Threat Intelligence Feed

Aggregating 4474 articles from trusted cybersecurity sources

LATEST CVEs
MED · CVE-2026-53452 Ground Station is a browser-based suite for satellite tracking, SDR reception, hardware control, and telemetry decoding. CRIT · CVE-2026-53451 Ground Station is a browser-based suite for satellite tracking, SDR reception, hardware control, and telemetry decoding. CRIT · CVE-2026-52889 Formie is a Craft CMS plugin for creating forms. Prior to 3.1.27, Formie can pass request-derived Hidden field defaults HIGH · CVE-2026-52834 jxl-oxide is a pure Rust implementation of a JPEG XL decoder. Prior to jxl-grid 0.6.2, decoding a crafted JPEG XL image CVE-2026-52792 Algernon is a small self-contained pure-Go web server. Prior to 1.17.9, Algernon on Windows selects a file handler in en MED · CVE-2026-50149 Contour is a Kubernetes ingress controller using Envoy proxy. In versions 1.23.0 through 1.33.4, when an `HTTPProxy` is HIGH · CVE-2026-49817 Dell Command Update (DCU), versions prior to 5.7.1, contain a Deserialization of Untrusted Data vulnerability. A low pri HIGH · CVE-2026-49816 Dell Command Update (DCU), versions prior to 5.7.1, contain a Deserialization of Untrusted Data vulnerability. A low pri HIGH · CVE-2026-49289 The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. In 4.19.2 and 4.20.2, the library perm HIGH · CVE-2026-49283 The SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. Prior to versions 4.19.3, 4.20.2, 5.0. HIGH · CVE-2026-49255 electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.11.11, electerm con HIGH · CVE-2026-49253 electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.11.11, electerm use HIGH · CVE-2026-48711 SSHFS is a network filesystem client for connecting to SSH servers. From version 1.4 until 3.7.6, SSHFS accepts a bracke CRIT · CVE-2026-47187 SSHFS is a network filesystem client for connecting to SSH servers. Prior to version 3.7.6, a rogue SFTP server can retu HIGH · CVE-2026-45742 Gotenberg is a Docker-powered stateless API for PDF files. From 8.10.0 until 8.33.0, the newContext function in pkg/modu HIGH · CVE-2026-45741 Gotenberg is a Docker-powered stateless API for PDF files. In 8.32.0 and earlier, the IsPublicIP function in pkg/gotenbe CVE-2026-45274 MyBooks is anebook management web server also known as Talebook. In 3.41.2 and earlier, the SignUp.post handler for POST CVE-2026-45273 MyBooks is an ebook management web server also known as Talebook. In 3.41.2 and earlier, the AdminSettings.post handler CVE-2026-45272 MyBooks is an enhanced and easy-to-use personal ebook management web server also known as Talebook. In 3.41.2 and earlie HIGH · CVE-2026-44829 Gotenberg is a Docker-powered stateless API for PDF files. In 8.32.0 and earlier, filename handling in pkg/modules/api/c MED · CVE-2026-40509 OpenEMR before 8.3.0 contains a cross-site request forgery vulnerability in the DICOM viewer. The web_path GET parameter MED · CVE-2026-40508 OpenEMR before 8.3.0 contains a stored cross-site scripting vulnerability in the patient portal template import handler MED · CVE-2026-40507 OpenEMR before 8.3.0 contains a reflected cross-site scripting vulnerability in the patient portal template import handl MED · CVE-2026-32802 Dell PowerPath, version 7.2 through to 8.0 SP1, contains an Improper Privilege Management vulnerability. A low privilege HIGH · CVE-2026-23501 Dell RecoverPoint for VMs, versions 6.0.3 and 6.0.3.1, contains an Improper Neutralization of Special Elements used in a CVE-2026-18756 HumHub Community Edition 1.18.4 contains a reflected cross-site scripting vulnerability in the Space membership-request CVE-2026-18526 HumHub Community Edition 1.18.4 and 1.18.4-pl1 contain a stored Cross-Site Scripting (XSS) vulnerability in the oEmbed c HIGH · CVE-2026-16818 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to uncontro HIGH · CVE-2026-16817 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to a NULL p CRIT · CVE-2026-16816 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to execute arbitrary commands HIGH · CVE-2026-16814 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a heap buff HIGH · CVE-2026-16706 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to an out-o HIGH · CVE-2026-16703 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated privileges due to improper p HIGH · CVE-2026-16690 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to uncontro HIGH · CVE-2026-16686 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to access NFS-exported filesystems due to im CRIT · CVE-2026-16656 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to gain root privileges due to improper auth MED · CVE-2026-15961 IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 IBM PowerVM could allow a HIGH · CVE-2026-15078 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to gain unauthorized access to AIX syste CRIT · CVE-2026-15068 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote authenticated attacker to execute arbitrary comma CRIT · CVE-2026-15065 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to bypass security restrictions due to t
2909 general 656 advisories 388 vendor 360 research 161 enterprise

Trending Vendors

Latest News

Data Breaches

No articles found.