VULNERABILITY INTELLIGENCE

CVE index

Use CVSS, EPSS, CISA KEV, affected-version data, and source evidence as separate signals for prioritization.

NVD data is used under its public data terms. This service is not endorsed or certified by NVD.
19,735 CVE recordsPage 501 of 1316 · EPSS data 2026.08.13
ReviewHigh
CVE-2026-13149

juliangruber brace-expansion

brace-expansion through 5.0.6 is vulnerable to denial of service. The expand() function exhibits exponential-time complexity in the number of consecutive non-expanding '{}' brace groups. An attacker who passes a crafted string to expand(), directly or transitively, can cause significant CPU consumption and event-loop blocking. The max option does not mitigate this, as it bounds the output size rather than the recursion work.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-12076

Raytha

Raytha CMS is vulnerable to SQL Injection within the OData filter parsing pipeline. The vulnerability allows a remote, unauthenticated attacker to execute arbitrary SQL statements against the underlying PostgreSQL database, leading to full database compromise, including credential extraction. Because vendor contact attempts were unsuccessful, the vulnerability has only been confirmed in version 1.5.2 but may also affect other versions.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-10763

Hitachi Energy PROMOD V

PROMOD V is using insecure HTTP communication instead of HTTPS. The vulnerability is due to the lack of HTTPS support from 3rd party Digipede server.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2025-7406

Nokia MantaRay NM, mantaray nm

Nokia MantaRay NM is vulnerable to a sudo privilege escalation vulnerability where a local attacker possessing administrative (local admin) privileges can escalate to full root privileges on the host. Successful exploitation results in root-level access to the filesystem and the ability to execute actions as root. The risk can be temporarily mitigated by restricting the set of commands permitted via sudo for the affected accounts.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2025-24815

Nokia MantaRay NM, mantaray nm

Nokia MantaRay NM is subject to an unrestricted file upload vulnerability due to insufficient file type validation. Successful exploitation could allow an authenticated attacker to upload malicious files onto the system.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-12578

deltaww DTMSoft

The affected product is vulnerable to a deserialization of untrusted data, which may allow an attacker to execute arbitrary code.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-56808

AVTECH Security Corporation DGM3103SCT

DGM3103SCT provided by AVTECH Security Corporation contains an OS command injection vulnerability, which may lead to arbitrary command execution with the root privilege by a user who can log in to the web management console of the affected product.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-14164

Red Hat Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 9, Red Hat Discovery 2

A double free issue has been identified in libarchive's RAR5 reader. During parsing of a specially crafted RAR5 archive, the filtered_buf pointer may remain stale after being freed during unpacking state reinitialization. Subsequent processing of another archive entry can trigger a second free of the same memory region, resulting in a double-free condition. Successful exploitation may cause applications using the vulnerable libarchive API to terminate unexpectedly, leading to a denial of service.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-12819

deltaww DVP-12SE

Delta Electronics DVP12SE PLC exposes a Modbus TCP service over a specified port without authentication or access control, permitting unauthenticated interaction with security-sensitive PLC functions.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-12818

deltaww DVP-12SE

Delta Electronics DVP12SE PLCs are susceptible to a resource allocation vulnerability without limits or throttling (CWE-770) within their Modbus TCP service.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-12240

qlstudio Export User Data

The Export User Data plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the unserialize function in all versions up to, and including, 2.2.6. This makes it possible for authenticated attackers, with subscriber-level access and above, to delete arbitrary files on the server, which can easily lead to remote code execution when the right file is deleted (such as wp-config.php). Successful exploitation requires an administrator to trigger a user data export while a subscriber-level (or higher) user has stored a crafted serialized XLSXWriter...

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-11590

WP Support Plus Responsive Ticket System

The WP Support Plus Responsive Ticket System WordPress plugin through 9.1.2 does not sanitize user-supplied array keys before using them in a SQL statement, allowing unauthenticated users to perform SQL injection attacks.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-11589

WP Support Plus Responsive Ticket System

The WP Support Plus Responsive Ticket System WordPress plugin through 9.1.2 does not properly validate uploaded files, allowing unauthenticated users to upload files containing malicious JavaScript (such as HTML or SVG) to a publicly accessible location, leading to Stored Cross-Site Scripting attacks against site users and administrators.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-12073

metagauss ProfileGrid – User Profiles, Groups and Communities

The ProfileGrid – User Profiles, Groups and Communities plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 5.9.9.5. This is due to the plugin not validating a `user_login` on registration forms that don't contain this parameter, and not properly handling the error messages. This makes it possible for unauthenticated attackers to change email address of user account with ID=1 (usually an administrator), and leverage that to reset the user's password and gain access to their account.

The CVSS severity warrants an early asset and exposure review.