Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

48747
Total
3915
Critical
14448
High
14180
Medium
CVE ID Severity Score Description Published
CVE-2026-42018 HIGH 7.5 JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources. Aug 12, 2026
CVE-2026-18713 HIGH 8.8 IBM i 7.6, 7.5, 7.4, and 7.3 s vulnerable to privilege escalation via Navigator for i. An authenticated user could elevate privileges to a root … Aug 12, 2026
CVE-2026-18669 HIGH 8.8 IBM i 7.6, 7.5, 7.4, and 7.3 is vulnerable to a privilege escalation as the result of a remote code execution vulnerability in the activation … Aug 12, 2026
CVE-2026-18250 MEDIUM 6.3 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information and bypass security restrictions due to a race … Aug 12, 2026
CVE-2026-18244 MEDIUM 4.3 GitLab has remediated an issue in GitLab EE affecting all versions from 17.7 before 19.0.6, 19.1 before 19.1.4, and 19.2 before 19.2.2 that under certain … Aug 12, 2026
CVE-2026-18235 HIGH 8.3 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary Control Language commands due to insufficient input validation. Aug 12, 2026
CVE-2026-17420 MEDIUM 6.3 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to improper neutralization of special elements in … Aug 12, 2026
CVE-2026-17419 MEDIUM 6.5 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to modify SQL tables due to improper neutralization of special elements used … Aug 12, 2026
CVE-2026-17418 HIGH 8.5 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to cause a denial of service due to improper neutralization of special … Aug 12, 2026
CVE-2026-17276 CRITICAL 9.6 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to escalate privileges due to improper authorization in the handling of high-authority … Aug 12, 2026
CVE-2026-17271 HIGH 7.5 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to improper validation of input size. Aug 12, 2026
CVE-2026-17268 MEDIUM 6.8 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to improper validation of a session token. Aug 12, 2026
CVE-2026-17266 MEDIUM 6.5 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to improper limitation of a pathname to … Aug 12, 2026
CVE-2026-17248 HIGH 7.1 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to improper neutralization of special … Aug 12, 2026
CVE-2026-17222 MEDIUM 4.3 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to modify data in certain SQL tables due to improper neutralization of … Aug 12, 2026
CVE-2026-17218 CRITICAL 9.8 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to an out-of-bounds write. Aug 12, 2026
CVE-2026-17110 HIGH 8.8 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary commands and obtain sensitive information due to improper privilege … Aug 12, 2026
CVE-2026-17109 MEDIUM 4.3 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to add unexpected parameters to a command due to parameter injection. Aug 12, 2026
CVE-2026-16956 CRITICAL 9.8 IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special elements … Aug 12, 2026
CVE-2026-16931 HIGH 7.5 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to improper handling of zero-length TCP … Aug 12, 2026
CVE-2026-16907 HIGH 7.6 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code due to improper bounds checking. Aug 12, 2026
CVE-2026-16906 HIGH 8.8 IBM i 7.6, and 7.5 could allow a remote authenticated attacker to execute arbitrary commands with elevated privileges due to improper neutralization of special elements … Aug 12, 2026
CVE-2026-16904 HIGH 8.1 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary commands due to improper privilege management during monitor owner … Aug 12, 2026
CVE-2026-16863 HIGH 7.7 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to an out-of-bounds read. Aug 12, 2026
CVE-2026-16860 CRITICAL 9.9 IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code due to an uncontrolled search path element. Aug 12, 2026