| CVE-2026-19871 |
Use of hard-coded credentials in Prospero Flow CRM employee onboarding |
14.08.2026 |
9.3 |
| CVE-2026-72810 |
SiYuan before v3.7.4 Publish-Boundary Bypass via WebSocket |
14.08.2026 |
9.2 |
| CVE-2026-72811 |
SiYuan before v3.7.4 SQL Injection via backlink search |
14.08.2026 |
9.9 |
| CVE-2026-72822 |
Grav before 1.0.13 Authentication Bypass via disable2fa |
14.08.2026 |
9.3 |
| CVE-2026-72824 |
Grav before 1.0.13 API Key Scope Bypass via PagesController |
14.08.2026 |
9.3 |
| CVE-2026-72826 |
Grav before 1.0.13 Scope Bypass via createApiKey |
14.08.2026 |
9.3 |
| CVE-2026-72829 |
Grav before 1.0.13 API Key Scope Bypass via UsersController |
14.08.2026 |
9.3 |
| CVE-2026-72830 |
Grav API Plugin before 1.0.13 RCE via ConfigController scope bypass |
14.08.2026 |
9.3 |
| CVE-2026-72836 |
FileBrowser before 2.63.19 Case Sensitivity Authentication Bypass |
14.08.2026 |
9.2 |
| CVE-2026-12949 |
Wishlist Member X <= 3.34.1 - Unauthenticated Account Takeover via 'mergewith' Parameter |
14.08.2026 |
9.8 |
| CVE-2026-72839 |
filebrowser through 2.63.16 Privilege Escalation via Signup |
13.08.2026 |
9.3 |
| CVE-2026-72841 |
luci-app-openvpn Path Traversal RCE via instance_name2 |
13.08.2026 |
9.4 |
| CVE-2026-72842 |
OpenWrt luci-app-lxc ACL Inconsistency Authentication Bypass |
13.08.2026 |
9.4 |
| CVE-2026-72850 |
Budibase before 3.40.0 Arbitrary File Write via Path Traversal |
13.08.2026 |
9.4 |
| CVE-2026-72851 |
Budibase before 3.40.0 SQL Injection via Unauthenticated Webhook |
13.08.2026 |
9 |
| CVE-2026-73302 |
Budibase: OIDC SSO account takeover: incoming identity linked by email without checking email_verified |
13.08.2026 |
9 |
| CVE-2026-73420 |
NextAuth.js: Email normalizer validates the address before Unicode normalization, allowing a homoglyph @ bypass |
14.08.2026 |
9.1 |
| CVE-2026-73421 |
NextAuth.js: Configuration errors can cause existence-based auth checks to fail open (auth object populated with an error) |
13.08.2026 |
9.1 |
| CVE-2026-73842 |
OpenChoreo: cluster-gateway internal proxy performs no caller authentication and is not read-only — data-plane Secret disclosure and arbitrary Kubernetes mutation |
13.08.2026 |
9 |
| CVE-2026-73843 |
OpenChoreo: Unauthenticated access to data-plane operations via OpenChoreo cluster-gateway management APIs |
13.08.2026 |
9.6 |
| CVE-2026-73665 |
FreePBX UCP: Unauthenticated remote code execution via socket.io namespace auth bypass and AMI action injection |
13.08.2026 |
9.3 |
| CVE-2026-19750 |
Tenda CH/CP/TX3 SSH hard-coded password |
13.08.2026 |
9.2 |
| CVE-2026-72776 |
AgenticSeek Unauthenticated RCE via /query API Endpoint |
14.08.2026 |
9.3 |
| CVE-2026-73663 |
FreePBX: Unauthenticated SQL injection in FreePBX missedcall via inbound Caller ID name leads to administrator takeover |
13.08.2026 |
9.3 |
| CVE-2026-17482 |
IBM Documentation Offline is vulnerable to information disclosure, session forgery and remote code execution |
13.08.2026 |
9.8 |
| CVE-2026-19297 |
Insufficient Authentication Brute Force Protection on Login Endpoint |
13.08.2026 |
9.1 |
| CVE-2026-8715 |
Vault Secrets Operator vulnerable to arbitrary file read and credential exfiltration via AppRole secretIDPath |
14.08.2026 |
9.6 |
| CVE-2026-19747 |
Tenda CH7 ATE Module Kylin HandleCmd command injection |
14.08.2026 |
9.3 |
| CVE-2026-73656 |
Trigger.dev: Cross-project deployment worker registration can modify another project's deployment state |
13.08.2026 |
9.9 |
| CVE-2026-14525 |
IBM WebSphere Application Server Liberty is affected by an authenication bypass |
13.08.2026 |
9.4 |
| CVE-2026-73653 |
Vitest: Browser Mode provider commands bypass the file-access permission gate |
13.08.2026 |
9.4 |
| CVE-2026-73644 |
OpenDJ: Authorization bypass in SASL PLAIN allowing a `proxied-auth` holder to impersonate any resolvable non-root user without an ACI proxy grant |
13.08.2026 |
9.6 |
| CVE-2026-73649 |
Velocity.js: Remote Code Execution via property-read to Function constructor (bypass of CVE-2026-44966 fix) |
