CVE IDSeverityCVSSDescriptionDate
CVE-2026-84165NAN/AA vulnerability relating to incorrect access control in OpenNebula by OpenNebula Systems, affecting all versio…2026-09-01
CVE-2023-54356LOW3.7Kyverno versions 1.9.4 and earlier support insecure 3DES cipher suites (TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA an…2026-09-01
CVE-2025-15613MEDIUM6.5Kyverno before v1.13.4 is vulnerable to server-side request forgery (SSRF) via its Service Call functionality.…2026-09-01
CVE-2026-10420MEDIUM5.5Untrusted pointer dereference vulnerability in Samsung Open Source mTower allows Pointer Manipulation. This i…2026-09-01
CVE-2026-11873MEDIUM6.5An Apache-proxied Dogtag CA REST endpoint exposed by IdM (POST /ca/rest/certrequests) returns HTTP 500 with in…2026-09-01
CVE-2026-18550CRITICAL9.8The Nokri - Job Board WordPress Theme for WordPress is vulnerable to Privilege Escalation via Account Takeover…2026-09-01
CVE-2026-76111HIGH8.8Dell PowerStore contains an Incorrect Authorization vulnerability. An authenticated attacker with low privileg…2026-09-01
CVE-2026-77194MEDIUM5.3The Simple Membership plugin for WordPress is vulnerable to Authentication Bypass leading to Administrator Acc…2026-09-01
CVE-2026-83595HIGH8.1AVideo contains a cross-site request forgery vulnerability in plugin/API/set.json.php that allows attackers to…2026-09-01
CVE-2026-84187HIGH8.2AVideo contains a missing authentication vulnerability in plugin/Live/on_publish.php that allows unauthenticat…2026-09-01
CVE-2026-84188MEDIUM4.8LibreNMS versions <= 26.4.0 contain a stored cross-site scripting vulnerability in the graph_descr.2026-09-01
CVE-2026-84189HIGH8.1LibreNMS through 26.4.0 renders JSON fields (name, ip, model, author, commit message) returned by the admin-co…2026-09-01
CVE-2026-84190HIGH7.2LibreNMS versions before 26.5.0 contain a remote code execution vulnerability in the AboutController where the…2026-09-01
CVE-2026-84191MEDIUM6.1LibreNMS before 26.5.0 contains stored cross-site scripting vulnerabilities in VRF display pages where mplsVpn…2026-09-01
CVE-2026-84192HIGH7.1LibreNMS before 26.3.1 contains a stored cross-site scripting vulnerability in legacy PHP templates that outpu…2026-09-01
CVE-2026-84193NAN/ALibreNMS through 26.2.0 contains a stored cross-site scripting vulnerability in legacy PHP template pages that…2026-09-01
CVE-2026-84194NAN/ALibreNMS versions >= 23.10.0 and < 26.2.0 (fixed in 26.4.0) contain an authenticated OS command injection vuln…2026-09-01
CVE-2026-84195HIGH7.7Kyverno before 1.16.4 automatically attaches the admission controller's ServiceAccount token to outbound HTTP …2026-09-01
CVE-2026-84196HIGH7.7Kyverno before 1.18.0 contains a server-side request forgery vulnerability in apiCall.service.url that allows …2026-09-01
CVE-2026-84199HIGH7.7Kyverno before 1.16.2 contains a server-side request forgery (SSRF) vulnerability in the APICall feature. The …2026-09-01
CVE-2026-84200CRITICAL9.0Kyverno versions v1.9.0 through v1.12.7 contain a policy exception handling flaw. When a policy in enforce mod…2026-09-01
CVE-2026-18765CRITICAL9.8Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Teracity…2026-09-01
CVE-2026-19471NAN/AMultiple stored cross-site scripting security issues exist within ArmorStart® LT. Stored XSS occurs when user …2026-09-01
CVE-2026-19472NAN/AA denial-of-service security issue exists within ArmorStart® LT. The security issue stems from improper handli…2026-09-01
CVE-2026-51741NAN/AIncorrect access control in the clearDiagnosisLog function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthe…2026-09-01
CVE-2026-51742MEDIUM5.9Incorrect access control in the discoverWan function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticat…2026-09-01
CVE-2026-51743CRITICAL9.1Incorrect access control in the guest_wifi_sync function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthent…2026-09-01
CVE-2026-51744NAN/AIncorrect access control in the recv_mesh_info_sync function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unaut…2026-09-01
CVE-2026-51745MEDIUM5.3Incorrect access control in the updatePriStaList function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthen…2026-09-01
CVE-2026-51747NAN/AIncorrect access control in the keepAlive function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated…2026-09-01
CVE-2026-53682MEDIUM5.3An unauthenticated client can query the Security Domain hosts inventory via GET /ca/rest/securityDomain/hosts …2026-09-01
CVE-2026-58575HIGH8.8Dell PowerStore contains an Authentication Bypass by Spoofing vulnerability. An authenticated attacker could p…2026-09-01
CVE-2026-79683HIGH8.8Dell PowerStore contains a Protection Mechanism Failure vulnerability. An authenticated user with limited priv…2026-09-01
CVE-2026-7877MEDIUM6.4The WP Recipe Maker Premium plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's…2026-09-01
CVE-2026-84061MEDIUM6.3A security flaw has been discovered in zhongyu09 OpenChatBI up to 0.3.0. Affected by this vulnerability is the…2026-09-01
CVE-2026-84117HIGH8.8Privilege escalation in Firefox for Android. This vulnerability was fixed in Firefox 155.…2026-09-01
CVE-2026-84118MEDIUM5.4Use-after-free in the JavaScript: GC component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2…2026-09-01
CVE-2026-84119CRITICAL9.6Sandbox escape due to use-after-free in the DOM: Navigation component. This vulnerability was fixed in Firefox…2026-09-01
CVE-2026-84120MEDIUM5.4Use-after-free in the Audio/Video component. This vulnerability was fixed in Firefox 155, Firefox ESR 115.40, …2026-09-01
CVE-2026-84121CRITICAL9.6Sandbox escape due to use-after-free in the DOM: Security component. This vulnerability was fixed in Firefox 1…2026-09-01
CVE-2026-84122MEDIUM5.4Use-after-free in the Audio/Video component. This vulnerability was fixed in Firefox 155, Firefox ESR 140.15, …2026-09-01
CVE-2026-84123HIGH8.8Privilege escalation due to use-after-free in the Graphics: WebGPU component. This vulnerability was fixed in …2026-09-01
CVE-2026-84124MEDIUM5.4Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 155, Firefox ESR 140…2026-09-01
CVE-2026-84125MEDIUM5.4Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 155, Firefox ESR 153…2026-09-01
CVE-2026-84126MEDIUM4.3Incorrect boundary conditions in the Layout: Grid component. This vulnerability was fixed in Firefox 155 and T…2026-09-01
CVE-2026-84127MEDIUM4.3Information disclosure in the WebExtensions component in Firefox for Android. This vulnerability was fixed in …2026-09-01
CVE-2026-84128HIGH8.8Privilege escalation in the WebDriver BiDi component. This vulnerability was fixed in Firefox 155 and Thunderb…2026-09-01
CVE-2026-84129NAN/ASite isolation issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 155, Firefox ES…2026-09-01
CVE-2026-84130NAN/AInformation disclosure in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 155, Firefox…2026-09-01
CVE-2026-84131HIGH8.8Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox…2026-09-01
7 / 7715