Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
26401
Total
1955
Critical
7975
High
8228
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-47173 | UNKNOWN | — | Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support. Prior to version 1.0.3, a normal user can create a ticket … | Jun 11, 2026 |
| CVE-2026-47172 | UNKNOWN | — | Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support. Prior to version 1.0.3, the repository has a privileged deploy workflow … | Jun 11, 2026 |
| CVE-2026-47171 | UNKNOWN | — | Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support. Prior to version 1.0.3, a normal user can create a reminder … | Jun 11, 2026 |
| CVE-2026-47170 | HIGH | 7.7 | Garlic-Hub manages digital signage network — devices, content, and playlists — from a single self-hosted interface. Prior to version 1.1, authenticated users can cause the … | Jun 11, 2026 |
| CVE-2026-47169 | UNKNOWN | — | Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support. Prior to version 1.0.3, a user with Manage Server / ManageGuild, … | Jun 11, 2026 |
| CVE-2026-47167 | UNKNOWN | — | Vim is an open source, command line text editor. Prior to version 9.2.0496, a code injection vulnerability exists in s:stepmatch() in the cucumber filetype plugin … | Jun 11, 2026 |
| CVE-2026-47163 | UNKNOWN | — | Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support. Prior to version 1.0.1, any guild member who can invoke slash … | Jun 11, 2026 |
| CVE-2026-47162 | UNKNOWN | — | Vim is an open source, command line text editor. Prior to version 9.2.0495, a Vimscript code injection vulnerability exists in s:NetrwBookHistSave() in the netrw plugin … | Jun 11, 2026 |
| CVE-2026-46519 | HIGH | 8.8 | mcp-server-kubernetes is a Model Context Protocol server for Kubernetes cluster management. Prior to version 3.6.0, mcp-server-kubernetes exposes three environment variables (ALLOW_ONLY_READONLY_TOOLS, ALLOW_ONLY_NON_DESTRUCTIVE_TOOLS, ALLOWED_TOOLS) documented as … | Jun 11, 2026 |
| CVE-2026-45178 | UNKNOWN | — | Idira Secrets Manager Self-Hosted versions 13.8.0 and lower exhibit improper access control within internal cluster endpoints. A remote, authenticated attacker possessing standard node-level credentials could … | Jun 11, 2026 |
| CVE-2026-45177 | UNKNOWN | — | Idira Secrets Manager SaaS Edge versions prior to 1.8 exhibit improper access control within its internal authentication components. A remote, unauthenticated attacker could exploit this … | Jun 11, 2026 |
| CVE-2026-45176 | UNKNOWN | — | Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within high-privileged agent components. A local, low-privileged attacker could exploit this by … | Jun 11, 2026 |
| CVE-2026-11774 | HIGH | 7.6 | An integer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base). In sasl_io_start_packet(), adding sizeof(uint32_t) to a crafted SASL packet … | Jun 11, 2026 |
| CVE-2025-46315 | HIGH | 7.5 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.1. An app may be able to access protected user … | Jun 11, 2026 |
| CVE-2025-46313 | UNKNOWN | — | A logging issue was addressed with improved data redaction. This issue is fixed in macOS Tahoe 26.1. An app may be able to access sensitive … | Jun 11, 2026 |
| CVE-2025-46308 | MEDIUM | 5.3 | An authorization issue was addressed with improved state management. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4. An app may … | Jun 11, 2026 |
| CVE-2025-46293 | MEDIUM | 5.5 | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.4. An app may be able to access protected … | Jun 11, 2026 |
| CVE-2025-43339 | MEDIUM | 5.5 | An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Tahoe 26.1. A malicious app may be able to access … | Jun 11, 2026 |
| CVE-2025-43278 | UNKNOWN | — | This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.4. An app may be able to access protected … | Jun 11, 2026 |
| CVE-2025-31272 | HIGH | 7.8 | The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4. An app may be able to bypass launch constraint protections … | Jun 11, 2026 |
| CVE-2025-30459 | MEDIUM | 5.5 | A privacy issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.4. An app may be able to access … | Jun 11, 2026 |
| CVE-2025-30431 | MEDIUM | 5.5 | The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. A malicious app may … | Jun 11, 2026 |
| CVE-2025-24284 | HIGH | 8.8 | This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in macOS Sequoia 15.4. An app may be able to … | Jun 11, 2026 |
| CVE-2025-24268 | MEDIUM | 5.5 | A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Sequoia 15.4. An app … | Jun 11, 2026 |
| CVE-2025-24165 | UNKNOWN | — | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may … | Jun 11, 2026 |