| CVE-2026-40712 |
|
22.07.2026 |
9.1 |
| CVE-2026-46738 |
|
22.07.2026 |
9.1 |
| CVE-2026-16606 |
Unauthenticated remote code execution (pre-auth RCE) vulnerability in openFT for Linux and Oracle Solaris |
22.07.2026 |
9.3 |
| CVE-2026-2395 |
SQLi in Xpoda Türkiye Informatics Technology's No Code Platform |
22.07.2026 |
9.8 |
| CVE-2026-63048 |
Joomla Extension - joomlack.fr - Improper access control in Page Builder CK < 3.6.2 |
22.07.2026 |
9.4 |
| CVE-2026-47731 |
NASA AMMOS Instrument Toolkit: Path traversal resulting in arbitrary file append (can be triggered over the network by unauthenticated attacker) |
22.07.2026 |
9.1 |
| CVE-2026-60328 |
|
21.07.2026 |
9.8 |
| CVE-2026-60329 |
|
21.07.2026 |
9.8 |
| CVE-2026-60333 |
|
21.07.2026 |
9.9 |
| CVE-2026-60355 |
|
21.07.2026 |
9.8 |
| CVE-2026-60358 |
|
21.07.2026 |
10 |
| CVE-2026-60360 |
|
21.07.2026 |
10 |
| CVE-2026-60361 |
|
21.07.2026 |
9.9 |
| CVE-2026-60362 |
|
21.07.2026 |
9.8 |
| CVE-2026-60363 |
|
21.07.2026 |
9.8 |
| CVE-2026-60364 |
|
21.07.2026 |
9.8 |
| CVE-2026-60365 |
|
21.07.2026 |
10 |
| CVE-2026-60374 |
|
21.07.2026 |
9.8 |
| CVE-2026-60375 |
|
21.07.2026 |
9.8 |
| CVE-2026-60376 |
|
21.07.2026 |
9.8 |
| CVE-2026-60377 |
|
21.07.2026 |
9.9 |
| CVE-2026-60378 |
|
21.07.2026 |
9.8 |
| CVE-2026-60379 |
|
21.07.2026 |
10 |
| CVE-2026-60380 |
|
21.07.2026 |
9.8 |
| CVE-2026-60381 |
|
21.07.2026 |
9.9 |
| CVE-2026-60384 |
|
21.07.2026 |
9.8 |
| CVE-2026-60385 |
|
21.07.2026 |
9.8 |
| CVE-2026-60386 |
|
21.07.2026 |
9.8 |
| CVE-2026-60387 |
|
21.07.2026 |
9.8 |
| CVE-2026-60388 |
|
21.07.2026 |
9.8 |
| CVE-2026-60389 |
|
21.07.2026 |
10 |
| CVE-2026-60402 |
|
21.07.2026 |
9.9 |
| CVE-2026-60422 |
|
21.07.2026 |
9.9 |
| CVE-2026-60424 |
|
21.07.2026 |
9 |
| CVE-2026-60429 |
|
21.07.2026 |
9.9 |
| CVE-2026-60435 |
|
21.07.2026 |
9.8 |
| CVE-2026-60438 |
|
21.07.2026 |
9.1 |
| CVE-2026-60441 |
|
21.07.2026 |
9.8 |
| CVE-2026-60442 |
|
21.07.2026 |
9.8 |
| CVE-2026-60445 |
|
21.07.2026 |
9.9 |
| CVE-2026-60446 |
|
21.07.2026 |
9.8 |
| CVE-2026-60447 |
|
21.07.2026 |
9.9 |
| CVE-2026-60456 |
|
21.07.2026 |
9.9 |
| CVE-2026-60457 |
|
21.07.2026 |
9.9 |
| CVE-2026-60458 |
|
21.07.2026 |
9.9 |
| CVE-2026-60459 |
|
21.07.2026 |
9.9 |
| CVE-2026-60460 |
|
21.07.2026 |
9.8 |
| CVE-2026-60461 |
|
21.07.2026 |
9.9 |
| CVE-2026-60463 |
|
21.07.2026 |
9.8 |
| CVE-2026-60524 |
|
21.07.2026 |
9.9 |
| CVE-2026-60531 |
|
21.07.2026 |
9.9 |
| CVE-2026-60532 |
|
21.07.2026 |
9.8 |
| CVE-2026-60535 |
|
21.07.2026 |
9.8 |
| CVE-2026-60537 |
|
21.07.2026 |
9.9 |
| CVE-2026-60538 |
|
21.07.2026 |
9.8 |
| CVE-2026-60540 |
|
21.07.2026 |
9.6 |
| CVE-2026-60541 |
|
21.07.2026 |
9.8 |
| CVE-2026-60542 |
|
21.07.2026 |
9.9 |
| CVE-2026-60547 |
|
21.07.2026 |
9.9 |
| CVE-2026-60551 |
|
21.07.2026 |
9.8 |
| CVE-2026-60552 |
|
21.07.2026 |
9.9 |
| CVE-2026-60555 |
|
21.07.2026 |
9.8 |
| CVE-2026-60561 |
|
21.07.2026 |
9.9 |
| CVE-2026-60562 |
|
21.07.2026 |
9.9 |
| CVE-2026-60564 |
|
21.07.2026 |
9.6 |
| CVE-2026-60565 |
|
21.07.2026 |
9.9 |
| CVE-2026-60566 |
|
21.07.2026 |
9.8 |
| CVE-2026-60567 |
|
21.07.2026 |
9.1 |
| CVE-2026-60568 |
|
21.07.2026 |
9.9 |
| CVE-2026-60606 |
|
21.07.2026 |
9.1 |
| CVE-2026-60627 |
|
21.07.2026 |
9.9 |
| CVE-2026-60631 |
|
21.07.2026 |
9.3 |
| CVE-2026-60632 |
|
21.07.2026 |
9.3 |
| CVE-2026-60644 |
|
21.07.2026 |
10 |
| CVE-2026-60649 |
|
21.07.2026 |
9.1 |
| CVE-2026-60663 |
|
21.07.2026 |
9.9 |
| CVE-2026-60711 |
|
21.07.2026 |
9.9 |
| CVE-2026-60719 |
|
21.07.2026 |
9.9 |
| CVE-2026-60773 |
|
21.07.2026 |
9.6 |
| CVE-2026-60880 |
|
21.07.2026 |
9.8 |
| CVE-2026-60999 |
|
21.07.2026 |
9.8 |
| CVE-2026-61041 |
|
21.07.2026 |
9.9 |
| CVE-2026-61059 |
