Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
96ac874b by security tracker role at 2026-08-11T19:13:13+00:00
automatic update
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,44 +1,1674 @@
-CVE-2026-20707
+CVE-2026-9214 (Insufficient input validation vulnerability in the NETGEAR
R7000 model ...)
+ TODO: check
+CVE-2026-73228 (Django REST framework is a toolkit for building Web APIs.
Prior to 3.1 ...)
+ TODO: check
+CVE-2026-73227 (electerm is an open-sourced
terminal/ssh/sftp/telnet/serialport/RDP/VN ...)
+ TODO: check
+CVE-2026-73226 (electerm is an open-sourced
terminal/ssh/sftp/telnet/serialport/RDP/VN ...)
+ TODO: check
+CVE-2026-73225 (electerm is an open-sourced
terminal/ssh/sftp/telnet/serialport/RDP/VN ...)
+ TODO: check
+CVE-2026-73224 (electerm is an open-sourced
terminal/ssh/sftp/telnet/serialport/RDP/VN ...)
+ TODO: check
+CVE-2026-73223 (electerm is an open-sourced
terminal/ssh/sftp/telnet/serialport/RDP/VN ...)
+ TODO: check
+CVE-2026-73222 (Claude Code Templates is a CLI tool for configuring and
monitoring Cla ...)
+ TODO: check
+CVE-2026-73221 (CVAT is an open source interactive video and image annotation
tool for ...)
+ TODO: check
+CVE-2026-73219 (CVAT is an open source interactive video and image annotation
tool for ...)
+ TODO: check
+CVE-2026-73218 (Cursor is a code editor built for programming with AI. Prior
to 3.0.0, ...)
+ TODO: check
+CVE-2026-73217 (Cursor is a code editor built for programming with AI. Prior
to 3.1.2, ...)
+ TODO: check
+CVE-2026-73216 (Coturn is a free open source implementation of TURN and STUN
Server. P ...)
+ TODO: check
+CVE-2026-73215 (Coturn is a free open source implementation of TURN and STUN
Server. P ...)
+ TODO: check
+CVE-2026-73214 (Coturn is a free open source implementation of TURN and STUN
Server. P ...)
+ TODO: check
+CVE-2026-73213 (Coturn is a free open source implementation of TURN and STUN
Server. P ...)
+ TODO: check
+CVE-2026-73212 (Coturn is a free open source implementation of TURN and STUN
Server. P ...)
+ TODO: check
+CVE-2026-73211 (PeerTube is an ActivityPub-federated video streaming platform.
Prior t ...)
+ TODO: check
+CVE-2026-73210 (A Server-Side Request Forgery (SSRF) vulnerability existed in
Lookyloo ...)
+ TODO: check
+CVE-2026-73162 (Affected versions of MISP cti-transmute expose several
state-changing ...)
+ TODO: check
+CVE-2026-73161 (Affected versions of cti-transmute improperly handle
conversion-table ...)
+ TODO: check
+CVE-2026-73160 (Affected versions of cti-transmute contain an SSRF
vulnerability in th ...)
+ TODO: check
+CVE-2026-73159 (Affected versions of cti-transmute allow a tag's icon value to
be stor ...)
+ TODO: check
+CVE-2026-73158 (Affected versions of cti-transmute insufficiently validate
saved graph ...)
+ TODO: check
+CVE-2026-73157 (Affected versions of cti-transmute render data obtained from a
remote ...)
+ TODO: check
+CVE-2026-73156 (Affected versions of cti-transmute fail to HTML-escape
attacker-contro ...)
+ TODO: check
+CVE-2026-73155 (Affected versions of cti-transmute allow authenticated users
to add or ...)
+ TODO: check
+CVE-2026-73140 (Affected versions of cti-transmute fail to apply comment-level
access- ...)
+ TODO: check
+CVE-2026-73090 (PeerTube is an ActivityPub-federated video streaming platform.
Prior t ...)
+ TODO: check
+CVE-2026-73089 (Browserslist is a configuration tool for sharing target
browsers and N ...)
+ TODO: check
+CVE-2026-73088 (Browserslist is a configuration tool for sharing target
browsers and N ...)
+ TODO: check
+CVE-2026-73087 (Dozzle is a realtime log viewer for docker containers. From
10.5.2 unt ...)
+ TODO: check
+CVE-2026-73086 (nanoid is a secure, URL-friendly, unique string ID generator
for JavaS ...)
+ TODO: check
+CVE-2026-73085 (Audiobookshelf is a self-hosted audiobook and podcast server.
Prior to ...)
+ TODO: check
+CVE-2026-73084 (Activepieces is an open source AI workflow automation
platform. Prior ...)
+ TODO: check
+CVE-2026-73083 (Activepieces is an open source AI workflow automation
platform. Prior ...)
+ TODO: check
+CVE-2026-73082 (Activepieces is an open source AI workflow automation
platform. Prior ...)
+ TODO: check
+CVE-2026-73081 (Activepieces is an open source AI workflow automation
platform. Prior ...)
+ TODO: check
+CVE-2026-73080 (SeaweedFS is a distributed storage system. Prior to 4.24,
VolumeServer ...)
+ TODO: check
+CVE-2026-73079 (Sub2API is an AI API gateway platform designed to distribute
and manag ...)
+ TODO: check
+CVE-2026-73078 (Vim is an open source, command line text editor. Prior to
9.2.0840, ru ...)
+ TODO: check
+CVE-2026-73077 (Vim is an open source, command line text editor. Prior to
9.2.0839, th ...)
+ TODO: check
+CVE-2026-73076 (Vim is an open source, command line text editor. Prior to
9.2.0847, ru ...)
+ TODO: check
+CVE-2026-73075 (Vim is an open source, command line text editor. From 9.2.0469
until 9 ...)
+ TODO: check
+CVE-2026-73074 (Vim is an open source, command line text editor. Prior to
9.2.0841, pr ...)
+ TODO: check
+CVE-2026-73072 (Vim is an open source, command line text editor. Prior to
9.2.0846, se ...)
+ TODO: check
+CVE-2026-73071 (Vim is an open source, command line text editor. From 9.2.0511
until 9 ...)
+ TODO: check
+CVE-2026-73070 (Vim is an open source, command line text editor. Prior to
9.2.0842, th ...)
+ TODO: check
+CVE-2026-73069 (Twenty is an open-source CRM (customer relationship
management) platfo ...)
+ TODO: check
+CVE-2026-73068 (ToolJet is the open-source foundation am AI-native platform
for buildi ...)
+ TODO: check
+CVE-2026-73067 (Tesseract is an open source OCR engine. Prior to 5.5.3, a
crafted .tra ...)
+ TODO: check
+CVE-2026-73066 (Tesseract is an open source OCR engine. Prior to 5.5.3, a
crafted .tra ...)
+ TODO: check
+CVE-2026-72971 (Improper link resolution before file access ('link following')
in Wind ...)
+ TODO: check
+CVE-2026-72925 (SWC is a TypeScript / JavaScript compiler written in Rust.
Prior to @s ...)
+ TODO: check
+CVE-2026-72922 (AutoGPT is a workflow automation platform for creating,
deploying, and ...)
+ TODO: check
+CVE-2026-72921 (SeaweedFS is a distributed storage system. Prior to 4.24, the
weed/ser ...)
+ TODO: check
+CVE-2026-72920 (SeaweedFS is a distributed storage system. Prior to 4.24, the
filer re ...)
+ TODO: check
+CVE-2026-72785 (Craft CMS 5.0.0-RC1 through 5.10.5 contains an incorrect
authorization ...)
+ TODO: check
+CVE-2026-72784 (Craft CMS versions >= 5.0.0-RC1 before 5.10.6 and >= 4.0.0-RC1
before ...)
+ TODO: check
+CVE-2026-72783 (Craft CMS versions >= 5.0.0-RC1 before 5.10.6 and >= 4.0.0-RC1
before ...)
+ TODO: check
+CVE-2026-72782 (Craft CMS versions >= 5.0.0-RC1 before 5.10.6 and >= 4.0.0-RC1
before ...)
+ TODO: check
+CVE-2026-72781 (Craft CMS versions >= 5.0.0-RC1 before 5.10.7 and >= 4.0.0-RC1
before ...)
+ TODO: check
+CVE-2026-72780 (Craft CMS before 5.10.5 fails to persist updated credential
counters a ...)
+ TODO: check
+CVE-2026-72779 (Craft CMS 5.0.0-RC1 before 5.10.6 and 4.0.0-RC1 before 4.18.2
contain ...)
+ TODO: check
+CVE-2026-72778 (Craft CMS versions from 4.0.0-RC1 before 4.18.2 and from
5.0.0-RC1 bef ...)
+ TODO: check
+CVE-2026-72775 (n8n before 1.123.67, 2.31.5, and 2.32.1 contains a SQL
injection vulne ...)
+ TODO: check
+CVE-2026-72774 (n8n before 1.123.67, 2.31.5, and 2.32.1 contains a credential
authoriz ...)
+ TODO: check
+CVE-2026-72773 (n8n before 2.31.5 and 2.32.x before 2.32.1 contain a
path-confinement ...)
+ TODO: check
+CVE-2026-72772 (n8n before 2.32.1 (and before 2.31.5) is vulnerable to account
takeove ...)
+ TODO: check
+CVE-2026-72771 (n8n versions before 2.32.1 fail to enforce the Allowed HTTP
Request Do ...)
+ TODO: check
+CVE-2026-72770 (n8n versions before 1.123.67 contain a path traversal
vulnerability in ...)
+ TODO: check
+CVE-2026-72769 (n8n before 1.123.67, 2.31.5, and 2.32.1 contains a prototype
pollution ...)
+ TODO: check
+CVE-2026-72768 (n8n versions before 2.32.1 contain a server-side request
forgery prote ...)
+ TODO: check
+CVE-2026-72767 (n8n before 1.123.67, 2.x before 2.31.5, and 2.32.x before
2.32.1 conta ...)
+ TODO: check
+CVE-2026-72766 (n8n before 1.123.67, 2.x before 2.31.5, and 2.32.x before
2.32.1 conta ...)
+ TODO: check
+CVE-2026-72765 (n8n before 2.31.5 and before 2.32.1 contain a sandbox escape
vulnerabi ...)
+ TODO: check
+CVE-2026-72764 (n8n's JavaScript task runner shared a single module cache
across all u ...)
+ TODO: check
+CVE-2026-72763 (n8n before 1.123.67, 2.31.5, and 2.32.1 validates
credential-access on ...)
+ TODO: check
+CVE-2026-72762 (n8n versions before 1.123.67, 2.31.5, and 2.32.1 contain an
arbitrary ...)
+ TODO: check
+CVE-2026-72750 (n8n before 1.123.67, 2.31.5, and 2.32.1 contains a SQL
injection vulne ...)
+ TODO: check
+CVE-2026-72749 (n8n before 1.123.67, 2.31.5, and 2.32.1 contains a prototype
pollution ...)
+ TODO: check
+CVE-2026-72748 (AVideo contains an unauthenticated arbitrary file write
vulnerability ...)
+ TODO: check
+CVE-2026-72747 (AVideo fails to sanitize the phone field during user
registration, all ...)
+ TODO: check
+CVE-2026-72746 (FreeRDP before 3.30.0 contains a server-side authentication
bypass in ...)
+ TODO: check
+CVE-2026-72745 (FreeRDP before 3.30.0 contains an out-of-bounds vulnerability
in kerbe ...)
+ TODO: check
+CVE-2026-72744 (Nuxt versions >= 4.4.7 and < 4.5.1, and >= 3.21.7 and <
3.21.10, conta ...)
+ TODO: check
+CVE-2026-72742 (DSPy 3.3.0b1 contains a file exfiltration vulnerability in the
Image a ...)
+ TODO: check
+CVE-2026-72713 (XAgent contains a path traversal vulnerability in the
workspace file e ...)
+ TODO: check
+CVE-2026-72712 (Nmap versions up to and including 7.99 contains a denial of
service vu ...)
+ TODO: check
+CVE-2026-72694 (A flaw was found in MRTG. When the MRTG daemon is started as a
root us ...)
+ TODO: check
+CVE-2026-72693 (`openvt -u` is intended to identify the owner of the current
VT and th ...)
+ TODO: check
+CVE-2026-72610 (A stored SQL injection vulnerability in Koha through 24.11.17,
25.05.1 ...)
+ TODO: check
+CVE-2026-72609 (An SQL injection vulnerability in Koha through 24.11.17,
25.05.12, 25. ...)
+ TODO: check
+CVE-2026-72608 (A stored SQL injection vulnerability in Koha through 24.11.17,
25.05.1 ...)
+ TODO: check
+CVE-2026-72607 (A stored SQL injection vulnerability in Koha through 24.11.17,
25.05.1 ...)
+ TODO: check
+CVE-2026-72606 (A server-side request forgery vulnerability in Pinry through
2.1.13 al ...)
+ TODO: check
+CVE-2026-72605 (A missing authentication vulnerability in Swing Music 3.0.0
allows una ...)
+ TODO: check
+CVE-2026-72604 (A path traversal vulnerability in Intelliants Subrion CMS
through 4.2. ...)
+ TODO: check
+CVE-2026-72603 (An OS command injection vulnerability in wg-easy 15.3.0 allows
users w ...)
