CVE Field Guide

Critical CVEs

CVE Title Updated Score
CVE-2026-56163 Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability 24.07.2026 10
CVE-2026-57106 Data Quality Elevation of Privilege Vulnerability 24.07.2026 10
CVE-2026-58630 Azure App Service on Azure Stack Hub Elevation of Privilege Vulnerability 24.07.2026 10
CVE-2026-12503 Loytec LINX firmware: Improper Link Resolution in /usr/bin/larm_starter 24.07.2026 9.2
CVE-2026-24727 SUNNET Corporate Training Management System - Unrestricted Upload of File with Dangerous Type 24.07.2026 9.3
CVE-2026-15704 CWE-863: ABAC authorization bypass via trailing slash route normalization in Eclipse BaSyx Go Components 24.07.2026 9.8
CVE-2026-50517 Microsoft M365 Copilot Remote Code Execution Vulnerability 24.07.2026 9.9
CVE-2026-54120 Microsoft Surface Remote Code Execution Vulnerability 24.07.2026 9.9
CVE-2026-56160 Azure Red Hat OpenShift (ARO) Elevation of Privilege Vulnerability 24.07.2026 9.1
CVE-2026-56165 Microsoft Account Remote Code Execution Vulnerability 24.07.2026 9.8
CVE-2026-56191 Microsoft Exchange Online Tampering Vulnerability 24.07.2026 10
CVE-2026-58275 Azure DNS Elevation of Privilege Vulnerability 24.07.2026 10
CVE-2026-62825 Azure Key Vault Elevation of Privilege Vulnerability 24.07.2026 10
CVE-2026-28698 Exposure of Sensitive System Information to an Unauthorized Control Sphere in Panduit IntraVUE by Pronetiqs 24.07.2026 9.2
CVE-2026-42933 Unintended Proxy or Intermediary in Panduit IntraVUE by Pronetiqs 24.07.2026 10
CVE-2024-58353 Cal.com through 4.7.15 Cross-Site Scripting via booking questions 24.07.2026 9.3
CVE-2024-58355 Cal.com through 4.7.15 Cross-Site Scripting via booking questions 24.07.2026 9.3
CVE-2025-71389 Cal.com before 5.9.9 Remote Code Execution via RSC 23.07.2026 10
CVE-2026-63732 9router before 0.4.60 Remote Code Execution via default password 23.07.2026 9.4
CVE-2026-49035 Stack-based Buffer Overflow in MZ Automation libIEC61850 24.07.2026 9.2
CVE-2026-15981 SAML Single Sign On <= 5.4.4 - Unauthenticated Authentication Bypass via SAMLResponse Parameter 23.07.2026 9.8
CVE-2026-47724 nebula-mesh: API endpoints lack ownership checks, enabling cross-operator privilege escalation 23.07.2026 9.9
CVE-2026-47669 DbGate: Zip Slip in archive/unzip allows arbitrary file write leading to RCE 24.07.2026 9.3
CVE-2026-47670 DbGate Vulnerable to Authenticated Remote Code Execution via loadReader functionName code injection 24.07.2026 9.4
CVE-2026-63359 Appriss Insights VINE SQLI 23.07.2026 9.3
CVE-2026-47668 DbGate: Unauthenticated Remote Code Execution via JSON Script Runner 24.07.2026 10
CVE-2026-6516 Remote Code Execution 24.07.2026 10
CVE-2026-47752 Tugtainer has Server-Side Template Injection in notification templates that leads to Remote Code Execution 23.07.2026 9.9
CVE-2026-65700 h2oGPT 0.2.1 Path Traversal via OpenAI-compatible Files API 23.07.2026 9.3
CVE-2026-65701 SoftVC VITS Singing Voice Conversion Path Traversal via /wav2wav Flask Route 23.07.2026 9.3
CVE-2026-65760 Joomla Extension - joomshaper.com - cross-customer order and personal information disclosure in Easy Store extension 1.0.0-2.0.1 24.07.2026 9.2
CVE-2026-65761 Joomla Extension - joomshaper.com - Unauthenticated SQL injection in Easy Store extension 1.0.0-2.0.1 24.07.2026 9.3
CVE-2026-65687 Bold Reports Standalone Report Designer < 14.1.12 Arbitrary File Read via SVG Processing 24.07.2026 9.3
CVE-2026-65688 Bold Reports Standalone Report Designer < 14.1.12 Arbitrary File Read via Font Processing 24.07.2026 9.3
CVE-2026-65689 Bold Reports Standalone Report Designer < 14.1.12 Arbitrary File Read via Database Download 24.07.2026 9.3
CVE-2026-65907 24.07.2026 9.1
CVE-2026-64812 24.07.2026 10
CVE-2026-64813 24.07.2026 10
CVE-2026-65605 SiYuan before v3.7.2 Stored XSS to RCE via Attribute View 23.07.2026 9.4
CVE-2026-65606 SiYuan before v3.7.2 Cross-Site Scripting to RCE 23.07.2026 9.4
CVE-2026-27064 WordPress Mailster plugin <= 4.1.17 - Arbitrary File Upload vulnerability 23.07.2026 9.1
CVE-2026-57784 WordPress Ninja Forms File Uploads Extension plugin <= 3.3.26 - Cross Site Request Forgery (CSRF) vulnerability 23.07.2026 9.6
CVE-2026-59514 WordPress Buddyboss Platform plugin <= 3.0.5 - SQL Injection vulnerability 23.07.2026 9.3
CVE-2026-59525 WordPress Participants Database plugin <= 2.7.8.3 - SQL Injection vulnerability 23.07.2026 9.3
CVE-2026-59526 WordPress MapSVG plugin <= 8.14.0 - SQL Injection vulnerability 23.07.2026 9.3
CVE-2026-59540 WordPress SMS Alert Order Notifications plugin <= 3.9.6 - Privilege Escalation vulnerability 23.07.2026 9.8
CVE-2026-59543 WordPress Advanced Views plugin <= 3.8.11 - Remote Code Execution (RCE) vulnerability 23.07.2026 9.9
CVE-2026-59544 WordPress Thrive Quiz Builder plugin <= 10.9.3.0 - PHP Object Injection vulnerability 23.07.2026 9.8
CVE-2026-59555 WordPress Participants Database plugin <= 2.7.8.3 - Arbitrary File Deletion vulnerability 23.07.2026 10
CVE-2026-61948 WordPress WPDM – Premium Packages plugin <= 6.2.0 - SQL Injection vulnerability 23.07.2026 9.3
CVE-2026-61949 WordPress Bookly plugin <= 27.7 - SQL Injection vulnerability 23.07.2026 9.3
CVE-2026-61950 WordPress TrueBooker plugin <= 1.2.3 - SQL Injection vulnerability 23.07.2026 9.3
CVE-2026-61951 WordPress TrueBooker plugin <= 1.2.3 - Privilege Escalation vulnerability 23.07.2026 9.8
CVE-2026-65455 WordPress MapSVG plugin <= 8.14.0 - Arbitrary File Upload vulnerability 23.07.2026 9.1
CVE-2026-65461 WordPress Really Simple CSV Importer plugin <= 1.3 - Arbitrary File Upload vulnerability 23.07.2026 9.1
