| CVE-2026-7188 |
SQLi in Armiya Information Technologies' Access Control System |
10.09.2026 |
9.8 |
| CVE-2026-80351 |
Apache Camel K: Camel K Tenant repositories reach Maven execution inside operator pod |
10.09.2026 |
|
| CVE-2026-80352 |
Apache Camel K: Camel K Master trait serviceAccountName YAML injection lets CR author apply arbitrary objects |
10.09.2026 |
|
| CVE-2026-80354 |
Apache Camel K: Camel K Builder trait mavenProfiles ValueSources resolve tenant-named secrets in operator namespace |
10.09.2026 |
|
| CVE-2026-88763 |
Skupper-router: skupper-router: unbounded recursion in amqp field parser leads to denial of service |
10.09.2026 |
|
| CVE-2026-88770 |
Keycloak-services: keycloak-services: device authorization grant issues tokens to brute-force-locked accounts |
10.09.2026 |
|
| CVE-2026-87804 |
|
10.09.2026 |
|
| CVE-2026-0302 |
Checkov by Prisma Cloud: OS Command Injection Vulnerability |
10.09.2026 |
|
| CVE-2026-0303 |
Checkov by Prisma Cloud: Code Execution via Auto-Loaded Configuration File |
10.09.2026 |
|
| CVE-2026-0304 |
Cortex XDR Broker VM: Privilege Escalation Vulnerability |
10.09.2026 |
|
| CVE-2026-19436 |
Ultimate Gift Cards For WooCommerce < 3.2.10 - Unauthenticated Gift Card Value Inflation via Discounted Purchase |
10.09.2026 |
|
| CVE-2026-19439 |
Ultimate Gift Cards for WooCommerce 3.0.3 - 3.2.9 - Unauthenticated Gift Card Code and Customer PII Disclosure via wps_uwgc_report_details |
10.09.2026 |
|
| CVE-2026-19840 |
Notiqoo < 1.4.14 - Contributor+ Arbitrary Option Update via Multiple AJAX Actions |
10.09.2026 |
|
| CVE-2026-77770 |
miniOrange 2FA (Free & Pro) - Unauthenticated Arbitrary Option Deletion via Out-of-Band Email Link Validator |
10.09.2026 |
|
| CVE-2026-77771 |
miniOrange 2FA (Free & Pro) - 2FA Bypass via Session-Scoped OTP Lockout |
10.09.2026 |
|
| CVE-2026-78361 |
zipMoney(Zip Co) Payments Plugin for WooCommerce < 2.4.0 - Unauthenticated Arbitrary Option Deletion |
10.09.2026 |
|
| CVE-2026-81431 |
Registration Form for WooCommerce 1.1.0 - 1.1.2 - Contributor+ Privilege Escalation via Unvalidated tgwcfb_id |
10.09.2026 |
|
| CVE-2026-81635 |
|
10.09.2026 |
|
| CVE-2026-82582 |
|
10.09.2026 |
|
| CVE-2026-82925 |
Site Reviews 7.2.2 - 8.2.2 - Unauthenticated PHP Object Injection via Form Signature |
10.09.2026 |
|
| CVE-2026-0305 |
Prisma Access Agent: Information Disclosure Vulnerability on Linux |
10.09.2026 |
|
| CVE-2026-0306 |
Prisma Access Agent: EndPoint DLP Bypass Vulnerability on Windows |
10.09.2026 |
|
| CVE-2026-0307 |
GlobalProtect App: Local Privilege Escalation Vulnerabilities |
10.09.2026 |
|
| CVE-2026-0308 |
PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface |
10.09.2026 |
|
| CVE-2026-0309 |
PAN-OS: Authenticated Command Injection in CLI with Luna HSM Configuration |
10.09.2026 |
|
| CVE-2026-85645 |
Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder <= 1.15.46 - Reflected Cross-Site Scripting |
10.09.2026 |
6.1 |
| CVE-2026-0310 |
PAN-OS: Buffer Overflow Vulnerability via XML Processing |
10.09.2026 |
|
| CVE-2026-82079 |
Potential Leakage of Nintendo Switch System Information Through a Proximity-Based Remote Attack |
10.09.2026 |
|
| CVE-2026-84939 |
Apache FreeMarker, Apache FreeMarker: A malformed locale may be exploitable for path traversal attacks |
10.09.2026 |
|
| CVE-2026-49362 |
Apache Artemis, Apache ActiveMQ Artemis: Missing Authentication in CORE Protocol Handler Allows Unauthorized Queue Creation |
10.09.2026 |
|
| CVE-2026-49363 |
Apache Artemis, Apache ActiveMQ Artemis: Pre-Authentication Information Disclosure in CORE Protocol Topology Subscription |
10.09.2026 |
|
| CVE-2026-49364 |
