Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
44895
Total
3603
Critical
13333
High
13202
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-16842 | HIGH | 8.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special … | Aug 19, 2026 |
| CVE-2026-16841 | HIGH | 8.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow. | Aug 19, 2026 |
| CVE-2026-16840 | CRITICAL | 9.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to an out-of-bounds write. | Aug 19, 2026 |
| CVE-2026-16839 | CRITICAL | 9.4 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to obtain sensitive information due to an integer underflow in … | Aug 19, 2026 |
| CVE-2026-16838 | HIGH | 7.0 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to overwrite critical files and obtain sensitive information due to … | Aug 19, 2026 |
| CVE-2026-16837 | HIGH | 7.5 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to improper handling … | Aug 19, 2026 |
| CVE-2026-16836 | HIGH | 7.5 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to uncontrolled resource … | Aug 19, 2026 |
| CVE-2026-16834 | CRITICAL | 9.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to an integer … | Aug 19, 2026 |
| CVE-2026-16833 | MEDIUM | 5.3 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to disclose kernel memory due to an out-of-bounds read. | Aug 19, 2026 |
| CVE-2026-16831 | HIGH | 7.5 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to uncontrolled resource … | Aug 19, 2026 |
| CVE-2026-16829 | MEDIUM | 5.3 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to a NULL … | Aug 19, 2026 |
| CVE-2026-16827 | MEDIUM | 5.9 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to the use … | Aug 19, 2026 |
| CVE-2026-16825 | MEDIUM | 4.2 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker to obtain sensitive information and cause a denial of … | Aug 19, 2026 |
| CVE-2026-16824 | HIGH | 7.5 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to unbounded recursion. | Aug 19, 2026 |
| CVE-2026-16822 | CRITICAL | 9.3 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to impersonate the TNC policy server and modify traffic due … | Aug 19, 2026 |
| CVE-2026-16724 | MEDIUM | 4.5 | IBM Virtualization Management Interface FW1110.00 through FW1110.30, FW1120.00 through FW1120.00, and FW1060.00 through FW1060.80 is affected by a vulnerability in the Virtualization Management Interface (VMI). … | Aug 19, 2026 |
| CVE-2026-16707 | HIGH | 8.2 | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the service processor mailbox interface. … | Aug 19, 2026 |
| CVE-2026-16661 | HIGH | 8.2 | IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the service processor mailbox interface. … | Aug 19, 2026 |
| CVE-2026-75619 | UNKNOWN | — | Tapo C100/C101 V5 contains a heap-based buffer overflow vulnerability in the RTSP service. An authenticated attacker on the local network can send specially crafted RTSP … | Aug 19, 2026 |
| CVE-2026-75618 | UNKNOWN | — | Tapo C100/C101 V5 contains a null pointer dereference vulnerability in the RTSP service. An attacker on the local network can send specially crafted requests that … | Aug 19, 2026 |
| CVE-2026-70496 | CRITICAL | 9.9 | A flaw was found in search-v2-operator. The operator's ClusterRole has permissions equivalent to a cluster administrator, allowing it to impersonate other entities, write Role-Based Access … | Aug 19, 2026 |
| CVE-2026-61807 | UNKNOWN | — | Snipe-IT is an IT asset/license management system. Prior to 8.6.2, a stored manufacturer or supplier name passed as the table component $name becomes data-selected-count-id in … | Aug 19, 2026 |
| CVE-2026-55703 | MEDIUM | 4.3 | Snipe-IT is an IT asset/license management system. Prior to 8.6.3, any activated account can request /maintenances/{id} and read maintenance records for assets in the same … | Aug 19, 2026 |
| CVE-2026-55694 | UNKNOWN | — | Snipe-IT is an IT asset/license management system. Prior to 8.6.3, a restricted user can request /api/v1/users/{target_id}/eulas to obtain another user's randomized EULA filename and then … | Aug 19, 2026 |
| CVE-2026-55643 | UNKNOWN | — | Snipe-IT is an IT asset/license management system. Prior to 8.6.3, a company-scoped user in FMCS floater mode can access users whose company_id is null because … | Aug 19, 2026 |