CVEs
Most recently published first. Full-text search is on the roadmap.
Year
Want to know when one of these hits your stack? Track the products you run and get alerted.
Create a free account| CVE | Severity | Published | Title |
|---|---|---|---|
| CVE-2026-19195 | HIGH8.5 | 7 Aug 2026 | V-Secure Jingyun Antivirus Kernel Driver ZyArk.sys access control |
| CVE-2026-14364 | CRITICAL9.8 | 7 Aug 2026 | TrueBooker <= 1.2.3 - Missing Authorization to Unauthenticated Arbitrary Password Reset via 'tbab-userid' |
| CVE-2026-11907 | MEDIUM6.5 | 7 Aug 2026 | Stream <= 4.2.0 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Disclosure via Heartbeat API |
| CVE-2026-12801 | MEDIUM6.4 | 7 Aug 2026 | Ultra Addons for Contact Form 7 <= 3.5.43 - Authenticated (Contributor+) Stored Cross-Site Scripting via Slider Attributes |
| CVE-2026-14365 | CRITICAL9.8 | 7 Aug 2026 | TrueBooker <= 1.2.3 - Missing Authorization to Unauthenticated Arbitrary Password Reset via 'truebooker_wp_user_id' |
| CVE-2026-19193 | HIGH8.5 | 7 Aug 2026 | Jiangmin Antivirus Minifilter Port kvcore.sys MessageNotifyCallback access control |
| CVE-2026-19192 | HIGH8.5 | 7 Aug 2026 | DeepCool DisplayService DeepCoolDisplayService.exe access control |
| CVE-2026-49005 | LOW2.4 | 7 Aug 2026 | Root password hash exposure vulnerability in ZTE F689 product |
| CVE-2026-19191 | HIGH8.5 | 7 Aug 2026 | StableBit DrivePool DrivePoolService DrivePool.Service.exe permission |
| CVE-2026-19190 | HIGH8.5 | 7 Aug 2026 | StableBit Scanner ScannerService Scanner.Service.exe permission |
| CVE-2026-19189 | HIGH8.5 | 7 Aug 2026 | Power Sofware PowerISO Kernel Driver scdemu.sys privileges management |
| CVE-2026-49746 | N/A | 7 Aug 2026 | GPU DDK - Dimension Mismatch and Integer Truncation in PMRDevPhysAddrOSMem |
| CVE-2026-45204 | N/A | 7 Aug 2026 | GPU DDK - Out of bounds memory access and kernel NULL pointer dereference in DmaTransfer when pui64Address is a pointer to device memory |
| CVE-2026-45198 | N/A | 7 Aug 2026 | GPU DDK - RGXFWIF_SYSINIT::sCorememDataStore is untrusted |
| CVE-2026-62873 | CRITICAL9.8 | 6 Aug 2026 | Microsoft 365 Admin Center Elevation of Privilege Vulnerability |
| CVE-2026-56162 | CRITICAL10 | 6 Aug 2026 | Azure SQL Database Elevation of Privilege Vulnerability |
| CVE-2026-65667 | CRITICAL10 | 6 Aug 2026 | Microsoft Teams Elevation of Privilege Vulnerability |
| CVE-2026-56161 | CRITICAL9.6 | 6 Aug 2026 | Azure Logic Apps Information Disclosure Vulnerability |
| CVE-2026-59115 | CRITICAL9.9 | 6 Aug 2026 | Microsoft Entra Provisioning Service Elevation of Privilege Vulnerability |
| CVE-2026-62918 | HIGH7.5 | 6 Aug 2026 | Microsoft Teams Spoofing Vulnerability |
| CVE-2026-50481 | CRITICAL9.9 | 6 Aug 2026 | Azure Active Directory Elevation of Privilege Vulnerability |
| CVE-2026-59118 | CRITICAL9.3 | 6 Aug 2026 | Microsoft Power Apps Elevation of Privilege Vulnerability |
| CVE-2026-65668 | HIGH8.8 | 6 Aug 2026 | Microsoft Purview eDiscovery Elevation of Privilege Vulnerability |
| CVE-2026-62896 | CRITICAL9.6 | 6 Aug 2026 | Microsoft Teams Elevation of Privilege Vulnerability |
| CVE-2026-19177 | HIGH8.3 | 6 Aug 2026 | Insufficient validation of untrusted input in UI in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who… |
| CVE-2026-19176 | HIGH7.5 | 6 Aug 2026 | Use after free in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the rende… |
