| Sep 26 | Elasticsearch: resource exhaustion ElasticsearchMedium6.5Sep 26 | Elasticsearch | Medium6.5 | No fix yet |
| Sep 26 | Elasticsearch: resource exhaustion ElasticsearchMedium6.5Sep 26 | Elasticsearch | Medium6.5 | No fix yet |
| Sep 26 | Elasticsearch: resource exhaustion ElasticsearchMedium6.5Sep 26 | Elasticsearch | Medium6.5 | No fix yet |
| Sep 26 | Elasticsearch: resource exhaustion ElasticsearchMedium6.5Sep 26 | Elasticsearch | Medium6.5 | No fix yet |
| Sep 26 | Elastic Kibana: resource exhaustion KibanaMedium6.5Sep 26 | Kibana | Medium6.5 | No fix yet |
| Sep 26 | Elasticsearch: resource exhaustion ElasticsearchMedium4.9Sep 26 | Elasticsearch | Medium4.9 | No fix yet |
| Sep 26 | Elastic Kibana: insecure direct object reference KibanaMedium6.3Sep 26 | Kibana | Medium6.3 | No fix yet |
| Sep 26 | Elastic Kibana: privilege escalation KibanaHigh7.3Sep 26 | Kibana | High7.3 | No fix yet |
| Sep 26 | Elastic Kibana: missing authorization KibanaMedium6.5Sep 26 | Kibana | Medium6.5 | No fix yet |
| Sep 26 | Elasticsearch: resource exhaustion ElasticsearchMedium6.5Sep 26 | Elasticsearch | Medium6.5 | No fix yet |
| Sep 26 | Elasticsearch: resource exhaustion ElasticsearchMedium6.5Sep 26 | Elasticsearch | Medium6.5 | No fix yet |
| Sep 25 | khoj has an unauthenticated path traversal in /home/ endpoint that allows file read from server filesystem KhojHighSep 25 | Khoj | High | 2.0.0-beta.25 |
| Sep 25 | Google: code injection GoogleHigh8.0Sep 25 | Google | High8.0 | 2.0.1 |
| Sep 25 | Claude Desktop (macOS): opening a malicious file from a Cowork folder could run commands on the host AnthropicHigh8.5Sep 25 | Anthropic | High8.5 | 1.15962.0 |
| Sep 25 | Esri Lerc: out-of-bounds write LercHigh7.5Sep 25 | Lerc | High7.5 | No fix yet |
| Sep 25 | Ciena Navigator NCS: information disclosure Navigator NCSHigh7.5Sep 25 | Navigator NCS | High7.5 | No fix yet |
| Sep 25 | Microsoft Office Outlook: integer overflow Microsoft Office OutlookHigh7.5Sep 25 | Microsoft Office Outlook | High7.5 | See the advisory |
| Sep 25 | REMOVE_BASE_PATH strips every leading repetition of the base path, not just one AWSLowSep 25 | AWS | Low | 1.1.0 |
| Sep 25 | Google gVisor: code execution gVisorHigh8.8Sep 25 | gVisor | High8.8 | 573a9e73cf844f |
| Sep 25 | IBM Guardium Data Protection: unsafe deserialization Guardium Data ProtectionHigh7.2Sep 25 | Guardium Data Protection | High7.2 | No fix yet |
| Sep 25 | IBM Guardium Data Protection: path traversal Guardium Data ProtectionHigh7.5Sep 25 | Guardium Data Protection | High7.5 | No fix yet |
| Sep 25 | IBM Financial Transaction Manager for Redhat OpenShift: information disclosure IBM Financial Transaction Manager (FTM) for Redhat OpenShiftMedium6.5Sep 25 CVE-2026-93030·IBM Financial Transaction Manager (FTM) for Redhat OpenShift·No fix yet | IBM Financial Transaction Manager (FTM) for Redhat OpenShift | Medium6.5 | No fix yet |
| Sep 25 | IBM Server Firmware: memory corruption Server FirmwareHigh7.1Sep 25 | Server Firmware | High7.1 | No fix yet |