+ TODO: check
+CVE-2026-72602 (A path traversal vulnerability in AsyncFuncAI deepwiki-open
through co ...)
+ TODO: check
+CVE-2026-72601 (A broken access control vulnerability in CSZ CMS 1.3.2 allows
unauthen ...)
+ TODO: check
+CVE-2026-72600 (A broken access control vulnerability in Idurar IDURAR ERP CRM
4.1.0 a ...)
+ TODO: check
+CVE-2026-72599 (An SQL injection vulnerability in e107 2.4.0 allows
unauthenticated re ...)
+ TODO: check
+CVE-2026-72598 (A server-side request forgery vulnerability in Apioo Fusio
8.8.3 allow ...)
+ TODO: check
+CVE-2026-72597 (A server-side request forgery vulnerability in Friendica
through the 2 ...)
+ TODO: check
+CVE-2026-72596 (A broken access control vulnerability in Ghost Foundation
Ghost 5.x al ...)
+ TODO: check
+CVE-2026-72595 (A broken access control vulnerability in BadChoice Handesk as
of 2026- ...)
+ TODO: check
+CVE-2026-72563 (A broken access control vulnerability in BadChoice Handesk as
of 2026- ...)
+ TODO: check
+CVE-2026-72562 (An SQL injection vulnerability in Pimcore
admin-ui-classic-bundle thro ...)
+ TODO: check
+CVE-2026-72561 (A broken access control vulnerability in Peppermint Lab
Peppermint thr ...)
+ TODO: check
+CVE-2026-72560 (A server-side request forgery vulnerability in HumanSignal
Label Studi ...)
+ TODO: check
+CVE-2026-72559 (A stored cross-site scripting vulnerability in HortusFox 5.9
allows au ...)
+ TODO: check
+CVE-2026-72558 (An SQL injection vulnerability in CiviCRM through 6.18.alpha1
allows a ...)
+ TODO: check
+CVE-2026-72557 (An unrestricted file upload vulnerability in Cockpit CMS 2.6.0
allows ...)
+ TODO: check
+CVE-2026-72556 (A remote code execution vulnerability in ZoneMinder 1.39.17
allows any ...)
+ TODO: check
+CVE-2026-72555 (A broken access control vulnerability in Peppermint Lab
Peppermint thr ...)
+ TODO: check
+CVE-2026-72554 (A broken access control vulnerability in Ladybird Web Solution
Faveo H ...)
+ TODO: check
+CVE-2026-72553 (A stored cross-site scripting vulnerability in ElkArte Forum
2.0 Beta ...)
+ TODO: check
+CVE-2026-72552 (A server-side request forgery vulnerability in Dub as of
2026-07-10 al ...)
+ TODO: check
+CVE-2026-72551 (A remote code execution vulnerability in Apioo Fusio 8.8.3
allows auth ...)
+ TODO: check
+CVE-2026-72550 (An SQL injection vulnerability in Friendica through the
2026.08-dev br ...)
+ TODO: check
+CVE-2026-72549 (An information disclosure vulnerability in OpenSignLabs
OpenSign throu ...)
+ TODO: check
+CVE-2026-72548 (An information disclosure vulnerability in OpenSignLabs
OpenSign throu ...)
+ TODO: check
+CVE-2026-72547 (An insecure direct object reference vulnerability in Attendize
through ...)
+ TODO: check
+CVE-2026-72546 (An insecure direct object reference vulnerability in Attendize
through ...)
+ TODO: check
+CVE-2026-72545 (An insecure direct object reference vulnerability in
OpenSignLabs Open ...)
+ TODO: check
+CVE-2026-72544 (An integrity verification vulnerability in OpenSignLabs
OpenSign throu ...)
+ TODO: check
+CVE-2026-72543 (An insecure direct object reference vulnerability in
OpenSignLabs Open ...)
+ TODO: check
+CVE-2026-72542 (A missing authorization vulnerability in Windmill Labs
Windmill throug ...)
+ TODO: check
+CVE-2026-72541 (A missing authorization vulnerability in Windmill Labs
Windmill throug ...)
+ TODO: check
+CVE-2026-72540 (An insecure direct object reference vulnerability in
PhotoPrism throug ...)
+ TODO: check
+CVE-2026-72539 (An information disclosure vulnerability in Windmill Labs
Windmill thro ...)
+ TODO: check
+CVE-2026-72538 (An argument injection vulnerability in PrefectHQ Prefect
through 3.8.2 ...)
+ TODO: check
+CVE-2026-72537 (A privilege escalation vulnerability in Authentik Security
authentik t ...)
+ TODO: check
+CVE-2026-72536 (A missing authentication vulnerability in Chaskiq through
commit 46dfd ...)
+ TODO: check
+CVE-2026-72535 (A missing authentication vulnerability in Chaskiq through
commit 46dfd ...)
+ TODO: check
+CVE-2026-72534 (A privilege escalation vulnerability in Authentik Security
authentik t ...)
+ TODO: check
+CVE-2026-72533 (An authentication bypass vulnerability in Portainer CE through
2.44.0 ...)
+ TODO: check
+CVE-2026-71398 (Adobe Campaign Classic (ACC) is affected by an Incorrect
Authorization ...)
+ TODO: check
+CVE-2026-71390 (CAI Content Credentials is affected by an Improper Input
Validation vu ...)
+ TODO: check
+CVE-2026-71389 (CAI Content Credentials is affected by an Integer Underflow
(Wrap or W ...)
+ TODO: check
+CVE-2026-71387 (ColdFusion is affected by an Incorrect Authorization
vulnerability tha ...)
+ TODO: check
+CVE-2026-71386 (is affected by a Cross-site Scripting (XSS) vulnerability that
could r ...)
+ TODO: check
+CVE-2026-71384 (is affected by an Incorrect Authorization vulnerability that
could res ...)
+ TODO: check
+CVE-2026-71383 (is affected by an Incorrect Authorization vulnerability that
could res ...)
+ TODO: check
+CVE-2026-71362 (Adobe Commerce is affected by an Incorrect Authorization
vulnerability ...)
+ TODO: check
+CVE-2026-71331 (Integer overflow or wraparound in Microsoft Azure Attestation
service ...)
+ TODO: check
+CVE-2026-71218 (A flaw was found in iperf3. A remote unauthenticated attacker
can expl ...)
+ TODO: check
+CVE-2026-71217 (A flaw was found in iperf3. A remote attacker can exploit this
vulnera ...)
+ TODO: check
+CVE-2026-70355 (Improper neutralization of input during web page generation
('cross-si ...)
+ TODO: check
+CVE-2026-70354 (Out-of-bounds write in .NET allows an unauthorized attacker to
execute ...)
+ TODO: check
+CVE-2026-70348 (Improper link resolution before file access ('link following')
in Wind ...)
+ TODO: check
+CVE-2026-70347 (Heap-based buffer overflow in Windows Installer allows an
authorized a ...)
+ TODO: check
+CVE-2026-70346 (Stack-based buffer overflow in Windows Installer allows an
authorized ...)
+ TODO: check
+CVE-2026-70345 (Heap-based buffer overflow in Windows Installer allows an
authorized a ...)
+ TODO: check
+CVE-2026-70344 (Stack-based buffer overflow in Windows Installer allows an
authorized ...)
+ TODO: check
+CVE-2026-70340 (Missing authorization in Azure CycleCloud allows an authorized
attacke ...)
+ TODO: check
+CVE-2026-70338 (Improper control of generation of code ('code injection') in
Microsoft ...)
+ TODO: check
+CVE-2026-70337 (Relative path traversal in Microsoft PowerShell Core allows an
unautho ...)
+ TODO: check
+CVE-2026-70336 (Improper control of generation of code ('code injection') in
Visual St ...)
+ TODO: check
+CVE-2026-70335 (Improper neutralization of special elements used in an os
command ('os ...)
+ TODO: check
+CVE-2026-70330 (Heap-based buffer overflow in Windows DNS allows an authorized
attacke ...)
+ TODO: check
+CVE-2026-70329 (Integer overflow or wraparound in Microsoft Office Outlook
allows an u ...)
+ TODO: check
+CVE-2026-70328 (Out-of-bounds read in Microsoft Office Excel allows an
unauthorized at ...)
+ TODO: check
+CVE-2026-70327 (Out-of-bounds read in Microsoft Office Excel allows an
unauthorized at ...)
+ TODO: check
+CVE-2026-70326 (Server-side request forgery (ssrf) in Microsoft Office
SharePoint allo ...)
+ TODO: check
+CVE-2026-70325 (Improper input validation in Microsoft Office PowerPoint
allows an una ...)
+ TODO: check
+CVE-2026-70324 (Server-side request forgery (ssrf) in Microsoft Office
SharePoint allo ...)
+ TODO: check
+CVE-2026-70323 (Improper input validation in Microsoft Office allows an
unauthorized a ...)
+ TODO: check
+CVE-2026-70322 (Improper input validation in Microsoft Office PowerPoint
allows an una ...)
+ TODO: check
+CVE-2026-70321 (Deserialization of untrusted data in Microsoft Office
SharePoint allow ...)
+ TODO: check
+CVE-2026-70320 (Improper input validation in Microsoft Office PowerPoint
allows an una ...)
+ TODO: check
+CVE-2026-70319 (Improper input validation in Microsoft Office Word allows an
unauthori ...)
+ TODO: check
+CVE-2026-70318 (Improper input validation in Microsoft Office Excel allows an
unauthor ...)
+ TODO: check
+CVE-2026-70317 (Use of uninitialized resource in Microsoft Office allows an
unauthoriz ...)
+ TODO: check
+CVE-2026-70316 (Improper input validation in Microsoft Office PowerPoint
allows an una ...)
+ TODO: check
+CVE-2026-70315 (Out-of-bounds read in Microsoft Office allows an unauthorized
attacker ...)
+ TODO: check
+CVE-2026-70314 (Improper input validation in Microsoft Office allows an
unauthorized a ...)
+ TODO: check
+CVE-2026-70313 (Improper input validation in Microsoft Office PowerPoint
allows an una ...)
+ TODO: check
+CVE-2026-70312 (Improper input validation in Microsoft Office PowerPoint
allows an una ...)
+ TODO: check
+CVE-2026-70311 (Use after free in Microsoft Office Word allows an unauthorized
attacke ...)
+ TODO: check
+CVE-2026-70310 (Out-of-bounds read in Microsoft Office Word allows an
unauthorized att ...)
+ TODO: check
+CVE-2026-70307 (Use after free in Windows Ancillary Function Driver for
WinSock allows ...)
+ TODO: check
+CVE-2026-70306 (Improper neutralization of input during web page generation
('cross-si ...)
+ TODO: check
+CVE-2026-70304 (Heap-based buffer overflow in Windows DNS allows an authorized
attacke ...)
+ TODO: check
+CVE-2026-70130 (Heap-based buffer overflow in Microsoft Office allows an
unauthorized ...)
+ TODO: check
+CVE-2026-6727 (A timing side-channel vulnerability exists in the RSA OAEP
decryption ...)
+ TODO: check
+CVE-2026-6726 (An information leakage vulnerability was reported in the TCG
TPM 2.0 r ...)
+ TODO: check
+CVE-2026-69320 (Improper neutralization of special elements used in an os
command ('os ...)
+ TODO: check
+CVE-2026-69306 (Not failing securely ('failing open') in Visual Studio Code
allows an ...)
+ TODO: check
+CVE-2026-69278 (Incorrect authorization in Visual Studio Code allows an
unauthorized a ...)
+ TODO: check
+CVE-2026-69223 (Apache Allura's webhooks are vulnerable toServer-Side Request
Forgery ...)
+ TODO: check
+CVE-2026-69119 (Taubyte Tau v1.1.10 contains a missing authorization
vulnerability in ...)
+ TODO: check
+CVE-2026-69117 (NetBox 4.5.8 contains an ORM injection vulnerability that
allows authe ...)
+ TODO: check
+CVE-2026-69115 (OpenIM Server v3.8.3 contains a missing authorization
vulnerability th ...)
+ TODO: check
+CVE-2026-69113 (Cap v0.3.1 contains a broken access control vulnerability in
the POST ...)
+ TODO: check
+CVE-2026-69109 (A vulnerability has been identified in Siemens License Server
(SLS) (A ...)
+ TODO: check
+CVE-2026-69108 (A vulnerability has been identified in Siemens License Server
(SLS) (A ...)
+ TODO: check
+CVE-2026-69102 (MaxKey contains an unauthorized access vulnerability due to a
hard-cod ...)
+ TODO: check
+CVE-2026-68821 (Improper privilege management in Windows Package Manager
allows an aut ...)
+ TODO: check
+CVE-2026-68820 (Use after free in Windows Ancillary Function Driver for
WinSock allows ...)
+ TODO: check
+CVE-2026-68819 (Buffer over-read in Windows Network File System allows an
unauthorized ...)
+ TODO: check
+CVE-2026-68817 (Stack-based buffer overflow in Microsoft Office Excel allows
an unauth ...)
+ TODO: check
+CVE-2026-68816 (Stack-based buffer overflow in Microsoft Office Excel allows
an unauth ...)
+ TODO: check
+CVE-2026-68815 (Heap-based buffer overflow in Microsoft Office Excel allows an
unautho ...)
