CVE Field Guide

Critical CVEs

CVE Title Updated Score
CVE-2026-15748 Forminator Forms <= 1.56.1 - Unauthenticated Arbitrary File Upload via Forged Upload Field Configuration 18.08.2026 9.8
CVE-2026-75094 COMFAST CF-N1-S CGI mbox-config sub_44B438 os command injection 18.08.2026 9.4
CVE-2026-71424 Onyx: Cross-user OAuth-token leak via /api/mcp/servers* for per-user MCP servers 17.08.2026 9.6
CVE-2026-64849 MLflow: Unauthenticated full-read SSRF in webhook delivery: _validate_webhook_url bypassed via unvalidated HTTP redirects (and DNS rebinding) 17.08.2026 9.3
CVE-2026-47686 vm2: Missing Error.cause Sanitization Enables VM2 Sandbox Escape to RCE 17.08.2026 9.9
CVE-2026-47698 vm2: Sandbox Breakout Using Dangerous Host Proto Mutators 17.08.2026 9.8
CVE-2026-65974 ERPNext: Server-Side Template Injection leading to Remote Code Execution 17.08.2026 9.9
CVE-2026-66795 Managedcluster-import-controller: managedcluster-import-controller: csr auto-approver does not validate certificate subject, signername, or requester identity 17.08.2026 9.1
CVE-2026-75106 OpnForm Editable Submission Secret Derivation via Empty Hashids Salt 17.08.2026 9.3
CVE-2026-75110 MemOS Authentication Bypass via Unset INTERNAL_SERVICE_SECRET 17.08.2026 9.3
CVE-2026-19478 Improper Control of Generation of Code ('Code Injection') in GitLab 17.08.2026 9.4
CVE-2026-71472 Acm-search-v2-rhel9: search-v2-operator: shell-command and sql injection in postgresql-start.sh via cr-supplied work_mem 17.08.2026 9.1
CVE-2026-66792 Multicloud-operators-subscription: multicloud-operators-subscription: isclusteradmin() trusts user-settable annotations on managed clusters 17.08.2026 9.9
CVE-2026-74253 Joomla Extension - regularlabs.com - Unauthenticated RCE through unverified reflected user input in Sourcerer < 14.0.0 17.08.2026 10
CVE-2026-74254 Joomla Extension - joomlack.fr - SQL injection in Page Builder CK < 3.6.5 18.08.2026 9.3
CVE-2026-71479 New API: Integer overflow in quota billing yields negative charges (self-crediting) 17.08.2026 9.1
CVE-2026-75045 18.08.2026 9.1
CVE-2026-64859 New API: User List API Leaks Root User Access Token Leading to Privilege Escalation 17.08.2026 9.1
CVE-2026-55674 Discourse: Cache poisoning/XSS via color scheme cookies 17.08.2026 9.3
CVE-2026-71566 KubeVirt backend is not authenticated 17.08.2026 9.3
CVE-2026-14564 Sensitive Data Exposure in Innotim Software's Logsign SIEM 17.08.2026 9
CVE-2026-74843 Wavlink WN531P3/WN535M1 Export Pingortrace CGI export_pingortrace.cgi strcpy stack-based overflow 17.08.2026 10
CVE-2026-74798 SiYuan kernel Path Traversal via database_clean MCP tool 17.08.2026 9.3
CVE-2026-74799 SiYuan before 3.7.4 Unauthenticated Debug Endpoint Information Disclosure 17.08.2026 9.2
CVE-2026-74800 SiYuan before v3.7.4 Stored XSS via assets endpoint 17.08.2026 9.4
CVE-2026-74872 openssl_encrypt before 1.4.0 Arbitrary Code Execution via Whirlpool 17.08.2026 9.3
CVE-2026-74875 openssl_encrypt before 1.4.0 Schema Validation Bypass 17.08.2026 9.3
CVE-2026-74876 openssl_encrypt before 1.4.0 Unverified Key Bundle Encryption 17.08.2026 9.3
CVE-2026-74878 openssl_encrypt before 1.4.0 TOTP Rate Limiter Bypass 17.08.2026 9.3
CVE-2026-74880 openssl_encrypt before 1.4.0 Token Leakage via Query Parameters 17.08.2026 9.3
CVE-2026-74885 openssl_encrypt before 1.4.0 Logging Bug and Race Condition 17.08.2026 9.3
CVE-2026-74886 openssl_encrypt before 1.4.0 Plugin Import Guard Bypass 17.08.2026 9.3
CVE-2026-74887 openssl_encrypt before 1.4.0 Insecure Random Import in PQC Module 17.08.2026 9.3
CVE-2026-74889 openssl_encrypt before 1.4.0 Weak Key Derivation via HKDF 17.08.2026 9.3
CVE-2026-74890 openssl_encrypt before 1.4.0 HMAC Authentication Bypass via Environment Variable 17.08.2026 9.3
CVE-2026-74894 openssl_encrypt before 1.4.0 Authentication Bypass via Bearer Token 17.08.2026 9.3
CVE-2026-74895 openssl_encrypt before 1.4.0 Plugin Sandbox Bypass via Process Isolation 17.08.2026 9.3
CVE-2026-74896 openssl_encrypt before 1.4.0 Sandbox Escape via Dunder Attribute Traversal 17.08.2026 9.3
CVE-2026-74899 openssl_encrypt before 1.4.0 Sandbox Escape via Type Hierarchy 17.08.2026 9.3
CVE-2026-74900 openssl_encrypt before 1.4.0 Weak Shared Secret via PQC Simulation Mode 17.08.2026 9.3
CVE-2026-74901 openssl_encrypt before 1.4.0 Authentication Bypass via AES-CTR Fallback 17.08.2026 9.3
CVE-2026-15623 Authenticated Blind SQL Injection in Google Cloud SecOps SOAR Dashboard Widget Query Service 17.08.2026 9.4
CVE-2026-19977 EFM ipTIME A3004T Session Validation httpcon_check_session_url improper authentication 17.08.2026 10
CVE-2026-19961 Edimax EW-7478APC formWlSiteSurvey buffer overflow 17.08.2026 9.4
CVE-2026-19959 Edimax EW-7478APC formWanTcpipSetup stack-based overflow 16.08.2026 9.4
CVE-2026-73056 SiYuan kernel before 3.7.4 Unthrottled Brute-Force via API Token 17.08.2026 9.3
CVE-2026-73061 Scriban before 7.2.2 Arbitrary Property Write via TypedObjectAccessor 17.08.2026 9.3
CVE-2026-74790 Scriban before 7.0.0 MemberFilter Bypass via TemplateContext Cache 17.08.2026 9.3
CVE-2026-74791 Scriban before 7.0.0 Authorization Bypass via Stale Include Cache 17.08.2026 9.2
CVE-2026-74251 Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filter in Phoca Cart 5.0.0-6.1.6 17.08.2026 9.3
CVE-2024-13784 Contact Form, Survey, Quiz & Popup Form Builder – ARForms <= 1.8.5 - Unauthenticated PHP Object Injection 17.08.2026 9.8
CVE-2026-18316 Solace Extra <= 1.6.0 - Missing Authorization to Unauthenticated Site Content Deletion and Unauthorized Demo Import via action-import-zip AJAX Action 17.08.2026 9.1
CVE-2026-14524 ProSolution WP Client <= 2.0.8 - Unauthenticated Arbitrary File Deletion via 'newfilename' and 'filename' Parameters 17.08.2026 9.1
CVE-2026-16098 ProSolution WP Client <= 2.0.10 - Unauthenticated Arbitrary File Upload via Content-Disposition Header Filename Override 16.08.2026 9.8
CVE-2026-18432 Frontend Admin by DynamiApps <= 3.29.9 - Unauthenticated Privilege Escalation via 'item_id' Parameter 16.08.2026 9.8
CVE-2026-19924 Tenda AC10 httpd R7WebsSecurityHandler improper authentication 16.08.2026 9.3
CVE-2026-73041 SiYuan before v3.7.4 Remote Code Execution via PDF Annotations 17.08.2026 9.4
CVE-2026-73042 SiYuan before v3.7.4 Remote Code Execution via Menu Metadata 17.08.2026 9.4
CVE-2026-73043 SiYuan before v3.7.4 Remote Code Execution via Template Calculation 17.08.2026 9.4
CVE-2026-73044 SiYuan before v3.7.4 Stored Cross-Site Scripting via Column Width 17.08.2026 9.4
CVE-2026-73046 SiYuan before v3.7.4 Authentication Bypass via HTTP Basic Auth 17.08.2026 9.3
CVE-2026-73050 SiYuan before v3.7.4 Stored XSS via select option color 17.08.2026 9.4
CVE-2026-73052 SiYuan before v3.7.4 Stored XSS via Attribute-View Field Names 17.08.2026 9.4
CVE-2026-73053 SiYuan before v3.7.4 Cross-Site Scripting via unicode2Emoji 18.08.2026 9.4
CVE-2026-73055 Shescape before 2.1.15 Home Directory Disclosure via BusyBox 17.08.2026 9.3
CVE-2026-74764 Path Traversal in TAR Archive Extraction Allows Arbitrary File Write in Pandora 17.08.2026 10
CVE-2026-18855 Link Library <= 7.9.4 - Unauthenticated Arbitrary File Deletion via link_url Parameter 17.08.2026 9.1
CVE-2026-19598 Pods <= 3.3.9 - Unauthenticated Privilege Escalation via Authorization Bypass to Admin Methods via 'pods_admin' AJAX Router 17.08.2026 9.8
CVE-2026-19901 LB-LINK X-PRO easycwmp hard-coded credentials 18.08.2026 9.2
CVE-2026-19900 LB-LINK X-PRO shadow hard-coded credentials 17.08.2026 9.2
CVE-2026-74473 vxlan: use pskb_network_may_pull() in route_shortcircuit() 17.08.2026 9.8
CVE-2026-74474 vxlan: use pskb_network_may_pull() for transmit path header pulls 17.08.2026 9.8
CVE-2026-74475 vxlan: use neigh_ha_snapshot() in route_shortcircuit() 17.08.2026 10
CVE-2026-74476 veth: convert frag_list skbs before running XDP 17.08.2026 9.1
CVE-2026-74478 um: vector: fix use-after-free in vector_mmsg_rx() 17.08.2026 9.8
CVE-2026-74480 net: bridge: stop fast-leave after deleting a port group 17.08.2026 9.8
