CVE Field Guide

Critical CVEs

CVE Title Updated Score
CVE-2026-63343 Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesystem access as root 21.08.2026 9.9
CVE-2026-77087 Paperclip before 0.3.1 Remote Code Execution via DNS Rebinding 21.08.2026 9.4
CVE-2026-48755 Incus has an argument injection in backup compression algorithm leading to AFW and ACE 21.08.2026 9.9
CVE-2026-48769 Incus has an arbitrary file write on its client due to trusted image hash 21.08.2026 9.9
CVE-2026-62867 Incus has an argument injection in storage volume block.create_options that leads to arbitrary command execution 21.08.2026 9.9
CVE-2026-62940 Incus has a project restriction bypass via instance migration config override 21.08.2026 9.9
CVE-2026-62941 Incus: Cross-project instance copy bypasses target project restrictions via TOCTOU in config merge 21.08.2026 9.9
CVE-2026-63125 Incus vulnerable to root RCE via image backup.yaml symlink 21.08.2026 9.9
CVE-2026-48751 Incus has a restricted project bypass leading to arbitrary command execution 21.08.2026 9.9
CVE-2026-48752 Incus has arbitrary file read+write on host via templates/ symlink in malicious image 21.08.2026 9.9
CVE-2026-48753 Incus has an arbitrary file write via path traversal in S3 multipart upload 21.08.2026 9.9
CVE-2026-48749 Incus has an arbitrary file read+write on host via rootfs/ symlink in malicious image 21.08.2026 9.9
CVE-2026-48750 Incus has an arbitrary file write on host via `exec-output` symlink in crafted image 21.08.2026 9.9
CVE-2026-77812 Cleartext Exposure of DJI Drone Wi-Fi Credentials via BLE 21.08.2026 9.4
CVE-2026-77806 21.08.2026 9.8
CVE-2026-76613 Joomla Extension - yootheme.com - Authenticated, privileged SQL injection in YOOtheme Pro 1.0.0-5.0.40 21.08.2026 9.2
CVE-2026-77776 Headroom Proxy Treats the Client-Supplied x-headroom-user-id Header as an Authenticated Identity 21.08.2026 9.3
CVE-2026-77086 SiYuan before v3.7.4 Path Traversal via packageName 21.08.2026 9.4
CVE-2026-77683 Comfast CF-N1-S mbox-config system command injection 21.08.2026 9.4
CVE-2026-77264 Automation Web Platform <= 4.8.6 - Unauthenticated Authentication Bypass via 'otp_transient' Token Disclosure 21.08.2026 9.8
CVE-2026-76158 Datiphy Data Management Center - External Control of File Name or Path 21.08.2026 9.3
CVE-2026-76155 Datiphy Data Management Center - Use of Default Credentials 21.08.2026 9.3
CVE-2026-76156 Datiphy Data Management Center - Improper Neutralization of Special Elements used in an OS Command 21.08.2026 9.4
CVE-2026-77649 21.08.2026 9.8
CVE-2026-77650 21.08.2026 9.8
CVE-2026-77651 21.08.2026 9.8
CVE-2026-77647 20.08.2026 9.8
CVE-2026-18835 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.9
CVE-2026-77645 Critical Remote Code Execution (RCE) vulnerability reported in Windchill 21.08.2026 9.2
CVE-2026-17122 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-17136 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-17141 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-17142 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-17145 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-17152 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-17157 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-17160 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-17422 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.3
CVE-2026-72843 EverShop Missing Authorization on PATCH /api/customers/:id Allows Unauthenticated Account Takeover 21.08.2026 9.3
CVE-2026-77644 Critical Bypass Access Control Vulnerability Reported for Windchill Risk and Reliability (WRR) Enterprise Edition 20.08.2026 9.3
CVE-2026-17040 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-17118 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-55769 CloudNativePG: Overriding operators can lead to privilege escalation in CloudNativePG for SQL queries without a fixed `search_path` 21.08.2026 9.4
CVE-2026-62834 Azure Data Factory Elevation of Privilege Vulnerability 21.08.2026 9.3
CVE-2026-63509 Microsoft Fabric Elevation of Privilege Vulnerability 21.08.2026 9.9
CVE-2026-65770 Azure Managed Instance for Apache Cassandra Remote Code Execution Vulnerability 21.08.2026 10
CVE-2026-65801 Microsoft Exchange Online Elevation of Privilege Vulnerability 21.08.2026 10
CVE-2026-65816 Azure Arc Elevation of Privilege Vulnerability 20.08.2026 10
CVE-2026-66309 Azure SQL Database Elevation of Privilege Vulnerability 21.08.2026 9.1
CVE-2026-68782 Azure SQL Database Elevation of Privilege Vulnerability 21.08.2026 9.9
CVE-2026-68789 Azure SQL Database Elevation of Privilege Vulnerability 21.08.2026 9.9
CVE-2026-69400 Azure Logic Apps Elevation of Privilege Vulnerability 21.08.2026 9.6
CVE-2026-69555 Azure Arc Elevation of Privilege Vulnerability 21.08.2026 10
CVE-2026-69836 Microsoft Entra ID Remote Code Execution Vulnerability 21.08.2026 10
CVE-2026-69851 Microsoft Entra ID Elevation of Privilege Vulnerability 21.08.2026 9.9
CVE-2026-71485 Centrifugo: Client-forgeable headers emulation lets any client spoof headers forwarded to proxy backends 20.08.2026 9.1
CVE-2026-67567 Multicloud-operators-subscription: multicloud-operators-subscription: helmrelease chart applied with controller sa without gvk or namespace restriction 20.08.2026 9.9
CVE-2026-19586 Pre-Authentication OS Command Injection in Omada Gateways on OpenVPN Server in Omada Gateways 21.08.2026 9.3
CVE-2026-66785 Submariner: submariner: unvalidated endpoint.spec.subnets propagated into wireguard allowedips / ipsec enables traffic hijack 20.08.2026 9.9
CVE-2026-66788 Lighthouse: lighthouse: arbitrary local-namespace injection via attacker-controlled labelsourcenamespace 20.08.2026 9.9
CVE-2026-77148 Comfast CF-N1-S Web Management mbox-config sub_44B50C stack-based overflow 20.08.2026 9.4
CVE-2026-2334 ) Missing Server-Side File Extension Validation in vsDesk 20.08.2026 9.4
CVE-2026-63385 Libevent: HTTP header handling bugs create risk of access control bypass. 20.08.2026 9.2
CVE-2026-63382 libevent evhttp: Multiple HTTP Parser Bugs Enable Request Smuggling 20.08.2026 9.2
CVE-2026-53424 Missing one-time-use enforcement in Samly allows replay of SAML bearer assertions 20.08.2026 9.1
CVE-2026-73251 Mongoose Built-in TLS: CA-bundle certificate chain accepted without any signature verification 20.08.2026 9.3
CVE-2026-73253 Mongoose: TLS Hostname Verification Bypass via Overly Permissive Wildcard Matching 20.08.2026 9.1
CVE-2026-73256 Mongoose: HTTP/1.0 detection off-by-one enables request smuggling via chunked TE 20.08.2026 9.1
CVE-2026-73257 Mongoose: Content-Length + Transfer-Encoding coexistence enables request smuggling 20.08.2026 9.1
CVE-2026-55642 dbx: Unauthenticated arbitrary SQL execution in dbx-web (authentication fails open when no password is configured) 20.08.2026 9.8
CVE-2026-71428 unstructured: Server-Side Request Forgery in the URL-based partitioning 20.08.2026 9.3
CVE-2026-77022 Comfast CF-N1-S SSID Configuration mbox-config sub_44B438 stack-based overflow 20.08.2026 9.4
CVE-2026-18265 OSNEXUS QuantaStor Missing Authentication Remote Code Execution Vulnerability 20.08.2026 9.8
CVE-2026-16926 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.1
CVE-2026-15706 Missing Authentication for Critical Function in Management API in Baylan Water Meters's BMS 20.08.2026 9.8
CVE-2026-28164 WordPress Easy Elementor Addons plugin <= 2.3.7 - Cross Site Request Forgery (CSRF) vulnerability 20.08.2026 9.6
CVE-2025-15688 WordPress Capella theme <= 2.5.5 - SQL Injection vulnerability 20.08.2026 9.3
CVE-2025-15689 WordPress Capella theme <= 2.5.5 - Privilege Escalation vulnerability 20.08.2026 9.8
CVE-2026-66583 WordPress Forminator plugin <= 1.57.0 - PHP Object Injection vulnerability 20.08.2026 9.8
CVE-2026-66592 WordPress rtMedia for WordPress, BuddyPress and bbPress plugin <= 4.7.11 - SQL Injection vulnerability 20.08.2026 9.3
CVE-2026-66593 WordPress Security & Malware scan by CleanTalk plugin <= 2.184 - SQL Injection vulnerability 20.08.2026 9.3
CVE-2026-66600 WordPress Media LIbrary Assistant plugin <= 3.39 - Arbitrary File Upload vulnerability 20.08.2026 9.1
CVE-2026-66609 WordPress TheGem (Elementor) theme <= 5.12.3 - SQL Injection vulnerability 20.08.2026 9.3
CVE-2026-66649 WordPress Directory Pro plugin <= 2.5.8 - SQL Injection vulnerability 20.08.2026 9.3
CVE-2026-66672 WordPress Flatastic theme <= 2.0 - PHP Object Injection vulnerability 20.08.2026 9.8
CVE-2026-66680 WordPress Locatoraid Store Locator plugin <= 3.9.72 - SQL Injection vulnerability 20.08.2026 9.3
CVE-2026-66682 WordPress Abandoned Cart Pro for WooCommerce plugin <= 10.4.0 - Privilege Escalation vulnerability 20.08.2026 9.8
CVE-2026-68566 WordPress BookingPress Appointment Booking Pro plugin <= 6.0.2 - SQL Injection vulnerability 20.08.2026 9.3
CVE-2026-73992 WordPress Query Wrangler plugin <= 1.5.57 - Remote Code Execution (RCE) vulnerability 20.08.2026 9.9
CVE-2026-73993 WordPress FundEngine plugin <= 1.7.9 - PHP Object Injection vulnerability 20.08.2026 9.8
CVE-2026-74001 WordPress User Registration & Membership Pro plugin <= 5.4.5 - Account Takeover vulnerability 20.08.2026 9.8
CVE-2026-74014 WordPress IT Residence theme <= 3.2.1 - Arbitrary File Upload vulnerability 20.08.2026 9.9