|
21.07.2026 |
9.1 |
| CVE-2026-61065 |
|
21.07.2026 |
9.8 |
| CVE-2026-61072 |
|
21.07.2026 |
9.9 |
| CVE-2026-61076 |
|
21.07.2026 |
9.9 |
| CVE-2026-61097 |
|
21.07.2026 |
9.6 |
| CVE-2026-61100 |
|
21.07.2026 |
9.8 |
| CVE-2026-61129 |
|
21.07.2026 |
9.8 |
| CVE-2026-61130 |
|
21.07.2026 |
9.1 |
| CVE-2026-61131 |
|
21.07.2026 |
9.8 |
| CVE-2026-61140 |
|
21.07.2026 |
9.8 |
| CVE-2026-61145 |
|
21.07.2026 |
9.8 |
| CVE-2026-61146 |
|
21.07.2026 |
9.9 |
| CVE-2026-61153 |
|
21.07.2026 |
9.1 |
| CVE-2026-61154 |
|
21.07.2026 |
9.8 |
| CVE-2026-61155 |
|
21.07.2026 |
9.1 |
| CVE-2026-61156 |
|
21.07.2026 |
9.1 |
| CVE-2026-61161 |
|
21.07.2026 |
9.8 |
| CVE-2026-61167 |
|
21.07.2026 |
9.8 |
| CVE-2026-61171 |
|
21.07.2026 |
9.1 |
| CVE-2026-61174 |
|
21.07.2026 |
9 |
| CVE-2026-61175 |
|
21.07.2026 |
9.3 |
| CVE-2026-61178 |
|
21.07.2026 |
9.8 |
| CVE-2026-61183 |
|
21.07.2026 |
9.8 |
| CVE-2026-61184 |
|
21.07.2026 |
9.1 |
| CVE-2026-61186 |
|
21.07.2026 |
9.4 |
| CVE-2026-61196 |
|
21.07.2026 |
9.8 |
| CVE-2026-61197 |
|
21.07.2026 |
9.1 |
| CVE-2026-61201 |
|
21.07.2026 |
9 |
| CVE-2026-61203 |
|
21.07.2026 |
9.4 |
| CVE-2026-61204 |
|
21.07.2026 |
9 |
| CVE-2026-61207 |
|
21.07.2026 |
9.3 |
| CVE-2026-61209 |
|
21.07.2026 |
9.9 |
| CVE-2026-61211 |
|
21.07.2026 |
9.9 |
| CVE-2026-61223 |
|
21.07.2026 |
9 |
| CVE-2026-61233 |
|
21.07.2026 |
9.8 |
| CVE-2026-61235 |
|
21.07.2026 |
9.1 |
| CVE-2026-61237 |
|
21.07.2026 |
9.9 |
| CVE-2026-61238 |
|
21.07.2026 |
9.1 |
| CVE-2026-61239 |
|
21.07.2026 |
9.9 |
| CVE-2026-61242 |
|
21.07.2026 |
9.9 |
| CVE-2026-61244 |
|
21.07.2026 |
9.1 |
| CVE-2026-61245 |
|
21.07.2026 |
9.8 |
| CVE-2026-62546 |
|
22.07.2026 |
9.1 |
| CVE-2026-62549 |
|
22.07.2026 |
9.6 |
| CVE-2026-65318 |
Verba (goldenverba) Unauthenticated Server-Side Request Forgery via WebSocket Import Endpoint HTMLReader |
22.07.2026 |
9.2 |
| CVE-2026-35290 |
|
21.07.2026 |
9.8 |
| CVE-2026-46876 |
|
21.07.2026 |
9.8 |
| CVE-2026-46924 |
|
21.07.2026 |
9.8 |
| CVE-2026-46982 |
|
21.07.2026 |
9.8 |
| CVE-2026-46983 |
|
21.07.2026 |
9.8 |
| CVE-2026-46989 |
|
21.07.2026 |
9.1 |
| CVE-2026-46994 |
|
21.07.2026 |
9.8 |
| CVE-2026-47036 |
|
21.07.2026 |
9.8 |
| CVE-2026-47040 |
|
21.07.2026 |
9.1 |
| CVE-2026-47056 |
|
21.07.2026 |
10 |
| CVE-2026-60168 |
|
21.07.2026 |
9.1 |
| CVE-2026-60173 |
|
21.07.2026 |
9.8 |
| CVE-2026-60197 |
|
21.07.2026 |
9.8 |
| CVE-2026-60198 |
|
21.07.2026 |
9.8 |
| CVE-2026-60199 |
|
21.07.2026 |
9.8 |
| CVE-2026-60200 |
|
21.07.2026 |
9.8 |
| CVE-2026-60202 |
|
21.07.2026 |
9.8 |
| CVE-2026-60204 |
|
21.07.2026 |
9.8 |
| CVE-2026-60205 |
|
21.07.2026 |
9.8 |
| CVE-2026-60206 |
|
21.07.2026 |
9.9 |
| CVE-2026-60208 |
|
21.07.2026 |
9.1 |
| CVE-2026-60209 |
|
21.07.2026 |
9.8 |
| CVE-2026-60210 |
|
21.07.2026 |
9.8 |
| CVE-2026-60212 |
|
21.07.2026 |
9.8 |
| CVE-2026-60215 |
|
21.07.2026 |
9.8 |
| CVE-2026-60216 |
|
21.07.2026 |
9.8 |
| CVE-2026-60217 |
|
21.07.2026 |
10 |
| CVE-2026-60219 |
|
21.07.2026 |
9.8 |
| CVE-2026-60220 |
|
21.07.2026 |
9.3 |
| CVE-2026-60221 |
|
21.07.2026 |
9.8 |
| CVE-2026-60224 |
|
21.07.2026 |
9.8 |
| CVE-2026-60225 |
|
21.07.2026 |
9.8 |
| CVE-2026-60226 |
|
21.07.2026 |
9.8 |
| CVE-2026-60227 |
|
21.07.2026 |
9.8 |
| CVE-2026-60228 |
|
21.07.2026 |
9.8 |
| CVE-2026-60229 |
|
21.07.2026 |
9.8 |
| CVE-2026-60230 |
|
21.07.2026 |
9.8 |
| CVE-2026-60232 |
|
21.07.2026 |
9.8 |
| CVE-2026-60234 |
|
21.07.2026 |
9.8 |
| CVE-2026-60236 |
|
21.07.2026 |
9.8 |
| CVE-2026-60239 |
|
21.07.2026 |
9.6 |
| CVE-2026-60240 |
|
21.07.2026 |
9.8 |
| CVE-2026-60241 |
|
21.07.2026 |
9.8 |
| CVE-2026-60242 |
|
21.07.2026 |
9.8 |
| CVE-2026-60244 |
|
21.07.2026 |
