action
CVE-2026-183669.822.9UnknownEvents ManagerCWE-269Events Manager < 7.4.1 - Unauthenticated Privilege Escalation to Administrator
CVE-2026-187446.522.6CERT/CCVINCECWE-639CVE-2026-18744
CVE-2026-725269.922.4Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-441Multicloud-integrations: multicloud-integrations: pull-model propagation allo…
CVE-2026-420187.522.3jfrogartifactoryCWE-287Anonymous user token generation exposure in JFrog Artifactory
CVE-2026-194268.822.2FitSoftPOS SystemCWE-306FitSoft|POS Sytstem - Missing Authentication
CVE-2026-166277.722.1GitLabGitLabCWE-79Improper Neutralization of Input During Web Page Generation ('Cross-site Scri…
CVE-2026-136138.822.0UnknownKiviCareCWE-89KiviCare < 4.5.2 - Doctor/Receptionist+ SQL Injection via settings/listing RE…
CVE-2026-160338.522.0CanonicalLXDCWE-22Arbitrary file read+write on host via templates/ symlink in malicious image
CVE-2026-196426.022.0AWSaws-sdk-cppCWE-787Out-of-bounds write in the Base64 decoder in Amazon aws-sdk-cpp
CVE-2026-190028.821.9MongoDBBI Connector ODBC DriverCWE-120Crafted database metadata may cause memory corruption in MongoDB BI Connector…
CVE-2026-727899.221.8siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Authentication Bypass via Encrypted Notebooks
CVE-2026-119327.521.8IBMSecurity Verify AccessCWE-835Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-733085.721.9BudibasebudibaseCWE-200Budibase: OAuth2 Token Disclosure via Automation Test Results Broadcast to Ot…
CVE-2026-727886.921.8siyuan-notesiyuanCWE-863SiYuan before v3.7.4 Information Disclosure via UILayout Filter
CVE-2026-633009.921.6CanonicalLXDCWE-862Cross-project instance move bypasses all project restrictions allowing host c…
CVE-2026-666599.321.6EssekiaTablesome TableCWE-89WordPress Tablesome Table plugin <= 1.2.9 - SQL Injection vulnerability
CVE-2026-663815.321.6jfrogartifactoryCWE-22Repository readers may access content outside configured upstream paths
CVE-2026-734295.321.6EugenyrusshCWE-704Russh: client wrong-length X25519 `clone_from_slice` panic (pre-auth DoS)
CVE-2026-174858.221.5IBMiCWE-125IBM i is Affected By Denial of Service Vulnerability []
CVE-2026-734957.421.4http4sblazeCWE-444blaze: Chunked-body trailer fields promoted into Request.headers in blaze-ser…
CVE-2026-188887.121.4MongoDBBI Connector ODBC DriverCWE-787MongoDB BI Connector ODBC driver may write outside an allocated buffer when r…
CVE-2026-196569.921.1SCADA-LTSScadaLTSCWE-862ScadaLTS Authenticated Remote Code Execution
CVE-2026-734055.321.0vulnerability-lookupvulnerability-lookupCWE-862Authorization Bypass in SSE Pub/Sub Allows Unconfirmed Accounts to Access Str…
CVE-2026-632999.920.8CanonicalLXDCWE-770Storage volume cross-project move and snapshot restore bypass project disk li…
CVE-2026-732848.820.8rustfsrustfsCWE-269RustFS: AddServiceAccount Handler Allows Creation of Root-Parent Service Acco…
CVE-2026-728086.920.8siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via getFileAnnotation
CVE-2026-184748.620.6UnknownWP Directory KitCWE-89WP Directory Kit < 1.5.6 - Unauthenticated SQL Injection via search_location …
CVE-2026-684338.620.6LinuxLinuxlibceph: bound get_version reply decode to front len
CVE-2026-68214.320.6GitLabGitLabCWE-862Missing Authorization in GitLab
CVE-2026-162537.520.4UnknownTotal UpkeepCWE-200Total Upkeep (BoldGrid Backup) < 1.17.3 - Unauthenticated Sensitive Data Disc…
CVE-2026-180497.520.4UnknownWP Photo Album PlusCWE-200WP Photo Album Plus < 9.2.07.002 - Unauthenticated Option Disclosure via gettogo
CVE-2026-734318.820.3vulnerability-lookupvulnerability-lookupCWE-294Reusable Account Activation and Recovery Tokens Allow Repeated Account Takeov…
