Loading vulnerability catalog
Threat intelligence
Public CVEs with current exploit evidence, risk signals and related defensive or research tooling.
Exploits RSS| CVE and title | Evidence / dates | CVSS | EPSS | KEV | Vendor / product | Exploits | Updated |
|---|---|---|---|---|---|---|---|
| CVE-2026-78851Technical advisory detailing an authenticated path traversal vulnerability in Grav CMS's Twig media_directory() function, enabling arbitrary directory... | Evidence Sep 6, 2026Published — | —Not availableNot available | —Not available | — | —— | 1 |
| Sep 13, 2026 |
| CVE-2026-64705A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7,... | Evidence Sep 6, 2026Published Aug 25, 2026 | 5.5ModerateMedium | 0.1%Low | — | AppleiOS and iPadOS, macOS | 1 | Sep 6, 2026 |
|---|
| CVE-2026-78938Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page.... | Evidence Sep 6, 2026Published Aug 25, 2026 | 8.8HighHigh | 0.4%Low | — | GoogleChrome | 1 | Sep 6, 2026 |
|---|
| CVE-2026-28956A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma... | Evidence Sep 6, 2026Published May 11, 2026 | 6.5ModerateMedium | 0.5%Low | — | AppleiOS and iPadOS, macOS, tvOS, visionOS, watchOS | 1 | Sep 6, 2026 |
|---|
| CVE-2021-3030Cute Editor for ASP.NET 6.4 is vulnerable to reflected cross-site scripting caused by improper validation of the Theme GET parameter in... | Evidence Sep 6, 2026Published Sep 17, 2026 | 6.1ModerateMedium | 0.3%Low | — | n/an/a | 1 | Sep 6, 2026 |
|---|
| CVE-2026-84645In Jenkins 2.579 and earlier, LTS 2.568.2 and earlier, objects of types marked as storing their configuration in independent top-level configuration files... | Evidence Sep 5, 2026Published Sep 2, 2026 | 8.8HighHigh | 0.7%Low | — | Jenkins ProjectJenkins | 1 | Sep 5, 2026 |
|---|
| CVE-2026-3326XStore < 9.7.3 - Unauthenticated SQLi | Evidence Sep 5, 2026Published Jun 10, 2026 | 8.6HighHigh | 1.9%Low | — | UnknownXstore | 1 | Sep 5, 2026 |
|---|
| CVE-2026-7873Code Injection Vulnerability in Code Validation Endpoint | Evidence Sep 5, 2026Published Jun 30, 2026 | 9.9HighCritical | 0.5%Low | — | IBMLangflow OSS | 1 | Sep 5, 2026 |
|---|
| CVE-2026-39382dbt has a Command Injection in Reusable Workflow via Unsanitized comment-body Output | Evidence Sep 5, 2026Published Apr 7, 2026 | 9.3HighCritical | 0.4%Low | — | dbt-labsdbt-core | 1 | Sep 5, 2026 |
|---|
| CVE-2026-22778vLLM leaks a heap address when PIL throws an error | Evidence Sep 5, 2026Published Feb 2, 2026 | 9.8HighCritical | 3.8%Low | — | vllm-projectvllm | 1 | Sep 5, 2026 |
|---|
| CVE-2025-9951Remote code execution via Heap Buffer Overflow in FFmpeg JPEG2000 | Evidence Sep 5, 2026Published Sep 9, 2025 | 7.2HighHigh | 0.4%Low | — | FFmpegFFmpeg | 1 | Sep 5, 2026 |
|---|
| CVE-2026-57062CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes-ICVlen is supposed to be 12... | Evidence Sep 5, 2026Published Jun 23, 2026 | 2.9LowLow | 0.1%Low | — | GnuPGGnuPG | 1 | Sep 5, 2026 |
|---|
| CVE-2026-6471PostgreSQL logical decoding can dlopen arbitrary file | Evidence Sep 5, 2026Published Aug 13, 2026 | 7.2HighHigh | 0.3%Low | — | n/aPostgreSQL | 2 | Sep 5, 2026 |
