🔔 Premium Features
🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-85789 No description available | UNKNOWN | ????? | ????? | NVD | 6 days ago |
| CVE-2026-65388 A remote attacker who controls a container registry may be able to direct a client's token request to a host of the attacker's choice, and d... | UNKNOWN | ????? | ????? | NVD | 6 days ago |
| CVE-2026-61599 djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, the djust live ... | UNKNOWN | ????? | ????? | NVD | 6 days ago |
| CVE-2026-61589 djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, the WebSocket `... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-61596 djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, djust's pe... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-61588 djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, when a Django `... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-61594 djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, the live (WebSo... | CRITICAL | ????? | ????? | NVD | 6 days ago |
| CVE-2026-61591 djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, for views that ... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-61592 djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, SSE sessions we... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-61597 djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, many djust buil... | UNKNOWN | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92599 joi (npm package `joi`, hapi.js) versions >=17.2.0 <17.13.7 and >=18.0.0 <18.2.6 are vulnerable to regular expression denial of service in... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92598 Nodemailer before 9.1.0 fails to apply UTS-46 normalization when encoding international domain names, causing the domain resolver to compute a differe... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92597 Nodemailer versions >= 6.9.16 and < 9.1.0 mis-parse RFC 5322 comments in email addresses: in lib/addressparser, a comment closed immediately bef... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92596 Nodemailer before 9.1.0 contains a quadratic time complexity vulnerability in the addressparser component that allows remote attackers to cause denial... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92595 Nodemailer (npm package `nodemailer`) versions 9.1.0 and earlier do not honor the `disableFileAccess` and `disableUrlAccess` sandbox options when mess... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92594 Craft CMS 5.0.0-RC1 through versions before 5.11.0 incorrectly authorize the GraphQL draftCreator and revisionCreator fields: instead of requiring the... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92593 Craft CMS versions 5.10.0 through 5.10.12 contain an incomplete fix for CVE-2026-55794: the Controller::getPostedRedirectUrl() -> View::renderObjec... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92592 Craft CMS 4.8.0 through 4.18.5 and 5.0.0 through 5.10.12 sign an authenticated user's attacker-controlled license-shun cookie with the same key a... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92591 Craft CMS 5.0.0 through 5.10.12 treats a database connection failure as meaning that Craft is not installed, which makes anonymous installer actions ... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92590 Craft CMS versions from 5.7.0 before 5.10.13 contain a stored cross-site scripting vulnerability in the Generated Fields feature that disables Twig au... | MEDIUM | ????? | ????? | NVD | 6 days ago |