Security Intelligence
Feed

Real-time CVE tracking, exploit analysis, and vulnerability intelligence curated for security professionals.

220 New today
64,839 Total advisories
Live Monitoring

Daily Security Trends (Last 14 Days)

351
Jun 10
245
Jun 11
336
Jun 12
60
Jun 13
68
Jun 14
443
Jun 15
630
Jun 16
464
Jun 17
3
Jun 18
352
Jun 19
56
Jun 20
104
Jun 21
317
Jun 22
201
Jun 23
Critical
High
Medium
Low

Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 4.3 CVE-2026-34912

CVE-2026-34912_CVE-2026-34912

A missing access control check when linking banners or campaigns to a zone through the zone-include.php script of Revive Adserver 6.0.6 and earlier...

Revive Adserver CVE
HIGH 8.8 CVE-2026-33760

Langflow: IDOR/BOLA in Monitor API — Missing Ownership Enforcement on 7 Endpoints_CVE-2026-33760

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.0, Langflow's /api/v1/monitor router exposes 7 endpoint...

langflow-ai langflow < 1.9.0 CVE
HIGH 7.5 CVE-2026-13007

Insecure Public Caching on REST API Endpoints in Tenable Identity Exposure_CVE-2026-13007

Tenable Identity Exposure contains multiple unauthenticated API endpoints under /w/api/* that expose sensitive application configuration data inclu...

tenable Tenable Identity Exposure CVE
HIGH 8.5 CVE-2026-12958

Arbitrary file write in Language Servers for AWS_CVE-2026-12958

Missing symlink validation in Language Servers for AWS may allow an arbitrary file write outside of the workspace trust boundary. This may occur wh...

Amazon Web Services Language Servers for AWS CVE
HIGH 8.5 CVE-2026-12957

Arbitrary Code Execution in Language Servers for AWS_CVE-2026-12957

Improper trust boundary enforcement in Language Servers for AWS before version 1.65.0 on all supported platforms may allow a for arbitrary code exe...

Amazon Web Services Language Servers for AWS CVE
HIGH 7.8 CVE-2026-11940

tarfile extraction filter bypass allows escaping the destination directory_CVE-2026-11940

tarfile.extractall() with the 'data' or 'tar' filter could be bypassed by a crafted archive where a hardlink references a symlink stored at a dee...

Python Software Foundation CPython CVE
HIGH 7.5 CVE-2025-61025

CVE-2025-61025_CVE-2025-61025

An issue in the sslr_qst_get component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL ...

n/a n/a n/a CVE
HIGH 7.5 CVE-2025-61022

CVE-2025-61022_CVE-2025-61022

An issue in the sqlo_tb_col_preds component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted...

n/a n/a n/a CVE
HIGH 7.5 CVE-2025-61020

CVE-2025-61020_CVE-2025-61020

An issue in the sqlo_strip_in_join component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafte...

n/a n/a n/a CVE