CVE-2026-65471 WordPress Avada Core plugin <= 5.15.6 - Cross Site Request Forgery (CSRF) vulnerability 23.07.2026 9.6
CVE-2026-15015 MountDev AI MCP Connector for WordPress <= 1.6.1 - Unauthenticated Privilege Escalation via OAuth Authorization Endpoint 23.07.2026 9.8
CVE-2026-14282 GoDAM <= 1.12.2 - Unauthenticated Arbitrary File Upload via WPForms File Upload Field 23.07.2026 9.8
CVE-2026-15011 Customer Support Ticket System & Helpdesk <= 6.0.5 - Unauthenticated Code Injection via 'path' Parameter 23.07.2026 9.8
CVE-2026-16723 Remote Code Execution in fastjson 1.2.68–1.2.83 23.07.2026 9
CVE-2026-60366 23.07.2026 10
CVE-2026-60367 23.07.2026 9.8
CVE-2026-60369 23.07.2026 9.9
CVE-2026-60372 23.07.2026 9.8
CVE-2026-13072 MongoDB Improper Input Validation in Compute Mode External Data Processing Leading to Memory Corruption 24.07.2026 9.2
CVE-2026-64829 Question2Answer 1.8.8 Session Fixation via Forgot-Password Flow 23.07.2026 9.1
CVE-2026-40712 24.07.2026 9.1
CVE-2026-46738 24.07.2026 9.1
CVE-2026-16606 Unauthenticated remote code execution (pre-auth RCE) vulnerability in openFT for Linux and Oracle Solaris 22.07.2026 9.3
CVE-2026-2395 SQLi in Xpoda Türkiye Informatics Technology's No Code Platform 22.07.2026 9.8
CVE-2026-63048 Joomla Extension - joomlack.fr - Improper access control in Page Builder CK < 3.6.2 23.07.2026 9.4
CVE-2026-47731 NASA AMMOS Instrument Toolkit: Path traversal resulting in arbitrary file append (can be triggered over the network by unauthenticated attacker) 22.07.2026 9.1
CVE-2026-60328 23.07.2026 9.8
CVE-2026-60329 23.07.2026 9.8
CVE-2026-60333 21.07.2026 9.9
CVE-2026-60355 21.07.2026 9.8
CVE-2026-60358 21.07.2026 10
CVE-2026-60360 21.07.2026 10
CVE-2026-60361 21.07.2026 9.9
CVE-2026-60362 21.07.2026 9.8
CVE-2026-60363 21.07.2026 9.8
CVE-2026-60364 21.07.2026 9.8
CVE-2026-60365 21.07.2026 10
CVE-2026-60374 21.07.2026 9.8
CVE-2026-60375 21.07.2026 9.8
CVE-2026-60376 21.07.2026 9.8
CVE-2026-60377 21.07.2026 9.9
CVE-2026-60378 21.07.2026 9.8
CVE-2026-60379 24.07.2026 10
CVE-2026-60380 24.07.2026 9.8
CVE-2026-60381 24.07.2026 9.9
CVE-2026-60384 21.07.2026 9.8
CVE-2026-60385 21.07.2026 9.8
CVE-2026-60386 21.07.2026 9.8
CVE-2026-60387 21.07.2026 9.8
CVE-2026-60388 21.07.2026 9.8
CVE-2026-60389 21.07.2026 10
CVE-2026-60402 21.07.2026 9.9
CVE-2026-60422 24.07.2026 9.9
CVE-2026-60424 24.07.2026 9
CVE-2026-60429 21.07.2026 9.9
CVE-2026-60435 24.07.2026 9.8
CVE-2026-60438 24.07.2026 9.1
CVE-2026-60441 24.07.2026 9.8
CVE-2026-60442 24.07.2026 9.8
CVE-2026-60445 24.07.2026 9.9
CVE-2026-60446 24.07.2026 9.8
CVE-2026-60447 24.07.2026 9.9
CVE-2026-60456 24.07.2026 9.9
CVE-2026-60457 24.07.2026 9.9
CVE-2026-60458 24.07.2026 9.9
CVE-2026-60459 24.07.2026 9.9
CVE-2026-60460 24.07.2026 9.8
CVE-2026-60461 24.07.2026 9.9
CVE-2026-60463 21.07.2026 9.8
CVE-2026-60524 21.07.2026 9.9
CVE-2026-60531 21.07.2026 9.9
CVE-2026-60532 21.07.2026 9.8
CVE-2026-60535 21.07.2026 9.8
CVE-2026-60537 21.07.2026 9.9
CVE-2026-60538 21.07.2026 9.8
CVE-2026-60540 21.07.2026 9.6
CVE-2026-60541 21.07.2026 9.8
CVE-2026-60542 21.07.2026 9.9
CVE-2026-60547 21.07.2026 9.9
CVE-2026-60551 21.07.2026 9.8
CVE-2026-60552 21.07.2026 9.9
CVE-2026-60555 21.07.2026 9.8
CVE-2026-60561 21.07.2026 9.9
CVE-2026-60562 21.07.2026 9.9
CVE-2026-60564 21.07.2026 9.6
CVE-2026-60565 21.07.2026 9.9
CVE-2026-60566 21.07.2026 9.8
CVE-2026-60567 21.07.2026 9.1
CVE-2026-60568 21.07.2026 9.9
CVE-2026-60606 21.07.2026 9.1
CVE-2026-60627 21.07.2026 9.9
CVE-2026-60631 21.07.2026 9.3
CVE-2026-60632 21.07.2026 9.3
CVE-2026-60644 21.07.2026 10
CVE-2026-60649 21.07.2026 9.1
CVE-2026-60663 21.07.2026 9.9
CVE-2026-60711 21.07.2026 9.9
CVE-2026-60719 21.07.2026 9.9
CVE-2026-60773 21.07.2026 9.6
CVE-2026-60880 21.07.2026 9.8
CVE-2026-60999 24.07.2026 9.8
CVE-2026-61041 24.07.2026 9.9
CVE-2026-61059 24.07.2026 9.1
CVE-2026-61065 24.07.2026 9.8
CVE-2026-61072 24.07.2026 9.9
CVE-2026-61076 24.07.2026 9.9
CVE-2026-61097 23.07.2026 9.6
CVE-2026-61100 23.07.2026 9.8
CVE-2026-61129 23.07.2026 9.8
CVE-2026-61130 23.07.2026 9.1
CVE-2026-61131 23.07.2026 9.8
CVE-2026-61140 23.07.2026 9.8
CVE-2026-61145 23.07.2026 9.8
CVE-2026-61146 23.07.2026 9.9
CVE-2026-61153 23.07.2026 9.1
CVE-2026-61154 23.07.2026 9.8
CVE-2026-61155 23.07.2026 9.1
CVE-2026-61156 23.07.2026 9.1
CVE-2026-61161 23.07.2026 9.8
CVE-2026-61167 23.07.2026 9.8
CVE-2026-61171 23.07.2026 9.1
CVE-2026-61174 23.07.2026 9
CVE-2026-61175 23.07.2026 9.3
CVE-2026-61178 23.07.2026 9.8
CVE-2026-61183 23.07.2026 9.8
CVE-2026-61184 23.07.2026 9.1
CVE-2026-61186 23.07.2026 9.4
CVE-2026-61196 22.07.2026 9.8
CVE-2026-61197 22.07.2026 9.1
CVE-2026-61201 22.07.2026 9
CVE-2026-61203 22.07.2026 9.4
CVE-2026-61204 22.07.2026 9
CVE-2026-61207 22.07.2026 9.3
CVE-2026-61209 22.07.2026 9.9
CVE-2026-61211 22.07.2026 9.9
CVE-2026-61223 22.07.2026 9
CVE-2026-61233 22.07.2026 9.8
CVE-2026-61235 22.07.2026 9.1
CVE-2026-61237 22.07.2026 9.9
CVE-2026-61238 22.07.2026 9.1
CVE-2026-61239 22.07.2026 9.9
CVE-2026-61242 22.07.2026 9.9
CVE-2026-61244 22.07.2026 9.1
CVE-2026-61245 22.07.2026 9.8
CVE-2026-62546 22.07.2026 9.1
CVE-2026-62549 22.07.2026 9.6
CVE-2026-65318 Verba (goldenverba) Unauthenticated Server-Side Request Forgery via WebSocket Import Endpoint HTMLReader 22.07.2026 9.2
CVE-2026-35290 23.07.2026 9.8
CVE-2026-46876 23.07.2026 9.8
CVE-2026-46924 23.07.2026 9.8
CVE-2026-46982 23.07.2026 9.8
CVE-2026-46983 23.07.2026 9.8
CVE-2026-46989 23.07.2026 9.1
CVE-2026-46994 23.07.2026 9.8
CVE-2026-47036 23.07.2026 9.8
