cve.li

Recent

CVE-2026-67178CWE-601

Open Redirect in MISP Installer-Generated Apache Configuration

Published 2026-07-28 by CIRCL

CVE-2026-66299CWE-400

Apache Tomcat: DoS via WebSocket chat example

Published 2026-07-28 by apache

CVE-2026-63727CWE-648

Anchore Enterprise Privilege Escalation via User Management API

Published 2026-07-28 by VulnCheck

CVE-2026-8164CWE-427

Search Order Hijacking in ArkSigner's ArkSigner Desktop Client

Published 2026-07-28 by TR-CERT

CVE-2026-7521CWE-22

SAML certificate deletion allows path traversal to delete arbitrary files outside the config directory

Published 2026-07-28 by Mattermost

CVE-2026-67174CWE-79

DOM-Based Cross-Site Scripting via Unsafe String and SVG Icon Rendering in Pivotick

Published 2026-07-28 by CIRCL

CVE-2026-66713CWE-502

Apache Axis2/Java: deserialization of untrusted Data

Published 2026-07-28 by apache

CVE-2026-59878CWE-20

Apache ActiveMQ AMQP, Apache ActiveMQ, Apache ActiveMQ All: AMQP NIO negative frame size validation bypass leading to DoS

Published 2026-07-28 by apache

CVE-2026-61487CWE-285

Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Authorization bypass via temporary composite destinations

Published 2026-07-28 by apache

CVE-2026-67173CWE-918

Pivotick Unvalidated Node Image URLs Allow Unintended Client-Side Requests

Published 2026-07-28 by CIRCL

Load more ↓