Skip to content

// CVE Tracker

152 active CVEs โ€” page 1 of 7, sorted unpatched-first by CVSS

85

CRITICAL

66

HIGH

152

TOTAL ACTIVE

146

PATCHED

CVSS Scale: 9.0โ€“10.0 CRITICAL ยท 7.0โ€“8.9 HIGH ยท 4.0โ€“6.9 MEDIUM ยท 0.1โ€“3.9 LOW
10.0
CVSS

CVE-2026-45829

ChromaDB Pre-Authentication Remote Code Execution via Malicious Model Loading

CRITICAL โœ• No Patch

A CVSS 10.0 unauthenticated remote code execution vulnerability in ChromaDB's Python FastAPI server (versions 1.0.0โ€“1.5.8). An attacker who can reach the ChromaDB API endpoint can trigger code execution by supplying a reference to a maliciously crafted HuggingFace model. ChromaDB fetches and deserialises the model using Python pickle serialisation before authentication checks fire, executing attacker-controlled Python code in the ChromaDB server process. Approximately 73% of internet-accessible ChromaDB deployments use the affected Python FastAPI server. The Rust-based ChromaDB server is not affected. No patch available as of disclosure date. Known as 'ChromaToast' by the disclosing researchers.

ChromaDB Python FastAPI server 1.0.0 through 1.5.8
9.3
CVSS

CVE-2026-25874

Hugging Face LeRobot โ€” Unauthenticated Remote Code Execution via Pickle Deserialization in gRPC Server

CRITICAL โœ• No Patch

CVE-2026-25874 is a critical unauthenticated remote code execution vulnerability in Hugging Face's LeRobot robotics AI framework caused by the use of Python pickle deserialization to process attacker-controlled data in the gRPC remote control and dataset streaming server. The gRPC server binds to all interfaces by default, exposing the endpoint to any network-accessible host. A remote unauthenticated attacker can send a crafted pickle payload to execute arbitrary operating system commands in the context of the LeRobot server process. No patch is available at time of disclosure.

Hugging Face LeRobot v2.4.1 and all prior releases
~8.8
EST.

CVE-2026-42897

Microsoft Exchange Server OWA Cross-Site Scripting โ€” Actively Exploited Session Hijacking Zero-Day

HIGH โœ• No Patch

A cross-site scripting vulnerability in Exchange Server's Outlook Web App occurs when a malicious email is opened in OWA, causing attacker-controlled JavaScript to execute in the victim's authenticated browser session. The script can extract the OWA session token and transmit it to an attacker, enabling complete mailbox access without the victim's password or MFA. No patch is available. Microsoft deployed an Emergency Exchange Mitigation Service (EEMS) rule on 15 May as an interim control. Active exploitation by nation-state actors targeting government and financial services organisations confirmed by Microsoft threat intelligence.

Microsoft Exchange Server 2019 (all CUs prior to patch) Microsoft Exchange Server Subscription Edition (prior to patch)
~7.8
EST.

CVE-2026-43284

Linux Kernel โ€” xfrm/ESP Page-Cache Race Condition Enables Deterministic Local Privilege Escalation (Dirty Frag)

HIGH โœ• No Patch

CVE-2026-43284 is the xfrm/ESP component of the 'Dirty Frag' Linux kernel privilege escalation chain. A race condition in the xfrm (IPsec transform) subsystem's page-cache management allows a local user to corrupt kernel memory in a deterministic manner โ€” unlike most Linux kernel race conditions, this path does not require timing luck. Exploitation reliably escalates a local user account to root. The vulnerability affects all major Linux distributions running kernel versions 5.10 through 6.9. This CVE is the first of two constituent components of the Dirty Frag exploit chain; the second is CVE-2026-43500 (RxRPC page-cache corruption).

Linux kernel 5.10 through 6.9 (all distributions) Ubuntu 22.04 LTS, 24.04 LTS Red Hat Enterprise Linux 9 +3 more
~7.8
EST.

