VULNERABILITY INTELLIGENCE

CVE index

Use CVSS, EPSS, CISA KEV, affected-version data, and source evidence as separate signals for prioritization.

NVD data is used under its public data terms. This service is not endorsed or certified by NVD.
18,954 CVE recordsPage 854 of 1264 · EPSS data 2026.08.10
ReviewHigh
CVE-2026-39341

ChurchCRM CRM, churchcrm

ChurchCRM is an open-source church management system. Prior to 7.1.0, the application is vulnerable to time-based SQL injection due to an improper input validation. Endpoint Reports/ConfirmReportEmail.php?familyId= is not correctly sanitising user input, specifically, the sanitised input is not used to create the SQL query. This vulnerability is fixed in 7.1.0.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-24156

NVIDIA DALI, data loading library

NVIDIA DALI contains a vulnerability where an attacker could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to arbitrary code execution.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-22682

HKUDS OpenHarness

OpenHarness prior to commit 166fcfe contains an improper access control vulnerability in built-in file tools due to inconsistent parameter handling in permission enforcement, allowing attackers who can influence agent tool execution to read arbitrary local files outside the intended repository scope. Attackers can exploit the path parameter not being passed to the PermissionChecker in read_file, write_file, edit_file, and notebook_edit tools to bypass deny rules and access sensitive files such as configuration files, credentials, and SSH material, or create and overwrite files in restricted...

The CVSS severity warrants an early asset and exposure review.
PriorityCritical
CVE-2026-4631

Red Hat Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 10.0 Extended Update Support, Red Hat Enterprise Linux 9

Cockpit's remote login feature passes user-supplied hostnames and usernames from the web interface to the SSH client without validation or sanitization. An attacker with network access to the Cockpit web service can craft a single HTTP request to the login endpoint that injects malicious SSH options or shell commands, achieving code execution on the Cockpit host without valid credentials. The injection occurs during the authentication flow before any credential verification takes place, meaning no login is required to exploit the vulnerability.

FIRST EPSS indicates an elevated probability of exploitation.
PriorityCritical
CVE-2026-23696

Windmill Labs Windmill CE (Community Edition), Windmill EE (Enterprise Edition)

Windmill CE and EE versions 1.276.0 through 1.603.2 contain an SQL injection vulnerability in the folder ownership management functionality that allows authenticated attackers to inject SQL through the owner parameter. An attacker can use the injection to read sensitive data such as the JWT signing secret and administrative user identifiers, forge an administrative token, and then execute arbitrary code via the workflow execution endpoints.

FIRST EPSS indicates an elevated probability of exploitation.
ReviewHigh
CVE-2025-14821

Red Hat Red Hat Hardened Images, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 6

A flaw was found in libssh. This vulnerability allows local man-in-the-middle attacks, security downgrades of SSH (Secure Shell) connections, and manipulation of trusted host information, posing a significant risk to the confidentiality, integrity, and availability of SSH communications via an insecure default configuration on Windows systems where the library automatically loads configuration files from the C:\etc directory, which can be created and modified by unprivileged local users.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-33816

github.com/jackc/pgx/v5 github.com/jackc/pgx/v5/pgproto3, Cryostat 4 on RHEL 9, Red Hat Enterprise Linux 10

CVE-2026-33816 affects github.com/jackc/pgx/v5 github.com/jackc/pgx/v5/pgproto3, Cryostat 4 on RHEL 9, Red Hat Enterprise Linux 10. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-30460

fuel cms

Daylight Studio FuelCMS v1.5.2 was discovered to contain an authenticated remote code execution (RCE) vulnerability in the Blocks module.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-4740

Red Hat Multicluster Engine for Kubernetes, advanced cluster management for kubernetes

A flaw was found in Open Cluster Management (OCM), the technology underlying Red Hat Advanced Cluster Management (ACM). Improper validation of Kubernetes client certificate renewal allows a managed cluster administrator to forge a client certificate that can be approved by the OCM controller. This enables cross-cluster privilege escalation and may allow an attacker to gain control over other managed clusters, including the hub cluster.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-24660

LibRaw LibRaw, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support

A heap-based buffer overflow vulnerability exists in the x3f_load_huffman functionality of LibRaw Commit d20315b. A specially crafted malicious file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-21413

LibRaw LibRaw, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support

A heap-based buffer overflow vulnerability exists in the lossless_jpeg_load_raw functionality of LibRaw Commit 0b56545 and Commit d20315b. A specially crafted malicious file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-20889

LibRaw LibRaw, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support

A heap-based buffer overflow vulnerability exists in the x3f_thumb_loader functionality of LibRaw Commit d20315b. A specially crafted malicious file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-5735

Mozilla Firefox, Thunderbird, Red Hat Enterprise Linux 10

Memory safety bugs present in Firefox 149.0.1 and Thunderbird 149.0.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 149.0.2 and Thunderbird 149.0.2.

The CVSS severity warrants an early asset and exposure review.