CVE-2026-170828.820.1IBMiCWE-269IBM i is Affected By Multiple Vulnerabilities in the Debug Server
CVE-2026-494738.820.1cedar-policyauthorization-for-expressjsCWE-436@cedar-policy/authorization-for-expressjs has an authorization bypass via que…
CVE-2026-663758.119.8jfrogartifactoryCWE-862Low-privilege users may remove protected Artifactory metadata
CVE-2026-691075.919.9jfrogartifactoryCWE-862Potential unauthorized artifact access in JFrog Artifactory
CVE-2026-733267.219.8owen2345CamaleonCMSCWE-862CamaleonCMS Missing Authorization via Plugin Administration Endpoints
CVE-2026-732917.119.7seerr-teamseerrCWE-22Seerr: Path traversal to RCE via /avatarproxy image cache filename from upstr…
CVE-2026-176169.819.3IBMSecurity Verify AccessCWE-310Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-477185.519.3frangoteamFUXACWE-287FUXA provides guest and invalid-token access to protected read APIs in secure…
CVE-2026-184998.119.2IBMWebSphere Application Server - LibertyCWE-285IBM WebSphere Application Server Liberty is affected by a privilege escalation
CVE-2026-129766.519.2UnknownLearnPressCWE-200LearnPress < 4.4.4 - Subscriber+ Sensitive Information Exposure via AI Assistant
CVE-2026-131686.519.2UnknownEventinCWE-200Eventin < 4.1.20 - Contributor+ Customer PII Disclosure via REST API
CVE-2026-174206.319.1IBMiCWE-78IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-133618.818.8IBMInformix Dynamic ServerCWE-121IBM Informix Server Vulnerability in SQL Interface Handler Could Allow Remote…
CVE-2026-485505.118.5Nagios Enterprises, LLC.Nagios CoreCWE-79Nagios Core / XI cmd.cgi Reflected XSS via NagFormId Parameter
CVE-2026-684319.118.5LinuxLinuxksmbd: validate minimum PDU size for transform requests
CVE-2026-733317.118.4owen2345CamaleonCMSCWE-89CamaleonCMS 2.9.1 Authenticated SQL Injection via Post Slug Field
CVE-2026-663845.318.4jfrogartifactoryCWE-22Authenticated users may write data outside the intended Docker cache path
CVE-2026-187897.518.1UnknownEzoicCWE-862Ezoic < 2.23.1 - Unauthenticated Database Export via Content Export REST Routes
CVE-2026-152168.717.9GitLabGitLabCWE-79Improper Neutralization of Input During Web Page Generation ('Cross-site Scri…
CVE-2026-152178.717.9GitLabGitLabCWE-79Improper Neutralization of Input During Web Page Generation ('Cross-site Scri…
CVE-2026-154238.517.7GitLabGitLabCWE-863Incorrect Authorization in GitLab
CVE-2026-172769.917.7IBMiCWE-269IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-714738.517.7Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-915Acm-search-v2-rhel9: search-v2-operator: addonfactory.getvaluesfromaddonannot…
CVE-2026-733258.417.7Fujitsu ResearchOneCompressionCWE-502Fujitsu OneCompression 1.2.0 Arbitrary Code Execution via torch.load Deserial…
CVE-2026-687586.517.6jfrogartifactoryCWE-862Authenticated users may access restricted Artifactory support information
CVE-2026-727966.917.5siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Access Control Bypass via Static Routes
CVE-2026-704673.817.5FortinetFortiSIEMCWE-918A server-side request forgery (ssrf) vulnerability in Fortinet FortiSIEM 7.5.…
CVE-2026-727989.217.4siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via renderAttributeView
CVE-2026-728049.217.2siyuan-notesiyuanCWE-200SiYuan before v3.7.4 Authentication Bypass via Graph Endpoints
CVE-2026-663824.317.2jfrogartifactoryCWE-22Authenticated users may write files outside the intended Artifactory work dir…
CVE-2026-171119.816.7IBMiCWE-89IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-172224.316.8IBMiCWE-89IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-733014.316.7BudibasebudibaseCWE-862Budibase: Missing RBAC on GET /api/global/groups allows BASIC users to enumer…