Apache Artemis, Apache Artemis, Apache ActiveMQ Artemis, Apache ActiveMQ Artemis: Pre-Authentication Cluster Credential Exposure to Discovered Peers |
10.09.2026 |
|
| CVE-2026-57822 |
Apache Artemis, Apache ActiveMQ Artemis: Message-based management parameter deserialization may lead to denial of service |
10.09.2026 |
|
| CVE-2026-57967 |
Apache Artemis, Apache ActiveMQ Artemis: Missing authentication on CORE protocol session reattachment |
10.09.2026 |
|
| CVE-2026-67593 |
Apache Artemis, Apache Artemis, Apache ActiveMQ Artemis, Apache ActiveMQ Artemis: Pre-authentication Openwire protocol handling can result in queue deletion |
10.09.2026 |
|
| CVE-2026-75880 |
Apache Artemis, Apache ActiveMQ Artemis: Message selector wildcard handling could lead to denial of service |
10.09.2026 |
|
| CVE-2026-14873 |
Bulk Password Reset <= 1.3.3 - Authenticated (Subscriber+) Arbitrary Password Reset |
10.09.2026 |
8 |
| CVE-2026-15019 |
Direct Download for WooCommerce <= 1.19 - Unauthenticated Arbitrary File Read via 'file_id' Path Segment |
10.09.2026 |
7.5 |
| CVE-2026-15796 |
Builderall for WordPress <= 3.0.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'bg_video_service_url' Setting |
10.09.2026 |
6.4 |
| CVE-2026-15820 |
Builderall for WordPress <= 3.0.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Photo Module 'attributes' Setting |
10.09.2026 |
6.4 |
| CVE-2026-15823 |
Builderall for WordPress <= 3.0.2 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Meta Modification via 'ba_cheetah_data[post_id]' Parameter |
10.09.2026 |
4.3 |
| CVE-2026-18386 |
WP BackItUp Community Edition <= 2.1.0 - Authenticated (Administrator+) Path Traversal to Arbitrary File Read via 'backup_file' Parameter |
10.09.2026 |
4.9 |
| CVE-2026-18594 |
Advanced Contact form 7 DB <= 2.1.3 - Missing Authorization to Authenticated (Custom+) Unauthorized Data Import via 'import_cf7_id' |
10.09.2026 |
4.3 |
| CVE-2026-4657 |
Easy Google Fonts <= 2.0.4 - Authenticated (Author+) Stored Cross-Site Scripting via control_selectors Meta Field |
10.09.2026 |
6.4 |
| CVE-2026-76562 |
Sidebar Manager Light <= 1.18 - Unauthenticated Stored Cross-Site Scripting via 'sbm_description' Parameter |
10.09.2026 |
7.2 |
| CVE-2026-19583 |
Velociraptor Required Permissions bypass by using client monitoring queries |
10.09.2026 |
9.9 |
| CVE-2026-19584 |
Velociraptor VQL injection during notebook restore from backup |
10.09.2026 |
7.7 |
| CVE-2026-87870 |
Ninja Forms - Scheduled Exports <= 3.0.3 - Authenticated (Subscriber+) Stored Cross-Site Scripting via REST API Parameters |
10.09.2026 |
6.4 |
| CVE-2026-84062 |
|
10.09.2026 |
|
| CVE-2026-84063 |
|
10.09.2026 |
|
| CVE-2026-18351 |
Drag and Drop File Upload for Elementor Forms <= 1.6.0 - Unauthenticated Arbitrary File Upload via 'type' Parameter |
10.09.2026 |
9.8 |
| CVE-2026-87933 |
DaveGamble cJSON cJSON_Utils.c cJSONUtils_MergePatch use after free |
10.09.2026 |
|
| CVE-2026-87931 |
Behavioral Technology Group Pavlok Behavioral Conditioning Wearable Apple Notification Center Service Event buffer overflow |
10.09.2026 |
|
| CVE-2026-87926 |
Rizwan17 inventory-management-system Login Page index.php cross site scripting |
09.09.2026 |
|
| CVE-2026-87925 |
Rizwan17 inventory-management-system manage.php storeCustomerOrderInvoice sql injection |
09.09.2026 |
|
| CVE-2026-87924 |
Rizwan17 inventory-management-system Invoice Generation invoice_bill.php missing authentication |
09.09.2026 |
|
| CVE-2026-15460 |
Missing channel-state validation in Zephyr Bluetooth Classic L2CAP receive path |
09.09.2026 |
5.4 |
| CVE-2026-87923 |
Rizwan17 inventory-management-system List DBOperation.php cross site scripting |