13.08.2026 |
9.8 |
| CVE-2026-73567 |
sm-crypto: Predictable SM2 key generation in Node.js: default RNG uses Math.random + wall clock |
13.08.2026 |
9.1 |
| CVE-2026-67614 |
CyberPanel < 3.0.0 Hard-coded JWT Secret Authentication Bypass via WebTerminal |
14.08.2026 |
9.3 |
| CVE-2026-73532 |
Fluent Forms Pro 6.2.7 Embedded Malicious Code via Tampered Plugin Build |
13.08.2026 |
9.3 |
| CVE-2026-73533 |
Ninja Tables Pro 5.2.11 Embedded Malicious Code via Tampered Plugin Build |
13.08.2026 |
9.3 |
| CVE-2026-53790 |
rsync < 3.5.0 Command Injection via Multiple Code Paths |
14.08.2026 |
9.2 |
| CVE-2026-53791 |
rsync < 3.5.0 Daemon IP Spoofing via PROXY Protocol Header |
14.08.2026 |
9.1 |
| CVE-2026-53793 |
rsync < 3.5.0 Path Confinement Bypass via /./ Boundary Marker in Chroot Mode |
14.08.2026 |
9.1 |
| CVE-2026-70452 |
rsync 3.1.0 < 3.5.0 Access Control Bypass via DNS Resolution Failure |
14.08.2026 |
9.1 |
| CVE-2026-70460 |
rsync 2.3.3 < 3.5.0 Path Traversal via --partial-dir/--backup-dir Symlink |
14.08.2026 |
9.2 |
| CVE-2026-27544 |
WordPress QA Analytics plugin <= 5.2.0.0 - Remote Code Execution (RCE) vulnerability |
13.08.2026 |
10 |
| CVE-2026-28001 |
WordPress WP Directory Kit plugin <= 1.5.4 - SQL Injection vulnerability |
13.08.2026 |
9.3 |
| CVE-2026-28008 |
WordPress OAuth Single Sign On – SSO (OAuth Client) plugin <= 7.0.0 - Broken Authentication vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-28142 |
WordPress Web Directory Free plugin <= 1.7.13 - SQL Injection vulnerability |
13.08.2026 |
9.3 |
| CVE-2026-28148 |
WordPress Headless Single Sign On plugin <= 1.6 - Bypass Vulnerability vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-28149 |
WordPress Headless Single Sign On plugin <= 1.6 - PHP Object Injection vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-28185 |
WordPress Log in with Google plugin <= 1.4.2 - Broken Authentication vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-61962 |
WordPress WP BASE Booking plugin <= 6.3.0 - Arbitrary Code Execution vulnerability |
13.08.2026 |
10 |
| CVE-2026-61966 |
WordPress WPJAM Basic plugin <= 7.0.1 - SQL Injection vulnerability |
13.08.2026 |
9.3 |
| CVE-2026-61967 |
WordPress miniorange otp verification plugin <= 5.5.1 - Privilege Escalation vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-61969 |
WordPress Listdom plugin <= 5.6.0 - SQL Injection vulnerability |
13.08.2026 |
9.3 |
| CVE-2026-66424 |
WordPress SMS Alert Order Notifications plugin <= 3.9.7 - Privilege Escalation vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-66436 |
WordPress Active Products Tables for WooCommerce plugin <= 1.1.1 - SQL Injection vulnerability |
13.08.2026 |
9.3 |
| CVE-2026-66446 |
WordPress If-So Dynamic Content Personalization plugin <= 1.10 - SQL Injection vulnerability |
13.08.2026 |
9.3 |
| CVE-2026-66453 |
WordPress Salon booking system plugin <= 10.30.26 - Broken Authentication vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-66458 |
WordPress RealPress plugin <= 1.1.2 - SQL Injection vulnerability |
13.08.2026 |
9.3 |
| CVE-2026-66465 |
WordPress Cartify theme <= 1.3.0.1 - Account Takeover vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-66472 |
WordPress Everest Backup plugin <= 2.3.12 - SQL Injection vulnerability |
13.08.2026 |
9.3 |
| CVE-2026-66478 |
WordPress Church Admin plugin <= 5.1.1 - SQL Injection vulnerability |
13.08.2026 |
9.3 |
| CVE-2026-66691 |
WordPress Nokri theme <= 1.6.6 - Broken Access Control vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-49827 |
WebErpMesv2 has Unauthenticated RCE via Unrestricted File Upload in HR Expense scan_file (CWE-434) |
13.08.2026 |
9.8 |
| CVE-2026-73483 |
Flowise before 3.1.3 Sandbox Escape via Puppeteer |
13.08.2026 |
9.4 |
| CVE-2026-73485 |
Flowise before 3.1.3 Remote Code Execution via Airtable Agent |
13.08.2026 |
9 |
| CVE-2026-73486 |
Flowise before 3.1.3 Code Injection via CSV Agent customReadCSV |
13.08.2026 |
9 |
| CVE-2026-73487 |
