Critical Alert 4 Active Exploits Detected Today

CVE-2026-33824 Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability →
CVE-2026-59310 Broadcom VMware vCenter Path Traversal Vulnerability →
CVE-2026-55040 Microsoft SharePoint Weak Authentication Vulnerability →
CVE-2026-65400 Apple macOS Improper Authentication Vulnerability →
Powered by CVE Watchtower
×
August 19, 2026

CVE Watchtower

Advanced Threat Data Export

Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.

Data export is locked. Upgrade your package to enable filtering and downloading.

🔔 Premium Features
🔍 Filter Threats
Title
SeverityPoCActively ExploitedSourceDate
CVE-2026-32657
Dell AppSync Version 4.6.0.0, Dell Metro Node Version 8.0.0, Dell UCC Edge Version 3.0.1, Dell VxRail Version 8.0.322, Dell PowerMax Version 10.3.0, D...
HIGH??????????NVD16 hours ago
CVE-2026-18392
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in ...
UNKNOWN??????????NVD16 hours ago
CVE-2021-43717
An issue exists in pson EH-TW5350 Epson iProjection.apk v3.2.6. If you identify a projector equipped with an iProjection function, you can access the ...
UNKNOWN??????????NVD16 hours ago
CVE-2021-43716
Verification Bypass vulnerability exists in EPSON 150075647YWWV110 EasyMP Network Updater Ver.1.20. The Epson projector can be updated by encrypted fi...
UNKNOWN??????????NVD16 hours ago
CVE-2026-24185
NVIDIA NVOS for network switches contains a vulnerability in the secure shell (SSH) server configuration component while PKA-only mode is enabled, whe...
HIGH??????????NVD16 hours ago
CVE-2026-24184
NVIDIA Cumulus Linux contains a vulnerability in the Link Layer Discovery Protocol (LLDP) daemon component, where an unauthenticated attacker on an ad...
HIGH??????????NVD16 hours ago
CVE-2026-24183
NVIDIA Cumulus Linux contains a vulnerability in the user management component, where an unprivileged user could use improper privilege management on ...
HIGH??????????NVD16 hours ago
CVE-2026-75130
Context7 through 2.1.2 contains a prompt injection vulnerability that allows attackers to execute malicious instructions in connected AI coding agents...
CRITICAL??????????NVD17 hours ago
CVE-2026-50167
Kurrier is a modern, self-hosted workspace for email, calendar, contacts, and storage. Prior to 1.2.4, Kurrier API endpoints for listing and retrievin...
UNKNOWN??????????NVD17 hours ago
CVE-2026-55178
### Summary Multiple GeoLens read/link endpoints authorized only the resource named in the request URL (a map, a VRT, a source dataset, an AI request...
HIGH??????????NVD17 hours ago
CVE-2026-55182
### Summary A vulnerability has been identified that allows an authenticated administrator to execute arbitrary code on the host server. By adding an ...
HIGH??????????NVD17 hours ago
CVE-2026-75625
Kraken agents fail to verify peer-to-peer downloaded blobs against their requested SHA-256 digest before committing to the content-addressable cache, ...
CRITICAL??????????NVD17 hours ago
CVE-2026-71880
Interpretation of untrusted input in template engine in GBIF Integrated Publishing Toolkit versions before 3.3.4 allows remote authenticated attackers...
UNKNOWN??????????NVD17 hours ago
CVE-2026-50161
libre is a generic library for real-time communications with asynchronous input and output support. Prior to 4.8.1, the websock_decode() function in s...
UNKNOWN??????????NVD17 hours ago
CVE-2026-71879
Missing authentication in initial setup functionality left exposed until first reboot in GBIF Integrated Publishing Toolkit versions before 3.3.4 allo...
UNKNOWN??????????NVD17 hours ago
CVE-2026-71878
Missing authentication in initial setup functionality left exposed after initial setup is completed in GBIF Integrated Publishing Toolkit versions bef...
UNKNOWN??????????NVD17 hours ago
CVE-2026-74046
Wazuh 4.4.0 before 4.14.7 contains a denial of service vulnerability in the fdecompress_files() function within cluster.py that allows authenticated c...
MEDIUM??????????NVD17 hours ago
CVE-2026-63643
# Vulnerability — SSRF via `ADD_CALENDAR` (MagicMirror² calendar) > Analysis of the PoC `exploit-ssrf-calendar.js`. > Target: `calendar/node...
MEDIUM??????????NVD17 hours ago
CVE-2026-74044
Wazuh 4.0.0 before 4.14.6 contains a path traversal vulnerability that allows authenticated cluster peers to delete arbitrary directory contents by su...
MEDIUM??????????NVD17 hours ago
CVE-2026-63642
# Vulnerability — Blind SSRF via `CHECK_ARTICLE_URL` (MagicMirror² newsfeed) > Analysis of the PoC `exploit-ssrf-newsfeed.js`. > Target: `ne...
MEDIUM??????????NVD17 hours ago