CVE-2026-47040 23.07.2026 9.1
CVE-2026-47056 23.07.2026 10
CVE-2026-60168 23.07.2026 9.1
CVE-2026-60173 23.07.2026 9.8
CVE-2026-60197 23.07.2026 9.8
CVE-2026-60198 23.07.2026 9.8
CVE-2026-60199 23.07.2026 9.8
CVE-2026-60200 23.07.2026 9.8
CVE-2026-60202 23.07.2026 9.8
CVE-2026-60204 23.07.2026 9.8
CVE-2026-60205 23.07.2026 9.8
CVE-2026-60206 23.07.2026 9.9
CVE-2026-60208 23.07.2026 9.1
CVE-2026-60209 23.07.2026 9.8
CVE-2026-60210 23.07.2026 9.8
CVE-2026-60212 23.07.2026 9.8
CVE-2026-60215 23.07.2026 9.8
CVE-2026-60216 23.07.2026 9.8
CVE-2026-60217 23.07.2026 10
CVE-2026-60219 23.07.2026 9.8
CVE-2026-60220 23.07.2026 9.3
CVE-2026-60221 23.07.2026 9.8
CVE-2026-60224 23.07.2026 9.8
CVE-2026-60225 23.07.2026 9.8
CVE-2026-60226 23.07.2026 9.8
CVE-2026-60227 23.07.2026 9.8
CVE-2026-60228 23.07.2026 9.8
CVE-2026-60229 23.07.2026 9.8
CVE-2026-60230 23.07.2026 9.8
CVE-2026-60232 23.07.2026 9.8
CVE-2026-60234 23.07.2026 9.8
CVE-2026-60236 23.07.2026 9.8
CVE-2026-60239 23.07.2026 9.6
CVE-2026-60240 23.07.2026 9.8
CVE-2026-60241 23.07.2026 9.8
CVE-2026-60242 23.07.2026 9.8
CVE-2026-60244 23.07.2026 9.8
CVE-2026-60246 23.07.2026 9.8
CVE-2026-60247 23.07.2026 9.8
CVE-2026-60248 23.07.2026 9.3
CVE-2026-60249 23.07.2026 9
CVE-2026-60250 23.07.2026 9.8
CVE-2026-60251 23.07.2026 9.8
CVE-2026-60253 23.07.2026 9.8
CVE-2026-60254 23.07.2026 9.8
CVE-2026-60256 23.07.2026 9.8
CVE-2026-60257 23.07.2026 9.8
CVE-2026-60258 23.07.2026 9.8
CVE-2026-60259 23.07.2026 9.8
CVE-2026-60262 23.07.2026 9.8
CVE-2026-60264 23.07.2026 9.8
CVE-2026-60267 23.07.2026 9.1
CVE-2026-60269 23.07.2026 9.8
CVE-2026-60272 23.07.2026 9.8
CVE-2026-60274 23.07.2026 9.8
CVE-2026-60275 23.07.2026 9.8
CVE-2026-60276 23.07.2026 9.8
CVE-2026-60278 23.07.2026 9.8
CVE-2026-60279 23.07.2026 9.8
CVE-2026-60280 23.07.2026 9.8
CVE-2026-60285 23.07.2026 9.8
CVE-2026-60286 23.07.2026 9.8
CVE-2026-60287 23.07.2026 9.8
CVE-2026-60288 23.07.2026 9.8
CVE-2026-60289 23.07.2026 9.8
CVE-2026-60290 23.07.2026 9.8
CVE-2026-60291 23.07.2026 9.8
CVE-2026-60292 23.07.2026 9.8
CVE-2026-60294 23.07.2026 9.8
CVE-2026-60296 21.07.2026 9.8
CVE-2026-60297 23.07.2026 9.8
CVE-2026-60298 23.07.2026 9.8
CVE-2026-60299 23.07.2026 9.8
CVE-2026-60300 23.07.2026 9.8
CVE-2026-60302 23.07.2026 9.8
CVE-2026-60306 23.07.2026 9.8
CVE-2026-60308 23.07.2026 9.8
CVE-2026-60326 23.07.2026 9.1
CVE-2026-65317 Verba (goldenverba) Server-Side Request Forgery via /api/connect and Same-Origin Middleware Bypass 23.07.2026 9.2
CVE-2026-8984 Unauthenticated RCE 22.07.2026 10
CVE-2026-8985 Unauthenticated Command Injection 22.07.2026 10
CVE-2026-8986 Command Injection via Malicious OCPP Server 22.07.2026 9.5
CVE-2026-8987 Authenticated Heap Overflow 22.07.2026 9.4
CVE-2026-47708 MCP-for-Stata: Command injection via log_file_name parameter in Stata command wrapper 22.07.2026 9.3
CVE-2026-65057 Keep Unauthenticated Server-Side Request Forgery via POST /providers/healthcheck 22.07.2026 9.2
CVE-2026-8982 Hard-coded / Backdoor Accounts 22.07.2026 10
CVE-2026-8983 Backdoor Authentication Token 22.07.2026 10
CVE-2026-64878 Command Injection 24.07.2026 9.4
CVE-2026-64879 Command Injection 24.07.2026 9.4
CVE-2016-20096 Linknat VOS3000/VOS2009 2.1.2.0 SQL Injection via login.jsp 22.07.2026 9.3
CVE-2026-64877 24.07.2026 9.4
CVE-2026-47413 praisonai-platform: Any workspace member can add arbitrary user as owner via POST /workspaces/{id}/members 22.07.2026 9.6
CVE-2026-47416 praisonai-platform: Any workspace member can promote themselves (or any other member) to owner via PATCH /workspaces/{id}/members/{user_id} 22.07.2026 9.6
CVE-2026-47407 PraisonAI Platform has a cross-workspace IDOR + member-role privilege escalation 22.07.2026 9.4
CVE-2026-47410 praisonai-platform: JWT signing key defaults to hardcoded "dev-secret-change-me", allowing token forgery for any user when PLATFORM_ENV is unset 22.07.2026 9.8
CVE-2026-47391 PraisonAI's unauthenticated A2A official example can reach real LLM-driven `eval()` tool execution 23.07.2026 9.8
CVE-2026-47392 PraisonAI vulnerable to sandbox escape via `print.__self__` builtins module leak in `execute_code` (subprocess mode) 21.07.2026 9.9
CVE-2026-47393 PraisonAI `deploy --type api` emits a Flask server with authentication disabled by default 22.07.2026 9.8
CVE-2026-47396 PraisonAI call server exposes unauthenticated agent listing, invocation, and deletion when CALL_SERVER_TOKEN is unset 22.07.2026 9.8
CVE-2026-64824 Home Assistant Core < 2026.7.0 Symlink Path Traversal RCE via backup-restore 21.07.2026 9.3
CVE-2026-64825 Home Assistant Core < 2026.6.0 Path Traversal File Write via Backup Upload 21.07.2026 9
CVE-2026-65048 Ninja Forms Unauthenticated Stored Cross-Site Scripting via Repeatable Fieldset Submission Index 22.07.2026 9.3
CVE-2026-65008 Grav before 2.0.7 Remote Code Execution via Blueprint dynamicData 22.07.2026 9.3
CVE-2026-1617 SQLi in Turkmesh's Turkhotspot 5651 Loglama 21.07.2026 9.8
CVE-2026-13439 Easy Form Builder by WhiteStudio <= 4.0.11 - Unauthenticated Privilege Escalation to Administrator via Password Recovery REST Endpoint 21.07.2026 9.8
CVE-2026-64625 AVideo before 29.0 OS Command Injection via execAsync 23.07.2026 9.3
CVE-2026-13380 VSee Clinic and API Exposes Cleartext SFTP Credentials in Unauthenticated HTTP Responses 21.07.2026 9
CVE-2026-53595 FreeScout vulnerable to anonymous account takeover via /user-setup empty invite_hash on MySQL 21.07.2026 9.4
CVE-2026-16337 21.07.2026 9.4
CVE-2026-44231 RT: Privilege escalation and information disclosure via REST 2.0 user collection endpoint 21.07.2026 9.1