CVE-2026-74016 WordPress Smart Cleaning theme <= 4.8.6 - Arbitrary File Upload vulnerability 20.08.2026 9.9
CVE-2026-74018 WordPress Warehouse Cargo theme <= 2.6.9 - Arbitrary File Upload vulnerability 20.08.2026 9.9
CVE-2026-11861 Freeipa: idm: ipa: freeipa: obtaining tgs with impersonating cname through trust relationships 20.08.2026 9.6
CVE-2026-13097 Ipa: privilege escalation via krbcanonicalname manipulation due to realm-unaware uniqueness enforcement in freeipa ldap datastore 20.08.2026 9.1
CVE-2026-14950 Frauscher Sensortechnik: FDS102 for FAdC/FAdCi R2 is vulnerable to Insufficient Session Expiration due to flawed session expiration logic 20.08.2026 9.2
CVE-2026-76590 TRENDnet TEW-755AP ssi wan.cgi stack-based overflow 19.08.2026 9.4
CVE-2026-76850 LMDeploy Remote Code Execution via Unsafe Pickle Deserialization in the Disaggregated Serving Peer Connector 21.08.2026 9.3
CVE-2026-76310 Improper Access Control through Embedded Report REST API Requests in Splunk Enterprise 21.08.2026 9.4
CVE-2026-76311 Improper Access Control in Embedded Report Dispatch Archives in Splunk Enterprise 21.08.2026 9.4
CVE-2026-76312 Improper Access Control through Embedded Reports in Splunk Enterprise 21.08.2026 9.4
CVE-2026-76404 Remote Code Execution (RCE) through Deserialization of Untrusted Data in Splunk MCP Server app 20.08.2026 9.1
CVE-2026-76589 TRENDnet TEW-755AP mycli FUN_401000 stack-based overflow 19.08.2026 9.4
CVE-2026-75595 Netty: SNI Routing Bypass via Fragmented TLS ClientHello Causing Fallback to Default SslContext 20.08.2026 9.1
CVE-2026-76584 TRENDnet TV-IP751WIC alphapd set_time.cgi stack-based overflow 20.08.2026 9.4
CVE-2026-53545 Termix: Remote Code Execution via Tunnel Disconnect pkill Command Injection 19.08.2026 9.8
CVE-2026-53546 Termix: Missing authorization in SSH host credential resolution exposes stored credentials 20.08.2026 9.6
CVE-2026-53548 Termix: IDOR — Authenticated user can fetch SSH passwords for hosts owned by other users 19.08.2026 9.6
CVE-2026-16894 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-16903 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.6
CVE-2026-16913 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-16917 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-16919 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-16882 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-16885 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-16834 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-16839 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.4
CVE-2026-16840 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-16845 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-16862 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-16864 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-16872 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-55085 Etherpad: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in etherpad-lite 19.08.2026 9.6
CVE-2026-55089 Etherpad: JWT `admin` claim presence-only check lets non-admin OAuth users invoke every Etherpad HTTP API endpoint 19.08.2026 9.9
CVE-2026-16822 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.3
CVE-2026-22306 Critical flaw impacting OZOLS ERP's automatic update channel 19.08.2026 10
CVE-2026-16687 Power System Buffer Overflow 20.08.2026 9.6
CVE-2026-16835 Power System Improper Certificate Validation 19.08.2026 9.6
CVE-2026-18315 TrueBooker <= 1.2.6 - Unauthenticated Authorization Bypass Through User-Controlled Key to Account Takeover to 'truebooker_wp_user_id' Parameter 19.08.2026 9.8
CVE-2026-70496 Search-v2-operator: search-v2-operator: operator clusterrole is cluster-admin equivalent via impersonate, rbac write, csr approve, and manifestwork 19.08.2026 9.9
CVE-2025-14600 Admin Account Takeover via Path Traversal in vsDesk 19.08.2026 9.3
CVE-2026-62682 Orval: RCE via servers[].url -> unescaped request-URL template literal (with getBaseUrlFromSpecification) 19.08.2026 9.3
CVE-2026-72717 Orval: Import-time RCE via schema default -> zod module-level template literal 19.08.2026 9.3
CVE-2026-62681 Orval: RCE via OpenAPI path -> unescaped request-URL template literal (backtick breakout) 19.08.2026 9.3
CVE-2026-66794 Cluster-proxy-addon: cluster-proxy-addon: unauthenticated ssrf to arbitrary managed-cluster services via public route 19.08.2026 9.3
CVE-2026-71864 Orval: Import-time RCE via header parameter name -> computed-property-key injection in the zod client 19.08.2026 9.3
CVE-2026-71865 Orval: Import-time RCE via query parameter name -> computed-property-key injection in the zod cli 19.08.2026 9.3
CVE-2026-71866 Orval: Import-time RCE via schema property name -> computed-property-key injection in the zod client 19.08.2026 9.3
CVE-2026-71867 Orval: RCE via schema property name -> computed-property-key injection in the MSW mock generator 19.08.2026 9.3
CVE-2026-71868 Orval: Import-time RCE via enum-typed default -> zod module-level template literal 19.08.2026 9.3
CVE-2026-71869 Orval: Import-time RCE via array-items default -> zod module-level template literal 19.08.2026 9.3
CVE-2026-71871 Orval: Import-time RCE via header-parameter default -> zod module-level template literal 19.08.2026 9.3
CVE-2026-72716 Orval: Import-time RCE via query-parameter default -> zod module-level template literal 19.08.2026 9.3
CVE-2026-32475 WordPress Elementor Pro plugin <= 4.2.1 - Arbitrary File Upload vulnerability 20.08.2026 9
CVE-2026-71470 Acm-search-v2-rhel9: search-v2-operator: search cr imageoverride/arguments/envvar flow unsanitized into pods running impersonating sa 20.08.2026 9.1
CVE-2026-72529 21.08.2026 9.3
CVE-2026-72530 21.08.2026 9.5
CVE-2026-75143 FFmpeg Heap Buffer Overflow via RIST Protocol Reader 21.08.2026 9.3
CVE-2026-20030 Cisco Crosswork Security Hardening Release: August 2026 19.08.2026 10
CVE-2026-20231 Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Neutralization of Special Elements Vulnerabilities 20.08.2026 9.9
CVE-2026-20315 Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Access Control Vulnerabilities 20.08.2026 10
CVE-2026-20317 Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Authentication Vulnerabilities 20.08.2026 10
CVE-2026-20318 Cisco Secure Workload Software Security Hardening Release August 2026 - Improper Input Validation Vulnerabilities 20.08.2026 9.6
CVE-2026-20357 Cisco Crosswork Security Hardening Release: August 2026 19.08.2026 10
CVE-2026-20358 Cisco Crosswork Security Hardening Release: August 2026 19.08.2026 10
CVE-2026-20359 Cisco Crosswork Security Hardening Release: August 2026 20.08.2026 9.9
CVE-2026-48024 Wazuh: merged-file header path traversal in cluster sync allows arbitrary file write under WAZUH_PATH in Wazuh manager 19.08.2026 9.1
CVE-2026-48162 Wazuh: cluster peer can read arbitrary master files and forge offline REST API administrator tokens via DAPI tmp_file path injection in Wazuh manager 19.08.2026 9.1
CVE-2026-49441 Wazuh : peer-controlled metadata key in process_files_from_worker non-merged branch allows arbitrary file write under WAZUH_PATH on Wazuh manager 19.08.2026 9.1
CVE-2026-62668 Grav API Plugin: Webhook SSRF via Unrestricted cURL Protocols 19.08.2026 9.4
CVE-2026-16656 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-16816 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.9
CVE-2026-52889 Formie: Server-Side Template Injection in Formie Hidden field defaults 19.08.2026 9.8
CVE-2026-45272 MyBooks: Remote Code Execution via SOCIAL_AUTH Key Name Injection in Python Config File 19.08.2026 9.4
CVE-2026-47187 SSHFS Symlink Escape: Rogue SFTP Server → Local File Read/Write 20.08.2026 9.3
CVE-2026-53451 Ground Station: Unauthenticated arbitrary file write (path traversal) in save-waterfall-snapshot leads to remote code execution 19.08.2026 9.8
CVE-2026-75949 Joomla Extension - cmsjunkie.com - Arbitrary file upload / deletion (path traversal) in J-BusinessDirectory < 6.2.3 19.08.2026 10
CVE-2026-75954 Joomla Extension - cmsjunkie.com - SQL injection in trips search in J-BusinessDirectory < 6.2.3 19.08.2026 9.3
CVE-2026-15065 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.1
CVE-2026-15068 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.9
CVE-2026-71960 Cudy WR3000 2.0 Hard-coded JWT Secret Authentication Bypass via MQTT 19.08.2026 9.3
CVE-2024-58376 Renovate 37.158.0 before 37.199.0 Command Injection via helmv3 20.08.2026 9.3
CVE-2026-16019 SQL Injection in Faydam Innovation's FAYDAM Datalogger 20.08.2026 9.8
CVE-2026-75916 SiYuan XSS-to-RCE via unescaped block metadata in hint popup 19.08.2026 9.3
CVE-2026-75917 SiYuan before v3.7.4 XSS-to-RCE via pathName.ts 20.08.2026 9.3
CVE-2026-76213 phpMyFAQ before 4.1.7 2FA Brute-Force via Session-Scoped Throttle 19.08.2026 9.1
CVE-2026-76214 phpMyFAQ before 4.1.7 WebAuthn Replay Attack via Challenge 21.08.2026 9.1
CVE-2026-76242 stigmem Federation Peer Registration Authentication Bypass 20.08.2026 9.1
CVE-2026-76243 stigmem before 0.9.0a2 Authentication Bypass via Disabled Auth 19.08.2026 9.2
CVE-2026-76244 stigmem-node Insecure Federation Transport Configuration 19.08.2026 9.1
CVE-2026-74803 Joomla Extension - yootheme.com - Unauthenticated arbitrary file upload in Zoo < 4.1.64 21.08.2026 10