CVE-2026-74493 net/smc: fix socket use-after-free during link group termination 17.08.2026 9.8
CVE-2026-74495 igbvf: Fix leak in TX DMA error cleanup 17.08.2026 9.8
CVE-2026-74517 KVM: x86: Cancel delayed I/O APIC EOI handling before destroying vCPUs 17.08.2026 9.3
CVE-2026-74521 ksmbd: use memcmp() to compare ClientGUIDs 17.08.2026 9.1
CVE-2026-74545 rtase: fix double free of multi-frag skb on DMA map failure 17.08.2026 9.8
CVE-2026-74556 scsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer 17.08.2026 9.8
CVE-2026-74568 KVM: arm64: vgic: Fix race between LPI release and re-registration 17.08.2026 9.3
CVE-2026-74569 netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp() 17.08.2026 9.8
CVE-2026-74570 ntfs: harden runlist realloc size calculations 17.08.2026 9.8
CVE-2026-74573 iommu/arm-smmu-v3-iommufd: Require exactly one Stream ID for a vDEVICE 17.08.2026 9.3
CVE-2026-16142 TrueBooker <= 1.2.6 - Unauthenticated Account Takeover via Insecure Direct Object Reference in 'truebooker_wp_user_id' Parameter 17.08.2026 9.8
CVE-2026-15826 User Profile Builder <= 3.16.4 - Unauthenticated Authentication Bypass via Type Confusion to Administrator Account Takeover via 'username' Parameter 17.08.2026 9.8
CVE-2026-72496 RDMA/bnxt_re: Proper rollback if the ioremap fails 17.08.2026 9.2
CVE-2026-74255 tipc: fix UAF in tipc_l2_send_msg() 17.08.2026 9.8
CVE-2026-74267 net/sched: sch_codel: Do not call qdisc_tree_reduce_backlog during peek before restoring qlen 17.08.2026 9.8
CVE-2026-74268 tcp: clear sock_ops cb flags before force-closing a child socket 17.08.2026 9.8
CVE-2026-74269 bnxt: fix head underflow on XDP head-grow 17.08.2026 9.8
CVE-2026-74279 crypto: cavium/cpt - fix DMA cleanup using wrong loop index 17.08.2026 10
CVE-2026-74280 crypto: marvell/octeontx - fix DMA cleanup using wrong loop index 17.08.2026 10
CVE-2026-74287 sctp: validate embedded address parameter length 17.08.2026 9.1
CVE-2026-74309 vdpa/octeon_ep: fix IRQ-to-ring mapping in interrupt handler 17.08.2026 10
CVE-2026-74310 vhost/net: complete zerocopy ubufs only once 17.08.2026 9.3
CVE-2026-74315 lockd: Avoid hashing uninitialized bytes in nlm4svc_lookup_file() 17.08.2026 9.8
CVE-2026-74345 RDMA/siw: Fix endpoint/socket association handling 17.08.2026 9.8
CVE-2026-74350 ocfs2: validate fast symlink target during inode read 17.08.2026 9.8
CVE-2026-74361 nvme: fix FDP fdpcidx bounds check 17.08.2026 9.8
CVE-2026-74376 md/raid10: reset read_slot when reusing r10bio for discard 17.08.2026 9.8
CVE-2026-74384 nvme-multipath: fix flex array size in struct nvme_ns_head 17.08.2026 9.8
CVE-2026-74394 RDMA/srpt: fix integer overflow in immediate data length check 17.08.2026 9.8
CVE-2026-74398 ipv6: addrconf: bail out of dad_failure when state is no longer POSTDAD 17.08.2026 9.8
CVE-2026-74401 dlm: fix add msg handle in send_queue ordered 17.08.2026 9.8
CVE-2026-74406 vxlan: Fix potential null-ptr-deref in vxlan_gro_prepare_receive(). 17.08.2026 9.8
CVE-2026-74427 afs: Fix netns teardown to cancel the preallocation charger 17.08.2026 9.8
CVE-2026-74428 rxrpc: Fix double unlock in rxrpc_recvmsg() 17.08.2026 9.8
CVE-2026-74433 rxrpc: Fix UAF in rxgk_issue_challenge() 17.08.2026 9.8
CVE-2026-74434 rxrpc: Don't move a peeked OOB message onto the pending queue 17.08.2026 9.8
CVE-2026-74436 rxrpc: serialize kernel accept preallocation with socket teardown 17.08.2026 9.8
CVE-2026-74439 iommu/vt-d: Clear Present bit before tearing down scalable-mode context entry 17.08.2026 9.3
CVE-2026-68457 ksmbd: use opener credentials for FSCTL mutations 18.08.2026 9.1
CVE-2026-68476 ipvs: reload ip header after head reallocation 17.08.2026 9.8
CVE-2026-68477 ipvs: fix more places with wrong ipv6 transport offsets 17.08.2026 9.8
CVE-2026-72014 drbd: reject data replies with an out-of-range payload size 17.08.2026 9.8
CVE-2026-72020 ipvs: reset full ip_vs_seq structs in ip_vs_conn_new 17.08.2026 9.8
CVE-2026-72033 orangefs: keep the readdir entry size 64-bit in fill_from_part() 17.08.2026 9.8
CVE-2026-72041 espintcp: use sk_msg_free_partial to fix partial send 17.08.2026 9.8
CVE-2026-72046 gve: fix header buffer corruption with header-split and HW-GRO 17.08.2026 9.8
CVE-2026-72064 net: mana: Sync page pool RX frags for CPU 17.08.2026 9.8
CVE-2026-72065 net: mana: Validate the packet length reported by the NIC 17.08.2026 9.8
CVE-2026-72069 locking/rt: Fix the incorrect RCU protection in rt_spin_unlock() 17.08.2026 9.8
CVE-2026-72083 scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE 17.08.2026 9.8
CVE-2026-72084 scsi: target: Bound PR-OUT TransportID parsing to the received buffer 17.08.2026 9.8
CVE-2026-72085 scsi: xen: scsiback: Free unsubmitted command instead of double-putting it 17.08.2026 9.3
CVE-2026-72098 dm-verity: fix buffer overflow in FEC calculation 17.08.2026 9.8
CVE-2026-72129 nvmet-rdma: handle inline data with a nonzero offset 17.08.2026 9.8
CVE-2026-72130 nvmet-auth: reject short AUTH_RECEIVE buffers 17.08.2026 9.8
CVE-2026-72137 xfrm: nat_keepalive: avoid double free on send error 17.08.2026 9.8
CVE-2026-72139 tcp: defer md5sig_info kfree past RCU grace period in tcp_connect 17.08.2026 9.8
CVE-2026-72185 ntfs: fix WARN_ON for resident attribute in ntfs_map_runlist_nolock() 17.08.2026 9.8
CVE-2026-72186 ntfs: make system files immutable to prevent corruption 17.08.2026 9.1
CVE-2026-72188 ntfs: sanitize MFT references returned from ntfs_lookup_inode_by_name() 17.08.2026 9.1
CVE-2026-72191 ntfs3: validate split-point offset in indx_insert_into_buffer 17.08.2026 9.8
CVE-2026-72192 ntfs3: bound to_move in indx_insert_into_root before hdr_insert_head 17.08.2026 9.8
CVE-2026-72194 fs/ntfs3: add depth limit to indx_find_buffer to prevent stack overflow 17.08.2026 9.8
CVE-2026-72199 ntfs: validate resident index root values on lookup 18.08.2026 9.8
CVE-2026-72200 ntfs: detect mapping-pairs LCN accumulator overflow 18.08.2026 9.8
CVE-2026-72201 ntfs: validate index entries on reading 18.08.2026 9.8
CVE-2026-72206 ntfs: validate index block header more strictly 18.08.2026 9.8
CVE-2026-72207 ntfs: not change 0-byte $DATA attribute to non-resident 18.08.2026 9.8
CVE-2026-72208 ntfs: add bounds check before accessing EA entries 18.08.2026 9.8
CVE-2026-72209 ntfs: validate attribute values on lookup 17.08.2026 9.8
CVE-2026-72210 ntfs: fix off-by-one in mapping pairs decoding bounds checks 18.08.2026 9.8
CVE-2026-72211 ntfs: grow index root value before reparent header update 18.08.2026 9.8
CVE-2026-72217 SUNRPC: Bound-check xdr_buf_to_bvec() stores before writing 17.08.2026 9.8
CVE-2026-72220 sunrpc: harden rq_procinfo lifecycle to prevent double-free 17.08.2026 9.8
CVE-2026-72221 sunrpc: wait for in-flight TLS handshake callback when cancel loses race 17.08.2026 9.8
CVE-2026-72222 sunrpc: pin svc_xprt across the asynchronous TLS handshake callback 17.08.2026 9.8
CVE-2026-72226 batman-adv: tt: prevent TVLV OOB check overflow 17.08.2026 9.8
CVE-2026-72234 batman-adv: access unicast_ttvn skb->data only after skb realloc 17.08.2026 9.8
CVE-2026-72239 x86/virt/sev: Revert "Drop WBINVD before setting MSR_AMD64_SYSCFG_SNP_EN" 17.08.2026 9.3
CVE-2026-72248 netfilter: flowtable: support IPIP tunnel with direct xmit 17.08.2026 9.8
CVE-2026-72249 netfilter: flowtable: use dst in this direction when pushing IPIP header 17.08.2026 9.8
CVE-2026-72251 netfilter: nf_nat_sip: reload possible stale data pointer 17.08.2026 9.8
CVE-2026-72277 KVM: arm64: nv: Inject SEA if guest VNCR isn't normal memory 17.08.2026 9.3
CVE-2026-72278 KVM: arm64: nv: Re-translate VNCR before injecting abort 17.08.2026 9.3
CVE-2026-72279 KVM: arm64: nv: Respect read-only PFN when mapping L1 VNCR 17.08.2026 9
CVE-2026-72288 KVM: arm64: vgic: Handle race between interrupt affinity change and LPI disabling 17.08.2026 9.3
CVE-2026-72289 KVM: arm64: vgic: Check the interrupt is still ours before migrating it 17.08.2026 9.3
