VULNERABILITY INTELLIGENCE

CVE index

Use CVSS, EPSS, CISA KEV, affected-version data, and source evidence as separate signals for prioritization.

NVD data is used under its public data terms. This service is not endorsed or certified by NVD.
19,287 CVE recordsPage 785 of 1286 · EPSS data 2026.08.04
ReviewHigh
CVE-2026-9157

Gmission Web Fax

Improper input validation, Unrestricted upload of file with dangerous type vulnerability in Gmission Web Fax allows Remote Code Inclusion. This issue affects Web Fax: from 3.0 before 3.1.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-5433

Honeywell International Inc. Control Network Module (CNM)

Honeywell Control Network Module (CNM) contains command injection vulnerability in the web interface. An attacker could exploit this vulnerability via command delimiters, potentially resulting in Remote Code Execution (RCE). Honeywell recommends updating to the most recent version of this product, service or offering [200.1]. The CNM versions affected are from [100.1, 101.1, 110.1, and 110.2].

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-4858

Mattermost Mattermost, mattermost server

Mattermost versions 11.6.x <= 11.6.0, 11.5.x <= 11.5.3, 11.4.x <= 11.4.4, 10.11.x <= 10.11.14 fail to check integration URL for path traversal which allows an malicious authenticated user to call an arbitrary API via system admin Mattermost auth token using via path traversal in integration action URL.. Mattermost Advisory ID: MMSA-2026-00640

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-45250

FreeBSD FreeBSD, freebsd

The setcred(2) system call is only available to privileged users. However, before the privilege level of the caller is checked, the user-supplied list of supplementary groups is copied into a fixed-size kernel stack buffer without first validating its length. If the supplied list exceeds the capacity of that buffer, a stack buffer overflow occurs. Because the bounds check on the supplementary groups list occurs after the kernel stack buffer has already been written, an unprivileged local user may trigger the overflow without holding any special privilege. Successful exploitation may allow a...

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-44068

Netatalk

Incomplete sanitization of extended attribute (EA) path components in Netatalk 2.1.0 through 4.4.2 allows a remote authenticated attacker to write to files outside the intended metadata namespace via crafted EA names.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-44066

Netatalk

Multiple heap out-of-bounds reads in the Spotlight RPC unmarshalling code in Netatalk 3.1.0 through 4.4.2 allow a remote authenticated attacker to obtain sensitive information or cause a minor service disruption.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-44064

Netatalk

An out-of-bounds read in ASP session ID handling in Netatalk 1.3 through 4.4.2 allows an adjacent network attacker to obtain limited information or cause a denial of service via a crafted ASP request.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-44062

Netatalk

A missing output length bounds check in pull_charset_flags() in Netatalk 2.0.4 through 4.4.2 allows a remote authenticated attacker to execute arbitrary code or cause a denial of service via crafted character set data.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-44060

Netatalk

An integer underflow in dsi_writeinit() in Netatalk 1.5.0 through 4.4.2 allows a remote unauthenticated attacker to cause a denial of service via a crafted DSI write request.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-44058

Netatalk

An authentication bypass vulnerability in Netatalk 2.2.2 through 4.4.2 allows a remote privileged user to authenticate as an arbitrary user via the admin auth user mechanism.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-44055

Netatalk

A logic error involving bitwise OR operations in Netatalk 3.1.4 through 4.4.2 allows a remote authenticated attacker to inject OS commands and execute arbitrary code.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-44053

Netatalk

Netatalk 1.5.0 through 4.2.2 uses a broken cryptographic algorithm in the DHCAST128 UAM, which allows a remote attacker to obtain authentication credentials or impersonate a user via cryptanalytic attack.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-44052

Netatalk

Netatalk 2.1.0 through 4.4.2 inserts LDAP simple-bind passwords into log output in cleartext, which allows an attacker with access to the log files to obtain LDAP credentials.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-44051

Netatalk

An improper link resolution vulnerability in Netatalk 3.0.2 through 4.4.2 allows a remote authenticated attacker to read arbitrary files or overwrite arbitrary files via attacker-controlled symlink creation.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-44050

Netatalk

A heap-based buffer overflow in the CNID daemon comm_rcv() function in Netatalk 2.0.0 through 4.4.2 allows a remote authenticated attacker to execute arbitrary code with escalated privileges or cause a denial of service.

The CVSS severity warrants an early asset and exposure review.