CVE-2026-74804 Joomla Extension - yootheme.com - Unauthenticated SQL injection in Zoo < 4.1.64 21.08.2026 9.3
CVE-2026-19490 NetScaler ADC and NetScaler Gateway Security Bulletin for CVE-2026-19490 20.08.2026 9.3
CVE-2026-67364 Joomla Extension - balbooa.com - Pre-auth PHP Code Injection in Balbooa Forms < 2.4.3.2 21.08.2026 10
CVE-2026-66613 WordPress JetEngine plugin <= 3.8.14 - Remote Code Execution (RCE) vulnerability 20.08.2026 9.8
CVE-2026-73183 WordPress Maps Marker Pro plugin <= 4.32 - SQL Injection vulnerability 19.08.2026 9.3
CVE-2026-73185 WordPress NGG Smart Image Search plugin < 4.0.0 - SQL Injection vulnerability 20.08.2026 9.3
CVE-2026-73347 WordPress TrueBooker plugin <= 1.2.6 - Privilege Escalation vulnerability 20.08.2026 9.8
CVE-2026-73364 WordPress Flexible Subscriptions plugin <= 1.8.1 - PHP Object Injection vulnerability 19.08.2026 9.8
CVE-2026-73388 WordPress Nikstore Core plugin <= 1.5 - SQL Injection vulnerability 19.08.2026 9.3
CVE-2026-73389 WordPress Kalles Addons plugin <= 1.0.6 - PHP Object Injection vulnerability 20.08.2026 9.8
CVE-2026-73390 WordPress Total Donations plugin <= 2.0.5 - Privilege Escalation vulnerability 20.08.2026 9.8
CVE-2026-73391 WordPress Total Donations plugin <= 2.0.5 - SQL Injection vulnerability 19.08.2026 9.3
CVE-2026-76008 Comfast CF-N1-S URI Parameter Parsing mbox-config get_para_from_uri stack-based overflow 19.08.2026 10
CVE-2026-76003 UTT HiPER 1200GW formGroupConfig strcpy stack-based overflow 19.08.2026 9.4
CVE-2026-76004 UTT HiPER 1250GW HTTP aspApBasicConfigUrcp strcpy stack-based overflow 19.08.2026 9.4
CVE-2026-11751 20.08.2026 9.1
CVE-2026-75976 TRENDnet TEW-823DRU NVRAM wan.cgi strcpy stack-based overflow 18.08.2026 9.4
CVE-2026-70905 18.08.2026 9.8
CVE-2026-70920 18.08.2026 9.9
CVE-2026-70921 18.08.2026 10
CVE-2026-70926 18.08.2026 9.8
CVE-2026-70953 18.08.2026 9.8
CVE-2026-70954 18.08.2026 9.8
CVE-2026-70958 18.08.2026 9.6
CVE-2026-70970 20.08.2026 9.8
CVE-2026-70976 18.08.2026 9.1
CVE-2026-70977 18.08.2026 9.1
CVE-2026-70978 18.08.2026 9.1
CVE-2026-70979 18.08.2026 9.1
CVE-2026-70980 19.08.2026 9
CVE-2026-70981 19.08.2026 9.1
CVE-2026-70984 19.08.2026 9.1
CVE-2026-70994 20.08.2026 9.1
CVE-2026-70995 20.08.2026 9.8
CVE-2026-70997 20.08.2026 9.1
CVE-2026-70998 20.08.2026 9.3
CVE-2026-71014 18.08.2026 9.1
CVE-2026-71015 18.08.2026 9.1
CVE-2026-71026 19.08.2026 9.1
CVE-2026-71036 18.08.2026 9.1
CVE-2026-71037 19.08.2026 9.3
CVE-2026-71040 19.08.2026 9.8
CVE-2026-71059 19.08.2026 9.9
CVE-2026-71063 19.08.2026 9.6
CVE-2026-71064 18.08.2026 9.6
CVE-2026-71065 18.08.2026 9.3
CVE-2026-71074 19.08.2026 9.8
CVE-2026-71102 19.08.2026 9.1
CVE-2026-71152 18.08.2026 9.8
CVE-2026-71164 19.08.2026 9.8
CVE-2026-71166 20.08.2026 9.4
CVE-2026-71167 20.08.2026 9.4
CVE-2026-73865 19.08.2026 9.1
CVE-2026-73866 19.08.2026 9.1
CVE-2026-73905 19.08.2026 9.8
CVE-2026-73912 19.08.2026 9.8
CVE-2026-73916 19.08.2026 9.1
CVE-2026-73917 19.08.2026 9.1
CVE-2026-73920 20.08.2026 9.4
CVE-2026-73921 19.08.2026 9.8
CVE-2026-73922 19.08.2026 9.1
CVE-2026-73924 19.08.2026 9.1
CVE-2026-73930 19.08.2026 9.9
CVE-2026-60591 20.08.2026 9.1
CVE-2026-60672 20.08.2026 9.8
CVE-2026-60696 19.08.2026 9.8
CVE-2026-60698 19.08.2026 9.8
CVE-2026-60702 19.08.2026 9.9
CVE-2026-60720 21.08.2026 9.9
CVE-2026-60721 20.08.2026 9.8
CVE-2026-60727 19.08.2026 9.8
CVE-2026-60728 19.08.2026 9.1
CVE-2026-60730 19.08.2026 9.9
CVE-2026-60737 20.08.2026 9.1
CVE-2026-60754 20.08.2026 9.1
CVE-2026-60782 20.08.2026 9.8
CVE-2026-60821 21.08.2026 9.8
CVE-2026-60858 20.08.2026 9.8
CVE-2026-60861 20.08.2026 9.6
CVE-2026-60905 20.08.2026 9.6
CVE-2026-60916 19.08.2026 9.9
CVE-2026-60921 21.08.2026 9.8
CVE-2026-60946 21.08.2026 9.8
CVE-2026-60947 21.08.2026 9.8
CVE-2026-60958 21.08.2026 9.8
CVE-2026-60970 21.08.2026 9.8
CVE-2026-60971 21.08.2026 9.8
CVE-2026-60977 21.08.2026 9.8
CVE-2026-60990 21.08.2026 9.9
CVE-2026-60995 21.08.2026 9.9
CVE-2026-61001 21.08.2026 9.6
CVE-2026-61003 21.08.2026 9.9
CVE-2026-61008 20.08.2026 9.1
CVE-2026-61018 21.08.2026 9.8
CVE-2026-61021 20.08.2026 9.9
CVE-2026-61029 20.08.2026 9
CVE-2026-61034 20.08.2026 9.1
CVE-2026-61066 21.08.2026 9.9
CVE-2026-61206 21.08.2026 9.9
CVE-2026-61241 21.08.2026 10
CVE-2026-61248 21.08.2026 9.9
CVE-2026-61258 21.08.2026 9.8
CVE-2026-61272 21.08.2026 9.8
CVE-2026-61317 20.08.2026 9.9
CVE-2026-61318 20.08.2026 9.8
CVE-2026-62452 19.08.2026 9.9
CVE-2026-62457 18.08.2026 9.8
CVE-2026-62463 18.08.2026 9.6
CVE-2026-62512 21.08.2026 9.9
CVE-2026-62539 18.08.2026 9.8
CVE-2026-62541 18.08.2026 9.8
CVE-2026-62543 18.08.2026 9.8
CVE-2026-62544 18.08.2026 9.8
CVE-2026-62582 18.08.2026 9.6
CVE-2026-62585 21.08.2026 9.8
CVE-2026-62588 20.08.2026 9.9
CVE-2026-62592 20.08.2026 9.8
CVE-2026-62608 18.08.2026 9.9
CVE-2026-62609 18.08.2026 9.8
CVE-2026-62610 18.08.2026 9.1
CVE-2026-62611 18.08.2026 9.8
CVE-2026-62613 18.08.2026 9.3
CVE-2026-62614 18.08.2026 9.8
CVE-2026-62617 18.08.2026 9.8
CVE-2026-62618 18.08.2026 9.3
CVE-2026-62621 18.08.2026 9.8
CVE-2026-62622 18.08.2026 9.8
CVE-2026-62624 18.08.2026 9.8
CVE-2026-62626 18.08.2026 9.8
CVE-2026-62629 18.08.2026 9.4
CVE-2026-62630 18.08.2026 9.8
CVE-2026-62632 18.08.2026 9.8
CVE-2026-62633 18.08.2026 9.8
CVE-2026-62634 18.08.2026 9.8
CVE-2026-62635 18.08.2026 9.8
CVE-2026-62637 18.08.2026 9.3
CVE-2026-62638 18.08.2026 9.1
CVE-2026-62639 18.08.2026 9.8
CVE-2026-62640 18.08.2026 9.8
CVE-2026-70668 18.08.2026 9.1
CVE-2026-70669 18.08.2026 9.8
CVE-2026-70670 18.08.2026 9.6
CVE-2026-70673 18.08.2026 9.3
CVE-2026-70689 18.08.2026 9.8
CVE-2026-70730 18.08.2026 9.1
CVE-2026-70739 18.08.2026 9.8
CVE-2026-70740 18.08.2026 9.8
CVE-2026-70741 18.08.2026 9.1
CVE-2026-70745 18.08.2026 9.8
CVE-2026-70817 18.08.2026 9.8
CVE-2026-70846 18.08.2026 9.6
CVE-2026-70854 18.08.2026 9.1
CVE-2026-70855 18.08.2026 9.3
CVE-2026-70862 18.08.2026 9.1
CVE-2026-70871 18.08.2026 9.8
CVE-2026-70872 18.08.2026 9.1
CVE-2026-70873 18.08.2026 9.8
CVE-2026-70876 18.08.2026 9.1
CVE-2026-70880 18.08.2026 10
CVE-2026-70883 18.08.2026 9.1
CVE-2026-70884 18.08.2026 9.1
CVE-2026-62988 Froxlor: Credential and 2FA secret disclosure via Froxlor API endpoints 18.08.2026 9
CVE-2026-67443 FUXA: Unauthenticated guest JWT bypasses Node-RED secure-mode authorization gate (Remote Script Execution) 18.08.2026 9.2
CVE-2026-75877 TRENDnet TV-IP751WIC alphapd FUN_0043372C stack-based overflow 19.08.2026 9.4
CVE-2026-52735 ZEBRA: Consensus divergence via P2SH sigop undercount in pure-Rust disabled-opcode parser 18.08.2026 9.3
CVE-2026-55166 Lemur: any SSO-authenticated user achieves AWS IAM compromise and permanent PKI key access via ACME acme_url SSRF and creator-equality IDOR 18.08.2026 9.9
CVE-2026-47627 20.08.2026 9.8
CVE-2026-50161 libre: Integer overflow in websock_decode() masked frame length check leads to heap buffer overflow 19.08.2026 9.3
CVE-2026-75625 Kraken Agents Peer-to-Peer Download Cache Poisoning via Digest Verification Bypass 18.08.2026 9.1
CVE-2026-71878 Authentication bypass in Integrated Publishing Toolkit 18.08.2026 9.2
CVE-2026-71879 Authentication bypass in Integrated Publishing Toolkit 18.08.2026 9.1
CVE-2026-66780 Submariner-operator: submariner-operator: flat broker trust model grants every spoke full crud on all endpoints, secrets, and endpointslices in broker namespace 18.08.2026 9.9
CVE-2026-18963 Keycloak-services: keycloak-services: unauthenticated account takeover via reset-credentials flow bypass 20.08.2026 9.1
CVE-2026-57580 authentik: Account Takeover via SAML NameID Comment Truncation 18.08.2026 9.4
CVE-2026-52723 ePA 3.x Integration: VAU Server Authentication Bypass via Circular Certificate Trust 18.08.2026 9.1
CVE-2026-67271 19.08.2026 9.8
CVE-2026-45118 MyBB: Contact page reflected XSS 18.08.2026 9.3
CVE-2026-12564 Automation-controller: automation-controller: kubernetes service account token exfiltration via hashicorp vault credential ssrf 18.08.2026 9.6
CVE-2026-45117 MyBB: Installer database configuration RCE 18.08.2026 9.8
CVE-2026-75926 Hugo 0.162.0 to 0.164.x - Node Permission Model Bypass via Default TailwindCSS Child-Process Grant 20.08.2026 9.3
CVE-2026-75856 CodeWhale before 0.8.64 SSRF Bypass via DNS Pinning TOCTOU 18.08.2026 9.2
CVE-2026-59940 Seroval: `seroval.fromJSON()` Promise resolver type confusion invokes attacker-controlled methods during deserialization 18.08.2026 9.8
CVE-2026-32470 WordPress FundEngine plugin <= 1.7.9 - PHP Object Injection vulnerability 18.08.2026 9.8
CVE-2026-32474 WordPress Templatiq plugin <= 0.2.5 - Arbitrary File Upload vulnerability 18.08.2026 9.9
CVE-2026-66627 WordPress GP Premium plugin <= 2.5.5 - Arbitrary File Upload vulnerability 18.08.2026 9.9
CVE-2026-73187 WordPress Sticky Chat Widget plugin <= 1.4.2 - SQL Injection vulnerability 18.08.2026 9.3
CVE-2026-73339 WordPress Modern Events Calendar plugin < 7.35.0 - SQL Injection vulnerability 18.08.2026 9.3
CVE-2026-73341 WordPress RegistrationMagic plugin <= 6.0.9.7 - PHP Object Injection vulnerability 18.08.2026 9.8
CVE-2026-73343 WordPress WP Compress plugin < 7.20.01 - Remote Code Execution (RCE) vulnerability 18.08.2026 10
CVE-2026-73355 WordPress Affiliates Manager plugin <= 2.9.53 - SQL Injection vulnerability 18.08.2026 9.3
