| CVE-2026-16926 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.1 |
| CVE-2026-15706 |
Missing Authentication for Critical Function in Management API in Baylan Water Meters's BMS |
20.08.2026 |
9.8 |
| CVE-2026-28164 |
WordPress Easy Elementor Addons plugin <= 2.3.7 - Cross Site Request Forgery (CSRF) vulnerability |
20.08.2026 |
9.6 |
| CVE-2025-15688 |
WordPress Capella theme <= 2.5.5 - SQL Injection vulnerability |
20.08.2026 |
9.3 |
| CVE-2025-15689 |
WordPress Capella theme <= 2.5.5 - Privilege Escalation vulnerability |
20.08.2026 |
9.8 |
| CVE-2026-66583 |
WordPress Forminator plugin <= 1.57.0 - PHP Object Injection vulnerability |
20.08.2026 |
9.8 |
| CVE-2026-66592 |
WordPress rtMedia for WordPress, BuddyPress and bbPress plugin <= 4.7.11 - SQL Injection vulnerability |
20.08.2026 |
9.3 |
| CVE-2026-66593 |
WordPress Security & Malware scan by CleanTalk plugin <= 2.184 - SQL Injection vulnerability |
20.08.2026 |
9.3 |
| CVE-2026-66600 |
WordPress Media LIbrary Assistant plugin <= 3.39 - Arbitrary File Upload vulnerability |
20.08.2026 |
9.1 |
| CVE-2026-66609 |
WordPress TheGem (Elementor) theme <= 5.12.3 - SQL Injection vulnerability |
20.08.2026 |
9.3 |
| CVE-2026-66649 |
WordPress Directory Pro plugin <= 2.5.8 - SQL Injection vulnerability |
20.08.2026 |
9.3 |
| CVE-2026-66672 |
WordPress Flatastic theme <= 2.0 - PHP Object Injection vulnerability |
20.08.2026 |
9.8 |
| CVE-2026-66680 |
WordPress Locatoraid Store Locator plugin <= 3.9.72 - SQL Injection vulnerability |
20.08.2026 |
9.3 |
| CVE-2026-66682 |
WordPress Abandoned Cart Pro for WooCommerce plugin <= 10.4.0 - Privilege Escalation vulnerability |
20.08.2026 |
9.8 |
| CVE-2026-68566 |
WordPress BookingPress Appointment Booking Pro plugin <= 6.0.2 - SQL Injection vulnerability |
20.08.2026 |
9.3 |
| CVE-2026-73992 |
WordPress Query Wrangler plugin <= 1.5.57 - Remote Code Execution (RCE) vulnerability |
20.08.2026 |
9.9 |
| CVE-2026-73993 |
WordPress FundEngine plugin <= 1.7.9 - PHP Object Injection vulnerability |
20.08.2026 |
9.8 |
| CVE-2026-74001 |
WordPress User Registration & Membership Pro plugin <= 5.4.5 - Account Takeover vulnerability |
20.08.2026 |
9.8 |
| CVE-2026-74014 |
WordPress IT Residence theme <= 3.2.1 - Arbitrary File Upload vulnerability |
20.08.2026 |
9.9 |
| CVE-2026-74016 |
WordPress Smart Cleaning theme <= 4.8.6 - Arbitrary File Upload vulnerability |
20.08.2026 |
9.9 |
| CVE-2026-74018 |
WordPress Warehouse Cargo theme <= 2.6.9 - Arbitrary File Upload vulnerability |
20.08.2026 |
9.9 |
| CVE-2026-11861 |
Freeipa: idm: ipa: freeipa: obtaining tgs with impersonating cname through trust relationships |
20.08.2026 |
9.6 |
| CVE-2026-13097 |
Ipa: privilege escalation via krbcanonicalname manipulation due to realm-unaware uniqueness enforcement in freeipa ldap datastore |
20.08.2026 |
9.1 |
| CVE-2026-14950 |
Frauscher Sensortechnik: FDS102 for FAdC/FAdCi R2 is vulnerable to Insufficient Session Expiration due to flawed session expiration logic |
20.08.2026 |
9.2 |
| CVE-2026-76590 |
TRENDnet TEW-755AP ssi wan.cgi stack-based overflow |
19.08.2026 |
9.4 |
| CVE-2026-76850 |
LMDeploy Remote Code Execution via Unsafe Pickle Deserialization in the Disaggregated Serving Peer Connector |
20.08.2026 |
9.3 |
| CVE-2026-76310 |
Improper Access Control through Embedded Report REST API Requests in Splunk Enterprise |
19.08.2026 |
9.4 |
| CVE-2026-76311 |
Improper Access Control in Embedded Report Dispatch Archives in Splunk Enterprise |
19.08.2026 |
9.4 |
| CVE-2026-76312 |
Improper Access Control through Embedded Reports in Splunk Enterprise |
19.08.2026 |
9.4 |
| CVE-2026-76404 |
Remote Code Execution (RCE) through Deserialization of Untrusted Data in Splunk MCP Server app |
20.08.2026 |
9.1 |
| CVE-2026-76589 |
TRENDnet TEW-755AP mycli FUN_401000 stack-based overflow |
19.08.2026 |
9.4 |
| CVE-2026-75595 |
Netty: SNI Routing Bypass via Fragmented TLS ClientHello Causing Fallback to Default SslContext |
20.08.2026 |
9.1 |
| CVE-2026-76584 |
TRENDnet TV-IP751WIC alphapd set_time.cgi stack-based overflow |
20.08.2026 |
9.4 |
| CVE-2026-53545 |
Termix: Remote Code Execution via Tunnel Disconnect pkill Command Injection |
19.08.2026 |
9.8 |
| CVE-2026-53546 |
Termix: Missing authorization in SSH host credential resolution exposes stored credentials |
19.08.2026 |
9.6 |
| CVE-2026-53548 |
Termix: IDOR — Authenticated user can fetch SSH passwords for hosts owned by other users |
19.08.2026 |
9.6 |
| CVE-2026-16894 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
19.08.2026 |
9.8 |
| CVE-2026-16903 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.6 |
| CVE-2026-16913 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
19.08.2026 |
9.8 |
| CVE-2026-16917 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.8 |
| CVE-2026-16919 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
19.08.2026 |
9.8 |
| CVE-2026-16882 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
19.08.2026 |
9.8 |
| CVE-2026-16885 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.8 |
| CVE-2026-16834 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.8 |
| CVE-2026-16839 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.4 |
| CVE-2026-16840 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.8 |
| CVE-2026-16845 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.8 |
| CVE-2026-16862 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.8 |
| CVE-2026-16864 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.8 |
| CVE-2026-16872 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.8 |
| CVE-2026-55085 |
Etherpad: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in etherpad-lite |
19.08.2026 |
9.6 |
| CVE-2026-55089 |
Etherpad: JWT `admin` claim presence-only check lets non-admin OAuth users invoke every Etherpad HTTP API endpoint |
19.08.2026 |
9.9 |
| CVE-2026-16822 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.3 |
| CVE-2026-22306 |
Critical flaw impacting OZOLS ERP's automatic update channel |
19.08.2026 |
10 |
| CVE-2026-16687 |
Power System Buffer Overflow |
20.08.2026 |
9.6 |
| CVE-2026-16835 |
Power System Improper Certificate Validation |
19.08.2026 |
9.6 |
| CVE-2026-18315 |
TrueBooker <= 1.2.6 - Unauthenticated Authorization Bypass Through User-Controlled Key to Account Takeover to 'truebooker_wp_user_id' Parameter |
19.08.2026 |
9.8 |
| CVE-2026-70496 |
Search-v2-operator: search-v2-operator: operator clusterrole is cluster-admin equivalent via impersonate, rbac write, csr approve, and manifestwork |
19.08.2026 |
9.9 |
| CVE-2025-14600 |
