| Sep 25 | REMOVE_BASE_PATH strips every leading repetition of the base path, not just one GHSA-59g6-234f-frf6Lowfixed in 1.1.0 | | Low | 1.1.0 |
| Sep 25 | Rapid7 Bulk Export MCP versions 0.2.5 through 0.6.1 suffer from a GraphQL query injection issue in the export-status component (`get_export_status` in `src/export_manager. CVE-2026-97228Low2.7fixed in Platform 0.6.2 | | Low2.7 | Platform 0.6.2 |
| Sep 24 | IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, and FW1060.00 through FW1060.81 is affected by a vulnerability in a hypervisor call interface. CVE-2026-19492Low3.2no fix yet | | Low3.2 | No fix yet |
| Sep 24 | Velociraptor's prefetch library contains an out of bound vulnerability which may cause a crash when parsing certain malformed prefetch files. CVE-2026-77797Low3.6fixed in Velociraptor 0.77.3 | | Low3.6 | Velociraptor 0.77.3 |
| Sep 24 | IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950. CVE-2026-17511Low3.4no fix yet | | Low3.4 | No fix yet |
| Sep 24 | IBM Db2 Mirror for i 7.6, 7.5, and 7.4 could allow a local attacker to obtain sensitive information due to the use of the AES Electronic Codebook (ECB) mode for encryption. CVE-2026-18104Low3.3no fix yet | | Low3.3 | No fix yet |
| Sep 24 | IBM OPENBMC FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, and FW1060.00 through FW1060.81 is affected by a vulnerability in the BMC firmware management interface. CVE-2026-18857Low3.4no fix yet | | Low3.4 | No fix yet |
| Sep 24 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4. CVE-2026-92628Low3.1fixed in GitLab 19.2.7, GitLab 19.3.3, GitLab 19.4.1 | | Low3.1 | GitLab 19.2.7, GitLab 19.3.3, GitLab 19.4.1 |
| Sep 23 | A one-byte out-of-bounds heap read flaw was found in GIMP's uncompressed DDS image loader. CVE-2026-96546Low2.5no fix yet | | Low2.5 | No fix yet |
| Sep 23 | Notification template Jinja AST whitelist only inspects static Getattr nodes. Dynamic subscripts (job['job'+'_env']) and {% if job. CVE-2026-71463Low2.7no fix yet | | Low2.7 | No fix yet |
| Sep 23 | LaunchConfigurationBaseSerializer.scm_branch has no validate_scm_branch() leading-dash check, unlike Project/JobTemplate/JobLaunch serializers. CVE-2026-71464Low3.1no fix yet | | Low3.1 | No fix yet |
| Sep 23 | RunAdHocCommand.build_args() appends limit as bare positional (args.append(limit)) instead of using args.extend(['-l', limit]) like RunJob. A limit beginning with - is parsed as an ansible CLI option. CVE-2026-71465Low3.1no fix yet | | Low3.1 | No fix yet |
| Sep 23 | IBM Guardium Data Protection 12.2 could allow an administrative user to obtain sensitive information when a detailed technical error message is returned in the browser. CVE-2026-4921Low2.7no fix yet | | Low2.7 | No fix yet |
| Sep 23 | Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Use of Non-Canonical URL Paths for Authorization Decisions vulnerability. CVE-2026-71178Low3.7fixed in Secure Connect Gateway (SCG) Policy Manager 5.36.00.16 or later | | Low3.7 | Secure Connect Gateway (SCG) Policy Manager 5.36.00.16 or later |
| Sep 23 | Uncontrolled recursion in QXmlStreamReader::readElementText() in Qt Group Qt allows attackers to cause a denial of service (application crash via stack exhaustion) via a crafted XML document. CVE-2026-78253Low2.3no fix yet | | Low2.3 | No fix yet |
| Sep 23 | Out-of-bounds read while parsing untrusted SVG path strings in Qt Quick's Context2D.path / PathSvg.path. CVE-2026-79616Low0.6no fix yet | | Low0.6 | No fix yet |
| Sep 22 | OpenBao Agent Writes Secrets to Stdout CVE-2026-77285Lowfixed in 0.0.0-20260714163218-90272575e5f5 | | Low | 0.0.0-20260714163218-90272575e5f5 |
| Sep 22 | IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to obtain sensitive information due to improper enforcement of mutual TLS authentication. CVE-2026-18173Low3.7no fix yet | | Low3.7 | No fix yet |
| Sep 21 | A flaw was found in the User-Managed Access (UMA) implementation of Keycloak. The issue occurs in the authorization token endpoint when processing permission tickets. CVE-2026-94217Low3.5no fix yet | | Low3.5 | No fix yet |
| Sep 21 | A flaw was found in the authentication session management of Keycloak, an identity and access management solution. CVE-2026-94218Low3.1no fix yet | | Low3.1 | No fix yet |
| Sep 18 | IBM WebSphere Application Server 8.5 and 9.0 could allow a remote attacker to obtain sensitive information from the administrative console due to missing authorization checks. CVE-2026-11545Low3.7no fix yet | | Low3.7 | No fix yet |
| Sep 18 | IBM WebSphere Application Server 9.0 and 8.5 is affected by a log injection vulnerability through crafted LTPA token cookies. CVE-2026-11538Low3.7no fix yet | | Low3.7 | No fix yet |