CVE-2026-727949.216.5siyuan-notesiyuanCWE-522siyuan before v3.7.4 Session Cookie Key Disclosure via getConf
CVE-2026-463828.716.5meeting-room-booking-systemmrbs-codeCWE-918Meeting Room Booking System has server-side request forgery in import functio…
CVE-2026-466886.916.5meeting-room-booking-systemmrbs-codeCWE-601Meeting Room Booking System has an unauthenticated open redirect
CVE-2026-132678.116.3IBMSecurity Verify AccessCWE-302Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-672836.916.3tabaoca.orgCotton Cloud extension for JoomlaCWE-284Joomla Extension - tabaoca.org - Improper ACL implementation allows allow fil…
CVE-2026-632969.916.1CanonicalLXDCWE-863Project restriction bypass via instance migration config override
CVE-2026-732886.115.9rustfsrustfsCWE-693RustFS: Object Lock (WORM) protections are treated as absent when bucket meta…
CVE-2026-734912.315.9flavorjonesloofahCWE-184Loofah `allowed_uri?` does not detect `javascript:` URIs split by named white…
CVE-2026-734922.315.9flavorjonesloofahCWE-79Loofah `allowed_uri?` does not detect `javascript:` URIs split by numeric cha…
CVE-2026-663775.315.9jfrogartifactoryCWE-862Anonymous users may access restricted Artifactory repository information
CVE-2026-180487.515.7UnknownWP Photo Album PlusCWE-73WP Photo Album Plus < 9.2.07.002 - Unauthenticated Arbitrary ZIP File Deletio…
CVE-2026-119237.415.7IBMSecurity Verify AccessCWE-287Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-174196.515.8IBMiCWE-89IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-732905.315.7rustfsrustfsCWE-863RustFS: Anonymous ListObjectVersions bypasses RestrictPublicBuckets through t…
CVE-2026-48794.315.7GitLabGitLabCWE-862Missing Authorization in GitLab
CVE-2026-184334.315.7GitLabGitLabCWE-863Incorrect Authorization in GitLab
CVE-2026-659378.015.6Progress Software CorporationWhatsUp GoldCWE-79WhatsUp Gold versions prior to 26.0.2 contain multiple stored cross-site scri…
CVE-2026-734325.115.6vulnerability-lookupvulnerability-lookupCWE-918Stored Server-Side Request Forgery in Remote-Instance Synchronization Allows …
CVE-2026-727939.215.5siyuan-notesiyuanCWE-522SiYuan before v3.7.4 Information Disclosure via /api/system/getConf
CVE-2026-727959.215.5siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via Embed Block
CVE-2026-728018.715.5siyuan-notesiyuanCWE-522SiYuan before v3.7.4 Information Disclosure via Encryption Key Material
CVE-2026-86674.315.1GitLabGitLabCWE-863Incorrect Authorization in GitLab
CVE-2026-732868.115.1rustfsrustfsCWE-863RustF: Request headers can populate server-derived IAM condition keys, lettin…
CVE-2026-659396.815.1Progress Software CorporationWhatsUp GoldCWE-22WhatsUp Gold versions prior to 26.0.2 contain an arbitrary file write vulnera…
CVE-2026-687535.315.1jfrogartifactoryCWE-862Anonymous users may access restricted Artifactory content under specific conf…
CVE-2026-727906.914.9siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via getNotebookInfo
CVE-2026-727916.914.9siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via getAttributeViewFieldViews
CVE-2026-727926.914.9siyuan-notesiyuanCWE-863SiYuan before v3.7.4 Information Disclosure via Tag API
CVE-2026-727976.914.9siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via getEncryptedNotebookStatus
CVE-2026-727996.914.9siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via Path Resolution
CVE-2026-728006.914.9siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via Unfiltered API
