🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-42356 Deployment of wrong handler vulnerability in Apache HTTP Server allows the target of some internal redirects from CGI programs to also be treated as C... | LOW | ????? | ????? | NVD | 6 days ago |
| CVE-2026-18734 Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in ... | UNKNOWN | ????? | ????? | NVD | 6 days ago |
| CVE-2026-17053 The SMBus driver API exposed smbus_smbalert_remove_cb() and smbus_host_notify_remove_cb() as Zephyr syscalls. Their verifiers in drivers/smbus/smbus_h... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-12627 Fortra's Core Privileged Access Manager (BoKS) contains a stack-based buffer overflow vulnerability in boks_autoregisterd. A remote attacker with... | CRITICAL | ????? | ????? | NVD | 6 days ago |
| CVE-2026-13043 A missing authentication vulnerability in the Kernel Memory Access Driver (PSKMAD) used by WatchGuard endpoint security products allows a local, authe... | CRITICAL | ????? | ????? | NVD | 6 days ago |
| CVE-2026-101322 In Eclipse BaSyx AAS Web UI versions v2-241220 through releases before v2-260924, the shared request handler attached the selected infrastructure'... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-103690 A flaw has been found in itsourcecode Leave Management System 1.0. This vulnerability affects unknown code of the file /module/leave/controller.php. E... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-94620 Classroom 50 is a free and open-source tool for managing and grading programming assignments via GitHub. Prior to version 1.11.0, `gh teacher download... | CRITICAL | ????? | ????? | NVD | 6 days ago |
| CVE-2026-103505 Improper neutralization of argument delimiters in the volume handling component in AWS EFS CSI Driver (aws-efs-csi-driver) v3.1.0 through v3.4.2 might... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-97297 Subscriber Broken Access Control in Gratisfaction <= 4.6.3 versions. | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-97284 Contributor PHP Object Injection in Icegram <= 3.1.31 versions. | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-97281 Subscriber Broken Access Control in WP Project Manager <= 4.0.7 versions. | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-97277 Subscriber Broken Access Control in Social Boost <= 3.6.2 versions. | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-97273 Unauthenticated Cross Site Scripting (XSS) in Premmerce Wishlist for WooCommerce <= 1.1.13 versions. | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-97269 Unauthenticated Insecure Direct Object References (IDOR) in WPFunnels <= 3.13.1 versions. | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-97280 Missing Authorization vulnerability in Mamunur Rashid Review Schema review-schema allows Exploiting Incorrectly Configured Access Control Security Lev... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-97268 Unauthenticated Cross Site Scripting (XSS) in Premmerce Wishlist for WooCommerce <= 1.1.13 versions. | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-97260 Unauthenticated Cross Site Scripting (XSS) in MaxGalleria <= 6.5.3 versions. | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-97258 Subscriber Broken Access Control in Aruba Migration Tool <= 1.0.4 versions. | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-97251 Unauthenticated Insecure Direct Object References (IDOR) in Bus Ticket Booking with Seat Reservation <= 5.9.3 versions. | MEDIUM | ????? | ????? | NVD | 6 days ago |