Known Exploited Vulnerabilities (KEV)

ID Title Severity CVSS EPSS Source Updated
cve-2015-5287 Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability HIGH N/A 4.96% cvelistv5 2026-08-26
cve-2015-3246 Red Hat Libuser Race Condition Vulnerability HIGH N/A 8.80% cvelistv5 2026-08-26
cve-2026-60004 Gitea Code Injection Vulnerability HIGH N/A 86.78% cvelistv5 2026-08-25
cve-2026-21962 Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: Weblogic Server Proxy Plug-in for Apache HTTP Server, Weblogic Server Proxy Plug-in for IIS). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in. While the vulnerability is in Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in accessible data as well as unauthorized access to critical data or complete access to all Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in accessible data. Note: Affected version for Weblogic Server Proxy Plug-in for IIS is 12.2.1.4.0 only. CVSS 3.1 Base Score 10.0 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N). CRITICAL 10.0 42.48% cvelistv5 2026-08-25
cve-2026-73570 Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability HIGH 8.9 32.38% cvelistv5 2026-08-21
cve-2026-69836 Microsoft Entra ID Remote Code Execution Vulnerability CRITICAL 10.0 1.55% cvelistv5 2026-09-24
cve-2026-72530 TrueConf Server Code Injection Vulnerability CRITICAL 9.5 1.83% cvelistv5 2026-08-20
cve-2026-72529 TrueConf Server Missing Authentication for Critical Function Vulnerability CRITICAL 9.3 1.55% cvelistv5 2026-08-20
cve-2026-64849 MLflow Server-Side Request Forgery Vulnerability HIGH N/A 16.41% cvelistv5 2026-08-19
cve-2026-9563 org.eclipse.parsson/parsson: Eclipse Parsson: Denial of Service via uncontrolled resource consumption in JSON parsing HIGH 7.5 0.63% cvelistv5 2026-09-01
cve-2026-9076 openssl: OpenSSL: Denial of Service due to heap out-of-bounds read in CMS password-based decryption MEDIUM 5.9 0.71% cvelistv5 2026-09-01
cve-2026-73939 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) HIGH 8.6 0.33% cvelistv5 2026-08-28
cve-2026-73938 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) HIGH 7.5 0.40% cvelistv5 2026-08-28
cve-2026-73937 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) HIGH 8.2 0.39% cvelistv5 2026-08-28
cve-2026-73936 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) HIGH 7.5 0.42% cvelistv5 2026-08-28
cve-2026-73935 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) HIGH 7.5 0.31% cvelistv5 2026-08-28
cve-2026-73934 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) HIGH 7.5 0.31% cvelistv5 2026-08-28
cve-2026-73933 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) HIGH 7.3 0.23% cvelistv5 2026-08-28
cve-2026-73932 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) MEDIUM 5.3 0.29% cvelistv5 2026-08-28
cve-2026-73931 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) HIGH 8.3 0.24% cvelistv5 2026-08-28
cve-2026-73930 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) CRITICAL 9.9 0.38% cvelistv5 2026-08-28
cve-2026-73929 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) HIGH 8.3 0.31% cvelistv5 2026-08-28
cve-2026-73928 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) HIGH 7.2 0.26% cvelistv5 2026-08-28
cve-2026-73927 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) HIGH 7.5 0.42% cvelistv5 2026-08-28
cve-2026-73925 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) HIGH 8.2 0.24% cvelistv5 2026-08-28
cve-2026-73924 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) CRITICAL 9.1 0.31% cvelistv5 2026-08-28
cve-2026-73923 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) LOW 3.7 0.19% cvelistv5 2026-08-28
cve-2026-73922 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) CRITICAL 9.1 0.31% cvelistv5 2026-08-28
cve-2026-73921 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) CRITICAL 9.8 0.35% cvelistv5 2026-08-28
cve-2026-73920 Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server) CRITICAL 9.4 0.33% cvelistv5 2026-08-28