CVE-2026-728026.914.9siyuan-notesiyuanCWE-639SiYuan before v3.7.4 Information Disclosure via resolveAssetPath
CVE-2026-728036.914.9siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via getBlockAttrs
CVE-2026-728056.914.9siyuan-notesiyuanCWE-862SiYuan before v3.7.4 Information Disclosure via Block Endpoints
CVE-2026-174456.515.0IBMiCWE-250IBM i is Affected By Improper Validation Vulnerability in Line Printer Daemon []
CVE-2026-187505.314.9CERT/CCVINCECWE-639CVE-2026-18750
CVE-2026-153884.314.8UnknownCookie ConsentCWE-863Cookie Consent < 0.0.10 - Subscriber+ Consent Settings Update and Consent Log…
CVE-2026-181444.314.8IBMiCWE-285IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-131718.214.7UnknownEventinCWE-284Eventin < 4.1.20 - Unauthenticated Account Creation via Waiting List Endpoint
CVE-2026-472276.514.7AdmidioadmidioCWE-639Admidio module-administrator can delete or reorder categories owned by other …
CVE-2026-732699.914.5Red HatMulticluster Engine for KubernetesCWE-269Cluster-curator-controller: cluster-curator-controller: tenant-controllable t…
CVE-2026-165389.114.3UnknownWallet for WooCommerceCWE-284TeraWallet - Wallet for WooCommerce < 1.6.10 - Subscriber+ Wallet Balance Inf…
CVE-2026-649548.214.3Rapid7VelociraptorCWE-862Velociraptor collect_client() Permissions Bypass
CVE-2026-733038.214.3BudibasebudibaseCWE-639Budibase: Email Change IDOR via POST /api/v2/email allows full Account Takeov…
CVE-2026-732898.114.1rustfsrustfsCWE-863RustFS: ForAllValues/ForAnyValue negated string conditions are transposed, in…
CVE-2026-192288.514.1GitLabGitLabCWE-639Authorization Bypass Through User-Controlled Key in GitLab
CVE-2026-592446.514.0Apache Software FoundationApache AirflowCWE-312Apache Airflow: Secrets masker: `var.json` Variable values not masked in the …
CVE-2026-689706.514.0Apache Software FoundationApache AirflowCWE-312Apache Airflow: Values of a list-shaped Variable are not masked in task logs …
CVE-2026-186765.114.1Kong Inc.Kong MeshCWE-346Kong Mesh: default control plane config leaks the admin token cross-origin vi…
CVE-2026-733299.213.9owen2345CamaleonCMSCWE-79CamaleonCMS Stored XSS via Draft Post Title Creation Endpoint
CVE-2026-733329.213.9owen2345CamaleonCMSCWE-89CamaleonCMS cama_contact_form Plugin Stored XSS via before_html Field
CVE-2026-687597.213.9jfrogartifactoryCWE-347Integration credential holders may impersonate users in JFrog Access
CVE-2026-119373.113.6IBMSecurity Verify AccessCWE-416Security vulnerabilities have been found in IBM Verify Identity Access and IB…
CVE-2026-703989.613.4Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-441Multicloud-integrations: multicloud-integrations: gitopscluster.spec.argoserv…
CVE-2025-94863.313.4GitLabGitLabCWE-266Incorrect Privilege Assignment in GitLab
CVE-2026-649556.113.3Rapid7VelociraptorCWE-1236Velociraptor CSV Formula Injection in Export Pipeline
CVE-2026-186524.913.0Rapid7VelociraptorCWE-862Velociraptor STACK Type Download Path Bypasses Denied Prefix Check
CVE-2026-169778.112.9UnknownForm Maker by 10WebCWE-89Form Maker by 10Web < 1.15.45 - Subscriber+ SQL Injection via display_name
CVE-2026-180578.112.9UnknownEvents ManagerCWE-89Events Manager < 7.4.1 - Subscriber+ Booking Consent Record Tampering via SQL…
CVE-2026-182308.112.9UnknownWP Directory KitCWE-89WP Directory Kit < 1.5.6 - Subscriber+ SQL Injection via section Parameter
CVE-2026-472336.512.8AdmidioadmidioCWE-862Admidio: Any logged-in user can delete inventory fields via `mode=field_delet…
CVE-2026-687546.512.8jfrogartifactoryCWE-862Publishers without delete permission can overwrite docker layer information
