Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
cve-2026-73650 SVGO: removeScripts plugin leaves some executable scri… svg
svgo
2026-08-13T18:08:36.292Z 2026-08-18T01:31:46.442Z
cve-2026-73649 Velocity.js: Remote Code Execution via property-read t… shepherdwind
velocity.js
2026-08-13T18:05:31.929Z 2026-08-14T16:42:31.371Z
cve-2026-73648 rails-html-sanitizer: Possible XSS vulnerability with … rails
rails-html-sanitizer
2026-08-13T18:00:21.583Z 2026-08-13T18:35:10.270Z
cve-2026-72741 8.6 (v4.0) 8.1 (v3.1) Rainbond 6.9.7 Region API Cross-Enterprise IDOR via Te… goodrain
rainbond
2026-08-13T17:59:25.934Z 2026-08-18T01:31:05.060Z
cve-2026-73647 Quasar Framework: Prototype pollution in Quasar extend… quasarframework
quasar
2026-08-13T17:57:09.014Z 2026-08-13T18:41:21.421Z
cve-2026-73645 OpenZeppelin Confidential Contracts ERC7984ERC20Wrappe… OpenZeppelin
openzeppelin-confidential-contracts
2026-08-13T17:54:42.793Z 2026-08-14T18:09:13.903Z
cve-2026-19730 4.2 (v3.1) Podman: podman: quadlet install --replace non-truncati… Red Hat
Red Hat Ansible Automation Platform 2
2026-08-13T17:53:37.029Z 2026-08-13T18:41:20.204Z
cve-2026-73644 OpenDJ: Authorization bypass in SASL PLAIN allowing a … OpenIdentityPlatform
OpenDJ
2026-08-13T17:52:48.641Z 2026-08-18T01:30:06.653Z
cve-2026-73643 js-yaml: Exponential parsing time in the flow collecti… nodeca
js-yaml
2026-08-13T17:47:30.404Z 2026-08-14T16:44:08.839Z
cve-2026-73569 fast-xml-parser: Repeated DOCTYPE declarations reset e… NaturalIntelligence
fast-xml-parser
2026-08-13T17:45:25.045Z 2026-08-13T18:40:13.283Z
cve-2026-73568 py-libp2p: yamux connection DoS via oversized data frame libp2p
py-libp2p
2026-08-13T17:43:26.065Z 2026-08-13T18:06:37.488Z
cve-2026-73567 sm-crypto: Predictable SM2 key generation in Node.js: … JuneAndGreen
sm-crypto
2026-08-13T17:40:54.016Z 2026-08-14T18:09:20.763Z
cve-2026-73566 node-tar: Uncontrolled recursion in mapHas/filesFilter… isaacs
node-tar
2026-08-13T17:39:05.796Z 2026-08-21T19:08:31.345Z
cve-2026-73565 @hono/node-server: Unauthenticated memory-leak DoS via… honojs
node-server
2026-08-13T17:37:28.579Z 2026-08-14T16:45:25.711Z
cve-2026-73564 frp: Unauthenticated Remote Denial of Service in the f… fatedier
frp
2026-08-13T17:35:46.762Z 2026-08-13T17:53:06.534Z
cve-2026-18428 8.7 (v4.0) 8.8 (v3.1) SQL Query Validation Bypass in OpenSearch Direct Query AWS
Opensearch
2026-08-13T17:32:48.455Z 2026-08-13T17:57:51.408Z
cve-2026-73563 Backstage: Unauthenticated OAuth account takeover via … backstage
backstage
2026-08-13T17:32:39.535Z 2026-08-13T18:07:45.624Z
cve-2026-73562 Mongoose: Prototype pollution in the update casting vi… Automattic
mongoose
2026-08-13T17:27:09.914Z 2026-08-14T18:09:27.112Z
cve-2026-73561 Hub: Unauthenticated WebSocket RPC Waiter Resource Exh… anephenix
hub
2026-08-13T17:24:34.761Z 2026-08-18T01:27:12.169Z
cve-2019-25765 8.7 (v4.0) 7.5 (v3.1) ASP-CMS SQL Injection via commentList.asp id Parameter ASP-CMS Project
ASP-CMS
2026-08-13T17:21:38.584Z 2026-08-14T18:48:07.536Z
cve-2024-58374 8.7 (v4.0) 7.5 (v3.1) Hongjing e-HR Unauthenticated SQL Injection via getSdutyTree Hongjing Century
e-HR
2026-08-13T17:21:22.909Z 2026-08-13T17:56:17.621Z
cve-2026-12236 6.5 (v3.1) Infinite loop (DoS) in Bluetooth GATT client parsing o… zephyrproject
zephyr
2026-08-13T17:19:58.346Z 2026-08-13T17:58:32.374Z
cve-2026-67613 6.9 (v4.0) 4.9 (v3.1) CyberPanel < 3.0.0 Path Traversal File Read via cloudA… usmannasir
cyberpanel
2026-08-13T17:09:05.229Z 2026-08-14T18:09:34.128Z
cve-2026-67614 9.3 (v4.0) 9.8 (v3.1) CyberPanel < 3.0.0 Hard-coded JWT Secret Authenticatio… usmannasir
cyberpanel
2026-08-13T17:08:40.038Z 2026-08-14T16:51:02.511Z
cve-2026-24059 N/A Gitea runner registration-token GET endpoint performs … Gitea
Gitea Open Source Git Server
2026-08-13T16:48:52.623Z 2026-08-14T17:10:45.377Z
cve-2026-24791 N/A Public-only tokens bypass private-resource restriction… Gitea
Gitea Open Source Git Server
2026-08-13T16:48:52.255Z 2026-08-13T18:48:01.037Z
cve-2026-59765 N/A SSRF via Migration Asset Downloads Bypasses hostmatche… Gitea
Gitea Open Source Git Server
2026-08-13T16:44:59.148Z 2026-08-14T19:01:54.065Z
cve-2026-59763 N/A Unbounded Arch package file metadata can cause resourc… Gitea
Gitea Open Source Git Server
2026-08-13T16:44:58.792Z 2026-08-13T18:49:48.864Z
cve-2026-58511 N/A Webhook Authorization Header Returned in Plaintext via API Gitea
Gitea Open Source Git Server
2026-08-13T16:44:58.442Z 2026-08-13T18:50:39.280Z
cve-2026-58510 N/A GHSA-8fwc-qjw5-rvgp ClearRepoWatches fix not applied t… Gitea
Gitea Open Source Git Server
2026-08-13T16:44:58.092Z 2026-08-13T19:14:00.411Z
ID CVSS Description Vendor Product Published Updated
ID Description Package Published Updated
ID Description Type
ID Description Updated
ID Description Updated
ID Description Updated
ID Description