|
CVE-2026-43499: GhostLock, Yet Another Linux LPE/Container Escape
|
|
0
|
16
|
July 9, 2026
|
|
CVE-2026-11405: Multiple Tenda Routers Have an Admin Backdoor
|
|
0
|
25
|
July 7, 2026
|
|
CVE-2026-53359, "Januscape:" KVM Escape/Host Panic on x86_64
|
|
0
|
13
|
July 7, 2026
|
|
Bad Epoll LPE - Linux Kernel - CVE-2026-46242
|
|
0
|
24
|
July 3, 2026
|
|
FUSE readdir cache - Unprivileged LPE - CVE 2026-31694
|
|
0
|
12
|
July 2, 2026
|
|
Stealers Exploit CVE-2026-48558 in SimpleHelp Attack
|
|
2
|
69
|
June 30, 2026
|
|
Libssh2 vulnerability before 1.11.1 - CVE-2026-55200
|
|
4
|
44
|
June 30, 2026
|
|
CVE-2026-50656: RoguePlanet, A Race condition in Windows Defender => LPE
|
|
1
|
133
|
June 29, 2026
|
|
CVE-2026-20253: Critical RCE in Splunk Enterprise EITW
|
|
0
|
17
|
June 26, 2026
|
|
CVE-2026-20230: SSRF Vulnerability in Cisco Unified CM SME, EITW
|
|
0
|
15
|
June 26, 2026
|
|
CVE-2026-20245: Privilege Escalation Vulnerability in Cisco Catalyst SD-WAN Controller EITW
|
|
0
|
38
|
June 5, 2026
|
|
CVE-2026-20262: Cisco Catalyst SD-WAN EITW
|
|
1
|
32
|
June 24, 2026
|
|
CVE-2026-35273: Oracle PeopleSoft PeopleTools Vuln Exploited by ShinyHunters
|
|
1
|
53
|
June 12, 2026
|
|
CVE-2026-10520: Ivanti Sentry Preauth Command Injection EITW
|
|
1
|
79
|
June 11, 2026
|
|
CVE-2026-42771 (LiteLLM) exploited in the wild
|
|
0
|
30
|
June 10, 2026
|
|
CVE-2026-50752: CheckPoint VPN Authentication bypass EITW
|
|
2
|
37
|
June 9, 2026
|
|
Chaotic Eclipse/Nightmare Eclipse drops two Windows 0days (CVE-2026-45585)
|
|
5
|
318
|
June 9, 2026
|
|
CVE-2026-23111 Presumed new LPE
|
|
0
|
23
|
June 9, 2026
|
|
CVE-2026-46290: Yet another Linux Kernel flaw
|
|
0
|
29
|
June 8, 2026
|
|
CVE-2026-9256 for nginx, vulnerability in 'ngx_http_rewrite_module'
|
|
4
|
59
|
June 7, 2026
|
|
CVE-2026-0257: PAN-OS GlobalProtect Authentication Bypass EITW
|
|
2
|
43
|
June 6, 2026
|
|
CVE-2026-49975: HTTP/2 Bomb: Remote DoS against most major web servers
|
|
1
|
312
|
June 3, 2026
|
|
CVE-2026-46243: CIFSwitch, Another AI-Discovered Linux LPE
|
|
0
|
230
|
May 30, 2026
|
|
Oracle Begins Their Monthly Critical Security Patch Updates with Multiple Critical CVEs
|
|
0
|
22
|
June 1, 2026
|
|
CVE-2026-9082: SQL Injection in Drupal Core Exploited in the Wild
|
|
4
|
40
|
May 28, 2026
|
|
CVE-2026-48710, aka "BadHost": FastAPI Header-based Auth Bypass
|
|
0
|
29
|
May 26, 2026
|
|
CVE-2026-45829: ChromaDB Pre-Auth RCE
|
|
2
|
30
|
May 19, 2026
|
|
Copy Fail: 732 Bytes to Root on Every Major Linux Distribution
|
|
53
|
4425
|
May 19, 2026
|
|
CVE-2026-2920[1-3] cPanel w/ PoC
|
|
0
|
21
|
May 18, 2026
|
|
CVE-2026-42945: Heap Buffer Overflow in Nginx
|
|
3
|
173
|
May 16, 2026
|