CVE-2026-72291 KVM: s390: Fix unlikely race in try_get_locked_pte() 17.08.2026 9.3
CVE-2026-72296 net: ife: require ETH_HLEN to be pullable in ife_decode() 17.08.2026 9.1
CVE-2026-72299 tipc: restrict socket queue dumps in enqueue tracepoints 17.08.2026 9.8
CVE-2026-72317 SUNRPC: pin upper rpc_clnt across the TLS connect_worker 17.08.2026 9.8
CVE-2026-72318 cifs: validate DFS referral string offsets 17.08.2026 9.4
CVE-2026-72319 ipvs: ensure inner headers in ICMP errors are in headroom 17.08.2026 9.8
CVE-2026-72320 netfilter: nft_lookup: fix catchall element handling with inverted lookups 17.08.2026 9.1
CVE-2026-72322 ipv6: mcast: Fix potential UAF in MLD delayed work 17.08.2026 9.8
CVE-2026-72323 ipv4: igmp: Fix potential UAF in igmp_gq_start_timer() 17.08.2026 9.8
CVE-2026-72329 net/liquidio: drop cached VF pci_dev LUT 17.08.2026 9.3
CVE-2026-72339 qede: fix off-by-one in BD ring consumption on build_skb failure 17.08.2026 9.8
CVE-2026-72348 netfilter: ip6tables: mark malformed IPv6 extension headers for hotdrop 17.08.2026 9.1
CVE-2026-72351 gue: validate REMCSUM private option length 17.08.2026 9.8
CVE-2026-72355 netfs: Fix barriering when walking subrequest list 17.08.2026 9.8
CVE-2026-72366 netfs: Fix netfs_create_write_req() to handle async cache object creation 17.08.2026 9.8
CVE-2026-72381 ksmbd: fix use-after-free of fp->owner.name in durable handle owner check 17.08.2026 9.8
CVE-2026-72393 eth: fbnic: don't cache shinfo across skb realloc 17.08.2026 9.8
CVE-2026-72398 sctp: add INIT verification after cookie unpacking 17.08.2026 9.8
CVE-2026-72399 net: enetc: check the number of BDs needed for xdp_frame 17.08.2026 9.8
CVE-2026-72407 geneve: validate inner network offset in geneve_gro_complete() 17.08.2026 10
CVE-2026-72408 geneve: gate GRO hint in geneve_gro_complete() on gs->gro_hint 17.08.2026 10
CVE-2026-72412 s390/mm: Fix handling of _PAGE_UNUSED pte bit 17.08.2026 9.3
CVE-2026-72417 netfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto() 17.08.2026 9.8
CVE-2026-72421 ipv4: fib: Don't ignore error route in local/main tables. 17.08.2026 10
CVE-2026-72422 ksmbd: fix use-after-free of conn->preauth_info in concurrent SMB2 NEGOTIATE 17.08.2026 9.8
CVE-2026-72429 ipv6: ioam: fix type confusion of dst_entry 17.08.2026 9.8
CVE-2026-72436 netfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types 17.08.2026 9.8
CVE-2026-72442 netfilter: flowtable: fix and simplify IP6IP6 tunnel handling 17.08.2026 9.8
CVE-2026-72451 xfrm: Fix xfrm state cache insertion race 17.08.2026 9.8
CVE-2026-72463 xfrm: Fix dev use-after-free in xfrm async resumption 17.08.2026 9.8
CVE-2026-72466 xprtrdma: Fix bcall rep leak and unbounded peek 17.08.2026 9.8
CVE-2026-72472 nfs: use nfsi->rwsem to protect traversal of the file lock list 17.08.2026 9.8
CVE-2026-72473 xprtrdma: Decouple req recycling from RPC completion 17.08.2026 9.8
CVE-2026-72477 fs/ntfs3: call _ntfs_bad_inode() when failing to rename 17.08.2026 9.8
CVE-2026-72491 net/9p: fix race condition on rdma->state in trans_rdma.c 17.08.2026 9.8
CVE-2026-72493 net: serialize netif_running() check in enqueue_to_backlog() 17.08.2026 9.9
CVE-2026-72494 RDMA/irdma: Replace waitqueue and flag with completion 17.08.2026 9.8
CVE-2026-72495 RDMA/bnxt_re: Avoid repeated requests to allocate WC pages 17.08.2026 9.3
CVE-2026-14484 RapiSafe <= 1.0.4 - Unauthenticated Arbitrary File Deletion via 'rsmfcf7_session' and 'file_name' Parameters 17.08.2026 9.1
CVE-2026-15303 6Storage Rentals <= 2.27.0 - Unauthenticated Account Takeover via 'email' Parameter 17.08.2026 9.8
CVE-2026-15341 User Session Synchronizer <= 1.4.0 - Unauthenticated Authentication Bypass to Account Takeover via 'ussync-key', 'ussync-token', and 'ussync-ref' Parameters 17.08.2026 9.8
CVE-2026-73683 Laravel Socialite Facebook Provider Authentication Bypass via Nonce Replay 18.08.2026 9.2
CVE-2026-67365 Joomla Extension - icagenda.com - Unauthenticated SQL injection in iCagenda < 4.0.0-4.0.11 17.08.2026 9.2
CVE-2026-17181 IBM Db2 Mirror for i is affected by multiple vulnerabilities 18.08.2026 9.3
CVE-2026-17182 IBM Db2 Mirror for i is affected by multiple vulnerabilities 17.08.2026 9.8
CVE-2026-17184 IBM Db2 Mirror for i is affected by multiple vulnerabilities 18.08.2026 9.8
CVE-2026-17186 IBM Db2 Mirror for i is affected by multiple vulnerabilities 17.08.2026 9.9
CVE-2026-50027 mcp-memory-service: Missing Authentication on Document API Endpoints Allows Unauthenticated Memory Read/Write/Delete 17.08.2026 9.8
CVE-2026-73678 MindsDB Minds Platform v26.1.0 Unauthenticated RCE via scratchpad exec() 17.08.2026 10
CVE-2026-19188 Haiwell IoT Cloud HMI Gateway OS Command Injection 14.08.2026 10
CVE-2026-49457 QUIC has Broken TLS verification 14.08.2026 9.1
CVE-2026-19681 Command Injection 15.08.2026 9.4
CVE-2026-19682 Command Injection 15.08.2026 9.4
CVE-2026-48528 Metacat has an unauthenticated SQL injection vulnerability 17.08.2026 9.8
CVE-2026-73849 emlog allows unauthenticated reinstallation via `install.php?action=reinstall`. 18.08.2026 9.8
CVE-2026-19626 Remote Code Execution 15.08.2026 9.4
CVE-2026-19871 Use of hard-coded credentials in Prospero Flow CRM employee onboarding 14.08.2026 9.3
CVE-2026-72810 SiYuan before v3.7.4 Publish-Boundary Bypass via WebSocket 18.08.2026 9.2
CVE-2026-72811 SiYuan before v3.7.4 SQL Injection via backlink search 14.08.2026 9.9
CVE-2026-72822 Grav before 1.0.13 Authentication Bypass via disable2fa 14.08.2026 9.3
CVE-2026-72824 Grav before 1.0.13 API Key Scope Bypass via PagesController 14.08.2026 9.3
CVE-2026-72826 Grav before 1.0.13 Scope Bypass via createApiKey 18.08.2026 9.3
CVE-2026-72829 Grav before 1.0.13 API Key Scope Bypass via UsersController 14.08.2026 9.3
CVE-2026-72830 Grav API Plugin before 1.0.13 RCE via ConfigController scope bypass 14.08.2026 9.3
CVE-2026-72836 FileBrowser before 2.63.19 Case Sensitivity Authentication Bypass 18.08.2026 9.2
CVE-2026-12949 Wishlist Member X <= 3.34.1 - Unauthenticated Account Takeover via 'mergewith' Parameter 14.08.2026 9.8
CVE-2026-72839 filebrowser through 2.63.16 Privilege Escalation via Signup 14.08.2026 9.3
CVE-2026-72841 luci-app-openvpn Path Traversal RCE via instance_name2 18.08.2026 9.4
CVE-2026-72842 OpenWrt luci-app-lxc ACL Inconsistency Authentication Bypass 14.08.2026 9.4
CVE-2026-72850 Budibase before 3.40.0 Arbitrary File Write via Path Traversal 14.08.2026 9.4
CVE-2026-72851 Budibase before 3.40.0 SQL Injection via Unauthenticated Webhook 14.08.2026 9
CVE-2026-73302 Budibase: OIDC SSO account takeover: incoming identity linked by email without checking email_verified 14.08.2026 9
CVE-2026-73420 NextAuth.js: Email normalizer validates the address before Unicode normalization, allowing a homoglyph @ bypass 14.08.2026 9.1
CVE-2026-73421 NextAuth.js: Configuration errors can cause existence-based auth checks to fail open (auth object populated with an error) 18.08.2026 9.1
CVE-2026-73842 OpenChoreo: cluster-gateway internal proxy performs no caller authentication and is not read-only — data-plane Secret disclosure and arbitrary Kubernetes mutation 18.08.2026 9
CVE-2026-73843 OpenChoreo: Unauthenticated access to data-plane operations via OpenChoreo cluster-gateway management APIs 14.08.2026 9.6
CVE-2026-73665 FreePBX UCP: Unauthenticated remote code execution via socket.io namespace auth bypass and AMI action injection 18.08.2026 9.3
CVE-2026-19750 Tenda CH/CP/TX3 SSH hard-coded password 14.08.2026 9.2
CVE-2026-72776 AgenticSeek Unauthenticated RCE via /query API Endpoint 18.08.2026 9.3
CVE-2026-73663 FreePBX: Unauthenticated SQL injection in FreePBX missedcall via inbound Caller ID name leads to administrator takeover 14.08.2026 9.3
CVE-2026-17482 IBM Documentation Offline is vulnerable to information disclosure, session forgery and remote code execution 17.08.2026 9.8
CVE-2026-19297 Insufficient Authentication Brute Force Protection on Login Endpoint 15.08.2026 9.1
