| CVE-2026-49941 | 7.5 | — | — | — | rrwo / net\ | Net::CIDR::Set versions through 0.20 for Perl did not validate IP addresses. | 129d ago |
| CVE-2026-46741 | 7.5 | — | — | — | sanbeg / etsy\ | Etsy::StatsD versions through 1.002002 for Perl allow metric injections. | 129d ago |
| CVE-2026-38570 | 7.5 | — | — | — | — | bacnet_stack 1.3.1 contains an Out-of-bounds Read in bacnet_tag_number_decode which allows attackers to cause a de | 129d ago |
| CVE-2026-28318exploited | 7.5 | 1.9% | 3/3 | +1d | solarwinds / serv-u | SolarWinds Serv-U is susceptible to specially crafted POST requests that crash the Serv-U service without authenti | 129d ago |
| CVE-2025-46638 | 7.5 | — | — | — | — | Dell BSAFE SSL-J contains an allocation of resources without limits or throttling vulnerability. | 129d ago |
| CVE-2026-50213 | 7.5 | — | — | — | acer / connect m6e 5g firmware | The account validation endpoint /v1/User/validate returns comprehensive user profile data sheets, which can be cra | 129d ago |
| CVE-2026-50210 | 7.5 | — | — | — | acer / connect m6e 5g firmware | The device encrypts data using AES-CBC with static zero-filled Initialization Vectors (IVs), making it susceptible | 129d ago |
| CVE-2026-49193 | 7.5 | — | — | — | acer / connect m6e 5g firmware | Overly permissive configuration settings on cloud storage containers expose active telemetry information publicly | 129d ago |
| CVE-2026-49187 | 7.5 | — | — | — | acer / connect m6e 5g firmware | The hard-coded APK resource files never expire, and the shared scepter leads to information leaks and potential mi | 129d ago |
| CVE-2026-8829 | 7.5 | — | — | — | oalders / html\ | HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities. | 129d ago |
| CVE-2026-41858 | 7.5 | — | — | — | — | Weak Randomness / Insecure Cryptographic Primitive (CWE-338) in Get-RandomPassword in BOSH-Ecosystem / windows-uti | 129d ago |
| CVE-2026-10737 | 7.5 | — | — | — | — | The SP Project & Document Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capab | 129d ago |
| CVE-2026-8889 | 7.5 | — | — | — | securly / securly | Version 3.0.7 of the Securly Chrome Extension uses deprecated SHA-1 hashing for IWF CSAM URL matching (25,020 hashe | 129d ago |
| CVE-2026-8888 | 7.5 | — | — | — | securly / securly | Version 3.0.7 of the Securly Chrome Extension downloads config.json over HTTP and compiles server-provided patterns | 129d ago |
| CVE-2026-8881 | 7.5 | — | — | — | securly / securly | Version 3.0.7 of the Securly Chrome Extension uses EVP_BytesToKey key derivation with MD5 and a single iteration fo | 129d ago |
| CVE-2026-8879 | 7.5 | — | — | — | securly / securly | Version 3.0.7 of the Securly Chrome Extension dynamically registers content13.min.js as a content script via chrome | 129d ago |
| CVE-2026-8878 | 7.5 | — | — | — | securly / securly | Version 3.0.7 of the Securly Chrome Extension exposes multiple publicly accessible endpoints that allow unauthentic | 129d ago |
| CVE-2026-46265 | 7.5 | — | — | — | linux / linux kernel | In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix WQ_MEM_RECLAIM warning When sunr | 129d ago |
| CVE-2026-37462 | 7.5 | — | — | — | — | An integer underflow in the BGPUpdate.DecodeFromBytes function (/bgp/bgp.go) of gobgp v4.3.0 allows attackers to c | 130d ago |
| CVE-2026-37460 | 7.5 | — | — | — | — | Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10 | 130d ago |
| CVE-2026-41032 | 7.5 | — | — | — | — | It is possible for an unauthenticated adjacent attacker to download log files of the controller, which may disclos | 130d ago |
| CVE-2026-50031 | 7.5 | — | — | — | — | ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. | 130d ago |
| CVE-2026-9516 | 7.5 | — | — | — | rurban / cpanel\ | Cpanel::JSON::XS versions before 4.41 for Perl allow denial of service via UTF-8 BOM prefixed input when a decode f | 130d ago |
| CVE-2026-42504 | 7.5 | — | — | — | — | Decoding a maliciously-crafted MIME header containing many invalid encoded-words can consume excessive CPU. | 130d ago |
| CVE-2024-14036 | 7.5 | — | — | — | — | Dräger Core 1.0.5 and Dräger M540 Converter Service 1.0.9 contain a denial of service vulnerability that allows ne | 130d ago |
| CVE-2026-5073exploited | 7.5 | 1.6% | 1/3 | +2d | — | The ARMember Premium plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter of the 'arm_dire | 130d ago |
| CVE-2026-48594 | 7.5 | — | — | — | elixir-tesla / tesla | Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in elixir-tesla tesla allows a deni | 130d ago |
| CVE-2026-47265 | 7.5 | — | — | — | aiohttp / aiohttp | AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. | 130d ago |
| CVE-2026-42342 | 7.5 | — | — | — | shopify / react-router | React Router is a router for React. | 130d ago |
| CVE-2026-41577 | 7.5 | — | — | — | goauthentik / authentik | authentik is an open-source identity provider. | 130d ago |