CVE-2026-73365 WordPress JetAppointment plugin <= 2.5.2 - SQL Injection vulnerability 18.08.2026 9.3
CVE-2026-73366 WordPress Easy Google Maps plugin <= 1.13.0 - PHP Object Injection vulnerability 18.08.2026 9.8
CVE-2026-73376 WordPress Ultimate Maps by Supsystic plugin < 1.5.0 - PHP Object Injection vulnerability 18.08.2026 9.8
CVE-2026-73380 WordPress Popup by Supsystic plugin <= 1.13.0 - PHP Object Injection vulnerability 18.08.2026 9.8
CVE-2026-73381 WordPress Popup by Supsystic plugin <= 1.13.0 - Broken Authentication vulnerability 18.08.2026 9.1
CVE-2026-73392 WordPress Super Store Finder plugin <= 7.8 - SQL Injection vulnerability 18.08.2026 9.3
CVE-2026-73397 WordPress Youzify plugin <= 1.3.7 - Deserialization of untrusted data vulnerability 18.08.2026 9.8
CVE-2026-73996 WordPress Masteriyo - LMS plugin <= 2.3.2 - Arbitrary File Upload vulnerability 18.08.2026 9.8
CVE-2026-74015 WordPress Readabler plugin < 2.0.18 - SQL Injection vulnerability 18.08.2026 9.3
CVE-2026-75784 TRENDnet TEW-WLC100 HTTP Header nginx FUN_0040da4c stack-based overflow 20.08.2026 10
CVE-2026-28192 WordPress Piotnet Addons For Elementor Pro plugin <= 7.1.67 - Arbitrary File Upload vulnerability 18.08.2026 9.6
CVE-2026-32444 WordPress Cwicly plugin <= 1.4.4 - Remote Code Execution (RCE) vulnerability 18.08.2026 9.9
CVE-2026-32463 WordPress Sync Post With Other Site plugin <= 1.9.3 - Arbitrary File Upload vulnerability 18.08.2026 9.9
CVE-2026-75783 TRENDnet TEW-WLC100P DHCP blobmsg netifd stack-based overflow 18.08.2026 9.4
CVE-2026-74902 SiYuan before v3.7.4 XSS-to-RCE via malicious filename upload 18.08.2026 9.3
CVE-2026-75827 Grav before 2.0.15 Arbitrary File Write via error_log 19.08.2026 9.3
CVE-2026-75828 Grav before 2.0.15 Stored XSS via detectXss() Quote Bypass 18.08.2026 9.3
CVE-2026-75832 Grav API Plugin before 1.0.14 Authorization Bypass 19.08.2026 9.3
CVE-2026-75835 Grav API Plugin before 1.0.14 Missing Authorization 18.08.2026 9.3
CVE-2026-75837 Grav before 2.0.14 Privilege Escalation via Group Access Field 19.08.2026 9.3
CVE-2026-75843 ArcadeDB before 26.8.1 Privilege Escalation via gRPC Transaction 18.08.2026 9.4
CVE-2026-75851 ArcadeDB before 26.8.1 Authentication Bypass via Async Command 18.08.2026 9.4
CVE-2026-75852 ArcadeDB MongoDB wire protocol authentication bypass cross-database 18.08.2026 9.3
CVE-2026-75854 ArcadeDB Redis Wire-Protocol Plugin Missing Authentication 18.08.2026 9.3
CVE-2026-75626 SpiderFoot Stored Cross-Site Scripting via Correlation Titles 19.08.2026 9.3
CVE-2026-75627 Bastillion Authentication Bypass via Path-Prefix Routing Mismatch 18.08.2026 9.3
CVE-2026-15748 Forminator Forms <= 1.56.1 - Unauthenticated Arbitrary File Upload via Forged Upload Field Configuration 18.08.2026 9.8
CVE-2026-75094 COMFAST CF-N1-S CGI mbox-config sub_44B438 os command injection 18.08.2026 9.4
CVE-2026-71424 Onyx: Cross-user OAuth-token leak via /api/mcp/servers* for per-user MCP servers 18.08.2026 9.6
CVE-2026-64849 MLflow: Unauthenticated full-read SSRF in webhook delivery: _validate_webhook_url bypassed via unvalidated HTTP redirects (and DNS rebinding) 20.08.2026 9.3
CVE-2026-47686 vm2: Missing Error.cause Sanitization Enables VM2 Sandbox Escape to RCE 19.08.2026 9.9
CVE-2026-47698 vm2: Sandbox Breakout Using Dangerous Host Proto Mutators 19.08.2026 9.8
CVE-2026-65974 ERPNext: Server-Side Template Injection leading to Remote Code Execution 18.08.2026 9.9
CVE-2026-66795 Managedcluster-import-controller: managedcluster-import-controller: csr auto-approver does not validate certificate subject, signername, or requester identity 18.08.2026 9.1
CVE-2026-75106 OpnForm Editable Submission Secret Derivation via Empty Hashids Salt 21.08.2026 9.3
CVE-2026-75110 MemOS Authentication Bypass via Unset INTERNAL_SERVICE_SECRET 18.08.2026 9.3
CVE-2026-19478 Improper Control of Generation of Code ('Code Injection') in GitLab 17.08.2026 9.4
CVE-2026-71472 Acm-search-v2-rhel9: search-v2-operator: shell-command and sql injection in postgresql-start.sh via cr-supplied work_mem 20.08.2026 9.1
CVE-2026-66792 Multicloud-operators-subscription: multicloud-operators-subscription: isclusteradmin() trusts user-settable annotations on managed clusters 20.08.2026 9.9
CVE-2026-74253 Joomla Extension - regularlabs.com - Unauthenticated RCE through unverified reflected user input in Sourcerer < 14.0.0 17.08.2026 10
CVE-2026-74254 Joomla Extension - joomlack.fr - SQL injection in Page Builder CK < 3.6.5 18.08.2026 9.3
CVE-2026-71479 New API: Integer overflow in quota billing yields negative charges (self-crediting) 17.08.2026 9.1
CVE-2026-75045 18.08.2026 9.1
CVE-2026-64859 New API: User List API Leaks Root User Access Token Leading to Privilege Escalation 17.08.2026 9.1
CVE-2026-55674 Discourse: Cache poisoning/XSS via color scheme cookies 18.08.2026 9.3
CVE-2026-71566 KubeVirt backend is not authenticated 17.08.2026 9.3
CVE-2026-14564 Sensitive Data Exposure in Innotim Software's Logsign SIEM 17.08.2026 9
CVE-2026-74843 Wavlink WN531P3/WN535M1 Export Pingortrace CGI export_pingortrace.cgi strcpy stack-based overflow 17.08.2026 10
CVE-2026-74798 SiYuan kernel Path Traversal via database_clean MCP tool 18.08.2026 9.3
CVE-2026-74799 SiYuan before 3.7.4 Unauthenticated Debug Endpoint Information Disclosure 17.08.2026 9.2
CVE-2026-74800 SiYuan before v3.7.4 Stored XSS via assets endpoint 17.08.2026 9.4
CVE-2026-74872 openssl_encrypt before 1.4.0 Arbitrary Code Execution via Whirlpool 18.08.2026 9.3
CVE-2026-74875 openssl_encrypt before 1.4.0 Schema Validation Bypass 17.08.2026 9.3
CVE-2026-74876 openssl_encrypt before 1.4.0 Unverified Key Bundle Encryption 17.08.2026 9.3
CVE-2026-74878 openssl_encrypt before 1.4.0 TOTP Rate Limiter Bypass 17.08.2026 9.3
CVE-2026-74880 openssl_encrypt before 1.4.0 Token Leakage via Query Parameters 17.08.2026 9.3
CVE-2026-74885 openssl_encrypt before 1.4.0 Logging Bug and Race Condition 17.08.2026 9.3
CVE-2026-74886 openssl_encrypt before 1.4.0 Plugin Import Guard Bypass 17.08.2026 9.3
CVE-2026-74887 openssl_encrypt before 1.4.0 Insecure Random Import in PQC Module 18.08.2026 9.3
CVE-2026-74889 openssl_encrypt before 1.4.0 Weak Key Derivation via HKDF 17.08.2026 9.3
CVE-2026-74890 openssl_encrypt before 1.4.0 HMAC Authentication Bypass via Environment Variable 17.08.2026 9.3
CVE-2026-74894 openssl_encrypt before 1.4.0 Authentication Bypass via Bearer Token 17.08.2026 9.3
CVE-2026-74895 openssl_encrypt before 1.4.0 Plugin Sandbox Bypass via Process Isolation 17.08.2026 9.3
CVE-2026-74896 openssl_encrypt before 1.4.0 Sandbox Escape via Dunder Attribute Traversal 17.08.2026 9.3
CVE-2026-74899 openssl_encrypt before 1.4.0 Sandbox Escape via Type Hierarchy 18.08.2026 9.3
CVE-2026-74900 openssl_encrypt before 1.4.0 Weak Shared Secret via PQC Simulation Mode 17.08.2026 9.3
CVE-2026-74901 openssl_encrypt before 1.4.0 Authentication Bypass via AES-CTR Fallback 17.08.2026 9.3
CVE-2026-15623 Authenticated Blind SQL Injection in Google Cloud SecOps SOAR Dashboard Widget Query Service 17.08.2026 9.4
CVE-2026-19977 EFM ipTIME A3004T Session Validation httpcon_check_session_url improper authentication 18.08.2026 10
CVE-2026-19961 Edimax EW-7478APC formWlSiteSurvey buffer overflow 17.08.2026 9.4
CVE-2026-19959 Edimax EW-7478APC formWanTcpipSetup stack-based overflow 18.08.2026 9.4
CVE-2026-73056 SiYuan kernel before 3.7.4 Unthrottled Brute-Force via API Token 17.08.2026 9.3
CVE-2026-73061 Scriban before 7.2.2 Arbitrary Property Write via TypedObjectAccessor 17.08.2026 9.3
CVE-2026-74790 Scriban before 7.0.0 MemberFilter Bypass via TemplateContext Cache 17.08.2026 9.3
CVE-2026-74791 Scriban before 7.0.0 Authorization Bypass via Stale Include Cache 17.08.2026 9.2
CVE-2026-74251 Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filter in Phoca Cart 5.0.0-6.1.6 18.08.2026 9.3
CVE-2024-13784 Contact Form, Survey, Quiz & Popup Form Builder – ARForms <= 1.8.5 - Unauthenticated PHP Object Injection 17.08.2026 9.8
CVE-2026-18316 Solace Extra <= 1.6.0 - Missing Authorization to Unauthenticated Site Content Deletion and Unauthorized Demo Import via action-import-zip AJAX Action 17.08.2026 9.1
CVE-2026-14524 ProSolution WP Client <= 2.0.8 - Unauthenticated Arbitrary File Deletion via 'newfilename' and 'filename' Parameters 17.08.2026 9.1
CVE-2026-16098 ProSolution WP Client <= 2.0.10 - Unauthenticated Arbitrary File Upload via Content-Disposition Header Filename Override 18.08.2026 9.8
CVE-2026-18432 Frontend Admin by DynamiApps <= 3.29.9 - Unauthenticated Privilege Escalation via 'item_id' Parameter 18.08.2026 9.8
CVE-2026-19924 Tenda AC10 httpd R7WebsSecurityHandler improper authentication 19.08.2026 9.3
CVE-2026-73041 SiYuan before v3.7.4 Remote Code Execution via PDF Annotations 17.08.2026 9.4
CVE-2026-73042 SiYuan before v3.7.4 Remote Code Execution via Menu Metadata 17.08.2026 9.4
CVE-2026-73043 SiYuan before v3.7.4 Remote Code Execution via Template Calculation 17.08.2026 9.4
CVE-2026-73044 SiYuan before v3.7.4 Stored Cross-Site Scripting via Column Width 17.08.2026 9.4
CVE-2026-73046 SiYuan before v3.7.4 Authentication Bypass via HTTP Basic Auth 17.08.2026 9.3
CVE-2026-73050 SiYuan before v3.7.4 Stored XSS via select option color 17.08.2026 9.4