+ TODO: check
+CVE-2026-68814 (Out-of-bounds read in Microsoft Office Excel allows an
unauthorized at ...)
+ TODO: check
+CVE-2026-68813 (Out-of-bounds read in Microsoft Office Excel allows an
unauthorized at ...)
+ TODO: check
+CVE-2026-68812 (Heap-based buffer overflow in Microsoft Office Excel allows an
unautho ...)
+ TODO: check
+CVE-2026-68811 (Access of resource using incompatible type ('type confusion')
in Micro ...)
+ TODO: check
+CVE-2026-68810 (Untrusted pointer dereference in Microsoft Office Excel allows
an unau ...)
+ TODO: check
+CVE-2026-68809 (Incomplete cleanup in Microsoft Office PowerPoint allows an
unauthoriz ...)
+ TODO: check
+CVE-2026-68808 (Out-of-bounds read in Microsoft Office Excel allows an
unauthorized at ...)
+ TODO: check
+CVE-2026-68807 (Heap-based buffer overflow in Microsoft Office Excel allows an
unautho ...)
+ TODO: check
+CVE-2026-68806 (Out-of-bounds write in Microsoft Office Excel allows an
unauthorized a ...)
+ TODO: check
+CVE-2026-68805 (Heap-based buffer overflow in Microsoft Office Excel allows an
unautho ...)
+ TODO: check
+CVE-2026-68804 (Numeric truncation error in Microsoft Office Excel allows an
unauthori ...)
+ TODO: check
+CVE-2026-68803 (Access of resource using incompatible type ('type confusion')
in Micro ...)
+ TODO: check
+CVE-2026-68802 (Out-of-bounds read in Microsoft Office Excel allows an
unauthorized at ...)
+ TODO: check
+CVE-2026-68801 (Heap-based buffer overflow in Microsoft Office Excel allows an
unautho ...)
+ TODO: check
+CVE-2026-68800 (Heap-based buffer overflow in Microsoft Office Excel allows an
unautho ...)
+ TODO: check
+CVE-2026-68799 (Use of uninitialized resource in Microsoft Office Excel allows
an unau ...)
+ TODO: check
+CVE-2026-68798 (Heap-based buffer overflow in Microsoft Office Excel allows an
unautho ...)
+ TODO: check
+CVE-2026-68797 (Out-of-bounds read in Microsoft Office Excel allows an
unauthorized at ...)
+ TODO: check
+CVE-2026-68796 (Heap-based buffer overflow in Microsoft Office Excel allows an
unautho ...)
+ TODO: check
+CVE-2026-68795 (Stack-based buffer overflow in Microsoft Office Excel allows
an unauth ...)
+ TODO: check
+CVE-2026-68794 (Heap-based buffer overflow in Microsoft Office Excel allows an
unautho ...)
+ TODO: check
+CVE-2026-68793 (Out-of-bounds read in Microsoft Office Excel allows an
unauthorized at ...)
+ TODO: check
+CVE-2026-68792 (Improper neutralization of special elements used in a command
('comman ...)
+ TODO: check
+CVE-2026-67180 (Google Turbinia allows arbitrary command execution via worker
tasks. A ...)
+ TODO: check
+CVE-2026-67179 (Genkit does not properly validate host request headers. Any
host on th ...)
+ TODO: check
+CVE-2026-66810 (Heap-based buffer overflow in Microsoft Office Word allows an
unauthor ...)
+ TODO: check
+CVE-2026-66809 (Out-of-bounds read in Microsoft Office allows an unauthorized
attacker ...)
+ TODO: check
+CVE-2026-66807 (Stack-based buffer overflow in Microsoft Office allows an
unauthorized ...)
+ TODO: check
+CVE-2026-66806 (Off-by-one error in Microsoft Office Word allows an
unauthorized attac ...)
+ TODO: check
+CVE-2026-66805 (Deserialization of untrusted data in Microsoft Office
SharePoint allow ...)
+ TODO: check
+CVE-2026-66804 (Improper access control in Windows Cross Device Service allows
an auth ...)
+ TODO: check
+CVE-2026-66802 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-66799 (Heap-based buffer overflow in Windows Key Guard allows an
authorized a ...)
+ TODO: check
+CVE-2026-66301 (Exposure of sensitive information to an unauthorized actor in
Microsof ...)
+ TODO: check
+CVE-2026-65815 (Deserialization of untrusted data in Microsoft Dynamics 365
(on-premis ...)
+ TODO: check
+CVE-2026-65814 (Heap-based buffer overflow in Windows Storage Port Driver
allows an au ...)
+ TODO: check
+CVE-2026-65813 (Server-side request forgery (ssrf) in Microsoft Exchange
Server allows ...)
+ TODO: check
+CVE-2026-65811 (Improper input validation in Power BI allows an authorized
attacker to ...)
+ TODO: check
+CVE-2026-65810 (Relative path traversal in .NET Framework allows an
unauthorized attac ...)
+ TODO: check
+CVE-2026-65807 (Access of resource using incompatible type ('type confusion')
in Micro ...)
+ TODO: check
+CVE-2026-65806 (Missing authorization in Azure CycleCloud allows an authorized
attacke ...)
+ TODO: check
+CVE-2026-65799 (Integer overflow or wraparound in Windows DNS allows an
authorized att ...)
+ TODO: check
+CVE-2026-65798 (Numeric truncation error in Windows DNS allows an authorized
attacker ...)
+ TODO: check
+CVE-2026-65797 (Numeric truncation error in Windows DNS allows an authorized
attacker ...)
+ TODO: check
+CVE-2026-65796 (Heap-based buffer overflow in Windows iSCSI Target Service
allows an u ...)
+ TODO: check
+CVE-2026-65795 (No cwe for this issue in Windows DNS allows an authorized
attacker to ...)
+ TODO: check
+CVE-2026-65794 (Buffer over-read in Windows SMB Client allows an unauthorized
attacker ...)
+ TODO: check
+CVE-2026-65791 (Heap-based buffer overflow in Windows iSCSI Target Service
allows an u ...)
+ TODO: check
+CVE-2026-65790 (Heap-based buffer overflow in Windows Message Queuing allows
an author ...)
+ TODO: check
+CVE-2026-65789 (Use after free in Windows DNS allows an unauthorized attacker
to execu ...)
+ TODO: check
+CVE-2026-65788 (Use after free in Desktop Window Manager allows an authorized
attacker ...)
+ TODO: check
+CVE-2026-65787 (Heap-based buffer overflow in Desktop Window Manager allows an
authori ...)
+ TODO: check
+CVE-2026-65786 (Heap-based buffer overflow in Desktop Window Manager allows an
authori ...)
+ TODO: check
+CVE-2026-65785 (Uncontrolled resource consumption in Windows DHCP Client
allows an una ...)
+ TODO: check
+CVE-2026-65784 (Out-of-bounds read in Windows NTFS allows an authorized
attacker to di ...)
+ TODO: check
+CVE-2026-65783 (Use after free in Windows Autopilot allows an authorized
attacker to e ...)
+ TODO: check
+CVE-2026-65782 (Use after free in Windows Autopilot allows an authorized
attacker to e ...)
+ TODO: check
+CVE-2026-65781 (Use after free in Windows Autopilot allows an authorized
attacker to e ...)
+ TODO: check
+CVE-2026-65780 (Double free in Windows Autopilot allows an authorized attacker
to elev ...)
+ TODO: check
+CVE-2026-65779 (Use after free in Windows Autopilot allows an authorized
attacker to e ...)
+ TODO: check
+CVE-2026-65778 (Use after free in Windows Autopilot allows an authorized
attacker to e ...)
+ TODO: check
+CVE-2026-65777 (Inadequate encryption strength in Windows Active Directory
allows an a ...)
+ TODO: check
+CVE-2026-65776 (Use after free in Windows Win32K allows an authorized attacker
to elev ...)
+ TODO: check
+CVE-2026-65775 (Use after free in Windows Win32K allows an authorized attacker
to elev ...)
+ TODO: check
+CVE-2026-65774 (Heap-based buffer overflow in Windows Installer allows an
authorized a ...)
+ TODO: check
+CVE-2026-65773 (Improper access control in Windows Kernel allows an authorized
attacke ...)
+ TODO: check
+CVE-2026-65769 (Exposure of sensitive information to an unauthorized actor in
Microsof ...)
+ TODO: check
+CVE-2026-65768 (Improper limitation of a pathname to a restricted directory
('path tra ...)
+ TODO: check
+CVE-2026-65767 (Improper neutralization of input during web page generation
('cross-si ...)
+ TODO: check
+CVE-2026-65681 (Null pointer dereference in Windows iSCSI Target Service
allows an una ...)
+ TODO: check
+CVE-2026-65680 (Improper link resolution before file access ('link following')
in Micr ...)
+ TODO: check
+CVE-2026-65679 (Heap-based buffer overflow in Windows iSCSI Target Service
allows an u ...)
+ TODO: check
+CVE-2026-65678 (Use after free in Windows Win32K allows an authorized attacker
to elev ...)
+ TODO: check
+CVE-2026-65675 (No cwe for this issue in Visual Studio Code CoPilot Chat
Extension all ...)
+ TODO: check
+CVE-2026-65673 (CVET-EOP)
+ TODO: check
+CVE-2026-65672 (Heap-based buffer overflow in Windows Remote Access API allows
an auth ...)
+ TODO: check
+CVE-2026-65671 (Heap-based buffer overflow in Windows Remote Access API allows
an auth ...)
+ TODO: check
+CVE-2026-65665 (Deserialization of untrusted data in Microsoft Office
SharePoint allow ...)
+ TODO: check
+CVE-2026-65664 (Heap-based buffer overflow in Microsoft Office allows an
unauthorized ...)
+ TODO: check
+CVE-2026-65663 (Deserialization of untrusted data in Microsoft Office
SharePoint allow ...)
+ TODO: check
+CVE-2026-65662 (Out-of-bounds read in Windows GDI allows an authorized
attacker to dis ...)
+ TODO: check
+CVE-2026-65661 (Heap-based buffer overflow in Microsoft Office allows an
unauthorized ...)
+ TODO: check
+CVE-2026-65660 (Improper control of generation of code ('code injection') in
Microsoft ...)
+ TODO: check
+CVE-2026-65658 (Deserialization of untrusted data in Microsoft Office
SharePoint allow ...)
+ TODO: check
+CVE-2026-65657 (Use after free in Microsoft Office allows an unauthorized
attacker to ...)
+ TODO: check
+CVE-2026-65656 (Improper neutralization of special elements used in a command
('comman ...)
+ TODO: check
+CVE-2026-64922 (Improper neutralization of input during web page generation
('cross-si ...)
+ TODO: check
+CVE-2026-64921 (Missing authentication for critical function in Microsoft
Office Share ...)
+ TODO: check
+CVE-2026-64920 (Heap-based buffer overflow in Microsoft Office Access allows
an unauth ...)
+ TODO: check
+CVE-2026-64919 (Stack-based buffer overflow in Microsoft Office Access allows
an unaut ...)
+ TODO: check
+CVE-2026-64917 (Out-of-bounds read in Microsoft Office Word allows an
unauthorized att ...)
+ TODO: check
+CVE-2026-64916 (Improper neutralization of input during web page generation
('cross-si ...)
+ TODO: check
+CVE-2026-64915 (Heap-based buffer overflow in Microsoft Office Word allows an
unauthor ...)
+ TODO: check
+CVE-2026-64914 (Heap-based buffer overflow in Microsoft Office Access allows
an unauth ...)
+ TODO: check
+CVE-2026-64912 (Stack-based buffer overflow in Microsoft Office Access allows
an unaut ...)
+ TODO: check
+CVE-2026-64911 (Integer overflow or wraparound in Microsoft Office allows an
unauthori ...)
+ TODO: check
+CVE-2026-64910 (Untrusted pointer dereference in Microsoft Office allows an
unauthoriz ...)
+ TODO: check
+CVE-2026-64909 (Integer underflow (wrap or wraparound) in Microsoft Office
allows an u ...)
+ TODO: check
+CVE-2026-64908 (Heap-based buffer overflow in Microsoft Office Access allows
an unauth ...)
+ TODO: check
+CVE-2026-64907 (Stack-based buffer overflow in Microsoft Office Word allows an
unautho ...)
+ TODO: check
+CVE-2026-64906 (Heap-based buffer overflow in Microsoft Office Access allows
an unauth ...)
+ TODO: check
+CVE-2026-64905 (Buffer over-read in Microsoft Office Word allows an
unauthorized attac ...)
+ TODO: check
+CVE-2026-64904 (Access of resource using incompatible type ('type confusion')
in Micro ...)
+ TODO: check
+CVE-2026-64903 (Integer overflow or wraparound in Microsoft Office allows an
unauthori ...)
+ TODO: check
+CVE-2026-64902 (Improper neutralization of input during web page generation
('cross-si ...)
+ TODO: check
+CVE-2026-64901 (Deserialization of untrusted data in Microsoft Office
SharePoint allow ...)
+ TODO: check
+CVE-2026-64900 (Improper neutralization of input during web page generation
('cross-si ...)
+ TODO: check
+CVE-2026-64899 (Out-of-bounds read in Microsoft Office allows an unauthorized
attacker ...)