9.8 |
| CVE-2026-60246 |
|
21.07.2026 |
9.8 |
| CVE-2026-60247 |
|
21.07.2026 |
9.8 |
| CVE-2026-60248 |
|
21.07.2026 |
9.3 |
| CVE-2026-60249 |
|
21.07.2026 |
9 |
| CVE-2026-60250 |
|
21.07.2026 |
9.8 |
| CVE-2026-60251 |
|
21.07.2026 |
9.8 |
| CVE-2026-60253 |
|
21.07.2026 |
9.8 |
| CVE-2026-60254 |
|
21.07.2026 |
9.8 |
| CVE-2026-60256 |
|
21.07.2026 |
9.8 |
| CVE-2026-60257 |
|
21.07.2026 |
9.8 |
| CVE-2026-60258 |
|
21.07.2026 |
9.8 |
| CVE-2026-60259 |
|
21.07.2026 |
9.8 |
| CVE-2026-60262 |
|
21.07.2026 |
9.8 |
| CVE-2026-60264 |
|
21.07.2026 |
9.8 |
| CVE-2026-60267 |
|
21.07.2026 |
9.1 |
| CVE-2026-60269 |
|
21.07.2026 |
9.8 |
| CVE-2026-60272 |
|
21.07.2026 |
9.8 |
| CVE-2026-60274 |
|
21.07.2026 |
9.8 |
| CVE-2026-60275 |
|
21.07.2026 |
9.8 |
| CVE-2026-60276 |
|
21.07.2026 |
9.8 |
| CVE-2026-60278 |
|
21.07.2026 |
9.8 |
| CVE-2026-60279 |
|
21.07.2026 |
9.8 |
| CVE-2026-60280 |
|
21.07.2026 |
9.8 |
| CVE-2026-60285 |
|
21.07.2026 |
9.8 |
| CVE-2026-60286 |
|
21.07.2026 |
9.8 |
| CVE-2026-60287 |
|
21.07.2026 |
9.8 |
| CVE-2026-60288 |
|
21.07.2026 |
9.8 |
| CVE-2026-60289 |
|
21.07.2026 |
9.8 |
| CVE-2026-60290 |
|
21.07.2026 |
9.8 |
| CVE-2026-60291 |
|
21.07.2026 |
9.8 |
| CVE-2026-60292 |
|
21.07.2026 |
9.8 |
| CVE-2026-60294 |
|
21.07.2026 |
9.8 |
| CVE-2026-60296 |
|
21.07.2026 |
9.8 |
| CVE-2026-60297 |
|
21.07.2026 |
9.8 |
| CVE-2026-60298 |
|
21.07.2026 |
9.8 |
| CVE-2026-60299 |
|
21.07.2026 |
9.8 |
| CVE-2026-60300 |
|
21.07.2026 |
9.8 |
| CVE-2026-60302 |
|
21.07.2026 |
9.8 |
| CVE-2026-60306 |
|
21.07.2026 |
9.8 |
| CVE-2026-60308 |
|
21.07.2026 |
9.8 |
| CVE-2026-60326 |
|
21.07.2026 |
9.1 |
| CVE-2026-65317 |
Verba (goldenverba) Server-Side Request Forgery via /api/connect and Same-Origin Middleware Bypass |
21.07.2026 |
9.2 |
| CVE-2026-8984 |
Unauthenticated RCE |
21.07.2026 |
10 |
| CVE-2026-8985 |
Unauthenticated Command Injection |
21.07.2026 |
10 |
| CVE-2026-8986 |
Command Injection via Malicious OCPP Server |
21.07.2026 |
9.5 |
| CVE-2026-8987 |
Authenticated Heap Overflow |
21.07.2026 |
9.4 |
| CVE-2026-47708 |
MCP-for-Stata: Command injection via log_file_name parameter in Stata command wrapper |
22.07.2026 |
9.3 |
| CVE-2026-65057 |
Keep Unauthenticated Server-Side Request Forgery via POST /providers/healthcheck |
22.07.2026 |
9.2 |
| CVE-2026-8982 |
Hard-coded / Backdoor Accounts |
21.07.2026 |
10 |
| CVE-2026-8983 |
Backdoor Authentication Token |
21.07.2026 |
10 |
| CVE-2026-63764 |
lmdeploy Server-Side Request Forgery via HTTP Redirect Bypass of Private-IP Guard in Vision Image Fetch |
21.07.2026 |
9.2 |
| CVE-2026-64878 |
Command Injection |
21.07.2026 |
9.4 |
| CVE-2026-64879 |
Command Injection |
21.07.2026 |
9.4 |
| CVE-2016-20096 |
Linknat VOS3000/VOS2009 2.1.2.0 SQL Injection via login.jsp |
21.07.2026 |
9.3 |
| CVE-2026-64877 |
|
21.07.2026 |
9.4 |
| CVE-2026-47413 |
praisonai-platform: Any workspace member can add arbitrary user as owner via POST /workspaces/{id}/members |
22.07.2026 |
9.6 |
| CVE-2026-47416 |
praisonai-platform: Any workspace member can promote themselves (or any other member) to owner via PATCH /workspaces/{id}/members/{user_id} |
22.07.2026 |
9.6 |
| CVE-2026-47407 |
PraisonAI Platform has a cross-workspace IDOR + member-role privilege escalation |
22.07.2026 |
9.4 |
| CVE-2026-47410 |
praisonai-platform: JWT signing key defaults to hardcoded "dev-secret-change-me", allowing token forgery for any user when PLATFORM_ENV is unset |
22.07.2026 |
9.8 |
| CVE-2026-47391 |
PraisonAI's unauthenticated A2A official example can reach real LLM-driven `eval()` tool execution |
21.07.2026 |
9.8 |
| CVE-2026-47392 |