CVE-2026-63766 GPT-SoVITS 20250606v2pro OS Command Injection via webui.py 21.07.2026 9.3
CVE-2026-63767 ktransformers Unauthenticated Pickle Deserialization RCE via ZMQ 21.07.2026 9.3
CVE-2026-61424 Joomla Extension - dj-extensions.com - Unauthenticated arbitrary file upload in DJ-Classifieds < 3.11.2 23.07.2026 10
CVE-2026-61425 Joomla Extension - balbooa.com - Authentication bypass in Gridbox < 1.6.0 23.07.2026 9.4
CVE-2026-61900 Joomla Extension - dj-extensions.com - Unauthenticated arbitrary file upload in DJ-jDownloads < 4.1.6 23.07.2026 10
CVE-2026-60032 Joomla Extension - themexpert.com - Authenticated arbitrary file upload in JMedia < 1.6.0 23.07.2026 9.4
CVE-2026-60034 Joomla Extension - themexpert.com - Authenticated stored XSS in JMedia Extension < 1.6.0 23.07.2026 9.4
CVE-2026-39878 Chamilo stored XSS via user registration leads to admin account takeover 20.07.2026 9.3
CVE-2026-35048 Piwigo RCE via PHP Code Injection into Config File in Installer 20.07.2026 9.8
CVE-2026-41252 xrdp: lib_palette_update Heap Buffer Overflow & RCE 23.07.2026 9.8
CVE-2026-54051 Network-AI has an an OS Command Injection issue 21.07.2026 9.9
CVE-2026-35198 HeyForm vulnerable to stored XSS via form field titles 20.07.2026 9
CVE-2026-46428 lettre has TLS hostname verification disabled when using Boring TLS backend 21.07.2026 9.1
CVE-2026-51027 20.07.2026 9.9
CVE-2026-46412 Malicious code in @beproduct/nestjs-auth (0.1.2 through 0.1.19) — Mini Shai-Hulud worm 20.07.2026 10
CVE-2026-12701 Pulpcore: pulpcore: relative_path_validator bypass via directory traversal in filesystemexport 22.07.2026 9
CVE-2026-57309 Blind SQL Injection in Windu CMS 20.07.2026 9.3
CVE-2026-63756 SurrealDB before 3.1.0 Privilege Escalation via RPC Session Race Condition 21.07.2026 9.2
CVE-2026-64620 FreeRDP before 3.28.0 Heap Buffer Overflow via crypto_rsa_common 21.07.2026 9.3
CVE-2026-64621 FreeRDP before 3.28.0 Double-Free via selectedmonitors 23.07.2026 9.3
CVE-2026-64622 Network-AI 5.12.2 through 5.13.3 Missing Authorization via ApprovalInbox 21.07.2026 9.3
CVE-2026-16242 Hypershift: konnectivity proxy-server accepts agent connections without validating client certificates 24.07.2026 9.4
CVE-2026-44359 Meshtastic GitHub repo vulnerable to Arbitrary Code Execution via pull_request_target Fork Checkout in CI Workflow 24.07.2026 10
CVE-2026-64035 igc: set tx buffer type for SMD frames 20.07.2026 9.8
CVE-2026-64037 wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled 20.07.2026 9.8
CVE-2026-64046 net: tls: prevent chain-after-chain in plain text SG 20.07.2026 9.8
CVE-2026-64047 net: tls: fix off-by-one in sg_chain entry count for wrapped sk_msg ring 20.07.2026 9.8
CVE-2026-64055 net: ethernet: cortina: Carry over frag counter 20.07.2026 9.8
CVE-2026-64056 net: ethernet: cortina: Make RX SKB per-port 20.07.2026 9.8
CVE-2026-64061 netfs: Fix early put of sink folio in netfs_read_gaps() 20.07.2026 9.8
CVE-2026-64066 netfs: Fix netfs_read_to_pagecache() to pause on subreq failure 20.07.2026 9.8
CVE-2026-64067 netfs: Fix missing barriers when accessing stream->subrequests locklessly 20.07.2026 9.8
CVE-2026-64068 netfs: Fix missing locking around retry adding new subreqs 20.07.2026 9.8
CVE-2026-64069 netfs: Fix cancellation of a DIO and single read subrequests 20.07.2026 9.8
CVE-2026-64080 firmware: arm_ffa: Snapshot notifier callbacks under lock 20.07.2026 9.3
CVE-2026-64089 batman-adv: tt: fix negative last_changeset_len 20.07.2026 9.8
CVE-2026-64091 batman-adv: tt: fix TOCTOU race for reported vlans 20.07.2026 9.8
CVE-2026-64102 RDMA/siw: Reject MPA FPDU length underflow before signed receive math 20.07.2026 9.8
CVE-2026-64106 KVM: arm64: vgic-its: Reject restored DTE with out-of-range num_eventid_bits 20.07.2026 9
CVE-2026-64113 ixgbevf: fix use-after-free in VEPA multicast source pruning 20.07.2026 9.8
CVE-2026-64122 net/mlx5e: Fix use-after-free in mlx5e_tx_reporter_timeout_recover 20.07.2026 9.8
CVE-2026-64125 net: bcmgenet: keep RBUF EEE/PM disabled 20.07.2026 9.8
CVE-2026-64132 ipv6: ioam: refresh hdr pointer before ioam6_event() 20.07.2026 9.8
CVE-2026-64136 smb: client: protect tc_count increment in smb2_find_smb_sess_tcon_unlocked() 20.07.2026 9.8
CVE-2026-64142 ksmbd: close durable scavenger races against m_fp_list lookups 20.07.2026 9.8
CVE-2026-64150 netfilter: nft_inner: release local_lock before re-enabling softirqs 20.07.2026 9.8
CVE-2026-64160 netfs: Fix potential for tearing in ->remote_i_size and ->zero_point 20.07.2026 9.8
CVE-2026-64162 idpf: fix read_dev_clk_lock spinlock init in idpf_ptp_init() 20.07.2026 9.8
CVE-2026-64016 ksmbd: fix durable reconnect error path file lifetime 20.07.2026 9.8
CVE-2026-64018 net: mana: validate rx_req_idx to prevent out-of-bounds array access 20.07.2026 9.3
CVE-2026-64024 tcp: fix stale per-CPU tcp_tw_isn leak enabling ISN prediction 20.07.2026 9.4
CVE-2026-64025 bpf, skmsg: fix verdict sk_data_ready racing with ktls rx 20.07.2026 9.8
CVE-2026-64033 RDMA/rtrs: Fix use-after-free in path file creation cleanup 20.07.2026 9.8
CVE-2026-64034 net: mana: Fix TOCTOU double-fetch of hwc_msg_id from DMA buffer 20.07.2026 9.3
CVE-2026-63886 scsi: target: iscsi: Validate CHAP_R length before base64 decode 20.07.2026 9.8
CVE-2026-63887 scsi: target: iscsi: Bound iscsi_encode_text_output() appends to rsp_buf 20.07.2026 9.8
CVE-2026-63888 scsi: target: iscsi: Fix CRC overread and double-free in iscsit_handle_text_cmd() 20.07.2026 9.8
