VULNERABILITY INTELLIGENCE

CVE index

Use CVSS, EPSS, CISA KEV, affected-version data, and source evidence as separate signals for prioritization.

NVD data is used under its public data terms. This service is not endorsed or certified by NVD.
19,287 CVE recordsPage 797 of 1286 · EPSS data 2026.08.11
ReviewCritical
CVE-2026-47323

Apache Software Foundation Apache Camel, OpenShift Serverless, Red Hat build of Apache Camel 4 for Quarkus 3

Camel-CXF and Camel-Knative Message Header Injection via Missing Inbound Filtering The CXF and Knative HeaderFilterStrategy implementations (CxfRsHeaderFilterStrategy in camel-cxf-rest, CxfHeaderFilterStrategy in camel-cxf-transport, and KnativeHttpHeaderFilterStrategy in camel-knative-http) only filter outbound Camel-internal headers via setOutFilterStartsWith, while not configuring inbound filtering via setInFilterStartsWith. As a result, an unauthenticated attacker can inject Camel-internal headers (e.g. CamelExecCommandExecutable, CamelFileName) via HTTP requests to CXF-RS or CXF-SOAP e...

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-43633

hestiacp

HestiaCP versions 1.9.0 through 1.9.4 contain a deserialization vulnerability in the web terminal component caused by a session format mismatch between PHP and Node.js that allows unauthenticated remote attackers to achieve root-level code execution. Attackers can inject crafted data into HTTP headers that are processed by the PHP session handler but incorrectly deserialized by the Node.js web terminal component as trusted session values, resulting in arbitrary command execution on systems with the web terminal feature enabled.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-7507

Red Hat Red Hat build of Keycloak 26.2, Red Hat build of Keycloak 26.2.16, Red Hat build of Keycloak 26.4

A session fixation vulnerability was found in Keycloak's login-actions endpoints. An unauthenticated attacker could exploit this flaw by pre-creating an authentication session and tricking a victim into visiting a maliciously crafted link. By leveraging the /login-actions/restart endpoint—which processes session handles without adequate CSRF protection or cookie ownership validation—an attacker can reset the authentication flow state. This causes Single Sign-On (SSO) to authenticate the victim transparently upon clicking the link, allowing the attacker to hijack the required-action form wit...

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-7504

Red Hat Red Hat build of Keycloak 26.2, Red Hat build of Keycloak 26.2.16, Red Hat build of Keycloak 26.4

A flaw was found in Keycloak's URL validation logic during redirect operations. By crafting a malicious request, an attacker could bypass validation to redirect users to unauthorized URLs, potentially leading to the exposure of sensitive information within the domain or facilitating further attacks. This vulnerability specifically affects Keycloak clients configured with a wildcard (*) in the "Valid Redirect URIs" field and requires user interaction to be successfully exploited. The issue stems from a discrepancy in how Keycloak and the underlying Java URI implementation handle the user-inf...

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-7307

Red Hat Red Hat build of Keycloak 26.2, Red Hat build of Keycloak 26.2.16, Red Hat build of Keycloak 26.4

A flaw was found in Keycloak. A remote, unauthenticated attacker can send a specially crafted XML input to the Security Assertion Markup Language (SAML) endpoint. This malicious input can cause high CPU usage and worker thread starvation, leading to a Denial of Service (DoS) where the server becomes unavailable.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-43493

Linux Linux, linux kernel

In the Linux kernel, the following vulnerability has been resolved: crypto: pcrypt - Fix handling of MAY_BACKLOG requests MAY_BACKLOG requests can return EBUSY. Handle them by checking for that value and filtering out EINPROGRESS notifications.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-2611

mlflow mlflow/mlflow, Red Hat OpenShift AI (RHOAI), mlflow

In MLflow version 3.9.0, the MLflow Assistant feature introduced improper origin validation in its /ajax-api endpoints. This vulnerability allows a remote attacker to exploit cross-origin requests from a malicious webpage to interact with the MLflow Assistant running on a victim's local machine. By bypassing the loopback-only restriction, the attacker can modify the Assistant's configuration to enable full access, which in turn allows the execution of arbitrary commands via the Claude Code sub-agent. This issue is resolved in version 3.10.0.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-4885

Piotnet Piotnet Addons For Elementor Pro

The Piotnet Addons for Elementor Pro plugin for WordPress is vulnerable to arbitrary file upload due to missing file type validation in the 'pafe_ajax_form_builder' function in all versions up to, and including, 7.1.70. The plugin uses an incomplete extension blacklist that only blocks php, phpt, php5, php7, and exe extensions, while allowing dangerous extensions such as .phar or .phtml to be uploaded. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible. Note: The exploit can only be explo...

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-47317

Samsung Open Source Escargot, escargot

Uncontrolled Recursion vulnerability in Samsung Open Source Escargot allows Excessive Allocation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-47316

Samsung Open Source Escargot, escargot

Improper Check or Handling of Exceptional Conditions vulnerability in Samsung Open Source Escargot allows Input Data Manipulation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-47315

Samsung Open Source Escargot, escargot

Improper Check for Unusual or Exceptional Conditions vulnerability in Samsung Open Source Escargot allows Input Data Manipulation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-47314

Samsung Open Source Escargot, escargot

Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-47313

Samsung Open Source Escargot, escargot

Memory allocation with excessive size value vulnerability in Samsung Open Source Escargot allows Excessive Allocation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-47312

Samsung Open Source Escargot, escargot

Release of invalid pointer or reference vulnerability in Samsung Open Source Escargot allows Buffer Manipulation. This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.

The CVSS severity warrants an early asset and exposure review.