CVEs with confirmed in-the-wild exploitation, drawn from the CISA Known Exploited Vulnerabilities (KEV) catalog and the ENISA EU Vulnerability Database (EUVD) exploited flag, most recent first. Subscribe via the Atom feed.
Recently flagged as exploited
CVE-2026-88779 — CVSS 7.5 (high): Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: before 14.1-73.41, before 13.1-64.28, before 14.1-73.41 FIPS…
CVE-2026-102490 — CVSS 9.8 (critical): All versions of Zammad including the latest alpha enable the local zammad user to escalate privileges to root.
CVE-2026-102489 — CVSS 9.8 (critical): Zammad versions 6.3.0 to 6.5.4 are vulnerable a session hijack vulnerability that leads to remote code execution as the zammad user. The…
CVE-2026-104286 — CVSS 9.8 (critical): An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiMail 8.0.0 through 8.0.1…
CVE-2026-76504 — CVSS 9.8 (critical): A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote…
CVE-2026-86950 — CVSS 8.8 (high): An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and iPadOS 26.7.1, macOS…
CVE-2026-88772 — CVSS 8.1 (high): Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before…
CVE-2026-88771 — CVSS 9.8 (critical): Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37…
CVE-2026-87902 — CVSS 8.1 (high): An unauthenticated attacker can make `get_page_template()` page-template resolution include a chosen readable local `.php` file outside the…
CVE-2026-67279 — CVSS 6.5 (medium): RouterOS SSH enters the connection protocol after a client-requested rekey even though user authentication was never attempted, allowing an…
CVE-2026-65660 — CVSS 8.8 (high): Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over…
CVE-2026-71362 — CVSS 9.1 (critical): Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could…
CVE-2026-5430 — CVSS 10.0 (critical): The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows an…
CVE-2026-94127 — CVSS 9.8 (critical): When a BIG-IP APM access policy and an OAuth profile are configured on a virtual server, specific malicious traffic can lead to remote code…
CVE-2026-93952 — CVSS 10.0 (critical): VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access privileged internal…
CVE-2026-93616 — CVSS 9.8 (critical): A directory traversal and file upload vulnerability allows an unauthenticated attacker to upload and execute arbitrary scripts on Check…
CVE-2026-85102 — CVSS 9.8 (critical): Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote…
CVE-2026-7273 — CVSS 8.8 (high): A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow…
CVE-2026-53266 — CVSS 8.8 (high): In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: make ebt_snat ARP rewrite writable The ebtables SNAT…
CVE-2025-39964 — CVSS 7.8 (high): In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Disallow concurrent writes in af_alg_sendmsg Issuing…
CVE-2025-39682 — CVSS 9.8 (critical): In the Linux kernel, the following vulnerability has been resolved: tls: fix handling of zero-length records on the rx_list Each recvmsg()…
CVE-2026-87886 — CVSS 7.8 (high): Local privilege escalation due to insecure file permissions. The following products are affected: Acronis Backup plugin for cPanel & WHM…
CVE-2026-76460 — CVSS 10.0 (critical): A vulnerability in an API of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to bypass authentication…
CVE-2026-58704 — CVSS 8.8 (high): In Cellular Modem, there is a possible permission bypass due to a logic error in the code. This could lead to remote (proximal/adjacent)…
CVE-2026-76461 — CVSS 9.8 (critical): A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote…
CVE-2026-85706 — CVSS 10.0 (critical): GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 before 18.11.12, 19.0 before 19.0.9, 19.1 before 19.1.8…
CVE-2026-84869 — CVSS 9.9 (critical): A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote session without…
CVE-2026-42018 — CVSS 7.5 (high): JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially…
CVE-2026-42016 — CVSS 8.1 (high): JFrog Artifactory (Self Hosted) versions before 7.133.11 are vulnerable to a privilege escalation attack due to a validation check of the…
CVE-2026-86060 — CVSS 9.8 (critical): RouterOS contains an argument-handling flaw in the SSH login path involving usernames that begin with a prohibited character, allowing for…
CVE-2026-67277 — CVSS 8.2 (high): RouterOS accepts a "related" btest connection before the corresponding primary session has completed authentication. An unauthenticated…
CVE-2026-87491 — CVSS 8.8 (high): Out of bounds write in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code inside the sandbox…
CVE-2026-20079 — CVSS 10.0 (critical): A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote…
CVE-2026-19490 — CVSS 9.8 (critical): Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: from 14.1 through 73.32 and from 13.1 through 63.21; Gateway…
CVE-2025-25249 — CVSS 8.1 (high): A heap-based buffer overflow vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through…
CVE-2026-86218 — CVSS 9.8 (critical): N-central is vulnerable to a pre-auth remote code execution This issue affects N-central: before 2026.3.1.14.
CVE-2026-85880 — CVSS 7.8 (high): Heap-based buffer overflow in Windows ALPC allows an authorized attacker to elevate privileges locally.
CVE-2026-81963 — CVSS 7.8 (high): Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges…
CVE-2026-75650 — CVSS 10.0 (critical): Adobe Commerce is affected by an Improper Neutralization of Special Elements Used in a Template Engine vulnerability that could result in…
CVE-2026-85046 — CVSS 8.8 (high): Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a…
CVE-2026-9586 — CVSS 9.8 (critical): An unauthenticated SQL injection vulnerability exists in Sangoma Switchvox SMB Edition 8.3 (104997). The /pa endpoint processes XML content…
CVE-2026-83549 — CVSS 7.8 (high): Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been…
CVE-2026-83548 — CVSS 10.0 (critical): A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. A…
CVE-2026-82329 — CVSS 9.8 (critical): JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network…
CVE-2026-59822 — CVSS 8.2 (high): LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. Prior to 1.84.0, LiteLLM's MCP Streamable HTTP…
CVE-2026-49869 — CVSS 10.0 (critical): Kestra is an open-source, event-driven orchestration platform. Prior to 1.0.45 and 1.3.21, AuthenticationFilter in Kestra OSS uses…
CVE-2026-48710 — CVSS 6.5 (medium): Starlette is a lightweight ASGI framework/toolkit. Prior to version 1.0.1, the HTTP `Host` request header was not validated before being…
CVE-2026-82078 — CVSS 9.1 (critical): An unsafe dynamic class loading vulnerability exists in the database connection utilities of PaperCut MF and PaperCut NG. The application…
CVE-2026-81578 — CVSS 9.8 (critical): An improper access control vulnerability exists in the web management interface of PaperCut MF and PaperCut NG. Under specific conditions…
CVE-2026-66384 — CVSS 5.3 (medium): An authenticated user may write data outside the intended Docker cache path under specific remote-repository conditions.