Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
43953
Total
3568
Critical
13190
High
12986
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-32637 | UNKNOWN | — | Velero is an open source tool for backing up, restoring, and migrating Kubernetes cluster resources and persistent volumes. Prior to 1.18.1, an attacker who compromises … | Aug 25, 2026 |
| CVE-2026-80104 | CRITICAL | 9.8 | DB-GPT builds the destination path for an uploaded skill from the multipart filename without constraining it to the upload directory. skill_upload in packages/dbgpt-app/src/dbgpt_app/openapi/api_v1/agentic_data_api.py takes file.filename … | Aug 25, 2026 |
| CVE-2026-80101 | MEDIUM | 4.4 | A flaw was found in the file-xwd plugin in GIMP. When processing a specially crafted XWD image file, the plugin validates the image width and … | Aug 25, 2026 |
| CVE-2026-79793 | MEDIUM | 4.3 | A vulnerability has been found in code-projects Online Shopping System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/sumit_form.php. Such manipulation … | Aug 25, 2026 |
| CVE-2026-79792 | MEDIUM | 5.6 | A flaw has been found in zackees transcribe-anything up to 4.1.0. Affected is the function ytdlp_download of the file src/transcribe_anything/ytldp_download.py of the component Yt-dlp Download. … | Aug 25, 2026 |
| CVE-2026-79293 | UNKNOWN | — | Information leak in Animation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security … | Aug 25, 2026 |
| CVE-2026-79292 | UNKNOWN | — | Integer overflow in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code … | Aug 25, 2026 |
| CVE-2026-79291 | UNKNOWN | — | Information leak in CSS in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security … | Aug 25, 2026 |
| CVE-2026-79290 | CRITICAL | 9.6 | Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted … | Aug 25, 2026 |
| CVE-2026-79289 | UNKNOWN | — | Improper control of a resource through its lifetime in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer … | Aug 25, 2026 |
| CVE-2026-79288 | UNKNOWN | — | Improper input validation in Autofill in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted … | Aug 25, 2026 |
| CVE-2026-79287 | UNKNOWN | — | Observable discrepancy in Forms in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security … | Aug 25, 2026 |
| CVE-2026-79286 | UNKNOWN | — | Missing authorization in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to potentially execute arbitrary code outside the sandbox … | Aug 25, 2026 |
| CVE-2026-79285 | UNKNOWN | — | Uninitialized resource in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML … | Aug 25, 2026 |
| CVE-2026-79284 | UNKNOWN | — | UI misrepresentation in Core in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to spoof … | Aug 25, 2026 |
| CVE-2026-79283 | UNKNOWN | — | UI misrepresentation in Geometry in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security … | Aug 25, 2026 |
| CVE-2026-79282 | CRITICAL | 9.6 | Use after free in ANGLE in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox … | Aug 25, 2026 |
| CVE-2026-79276 | UNKNOWN | — | Improper privilege management in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a … | Aug 25, 2026 |
| CVE-2026-79275 | CRITICAL | 9.6 | Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted … | Aug 25, 2026 |
| CVE-2026-79274 | UNKNOWN | — | Information leak in GPU in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security … | Aug 25, 2026 |
| CVE-2026-79273 | UNKNOWN | — | Incorrect reference resolution in WebView in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via … | Aug 25, 2026 |
| CVE-2026-79272 | UNKNOWN | — | Improper input validation in FindInPage in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to leak cross-origin data … | Aug 25, 2026 |
| CVE-2026-79271 | UNKNOWN | — | Information leak in DOM in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML … | Aug 25, 2026 |
| CVE-2026-79270 | UNKNOWN | — | Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. … | Aug 25, 2026 |
| CVE-2026-79269 | UNKNOWN | — | Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. … | Aug 25, 2026 |