VULNERABILITY INTELLIGENCE

CVE index

Use CVSS, EPSS, CISA KEV, affected-version data, and source evidence as separate signals for prioritization.

NVD data is used under its public data terms. This service is not endorsed or certified by NVD.
20,165 CVE recordsPage 612 of 1345 · EPSS data 2026.08.14
ReviewHigh
CVE-2016-20087

Networkdls Fortitude HTTP

Fortitude HTTP 1.0.4.0 contains an unquoted service path vulnerability that allows local users to execute arbitrary code with elevated privileges by exploiting the service binary path. Attackers can insert malicious executables in the system root path that execute with SYSTEM privileges during service startup or system reboot.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2016-20086

Vembu Vembu StoreGrid

Vembu StoreGrid 4.0 contains an unquoted service path vulnerability in the RemoteBackup and RemoteBackup_webServer services that allows local attackers to escalate privileges. Attackers can place a malicious executable in the unquoted path and restart the service to execute code with LocalSystem privileges.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2016-20085

Realtek Realtek High Definition Audio Driver

Realtek High Definition Audio Driver 6.0.1.6730 contains an unquoted service path vulnerability that allows local attackers to escalate privileges by placing a malicious executable in the service path. Attackers can insert an executable file in the unquoted path and restart the service to execute code with LocalSystem privileges.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-9142

NI grpc-device, InstrumentStudio, instrumentstudio

There is an insecure default credentials vulnerability in NI grpc-device when TLS configuration is not present and the server is bound beyond loopback. This may allow an unauthenticated user access to the server on the local network. This affects NI grpc-device 2.17.0 and prior versions.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-4027

Flexera FlexNet Manager Suite

A security vulnerability has been identified in FlexNet Manager Suite 2025 R1 and R2 that could allow unauthorized access to attachment files due to insufficient access control.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-4026

Flexera FlexNet Manager Suite

A security vulnerability has been identified in FlexNet Manager Suite 2025 R1 that could allow an authenticated user with read-only access to account settings to escalate their privileges to Administrator level.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-49357

dtwang line-desktop-mcp

Line Desktop MCP is a project that, while unaffiliated with the official line-bot-mcp-server, allows users to directly operate the LINE Desktop application on Windows or Mac via MCP. `line-desktop-mcp` supports a `--http-mode` Streamable HTTP transport for use with clients such as n8n. In this mode the server binds to `0.0.0.0` and exposes the MCP `/mcp` endpoint without an MCP-layer authentication check. Prior to version 1.1.2, any network client that can reach the port can initialize a session, list tools, and call tools that read LINE Desktop chat history or send LINE messages through th...

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-48140

NI grpc-device, InstrumentStudio, instrumentstudio

There is an unchecked enum cast vulnerability in NI grpc-device BeginSidebandStream that may allow an attacker to trigger invalid enum states and undefined behavior, potentially resulting in a denial of service. Successful exploitation requires an attacker to supply a specially crafted message containing an out-of-range value. This affects NI grpc-device 2.17.0 and prior versions.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-48139

NI grpc-device, InstrumentStudio, instrumentstudio

There is a NULL pointer dereference vulnerability in NI grpc-device in the data moniker service that may allow an attacker to cause a denial of service by triggering a crash. Successful exploitation requires an attacker to provide an unknown value to the data moniker service. This affects NI grpc-device 2.17.0 and prior versions.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-48138

NI grpc-device, InstrumentStudio, instrumentstudio

There is an out-of-bounds read vulnerability in the NI grpc-device streaming API due to a missing bounds check that may result in a denial of service. Successful exploitation requires an attacker to supply a specially crafted write request. This affects NI grpc-device 2.17.0 and prior versions.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-48137

NI grpc-device, InstrumentStudio, instrumentstudio

There is an untrusted pointer dereference vulnerability in the NI grpc-device sideband streaming API that may allow an attacker to cause an arbitrary memory dereference, potentially resulting in remote code execution. Successful exploitation requires an attacker to supply a specially crafted Moniker protobuf message. This affects NI grpc-device 2.17.0 and prior versions.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-39999

Apache Software Foundation Apache APISIX, apisix

Authentication Bypass by Spoofing vulnerability in Apache APISIX. The attacker can completely bypass authentication capitalising on certain configurations of jwt-auth plugin. This issue affects Apache APISIX: from v2.2 through v3.16.0. Users are recommended to upgrade to version v3.17.0, which fixes the issue.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-12104

SIMA GmbH Bondix Server

OS command injection in the environment and tunnel configuration functionality in SIMA GmbH Bondix through version 1.25.7.5 on Linux allows an authenticated attacker with configuration write access to execute arbitrary operating-system commands via crafted configuration values passed to server-side scripts.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2025-62821

heif image extension

Microsoft HEIF Image Extensions 1.2.22.0 has an out-of-bounds read because CHEIFItemInfoEntry_GetDataSize can return success while leaving the reported data size as 0. This causes a caller to make a 1-byte allocation. Later, CopyPixels computes copy_size = stride * abs(roi_height) but does not check the source buffer length before a memmove call.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-56142

JetBrains Hub, hub

In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 privilege escalation by attaching authentication details to accounts was possible

The CVSS severity warrants an early asset and exposure review.