CVE-2026-63912 xfrm: esp: restore combined single-frag length gate 20.07.2026 9.8
CVE-2026-63922 ipv6: exthdrs: refresh nh after handling HAO option 20.07.2026 9.8
CVE-2026-63924 ipv6: exthdrs: refresh nh pointer after ipv6_hop_jumbo() 20.07.2026 9.8
CVE-2026-63938 KVM: SEV: Check PSC request indices against the actual size of the buffer 20.07.2026 9.3
CVE-2026-63939 KVM: SEV: Compute the correct max length of the in-GHCB scratch area 20.07.2026 9.3
CVE-2026-63940 KVM: SEV: Ignore Port I/O requests of length '0' 20.07.2026 9.3
CVE-2026-63978 net/handshake: Drain pending requests at net namespace exit 20.07.2026 9.8
CVE-2026-63979 net/handshake: hand off the pinned file reference to accept_doit 20.07.2026 9.8
CVE-2026-63984 ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() 20.07.2026 9.8
CVE-2026-63992 tunnels: do not assume transport header in iptunnel_pmtud_check_icmp() 20.07.2026 9.1
CVE-2026-63993 vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() 20.07.2026 9.8
CVE-2026-63994 tunnels: load network headers after skb_cow() in iptunnel_pmtud_build_icmp[v6]() 20.07.2026 9.8
CVE-2026-64000 net: hsr: fix potential OOB access in supervision frame handling 20.07.2026 9.8
CVE-2026-64007 netfilter: synproxy: refresh tcphdr after skb_ensure_writable 20.07.2026 9.8
CVE-2026-63857 net: airoha: Do not read uninitialized fragment address in airoha_dev_xmit() 20.07.2026 9.8
CVE-2026-53384 serial: 8250_dw: unregister 8250 port if clk_notifier_register() fails 20.07.2026 9.8
CVE-2026-53398 NFSD: Fix SECINFO_NO_NAME decode error cleanup 20.07.2026 9.8
CVE-2026-53399 nfsd: release layout stid on setlease failure 24.07.2026 9.8
CVE-2026-63795 9p: avoid putting oldfid in p9_client_walk() error path 20.07.2026 10
CVE-2026-63800 pNFS: Fix use-after-free in pnfs_update_layout() 20.07.2026 9.8
CVE-2026-63808 exfat: fix potential use-after-free in exfat_find_dir_entry() 20.07.2026 9.8
CVE-2026-63825 gcov: use atomic counter updates to fix concurrent access crashes 20.07.2026 9.8
CVE-2026-63830 net: skmsg: preserve sg.copy across SG transforms 24.07.2026 9.4
CVE-2026-9323 Insecure PRNG and Information Exposure in urwid Web Display Backend 20.07.2026 9.2
CVE-2024-58366 SurrealDB before 1.1.1 Format String via Scripting Functions 20.07.2026 9
CVE-2025-71392 SurrealDB before 2.2.2 SurrealQL Injection via export 21.07.2026 9.4
CVE-2026-16117 @fastify/http-proxy vulnerable to prefix escape via URL-encoded characters 20.07.2026 10
CVE-2026-47865 VMware Avi Load Balancer Authentication Bypass Vulnerability 23.07.2026 9.8
CVE-2026-13446 Langflow is affected by remote code execution, denial of service, path traversal, and exposed credentials due to multiple unauthenticated and insufficiently authorized API endpoints 23.07.2026 9.8
CVE-2026-48062 CodeIgniter: Uploaded file extension validation bypass in `ext_in` rule 20.07.2026 9.8
CVE-2026-54159 ps_facetedsearch: PHP Object Injection in faceted search cache allows unauthenticated RCE 20.07.2026 10
CVE-2026-54466 websocket-driver: Message corruption via abuse of protocol length headers 20.07.2026 9.2
CVE-2026-55518 Avo: Missing Authorization in Avo Association Attach Endpoint Allows Unauthorized Relationship Manipulation and Privilege Escalation 20.07.2026 9.6

Latest Updates

CVE Title Updated Score
CVE-2026-17039 Pki-core: dogtag-pki: redhat-pki: pki-core: ca renewal request processing omits realm authorization check performed by enrollment path 24.07.2026
CVE-2026-64208 crypto/krb5, rxrpc: Fix lack of pre-decrypt/pre-verify length checks 24.07.2026
CVE-2026-64209 phy: qcom: qmp-usbc: Fix out-of-bounds array access in dp swing config 24.07.2026
CVE-2026-64210 net/mlx5e: xsk: Fix unlocked writing to ICOSQ 24.07.2026
CVE-2026-64211 srcu: Don't queue workqueue handlers to never-online CPUs 24.07.2026
CVE-2026-64212 wifi: iwlwifi: mld: don't dereference a pointer before NULL checking it 24.07.2026
CVE-2026-64213 hwmon: (lm90) Add lock protection to lm90_alert 24.07.2026
CVE-2026-64214 powerpc/time: Remove redundant preempt_disable|enable() calls from arch_irq_work_raise() 24.07.2026
CVE-2026-64215 drm/msm/a6xx: Check kzalloc return in a8xx_hfi_send_perf_table 24.07.2026
CVE-2026-64216 netfs: Fix potential UAF in netfs_unlock_abandoned_read_pages() 24.07.2026
CVE-2026-64217 netfs: Fix overrun check in netfs_extract_user_iter() 24.07.2026
CVE-2026-64218 batman-adv: bla: fix report_work leak on backbone_gw purge 24.07.2026
CVE-2026-64219 drm/amd/display: Validate payload length and link_index in dc_process_dmub_aux_transfer_async 24.07.2026
CVE-2026-64220 device property: set fwnode->secondary to NULL in fwnode_init() 24.07.2026
CVE-2026-64221 spi: ti-qspi: fix use-after-free after DMA setup failure 24.07.2026
CVE-2026-64222 octeontx2-pf: avoid double free of pool->stack on AQ init failure 24.07.2026
CVE-2026-64223 wifi: mac80211: consume only present negotiated TTLM maps 24.07.2026
CVE-2026-64224 octeontx2-pf: fix double free in rvu_rep_rsrc_init() 24.07.2026
CVE-2026-64225 octeontx2-af: CGX: add bounds check to cgx_speed_mbps index 24.07.2026
CVE-2026-64226 sched_ext: Avoid UAF in scx_root_enable_workfn() init failure path 24.07.2026
CVE-2026-64227 ACPI: driver: Check ACPI_COMPANION() against NULL during probe 24.07.2026
CVE-2026-64228 net: ethtool: phy: avoid NULL deref when PHY driver is unbound 24.07.2026
CVE-2026-64229 x86/mm: Disable broadcast TLB flush when PCID is disabled 24.07.2026
CVE-2026-64230 regulator: tps65219: fix irq_data.rdev not being assigned 24.07.2026
CVE-2026-64231 drm/msm/dsi: don't dump registers past the mapped region 24.07.2026
