|
cve-2026-72684
|
6.5 (v3.1)
|
Allocation of Resources Without Limits or Throttling i…
|
Elastic
|
Elasticsearch
|
2026-08-13T19:10:53.550Z |
2026-08-13T20:35:10.991Z |
|
cve-2026-72683
|
6.5 (v3.1)
|
Uncontrolled Recursion in Elasticsearch Leading to Den…
|
Elastic
|
Elasticsearch
|
2026-08-13T19:10:51.461Z |
2026-08-13T20:35:24.324Z |
|
cve-2026-59714
|
|
Open WebUI: Cross-channel message overwrite via chat c…
|
open-webui
|
open-webui
|
2026-08-13T19:10:42.122Z |
2026-08-14T18:08:59.250Z |
|
cve-2026-49864
|
|
wetty vulnerable to DOM XSS via file-download filename
|
butlerx
|
wetty
|
2026-08-13T19:10:41.037Z |
2026-08-18T01:35:30.665Z |
|
cve-2026-49089
|
6.5 (v3.1)
|
Allocation of Resources Without Limits or Throttling i…
|
Elastic
|
Kibana
|
2026-08-13T19:08:07.007Z |
2026-08-13T20:35:37.461Z |
|
cve-2026-73531
|
5.3 (v4.0)
6.1 (v3.1)
|
django-helpdesk < 2.3.3 Stored XSS via HTML Attachments
|
django-helpdesk
|
django-helpdesk
|
2026-08-13T19:06:11.969Z |
2026-08-14T19:45:18.236Z |
|
cve-2026-73530
|
6.3 (v4.0)
7.7 (v3.1)
|
Flyto2 Core < 2.28.0 SSRF Guard Bypass via is_private_ip()
|
flytohub
|
flyto-core
|
2026-08-13T19:01:46.150Z |
2026-08-14T12:46:53.548Z |
|
cve-2026-19745
|
|
Calix GigaSpire Web Management utilities_configuration…
|
Calix
|
GigaSpire
|
2026-08-13T19:00:08.612Z |
2026-08-14T16:40:19.435Z |
|
cve-2026-73669
|
|
Signify Philips Hue Bridge Pro MQTT broker missing aut…
|
Signify
|
Philips Hue Bridge Pro
|
2026-08-13T19:00:05.705Z |
2026-08-18T20:28:10.412Z |
|
cve-2026-18846
|
7.5 (v3.1)
|
IBM i is Affected By Multiple Vulnerabilities in Host …
|
IBM
|
i
|
2026-08-13T18:58:23.163Z |
2026-08-13T19:32:50.526Z |
|
cve-2026-17223
|
8.8 (v3.1)
|
IBM i is Affected By Multiple Vulnerabilities in Host …
|
IBM
|
i
|
2026-08-13T18:56:07.766Z |
2026-08-14T12:40:02.929Z |
|
cve-2026-17206
|
8.1 (v3.1)
|
IBM i is Affected By Multiple Vulnerabilities in Host …
|
IBM
|
i
|
2026-08-13T18:55:41.032Z |
2026-08-14T12:39:50.571Z |
|
cve-2026-16929
|
5.3 (v3.1)
|
IBM i is Affected By Multiple Vulnerabilities in Host …
|
IBM
|
i
|
2026-08-13T18:54:18.359Z |
2026-08-17T18:18:07.130Z |
|
cve-2026-17004
|
7.5 (v3.1)
|
IBM i is Affected By Multiple Vulnerabilities in Host …
|
IBM
|
i
|
2026-08-13T18:53:28.189Z |
2026-08-13T19:33:44.387Z |
|
cve-2026-17199
|
7.5 (v3.1)
|
IBM i is Affected By Multiple Vulnerabilities in Host …
|
IBM
|
i
|
2026-08-13T18:52:34.242Z |
2026-08-13T19:26:09.866Z |
|