Flowise before 3.1.3 Prompt Injection RCE via CSV Agent |
13.08.2026 |
9 |
| CVE-2026-73601 |
Flowise before 3.1.3 Remote Code Execution via Custom MCP |
13.08.2026 |
9 |
| CVE-2026-73602 |
Flowise before 3.1.3 Sandbox Escape to RCE |
13.08.2026 |
9 |
| CVE-2026-73608 |
SiYuan before v3.7.4 Authorization Bypass via getAttributeViewSearchTarget |
13.08.2026 |
9.2 |
| CVE-2026-59503 |
Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-359: Exposure of Private Personal Information to an Unauthorized Actor |
13.08.2026 |
9.1 |
| CVE-2026-59504 |
Priority – CWE-602: Client-Side Enforcement of Server-Side Security |
13.08.2026 |
9.1 |
| CVE-2026-59506 |
Priority – CWE-306: Missing Authentication for Critical Function |
13.08.2026 |
9.3 |
| CVE-2026-59507 |
Priority – CWE-798: Use of Hard-coded Credentials CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-284: Improper Access Control |
13.08.2026 |
9.3 |
| CVE-2026-59500 |
Priority - CWE-287: Improper Authentication |
13.08.2026 |
10 |
| CVE-2026-15413 |
Link Factory - Backdoor |
13.08.2026 |
10 |
| CVE-2026-49819 |
UpSnap - Unauthenticated Initial-Superuser Takeover Chains to Root RCE via wake_cmd |
13.08.2026 |
9.8 |
| CVE-2026-49481 |
UpSnap vulnerable to Remote Code Execution via IP Field Template Injection in wake_cmd/shutdown_cmd |
13.08.2026 |
9.6 |
| CVE-2026-71193 |
|
13.08.2026 |
9.6 |
| CVE-2026-71471 |
Acm-search-v2-rhel9: search-v2-operator: hub search cr collector.imageoverride propagated to every spoke as arbitrary container image |
13.08.2026 |
9 |
| CVE-2024-27253 |
IBM Engineering Requirements Management DOORS Next is impacted by vulnerability in Reviews delete request |
13.08.2026 |
10 |
| CVE-2026-73501 |
kin-openapi: ValidationHandler.Load() Fail-Open Authentication Bypass via NoopAuthenticationFunc Default |
13.08.2026 |
9.1 |
| CVE-2026-73519 |
WolfStack < 25.9.2 Hard-coded Secret Authentication Bypass via X-WolfStack-Secret |
13.08.2026 |
9.3 |
| CVE-2026-19001 |
MongoDB BI Connector ODBC driver may write outside an allocated buffer when handling oversized catalog object names |
13.08.2026 |
9.5 |
| CVE-2026-66898 |
Path traversal via unvalidated instance name in backup tarball restore enables root file write / RCE |
13.08.2026 |
9.9 |
| CVE-2026-63293 |
Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesystem access as root |
13.08.2026 |
9.9 |
| CVE-2026-63294 |
Root RCE via image backup.yaml symlink |
13.08.2026 |
9.9 |
| CVE-2026-17083 |
IBM i is Affected By Multiple Vulnerabilities in the Debug Server |
13.08.2026 |
9.8 |
| CVE-2026-63296 |
Project restriction bypass via instance migration config override |
13.08.2026 |
9.9 |
| CVE-2026-63297 |
Cross-project instance copy bypasses target project restrictions via TOCTOU in config merge |
13.08.2026 |
9.9 |
| CVE-2026-72508 |
Multicloud-operators-subscription: multicloud-operators-subscription: hub and spoke serviceaccounts bound to wildcard rbac (*/*/*) |
13.08.2026 |
9.9 |
| CVE-2026-73414 |
Shescape: Shell injection via unescaped parentheses on Windows with CMD |
12.08.2026 |
9.2 |
| CVE-2026-19656 |
ScadaLTS Authenticated Remote Code Execution |
12.08.2026 |
9.9 |
| CVE-2026-62420 |
Cross-project cluster migration bypasses project restrictions via cluster notification flag |
12.08.2026 |
9.9 |
| CVE-2026-63300 |
Cross-project instance move bypasses all project restrictions allowing host command execution |
13.08.2026 |
9.9 |
| CVE-2026-72789 |
SiYuan before v3.7.4 Authentication Bypass via Encrypted Notebooks |
12.08.2026 |
9.2 |
| CVE-2026-72793 |
SiYuan before v3.7.4 Information Disclosure via /api/system/getConf |
12.08.2026 |
9.2 |
| CVE-2026-72794 |
siyuan before v3.7.4 Session Cookie Key Disclosure via getConf |
12.08.2026 |
9.2 |
| CVE-2026-72795 |
SiYuan before v3.7.4 Information Disclosure via Embed Block |
12.08.2026 |
9.2 |
| CVE-2026-72798 |
SiYuan before v3.7.4 Information Disclosure via renderAttributeView |
12.08.2026 |
9.2 |
| CVE-2026-72804 |
SiYuan before v3.7.4 Authentication Bypass via Graph Endpoints |