CVE-2026-73052 SiYuan before v3.7.4 Stored XSS via Attribute-View Field Names 17.08.2026 9.4
CVE-2026-73053 SiYuan before v3.7.4 Cross-Site Scripting via unicode2Emoji 18.08.2026 9.4
CVE-2026-73055 Shescape before 2.1.15 Home Directory Disclosure via BusyBox 17.08.2026 9.3
CVE-2026-74764 Path Traversal in TAR Archive Extraction Allows Arbitrary File Write in Pandora 17.08.2026 10
CVE-2026-18855 Link Library <= 7.9.4 - Unauthenticated Arbitrary File Deletion via link_url Parameter 17.08.2026 9.1
CVE-2026-19598 Pods <= 3.3.9 - Unauthenticated Privilege Escalation via Authorization Bypass to Admin Methods via 'pods_admin' AJAX Router 17.08.2026 9.8
CVE-2026-19901 LB-LINK X-PRO easycwmp hard-coded credentials 18.08.2026 9.2
CVE-2026-19900 LB-LINK X-PRO shadow hard-coded credentials 17.08.2026 9.2
CVE-2026-74473 vxlan: use pskb_network_may_pull() in route_shortcircuit() 19.08.2026 9.8
CVE-2026-74474 vxlan: use pskb_network_may_pull() for transmit path header pulls 17.08.2026 9.8
CVE-2026-74475 vxlan: use neigh_ha_snapshot() in route_shortcircuit() 19.08.2026 10
CVE-2026-74476 veth: convert frag_list skbs before running XDP 17.08.2026 9.1
CVE-2026-74478 um: vector: fix use-after-free in vector_mmsg_rx() 19.08.2026 9.8
CVE-2026-74480 net: bridge: stop fast-leave after deleting a port group 19.08.2026 9.8
CVE-2026-74493 net/smc: fix socket use-after-free during link group termination 19.08.2026 9.8
CVE-2026-74495 igbvf: Fix leak in TX DMA error cleanup 19.08.2026 9.8
CVE-2026-74517 KVM: x86: Cancel delayed I/O APIC EOI handling before destroying vCPUs 17.08.2026 9.3
CVE-2026-74521 ksmbd: use memcmp() to compare ClientGUIDs 17.08.2026 9.1
CVE-2026-74545 rtase: fix double free of multi-frag skb on DMA map failure 17.08.2026 9.8
CVE-2026-74556 scsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer 19.08.2026 9.8
CVE-2026-74568 KVM: arm64: vgic: Fix race between LPI release and re-registration 17.08.2026 9.3
CVE-2026-74569 netfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp() 19.08.2026 9.8
CVE-2026-74570 ntfs: harden runlist realloc size calculations 17.08.2026 9.8
CVE-2026-74573 iommu/arm-smmu-v3-iommufd: Require exactly one Stream ID for a vDEVICE 17.08.2026 9.3
CVE-2026-16142 TrueBooker <= 1.2.6 - Unauthenticated Account Takeover via Insecure Direct Object Reference in 'truebooker_wp_user_id' Parameter 17.08.2026 9.8
CVE-2026-15826 User Profile Builder <= 3.16.4 - Unauthenticated Authentication Bypass via Type Confusion to Administrator Account Takeover via 'username' Parameter 17.08.2026 9.8
CVE-2026-72496 RDMA/bnxt_re: Proper rollback if the ioremap fails 17.08.2026 9.2
CVE-2026-74255 tipc: fix UAF in tipc_l2_send_msg() 17.08.2026 9.8
CVE-2026-74267 net/sched: sch_codel: Do not call qdisc_tree_reduce_backlog during peek before restoring qlen 17.08.2026 9.8
CVE-2026-74268 tcp: clear sock_ops cb flags before force-closing a child socket 17.08.2026 9.8
CVE-2026-74269 bnxt: fix head underflow on XDP head-grow 17.08.2026 9.8
CVE-2026-74279 crypto: cavium/cpt - fix DMA cleanup using wrong loop index 17.08.2026 10
CVE-2026-74280 crypto: marvell/octeontx - fix DMA cleanup using wrong loop index 17.08.2026 10
CVE-2026-74287 sctp: validate embedded address parameter length 17.08.2026 9.1
CVE-2026-74309 vdpa/octeon_ep: fix IRQ-to-ring mapping in interrupt handler 17.08.2026 10
CVE-2026-74310 vhost/net: complete zerocopy ubufs only once 17.08.2026 9.3
CVE-2026-74315 lockd: Avoid hashing uninitialized bytes in nlm4svc_lookup_file() 17.08.2026 9.8
CVE-2026-74345 RDMA/siw: Fix endpoint/socket association handling 17.08.2026 9.8
CVE-2026-74350 ocfs2: validate fast symlink target during inode read 17.08.2026 9.8
CVE-2026-74361 nvme: fix FDP fdpcidx bounds check 17.08.2026 9.8
CVE-2026-74376 md/raid10: reset read_slot when reusing r10bio for discard 17.08.2026 9.8
CVE-2026-74384 nvme-multipath: fix flex array size in struct nvme_ns_head 17.08.2026 9.8
CVE-2026-74394 RDMA/srpt: fix integer overflow in immediate data length check 17.08.2026 9.8
CVE-2026-74398 ipv6: addrconf: bail out of dad_failure when state is no longer POSTDAD 17.08.2026 9.8
CVE-2026-74401 dlm: fix add msg handle in send_queue ordered 17.08.2026 9.8
CVE-2026-74406 vxlan: Fix potential null-ptr-deref in vxlan_gro_prepare_receive(). 17.08.2026 9.8
CVE-2026-74427 afs: Fix netns teardown to cancel the preallocation charger 17.08.2026 9.8
CVE-2026-74428 rxrpc: Fix double unlock in rxrpc_recvmsg() 17.08.2026 9.8
CVE-2026-74433 rxrpc: Fix UAF in rxgk_issue_challenge() 17.08.2026 9.8
CVE-2026-74434 rxrpc: Don't move a peeked OOB message onto the pending queue 17.08.2026 9.8
CVE-2026-74436 rxrpc: serialize kernel accept preallocation with socket teardown 17.08.2026 9.8
CVE-2026-74439 iommu/vt-d: Clear Present bit before tearing down scalable-mode context entry 17.08.2026 9.3
CVE-2026-68457 ksmbd: use opener credentials for FSCTL mutations 18.08.2026 9.1
CVE-2026-68476 ipvs: reload ip header after head reallocation 17.08.2026 9.8
CVE-2026-68477 ipvs: fix more places with wrong ipv6 transport offsets 17.08.2026 9.8
CVE-2026-72014 drbd: reject data replies with an out-of-range payload size 17.08.2026 9.8
CVE-2026-72020 ipvs: reset full ip_vs_seq structs in ip_vs_conn_new 17.08.2026 9.8
CVE-2026-72033 orangefs: keep the readdir entry size 64-bit in fill_from_part() 17.08.2026 9.8
CVE-2026-72041 espintcp: use sk_msg_free_partial to fix partial send 17.08.2026 9.8
CVE-2026-72046 gve: fix header buffer corruption with header-split and HW-GRO 17.08.2026 9.8
CVE-2026-72064 net: mana: Sync page pool RX frags for CPU 17.08.2026 9.8
CVE-2026-72065 net: mana: Validate the packet length reported by the NIC 17.08.2026 9.8
CVE-2026-72069 locking/rt: Fix the incorrect RCU protection in rt_spin_unlock() 17.08.2026 9.8
CVE-2026-72083 scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE 17.08.2026 9.8
CVE-2026-72084 scsi: target: Bound PR-OUT TransportID parsing to the received buffer 17.08.2026 9.8
CVE-2026-72085 scsi: xen: scsiback: Free unsubmitted command instead of double-putting it 17.08.2026 9.3
CVE-2026-72098 dm-verity: fix buffer overflow in FEC calculation 17.08.2026 9.8
CVE-2026-72129 nvmet-rdma: handle inline data with a nonzero offset 17.08.2026 9.8
CVE-2026-72130 nvmet-auth: reject short AUTH_RECEIVE buffers 17.08.2026 9.8
CVE-2026-72137 xfrm: nat_keepalive: avoid double free on send error 17.08.2026 9.8
CVE-2026-72139 tcp: defer md5sig_info kfree past RCU grace period in tcp_connect 17.08.2026 9.8
CVE-2026-72185 ntfs: fix WARN_ON for resident attribute in ntfs_map_runlist_nolock() 17.08.2026 9.8
CVE-2026-72186 ntfs: make system files immutable to prevent corruption 17.08.2026 9.1
CVE-2026-72188 ntfs: sanitize MFT references returned from ntfs_lookup_inode_by_name() 17.08.2026 9.1
CVE-2026-72191 ntfs3: validate split-point offset in indx_insert_into_buffer 17.08.2026 9.8
CVE-2026-72192 ntfs3: bound to_move in indx_insert_into_root before hdr_insert_head 17.08.2026 9.8
CVE-2026-72194 fs/ntfs3: add depth limit to indx_find_buffer to prevent stack overflow 17.08.2026 9.8
CVE-2026-72199 ntfs: validate resident index root values on lookup 18.08.2026 9.8
CVE-2026-72200 ntfs: detect mapping-pairs LCN accumulator overflow 19.08.2026 9.8
CVE-2026-72201 ntfs: validate index entries on reading 18.08.2026 9.8
CVE-2026-72206 ntfs: validate index block header more strictly 18.08.2026 9.8
CVE-2026-72207 ntfs: not change 0-byte $DATA attribute to non-resident 18.08.2026 9.8
CVE-2026-72208 ntfs: add bounds check before accessing EA entries 18.08.2026 9.8
CVE-2026-72209 ntfs: validate attribute values on lookup 17.08.2026 9.8
CVE-2026-72210 ntfs: fix off-by-one in mapping pairs decoding bounds checks 19.08.2026 9.8
CVE-2026-72211 ntfs: grow index root value before reparent header update 18.08.2026 9.8
CVE-2026-72217 SUNRPC: Bound-check xdr_buf_to_bvec() stores before writing 17.08.2026 9.8
CVE-2026-72220 sunrpc: harden rq_procinfo lifecycle to prevent double-free 17.08.2026 9.8
CVE-2026-72221 sunrpc: wait for in-flight TLS handshake callback when cancel loses race 17.08.2026 9.8
CVE-2026-72222 sunrpc: pin svc_xprt across the asynchronous TLS handshake callback 17.08.2026 9.8
CVE-2026-72226 batman-adv: tt: prevent TVLV OOB check overflow 17.08.2026 9.8
CVE-2026-72234 batman-adv: access unicast_ttvn skb->data only after skb realloc 17.08.2026 9.8
CVE-2026-72239 x86/virt/sev: Revert "Drop WBINVD before setting MSR_AMD64_SYSCFG_SNP_EN" 17.08.2026 9.3
CVE-2026-72248 netfilter: flowtable: support IPIP tunnel with direct xmit 17.08.2026 9.8
CVE-2026-72249 netfilter: flowtable: use dst in this direction when pushing IPIP header 17.08.2026 9.8
CVE-2026-72251 netfilter: nf_nat_sip: reload possible stale data pointer 17.08.2026 9.8
CVE-2026-72277 KVM: arm64: nv: Inject SEA if guest VNCR isn't normal memory 17.08.2026 9.3
CVE-2026-72278 KVM: arm64: nv: Re-translate VNCR before injecting abort 17.08.2026 9.3
CVE-2026-72279 KVM: arm64: nv: Respect read-only PFN when mapping L1 VNCR 17.08.2026 9
CVE-2026-72288 KVM: arm64: vgic: Handle race between interrupt affinity change and LPI disabling 17.08.2026 9.3
CVE-2026-72289 KVM: arm64: vgic: Check the interrupt is still ours before migrating it 17.08.2026 9.3
