Top technology
Linux 13140
Google 12537
Microsoft 12388
Oracle 7054
Apple 6692
Ibm 6393
Adobe 6390
Cisco 5759
Debian 3919
Mozilla 2901
Apache 2864
Redhat 2604
CRITICAL 9.8
CVE-2026-60367
Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi…
Platform Security For Java
No fix yet
CRITICAL 10.0
CVE-2026-60366
Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi…
Platform Security For Java
No fix yet
CRITICAL 9.1
CVE-2026-64798
Joomla Extension - regularlabs.com - Insecure login URL keys in IP login extension - Persistent URL login keys were also generated using a non-crypto…
No fix yet
CRITICAL 9.8
CVE-2026-64796
Joomla Extension - regularlabs.com - various code injection vectors in Sourcerer extension - Free did not require both the article creator and last m…
No fix yet
CRITICAL 9.1
CVE-2026-64793
Joomla Extension - regularlabs.com - Content access and publication bypass in Articles Anywhere and Modules Anywhere extensions - Content tags could …
No fix yet
CRITICAL 9.8
CVE-2025-50329
An issue in ConeXware, Inc Power Archiver v.22.00.11 and before allows a remote attacker to escalate privileges and execute arbitrary code via the po…
Patch available
CRITICAL 9.6
CVE-2026-16624
Cal.com OSS ships lacks authorization on webhook teamId creation, allowing any authenticated user to create a webhook on any team via unvalidated tea…
No fix yet
CRITICAL 9.8
CVE-2026-16606
A vulnerability in Fujitsu Software Linux openFT and Fujitsu Software Oracle Solaris openFT before version 12.1D00 allows for unauthenticated remote …
No fix yet
CRITICAL 9.8
CVE-2026-2395
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Xpoda Türkiye Informatics Technology Inc. No Co…
No fix yet
CRITICAL 9.1
CVE-2026-62144EPSS 21%
An authentication bypass vulnerability in Check Point Security Management and Multi-Domain Security Management allows an unauthenticated remote attac…
No fix yet
CRITICAL 9.3
CVE-2026-50252
In NLnet Labs Unbound 1.4.22 up to and including 1.25.1, UDP source port is randomized and intended to serve as a secret value that increases the ent…
Unbound
1.25.2+
CRITICAL 9.8
CVE-2026-16232 KEVEPSS 73%
An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an applicati…
Multi Domain Security Management
Patch available
CRITICAL 9.3
CVE-2026-8152
Unblu Spark contains an open redirect vulnerability that can be escalated to a DOM-based cross-site scripting (XSS) attack.
When Unblu Spark is dep…
No fix yet
CRITICAL 9.8
CVE-2026-65590
n8n before 2.29.8 and 2.30.x before 2.30.1 does not enforce shell sandbox restrictions on Linux and Windows in the @n8n/computer-use package (sandbox…
N8n
2.29.8+
CRITICAL 9.4
CVE-2026-63048
Joomla Extension - joomlack.fr - Improper access control in Page Builder CK < 3.6.2 - The Joomla extension Page Builder CK is vulnerable to an authen…
No fix yet
CRITICAL 9.1
CVE-2026-56820
Netty is a network application framework for development of protocol servers and clients. In versions 4.2.0.Final through 4.2.15.Final and prior to 4…
Netty
4.1.136 / 4.2.16+
CRITICAL 9.8
CVE-2026-56817
Netty is a network application framework for development of protocol servers and clients. In versions 4.2.0.Final through 4.2.15.Final and 4.1.0.Fina…
Netty
4.1.136 / 4.2.16+
CRITICAL 9.6
CVE-2026-16424
Use after free in GPU in Google Chrome on Android prior to 150.0.7871.182 allowed a remote attacker who had compromised the renderer process to poten…
Chrome
150.0.7871.182+
CRITICAL 9.6
CVE-2026-16419
Out of bounds read and write in ANGLE in Google Chrome on Android prior to 150.0.7871.182 allowed a remote attacker to potentially perform a sandbox …
Chrome
150.0.7871.182+
CRITICAL 9.3
CVE-2026-16416
Integer overflow in Chromecast in Google Chrome prior to 150.0.7871.182 allowed a local attacker to potentially perform a sandbox escape via maliciou…
Chrome
150.0.7871.182+
CRITICAL 9.8
CVE-2026-8986
Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection when processing OCPP GetDiagnostics requests. A malicious o…
Maxicharger Single Charger Firmware
after 1.03.51
CRITICAL 9.8
CVE-2026-8985EPSS 7%
Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection in the /test endpoint exposed on TCP port 9002. An unauthen…
Maxicharger Single Charger Firmware
after 1.03.51
CRITICAL 9.8
CVE-2026-8984
Autel Maxi Charger Single firmware through V1.03.51 allows unauthenticated remote code execution via the service listening on TCP port 9002. A crafte…
Maxicharger Single Charger Firmware
after 1.03.51
CRITICAL 9.6
CVE-2026-62549
Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (component: UK Payroll). Supported versions that are affected are 12.2.3-12…
Human Resources Management System
after 12.2.15
CRITICAL 9.1
CVE-2026-62546
Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Web Utilities). Supported versions that are affect…
Applications Framework
after 12.2.15
CRITICAL 9.8
CVE-2026-61245
Vulnerability in the PeopleSoft Enterprise FIN Manufacturing Brazil product of Oracle PeopleSoft (component: Integration). The supported version th…
Peoplesoft Enterprise Fin Manufacturing Brazil
No fix yet
CRITICAL 9.1
CVE-2026-61244
Vulnerability in the PeopleSoft Enterprise FIN Manufacturing Argentina product of Oracle PeopleSoft (component: Manufacturing). The supported versi…
Peoplesoft Enterprise Fin Manufacturing Argentina
Mitigation only
CRITICAL 9.9
CVE-2026-61242
Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina product of Oracle PeopleSoft (component: Staffing). The supported version t…
Peoplesoft Enterprise Fin Common Objects
No fix yet
CRITICAL 9.9
CVE-2026-61239
Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina product of Oracle PeopleSoft (component: eProcurement). The supported versi…
Peoplesoft Enterprise Fin Common Objects
Mitigation only
CRITICAL 9.1
CVE-2026-61238
Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina product of Oracle PeopleSoft (component: eProcurement). The supported versi…
Peoplesoft Enterprise Fin Common Objects
No fix yet