Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
CRITICAL 9.6
CVE-2026-17713
Insufficient validation of untrusted input in Accessibility in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had comp…
No fix yet
HIGH 7.5
CVE-2026-17698
Insufficient validation of untrusted input in UI in Google Chrome on Android prior to 151.0.7922.72 allowed a local attacker to leak cross-origin dat…
Chrome
151.0.7922.72+
MEDIUM 6.5
CVE-2026-17690
Insufficient validation of untrusted input in PDF in Google Chrome on Android prior to 151.0.7922.72 allowed a local attacker to leak cross-origin da…
Chrome
151.0.7922.72+
MEDIUM 6.5
CVE-2026-17679
Insufficient validation of untrusted input in Print Preview in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the…
Chrome
151.0.7922.72+
CRITICAL 9.6
CVE-2026-17681
Insufficient validation of untrusted input in Web Authentication in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had…
Chrome
151.0.7922.72+
CRITICAL 9.6
CVE-2026-17684
Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker who had comprom…
Chrome
151.0.7922.72+
HIGH 8.1
CVE-2026-17686
Insufficient validation of untrusted input in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the ren…
Chrome
151.0.7922.72+
CRITICAL 9.6
CVE-2026-17671
Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the rendere…
Chrome
151.0.7922.72+
CRITICAL 9.6
CVE-2026-17672
Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the re…
Chrome
151.0.7922.72+
HIGH 8.3
CVE-2026-17663
Insufficient validation of untrusted input in GPU in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised th…
Chrome
151.0.7922.72+
MEDIUM 6.5
CVE-2026-17664
Insufficient validation of untrusted input in Loader in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the render…
Chrome
151.0.7922.72+
CRITICAL 9.6
CVE-2026-17655
Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbo…
Chrome
151.0.7922.72+
HIGH 8.3
CVE-2026-17660
Insufficient validation of untrusted input in Network in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the rende…
Chrome
151.0.7922.72+
CRITICAL 9.6
CVE-2026-17651
Insufficient validation of untrusted input in Dawn in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially perfor…
Chrome
151.0.7922.72+
HIGH 8.3
CVE-2026-67436
Linuxfabrik monitoring-plugins provides Python monitoring plugins for Icinga, Nagios, and related monitoring systems. In 6.0.0 and earlier, the redfi…
No fix yet
MEDIUM 6.1
CVE-2026-54663
swagger-typescript-api generates API clients for Fetch or Axios from OpenAPI specifications. Prior to 13.12.2, src/resolved-swagger-schema.ts warmUpR…
No fix yet
MEDIUM 5.3
CVE-2026-18174
@fastify/forwarded resolves client addresses from the X-Forwarded-For header. In versions before 3.0.2, when the header contains two or more comma se…
Fastify\/forwarded
3.0.2+
MEDIUM 6.5
CVE-2026-65891
Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE…
Jce
2.20.2+
HIGH 7.5
CVE-2026-58183
The Apache Traffic Server prefetch plugin can crash when processing attacker-influenced input.
This issue affects Apache Traffic Server: from 8.0.0 …
Traffic Server
9.2.15 / 10.1.4+
HIGH 7.5
CVE-2026-58186
The Apache Traffic Server webp_transform plugin can decode unsafely and serve mislabeled, cacheable responses.
This issue affects Apache Traffic Ser…
Traffic Server
9.2.15 / 10.1.4+
CRITICAL 9.1
CVE-2026-33267
Improper Input Validation vulnerability in Apache Traffic Server.
This issue affects Apache Traffic Server: from 9.2.0 through 9.2.14, from 10.1.0 t…
Traffic Server
9.2.15 / 10.1.4+
HIGH 7.5
CVE-2026-47219
find-my-way is a framework-independent HTTP router that internally uses a Radix Tree and supports route parameters and wildcards. Versions prior to 9…
No fix yet
MEDIUM 5.3
CVE-2026-56722
Dompdf is an HTML to PDF converter for PHP. In versions 3.15 and prior, aAn attacker who controls the HTML input can bypass this restriction by embed…
Dompdf
3.1.6+
HIGH 7.5
CVE-2026-55554
Dompdf is an HTML to PDF converter for PHP. In versions 3.15 and prior, the validateLocalUri() method enforces chroot boundaries with a strpos() pref…
Dompdf
3.1.6+
MEDIUM 5.4
CVE-2026-62828
Improper input validation in Microsoft Edge for Android allows an unauthorized attacker to perform tampering over a network.
Edge
No fix yet
HIGH 7.5
CVE-2026-59878
Improper Input Validation vulnerability in Apache ActiveMQ AMQP, Apache ActiveMQ, Apache ActiveMQ All.
A remote unauthenticated peer that can reach …
Activemq
5.19.9 / 6.2.8+
MEDIUM 5.5
CVE-2026-62425
[This CNA information record relates to multiple CVEs; the
text explains which aspects/vulnerabilities correspond to which CVE.]
The directory and R…
No fix yet
HIGH 7.1
CVE-2026-43813
A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visi…
Ipados
26.6+
HIGH 7.5
CVE-2026-43777
This issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A remote…
macOS
14.8.8 / 15.7.8+
CRITICAL 9.8
CVE-2026-43793
An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15…
macOS
14.8.8 / 15.7.8+