| CVE-2026-19174 | HIGH8.8 | 6 Aug 2026 | Integer overflow in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code ins… |
| CVE-2026-19165 | HIGH7.5 | 6 Aug 2026 | Use after free in Extensions in Google Chrome prior to 151.0.7922.109 allowed an attacker who convinced a user to insta… |
| CVE-2026-19163 | HIGH8.3 | 6 Aug 2026 | Use after free in Media in Google Chrome on Windows prior to 151.0.7922.109 allowed a remote attacker who had compromis… |
| CVE-2026-19162 | HIGH8.8 | 6 Aug 2026 | Out of bounds write in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code … |
| CVE-2026-19161 | LOW3.1 | 6 Aug 2026 | Uninitialized Use in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the re… |
| CVE-2026-19160 | LOW3.1 | 6 Aug 2026 | Uninitialized Use in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the re… |
| CVE-2026-19155 | HIGH8.3 | 6 Aug 2026 | Use after free in Payments in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the r… |
| CVE-2026-19151 | HIGH8.8 | 6 Aug 2026 | Use after free in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code insid… |
| CVE-2026-19150 | HIGH8.8 | 6 Aug 2026 | Inappropriate implementation in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitr… |
| CVE-2026-19146 | MEDIUM5.3 | 6 Aug 2026 | Uninitialized Use in GPU in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromi… |
| CVE-2026-19145 | HIGH8.8 | 6 Aug 2026 | Use after free in Translate in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary cod… |
| CVE-2026-19140 | HIGH8.3 | 6 Aug 2026 | Use after free in GPU in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the render… |
| CVE-2026-19139 | HIGH7.4 | 6 Aug 2026 | Race in CredentialProvider in Google Chrome on Windows prior to 151.0.7922.109 allowed a local attacker to perform OS-l… |
| CVE-2026-19138 | HIGH8.3 | 6 Aug 2026 | Heap buffer overflow in CrashReporting in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compr… |
| CVE-2026-19168 | HIGH8.8 | 6 Aug 2026 | Inappropriate implementation in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitr… |
| CVE-2026-19169 | HIGH8.8 | 6 Aug 2026 | Insufficient validation of untrusted input in Contextual Tasks in Google Chrome prior to 151.0.7922.109 allowed a remot… |
| CVE-2026-19172 | HIGH8.3 | 6 Aug 2026 | Use after free in Views in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the rend… |
| CVE-2026-19170 | CRITICAL9.6 | 6 Aug 2026 | Use after free in WebGL in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker to potentially pe… |
| CVE-2026-19157 | N/A | 6 Aug 2026 | Out of bounds write in ANGLE in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker to potential… |
| CVE-2026-19154 | HIGH8.3 | 6 Aug 2026 | Use after free in Skia in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromise… |
| CVE-2026-19149 | CRITICAL9.6 | 6 Aug 2026 | Use after free in Aura in Google Chrome on Linux prior to 151.0.7922.109 allowed a remote attacker to potentially perfo… |
| CVE-2026-19137 | HIGH8.3 | 6 Aug 2026 | Use after free in WebGL in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromis… |
| CVE-2026-41861 | MEDIUM4.2 | 6 Aug 2026 | Arbitrary Root File Write via Path Traversal in BOSH agent |
| CVE-2026-65400 | HIGH7.1 | 6 Aug 2026 | An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macO… |