Loading vulnerability catalog
Threat intelligence
Public CVEs with current exploit evidence, risk signals and related defensive or research tooling.
Exploits RSS| CVE and title | Evidence / dates | CVSS | EPSS | KEV | Vendor / product | Exploits | Updated |
|---|---|---|---|---|---|---|---|
| CVE-2026-13447MStore API <= 4.20.0 - Unauthenticated Authentication Bypass via 'id_token' Parameter JWT Forgery | Evidence Sep 19, 2026Published Sep 5, 2026 | 9.8HighCritical | 0.4%Low | — | inspireuiMStore API – Create Native Android & iOS Apps On The Cloud |
| 1 |
| Sep 19, 2026 |
| CVE-2026-93659Concrete CMS Community Store before 2.7.8 Stored XSS | Evidence Sep 19, 2026Published Sep 18, 2026 | 9.3HighCritical | 0.3%Low | — | concretecms-community-storecommunity_store | 1 | Sep 19, 2026 |
|---|
| CVE-2026-75157Apache Airflow: Asset queued-events DELETE endpoints gated on Dag READ instead of Dag EDIT (asset-triggered scheduling suppression) | Evidence Sep 19, 2026Published Sep 18, 2026 | —Not availableNot available | 0.2%Low | — | Apache Software FoundationApache Airflow | 1 | Sep 19, 2026 |
|---|
| CVE-2026-8726SQL Injection in extension "News system" (news) | Evidence Sep 19, 2026Published May 19, 2026 | 8.2HighHigh | 0.4%Low | — | TYPO3Extension "News system" | 1 | Sep 19, 2026 |
|---|
| CVE-2026-4282Keycloak: keycloak: privilege escalation via forged authorization codes due to singleuseobjectprovider isolation flaw | Evidence Sep 18, 2026Published Apr 2, 2026 | 7.4HighHigh | 0.4%Low | — | Red HatRed Hat build of Keycloak 26.2, Red Hat build of Keycloak 26.2.15, Red Hat build of Keycloak 26.4, Red Hat build of Keycloak 26.4.11 | 1 | Sep 18, 2026 |
|---|
| CVE-2026-18464WP Maps Pro < 6.1.3 - Unauthenticated Denial of Service | Evidence Sep 18, 2026Published Aug 9, 2026 | 7.5HighHigh | 0.3%Low | — | UnknownWP MAPS PRO | 1 | Sep 18, 2026 |
|---|
| CVE-2026-16265WP Maps < 4.9.7 - Subscriber+ Denial of Service | Evidence Sep 18, 2026Published Aug 7, 2026 | 6.5ModerateMedium | 0.2%Low | — | UnknownWP Maps | 1 | Sep 18, 2026 |
|---|
| CVE-2026-84753WordPress Mail Mint plugin <= 1.31.0 - PHP Object Injection vulnerability | Evidence Sep 18, 2026Published Sep 3, 2026 | 9.8HighCritical | 0.3%Low | — | WPFunnelsMail Mint | 1 | Sep 18, 2026 |
|---|
| CVE-2026-82226WordPress Tickera plugin <= 3.6.0.2 - PHP Object Injection vulnerability | Evidence Sep 18, 2026Published Aug 31, 2026 | 9.8HighCritical | 0.3%Low | — | TickeraTickera | 1 | Sep 18, 2026 |
|---|
| CVE-2026-77991Joomla Extension - joomlaeventmanager.net - Privileged remote code execution in Joomla Event Manager < 5.0.1 | Evidence Sep 18, 2026Published Aug 27, 2026 | 9.4HighCritical | 0.4%Low | — | joomlaeventmanager.netJEM - Joomla Event Manager extension for Joomla | 1 | Sep 18, 2026 |
|---|
| CVE-2026-75827Grav before 2.0.15 Arbitrary File Write via error_log | Evidence Sep 18, 2026Published Aug 18, 2026 | 9.3HighCritical | 0.8%Low | — | getgravgrav | 1 | Sep 18, 2026 |
|---|
| CVE-2026-45140Chamilo LMS CStudio upload flow allows unauthenticated remote code execution | Evidence Sep 18, 2026Published Sep 17, 2026 | 9.8HighCritical | 1.0%Low | — | chamilochamilo-lms | 1 | Sep 18, 2026 |
|---|