CVE-2026-43500

Linux Kernel โ€” RxRPC Page-Cache Corruption Enables Deterministic Local Privilege Escalation (Dirty Frag)

HIGH โœ• No Patch

CVE-2026-43500 is the RxRPC component of the 'Dirty Frag' Linux kernel privilege escalation chain. A page-cache corruption vulnerability in the RxRPC (AFS/Kerberos transport) subsystem allows a local user to achieve controlled kernel memory corruption as part of the chained Dirty Frag exploit. In combination with CVE-2026-43284 (xfrm/ESP race condition), the full chain reliably escalates a local user to root on a deterministic, single-attempt basis across all major Linux distributions running kernel 5.10โ€“6.9. A working public proof-of-concept exploit exists. No kernel patch is available.

Linux kernel 5.10 through 6.9 (all distributions) Ubuntu 22.04 LTS, 24.04 LTS Red Hat Enterprise Linux 9 +3 more
7.2
CVSS

CVE-2025-29635

D-Link DIR-823X โ€” Authenticated OS Command Injection via /goform/set_prohibiting (EOL, No Patch)

HIGH โœ• No Patch

OS command injection in the D-Link DIR-823X web management interface via the SiteList parameter of the /goform/set_prohibiting endpoint. Authenticated attackers can inject shell commands executing as root. D-Link DIR-823X reached end of life in January 2025 โ€” no patch will be issued. Actively exploited by Mirai botnet campaigns documented by Akamai; added to CISA Known Exploited Vulnerabilities catalogue April 2026. Federal deadline for FCEB agencies: May 19, 2026. Only remediation is device replacement.

D-Link DIR-823X (all firmware versions โ€” EOL, no patch available)
10.0
CVSS

CVE-2025-32432

Craft CMS โ€” Unauthenticated Remote Code Execution via Code Injection

CRITICAL โœ“ Patch Available

A maximum-severity code injection vulnerability (CWE-94) in Craft CMS allows unauthenticated remote attackers to execute arbitrary PHP code on any accessible Craft installation. The vulnerability affects all major version branches from 3.0.0-RC1 through the respective unpatched minor versions. Orange Cyberdefense SensePost assessed exploitation began as a zero-day approximately February 2025. The Mimo intrusion set (aka Hezb) actively exploits this CVE to deploy cryptocurrency miners and residential proxy malware on compromised servers. CISA added CVE-2025-32432 to the Known Exploited Vulnerabilities catalogue on 20 March 2026, with a federal patch deadline of 3 April 2026.

Craft CMS 3.0.0-RC1 through 3.9.14 Craft CMS 4.0.0-RC1 through 4.14.14 Craft CMS 5.0.0-RC1 through 5.6.16
10.0
CVSS

CVE-2025-32975

Quest KACE Systems Management Appliance โ€” Unauthenticated SQL Injection (CVSS 10.0)

CRITICAL โœ“ Patch Available

A SQL injection vulnerability in Quest KACE Systems Management Appliance (SMA) allows an unauthenticated, network-accessible attacker to execute arbitrary SQL against the appliance database without any credentials. KACE SMA is an enterprise endpoint management and patch deployment platform โ€” its database contains device inventories, software deployment records, patch compliance status, credentials used by managed agents, and configuration data for all managed endpoints. The vulnerability was added to the CISA Known Exploited Vulnerabilities catalogue, confirming active exploitation in the wild. Federal agencies face a remediation deadline of May 4, 2026.

Quest KACE Systems Management Appliance (SMA) โ€” versions prior to 13.2 patch
10.0
CVSS

CVE-2025-59528

Flowise CustomMCP Node Unauthenticated Remote Code Execution

CRITICAL โœ“ Patch Available

A code injection vulnerability in the CustomMCP node of Flowise, the open-source AI workflow builder, allows unauthenticated remote attackers to execute arbitrary JavaScript on the host machine. The node processes user-supplied mcpServerConfig parameters without sanitisation or sandboxing, enabling full system compromise. Over 12,000 internet-exposed Flowise instances remain unpatched and are actively targeted. Exploits are publicly available including a Metasploit module.