Admin Account Takeover via Path Traversal in vsDesk |
19.08.2026 |
9.3 |
| CVE-2026-62682 |
Orval: RCE via servers[].url -> unescaped request-URL template literal (with getBaseUrlFromSpecification) |
19.08.2026 |
9.3 |
| CVE-2026-72717 |
Orval: Import-time RCE via schema default -> zod module-level template literal |
19.08.2026 |
9.3 |
| CVE-2026-62681 |
Orval: RCE via OpenAPI path -> unescaped request-URL template literal (backtick breakout) |
19.08.2026 |
9.3 |
| CVE-2026-66794 |
Cluster-proxy-addon: cluster-proxy-addon: unauthenticated ssrf to arbitrary managed-cluster services via public route |
19.08.2026 |
9.3 |
| CVE-2026-71864 |
Orval: Import-time RCE via header parameter name -> computed-property-key injection in the zod client |
19.08.2026 |
9.3 |
| CVE-2026-71865 |
Orval: Import-time RCE via query parameter name -> computed-property-key injection in the zod cli |
19.08.2026 |
9.3 |
| CVE-2026-71866 |
Orval: Import-time RCE via schema property name -> computed-property-key injection in the zod client |
19.08.2026 |
9.3 |
| CVE-2026-71867 |
Orval: RCE via schema property name -> computed-property-key injection in the MSW mock generator |
19.08.2026 |
9.3 |
| CVE-2026-71868 |
Orval: Import-time RCE via enum-typed default -> zod module-level template literal |
19.08.2026 |
9.3 |
| CVE-2026-71869 |
Orval: Import-time RCE via array-items default -> zod module-level template literal |
19.08.2026 |
9.3 |
| CVE-2026-71871 |
Orval: Import-time RCE via header-parameter default -> zod module-level template literal |
19.08.2026 |
9.3 |
| CVE-2026-72716 |
Orval: Import-time RCE via query-parameter default -> zod module-level template literal |
19.08.2026 |
9.3 |
| CVE-2026-32475 |
WordPress Elementor Pro plugin <= 4.2.1 - Arbitrary File Upload vulnerability |
19.08.2026 |
9 |
| CVE-2026-71470 |
Acm-search-v2-rhel9: search-v2-operator: search cr imageoverride/arguments/envvar flow unsanitized into pods running impersonating sa |
20.08.2026 |
9.1 |
| CVE-2026-72529 |
|
20.08.2026 |
9.3 |
| CVE-2026-72530 |
|
20.08.2026 |
9.5 |
| CVE-2026-75143 |
FFmpeg Heap Buffer Overflow via RIST Protocol Reader |
19.08.2026 |
9.3 |
| CVE-2026-20030 |
Cisco Crosswork Security Hardening Release: August 2026 |
19.08.2026 |
10 |
| CVE-2026-20231 |
Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Neutralization of Special Elements Vulnerabilities |
20.08.2026 |
9.9 |
| CVE-2026-20315 |
Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Access Control Vulnerabilities |
20.08.2026 |
10 |
| CVE-2026-20317 |
Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Authentication Vulnerabilities |
19.08.2026 |
10 |
| CVE-2026-20318 |
Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Input Validation Vulnerabilities |
19.08.2026 |
9.6 |
| CVE-2026-20357 |
Cisco Crosswork Security Hardening Release: August 2026 |
19.08.2026 |
10 |
| CVE-2026-20358 |
Cisco Crosswork Security Hardening Release: August 2026 |
19.08.2026 |
10 |
| CVE-2026-20359 |
Cisco Crosswork Security Hardening Release: August 2026 |
19.08.2026 |
9.9 |
| CVE-2026-48024 |
Wazuh: merged-file header path traversal in cluster sync allows arbitrary file write under WAZUH_PATH in Wazuh manager |
19.08.2026 |
9.1 |
| CVE-2026-48162 |
Wazuh: cluster peer can read arbitrary master files and forge offline REST API administrator tokens via DAPI tmp_file path injection in Wazuh manager |
19.08.2026 |
9.1 |
| CVE-2026-49441 |
Wazuh : peer-controlled metadata key in process_files_from_worker non-merged branch allows arbitrary file write under WAZUH_PATH on Wazuh manager |
19.08.2026 |
9.1 |
| CVE-2026-62668 |
Grav API Plugin: Webhook SSRF via Unrestricted cURL Protocols |
19.08.2026 |
9.4 |
| CVE-2026-16656 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.8 |
| CVE-2026-16816 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.9 |
| CVE-2026-52889 |
Formie: Server-Side Template Injection in Formie Hidden field defaults |
19.08.2026 |
9.8 |
| CVE-2026-45272 |
MyBooks: Remote Code Execution via SOCIAL_AUTH Key Name Injection in Python Config File |
19.08.2026 |
9.4 |
| CVE-2026-47187 |
SSHFS Symlink Escape: Rogue SFTP Server → Local File Read/Write |
20.08.2026 |
9.3 |
| CVE-2026-53451 |
Ground Station: Unauthenticated arbitrary file write (path traversal) in save-waterfall-snapshot leads to remote code execution |
19.08.2026 |
9.8 |
| CVE-2026-75949 |
Joomla Extension - cmsjunkie.com - Arbitrary file upload / deletion (path traversal) in J-BusinessDirectory < 6.2.3 |
19.08.2026 |
10 |
| CVE-2026-75954 |
Joomla Extension - cmsjunkie.com - SQL injection in trips search in J-BusinessDirectory < 6.2.3 |
19.08.2026 |
9.3 |
| CVE-2026-15065 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.1 |
| CVE-2026-15068 |
Vulnerabilities in IBM AIX and PowerVM VIOS |
20.08.2026 |
9.9 |
| CVE-2026-71960 |
Cudy WR3000 2.0 Hard-coded JWT Secret Authentication Bypass via MQTT |
19.08.2026 |
9.3 |
| CVE-2024-58376 |
Renovate 37.158.0 before 37.199.0 Command Injection via helmv3 |
20.08.2026 |
9.3 |
| CVE-2026-16019 |
SQL Injection in Faydam Innovation's FAYDAM Datalogger |
19.08.2026 |
9.8 |
| CVE-2026-75916 |
SiYuan XSS-to-RCE via unescaped block metadata in hint popup |
19.08.2026 |
9.3 |
| CVE-2026-75917 |
SiYuan before v3.7.4 XSS-to-RCE via pathName.ts |
19.08.2026 |
9.3 |
| CVE-2026-76213 |
phpMyFAQ before 4.1.7 2FA Brute-Force via Session-Scoped Throttle |
19.08.2026 |
9.1 |
| CVE-2026-76214 |
phpMyFAQ before 4.1.7 WebAuthn Replay Attack via Challenge |
20.08.2026 |
9.1 |
| CVE-2026-76242 |
stigmem Federation Peer Registration Authentication Bypass |
20.08.2026 |
9.1 |
| CVE-2026-76243 |
stigmem before 0.9.0a2 Authentication Bypass via Disabled Auth |
19.08.2026 |
9.2 |
| CVE-2026-76244 |
stigmem-node Insecure Federation Transport Configuration |
19.08.2026 |
9.1 |
| CVE-2026-74803 |
Joomla Extension - yootheme.com - Unauthenticated arbitrary file upload in Zoo < 4.1.64 |
19.08.2026 |
10 |
| CVE-2026-74804 |
Joomla Extension - yootheme.com - Unauthenticated SQL injection in Zoo < 4.1.64 |
19.08.2026 |
9.3 |
| CVE-2026-19490 |
NetScaler ADC and NetScaler Gateway Security Bulletin for CVE-2026-19490 |
20.08.2026 |
9.3 |
| CVE-2026-67364 |
Joomla Extension - balbooa.com - Pre-auth PHP Code Injection in Balbooa Forms < 2.4.3.2 |
19.08.2026 |
10 |
| CVE-2026-66613 |
WordPress JetEngine plugin <= 3.8.14 - Remote Code Execution (RCE) vulnerability |
19.08.2026 |
9.8 |
| CVE-2026-73183 |
WordPress Maps Marker Pro plugin <= 4.32 - SQL Injection vulnerability |
19.08.2026 |
9.3 |
| CVE-2026-73185 |
WordPress NGG Smart Image Search plugin < 4.0.0 - SQL Injection vulnerability |
