Advanced Threat Data Export
Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.
Data export is locked. Upgrade your package to enable filtering and downloading.
🔔 Premium Features
🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-74792 Scriban before 7.0.0 (affected versions <= 6.6.0) contains a stack overflow vulnerability in nested array initializer parsing. Deeply nested array ... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-74791 Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when TemplateContext.Reset() is called, allowing cached templates to persist across... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-74790 Scriban before 7.0.0 caches TypedObjectAccessor by Type only without considering MemberFilter changes, allowing reused TemplateContext instances to ex... | CRITICAL | ????? | ????? | NVD | 5 days ago |
| CVE-2026-74789 Scriban before 7.0.0 (affected <= 6.6.0) applies its LoopLimit constraint only to script loop statements and not to expensive iteration performed i... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-74788 Scriban before 7.0.0 (affected versions <= 6.6.0) contains an uncontrolled memory allocation vulnerability in the string.pad_left and string.pad_ri... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-74787 Scriban before 7.0.0 contains an uncontrolled recursion vulnerability in the object.to_json builtin function that lacks depth limits and circular refe... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-74786 Scriban before 7.0.0 (affected versions <= 6.6.0) contains a denial-of-service vulnerability in which the LimitToString safety limit (default 1MB) ... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-74785 Scriban before 7.0.0 contains three distinct denial-of-service vulnerabilities in expression evaluation that bypass existing safety controls through u... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-74784 Scriban before 7.2.0 contains a denial of service vulnerability in the array.insert_at function that allocates unbounded null entries without respecti... | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-74783 Scriban versions 6.6.0 through 7.2.0 contain a non-enforcing ExpressionDepthLimit guard that fails to stop recursive descent parsing of deeply nested ... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-73062 Scriban versions 3.0.0 through 7.2.0 contain a denial of service vulnerability in the array multiplication operator that allocates memory without enfo... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-73061 Scriban before 7.2.2 contains an access-modifier bypass vulnerability in TypedObjectAccessor that allows template code to write CLR object properties ... | CRITICAL | ????? | ????? | NVD | 5 days ago |
| CVE-2026-73060 Scriban versions from 3.0.0 through 7.2.5 contain a denial of service vulnerability in the ScriptRange.Multiply operator that bypasses LoopLimit when ... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-73059 stoatchat before 0.15.0 contains a permission bypass vulnerability in the message_fetch route that checks only ViewChannel permission instead of requi... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-73058 stoatchat versions before 0.15.0 fail to block the IPv6 unspecified address (::) in the SSRF blocklist, allowing unauthenticated attackers to bypass p... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-73057 stoatchat before 0.15.0 fails to validate SVG viewBox dimensions in the proxy endpoint, allowing attackers to cause denial of service by memory exhaus... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-73056 SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive authentication attempts vulnerability in the CheckAuth() middleware. ... | CRITICAL | ????? | ????? | NVD | 5 days ago |
| CVE-2024-58375 OpenTofu versions 1.8.0 through 1.8.2 do not properly restrict sensitive variables and locals when users have opted into static evaluation of module s... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-74251 Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filter in Phoca Cart 5.0.0-6.1.6 - The a[] (attribute) and s[] (specificati... | UNKNOWN | ????? | ????? | NVD | 5 days ago |
| CVE-2026-74578 In the Linux kernel, the following vulnerability has been resolved:
crypto: algif_skcipher - force synchronous processing on trees without ctx->st... | HIGH | ????? | ????? | NVD | 5 days ago |