Flowise 2.x through 3.0.5
10.0
CVSS

CVE-2026-10520

Ivanti Sentry Pre-Authentication OS Command Injection (CVSS 10.0, Actively Exploited)

CRITICAL โœ“ Patch Available

A pre-authentication OS command injection in the Ivanti Sentry (formerly MobileIron Sentry) administrative interface allows unauthenticated remote attackers to execute arbitrary OS commands on the Sentry appliance. The appliance is internet-facing by design, providing mobile device management gateway functionality. Active exploitation confirmed by CISA KEV. Fixed in Sentry 9.19.1.

Ivanti Sentry 9.18.x and earlier MobileIron Sentry (all versions prior to 9.19.1)
10.0
CVSS

CVE-2026-20127

Cisco Catalyst SD-WAN Controller Authentication Bypass

CRITICAL โœ“ Patch Available

A maximum-severity (CVSS 10.0) authentication bypass vulnerability in the Cisco Catalyst SD-WAN Controller and Manager allows an unauthenticated remote attacker to gain full administrative access by exploiting a broken peering authentication mechanism in the control-plane workflow. The exploit sends a forged CHALLENGE_ACK_ACK message to force the server to treat an unauthenticated connection as verified, enabling injection of malicious SSH keys and full control of the SD-WAN fabric. Cisco Talos attributes sustained exploitation since at least 2023 to a tracked threat actor designated UAT-8616, assessed with high confidence as a sophisticated, likely nation-state-aligned group. The vulnerability is included in CISA Emergency Directive 26-03.

Cisco Catalyst SD-WAN Controller / Manager 20.11.x before 20.12.6.1 Cisco Catalyst SD-WAN Controller / Manager 20.12.5.x before 20.12.5.3 Cisco Catalyst SD-WAN Controller / Manager 20.12.6.x before 20.12.6.1
10.0
CVSS

CVE-2026-20131

Cisco Secure Firewall Management Center โ€” Unauthenticated Deserialization RCE (Root Access)

CRITICAL โœ“ Patch Available

A maximum-severity insecure deserialization vulnerability in Cisco Secure Firewall Management Center (FMC) allows unauthenticated remote attackers to send a crafted serialised Java object to the management interface, resulting in arbitrary Java code execution as root. CVE-2026-20131 was exploited as a zero-day by Interlock ransomware for 36 days before Cisco patched it on 4 March 2026. Compromising Cisco FMC gives attackers full control over firewall policy, segmentation rules, VPN configuration, and all managed Firepower sensors โ€” effectively compromising the organisation's network security enforcement layer.

Cisco Secure Firewall Management Center (FMC) versions prior to SA-FMC-2026-0001 patch
10.0
CVSS

CVE-2026-20182

Cisco Catalyst SD-WAN Manager Authentication Bypass โ€” CVSS 10.0 Zero-Day Exploited in the Wild

CRITICAL โœ“ Patch Available

A maximum-severity authentication bypass in the Cisco Catalyst SD-WAN Manager (formerly vManage) REST API allows an unauthenticated remote attacker to obtain a valid administrative session token by exploiting a middleware authentication check flaw under specific API version conditions. With administrative access, attackers can inject rogue SD-WAN devices into the managed network fabric and configure traffic interception across the entire WAN deployment. The vulnerability was actively exploited as a zero-day targeting financial services and government sectors before the patch was released. Added to CISA KEV on 14 May 2026.