CVE-2026-64232 block: recompute nr_integrity_segments in blk_insert_cloned_request 24.07.2026
CVE-2026-64233 usb: gadget: uvc: hold opts->lock across XU walks in uvc_function_bind 24.07.2026
CVE-2026-64234 tty: serial: pch_uart: add check for dma_alloc_coherent() 24.07.2026
CVE-2026-64235 x86/ftrace: Relocate %rip-relative percpu refs in dynamic trampolines 24.07.2026
CVE-2026-64236 i2c: davinci: fix division by zero on missing clock-frequency 24.07.2026
CVE-2026-64237 Input: elan_i2c - validate firmware size before use 24.07.2026
CVE-2026-64238 gpio: shared: fix deadlock on shared proxy's parent removal 24.07.2026
CVE-2026-64239 mm/damon/sysfs-schemes: delete tried region in regions_rmdirs() 24.07.2026
CVE-2026-64240 media: rc: igorplugusb: fix control request setup packet 24.07.2026
CVE-2026-64241 gpio: rockchip: teardown bugs and resource leaks 24.07.2026
CVE-2026-64242 usb: gadget: net2280: Fix double free in probe error path 24.07.2026
CVE-2026-64243 ASoC: codecs: simple-mux: Fix enum control bounds check 24.07.2026
CVE-2026-64244 drivers/base/memory: set mem->altmap after successful device registration 24.07.2026
CVE-2026-64245 fbdev: modedb: fix a possible UAF in fb_find_mode() 24.07.2026
CVE-2026-64246 power: reset: linkstation-poweroff: fix use-after-free in the linkstation_poweroff_init() 24.07.2026
CVE-2026-64247 KVM: x86: hyper-v: Bound the bank index when querying sparse banks 24.07.2026
CVE-2026-64248 MIPS: smp: report dying CPU to RCU in stop_this_cpu() 24.07.2026
CVE-2026-64249 fpga: region: fix use-after-free in child_regions_with_firmware() 24.07.2026
CVE-2026-64250 LoongArch: Report dying CPU to RCU in stop_this_cpu() 24.07.2026
CVE-2026-64251 pwrseq: core: fix use-after-free in pwrseq_debugfs_seq_next() 24.07.2026
CVE-2026-64252 MIPS: DEC: Prevent initial console buffer from landing in XKPHYS 24.07.2026
CVE-2026-64253 kernel/fork: clear PF_BLOCK_TS in copy_process() 24.07.2026
CVE-2026-64254 NTB: epf: Avoid pci_iounmap() with offset when PEER_SPAD and CONFIG share BAR 24.07.2026
CVE-2026-64255 wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers 24.07.2026
CVE-2026-65693 Microweber CMS 2.0.20 Server-Side Template Injection via Mail Templates 24.07.2026
CVE-2026-66027 Suna < 0.9.102 Broken Access Control via Message Queue API 24.07.2026
CVE-2026-16798 24.07.2026
CVE-2026-16799 24.07.2026
CVE-2026-16800 24.07.2026
CVE-2026-16801 24.07.2026
CVE-2026-16802 24.07.2026
CVE-2026-49326 Apache HBase: Missing scanner instance owner check in thrift delegation service 24.07.2026
CVE-2026-56163 Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability 24.07.2026 10
CVE-2026-57106 Data Quality Elevation of Privilege Vulnerability 24.07.2026 10
CVE-2026-58586 Image::WebP versions through 0.2 for Perl bundle a vulnerable version of libwebp 24.07.2026
CVE-2026-58630 Azure App Service on Azure Stack Hub Elevation of Privilege Vulnerability 24.07.2026 10
CVE-2026-66004 BlenderMCP Path Traversal via download_polyhaven_asset API 24.07.2026
CVE-2026-66005 Jan Local API Server CORS Origin Reflection via 0.0.0.0 Binding 24.07.2026
CVE-2026-66006 lakeFS Unauthenticated Operator Metadata Overwrite via setup_comm_prefs 24.07.2026
CVE-2026-66007 Datasets Path Traversal via Unsanitized file_name Metadata 24.07.2026
CVE-2026-8789 Easy Appointments <= 3.12.27 - Missing Authorization to Authenticated (Contributor+) Arbitrary Connection Deletion 24.07.2026 8.1
CVE-2026-12496 Loytec LINX firmware: Unauthenticated stored XSS in OPC XML-DA server 24.07.2026
CVE-2026-12502 Loytec LINX firmware: Improper Privilege Management in /usr/bin/ltsudo 24.07.2026
CVE-2026-12503 Loytec LINX firmware: Improper Link Resolution in /usr/bin/larm_starter 24.07.2026
CVE-2026-12504 Loytec LINX firmware: Improper Authentication in PAM configuration 24.07.2026
CVE-2026-17059 Keycloak-services: keycloak-services: information disclosure via role-users endpoint bypasses per-user view filter 24.07.2026
CVE-2026-55728 Loytec LINX firmware: Stack-based Buffer Overflow in cmd_ipaddr_conflict 24.07.2026
CVE-2026-55729 Loytec LWEB802: Exposure of Sensitive Information in browser localStorage 24.07.2026
CVE-2026-55730 Loytec LWEB802: Reflected Cross-Site Scripting in LWEB802 24.07.2026
CVE-2026-55731 Loytec LINX firmware: Unchecked input for loop condition in the SNMP agent 24.07.2026
CVE-2026-55732 Loytec LINX firmware: Out-of-bounds Read in BACnet packet parsing (bacdt_datetime_to_tod) 24.07.2026
CVE-2026-7007 Division by zero in Zephyr ext2 superblock parsing allows DoS via crafted filesystem image 24.07.2026 4.6
CVE-2026-8308 Reflected XSS Polen Media's Website Template 24.07.2026 6.1
CVE-2026-17048 Keycloak-services: keycloak-services: vault-resolved rotated client secrets leaked via admin rest api 24.07.2026
CVE-2026-16743 Accountsservice: accountsservice: arbitrary file read via seticonfile for systemd-homed users 24.07.2026
CVE-2026-45811 Apache NimBLE: Buffer overflow in socket HCI transport 24.07.2026
CVE-2026-45812 Apache NimBLE: OOB Read via sizeof(pointer) in Legacy Advertising Report Handler 24.07.2026
CVE-2026-45813 Apache NimBLE: Incorrect data validation in BASS add/modify source operation 24.07.2026
CVE-2026-45815 Apache NimBLE: Remote reachable assertion in ATT Read Multiple Variable Response handler 24.07.2026
CVE-2026-45816 Apache NimBLE: NULL pointer dereference vulnerability in SMP LTK request 24.07.2026
CVE-2026-46452 Apache NimBLE: Mesh Proxy SAR reassembly unbounded append and unchecked failure 24.07.2026