19.08.2026 |
9.3 |
| CVE-2026-73347 |
WordPress TrueBooker plugin <= 1.2.6 - Privilege Escalation vulnerability |
19.08.2026 |
9.8 |
| CVE-2026-73364 |
WordPress Flexible Subscriptions plugin <= 1.8.1 - PHP Object Injection vulnerability |
19.08.2026 |
9.8 |
| CVE-2026-73388 |
WordPress Nikstore Core plugin <= 1.5 - SQL Injection vulnerability |
19.08.2026 |
9.3 |
| CVE-2026-73389 |
WordPress Kalles Addons plugin <= 1.0.6 - PHP Object Injection vulnerability |
19.08.2026 |
9.8 |
| CVE-2026-73390 |
WordPress Total Donations plugin <= 2.0.5 - Privilege Escalation vulnerability |
19.08.2026 |
9.8 |
| CVE-2026-73391 |
WordPress Total Donations plugin <= 2.0.5 - SQL Injection vulnerability |
19.08.2026 |
9.3 |
| CVE-2026-76008 |
Comfast CF-N1-S URI Parameter Parsing mbox-config get_para_from_uri stack-based overflow |
19.08.2026 |
10 |
| CVE-2026-76003 |
UTT HiPER 1200GW formGroupConfig strcpy stack-based overflow |
19.08.2026 |
9.4 |
| CVE-2026-76004 |
UTT HiPER 1250GW HTTP aspApBasicConfigUrcp strcpy stack-based overflow |
19.08.2026 |
9.4 |
| CVE-2026-11751 |
|
20.08.2026 |
9.1 |
| CVE-2026-75976 |
TRENDnet TEW-823DRU NVRAM wan.cgi strcpy stack-based overflow |
18.08.2026 |
9.4 |
| CVE-2026-70905 |
|
18.08.2026 |
9.8 |
| CVE-2026-70920 |
|
18.08.2026 |
9.9 |
| CVE-2026-70921 |
|
18.08.2026 |
10 |
| CVE-2026-70926 |
|
18.08.2026 |
9.8 |
| CVE-2026-70953 |
|
18.08.2026 |
9.8 |
| CVE-2026-70954 |
|
18.08.2026 |
9.8 |
| CVE-2026-70958 |
|
18.08.2026 |
9.6 |
| CVE-2026-70970 |
|
18.08.2026 |
9.8 |
| CVE-2026-70976 |
|
18.08.2026 |
9.1 |
| CVE-2026-70977 |
|
18.08.2026 |
9.1 |
| CVE-2026-70978 |
|
18.08.2026 |
9.1 |
| CVE-2026-70979 |
|
18.08.2026 |
9.1 |
| CVE-2026-70980 |
|
19.08.2026 |
9 |
| CVE-2026-70981 |
|
19.08.2026 |
9.1 |
| CVE-2026-70984 |
|
19.08.2026 |
9.1 |
| CVE-2026-70994 |
|
18.08.2026 |
9.1 |
| CVE-2026-70995 |
|
18.08.2026 |
9.8 |
| CVE-2026-70997 |
|
18.08.2026 |
9.1 |
| CVE-2026-70998 |
|
18.08.2026 |
9.3 |
| CVE-2026-71014 |
|
18.08.2026 |
9.1 |
| CVE-2026-71015 |
|
18.08.2026 |
9.1 |
| CVE-2026-71026 |
|
19.08.2026 |
9.1 |
| CVE-2026-71036 |
|
18.08.2026 |
9.1 |
| CVE-2026-71037 |
|
19.08.2026 |
9.3 |
| CVE-2026-71040 |
|
19.08.2026 |
9.8 |
| CVE-2026-71059 |
|
19.08.2026 |
9.9 |
| CVE-2026-71063 |
|
19.08.2026 |
9.6 |
| CVE-2026-71064 |
|
18.08.2026 |
9.6 |
| CVE-2026-71065 |
|
18.08.2026 |
9.3 |
| CVE-2026-71074 |
|
19.08.2026 |
9.8 |
| CVE-2026-71102 |
|
19.08.2026 |
9.1 |
| CVE-2026-71152 |
|
18.08.2026 |
9.8 |
| CVE-2026-71164 |
|
19.08.2026 |
9.8 |
| CVE-2026-71166 |
|
20.08.2026 |
9.4 |
| CVE-2026-71167 |
|
20.08.2026 |
9.4 |
| CVE-2026-73865 |
|
19.08.2026 |
9.1 |
| CVE-2026-73866 |
|
19.08.2026 |
9.1 |
| CVE-2026-73905 |
|
19.08.2026 |
9.8 |
| CVE-2026-73912 |
|
19.08.2026 |
9.8 |
| CVE-2026-73916 |
|
19.08.2026 |
9.1 |
| CVE-2026-73917 |
|
19.08.2026 |
9.1 |
| CVE-2026-73920 |
|
20.08.2026 |
9.4 |
| CVE-2026-73921 |
|
19.08.2026 |
9.8 |
| CVE-2026-73922 |
|
19.08.2026 |
9.1 |
| CVE-2026-73924 |
|
19.08.2026 |
9.1 |
| CVE-2026-73930 |
|
19.08.2026 |
9.9 |
| CVE-2026-60591 |
|
18.08.2026 |
9.1 |
| CVE-2026-60672 |
|
18.08.2026 |
9.8 |
| CVE-2026-60696 |
|
19.08.2026 |
9.8 |
| CVE-2026-60698 |
|
19.08.2026 |
9.8 |
| CVE-2026-60702 |
|
19.08.2026 |
9.9 |
| CVE-2026-60720 |
|
18.08.2026 |
9.9 |
| CVE-2026-60721 |
|
18.08.2026 |
9.8 |
| CVE-2026-60727 |
|
19.08.2026 |
9.8 |
| CVE-2026-60728 |
|
19.08.2026 |
9.1 |
| CVE-2026-60730 |
|
19.08.2026 |
9.9 |
| CVE-2026-60737 |
|
18.08.2026 |
9.1 |
| CVE-2026-60754 |
|
18.08.2026 |
9.1 |
| CVE-2026-60782 |
|
18.08.2026 |
9.8 |
| CVE-2026-60821 |
|
18.08.2026 |
9.8 |
| CVE-2026-60858 |
|
18.08.2026 |
9.8 |
| CVE-2026-60861 |
|
18.08.2026 |
9.6 |
| CVE-2026-60905 |
|
20.08.2026 |
9.6 |
| CVE-2026-60916 |
|
19.08.2026 |
9.9 |
| CVE-2026-60921 |
|
18.08.2026 |
9.8 |
| CVE-2026-60946 |
|
18.08.2026 |
9.8 |
| CVE-2026-60947 |
|
18.08.2026 |
9.8 |
| CVE-2026-60958 |
|
18.08.2026 |
9.8 |
| CVE-2026-60970 |
|
18.08.2026 |
9.8 |
| CVE-2026-60971 |
|
18.08.2026 |
9.8 |
| CVE-2026-60977 |
|
18.08.2026 |
9.8 |
| CVE-2026-60990 |
|
18.08.2026 |
9.9 |
| CVE-2026-60995 |
|
18.08.2026 |
9.9 |
| CVE-2026-61001 |
|
18.08.2026 |
9.6 |
| CVE-2026-61003 |
|
18.08.2026 |
9.9 |
| CVE-2026-61008 |
|
18.08.2026 |
9.1 |
| CVE-2026-61018 |
|
18.08.2026 |
9.8 |
| CVE-2026-61021 |
|
18.08.2026 |
9.9 |
| CVE-2026-61029 |
|
18.08.2026 |
9 |
| CVE-2026-61034 |
|
18.08.2026 |
9.1 |
| CVE-2026-61066 |
|
18.08.2026 |
9.9 |
| CVE-2026-61206 |
|
18.08.2026 |
9.9 |
| CVE-2026-61241 |
|
18.08.2026 |
10 |
| CVE-2026-61248 |
|
18.08.2026 |
9.9 |
| CVE-2026-61258 |
|
18.08.2026 |
9.8 |
| CVE-2026-61272 |
|
18.08.2026 |
9.8 |
| CVE-2026-61317 |
|
20.08.2026 |
9.9 |
| CVE-2026-61318 |
|
20.08.2026 |
9.8 |
| CVE-2026-62452 |
|
19.08.2026 |
9.9 |
| CVE-2026-62457 |
|
18.08.2026 |
9.8 |
| CVE-2026-62463 |
|
18.08.2026 |
9.6 |
| CVE-2026-62512 |
|
18.08.2026 |
9.9 |
| CVE-2026-62539 |
|
18.08.2026 |
9.8 |
| CVE-2026-62541 |
|
18.08.2026 |
9.8 |
| CVE-2026-62543 |
|
18.08.2026 |
9.8 |
| CVE-2026-62544 |
|
18.08.2026 |
9.8 |
| CVE-2026-62582 |
|
18.08.2026 |
9.6 |
| CVE-2026-62585 |
|
18.08.2026 |
9.8 |
| CVE-2026-62588 |
|
20.08.2026 |
9.9 |
| CVE-2026-62592 |
|
20.08.2026 |
9.8 |
| CVE-2026-62608 |
|
18.08.2026 |
9.9 |
| CVE-2026-62609 |
|
18.08.2026 |
9.8 |
| CVE-2026-62610 |
|
18.08.2026 |
9.1 |
| CVE-2026-62611 |
|
18.08.2026 |
9.8 |
| CVE-2026-62613 |
|
18.08.2026 |
9.3 |
| CVE-2026-62614 |
|
18.08.2026 |
9.8 |
| CVE-2026-62617 |
|
18.08.2026 |
9.8 |
| CVE-2026-62618 |
|
18.08.2026 |
9.3 |
| CVE-2026-62621 |
|
18.08.2026 |
9.8 |
| CVE-2026-62622 |
|
18.08.2026 |
9.8 |
| CVE-2026-62624 |
|
18.08.2026 |
9.8 |
| CVE-2026-62626 |
|
18.08.2026 |
9.8 |
| CVE-2026-62629 |
|
18.08.2026 |
9.4 |
| CVE-2026-62630 |
|
18.08.2026 |
9.8 |
| CVE-2026-62632 |
|
18.08.2026 |
9.8 |
| CVE-2026-62633 |
|
18.08.2026 |
9.8 |
| CVE-2026-62634 |
|
18.08.2026 |
9.8 |
| CVE-2026-62635 |
|
18.08.2026 |
9.8 |
| CVE-2026-62637 |
|
18.08.2026 |
9.3 |
| CVE-2026-62638 |
|
18.08.2026 |
9.1 |
| CVE-2026-62639 |
|
18.08.2026 |
9.8 |
| CVE-2026-62640 |
|
18.08.2026 |
9.8 |
| CVE-2026-70668 |
|
18.08.2026 |
9.1 |
| CVE-2026-70669 |
|
18.08.2026 |
9.8 |
| CVE-2026-70670 |
|
18.08.2026 |
9.6 |
| CVE-2026-70673 |
|
18.08.2026 |
9.3 |
| CVE-2026-70689 |
|
18.08.2026 |
9.8 |
| CVE-2026-70730 |
|
18.08.2026 |
9.1 |
| CVE-2026-70739 |
|
18.08.2026 |
9.8 |
| CVE-2026-70740 |
|
18.08.2026 |
9.8 |
| CVE-2026-70741 |
|
18.08.2026 |
9.1 |
| CVE-2026-70745 |
|
18.08.2026 |
9.8 |
| CVE-2026-70817 |
|
18.08.2026 |
9.8 |
| CVE-2026-70846 |
|
18.08.2026 |
9.6 |
| CVE-2026-70854 |
|
18.08.2026 |
9.1 |
