Critical Alert 1 Active Exploit Detected Today

CVE-2026-35273 Oracle PeopleSoft Enterprise PeopleTools Missing Authentication for Critical Function Vulnerability →
Powered by CVE Watchtower
×

CVE Watchtower

Advanced Threat Data Export

Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.

Data export is locked. Upgrade your package to enable filtering and downloading.

πŸ”” Premium Features
πŸ” Filter Threats
Title
SeverityPoCActively ExploitedSourceDate
CVE-2026-43951
Out-of-bounds Read vulnerability in Apache HTTP Server with mod_headers and mod_mime and multiple response languages. This issue affects Apache HTTP ...
MEDIUM??????????NVD4 days ago
CVE-2026-42536
Heap-based Buffer Overflow vulnerability in Apache HTTP Server withΒ mod_xml2enc, xml2StartParse, and untrusted content This issue affects Apache HTT...
HIGH??????????NVD4 days ago
CVE-2026-42535
A path handling issue in mod_dav_fs in Apache 2.4.67 and earlierΒ allows a WebDAV content author to directly manipulate trusted DAV property databases...
CRITICAL??????????NVD4 days ago
CVE-2026-36786
Shenzhen Tenda Technology Co., Ltd Tenda FH451 V1.0.0.9 was discovered to contain a stack overflow in the list1 parameter of the fromDhcpListClient fu...
HIGH??????????NVD4 days ago
CVE-2026-34356
Heap-based Buffer Overflow vulnerability in Apache HTTP Server with malicious backend servers and ProxyPassReverseCookie* This issue affects Apache H...
HIGH??????????NVD4 days ago
CVE-2026-34355
A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrad...
HIGH??????????NVD4 days ago
CVE-2026-34194
Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of a mapping state maintained for a s...
HIGH??????????NVD4 days ago
CVE-2026-29170
A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.67 and earlier when listi...
MEDIUM??????????NVD4 days ago
CVE-2026-29167
Use After Free vulnerability in Apache HTTP Server with mod_ldap in per-directory configuration This issue affects Apache HTTP Server: from 2.4.0 thr...
CRITICAL??????????NVD4 days ago
CVE-2026-22164
Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt kernel heap memory. By creating resources of c...
HIGH??????????NVD4 days ago
CVE-2025-71315
In the Linux kernel, the following vulnerability has been resolved: drm/vkms: Convert to DRM's vblank timer Replace vkms' vblank timer wit...
UNKNOWN??????????NVD4 days ago
CVE-2020-37248
OfflineIMAP before 8.0.3 trusts the server with their STARTTLS capability prior to authentication, which allows STRIPTLS/man-in-the-middle attacks, ta...
MEDIUM??????????NVD4 days ago
CVE-2026-39910
STACKIT IaaS API contains a missing authorization check vulnerability that allows authenticated, low-privileged attackers to escalate privileges to fu...
CRITICAL??????????NVD4 days ago
CVE-2026-11532
A weakness has been identified in imvks786 student_management_system up to 9599b560ad3c3b83e75d328b76bedcd489ef1f46. Affected is an unknown function o...
MEDIUM??????????NVD4 days ago
CVE-2026-41448
AdGuard Home, when started with the --glinet flag, contains an authentication bypass vulnerability that allows unauthenticated attackers to gain full ...
CRITICAL??????????NVD4 days ago
CVE-2026-11531
A security flaw has been discovered in imvks786 student_management_system up to 9599b560ad3c3b83e75d328b76bedcd489ef1f46. This impacts an unknown func...
HIGH??????????NVD4 days ago
CVE-2026-11530
A vulnerability was identified in imvks786 student_management_system up to 9599b560ad3c3b83e75d328b76bedcd489ef1f46. This affects an unknown function ...
HIGH??????????NVD4 days ago
CVE-2026-11529
A vulnerability was determined in designcomputer mysql-mcp-server up to 0.2.2. The impacted element is the function read_resource of the file src/mysq...
MEDIUM??????????NVD4 days ago
CVE-2026-49755
Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in wojtekmach Req allows attacker-controlled HTTP servers to exhaust me...
UNKNOWN??????????NVD4 days ago
CVE-2026-49756
Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in wojtekmach Req allows multipart parameter smuggling via attack...
UNKNOWN??????????NVD4 days ago