12.08.2026 |
9.2 |
| CVE-2026-73268 |
Cluster-curator-controller: cluster-curator-controller: spec.install.overridejob allows arbitrary job spec injection |
12.08.2026 |
9.9 |
| CVE-2026-73269 |
Cluster-curator-controller: cluster-curator-controller: tenant-controllable trigger creates clusterrolebinding granting cluster-wide secrets access to namespace-local sa |
12.08.2026 |
9.9 |
| CVE-2026-73329 |
CamaleonCMS Stored XSS via Draft Post Title Creation Endpoint |
12.08.2026 |
9.2 |
| CVE-2026-73332 |
CamaleonCMS cama_contact_form Plugin Stored XSS via before_html Field |
12.08.2026 |
9.2 |
| CVE-2026-73407 |
Budibase: Unauthenticated REST Datasource Credential Theft via Cross-Origin Auth Leak (bypass of CVE-2026-48152)) |
12.08.2026 |
9 |
| CVE-2026-73300 |
Budibase: SQL Injection via `multipleStatements: true` |
12.08.2026 |
9.6 |
| CVE-2026-16860 |
IBM i is Affected By Remote Code Execution Vulnerability [] |
12.08.2026 |
9.9 |
| CVE-2026-16956 |
IBM Db2 Mirror for i is vulnerable to OS command injection [] |
12.08.2026 |
9.8 |
| CVE-2026-17218 |
IBM i is Affected By Remote Code Execution Vulnerability in Line Printer Daemon [] |
12.08.2026 |
9.8 |
| CVE-2026-73299 |
Prompty: Server-Side Template Injection to Remote Code Execution in the @prompty/core Nunjucks Renderer |
12.08.2026 |
10 |
| CVE-2026-17276 |
IBM i is Affected By Multiple Vulnerabilities in Navigator for i |
12.08.2026 |
9.6 |
| CVE-2026-73296 |
Microsoft UFO: Unauthenticated Mobile MCP access allows remote Android device control and screen disclosure |
13.08.2026 |
9.4 |
| CVE-2026-73294 |
Semaphore U: OS Command Injection |
12.08.2026 |
9.9 |
| CVE-2026-64639 |
|
12.08.2026 |
9.3 |
| CVE-2026-73263 |
Prowler: RCE on Prowler App workers via kubeconfig auth-provider cmd-path |
12.08.2026 |
9.9 |
| CVE-2026-50561 |
Yuxi has a JWT Authentication Bypass Leading to Cross-Instance Administrator Token Reuse |
13.08.2026 |
9.4 |
| CVE-2026-67285 |
Joomla Extension - joomshaper.com - Unauthenticated arbitrary local PHP file inclusion in SP Page Builder < 6.8.0 |
13.08.2026 |
9.2 |
| CVE-2026-57858 |
Cal.com Cal.diy 6.2.0 Stored XSS via BookingPageTagManager Analytics Tracking ID |
13.08.2026 |
9.3 |
| CVE-2026-67282 |
Joomla Extension - fabrikar.com - Unauthenticated remote code execution in Fabrik < 4.6.8 |
12.08.2026 |
10 |
| CVE-2025-41769 |
Unauthenticated Buffer Overflow in PROFINET Service |
13.08.2026 |
9.3 |
| CVE-2026-66659 |
WordPress Tablesome Table plugin <= 1.2.9 - SQL Injection vulnerability |
12.08.2026 |
9.3 |
| CVE-2026-70398 |
Multicloud-integrations: multicloud-integrations: gitopscluster.spec.argoserver.argonamespace writes spoke bearer tokens to attacker-chosen namespace |
12.08.2026 |
9.6 |
| CVE-2026-72526 |
Multicloud-integrations: multicloud-integrations: pull-model propagation allows hub tenant to target arbitrary spoke cluster via unvalidated ocm-managed-cluster annotation |
12.08.2026 |
9.9 |
| CVE-2026-68431 |
ksmbd: validate minimum PDU size for transform requests |
13.08.2026 |
9.1 |
| CVE-2026-5917 |
libgit2 v0.27.0-v1.9.0 Shell Command Injection via ssh_libssh2 Backend |
12.08.2026 |
9.4 |
| CVE-2026-67568 |
Mira Hormone Monitor, Mira Android App Use of Hard-coded Credentials |
12.08.2026 |
9.3 |
| CVE-2026-68067 |
Mira Hormone Monitor, Mira Android App Weak Authentication |
12.08.2026 |
9.3 |
| CVE-2026-48765 |
TypeBot vulnerable to cross-workspace OAuth credential takeover in updateOAuthCredentials via missing object binding |
12.08.2026 |
9.9 |
| CVE-2026-16230 |
Formidable Digital Signatures <= 3.0.6 - Unauthenticated Arbitrary File Deletion via Signature Field |
11.08.2026 |
9.8 |
| CVE-2026-45618 |
LiquidJS is Vulnerable to Remote Code Execution |
13.08.2026 |
10 |
| CVE-2026-73034 |
DB-GPT v0.8.1 Path Traversal Arbitrary File Write via user_id Header |
13.08.2026 |
9.3 |
| CVE-2026-73032 |
PapersGPT for Zotero 0.6.1 RCE via Unsanitized LLM Response eval() |
11.08.2026 |
9.4 |
| CVE-2026-18691 |