| CVE-2026-34077 | 7.5 | — | — | — | shopify / react-router | React Router is a router for React. | 130d ago |
| CVE-2026-10701 | 7.5 | — | — | — | mozilla / firefox | Incorrect boundary conditions in the Graphics: Text component. | 130d ago |
| CVE-2026-45686 | 7.5 | — | — | — | opentelemetry / ebpf instrumentation | OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. | 131d ago |
| CVE-2026-45685 | 7.5 | — | — | — | opentelemetry / ebpf instrumentation | OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. | 131d ago |
| CVE-2026-45678 | 7.5 | — | — | — | opentelemetry / ebpf instrumentation | OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. | 131d ago |
| CVE-2026-45553 | 7.5 | — | — | — | — | NiceGUI is a Python-based UI framework. | 131d ago |
| CVE-2026-40780 | 7.5 | — | — | — | — | Authentication Bypass Using an Alternate Path or Channel vulnerability in Liquid Web / StellarWP BookIt allows Pas | 131d ago |
| CVE-2026-10621 | 7.5 | — | — | — | — | Path traversal in restore handler in Collibra Agent, allows an attacker to write arbitrary files via a crafted ZIP | 131d ago |
| CVE-2026-42670 | 7.5 | — | — | — | — | Missing Authorization vulnerability in Etoile Web Design Incorporated Five Star Restaurant Reservations allows Exp | 131d ago |
| CVE-2026-42669 | 7.5 | — | — | — | — | Missing Authorization vulnerability in EventPrime allows Exploiting Incorrectly Configured Access Control Security | 131d ago |
| CVE-2025-58024 | 7.5 | — | — | — | — | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerabil | 131d ago |
| CVE-2026-3514 | 7.5 | — | — | — | prefect / prefect | In version 3.6.19 of prefecthq/prefect, an authentication bypass vulnerability exists due to the improper handling | 131d ago |
| CVE-2026-8293 | 7.5 | — | — | — | — | The Really Simple Security WordPress plugin before 9.5.10.1 does not enforce the second-factor challenge in two of | 131d ago |
| CVE-2026-40964 | 7.5 | — | — | — | — | Authentication Bypass in cf-auth-proxy in Cloud Foundry Foundation all installations allows an unauthenticated rem | 131d ago |
| CVE-2026-49136 | 7.5 | — | — | — | — | Banana Slides through 0.4.0, patched in commit e8bc490, contains a path traversal vulnerability in the generate_im | 131d ago |
| CVE-2025-70099 | 7.5 | — | — | — | — | A NULL pointer dereference in the ext4_dir_en_get_name_len function in include/ext4_dir.h of lwext4 1.0.0 allows a | 131d ago |
| CVE-2026-37235 | 7.5 | — | — | — | mosaic5g / flexric | FlexRIC v2.0.0 trusts the xapp_id field from E42 message payloads without binding it to the sender's SCTP associat | 131d ago |
| CVE-2026-37233 | 7.5 | — | — | — | mosaic5g / flexric | FlexRIC v2.0.0 contains an authorization bypass in the iApp's xApp isolation mechanism. | 131d ago |
| CVE-2026-37231 | 7.5 | — | — | — | mosaic5g / flexric | FlexRIC v2.0.0 uses a uint16_t counter for xapp_id assignment but stores the value in uint32_t message fields. | 131d ago |
| CVE-2026-37230 | 7.5 | — | — | — | mosaic5g / flexric | FlexRIC v2.0.0 crashes when the near-RT RIC receives a RIC_INDICATION message with a ran_func_id that does not exi | 131d ago |
| CVE-2026-37229 | 7.5 | — | — | — | mosaic5g / flexric | FlexRIC v2.0.0 contains a reachable assertion in e2ap_create_pdu() triggered when ASN.1 PER decoding fails. | 131d ago |
| CVE-2026-37228 | 7.5 | — | — | — | mosaic5g / flexric | FlexRIC v2.0.0 contains a reachable assertion in e2ap_recv_sctp_msg() (src/lib/ep/e2ap_ep.c). | 131d ago |
| CVE-2026-37226 | 7.5 | — | — | — | mosaic5g / flexric | FlexRIC v2.0.0 crashes when the iApp receives an E42_RIC_SUBSCRIPTION_REQUEST referencing a non-existent E2 Node. | 131d ago |
| CVE-2026-42677 | 7.5 | — | — | — | — | Missing Authorization vulnerability in Ben Balter WP Document Revisions allows Exploiting Incorrectly Configured A | 132d ago |
| CVE-2026-42674 | 7.5 | — | — | — | — | Authentication Bypass by Spoofing vulnerability in AAM Plugin Advanced Access Manager allows URL Encoding. | 132d ago |
| CVE-2026-42673 | 7.5 | — | — | — | — | Insertion of Sensitive Information Into Sent Data vulnerability in Logtivity Activity Logs Activity Logs, User Act | 132d ago |
| CVE-2026-37227 | 7.5 | — | — | — | — | FlexRIC v2.0.0 contains reachable assert(0) calls in stub message handlers for whitelisted but unimplemented E2AP | 132d ago |
| CVE-2026-37225 | 7.5 | — | — | — | — | FlexRIC v2.0.0 crashes when the iApp receives an E42_RIC_SUBSCRIPTION_REQUEST with an empty ricEventTriggerDefinit | 132d ago |
| CVE-2026-37224 | 7.5 | — | — | — | — | FlexRIC v2.0.0 crashes when receiving a duplicate E2_SETUP_REQUEST from the same or spoofed E2 Node. | 132d ago |
| CVE-2026-37223 | 7.5 | — | — | — | — | FlexRIC v2.0.0 contains a reachable assertion in the iApp message dispatcher. | 132d ago |