| CVE-2026-70855 |
|
18.08.2026 |
9.3 |
| CVE-2026-70862 |
|
18.08.2026 |
9.1 |
| CVE-2026-70871 |
|
18.08.2026 |
9.8 |
| CVE-2026-70872 |
|
18.08.2026 |
9.1 |
| CVE-2026-70873 |
|
18.08.2026 |
9.8 |
| CVE-2026-70876 |
|
18.08.2026 |
9.1 |
| CVE-2026-70880 |
|
18.08.2026 |
10 |
| CVE-2026-70883 |
|
18.08.2026 |
9.1 |
| CVE-2026-70884 |
|
18.08.2026 |
9.1 |
| CVE-2026-62988 |
Froxlor: Credential and 2FA secret disclosure via Froxlor API endpoints |
18.08.2026 |
9 |
| CVE-2026-67443 |
FUXA: Unauthenticated guest JWT bypasses Node-RED secure-mode authorization gate (Remote Script Execution) |
18.08.2026 |
9.2 |
| CVE-2026-75877 |
TRENDnet TV-IP751WIC alphapd FUN_0043372C stack-based overflow |
19.08.2026 |
9.4 |
| CVE-2026-52735 |
ZEBRA: Consensus divergence via P2SH sigop undercount in pure-Rust disabled-opcode parser |
18.08.2026 |
9.3 |
| CVE-2026-55166 |
Lemur: any SSO-authenticated user achieves AWS IAM compromise and permanent PKI key access via ACME acme_url SSRF and creator-equality IDOR |
18.08.2026 |
9.9 |
| CVE-2026-47627 |
|
20.08.2026 |
9.8 |
| CVE-2026-50161 |
libre: Integer overflow in websock_decode() masked frame length check leads to heap buffer overflow |
19.08.2026 |
9.3 |
| CVE-2026-75625 |
Kraken Agents Peer-to-Peer Download Cache Poisoning via Digest Verification Bypass |
18.08.2026 |
9.1 |
| CVE-2026-71878 |
Authentication bypass in Integrated Publishing Toolkit |
18.08.2026 |
9.2 |
| CVE-2026-71879 |
Authentication bypass in Integrated Publishing Toolkit |
18.08.2026 |
9.1 |
| CVE-2026-66780 |
Submariner-operator: submariner-operator: flat broker trust model grants every spoke full crud on all endpoints, secrets, and endpointslices in broker namespace |
18.08.2026 |
9.9 |
| CVE-2026-18963 |
Keycloak-services: keycloak-services: unauthenticated account takeover via reset-credentials flow bypass |
20.08.2026 |
9.1 |
| CVE-2026-57580 |
authentik: Account Takeover via SAML NameID Comment Truncation |
18.08.2026 |
9.4 |
| CVE-2026-52723 |
ePA 3.x Integration: VAU Server Authentication Bypass via Circular Certificate Trust |
18.08.2026 |
9.1 |
| CVE-2026-67271 |
|
19.08.2026 |
9.8 |
| CVE-2026-45118 |
MyBB: Contact page reflected XSS |
18.08.2026 |
9.3 |
| CVE-2026-12564 |
Automation-controller: automation-controller: kubernetes service account token exfiltration via hashicorp vault credential ssrf |
18.08.2026 |
9.6 |
| CVE-2026-45117 |
MyBB: Installer database configuration RCE |
18.08.2026 |
9.8 |
| CVE-2026-75926 |
Hugo 0.162.0 to 0.164.x - Node Permission Model Bypass via Default TailwindCSS Child-Process Grant |
20.08.2026 |
9.3 |
| CVE-2026-75856 |
CodeWhale before 0.8.64 SSRF Bypass via DNS Pinning TOCTOU |
18.08.2026 |
9.2 |
| CVE-2026-59940 |
Seroval: `seroval.fromJSON()` Promise resolver type confusion invokes attacker-controlled methods during deserialization |
18.08.2026 |
9.8 |
| CVE-2026-32470 |
WordPress FundEngine plugin <= 1.7.9 - PHP Object Injection vulnerability |
18.08.2026 |
9.8 |
| CVE-2026-32474 |
WordPress Templatiq plugin <= 0.2.5 - Arbitrary File Upload vulnerability |
18.08.2026 |
9.9 |
| CVE-2026-66627 |
WordPress GP Premium plugin <= 2.5.5 - Arbitrary File Upload vulnerability |
18.08.2026 |
9.9 |
| CVE-2026-73187 |
WordPress Sticky Chat Widget plugin <= 1.4.2 - SQL Injection vulnerability |
18.08.2026 |
9.3 |
| CVE-2026-73339 |
WordPress Modern Events Calendar plugin < 7.35.0 - SQL Injection vulnerability |
18.08.2026 |
9.3 |
| CVE-2026-73341 |
WordPress RegistrationMagic plugin <= 6.0.9.7 - PHP Object Injection vulnerability |
18.08.2026 |
9.8 |
| CVE-2026-73343 |
WordPress WP Compress plugin < 7.20.01 - Remote Code Execution (RCE) vulnerability |
18.08.2026 |
10 |
| CVE-2026-73355 |
WordPress Affiliates Manager plugin <= 2.9.53 - SQL Injection vulnerability |
18.08.2026 |
9.3 |
| CVE-2026-73365 |
WordPress JetAppointment plugin <= 2.5.2 - SQL Injection vulnerability |
18.08.2026 |
9.3 |
| CVE-2026-73366 |
WordPress Easy Google Maps plugin <= 1.13.0 - PHP Object Injection vulnerability |
18.08.2026 |
9.8 |
| CVE-2026-73376 |
WordPress Ultimate Maps by Supsystic plugin < 1.5.0 - PHP Object Injection vulnerability |
18.08.2026 |
9.8 |
| CVE-2026-73380 |
WordPress Popup by Supsystic plugin <= 1.13.0 - PHP Object Injection vulnerability |
18.08.2026 |
9.8 |
| CVE-2026-73381 |
WordPress Popup by Supsystic plugin <= 1.13.0 - Broken Authentication vulnerability |
18.08.2026 |
9.1 |
| CVE-2026-73392 |
WordPress Super Store Finder plugin <= 7.8 - SQL Injection vulnerability |
18.08.2026 |
9.3 |
| CVE-2026-73397 |
WordPress Youzify plugin <= 1.3.7 - Deserialization of untrusted data vulnerability |
18.08.2026 |
9.8 |
| CVE-2026-73996 |
WordPress Masteriyo - LMS plugin <= 2.3.2 - Arbitrary File Upload vulnerability |
18.08.2026 |
9.8 |
| CVE-2026-74015 |
WordPress Readabler plugin < 2.0.18 - SQL Injection vulnerability |
18.08.2026 |
9.3 |
| CVE-2026-75784 |
TRENDnet TEW-WLC100 HTTP Header nginx FUN_0040da4c stack-based overflow |
18.08.2026 |
10 |
| CVE-2026-28192 |
WordPress Piotnet Addons For Elementor Pro plugin <= 7.1.67 - Arbitrary File Upload vulnerability |
18.08.2026 |
9.6 |
| CVE-2026-32444 |
WordPress Cwicly plugin <= 1.4.4 - Remote Code Execution (RCE) vulnerability |
18.08.2026 |
9.9 |
| CVE-2026-32463 |
WordPress Sync Post With Other Site plugin <= 1.9.3 - Arbitrary File Upload vulnerability |
18.08.2026 |
9.9 |
| CVE-2026-75783 |
TRENDnet TEW-WLC100P DHCP blobmsg netifd stack-based overflow |
18.08.2026 |
9.4 |
| CVE-2026-74902 |
SiYuan before v3.7.4 XSS-to-RCE via malicious filename upload |
18.08.2026 |
9.3 |
| CVE-2026-75827 |
Grav before 2.0.15 Arbitrary File Write via error_log |
19.08.2026 |
9.3 |
| CVE-2026-75828 |
Grav before 2.0.15 Stored XSS via detectXss() Quote Bypass |
18.08.2026 |
9.3 |
| CVE-2026-75832 |
Grav API Plugin before 1.0.14 Authorization Bypass |
19.08.2026 |
9.3 |
| CVE-2026-75835 |
Grav API Plugin before 1.0.14 Missing Authorization |
18.08.2026 |
9.3 |
| CVE-2026-75837 |
Grav before 2.0.14 Privilege Escalation via Group Access Field |
19.08.2026 |
9.3 |
| CVE-2026-75843 |
ArcadeDB before 26.8.1 Privilege Escalation via gRPC Transaction |
18.08.2026 |
9.4 |
| CVE-2026-75851 |
ArcadeDB before 26.8.1 Authentication Bypass via Async Command |
18.08.2026 |
9.4 |
| CVE-2026-75852 |
ArcadeDB MongoDB wire protocol authentication bypass cross-database |
18.08.2026 |
9.3 |
| CVE-2026-75854 |
ArcadeDB Redis Wire-Protocol Plugin Missing Authentication |
18.08.2026 |
9.3 |
| CVE-2026-75626 |
SpiderFoot Stored Cross-Site Scripting via Correlation Titles |
19.08.2026 |
9.3 |
| CVE-2026-75627 |