CVE-2026-72291 KVM: s390: Fix unlikely race in try_get_locked_pte() 17.08.2026 9.3
CVE-2026-72296 net: ife: require ETH_HLEN to be pullable in ife_decode() 17.08.2026 9.1
CVE-2026-72299 tipc: restrict socket queue dumps in enqueue tracepoints 17.08.2026 9.8
CVE-2026-72317 SUNRPC: pin upper rpc_clnt across the TLS connect_worker 17.08.2026 9.8
CVE-2026-72318 cifs: validate DFS referral string offsets 17.08.2026 9.4
CVE-2026-72319 ipvs: ensure inner headers in ICMP errors are in headroom 17.08.2026 9.8
CVE-2026-72320 netfilter: nft_lookup: fix catchall element handling with inverted lookups 17.08.2026 9.1
CVE-2026-72322 ipv6: mcast: Fix potential UAF in MLD delayed work 17.08.2026 9.8
CVE-2026-72323 ipv4: igmp: Fix potential UAF in igmp_gq_start_timer() 17.08.2026 9.8
CVE-2026-72329 net/liquidio: drop cached VF pci_dev LUT 17.08.2026 9.3
CVE-2026-72339 qede: fix off-by-one in BD ring consumption on build_skb failure 17.08.2026 9.8
CVE-2026-72348 netfilter: ip6tables: mark malformed IPv6 extension headers for hotdrop 17.08.2026 9.1
CVE-2026-72351 gue: validate REMCSUM private option length 17.08.2026 9.8
CVE-2026-72355 netfs: Fix barriering when walking subrequest list 17.08.2026 9.8
CVE-2026-72366 netfs: Fix netfs_create_write_req() to handle async cache object creation 17.08.2026 9.8
CVE-2026-72381 ksmbd: fix use-after-free of fp->owner.name in durable handle owner check 17.08.2026 9.8
CVE-2026-72393 eth: fbnic: don't cache shinfo across skb realloc 17.08.2026 9.8
CVE-2026-72398 sctp: add INIT verification after cookie unpacking 17.08.2026 9.8
CVE-2026-72399 net: enetc: check the number of BDs needed for xdp_frame 17.08.2026 9.8
CVE-2026-72407 geneve: validate inner network offset in geneve_gro_complete() 17.08.2026 10
CVE-2026-72408 geneve: gate GRO hint in geneve_gro_complete() on gs->gro_hint 17.08.2026 10
CVE-2026-72412 s390/mm: Fix handling of _PAGE_UNUSED pte bit 17.08.2026 9.3
CVE-2026-72417 netfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto() 17.08.2026 9.8
CVE-2026-72421 ipv4: fib: Don't ignore error route in local/main tables. 17.08.2026 10
CVE-2026-72422 ksmbd: fix use-after-free of conn->preauth_info in concurrent SMB2 NEGOTIATE 17.08.2026 9.8
CVE-2026-72429 ipv6: ioam: fix type confusion of dst_entry 17.08.2026 9.8
CVE-2026-72436 netfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types 17.08.2026 9.8
CVE-2026-72442 netfilter: flowtable: fix and simplify IP6IP6 tunnel handling 17.08.2026 9.8
CVE-2026-72451 xfrm: Fix xfrm state cache insertion race 17.08.2026 9.8
CVE-2026-72463 xfrm: Fix dev use-after-free in xfrm async resumption 17.08.2026 9.8
CVE-2026-72466 xprtrdma: Fix bcall rep leak and unbounded peek 17.08.2026 9.8
CVE-2026-72472 nfs: use nfsi->rwsem to protect traversal of the file lock list 17.08.2026 9.8
CVE-2026-72473 xprtrdma: Decouple req recycling from RPC completion 17.08.2026 9.8
CVE-2026-72477 fs/ntfs3: call _ntfs_bad_inode() when failing to rename 17.08.2026 9.8
CVE-2026-72491 net/9p: fix race condition on rdma->state in trans_rdma.c 17.08.2026 9.8
CVE-2026-72493 net: serialize netif_running() check in enqueue_to_backlog() 17.08.2026 9.9
CVE-2026-72494 RDMA/irdma: Replace waitqueue and flag with completion 17.08.2026 9.8
CVE-2026-72495 RDMA/bnxt_re: Avoid repeated requests to allocate WC pages 17.08.2026 9.3
CVE-2026-14484 RapiSafe <= 1.0.4 - Unauthenticated Arbitrary File Deletion via 'rsmfcf7_session' and 'file_name' Parameters 17.08.2026 9.1
CVE-2026-15303 6Storage Rentals <= 2.27.0 - Unauthenticated Account Takeover via 'email' Parameter 17.08.2026 9.8
CVE-2026-15341 User Session Synchronizer <= 1.4.0 - Unauthenticated Authentication Bypass to Account Takeover via 'ussync-key', 'ussync-token', and 'ussync-ref' Parameters 17.08.2026 9.8
CVE-2026-73683 Laravel Socialite Facebook Provider Authentication Bypass via Nonce Replay 18.08.2026 9.2

Latest Updates

CVE Title Updated Score
CVE-2026-50278 iccDEV: CIccEmbedIO::Read8() size_t underflow 21.08.2026 6.5
CVE-2026-63343 Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesystem access as root 21.08.2026 9.9
CVE-2026-77087 Paperclip before 0.3.1 Remote Code Execution via DNS Rebinding 21.08.2026
CVE-2026-77814 Infinite Image Browsing is_path_trusted Prefix Comparison Omits the Trailing Path Separator 21.08.2026
CVE-2026-77815 Infinite Image Browsing Resolves Paths With normpath, Allowing Symlink Escape From Scanned Directories 21.08.2026
CVE-2026-48754 Incus: Nil-pointer dereference in createDependentVolumesFromBackup on disk.{Volume,VolumeSnapshots,Pool} 21.08.2026
CVE-2026-48755 Incus has an argument injection in backup compression algorithm leading to AFW and ACE 21.08.2026 9.9
CVE-2026-48769 Incus has an arbitrary file write on its client due to trusted image hash 21.08.2026 9.9
CVE-2026-55621 Incus has a project restriction bypass for custom volume copy across projects 21.08.2026 7.7
CVE-2026-55622 Incus has a project restriction bypass in instance copy across projects 21.08.2026 7.7
CVE-2026-62313 Incus: Project restriction `restricted.containers.privilege=isolated` bypassable by omitting `security.idmap.isolated` 21.08.2026 4.3
CVE-2026-62867 Incus has an argument injection in storage volume block.create_options that leads to arbitrary command execution 21.08.2026 9.9
CVE-2026-62940 Incus has a project restriction bypass via instance migration config override 21.08.2026 9.9
CVE-2026-62941 Incus: Cross-project instance copy bypasses target project restrictions via TOCTOU in config merge 21.08.2026 9.9
CVE-2026-63125 Incus vulnerable to root RCE via image backup.yaml symlink 21.08.2026 9.9
CVE-2026-75501 CVE-2026-75501 21.08.2026
CVE-2026-48751 Incus has a restricted project bypass leading to arbitrary command execution 21.08.2026 9.9
CVE-2026-48752 Incus has arbitrary file read+write on host via templates/ symlink in malicious image 21.08.2026 9.9
CVE-2026-48753 Incus has an arbitrary file write via path traversal in S3 multipart upload 21.08.2026 9.9
CVE-2026-47753 Incus has a Nil-Pointer Dereference Panic via Instance Backup Import (volume omitted) 21.08.2026
CVE-2026-48749 Incus has an arbitrary file read+write on host via rootfs/ symlink in malicious image 21.08.2026 9.9
CVE-2026-48750 Incus has an arbitrary file write on host via `exec-output` symlink in crafted image 21.08.2026 9.9
CVE-2026-48756 Incus: CreateCustomVolumeFromBackup nil-pointer dereference on volume_snapshots[*].expires_at (sibling-field variant of GHSA-r7w7) 21.08.2026
CVE-2026-77812 Cleartext Exposure of DJI Drone Wi-Fi Credentials via BLE 21.08.2026
CVE-2026-15580 PassPortal browser extension: vault token disclosure via unvalidated postMessage 21.08.2026
CVE-2026-75946 OMEN Gaming Hub – Potential Escalation of Privilege & Information Disclosure 21.08.2026
CVE-2026-77806 21.08.2026 9.8
CVE-2026-59654 Apache CloudStack: DoS caused by database connections leak 21.08.2026
CVE-2026-75115 Joomla Extension - yootheme.com - Authenticated, privileged arbitrary file read in YOOtheme Pro 2.3.0-5.0.40 21.08.2026
CVE-2026-76611 Joomla Extension - yootheme.com - Unauthenticated arbitrary directory listing via the Gallery element in Zoo < 4.1.66 21.08.2026
CVE-2026-76612 Joomla Extension - yootheme.com - Unauthenticated stored XSS via user-controlled fields in Zoo < 4.1.66 21.08.2026
CVE-2026-76613 Joomla Extension - yootheme.com - Authenticated, privileged SQL injection in YOOtheme Pro 1.0.0-5.0.40 21.08.2026
CVE-2026-77028 Joomla Extension - yootheme.com - Reflected XSS and open redirect via the submission redirect parameter in Zoo < 4.1.66 21.08.2026
CVE-2026-77780 Unvalidated bank account and card foreign keys in the Prospero Flow CRM transaction save endpoint allow cross-tenant disclosure of banking identifiers 21.08.2026
CVE-2026-59279 Unbounded persistent session allocation via repeated initialize requests 21.08.2026 7.5
CVE-2026-59308 Semantic Cache Cross-Tenant Isolation Bypass via SHA-256 Truncation 21.08.2026 4.2
CVE-2026-59318 DefaultToolCallingManager Global Resolver Fallback Allows Unadvertised Tool Dispatch via Prompt Injection 21.08.2026 6.5
CVE-2026-77029 Joomla Extension - yootheme.com - Missing CSRF tokens on front-end state changes in Zoo < 4.1.66 21.08.2026
CVE-2026-13176 Eventin < 4.1.21 - Contributor+ Server-Side Request Forgery 21.08.2026 2.7
CVE-2026-15046 LitExtension: Store to WooCommerce Migration <= 1.2.5 - Connector Token Takeover via CSRF 21.08.2026 4.2
CVE-2026-15150 myCred < 3.2.5 - Unauthenticated Payment Bypass via Missing PayPal IPN Receiver Verification in buyCRED 21.08.2026 5.3
CVE-2026-16650 Charitable < 1.8.12 - Unauthenticated Donation Payment-Status Manipulation via Square Webhook Signature Bypass 21.08.2026 5.3
CVE-2026-17559 Content Protector (Passster) < 4.3.9 - Unauthenticated Protected Content Disclosure via REST Path Allowlist Bypass 21.08.2026 5.3
CVE-2026-18356 Limit Login Attempts Reloaded < 3.3.5 - Username Denylist Bypass via Case Variant and Account Email 21.08.2026 3.7
CVE-2026-19848 ProfilePress < 4.17.1 - Unauthenticated Arbitrary Shortcode Execution via Display Name 21.08.2026 6.5
CVE-2026-77759 IDOR and missing authorization in the Prospero Flow CRM transaction API allow cross-tenant reading of financial records 21.08.2026
