| CVE-2026-10617 | 7.3 | — | — | — | — | A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.11.3. | 129d ago |
| CVE-2026-10608 | 7.3 | — | — | — | — | A security flaw has been discovered in DedeCMS 5.7.88. | 129d ago |
| CVE-2026-10607 | 7.3 | — | — | — | — | A vulnerability was identified in DedeCMS 5.7.88. | 129d ago |
| CVE-2026-10606 | 7.3 | — | — | — | — | A vulnerability was determined in DedeCMS 5.7.88. | 129d ago |
| CVE-2026-30649 | 7.3 | — | — | — | vivotek / fd8136 firmware | Buffer Overflow vulnerability in VIVOTEK INC FD8136-VVTK-0300a allows a remote attacker to execute arbitrary code | 129d ago |
| CVE-2026-10290 | 7.3 | — | — | — | — | A weakness has been identified in code-projects Hotel and Tourism Reservation System 1.0. | 130d ago |
| CVE-2026-10288 | 7.3 | — | — | — | — | A vulnerability was identified in code-projects Hotel and Tourism Reservation System 1.0. | 130d ago |
| CVE-2026-10287 | 7.3 | — | — | — | — | A vulnerability was determined in SourceCodester SEO Meta Tag Extractor 1.0. | 130d ago |
| CVE-2026-10281 | 7.3 | — | — | — | — | A weakness has been identified in Enderfga claw-orchestrator up to 3.5.5. | 130d ago |
| CVE-2026-10280 | 7.3 | — | — | — | — | A security flaw has been discovered in horizon921 mcpilot 0.1.0. | 130d ago |
| CVE-2026-42675 | 7.3 | — | — | — | — | Missing Authorization vulnerability in Themefic Hydra Booking allows Exploiting Incorrectly Configured Access Cont | 130d ago |
| CVE-2026-10273 | 7.3 | — | — | — | — | A vulnerability was found in php-censor up to 2.1.6. | 130d ago |
| CVE-2026-10263 | 7.3 | — | — | — | — | A vulnerability was found in SourceCodester Computer Repair Shop Management System up to 1.0. | 130d ago |
| CVE-2026-10262 | 7.3 | — | — | — | — | A vulnerability has been found in code-projects Real State Services 1.0. | 130d ago |
| CVE-2026-10261 | 7.3 | — | — | — | — | A flaw has been found in CodeAstro Online Job Portal 1.0. | 130d ago |
| CVE-2026-10260 | 7.3 | — | — | — | — | A vulnerability was detected in CodeAstro Online Job Portal 1.0. | 130d ago |
| CVE-2026-10253 | 7.3 | — | — | — | — | A vulnerability was detected in itsourcecode Online House Rental System 1.0. | 130d ago |
| CVE-2026-10252 | 7.3 | — | — | — | — | A security vulnerability has been detected in itsourcecode Online House Rental System 1.0. | 130d ago |
| CVE-2026-10251 | 7.3 | — | — | — | — | A weakness has been identified in itsourcecode Online House Rental System 1.0. | 130d ago |
| CVE-2026-10250 | 7.3 | — | — | — | — | A security flaw has been discovered in itsourcecode Online Blood Bank Management System 1.0. | 130d ago |
| CVE-2026-10249 | 7.3 | — | — | — | — | A vulnerability was identified in itsourcecode Online Blood Bank Management System 1.0. | 130d ago |
| CVE-2026-45360 | 7.3 | — | — | — | apache / airflow | Apache Airflow's scheduler-side deadline-reference decoder (`SerializedCustomReference.deserialize_reference`) imp | 130d ago |
| CVE-2026-10243 | 7.3 | — | — | — | — | A security vulnerability has been detected in code-projects Smart Parking System 1.0. | 130d ago |
| CVE-2026-10236 | 7.3 | — | — | — | — | A vulnerability has been found in SourceCodester Water Billing Management System 1.0. | 130d ago |
| CVE-2026-10227 | 7.3 | — | — | — | — | A vulnerability has been found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210af | 130d ago |
| CVE-2026-10226 | 7.3 | — | — | — | — | A flaw has been found in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9444382d | 130d ago |
| CVE-2026-10225 | 7.3 | — | — | — | — | A vulnerability was detected in raisulislamg4 student_management_system_by_php up to 310d950e09013d5133c6b9210aff9 | 130d ago |
| CVE-2026-10221 | 7.3 | — | — | — | — | A vulnerability was identified in NousResearch hermes-agent up to 0.12.0. | 130d ago |
| CVE-2026-10220 | 7.3 | — | — | — | — | A vulnerability was determined in NousResearch hermes-agent up to 2026.4.30. | 130d ago |
| CVE-2026-10219 | 7.3 | — | — | — | — | A vulnerability was found in nextlevelbuilder GoClaw up to 3.11.3. | 130d ago |
| CVE-2026-10214 | 7.3 | — | — | — | — | A weakness has been identified in zhayujie chatgpt-on-wechat up to 2.0.8. | 131d ago |
| CVE-2026-10208 | 7.3 | — | — | — | — | A flaw has been found in code-projects Online Hospital Management System 1.php. | 131d ago |