+ TODO: check
+CVE-2026-64898 (Heap-based buffer overflow in Microsoft Office allows an
unauthorized ...)
+ TODO: check
+CVE-2026-64897 (Improper neutralization of input during web page generation
('cross-si ...)
+ TODO: check
+CVE-2026-64629 (A vulnerability has been identified in Parasolid V38.0 (All
versions < ...)
+ TODO: check
+CVE-2026-63533 (Heap-based buffer overflow in Microsoft Office allows an
unauthorized ...)
+ TODO: check
+CVE-2026-63532 (Integer overflow or wraparound in Microsoft Office allows an
unauthori ...)
+ TODO: check
+CVE-2026-63531 (Out-of-bounds read in Microsoft Office Word allows an
unauthorized att ...)
+ TODO: check
+CVE-2026-63530 (Out-of-bounds read in Microsoft Office Word allows an
unauthorized att ...)
+ TODO: check
+CVE-2026-63529 (Out-of-bounds read in Microsoft Office allows an unauthorized
attacker ...)
+ TODO: check
+CVE-2026-63528 (Out-of-bounds read in Microsoft Office Word allows an
unauthorized att ...)
+ TODO: check
+CVE-2026-63527 (Stack-based buffer overflow in Microsoft Office Word allows an
unautho ...)
+ TODO: check
+CVE-2026-63526 (Stack-based buffer overflow in Microsoft Office allows an
unauthorized ...)
+ TODO: check
+CVE-2026-63525 (Numeric truncation error in Microsoft Office Word allows an
unauthoriz ...)
+ TODO: check
+CVE-2026-63524 (Out-of-bounds read in Microsoft Office allows an unauthorized
attacker ...)
+ TODO: check
+CVE-2026-63522 (Incorrect permission assignment for critical resource in Azure
SQL Dat ...)
+ TODO: check
+CVE-2026-63521 (Out-of-bounds read in Microsoft Office Word allows an
unauthorized att ...)
+ TODO: check
+CVE-2026-63520 (Improper input validation in Microsoft Office SharePoint
allows an una ...)
+ TODO: check
+CVE-2026-63519 (Heap-based buffer overflow in Microsoft Office allows an
unauthorized ...)
+ TODO: check
+CVE-2026-63518 (Heap-based buffer overflow in Microsoft Office Word allows an
unauthor ...)
+ TODO: check
+CVE-2026-63517 (Out-of-bounds read in Microsoft Office allows an unauthorized
attacker ...)
+ TODO: check
+CVE-2026-63516 (Deserialization of untrusted data in Microsoft Office
SharePoint allow ...)
+ TODO: check
+CVE-2026-63515 (Out-of-bounds read in Microsoft Office allows an unauthorized
attacker ...)
+ TODO: check
+CVE-2026-63514 (Deserialization of untrusted data in Microsoft Office
SharePoint allow ...)
+ TODO: check
+CVE-2026-63513 (Heap-based buffer overflow in Microsoft Office allows an
unauthorized ...)
+ TODO: check
+CVE-2026-63512 (Incorrect authorization in Microsoft Office SharePoint allows
an autho ...)
+ TODO: check
+CVE-2026-62917 (Improper input validation in Microsoft Office SharePoint
allows an aut ...)
+ TODO: check
+CVE-2026-62915 (Missing authorization in Microsoft Exchange Server allows an
authorize ...)
+ TODO: check
+CVE-2026-62914 (Improper neutralization of input during web page generation
('cross-si ...)
+ TODO: check
+CVE-2026-62913 (Heap-based buffer overflow in Microsoft Exchange Server allows
an auth ...)
+ TODO: check
+CVE-2026-62912 (Deserialization of untrusted data in Microsoft Exchange Server
allows ...)
+ TODO: check
+CVE-2026-62911 (Authentication bypass by capture-replay in Microsoft Exchange
Server a ...)
+ TODO: check
+CVE-2026-62910 (Improper control of resource identifiers ('resource
injection') in Mic ...)
+ TODO: check
+CVE-2026-62909 (Uncaught exception in .NET allows an authorized attacker to
elevate pr ...)
+ TODO: check
+CVE-2026-62908 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-62902 (Inclusion of functionality from untrusted control sphere in
.NET allow ...)
+ TODO: check
+CVE-2026-62901 (Unchecked input for loop condition in .NET allows an
unauthorized atta ...)
+ TODO: check
+CVE-2026-62900 (Improper removal of sensitive information before storage or
transfer i ...)
+ TODO: check
+CVE-2026-62899 (Inconsistent interpretation of http requests ('http
request/response s ...)
+ TODO: check
+CVE-2026-62898 (Use after free in Microsoft QUIC allows an unauthorized
attacker to di ...)
+ TODO: check
+CVE-2026-62897 (Integer overflow or wraparound in .NET Framework allows an
unauthorize ...)
+ TODO: check
+CVE-2026-62894 (Heap-based buffer overflow in Windows DWM Core Library allows
an autho ...)
+ TODO: check
+CVE-2026-62893 (Use after free in Windows Deployment Services allows an
unauthorized a ...)
+ TODO: check
+CVE-2026-62892 (Use after free in Capability Access Management Service
(camsvc) allows ...)
+ TODO: check
+CVE-2026-62890 (Heap-based buffer overflow in Windows GDI+ allows an
authorized attack ...)
+ TODO: check
+CVE-2026-62889 (Double free in Windows Secure Socket Tunneling Protocol (SSTP)
allows ...)
+ TODO: check
+CVE-2026-62888 (Use after free in Windows DWM Core Library allows an
authorized attack ...)
+ TODO: check
+CVE-2026-62887 (Out-of-bounds read in Windows NTFS allows an authorized
attacker to di ...)
+ TODO: check
+CVE-2026-62886 (Integer overflow or wraparound in .NET allows an unauthorized
attacker ...)
+ TODO: check
+CVE-2026-62885 (Heap-based buffer overflow in Windows Win32K allows an
authorized atta ...)
+ TODO: check
+CVE-2026-62883 (Numeric truncation error in Windows DNS allows an authorized
attacker ...)
+ TODO: check
+CVE-2026-62882 (Insufficiently protected credentials in Microsoft Office
Outlook allow ...)
+ TODO: check
+CVE-2026-62881 (Numeric truncation error in Windows DNS allows an authorized
attacker ...)
+ TODO: check
+CVE-2026-62880 (Out-of-bounds read in Windows NTFS allows an authorized
attacker to el ...)
+ TODO: check
+CVE-2026-62878 (Stack-based buffer overflow in Windows DNS allows an
unauthorized atta ...)
+ TODO: check
+CVE-2026-62877 (Stack-based buffer overflow in Windows Win32K allows an
authorized att ...)
+ TODO: check
+CVE-2026-62876 (Out-of-bounds read in Windows Win32K allows an authorized
attacker to ...)
+ TODO: check
+CVE-2026-62872 (Incorrect authorization in .NET Framework allows an authorized
attacke ...)
+ TODO: check
+CVE-2026-62871 (Out-of-bounds write in .NET allows an unauthorized attacker to
execute ...)
+ TODO: check
+CVE-2026-62869 (Insufficient verification of data authenticity in Azure Entra
ID allow ...)
+ TODO: check
+CVE-2026-62842 (Out-of-bounds read in Microsoft Office allows an unauthorized
attacker ...)
+ TODO: check
+CVE-2026-62839 (Insufficiently protected credentials in Microsoft Office
SharePoint al ...)
+ TODO: check
+CVE-2026-62837 (Relative path traversal in Microsoft Office SharePoint allows
an autho ...)
+ TODO: check
+CVE-2026-62832 (Improper link resolution before file access ('link following')
in Wind ...)
+ TODO: check
+CVE-2026-62829 (Improper neutralization of input during web page generation
('cross-si ...)
+ TODO: check
+CVE-2026-62827 (Improper authentication in Microsoft Office SharePoint allows
an autho ...)
+ TODO: check
+CVE-2026-62824 (Stack-based buffer overflow in Remote Desktop Client allows an
unautho ...)
+ TODO: check
+CVE-2026-62823 (Heap-based buffer overflow in Windows DHCP Server allows an
unauthoriz ...)
+ TODO: check
+CVE-2026-62822 (Integer overflow or wraparound in Windows GDI+ allows an
unauthorized ...)
+ TODO: check
+CVE-2026-62820 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-62819 (Remote Code Execution in Windows Routing and Remote Access
Service (RR ...)
+ TODO: check
+CVE-2026-62818 (Use after free in Active Directory Certificate Services (AD
CS) allows ...)
+ TODO: check
+CVE-2026-62817 (Out-of-bounds write in Windows DNS allows an unauthorized
attacker to ...)
+ TODO: check
+CVE-2026-62816 (Heap-based buffer overflow in Reliable Multicast Transport
Driver (RMC ...)
+ TODO: check
+CVE-2026-62815 (Use after free in Microsoft QUIC allows an unauthorized
attacker to ex ...)
+ TODO: check
+CVE-2026-62814 (Integer underflow (wrap or wraparound) in Windows DHCP Server
allows a ...)
+ TODO: check
+CVE-2026-62812 (Improper link resolution before file access ('link following')
in Wind ...)
+ TODO: check
+CVE-2026-62811 (Heap-based buffer overflow in Windows HTTP.sys allows an
authorized at ...)
+ TODO: check
+CVE-2026-62807 (Improper link resolution before file access ('link following')
in Wind ...)
+ TODO: check
+CVE-2026-62803 (Improper link resolution before file access ('link following')
in Wind ...)
+ TODO: check
+CVE-2026-62800 (Heap-based buffer overflow in Windows SMB Server allows an
authorized ...)
+ TODO: check
+CVE-2026-62799 (Heap-based buffer overflow in Windows SMB Client allows an
authorized ...)
+ TODO: check
+CVE-2026-62798 (Untrusted pointer dereference in Windows Win32K allows an
authorized a ...)
+ TODO: check
+CVE-2026-62797 (Heap-based buffer overflow in Windows NTFS allows an
authorized attack ...)
+ TODO: check
+CVE-2026-62796 (Out-of-bounds read in Windows NTFS allows an authorized
attacker to di ...)
+ TODO: check
+CVE-2026-62795 (Use after free in Windows LDAP - Lightweight Directory Access
Protocol ...)
+ TODO: check
+CVE-2026-62793 (Buffer over-read in Windows NTFS allows an authorized attacker
to disc ...)
+ TODO: check
+CVE-2026-62792 (Stack-based buffer overflow in Windows TCP/IP allows an
unauthorized a ...)
+ TODO: check
+CVE-2026-62790 (Heap-based buffer overflow in Windows SMB Server allows an
authorized ...)
+ TODO: check
+CVE-2026-62788 (Use after free in Windows Kernel allows an authorized attacker
to elev ...)
+ TODO: check
+CVE-2026-62787 (Use after free in Windows DNS allows an authorized attacker to
execute ...)
+ TODO: check
+CVE-2026-62786 (Out-of-bounds read in Windows Win32K allows an authorized
attacker to ...)
+ TODO: check
+CVE-2026-62785 (Heap-based buffer overflow in Windows LDAP - Lightweight
Directory Acc ...)
+ TODO: check
+CVE-2026-62784 (Heap-based buffer overflow in Microsoft Local Security
Authority Serve ...)
+ TODO: check
+CVE-2026-62783 (Heap-based buffer overflow in Windows Remote Access Connection
Manager ...)
+ TODO: check
+CVE-2026-62782 (Out-of-bounds read in Windows SMB Client allows an
unauthorized attack ...)
+ TODO: check
+CVE-2026-62781 (Heap-based buffer overflow in RPC Runtime allows an
unauthorized attac ...)
+ TODO: check
+CVE-2026-62780 (Use after free in Windows Kernel allows an authorized attacker
to elev ...)
+ TODO: check
+CVE-2026-62779 (Use after free in Windows Schannel allows an authorized
attacker to el ...)
+ TODO: check
+CVE-2026-62778 (Use after free in Windows DNS allows an unauthorized attacker
to eleva ...)
+ TODO: check
+CVE-2026-62777 (Missing authentication for critical function in Windows
License Manage ...)
+ TODO: check
+CVE-2026-62776 (Improper link resolution before file access ('link following')
in Wind ...)
+ TODO: check
+CVE-2026-62775 (Incorrect authorization in Windows Container Isolation FS
Filter Drive ...)
+ TODO: check
+CVE-2026-62774 (Use after free in Windows Graphics Kernel allows an authorized
attacke ...)
+ TODO: check
+CVE-2026-62773 (Use after free in Windows Kerberos allows an authorized
attacker to el ...)
+ TODO: check
+CVE-2026-62772 (Heap-based buffer overflow in Windows Container Isolation FS
Filter Dr ...)
+ TODO: check
+CVE-2026-62771 (Heap-based buffer overflow in Windows Cloud Files Mini Filter
Driver a ...)
+ TODO: check
+CVE-2026-62770 (Heap-based buffer overflow in Windows Shell allows an
authorized attac ...)
+ TODO: check
+CVE-2026-62769 (Numeric truncation error in Windows DNS allows an authorized
attacker ...)
+ TODO: check
+CVE-2026-62768 (Stack-based buffer overflow in Windows Installer allows an
authorized ...)
+ TODO: check
+CVE-2026-62766 (Double free in Windows Kerberos allows an authorized attacker
to eleva ...)