Bastillion Authentication Bypass via Path-Prefix Routing Mismatch |
18.08.2026 |
9.3 |
| CVE-2026-15748 |
Forminator Forms <= 1.56.1 - Unauthenticated Arbitrary File Upload via Forged Upload Field Configuration |
18.08.2026 |
9.8 |
| CVE-2026-75094 |
COMFAST CF-N1-S CGI mbox-config sub_44B438 os command injection |
18.08.2026 |
9.4 |
| CVE-2026-71424 |
Onyx: Cross-user OAuth-token leak via /api/mcp/servers* for per-user MCP servers |
18.08.2026 |
9.6 |
| CVE-2026-64849 |
MLflow: Unauthenticated full-read SSRF in webhook delivery: _validate_webhook_url bypassed via unvalidated HTTP redirects (and DNS rebinding) |
20.08.2026 |
9.3 |
| CVE-2026-47686 |
vm2: Missing Error.cause Sanitization Enables VM2 Sandbox Escape to RCE |
19.08.2026 |
9.9 |
| CVE-2026-47698 |
vm2: Sandbox Breakout Using Dangerous Host Proto Mutators |
19.08.2026 |
9.8 |
| CVE-2026-65974 |
ERPNext: Server-Side Template Injection leading to Remote Code Execution |
18.08.2026 |
9.9 |
| CVE-2026-66795 |
Managedcluster-import-controller: managedcluster-import-controller: csr auto-approver does not validate certificate subject, signername, or requester identity |
18.08.2026 |
9.1 |
| CVE-2026-75106 |
OpnForm Editable Submission Secret Derivation via Empty Hashids Salt |
18.08.2026 |
9.3 |
| CVE-2026-75110 |
MemOS Authentication Bypass via Unset INTERNAL_SERVICE_SECRET |
18.08.2026 |
9.3 |
| CVE-2026-19478 |
Improper Control of Generation of Code ('Code Injection') in GitLab |
17.08.2026 |
9.4 |
| CVE-2026-71472 |
Acm-search-v2-rhel9: search-v2-operator: shell-command and sql injection in postgresql-start.sh via cr-supplied work_mem |
20.08.2026 |
9.1 |
| CVE-2026-66792 |
Multicloud-operators-subscription: multicloud-operators-subscription: isclusteradmin() trusts user-settable annotations on managed clusters |
19.08.2026 |
9.9 |
| CVE-2026-74253 |
Joomla Extension - regularlabs.com - Unauthenticated RCE through unverified reflected user input in Sourcerer < 14.0.0 |
17.08.2026 |
10 |
| CVE-2026-74254 |
Joomla Extension - joomlack.fr - SQL injection in Page Builder CK < 3.6.5 |
18.08.2026 |
9.3 |
| CVE-2026-71479 |
New API: Integer overflow in quota billing yields negative charges (self-crediting) |
17.08.2026 |
9.1 |
| CVE-2026-75045 |
|
18.08.2026 |
9.1 |
| CVE-2026-64859 |
New API: User List API Leaks Root User Access Token Leading to Privilege Escalation |
17.08.2026 |
9.1 |
| CVE-2026-55674 |
Discourse: Cache poisoning/XSS via color scheme cookies |
18.08.2026 |
9.3 |
| CVE-2026-71566 |
KubeVirt backend is not authenticated |
17.08.2026 |
9.3 |
| CVE-2026-14564 |
Sensitive Data Exposure in Innotim Software's Logsign SIEM |
17.08.2026 |
9 |
| CVE-2026-74843 |
Wavlink WN531P3/WN535M1 Export Pingortrace CGI export_pingortrace.cgi strcpy stack-based overflow |
17.08.2026 |
10 |
| CVE-2026-74798 |
SiYuan kernel Path Traversal via database_clean MCP tool |
18.08.2026 |
9.3 |
| CVE-2026-74799 |
SiYuan before 3.7.4 Unauthenticated Debug Endpoint Information Disclosure |
17.08.2026 |
9.2 |
| CVE-2026-74800 |
SiYuan before v3.7.4 Stored XSS via assets endpoint |
17.08.2026 |
9.4 |
| CVE-2026-74872 |
openssl_encrypt before 1.4.0 Arbitrary Code Execution via Whirlpool |
18.08.2026 |
9.3 |
| CVE-2026-74875 |
openssl_encrypt before 1.4.0 Schema Validation Bypass |
17.08.2026 |
9.3 |
| CVE-2026-74876 |
openssl_encrypt before 1.4.0 Unverified Key Bundle Encryption |
17.08.2026 |
9.3 |
| CVE-2026-74878 |
openssl_encrypt before 1.4.0 TOTP Rate Limiter Bypass |
17.08.2026 |
9.3 |
| CVE-2026-74880 |
openssl_encrypt before 1.4.0 Token Leakage via Query Parameters |
17.08.2026 |
9.3 |
| CVE-2026-74885 |
openssl_encrypt before 1.4.0 Logging Bug and Race Condition |
17.08.2026 |
9.3 |
| CVE-2026-74886 |
openssl_encrypt before 1.4.0 Plugin Import Guard Bypass |
17.08.2026 |
9.3 |
| CVE-2026-74887 |
openssl_encrypt before 1.4.0 Insecure Random Import in PQC Module |
18.08.2026 |
9.3 |
| CVE-2026-74889 |
openssl_encrypt before 1.4.0 Weak Key Derivation via HKDF |
17.08.2026 |
9.3 |
| CVE-2026-74890 |
openssl_encrypt before 1.4.0 HMAC Authentication Bypass via Environment Variable |
17.08.2026 |
9.3 |
| CVE-2026-74894 |
openssl_encrypt before 1.4.0 Authentication Bypass via Bearer Token |
17.08.2026 |
9.3 |
| CVE-2026-74895 |
openssl_encrypt before 1.4.0 Plugin Sandbox Bypass via Process Isolation |
17.08.2026 |
9.3 |
| CVE-2026-74896 |
openssl_encrypt before 1.4.0 Sandbox Escape via Dunder Attribute Traversal |
17.08.2026 |
9.3 |
| CVE-2026-74899 |
openssl_encrypt before 1.4.0 Sandbox Escape via Type Hierarchy |
18.08.2026 |
9.3 |
| CVE-2026-74900 |
openssl_encrypt before 1.4.0 Weak Shared Secret via PQC Simulation Mode |
17.08.2026 |
9.3 |
| CVE-2026-74901 |
openssl_encrypt before 1.4.0 Authentication Bypass via AES-CTR Fallback |
17.08.2026 |
9.3 |
| CVE-2026-15623 |
Authenticated Blind SQL Injection in Google Cloud SecOps SOAR Dashboard Widget Query Service |
17.08.2026 |
9.4 |
| CVE-2026-19977 |
EFM ipTIME A3004T Session Validation httpcon_check_session_url improper authentication |
18.08.2026 |
10 |
| CVE-2026-19961 |
Edimax EW-7478APC formWlSiteSurvey buffer overflow |
17.08.2026 |
9.4 |
| CVE-2026-19959 |
Edimax EW-7478APC formWanTcpipSetup stack-based overflow |
18.08.2026 |
9.4 |
| CVE-2026-73056 |
SiYuan kernel before 3.7.4 Unthrottled Brute-Force via API Token |
17.08.2026 |
9.3 |
| CVE-2026-73061 |
Scriban before 7.2.2 Arbitrary Property Write via TypedObjectAccessor |
17.08.2026 |
9.3 |
| CVE-2026-74790 |
Scriban before 7.0.0 MemberFilter Bypass via TemplateContext Cache |
17.08.2026 |
9.3 |
| CVE-2026-74791 |
Scriban before 7.0.0 Authorization Bypass via Stale Include Cache |
17.08.2026 |
9.2 |
| CVE-2026-74251 |
Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filter in Phoca Cart 5.0.0-6.1.6 |
18.08.2026 |
9.3 |
| CVE-2024-13784 |
Contact Form, Survey, Quiz & Popup Form Builder – ARForms <= 1.8.5 - Unauthenticated PHP Object Injection |
17.08.2026 |
9.8 |
| CVE-2026-18316 |
Solace Extra <= 1.6.0 - Missing Authorization to Unauthenticated Site Content Deletion and Unauthorized Demo Import via action-import-zip AJAX Action |
17.08.2026 |
9.1 |
| CVE-2026-14524 |
ProSolution WP Client <= 2.0.8 - Unauthenticated Arbitrary File Deletion via 'newfilename' and 'filename' Parameters |
17.08.2026 |
9.1 |
| CVE-2026-16098 |
ProSolution WP Client <= 2.0.10 - Unauthenticated Arbitrary File Upload via Content-Disposition Header Filename Override |
18.08.2026 |
9.8 |
| CVE-2026-18432 |
Frontend Admin by DynamiApps <= 3.29.9 - Unauthenticated Privilege Escalation via 'item_id' Parameter |
18.08.2026 |
9.8 |
| CVE-2026-19924 |
