| CVE-2026-66909 | 9.8 | — | — | — | apache / cxf | Apache CXF's JMS transport deserializes the body of any inbound JMS ObjectMessage using native Java deserializatio | 31d ago |
| CVE-2026-64597 | 9.8 | — | — | — | — | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_close() r | 31d ago |
| CVE-2026-1728 | 9.8 | — | — | — | wso2 / api control plane | Tokens issued to a low-privileged user are not sufficiently restricted, allowing them to be used to access product- | 31d ago |
| CVE-2026-67873 | 9.8 | — | — | — | — | A heap-based buffer overflow exists in lib60870-C 2.4.0 in the server-side FileSegment ASDU encoding path. | 31d ago |
| CVE-2026-67870 | 9.8 | — | — | — | — | In open62541 v1.5.5, the server-side AddReferences implementation contains an incomplete validation flaw for non-l | 31d ago |
| CVE-2026-52466 | 9.8 | — | — | — | — | Open Library Foundation VuFind v11.0.3 and v4.1 is vulnerable to toInorrect Access Control. | 31d ago |
| CVE-2025-63823 | 9.8 | — | — | — | — | My Safetipin Android Application 5.2.1 contains Hardcoded credentials in the authentication module, which allows r | 31d ago |
| CVE-2026-20272 | 9.8 | — | — | — | cisco / ios xe | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software enginee | 31d ago |
| CVE-2026-9192 | 9.8 | — | — | — | progress / marklogic server | An authentication bypass vulnerability in the ODBC App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 | 31d ago |
| CVE-2026-71289 | 9.8 | — | — | — | — | The NASA-AMMOS Asynchronous Network Management System (ANMS) reference implementation's default docker-compose.yml | 32d ago |
| CVE-2026-71278 | 9.8 | — | — | — | — | rust-iot-platform allows creating a "calc rule" via POST /calc-rule/create (api/src/controller/calc_rule_router.rs | 32d ago |
| CVE-2026-71267 | 9.8 | — | — | — | — | microtar's mtar_write_file_header and mtar_write_dir_header functions (src/microtar.c) copy a caller-supplied entr | 32d ago |
| CVE-2026-71262 | 9.8 | — | — | — | — | IoTSharp BlobStorageController.cs lacks the [Authorize] attribute applied to every other controller in the applica | 32d ago |
| CVE-2026-71256 | 9.8 | — | — | — | — | nanoMODBUS through v1.23.0 contains an out-of-bounds stack read leading to a wild-pointer write in nmbs_read_devic | 32d ago |
| CVE-2026-71254 | 9.8 | — | — | — | — | nanoMODBUS through v1.23.0 contains an out-of-bounds write in the Modbus server-side handle_read_file_record funct | 32d ago |
| CVE-2026-71248 | 9.8 | — | — | — | — | Inventory-Management-System-PHP's login.php constructs its authentication query via direct string concatenation of | 32d ago |
| CVE-2026-71237 | 9.8 | — | — | — | — | Miantang/IoT-PHP's index.php implements a POST /userlogin route that reads the password directly from ['pwd'] with | 32d ago |
| CVE-2026-71231 | 9.8 | — | — | — | — | IOTSmartHome's gui/login.php checkCookie function builds an authentication query as SELECT * FROM users WHERE ID=' | 32d ago |
| CVE-2026-66747 | 9.8 | — | — | — | — | Zbtlink router firmware ships an embedded remote-control implant, ENDLESSDOORS, present in every published build a | 32d ago |
| CVE-2026-71214 | 9.8 | — | — | — | — | The Aerie/PlanDev sequencing-server's authorization middleware (sequencing-server/src/app.ts) derives the caller's | 32d ago |
| CVE-2026-71207 | 9.8 | — | — | — | — | The Stock-Inventory-Management-System application's login.php assigns raw username/password values to and builds i | 32d ago |
| CVE-2026-64566 | 9.8 | — | — | — | — | In the Linux kernel, the following vulnerability has been resolved: xfrm: iptfs: propagate SKBFL_SHARED_FRAG in ip | 32d ago |
| CVE-2026-61486 | 9.8 | — | — | — | apache / lucy | ** UNSUPPORTED WHEN ASSIGNED ** Stack-based Buffer Overflow vulnerability in Apache Lucy. | 32d ago |
| CVE-2026-61484 | 9.8 | — | — | — | apache / lucy | ** UNSUPPORTED WHEN ASSIGNED ** Deserialization of Untrusted Data vulnerability in Apache Lucy. | 32d ago |
| CVE-2026-70554 | 9.8 | — | — | — | — | MaxSite CMS contains a PHP object injection vulnerability that allows unauthenticated attackers to execute arbitra | 32d ago |
| CVE-2026-66902 | 9.8 | — | — | — | — | Google::Auth versions before 0.06 for Perl run a command named in an external_account credentials JSON via an unga | 32d ago |
| CVE-2026-45538 | 9.8 | — | — | — | — | OpenSIPS is a Session Initiation Protocol (SIP) server implementation. | 32d ago |
| CVE-2026-70553 | 9.8 | — | — | — | — | MaxSite CMS contains a remote code execution vulnerability that allows unauthenticated attackers to inject arbitra | 32d ago |