CVE-2026-8715 Vault Secrets Operator vulnerable to arbitrary file read and credential exfiltration via AppRole secretIDPath 14.08.2026 9.6
CVE-2026-19747 Tenda CH7 ATE Module Kylin HandleCmd command injection 14.08.2026 9.3
CVE-2026-73656 Trigger.dev: Cross-project deployment worker registration can modify another project's deployment state 14.08.2026 9.9
CVE-2026-14525 IBM WebSphere Application Server Liberty is affected by an authenication bypass 15.08.2026 9.4
CVE-2026-73653 Vitest: Browser Mode provider commands bypass the file-access permission gate 13.08.2026 9.4
CVE-2026-73644 OpenDJ: Authorization bypass in SASL PLAIN allowing a `proxied-auth` holder to impersonate any resolvable non-root user without an ACI proxy grant 18.08.2026 9.6
CVE-2026-73649 Velocity.js: Remote Code Execution via property-read to Function constructor (bypass of CVE-2026-44966 fix) 14.08.2026 9.8
CVE-2026-73567 sm-crypto: Predictable SM2 key generation in Node.js: default RNG uses Math.random + wall clock 14.08.2026 9.1
CVE-2026-67614 CyberPanel < 3.0.0 Hard-coded JWT Secret Authentication Bypass via WebTerminal 14.08.2026 9.3
CVE-2026-73532 Fluent Forms Pro 6.2.7 Embedded Malicious Code via Tampered Plugin Build 14.08.2026 9.3
CVE-2026-73533 Ninja Tables Pro 5.2.11 Embedded Malicious Code via Tampered Plugin Build 17.08.2026 9.3
CVE-2026-53790 rsync < 3.5.0 Command Injection via Multiple Code Paths 14.08.2026 9.2
CVE-2026-53791 rsync < 3.5.0 Daemon IP Spoofing via PROXY Protocol Header 14.08.2026 9.1
CVE-2026-53793 rsync < 3.5.0 Path Confinement Bypass via /./ Boundary Marker in Chroot Mode 14.08.2026 9.1
CVE-2026-70452 rsync 3.1.0 < 3.5.0 Access Control Bypass via DNS Resolution Failure 14.08.2026 9.1
CVE-2026-70460 rsync 2.3.3 < 3.5.0 Path Traversal via --partial-dir/--backup-dir Symlink 14.08.2026 9.2
CVE-2026-27544 WordPress QA Analytics plugin <= 5.2.0.0 - Remote Code Execution (RCE) vulnerability 13.08.2026 10
CVE-2026-28001 WordPress WP Directory Kit plugin <= 1.5.4 - SQL Injection vulnerability 13.08.2026 9.3
CVE-2026-28008 WordPress OAuth Single Sign On – SSO (OAuth Client) plugin <= 7.0.0 - Broken Authentication vulnerability 13.08.2026 9.8
CVE-2026-28142 WordPress Web Directory Free plugin <= 1.7.13 - SQL Injection vulnerability 13.08.2026 9.3
CVE-2026-28148 WordPress Headless Single Sign On plugin <= 1.6 - Bypass Vulnerability vulnerability 13.08.2026 9.8
CVE-2026-28149 WordPress Headless Single Sign On plugin <= 1.6 - PHP Object Injection vulnerability 13.08.2026 9.8
CVE-2026-28185 WordPress Log in with Google plugin <= 1.4.2 - Broken Authentication vulnerability 13.08.2026 9.8
CVE-2026-61962 WordPress WP BASE Booking plugin <= 6.3.0 - Arbitrary Code Execution vulnerability 13.08.2026 10
CVE-2026-61966 WordPress WPJAM Basic plugin <= 7.0.1 - SQL Injection vulnerability 13.08.2026 9.3
CVE-2026-61967 WordPress miniorange otp verification plugin <= 5.5.1 - Privilege Escalation vulnerability 13.08.2026 9.8
CVE-2026-61969 WordPress Listdom plugin <= 5.6.0 - SQL Injection vulnerability 13.08.2026 9.3
CVE-2026-66424 WordPress SMS Alert Order Notifications plugin <= 3.9.7 - Privilege Escalation vulnerability 13.08.2026 9.8
CVE-2026-66436 WordPress Active Products Tables for WooCommerce plugin <= 1.1.1 - SQL Injection vulnerability 13.08.2026 9.3
CVE-2026-66446 WordPress If-So Dynamic Content Personalization plugin <= 1.10 - SQL Injection vulnerability 13.08.2026 9.3
CVE-2026-66453 WordPress Salon booking system plugin <= 10.30.26 - Broken Authentication vulnerability 13.08.2026 9.8
CVE-2026-66458 WordPress RealPress plugin <= 1.1.2 - SQL Injection vulnerability 13.08.2026 9.3
CVE-2026-66465 WordPress Cartify theme <= 1.3.0.1 - Account Takeover vulnerability 13.08.2026 9.8
CVE-2026-66472 WordPress Everest Backup plugin <= 2.3.12 - SQL Injection vulnerability 13.08.2026 9.3
CVE-2026-66478 WordPress Church Admin plugin <= 5.1.1 - SQL Injection vulnerability 13.08.2026 9.3
CVE-2026-66691 WordPress Nokri theme <= 1.6.6 - Broken Access Control vulnerability 13.08.2026 9.8
CVE-2026-49827 WebErpMesv2 has Unauthenticated RCE via Unrestricted File Upload in HR Expense scan_file (CWE-434) 13.08.2026 9.8
CVE-2026-73483 Flowise before 3.1.3 Sandbox Escape via Puppeteer 14.08.2026 9.4
CVE-2026-73485 Flowise before 3.1.3 Remote Code Execution via Airtable Agent 14.08.2026 9
CVE-2026-73486 Flowise before 3.1.3 Code Injection via CSV Agent customReadCSV 13.08.2026 9
CVE-2026-73487 Flowise before 3.1.3 Prompt Injection RCE via CSV Agent 14.08.2026 9
CVE-2026-73601 Flowise before 3.1.3 Remote Code Execution via Custom MCP 14.08.2026 9
CVE-2026-73602 Flowise before 3.1.3 Sandbox Escape to RCE 13.08.2026 9
CVE-2026-73608 SiYuan before v3.7.4 Authorization Bypass via getAttributeViewSearchTarget 14.08.2026 9.2
CVE-2026-59503 Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-359: Exposure of Private Personal Information to an Unauthorized Actor 13.08.2026 9.1
CVE-2026-59504 Priority – CWE-602: Client-Side Enforcement of Server-Side Security 13.08.2026 9.1
CVE-2026-59506 Priority – CWE-306: Missing Authentication for Critical Function 13.08.2026 9.3
CVE-2026-59507 Priority – CWE-798: Use of Hard-coded Credentials CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-284: Improper Access Control 13.08.2026 9.3
CVE-2026-59500 Priority - CWE-287: Improper Authentication 13.08.2026 10
CVE-2026-15413 Link Factory - Backdoor 13.08.2026 10
CVE-2026-49819 UpSnap - Unauthenticated Initial-Superuser Takeover Chains to Root RCE via wake_cmd 13.08.2026 9.8
CVE-2026-49481 UpSnap vulnerable to Remote Code Execution via IP Field Template Injection in wake_cmd/shutdown_cmd 13.08.2026 9.6
CVE-2026-71193 13.08.2026 9.6
CVE-2026-71471 Acm-search-v2-rhel9: search-v2-operator: hub search cr collector.imageoverride propagated to every spoke as arbitrary container image 13.08.2026 9
CVE-2024-27253 IBM Engineering Requirements Management DOORS Next is impacted by vulnerability in Reviews delete request 13.08.2026 10
CVE-2026-73501 kin-openapi: ValidationHandler.Load() Fail-Open Authentication Bypass via NoopAuthenticationFunc Default 13.08.2026 9.1
CVE-2026-73519 WolfStack < 25.9.2 Hard-coded Secret Authentication Bypass via X-WolfStack-Secret 13.08.2026 9.3
CVE-2026-19001 MongoDB BI Connector ODBC driver may write outside an allocated buffer when handling oversized catalog object names 13.08.2026 9.5
CVE-2026-66898 Path traversal via unvalidated instance name in backup tarball restore enables root file write / RCE 13.08.2026 9.9
CVE-2026-63293 Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesystem access as root 13.08.2026 9.9
CVE-2026-63294 Root RCE via image backup.yaml symlink 13.08.2026 9.9
CVE-2026-17083 IBM i is Affected By Multiple Vulnerabilities in the Debug Server 13.08.2026 9.8
CVE-2026-63296 Project restriction bypass via instance migration config override 13.08.2026 9.9
CVE-2026-63297 Cross-project instance copy bypasses target project restrictions via TOCTOU in config merge 13.08.2026 9.9
CVE-2026-72508 Multicloud-operators-subscription: multicloud-operators-subscription: hub and spoke serviceaccounts bound to wildcard rbac (*/*/*) 13.08.2026 9.9
CVE-2026-73414 Shescape: Shell injection via unescaped parentheses on Windows with CMD 14.08.2026 9.2
CVE-2026-19656 ScadaLTS Authenticated Remote Code Execution 12.08.2026 9.9
CVE-2026-62420 Cross-project cluster migration bypasses project restrictions via cluster notification flag 12.08.2026 9.9
CVE-2026-63300 Cross-project instance move bypasses all project restrictions allowing host command execution 13.08.2026 9.9
CVE-2026-72789 SiYuan before v3.7.4 Authentication Bypass via Encrypted Notebooks 14.08.2026 9.2
CVE-2026-72793 SiYuan before v3.7.4 Information Disclosure via /api/system/getConf 14.08.2026 9.2
CVE-2026-72794 siyuan before v3.7.4 Session Cookie Key Disclosure via getConf 14.08.2026 9.2
CVE-2026-72795 SiYuan before v3.7.4 Information Disclosure via Embed Block 14.08.2026 9.2
