| CVE-2026-81928 | NA | N/A | Net::DNS versions before 1.57 for Perl allow memory exhaustion via unbounded recursion in sig_data when re-enc… | 2026-09-02 |
| CVE-2026-84323 | MEDIUM | 5.3 | Missing authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had … | 2026-09-02 |
| CVE-2026-84324 | CRITICAL | 9.0 | Use after free in Proxy in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary… | 2026-09-02 |
| CVE-2026-84325 | NA | N/A | Improper input validation in DataTransfer in Google Chrome prior to 152.0.7977.75 allowed a remote attacker le… | 2026-09-02 |
| CVE-2026-84326 | HIGH | 8.8 | Uninitialized resource in V8 in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbi… | 2026-09-02 |
| CVE-2026-84327 | MEDIUM | 6.5 | Incorrect authorization in Autofill in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote att… | 2026-09-02 |
| CVE-2026-84328 | LOW | 3.1 | Missing authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had … | 2026-09-02 |
| CVE-2026-84329 | MEDIUM | 5.3 | Confused deputy in CredentialProvider in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote a… | 2026-09-02 |
| CVE-2026-84330 | MEDIUM | 5.4 | UI misrepresentation in FullScreen in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote atta… | 2026-09-02 |
| CVE-2026-84331 | LOW | 3.1 | Incorrect authorization in Actor in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had com… | 2026-09-02 |
| CVE-2026-84332 | NA | N/A | Incorrect authorization in SiteSettings in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to b… | 2026-09-02 |
| CVE-2026-84333 | CRITICAL | 9.6 | Use after free in Dawn in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to exec… | 2026-09-02 |
| CVE-2026-84334 | HIGH | 8.1 | Incorrect authorization in Chromoting in Google Chrome on on Windows prior to 152.0.7977.75 allowed a local at… | 2026-09-02 |
| CVE-2026-84335 | HIGH | 8.3 | Incorrect authorization in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had … | 2026-09-02 |
| CVE-2026-84347 | HIGH | 8.8 | Use after free in WebRTC in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrar… | 2026-09-02 |
| CVE-2026-84348 | MEDIUM | 6.5 | Information leak in MediaCapture in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to potentia… | 2026-09-02 |
| CVE-2026-84349 | HIGH | 8.3 | Use after free in Browser in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromise… | 2026-09-02 |
| CVE-2026-84350 | HIGH | 8.8 | Use after free in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social… | 2026-09-02 |
| CVE-2026-84351 | HIGH | 8.3 | Buffer overflow in GPU in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote attacker who had… | 2026-09-02 |
| CVE-2026-84352 | CRITICAL | 9.6 | Use after free in WebGL in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to exe… | 2026-09-02 |
| CVE-2026-84353 | CRITICAL | 9.6 | Use after free in Shared Tab Groups in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote att… | 2026-09-02 |
| CVE-2026-84354 | CRITICAL | 9.6 | Incorrect authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker levera… | 2026-09-02 |
| CVE-2026-84355 | LOW | 3.1 | Incorrect authorization in Navigation in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who ha… | 2026-09-02 |
| CVE-2026-84356 | NA | N/A | UI misrepresentation in FullScreen in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to spoof … | 2026-09-02 |
| CVE-2026-84357 | NA | N/A | Improper input validation in Omnibox in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leverag… | 2026-09-02 |
| CVE-2026-84358 | MEDIUM | 4.2 | Improper privilege management in Downloads in Google Chrome prior to 152.0.7977.75 allowed a remote attacker w… | 2026-09-02 |
