| CVE-2026-8164 | 7.3 | — | — | — | — | Uncontrolled Search Path Element vulnerability in ArkSigner Software and Hardware Industry and Trade Inc. | 73d ago |
| CVE-2026-62433 | 7.3 | — | — | — | — | Parts of the DM_OP handling code assumes the caller has provided the required number of buffers for the given oper | 73d ago |
| CVE-2026-62432 | 7.3 | — | — | — | — | The EVTCHNOP_expand_array hypercall checks for whether FIFO event channels are enabled, but without holding the co | 73d ago |
| CVE-2026-64550 | 7.3 | — | — | — | — | In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: validate MAP frame lengt | 74d ago |
| CVE-2026-59535 | 7.3 | — | — | — | — | Unauthenticated Broken Access Control in Thrive Product Manager <= 10.9.2 versions. | 74d ago |
| CVE-2026-10033 | 7.3 | — | — | — | — | The EventON Action User plugin for WordPress is vulnerable to authorization bypass in all versions up to, and incl | 78d ago |
| CVE-2026-16519 | 7.3 | — | — | — | — | A DLL hijacking vulnerability exists in the GeoVision GV-IP Device Utility desktop application. | 78d ago |
| CVE-2026-16765 | 7.3 | — | — | — | — | A vulnerability was determined in CodeAstro Online Classroom 1.0. | 78d ago |
| CVE-2026-16796 | 7.3 | — | — | — | — | Improper neutralization of argument delimiters in the install_packages() method in AWS Bedrock AgentCore Python SD | 78d ago |
| CVE-2026-16632 | 7.3 | — | — | — | — | A flaw has been found in boazsegev facil.io up to 0.7.4. | 79d ago |
| CVE-2026-61271 | 7.3 | — | — | — | oracle / document management and collaboration | Vulnerability in the Oracle Document Management and Collaboration product of Oracle E-Business Suite (component: A | 80d ago |
| CVE-2026-61267 | 7.3 | — | — | — | oracle / human capital management configuration workbench | Vulnerability in the Oracle HCM Configuration Workbench product of Oracle E-Business Suite (component: Spreadsheet | 80d ago |
| CVE-2026-61136 | 7.3 | — | — | — | oracle / commerce platform | Vulnerability in the Oracle Commerce Platform product of Oracle Commerce (component: Dynamo Application Framework) | 80d ago |
| CVE-2026-60945 | 7.3 | — | — | — | oracle / learning management | Vulnerability in the Oracle Learning Management product of Oracle E-Business Suite (component: Internal Operations | 80d ago |
| CVE-2026-60143 | 7.3 | — | — | — | oracle / workflow | Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). | 80d ago |
| CVE-2026-47007 | 7.3 | — | — | — | oracle / communications pricing design center | Vulnerability in the Oracle Communications Pricing Design Center product of Oracle Communications (component: On-p | 80d ago |
| CVE-2026-46990 | 7.3 | — | — | — | oracle / enterprise manager base platform | Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Ente | 80d ago |
| CVE-2026-16484 | 7.3 | — | — | — | — | A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. | 80d ago |
| CVE-2026-63358 | 7.3 | — | — | — | filegator / filegator | FileGator accepts arbitrary Unix permission values via the '/chmoditems' API endpoint and passes the value directl | 80d ago |
| CVE-2026-47687 | 7.3 | — | — | — | fogproject / fogproject | FOG is a free open-source cloning/imaging/rescue suite/inventory management system. | 80d ago |
| CVE-2026-47685 | 7.3 | — | — | — | fogproject / fogproject | FOG is a free open-source cloning/imaging/rescue suite/inventory management system. | 80d ago |
| CVE-2026-16447 | 7.3 | — | — | — | — | A vulnerability has been found in D-Link DNS-320 1.0.2. | 80d ago |
| CVE-2026-60080 | 7.3 | — | — | — | apache / fory | Use After Free vulnerability in the Rust deserialization logic of Apache Fory. | 80d ago |
| CVE-2026-16332 | 7.3 | — | — | — | — | A vulnerability was detected in D-Link DNS-320 1.0.2. | 81d ago |
| CVE-2026-16331 | 7.3 | — | — | — | — | A security vulnerability has been detected in D-Link DNS-320 1.0.2. | 81d ago |
| CVE-2026-16330 | 7.3 | — | — | — | — | A weakness has been identified in D-Link DNS-320 1.0.2. | 81d ago |
| CVE-2026-16329 | 7.3 | — | — | — | — | A vulnerability was identified in D-Link DNS-320 1.0.2. | 81d ago |
| CVE-2026-16327 | 7.3 | — | — | — | — | A vulnerability was determined in D-Link DNS-320 1.0.2. | 81d ago |
