CVE Watchtower

Advanced Threat Data Export

Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.

Data export is locked. Upgrade your package to enable filtering and downloading.

πŸ”” Premium Features
πŸ” Filter Threats
Title
SeverityEPSS (30-Day)
PoCActively ExploitedSourceDate
CVE-2025-60481
A NULL pointer dereference in the gf_odf_ac4_cfg_dsi_v1 function (/odf/descriptors.c) of GPAC Project/MP4Box before 26.02.0 allows attackers to cause ...
MEDIUMπŸ”’ LOCKED??????????NVD2 days ago
CVE-2025-55664
A heap buffer overflow in the m2tsdmx_send_packet function (filters/dmx_m2ts.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS...
MEDIUMπŸ”’ LOCKED??????????NVD2 days ago
CVE-2024-40646
Vertex is a management tool for PT (Private Tracker) users to manage streaming and watching videos. Versions prior to commit fbde301b97986d5913fc4bc95...
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-10269
A security vulnerability has been detected in decolua 9router up to 0.4.0. This issue affects the function isAuthenticated of the file src/dashboardGu...
MEDIUMπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-8643
pip would treat console_scripts and gui_scripts as paths instead of file names without sanitizing the resolved absolute path to the installation direc...
UNKNOWNπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-10268
A weakness has been identified in janet-lang janet up to 1.41.0. This vulnerability affects the function unmarshal_one_fiber of the file src/core/mars...
LOWπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-0826
In certain scenarios when the admin has enabled Interactive Connectivity Establishment (ICE), a buffer overflow could enable remote cod...
UNKNOWNπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-10267
A security flaw has been discovered in janet-lang janet up to 1.41.0. This affects the function doframe of the file src/core/debug.c. Performing a man...
LOWπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-8931
A critical Remote Code Execution (RCE) vulnerability exists in Disig Web Signer versions 2.0.3 through 2.5.3.
UNKNOWNπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-10265
A vulnerability was identified in itsourcecode Content Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/...
MEDIUMπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47191
### Impact When relying solely on a git commit ID (SHA-1 or SHA-256) to qualify if a checkout of a repository is equivalent to the state validated whi...
LOWπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47412
## Summary **Type:** Authorization bypass enabling destructive action. The `DELETE /workspaces/{workspace_id}` endpoint is gated only by `require_wor...
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47415
## Summary **Type:** Insecure Direct Object Reference. The issue CRUD endpoints (`GET / PATCH / DELETE /workspaces/{workspace_id}/issues/{issue_id}`)...
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47413
## Summary **Type:** Privilege escalation / cross-tenant member injection. The `POST /workspaces/{workspace_id}/members` endpoint is gated only by `r...
CRITICALπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47411
## Summary **Type:** Authorization bypass enabling workspace metadata + settings tampering. The `PATCH /workspaces/{workspace_id}` endpoint is gated ...
MEDIUMπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47417
## Summary **Type:** Insecure Direct Object Reference. The comment endpoints (`POST /workspaces/{workspace_id}/issues/{issue_id}/comments` and `GET ....
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47418
## Summary **Type:** Insecure Direct Object Reference. The project CRUD endpoints (`GET / PATCH / DELETE /workspaces/{workspace_id}/projects/{project...
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47425
## Summary `EntryPoint::FromStr` in `rattler_conda_types` performs only `.trim()` on the `command` field before the linker joins it onto the install ...
MEDIUMπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-10264
A vulnerability was determined in lharries whatsapp-mcp 0.0.1. Affected by this vulnerability is the function SendMessageRequest of the file whatsapp-...
LOWπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47428
## Summary Vitest browser mode served `/__vitest_test__/` with the `otelCarrier` query parameter inserted directly into an inline module script. Beca...
CRITICALπŸ”’ LOCKED??????????NVD2 days ago