CVE Watchtower

Advanced Threat Data Export

Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.

Data export is locked. Upgrade your package to enable filtering and downloading.

πŸ”” Premium Features
πŸ” Filter Threats
Title
SeverityEPSS (30-Day)
PoCActively ExploitedSourceDate
CVE-2026-0826
In certain scenarios when the admin has enabled Interactive Connectivity Establishment (ICE), a buffer overflow could enable remote cod...
UNKNOWNπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-10267
A security flaw has been discovered in janet-lang janet up to 1.41.0. This affects the function doframe of the file src/core/debug.c. Performing a man...
LOWπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-8931
A critical Remote Code Execution (RCE) vulnerability exists in Disig Web Signer versions 2.0.3 through 2.5.3.
UNKNOWNπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-10265
A vulnerability was identified in itsourcecode Content Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/...
MEDIUMπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47191
### Impact When relying solely on a git commit ID (SHA-1 or SHA-256) to qualify if a checkout of a repository is equivalent to the state validated whi...
LOWπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47412
## Summary **Type:** Authorization bypass enabling destructive action. The `DELETE /workspaces/{workspace_id}` endpoint is gated only by `require_wor...
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47415
## Summary **Type:** Insecure Direct Object Reference. The issue CRUD endpoints (`GET / PATCH / DELETE /workspaces/{workspace_id}/issues/{issue_id}`)...
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47413
## Summary **Type:** Privilege escalation / cross-tenant member injection. The `POST /workspaces/{workspace_id}/members` endpoint is gated only by `r...
CRITICALπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47411
## Summary **Type:** Authorization bypass enabling workspace metadata + settings tampering. The `PATCH /workspaces/{workspace_id}` endpoint is gated ...
MEDIUMπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47417
## Summary **Type:** Insecure Direct Object Reference. The comment endpoints (`POST /workspaces/{workspace_id}/issues/{issue_id}/comments` and `GET ....
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47418
## Summary **Type:** Insecure Direct Object Reference. The project CRUD endpoints (`GET / PATCH / DELETE /workspaces/{workspace_id}/projects/{project...
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47425
## Summary `EntryPoint::FromStr` in `rattler_conda_types` performs only `.trim()` on the `command` field before the linker joins it onto the install ...
MEDIUMπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-10264
A vulnerability was determined in lharries whatsapp-mcp 0.0.1. Affected by this vulnerability is the function SendMessageRequest of the file whatsapp-...
LOWπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-47428
## Summary Vitest browser mode served `/__vitest_test__/` with the `otelCarrier` query parameter inserted directly into an inline module script. Beca...
CRITICALπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-48119
#### Summary Nezha accepts service-monitor `TaskResult` messages from an authenticated agent based only on whether the reported service ID exists. Th...
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-10263
A vulnerability was found in SourceCodester Computer Repair Shop Management System up to 1.0. Affected is an unknown function of the file /admin/produ...
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-10262
A vulnerability has been found in code-projects Real State Services 1.0. This impacts an unknown function of the file /loginuser.php of the component ...
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-10261
A flaw has been found in CodeAstro Online Job Portal 1.0. This affects an unknown function of the file /users/application_status.php. Executing a mani...
HIGHπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-42251
Use of hard-coded credentials in KS-SOMED allowed an unauthorized attacker access to FTP server that hosted the application's update packages. Th...
UNKNOWNπŸ”’ LOCKED??????????NVD2 days ago
CVE-2026-9309
Firefox for iOS Reader View did not properly escape HTML tags in JSON-LD metadata. A malicious page could inject markup that changed Reader View behav...
MEDIUMπŸ”’ LOCKED??????????NVD2 days ago