|
cve-2026-21902
|
Junos OS Evolved: PTX Series: A vulnerability allows a unauthenticated, network-based attacker to execute code as root |
CRITICAL
|
9.8
|
18.00%
|
cvelistv5 |
2026-06-17 |
|
cve-2026-21891
|
ZimaOS has Authentication Bypass via System-Level Username |
CRITICAL
|
9.4
|
2.35%
|
cvelistv5 |
2026-06-17 |
|
cve-2026-21858
|
CVE-2026-21858 |
CRITICAL
|
10.0
|
78.45%
|
cvelistv5 |
|
|
cve-2026-21643
|
Fortinet FortiClient EMS SQL Injection Vulnerability |
HIGH
|
N/A
|
93.72%
|
cvelistv5 |
2026-04-13 |
|
cve-2026-21509
|
Microsoft Office Security Feature Bypass Vulnerability |
HIGH
|
N/A
|
72.87%
|
cvelistv5 |
2026-01-26 |
|
cve-2026-20963
|
Microsoft SharePoint Deserialization of Untrusted Data Vulnerability |
HIGH
|
N/A
|
29.58%
|
cvelistv5 |
2026-03-18 |
|
cve-2026-20805
|
Microsoft Windows Information Disclosure Vulnerability |
HIGH
|
N/A
|
7.20%
|
cvelistv5 |
2026-01-13 |
|
cve-2026-20349
|
A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Soft... |
HIGH
|
8.6
|
1.01%
|
cvelistv5 |
2026-09-16 |
|
cve-2026-20316
|
A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthe... |
MEDIUM
|
5.3
|
35.10%
|
cvelistv5 |
2026-09-16 |
|
cve-2026-20253
|
Splunk Enterprise Missing Authentication for Critical Function Vulnerability |
CRITICAL
|
9.8
|
96.94%
|
cvelistv5 |
2026-06-18 |
|
cve-2026-20245
|
Cisco Catalyst SD-WAN Manager Improper Encoding or Escaping of Output Vulnerability |
HIGH
|
7.8
|
25.32%
|
cvelistv5 |
2026-06-09 |
|
cve-2026-20230
|
Cisco Unified Communications Manager Server-Side Request Forgery (SSRF) Vulnerability |
HIGH
|
8.6
|
88.20%
|
cvelistv5 |
2026-06-25 |
|
cve-2026-20131
|
Cisco Secure Firewall Management Center (FMC) Software and Cisco Security Cloud Control (SCC) Firewall Management Deserialization of Untrusted Data Vulnerability |
CRITICAL
|
N/A
|
42.66%
|
cvelistv5 |
2026-03-19 |
|
cve-2026-20128
|
Cisco Catalyst SD-WAN Manager Storing Passwords in a Recoverable Format Vulnerability |
HIGH
|
N/A
|
7.80%
|
cvelistv5 |
2026-04-20 |
|
cve-2026-20079
|
A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthe... |
CRITICAL
|
10.0
|
88.18%
|
cvelistv5 |
2026-09-16 |
|
cve-2026-20045
|
Cisco Unified Communications Products Code Injection Vulnerability |
HIGH
|
N/A
|
4.54%
|
cvelistv5 |
2026-01-21 |
|
cve-2026-19598
|
Pods <= 3.3.9 - Unauthenticated Privilege Escalation via Authorization Bypass to Admin Methods via 'pods_admin' AJAX Router |
CRITICAL
|
9.8
|
3.52%
|
cvelistv5 |
2026-08-20 |
|
cve-2026-19490
|
Citrix NetScaler Authentication Bypass Using an Alternate Path or Channel Vulnerability |
CRITICAL
|
9.3
|
7.01%
|
cvelistv5 |
2026-09-09 |
|
cve-2026-19478
|
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.11.11, 19.0 before 19.0.8, ... |
CRITICAL
|
9.4
|
60.20%
|
cvelistv5 |
2026-09-02 |
|
cve-2026-18963
|
A flaw was found in the reset-credentials flow of the keycloak-services component, which is the core engine for ident... |
CRITICAL
|
9.1
|
3.18%
|
cvelistv5 |
2026-09-08 |
|
cve-2026-18577
|
N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability |
HIGH
|
N/A
|
14.62%
|
cvelistv5 |
2026-08-03 |
|
cve-2026-18556
|
N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability |
HIGH
|
N/A
|
7.88%
|
cvelistv5 |
2026-08-04 |
|
cve-2026-1731
|
BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA) OS Command Injection Vulnerability |
CRITICAL
|
N/A
|
90.96%
|
cvelistv5 |
2026-02-13 |
|
cve-2026-16723
|
com.alibaba/fastjson: Fastjson: Remote Code Execution vulnerability without special configuration |
CRITICAL
|
9.0
|
0.66%
|
cvelistv5 |
2026-08-25 |
|
cve-2026-16232
|
Check Point SmartConsole Improper Authentication Vulnerability |
HIGH
|
N/A
|
77.97%
|
cvelistv5 |
2026-07-22 |
|
cve-2026-1623
|
Totolink A7000R cstecgi.cgi setUpgradeFW command injection |
MEDIUM
|
6.3
|
2.27%
|
cvelistv5 |
2026-06-17 |
|
cve-2026-1603
|
Ivanti Endpoint Manager (EPM) Authentication Bypass Vulnerability |
HIGH
|
N/A
|
87.64%
|
cvelistv5 |
2026-03-09 |
|
cve-2026-1547
|
Totolink A7000R cstecgi.cgi setUnloadUserData command injection |
MEDIUM
|
6.3
|
3.05%
|
cvelistv5 |
2026-06-17 |
|
cve-2026-15409
|
SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability |
CRITICAL
|
N/A
|
6.79%
|
cvelistv5 |
2026-07-14 |
|
cve-2026-14894
|
Super Forms <= 6.3.313 - Unauthenticated Arbitrary File Upload via 'data' Parameter (datauristring / value) |
CRITICAL
|
9.8
|
5.09%
|
cvelistv5 |
2026-07-10 |