Tenda AC10 httpd R7WebsSecurityHandler improper authentication |
19.08.2026 |
9.3 |
| CVE-2026-73041 |
SiYuan before v3.7.4 Remote Code Execution via PDF Annotations |
17.08.2026 |
9.4 |
| CVE-2026-73042 |
SiYuan before v3.7.4 Remote Code Execution via Menu Metadata |
17.08.2026 |
9.4 |
| CVE-2026-73043 |
SiYuan before v3.7.4 Remote Code Execution via Template Calculation |
17.08.2026 |
9.4 |
| CVE-2026-73044 |
SiYuan before v3.7.4 Stored Cross-Site Scripting via Column Width |
17.08.2026 |
9.4 |
| CVE-2026-73046 |
SiYuan before v3.7.4 Authentication Bypass via HTTP Basic Auth |
17.08.2026 |
9.3 |
| CVE-2026-73050 |
SiYuan before v3.7.4 Stored XSS via select option color |
17.08.2026 |
9.4 |
| CVE-2026-73052 |
SiYuan before v3.7.4 Stored XSS via Attribute-View Field Names |
17.08.2026 |
9.4 |
| CVE-2026-73053 |
SiYuan before v3.7.4 Cross-Site Scripting via unicode2Emoji |
18.08.2026 |
9.4 |
| CVE-2026-73055 |
Shescape before 2.1.15 Home Directory Disclosure via BusyBox |
17.08.2026 |
9.3 |
| CVE-2026-74764 |
Path Traversal in TAR Archive Extraction Allows Arbitrary File Write in Pandora |
17.08.2026 |
10 |
| CVE-2026-18855 |
Link Library <= 7.9.4 - Unauthenticated Arbitrary File Deletion via link_url Parameter |
17.08.2026 |
9.1 |
| CVE-2026-19598 |
Pods <= 3.3.9 - Unauthenticated Privilege Escalation via Authorization Bypass to Admin Methods via 'pods_admin' AJAX Router |
17.08.2026 |
9.8 |
| CVE-2026-19901 |
LB-LINK X-PRO easycwmp hard-coded credentials |
18.08.2026 |
9.2 |
| CVE-2026-19900 |
LB-LINK X-PRO shadow hard-coded credentials |
17.08.2026 |
9.2 |
| CVE-2026-74473 |
vxlan: use pskb_network_may_pull() in route_shortcircuit() |
19.08.2026 |
9.8 |
| CVE-2026-74474 |
vxlan: use pskb_network_may_pull() for transmit path header pulls |
17.08.2026 |
9.8 |
| CVE-2026-74475 |
vxlan: use neigh_ha_snapshot() in route_shortcircuit() |
19.08.2026 |
10 |
| CVE-2026-74476 |
veth: convert frag_list skbs before running XDP |
17.08.2026 |
9.1 |
| CVE-2026-74478 |
um: vector: fix use-after-free in vector_mmsg_rx() |
19.08.2026 |
9.8 |
| CVE-2026-74480 |
net: bridge: stop fast-leave after deleting a port group |
19.08.2026 |
9.8 |
| CVE-2026-74493 |
net/smc: fix socket use-after-free during link group termination |
19.08.2026 |
9.8 |
| CVE-2026-74495 |
igbvf: Fix leak in TX DMA error cleanup |
19.08.2026 |
9.8 |
| CVE-2026-74517 |
KVM: x86: Cancel delayed I/O APIC EOI handling before destroying vCPUs |
17.08.2026 |
9.3 |
| CVE-2026-74521 |
ksmbd: use memcmp() to compare ClientGUIDs |
17.08.2026 |
9.1 |
| CVE-2026-74545 |
rtase: fix double free of multi-frag skb on DMA map failure |
17.08.2026 |
9.8 |
| CVE-2026-74556 |
scsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer |
19.08.2026 |
9.8 |
| CVE-2026-74568 |
KVM: arm64: vgic: Fix race between LPI release and re-registration |
17.08.2026 |
9.3 |
| CVE-2026-74569 |
netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp() |
19.08.2026 |
9.8 |
| CVE-2026-74570 |
ntfs: harden runlist realloc size calculations |
17.08.2026 |
9.8 |
| CVE-2026-74573 |
iommu/arm-smmu-v3-iommufd: Require exactly one Stream ID for a vDEVICE |
17.08.2026 |
9.3 |
| CVE-2026-16142 |
TrueBooker <= 1.2.6 - Unauthenticated Account Takeover via Insecure Direct Object Reference in 'truebooker_wp_user_id' Parameter |
17.08.2026 |
9.8 |
| CVE-2026-15826 |
User Profile Builder <= 3.16.4 - Unauthenticated Authentication Bypass via Type Confusion to Administrator Account Takeover via 'username' Parameter |
17.08.2026 |
9.8 |
| CVE-2026-72496 |
RDMA/bnxt_re: Proper rollback if the ioremap fails |
17.08.2026 |
9.2 |
| CVE-2026-74255 |
tipc: fix UAF in tipc_l2_send_msg() |
17.08.2026 |
9.8 |
| CVE-2026-74267 |
net/sched: sch_codel: Do not call qdisc_tree_reduce_backlog during peek before restoring qlen |
17.08.2026 |
9.8 |
| CVE-2026-74268 |
tcp: clear sock_ops cb flags before force-closing a child socket |
17.08.2026 |
9.8 |
| CVE-2026-74269 |
bnxt: fix head underflow on XDP head-grow |
17.08.2026 |
9.8 |
| CVE-2026-74279 |
crypto: cavium/cpt - fix DMA cleanup using wrong loop index |
17.08.2026 |
10 |
| CVE-2026-74280 |
crypto: marvell/octeontx - fix DMA cleanup using wrong loop index |
17.08.2026 |
10 |
| CVE-2026-74287 |
sctp: validate embedded address parameter length |
17.08.2026 |
9.1 |
| CVE-2026-74309 |
vdpa/octeon_ep: fix IRQ-to-ring mapping in interrupt handler |
17.08.2026 |
10 |
| CVE-2026-74310 |
vhost/net: complete zerocopy ubufs only once |
17.08.2026 |
9.3 |
| CVE-2026-74315 |
lockd: Avoid hashing uninitialized bytes in nlm4svc_lookup_file() |
17.08.2026 |
9.8 |
| CVE-2026-74345 |
RDMA/siw: Fix endpoint/socket association handling |
17.08.2026 |
9.8 |
| CVE-2026-74350 |
ocfs2: validate fast symlink target during inode read |
17.08.2026 |
9.8 |
| CVE-2026-74361 |
nvme: fix FDP fdpcidx bounds check |
17.08.2026 |
9.8 |
| CVE-2026-74376 |
md/raid10: reset read_slot when reusing r10bio for discard |
17.08.2026 |
9.8 |
| CVE-2026-74384 |
nvme-multipath: fix flex array size in struct nvme_ns_head |
17.08.2026 |
9.8 |
| CVE-2026-74394 |
RDMA/srpt: fix integer overflow in immediate data length check |
17.08.2026 |
9.8 |
| CVE-2026-74398 |
ipv6: addrconf: bail out of dad_failure when state is no longer POSTDAD |
17.08.2026 |
9.8 |
| CVE-2026-74401 |
dlm: fix add msg handle in send_queue ordered |
17.08.2026 |
9.8 |
| CVE-2026-74406 |
vxlan: Fix potential null-ptr-deref in vxlan_gro_prepare_receive(). |
17.08.2026 |
9.8 |
| CVE-2026-74427 |
afs: Fix netns teardown to cancel the preallocation charger |
17.08.2026 |
9.8 |
| CVE-2026-74428 |
rxrpc: Fix double unlock in rxrpc_recvmsg() |
17.08.2026 |
9.8 |
| CVE-2026-74433 |
rxrpc: Fix UAF in rxgk_issue_challenge() |
17.08.2026 |
9.8 |
| CVE-2026-74434 |
rxrpc: Don't move a peeked OOB message onto the pending queue |
17.08.2026 |
9.8 |
| CVE-2026-74436 |
rxrpc: serialize kernel accept preallocation with socket teardown |
17.08.2026 |
9.8 |
| CVE-2026-74439 |
iommu/vt-d: Clear Present bit before tearing down scalable-mode context entry |
17.08.2026 |
9.3 |
| CVE-2026-68457 |
ksmbd: use opener credentials for FSCTL mutations |
18.08.2026 |
9.1 |
| CVE-2026-68476 |
ipvs: reload ip header after head reallocation |
17.08.2026 |
9.8 |
| CVE-2026-68477 |
ipvs: fix more places with wrong ipv6 transport offsets |
17.08.2026 |
9.8 |
| CVE-2026-72014 |
drbd: reject data replies with an out-of-range payload size |
17.08.2026 |
9.8 |
| CVE-2026-72020 |
ipvs: reset full ip_vs_seq structs in ip_vs_conn_new |
17.08.2026 |
9.8 |
| CVE-2026-72033 |
orangefs: keep the readdir entry size 64-bit in fill_from_part() |
17.08.2026 |
