| CVE-2026-17436 | 8.8 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a hea | 16d ago |
| CVE-2026-16996 | 8.8 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary code due to an int | 16d ago |
| CVE-2026-16936 | 8.8 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary code due to a buff | 16d ago |
| CVE-2026-16934 | 8.8 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated privileges due to a he | 16d ago |
| CVE-2026-76023 | 8.8 | high | google / chrome | Improper resource control in Linux Toolkit Theming in Google Chrome prior to 151.0.7922.173 allowed a remote attac | 16d ago |
| CVE-2026-76022 | 8.8 | high | google / chrome | Buffer overflow in Network in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to execute arbitrary | 16d ago |
| CVE-2026-76021 | 8.8 | high | google / chrome | Use after free in DOM in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to execute arbitrary code | 16d ago |
| CVE-2026-76018 | 8.8 | high | google / chrome | Privilege elevation in Import in Google Chrome prior to 151.0.7922.173 allowed a remote attacker leveraging social | 16d ago |
| CVE-2026-76017 | 8.8 | high | google / chrome | Use after free in Chromoting in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to execute arbitra | 16d ago |
| CVE-2026-73040 | 8.8 | high | — | Dockge validates a stack name only on the write path. | 16d ago |
| CVE-2026-18420 | 8.8 | high | — | Improper input validation in the Time Series Visual Builder (TSVB) plugin in OpenSearch Dashboards allows an authe | 16d ago |
| CVE-2026-54449 | 8.8 | high | — | LangBot is a global IM bot platform designed for LLMs. | 16d ago |
| CVE-2026-18279 | 8.8 | high | — | Sony XAV-9500ES RTSP SETUP Buffer Overflow Remote Code Execution Vulnerability. | 16d ago |
| CVE-2026-18264 | 8.8 | high | — | NoMachine getstat Command Injection Remote Code Execution Vulnerability. | 16d ago |
| CVE-2026-16932 | 8.8 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to execute arbitrary commands due to im | 16d ago |
| CVE-2026-77084 | 8.8 | high | n8n / n8n | n8n before 1.123.69 (and 2.x before 2.33.4 / 2.34.1) contains a code execution vulnerability in the Git node. | 16d ago |
| CVE-2026-77080 | 8.8 | high | n8n / n8n | n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an arbitrary file read and write vulnerab | 16d ago |
| CVE-2026-77079 | 8.8 | high | n8n / n8n | n8n before 2.34.1 and 2.33.4 contains an authorization bypass in the custom project role deletion (reassignment) p | 16d ago |
| CVE-2026-77068 | 8.8 | high | n8n / n8n | n8n before 2.33.4 and 2.34.x before 2.34.1 contain a remote code execution vulnerability in the @n8n/workflow-sdk | 16d ago |
| CVE-2026-14948 | 8.8 | high | — | A low privileged remote attacker can hijack an active administrative session without needing to know the administr | 16d ago |
| CVE-2026-76832 | 8.8 | high | — | Agno's PythonTools in libs/agno/agno/tools/python.py contains a path traversal vulnerability that allows attackers | 17d ago |
| CVE-2026-76395 | 8.8 | high | splunk / ai toolkit | In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk role could execute arbitrary code o | 17d ago |
| CVE-2026-76389 | 8.8 | high | cisco / talos intelligence for enterprise security cloud | In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, a user that holds a role with the | 17d ago |
| CVE-2026-76352 | 8.8 | high | splunk / splunk | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who does not hold the "admin" or "p | 17d ago |
| CVE-2026-76351 | 8.8 | high | splunk / splunk | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, and Splunk Secure Gateway versions below 3 | 17d ago |
| CVE-2026-76350 | 8.8 | high | splunk / splunk | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user that holds a role with the schedule | 17d ago |
| CVE-2026-76335 | 8.8 | high | splunk / splunk | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an authenticated user who does not hold a | 17d ago |
| CVE-2026-76319 | 8.8 | high | splunk / splunk | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a low-privileged user that does not hold t | 17d ago |
