Critical Alert 4 Active Exploits Detected Today

CVE-2026-93952 Arista VeloCloud Orchestrator Improper Input Validation Vulnerability →
CVE-2026-94127 F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability →
CVE-2026-93616 Check Point Multiple Products Path Traversal Vulnerability →
CVE-2026-85102 Check Point Multiple Products Improper Certificate Validation Vulnerability →
Powered by CVE Watchtower
×

CVE Watchtower

🔔 Premium Features
🔍 Filter Threats
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
⚙️Custom EPSS — Filter noise, focus on risk.
💬Webhooks — Slack & Teams integration.
🚫Ad-Free — Uninterrupted experience.
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
⚙️Custom EPSS — Filter noise, focus on risk.
💬Webhooks — Slack & Teams integration.
🚫Ad-Free — Uninterrupted experience.
Title
SeverityPoCActively ExploitedSourceDate
CVE-2026-26054 R
sumatrapdfreader/sumatrapdf repository advisory GHSA-27p6-wrfp-pgm8
MEDIUM??????????NVD6 days ago
CVE-2026-19607
A flaw was found in the first-broker-login flow of the keycloak-services component. This component handles the initial authentication and account link...
MEDIUM??????????NVD6 days ago
CVE-2026-17526
Keycloak is an open-source identity and access management solution. A vulnerability was discovered where a user with the impersonation role can impers...
HIGH??????????NVD6 days ago
CVE-2026-90999
Sentry Seer is vulnerable to a multi-stage trust-boundary violation that allows unauthenticated attacker-controlled telemetry to become code that is e...
UNKNOWN??????????NVD6 days ago
CVE-2026-92397
A vulnerability has been found in Ruijie RG-EW3000GX EW_3.0(1)B11P380. Affected by this vulnerability is the function cc_set of the file unifyframe-sg...
CRITICAL??????????NVD6 days ago
CVE-2026-61593
djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, the SSE client...
HIGH??????????NVD6 days ago
CVE-2025-59953
LMDeploy is a toolkit for compressing, deploying, and serving large language models. Starting in version 0.9.1 and prior to version 0.10.2, the LMdepl...
CRITICAL??????????NVD6 days ago
CVE-2026-61595
djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to version 1.0.7, `djust.tenants`...
HIGH??????????NVD6 days ago
CVE-2026-92626
Control iD iDSecure versions prior to 4.8.3.0 are affected by an unauthenticated Denial of Service. The /api/dguardintegration/dguardVersion endpo...
HIGH??????????NVD6 days ago
CVE-2026-92625
Control iD iDSecure versions prior to 4.8.3.0 are affected by an unauthenticated Denial of Service. The /api/license/restartService endpoint is re...
HIGH??????????NVD6 days ago
CVE-2026-92615
A flaw was found in flightctl. The configureRepoHTTPSClient() function in the device-render worker builds a per-repository tls.Config (which may inclu...
MEDIUM??????????NVD6 days ago
CVE-2026-92627
A heap-use-after-free vulnerability exists in H5T__conv_f_f() in src/H5Tconv.c in HDF5 before 1.14.2. When converting a compound datatype containing ...
UNKNOWN??????????NVD6 days ago
CVE-2026-92385
A vulnerability has been found in SourceCodester Online Food Ordering System 1.0. The affected element is an unknown function of the file /admin/updat...
LOW??????????NVD6 days ago
CVE-2026-26947
Dell ECS versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.4.0.0, contains an Improper Privilege Management vulnerability. A ...
MEDIUM??????????NVD6 days ago
CVE-2026-92571
No description available
UNKNOWN??????????NVD6 days ago
CVE-2025-36591
Dell ECS versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.4.0.0, contains an Use of a Broken or Risky Cryptographic Algorith...
MEDIUM??????????NVD6 days ago
CVE-2026-92383
A security vulnerability has been detected in PbootCMS up to 3.2.24. This vulnerability affects the function UserController::del/UserController::mod o...
MEDIUM??????????NVD6 days ago
CVE-2026-82410
PocketBase already has builtin panic-recover middleware for the regular requests handling but it doesn't cover panics in internal child/worker go...
HIGH??????????NVD6 days ago
CVE-2026-79651
A flaw was found in the theme localization endpoints of the keycloak-services component, which is the core service responsible for authentication flow...
HIGH??????????NVD6 days ago
CVE-2026-74909
Keycloak provides a policy enforcer to protect applications by matching incoming web requests against defined security policies. A flaw was found wher...
HIGH??????????NVD6 days ago
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
⚙️Custom EPSS — Filter noise, focus on risk.
💬Webhooks — Slack & Teams integration.
🚫Ad-Free — Uninterrupted experience.
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
⚙️Custom EPSS — Filter noise, focus on risk.
💬Webhooks — Slack & Teams integration.
🚫Ad-Free — Uninterrupted experience.