09.09.2026 |
|
| CVE-2026-71809 |
|
09.09.2026 |
|
| CVE-2026-87922 |
Rizwan17 inventory-management-system AJAX Backend process.php DBOperation.addCategory missing authentication |
09.09.2026 |
|
| CVE-2026-88001 |
Open WebUI: Server-side fetches reach blocked and internal hosts via unvalidated HTTP redirect targets |
09.09.2026 |
5 |
| CVE-2026-88002 |
Open WebUI: Any authenticated user can hang the server via a cyclic chat message history |
09.09.2026 |
6.5 |
| CVE-2026-88069 |
Path traversal in Pandora archive extractor allows arbitrary file writes outside the extraction directory in pandora analysis |
09.09.2026 |
|
| CVE-2026-71805 |
|
09.09.2026 |
|
| CVE-2026-75308 |
|
09.09.2026 |
|
| CVE-2026-87921 |
Rizwan17 inventory-management-system manage.php update_record sql injection |
09.09.2026 |
|
| CVE-2026-87997 |
Open WebUI: Any authenticated user can inject chats into another user's folder via chat completions |
09.09.2026 |
4.3 |
| CVE-2026-87998 |
Open WebUI: Non-admin users can delete admin-owned external knowledge connections via knowledge base deletion |
09.09.2026 |
7.1 |
| CVE-2026-87999 |
Open WebUI: Any authenticated user can reach the Azure platform channel via server-side web fetch |
09.09.2026 |
7.1 |
| CVE-2026-88000 |
Open WebUI: Any authenticated user can hang the server via message deletion in a cyclic chat tree |
09.09.2026 |
6.5 |
| CVE-2026-71807 |
|
09.09.2026 |
|
| CVE-2026-75307 |
|
09.09.2026 |
|
| CVE-2026-87016 |
Open WebUI: Sign-in as another user via wildcard characters in the OAuth subject claim on SQLite |
09.09.2026 |
8.1 |
| CVE-2026-87017 |
Open WebUI: Inaccessible knowledge bases are exposed through the built-in knowledge tool on most vector backends |
09.09.2026 |
4.3 |
| CVE-2026-87994 |
Open WebUI: Channel members can overwrite another member's message via the chat completions endpoint |
09.09.2026 |
4.3 |
| CVE-2026-87995 |
Open WebUI: Same-origin XSS to account takeover via terminal port-preview iframe hardcoding allow-same-origin |
09.09.2026 |
8.7 |
| CVE-2026-87996 |
Open WebUI: SSRF into internal services via DNS rebinding in the Playwright web loader |
09.09.2026 |
7.7 |
| CVE-2026-15913 |
Path Traversal in Fortra's GoAnywhere MFT Endpoint |
09.09.2026 |
7.7 |
| CVE-2026-87013 |
Open WebUI: Any authenticated user can start a non-terminating request via a folder parent cycle |
09.09.2026 |
4.3 |
| CVE-2026-87014 |
Open WebUI: Admin demoted through SSO role sync keeps read and write access to all users' notes |
09.09.2026 |
6.5 |
| CVE-2026-87015 |
Open WebUI: A user's session cookies are sent to tool servers configured for bearer authentication |
09.09.2026 |
6.8 |
| CVE-2026-87011 |
Open WebUI: Unauthenticated requests can stall the server via uncached OIDC fetches in back-channel logout |
09.09.2026 |
7.5 |
| CVE-2026-87012 |
Open WebUI: Any authenticated user can suppress calendar alerts instance-wide via a non-numeric alert value |
09.09.2026 |
4.3 |
| CVE-2026-53956 |
Rattler vulnerable to package cache path traversal via conda package build string |
09.09.2026 |
5.4 |
| CVE-2026-79387 |
|
09.09.2026 |
|
| CVE-2026-71802 |
|
09.09.2026 |
|
| CVE-2026-71803 |
|
09.09.2026 |
|
| CVE-2026-71808 |
|
09.09.2026 |
|
| CVE-2026-79516 |
|
09.09.2026 |
4 |
| CVE-2026-36433 |
|
09.09.2026 |
|
| CVE-2026-50165 |
alf.io has Improper Access Control for Organization Owners that Exposes System Secrets |
09.09.2026 |
|
| CVE-2026-71801 |
|
09.09.2026 |
|
| CVE-2026-79515 |
|
09.09.2026 |
4.3 |
| CVE-2026-79513 |
|
09.09.2026 |
6.5 |
| CVE-2026-79514 |
|
09.09.2026 |
6.5 |
| CVE-2026-79522 |
|
09.09.2026 |
6.5 |
| CVE-2026-61915 |
|
09.09.2026 |
4.2 |