+ TODO: check
+CVE-2026-62761 (Improper link resolution before file access ('link following')
in Wind ...)
+ TODO: check
+CVE-2026-62758 (Heap-based buffer overflow in Windows Remote Access Connection
Manager ...)
+ TODO: check
+CVE-2026-62757 (Improper verification of cryptographic signature in Windows
Schannel a ...)
+ TODO: check
+CVE-2026-62755 (Stack-based buffer overflow in Windows DHCP Client allows an
authorize ...)
+ TODO: check
+CVE-2026-62754 (Heap-based buffer overflow in Windows Kerberos allows an
authorized at ...)
+ TODO: check
+CVE-2026-62753 (Heap-based buffer overflow in Windows HTTP.sys allows an
authorized at ...)
+ TODO: check
+CVE-2026-62752 (Heap-based buffer overflow in Windows Kerberos allows an
authorized at ...)
+ TODO: check
+CVE-2026-62751 (Integer overflow or wraparound in Windows Projected File
System allows ...)
+ TODO: check
+CVE-2026-62750 (Partial string comparison in Windows HTTP Protocol Stack
allows an una ...)
+ TODO: check
+CVE-2026-62749 (Use after free in Windows Kernel allows an authorized attacker
to elev ...)
+ TODO: check
+CVE-2026-62748 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-62747 (Heap-based buffer overflow in Windows Device Association
Service allow ...)
+ TODO: check
+CVE-2026-62746 (Buffer over-read in Windows Win32K allows an authorized
attacker to di ...)
+ TODO: check
+CVE-2026-62745 (Integer underflow (wrap or wraparound) in Windows DHCP Server
allows a ...)
+ TODO: check
+CVE-2026-62743 (Out-of-bounds read in Windows Win32K allows an authorized
attacker to ...)
+ TODO: check
+CVE-2026-62742 (Integer underflow (wrap or wraparound) in Windows DHCP Server
allows a ...)
+ TODO: check
+CVE-2026-62741 (Integer underflow (wrap or wraparound) in Windows HTTP.sys
allows an a ...)
+ TODO: check
+CVE-2026-62740 (Use of uninitialized resource in Windows Imaging Component
allows an a ...)
+ TODO: check
+CVE-2026-62739 (Heap-based buffer overflow in Windows HTTP.sys allows an
authorized at ...)
+ TODO: check
+CVE-2026-62738 (Out-of-bounds read in Windows Management Instrumentation
allows an aut ...)
+ TODO: check
+CVE-2026-62737 (Untrusted pointer dereference in Windows Kernel allows an
authorized a ...)
+ TODO: check
+CVE-2026-62736 (Heap-based buffer overflow in Windows DHCP Client allows an
authorized ...)
+ TODO: check
+CVE-2026-62735 (Heap-based buffer overflow in Windows HTTP.sys allows an
authorized at ...)
+ TODO: check
+CVE-2026-62734 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-62733 (Out-of-bounds read in Windows Win32K allows an authorized
attacker to ...)
+ TODO: check
+CVE-2026-62732 (Heap-based buffer overflow in Windows Telephony Service allows
an auth ...)
+ TODO: check
+CVE-2026-62730 (Buffer over-read in Windows Wired AutoConfig Service allows an
authori ...)
+ TODO: check
+CVE-2026-62729 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-62728 (Time-of-check time-of-use (toctou) race condition in Windows
Common Lo ...)
+ TODO: check
+CVE-2026-62726 (Use after free in Windows Telephony Service allows an
authorized attac ...)
+ TODO: check
+CVE-2026-62725 (Use after free in Windows Telephony Service allows an
authorized attac ...)
+ TODO: check
+CVE-2026-62724 (Use after free in Windows Telephony Service allows an
authorized attac ...)
+ TODO: check
+CVE-2026-62723 (Use after free in Windows Telephony Service allows an
authorized attac ...)
+ TODO: check
+CVE-2026-62722 (Heap-based buffer overflow in Windows Bind Filter Driver
allows an aut ...)
+ TODO: check
+CVE-2026-62721 (Insufficient granularity of access control in User-Mode Power
Service ...)
+ TODO: check
+CVE-2026-62720 (Integer underflow (wrap or wraparound) in Windows DHCP Server
allows a ...)
+ TODO: check
+CVE-2026-62719 (Heap-based buffer overflow in Windows Message Queuing allows
an author ...)
+ TODO: check
+CVE-2026-62718 (Integer underflow (wrap or wraparound) in Windows DHCP Server
allows a ...)
+ TODO: check
+CVE-2026-62717 (Heap-based buffer overflow in Windows Message Queuing allows
an author ...)
+ TODO: check
+CVE-2026-62716 (Integer underflow (wrap or wraparound) in Windows DHCP Server
allows a ...)
+ TODO: check
+CVE-2026-62715 (Integer underflow (wrap or wraparound) in Windows DHCP Server
allows a ...)
+ TODO: check
+CVE-2026-62714 (Integer underflow (wrap or wraparound) in Windows DHCP Server
allows a ...)
+ TODO: check
+CVE-2026-62713 (Heap-based buffer overflow in Windows Cloud Files Mini Filter
Driver a ...)
+ TODO: check
+CVE-2026-62712 (Heap-based buffer overflow in Windows Win32K allows an
authorized atta ...)
+ TODO: check
+CVE-2026-62711 (Use after free in Windows Win32K allows an authorized attacker
to elev ...)
+ TODO: check
+CVE-2026-62710 (Heap-based buffer overflow in Windows Device Association
Service allow ...)
+ TODO: check
+CVE-2026-62709 (Use of uninitialized resource in Windows GDI+ allows an
authorized att ...)
+ TODO: check
+CVE-2026-62708 (Use after free in Windows Kernel allows an unauthorized
attacker to el ...)
+ TODO: check
+CVE-2026-62707 (Use after free in Windows Modern Device Management (MDM)
allows an aut ...)
+ TODO: check
+CVE-2026-62705 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-62703 (Out-of-bounds read in Windows DWM Core Library allows an
authorized at ...)
+ TODO: check
+CVE-2026-62702 (Null pointer dereference in Windows Graphics Kernel allows an
unauthor ...)
+ TODO: check
+CVE-2026-62701 (Use after free in Windows Telephony Service allows an
authorized attac ...)
+ TODO: check
+CVE-2026-62700 (Heap-based buffer overflow in Windows NTFS allows an
authorized attack ...)
+ TODO: check
+CVE-2026-62699 (Heap-based buffer overflow in Windows Universal Disk Format
File Syste ...)
+ TODO: check
+CVE-2026-62698 (Numeric truncation error in Microsoft Digest Authentication
allows an ...)
+ TODO: check
+CVE-2026-62696 (Integer underflow (wrap or wraparound) in Windows Program
Compatibilit ...)
+ TODO: check
+CVE-2026-62695 (Heap-based buffer overflow in Windows Storage allows an
authorized att ...)
+ TODO: check
+CVE-2026-62693 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-62692 (Heap-based buffer overflow in Windows Remote Desktop Services
allows a ...)
+ TODO: check
+CVE-2026-62690 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-62688 (Heap-based buffer overflow in Windows MIDI Service Module
allows an au ...)
+ TODO: check
+CVE-2026-61939 (Use after free in Winlogon allows an authorized attacker to
elevate pr ...)
+ TODO: check
+CVE-2026-61938 (Use after free in Windows Installer allows an authorized
attacker to e ...)
+ TODO: check
+CVE-2026-61937 (Integer overflow or wraparound in Windows HTTP.sys allows an
authorize ...)
+ TODO: check
+CVE-2026-61936 (Missing authorization in Windows Defender Firewall Service
allows an a ...)
+ TODO: check
+CVE-2026-61934 (Use after free in Windows Bind Filter Driver allows an
authorized atta ...)
+ TODO: check
+CVE-2026-61933 (Out-of-bounds read in Windows DWM Core Library allows an
authorized at ...)
+ TODO: check
+CVE-2026-61932 (Access of resource using incompatible type ('type confusion')
in Windo ...)
+ TODO: check
+CVE-2026-61930 (Heap-based buffer overflow in Windows Kernel allows an
authorized atta ...)
+ TODO: check
+CVE-2026-61929 (Use after free in Windows Kernel allows an authorized attacker
to elev ...)
+ TODO: check
+CVE-2026-61928 (Cleartext storage of sensitive information in Windows Hello
allows an ...)
+ TODO: check
+CVE-2026-61927 (Use after free in Windows Bind Filter Driver allows an
authorized atta ...)
+ TODO: check
+CVE-2026-61926 (Heap-based buffer overflow in Windows USB Driver allows an
authorized ...)
+ TODO: check
+CVE-2026-61925 (Incorrect authorization in Windows Installer allows an
authorized atta ...)
+ TODO: check
+CVE-2026-61924 (Out-of-bounds read in Remote Desktop Client allows an
unauthorized att ...)
+ TODO: check
+CVE-2026-61923 (Heap-based buffer overflow in Windows Display Enhancement
Service allo ...)
+ TODO: check
+CVE-2026-61921 (Out-of-bounds read in Remote Desktop Client allows an
unauthorized att ...)
+ TODO: check
+CVE-2026-61920 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-61918 (Out-of-bounds read in Remote Desktop Client allows an
unauthorized att ...)
+ TODO: check
+CVE-2026-61368 (Heap-based buffer overflow in Windows Hyper-V allows an
authorized att ...)
+ TODO: check
+CVE-2026-61367 (Missing authentication for critical function in Windows Remote
Desktop ...)
+ TODO: check
+CVE-2026-61366 (Double free in Windows Network Connection Broker allows an
authorized ...)
+ TODO: check
+CVE-2026-61365 (Missing authentication for critical function in Windows Remote
Desktop ...)
+ TODO: check
+CVE-2026-61364 (Missing authentication for critical function in Windows Remote
Desktop ...)
+ TODO: check
+CVE-2026-61363 (Heap-based buffer overflow in Remote Desktop Client allows an
unauthor ...)
+ TODO: check
+CVE-2026-61361 (Use after free in Windows DHCP Client allows an authorized
attacker to ...)
+ TODO: check
+CVE-2026-61360 (Untrusted pointer dereference in Windows GDI allows an
authorized atta ...)
+ TODO: check
+CVE-2026-61359 (Heap-based buffer overflow in Windows Storage allows an
authorized att ...)
+ TODO: check
+CVE-2026-61358 (Improper link resolution before file access ('link following')
in Wind ...)
+ TODO: check
+CVE-2026-61357 (Use after free in Application Information Services allows an
authorize ...)
+ TODO: check
+CVE-2026-61356 (Missing authentication for critical function in Windows Remote
Desktop ...)
+ TODO: check
+CVE-2026-61355 (Heap-based buffer overflow in Windows Sensor Data Service
allows an au ...)
+ TODO: check
+CVE-2026-61353 (Heap-based buffer overflow in Windows Telephony Service allows
an auth ...)
+ TODO: check
+CVE-2026-61352 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-61350 (Buffer over-read in Windows NTFS allows an unauthorized
attacker to di ...)
+ TODO: check
+CVE-2026-61349 (Use after free in Windows Work Folder Service allows an
authorized att ...)
+ TODO: check
+CVE-2026-61348 (Use after free in Windows Ancillary Function Driver for
WinSock allows ...)
+ TODO: check
+CVE-2026-61347 (Buffer over-read in Windows Event Logging Service allows an
authorized ...)
+ TODO: check
+CVE-2026-61346 (Use after free in Windows Graphics Kernel allows an authorized
attacke ...)
+ TODO: check
+CVE-2026-61345 (Null pointer dereference in Microsoft Remote Registry Service
allows a ...)
+ TODO: check
+CVE-2026-59701 (A vulnerability has been identified in Simcenter Femap (All
versions < ...)
+ TODO: check
+CVE-2026-59700 (A vulnerability has been identified in Simcenter Femap (All
versions < ...)
+ TODO: check
+CVE-2026-59693 (A vulnerability has been identified in Desigo DXR2 (All
versions < V01 ...)
+ TODO: check
+CVE-2026-59138 (Null pointer dereference in Microsoft Remote Registry Service
allows a ...)
+ TODO: check
+CVE-2026-59137 (Use of uninitialized resource in Windows Event Logging Service
allows ...)
+ TODO: check
+CVE-2026-59136 (Use of uninitialized resource in Microsoft COM for Windows
allows an a ...)
+ TODO: check
+CVE-2026-59135 (Weak authentication in Microsoft Windows Search Component
allows an au ...)
+ TODO: check
+CVE-2026-59134 (Heap-based buffer overflow in Remote Desktop Client allows an
unauthor ...)
+ TODO: check
+CVE-2026-59133 (Execution with unnecessary privileges in Microsoft High
Performance Co ...)
+ TODO: check
+CVE-2026-59132 (Null pointer dereference in Windows TCP/IP allows an
unauthorized atta ...)
+ TODO: check
+CVE-2026-59131 (No cwe for this issue in AMD Zen allows an authorized attacker
to disc ...)
+ TODO: check
+CVE-2026-59130 (No cwe for this issue in AMD Zen allows an authorized attacker
to disc ...)
+ TODO: check
+CVE-2026-59128 (Out-of-bounds read in Windows Encrypting File System (EFS)
allows an a ...)