|---|
| CVE-2026-75865WPLP Cookie Consent <= 4.4.1 - Unauthenticated Arbitrary File Upload via 'upload-logo' REST Endpoint | Evidence Sep 5, 2026Published Sep 1, 2026 | 9.8HighCritical | 0.5%Low | — | wplegalpagesWPLP Cookie Consent – Cookie Banner & Consent Management for GDPR, CCPA & Google Consent Mode | 1 | Sep 5, 2026 |
|---|
| CVE-2026-35580Emissary has GitHub Actions Shell Injection via Workflow Inputs | Evidence Sep 5, 2026Published Apr 7, 2026 | 9.1HighCritical | 0.6%Low | — | NationalSecurityAgencyemissary | 1 | Sep 5, 2026 |
|---|
| CVE-2026-29075Mesa: Checking out of untrusted code in benchmarks.yml workflow may lead to code execution in privileged runner | Evidence Sep 5, 2026Published Mar 6, 2026 | 9.8HighCritical | 0.4%Low | — | mesamesa | 1 | Sep 5, 2026 |
|---|
| CVE-2026-33475Langflow GitHub Actions Shell Injection | Evidence Sep 5, 2026Published Mar 24, 2026 | 9.1HighCritical | 3.0%Low | — | langflow-ailangflow | 1 | Sep 5, 2026 |
|---|
| CVE-2026-34243wenxian: Command Injection in GitHub Actions Workflow via issue_comment.body | Evidence Sep 5, 2026Published Mar 31, 2026 | 9.8HighCritical | 2.2%Low | — | njzjzwenxian | 1 | Sep 5, 2026 |
|---|
| CVE-2026-27941OpenLIT Vulnerable to Remote Code Execution and Secret Exposure via Misuse of pull_request_target in GitHub Actions Workflows | Evidence Sep 5, 2026Published Feb 26, 2026 | 9.9HighCritical | 0.4%Low | — | openlitopenlit | 1 | Sep 5, 2026 |
|---|
| CVE-2026-33075FastGPT has Arbitrary Code Execution in GitHub Actions via pull_request_target in fastgpt-preview-image.yml | Evidence Sep 5, 2026Published Mar 20, 2026 | 9.4HighCritical | 0.3%Low | — | labringFastGPT | 1 | Sep 5, 2026 |
|---|
| CVE-2026-31852Jellyfin Possible Organization/Secret Compromise from dangerous CI implementation | Evidence Sep 5, 2026Published Mar 11, 2026 | 10.0HighCritical | 0.4%Low | — | jellyfincode-quality.yml | 1 | Sep 5, 2026 |
|---|
| CVE-2026-64468binder: fix UAF in binder_free_transaction() | Evidence Sep 5, 2026Published Jul 25, 2026 | 7.8HighHigh | 0.1%Low | — | LinuxLinux | 2 | Sep 5, 2026 |
|---|
| CVE-2026-85649(Holloway) Chew, Kean Ho's Actualizer v1.2.0 and earlier contains a fail-open password validation vulnerability in the Alpha user and root user password... | Evidence Sep 5, 2026Published Sep 4, 2026 | 7.9HighHigh | 0.2%Low | — | chewkeanhosoftware-actualizer | 1 | Sep 5, 2026 |
|---|
| CVE-2026-48019CRLF injection in Laravel's default email rule enables SMTP smuggling and spoofed-mail relay | Evidence Sep 5, 2026Published Sep 4, 2026 | 8.9HighHigh | 0.7%Low | — | laravelframework | 1 | Sep 5, 2026 |
|---|
| CVE-2026-61699nebula-mesh: Certificate revocation is never enforced at the mesh | Evidence Sep 4, 2026Published Sep 4, 2026 | 8.1HighHigh | 0.2%Low | — | forgekeepnebula-mesh | 1 | Sep 4, 2026 |
|---|
| CVE-2026-1699In the Eclipse Theia Website repository, the GitHub Actions workflow .github/workflows/preview.yml used pull_request_target trigger while checking out and... | Evidence Sep 4, 2026Published Jan 30, 2026 | 10.0HighCritical | 0.5%Low | — | Eclipse FoundationEclipse Theia - Website | 1 | Sep 4, 2026 |