| CVE-2026-71616 |
|
09.09.2026 |
|
| CVE-2026-61910 |
|
09.09.2026 |
3.5 |
| CVE-2026-61911 |
|
09.09.2026 |
4.3 |
| CVE-2026-71613 |
|
09.09.2026 |
|
| CVE-2026-71614 |
|
09.09.2026 |
|
| CVE-2026-61909 |
|
09.09.2026 |
3.5 |
| CVE-2026-71612 |
|
09.09.2026 |
|
| CVE-2026-61908 |
|
09.09.2026 |
3.1 |
| CVE-2026-87911 |
Read-only enforcement bypass enabling operating system command execution in the SQL validation component of Amazon awslabs postgres-mcp-server |
09.09.2026 |
9.6 |
| CVE-2026-38998 |
|
09.09.2026 |
|
| CVE-2026-73769 |
Authenticated Remote Code Execution in CPPM Web Interface |
09.09.2026 |
7.2 |
| CVE-2026-73786 |
Unauthenticated Network-Based Denial of Service in CPPM systems |
09.09.2026 |
7.5 |
| CVE-2026-73787 |
Authenticated Arbitrary File Write allows Remote Code Execution via CPPM Web Interface |
09.09.2026 |
7.2 |
| CVE-2026-73788 |
Privilege Escalation in ClearPass OnGuard Agent |
09.09.2026 |
6.5 |
| CVE-2026-73789 |
Unauthenticated Insecure Parameter Manipulation allows Data Tampering In CPPM Web Interface |
09.09.2026 |
5.3 |
| CVE-2026-79324 |
|
09.09.2026 |
|
| CVE-2026-61907 |
|
09.09.2026 |
4.3 |
| CVE-2026-79322 |
|
09.09.2026 |
|
| CVE-2026-79323 |
|
09.09.2026 |
|
| CVE-2026-54694 |
NationalSecurityAgency/skills-service has Stored XSS via User Registration Enabling Admin Account Takeover |
09.09.2026 |
9.6 |
| CVE-2025-51619 |
|
09.09.2026 |
|
| CVE-2026-39020 |
|
09.09.2026 |
5.5 |
| CVE-2026-52482 |
|
09.09.2026 |
|
| CVE-2026-87927 |
MaxSite CMS through 109.6 Local File Inclusion via ajax dispatcher |
09.09.2026 |
|
| CVE-2026-87928 |
MaxSite CMS 0.94 through 109.6 HTML Upload XSS via admin_page |
09.09.2026 |
|
| CVE-2026-87929 |
MaxSite CMS through 109.6 Authentication Bypass via Hardcoded Encryption Key |
09.09.2026 |
|
| CVE-2026-87930 |
MaxSite CMS through 109.6 PHP Object Injection via ci_session |
09.09.2026 |
|
| CVE-2026-18147 |
Freeipa: ipa: freeipa/idm: cross-site scripting vulnerability allows arbitrary code execution via crafted url |
09.09.2026 |
|
| CVE-2026-19233 |
|
09.09.2026 |
|
| CVE-2026-40635 |
|
09.09.2026 |
5.4 |
| CVE-2026-46460 |
|
09.09.2026 |
3.5 |
| CVE-2026-77120 |
|
09.09.2026 |
|
| CVE-2026-85788 |
Incomplete list of disallowed inputs in awslabs mysql-mcp-server |
09.09.2026 |
5.5 |
| CVE-2026-23855 |
|
09.09.2026 |
7.2 |
| CVE-2026-24442 |
|
09.09.2026 |
|
| CVE-2026-26350 |
|
09.09.2026 |
|
| CVE-2026-28523 |
|
09.09.2026 |
|
| CVE-2026-34412 |
|
09.09.2026 |
|
| CVE-2026-43635 |
|
09.09.2026 |
|
| CVE-2026-43645 |
|
09.09.2026 |
|
| CVE-2026-47156 |
MantisBT: SOAP API Authentication Bypass with Privilege Escalation to Administrator |
09.09.2026 |
|
| CVE-2026-49947 |
|
09.09.2026 |
|
| CVE-2026-56125 |
|
09.09.2026 |
|
| CVE-2026-70425 |
|
09.09.2026 |
6.7 |
| CVE-2026-80914 |
Bluetooth: ISO: fix use-after-free of listener socket in iso_conn_ready |
10.09.2026 |
8.8 |
| CVE-2026-80915 |
drm/xe: Fix DPT allocation paths. |
09.09.2026 |
|
| CVE-2026-80916 |
kcov: fix data corruption and race conditions on PREEMPT_RT |
09.09.2026 |
|
| CVE-2026-80917 |
PCI: host-generic: Fix NULL pointer dereference on 32-bit CAM systems |
09.09.2026 |
|
| CVE-2026-80918 |
HID: core: fix number/pointer type confusion on long items |
09.09.2026 |
|
| CVE-2026-80919 |
drm/amdgpu: fix recursive ww_mutex acquire in amdgpu_devcoredump_format |
09.09.2026 |
|
| CVE-2026-80920 |
io_uring: defer eventfd signaling when queued from a wakeup handler |
09.09.2026 |
|
| CVE-2026-80921 |
KVM: s390: vsie: zero stale crypto bits |
10.09.2026 |
8.8 |
| CVE-2026-80922 |
crypto: qcom-rng - Allow zero as a random number |
09.09.2026 |
|
| CVE-2026-80923 |