9.8 |
| CVE-2026-72041 |
espintcp: use sk_msg_free_partial to fix partial send |
17.08.2026 |
9.8 |
| CVE-2026-72046 |
gve: fix header buffer corruption with header-split and HW-GRO |
17.08.2026 |
9.8 |
| CVE-2026-72064 |
net: mana: Sync page pool RX frags for CPU |
17.08.2026 |
9.8 |
| CVE-2026-72065 |
net: mana: Validate the packet length reported by the NIC |
17.08.2026 |
9.8 |
| CVE-2026-72069 |
locking/rt: Fix the incorrect RCU protection in rt_spin_unlock() |
17.08.2026 |
9.8 |
| CVE-2026-72083 |
scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE |
17.08.2026 |
9.8 |
| CVE-2026-72084 |
scsi: target: Bound PR-OUT TransportID parsing to the received buffer |
17.08.2026 |
9.8 |
| CVE-2026-72085 |
scsi: xen: scsiback: Free unsubmitted command instead of double-putting it |
17.08.2026 |
9.3 |
| CVE-2026-72098 |
dm-verity: fix buffer overflow in FEC calculation |
17.08.2026 |
9.8 |
| CVE-2026-72129 |
nvmet-rdma: handle inline data with a nonzero offset |
17.08.2026 |
9.8 |
| CVE-2026-72130 |
nvmet-auth: reject short AUTH_RECEIVE buffers |
17.08.2026 |
9.8 |
| CVE-2026-72137 |
xfrm: nat_keepalive: avoid double free on send error |
17.08.2026 |
9.8 |
| CVE-2026-72139 |
tcp: defer md5sig_info kfree past RCU grace period in tcp_connect |
17.08.2026 |
9.8 |
| CVE-2026-72185 |
ntfs: fix WARN_ON for resident attribute in ntfs_map_runlist_nolock() |
17.08.2026 |
9.8 |
| CVE-2026-72186 |
ntfs: make system files immutable to prevent corruption |
17.08.2026 |
9.1 |
| CVE-2026-72188 |
ntfs: sanitize MFT references returned from ntfs_lookup_inode_by_name() |
17.08.2026 |
9.1 |
| CVE-2026-72191 |
ntfs3: validate split-point offset in indx_insert_into_buffer |
17.08.2026 |
9.8 |
| CVE-2026-72192 |
ntfs3: bound to_move in indx_insert_into_root before hdr_insert_head |
17.08.2026 |
9.8 |
| CVE-2026-72194 |
fs/ntfs3: add depth limit to indx_find_buffer to prevent stack overflow |
17.08.2026 |
9.8 |
| CVE-2026-72199 |
ntfs: validate resident index root values on lookup |
18.08.2026 |
9.8 |
| CVE-2026-72200 |
ntfs: detect mapping-pairs LCN accumulator overflow |
19.08.2026 |
9.8 |
| CVE-2026-72201 |
ntfs: validate index entries on reading |
18.08.2026 |
9.8 |
| CVE-2026-72206 |
ntfs: validate index block header more strictly |
18.08.2026 |
9.8 |
| CVE-2026-72207 |
ntfs: not change 0-byte $DATA attribute to non-resident |
18.08.2026 |
9.8 |
| CVE-2026-72208 |
ntfs: add bounds check before accessing EA entries |
18.08.2026 |
9.8 |
| CVE-2026-72209 |
ntfs: validate attribute values on lookup |
17.08.2026 |
9.8 |
| CVE-2026-72210 |
ntfs: fix off-by-one in mapping pairs decoding bounds checks |
19.08.2026 |
9.8 |
| CVE-2026-72211 |
ntfs: grow index root value before reparent header update |
18.08.2026 |
9.8 |
| CVE-2026-72217 |
SUNRPC: Bound-check xdr_buf_to_bvec() stores before writing |
17.08.2026 |
9.8 |
| CVE-2026-72220 |
sunrpc: harden rq_procinfo lifecycle to prevent double-free |
17.08.2026 |
9.8 |
| CVE-2026-72221 |
sunrpc: wait for in-flight TLS handshake callback when cancel loses race |
17.08.2026 |
9.8 |
| CVE-2026-72222 |
sunrpc: pin svc_xprt across the asynchronous TLS handshake callback |
17.08.2026 |
9.8 |
| CVE-2026-72226 |
batman-adv: tt: prevent TVLV OOB check overflow |
17.08.2026 |
9.8 |
| CVE-2026-72234 |
batman-adv: access unicast_ttvn skb->data only after skb realloc |
17.08.2026 |
9.8 |
| CVE-2026-72239 |
x86/virt/sev: Revert "Drop WBINVD before setting MSR_AMD64_SYSCFG_SNP_EN" |
17.08.2026 |
9.3 |
| CVE-2026-72248 |
netfilter: flowtable: support IPIP tunnel with direct xmit |
17.08.2026 |
9.8 |
| CVE-2026-72249 |
netfilter: flowtable: use dst in this direction when pushing IPIP header |
17.08.2026 |
9.8 |
| CVE-2026-72251 |
netfilter: nf_nat_sip: reload possible stale data pointer |
17.08.2026 |
9.8 |
| CVE-2026-72277 |
KVM: arm64: nv: Inject SEA if guest VNCR isn't normal memory |
17.08.2026 |
9.3 |
| CVE-2026-72278 |
KVM: arm64: nv: Re-translate VNCR before injecting abort |
17.08.2026 |
9.3 |
| CVE-2026-72279 |
KVM: arm64: nv: Respect read-only PFN when mapping L1 VNCR |
17.08.2026 |
9 |
| CVE-2026-72288 |
KVM: arm64: vgic: Handle race between interrupt affinity change and LPI disabling |
17.08.2026 |
9.3 |
| CVE-2026-72289 |
KVM: arm64: vgic: Check the interrupt is still ours before migrating it |
17.08.2026 |
9.3 |
| CVE-2026-72291 |
KVM: s390: Fix unlikely race in try_get_locked_pte() |
17.08.2026 |
9.3 |
| CVE-2026-72296 |
net: ife: require ETH_HLEN to be pullable in ife_decode() |
17.08.2026 |
9.1 |
| CVE-2026-72299 |
tipc: restrict socket queue dumps in enqueue tracepoints |
17.08.2026 |
9.8 |
| CVE-2026-72317 |
SUNRPC: pin upper rpc_clnt across the TLS connect_worker |
17.08.2026 |
9.8 |
| CVE-2026-72318 |
cifs: validate DFS referral string offsets |
17.08.2026 |
9.4 |
| CVE-2026-72319 |
ipvs: ensure inner headers in ICMP errors are in headroom |
17.08.2026 |
9.8 |
| CVE-2026-72320 |
netfilter: nft_lookup: fix catchall element handling with inverted lookups |
17.08.2026 |
9.1 |
| CVE-2026-72322 |
ipv6: mcast: Fix potential UAF in MLD delayed work |
17.08.2026 |
9.8 |
| CVE-2026-72323 |
ipv4: igmp: Fix potential UAF in igmp_gq_start_timer() |
17.08.2026 |
9.8 |
| CVE-2026-72329 |
net/liquidio: drop cached VF pci_dev LUT |
17.08.2026 |
9.3 |
| CVE-2026-72339 |
qede: fix off-by-one in BD ring consumption on build_skb failure |
17.08.2026 |
9.8 |
| CVE-2026-72348 |
netfilter: ip6tables: mark malformed IPv6 extension headers for hotdrop |
17.08.2026 |
9.1 |
| CVE-2026-72351 |
gue: validate REMCSUM private option length |
17.08.2026 |
9.8 |
| CVE-2026-72355 |
netfs: Fix barriering when walking subrequest list |
17.08.2026 |
9.8 |
| CVE-2026-72366 |
netfs: Fix netfs_create_write_req() to handle async cache object creation |
17.08.2026 |
9.8 |
| CVE-2026-72381 |
ksmbd: fix use-after-free of fp->owner.name in durable handle owner check |
17.08.2026 |
9.8 |
| CVE-2026-72393 |
eth: fbnic: don't cache shinfo across skb realloc |
17.08.2026 |
9.8 |
| CVE-2026-72398 |
sctp: add INIT verification after cookie unpacking |
17.08.2026 |
9.8 |
| CVE-2026-72399 |
net: enetc: check the number of BDs needed for xdp_frame |
17.08.2026 |
9.8 |
| CVE-2026-72407 |
geneve: validate inner network offset in geneve_gro_complete() |
17.08.2026 |
10 |
| CVE-2026-72408 |
geneve: gate GRO hint in geneve_gro_complete() on gs->gro_hint |
17.08.2026 |
10 |
| CVE-2026-72412 |
s390/mm: Fix handling of _PAGE_UNUSED pte bit |
17.08.2026 |
9.3 |
| CVE-2026-72417 |
netfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto() |
17.08.2026 |
9.8 |
| CVE-2026-72421 |
