| CVE ID | Exploitable | Vendor | Product | Vulnerability | Date added |
|---|---|---|---|---|---|
| CVE-2026-81578 | True | PaperCut | NG/MF | PaperCut NG/MF Missing Authentication for Critical Function Vulnerability | 2026-08-31 00:00:00 |
| CVE-2026-82078 | True | PaperCut | NG/MF | PaperCut NG/MF Unsafe Reflection Vulnerability | 2026-08-31 00:00:00 |
| CVE-2026-66384 | True | JFrog | Artifactory | JFrog Artifactory Improper Limitation of a Pathname to a Restricted Directory Vulnerability | 2026-08-27 00:00:00 |
| CVE-2026-53362 | True | Linux | Kernel | Linux Kernel Unspecified Vulnerability | 2026-08-27 00:00:00 |
| CVE-2023-49105 | True | ownCloud | ownCloud | ownCloud Improper Authentication Vulnerability | 2026-08-27 00:00:00 |
| CVE-2019-1068 | True | Microsoft | SQL Server | Microsoft SQL Server Remote Code Execution Vulnerability | 2026-08-26 00:00:00 |
| CVE-2026-8452 | True | Citrix | NetScaler ADC and NetScaler Gateway | Citrix NetScaler ADC and NetScaler Gateway Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability | 2026-08-26 00:00:00 |
| CVE-2022-0995 | True | Linux | Kernel | Linux Kernel Out-of-Bounds Write Vulnerability | 2026-08-26 00:00:00 |
| CVE-2015-5287 | True | Red Hat | Automatic Bug Reporting Tool | Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability | 2026-08-26 00:00:00 |
| CVE-2015-3246 | True | Red Hat | Libuser | Red Hat Libuser Race Condition Vulnerability | 2026-08-26 00:00:00 |
| CVE-2021-23758 | True | Ajax.NET Professional | Ajax.NET Professional | Ajax.NET Professional Deserialization of Untrusted Data Vulnerability | 2026-08-26 00:00:00 |
| CVE-2026-60004 | True | Gitea | Gitea | Gitea Code Injection Vulnerability | 2026-08-25 00:00:00 |
| CVE-2026-21962 | True | Oracle | HTTP Server and Oracle Weblogic Server Proxy Plug-in | Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in Improper Access Control Vulnerability | 2026-08-24 00:00:00 |
| CVE-2026-73570 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability | 2026-08-21 00:00:00 |
| CVE-2026-72529 | True | TrueConf | Server | TrueConf Server Missing Authentication for Critical Function Vulnerability | 2026-08-20 00:00:00 |
| CVE-2026-72530 | True | TrueConf | Server | TrueConf Server Code Injection Vulnerability | 2026-08-20 00:00:00 |
| CVE-2026-64849 | True | MLflow | MLflow | MLflow Server-Side Request Forgery Vulnerability | 2026-08-19 00:00:00 |
| CVE-2026-65400 | True | Apple | macOS | Apple macOS Improper Authentication Vulnerability | 2026-08-18 00:00:00 |
| CVE-2026-55040 | True | Microsoft | SharePoint | Microsoft SharePoint Weak Authentication Vulnerability | 2026-08-18 00:00:00 |
| CVE-2026-59310 | True | Broadcom | VMware vCenter | Broadcom VMware vCenter Path Traversal Vulnerability | 2026-08-18 00:00:00 |
AVET INS is an owner of VULNDBASE brand and website. This product uses data from the NVD API but is not endorsed or certified by the NVD. See NVD page for more information. CVE is a registered trademark of the MITRE Corporation and the authoritative source of CVE content is MITRE's CVE site. CWE is a registered trademark of the MITRE Corporation and the authoritative source of CWE content is MITRE's CWE page. KEV (Known Exploited Vulnerabilities) is a catalog maintained by CISA. EUVD is the official EU repository for timely, curated cybersecurity vulnerability intelligence and remediation guidance run by ENISA. DORA (Digital Operational Resilience Act) is and EU directive.
Copyright AVET INS 1997 - 2026