🔔 Premium Features
🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-92717 Covenant through 0.6 registers the CovenantHub SignalR hub without an Authorize attribute, allowing unauthenticated callers to invoke CreateHttpListen... | CRITICAL | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92716 Shuffle through 2.2.1 contains a cross-tenant privilege escalation vulnerability in the HandleApiGeneration endpoint that allows administrators to res... | CRITICAL | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92605 IRIS through 2.4.29 fails to properly validate case authorization in comment listing endpoints for notes, tasks, IOCs, assets, and evidence items. Att... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92604 Scirius through 3.8.0 contains an arbitrary file write vulnerability in the PCAP filestore upload endpoint that allows default User role users to writ... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92413 A flaw has been found in Artifex MuPDF up to b6d17493700c621c0e70036980a6ebd06d2202c9. Affected by this vulnerability is the function pdf_open_filter ... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-84397 Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject ... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-86358 Dell Update Package Framework, versions prior to 26.07.03, contains a Stack-based Buffer Overflow vulnerability. An unauthenticated attacker with adja... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-71182 Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulner... | LOW | ????? | ????? | NVD | 6 days ago |
| CVE-2026-71181 Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulner... | LOW | ????? | ????? | NVD | 6 days ago |
| CVE-2026-71180 Dell Update Package Framework, versions prior to 26.07.03, contains an Unchecked Return Value vulnerability. A low privileged attacker with local acce... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-71179 Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Com... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-42784 A flaw was found in sequoia-openpgp. The library incorrectly infers key flags for older certificates when a key flags subpacket is missing, leading to... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-18120 Concrete CMS before 9.5.3 exposed a legacy Express entry search endpoint that returned entry result JSON without invoking the canViewExpressEntries() ... | UNKNOWN | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92406 A vulnerability was detected in SourceCodester Inventory and Monitoring System 1.0. The impacted element is an unknown function of the file /admins/as... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-85387 Concrete CMS before 9.5.4 re-authorized OAuth REST API requests from the bearer token alone and did not re-check the state of the account the token ha... | UNKNOWN | ????? | ????? | NVD | 6 days ago |
| CVE-2026-92405 A security vulnerability has been detected in SourceCodester Inventory and Monitoring System 1.0. The affected element is an unknown function of the f... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-20234 As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE Passive I... | CRITICAL | ????? | ????? | NVD | 6 days ago |
| CVE-2026-20331 As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Sec... | CRITICAL | ????? | ????? | NVD | 6 days ago |
| CVE-2026-76420 A vulnerability in the internal configuration of the Apache JServ Protocol (AJP) connector for Cisco Secure FMC Software could allow an unauthent... | CRITICAL | ????? | ????? | NVD | 6 days ago |
| CVE-2026-20307 A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to execute arbitrary commands on the ... | CRITICAL | ????? | ????? | NVD | 6 days ago |