xhci: dbgtty: Fix unregister on tty_register_driver() failure |
09.09.2026 |
|
| CVE-2026-80924 |
crypto: krb5 - use kfree_sensitive() for derived key buffers |
10.09.2026 |
7.5 |
| CVE-2026-80925 |
vlan: fix skb_under_panic and races when toggling HW VLAN offload |
09.09.2026 |
|
| CVE-2026-87853 |
Sssd: sssd: idp authentication prefix comparison allows cross-user impersonation |
09.09.2026 |
|
| CVE-2026-87872 |
Community.general: community.general: ocapi module_utils (ocapi_command, ocapi_info) hardcode validate_certs=false with no override, enabling tls man-in-the-middle and credential disclosure |
09.09.2026 |
|
| CVE-2026-87874 |
Community.general: community.general: memcached cache plugin deserializes untrusted pickle data from memcached, enabling cache-poisoning remote code execution on the ansible controller |
09.09.2026 |
|
| CVE-2026-87875 |
Cups: openprinting cups: heap out-of-bounds read in cupsutf32toutf8() via missing source-length bound |
09.09.2026 |
|
| CVE-2026-87876 |
Cups: openprinting cups: remaining case-insensitive username matching in scheduler side paths (cve-2026-27447 follow-up) |
09.09.2026 |
|
| CVE-2026-8044 |
|
09.09.2026 |
|
| CVE-2026-79947 |
|
09.09.2026 |
5.5 |
| CVE-2026-67401 |
|
10.09.2026 |
|
| CVE-2026-67403 |
|
09.09.2026 |
|
| CVE-2026-68484 |
|
09.09.2026 |
|
| CVE-2026-22590 |
Fast-DDS Discovery Server: Out-of-Bounds Read & Heap Memory Disclosure via DATA_FRAG sampleSize / fragmentsInSubmessage |
09.09.2026 |
9.1 |
| CVE-2026-22591 |
Fast DDS DDSSQLFilter Recursive Parser Stack Exhaustion (Remote DoS) |
09.09.2026 |
7.5 |
| CVE-2026-77974 |
Softish C6 Ear Camera and EarVision Android Application Missing authentication for critical function |
09.09.2026 |
|
| CVE-2026-78484 |
|
09.09.2026 |
5.5 |
| CVE-2026-78493 |
|
09.09.2026 |
5.5 |
| CVE-2026-79735 |
|
09.09.2026 |
4.4 |
| CVE-2026-79945 |
|
09.09.2026 |
5.5 |
| CVE-2026-81330 |
Softish C6 Ear Camera and EarVision Android Application Cleartext transmission of sensitive information |
09.09.2026 |
|
| CVE-2026-81640 |
Softish C6 Ear Camera and EarVision Android Application Use of Hard-coded Credentials |
09.09.2026 |
|
| CVE-2026-82563 |
Softish C6 Ear Camera and EarVision Android Application Authentication bypass by spoofing |
09.09.2026 |
|
| CVE-2026-79693 |
|
09.09.2026 |
3.4 |
| CVE-2026-79689 |
|
09.09.2026 |
5.3 |
| CVE-2026-79741 |
|
09.09.2026 |
5.3 |
| CVE-2026-79942 |
|
09.09.2026 |
3.4 |
| CVE-2026-79944 |
|
09.09.2026 |
3.4 |
| CVE-2026-79946 |
|
09.09.2026 |
5.3 |
| CVE-2026-79690 |
|
09.09.2026 |
3.7 |
| CVE-2026-79941 |
|
09.09.2026 |
5.3 |
| CVE-2026-83530 |
Uncontrolled Memory Allocation in cel-go |
09.09.2026 |
|
| CVE-2026-26212 |
Rara One Click Demo Import < 1.3.5 Arbitrary File Upload RCE |
09.09.2026 |
|
| CVE-2026-79736 |
|
09.09.2026 |
3.7 |
| CVE-2026-79729 |
|
09.09.2026 |
3.7 |
| CVE-2026-78482 |
|
09.09.2026 |
5.5 |
| CVE-2026-79732 |
|
09.09.2026 |
3.7 |
| CVE-2026-87822 |
t-digest 3.1 through 3.3 Denial of Service via NaN Centroid Means in MergingDigest.fromBytes |
09.09.2026 |
|
| CVE-2026-87823 |
zstd-jni 1.1.1 through 1.5.7-13 Out-of-Bounds Read via Direct ByteBuffer Frame-Size Methods |
09.09.2026 |
|
| CVE-2026-87824 |
zstd-jni 1.3.3-1 through 1.5.7-13 Out-of-Bounds Read via Zstd.trainFromBufferDirect |
09.09.2026 |
|
| CVE-2026-87825 |
zstd-jni 1.3.8-4 through 1.5.7-13 Use-After-Free of Compression and Decompression Dictionaries |
09.09.2026 |
|
| CVE-2026-87877 |
zstd-jni 1.3.8-4 through 1.5.7-13 Use-After-Free via Setters Called After close() |
09.09.2026 |
|
| CVE-2026-79617 |
Improper Access Control Leading to Display Exposure in TÜBİTAK BİLGEM's Pardus LightDM Greeter |