| CVE-2026-81642Heap buffer overflow and possible Remote Code Execution when digesting DNSKEY | Evidence Sep 18, 2026Published Sep 16, 2026 | 9.1HighCritical | 0.5%Low | — | NLnet LabsUnbound | 1 | Sep 18, 2026 |
|---|
| CVE-2026-93453SOGo before 5.12.11 Password Reset Token Interception via Origin Header | Evidence Sep 18, 2026Published Sep 17, 2026 | 8.7HighHigh | 0.3%Low | — | AlintoSOGo | 1 | Sep 18, 2026 |
|---|
| CVE-2026-81000net: tun: bound receive headroom | Evidence Sep 18, 2026Published Sep 11, 2026 | 7.8HighHigh | 0.2%Low | — | LinuxLinux | 3 | Sep 18, 2026 |
|---|
| CVE-2026-68121pppoe: reload header pointer after dev_hard_header() | Evidence Sep 18, 2026Published Aug 10, 2026 | 7.8HighHigh | 0.1%Low | — | LinuxLinux | 3 | Sep 18, 2026 |
|---|
| CVE-2026-80844xfrm: ah6: validate routing header segments_left | Evidence Sep 18, 2026Published Sep 4, 2026 | —Not availableNot available | 0.2%Low | — | LinuxLinux | 3 | Sep 18, 2026 |
|---|
| CVE-2026-74469sctp: prevent peer transport count overflow | Evidence Sep 18, 2026Published Aug 15, 2026 | 8.8HighHigh | 0.5%Low | — | LinuxLinux | 4 | Sep 18, 2026 |
|---|
| CVE-2026-87796Multi Uploader for Gravity Forms <= 1.1.9 - Unauthenticated Arbitrary File Upload via Chunked File Upload | Evidence Sep 18, 2026Published Sep 17, 2026 | 9.8HighCritical | 0.6%Low | — | sh1zenMulti Uploader for Gravity Forms | 1 | Sep 18, 2026 |
|---|
| CVE-2026-53266netfilter: bridge: make ebt_snat ARP rewrite writable | Evidence Sep 18, 2026Published Jun 25, 2026 | 8.8HighHigh | 0.3%Low | KEV | LinuxLinux | 1 | Sep 20, 2026 |
|---|
| CVE-2026-1961Forman: foreman: remote code execution via command injection in websocket proxy | Evidence Sep 17, 2026Published Mar 26, 2026 | 8.0HighHigh | 1.4%Low | — | Red HatRed Hat Satellite 6.16 for RHEL 8, Red Hat Satellite 6.16 for RHEL 9, Red Hat Satellite 6.17 for RHEL 9, Red Hat Satellite 6.18 for RHEL 9, Red Hat Satellite 6 | 1 | Sep 17, 2026 |
|---|
| CVE-2026-44840Dgraph Vulnerable to DQL Injection via checkUserPassword GraphQL Query | Evidence Sep 17, 2026Published Jul 8, 2026 | 7.5HighHigh | 0.5%Low | — | dgraph-iodgraph | 1 | Sep 17, 2026 |
|---|
| CVE-2026-92805UVdesk Community Skeleton through 1.1.8 Missing Authentication on the Installation Wizard | Evidence Sep 17, 2026Published Sep 16, 2026 | 9.3HighCritical | 0.3%Low | — | uvdeskcommunity-skeleton | 1 | Sep 17, 2026 |
|---|
| CVE-2026-72710SPIP < 4.4.18 RCE via editer_objet.php Job Queue Injection | Evidence Sep 17, 2026Published Sep 11, 2026 | 9.3HighCritical | 0.6%Low | — | SPIPSPIP | 1 | Sep 17, 2026 |
|---|
| CVE-2026-72709SPIP < 4.4.18 Missing Authorization via ecrire/action/ | Evidence Sep 17, 2026Published Sep 11, 2026 | 9.3HighCritical | 0.4%Low | — | SPIPSPIP | 1 | Sep 17, 2026 |
|---|
| CVE-2026-72708SPIP < 4.4.18 Unauthenticated Blind SQL Injection via sitemap.xml.html | Evidence Sep 17, 2026Published Sep 11, 2026 | 8.7HighHigh | 0.3%Low | — | SPIPSPIP | 1 | Sep 17, 2026 |
|---|
| CVE-2026-80467Advanced Custom Fields: Extended 0.9.2.2 - 0.9.2.6 - Unauthenticated Privilege Escalation via Front-End User Insert Action | Evidence Sep 17, 2026Published Sep 2, 2026 | 8.1HighHigh | 0.2%Low | — | UnknownAdvanced Custom Fields: Extended | 1 | Sep 17, 2026 |
|---|