cve-2026-17229
|
7.5 (v3.1)
|
IBM i is Affected By Multiple Vulnerabilities in Host …
|
IBM
|
i
|
2026-08-13T18:51:58.654Z |
2026-08-14T18:29:07.608Z |
|
cve-2026-16982
|
7.5 (v3.1)
|
IBM i is Affected By Multiple Vulnerabilities in Host …
|
IBM
|
i
|
2026-08-13T18:51:10.904Z |
2026-08-18T01:34:05.698Z |
|
cve-2026-17220
|
8.2 (v3.1)
|
IBM i is Affected By Multiple Vulnerabilities in Host …
|
IBM
|
i
|
2026-08-13T18:49:53.474Z |
2026-08-13T19:26:14.893Z |
|
cve-2026-17197
|
8.1 (v3.1)
|
IBM i is Affected By Multiple Vulnerabilities in Host …
|
IBM
|
i
|
2026-08-13T18:49:09.146Z |
2026-08-14T03:56:04.461Z |
|
cve-2026-73482
|
7.2 (v4.0)
8.1 (v3.1)
|
phpList < 3.7.0-RC5 Cross-Site Request Forgery via adm…
|
phplist
|
phplist3
|
2026-08-13T18:49:02.379Z |
2026-08-18T01:33:26.741Z |
|
cve-2026-73481
|
5.3 (v4.0)
5.4 (v3.1)
|
phpList < 3.7.0-RC5 Cross-Site Request Forgery via Bou…
|
phplist
|
phplist3
|
2026-08-13T18:48:42.589Z |
2026-08-14T19:15:25.045Z |
|
cve-2026-18071
|
7.8 (v3.1)
|
IBM i is Affected By An Improper Management Vulnerabil…
|
IBM
|
i
|
2026-08-13T18:48:31.331Z |
2026-08-14T12:40:15.306Z |
|
cve-2026-73038
|
5.3 (v4.0)
6.1 (v3.1)
|
NodeBB < 4.15.0 Stored XSS via ActivityPub emoji tag.i…
|
NodeBB
|
NodeBB
|
2026-08-13T18:41:49.275Z |
2026-08-14T16:52:23.442Z |
|
cve-2026-72777
|
7.7 (v4.0)
8.6 (v3.1)
|
Next AI Draw.io 0.4.16 SSRF via DNS Rebinding in parse-url
|
DayuanJiang
|
next-ai-draw-io
|
2026-08-13T18:23:18.212Z |
2026-08-14T16:51:57.041Z |
|
cve-2026-73653
|
|
Vitest: Browser Mode provider commands bypass the file…
|
vitest-dev
|
vitest
|
2026-08-13T18:19:00.452Z |
2026-08-13T18:42:42.750Z |
|
cve-2026-73037
|
5.1 (v4.0)
6.1 (v3.1)
|
Next AI Draw.io 0.2.1 - 0.4.16 Reflected XSS via unsan…
|
DayuanJiang
|
next-ai-draw-io
|
2026-08-13T18:18:57.753Z |
2026-08-14T19:45:25.604Z |
|
cve-2026-73652
|
|
vantage6: Algorithm developer can edit another develop…
|
vantage6
|
vantage6
|
2026-08-13T18:15:55.367Z |
2026-08-13T18:57:28.520Z |
|
cve-2026-73651
|
|
TypeORM: migration:generate template-literal code injection
|
typeorm
|
typeorm
|
2026-08-13T18:11:14.613Z |
2026-08-14T18:09:07.215Z |
|
cve-2026-73650
|
|
SVGO: removeScripts plugin leaves some executable scri…
|
svg
|
svgo
|
2026-08-13T18:08:36.292Z |
2026-08-18T01:31:46.442Z |
|
cve-2026-73649
|
|
Velocity.js: Remote Code Execution via property-read t…
|
shepherdwind
|
velocity.js
|
2026-08-13T18:05:31.929Z |
2026-08-14T16:42:31.371Z |