PraisonAI vulnerable to sandbox escape via `print.__self__` builtins module leak in `execute_code` (subprocess mode) |
21.07.2026 |
9.9 |
| CVE-2026-47393 |
PraisonAI `deploy --type api` emits a Flask server with authentication disabled by default |
22.07.2026 |
9.8 |
| CVE-2026-47396 |
PraisonAI call server exposes unauthenticated agent listing, invocation, and deletion when CALL_SERVER_TOKEN is unset |
22.07.2026 |
9.8 |
| CVE-2026-64824 |
Home Assistant Core < 2026.7.0 Symlink Path Traversal RCE via backup-restore |
21.07.2026 |
9.3 |
| CVE-2026-64825 |
Home Assistant Core < 2026.6.0 Path Traversal File Write via Backup Upload |
21.07.2026 |
9 |
| CVE-2026-65048 |
Ninja Forms Unauthenticated Stored Cross-Site Scripting via Repeatable Fieldset Submission Index |
22.07.2026 |
9.3 |
| CVE-2026-65008 |
Grav before 2.0.7 Remote Code Execution via Blueprint dynamicData |
22.07.2026 |
9.3 |
| CVE-2026-1617 |
SQLi in Turkmesh's Turkhotspot 5651 Loglama |
21.07.2026 |
9.8 |
| CVE-2026-13439 |
Easy Form Builder by WhiteStudio <= 4.0.11 - Unauthenticated Privilege Escalation to Administrator via Password Recovery REST Endpoint |
21.07.2026 |
9.8 |
| CVE-2026-64625 |
AVideo before 29.0 OS Command Injection via execAsync |
20.07.2026 |
9.3 |
| CVE-2026-13380 |
VSee Clinic and API Exposes Cleartext SFTP Credentials in Unauthenticated HTTP Responses |
21.07.2026 |
9 |
| CVE-2026-53595 |
FreeScout vulnerable to anonymous account takeover via /user-setup empty invite_hash on MySQL |
21.07.2026 |
9.4 |
| CVE-2026-16337 |
|
21.07.2026 |
9.4 |
| CVE-2026-44231 |
RT: Privilege escalation and information disclosure via REST 2.0 user collection endpoint |
21.07.2026 |
9.1 |
| CVE-2026-63766 |
GPT-SoVITS 20250606v2pro OS Command Injection via webui.py |
21.07.2026 |
9.3 |
| CVE-2026-63767 |
ktransformers Unauthenticated Pickle Deserialization RCE via ZMQ |
21.07.2026 |
9.3 |
| CVE-2026-61424 |
Joomla Extension - dj-extensions.com - Unauthenticated arbitrary file upload in DJ-Classifieds < 3.11.2 |
22.07.2026 |
10 |
| CVE-2026-61425 |
Joomla Extension - balbooa.com - Authentication bypass in Gridbox < 1.6.0 |
22.07.2026 |
9.4 |
| CVE-2026-61900 |
Joomla Extension - dj-extensions.com - Unauthenticated arbitrary file upload in DJ-jDownloads < 4.1.6 |
22.07.2026 |
10 |
| CVE-2026-60032 |
Joomla Extension - themexpert.com - Authenticated arbitrary file upload in JMedia < 1.6.0 |
21.07.2026 |
9.4 |
| CVE-2026-60034 |
Joomla Extension - themexpert.com - Authenticated stored XSS in JMedia Extension < 1.6.0 |
21.07.2026 |
9.4 |
| CVE-2026-39878 |
Chamilo stored XSS via user registration leads to admin account takeover |
20.07.2026 |
9.3 |
| CVE-2026-35048 |
Piwigo RCE via PHP Code Injection into Config File in Installer |
20.07.2026 |
9.8 |
| CVE-2026-41252 |
xrdp: lib_palette_update Heap Buffer Overflow & RCE |
20.07.2026 |
9.8 |
| CVE-2026-54051 |
Network-AI has an an OS Command Injection issue |
21.07.2026 |
9.9 |
| CVE-2026-35198 |
HeyForm vulnerable to stored XSS via form field titles |
20.07.2026 |
9 |
| CVE-2026-46428 |
lettre has TLS hostname verification disabled when using Boring TLS backend |
21.07.2026 |
9.1 |
| CVE-2026-51027 |
|
20.07.2026 |
9.9 |
| CVE-2026-46412 |
Malicious code in @beproduct/nestjs-auth (0.1.2 through 0.1.19) — Mini Shai-Hulud worm |
20.07.2026 |
10 |
| CVE-2026-12701 |
Pulpcore: pulpcore: relative_path_validator bypass via directory traversal in filesystemexport |
22.07.2026 |
9 |
| CVE-2026-57309 |
Blind SQL Injection in Windu CMS |
20.07.2026 |
9.3 |
| CVE-2026-63756 |
SurrealDB before 3.1.0 Privilege Escalation via RPC Session Race Condition |
21.07.2026 |
9.2 |
| CVE-2026-64620 |
FreeRDP before 3.28.0 Heap Buffer Overflow via crypto_rsa_common |