| CVE-2026-80521af_unix: Unlink scc_entry in unix_del_edge(). | Evidence Sep 17, 2026Published Aug 26, 2026 | 7.8HighHigh | 0.1%Low | — | LinuxLinux | 1 | Sep 17, 2026 |
|---|
| CVE-2026-88533PoC and lab reproduction for CVE-2026-88533, an unauthenticated arbitrary file write leading to root RCE in QAnything via path traversal in the upload endpoint. | Evidence Sep 17, 2026Published — | —Not availableNot available | —Not available | — | —— | 1 | Sep 17, 2026 |
|---|
| CVE-2026-85048Use after free in Compositing in Google Chrome prior to 152.0.7977.82 allowed a remote attacker who had compromised the renderer process to execute... | Evidence Sep 17, 2026Published Sep 3, 2026 | 8.3HighHigh | 0.3%Low | — | GoogleChrome | 1 | Sep 17, 2026 |
|---|
| CVE-2026-85045Race condition in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page.... | Evidence Sep 17, 2026Published Sep 3, 2026 | 7.5HighHigh | 0.2%Low | — | GoogleChrome | 1 | Sep 17, 2026 |
|---|
| CVE-2026-49179Windows Active Directory Domain Services Remote Code Execution Vulnerability | Evidence Sep 17, 2026Published Aug 11, 2026 | 8.8HighHigh | 0.8%Low | — | MicrosoftWindows 10 Version 1607, Windows 10 Version 1809, Windows 10 Version 21H2, Windows 10 Version 22H2, Windows 11 version 23H2, Windows 11 Version 23H2, Windows 11 Version 24H2, Windows 11 Version 25H2, Windows 11 version 26H1, Windows Server 2012, Windows Server 2012 (Server Core installation), Windows Server 2012 R2, Windows Server 2012 R2 (Server Core installation), Windows Server 2016, Windows Server 2016 (Server Core installation), Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022, Windows Server 2025, Windows Server 2025 (Server Core installation) | 1 | Sep 17, 2026 |
|---|
| CVE-2026-76460Cisco Identity Services Engine Authentication Bypass Vulnerability | Evidence Sep 17, 2026Published Sep 16, 2026 | 10.0HighCritical | 0.8%Low | KEV | CiscoCisco Identity Services Engine Software, Cisco ISE Passive Identity Connector | 1 | Sep 18, 2026 |
|---|
| CVE-2026-92162Educational write-up and test-mode PoC for CVE-2026-92162, a path traversal in Flatpak's DeployAppstream arch parameter enabling root directory creation. | Evidence Sep 17, 2026Published — | —Not availableNot available | —Not available | — | —— | 1 | Sep 17, 2026 |
|---|
| CVE-2026-27739Angular SSR is vulnerable to SSRF and Header Injection via request handling pipeline | Evidence Sep 17, 2026Published Feb 25, 2026 | 9.2HighCritical | 0.5%Low | — | angularangular-cli, @nguniversal/common, @nguniversal/express-engine | 1 | Sep 17, 2026 |
|---|
| CVE-2026-84600An authorization issue was addressed with improved state management. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, tvOS 27, visionOS... | Evidence Sep 17, 2026Published Sep 14, 2026 | 5.4ModerateMedium | 0.2%Low | — | AppleiOS and iPadOS, macOS, tvOS, visionOS, watchOS | 1 | Sep 17, 2026 |
|---|
| CVE-2021-43290An issue was discovered in ThoughtWorks GoCD before 21.3.0. An attacker who has compromised a GoCD agent can upload a malicious file into a directory of a... | Evidence Sep 17, 2026Published Apr 14, 2022 | 9.8HighCritical | 3.2%Low | — | n/an/a | 1 | Sep 17, 2026 |
|---|
| CVE-2021-43289An issue was discovered in ThoughtWorks GoCD before 21.3.0. An attacker who has compromised a GoCD agent can upload a malicious file into an arbitrary... | Evidence Sep 17, 2026Published Apr 14, 2022 | 7.5HighHigh | 2.3%Low | — | n/an/a | 1 | Sep 17, 2026 |