| Sep 25 | Red Hat QEMU: use after free QEMUHigh8.8Sep 25 | QEMU | High8.8 | No fix yet |
| Sep 25 | IBM Guardium Data Protection: information disclosure Guardium Data ProtectionHigh7.5Sep 25 | Guardium Data Protection | High7.5 | No fix yet |
| Sep 25 | IBM Guardium Data Protection: command injection Guardium Data ProtectionHigh8.8Sep 25 | Guardium Data Protection | High8.8 | No fix yet |
| Sep 25 | IBM Guardium Data Protection: plaintext password storage Guardium Data ProtectionHigh7.5Sep 25 | Guardium Data Protection | High7.5 | No fix yet |
| Sep 25 | IBM Guardium Data Protection: SQL injection Guardium Data ProtectionHigh7.6Sep 25 | Guardium Data Protection | High7.6 | No fix yet |
| Sep 25 | Rojo's "rojo serve" HTTP API rojoHigh8.1Sep 25 | rojo | High8.1 | 7.7.0 |
| Sep 25 | Rapid7 Bulk Export MCP versions 0.2.5 through 0.6.1 suffer from a GraphQL query... PlatformLow2.7Sep 25 | Platform | Low2.7 | 0.6.2 |
| Sep 25 | Red Hat Build of Keycloak: improper authorization Red Hat Build of KeycloakMedium6.6Sep 25 | Red Hat Build of Keycloak | Medium6.6 | No fix yet |
| Sep 25 | Red Hat Build of Keycloak: improper authentication Red Hat Build of KeycloakMedium6.8Sep 25 | Red Hat Build of Keycloak | Medium6.8 | No fix yet |
| Sep 24 | Dell Technologies Trusted Device Client,: insecure permissions Trusted Device Client,High7.1Sep 24 | Trusted Device Client, | High7.1 | Trusted Device Client+1 more |
| Sep 24 | Rapid7 Insight Agent: code execution Insight AgentHigh7.8Sep 24 | Insight Agent | High7.8 | No fix yet |
| Sep 24 | ServiceNow AI Platform: missing authorization ServiceNow AI PlatformHigh8.4Sep 24 CVE-2026-86857·ServiceNow AI Platform·Yokohama Patch 13 Hot Fix 5a+3 more | ServiceNow AI Platform | High8.4 | Yokohama Patch 13 Hot Fix 5a+3 more |
| Sep 24 | ServiceNow AI Platform: improper access control ServiceNow AI PlatformHigh8.7Sep 24 CVE-2026-86858·ServiceNow AI Platform·Yokohama Patch 13 Hot Fix 5a+3 more | ServiceNow AI Platform | High8.7 | Yokohama Patch 13 Hot Fix 5a+3 more |
| Sep 24 | ServiceNow AI Platform: unauthenticated user could access data within ServiceNow AI PlatformHigh8.7Sep 24 CVE-2026-86859·ServiceNow AI Platform·Yokohama Patch 13 Hot Fix 5a+3 more | ServiceNow AI Platform | High8.7 | Yokohama Patch 13 Hot Fix 5a+3 more |
| Sep 24 | ServiceNow AI Platform: missing authorization ServiceNow AI PlatformCritical9.3Sep 24 CVE-2026-86860·ServiceNow AI Platform·Yokohama Patch 13 Hot Fix 5a+3 more | ServiceNow AI Platform | Critical9.3 | Yokohama Patch 13 Hot Fix 5a+3 more |
| Sep 24 | Dell Technologies ThinOS 10: missing authentication ThinOS 10High8.6Sep 24 | ThinOS 10 | High8.6 | SecurityAddon_2605.10.2766_T10 |
| Sep 24 | Dell Technologies Rugged Control Center (RCC): improper authorization Rugged Control Center (RCC)High8.1Sep 24 | Rugged Control Center (RCC) | High8.1 | 5.2.206 |
| Sep 24 | Dell Technologies ThinOS 10: improper certificate validation ThinOS 10High8.3Sep 24 | ThinOS 10 | High8.3 | SecurityAddon_2605.10.2766_T10 |