09.09.2026 |
7.1 |
| CVE-2026-82530 |
IP2Location Country Blocker < 2.45.0 Access Control Bypass via X-Real-IP Header |
09.09.2026 |
|
| CVE-2026-78483 |
|
09.09.2026 |
5.9 |
| CVE-2026-79731 |
|
09.09.2026 |
4.4 |
| CVE-2026-64857 |
tirreno has Session Fixation in Login Authentication |
09.09.2026 |
|
| CVE-2026-79950 |
|
09.09.2026 |
7.5 |
| CVE-2026-86198 |
PocketMine-MP before 5.44.2 Denial of Service via ResourcePackClientResponsePacket |
09.09.2026 |
|
| CVE-2026-86199 |
PocketMine-MP before 5.43.1 Denial of Service via unauthenticated login |
09.09.2026 |
|
| CVE-2026-86200 |
PocketMine-MP before 5.42.1 LogDoS via LoginPacket clientData JWT |
09.09.2026 |
|
| CVE-2026-86201 |
PocketMine-MP before 5.41.1 LogDoS via LoginPacket clientData |
09.09.2026 |
|
| CVE-2026-86202 |
PocketMine-MP before 5.39.2 Network Amplification via ActorEventPacket |
09.09.2026 |
|
| CVE-2026-86203 |
PocketMine-MP before 5.39.2 Item Duplication via Despawn State |
09.09.2026 |
|
| CVE-2026-86204 |
PocketMine-MP before 5.39.2 Denial of Service via ModalFormResponsePacket |
09.09.2026 |
|
| CVE-2026-86739 |
Snipe-IT before 8.7.0 Acceptance Finalization Without Stored Evidence |
09.09.2026 |
|
| CVE-2026-86740 |
Snipe-IT before 8.7.0 Attachment Deletion Reports Success While File Remains |
09.09.2026 |
|
| CVE-2026-86741 |
Snipe-IT before 8.7.0 Arbitrary File Read and SSRF via Category EULA |
09.09.2026 |
|
| CVE-2026-86742 |
Snipe-IT before 8.7.0 CSV Formula Injection via Asset Acceptance Report |
09.09.2026 |
|
| CVE-2026-86743 |
Snipe-IT before 8.7.0 Authorization Bypass via Asset Acceptance Report |
09.09.2026 |
|
| CVE-2026-86744 |
snipe-it before 8.7.0 Race Condition in Asset Checkout |
09.09.2026 |
|
| CVE-2026-86745 |
Snipe-IT before 8.7.0 CSV Formula Injection via Location-Scoping Export |
09.09.2026 |
|
| CVE-2026-86746 |
Snipe-IT before 8.7.0 Authorization Bypass via Livewire Snapshot Replay |
09.09.2026 |
|
| CVE-2026-86747 |
snipe-it before 8.7.0 Authorization Bypass via Pivot-Only User |
09.09.2026 |
|
| CVE-2026-86748 |
Snipe-IT before 8.7.0 Database Wipe via Invalid Backup Archive |
09.09.2026 |
|
| CVE-2026-86749 |
snipe-it before 8.7.0 Data Loss via Failed Image Write |
09.09.2026 |
|
| CVE-2026-86750 |
snipe-it before 8.7.0 Authorization Bypass via API User Create/Update |
09.09.2026 |
|
| CVE-2026-86751 |
Snipe-IT before 8.7.0 Arbitrary File Read and SSRF via Markdown |
09.09.2026 |
|
| CVE-2026-86752 |
snipe-it before 8.7.0 Authorization Bypass via Asset Audit Endpoints |
09.09.2026 |
|
| CVE-2026-86753 |
snipe-it before 8.7.0 Business Logic Bypass via asset_model endpoint |
09.09.2026 |
|
| CVE-2026-86754 |
Snipe-IT before 8.7.0 Authorization Bypass via OAuth Clients |
09.09.2026 |
|
| CVE-2026-86755 |
Snipe-IT 4.2.0 through 8.6.3 Permission Bypass via OAuth |
09.09.2026 |
|
| CVE-2026-86756 |
Snipe-IT 8.5.0 through 8.6.3 Open Redirect via SAML RelayState |
09.09.2026 |
|
| CVE-2026-86757 |
Snipe-IT before 8.7.0 Information Disclosure via Custom Fields |
09.09.2026 |
|
| CVE-2026-86758 |
Snipe-IT before 8.7.0 License Key Exposure via CSV Export |
09.09.2026 |
|
| CVE-2026-86759 |
Snipe-IT before 8.7.0 Missing Authorization via asset-history CSV importer |
09.09.2026 |
|
| CVE-2026-86760 |
snipe-it 8.2.0 before 8.7.0 Authentication Bypass via activated flag |
09.09.2026 |
|
| CVE-2026-86761 |
snipe-it 8.6.3 before 8.7.0 Authorization Bypass via print endpoints |
09.09.2026 |
|
| CVE-2026-86762 |
Snipe-IT before 8.7.0 Authentication Bypass via API Middleware |
09.09.2026 |
|
| CVE-2026-86763 |
snipe-it 7.0.12 through 8.6.3 Authorization Bypass via Importer |
09.09.2026 |
|
| CVE-2026-86764 |