|---|
| CVE-2026-24480QGIS had validated RCE and Repository Takeover via GitHub Actions | Evidence Sep 4, 2026Published Jan 27, 2026 | 8.7HighHigh | 0.4%Low | — | qgisQGIS | 1 | Sep 4, 2026 |
|---|
| CVE-2026-27938WPGraphQL Repo Vulnerable to Command Injection via Unsanitized GitHub Actions Expression in Release Workflow | Evidence Sep 4, 2026Published Feb 26, 2026 | 7.7HighHigh | 0.8%Low | — | wp-graphqlwp-graphql | 1 | Sep 4, 2026 |
|---|
| CVE-2026-22869Eigent Allows Arbitrary Code Execution via pull_request_target CI Workflow | Evidence Sep 4, 2026Published Jan 13, 2026 | 8.9HighHigh | 0.6%Low | — | eigent-aieigent | 1 | Sep 4, 2026 |
|---|
| CVE-2026-27701LiveCodes vulnerable to JavaScript Injection via untrusted PR title in i18n-update-pull workflow | Evidence Sep 4, 2026Published Feb 25, 2026 | 8.8HighHigh | 0.3%Low | — | live-codeslivecodes | 1 | Sep 4, 2026 |
|---|
| CVE-2026-19900LB-LINK X-PRO shadow hard-coded credentials | Evidence Sep 4, 2026Published Aug 15, 2026 | 8.2HighHigh | 2.2%Low | — | LB-LINKX-PRO | 1 | Sep 4, 2026 |
|---|
| CVE-2026-85769Libtpms: libtpms: heap out-of-bounds read in tpm2 state unmarshalling via unchecked block_skip_read() blocksize | Evidence Sep 4, 2026Published Sep 4, 2026 | 6.5ModerateMedium | 0.4%Low | — | Red HatRed Hat Enterprise Linux 10, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9 | 1 | Sep 4, 2026 |
|---|
| CVE-2026-77818Reflected HTML Injection via Form Hijacking in Yordam Informatics's Library Automation System | Evidence Sep 4, 2026Published Sep 4, 2026 | 6.1ModerateMedium | 0.2%Low | — | Yordam Information Technology Consulting, Training and Electronic Systems Industry and Trade Inc.Library Information and Document Automation Program | 1 | Sep 4, 2026 |
|---|
| CVE-2026-11613Divi Ajax Filter <= 5.1.2 - Unauthenticated Local File Inclusion via 'custom_loop_template' Parameter | Evidence Sep 4, 2026Published Sep 4, 2026 | 9.8HighCritical | 0.5%Low | — | Divi EngineDivi Ajax Filter | 1 | Sep 4, 2026 |
|---|
| CVE-2025-60800Incorrect access control in the /jshERP-boot/user/info interface of jshERP up to commit 90c411a allows attackers to access sensitive information via a... | Evidence Sep 4, 2026Published Oct 28, 2025 | 7.5HighHigh | 0.3%Low | — | n/an/a | 1 | Sep 4, 2026 |
|---|
| CVE-2026-78839An arbitrary file upload vulnerability in AppNitro MachForm v30 allows attackers to execute arbitrary code via uploading a crafted .phar file. | Evidence Sep 4, 2026Published Sep 4, 2026 | 8.1HighHigh | 0.5%Low | — | n/an/a | 1 | Sep 4, 2026 |
|---|
| CVE-2026-75430PowerJob Worker version 5.1.2 (and likely earlier versions) exposes the /worker/deployContainer HTTP endpoint without authentication on the default... | Evidence Sep 4, 2026Published Sep 4, 2026 | 9.8HighCritical | 0.9%Low | — | n/an/a | 1 | Sep 4, 2026 |
|---|
| CVE-2026-78745An issue in HiDPT/ Weyon HiDPTAndroid Hi3751V350 Hi3751V352E_DMO allows a remote attacker to execute arbitrary code via the Android Debug Bridge (ADB)... | Evidence Sep 4, 2026Published Sep 4, 2026 | 9.8HighCritical | 0.7%Low | — | n/an/a | 1 | Sep 4, 2026 |
|---|
| CVE-2026-75429PowerJob versions 4.x through 5.1.2 contain an unauthenticated remote code execution vulnerability in the /friend/process endpoint of the Server-Worker... | Evidence Sep 4, 2026Published Sep 4, 2026 | 9.8HighCritical | 0.9%Low | — | n/an/a | 1 | Sep 4, 2026 |
|---|
| CVE-2026-75431PowerJob Server version 5.1.2 (and likely earlier) uses a predictable JWT signing key for HS256-based authentication. This allows a remote attacker to... | Evidence Sep 4, 2026Published Sep 4, 2026 | 9.1HighCritical | 0.8%Low | — | n/an/a | 1 | Sep 4, 2026 |
|---|
| CVE-2026-44402Voltronic Power SNMP Web Pro 1.1 Unauthenticated RCE via upload.cgi | Evidence Sep 4, 2026Published Sep 4, 2026 | 9.3HighCritical | 0.9%Low | — | Voltronic PowerSNMP Web Pro | 2 | Sep 4, 2026 |
|---|
| CVE-2022-35497In Trimble TM4WEB 21.4.0.4 due to security misconfiguration with session identifiers, it is possible to recover valid session cookies via reflected... | Evidence Sep 4, 2026Published Sep 4, 2026 | 5.4ModerateMedium | 0.3%Low | — | n/an/a | 1 | Sep 4, 2026 |
|---|
| CVE-2022-35499In Trimble TM4WEB 21.4.0.4, the external bill viewer endpoint is vulnerable to reflected cross-site scripting via injection in a arbitrary parameter... | Evidence Sep 4, 2026Published Sep 4, 2026 | 7.1HighHigh | 0.3%Low | — | n/an/a | 2 | Sep 4, 2026 |
|---|
| CVE-2026-85046Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page.... | Evidence Sep 4, 2026Published Sep 3, 2026 | 8.8HighHigh | 1.5%Low | KEV | GoogleChrome | 7 | Sep 4, 2026 |
|---|
| CVE-2025-58371Roo Code is vulnerable to command injection via GitHub actions workflow | Evidence Sep 4, 2026Published Sep 5, 2025 | 9.9HighCritical | 0.8%Low | — | RooCodeIncRoo-Code | 1 | Sep 4, 2026 |
|---|
| CVE-2025-54430dedupe is vulnerable to secret exfiltration via issue_comment | Evidence Sep 4, 2026Published Jul 30, 2025 | 9.1HighCritical | 0.3%Low | — | dedupeiodedupe | 1 | Sep 4, 2026 |
|---|
| CVE-2025-61584serverless-dns is vulnerable to Command Injection through pr.yml GitHub Action Workflow | Evidence Sep 4, 2026Published Sep 30, 2025 | 9.3HighCritical | 0.4%Low | — | serverless-dnsserverless-dns | 1 | Sep 4, 2026 |
|---|
| CVE-2024-36058The Send Basket functionality in Koha Library before 23.05.10 is susceptible to Time-Based SQL Injection because it fails to sanitize the POST parameter... | Evidence Sep 4, 2026Published Apr 7, 2026 | 9.8HighCritical | 0.5%Low | — | n/an/a | 1 | Sep 4, 2026 |
|---|
| CVE-2024-36057Koha Library before 23.05.10 fails to sanitize user-controllable filenames prior to unzipping, leading to remote code execution. The line "qx/unzip... | Evidence Sep 4, 2026Published Apr 7, 2026 | 9.8HighCritical | 1.8%Low | — | n/an/a | 1 | Sep 4, 2026 |
|---|
| CVE-2024-57553CVE-2024-57551, CVE-2024-57552, CVE-2024-57553 advisories by Aman Bahiniya | Evidence Sep 4, 2026Published — | —Not availableNot available | —Not available | — | —— | 1 | Sep 4, 2026 |
|---|