| Sep 18 | A flaw was found in Cockpit. An integer overflow vulnerability in the `do_lastlog()` function, specifically in the offset calculation for `lastlog` entries on ILP32 (Integer, Long, Pointer 32-bit)... CVE-2026-91142Low3.6no fix yet | | Low3.6 | No fix yet |
| Sep 18 | xdg-dbus-proxy incorrectly filters D-Bus broadcast messages, bypassing configured path, interface, and member restrictions. CVE-2026-93676Low3.2no fix yet | | Low3.2 | No fix yet |
| Sep 17 | Missing authorization in Storage in Google Chrome prior to 153.0.8010.52 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted PDF file. CVE-2026-93378Low3.1fixed in Chrome 153.0.8010.52 | | Low3.1 | Chrome 153.0.8010.52 |
| Sep 17 | Race condition in FileSystem in Google Chrome prior to 153.0.8010. CVE-2026-93380Low3.1fixed in Chrome 153.0.8010.52 | | Low3.1 | Chrome 153.0.8010.52 |
| Sep 17 | Server-side request forgery in Omnibox in Google Chrome on on Android prior to 153.0.8010. CVE-2026-93384Low3.7fixed in Chrome 153.0.8010.52 | | Low3.7 | Chrome 153.0.8010.52 |
| Sep 17 | Dell SmartFabric Manager, versions prior to 2.2.1, contains an Improper Handling of Insufficient Permissions or Privileges vulnerability. CVE-2026-54471Low3.5fixed in SmartFabric Manager 2.2.1 or later | | Low3.5 | SmartFabric Manager 2.2.1 or later |
| Sep 17 | Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains Use of a Broken or Risky Cryptographic Algorithm vulnerability. CVE-2026-81438Low3.7fixed in Dell OpenManage Server Administrator Managed Node (Patch) for Windows 11.1.0.3, OpenManage Server Administrator Managed Node for RHEL 8.10 11.1.0.3, OpenManage Server Administrator Managed Node for RH | | Low3.7 | Dell OpenManage Server Administrator Managed Node (Patch) for Windows 11.1.0.3, OpenManage Server Administrator Managed Node for RHEL 8.10 11.1.0.3, OpenManage Server Administrator Managed Node for RH |
| Sep 17 | Dell OpenManage Server Administrator, versions prior to 11.1.0.3, contains an Incorrect Authorization vulnerability. CVE-2026-81439Low3.7fixed in OpenManage Server Administrator Managed Node (Patch) for Windows 11.1.0.3, OpenManage Server Administrator Managed Node for RHEL 8.10 11.1.0.3, OpenManage Server Administrator Managed Node for RHEL 9. | | Low3.7 | OpenManage Server Administrator Managed Node (Patch) for Windows 11.1.0.3, OpenManage Server Administrator Managed Node for RHEL 8.10 11.1.0.3, OpenManage Server Administrator Managed Node for RHEL 9. |
| Sep 16 | A vulnerability in the SSID bring-your-own-device (BYOD) onboarding workflow of Cisco ISE could allow an unauthenticated, adjacent attacker to hijack the onboarding session of CVE-2026-20071Low3.8no fix yet | | Low3.8 | No fix yet |
| Sep 16 | On affected platforms running Arista EOS with VRRP enabled, the peer device VRRP authentication credentials are logged in cleartext on the switch, allowing an authenticated user with sufficient... CVE-2026-73442Low2.1no fix yet | | Low2.1 | No fix yet |
| Sep 16 | Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability. CVE-2026-71181Low3.0fixed in Update Package Framework 26.07.03 or later | | Low3.0 | Update Package Framework 26.07.03 or later |
| Sep 16 | Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability. CVE-2026-71182Low3.0fixed in Update Package Framework 26.07.03 or later | | Low3.0 | Update Package Framework 26.07.03 or later |
| Sep 16 | On affected platforms running Arista EOS with Simple Network Management Protocol (SNMP) configured, SNMPv3 local or remote user credentials may be exposed as a one-way hashed, localized key value... CVE-2026-73440Low2.3no fix yet | | Low2.3 | No fix yet |
| Sep 16 | On affected platforms running Arista EOS, an authenticated user with access to the gNMI (gRPC Network Management Interface) may receive incorrect authorization results, potentially allowing access... CVE-2026-19640Low2.3no fix yet | | Low2.3 | No fix yet |
| Sep 16 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2.7 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3. CVE-2026-3855Low3.1fixed in GitLab 19.1.8, GitLab 19.2.6, GitLab 19.3.2 | | Low3.1 | GitLab 19.1.8, GitLab 19.2.6, GitLab 19.3.2 |
| Sep 15 | Use after free in Skia in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to obtain cross-origin data via a crafted HTML page. CVE-2026-91747Low3.1fixed in Chrome 153.0.8010.47 | | Low3.1 | Chrome 153.0.8010.47 |
| Sep 15 | Incomplete cleanup in GetUserMedia in Google Chrome prior to 153.0.8010. CVE-2026-91730Low3.1fixed in Chrome 153.0.8010.47 | | Low3.1 | Chrome 153.0.8010.47 |