Improper Authentication in MongoDB Intra-Cluster Connections Allows Credential Exposure |
11.08.2026 |
9 |
| CVE-2026-72742 |
DSPy 3.3.0b1 Local File Read via Image/Audio Output Field Parsing |
12.08.2026 |
9.2 |
| CVE-2026-69102 |
MaxKey Hard-coded JWT Secret Unauthorized Access via /login/jwt/trust |
12.08.2026 |
9.3 |
| CVE-2026-27302 |
Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863) |
13.08.2026 |
10 |
| CVE-2026-48381 |
Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89) |
11.08.2026 |
9 |
| CVE-2026-71362 |
Adobe Commerce | Incorrect Authorization (CWE-863) |
12.08.2026 |
9.1 |
| CVE-2026-71398 |
Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863) |
13.08.2026 |
10 |
| CVE-2026-47705 |
TypeBot vulnerable to CSV injection in result export |
13.08.2026 |
9.6 |
| CVE-2026-73090 |
PeerTube: Cross-origin remote video takeover via Update activity |
13.08.2026 |
9.3 |
| CVE-2026-73211 |
PeerTube: Unauthenticated remote SQL injection in ActorFollowModel.updateScore() |
11.08.2026 |
9.8 |
| CVE-2026-12571 |
Authentication Bypass Leading to Account Takeover |
12.08.2026 |
9.8 |
| CVE-2026-50516 |
Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability |
13.08.2026 |
9.4 |
| CVE-2026-59124 |
Microsoft High Performance Computing (HPC) Pack Remote Code Execution Vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-62815 |
Microsoft QUIC Remote Code Execution Vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-62878 |
Windows DNS Server Remote Code Execution Vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-62893 |
Windows Deployment Services TFTP Server Remote Code Execution Vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-65791 |
Windows iSCSI Target Service Remote Code Execution Vulnerability |
13.08.2026 |
9.8 |
| CVE-2026-70306 |
Microsoft Office SharePoint Spoofing Vulnerability |
13.08.2026 |
9.3 |
| CVE-2026-48362 |
ColdFusion | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78) |
12.08.2026 |
10 |
| CVE-2026-71384 |
ColdFusion | Incorrect Authorization (CWE-863) |
12.08.2026 |
9.6 |
| CVE-2026-73080 |
SeaweedFS: Unauthenticated SSRF with response read-back via VolumeServer.FetchAndWriteNeedle |
13.08.2026 |
9.3 |
| CVE-2025-31114 |
Fooocus webui vulnerable to Remote Code Execution |
13.08.2026 |
9.3 |
| CVE-2026-73069 |
Twenty: SQL Injection in the `searchVector` Field Settings Allows Arbitrary PostgreSQL Execution |
11.08.2026 |
9.1 |
| CVE-2026-17061 |
Deserialization of Untrusted Data Vulnerability in SIMULIA Execution Engine from Release 2023 through Release 2026 |
11.08.2026 |
10 |
| CVE-2026-47702 |
TypeBot API tokens stored in plaintext |
11.08.2026 |
9.1 |
| CVE-2026-72920 |
SeaweedFS: Unauthenticated filer IAM gRPC service grants S3 administrative control |
11.08.2026 |
9.8 |
| CVE-2026-46670 |
YesWiki: Unauthenticated SQL Injection |
13.08.2026 |
9.8 |
| CVE-2026-48056 |
Streambert Vulnerable to Arbitrary Binary Execution via Downloader IPC Handler |
11.08.2026 |
10 |
| CVE-2026-48046 |
Streambert Vulnerable to Remote Code Execution (RCE) via Unvalidated Auto-Updater IPC Handler |
13.08.2026 |
9.3 |
| CVE-2026-18972 |
Velociraptor authenticated identity-spoofing vulnerability |
11.08.2026 |
9.6 |
| CVE-2026-58115 |
|
12.08.2026 |
10 |
| CVE-2026-72785 |
Craft CMS before 5.10.6 Authorization Bypass via structures/move-element |
11.08.2026 |
9.3 |
| CVE-2026-13737 |
Command Restriction Bypass |
11.08.2026 |
9.2 |
| CVE-2026-13738 |
Improper Authorization Validation |
11.08.2026 |
9.2 |
| CVE-2026-72550 |
Friendica Friendica - SQL Injection |
11.08.2026 |
9.8 |
| CVE-2026-72599 |
e107 e107 - SQL Injection |
11.08.2026 |
9.8 |
| CVE-2026-72603 |
wg-easy wg-easy - OS Command Injection |
11.08.2026 |
9.9 |
| CVE-2026-58231 |
Improper Authorization in SAP Commerce Cloud (Data Hub Adapter) |
12.08.2026 |
10 |
| CVE-2026-10579 |
Picketlink-federation: auth bypass in picketlink saml unsolicited-response |
11.08.2026 |
9.8 |
| CVE-2026-13716 |
Path Traversal: '.../...//' in Crafty Controller |