CVE-2026-77775 Headroom Proxy Sends Upstream Requests to a Client-Supplied Base URL Without Address Validation 21.08.2026 8.6
CVE-2026-77776 Headroom Proxy Treats the Client-Supplied x-headroom-user-id Header as an Authenticated Identity 21.08.2026 9.1
CVE-2026-15576 Agent receiver accepts mTLS requests without a client certificate 21.08.2026
CVE-2026-77086 SiYuan before v3.7.4 Path Traversal via packageName 21.08.2026
CVE-2026-77763 JuiceFS Local Filestore Backend Joins Object Keys onto the Storage Root Without a Containment Check, Allowing Writes Outside the Configured Directory 21.08.2026 6.5
CVE-2026-77767 Reconmap Report Preview Endpoint Is Marked AllowAnonymous, Exposing Every Project and Client Organisation Without Authentication 21.08.2026 7.5
CVE-2026-77768 OpenPanel report.get Returns Any Report by Identifier Without Checking Project Access 21.08.2026 6.5
CVE-2026-77769 OpenPanel report.list Queries Reports by an Unverified dashboardId, Crossing Organization Boundaries 21.08.2026 6.5
CVE-2026-14208 Local Privilege Escalation via Insecure DLL Permissions in Remote Utilities Host <=7.7.3.0 21.08.2026
CVE-2026-77686 Dolibarr Account card.php improper authorization 21.08.2026
CVE-2026-59296 Micrometer StatsD and Logging meter registries line-protocol and log injection vulnerability 21.08.2026 5.9
CVE-2026-77683 Comfast CF-N1-S mbox-config system command injection 21.08.2026
CVE-2026-77761 Cross-Document Parser State Contamination in misp-stix 21.08.2026
CVE-2026-59323 Micrometer Tracing Brave Bridge W3C Baggage propagation DoS vulnerability 21.08.2026 5.3
CVE-2026-47079 Round-trip Corruption via Improper Entity Escaping in xml_builder 21.08.2026
CVE-2026-47080 CDATA Section Breakout via Unsanitised ]]> in xml_builder 21.08.2026
CVE-2026-48590 Element and Attribute Names Injected Verbatim into XML Output in xml_builder 21.08.2026
CVE-2026-77681 CodeAstro Online Job Portal update-profile.php unrestricted upload 21.08.2026
CVE-2026-77751 Path Traversal in MISP Object Template Resolution During STIX Import and Export in misp-stix library 21.08.2026
CVE-2026-77755 Denial of Service in MISP-STIX Import via Malformed or Oversized STIX Documents in misp-stix library 21.08.2026
CVE-2026-47827 CVE-2026-47827 – BOSH CLI Powershell Injection 21.08.2026 7.5
CVE-2026-63046 Apache InLong: Agent Installer — Command Injection to RCE via Default Credentials 21.08.2026
CVE-2026-77710 STIX2 Parser Confusion and Mass Assignment Allow Unauthorized MISP Attribute Metadata Injection in misp-stix library 21.08.2026
CVE-2026-47359 Apache CloudStack: OS Command Injection due to unsanitized mount command 21.08.2026
CVE-2026-50112 Apache CloudStack: RCE and SSRF in direct download, metalink and NFS templates 21.08.2026
CVE-2026-50222 Apache CloudStack: Improper access control in Userdata reference APIs 21.08.2026
CVE-2026-59085 Apache CloudStack: Server-Side Request Forgery (SSRF) vulnerability in webhook module 21.08.2026
CVE-2026-59655 Apache CloudStack: Unauthenticated OAuth provider client-secret disclosure 21.08.2026
CVE-2026-59657 Apache CloudStack: Sensitive Information Disclosure via Cleartext Storage in AsyncJob 21.08.2026
CVE-2026-59780 Apache CloudStack: LDAP provider configuration disclosure 21.08.2026
CVE-2026-59799 Apache CloudStack: Missing Privilege Check in Two-Factor Authentication Disable Flow 21.08.2026
CVE-2026-61397 Apache CloudStack: OAuth2 Token Cross-Request Leak 21.08.2026
CVE-2026-61398 Apache CloudStack: Cross-Site Scripting (XSS) Vulnerability in Instance Reset Password Function in UI 21.08.2026
CVE-2026-61399 Apache CloudStack: Cross-Site Scripting (XSS) Vulnerability in Lock User Function in UI 21.08.2026
CVE-2026-61400 Apache CloudStack: Get and Run Diagnostics Command Injection 21.08.2026
CVE-2026-61422 Apache CloudStack: Authenticated pre-validation SSRF in registerTemplate 21.08.2026
CVE-2026-62440 Apache CloudStack: Improper access control in Kubernetes Service (CKS) cluster manipulation 21.08.2026
CVE-2026-65613 Apache CloudStack: Webhook Deliveries Incorrect Access 21.08.2026
CVE-2026-66721 Apache CloudStack: Authorization issue with listHostTags for domain admins 21.08.2026
CVE-2026-66722 Apache CloudStack: ProjectRole & ProjectRolePermission authorization issue 21.08.2026
CVE-2026-66797 Apache CloudStack: Unauthorised comment creation and disclosure 21.08.2026
CVE-2026-68745 Apache CloudStack: SAML2 Signature Validation Silently Skipped for Cert-less IdP 21.08.2026
CVE-2026-74866 @fastify/busboy vulnerable to CRLF injection via multipart Content-Disposition filename and name 21.08.2026 5.8
CVE-2026-19441 Unauthenticated API Allows Analytics Data Manipulation in IKAS Technology's Rush 21.08.2026 5.3
CVE-2026-77264 Automation Web Platform <= 4.8.6 - Unauthenticated Authentication Bypass via 'otp_transient' Token Disclosure 21.08.2026 9.8
CVE-2026-16323 Authentication Bypass via Execution After Redirect in FuyaSoft's Architect Panel Web Management Panel 21.08.2026 7.5
CVE-2026-73537 21.08.2026
CVE-2025-15671 Welcart e-Commerce < 2.12.1 - Session Fixation via uscesid Parameter 21.08.2026
CVE-2026-13736 NewPath WildApricotPress Add-on – Member Directory <= 1.0.0 - Unauthenticated Member PII Disclosure via REST API 21.08.2026
CVE-2026-14325 Drag and Drop Multiple File Upload for Contact Form 7 < 1.3.9.9 - Admin+ Stored XSS via drag_n_drop_heading_tag Setting 21.08.2026
CVE-2026-14601 Link Whisper < 0.9.7 - Editor+ SQL Injection via domain Parameter 21.08.2026
CVE-2026-16575 Dokan < 5.0.14 - Unauthenticated Commission Settings Disclosure via Store Categories REST Endpoint 21.08.2026
CVE-2026-16576 Dokan < 5.0.14 - Shop Manager+ Arbitrary Plugin Installation/Activation via REST API 21.08.2026
CVE-2026-16577 Dokan < 5.0.14 - Vendor+ Reverse Withdrawal Ledger Manipulation via Client-Supplied Amount 21.08.2026
CVE-2026-16959 Media Library Assistant < 3.40 - Author+ SQL Injection via mla_search_connector 21.08.2026
CVE-2026-16962 Tamara Checkout <= 1.9.9.20 - Unauthenticated Order Status Manipulation 21.08.2026
CVE-2026-18781 Drag and Drop Multiple File Upload for Contact Form 7 < 1.3.9.9 - Unauthenticated RCE via Control Character Filename Bypass 21.08.2026
CVE-2026-19085 Copy & Delete Posts < 1.5.6 - Author+ Password-Protected Post Content Disclosure 21.08.2026
CVE-2026-19435 Copy & Delete Posts < 1.5.6 - Authenticated Arbitrary Post Content and Password Disclosure 21.08.2026
CVE-2026-75796 AI Engine 2.8.0 - 3.6.0 - Admin+ Multisite Network Administrator Account Takeover via MCP User Tools 21.08.2026
CVE-2026-45201 GPU DDK - Incorrect page size validation in PhysmemNewRamBackedPMR could lead to OOB read and/or write of arbitrary physical memory 21.08.2026
CVE-2026-45202 GPU DDK - Silent High-Order CMA Memory Leak & Double Free in `_FreeOSPages_Fast` 21.08.2026
CVE-2026-18409 WPForms Pro <= 2.0.0.2 - Unauthenticated Stored Cross-Site Scripting via Single Line Text and Paragraph Text Field Values 21.08.2026 7.2
CVE-2026-45199 GPU DDK - rgxfw_to_ptr() does not reject FW private data pointers 21.08.2026
CVE-2026-65644 21.08.2026
CVE-2026-65645 21.08.2026
CVE-2026-73267 Clusterclaims-controller: clusterclaims-controller: managedcluster deletion keyed solely on clusterclaim.spec.namespace with no ownership check 21.08.2026
CVE-2026-76131 21.08.2026 5.3
CVE-2026-76137 21.08.2026 3.3
CVE-2026-76158 Datiphy Data Management Center - External Control of File Name or Path 21.08.2026
CVE-2026-76155 Datiphy Data Management Center - Use of Default Credentials 21.08.2026
CVE-2026-76156 Datiphy Data Management Center - Improper Neutralization of Special Elements used in an OS Command 21.08.2026
CVE-2026-76157 Datiphy Data Management Center - Missing Authentication for Critical Function 21.08.2026
CVE-2026-77391 SourceCodester Dynamic Input Field Generator Using HTML, CSS, and PHP cross-site request forgery 21.08.2026
CVE-2026-77392 SourceCodester Dynamic Input Field Generator Using HTML, CSS, and PHP submit.php saveUser sql injection 21.08.2026
CVE-2026-20679 21.08.2026
CVE-2026-43679 21.08.2026
CVE-2026-77649 21.08.2026 9.8
CVE-2026-77650 21.08.2026 9.8
CVE-2026-77651 21.08.2026 9.8
CVE-2026-16520 20.08.2026
CVE-2026-77113 Path Traversal Vulnerability in apport-unpack 20.08.2026
CVE-2026-77647 20.08.2026 9.8
CVE-2026-77648 20.08.2026 2.2
CVE-2026-18835 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.9
CVE-2026-18840 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 8.2
CVE-2026-18842 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 8.4
CVE-2026-19437 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 8.1
CVE-2026-19442 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 8.2
CVE-2026-19446 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 7.5
CVE-2026-19448 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 6.5
CVE-2026-19449 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 8.8
CVE-2026-19783 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 6.7
CVE-2026-54389 Ghidra < 12.1.3 PDB Parser Uncontrolled Heap Growth DoS via AbstractPdb 21.08.2026
CVE-2026-77645 Critical Remote Code Execution (RCE) vulnerability reported in Windchill 21.08.2026
