|
cve-2026-63077
|
JetBrains TeamCity Deserialization of Untrusted Data Vulnerability |
CRITICAL
|
9.8
|
86.52%
|
cvelistv5 |
2026-08-05 |
|
cve-2026-9198
|
IBM Langflow Code Injection Vulnerability |
CRITICAL
|
9.8
|
60.60%
|
cvelistv5 |
2026-08-04 |
|
cve-2026-34486
|
Apache Tomcat: Apache Tomcat: Missing Encryption of Sensitive Data due to EncryptInterceptor bypass |
HIGH
|
7.5
|
98.62%
|
cvelistv5 |
2026-08-07 |
|
cve-2026-18556
|
N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability |
HIGH
|
8.2
|
40.16%
|
cvelistv5 |
2026-08-04 |
|
cve-2026-18577
|
N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability |
HIGH
|
8.2
|
54.07%
|
cvelistv5 |
2026-08-03 |
|
cve-2026-20316
|
Cisco Secure Firewall Management Center Use of Hard-coded Password Vulnerability |
MEDIUM
|
5.3
|
11.15%
|
cvelistv5 |
2026-07-29 |
|
cve-2026-16812
|
Arista VeloCloud Orchestrator On-Prem OS Command Injection Vulnerability |
CRITICAL
|
10.0
|
1.57%
|
cvelistv5 |
2026-07-27 |
|
cve-2025-68686
|
Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability |
HIGH
|
N/A
|
29.60%
|
cvelistv5 |
2026-07-27 |
|
cve-2026-50522
|
Microsoft SharePoint Deserialization of Untrusted Data Vulnerability |
CRITICAL
|
9.8
|
85.40%
|
cvelistv5 |
2026-07-22 |
|
cve-2026-16232
|
Check Point SmartConsole Improper Authentication Vulnerability |
CRITICAL
|
9.3
|
72.05%
|
cvelistv5 |
2026-07-22 |
|
cve-2026-63030
|
WordPress Core Interpretation Conflict Vulnerability |
CRITICAL
|
9.8
|
97.27%
|
cvelistv5 |
2026-07-21 |
|
cve-2026-60137
|
WordPress Core SQL Injection Vulnerability |
CRITICAL
|
9.1
|
78.31%
|
cvelistv5 |
2026-07-21 |
|
cve-2026-0770
|
Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability |
HIGH
|
N/A
|
63.84%
|
cvelistv5 |
2026-07-21 |
|
cve-2021-27137
|
DD-WRT Stack-Based Buffer Overflow Vulnerability |
HIGH
|
8.1
|
4.00%
|
cvelistv5 |
2026-07-21 |
|
cve-2026-58644
|
Microsoft SharePoint Deserialization of Untrusted Data Vulnerability |
HIGH
|
N/A
|
60.94%
|
cvelistv5 |
2026-07-16 |
|
cve-2026-39808
|
Fortinet FortiSandbox OS Command Injection Vulnerability |
CRITICAL
|
9.1
|
92.82%
|
cvelistv5 |
2026-07-16 |
|
cve-2026-25089
|
Fortinet FortiSandbox OS Command Injection Vulnerability |
CRITICAL
|
9.1
|
76.11%
|
cvelistv5 |
2026-07-16 |
|
cve-2026-46817
|
Oracle E-Business Suite Improper Privilege Management Vulnerability |
CRITICAL
|
9.8
|
13.02%
|
cvelistv5 |
2026-07-15 |
|
cve-2023-4346
|
KNX Association KNX Protocol Connection Authorization Option 1 Overly Restrictive Account Lockout Mechanism Vulnerability |
HIGH
|
N/A
|
1.29%
|
cvelistv5 |
2026-07-15 |
|
cve-2026-56164
|
Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability |
MEDIUM
|
5.3
|
26.64%
|
cvelistv5 |
2026-07-14 |
|
cve-2026-56155
|
Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability |
HIGH
|
7.8
|
0.35%
|
cvelistv5 |
2026-07-14 |
|
cve-2026-15410
|
SonicWall SMA1000 Appliances Code Injection Vulnerability |
HIGH
|
7.2
|
11.79%
|
cvelistv5 |
2026-07-14 |
|
cve-2026-15409
|
SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability |
CRITICAL
|
N/A
|
84.54%
|
cvelistv5 |
2026-07-14 |
|
cve-2008-4128
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the HTTP Administration component in Cisco IOS 12.4 on the 871 Integrated Services Router allow remote attackers to execute arbitrary commands via (1) a certain "show privilege" command to the /level/15/exec/- URI, and (2) a certain "alias exec" command to the /level/15/exec/-/configure/http URI. NOTE: some of these details are obtained from third party information. |
HIGH
|
8.1
|
33.92%
|
cvelistv5 |
2026-09-23 |
|
cve-2026-56291
|
Balbooa Forms Unrestricted Upload of File with Dangerous Type Vulnerability |
HIGH
|
N/A
|
14.85%
|
cvelistv5 |
2026-07-10 |
|
cve-2026-48939
|
iCagenda Unrestricted Upload of File with Dangerous Type Vulnerability |
HIGH
|
N/A
|
20.07%
|
cvelistv5 |
2026-07-10 |
|
cve-2026-56290
|
Joomlack Page Builder Improper Access Control Vulnerability |
HIGH
|
N/A
|
30.87%
|
cvelistv5 |
2026-07-07 |
|
cve-2026-55255
|
Langflow Authorization Bypass Through User-Controlled Key Vulnerability |
HIGH
|
8.4
|
0.89%
|
cvelistv5 |
2026-07-07 |
|
cve-2026-48908
|
JoomShaper SP Page Builder Unrestricted Upload of File with Dangerous Type Vulnerability |
HIGH
|
N/A
|
15.09%
|
cvelistv5 |
2026-07-07 |
|
cve-2026-48282
|
Adobe ColdFusion Path Traversal Vulnerability |
CRITICAL
|
10.0
|
42.39%
|
cvelistv5 |
2026-07-07 |