🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-105790 Microsoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.9, authenticated device registration t... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105788 Microsoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.10, the type_text and launch_app tools... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105789 Microsoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.9, the execute_command tool in ufo/cli... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105921 A vulnerability was identified in Kusalkasilva Learning-Management-System up to ffeb873f8803f1e9664384ff75000c7da45466d2. This affects an unknown func... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105794 MsQuic is a cross-platform C implementation of the IETF QUIC protocol exposed to C, C++, C#, and Rust. Prior to 2.4.20, 2.5.11, and 2.6.1, MsQuic clie... | CRITICAL | ????? | ????? | NVD | 1 day ago |
| CVE-2026-106041 Mooncake Store master through 0.3.13.post1 contains a missing authorization vulnerability that allows unauthenticated attackers to inject completed LO... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-106040 Mooncake Store master through 0.3.13.post1 contains a missing authorization vulnerability that allows unauthenticated attackers to erase any object... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-106039 Mooncake Store master through 0.3.13.post1 contains a missing authorization vulnerability that allows unauthenticated attackers to create, steal, and ... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-106038 Mooncake Store master through 0.3.13.post1 contains a missing authentication vulnerability that allows unauthenticated attackers to force-delete any o... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-106037 Mooncake through 0.3.13.post1 contains a missing authentication vulnerability in the Store REST service, which binds to 0.0.0.0 without authentication... | CRITICAL | ????? | ????? | NVD | 1 day ago |
| CVE-2026-34498 Improper input validation vulnerability in Johnson Controls Illustra Standard - L4L China on Windows allows OS Command Injection.
This issue affects ... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-87975 An issue was discovered in Django 6.1 before 6.1.2, 6.0 before 6.0.9, and 5.2 before 5.2.18.
`django.forms.models.BaseModelFormSet.save_existing_objec... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-106026 tftp-hpa 5.4 before 6.0 contains an out-of-bounds read vulnerability in rewrite_string() in tftpd/remap.c that walks heap memory during jump label sea... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105842 lrzsz before 0.13.0 contains a heap-based buffer overflow vulnerability in procheader() of the lrz receive utility when copying overlong sender-suppli... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105841 lrzsz before 0.13.0 contains an OS command injection vulnerability in the lrz receive utility's pipe mode that allows remote senders to execute c... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105840 lrzsz before 0.13.0 contains a path traversal vulnerability in the lrz receive utility's restricted mode that allows malicious ZMODEM senders to ... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105839 libmikmod before 3.3.14 contains an integer overflow in the Oktalyzer loader OKT_doPBOD() that allows attackers to cause heap buffer overflow via craf... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105838 libmikmod before 3.3.14 contains a heap out-of-bounds read vulnerability in the Impulse Tracker loader load_it.c that allows attackers to read adjacen... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105837 libmikmod before 3.3.14 contains an integer overflow vulnerability in DSM_Load() in load_dsm.c that allows attackers to trigger heap buffer overflow v... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-87890 An issue was discovered in Django 6.1 before 6.1.2, 6.0 before 6.0.9, and 5.2 before 5.2.18.
An incomplete fix for CVE-2026-15307 in Django spatial lo... | MEDIUM | ????? | ????? | NVD | 1 day ago |