| Sep 15 | Race condition in WebAppInstalls in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium) CVE-2026-91723Low3.1fixed in Chrome 153.0.8010.47 | | Low3.1 | Chrome 153.0.8010.47 |
| Sep 15 | Race condition in Network in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to obtain cross-origin data via a crafted HTML page. CVE-2026-91708Low3.1fixed in Chrome 153.0.8010.47 | | Low3.1 | Chrome 153.0.8010.47 |
| Sep 15 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.2.16. CVE-2026-87284Low3.2no fix yet | | Low3.2 | No fix yet |
| Sep 15 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.2.16. CVE-2026-87281Low3.2no fix yet | | Low3.2 | No fix yet |
| Sep 15 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Access SDK). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. CVE-2026-83369Low3.1no fix yet | | Low3.1 | No fix yet |
| Sep 15 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. CVE-2026-83413Low1.9no fix yet | | Low1.9 | No fix yet |
| Sep 15 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). The supported version that is affected is 15.1.1.0.0. CVE-2026-83414Low2.5no fix yet | | Low2.5 | No fix yet |
| Sep 15 | A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM target-info parser when a crafted NTLM CHALLENGE message contains duplicated string-valued AV_PAIR entries. CVE-2026-91926Low3.7no fix yet | | Low3.7 | No fix yet |
| Sep 14 | An authenticated supplicant on an adjacent network may bypass intended network authorization policy and send unrestricted traffic during a brief window (milliseconds to seconds) between the... CVE-2026-77191Low2.1no fix yet | | Low2.1 | No fix yet |
| Sep 14 | A brief (milliseconds to seconds) traffic leak may occur when an authenticated supplicant is removed, either via the clear dot1x host all CLI command or due to a supplicant timeout. CVE-2026-75943Low2.1no fix yet | | Low2.1 | No fix yet |
| Sep 14 | A race condition may cause a supplicant to remain in an authorized state after a clear dot1x host all command is issued. CVE-2026-75945Low2.1no fix yet | | Low2.1 | No fix yet |
| Sep 14 | An authorization issue was addressed with improved state management. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, watchOS 27. CVE-2026-86891Low3.5fixed in macOS 15.8, macOS 26.7, macOS 27 | | Low3.5 | macOS 15.8, macOS 26.7, macOS 27 |
| Sep 14 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 27 and iPadOS 27, tvOS 27, visionOS 27, watchOS 27. An app may be able to read device name. CVE-2026-86893Low3.3fixed in iOS and iPadOS 27, tvOS 27, visionOS 27 | | Low3.3 | iOS and iPadOS 27, tvOS 27, visionOS 27 |
| Sep 14 | A privacy issue was addressed by removing sensitive data. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, visionOS 27. An app may be able to bypass certain Privacy preferences. CVE-2026-86887Low3.3fixed in iOS and iPadOS 26.7, iOS and iPadOS 27, visionOS 27 | | Low3.3 | iOS and iPadOS 26.7, iOS and iPadOS 27, visionOS 27 |
| Sep 14 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. CVE-2026-86888Low3.3fixed in iOS and iPadOS 27, macOS 26.7, macOS 27 | | Low3.3 | iOS and iPadOS 27, macOS 26.7, macOS 27 |
| Sep 14 | An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15. CVE-2026-84626Low3.3fixed in iOS and iPadOS 26.7, iOS and iPadOS 27, macOS 15.8 | | Low3.3 | iOS and iPadOS 26.7, iOS and iPadOS 27, macOS 15.8 |
| Sep 14 | An information disclosure issue was addressed with improved memory management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Tahoe 26. CVE-2026-84530Low3.3fixed in iOS and iPadOS 26.7, iOS and iPadOS 27, macOS 26.7 | | Low3.3 | iOS and iPadOS 26.7, iOS and iPadOS 27, macOS 26.7 |
| Sep 14 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26. CVE-2026-65371Low3.3fixed in iOS and iPadOS 26.6, macOS 15.8, macOS 26.6 | | Low3.3 | iOS and iPadOS 26.6, macOS 15.8, macOS 26.6 |
| Sep 14 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a denial of service as a result of a buffer overflow in a PASE process. An authenticated attacker could leverage this to terminate their own process. CVE-2026-19086Low3.3no fix yet | | Low3.3 | No fix yet |
| Sep 14 | IBM WebSphere Application Server 9.0, and 8.5 is affected by an authorization bypass vulnerability. CVE-2026-16190Low3.1no fix yet | | Low3.1 | No fix yet |
| Sep 10 | A code execution vulnerability in Palo Alto Networks Checkov by Prisma® Cloud can allow arbitrary code execution when Checkov scans a directory that contains an attacker-controlled configuration file. CVE-2026-0303Low2.4fixed in Checkov by Prisma Cloud 3.2.532 | | Low2.4 | Checkov by Prisma Cloud 3.2.532 |