Snipe-IT 8.6.4 before 8.7.0 Permission Bypass via assigned components |
09.09.2026 |
|
| CVE-2026-86765 |
Snipe-IT 8.6.3 Authorization Bypass via Asset Update Endpoint |
09.09.2026 |
|
| CVE-2026-86766 |
Snipe-IT 8.6.3 Race Condition via Consumable Checkout |
09.09.2026 |
|
| CVE-2026-86767 |
Snipe-IT before 8.7.0 Cross-Company Read via requested-assets |
09.09.2026 |
|
| CVE-2026-86768 |
Snipe-IT before 8.7.0 Improper Input Validation via API Checkout |
09.09.2026 |
|
| CVE-2026-86769 |
Snipe-IT before 8.7.0 Audit Log Misattribution via Consumables Checkout |
09.09.2026 |
|
| CVE-2026-86770 |
Snipe-IT before 8.7.0 Authentication Bypass via SAML Username Collation |
09.09.2026 |
|
| CVE-2026-86771 |
Snipe-IT before 8.7.0 Server-Side Request Forgery via employee_num |
09.09.2026 |
|
| CVE-2026-86772 |
Snipe-IT 8.6.3 Stored XSS via Department Names |
09.09.2026 |
|
| CVE-2026-86773 |
Snipe-IT 8.6.3 Broken Access Control via Kit Update Endpoints |
09.09.2026 |
|
| CVE-2026-86774 |
Snipe-IT before 8.7.0 Broken Access Control via AssetModelPolicy |
09.09.2026 |
|
| CVE-2026-86775 |
knowns before 0.30.0 Path Traversal via Document API |
09.09.2026 |
|
| CVE-2023-54355 |
PocketMine-MP 5.2.0 Server Crash via Incorrect EC Curve |
09.09.2026 |
|
| CVE-2023-54390 |
PocketMine-MP before 5.3.1 Denial of Service via LoginPacket |
09.09.2026 |
|
| CVE-2023-54392 |
PocketMine-MP before 4.22.3 Denial of Service via BlockActorDataPacket |
09.09.2026 |
|
| CVE-2023-54393 |
PocketMine-MP before 4.20.5 Denial of Service via LoginPacket |
09.09.2026 |
|
| CVE-2023-54394 |
PocketMine-MP before 4.18.0-ALPHA2 Bandwidth Amplification via InventoryTransactionPacket |
09.09.2026 |
|
| CVE-2023-54395 |
PocketMine-MP before 4.12.5 Denial of Service via ModalFormResponsePacket |
09.09.2026 |
|
| CVE-2023-54396 |
PocketMine-MP before 4.8.1 Server Crash via Banner NBT |
09.09.2026 |
|
| CVE-2024-58380 |
PocketMine-MP before 5.11.2 Denial of Service via BookEditPacket |
09.09.2026 |
|
| CVE-2024-58381 |
PocketMine-MP before 5.11.1 Denial of Service via LoginPacket |
09.09.2026 |
|
| CVE-2024-58382 |
league/commonmark before 2.6.0 Denial of Service via Quadratic Complexity |
09.09.2026 |
|
| CVE-2025-71417 |
PocketMine-MP before 5.32.1 Denial of Service via ResourcePackClientResponsePacket |
09.09.2026 |
|
| CVE-2025-71418 |
PocketMine-MP before 5.25.2 Denial of Service via explode |
09.09.2026 |
|
| CVE-2026-56711 |
VLC media player 3.0.0 through 3.0.23 Heap Out-of-Bounds Write via Integer Overflow in Picture Allocation |
09.09.2026 |
|
| CVE-2026-73324 |
VLC media player 3.0.0 through 3.0.23 Heap Out-of-Bounds Read via Unterminated RealRTSP Response Line |
09.09.2026 |
|
| CVE-2026-79738 |
|
09.09.2026 |
7.5 |
| CVE-2026-79740 |
|
09.09.2026 |
7.5 |
| CVE-2026-86099 |
Chainlit through 2.12.0 Path Traversal via socket.io sessionId |
09.09.2026 |
|
| CVE-2026-78486 |
|
09.09.2026 |
4.4 |
| CVE-2026-79952 |
|
09.09.2026 |
5.3 |
| CVE-2026-79964 |
|
09.09.2026 |
5.3 |
| CVE-2026-79971 |
|
09.09.2026 |
5.3 |
| CVE-2026-79962 |
|
09.09.2026 |
5.3 |
| CVE-2026-79968 |
|
09.09.2026 |
5.6 |
| CVE-2026-85102 |
Improper Certificate Validation in Quantum Security Gateway |
10.09.2026 |
9.8 |
| CVE-2026-85103 |
Heap-based Buffer Overflow in VPN Certificate ASN.1 Decoding |
10.09.2026 |
9.8 |
| CVE-2026-79965 |
|
09.09.2026 |
5.3 |
| CVE-2026-15140 |
|
09.09.2026 |
|
| CVE-2026-79638 |
|
09.09.2026 |
5.3 |
| CVE-2026-79966 |
CWE-532: Insertion of Sensitive Information into Log File |
09.09.2026 |
3.3 |
| CVE-2026-79969 |
|
09.09.2026 |
5.3 |
| CVE-2026-80169 |
|
09.09.2026 |
3.3 |
| CVE-2026-79694 |
|
09.09.2026 |
5.5 |
| CVE-2026-79728 |
|