| Sep 24 | Dell Technologies Rugged Control Center (RCC): improper authorization Rugged Control Center (RCC)Medium4.4Sep 24 | Rugged Control Center (RCC) | Medium4.4 | 5.2.206 |
| Sep 24 | Honeywell PD45 Industrial Printer: remote code execution via file upload PD45 Industrial PrinterCritical9.8Sep 24 | PD45 Industrial Printer | Critical9.8 | F10.22.030745 |
| Sep 24 | Honeywell PD45 Industrial Printer: remote code execution PD45 Industrial PrinterHigh8.8Sep 24 | PD45 Industrial Printer | High8.8 | F10.22.030745 |
| Sep 24 | ServiceNow AI Platform: SQL injection ServiceNow AI PlatformCritical9.3Sep 24 CVE-2026-13016·ServiceNow AI Platform·Yokohama Patch 13 Hot Fix 5a+3 more | ServiceNow AI Platform | Critical9.3 | Yokohama Patch 13 Hot Fix 5a+3 more |
| Sep 24 | PYTHON-5996 Heap out-of-bounds write via signed size overflow in BSON document encoding MongoDBHigh7.5Sep 24 | MongoDB | High7.5 | 4.18.2 |
| Sep 24 | PYTHON-5986 Host injection in PyMongo connection string parsing via percent-encoded delimiters MongoDBHigh8.3Sep 24 | MongoDB | High8.3 | 4.18.2 |
| Sep 24 | MongoDB: improper input validation MongoDBMedium5.3Sep 24 | MongoDB | Medium5.3 | 4.18.2 |
| Sep 24 | Amazon Kiro IDE: untrusted functionality included Kiro IDEHigh8.6Sep 24 | Kiro IDE | High8.6 | 1.0.242 |
| Sep 24 | Improper neutralization of special elements in data query logic in the cache... Laravel MongoDB (PHP)High7.1Sep 24 | Laravel MongoDB (PHP) | High7.1 | 5.11.0 |
| Sep 24 | MongoDB Compass: code injection CompassHigh7.3Sep 24 | Compass | High7.3 | 1.49.12 |
| Sep 24 | Heap buffer overflow via mid-scan command list growth in client topology monitoring MongoDBHigh8.3Sep 24 | MongoDB | High8.3 | 1.30.12+1 more |
| Sep 24 | PHP object injection via unsuppressible __pclass class inference in command monitoring events MongoDBMedium6.3Sep 24 | MongoDB | Medium6.3 | 1.21.10+2 more |
| Sep 24 | Red Hat pulpcore: path traversal pulpcoreHigh8.1Sep 24 | pulpcore | High8.1 | No fix yet |
| Sep 24 | IBM DataStage on Cloud Pak for Data: remote code execution DataStage on Cloud Pak for DataHigh8.8Sep 24 | DataStage on Cloud Pak for Data | High8.8 | No fix yet |
| Sep 24 | IBM DataStage on Cloud Pak for Data: remote code execution DataStage on Cloud Pak for DataHigh8.8Sep 24 | DataStage on Cloud Pak for Data | High8.8 | No fix yet |
| Sep 24 | IBM DataStage on Cloud Pak for Data: path traversal DataStage on Cloud Pak for DataHigh7.1Sep 24 | DataStage on Cloud Pak for Data | High7.1 | No fix yet |
| Sep 24 | IBM DataStage on Cloud Pak for Data: remote code execution DataStage on Cloud Pak for DataHigh8.8Sep 24 | DataStage on Cloud Pak for Data | High8.8 | No fix yet |
| Sep 24 | IBM DataStage on Cloud Pak for Data: remote code execution DataStage on Cloud Pak for DataHigh8.8Sep 24 | DataStage on Cloud Pak for Data | High8.8 | No fix yet |
| Sep 24 | IBM DataStage on Cloud Pak for Data: remote code execution DataStage on Cloud Pak for DataHigh8.8Sep 24 | DataStage on Cloud Pak for Data | High8.8 | No fix yet |