CVE-2026-66008 Parse Server 9.0.0 Information Disclosure via GraphQL Error Messages 24.07.2026
CVE-2026-66009 Parse Server 9.0.0 Information Disclosure via GraphQL Error Messages 24.07.2026
CVE-2026-66010 DOMPurify before 3.4.12 Hook Bypass via CUSTOM_ELEMENT_HANDLING 24.07.2026
CVE-2026-66142 Apache Neethi: Uncontrolled recursion in policy processing 24.07.2026
CVE-2026-66143 Apache Neethi: Missing global alternative-output budget across policy computation paths 24.07.2026
CVE-2026-66144 Apache Neethi: Remote PolicyReference fetch lacks resource bounds 24.07.2026
CVE-2026-7484 Improper Access Control in Abis Technology's AVESİS 24.07.2026 5.3
CVE-2026-9765 CVE-2026-9765 CVE Record 24.07.2026 7.1
CVE-2026-15243 Improper Validation of Certificate in CAS Client 24.07.2026
CVE-2026-16730 Dbus-broker: dbus-broker: session bus denial of service via emfile during peer setup 24.07.2026
CVE-2026-10610 Local privilege escalation in ESET security applications for macOS 24.07.2026
CVE-2026-15810 Cross-Site Scripting (XSS) in Looker allows Admin Account Takeover 24.07.2026
CVE-2026-10033 EventON Action User <= 2.5.14 - Missing Authorization to Unauthenticated Privilege Escalation via evoau_save_capability AJAX Action 24.07.2026 7.3
CVE-2026-15401 VikBooking Hotel Booking Engine & PMS <= 1.8.13 - Unauthenticated Stored Cross-Site Scripting via Custom Field 'vbfX' Parameter 24.07.2026 7.2
CVE-2026-15663 Ninja Forms <= 3.14.9 - Authenticated (Administrator+) SQL Injection via Import File 'settings' Key 24.07.2026 4.9
CVE-2026-16634 TOML::XS versions before 0.06 for Perl bundle an unsupported and vulnerable version of tomlc99 24.07.2026
CVE-2026-7483 Local privilege escalation in ESET security applications for macOS 24.07.2026
CVE-2026-12702 24.07.2026
CVE-2026-24727 SUNNET Corporate Training Management System - Unrestricted Upload of File with Dangerous Type 24.07.2026
CVE-2026-49743 GPU DDK - Write UAF of sync checkpoint in GPU kick function after export fence file descriptor is prematurely closed 24.07.2026
CVE-2026-49744 GPU DDK - Unchecked ui32TracePointer in rgxfw_log_ex() 24.07.2026
CVE-2026-49745 GPU DDK - Unvalidated sHWPerfCtlDMABuf GPU-VA, DMA-write into FW privdata via MMU ctx 0 24.07.2026
CVE-2026-15346 VikBooking Hotel Booking Engine & PMS <= 1.8.13 - Reflected Cross-Site Scripting via 'category_id' Parameter 24.07.2026 6.1
CVE-2026-15704 CWE-863: ABAC authorization bypass via trailing slash route normalization in Eclipse BaSyx Go Components 24.07.2026 9.8
CVE-2026-15739 Rich Showcase for Google Reviews <= 6.9.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'pagination' Shortcode Attribute 24.07.2026 6.4
CVE-2026-15821 SureDash <= 1.10.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes 24.07.2026 6.4
CVE-2026-56391 Out‑of‑bounds Read in GNU coreutils 24.07.2026
CVE-2026-56392 Heap-based Buffer Overflow in GNU coreutils 24.07.2026
CVE-2026-63317 Apache OpenNLP: Arbitrary Class Instantiation in GeneratorFactory via Feature Descriptor XML 24.07.2026
CVE-2026-12654 Payment Plugins for Stripe WooCommerce <= 4.0.7 - Missing Authorization to Unauthenticated Arbitrary Order Status Modification via Empty Webhook Secret 24.07.2026 5.3
CVE-2026-15333 Cozy Blocks <= 2.2.11 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'cozyCustomFont' Block Attribute 24.07.2026 6.4
CVE-2026-15334 Cozy Blocks <= 2.2.11 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'icon.view' Block Attribute 24.07.2026 6.4
CVE-2026-15464 WP Hotel Booking <= 2.3.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'widget_search' Shortcode Attribute 24.07.2026 6.4
CVE-2026-15648 Brands for WooCommerce <= 3.8.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'width' Shortcode Attribute 24.07.2026 6.4
CVE-2026-15653 Visualizer <= 4.0.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'backend-title' Parameter 24.07.2026 6.4
CVE-2026-15665 Fluent Support <= 2.3.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'redirect-to' Shortcode Attribute 24.07.2026 6.4
CVE-2026-15755 Open User Map <= 1.4.45 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes 24.07.2026 6.4
CVE-2026-16519 GeoVision GV-IP Device Utility DLL Search Order Hijacking Vulnerability 24.07.2026 7.3
CVE-2026-16910 Quay: ssrf in red hat quay notification webhooks (slack/generic) 24.07.2026
CVE-2026-12497 ProfilePress < 4.16.18 - Unauthenticated Privilege Escalation via Registration Role Selection 24.07.2026
CVE-2026-12688 ProfileGrid < 5.9.9.7 - Unauthenticated Payment Bypass and Forced Group Membership via PayPal IPN Forgery 24.07.2026
CVE-2026-12689 ProfileGrid < 5.9.9.7 - Subscriber+ Cross-User Private Message Thread Deletion and Tampering via Missing Authorization 24.07.2026
CVE-2026-12690 ProfileGrid < 5.9.9.7 - Subscriber+ Premium License Tampering via Missing Authorization 24.07.2026
CVE-2026-12877 Software Issue Manager < 5.1.0 - Unauthenticated SQL Injection via Search Parameter 24.07.2026
CVE-2026-12981 CAFEHAUS API <= 1.0.0 - Unauthenticated Arbitrary User Password Reset 24.07.2026
CVE-2026-14172 Rapid7 InsightVM, Nexpose, and Insight Agent Local Privilege Escalation via Unvalidated Executable Invocation 24.07.2026 7.8
CVE-2026-14603 WowOptin < 1.4.38 - Unauthenticated Opt-in Deactivation and Template Row Injection 24.07.2026
CVE-2026-16870 Multiple Security Vulnerabilities in Snowflake libsnowflakeclient 24.07.2026 8.8
CVE-2026-54422 24.07.2026 5.5
CVE-2026-66138 24.07.2026 7.2
CVE-2026-66139 24.07.2026 4.8
CVE-2026-66140 24.07.2026 8.4