11.08.2026 |
9.1 |
| CVE-2026-19516 |
CVE-2026-19516 CVE Record |
12.08.2026 |
9.1 |
| CVE-2026-19425 |
Win Men Intermational|Travel Agency Management System - SQL Injection |
12.08.2026 |
9.3 |
| CVE-2026-34265 |
Memory Corruption vulnerability in Application Server ABAP for SAP NetWeaver and ABAP Platform |
12.08.2026 |
9.8 |
| CVE-2026-44758 |
Code Injection vulnerability in Manufacturing Integration and Intelligence |
11.08.2026 |
9.1 |
| CVE-2026-48161 |
react18-use was vulnerable to malicious code execution via compromised commits |
11.08.2026 |
9.3 |
| CVE-2026-48160 |
react-tracked was vulnerable to malicious code execution via compromised commits |
11.08.2026 |
9.3 |
| CVE-2026-72911 |
ERPNext: Possibility of server-side template injection due to missing validation |
13.08.2026 |
9.9 |
| CVE-2026-14450 |
Maas-billing: maas api: privilege escalation via forged http headers due to missing authentication |
11.08.2026 |
9.9 |
| CVE-2026-18948 |
Feast: feast: unsafe dill deserialization of registry-stored udfs — rce on feature server and registry server |
11.08.2026 |
9.9 |
| CVE-2026-72904 |
Firecrawl: Arbitrary file read via JSON Schema $ref expansion |
11.08.2026 |
9.3 |
| CVE-2026-72901 |
Dokploy: Remote Code Execution via volume-backup |
13.08.2026 |
9.9 |
| CVE-2026-72902 |
Dokploy: Authenticated RCE via Command Injection in registry.testRegistry / registry.testRegistryById |
12.08.2026 |
9.9 |
| CVE-2025-13293 |
Backdoor / default root credentials |
12.08.2026 |
9.3 |
| CVE-2025-13294 |
Unauthenticated SQL Injection |
12.08.2026 |
9.3 |
| CVE-2025-15681 |
Insufficient Webserver Authentication |
12.08.2026 |
9.2 |
| CVE-2026-72880 |
Dokploy: Arbitrary File Write + Remote OS Command Injection via `certificatePath` |
11.08.2026 |
9.9 |
| CVE-2026-72882 |
Dokploy: Authenticated blind command injection via file mounts leads to direct remote host RCE on managed servers |
13.08.2026 |
9.9 |
| CVE-2026-72886 |
Dokploy: Non-admin member gains root on the host by bypassing the owner/admin check on server-level schedules (incomplete fix of CVE-2026-45632) |
10.08.2026 |
9.9 |
| CVE-2026-72876 |
Dokploy: Cross-organization IDOR leads to root RCE on another tenant's server via swarm.* |
10.08.2026 |
9.9 |
| CVE-2026-72877 |
Dokploy: Command Injection via dockerImage in buildRemoteDocker |
13.08.2026 |
9.6 |
| CVE-2026-72878 |
Dokploy: OS Command Injection in backup/restore pipeline via unescaped user-controlled shell arguments |
12.08.2026 |
9.6 |
| CVE-2026-72879 |
Dokploy: Command Injection via Registry Credentials in Swarm Upload |
11.08.2026 |
9.4 |
| CVE-2026-72864 |
Dokploy Broken Access Control on docker-container-terminal WebSocket (Member -> Root in Arbitrary Containers) |
11.08.2026 |
9.9 |
| CVE-2026-72865 |
Dokploy: OS Command Injection via compose `composePath` |
11.08.2026 |
9.9 |
| CVE-2026-72867 |
Dokploy: Incomplete fix of CVE-2026-45628: Command Injection via Unvalidated Branch Fields in Compose Deployment Pipeline (server-side regex missing in compose.ts) |
13.08.2026 |
9.9 |
| CVE-2026-72868 |
Dokploy: Member-role RCE as host root via destination.testConnection rclone shell injection |
12.08.2026 |
9.9 |
| CVE-2026-72869 |
Dokploy: Authenticated OS command injection in backup.restoreBackupWithLogs (databaseName) leading to host RCE |
11.08.2026 |
9.9 |
| CVE-2026-72872 |
Dokploy: OS Command Injection via Bitbucket `owner`/`repository` in `git clone` |
13.08.2026 |
9.9 |
| CVE-2026-72863 |
Dokploy: Missing authorization in WebSocket handlers allows a low-privilege member to gain root on the Docker host |
10.08.2026 |
9.9 |
| CVE-2026-16626 |
JasperReports Server: XXE Injection Vulnerability (Unauthenticated) |
11.08.2026 |
9.3 |
| CVE-2026-48159 |
use-reducer-async was vulnerable to malicious code execution via compromised commits |
11.08.2026 |
9.3 |
| CVE-2026-72740 |
Dokploy: OS Command Injection via SSH-form `customGitUrl` domain in `ssh-keyscan` |
10.08.2026 |
9.9 |
| CVE-2026-72862 |