|---|
| CVE-2026-91752GNU libextractor before 1.15 Stack Overflow via OLE2 | Evidence Sep 17, 2026Published Sep 15, 2026 | 8.7HighHigh | 0.4%Low | — | GNUlibextractor | 1 | Sep 17, 2026 |
|---|
| CVE-2026-56096Information Disclosure in extension "Apache Solr for TYPO3 - Enterprise Search" (solr) | Evidence Sep 16, 2026Published Aug 25, 2026 | 6.3ModerateMedium | 0.3%Low | — | TYPO3Extension "Apache Solr for TYPO3 - Enterprise Search" | 1 | Sep 16, 2026 |
|---|
| CVE-2022-22715Named Pipe File System Elevation of Privilege Vulnerability | Evidence Sep 16, 2026Published Feb 9, 2022 | 7.8HighHigh | 12.6%Moderate | — | MicrosoftWindows 10 Version 1809, Windows Server 2019, Windows Server 2019 (Server Core installation), Windows 10 Version 1909, Windows 10 Version 21H1, Windows Server 2022, Windows 10 Version 20H2, Windows Server version 20H2, Windows 11 version 21H2, Windows 10 Version 21H2 | 1 | Sep 16, 2026 |
|---|
| CVE-2026-89026Issabel Framework Hard-coded JWT Key RCE via pbxapi/manager/originate | Evidence Sep 16, 2026Published Sep 15, 2026 | 9.3HighCritical | 0.5%Low | — | Issabel FoundationIssabel Framework | 2 | Sep 16, 2026 |
|---|
| CVE-2026-12793JetFormBuilder <= 3.6.2 - Unauthenticated Privilege Escalation via '_jet_engine_booking_form_id' Parameter | Evidence Sep 16, 2026Published Sep 16, 2026 | 9.8HighCritical | 0.4%Low | — | jetmonstersJetFormBuilder — Dynamic Blocks Form Builder | 3 | Sep 16, 2026 |
|---|
| CVE-2025-57231Path Traversal in avatar attachments in Docmost v0.21.0 allows an unauthenticated malicious actor to disclose local files via a POST Request in a public url. | Evidence Sep 16, 2026Published Sep 10, 2026 | 7.5HighHigh | 1.3%Low | — | n/an/a | 1 | Sep 16, 2026 |
|---|
| CVE-2026-0994Denial of Service in Python Protobuf | Evidence Sep 16, 2026Published Jan 23, 2026 | 8.2HighHigh | 0.7%Low | — | PythonProtobuf | 1 | Sep 16, 2026 |
|---|
| CVE-2026-84607A race condition was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27,... | Evidence Sep 16, 2026Published Sep 14, 2026 | 7.8HighHigh | 0.1%Low | — | AppleiOS and iPadOS, macOS, tvOS, visionOS, watchOS | 1 | Sep 16, 2026 |
|---|
| CVE-2026-92247synaptikcms synaptik-cms Admin File Manager file-manager.php rename unrestricted upload | Evidence Sep 16, 2026Published Sep 16, 2026 | 2.0LowLow | 0.3%Low | — | synaptikcmssynaptik-cms | 1 | Sep 16, 2026 |
|---|
| CVE-2026-59346PoC for CVE-2026-59346 - 32-bit integer overflow in VMware's VMXNET3 TSO segmentation path, guest-to-host crash. | Evidence Sep 16, 2026Published — | —Not availableNot available | —Not available | — | —— | 1 | Sep 16, 2026 |
|---|
| CVE-2025-41236VMXNET3 integer-overflow vulnerability | Evidence Sep 16, 2026Published Jul 15, 2025 | 9.3HighCritical | 2.5%Low | — | VMwareESXi, Cloud Foundation, Workstation, Fusion, Telco Cloud Platform, Telco Cloud Infrastructure | 1 | Sep 16, 2026 |
|---|
| CVE-2026-32996This vulnerability in Veeam Agent for Microsoft Windows allows for Local Privilege Escalation. | Evidence Sep 15, 2026Published May 28, 2026 | 7.3HighHigh | 0.2%Low | — | VeeamBackup and Replication | 1 | Sep 15, 2026 |
|---|