| CVE-2026-16324 | 7.3 | — | — | — | — | A vulnerability was identified in Metasoft 美特软件 MetaCRM up to 6.4.0 Beta06. | 81d ago |
| CVE-2026-56624 | 7.3 | — | — | — | apache / mina sshd | Improper certificate validation in Apache MINA SSHD (server-side). | 81d ago |
| CVE-2026-32825 | 7.3 | — | — | — | — | dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. | 81d ago |
| CVE-2026-32824 | 7.3 | — | — | — | — | dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. | 81d ago |
| CVE-2026-16252 | 7.3 | — | — | — | — | A security flaw has been discovered in Beijing Shenzhou Shihan Technology Multimedia Integrated Business Display S | 81d ago |
| CVE-2026-12080 | 7.3 | — | — | — | — | A flaw was found in the QEMU Guest Agent (qga). | 81d ago |
| CVE-2026-64621 | 7.3 | — | — | — | freerdp / freerdp | FreeRDP before 3.28.0 (affected 3.x through 3.27.1) contains a double-free vulnerability in freerdp_client_rdp_fil | 81d ago |
| CVE-2026-16247 | 7.3 | — | — | — | — | In _connect.BRAIN versions prior to 5.06, the application LogPathConfig.exe is executed during setup. | 81d ago |
| CVE-2026-16246 | 7.3 | — | — | — | — | In BRAIN2 versions prior to 3.09, the application LogPathConfig.exe is executed during setup. | 81d ago |
| CVE-2026-64126 | 7.3 | — | — | — | linux / linux kernel | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: validate Add Extended Adverti | 82d ago |
| CVE-2026-63914 | 7.3 | — | — | — | — | In the Linux kernel, the following vulnerability has been resolved: xfrm: route MIGRATE notifications to caller's | 82d ago |
| CVE-2026-63883 | 7.3 | — | — | — | — | In the Linux kernel, the following vulnerability has been resolved: serial: qcom_geni: fix kfifo underflow when fl | 82d ago |
| CVE-2026-16228 | 7.3 | — | — | — | — | A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. | 83d ago |
| CVE-2026-16227 | 7.3 | — | — | — | — | A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0. | 83d ago |
| CVE-2026-16210 | 7.3 | — | — | — | — | A vulnerability was found in newpanjing simpleui 2026.01.13. | 83d ago |
| CVE-2026-16209 | 7.3 | — | — | — | — | A vulnerability has been found in Gerapy up to 0.9.13. | 83d ago |
| CVE-2026-16200 | 7.3 | — | — | — | — | A vulnerability has been found in zevorn rt-claw up to 0.2.0. | 83d ago |
| CVE-2026-16154 | 7.3 | — | — | — | — | A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. | 83d ago |
| CVE-2026-16152 | 7.3 | — | — | — | — | A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. | 83d ago |
| CVE-2026-16128 | 7.3 | — | — | — | — | A security flaw has been discovered in zevorn rt-claw up to 0.2.0. | 83d ago |
| CVE-2026-16127 | 7.3 | — | — | — | — | A vulnerability was identified in zevorn rt-claw up to 0.2.0. | 83d ago |
| CVE-2026-16126 | 7.3 | — | — | — | — | A vulnerability was determined in zevorn rt-claw up to 0.2.0. | 83d ago |
| CVE-2026-16125 | 7.3 | — | — | — | — | A vulnerability was found in zevorn rt-claw up to 0.2.0. | 83d ago |
| CVE-2026-16084 | 7.3 | — | — | — | — | A weakness has been identified in Sipeed PicoClaw up to 0.2.9. | 84d ago |
| CVE-2026-16016 | 7.3 | — | — | — | — | A vulnerability was identified in poco-ai poco-claw up to 0.5.4. | 84d ago |
| CVE-2026-16014 | 7.3 | — | — | — | — | A vulnerability was found in code-projects Hospital Bed Management System 1.0. | 84d ago |
| CVE-2024-32386 | 7.3 | — | — | — | — | Directory traversal vulnerability in Kerlink Kerlink Wirnet iStation 868 KerOS v.4.3.3_20200803132042 allows a rem | 85d ago |
| CVE-2026-62290 | 7.3 | — | — | — | linuxfoundation / cert-manager | cert-manager adds certificates and certificate issuers as resource types in Kubernetes clusters, and simplifies th | 85d ago |
| CVE-2026-13104 | 7.3 | — | — | — | — | A potential vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market, that co | 85d ago |
| CVE-2026-13103 | 7.3 | — | — | — | — | A potential path traversal vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese | 85d ago |
| CVE-2026-15907 | 7.3 | — | — | — | — | A flaw has been found in H3C SecPath F1000-C8300 up to 20260522. | 86d ago |
| CVE-2026-45738 | 7.3 | — | — | — | argoproj / argo cd | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. | 86d ago |