| CVE-2026-84232 | MEDIUM | 5.4 | A flaw was found in pulpcore's content serving application. Files uploaded to Pulp file-type repositories are … | 2026-09-01 |
| CVE-2026-84267 | MEDIUM | 4.3 | A flaw was found in the SFTP backend in gvfs. When mounting a share, a malicious SFTP server can cause read_st… | 2026-09-01 |
| CVE-2026-84268 | HIGH | 8.8 | A flaw was found in the SFTP backend in gvfs. When mounting a share and reading a file, a malicious SFTP serve… | 2026-09-01 |
| CVE-2026-84269 | MEDIUM | 6.5 | A flaw was found in the AFP backend in gvfs. When mounting a share, a malicious AFP server can cause the DSI r… | 2026-09-01 |
| CVE-2026-84270 | MEDIUM | 4.3 | A flaw was found in the MTP backend in gvfs. When reading a file from a mounted MTP device, do_read() in gvfsb… | 2026-09-01 |
| CVE-2026-51788 | NA | N/A | An issue in cleverange_auth v.0.1.10 allows a remote attacker to cause a denial of service via the account_ver… | 2026-09-01 |
| CVE-2026-51934 | NA | N/A | Buffer Overflow vulnerability in Shenzhen Jixiang Tengda Technology Co., Ltd. Tenda A18 v.15.13.07.09 allows a… | 2026-09-01 |
| CVE-2026-51956 | NA | N/A | A Broken Object Level Authorization vulnerability exists in Grashjs Atlas CMMS prior to v1.6.0. An authenticat… | 2026-09-01 |
| CVE-2026-58566 | HIGH | 8.8 | Dell PowerStore, an Incorrect Authorization vulnerability. A low privileged attacker with remote access could … | 2026-09-01 |
| CVE-2024-7952 | NA | N/A | A data exposure vulnerability exists in the affected product. There are hardcoded links in the source code tha… | 2026-09-01 |
| CVE-2024-7953 | NA | N/A | A vulnerability exists in the affected products that allows a threat actor to create a project and become the … | 2026-09-01 |
| CVE-2026-19590 | NA | N/A | OpenAI Codex Desktop for Windows and macOS could execute attacker-controlled Git hooks because automated Git o… | 2026-09-01 |
| CVE-2026-19591 | NA | N/A | OpenAI Codex CLI for Windows, macOS, and Linux and Codex Desktop for Windows and macOS misclassified certain P… | 2026-09-01 |
| CVE-2026-19592 | NA | N/A | OpenAI Codex CLI for Windows, macOS, and Linux and Codex Desktop for Windows and macOS automatically collected… | 2026-09-01 |
| CVE-2026-19593 | NA | N/A | OpenAI Codex Desktop for Windows and macOS automatically inspected Git metadata and working-tree status when a… | 2026-09-01 |
| CVE-2026-51974 | NA | N/A | An eval() injection vulnerability in the get_list function in modules/meta_parser.py in lllyasviel Fooocus 2.1… | 2026-09-01 |
| CVE-2026-52022 | NA | N/A | An issue in kamailio v.6.1.1 and before allows a remote attacker to cause a denial of service via the IMS P-CS… | 2026-09-01 |
| CVE-2026-52023 | NA | N/A | An issue in kamailio v.6.1.1 and before allows a remote attacker to cause a denial of service via the ims_regi… | 2026-09-01 |
| CVE-2026-52111 | NA | N/A | An issue in fast-note-sync-service <=2.13.7 allows a remote attacker to escalate privileges via the admin conf… | 2026-09-01 |
| CVE-2026-52130 | HIGH | 7.5 | llama.cpp b5693 and before is vulnerable to Uncontrolled Recursion in common/json-schema-to-grammar.cpp, resul… | 2026-09-01 |
| CVE-2026-52131 | NA | N/A | llama.cpp b5693 and before has a Reachable Assertion via the gguf_reader::read function.… | 2026-09-01 |
| CVE-2026-52132 | HIGH | 7.5 | llama.cpp through commit 97f06e9, when started with the --reranking flag, allows remote attackers to cause a d… | 2026-09-01 |
| CVE-2026-52295 | NA | N/A | Buffer Overflow vulnerability in Ffmpeg v.7.0 and after allows an attacker to cause a denial of service via th… | 2026-09-01 |
| CVE-2026-81846 | LOW | 3.5 | An authorization bypass in the runZero Platform MCP service has been resolved in version 5.1.260826.0. This is… | 2026-09-01 |
| CVE-2026-83551 | HIGH | 7.2 | Cleartext storage of sensitive information in the @step and @remote decorator pipeline component in Amazon Sag… | 2026-09-01 |