Dokploy: OS Command Injection via dockerImage field in database service deployment functions → HOST RCE |
13.08.2026 |
9.9 |
| CVE-2026-72898 |
Metabase SQL injection via password reset endpoint |
12.08.2026 |
10 |
| CVE-2026-72899 |
Metabase SQL injection via public card or dashboard |
11.08.2026 |
10 |
| CVE-2026-72735 |
Dokploy: Command injection in writeTraefikConfigRemote via shell interpolation of unescaped YAML in SSH remote execution |
10.08.2026 |
9.9 |
| CVE-2026-72736 |
Dokploy: OS Command Injection in registry credential testing and Swarm cluster management → HOST RCE |
10.08.2026 |
9.9 |
| CVE-2026-72737 |
Dokploy: Cross-organization IDOR in Dokploy backup destinations exposes another tenant's S3 credentials and backups |
13.08.2026 |
9.6 |
| CVE-2026-72738 |
Dokploy: Authenticated RCE via Command Injection in backup.listBackupFiles search Parameter |
10.08.2026 |
9.9 |
| CVE-2026-72733 |
Dokploy: OS Command Injection via `databaseName` / `backupFile` in database restore |
10.08.2026 |
9.9 |
| CVE-2026-48158 |
use-context-selector was vulnerable to malicious code execution via compromised commits |
11.08.2026 |
9.3 |
| CVE-2026-47754 |
unauthenticated path traversal in Metacat 2.x |
10.08.2026 |
9.3 |
| CVE-2026-63106 |
ReadyEcommerce < 4.5.2 Unauthenticated SQL Injection via ProductController.php |
10.08.2026 |
9.3 |
| CVE-2026-13206 |
Multiple Vulnerabilities in Zyxel's WAH7601 - OS Command Injection |
10.08.2026 |
9.8 |
| CVE-2026-68117 |
tipc: clear sock->sk on the failed-insert path in tipc_sk_create() |
13.08.2026 |
9.8 |
| CVE-2026-68123 |
openvswitch: fix GSO userspace truncation underflow |
13.08.2026 |
9.8 |
| CVE-2026-68124 |
mctp: serial: handle zero-length frames to prevent rx buffer overflow |
13.08.2026 |
9.6 |
| CVE-2026-68127 |
ila: reload IPv6 header after pskb_may_pull in checksum adjust |
13.08.2026 |
9.8 |
| CVE-2026-68136 |
net: gro: fix double aggregation of flush-marked skbs |
13.08.2026 |
9.8 |
| CVE-2026-68137 |
net/x25: fix use-after-free in x25_kill_by_neigh() |
13.08.2026 |
9.8 |
| CVE-2026-68144 |
phonet: pep: fix use-after-free in pep_get_sb() |
13.08.2026 |
9.8 |
| CVE-2026-68154 |
libceph: reject zero bucket types in crush_decode |
13.08.2026 |
9.8 |
| CVE-2026-68156 |
libceph: refresh auth->authorizer_buf{,_len} after authorizer update |
13.08.2026 |
9.8 |
| CVE-2026-68158 |
libceph: Fix multiplication overflow in decode_new_up_state_weight() |
13.08.2026 |
9.8 |
| CVE-2026-68159 |
libceph: bound pg_{temp,upmap,upmap_items} length to CEPH_PG_MAX_SIZE |
13.08.2026 |
9.8 |
| CVE-2026-68160 |
ceph: fix pre-auth out-of-bounds read on snaptrace in ceph_handle_caps() |
13.08.2026 |
9.8 |
| CVE-2026-68161 |
sctp: close UDP tunnel sockets during netns teardown |
13.08.2026 |
9.8 |
| CVE-2026-68170 |
mptcp: fix stale skb->sk reference on subflow close |
13.08.2026 |
9.8 |
| CVE-2026-68300 |
sctp: auth: verify auth requirement when auth_chunk is NULL |
13.08.2026 |
9.8 |
| CVE-2026-68302 |
amt: re-read skb header pointers after every pull |
13.08.2026 |
9.8 |
| CVE-2026-68343 |
smb: client: validate DFS referral PathConsumed |
13.08.2026 |
9.1 |
| CVE-2026-68381 |
ksmbd: pin conn during async oplock break notification |
13.08.2026 |
9.8 |
| CVE-2026-68385 |
s390/checksum: Fix csum_partial() without vector facility |
13.08.2026 |
9.8 |
| CVE-2026-68388 |
smb/client: handle overlapping allocated ranges in fallocate |
13.08.2026 |
9.8 |
| CVE-2026-68426 |
xfrm: fix stale skb->prev after async crypto steals a GSO segment |
13.08.2026 |
9.8 |
| CVE-2026-68083 |
ksmbd: fix path resolution in ksmbd_vfs_kern_path_create |
13.08.2026 |
9.1 |
| CVE-2026-72564 |
fosrl Pangolin - Access Token Scope Bypass Allows Cross-Resource Authentication |
10.08.2026 |
9.6 |
| CVE-2026-72565 |
Tencent APIJSON - Unauthenticated SQL Injection via @having Operator Map-Form Bypass |
10.08.2026 |
9.8 |
| CVE-2026-72567 |
deepwiki-open - Unauthenticated Path Traversal Leading to Arbitrary File Write and Delete |
10.08.2026 |
9.8 |
| CVE-2026-72569 |