CVE-2026-493496.812.7regclientregclientCWE-522regclient may leak authentication credentials to external blob stores
CVE-2026-167476.512.7UnknownKirkiCWE-74Kirki < 6.2.1 - Unauthenticated Arbitrary Shortcode Execution via Form Email …
CVE-2026-189436.512.6UnknownWPC Admin ColumnsCWE-200WPC Admin Columns < 2.3.4 - Subscriber+ Arbitrary User/Post/Term Meta Disclosure
CVE-2026-187266.512.2Red HatRed Hat Enterprise Linux 10CWE-835Open-iscsi: open-iscsi: denial of service in iscsiuio router advertisement pa…
CVE-2026-732625.412.1prowler-cloudprowlerCWE-79Prowler: Stored XSS in HTML reports through unescaped cloud resource tags
CVE-2026-632954.311.8CanonicalLXDCWE-863Project restriction `restricted.containers.privilege=isolated` bypassable by …
CVE-2026-472318.111.8AdmidioadmidioCWE-639Admidio has IDOR in `documents-files.php` `mode=move_save` that lets any fold…
CVE-2026-668787.711.8Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-639Multicloud-operators-subscription: multicloud-operators-subscription: fetchch…
CVE-2026-731227.711.8Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-269Multicloud-operators-channel: multicloud-operators-channel: auto-generated ro…
CVE-2026-659406.811.7Progress Software CorporationWhatsUp GoldCWE-276WhatsUp Gold versions prior to 26.0.2 excessive file system permissions allow…
CVE-2026-732875.411.7rustfsrustfsCWE-862RustFS: FTPS MKD bypasses IAM CreateBucket authorization
CVE-2026-167375.311.6UnknownWP Travel EngineCWE-639WP Travel Engine < 6.8.5 - Unauthenticated Booking Details Disclosure and Mod…
CVE-2026-180355.311.6UnknownUser Access ManagerCWE-862User Access Manager < 2.3.15 - Unauthenticated Restricted Content Disclosure …
CVE-2026-195036.311.5MongoDBAtlas SQL ODBC DriverCWE-20Insufficient OIDC endpoint validation could invoke unintended local protocol …
CVE-2026-172686.811.3IBMiCWE-294IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-653707.511.1AppleservicetalkCWE-444ServiceTalk HTTP/1.x incorrectly handles malformed Transfer-Encoding which co…
CVE-2026-672845.311.1tabaoca.orgCotton Cloud extension for JoomlaCWE-284Joomla Extension - tabaoca.org - Improper ACL checks allow file operations in…
CVE-2026-728097.111.0siyuan-notesiyuanCWE-290SiYuan before v3.7.4 Authentication Bypass via Localhost Trust
CVE-2026-190735.311.0UnknownOrder Sync with Zendesk for WooCommerceCWE-200Order Sync with Zendesk for WooCommerce < 2.2.3 - Unauthenticated Customer Or…
CVE-2026-181484.311.0IBMiCWE-117IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-182444.310.8GitLabGitLabCWE-862Missing Authorization in GitLab
CVE-2026-663784.310.7jfrogartifactoryCWE-862Authenticated users may access private NuGet metadata
CVE-2026-663794.310.7jfrogartifactoryCWE-862Authenticated users may view private Puppet module metadata
CVE-2026-663804.310.7jfrogartifactoryCWE-862Authenticated users may access private OCI referrer metadata
CVE-2026-705474.310.7jfrogartifactoryCWE-862Potential unauthorized metadata exposure in JFrog Artifactory
CVE-2026-472266.510.5AdmidioadmidioCWE-639Admidio: Authorization bypass in file_delete enables cross-folder file remova…
CVE-2026-195886.510.5Samsung Open SourcerlottieCWE-680Integer Overflow to Buffer Overflow vulnerability in Samsung Open Source rlot…
CVE-2026-728078.810.1siyuan-notesiyuanCWE-89SiYuan before v3.7.4 SQL Injection via queryBlocks template
CVE-2026-195876.510.1Samsung Open SourcerlottieCWE-400Uncontrolled Resource Consumption vulnerability in Samsung Open Source rlotti…
CVE-2026-187276.59.7Red HatRed Hat Enterprise Linux 10CWE-191Open-iscsi: open-iscsi: integer underflow in iscsiuio dhcpv6 parsing
CVE-2026-196576.19.8SCADA-LTSScadaLTSCWE-79ScadaLTS Unauthenticated Reflected XSS