CVE-2026-72798 SiYuan before v3.7.4 Information Disclosure via renderAttributeView 14.08.2026 9.2
CVE-2026-72804 SiYuan before v3.7.4 Authentication Bypass via Graph Endpoints 14.08.2026 9.2
CVE-2026-73268 Cluster-curator-controller: cluster-curator-controller: spec.install.overridejob allows arbitrary job spec injection 12.08.2026 9.9
CVE-2026-73269 Cluster-curator-controller: cluster-curator-controller: tenant-controllable trigger creates clusterrolebinding granting cluster-wide secrets access to namespace-local sa 12.08.2026 9.9
CVE-2026-73329 CamaleonCMS Stored XSS via Draft Post Title Creation Endpoint 14.08.2026 9.2
CVE-2026-73332 CamaleonCMS cama_contact_form Plugin Stored XSS via before_html Field 14.08.2026 9.2
CVE-2026-73407 Budibase: Unauthenticated REST Datasource Credential Theft via Cross-Origin Auth Leak (bypass of CVE-2026-48152)) 12.08.2026 9
CVE-2026-73300 Budibase: SQL Injection via `multipleStatements: true` 12.08.2026 9.6
CVE-2026-16860 IBM i is Affected By Remote Code Execution Vulnerability [] 12.08.2026 9.9
CVE-2026-16956 IBM Db2 Mirror for i is vulnerable to OS command injection [] 12.08.2026 9.8
CVE-2026-17218 IBM i is Affected By Remote Code Execution Vulnerability in Line Printer Daemon [] 12.08.2026 9.8
CVE-2026-73299 Prompty: Server-Side Template Injection to Remote Code Execution in the @prompty/core Nunjucks Renderer 12.08.2026 10
CVE-2026-17276 IBM i is Affected By Multiple Vulnerabilities in Navigator for i 12.08.2026 9.6
CVE-2026-73296 Microsoft UFO: Unauthenticated Mobile MCP access allows remote Android device control and screen disclosure 13.08.2026 9.4
CVE-2026-73294 Semaphore U: OS Command Injection 12.08.2026 9.9
CVE-2026-64639 14.08.2026 9.3
CVE-2026-73263 Prowler: RCE on Prowler App workers via kubeconfig auth-provider cmd-path 12.08.2026 9.9
CVE-2026-50561 Yuxi has a JWT Authentication Bypass Leading to Cross-Instance Administrator Token Reuse 13.08.2026 9.4
CVE-2026-67285 Joomla Extension - joomshaper.com - Unauthenticated arbitrary local PHP file inclusion in SP Page Builder < 6.8.0 14.08.2026 9.2
CVE-2026-57858 Cal.com Cal.diy 6.2.0 Stored XSS via BookingPageTagManager Analytics Tracking ID 13.08.2026 9.3
CVE-2026-67282 Joomla Extension - fabrikar.com - Unauthenticated remote code execution in Fabrik < 4.6.8 12.08.2026 10
CVE-2025-41769 Unauthenticated Buffer Overflow in PROFINET Service 13.08.2026 9.3
CVE-2026-66659 WordPress Tablesome Table plugin <= 1.2.9 - SQL Injection vulnerability 12.08.2026 9.3
CVE-2026-70398 Multicloud-integrations: multicloud-integrations: gitopscluster.spec.argoserver.argonamespace writes spoke bearer tokens to attacker-chosen namespace 12.08.2026 9.6
CVE-2026-72526 Multicloud-integrations: multicloud-integrations: pull-model propagation allows hub tenant to target arbitrary spoke cluster via unvalidated ocm-managed-cluster annotation 12.08.2026 9.9
CVE-2026-68431 ksmbd: validate minimum PDU size for transform requests 17.08.2026 9.1
CVE-2026-5917 libgit2 v0.27.0-v1.9.0 Shell Command Injection via ssh_libssh2 Backend 14.08.2026 9.4
CVE-2026-67568 Mira Hormone Monitor, Mira Android App Use of Hard-coded Credentials 12.08.2026 9.3
CVE-2026-68067 Mira Hormone Monitor, Mira Android App Weak Authentication 12.08.2026 9.3
CVE-2026-48765 TypeBot vulnerable to cross-workspace OAuth credential takeover in updateOAuthCredentials via missing object binding 12.08.2026 9.9
CVE-2026-16230 Formidable Digital Signatures <= 3.0.6 - Unauthenticated Arbitrary File Deletion via Signature Field 11.08.2026 9.8
CVE-2026-45618 LiquidJS is Vulnerable to Remote Code Execution 13.08.2026 10
CVE-2026-73034 DB-GPT v0.8.1 Path Traversal Arbitrary File Write via user_id Header 14.08.2026 9.3
CVE-2026-73032 PapersGPT for Zotero 0.6.1 RCE via Unsanitized LLM Response eval() 11.08.2026 9.4
CVE-2026-18691 Improper Authentication in MongoDB Intra-Cluster Connections Allows Credential Exposure 11.08.2026 9
CVE-2026-72742 DSPy 3.3.0b1 Local File Read via Image/Audio Output Field Parsing 12.08.2026 9.2
CVE-2026-69102 MaxKey Hard-coded JWT Secret Unauthorized Access via /login/jwt/trust 14.08.2026 9.3
CVE-2026-27302 Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863) 13.08.2026 10
CVE-2026-48381 Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89) 11.08.2026 9
CVE-2026-71362 Adobe Commerce | Incorrect Authorization (CWE-863) 12.08.2026 9.1
CVE-2026-71398 Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863) 13.08.2026 10
CVE-2026-47705 TypeBot vulnerable to CSV injection in result export 13.08.2026 9.6
CVE-2026-73090 PeerTube: Cross-origin remote video takeover via Update activity 13.08.2026 9.3
CVE-2026-73211 PeerTube: Unauthenticated remote SQL injection in ActorFollowModel.updateScore() 11.08.2026 9.8
CVE-2026-12571 Authentication Bypass Leading to Account Takeover 12.08.2026 9.8
CVE-2026-50516 Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability 17.08.2026 9.4
CVE-2026-59124 Microsoft High Performance Computing (HPC) Pack Remote Code Execution Vulnerability 17.08.2026 9.8
CVE-2026-62815 Microsoft QUIC Remote Code Execution Vulnerability 17.08.2026 9.8
CVE-2026-62878 Windows DNS Server Remote Code Execution Vulnerability 17.08.2026 9.8
CVE-2026-62893 Windows Deployment Services TFTP Server Remote Code Execution Vulnerability 17.08.2026 9.8
CVE-2026-65791 Windows iSCSI Target Service Remote Code Execution Vulnerability 17.08.2026 9.8
CVE-2026-70306 Microsoft Office SharePoint Spoofing Vulnerability 17.08.2026 9.3
CVE-2026-48362 ColdFusion | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78) 12.08.2026 10
CVE-2026-71384 ColdFusion | Incorrect Authorization (CWE-863) 12.08.2026 9.6
CVE-2026-73080 SeaweedFS: Unauthenticated SSRF with response read-back via VolumeServer.FetchAndWriteNeedle 13.08.2026 9.3
CVE-2025-31114 Fooocus webui vulnerable to Remote Code Execution 17.08.2026 9.3
CVE-2026-73069 Twenty: SQL Injection in the `searchVector` Field Settings Allows Arbitrary PostgreSQL Execution 11.08.2026 9.1
CVE-2026-17061 Deserialization of Untrusted Data Vulnerability in SIMULIA Execution Engine from Release 2023 through Release 2026 11.08.2026 10
CVE-2026-47702 TypeBot API tokens stored in plaintext 11.08.2026 9.1
CVE-2026-72920 SeaweedFS: Unauthenticated filer IAM gRPC service grants S3 administrative control 11.08.2026 9.8
CVE-2026-46670 YesWiki: Unauthenticated SQL Injection 13.08.2026 9.8
CVE-2026-48056 Streambert Vulnerable to Arbitrary Binary Execution via Downloader IPC Handler 11.08.2026 10
CVE-2026-48046 Streambert Vulnerable to Remote Code Execution (RCE) via Unvalidated Auto-Updater IPC Handler 13.08.2026 9.3
CVE-2026-18972 Velociraptor authenticated identity-spoofing vulnerability 11.08.2026 9.6
CVE-2026-58115 12.08.2026 10
CVE-2026-72785 Craft CMS before 5.10.6 Authorization Bypass via structures/move-element 11.08.2026 9.3
CVE-2026-13737 Command Restriction Bypass 11.08.2026 9.2
CVE-2026-13738 Improper Authorization Validation 11.08.2026 9.2
CVE-2026-72550 Friendica Friendica - SQL Injection 11.08.2026 9.8
CVE-2026-72599 e107 e107 - SQL Injection 11.08.2026 9.8
CVE-2026-72603 wg-easy wg-easy - OS Command Injection 11.08.2026 9.9

Latest Updates

CVE Title Updated Score
CVE-2026-34884 Apache SkyWalking MCP: SSRF via set_skywalking_url Tool and GraphQL Expression Injection in MCP Server 18.08.2026
CVE-2026-15371 Velociraptor Stored XSS in URL column types 18.08.2026 8.1
CVE-2026-15748 Forminator Forms <= 1.56.1 - Unauthenticated Arbitrary File Upload via Forged Upload Field Configuration 18.08.2026 9.8
CVE-2026-75091 Quill Forms <= 5.7.1 - Unauthenticated Stored Cross-Site Scripting 18.08.2026 7.2
CVE-2026-11801 WPAdverts <= 2.3.2 - Missing Authorization to Unauthenticated Sensitive Information Disclosure via classifieds-types REST Endpoint 18.08.2026 7.5
CVE-2026-75151 SourceCodester Onlne Examination & Learning Management System cross-site request forgery 18.08.2026
CVE-2026-75094 COMFAST CF-N1-S CGI mbox-config sub_44B438 os command injection 18.08.2026