cube-root directory-serve - Unauthenticated Path Traversal Arbitrary File Deletion |
10.08.2026 |
9.1 |
| CVE-2026-72575 |
daptin - Authentication Bypass via Null Owner Permission Check on usergroup Objects |
10.08.2026 |
9.1 |
| CVE-2026-72577 |
NASA fprime-gds - Missing Authentication and Path Traversal Enable Unauthenticated RCE and Spacecraft Command Injection |
10.08.2026 |
9.8 |
| CVE-2026-72580 |
duhow xiaoai-patch - OS Command Injection in /mute and /unmute Endpoints |
10.08.2026 |
9.8 |
| CVE-2026-72589 |
alseambusher crontab-ui - Unauthenticated RCE via Shell Injection in Imported Database hook Field |
10.08.2026 |
9.8 |
| CVE-2026-72590 |
alseambusher crontab-ui - Unauthenticated RCE via Newline Injection in env_vars Parameter |
10.08.2026 |
9.8 |
| CVE-2026-72592 |
dulldusk phpfm - Unauthenticated Remote Code Execution via Unrestricted PHP File Upload |
10.08.2026 |
9.8 |
| CVE-2026-72593 |
dulldusk phpfm - Missing Authentication by Default Allows Full Filesystem Access |
10.08.2026 |
9.8 |
| CVE-2026-66915 |
Joomla Extension - fabrikar.com - Unauthenticated remote code execution in Fabrik < 4.6.9 |
12.08.2026 |
10 |
| CVE-2026-19348 |
Shenzhen Aitemi M300 Wi-Fi Repeater protocol.csp sprintf command injection |
10.08.2026 |
9.3 |
| CVE-2026-71992 |
MSI Radix AXE6600 v781521 Command Injection via macfilter |
10.08.2026 |
9.3 |
| CVE-2026-71993 |
MSI Radix AXE6600 v781521 Command Injection via openvpn function |
11.08.2026 |
9.3 |
| CVE-2026-71991 |
MSI Radix AXE6600 v781521 Command Injection via TelnetSSH Function |
08.08.2026 |
9.3 |
| CVE-2026-71986 |
MSI Radix AXE6600 v781521 Command Injection via dmz Function |
08.08.2026 |
9.3 |
| CVE-2026-71987 |
MSI Radix AXE6600 v781521 Command Injection via alg function |
10.08.2026 |
9.3 |
| CVE-2026-71988 |
MSI Radix AXE6600 v781521 Command Injection via portFw function |
11.08.2026 |
9.3 |
| CVE-2026-71989 |
MSI Radix AXE6600 v781521 Command Injection via porTrigger function |
10.08.2026 |
9.3 |
| CVE-2026-71990 |
MSI Radix AXE6600 v781521 Command Injection via TelnetSSH Function |
11.08.2026 |
9.3 |
| CVE-2026-71984 |
MSI Radix AXE6600 v781521 Command Injection via urlfilter |
10.08.2026 |
9.3 |
| CVE-2026-71985 |
MSI Radix AXE6600 v781521 Command Injection via accesscontrol Function |
11.08.2026 |
9.3 |
| CVE-2026-71983 |
MSI Radix AXE6600 v781521 Command Injection via wps.cgi |
11.08.2026 |
9.3 |
| CVE-2026-71956 |
D-Link DWR-M961 Command Injection via app.cgi |
11.08.2026 |
9.3 |
| CVE-2026-71957 |
D-Link DWR-M961 Buffer Overflow via app.cgi |
08.08.2026 |
9.3 |
| CVE-2026-71958 |
D-Link DWR-M961 Buffer Overflow via quicksetup.cgi |
10.08.2026 |
9.3 |
| CVE-2026-71944 |
D-Link DWR-M961 Command Injection via /boafrm/formLtefotaUpgradeQuectel |
11.08.2026 |
9.3 |
| CVE-2026-71945 |
D-Link DWR-M961 Command Injection via /boafrm/formLtefotaUpgradeFibocom |
10.08.2026 |
9.3 |
| CVE-2026-71946 |
D-Link DWR-M961 Command Injection via /boafrm/formPingDiagnosticRun |
11.08.2026 |
9.3 |
| CVE-2026-71947 |
D-Link DWR-M961 Command Injection via /boafrm/formTracerouteDiagnosticRun |
08.08.2026 |
9.3 |
| CVE-2026-71948 |
D-Link DWR-M961 Command Injection via /boafrm/formDebugDiagnosticRun |
10.08.2026 |
9.3 |
| CVE-2026-71949 |
D-Link DWR-M961 Command Injection via /boafrm/formUSSDSetup |
11.08.2026 |
9.3 |
| CVE-2026-71950 |
D-Link DWR-M961 Command Injection via /boafrm/formSmsManage |
10.08.2026 |
9.3 |
| CVE-2026-71951 |
D-Link DWR-M961 Command Injection via /boafrm/formIMEISetup |
11.08.2026 |
9.3 |
| CVE-2026-71952 |
D-Link DWR-M961 Command Injection via /boafrm/formPinManageSetup |
08.08.2026 |
9.3 |
| CVE-2026-71953 |
D-Link DWR-M961 Command Injection via /boafrm/formNtp |
10.08.2026 |
9.3 |
| CVE-2026-71954 |
D-Link DWR-M961 Command Injection via /boafrm/formL2tpv3ConfigSetup |
11.08.2026 |
9.3 |
| CVE-2026-71955 |
D-Link DWR-M961 Command Injection via /boafrm/formWsc |
10.08.2026 |
9.3 |
| CVE-2026-68082 |
libceph: fix two unsafe bare decodes in decode_lockers() |
13.08.2026 |
9.8 |