+ TODO: check
+CVE-2026-59127 (Integer overflow or wraparound in Windows Installer allows an
authoriz ...)
+ TODO: check
+CVE-2026-59126 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-59125 (Use after free in Virtual Hard Disk (VHD) Miniport Driver
allows an au ...)
+ TODO: check
+CVE-2026-59124 (Deserialization of untrusted data in Microsoft High
Performance Comput ...)
+ TODO: check
+CVE-2026-59122 (Concurrent execution using shared resource with improper
synchronizati ...)
+ TODO: check
+CVE-2026-59119 (Incorrect default permissions in Microsoft PowerShell allows
an author ...)
+ TODO: check
+CVE-2026-59113 (Missing authorization in Visual Studio Code allows an
unauthorized att ...)
+ TODO: check
+CVE-2026-59086 (A vulnerability has been identified in Simcenter Nastran (All
versions ...)
+ TODO: check
+CVE-2026-58651 (Heap-based buffer overflow in Microsoft Office Word allows an
unauthor ...)
+ TODO: check
+CVE-2026-58650 (Authorization bypass through user-controlled key in Visual
Studio Code ...)
+ TODO: check
+CVE-2026-58641 (Integer overflow or wraparound in .NET allows an unauthorized
attacker ...)
+ TODO: check
+CVE-2026-58639 (Server-side request forgery (ssrf) in Microsoft Office
SharePoint allo ...)
+ TODO: check
+CVE-2026-58612 (Server-side request forgery (ssrf) in Microsoft PowerShell
Core allows ...)
+ TODO: check
+CVE-2026-58231 (SAP Commerce Cloud allows an unauthenticated attacker to abuse
a defau ...)
+ TODO: check
+CVE-2026-58115 (A vulnerability has been identified in SIMATIC IoT2050
Advanced (6ES76 ...)
+ TODO: check
+CVE-2026-57263 (A vulnerability has been identified in LOGO! Soft Comfort (All
version ...)
+ TODO: check
+CVE-2026-57262 (A vulnerability has been identified in LOGO! Soft Comfort (All
version ...)
+ TODO: check
+CVE-2026-57105 (Improper neutralization of input during web page generation
('cross-si ...)
+ TODO: check
+CVE-2026-57104 (Improper neutralization of input during web page generation
('cross-si ...)
+ TODO: check
+CVE-2026-56721 (CamaleonCMS version 2.9.2 and earlier contains a privilege
escalation ...)
+ TODO: check
+CVE-2026-56720 (CamaleonCMS version 2.9.2 and earlier contains a missing
authorization ...)
+ TODO: check
+CVE-2026-56179 (Origin validation error in Windows Network Address Translation
(NAT) a ...)
+ TODO: check
+CVE-2026-56174 (Untrusted search path in Windows Narrator Braille allows an
authorized ...)
+ TODO: check
+CVE-2026-54984 (Heap-based buffer overflow in Windows Imaging Component allows
an unau ...)
+ TODO: check
+CVE-2026-54981 (Inclusion of functionality from untrusted control sphere in
Visual Stu ...)
+ TODO: check
+CVE-2026-54123 (Exposure of sensitive information to an unauthorized actor in
Microsof ...)
+ TODO: check
+CVE-2026-54113 (Allocation of resources without limits or throttling in
Windows Kernel ...)
+ TODO: check
+CVE-2026-53416 (Path traversal in Zoom VDI Client and Plugins may allow an
authenticat ...)
+ TODO: check
+CVE-2026-53415 (Use after Free in the annotator function of Zoom Clients may
allow a m ...)
+ TODO: check
+CVE-2026-53414 (Missing bounds check in the annotator function of Zoom Clients
allows ...)
+ TODO: check
+CVE-2026-53413 (Missing bounds check in the annotator function of Zoom Clients
allows ...)
+ TODO: check
+CVE-2026-51584 (An issue in usememos v0.27.1 allows a remote attacker to
achieve accou ...)
+ TODO: check
+CVE-2026-51583 (An issue in usememos through v0.30.0 allows a remote
authenticated att ...)
+ TODO: check
+CVE-2026-50516 (Missing authentication for critical function in Microsoft
Azure Kubern ...)
+ TODO: check
+CVE-2026-50472 (Heap-based buffer overflow in Windows LUAFV allows an
authorized attac ...)
+ TODO: check
+CVE-2026-50237 (A Server-Side Request Forgery and supply chain flaw was found
in the O ...)
+ TODO: check
+CVE-2026-50236 (An authenticated SSRF flaw was found in the OpenShift Console
Dev Cons ...)
+ TODO: check
+CVE-2026-50064 (A vulnerability has been identified in Solid Edge SE2025 (All
versions ...)
+ TODO: check
+CVE-2026-50063 (A vulnerability has been identified in Solid Edge SE2025 (All
versions ...)
+ TODO: check
+CVE-2026-50062 (A vulnerability has been identified in Solid Edge SE2025 (All
versions ...)
+ TODO: check
+CVE-2026-50061 (A vulnerability has been identified in Solid Edge SE2025 (All
versions ...)
+ TODO: check
+CVE-2026-50060 (A vulnerability has been identified in Solid Edge SE2025 (All
versions ...)
+ TODO: check
+CVE-2026-50059 (A vulnerability has been identified in Solid Edge SE2025 (All
versions ...)
+ TODO: check
+CVE-2026-50058 (A vulnerability has been identified in Solid Edge SE2025 (All
versions ...)
+ TODO: check
+CVE-2026-49179 (Improper neutralization of special elements used in a command
('comman ...)
+ TODO: check
+CVE-2026-48809 (python-engineio is a Python implementation of the Engine.IO
realtime c ...)
+ TODO: check
+CVE-2026-48802 (python-engineio is a Python implementation of the Engine.IO
realtime c ...)
+ TODO: check
+CVE-2026-48790 (Turso CLI is the command line interface (CLI) to the
open-source datab ...)
+ TODO: check
+CVE-2026-48771 (ishankportfolio is a portfolio website. Prior to version
1.0.1, contac ...)
+ TODO: check
+CVE-2026-48767 (TypeBot is a chatbot builder tool. Versions prior to 3.17.0
allow a lo ...)
+ TODO: check
+CVE-2026-48766 (TypeBot is a chatbot builder tool. Versions prior to 3.17.0
allow a lo ...)
+ TODO: check
+CVE-2026-48495 (TypeBot is a chatbot builder tool. Prior to version 3.17.0,
the Google ...)
+ TODO: check
+CVE-2026-48494 (TypeBot is a chatbot builder tool. In version 3.16.1, an
authenticated ...)
+ TODO: check
+CVE-2026-48483 (TypeBot is a chatbot builder tool. Prior to version 3.17.0,
Typebot's ...)
+ TODO: check
+CVE-2026-48447 (Lightroom Classic is affected by an Incorrect Authorization
vulnerabil ...)
+ TODO: check
+CVE-2026-48446 (CAI Content Credentials is affected by an Improper Limitation
of a Pat ...)
+ TODO: check
+CVE-2026-48445 (CAI Content Credentials is affected by an Integer Overflow or
Wraparou ...)
+ TODO: check
+CVE-2026-48444 (CAI Content Credentials is affected by an Integer Overflow or
Wraparou ...)
+ TODO: check
+CVE-2026-48443 (CAI Content Credentials is affected by an Uncontrolled
Resource Consum ...)
+ TODO: check
+CVE-2026-48442 (CAI Content Credentials is affected by an Improper Limitation
of a Pat ...)
+ TODO: check
+CVE-2026-48441 (Lightroom Classic is affected by an Improper Limitation of a
Pathname ...)
+ TODO: check
+CVE-2026-48440 (ColdFusion is affected by a Heap-based Buffer Overflow
vulnerability t ...)
+ TODO: check
+CVE-2026-48439 (CAI Content Credentials is affected by an Uncontrolled
Resource Consum ...)
+ TODO: check
+CVE-2026-48438 (CAI Content Credentials is affected by a NULL Pointer
Dereference vuln ...)
+ TODO: check
+CVE-2026-48437 (CAI Content Credentials is affected by an Improper Certificate
Validat ...)
+ TODO: check
+CVE-2026-48436 (CAI Content Credentials is affected by an Improper Input
Validation vu ...)
+ TODO: check
+CVE-2026-48435 (CAI Content Credentials is affected by an Integer Underflow
(Wrap or W ...)
+ TODO: check
+CVE-2026-48434 (CAI Content Credentials is affected by an Uncontrolled
Resource Consum ...)
+ TODO: check
+CVE-2026-48416 (Adobe Commerce is affected by an Incorrect Authorization
vulnerability ...)
+ TODO: check
+CVE-2026-48415 (Adobe Commerce is affected by an Incorrect Authorization
vulnerability ...)
+ TODO: check
+CVE-2026-48414 (Adobe Commerce is affected by a stored Cross-Site Scripting
(XSS) vuln ...)
+ TODO: check
+CVE-2026-48413 (Adobe Commerce is affected by a stored Cross-Site Scripting
(XSS) vuln ...)
+ TODO: check
+CVE-2026-48412 (Adobe Commerce is affected by an Incorrect Authorization
vulnerability ...)
+ TODO: check
+CVE-2026-48411 (Adobe Commerce is affected by an Incorrect Authorization
vulnerability ...)
+ TODO: check
+CVE-2026-48410 (Lightroom Classic is affected by an out-of-bounds write
vulnerability ...)
+ TODO: check
+CVE-2026-48409 (Lightroom Classic is affected by an out-of-bounds write
vulnerability ...)
+ TODO: check
+CVE-2026-48408 (Lightroom Classic is affected by an out-of-bounds write
vulnerability ...)
+ TODO: check
+CVE-2026-48407 (Lightroom Classic is affected by an out-of-bounds write
vulnerability ...)
+ TODO: check
+CVE-2026-48406 (Lightroom Classic is affected by an out-of-bounds write
vulnerability ...)
+ TODO: check
+CVE-2026-48405 (Lightroom Classic is affected by an out-of-bounds write
vulnerability ...)
+ TODO: check
+CVE-2026-48404 (Lightroom Classic is affected by an out-of-bounds write
vulnerability ...)
+ TODO: check
+CVE-2026-48397 (Lightroom Classic is affected by a Deserialization of
Untrusted Data v ...)
+ TODO: check
+CVE-2026-48387 (CAI Content Credentials is affected by an Integer Overflow or
Wraparou ...)
+ TODO: check
+CVE-2026-48386 (ColdFusion is affected by a Use of a Broken or Risky
Cryptographic Alg ...)
+ TODO: check
+CVE-2026-48385 (ColdFusion is affected by an Improper Neutralization of
Special Elemen ...)
+ TODO: check
+CVE-2026-48384 (ColdFusion is affected by an Improper Input Validation
vulnerability t ...)
+ TODO: check
+CVE-2026-48381 (Adobe Campaign Classic (ACC) is affected by an Improper
Neutralization ...)
+ TODO: check
+CVE-2026-48376 (is affected by an Improper Encoding or Escaping of Output
vulnerabilit ...)
+ TODO: check
+CVE-2026-48375 (ColdFusion is affected by an Incorrect Authorization
vulnerability tha ...)
+ TODO: check
+CVE-2026-48362 (ColdFusion is affected by an Improper Neutralization of
Special Elemen ...)
+ TODO: check
+CVE-2026-48056 (Streambert is a cross-platform Electron Desktop App to stream
and down ...)
+ TODO: check
+CVE-2026-48046 (Streambert is a cross-platform Electron Desktop App to stream
and down ...)
+ TODO: check
+CVE-2026-47940 (Lightroom Classic is affected by an Integer Overflow or
Wraparound vul ...)
+ TODO: check
+CVE-2026-47922 (CAI Content Credentials is affected by a Server-Side Request
Forgery ( ...)
+ TODO: check
+CVE-2026-47705 (TypeBot is a chatbot builder tool. Version 3.16.1 has a CSV
injection ...)
+ TODO: check
+CVE-2026-47704 (TypeBot is a chatbot builder tool. Prior to version 3.17.0, an
authent ...)
+ TODO: check
+CVE-2026-47702 (TypeBot is a chatbot builder tool. In version 3.16.1, API
tokens (bear ...)
+ TODO: check
+CVE-2026-47299 (Improper neutralization of special elements used in a command
('comman ...)
+ TODO: check
+CVE-2026-47285 (Improper neutralization of special elements used in a command
('comman ...)
+ TODO: check
+CVE-2026-46670 (YesWiki is a wiki system written in PHP. Prior to version
4.6.4, an u ...)
+ TODO: check
+CVE-2026-43606 (Observable Timing Discrepancy in the AMD Vitis Libraries ECDSA
secp256 ...)
+ TODO: check
+CVE-2026-42976 (Missing authentication for critical function in Windows RPC
API allows ...)
+ TODO: check
+CVE-2026-42142 (TypeBot is a chatbot builder tool. Prior to version 3.17.0,
the `handl ...)
+ TODO: check
+CVE-2026-40375 (Missing authorization in Dynamics Business Central allows an
authorize ...)
+ TODO: check
+CVE-2026-39452 (Protection mechanism failure for some Intel(R) Transfer
Learning Tool ...)
+ TODO: check
+CVE-2026-35502 (Deserialization of untrusted data for some Intel(R) Extension
for PyTo ...)