CVE-2026-77646 Server Side Request Forgery (SSRF) vulnerability reported in Windchill 20.08.2026
CVE-2026-17122 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-17124 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 7.8
CVE-2026-17136 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-17138 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 8.1
CVE-2026-17141 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-17142 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-17145 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-17152 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-17157 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-17159 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 7.5
CVE-2026-17160 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-17163 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 7.5
CVE-2026-17165 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 7.5
CVE-2026-17168 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 8.5
CVE-2026-17170 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 7.5
CVE-2026-17171 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 7.8
CVE-2026-17195 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 6.5
CVE-2026-17422 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.3
CVE-2026-17423 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 7.7
CVE-2026-17424 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 4.8
CVE-2026-17425 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 7.5
CVE-2026-17436 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 8.8
CVE-2026-18670 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 8.2
CVE-2026-18716 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 7.9
CVE-2026-18822 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 4.4
CVE-2026-18824 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 8.4
CVE-2026-18828 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 5.4
CVE-2026-18832 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 8.8
CVE-2026-49217 Mailu missing authentication on PATCH /api/v1/token/<id>, which allows unauthenticated removal of IP restrictions 20.08.2026 7.5
CVE-2026-49244 SFTPGo: Path confinement bypass in public browsable share partial ZIP download 20.08.2026 5.9
CVE-2026-49245 SFTPGo: Stored XSS via inline parameter on public shares and user file download 21.08.2026 3.7
CVE-2026-72818 NLTK TweetTokenizer URL Pattern Backtracks Catastrophically on Naked-Domain-Like Input 21.08.2026
CVE-2026-72843 EverShop Missing Authorization on PATCH /api/customers/:id Allows Unauthenticated Account Takeover 21.08.2026
CVE-2026-72846 Lightdash Scheduled Delivery Webhook URLs Are Not Validated, Allowing Server-Side Request Forgery 21.08.2026 6.4
CVE-2026-72848 langchain-community SitemapLoader Does Not Apply restrict_to_same_domain to Nested Sitemap Index Entries, Allowing Server-Side Request Forgery 20.08.2026 8.6
CVE-2026-77644 Critical Bypass Access Control Vulnerability Reported for Windchill Risk and Reliability (WRR) Enterprise Edition 20.08.2026
CVE-2026-16951 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 6.7
CVE-2026-16952 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 5.5
CVE-2026-16958 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 6.5
CVE-2026-16964 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 6.5
CVE-2026-16972 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 6.5
CVE-2026-16973 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 5.5
CVE-2026-16980 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 6.3
CVE-2026-16989 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 7.1
CVE-2026-16991 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 7.8
CVE-2026-16996 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 8.8
CVE-2026-16997 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 7.8
CVE-2026-17000 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 8.1
CVE-2026-17003 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 7.7
CVE-2026-17006 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 8.3
CVE-2026-17007 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 6.7
CVE-2026-17009 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 4.7
CVE-2026-17024 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 7.7
CVE-2026-17040 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 9.8
CVE-2026-17060 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 8.1
CVE-2026-17118 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 9.8
CVE-2026-17120 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 5.3
CVE-2026-17121 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 7.5
CVE-2026-49436 LinkAce vulnerable to stored XSS via 'javascript:' URI in Bulk Link API 21.08.2026 7.3
CVE-2026-54505 TREK: Stored cross-user HTML injection via trip title in the Journey suggestion banner 20.08.2026
CVE-2026-54508 TREK: Blind SSRF via unvalidated redirect-following in Google/Naver list import and Maps URL resolution 20.08.2026
CVE-2026-54509 TREK IDOR: any authenticated user can read another user's journey share token (full journey leak) 21.08.2026 6.5
CVE-2026-55013 Windows Remote Help Defense Spoofing Vulnerability 21.08.2026 7.1
CVE-2026-55015 Microsoft Remote Help Denial of Service Vulnerability 21.08.2026 5.5
CVE-2026-55769 CloudNativePG: Overriding operators can lead to privilege escalation in CloudNativePG for SQL queries without a fixed `search_path` 21.08.2026
CVE-2026-62834 Azure Data Factory Elevation of Privilege Vulnerability 21.08.2026 9.3
CVE-2026-62945 TREK: Cross-trip reservation title disclosure via file links 21.08.2026 4.3
CVE-2026-63509 Microsoft Fabric Elevation of Privilege Vulnerability 21.08.2026 9.9
CVE-2026-65770 Azure Managed Instance for Apache Cassandra Remote Code Execution Vulnerability 21.08.2026 10
CVE-2026-65801 Microsoft Exchange Online Elevation of Privilege Vulnerability 21.08.2026 10
CVE-2026-65816 Azure Arc Elevation of Privilege Vulnerability 20.08.2026 10
CVE-2026-66309 Azure SQL Database Elevation of Privilege Vulnerability 21.08.2026 9.1
CVE-2026-66800 Azure Data Factory Information Disclosure Vulnerability 21.08.2026 8.6
CVE-2026-68782 Azure SQL Database Elevation of Privilege Vulnerability 21.08.2026 9.9
CVE-2026-68789 Azure SQL Database Elevation of Privilege Vulnerability 21.08.2026 9.9
CVE-2026-69400 Azure Logic Apps Elevation of Privilege Vulnerability 21.08.2026 9.6
CVE-2026-69419 Azure Data Manager for Energy Remote Code Execution Vulnerability 21.08.2026 8.5
CVE-2026-69519 Azure Stack HCI Information Disclosure Vulnerability 21.08.2026 8.6
CVE-2026-69543 Azure Virtual Machines Elevation of Privilege Vulnerability 21.08.2026 8.5
CVE-2026-69555 Azure Arc Elevation of Privilege Vulnerability 21.08.2026 10
CVE-2026-69558 Microsoft Partner Center Information Disclosure Vulnerability 21.08.2026 8.6
CVE-2026-69836 Microsoft Entra ID Remote Code Execution Vulnerability 21.08.2026 10
CVE-2026-69851 Microsoft Entra ID Elevation of Privilege Vulnerability 21.08.2026 9.9
CVE-2026-69855 Microsoft Copilot in Azure Information Disclosure Vulnerability 21.08.2026 7.7
CVE-2026-70105 Microsoft Word Information Disclosure Vulnerability 21.08.2026 6.5
CVE-2025-52182 20.08.2026
CVE-2026-16934 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 8.8
CVE-2026-16935 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 7.8
CVE-2026-16936 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 8.8
CVE-2026-16937 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 7.8
CVE-2026-16943 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 8.2
CVE-2026-16944 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 6.7
CVE-2026-16945 Vulnerabilities in IBM AIX and PowerVM VIOS 20.08.2026 7.8
CVE-2026-16946 Vulnerabilities in IBM AIX and PowerVM VIOS 21.08.2026 7.8
CVE-2026-46355 BigBlueButton: Unauthenticated Session Hijack via Exposed /bigbluebutton/api/handleJoinExistingUser 20.08.2026 7.1
CVE-2026-46682 BigBlueButton: Blind SQL Injection AUTH (Moderator) 20.08.2026 8.5
CVE-2026-50192 Kerberos Hub private key (X-Kerberos-Hub-PrivateKey) leaked to cross-host redirect target due to redirect-following HTTP client without CheckRedirect 21.08.2026
CVE-2026-55489 BigBlueButton: IDOR on BBB through /api/graphql via POST parameter "presentationId" leads to Authentication Bypass 21.08.2026 4.9
CVE-2026-55491 BigBlueButton: Stored XSS in Screenshare Recording Playback via Unescaped Meeting Name 20.08.2026 5.4
CVE-2026-55765 CloudNativePG: Cleartext role passwords recorded in pg_stat_statements allow privileged tenant roles to recover the PostgreSQL superuser credential and achieve RCE in the database pod 20.08.2026 8.5
CVE-2026-55893 Capstone SH disassembler `set_reg_n` heap buffer overflow via crafted SH2A FPU bytecode 20.08.2026
CVE-2026-55894 Capstone SH disassembler `sh_disassemble` out-of-bounds read via crafted SH2A bytecode 21.08.2026
CVE-2026-67448 Mailpit: WebSocket origin check bypass via percent-encoded path (regression of CVE-2026-22689) 21.08.2026 6.5
CVE-2026-72858 20.08.2026
CVE-2026-72860 9router Server-Side Request Forgery via /api/provider-nodes/validate Because the IPv4-Mapped IPv6 Denylist Check Is Unreachable 21.08.2026 8.5