21.07.2026 |
9.3 |
| CVE-2026-64621 |
FreeRDP before 3.28.0 Double-Free via selectedmonitors |
21.07.2026 |
9.3 |
| CVE-2026-64622 |
Network-AI 5.12.2 through 5.13.3 Missing Authorization via ApprovalInbox |
21.07.2026 |
9.3 |
| CVE-2026-16242 |
Hypershift: konnectivity proxy-server accepts agent connections without validating client certificates |
21.07.2026 |
9.4 |
| CVE-2026-44359 |
Meshtastic GitHub repo vulnerable to Arbitrary Code Execution via pull_request_target Fork Checkout in CI Workflow |
20.07.2026 |
10 |
| CVE-2026-64035 |
igc: set tx buffer type for SMD frames |
20.07.2026 |
9.8 |
| CVE-2026-64037 |
wifi: iwlwifi: mld: fix TSO segmentation explosion when AMSDU is disabled |
20.07.2026 |
9.8 |
| CVE-2026-64046 |
net: tls: prevent chain-after-chain in plain text SG |
20.07.2026 |
9.8 |
| CVE-2026-64047 |
net: tls: fix off-by-one in sg_chain entry count for wrapped sk_msg ring |
20.07.2026 |
9.8 |
| CVE-2026-64055 |
net: ethernet: cortina: Carry over frag counter |
20.07.2026 |
9.8 |
| CVE-2026-64056 |
net: ethernet: cortina: Make RX SKB per-port |
20.07.2026 |
9.8 |
| CVE-2026-64061 |
netfs: Fix early put of sink folio in netfs_read_gaps() |
20.07.2026 |
9.8 |
| CVE-2026-64066 |
netfs: Fix netfs_read_to_pagecache() to pause on subreq failure |
20.07.2026 |
9.8 |
| CVE-2026-64067 |
netfs: Fix missing barriers when accessing stream->subrequests locklessly |
20.07.2026 |
9.8 |
| CVE-2026-64068 |
netfs: Fix missing locking around retry adding new subreqs |
20.07.2026 |
9.8 |
| CVE-2026-64069 |
netfs: Fix cancellation of a DIO and single read subrequests |
20.07.2026 |
9.8 |
| CVE-2026-64080 |
firmware: arm_ffa: Snapshot notifier callbacks under lock |
20.07.2026 |
9.3 |
| CVE-2026-64089 |
batman-adv: tt: fix negative last_changeset_len |
20.07.2026 |
9.8 |
| CVE-2026-64091 |
batman-adv: tt: fix TOCTOU race for reported vlans |
20.07.2026 |
9.8 |
| CVE-2026-64102 |
RDMA/siw: Reject MPA FPDU length underflow before signed receive math |
20.07.2026 |
9.8 |
| CVE-2026-64106 |
KVM: arm64: vgic-its: Reject restored DTE with out-of-range num_eventid_bits |
20.07.2026 |
9 |
| CVE-2026-64113 |
ixgbevf: fix use-after-free in VEPA multicast source pruning |
20.07.2026 |
9.8 |
| CVE-2026-64122 |
net/mlx5e: Fix use-after-free in mlx5e_tx_reporter_timeout_recover |
20.07.2026 |
9.8 |
| CVE-2026-64125 |
net: bcmgenet: keep RBUF EEE/PM disabled |
20.07.2026 |
9.8 |
| CVE-2026-64132 |
ipv6: ioam: refresh hdr pointer before ioam6_event() |
20.07.2026 |
9.8 |
| CVE-2026-64136 |
smb: client: protect tc_count increment in smb2_find_smb_sess_tcon_unlocked() |
20.07.2026 |
9.8 |
| CVE-2026-64142 |
ksmbd: close durable scavenger races against m_fp_list lookups |
20.07.2026 |
9.8 |
| CVE-2026-64150 |
netfilter: nft_inner: release local_lock before re-enabling softirqs |
20.07.2026 |
9.8 |
| CVE-2026-64160 |
netfs: Fix potential for tearing in ->remote_i_size and ->zero_point |
20.07.2026 |
9.8 |
| CVE-2026-64162 |
idpf: fix read_dev_clk_lock spinlock init in idpf_ptp_init() |
20.07.2026 |
9.8 |
| CVE-2026-64016 |
ksmbd: fix durable reconnect error path file lifetime |
20.07.2026 |
9.8 |
| CVE-2026-64018 |
net: mana: validate rx_req_idx to prevent out-of-bounds array access |
20.07.2026 |
9.3 |
| CVE-2026-64024 |
tcp: fix stale per-CPU tcp_tw_isn leak enabling ISN prediction |
20.07.2026 |
9.4 |
| CVE-2026-64025 |
bpf, skmsg: fix verdict sk_data_ready racing with ktls rx |
20.07.2026 |
9.8 |
| CVE-2026-64033 |
RDMA/rtrs: Fix use-after-free in path file creation cleanup |
20.07.2026 |
9.8 |
| CVE-2026-64034 |
net: mana: Fix TOCTOU double-fetch of hwc_msg_id from DMA buffer |
20.07.2026 |
9.3 |
| CVE-2026-63886 |