+ TODO: check
+CVE-2026-34635 (is affected by a Use of Hard-coded Cryptographic Key
vulnerability tha ...)
+ TODO: check
+CVE-2026-34175 (Uncontrolled search path for some
Hardware-Aware-Automated-MachineLear ...)
+ TODO: check
+CVE-2026-33922 (A path traversal vulnerability was discovered in the Offline
archives ...)
+ TODO: check
+CVE-2026-33921 (The Windows installer deployed Npcap leaving its access
restriction op ...)
+ TODO: check
+CVE-2026-32791 (Untrusted search path for some Intel(R) Performance Counter
Monitor (I ...)
+ TODO: check
+CVE-2026-32788 (Uncontrolled search path for some Approximate Bayesian
Inference Frame ...)
+ TODO: check
+CVE-2026-32677 (Path traversal for some gaudi-container-runtime before version
1.24.0 ...)
+ TODO: check
+CVE-2026-28757 (Protection mechanism failure for some Intel(R) Workload
Services Frame ...)
+ TODO: check
+CVE-2026-28729 (Integer overflow in the UEFI firmware for the Intel(R) Slim
Bootloader ...)
+ TODO: check
+CVE-2026-28707 (Protection mechanism failure for some LLM-on-Ray before
version 1.0 wi ...)
+ TODO: check
+CVE-2026-28700 (Uncontrolled search path for some EquiTriton before version
f5ddbb5 wi ...)
+ TODO: check
+CVE-2026-27765 (Improper input validation for some vLLM Hardware Plugin for
Intel(R) G ...)
+ TODO: check
+CVE-2026-27302 (Adobe Campaign Classic (ACC) is affected by an Incorrect
Authorization ...)
+ TODO: check
+CVE-2026-25652 (is affected by an Incorrect Authorization vulnerability that
could res ...)
+ TODO: check
+CVE-2026-25194 (Out-of-bounds write in the firmware for the Intel(R) Slim
Bootloader m ...)
+ TODO: check
+CVE-2026-24911 (Stack-based buffer overflow for some Intel(R) PROSet/Wireless
WiFi Sof ...)
+ TODO: check
+CVE-2026-24693 (Protection mechanism failure for some Intel(R) oneCCL Bindings
for PyT ...)
+ TODO: check
+CVE-2026-24099 (Use after free for some Intel(R) PROSet/Wireless WiFi Software
for Win ...)
+ TODO: check
+CVE-2026-22887 (Improper buffer restrictions for some Intel(R) PROSet/Wireless
WiFi So ...)
+ TODO: check
+CVE-2026-21400 (Protection mechanism failure for some Intel(R) AI Reference
Models bef ...)
+ TODO: check
+CVE-2026-21399 (Heap-based buffer overflow for the Intel(R) Open Volume Kernel
Library ...)
+ TODO: check
+CVE-2026-21387 (Protection mechanism failure for some Intel(R) LLM Library for
PyTorch ...)
+ TODO: check
+CVE-2026-21279 (is affected by an Improper Input Validation vulnerability that
could r ...)
+ TODO: check
+CVE-2026-21273 (is affected by an Improper Input Validation vulnerability that
could r ...)
+ TODO: check
+CVE-2026-21269 (is affected by a stored Cross-Site Scripting (XSS)
vulnerability that ...)
+ TODO: check
+CVE-2026-20913 (Improper input validation for some Intel(R) Neural Compressor
software ...)
+ TODO: check
+CVE-2026-20908 (Time-of-check time-of-use race condition for the Intel(R) NPU
Driver f ...)
+ TODO: check
+CVE-2026-20906 (Protection mechanism failure for some Intel(R) Neural
Compressor softw ...)
+ TODO: check
+CVE-2026-20903 (Protection mechanism failure for some Intel(R) AI Containers
before ve ...)
+ TODO: check
+CVE-2026-20898 (Improper access control in the firmware for some in Alias
Checking Tru ...)
+ TODO: check
+CVE-2026-20891 (Improper authentication for some Intel(R) PROSet/Wireless WiFi
Softwar ...)
+ TODO: check
+CVE-2026-20890 (Improper privilege management for some Intel(R)
PROSet/Wireless WiFi S ...)
+ TODO: check
+CVE-2026-20886 (Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi
Software fo ...)
+ TODO: check
+CVE-2026-20885 (Improper authentication in the Intel(R) TDX module for some
Intel(R) p ...)
+ TODO: check
+CVE-2026-20878 (Null pointer dereference for some Intel(R) PROSet/Wireless
WiFi Softwa ...)
+ TODO: check
+CVE-2026-20799 (Untrusted search path for some Battery Life Diagnostic Tool
software b ...)
+ TODO: check
+CVE-2026-20795 (Improper buffer restrictions for some Intel(R) PROSet/Wireless
WiFi So ...)
+ TODO: check
+CVE-2026-20789 (Improper access control for some Intel(R) PROSet/Wireless WiFi
Softwar ...)
+ TODO: check
+CVE-2026-20787 (Null pointer dereference for some Intel(R) PROSet/Wireless
WiFi Softwa ...)
+ TODO: check
+CVE-2026-20786 (Out-of-bounds read for the Intel(R) NPU Driver for all
versions within ...)
+ TODO: check
+CVE-2026-20783 (Improper conditions check in the firmware for the Intel(R) NPU
Driver ...)
+ TODO: check
+CVE-2026-20780 (Uncontrolled resource consumption for some Intel(R)
PROSet/Wireless Wi ...)
+ TODO: check
+CVE-2026-20778 (Out-of-bounds read for some Intel(R) PROSet/Wireless WiFi
Software for ...)
+ TODO: check
+CVE-2026-20776 (Improper conditions check for some Intel(R) PROSet/Wireless
WiFi Softw ...)
+ TODO: check
+CVE-2026-20775 (Uncaught exception for some Intel(R) TDX modules within Ring
0: Trust ...)
+ TODO: check
+CVE-2026-20770 (Protection mechanism failure for some Cluster Management
Toolkit for K ...)
+ TODO: check
+CVE-2026-20769 (Improper conditions check for the Intel(R) NPU Driver for all
versions ...)
+ TODO: check
+CVE-2026-20765 (Incorrect comparison for some Intel(R) TDX Guest software
before versi ...)
+ TODO: check
+CVE-2026-20763 (Incorrect calculation for some Intel(R) TDX Guest software
before vers ...)
+ TODO: check
+CVE-2026-20755 (Protection mechanism failure for some LLM Scaler software
within Ring ...)
+ TODO: check
+CVE-2026-20752 (Improper authentication for some Intel(R) PROSet/Wireless WiFi
Softwar ...)
+ TODO: check
+CVE-2026-20749 (Out-of-bounds read for some Intel(R) PROSet/Wireless WiFi
Software wit ...)
+ TODO: check
+CVE-2026-20747 (Improper conditions check for some Intel(R) PROSet/Wireless
WiFi Softw ...)
+ TODO: check
+CVE-2026-20745 (Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi
Software fo ...)
+ TODO: check
+CVE-2026-20741 (Improper access control for some Intel(R) PROSet/Wireless WiFi
Softwar ...)
+ TODO: check
+CVE-2026-20739 (Improper conditions check for some Intel(R) PROSet/Wireless
WiFi Softw ...)
+ TODO: check
+CVE-2026-20737 (Exposure of sensitive information to an unauthorized actor for
some In ...)
+ TODO: check
+CVE-2026-20734 (Improper initialization in some firmware for some Intel(R)
Active Mana ...)
+ TODO: check
+CVE-2026-20731 (Improper buffer restrictions for the Intel(R) NPU Driver for
all versi ...)
+ TODO: check
+CVE-2026-20728 (Protection mechanism failure for some Intel Extension for
TensorFlow s ...)
+ TODO: check
+CVE-2026-20727 (Null pointer dereference for some Intel(R) PROSet/Wireless
WiFi Softwa ...)
+ TODO: check
+CVE-2026-20715 (Improper input validation in some firmware for some Intel(R)
Active Ma ...)
+ TODO: check
+CVE-2026-20712 (Incomplete cleanup in some UEFI firmware for some Intel(R)
reference p ...)
+ TODO: check
+CVE-2026-20708 (Insertion of sensitive information into log file in the
subsystem for ...)
+ TODO: check
+CVE-2026-20705 (Insecure storage of sensitive information in the Intel(R) TDX
module f ...)
+ TODO: check
+CVE-2026-20702 (Protection mechanism failure for some Intel(R) Data Center
Attestation ...)
+ TODO: check
+CVE-2026-20349 (A vulnerability in the Remote Access SSL VPN service for Cisco
Secure ...)
+ TODO: check
+CVE-2026-19546 (A flaw was found in DBI. This is a fix for a partial fix for
CVE-2026- ...)
+ TODO: check
+CVE-2026-19539 (Authorization Bypass Through User-Controlled Key in the ticket
managem ...)
+ TODO: check
+CVE-2026-19519 (A flaw was found in claircore's RPM package scanner. Crafted
RPM heade ...)
+ TODO: check
+CVE-2026-19434 (Cross-site Scripting in the finding renderer in maalfer
Pentestify bef ...)
+ TODO: check
+CVE-2026-19418 (The referrer enforcement introduced with
TYPO3-CORE-SA-2020-006 (CVE-2 ...)
+ TODO: check
+CVE-2026-19078 (A flaw was found in the oauth-server component. This open
redirect vul ...)
+ TODO: check
+CVE-2026-18972 (An authenticated attacker can spoof another GUI user's
identity by sen ...)
+ TODO: check
+CVE-2026-18860 (Velociraptor allows multi-tenant deployments named "Orgs". By
default ...)
+ TODO: check
+CVE-2026-18712 (An issue in MongoDB Server's Queryable Encryption maintenance
operatio ...)
+ TODO: check
+CVE-2026-18711 (An issue in MongoDB Server's query execution engine could
allow an aut ...)
+ TODO: check
+CVE-2026-18709 (An issue in MongoDB Server could allow an authenticated user
with dire ...)
+ TODO: check
+CVE-2026-18708 (An issue in MongoDB Server's JavaScript scripting engine could
allow a ...)
+ TODO: check
+CVE-2026-18707 (An issue in MongoDB Server could allow an authenticated user,
includin ...)
+ TODO: check
+CVE-2026-18706 (An issue in MongoDB Server's $graphLookup aggregation stage
could allo ...)
+ TODO: check
+CVE-2026-18705 (An issue in MongoDB Server's Atlas Vector Search feature could
allow a ...)
+ TODO: check
+CVE-2026-18704 (An issue in MongoDB Server's aggregation framework could allow
an auth ...)
+ TODO: check
+CVE-2026-18703 (An issue in MongoDB Server could allow a party with a valid
client cer ...)
+ TODO: check
+CVE-2026-18702 (An issue in MongoDB Server could allow an authenticated user
with limi ...)
+ TODO: check
+CVE-2026-18701 (An issue in MongoDB Server's query subsystem could allow an
authentica ...)
+ TODO: check
+CVE-2026-18700 (An issue in MongoDB Server's geospatial validation could allow
an auth ...)
+ TODO: check
+CVE-2026-18699 (An issue in MongoDB Server's query planner could allow an
authenticate ...)
+ TODO: check
+CVE-2026-18698 (An issue in MongoDB Server could allow an authenticated user
with a li ...)
+ TODO: check
+CVE-2026-18697 (An issue in MongoDB Server's aggregation framework could allow
an unau ...)
+ TODO: check
+CVE-2026-18696 (An issue in MongoDB Server's applyOps command could allow an
authentic ...)
+ TODO: check
+CVE-2026-18695 (An issue in MongoDB Server's handling of certain query
predicates agai ...)
+ TODO: check
+CVE-2026-18694 (An issue in MongoDB Server's geospatial query processing could
allow a ...)
+ TODO: check
+CVE-2026-18693 (An issue in MongoDB Server's handling of timeseries
collections could ...)
+ TODO: check
+CVE-2026-18692 (An issue in MongoDB Server's handling of timeseries bucket
lifecycle c ...)
+ TODO: check
+CVE-2026-18691 (An issue in MongoDB Server's intra-cluster connection setup
could allo ...)
+ TODO: check
+CVE-2026-18690 (An issue in MongoDB Server could allow an authenticated user
with a li ...)
+ TODO: check
+CVE-2026-18688 (An issue in MongoDB Server's aggregation framework could allow
an auth ...)
+ TODO: check
+CVE-2026-18687 (MongoDB Server's handling of a Queryable Encryption
maintenance operat ...)
+ TODO: check
+CVE-2026-18640 (The NewNotebook API does not sufficiently sanitize its
parameters allo ...)
+ TODO: check
+CVE-2026-18639 (When Velociraptor is configured to use an OIDC IdP for
authentication, ...)
+ TODO: check
+CVE-2026-18638 (Any authenticated Velociraptor user \u2014 including one
holding only ...)
+ TODO: check
+CVE-2026-18636 (The Velociraptor gRPC API has a VFSGetBuffer endpoint which
allows rea ...)
+ TODO: check
+CVE-2026-18635 (Velociraptor's VQL has a query() plugin which allows running a
VQL que ...)
+ TODO: check
+CVE-2026-18247 (A Cross Site Scripting (XSS) vulnerability in the Web Portals
of AtHoc ...)