09.09.2026 |
6.5 |
| CVE-2026-79961 |
|
09.09.2026 |
5.3 |
| CVE-2026-78481 |
|
09.09.2026 |
6.5 |
| CVE-2026-79730 |
|
09.09.2026 |
5.6 |
| CVE-2026-79972 |
|
09.09.2026 |
7.2 |
| CVE-2026-79970 |
|
09.09.2026 |
5.6 |
| CVE-2026-80172 |
|
09.09.2026 |
9.8 |
| CVE-2026-79692 |
|
09.09.2026 |
7.3 |
| CVE-2026-78490 |
|
09.09.2026 |
7.5 |
| CVE-2026-79695 |
|
09.09.2026 |
7.3 |
| CVE-2026-78485 |
|
09.09.2026 |
7.3 |
| CVE-2026-87806 |
Parse Server 9.0.0 Authentication Bypass via LDAP Empty Password |
09.09.2026 |
|
| CVE-2026-87807 |
siyuan before v3.8.2 SQL Injection via fullTextSearchBlock |
09.09.2026 |
|
| CVE-2026-87808 |
SiYuan before v3.8.2 Read-Only Boundary Bypass via fullTextSearchBlock |
09.09.2026 |
|
| CVE-2026-87809 |
Siyuan before v3.8.2 Information Disclosure via Export Preview |
09.09.2026 |
|
| CVE-2026-87810 |
Siyuan before v3.8.2 Information Disclosure via fullTextSearchBlock |
09.09.2026 |
|
| CVE-2026-87811 |
SiYuan before v3.8.2 Stored XSS via notebook template paths |
09.09.2026 |
|
| CVE-2026-87812 |
SiYuan before v3.8.2 Stored XSS via Bazaar iconURL |
09.09.2026 |
|
| CVE-2026-87813 |
SiYuan before v3.8.2 Stored XSS via unescaped asset filenames |
09.09.2026 |
|
| CVE-2026-87814 |
SiYuan before v3.8.2 Stored XSS via Asset Preview |
09.09.2026 |
|
| CVE-2026-87815 |
SiYuan before v3.8.2 Path Traversal via removeRiffDeck |
09.09.2026 |
|
| CVE-2026-87816 |
PasswordPusher before 2.11.1 Race Condition View Limit Bypass |
09.09.2026 |
|
| CVE-2026-87817 |
GitPython before 3.1.60 Remote Code Execution via Git Directory Impersonation |
09.09.2026 |
|
| CVE-2026-87818 |
GitPython 3.1.59 Local File Content Oracle via --no-index |
09.09.2026 |
|
| CVE-2026-87819 |
GitPython before 3.1.60 Denial of Service via ReDoS |
09.09.2026 |
|
| CVE-2026-87820 |
CyberPanel 2.4.3 through 2.4.5 Information Disclosure via AI Scanner |
09.09.2026 |
|
| CVE-2026-87821 |
Lara Dashboard 0.9.2 through 1.3.1 Server-Side Request Forgery in Builder Markdown Fetch |
09.09.2026 |
7.1 |
| CVE-2026-74761 |
Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Spoofing of RemoveSubscription clientId |
09.09.2026 |
|
| CVE-2026-78489 |
|
09.09.2026 |
5.9 |
| CVE-2026-78492 |
|
09.09.2026 |
7.4 |
| CVE-2026-79637 |
|
09.09.2026 |
7.7 |
| CVE-2026-79963 |
|
09.09.2026 |
7.4 |
| CVE-2026-80171 |
|
09.09.2026 |
4.7 |
| CVE-2026-79635 |
|
09.09.2026 |
7.3 |
| CVE-2026-87827 |
KGUARD DVR unauthenticated remote command execution vulnerability |
09.09.2026 |
|
| CVE-2026-41869 |
Apache Nutch: Unauthenticated forced shutdown and job interruption in Nutch Server (Nutch REST API) |
09.09.2026 |
|
| CVE-2026-41870 |
Apache Nutch: Unauthenticated remote code execution (RCE) via JEXL injection in Nutch Server (Nutch REST API) |
09.09.2026 |
|
| CVE-2026-41871 |
Apache Nutch: Unauthenticated reflection-based job execution in Nutch Server (Nutch REST API) |
09.09.2026 |
|
| CVE-2026-73334 |
Apache Parquet Hadoop: File-controlled KMS URL is forwarded to pluggable KmsClient that skips host validation |
09.09.2026 |
|
| CVE-2026-54048 |
Apache Impala: Avro Schema URL Server-Side Request Forgery |
09.09.2026 |
|
| CVE-2026-56207 |
Apache Impala: SAML authentication bypass via forged bearer token |
09.09.2026 |
|
| CVE-2026-57866 |
Apache Impala: Secrets Exfiltration via SSRF |
09.09.2026 |
|
| CVE-2026-65181 |
Apache Impala: RCE via External Data Source Class Loading |
09.09.2026 |
|
| CVE-2026-79641 |
|
09.09.2026 |
7.5 |
| CVE-2026-79727 |
|
09.09.2026 |
3.3 |
| CVE-2026-80174 |
|
09.09.2026 |
5.3 |
| CVE-2026-80239 |
|
09.09.2026 |
2.4 |
| CVE-2026-85978 |
Unauthenticated Remote Code Execution in Akana API Platform |
09.09.2026 |
|