scsi: target: iscsi: Validate CHAP_R length before base64 decode |
20.07.2026 |
9.8 |
| CVE-2026-63887 |
scsi: target: iscsi: Bound iscsi_encode_text_output() appends to rsp_buf |
20.07.2026 |
9.8 |
| CVE-2026-63888 |
scsi: target: iscsi: Fix CRC overread and double-free in iscsit_handle_text_cmd() |
20.07.2026 |
9.8 |
| CVE-2026-63912 |
xfrm: esp: restore combined single-frag length gate |
20.07.2026 |
9.8 |
| CVE-2026-63922 |
ipv6: exthdrs: refresh nh after handling HAO option |
20.07.2026 |
9.8 |
| CVE-2026-63924 |
ipv6: exthdrs: refresh nh pointer after ipv6_hop_jumbo() |
20.07.2026 |
9.8 |
| CVE-2026-63938 |
KVM: SEV: Check PSC request indices against the actual size of the buffer |
20.07.2026 |
9.3 |
| CVE-2026-63939 |
KVM: SEV: Compute the correct max length of the in-GHCB scratch area |
20.07.2026 |
9.3 |
| CVE-2026-63940 |
KVM: SEV: Ignore Port I/O requests of length '0' |
20.07.2026 |
9.3 |
| CVE-2026-63978 |
net/handshake: Drain pending requests at net namespace exit |
20.07.2026 |
9.8 |
| CVE-2026-63979 |
net/handshake: hand off the pinned file reference to accept_doit |
20.07.2026 |
9.8 |
| CVE-2026-63984 |
ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() |
20.07.2026 |
9.8 |
| CVE-2026-63992 |
tunnels: do not assume transport header in iptunnel_pmtud_check_icmp() |
20.07.2026 |
9.1 |
| CVE-2026-63993 |
vxlan: do not reuse cached ip_hdr() value after skb_tunnel_check_pmtu() |
20.07.2026 |
9.8 |
| CVE-2026-63994 |
tunnels: load network headers after skb_cow() in iptunnel_pmtud_build_icmp[v6]() |
20.07.2026 |
9.8 |
| CVE-2026-64000 |
net: hsr: fix potential OOB access in supervision frame handling |
20.07.2026 |
9.8 |
| CVE-2026-64007 |
netfilter: synproxy: refresh tcphdr after skb_ensure_writable |
20.07.2026 |
9.8 |
| CVE-2026-63857 |
net: airoha: Do not read uninitialized fragment address in airoha_dev_xmit() |
20.07.2026 |
9.8 |
| CVE-2026-53384 |
serial: 8250_dw: unregister 8250 port if clk_notifier_register() fails |
20.07.2026 |
9.8 |
| CVE-2026-53398 |
NFSD: Fix SECINFO_NO_NAME decode error cleanup |
20.07.2026 |
9.8 |
| CVE-2026-53399 |
nfsd: release layout stid on setlease failure |
20.07.2026 |
9.8 |
| CVE-2026-63795 |
9p: avoid putting oldfid in p9_client_walk() error path |
20.07.2026 |
10 |
| CVE-2026-63800 |
pNFS: Fix use-after-free in pnfs_update_layout() |
20.07.2026 |
9.8 |
| CVE-2026-63808 |
exfat: fix potential use-after-free in exfat_find_dir_entry() |
20.07.2026 |
9.8 |
| CVE-2026-63825 |
gcov: use atomic counter updates to fix concurrent access crashes |
20.07.2026 |
9.8 |
| CVE-2026-63830 |
net: skmsg: preserve sg.copy across SG transforms |
20.07.2026 |
9.4 |
| CVE-2026-9323 |
Insecure PRNG and Information Exposure in urwid Web Display Backend |
20.07.2026 |
9.2 |
| CVE-2024-58366 |
SurrealDB before 1.1.1 Format String via Scripting Functions |
20.07.2026 |
9 |
| CVE-2025-71392 |
SurrealDB before 2.2.2 SurrealQL Injection via export |
21.07.2026 |
9.4 |
| CVE-2026-16117 |
@fastify/http-proxy vulnerable to prefix escape via URL-encoded characters |
20.07.2026 |
10 |
| CVE-2026-47865 |
VMware Avi Load Balancer Authentication Bypass Vulnerability |
20.07.2026 |
9.8 |
| CVE-2026-13446 |
Langflow is affected by remote code execution, denial of service, path traversal, and exposed credentials due to multiple unauthenticated and insufficiently authorized API endpoints |
21.07.2026 |
9.8 |
| CVE-2026-48062 |
CodeIgniter: Uploaded file extension validation bypass in `ext_in` rule |
20.07.2026 |
9.8 |
| CVE-2026-54159 |
ps_facetedsearch: PHP Object Injection in faceted search cache allows unauthenticated RCE |
20.07.2026 |
10 |
| CVE-2026-54466 |
websocket-driver: Message corruption via abuse of protocol length headers |