| CVE-2026-70552 | 9.8 | — | — | — | — | MaxSite CMS 109.5 and earlier contains an authentication bypass vulnerability in the AJAX dispatcher that allows u | 32d ago |
| CVE-2026-69703 | 9.8 | — | — | — | — | Atlas-Livre contains an improper access control vulnerability in the admin controllers under Espace_admin/controle | 32d ago |
| CVE-2026-49435 | 9.8 | — | — | — | — | Keysight IxChariot Endpoint and associated products contain a stack-based buffer overflow. | 32d ago |
| CVE-2026-0163 | 9.8 | — | — | — | — | In multiple functions of vpu_ioctl.c, there is a possible use after free due to a use after free. | 32d ago |
| CVE-2017-20242 | 9.8 | — | — | — | — | Keysight IxChariot Endpoint before 9.5.102 contains a stack-based buffer overflow. | 32d ago |
| CVE-2017-20241 | 9.8 | — | — | — | — | Keysight IxChariot Endpoint before 9.5.102 contains a heap-based buffer overflow. | 32d ago |
| CVE-2026-24254 | 9.8 | — | — | — | nvidia / dynamo | NVIDIA Dynamo for Linux contains a vulnerability in the multimodal serving topology, where an attacker could cause | 32d ago |
| CVE-2026-63456 | 9.8 | — | — | — | — | Multiple vulnerabilities in the REST API interface of HPE Networking SD-WAN Orchestrator could allow an unauthenti | 32d ago |
| CVE-2026-63455 | 9.8 | — | — | — | — | Multiple vulnerabilities in the REST API interface of HPE Networking SD-WAN Orchestrator could allow an unauthenti | 32d ago |
| CVE-2025-29296 | 9.8 | — | — | — | — | H3C Magic BE18000 V200R007, H3C NX400 V100R015, H3C Magic NX30 Pro V100R0011, H3C Magic R3010 V100R009, H3C Magic | 32d ago |
| CVE-2026-69098 | 9.8 | — | — | — | — | kotaemon through 0.12.0 contains an insecure deserialization vulnerability in the check_connection endpoint that a | 32d ago |
| CVE-2026-61515 | 9.8 | — | — | — | — | Puwell IP Camera firmware versions 2.x through 4.x contains an unauthenticated command injection vulnerability tha | 32d ago |
| CVE-2026-61514 | 9.8 | — | — | — | — | Puwell IP Camera firmware versions 2.x through 4.x contains an authentication bypass vulnerability that allows una | 32d ago |
| CVE-2026-15721 | 9.8 | — | — | — | — | Cleartext storage of sensitive information vulnerability in Bilin Software and Informatics Consultancy Inc. | 33d ago |
| CVE-2026-14175 | 9.8 | — | — | — | — | Unrestricted upload of file with dangerous type vulnerability in Bilin Software and Informatics Consultancy Inc. | 33d ago |
| CVE-2026-64564 | 9.8 | — | — | — | — | In the Linux kernel, the following vulnerability has been resolved: sctp: don't free the ASCONF's own transport in | 33d ago |
| CVE-2026-16618 | 9.8 | — | — | — | — | The Improve SEO WordPress plugin through 2.0.11 does not properly validate uploaded files, checking only the file | 33d ago |
| CVE-2026-18686 | 9.8 | — | — | — | — | A vulnerability was detected in GL.iNet GL-MT3000 up to 4.4.5. | 33d ago |
| CVE-2026-18685 | 9.8 | — | — | — | — | A security vulnerability has been detected in GL.iNet GL-MT3000 up to 4.4.5. | 33d ago |
| CVE-2026-48333 | 9.8 | — | — | — | adobe / campaign | Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in privileg | 33d ago |
| CVE-2026-18684 | 9.8 | — | — | — | — | A weakness has been identified in GL.iNet GL-MT3000 up to 4.4.5. | 33d ago |
| CVE-2026-69240 | 9.8 | — | — | — | — | Sequelize is a Node.js ORM tool. | 33d ago |
| CVE-2026-52102 | 9.8 | — | — | — | — | An OS command injection vulnerability in the openmediavault-md plugin of OpenMediaVault v8.0.4-1 allows attackers | 33d ago |
| CVE-2026-51775 | 9.8 | — | — | — | — | SQL injection vulnerability in Fastadmin v.1.6.1.20250430 allows an attacker to exectue arbitrary code via the app | 33d ago |
| CVE-2026-51190 | 9.8 | — | — | — | — | The "s init" command in Serverless-Devs @serverless-devs/s <= 3.1.11 passes unsanitized user input to child_proces | 33d ago |
| CVE-2026-68979 | 9.8 | — | — | — | apache / nifi | Apache NiFI 1.10.0 through 2.10.0 provide a Parameter Context update REST API method that does not enforce authori | 33d ago |
| CVE-2026-38447 | 9.8 | — | — | — | — | osTicket 1.18.3 generates API keys using a predictable construction based on MD5 hashing. | 33d ago |
| CVE-2026-18616 | 9.8 | — | — | — | — | A vulnerability was identified in GL-iNet GL-MT3000 up to 4.4.5. | 33d ago |
| CVE-2026-18615 | 9.8 | — | — | — | — | A vulnerability was determined in GL-iNet GL-MT3000 up to 4.4.5. | 33d ago |
| CVE-2026-18614 | 9.8 | — | — | — | — | A vulnerability was found in GL-iNet GL-MT3000 up to 4.4.5. | 33d ago |
| CVE-2026-18613 | 9.8 | — | — | — | — | A vulnerability has been found in GL-iNet GL-MT3000 up to 4.4.5. | 33d ago |
| CVE-2026-18612 | 9.8 | — | — | — | — | A flaw has been found in GL-iNet GL-MT3000 up to 4.4.5. | 33d ago |