| CVE-2026-84303 | NA | N/A | gRPC-Go is the Go language implementation of gRPC. Prior to 1.83.1, the xDS RBAC HTTP filter in internal/xds/h… | 2026-09-01 |
| CVE-2026-84304 | NA | N/A | gRPC-Go is the Go language implementation of gRPC. Prior to 1.83.1, internal/transport/transport.go stores eac… | 2026-09-01 |
| CVE-2026-84305 | NA | N/A | sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, sqlparse.format(sql, reindent=True)… | 2026-09-01 |
| CVE-2026-84306 | MEDIUM | 6.5 | Filament is a collection of full-stack components for accelerated Laravel development. From 4.0.0 until 4.12.6… | 2026-09-01 |
| CVE-2026-8712 | HIGH | 8.3 | Wyoming before 1.10.2 contains a server-side request forgery vulnerability that allows unauthenticated attacke… | 2026-09-01 |
| CVE-2026-19766 | CRITICAL | 9.6 | An authentication bypass vulnerability exists in the underlying operating system of HPE Networking Fabric Comp… | 2026-09-01 |
| CVE-2026-33465 | MEDIUM | 6.5 | Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana can lead to a denial of service via E… | 2026-09-01 |
| CVE-2026-45221 | HIGH | 7.8 | Konga before 2.1.0 contains a privilege escalation vulnerability that allows low-privileged local attackers to… | 2026-09-01 |
| CVE-2026-56143 | MEDIUM | 4.9 | Allocation of Resources Without Limits or Throttling (CWE-770) in Elasticsearch can lead to a denial of servic… | 2026-09-01 |
| CVE-2026-63137 | HIGH | 8.3 | Incorrect Authorization (CWE-863) in Kibana can lead to privilege escalation via Exploiting Incorrectly Config… | 2026-09-01 |
| CVE-2026-63138 | MEDIUM | 6.5 | Improper Neutralization of Special Elements in Data Query Logic (CWE-943) in Kibana can lead to information di… | 2026-09-01 |
| CVE-2026-72628 | MEDIUM | 6.5 | Improper Handling of Highly Compressed Data (CWE-409) in Kibana can lead to a denial of service via Excessive … | 2026-09-01 |
| CVE-2026-72633 | MEDIUM | 4.3 | Incorrect Authorization (CWE-863) in Kibana Entity Analytics can lead to a loss of security monitoring via Acc… | 2026-09-01 |
| CVE-2026-72641 | MEDIUM | 5.4 | Incorrect Authorization (CWE-863) in Kibana can lead to unauthorized modification of data via Accessing Functi… | 2026-09-01 |
| CVE-2026-72644 | MEDIUM | 6.5 | Uncaught Exception (CWE-248) in Kibana can lead to a denial of service via Input Data Manipulation (CAPEC-153)… | 2026-09-01 |
| CVE-2026-72649 | HIGH | 8.8 | Deserialization of Untrusted Data (CWE-502) in the Elasticsearch machine learning component can lead to remote… | 2026-09-01 |
| CVE-2026-72652 | MEDIUM | 6.5 | Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana can lead to a denial of service via E… | 2026-09-01 |
| CVE-2026-72654 | MEDIUM | 6.5 | Execution with Unnecessary Privileges (CWE-250) in the Kibana machine learning feature can lead to information… | 2026-09-01 |
| CVE-2026-72682 | MEDIUM | 6.5 | Allocation of Resources Without Limits or Throttling (CWE-770) in Kibana can lead to a denial of service via E… | 2026-09-01 |
| CVE-2026-73700 | CRITICAL | 9.0 | A vulnerability in the web-based management interface of HPE Networking Fabric Composer could allow an authent… | 2026-09-01 |
| CVE-2026-73701 | CRITICAL | 9.0 | An unauthenticated remote code execution vulnerability exists in the underlying operating system of HPE Networ… | 2026-09-01 |
| CVE-2026-73702 | HIGH | 8.8 | A privilege escalation vulnerability exists in the API of HPE Networking Fabric Composer. Successful exploitat… | 2026-09-01 |
| CVE-2026-73703 | HIGH | 8.8 | A vulnerability in the web-based management interface of HPE Networking Fabric Composer could allow an unauthe… | 2026-09-01 |
| CVE-2026-73704 | HIGH | 8.8 | A command sanitization bypass exists in the API of HPE Networking Fabric Composer. Successful exploitation cou… | 2026-09-01 |
| CVE-2026-73705 | HIGH | 8.8 | An arbitrary file write vulnerability in the API of HPE Networking Fabric Composer could allow an authenticate… | 2026-09-01 |