20.07.2026 |
9.2 |
| CVE-2026-55518 |
Avo: Missing Authorization in Avo Association Attach Endpoint Allows Unauthorized Relationship Manipulation and Privilege Escalation |
20.07.2026 |
9.6 |
| CVE-2026-15091 |
Multiple Vulnerabilities in IBM Engineering AI hub. |
20.07.2026 |
9.3 |
| CVE-2026-63030 |
WordPress < 7.0.2 - REST API batch-route confusion and SQL injection issue leading to Remote Code Execution |
22.07.2026 |
9.8 |
| CVE-2026-8476 |
Disk Cache Deserialization Remote Code Execution Vulnerability |
20.07.2026 |
9.9 |
| CVE-2026-8481 |
Remote Code Execution via Code Validation Endpoint |
17.07.2026 |
9.9 |
| CVE-2026-8505 |
Authentication Bypass in Webhook Endpoints Allowed Unauthorized Flow Execution |
21.07.2026 |
9.8 |
| CVE-2026-8635 |
Arbitrary Code Execution in Python Interpreter Component |
21.07.2026 |
9.9 |
| CVE-2026-8859 |
Path Traversal in APIRequest Component via Content-Disposition Header |
20.07.2026 |
9.9 |
| CVE-2026-9103 |
Unauthenticated Superuser Token Issuance via Auto-Login Endpoint |
20.07.2026 |
9.8 |
| CVE-2026-9135 |
Policies Component Dynamic CodeInput Fields Bypass Custom Component Validation |
20.07.2026 |
9.9 |
| CVE-2026-9198 |
Unauthenticated Remote Code Execution via Auto-Login Bypass and Code Validation |
18.07.2026 |
9.8 |
| CVE-2026-9202 |
Unauthenticated User Registration Could Lead to Remote Code Execution |
18.07.2026 |
9.8 |
| CVE-2026-12693 |
IDOR in Vimesoft's Enterprise Video Platform |
17.07.2026 |
9.4 |
| CVE-2026-12694 |
Missing Authorization in Vimesoft's Enterprise Video Platform |
17.07.2026 |
9.1 |
| CVE-2026-54496 |
Missing copy constraint in halo2_gadgets variable-base scalar multiplication allows under-constrained base, breaking Orchard Action circuit soundness |
17.07.2026 |
9.3 |
| CVE-2026-12692 |
Improper Authentication in Vimesoft's Enterprise Video Platform |
17.07.2026 |
9.8 |
| CVE-2026-8297 |
SQLi in GIS Informatics' GisLab Laboratory Management System |
17.07.2026 |
9.8 |
| CVE-2026-9586 |
Unauthenticated SQL Injection Leading to Remote Code Execution in Switchvox SMB |
17.07.2026 |
9.3 |
| CVE-2024-23564 |
|
17.07.2026 |
9.1 |
| CVE-2026-15982 |
Aimogen Pro - All-in-One AI Content Writer, Editor, ChatBot & Automation Toolkit <= 2.8.4 - Unauthenticated Privilege Escalation via 'aiomatic_call_google_ai_function' |
17.07.2026 |
9.8 |
| CVE-2026-14956 |
Bricksforge <= 3.1.8.6 - Unauthenticated Privilege Escalation via Pro Forms fieldIds Parameter |
21.07.2026 |
9.8 |
| CVE-2026-62232 |
Grav < 2.0.4 2FA Bypass via Secret Regeneration |
17.07.2026 |
9.1 |
| CVE-2026-62241 |
clawvet < 0.7.5 Hard-coded JWT Secret Session Forgery |
17.07.2026 |
9.3 |
| CVE-2026-44181 |
Jupyter Enterprise Gateway: Jinja2 Template Server Side Template Injection results in Remote Code Execution |
17.07.2026 |
10 |
| CVE-2026-44182 |
Jupyter Enterprise Gateway Has Kubernetes Manifest Injection via Jinja2 Template Rendering |
17.07.2026 |
10 |
| CVE-2026-44180 |
Jupyter Enterprise Gateway: ContainerProcessProxy._enforce_prohibited_ids can be Bypassed |
17.07.2026 |
9.8 |
| CVE-2026-53412 |
Zoom Workplace VDI Plugin for Windows - Improper Input Validation |
17.07.2026 |
9.8 |
| CVE-2026-15422 |
SCTP needs to better-check INIT ACK chunk parameters |
17.07.2026 |
9.1 |
| CVE-2026-63089 |
WireGuard Easy Weak Token Generation Information Disclosure via OTL Route |
18.07.2026 |
9 |
| CVE-2026-46512 |
Frogman: Dialplan template parameters interpolated into extensions_custom.conf without escaping |
18.07.2026 |
9.9 |
| CVE-2026-46515 |
Frogman: Multiple read-tier tools expose admin-grade data and arbitrary GraphQL execution |
16.07.2026 |
9.3 |
| CVE-2026-45336 |