| CVE-2026-84359 | LOW | 3.1 | Information leak in Skia in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised… | 2026-09-02 |
| CVE-2026-84425 | MEDIUM | 4.3 | A vulnerability was found in zhayujie CowAgent up to 2.1.3. This impacts the function BrowserTool of the file … | 2026-09-02 |
| CVE-2026-84427 | MEDIUM | 4.3 | A vulnerability was determined in zhayujie CowAgent up to 2.1.7. Affected is an unknown function of the file a… | 2026-09-02 |
| CVE-2026-84430 | MEDIUM | 6.3 | A security vulnerability has been detected in gouguoa up to 5.10.0/6.0.1. This vulnerability affects the funct… | 2026-09-02 |
| CVE-2026-84694 | HIGH | 8.8 | Coolify before 4.2.0 fails to properly escape environment variable key names in Docker commands executed over … | 2026-09-02 |
| CVE-2026-84695 | HIGH | 8.7 | BookStack before 26.05.4 contains a stored cross-site scripting vulnerability in the drawing upload endpoint t… | 2026-09-02 |
| CVE-2026-84696 | HIGH | 8.2 | Phison PS3111-S11 controller firmware versions through SBFQT1.3 expose privileged vendor unique commands over … | 2026-09-02 |
| CVE-2026-84697 | MEDIUM | 5.3 | Mailpit's IsInternalIP deny list function fails to block the Azure WireServer address 168.63.129.16 and the RF… | 2026-09-02 |
| CVE-2026-84698 | MEDIUM | 6.5 | PX4 Autopilot contains a heap buffer overflow vulnerability in the sd_bench command that writes a four-byte bl… | 2026-09-02 |
| CVE-2026-84699 | CRITICAL | 9.1 | Team Password Manager before 14.184.308 fails to enforce authentication requirements in the local account pass… | 2026-09-02 |
| CVE-2026-84700 | HIGH | 8.6 | PikiwiDB (Pika) v3.5.7 exposes an internal protobuf replication server on a port derived from the client port … | 2026-09-02 |
| CVE-2026-84701 | MEDIUM | 5.4 | NocoBase fails to sanitize rich text field values in the read renderer, allowing users with create permissions… | 2026-09-02 |
| CVE-2026-84702 | HIGH | 7.5 | facefusion through 3.6.1 fails to normalize job identifiers in get_job_file_name, allowing attackers to write … | 2026-09-02 |
| CVE-2026-82968 | MEDIUM | 6.4 | A flaw was found in the first-broker-login flow of the Keycloak identity management service. When a user links… | 2026-09-02 |
| CVE-2026-84431 | MEDIUM | 4.4 | A vulnerability was detected in AirAsia MOVE App up to 12.47.1 on Android. This issue affects the function com… | 2026-09-02 |
| CVE-2026-84437 | LOW | 3.5 | A vulnerability was found in OpenCart 4.1.0.3/4.1.0.4. The impacted element is an unknown function of the file… | 2026-09-02 |
| CVE-2026-84438 | LOW | 3.5 | A vulnerability was determined in OpenCart 4.1.0.3/4.1.0.4. This affects an unknown function of the file catal… | 2026-09-02 |
| CVE-2026-84484 | HIGH | 7.5 | ION-DTN versions before 4.2.0 contain an out-of-bounds read vulnerability in the decodeSdnv function that allo… | 2026-09-02 |
| CVE-2026-84485 | HIGH | 7.5 | APITable through 1.13.0-beta.1 exposes the internal organization loadOrSearch endpoint without authentication,… | 2026-09-02 |
| CVE-2026-84715 | HIGH | 8.8 | FeatherPanel versions before 1.3.7.10 fail to validate permissions in the SubuserController updateSubuser hand… | 2026-09-02 |
| CVE-2026-14957 | HIGH | 7.5 | In FIPS mode, Libreswan's add_decoded_cert() function calls CERT_ExtractPublicKey() and asserts that the resul… | 2026-09-02 |
| CVE-2026-14982 | HIGH | 8.1 | The WP File Download plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file pa… | 2026-09-02 |
| CVE-2026-84441 | HIGH | 7.3 | A security vulnerability has been detected in Piwigo up to 16.3.0. Affected by this issue is some unknown func… | 2026-09-02 |
| CVE-2026-84442 | MEDIUM | 4.4 | A vulnerability was identified in MapQuest Get Directions App 10.16.1 on Android. This vulnerability affects t… | 2026-09-02 |