Security Intelligence
Feed

Real-time CVE tracking, exploit analysis, and vulnerability intelligence curated for security professionals.

147 New today
59,318 Total advisories
Live Monitoring

Daily Security Trends (Last 14 Days)

202
May 22
67
May 23
111
May 24
204
May 25
336
May 26
455
May 27
326
May 28
451
May 29
206
May 30
84
May 31
417
Jun 1
295
Jun 2
151
Jun 3
34
Jun 4
Critical
High
Medium
Low

Recent Advisories

Severity ID Title Vendor Product Date Type
NONE PACKETSTORM:222620

📄 Gogs Git Rebase Argument Injection / Remote Code Execution_PACKETSTORM:222620

This Metasploit module exploits an argument injection vulnerability in the pull request merge flow of Gogs versions less than or equal to 0.14.2 an...

N/A N/A PACKETSTORM
CRITICAL 9.8 93EFFA1D-01DF-

Exploit for Eval Injection in Geoserver_93EFFA1D-01DF-57C9-9826-139DBF9FD985

CVE-2024-36401 — Unauthenticated RCE in GeoServer A complete, reproducible study of CVE-2024-36401, an unauthenticated remote code execution flaw i...

N/A N/A GITHUBEXPLOIT
HIGH 8.8 CVE-2026-30650

CVE-2026-30650_CVE-2026-30650

A post-authentication remote buffer overflow vulnerability exists in the /cgi-bin/admin/eventtask.cgi endpoint of the admin interface of Vivotek FD...

Vivotek Vivotek FD8136 FD8136-VVTK-0300a CVE
MEDIUM 4.3 CVE-2026-10702

JIT miscompilation in the JavaScript Engine: JIT component_CVE-2026-10702

JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 151.0.3.

Mozilla Firefox 151.0.3 CVE
HIGH 7.5 CVE-2026-42504

Quadratic complexity in WordDecoder.DecodeHeader in mime_CVE-2026-42504

Decoding a maliciously-crafted MIME header containing many invalid encoded-words can consume excessive CPU.

Go standard library mime CVE
MEDIUM 6.1 CVE-2026-6657

CORS Origin Validation Bypass in jupyter-server_CVE-2026-6657

A vulnerability in jupyter-server versions 1.12.0 through 2.17.0 allows an attacker to bypass CORS origin validation when the `allow_origin_pat` co...

jupyter jupyter/jupyter unspecified CVE
HIGH 7 CVE-2026-44281

GLPI vulnerable to unauthorized reading of a specific asset object_CVE-2026-44281

GLPI is a free asset and IT management software package. Starting in version 0.78 and prior to versions 10.0.25 and 11.0.7, an authenticated user w...

glpi-project glpi >= 11.0.0, < 11.0.7 CVE
HIGH 8.4 CVE-2026-42321

GLPI has stored XSS in asset locks_CVE-2026-42321

GLPI is a free asset and IT management software package. Starting in version 10.0.4 and prior to version 10.0.25, a technician can store an XSS pay...

glpi-project glpi >= 10.0.4, < 10.0.25 CVE
MEDIUM 5.9 CVE-2026-42320

GLPI vulnerable to arbitrary file access_CVE-2026-42320

GLPI is a free asset and IT management software package. Starting in version 0.50 and prior to versions 10.0.25 and 11.0.7, a technician can read a...

glpi-project glpi >= 11.0.0, < 11.0.7 CVE