Critical Alert 2 Active Exploits Detected Today

CVE-2022-0492 Linux Kernel Improper Authentication Vulnerability →
CVE-2025-48595 Android Framework Integer Overflow Vulnerability →
Powered by CVE Watchtower
×

CVE Watchtower

Advanced Threat Data Export

Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.

Data export is locked. Upgrade your package to enable filtering and downloading.

πŸ”” Premium Features
πŸ” Filter Threats
Title
SeverityEPSS (30-Day)
PoCActively ExploitedSourceDate
CVE-2026-45554
NiceGUI is a Python-based UI framework. Prior to version 3.12.0, two FastAPI routes that serve per-component static assets in NiceGUI accept a sub-pat...
MEDIUMπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-42654
Authentication Bypass Using an Alternate Path or Channel vulnerability in WP Swings Wallet System for WooCommerce allows Password Recovery Exploitatio...
HIGHπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-40780
Authentication Bypass Using an Alternate Path or Channel vulnerability in Liquid Web / StellarWP BookIt allows Password Recovery Exploitation. This i...
HIGHπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-40619
A high security vulnerability affecting Security Center main server installations has been identified. It could allow an attacker with local OS privil...
HIGHπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-38978
transmission through 4.1.1 was found to have a clickjacking weakness in the browser-facing WebUI and RPC response paths.
UNKNOWNπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-35718
A path traversal vulnerability in the /admin/downloadMedias.cgi endpoint of VIVOTEK INC FD8136-VVTK firmware 0300a allows authenticated attackers to r...
UNKNOWNπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-35716
A stack-based buffer overflow in the motion_privacy.cgi binary in VIVOTEK FD8136 firmware FD8136-VVTK-0300a allows authenticated remote attackers to e...
UNKNOWNπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-34460
NamelessMC is website software for Minecraft servers. In versions 2.2.4 and prior, the OAuth callback handling does not validate the state parameter s...
MEDIUMπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-30652
A remote buffer overflow vulnerability exists in the /cgi-bin/dido/setdo.cgi endpoint of the admin interface of Vivotek FD8136 cameras running firmwar...
UNKNOWNπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-30650
A post-authentication remote buffer overflow vulnerability exists in the /cgi-bin/admin/eventtask.cgi endpoint of the admin interface of Vivotek FD813...
UNKNOWNπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-30649
Buffer Overflow vulnerability in VIVOTEK INC FD8136-VVTK-0300a allows a remote attacker to execute arbitrary code via the set_getparam.cgi component
UNKNOWNπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-10629
SIP signaling stack in Verizon IMS (unspecified version) implements SIP signaling without IPsec integrity protection (missing Security-Client/Security...
CRITICALπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-1871
TP-Link Tapo C200 v5 contains a stack-based buffer overflow flaw in RTSP authentication handling due to improper validation of Authorization header fi...
UNKNOWNπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-40314
NamelessMC is website software for Minecraft servers. In version 2.2.4,`core/classes/Misc/ProfilePostReactionContext.php` only verifies that the wall ...
UNKNOWNπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-35443
NamelessMC is website software for Minecraft servers. In version 2.2.4, `modules/Forum/classes/ForumPostReactionContext.php` only verifies that the ca...
UNKNOWNπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-0611
Spacelabs Healthcare Sentinel versions 10.5.x and higher and 11.x.x before 11.6.0 contain an unauthenticated remote code execution vulnerability throu...
CRITICALπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-10591
Insufficient access control restrictions in the file write tool in Amazon Kiro IDE before version 0.11 might allow remote unauthenticated actors to ex...
HIGHπŸ”’ LOCKED??????????NVD15 hours ago
CVE-2026-45080
Klaw is a self-service Apache Kafka Topic Management/Governance tool/portal. Prior to version 2.10.4, improper access control allows disclosure of pas...
UNKNOWNπŸ”’ LOCKED??????????NVD16 hours ago
CVE-2026-33398
NamelessMC is website software for Minecraft servers. In version 2.2.4, `modules/Forum/pages/forum/get_quotes.php` only checks whether the caller is l...
UNKNOWNπŸ”’ LOCKED??????????NVD16 hours ago
CVE-2026-10047
The Bitdefender Napoca bare-metal hypervisor contains an out-of-bounds write vulnerability in the real-mode hook handler, implemented in napoca/kernel...
UNKNOWNπŸ”’ LOCKED??????????NVD17 hours ago