CVE-2026-75090 EricLBuehler Mistral.rs GGUF Tokenizer gguf_tokenizer.rs convert_gguf_to_hf_tokenizer out-of-bounds 18.08.2026
CVE-2026-75093 sonos tract ONNX Initializer Loader tensor.rs from_raw_dt_align buffer size 18.08.2026
CVE-2026-75088 itsourcecode Hospital Management System viewbilling.php sql injection 18.08.2026
CVE-2026-75089 PHPGurukul Complaint Management System check_availability.php sql injection 18.08.2026
CVE-2026-75087 itsourcecode Hospital Management System viewdepartment.php sql injection 18.08.2026
CVE-2026-75086 itsourcecode Hospital Management System viewroom.php sql injection 18.08.2026
CVE-2026-75082 Webkul Bagisto Customer-Registration Notification Email register cross site scripting 18.08.2026
CVE-2026-75081 Webkul Bagisto store behavioral workflow 17.08.2026
CVE-2026-75080 SourceCodester Class and Exam Timetabling System edit_subject1.php sql injection 17.08.2026
CVE-2026-75079 SourceCodester Class and Exam Timetabling System edit_subject2.php sql injection 17.08.2026
CVE-2026-75078 SourceCodester Class and Exam Timetabling System BSHRM1.php cross site scripting 17.08.2026
CVE-2026-38165 17.08.2026
CVE-2026-67919 17.08.2026
CVE-2026-42162 17.08.2026
CVE-2026-42164 17.08.2026
CVE-2026-67961 17.08.2026
CVE-2026-75587 Plaintext pre-auth secret exposure via Desktop App diagnostics report 17.08.2026 3.6
CVE-2026-9693 Mattermost thread memberships persist after team removal, exposing private channel thread metadata on re-invite 17.08.2026 3.5
CVE-2026-10080 Boards plugin panics on WebSocket command with non-string field types 17.08.2026 6.5
CVE-2026-42163 17.08.2026
CVE-2026-51977 17.08.2026
CVE-2026-9816 Insufficient server-side validation of board member role fields permits privilege escalation 17.08.2026 8.3
CVE-2026-9859 Mattermost Boards plugin didn’t enforce role-based authorization on board channel link allowing board editors to expose boards to arbitrary channels 17.08.2026 6.5
CVE-2026-67868 17.08.2026
CVE-2026-67960 17.08.2026
CVE-2026-67854 17.08.2026
CVE-2026-67918 17.08.2026
CVE-2026-11817 CVE-2026-11817 CVE Record 17.08.2026
CVE-2026-28984 17.08.2026
CVE-2026-43667 17.08.2026
CVE-2026-43794 17.08.2026
CVE-2026-43795 17.08.2026
CVE-2026-45791 Dokploy: Password Change Does Not Revoke Active Sessions 17.08.2026 5.9
CVE-2026-63178 Onyx Curator-scope IDOR: any curator can modify membership of arbitrary user groups via unscoped PATCH /manage/admin/user-group/{id} and /add-users leading to cross-group document disclosure 17.08.2026 6.5
CVE-2026-64715 17.08.2026
CVE-2026-64760 17.08.2026
CVE-2026-64778 17.08.2026
CVE-2026-64779 17.08.2026
CVE-2026-64780 17.08.2026
CVE-2026-64781 17.08.2026
CVE-2026-64782 17.08.2026
CVE-2026-64784 17.08.2026
CVE-2026-64787 17.08.2026
CVE-2026-64788 17.08.2026
CVE-2026-65329 17.08.2026
CVE-2026-65330 17.08.2026
CVE-2026-65331 17.08.2026
CVE-2026-65332 17.08.2026
CVE-2026-65333 17.08.2026
CVE-2026-65334 17.08.2026
CVE-2026-65335 17.08.2026
CVE-2026-65336 17.08.2026
CVE-2026-65337 17.08.2026
CVE-2026-65338 17.08.2026
CVE-2026-65339 17.08.2026
CVE-2026-65340 17.08.2026
CVE-2026-65341 17.08.2026
CVE-2026-65343 17.08.2026
CVE-2026-65346 17.08.2026
CVE-2026-65347 17.08.2026
CVE-2026-65349 17.08.2026
CVE-2026-65351 17.08.2026
CVE-2026-71424 Onyx: Cross-user OAuth-token leak via /api/mcp/servers* for per-user MCP servers 17.08.2026 9.6
CVE-2026-45790 Dokploy: Invitation Role Escalation Allows Organization Takeover 17.08.2026 8
CVE-2026-54385 17.08.2026
CVE-2026-56677 9Router: Authenticated Server-Side Request Forgery (SSRF) via OIDC Provider Test Endpoint 17.08.2026 8.6
CVE-2026-64849 MLflow: Unauthenticated full-read SSRF in webhook delivery: _validate_webhook_url bypassed via unvalidated HTTP redirects (and DNS rebinding) 17.08.2026 9.3
CVE-2026-69146 MLflow: LogInputs endpoint bypasses per-run UPDATE authorization in basic-auth 17.08.2026 6.5
CVE-2026-69148 MLflow: CreateModelVersion source validation does not check READ permission on referenced run_id 17.08.2026 7.1
CVE-2026-75077 SourceCodester Class and Exam Timetabling System BSCE2.php cross site scripting 17.08.2026
CVE-2026-44845 JumpServer: Remote Command Execution (RCE) via Jinja Template Injection in Applet Host Deployment 17.08.2026 6.7
CVE-2026-44846 JumpServer: Privilege Overwrite via Organization Invite Logic Flaw 17.08.2026 6.2
CVE-2026-71518 Typemill < 2.26.0 Authorization Bypass via Media File Download Route 17.08.2026
CVE-2026-47683 vm2: bufferAllocLimit cap bypassed by Buffer.concat and Buffer.from arrayLike 17.08.2026
CVE-2026-47686 vm2: Missing Error.cause Sanitization Enables VM2 Sandbox Escape to RCE 17.08.2026 9.9
CVE-2026-47698 vm2: Sandbox Breakout Using Dangerous Host Proto Mutators 17.08.2026 9.8
CVE-2026-54336 JumpServer: KoKo Web Terminal SFTP Path Traversal on Authorized Asset 17.08.2026 5.4
CVE-2026-63409 Deskflow: Odd-length DSOP options vector causes out-of-bounds read in Deskflow client 17.08.2026 8.2
CVE-2026-65640 17.08.2026
CVE-2026-65832 Deskflow - Unauthenticated server-controlled out-of-bounds read in ServerProxy::setOptions / translateKey modifier-table indexing 17.08.2026 8.2
CVE-2026-65976 Deskflow: Clipboard receiver can accumulate data beyond Deskflow's configured clipboard size limit 17.08.2026 6.5
CVE-2026-75531 Stored Cross-Site Scripting in URL Observables via Lookyloo Submission Handler in Pandora 17.08.2026
CVE-2026-34398 FreeCAD: Arbitrary Code Execution via eval() on untrusted project file metadata in BIM Workbench 17.08.2026 7.8
CVE-2026-34399 FreeCAD: Arbitrary Code Execution via eval() on untrusted SVG template scale field in BIM TechDraw Page 17.08.2026 7.8
CVE-2026-34789 FreeCAD: Arbitrary code execution via unsandboxed PyImport_ImportModule in PropertyPythonObject::Restore 17.08.2026 7
CVE-2026-65822 ERPNext: SQL Injection in "Inactive Customers" report via unvalidated `doctype` filter 17.08.2026 7.6
CVE-2026-65974 ERPNext: Server-Side Template Injection leading to Remote Code Execution 17.08.2026 9.9
CVE-2026-66795 Managedcluster-import-controller: managedcluster-import-controller: csr auto-approver does not validate certificate subject, signername, or requester identity 17.08.2026
CVE-2026-67917 17.08.2026
CVE-2026-67925 17.08.2026
CVE-2026-67966 17.08.2026
CVE-2026-67967 17.08.2026
CVE-2026-68765 hashcat KeePass KDBX v4 Module Heap Buffer Overflow via Token Field 17.08.2026
CVE-2026-75529 Stored Cross-Site Scripting via MIME-Type Confusion in PDF Downloads of Pandora 17.08.2026
CVE-2026-35219 Budibase: SSRF in Automation Steps - Webhook, Zapier, N8N, Slack, Discord Bypass IP Blacklist 17.08.2026
CVE-2026-39254 17.08.2026
CVE-2026-39255 17.08.2026
CVE-2026-40506 OpenEMR Path Traversal Arbitrary Directory Deletion via standard_tables_manage.php 17.08.2026
CVE-2026-54356 Budibase authenticated arbitrary S3 signed upload URL issuance via `/api/attachments/:datasourceId/url` 17.08.2026 7.1
CVE-2026-67926 17.08.2026
CVE-2026-67965 17.08.2026
CVE-2026-75103 Crawlab Missing Authorization on Password Change Endpoint Allows Account Takeover 17.08.2026
CVE-2026-75104 Hugging Face Transformers Path Traversal via Checkpoint Index 17.08.2026
CVE-2026-75105 phpIPAM Temporary Subnet Share Information Disclosure via Address Parameter 17.08.2026
CVE-2026-75106 OpnForm Editable Submission Secret Derivation via Empty Hashids Salt 17.08.2026
CVE-2026-75108 Next Terminal Missing Per-Asset Authorization on Portal Endpoints 17.08.2026
CVE-2026-75109 Determined Missing Authorization Check on Generic Task Endpoints 17.08.2026
CVE-2026-75110 MemOS Authentication Bypass via Unset INTERNAL_SERVICE_SECRET 17.08.2026
CVE-2026-75111 Evidently UI Path Traversal via Dataset Materialization Filename 17.08.2026
CVE-2026-75479 JimuReport Unauthenticated Report Listing and Share Token Disclosure 17.08.2026
CVE-2026-75480 OpenViking Debug Vector Endpoints Multi-tenant Data Exposure 17.08.2026
CVE-2026-75481 SkyPilot Authentication Bypass via Service Account Role Escalation 17.08.2026
