🔔 Premium Features
🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-75892 In osmo-ggsn 1.14.0 an out of bounds write issue was found in the gtp_decode_pdp_ctx() function through the PDP context GSN-Address sub-field, leadin... | UNKNOWN | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93650 A vulnerability was determined in Saleor up to 3.20.118/3.21.54/3.22.47/3.23.14. This vulnerability affects the function get_client_ip of the file sal... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-71537 Paymenter is a free and open-source webshop solution for management of hosting services. Prior to 1.5.7, app/Livewire/Services/Upgrade.php::doUpgrade(... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-85058 Moquette is a lightweight Java MQTT broker. Prior to 0.18.1, PostOffice.publishWill publishes a client-controlled Last Will message through publish2Su... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-59163 Mnemosyne is a memory layer for artificial intelligence agents. Prior to v3.10.1, the auth check in mnemosyne/core/sync_server.py parsed the JWT'... | CRITICAL | ????? | ????? | NVD | 1 day ago |
| CVE-2026-92768 A flaw was found in cockpit-machines. This vulnerability allows a local attacker to expose sensitive Virtual Machine (VM) credentials, including plain... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-92747 A flaw was found in `cockpit-machines`. This vulnerability allows a local attacker with the ability to inspect running processes to expose sensitive g... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-92745 A flaw was found in cockpit-machines. This vulnerability allows a local attacker with the ability to inspect process metadata to disclose a sensitive ... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93432 A flaw was found in the Quarkus Qute template engine. When the {#eval} section helper processes a sub-template, it fails to pass the parent template... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93753 deepmerge through 4.3.1 contains a prototype poisoning vulnerability in the mergeObject() function that fails to properly validate keys being written ... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93752 CSSOM through 0.5.0 contains a denial of service vulnerability in CSSStyleDeclaration.setProperty() that fails to validate reserved property names. At... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93751 uri-js through 4.4.1 contains an improper UTF-8 decoding vulnerability in pctDecChars() that decodes invalid and overlong percent-encoded sequences in... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93750 http-cache-semantics through 4.2.0 contains a cache validation vulnerability in the _varyMatches() function that fails to properly validate Vary heade... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93749 source-map-js through 1.2.1 fails to validate the per-section offset line value in indexed source maps, allowing attackers to specify arbitrary numeri... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-93748 http-cache-semantics through 4.2.0 fails to properly validate security-zeroed cache entries when processing client max-stale directives, allowing unau... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-81181 SysReptor is a fully customizable pentest reporting platform. Prior to 2026.68, the password authentication flow for protected shared notes does not r... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-81182 SysReptor is a fully customizable pentest reporting platform. Prior to 2026.68, an unauthenticated attacker who holds a public read-write note share l... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-81180 SysReptor is a fully customizable pentest reporting platform. Prior to 2026.61, authenticated users of SysReptor Professional can upload image files w... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-81179 SysReptor is a fully customizable pentest reporting platform. Prior to 2026.58, installations that enable password reset by email while configuring AL... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-81178 SysReptor is a fully customizable pentest reporting platform. Prior to 2026.55, an unauthenticated holder of a public note share link receives project... | LOW | ????? | ????? | NVD | 1 day ago |