ipv4: fib: Don't ignore error route in local/main tables. |
17.08.2026 |
10 |
| CVE-2026-72422 |
ksmbd: fix use-after-free of conn->preauth_info in concurrent SMB2 NEGOTIATE |
17.08.2026 |
9.8 |
| CVE-2026-72429 |
ipv6: ioam: fix type confusion of dst_entry |
17.08.2026 |
9.8 |
| CVE-2026-72436 |
netfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types |
17.08.2026 |
9.8 |
| CVE-2026-72442 |
netfilter: flowtable: fix and simplify IP6IP6 tunnel handling |
17.08.2026 |
9.8 |
| CVE-2026-72451 |
xfrm: Fix xfrm state cache insertion race |
17.08.2026 |
9.8 |
| CVE-2026-72463 |
xfrm: Fix dev use-after-free in xfrm async resumption |
17.08.2026 |
9.8 |
| CVE-2026-72466 |
xprtrdma: Fix bcall rep leak and unbounded peek |
17.08.2026 |
9.8 |
| CVE-2026-72472 |
nfs: use nfsi->rwsem to protect traversal of the file lock list |
17.08.2026 |
9.8 |
| CVE-2026-72473 |
xprtrdma: Decouple req recycling from RPC completion |
17.08.2026 |
9.8 |
| CVE-2026-72477 |
fs/ntfs3: call _ntfs_bad_inode() when failing to rename |
17.08.2026 |
9.8 |
| CVE-2026-72491 |
net/9p: fix race condition on rdma->state in trans_rdma.c |
17.08.2026 |
9.8 |
| CVE-2026-72493 |
net: serialize netif_running() check in enqueue_to_backlog() |
17.08.2026 |
9.9 |
| CVE-2026-72494 |
RDMA/irdma: Replace waitqueue and flag with completion |
17.08.2026 |
9.8 |
| CVE-2026-72495 |
RDMA/bnxt_re: Avoid repeated requests to allocate WC pages |
17.08.2026 |
9.3 |
| CVE-2026-14484 |
RapiSafe <= 1.0.4 - Unauthenticated Arbitrary File Deletion via 'rsmfcf7_session' and 'file_name' Parameters |
17.08.2026 |
9.1 |
| CVE-2026-15303 |
6Storage Rentals <= 2.27.0 - Unauthenticated Account Takeover via 'email' Parameter |
17.08.2026 |
9.8 |
| CVE-2026-15341 |
User Session Synchronizer <= 1.4.0 - Unauthenticated Authentication Bypass to Account Takeover via 'ussync-key', 'ussync-token', and 'ussync-ref' Parameters |
17.08.2026 |
9.8 |
| CVE-2026-73683 |
Laravel Socialite Facebook Provider Authentication Bypass via Nonce Replay |
18.08.2026 |
9.2 |
| CVE-2026-67365 |
Joomla Extension - icagenda.com - Unauthenticated SQL injection in iCagenda < 4.0.0-4.0.11 |
18.08.2026 |
9.2 |
| CVE-2026-17181 |
IBM Db2 Mirror for i is affected by multiple vulnerabilities |
18.08.2026 |
9.3 |
| CVE-2026-17182 |
IBM Db2 Mirror for i is affected by multiple vulnerabilities |
17.08.2026 |
9.8 |
| CVE-2026-17184 |
IBM Db2 Mirror for i is affected by multiple vulnerabilities |
18.08.2026 |
9.8 |
| CVE-2026-17186 |
IBM Db2 Mirror for i is affected by multiple vulnerabilities |
17.08.2026 |
9.9 |
| CVE-2026-50027 |
mcp-memory-service: Missing Authentication on Document API Endpoints Allows Unauthenticated Memory Read/Write/Delete |
17.08.2026 |
9.8 |
| CVE-2026-73678 |
MindsDB Minds Platform v26.1.0 Unauthenticated RCE via scratchpad exec() |
17.08.2026 |
10 |
| CVE-2026-19188 |
Haiwell IoT Cloud HMI Gateway OS Command Injection |
14.08.2026 |
10 |
| CVE-2026-49457 |
QUIC has Broken TLS verification |
14.08.2026 |
9.1 |
| CVE-2026-19681 |
Command Injection |
15.08.2026 |
9.4 |
| CVE-2026-19682 |
Command Injection |
15.08.2026 |
9.4 |
| CVE-2026-48528 |
Metacat has an unauthenticated SQL injection vulnerability |
17.08.2026 |
9.8 |
| CVE-2026-73849 |
emlog allows unauthenticated reinstallation via `install.php?action=reinstall`. |
18.08.2026 |
9.8 |
| CVE-2026-19626 |
Remote Code Execution |
15.08.2026 |
9.4 |
| CVE-2026-19871 |
Use of hard-coded credentials in Prospero Flow CRM employee onboarding |
14.08.2026 |
9.3 |
| CVE-2026-72810 |
SiYuan before v3.7.4 Publish-Boundary Bypass via WebSocket |
18.08.2026 |
9.2 |
| CVE-2026-72811 |
SiYuan before v3.7.4 SQL Injection via backlink search |
14.08.2026 |
9.9 |
| CVE-2026-72822 |
Grav before 1.0.13 Authentication Bypass via disable2fa |
14.08.2026 |
9.3 |
| CVE-2026-72824 |
Grav before 1.0.13 API Key Scope Bypass via PagesController |
14.08.2026 |
9.3 |
| CVE-2026-72826 |
Grav before 1.0.13 Scope Bypass via createApiKey |
18.08.2026 |
9.3 |
| CVE-2026-72829 |
Grav before 1.0.13 API Key Scope Bypass via UsersController |
14.08.2026 |
9.3 |
| CVE-2026-72830 |
Grav API Plugin before 1.0.13 RCE via ConfigController scope bypass |
14.08.2026 |
9.3 |
| CVE-2026-72836 |
FileBrowser before 2.63.19 Case Sensitivity Authentication Bypass |
18.08.2026 |
9.2 |
| CVE-2026-12949 |
Wishlist Member X <= 3.34.1 - Unauthenticated Account Takeover via 'mergewith' Parameter |
14.08.2026 |
9.8 |
| CVE-2026-72839 |
filebrowser through 2.63.16 Privilege Escalation via Signup |
14.08.2026 |
9.3 |
| CVE-2026-72841 |
luci-app-openvpn Path Traversal RCE via instance_name2 |
18.08.2026 |
9.4 |
| CVE-2026-72842 |
OpenWrt luci-app-lxc ACL Inconsistency Authentication Bypass |
14.08.2026 |
9.4 |
| CVE-2026-72850 |
Budibase before 3.40.0 Arbitrary File Write via Path Traversal |
14.08.2026 |
9.4 |
| CVE-2026-72851 |
Budibase before 3.40.0 SQL Injection via Unauthenticated Webhook |
14.08.2026 |
9 |
| CVE-2026-73302 |
Budibase: OIDC SSO account takeover: incoming identity linked by email without checking email_verified |
14.08.2026 |
9 |
| CVE-2026-73420 |
NextAuth.js: Email normalizer validates the address before Unicode normalization, allowing a homoglyph @ bypass |
14.08.2026 |
9.1 |
| CVE-2026-73421 |
NextAuth.js: Configuration errors can cause existence-based auth checks to fail open (auth object populated with an error) |
18.08.2026 |
9.1 |
| CVE-2026-73842 |
OpenChoreo: cluster-gateway internal proxy performs no caller authentication and is not read-only — data-plane Secret disclosure and arbitrary Kubernetes mutation |
18.08.2026 |
9 |
| CVE-2026-73843 |
OpenChoreo: Unauthenticated access to data-plane operations via OpenChoreo cluster-gateway management APIs |
14.08.2026 |
9.6 |
| CVE-2026-73665 |
FreePBX UCP: Unauthenticated remote code execution via socket.io namespace auth bypass and AMI action injection |
18.08.2026 |
9.3 |
| CVE-2026-19750 |
Tenda CH/CP/TX3 SSH hard-coded password |
14.08.2026 |
9.2 |
| CVE-2026-72776 |
AgenticSeek Unauthenticated RCE via /query API Endpoint |
18.08.2026 |
9.3 |
| CVE-2026-73663 |
FreePBX: Unauthenticated SQL injection in FreePBX missedcall via inbound Caller ID name leads to administrator takeover |
14.08.2026 |
9.3 |
| CVE-2026-17482 |
IBM Documentation Offline is vulnerable to information disclosure, session forgery and remote code execution |
17.08.2026 |
9.8 |
| CVE-2026-19297 |
Insufficient Authentication Brute Force Protection on Login Endpoint |
15.08.2026 |
9.1 |
| CVE-2026-8715 |
Vault Secrets Operator vulnerable to arbitrary file read and credential exfiltration via AppRole secretIDPath |
14.08.2026 |
9.6 |