Live data
Exploited vulnerabilities, page 2
Entries 51 to 100
1,739 in total| Product | What an attacker gains | Concerns | Severity | Added |
|---|---|---|---|---|
Kestra OSSCVE-2026-49869 | Code execution | Business | 10.0 | |
Kludex StarletteCVE-2026-48710 | Authentication bypass | Business | 6.5 | |
PaperCut NG/MFCVE-2026-82078 | Vulnerability | Business | 9.4 | |
PaperCut NG/MFCVE-2026-81578 | Authentication bypass | Business | 8.8 | |
JFrog ArtifactoryCVE-2026-66384 | Vulnerability | Business | 5.3 | |
Linux KernelCVE-2026-53362 | Privilege escalation | Everyone | 7.8 | |
ownCloudCVE-2023-49105 | Authentication bypass | Business | 9.8 | |
Citrix NetScaler ADC and NetScaler GatewayCVE-2026-8452 | Denial of service | Business | 8.8 | |
Linux KernelCVE-2022-0995 | Memory corruption | Everyone | 7.8 | |
Ajax.NET ProfessionalCVE-2021-23758 | Code execution | Business | 9.8 | |
Microsoft SQL ServerCVE-2019-1068 | Code execution | Business | 8.8 | |
Red Hat Automatic Bug Reporting ToolCVE-2015-5287 | Privilege escalation | Business | 7.8 | |
Red Hat LibuserCVE-2015-3246 | Memory corruption | Business | 7.4 | |
GiteaCVE-2026-60004 | Code execution | Business | 9.8 | |
Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-inCVE-2026-21962 | Improper access control | Business | 10.0 | |
Synacor Zimbra Collaboration Suite (ZCS)CVE-2026-73570 | Code execution | Business | 8.9 | |
TrueConf ServerCVE-2026-72530 | Code execution | Business | 9.5 | |
TrueConf ServerCVE-2026-72529 | Authentication bypass | Business | 9.3 | |
MLflowCVE-2026-64849 | Server-side request forgery | Business | 9.3 | |
Apple macOSCVE-2026-65400 | Authentication bypass | Everyone | 9.8 | |
Broadcom VMware vCenterCVE-2026-59310 | File accessused by ransomware | Business | 9.8 | |
Microsoft SharePointCVE-2026-55040 | Security bypass | Business | 9.1 | |
Microsoft Internet Key Exchange (IKE) Service ExtensionsCVE-2026-33824 | Memory corruption | Business | 9.8 | |
Ray-Project RayCVE-2025-62593 | Code execution | Business | 9.4 | |
MetabaseCVE-2026-72898 | SQL injection | Business | 10.0 | |
Microsoft Windows Ancillary Function Driver for WinSockCVE-2026-68820 | Memory corruption | Everyone | 7.0 | |
Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD)CVE-2026-20349 | Memory corruption | Business | 8.6 | |
Progress LoadMasterCVE-2026-8037 | Code execution | Business | 9.8 | |
JetBrains TeamCityCVE-2026-63077 | Code executionused by ransomware | Business | 9.8 | |
IBM LangflowCVE-2026-9198 | Code execution | Business | 9.8 | |
Apache TomcatCVE-2026-34486 | Security bypass | Business | 7.5 | |
N-able N-centralCVE-2026-18556 | Authentication bypass | Business | 8.2 | |
N-able N-centralCVE-2026-18577 | Authentication bypass | Business | 8.2 | |
Cisco Secure Firewall Management Center (FMC)CVE-2026-20316 | Authentication bypassused by ransomware | Business | 5.3 | |
Arista VeloCloud OrchestratorCVE-2026-16812 | Code execution | Business | 10.0 | |
Fortinet FortiOSCVE-2025-68686 | Information disclosure | Business | 5.9 | |
Microsoft SharePointCVE-2026-50522 | Code execution | Business | 9.8 | |
Check Point SmartConsoleCVE-2026-16232 | Authentication bypass | Business | 9.3 | |
WordPress CoreCVE-2026-63030 | SQL injection | Business | 9.8 | |
WordPress CoreCVE-2026-60137 | SQL injection | Business | 5.9 | |
LangflowCVE-2026-0770 | Vulnerability | Business | 9.8 | |
DD-WRTCVE-2021-27137 | Memory corruption | Business | 8.1 | |
Microsoft SharePointCVE-2026-58644 | Code execution | Business | 9.8 | |
Fortinet FortiSandboxCVE-2026-39808 | Code execution | Business | 9.8 | |
Fortinet FortiSandboxCVE-2026-25089 | Code execution | Business | 9.8 | |
Oracle E-Business SuiteCVE-2026-46817 | Privilege escalation | Business | 9.8 | |
KNX Association KNX Protocol Connection Authorization Option 1CVE-2023-4346 | Improper access control | Business | 7.5 | |
Microsoft SharePoint ServerCVE-2026-56164 | Authentication bypass | Business | 9.8 | |
Microsoft Active Directory Federation ServicesCVE-2026-56155 | Improper access control | Business | 7.8 | |
SonicWall SMA1000 AppliancesCVE-2026-15410 | Code executionused by ransomware | Business | 7.2 |
Source: CISA Known Exploited Vulnerabilities catalogsource updated Oct 8, 2026, 20:09 UTC
Severity (CVSS): NIST NVD