🔔 Premium Features
🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-85719 The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses. From 2.1.0 until... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-69197 Umbraco is an ASP.NET CMS. Prior to 13.15.1, 17.5.3, and 18.0.2, the Content Delivery API applies member and Public Access checks to the directly requ... | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-81516 Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications. From 4.0.0 until 4.3.0, C... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-81868 Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications. Prior to 4.3.0, Steeltoe.... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-75523 Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications. Prior to 4.3.0, the Steel... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-85715 ExifReader is a JavaScript Exif information parser. Prior to 4.41.1, ExifReader parses attacker-controlled HEIC or AVIF ISO-BMFF files in getItems() w... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-86864 pgAdmin 4's Backup tool appended the client-supplied 'database' field from the /backup/job/<sid>/object request to the pg_dump ar... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-86863 pgAdmin 4's Webserver authentication source is intended to accept an identity asserted by the web server or reverse proxy in front of pgAdmin, de... | CRITICAL | ????? | ????? | NVD | 5 days ago |
| CVE-2026-86862 pgAdmin 4's Restore and Maintenance tools passed the client-supplied 'database' field directly as the value of the --dbname option give... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-86861 pgAdmin 4's File Manager save_file endpoint, which backs saving from the Query Tool and ERD, validated the requested path with Filemanager.check_... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-92881 A security vulnerability has been detected in vgmstream. The affected element is the function init_vgmstream_awb_memory of the file src/meta/awb.c of ... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-56795 Dell Server Update Utility, versions prior to 26.07.01, contains an Uncontrolled Search Path Element vulnerability. A low privileged attacker with loc... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-85999 Soup Sieve is a CSS selector library designed to be used with Beautiful Soup 4. Prior to 2.9, selector_iter in src/soupsieve/css_parser.py trims the r... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-86000 Soup Sieve is a CSS selector library designed to be used with Beautiful Soup 4. Prior to 2.9, the selector parser in src/soupsieve/css_parser.py defin... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-86040 libp2p is a JavaScript implementation of the libp2p networking stack. Prior to 11.0.26, @libp2p/floodsub accepts unauthenticated RPC frames on /floods... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-91039 Authentication Bypass by Spoofing vulnerability in team-alembic ash_authentication allows an attacker who operates one identity-provider connection of... | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-86038 libp2p is a JavaScript implementation of the libp2p networking stack. From 15.0.0 until 16.0.5, @libp2p/gossipsub uses the default StrictSign policy i... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-87742 A flaw was found in quarkus-websockets-next. This vulnerability allows a remote attacker to cause a Denial of Service (DoS) by streaming messages over... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-85077 Sanic is an opensource python web server/framework. Prior to version 24.12.1, and in version 25.12.0, the HTTP/1.1 response pipeline in sanic/response... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-93015 BlueKitchen BTstack through 1.8.2 fails to validate the peer-reported endpoint count against table bounds in A2DP stream endpoint discovery. A bonded ... | MEDIUM | ????? | ????? | NVD | 5 days ago |