HireFlow: Use of Hard-coded Credentials |
17.07.2026 |
10 |
| CVE-2026-45568 |
zrok Python ProxyShare can be used as an SSRF proxy through absolute URL paths |
17.07.2026 |
9.9 |
| CVE-2026-44632 |
Yamcs: Server-Side Code Injection (RCE) via Janino Expression Engine in `JavaExprAlgorithmExecutionFactory` |
16.07.2026 |
9.1 |
| CVE-2026-46562 |
Yamcs: Remote Code Execution via Mission Database algorithm override |
16.07.2026 |
9.8 |
| CVE-2026-46621 |
Yamcs: Authenticated Remote Code Execution (RCE) via Jython Algorithm Code Injection |
16.07.2026 |
9.1 |
| CVE-2026-63087 |
Grafana OnCall 1.16.11 Unauthenticated Token Hijack via Plugin Install Endpoint |
17.07.2026 |
9.3 |
| CVE-2026-45695 |
Kopia: Unauthenticated RCE via SSH ProxyCommand Injection when --insecure --without-password is used |
16.07.2026 |
9.8 |
| CVE-2026-54733 |
moodle-local_o365: Authentication bypass via unverified JWT signature in Teams SSO endpoint |
16.07.2026 |
9.3 |
| CVE-2026-59864 |
Kiota: Path/URL injection into generated Copilot plugin manifest via x-ai-* extensions |
17.07.2026 |
9.3 |
| CVE-2026-59865 |
Kiota: Command injection via x-ms-kiota-info dependencyInstallCommand surfaced by `kiota info` |
17.07.2026 |
9.3 |
| CVE-2026-59866 |
Kiota: Arbitrary file write + code-injection via x-ms-kiota-info clientClassName and clientNamespaceName |
17.07.2026 |
9.3 |
| CVE-2026-11386 |
ubuntu-pro-client Input Validation Vulnerability Leading to Arbitrary APT Directive Injection and Remote Code Execution |
16.07.2026 |
9 |
| CVE-2026-63304 |
AVideo through 29.0 OS Command Injection via listFFmpegProcesses |
20.07.2026 |
9.2 |
| CVE-2026-63305 |
AVideo through 29.0 OS Command Injection via ffmpeg.json.php |
20.07.2026 |
9.2 |
| CVE-2026-63306 |
stoatchat before 0.13.5 Unauthenticated SSRF via proxy and embed endpoints |
16.07.2026 |
9.2 |
| CVE-2023-49899 |
Origin Validation Error in X-Rite MA-T6 |
18.07.2026 |
9.8 |
| CVE-2023-49900 |
Origin Validation Error in X-Rite MA-T6 |
16.07.2026 |
9.8 |
| CVE-2026-22752 |
Spring Security Authorization Server Dynamic Client Registration endpoints perform insufficient validation of client metadata |
21.07.2026 |
9.6 |
| CVE-2026-15925 |
Improper TLS Hostname Verification in Snowflake Connector for Python |
16.07.2026 |
9.2 |
| CVE-2026-15013 |
SAML Single Sign On <= 5.4.3 - Unauthenticated Authentication Bypass via 'SAMLResponse' Parameter Signature Algorithm Confusion |
16.07.2026 |
9.8 |
| CVE-2026-54458 |
AVideo: Unauthenticated Stored DOM Cross-Site Scripting via Per-Client Metadata Broadcast in YPTSocket Plugin |
16.07.2026 |
9.6 |
| CVE-2026-55445 |
Qinglong: Incomplete fix for CVE-2026-3965: Improper Authentication |
18.07.2026 |
9.3 |
| CVE-2026-52891 |
Wekan: Shell Injection via Avatar Upload |
17.07.2026 |
9.9 |
| CVE-2026-52893 |
Wekan: OIDC Account Takeover via Unconditional Email-Based Account Merge in onCreateUser hook |
18.07.2026 |
9.2 |
| CVE-2026-55652 |
Wekan: Header-login IP allowlist bypass via X-Forwarded-For spoofing in Wekan allows unauthenticated full account takeover (incl. admin) |
17.07.2026 |
9.8 |
| CVE-2026-46339 |
9Router: Unauthenticated Remote Code Execution via unprotected MCP custom plugin routes |
16.07.2026 |
10 |
| CVE-2026-49352 |
9Router: Hardcoded Default fallback JWT Secret Allows Authentication Bypass |
16.07.2026 |
9.8 |
| CVE-2026-54052 |
n8n-MCP: Cross-tenant access to workflow version backups in multi-tenant HTTP deployments |
18.07.2026 |
9.9 |
| CVE-2026-52887 |
NocoBase: SQL injection in /api/myInAppChannels:list filter to PG-superuser RCE |
20.07.2026 |
10 |
| CVE-2026-46684 |
DataEase: Unauthorized Command Execution Vulnerability |
17.07.2026 |
9.5 |