CVE-2026-148584.39.8UnknownWP CrowdfundingCWE-639WP Crowdfunding < 2.2.1 - Subscriber+ Order Data Disclosure via IDOR
CVE-2026-632979.99.7CanonicalLXDCWE-367Cross-project instance copy bypasses target project restrictions via TOCTOU i…
CVE-2026-150456.59.6UnknownWallet System for WooCommerceCWE-472Wallet System for WooCommerce < 2.7.10 - Customer+ Checkout Price Manipulatio…
CVE-2026-687577.59.4jfrogartifactoryCWE-347Potential improper SAML signature verification in JFrog Artifactory
CVE-2026-169905.39.4UnknownPayment Button for PayPalPayment Button for PayPal <= 1.2.3.44 - Unauthenticated Payment Price Manipul…
CVE-2026-734196.89.3nextauthjsnext-authCWE-345NextAuth.js: OAuth state, nonce, and PKCE check cookies are not bound to the …
CVE-2026-182464.39.3IBMiCWE-436IBM i is Affected By security restrictions bypass in Navigator for i
CVE-2026-687554.39.2jfrogartifactoryCWE-863Bundle writers may alter trusted release information in JFrog Artifactory
CVE-2026-734095.19.1BudibasebudibaseCWE-203Budibase: Server Filesystem Existence/Read Oracle via Builder-Controlled Mong…
CVE-2026-180988.19.0IBMiCWE-346IBM i is Affected By XML injection flaw in Navigator for i
CVE-2026-727875.19.0craftcmscmsCWE-79Craft CMS 5.0.0-RC1 before 5.10.8 Stored XSS via Draft Name
CVE-2026-732928.38.7semaphoreuisemaphoreCWE-352Semaphore UI: CSRF vulnerability on password change endpoint - No CSRF token …
CVE-2026-659263.18.7jfrogartifactoryCWE-862Private Release Bundle versions may be disclosed under specific configurations
CVE-2026-732955.48.4squidfunkmkdocs-materialCWE-79Material for MkDocs: DOM XSS in search suggestions via query parameter
CVE-2026-131774.38.4UnknownEventinCWE-639Eventin < 4.1.20 - Contributor+ Order Information Disclosure via IDOR
CVE-2026-136124.38.4UnknownKiviCareCWE-639KiviCare < 4.5.2 - Patient+ Cross-Patient Bill, Invoice and Appointment Discl…
CVE-2026-148574.38.4UnknownWP CrowdfundingCWE-639WP Crowdfunding < 2.2.1 - Subscriber+ Campaign Update Modification via IDOR
CVE-2026-148594.38.4UnknownWP CrowdfundingCWE-284WP Crowdfunding < 2.2.1 - Subscriber+ Campaign Creation via Missing Authoriza…
CVE-2026-180464.38.3UnknownCookie ConsentCWE-863Cookie Consent < 0.0.10 - Subscriber+ MaxMind License Key Update
CVE-2026-180995.48.3IBMiCWE-79IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-734235.18.1withastroastroCWE-352Astro: composable `astro/hono` pipeline bypasses `security.checkOrigin` when …
CVE-2026-93184.87.9JazzbandtablibCWE-79tablib versions prior to 3.10.0 Stored XSS via HTML Export Dataset Title
CVE-2025-593204.68.0n/an/aCWE-922CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 stores TPM2.0 secrets …
CVE-2026-734904.77.9flavorjonesloofahCWE-79Loofah: SVG `href` attribute bypasses local-reference restriction
CVE-2026-191305.87.7Red HatMulticluster Engine for KubernetesCWE-639Provider-credential-controller: provider-credential-controller: cross-namespa…
CVE-2026-188479.87.4IBMiCWE-346IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-472306.57.2AdmidioadmidioCWE-639Admidio: IDOR in documents-files.php allows cross-folder file rename and desc…
CVE-2026-649526.57.2Rapid7VelociraptorCWE-863Velociraptor Hunt Deletion With Insufficient Permission Check
CVE-2026-485516.17.0Nagios Enterprises, LLC.Nagios CoreCWE-352Nagios Core / XI CSRF Protection Bypass via Double-Submit Cookie
CVE-2026-174187.86.8IBMiCWE-89IBM i is Affected By Multiple Vulnerabilities in SQL
CVE-2026-162947.16.8UnknownPowerPress Podcasting plugin by BlubrryCWE-918Blubrry PowerPress < 11.17.1 - Contributor+ Server-Side Request Forgery via P…