CVE-2026-66141 24.07.2026 7.4
CVE-2025-9205 MapSVG Lite <= 8.14.0 - Authenticated (Contributor+) Stored Cross-Site Scripting 24.07.2026 6.4
CVE-2026-11354 Participants Database <= 2.7.8.3 - Missing Authorization to Unauthenticated Arbitrary Record Update / Sensitive Information Exposure via 'id' Parameter 24.07.2026 5.3
CVE-2026-11922 Rate-limit Bypass in zenml-io/zenml 24.07.2026
CVE-2026-12736 WPify Woo <= 5.4.16 - Authenticated (Shop Manager+) Privilege Escalation via Arbitrary Option Update via save_option REST Endpoint 24.07.2026 8
CVE-2026-13464 Kirki <= 6.0.14 - Insecure Direct Object Reference to Unauthenticated Sensitive Information Disclosure via 'context' Parameter 24.07.2026 5.3
CVE-2026-15100 Post Grid Gutenberg Blocks <= 5.0.32 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'searchnoresult' Block Attribute 24.07.2026 6.4
CVE-2026-15420 Nexter Blocks <= 5.0.0 - Authenticated (Subscriber+) Path Traversal to Arbitrary CSS/JS File Deletion via 'plus_name' Parameter 24.07.2026 4.3
CVE-2026-6454 Firelight Lightbox <= 2.3.20 - Authenticated (Contributor+) Stored DOM Cross-Site Scripting via PDF beforeLoad 'href' Attribute 24.07.2026 6.4
CVE-2026-35425 Azure API Management (APIM) Remote Code Execution Vulnerability 24.07.2026 8
CVE-2026-49159 Microsoft Graph Information Disclosure Vulnerability 24.07.2026 6.5
CVE-2026-50517 Microsoft M365 Copilot Remote Code Execution Vulnerability 24.07.2026 9.9
CVE-2026-54120 Microsoft Surface Remote Code Execution Vulnerability 24.07.2026 9.9
CVE-2026-56160 Azure Red Hat OpenShift (ARO) Elevation of Privilege Vulnerability 24.07.2026 9.1
CVE-2026-56165 Microsoft Account Remote Code Execution Vulnerability 24.07.2026 9.8
CVE-2026-56167 Azure AI Search Elevation of Privilege Vulnerability 24.07.2026 8.5
CVE-2026-56191 Microsoft Exchange Online Tampering Vulnerability 24.07.2026 10
CVE-2026-58275 Azure DNS Elevation of Privilege Vulnerability 24.07.2026 10
CVE-2026-62825 Azure Key Vault Elevation of Privilege Vulnerability 24.07.2026 10
CVE-2026-16767 Ne-Lexa php-zip ZIP ZipFile.php extractTo path traversal 24.07.2026
CVE-2026-28698 Exposure of Sensitive System Information to an Unauthorized Control Sphere in Panduit IntraVUE by Pronetiqs 24.07.2026 8.6
CVE-2026-40430 Plaintext Storage of a Password in Panduit IntraVUE by Pronetiqs 24.07.2026 7.5
CVE-2026-42933 Unintended Proxy or Intermediary in Panduit IntraVUE by Pronetiqs 24.07.2026 10
CVE-2026-44955 Exposure of Sensitive System Information to an Unauthorized Control Sphere in Panduit IntraVUE by Pronetiqs 24.07.2026 5.3
CVE-2026-50044 Inadequate Encryption Strength in Panduit IntraVUE by Pronetiqs 24.07.2026 6.8
CVE-2026-16765 CodeAstro Online Classroom loginlinkadmin.php sql injection 24.07.2026
CVE-2026-16804 24.07.2026
CVE-2026-16805 24.07.2026
CVE-2026-16806 24.07.2026
CVE-2026-16807 24.07.2026
CVE-2024-58353 Cal.com through 4.7.15 Cross-Site Scripting via booking questions 24.07.2026
CVE-2024-58354 cal.com Repository Takeover via pull_request_target Workflow 24.07.2026
CVE-2024-58355 Cal.com through 4.7.15 Cross-Site Scripting via booking questions 24.07.2026
CVE-2025-71389 Cal.com before 5.9.9 Remote Code Execution via RSC 23.07.2026
CVE-2026-16763 localstack serverless-localstack Configuration index.js os command injection 24.07.2026
CVE-2026-16764 OWASP DefectDojo API/Web serializers.py UserSerializer privileges management 24.07.2026
CVE-2026-63313 9Router before 0.4.72 Server-Side Request Forgery via /v1/web/fetch 24.07.2026
CVE-2026-63732 9router before 0.4.60 Remote Code Execution via default password 23.07.2026
CVE-2026-65604 Skipper Incomplete Fix for CVE-2026-50197 Policy Bypass 24.07.2026
CVE-2026-65694 Microweber CMS 2.0.20 Path Traversal via ServeStaticFileController 24.07.2026
CVE-2026-16002 Out-of-bounds Read in MZ Automation lib60870 24.07.2026 8.2
CVE-2026-49035 Stack-based Buffer Overflow in MZ Automation libIEC61850 24.07.2026 8.1
CVE-2026-50032 NULL Pointer Dereference in MZ Automation libIEC61850 24.07.2026 7.5
CVE-2026-50103 Improper Handling of Syntactically Invalid Structure in MZ Automation libIEC61850 24.07.2026 6.5
CVE-2026-6924 Weak entropy initialization in Silicon Labs Matter SiWx917 TinyCrypt path 24.07.2026
CVE-2026-15981 SAML Single Sign On <= 5.4.4 - Unauthenticated Authentication Bypass via SAMLResponse Parameter 23.07.2026 9.8
CVE-2026-21653 CCure and Victor Application Server - Server Side Request Forgery 24.07.2026
CVE-2026-34496 victor Web - Priviledge Escalation 24.07.2026
CVE-2026-38764 23.07.2026
CVE-2026-47724 nebula-mesh: API endpoints lack ownership checks, enabling cross-operator privilege escalation 23.07.2026 9.9
CVE-2026-50039 Stack-based Buffer Overflow in MZ Automation libIEC61850 24.07.2026 7.5
CVE-2026-52439 23.07.2026
CVE-2026-10697 MFA Bypass in MOVEit Transfer 24.07.2026 7.5
CVE-2026-15630 CVE-2026-15630 23.07.2026
CVE-2026-15966 Improper CORS handling in MOVEit Transfer 24.07.2026 7.5
CVE-2026-15967 MOVEit Transfer refresh-token processing does not enforce updated account restrictions 24.07.2026 7.5
CVE-2026-15968 Stored XSS vulnerability in MOVEit Transfer 24.07.2026 7.1
CVE-2026-16796 Improper neutralization of argument delimiters in AWS Bedrock AgentCore Python SDK install_packages() 24.07.2026 7.3
CVE-2026-21655 C-CURE 9000 and Victor application server - Deserialization of Untrusted Data 24.07.2026
CVE-2026-39155 23.07.2026
CVE-2026-47723 nebula-mesh: Web UI and API responses lack security headers (CSP, X-Frame-Options, HSTS, etc.) 24.07.2026