| CVE-2026-76317 | 8.8 | high | splunk / splunk | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who does not hold the "admin" or "p | 17d ago |
| CVE-2026-76316 | 8.8 | high | splunk / splunk | In Splunk Enterprise versions below 10.4.1, 10.2.5, 10.0.9, and 9.4.14, an unauthenticated user who can reach the | 17d ago |
| CVE-2026-76315 | 8.8 | high | splunk / splunk | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who does not hold the "admin" or "p | 17d ago |
| CVE-2026-76314 | 8.8 | high | splunk / splunk | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who does not hold the "admin" or "p | 17d ago |
| CVE-2026-76313 | 8.8 | high | splunk / splunk | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who does not hold the "admin" or "p | 17d ago |
| CVE-2026-76259 | 8.8 | high | splunk / splunk | In Splunk Enterprise for Windows versions below 10.4.2, 10.2.6, 10.0.9, 9.4.13, and 9.3.14, a local user with acce | 17d ago |
| CVE-2026-76253 | 8.8 | high | splunk / splunk | In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user that holds a role with the schedule | 17d ago |
| CVE-2026-53547 | 8.8 | high | — | Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. | 17d ago |
| CVE-2026-53542 | 8.8 | high | — | Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. | 17d ago |
| CVE-2026-12522 | 8.8 | high | — | The HL7800 cellular modem driver's +CGCONTRDP: response handler on_cmd_atcmdinfo_ipaddr() in drivers/modem/vendor_ | 17d ago |
| CVE-2026-76647 | 8.8 | high | — | Leantime JSON-RPC API through version 3.9.0 contains a missing authorization vulnerability in the JSON-RPC dispatc | 17d ago |
| CVE-2026-68561 | 8.8 | high | — | Wekan is open source kanban built with Meteor. | 17d ago |
| CVE-2026-16911 | 8.8 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to execute arbitrary cod | 17d ago |
| CVE-2026-16909 | 8.8 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to an of | 17d ago |
| CVE-2026-16901 | 8.8 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to an ou | 17d ago |
| CVE-2026-16877 | 8.8 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to execute arbitrary cod | 17d ago |
| CVE-2026-16865 | 8.8 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to comma | 17d ago |
| CVE-2026-16850 | 8.8 | high | ibm / aix | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to comma | 17d ago |
| CVE-2026-16848 | 8.8 | high | ibm / aix | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary commands due to i | 17d ago |
| CVE-2026-16847 | 8.8 | high | ibm / aix | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a hea | 17d ago |
| CVE-2026-16844 | 8.8 | high | ibm / aix | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary commands due to i | 17d ago |
| CVE-2026-16842 | 8.8 | high | ibm / aix | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary commands due to i | 17d ago |
| CVE-2026-16841 | 8.8 | high | ibm / aix | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a sta | 17d ago |
| CVE-2026-75149 | 8.8 | high | — | marimo before 0.23.15 contains a code injection vulnerability in the notebook configuration handler that allows at | 17d ago |
| CVE-2026-61518 | 8.8 | high | — | ISPConfig contains an authenticated SQL injection vulnerability in the Remote API. | 17d ago |
| CVE-2026-62666 | 8.8 | high | — | Grav API Plugin is a RESTful API for Grav CMS that provides full headless access to your site's content. | 17d ago |
| CVE-2026-71961 | 8.8 | high | — | Cudy WR3000 2.0 running firmware before 2.5.24 contains an OS command injection vulnerability that allows authenti | 17d ago |
| CVE-2026-71176 | 8.8 | high | dell / openmanage enterprise | Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Special Elements used | 17d ago |
| CVE-2026-58565 | 8.8 | high | dell / command update | Dell Command Update (DCU), versions prior to 5.7.1, contain a Missing Authorization vulnerability. | 17d ago |
| CVE-2026-49255 | 8.8 | high | — | electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. | 17d ago |
| CVE-2026-44829 | 8.8 | high | — | Gotenberg is a Docker-powered stateless API for PDF files. | 17d ago |
| CVE-2026-16814 | 8.8 | high | ibm / vios | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a hea | 17d ago |