+ TODO: check
+CVE-2026-18129 (Cleartext transmission of sensitive information in the Core of
Ivanti ...)
+ TODO: check
+CVE-2026-18127 (External control of a filename in the Core of Ivanti Endpoint
Manager ...)
+ TODO: check
+CVE-2026-18125 (An out-of-boundsread intheAgent ofIvanti Endpoint
Managerbeforeversion ...)
+ TODO: check
+CVE-2026-17535 (Velociraptor's NTFS parsing library mishandles several out of
bound an ...)
+ TODO: check
+CVE-2026-17061 (A Deserialization of Untrusted Data vulnerability affecting
SIMULIA Ex ...)
+ TODO: check
+CVE-2026-15567 (A flaw was found in Wildfly. A remote unauthenticated attacker
can tri ...)
+ TODO: check
+CVE-2026-15565 (A flaw was found in Undertow. A remote attacker can cause Out
of Memor ...)
+ TODO: check
+CVE-2026-15563 (A flaw was found in EAP's IIOP. The listener's NameService
would accep ...)
+ TODO: check
+CVE-2026-15562 (A flaw was found in EAP's jboss-remoting. A remote
unauthenticated att ...)
+ TODO: check
+CVE-2026-15561 (A flaw was found in EAP's undertow http/1.1 chunked-transfer
decoder. ...)
+ TODO: check
+CVE-2026-15560 (when EAP runs with -secmgr, the openjdk-orb's JDKBridge
honours attack ...)
+ TODO: check
+CVE-2026-15556 (A flaw was found in Picketlink's SP signature validation; a
SAML respo ...)
+ TODO: check
+CVE-2026-15555 (A flaw was found in JBoss marshalling. The Infinispan session
replicat ...)
+ TODO: check
+CVE-2026-15554 (the Undertow AJP listener honours forged ssl_cert and is_ssl
AJP attri ...)
+ TODO: check
+CVE-2026-15426 (The AcyMailing \u2013 An Ultimate Newsletter Plugin and
Marketing Auto ...)
+ TODO: check
+CVE-2026-14180 (A flaw was found in the ChunkReader component of the Undertow
HTTP ser ...)
+ TODO: check
+CVE-2026-13739 (A legacy endpoint in Command Center contained an
unauthenticated serve ...)
+ TODO: check
+CVE-2026-13738 (CommServe contained an authorization bypass vulnerability
affecting a ...)
+ TODO: check
+CVE-2026-13737 (CommServe contained an allowlist bypass vulnerability
affecting comman ...)
+ TODO: check
+CVE-2026-12571 (An authentication bypass in ManageEngine DDI Central's
password-reset ...)
+ TODO: check
+CVE-2026-11814 (A command injection vulnerability in the listed NETGEAR models
allows ...)
+ TODO: check
+CVE-2026-11739 (A command injection vulnerability in certain affected NETGEAR
Nighthaw ...)
+ TODO: check
+CVE-2026-11738 (Insufficient input validation vulnerability in thelisted
NETGEAR model ...)
+ TODO: check
+CVE-2026-11737 (Insufficient input validation vulnerability in thelisted
NETGEAR mode ...)
+ TODO: check
+CVE-2026-11736 (A stack-based buffer overflow vulnerability affects certain
NETGEAR mo ...)
+ TODO: check
+CVE-2026-11735 (A stack-based buffer overflow vulnerability affects the listed
NETGEAR ...)
+ TODO: check
+CVE-2026-11734 (A buffer overflow vulnerability in the listed NETGEAR models
allows an ...)
+ TODO: check
+CVE-2026-11733 (A buffer overflow vulnerability in the listed NETGEAR models
allows a ...)
+ TODO: check
+CVE-2026-10579 (A flaw was found in Picketlink Federation SAML; the unsolcited
respons ...)
+ TODO: check
+CVE-2026-0465 (A Use\u2011After\u2011Free (UAF) vulnerability in the AMD
Ryzen\u2122 ...)
+ TODO: check
+CVE-2025-8087 (A DLL hijacking vulnerability in AMD Power Design Manager could
allow ...)
+ TODO: check
+CVE-2025-61970 (Weak permissions in the Vitis\u2122 Unified installation path
on local ...)
+ TODO: check
+CVE-2025-54512 (A DLL hijacking vulnerability within the AMD Ryzen Master
installation ...)
+ TODO: check
+CVE-2025-48506 (Uncontrolled search paths in Vitis\u2122 Unified installation
path on ...)
+ TODO: check
+CVE-2025-48505 (Weak permissions in the Vitis\u2122 Unified installation path
on local ...)
+ TODO: check
+CVE-2025-35987 (Omission of security-relevant information for some Intel(R)
Software G ...)
+ TODO: check
+CVE-2025-31356 (Insufficient verification of data authenticity for some
Intel(R) Trust ...)
+ TODO: check
+CVE-2025-31114 (Fooocus is an image generating software. In versions 2.5.5 and
prior, ...)
+ TODO: check
+CVE-2025-0046 (Incorrect directory permissions could allow a local user to
escalate t ...)
+ TODO: check
+CVE-2025-0041 (Uncontrolled search paths in the Vitis\u2122 Embedded Single
File Down ...)
+ TODO: check
+CVE-2023-54374
+ REJECTED
+CVE-2023-54373
+ REJECTED
+CVE-2023-54372
+ REJECTED
+CVE-2023-54371
+ REJECTED
+CVE-2023-54370
+ REJECTED
+CVE-2023-54369
+ REJECTED
+CVE-2023-54368
+ REJECTED
+CVE-2023-54367
+ REJECTED
+CVE-2022-50997 (Weaver (Fanwei) E-cology 8.0 and 9.0 contains a SQL injection
vulnerab ...)
+ TODO: check
+CVE-2022-50974
+ REJECTED
+CVE-2021-47995
+ REJECTED
+CVE-2021-47994
+ REJECTED
+CVE-2021-47993
+ REJECTED
+CVE-2021-47992
+ REJECTED
+CVE-2021-47991
+ REJECTED
+CVE-2021-47990
+ REJECTED
+CVE-2021-47989
+ REJECTED
+CVE-2021-47988
+ REJECTED
+CVE-2020-37265
+ REJECTED
+CVE-2020-37264
+ REJECTED
+CVE-2020-37263
+ REJECTED
+CVE-2020-37262
+ REJECTED
+CVE-2020-37261
+ REJECTED
+CVE-2020-37260
+ REJECTED
+CVE-2020-37259
+ REJECTED
+CVE-2020-37258
+ REJECTED
+CVE-2020-37257
+ REJECTED
+CVE-2016-20097 (Weaver (Fanwei) E-cology 8.0 contains a SQL injection
vulnerability in ...)
+ TODO: check
+CVE-2026-20707 (Hardware logic contains race conditions for some 3rd Gen
Intel(R) Xeon ...)
- intel-microcode <unfixed> (bug #1144158)
[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose
first in unstable, then likely point release)
NOTE:
https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
NOTE:
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01443.html
-CVE-2026-20901
+CVE-2026-20901 (Improper input validation for some Intel(R) Xeon(R) processors
within ...)
- intel-microcode <unfixed> (bug #1144158)
[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose
first in unstable, then likely point release)
NOTE:
https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
NOTE:
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01442.html
-CVE-2026-20713
+CVE-2026-20713 (Always-incorrect control flow implementation in some firmware
for some ...)
- intel-microcode <unfixed> (bug #1144158)
[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose
first in unstable, then likely point release)
NOTE:
https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
NOTE:
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01442.html
-CVE-2026-20760
+CVE-2026-20760 (Improper handling of overlap between protected memory ranges
in some m ...)
- intel-microcode <unfixed> (bug #1144158)
[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose
first in unstable, then likely point release)
NOTE:
https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
NOTE:
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01441.html
-CVE-2026-20716
+CVE-2026-20716 (Improper access control for some Intel(R) Processors within
Ring 3: Us ...)
- intel-microcode <unfixed> (bug #1144158)
[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose
first in unstable, then likely point release)
NOTE:
https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
NOTE:
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01435.html
-CVE-2025-35973
+CVE-2025-35973 (Improper handling of values for some Intel(R) Processors
within Ring 0 ...)
- intel-microcode <unfixed> (bug #1144158)
[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose
first in unstable, then likely point release)
NOTE:
https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
NOTE: https://www.cve.org/CVERecord?id=CVE-2025-35973
-CVE-2026-20917
+CVE-2026-20917 (Exposure of sensitive information caused by incorrect data
forwarding ...)
- intel-microcode <unfixed> (bug #1144158)
[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose
first in unstable, then likely point release)
NOTE:
https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
NOTE:
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01423.html
-CVE-2025-31938
+CVE-2025-31938 (Insufficient granularity of access control in some subsystem
for some ...)
- intel-microcode <unfixed> (bug #1144158)
[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose
first in unstable, then likely point release)
NOTE:
https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
NOTE:
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01404.html
-CVE-2025-31936
+CVE-2025-31936 (Improper handling of overlap between protected memory ranges
for some ...)
- intel-microcode <unfixed> (bug #1144158)
[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose
first in unstable, then likely point release)
NOTE:
https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
@@ -902,7 +2532,7 @@ CVE-2026-21058 (Improper input validation in Samsung
Contacts prior to SMR Aug-2
NOT-FOR-US: Samsung Mobile
CVE-2026-19433 (Authorization Bypass Through User-Controlled Key in the
contact manage ...)
TODO: check
-CVE-2026-19429 (Jenkins FilePath.untarFrom() in all versions, including those
with the ...)
+CVE-2026-19429 (Jenkins FilePath.untarFrom() does not validate symlink targets
in extr ...)
TODO: check
CVE-2026-19404 (A flaw was found in 389 Directory Server. The CleanAllRUV and
Abort Cl ...)
TODO: check
@@ -3183,7 +4813,7 @@ CVE-2026-11425 (Domoticz versions prior to 2026.3
contains a stored cross-site s
- domoticz <itp> (bug #899058)
CVE-2025-4438
REJECTED
-CVE-2026-66808
+CVE-2026-66808 (Deserialization of untrusted data in Microsoft Office
SharePoint allow ...)
NOT-FOR-US: hypershift-addon-operator
CVE-2026-9169 (DLL Search Order Hijacking in LUCID Vision Labs Arena SDK
1.0.80.49 on ...)
NOT-FOR-US: LUCID Vision Labs Arena SDK
@@ -3715,7 +5345,7 @@ CVE-2026-5855 (Contiki-NG's LwM2M TLV parser
lwm2m_tlv_read() in os/services/lwm
NOT-FOR-US: Contiki-NG
CVE-2026-5336 (The DataPress (Dataverse Integration) WordPress plugin before
2.91 doe ...)
NOT-FOR-US: WordPress plugin
-CVE-2026-59118 (Improper authorization in Microsoft Power Apps allows an
unauthorized ...)
+CVE-2026-59118 (Improper authorization in Copilot Cowork allows an
unauthorized attack ...)
NOT-FOR-US: Microsoft
CVE-2026-59115 ('.../...//' in Microsoft Entra Provisioning Service
(SyncFabric) allow ...)
NOT-FOR-US: Microsoft
@@ -24077,7 +25707,7 @@ CVE-2026-15007 (A denial of service vulnerability was
identified in GitHub Enter
NOT-FOR-US: Github Enterprise Server
CVE-2026-14871 (osTicket versions v1.18.3 and v1.17.7 contain a Broken Object
Level Au ...)
NOT-FOR-US: osTicket
-CVE-2026-13410 (Dancer::Plugin::Auth::Google versions through 0.07 for Perl
have TLS v ...)
+CVE-2026-13410 (Dancer::Plugin::Auth::Google versions before 0.08 for Perl
have TLS ve ...)
NOT-FOR-US: Dancer::Plugin::Auth::Google Perl module
CVE-2026-13082 (GD::SecurityImage versions through 1.75 for Perl use rand to
generate ...)
- libgd-securityimage-perl <unfixed> (bug #1142330)
@@ -83145,9 +84775,9 @@ CVE-2026-41476 (Deskflow is a keyboard and mouse
sharing app. Prior to 1.26.0.1
NOTE:
https://github.com/deskflow/deskflow/security/advisories/GHSA-3jp5-g964-cgmh
CVE-2026-41475 (BACnet Stack is a BACnet open source protocol stack C library
for embe ...)
NOT-FOR-US: BACnet Stack
-CVE-2026-41473 (CyberPanel versions prior to2.4.4 contain an authentication
bypass vul ...)
+CVE-2026-41473 (CyberPanel versions prior to2.4.5 contain an authentication
bypass vul ...)
NOT-FOR-US: CyberPanel
-CVE-2026-41472 (CyberPanel versions prior to2.4.4 contain a stored cross-site
scriptin ...)
+CVE-2026-41472 (CyberPanel versions prior to2.4.5 contain a stored cross-site
scriptin ...)
NOT-FOR-US: CyberPanel
CVE-2026-41433 (OpenTelemetry eBPF Instrumentation provides eBPF
instrumentation based ...)
NOT-FOR-US: OpenTelemetry
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/96ac874bd143894a67127a77dee5a94081ea17fa
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/96ac874bd143894a67127a77dee5a94081ea17fa
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits