Critical Alert 1 Active Exploit Detected Today

CVE-2026-8037 Progress LoadMaster Command Injection Vulnerability →
Powered by CVE Watchtower
×
August 8, 2026

CVE Watchtower

Advanced Threat Data Export

Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.

Data export is locked. Upgrade your package to enable filtering and downloading.

🔔 Premium Features
🔍 Filter Threats
Title
SeverityPoCActively ExploitedSourceDate
???-????-????
??????????????????????????????????
??????????????????????????????????
HIGH??????????SA1 day ago
???-????-????
??????????????????????????????????
??????????????????????????????????
Unknown??????????SA4 days ago
???-????-????
??????????????????????????????????
??????????????????????????????????
CRITICAL??????????SA10 days ago
???-????-????
??????????????????????????????????
??????????????????????????????????
CRITICAL??????????SA11 days ago
???-????-????
??????????????????????????????????
??????????????????????????????????
Unknown??????????SA11 days ago
CVE-2026-18988
The Easy Accordion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'accordionTitleTag' block attribute in versions...
MEDIUM??????????NVD1 hour ago
CVE-2026-13505
In Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 1.0.2.7 (1.0.X series), 2.0.2 (2.0.X series) and 2.1.3 (2.1.X series), sensitive key material h...
UNKNOWN??????????NVD5 hours ago
CVE-2026-8798
In Bouncy Castle for Java FIPS (BC-FJA) before bc-fips 2.1.3, the native entropy source used on Intel platforms retried the CPU entropy instructions w...
UNKNOWN??????????NVD5 hours ago
CVE-2026-48120
Kakoune is a code editor. Prior to version 2026.05.21, the bundled, enabled by default, `autorestore.kak` script can be exploited by malicious backup ...
HIGH??????????NVD7 hours ago
CVE-2026-52878
Klever-Go is the Go implementation of the Klever blockchain protocol. Versions 1.7.14 through 1.7.17 are vulnerable to a nil-pointer panic triggered b...
HIGH??????????NVD7 hours ago
CVE-2026-52879
Klever-Go is the Go implementation of the Klever blockchain protocol. In versions 1.7.14 through 1.7.17, the direct-message ingress handler spawns a n...
HIGH??????????NVD7 hours ago
CVE-2026-52880
Klever-Go is the Go implementation of the Klever blockchain protocol. Versions from 1.7.14 through 1.7.17 are vulnerable to a remotely triggerable den...
HIGH??????????NVD7 hours ago
CVE-2026-49343
Klever-Go is the Go implementation of the Klever blockchain protocol. In versions prior to 1.7.18, the account-data trie syncers are vulnerable to a r...
MEDIUM??????????NVD7 hours ago
CVE-2026-46409
OpenYak is a local-first agent runtime for reliable tool-using models, with a desktop workspace built on top. Prior to version 1.1.3, the OpenYak desk...
CRITICAL??????????NVD7 hours ago
CVE-2025-4438
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
UNKNOWN??????????NVD7 hours ago
CVE-2026-48026
lakeFS is an open-source tool that transforms object storage into a Git-like repositories. Prior to version 1.81.1 of the open source edition and 1.84...
HIGH??????????NVD7 hours ago
CVE-2026-47127
Ghostfolio is an open source wealth management software. Prior to version 3.4.0, Ghostfolio's Stripe checkout success-URL handler at `GET /api/v1...
MEDIUM??????????NVD7 hours ago
CVE-2026-47249
Klever-Go is the Go implementation of the Klever blockchain protocol. Prior to 1.7.18, the P2P resolver request handling logic is vulnerable to hash-a...
HIGH??????????NVD7 hours ago
CVE-2026-48122
Ruby LSP is an implementation of the language server protocol for Ruby. Several workspace-level settings in the Ruby LSP VS Code extension prior to ve...
MEDIUM??????????NVD7 hours ago
CVE-2026-64676
Kata Containers is an open source implementation of lightweight Virtual Machines (VMs) that perform like containers. In versions prior to 4.0.0, the k...
MEDIUM??????????NVD8 hours ago
CVE-2026-48170
`scim-patch`, a library to perform SCIM patch, prior to version 0.9.1 performs prototype pollution when applying a SCIM PATCH operation whose `value` ...
CRITICAL??????????NVD8 hours ago
CVE-2026-48169
PraisonAI is a multi-agent teams system. Versions prior to 0.1.4 of the PraisonAI Platform API have two authorization failures that together break wor...
HIGH??????????NVD8 hours ago
CVE-2026-46405
OpenBao is an open source identity-based secrets management system. Prior to version 2.5.4, in OpenBao's Kerberos auth method on the `GET` handle...
MEDIUM??????????NVD8 hours ago
CVE-2026-11743
The SF32LB MPI QSPI NOR flash driver (drivers/flash/flash_sf32lb_mpi_qspi_nor.c) validated the flash offset and length on its read and write paths wit...
MEDIUM??????????NVD8 hours ago
CVE-2026-11742
The kernel queue helper z_queue_node_peek() in kernel/queue.c dereferences a node taken from a queue's data_q list, reading the node's flag ...
LOW??????????NVD8 hours ago