CVE-2026-75482 SWE-agent Trajectory Inspector Path Traversal File Disclosure 17.08.2026
CVE-2026-75483 powerlevel10k Control Character Injection via package.json Version 18.08.2026
CVE-2026-19589 Packer vulnerable to arbitrary file write via crafted plugin archive during installation 17.08.2026 7.1
CVE-2026-64657 Budibase: Database Connector SQL Injections in PostgreSQL, MS SQL, and MySQL 17.08.2026 8.4
CVE-2026-73410 Budibase: SSRF via DNS rebinding in the REST datasource integration 17.08.2026 8.5
CVE-2026-73560 vLLM: SSRF + arbitrary local file read in MiMoV2OmniMultiModalProcessor `_fetch_image` and audio loader bypass MediaConnector protections 17.08.2026 6.5
CVE-2026-52886 Notepad++: session.xml backupFilePath starts_with Bypass 17.08.2026
CVE-2026-54758 Notepad++: Stack Buffer Overflow in expandNppEnvironmentStrs 17.08.2026 7.8
CVE-2026-57233 Notepad++: Path Traversal (Zip Slip) in WinGup Plugin Extraction 17.08.2026 8.1
CVE-2026-67678 17.08.2026
CVE-2026-68004 17.08.2026
CVE-2026-68005 17.08.2026
CVE-2026-71486 vLLM: Derender endpoints decode caller-supplied GenerateResponse token IDs without output bounds 17.08.2026 4.3
CVE-2026-71858 Notepad++: shortcuts.xml Macro HMAC Bypass Enables Conditional Elevated Command Execution 17.08.2026
CVE-2026-19478 Improper Control of Generation of Code ('Code Injection') in GitLab 17.08.2026 9.4
CVE-2026-19650 Cross-Site Request Forgery (CSRF) in GitLab 17.08.2026 7.1
CVE-2026-71553 ApostropheCMS: 2nd-order prototype pollution via PATCH leading to single-request persistent DoS 17.08.2026
CVE-2026-63667 ApostropheCMS: Arbitrary file read via import-export attachment-name path traversal 17.08.2026 6.5
CVE-2026-63670 ApostropheCMS: Mutation-XSS / allowedTags bypass via literal `</textarea/>` solidus close 17.08.2026 6.1
CVE-2026-63669 ApostropheCMS: Missing destination-parent authorization in page `move()` allows a low-privileged editor to move and re-rank pages inside a restricted subtree 17.08.2026 6.5
CVE-2026-74234 Legora < 2026-08-14 XSS via Mermaid gray-matter JavaScript Engine 17.08.2026
CVE-2026-75014 SourceCodester Pet Grooming Management Software get_barcode_data.php sql injection 17.08.2026
CVE-2026-57485 Stirling-PDF: Internal Service Account API Key Disclosure via Pipeline Endpoint 17.08.2026 8.5
CVE-2026-70495 Search-v2-operator: search-v2-operator: cluster-wide impersonate on users/groups shared across 4 pods grants hub system:masters 17.08.2026
CVE-2026-71472 Acm-search-v2-rhel9: search-v2-operator: shell-command and sql injection in postgresql-start.sh via cr-supplied work_mem 17.08.2026
CVE-2026-75013 TOTOLINK EX1200L cstecgi.cgi setWizardCfg null pointer dereference 17.08.2026
CVE-2026-75012 TOTOLINK EX1200L Password Configuration cstecgi.cgi setPasswordCfg null pointer dereference 17.08.2026
CVE-2026-17639 Certain HP Smart Tank All in One – Potential Denial of Service 17.08.2026
CVE-2026-71693 17.08.2026
CVE-2026-45698 Netatalk has Integer Underflow → Stack Buffer Overflow in deletedir() 17.08.2026 7.5
CVE-2026-60106 17.08.2026
CVE-2026-60107 17.08.2026
CVE-2026-12553 HP Web Jetadmin (WJA) - Potential Arbitrary File Read/Write 17.08.2026
CVE-2026-50773 17.08.2026
CVE-2026-50774 17.08.2026
CVE-2026-50775 17.08.2026
CVE-2026-50776 17.08.2026
CVE-2026-66792 Multicloud-operators-subscription: multicloud-operators-subscription: isclusteradmin() trusts user-settable annotations on managed clusters 17.08.2026
CVE-2026-74238 TIER IV Nebula 1.2.0 Heap Out-of-Bounds Read via VLP32 UDP Decoder 17.08.2026
CVE-2026-75011 kylecui NetForensicMCP index.js execAsync command injection 17.08.2026
CVE-2026-33437 Stirling PDF: Stored XSS in Info Summary 17.08.2026 8.1
CVE-2026-48053 Kolibri has Unauthenticated Server-Side Request Forgery (SSRF) in RemoteFacilityUserViewset 17.08.2026 5.8
CVE-2026-50768 17.08.2026
CVE-2026-50769 17.08.2026
CVE-2026-50770 17.08.2026
CVE-2026-50771 17.08.2026
CVE-2026-50772 17.08.2026
CVE-2026-59903 Netty: Cache Poisoning and Information Disclosure via CORS Vary Header Overwrite 17.08.2026 6.5
CVE-2026-73523 COVESA Open1722 0.9.2 Stack Memory Disclosure via acf-can-listener.c Integer Truncation 17.08.2026
CVE-2026-46345 compliance-trestle - jinja has an Arbitrary File Write via Path Traversal 17.08.2026 8.4
CVE-2026-54284 sqlparse: TokenList.__init__ materializes O(subtree) value per group, causing CPU DoS before depth/token caps trigger 17.08.2026
CVE-2026-59902 Netty: Memory Exhaustion in SctpMessageCompletionHandler 17.08.2026 7.5
CVE-2026-71980 Belledonne Communications bcg729 1.1.2 Out-of-Bounds Read via decodeSIDframe() 17.08.2026
CVE-2026-73522 COVESA Open1722 0.9.2 Stack Buffer Overflow via avtp_to_can() in acf-can-listener 17.08.2026
CVE-2026-51346 17.08.2026
CVE-2026-59893 sqlparse: Inefficient Regex Handling of Dollar-Quoted SQL Literals Leads to ReDoS (Denial of Service) 17.08.2026 7.5
CVE-2026-71979 INDI indiserver 2.2.4.2 Stack Buffer Overflow via XML Tag Parsing 17.08.2026
CVE-2026-71491 sqlparse: Quadratic O(n²) DoS in group_comments 17.08.2026
CVE-2026-59894 sqlparse: Generated Python and PHP snippets allow SQL string breakout through unescaped backslashes 17.08.2026
CVE-2026-62982 Glances: Incomplete fix of CVE-2026-32608: action-template sanitizer is bypassed by nested stat values (process 'cmdline') → OS command injection 17.08.2026 8.8
CVE-2026-68519 Glances: `--disable-config-exec` does not cover on-alert action commands (incomplete fix of CVE-2026-53925) 17.08.2026
CVE-2026-68520 Glances: as_dict_secure() Value-Level Bypass Leaks Credentials in URL Values via /api/4/config 17.08.2026 5.3
CVE-2026-73424 Astro: Unauthenticated path override in the @astrojs/vercel ISR function 17.08.2026 6.5
CVE-2026-74253 Joomla Extension - regularlabs.com - Unauthenticated RCE through unverified reflected user input in Sourcerer < 14.0.0 17.08.2026
CVE-2026-74254 Joomla Extension - joomlack.fr - SQL injection in Page Builder CK < 3.6.5 18.08.2026
CVE-2026-68517 Glances: REST API CORS Credentials Guard Uses Exact-Match Instead of Membership Test — Bypassed by Any Multi-Origin Allowlist Containing the Wildcard 17.08.2026 6.5
CVE-2026-40145 Control protections bypass in BeyondTrust Endpoint Privilege Management (Windows deployment) support utility 17.08.2026
CVE-2026-12519 Out-of-bounds stack read and write in Zephyr WNC-M14A2A modem socket-notify parsing 17.08.2026 5
CVE-2026-12629 PL011 UART error interrupts never cleared, enabling an external-peer interrupt-storm denial of service 17.08.2026 4.6
CVE-2026-12630 6LoWPAN IPHC uncompression out-of-bounds read on reserved destination addressing mode 17.08.2026 4.3
CVE-2026-61666 websocket-driver: Denial of service via malformed Host header 17.08.2026
CVE-2026-68518 Glances: Command injection bypass of action-template sanitizer via cross-field shell-operator reconstruction 17.08.2026
CVE-2026-9771 Missing device-pointer validation in flash_copy() syscall allows userspace privilege escalation 17.08.2026 8.8
CVE-2026-40144 Memory corruption vulnerability in Endpoint Privilege Management (Windows deployments) 17.08.2026
CVE-2026-64865 New API: Redis user quota cache overwrite via PUT /api/user/self allows quota bypass 17.08.2026
CVE-2026-64866 New API: Admin can reset passkeys for same-level or higher-privileged users 17.08.2026
CVE-2026-71479 New API: Integer overflow in quota billing yields negative charges (self-crediting) 17.08.2026 9.1
CVE-2025-27772 Uptrain vulnerable to remote code execution via `/new_run` endpoint 17.08.2026
CVE-2026-68762 17.08.2026 5.9
CVE-2026-75044 17.08.2026 8.1
CVE-2026-75045 18.08.2026 9.1
CVE-2026-75046 17.08.2026 4.3
CVE-2026-75047 17.08.2026 6.5
CVE-2026-75048 17.08.2026 8.2
CVE-2026-75049 17.08.2026 6.5
CVE-2026-75050 17.08.2026 7.1
CVE-2026-75051 18.08.2026 8.1
CVE-2026-75052 17.08.2026 3.6
CVE-2026-75053 17.08.2026 5.4
CVE-2026-75054 17.08.2026 6.3
CVE-2026-75055 17.08.2026 5.5
CVE-2026-75056 18.08.2026 7.8