CVE-2026-734253.76.8withastroastroCWE-185@astrojs/netlify generates an overly-broad Netlify Image CDN allowlist becaus…
CVE-2026-68443await6.6LinuxLinuxhwmon: (gigabyte_waterforce) Stop device IO before calling hid_hw_stop
CVE-2026-181505.36.5IBMiCWE-362IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-68429await6.6LinuxLinuxdrm/dp_mst: Handle torn-down topology gracefully in drm_dp_mst_topology_queue…
CVE-2026-68430await6.5LinuxLinuxdrm/amdgpu/gfx8: drop unecessary BUG_ON()
CVE-2026-68434await6.6LinuxLinuxserial: 8250_mid: Fix NULL function pointer dereference on DNV/ICX-D/SNR plat…
CVE-2026-68444await6.6LinuxLinuxfirmware: arm_ffa: Fix NULL dereference in ffa_partition_info_get()
CVE-2025-593257.56.3n/an/aCWE-311CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to encrypt the i…
CVE-2026-166945.46.2IBMiCWE-79IBM i is Affected By Stored Cross-site Scripting for i
CVE-2026-485525.16.2Nagios Enterprises, LLC.Nagios CoreCWE-79Nagios Core / XI DOM-based XSS via jsonquery.js
CVE-2026-705604.86.2Ultimate FostersUltimate POS (Stock Management & Point of Sale)CWE-79Ultimate POS Stored XSS via First Name Field in Leave Notifications
CVE-2026-73664.26.0IBMDataPower Gateway 11.0.0CWE-362IBM DataPower Gateway affected by HTTP request header leakage in XML-Firewall
CVE-2026-170136.16.0UnknownWP Photo Album PlusCWE-79WP Photo Album Plus < 9.2.07.002 - Reflected XSS via lbstart
CVE-2025-417715.36.0Phoenix ContactAXC F 1152CWE-89SQL injection
CVE-2026-649513.56.0Rapid7VelociraptorCWE-369Velociraptor DoS triggered by Divide by Zero panic
CVE-2026-494666.55.9dartissdraft-listCWE-79Draft List - Contributor Stored Cross-Site Scripting via Draft Title in Custo…
CVE-2026-152495.45.9UnknownPatterns KitCWE-79Patterns Kit <= 1.0.3 - Contributor+ Stored XSS via YouTube Popup Link
CVE-2026-160665.45.9UnknownWelcart e-CommerceCWE-79Welcart e-Commerce < 2.11.34 - Author+ Stored XSS via Product Name
CVE-2026-182505.05.9IBMiCWE-362IBM i is Affected By Multiple Vulnerabilities in Navigator for i
CVE-2026-659384.35.8Progress Software CorporationWhatsUp GoldCWE-602WhatsUp Gold versions prior to 26.0.2 contain an improper authorization vulne…
CVE-2026-663764.25.7jfrogartifactoryCWE-613Deleted users may temporarily retain access to JFrog Artifactory
CVE-2026-136228.85.4Red HatRed Hat Container Native Virtualization 4.12CWE-22Kubevirt: virt-handler-rhel9: kubevirt: virt-handler migration proxy follows …
CVE-2026-68437await5.3LinuxLinuxdrm/imagination: Fit paired fragment job in the correct CCCB
CVE-2026-68449await5.3LinuxLinuxata: sata_dwc_460ex: fix infinite loop in NCQ tag completion bit-scanning
CVE-2026-68450await5.3LinuxLinuxbtrfs: free mapping node on duplicate reloc root insert
CVE-2026-68439await5.3LinuxLinuxwifi: mt76: mt7925: fix possible NULL-pointer deref in mt7925_mcu_bss_he_tlv()
CVE-2026-68435await5.2LinuxLinuxLoongArch: Fix address space mismatch in kexec command line lookup
CVE-2026-68448await5.2LinuxLinuxovl: check access to copy_file_range source with src mounter creds
CVE-2026-189624.34.9UnknownWP Photo Album PlusCWE-639WP Photo Album Plus < 9.2.09.002 - Subscriber+ Cross-Album File Upload via Mi…
CVE-2026-190524.34.9UnknownProSolution WP ClientCWE-862ProSolution WP Client < 2.0.9 - Subscriber+ proSol_ajaxTablesync and proSol_a…
CVE-2025-593249.14.7n/an/aCWE-347CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to properly vali…
CVE-2026-166957.84.7IBMi Access Client SolutionsCWE-78IBM i Access Client Solutions (ACS) is Affected By Multiple Vulnerabilities
CVE-2025-593277.54.7n/an/aCWE-347In CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4, bootxsa.efi fails …