| CVE-2026-10186 | 7.3 | — | — | — | — | A security vulnerability has been detected in code-projects Online Hospital Management System 1.0. | 131d ago |
| CVE-2026-10185 | 7.3 | — | — | — | — | A weakness has been identified in SourceCodester Hospitals Patient Records Management System 1.0. | 131d ago |
| CVE-2026-10184 | 7.3 | — | — | — | — | A security flaw has been discovered in SourceCodester Hospitals Patient Records Management System 1.0. | 131d ago |
| CVE-2026-10178 | 7.3 | — | — | — | — | A vulnerability was detected in code-projects Online Music Site 1.0. | 131d ago |
| CVE-2026-10167 | 7.3 | — | — | — | — | A weakness has been identified in OUSL-GROUP-BrinaryBrains School Student Management System up to 1e70e5ad1125b86d | 131d ago |
| CVE-2026-10157 | 7.3 | — | — | — | — | A vulnerability was identified in Open5GS up to 2.7.6. | 132d ago |
| CVE-2026-10111 | 7.3 | — | — | — | — | A flaw has been found in sambitraj STUDENT-MANAGEMENT-SYSTEM 1.0. | 132d ago |
| CVE-2026-10110 | 7.3 | — | — | — | — | A vulnerability was detected in code-projects Student Details Management System 1.0. | 132d ago |
| CVE-2026-10068 | 7.3 | — | — | — | — | A flaw has been found in Shibby Tomato 1.28. | 133d ago |
| CVE-2026-39292 | 7.3 | — | — | — | — | Falco Solutions PHPPageBuilder v0.31.0 contains an unrestricted file upload vulnerability in the pagemanager/pageb | 133d ago |
| CVE-2026-45364 | 7.3 | — | — | — | — | Better Auth is an authentication and authorization library for TypeScript. | 134d ago |
| CVE-2026-30761 | 7.3 | — | — | — | — | An arbitrary file upload vulnerability in the pages/admin.uploadmapimg.php component of SourceBans Material Admin | 134d ago |
| CVE-2026-30760 | 7.3 | — | — | — | — | An issue in SourceBans Material Admin before v.1.1.6 (3ecd95e) allows attackers to manipulate arbitrary user data | 134d ago |
| CVE-2026-37579 | 7.3 | — | — | — | — | An issue in SMSGate sms-core<=2.1.13.6 allows a remote attacker to execute arbitrary code via the Cmpp7FDeliverReq | 134d ago |
| CVE-2026-9658 | 7.3 | — | — | — | — | Plack::Middleware::Security::Common versions before 0.13.1 for Perl did not block header injections in request path | 134d ago |
| CVE-2026-9795 | 7.3 | — | — | — | redhat / build of keycloak | A flaw was found in Keycloak's Fine-Grained Admin Permissions (FGAPv2) feature. | 134d ago |
| CVE-2026-44320 | 7.3 | — | — | — | free5gc / free5gc | free5GC is an open-source implementation of the 5G core network. | 135d ago |
| CVE-2026-37713 | 7.3 | — | — | — | — | An issue in Dolibarr ERP/CRM v.22.0.0 through v.22.0.4 and v.24.0.0-alpha allows a remote attacker to execute arbi | 135d ago |
| CVE-2026-37712 | 7.3 | — | — | — | — | An issue in Dolibarr ERP/CRM v.22.0.0 through v.22.0.4 and v.24.0.0-alpha allows a remote attacker to execute arbi | 135d ago |
| CVE-2026-37711 | 7.3 | — | — | — | — | An issue in Dolibarr ERP/CRM v.22.0.0 through v.22.0.4 and v.24.0.0-alpha allows a remote attacker to execute arbi | 135d ago |
| CVE-2026-31266 | 7.3 | — | — | — | — | Craft CMS 5.9.5 and earlier contains a Missing Authorization vulnerability in the migrate endpoint (/actions/app/m | 135d ago |
| CVE-2025-70103 | 7.3 | — | — | — | — | Heap buffer overflow vulnerability in libjxl 0.12.0 via crafted PBM images to the jxl::extras::DecodeImagePNM func | 135d ago |
| CVE-2026-45932 | 7.3 | — | — | — | linux / linux kernel | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix tcx/netkit detach permissions when pr | 135d ago |
| CVE-2026-38427 | 7.3 | — | — | — | — | An issue in fetch_jpg() in xdrv_10_scripter.ino in Tasmota through 15.3.0.3 allows a remote attacker to cause heap | 135d ago |
| CVE-2026-38426 | 7.3 | — | — | — | — | Buffer Overflow vulnerability in arendst Tasmota v.15.3.0.3 and before allows a remote attacker to execute arbitra | 135d ago |
| CVE-2026-38422 | 7.3 | — | — | — | — | Buffer Overflow vulnerability in arendst Tasmota v.15.3.0.3 and before allows a remote attacker to execute arbitra | 135d ago |
| CVE-2026-36540 | 7.3 | — | — | — | — | Netis AC1200 Router NC21 V4.0.1.4296 is vulnerable to unauthenticated command injection via the /cgi-bin/skk_set.c | 135d ago |
| CVE-2026-36539 | 7.3 | — | — | — | — | Netis AC1200 Router NC21 V4.0.1.4296 exposes a CGI endpoint /cgi-bin/skk_get.cgi that returns the entire router co | 135d ago |