CVE-2026-75057 17.08.2026 6.2
CVE-2026-75058 17.08.2026 5.5
CVE-2026-75059 18.08.2026 4.4
CVE-2026-75060 18.08.2026 8.4
CVE-2025-27621 UpTrain has a Constant Default API Key 17.08.2026
CVE-2025-27770 UpTrain vulnerable to Remote code execution at `/create_project` 17.08.2026
CVE-2025-27771 Uptrain vulnerable to remote code execution via `/add_prompts` endpoint 17.08.2026
CVE-2026-64859 New API: User List API Leaks Root User Access Token Leading to Privilege Escalation 17.08.2026 9.1
CVE-2026-64868 New API: Unauthenticated payment webhooks allow memory and disk DoS via unbounded body reads and full-body logging 17.08.2026 7.5
CVE-2026-53960 Discourse: Hidden first-post excerpt is emitted in Q&A schema JSON-LD 17.08.2026 5.3
CVE-2026-55674 Discourse: Cache poisoning/XSS via color scheme cookies 17.08.2026 9.3
CVE-2026-55704 Discourse: Shared-draft titles and excerpts leak through group post serialization 17.08.2026 4.3
CVE-2026-59829 Discourse: Review queue exposes flag-related private message excerpts to category group moderators 17.08.2026 4.3
CVE-2026-73646 PostCSS: Path Traversal in Previous Source Map Auto-Loading (sourceMappingURL) leads to Arbitrary .map File Disclosure 17.08.2026 7.5
CVE-2026-74858 jae-jae fetcher-mcp URL Validation security-credentials fetch_urls server-side request forgery 17.08.2026
CVE-2026-13202 HTML Injection in OTDS Swagger UI 17.08.2026
CVE-2026-73851 Kiota: Path traversal in generated plugin manifest static_template.file reference (percent-encoding bypass) 17.08.2026
CVE-2026-10527 Boards plugin retains Board Admin rights for users demoted to System Guest 17.08.2026 6.3
CVE-2026-15754 Missing per-channel team-scope check in ABAC access control policy unassign allows cross-team policy removal 17.08.2026 4.2
CVE-2026-16044 Insufficient validation of guest board admin privileges on archive import 17.08.2026 3.9
CVE-2026-16045 Delegated OAuth tokens could revoke unrelated OAuth application authorizations 17.08.2026 2.7
CVE-2026-16049 _GitLab Plugin allows cross-channel post injection and phishing via missing channel permission checks in issue API endpoints_ 17.08.2026 3.9
CVE-2026-71567 User-controlled variables inserted unescaped into shell scripts and Kubernetes manifests 17.08.2026 7.7
CVE-2026-16046 Missing run-state validation on finished playbook runs 17.08.2026 3.5
CVE-2026-16047 Board channel linking without read channel permission validation 17.08.2026 4.3
CVE-2026-16048 Channel member roles accept out-of-scope roles 17.08.2026 6.3
CVE-2026-71566 KubeVirt backend is not authenticated 17.08.2026 9.3
CVE-2026-56089 17.08.2026 3.3
CVE-2026-59909 17.08.2026 7.1
CVE-2026-59911 17.08.2026 5.5
CVE-2026-15218 Models-as-a-service: red hat openshift ai: maas-api and maas-controller serviceaccounts with excessive permissions lead to privilege escalation 17.08.2026
CVE-2026-16137 Path traversal via unsanitized upload filename leads to arbitrary file write in Progress ShareFile Storage Zones Controller 18.08.2026 7.2
CVE-2026-16138 Remote code execution via unsafe deserialization in Progress ShareFile Storage Zones Controller's CICO service 18.08.2026 8
CVE-2026-16139 Arbitrary file write via path traversal in Progress ShareFile Storage Zones Controller potentially leading to remote code execution 18.08.2026 7.2
CVE-2026-19693 extract-zip arbitrary file write outside the destination directory via a symlink at the final path component 17.08.2026 8.1
CVE-2026-56090 17.08.2026 7.3
CVE-2026-56685 17.08.2026 7.3
CVE-2026-59910 17.08.2026 7.8
CVE-2026-16471 Broken Access Control in Dolusoft Software's Sonlogger 17.08.2026 7.5
CVE-2026-56686 17.08.2026 7.8
CVE-2026-16467 Broken Access Control in Dolusoft Software's Fortilogger 17.08.2026 7.5
CVE-2026-70412 17.08.2026 3.5
CVE-2026-75004 17.08.2026 4.3
CVE-2026-75006 17.08.2026 5.8
CVE-2026-75007 18.08.2026 5.4
CVE-2026-75010 17.08.2026 6.4
CVE-2026-74997 17.08.2026 8.8
CVE-2026-74998 17.08.2026 7.2
CVE-2026-74999 17.08.2026 5.4
CVE-2026-75000 18.08.2026 5.8
CVE-2026-75002 18.08.2026 7.1
CVE-2026-75003 18.08.2026 5.8
CVE-2026-14564 Sensitive Data Exposure in Innotim Software's Logsign SIEM 17.08.2026 9
CVE-2026-18674 Kong Mesh multi-zone: the global control plane attributes KDS-synced resources by an unvalidated in-band zone identifier 17.08.2026
CVE-2026-40126 DOM-based Cross-Site Scripting in OutSystems Service Center 17.08.2026
CVE-2026-74843 Wavlink WN531P3/WN535M1 Export Pingortrace CGI export_pingortrace.cgi strcpy stack-based overflow 17.08.2026
CVE-2026-74798 SiYuan kernel Path Traversal via database_clean MCP tool 17.08.2026
CVE-2026-74799 SiYuan before 3.7.4 Unauthenticated Debug Endpoint Information Disclosure 17.08.2026
CVE-2026-74800 SiYuan before v3.7.4 Stored XSS via assets endpoint 17.08.2026
CVE-2026-74801 SiYuan before 3.7.4 Local Privilege Escalation via elevator.exe 17.08.2026
CVE-2026-74802 SiYuan 3.7.3 Cross-Site WebSocket Hijacking via network proxy 17.08.2026
CVE-2026-74867 SiYuan before 3.7.4 Cross-Site Request Forgery via CheckAuth 17.08.2026
CVE-2026-74868 SiYuan before 3.7.4 Brute-Force Authentication via Publish Service 17.08.2026
CVE-2026-74869 stoatchat before 0.15.0 Missing Authorization via Subscribe 17.08.2026
CVE-2026-74870 openssl_encrypt before 1.4.8 Hardware Pepper Information Disclosure 17.08.2026
CVE-2026-74871 openssl_encrypt before 1.4.6 KDF Bypass via Sequential-XOR 17.08.2026
CVE-2026-74872 openssl_encrypt before 1.4.0 Arbitrary Code Execution via Whirlpool 17.08.2026
CVE-2026-74873 openssl_encrypt before 1.4.0 Password Exposure via CLI Argument 17.08.2026
CVE-2026-74874 openssl_encrypt before 1.4.0 Weak PRNG Steganography Pixel Selection 17.08.2026
CVE-2026-74875 openssl_encrypt before 1.4.0 Schema Validation Bypass 17.08.2026
CVE-2026-74876 openssl_encrypt before 1.4.0 Unverified Key Bundle Encryption 17.08.2026
CVE-2026-74877 openssl_encrypt before 1.4.0 Missing Ownership Verification via revoke_key 17.08.2026
CVE-2026-74878 openssl_encrypt before 1.4.0 TOTP Rate Limiter Bypass 17.08.2026
CVE-2026-74879 openssl_encrypt before 1.4.0 Information Disclosure via /ready endpoint 17.08.2026
CVE-2026-74880 openssl_encrypt before 1.4.0 Token Leakage via Query Parameters 17.08.2026
CVE-2026-74881 openssl_encrypt before 1.4.0 CORS Misconfiguration via Wildcard Origins 17.08.2026
CVE-2026-74882 openssl_encrypt before 1.4.0 Insecure Default Configuration 17.08.2026
CVE-2026-74883 openssl_encrypt before 1.4.0 Sandbox Bypass via pathlib and io 17.08.2026
CVE-2026-74884 openssl_encrypt before 1.4.0 Path Traversal via plugin_id 17.08.2026
CVE-2026-74885 openssl_encrypt before 1.4.0 Logging Bug and Race Condition 17.08.2026
CVE-2026-74886 openssl_encrypt before 1.4.0 Plugin Import Guard Bypass 17.08.2026
CVE-2026-74887 openssl_encrypt before 1.4.0 Insecure Random Import in PQC Module 17.08.2026
CVE-2026-74888 openssl_encrypt before 1.4.0 Non-Standard PBKDF2 Key Derivation 17.08.2026
CVE-2026-74889 openssl_encrypt before 1.4.0 Weak Key Derivation via HKDF 17.08.2026
CVE-2026-74890 openssl_encrypt before 1.4.0 HMAC Authentication Bypass via Environment Variable 17.08.2026
CVE-2026-74891 openssl_encrypt before 1.4.0 Hardcoded Database Credentials 17.08.2026
CVE-2026-74892 openssl_encrypt before 1.4.0 Hardcoded Secret Key 17.08.2026
CVE-2026-74893 openssl_encrypt before 1.4.0 JWT Token Forgery via Hardcoded Secrets 17.08.2026
CVE-2026-74894 openssl_encrypt before 1.4.0 Authentication Bypass via Bearer Token 17.08.2026
CVE-2026-74895 openssl_encrypt before 1.4.0 Plugin Sandbox Bypass via Process Isolation 17.08.2026
CVE-2026-74896 openssl_encrypt before 1.4.0 Sandbox Escape via Dunder Attribute Traversal 17.08.2026
CVE-2026-74899 openssl_encrypt before 1.4.0 Sandbox Escape via Type Hierarchy 17.08.2026
CVE-2026-74900 openssl_encrypt before 1.4.0 Weak Shared Secret via PQC Simulation Mode 17.08.2026
CVE-2026-74901 openssl_encrypt before 1.4.0 Authentication Bypass via AES-CTR Fallback 17.08.2026