CVE-2026-68441await4.6LinuxLinuxnet/sched: Handle TC_ACT_REDIRECT from qdisc filter chains
CVE-2026-130947.84.4IBMi Access Client SolutionsCWE-94IBM i Access Client Solutions (ACS) is Affected By Multiple Vulnerabilities
CVE-2026-180975.54.4IBMDb2CWE-532IBM® Db2® federated server could allow a local attacker to obtain sensitive i…
CVE-2026-68436await4.3LinuxLinuxdrm/amd/display: use kvzalloc to allocate struct dc
CVE-2026-68438await4.3LinuxLinuxsmp: Make CSD lock acquisition atomic for debug mode
CVE-2026-64848.24.2Insyde SoftwareInsydeH2OCWE-1277Lack of verified boot to certain FV may cause arbitrary code execution
CVE-2026-649276.44.1Red HatRed Hat Advanced Cluster Management for Kubernetes 2CWE-639Multicloud-operators-channel: multicloud-operators-channel: cross-namespace s…
CVE-2026-190506.43.6UnknownProSolution WP ClientCWE-918ProSolution WP Client < 2.0.9 - Subscriber+ SSRF via proSol_url_validate
CVE-2026-192175.43.3UnknownRoyal Addons for ElementorCWE-79Royal Elementor Addons < 1.7.1065 - Contributor+ Stored XSS via Icon Box Widget
CVE-2026-734336.63.1GStreamergst-plugins-goodCWE-191Gstreamer1-plugins-good: gstreamer: unsigned integer underflow in avidemux fu…
CVE-2026-734346.13.1GStreamergst-plugins-goodCWE-125Gstreamer1-plugins-good: gstreamer: out-of-bounds read in avidemux vprp video…
CVE-2026-180963.33.1IBMDb2CWE-770IBM® Db2® could allow a local attacker to cause a denial of service due to a …
CVE-2026-492623.03.2aimeospagibleCWE-367Aimeos Pagible CMS vulnerable to Server Side Request Forgery (SSRF) via DNS r…
CVE-2026-472344.43.1AdmidioadmidioCWE-200Admidio writes session IDs and auto-login cookie values to application logs
CVE-2026-684328.83.0LinuxLinuxvxlan: require CAP_NET_ADMIN in the device netns for changelink
CVE-2026-691058.12.9jfrogartifactoryCWE-345Potential package cache integrity issue in JFrog Artifactory
CVE-2026-169996.32.9Ministry of JusticeUYAP Document EditorCWE-611XXE in Ministry of Justice's UYAP Document Editor
CVE-2026-190038.42.7MongoDBBI Connector ODBC DriverCWE-121MongoDB BI Connector ODBC driver may write outside an allocated buffer when t…
CVE-2026-684457.82.7LinuxLinuxdrm/vc4: Prevent shader BO mappings from becoming writable
CVE-2026-684407.82.5LinuxLinuxnet: txgbe: fix heap overflow when reading module EEPROM
CVE-2026-467317.82.5DellDisplay and Peripheral Manager (DDPM Windows)CWE-290Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3.0.1…

Results continue: ranks 401–433.

Methodology

Ranking. Sort: (1) KEV membership, descending. (2) EPSS score, descending. (3) CVSS base score, descending. (4) CVE ID, ascending. CVEs lacking EPSS or CVSS data sort below those that have it within their KEV tier and are labeled AWAITING ENRICHMENT. Missing scores are never imputed.

Standings. Vendor tables exclude records whose vendor field is a placeholder (n/a, unknown); the excluded count is stated under the standings. Rate stats are arithmetic over published figures: KEV/100 = KEV additions YTD ÷ CVEs YTD × 100; Med CVSS and Med EPSS are medians over the vendor's year-to-date disclosures.

Day boundary. A day is a UTC calendar day. This page covers 2026-08-12 00:00:00–23:59:59 UTC. All times shown are UTC.

Feed status for this edition. cvelist: ok · kev: ok · epss: ok · nvd: ok.

Sources. CVE records from the CVE Program (cvelistV5). Enrichment from the National Vulnerability Database (NIST). Known-exploited status from the CISA KEV catalog. Exploit probability from FIRST EPSS. Open-source advisories from OSV.dev. This page reports the public record; it does not analyze, rank by opinion, or editorialize. See full methodology.