Cisco Catalyst SD-WAN Manager 20.6.x (all releases prior to fix) Cisco Catalyst SD-WAN Manager 20.9.x (all releases prior to fix) Cisco Catalyst SD-WAN Manager 20.12.x (prior to 20.12.4)
10.0
CVSS

CVE-2026-22557

Ubiquiti UniFi Network Application โ€” Unauthenticated Path Traversal Leading to Account Takeover

CRITICAL โœ“ Patch Available

A maximum-severity path traversal vulnerability in the Ubiquiti UniFi Network Application allows unauthenticated remote attackers to read arbitrary files from the underlying operating system, including the controller's database credentials and user session tokens, enabling full account takeover without any authentication. No user interaction or special conditions are required. Approximately 87,000 internet-exposed UniFi controllers were identified by Censys at time of disclosure. The vulnerability is commonly chained with CVE-2026-22558 (NoSQL injection) for immediate administrative access.

Ubiquiti UniFi Network Application prior to 10.1.89 (stable) Ubiquiti UniFi Network Application prior to 10.2.97 (release candidate) Ubiquiti UniFi Express firmware prior to 4.0.13
10.0
CVSS

CVE-2026-22769

Dell RecoverPoint Hardcoded Apache Tomcat Credentials โ€” Nation-State Exploitation

CRITICAL โœ“ Patch Available

Dell RecoverPoint data replication appliances ship with hardcoded Apache Tomcat administrative credentials that cannot be changed through standard configuration. Remote unauthenticated attackers who discover the hardcoded credentials gain full administrative access to the appliance management interface. The China-nexus threat cluster UNC6201 exploited this vulnerability from at least mid-2024 to deploy the BRICKSTORM backdoor and GRIMBOLT loader via the SLAYSTYLE web shell, targeting organisations in financial services, defence contracting, and critical infrastructure.

Dell RecoverPoint for Virtual Machines โ€” versions prior to November 2025 patch (DSA-2026-079) Dell RecoverPoint โ€” all versions prior to DSA-2026-079
10.0
CVSS

CVE-2026-33819

Microsoft Bing โ€” Unauthenticated Remote Code Execution via Deserialization

CRITICAL โœ“ Patch Available

CVE-2026-33819 is a critical deserialization vulnerability in a Microsoft Bing backend service exposed over the network. An unauthenticated attacker can send a crafted payload to the vulnerable endpoint to achieve remote code execution with scope change, earning the vulnerability a maximum CVSS score of 10.0. No workaround exists; the April 2026 Patch Tuesday update is the only remediation.

Microsoft Bing (backend service โ€” April 2026 Patch Tuesday) Microsoft 365 Copilot (integrated Bing backend) Azure Cognitive Services (Bing-integrated components)
10.0
CVSS

CVE-2026-34908

Ubiquiti UniFi OS Improper Access Control โ€” Unauthenticated Administrative API Access (CVSS 10.0)

CRITICAL โœ“ Patch Available

An improper access control vulnerability in the UniFi OS management interface allows an unauthenticated remote attacker with network access to the controller's management port (TCP 443) to access administrative API endpoints without a valid session token. Exploitation provides unauthenticated read and write access to device configuration, including Wi-Fi SSIDs, network policies, and access control rules. Part of Ubiquiti Security Bulletin 064, which also disclosed CVE-2026-34909 (path traversal, CVSS 10.0), CVE-2026-34910 (command injection, CVSS 10.0), CVE-2026-33000 (CVSS 9.1), and CVE-2026-34911 (CVSS 7.7). All three CVSS 10.0 vulnerabilities in Bulletin 064 are unauthenticated and network-exploitable. Affected products: UniFi Dream Machine, Dream Machine Pro, Dream Machine Special Edition, Dream Router, Cloud Gateway Ultra, Cloud Gateway Max running UniFi OS prior to the patched version.

UniFi Dream Machine (UDM) โ€” all versions prior to patched UniFi OS UniFi Dream Machine Pro (UDM Pro) UniFi Dream Machine Special Edition (UDM SE) +3 more
10.0
CVSS

CVE-2026-35431

Microsoft Entra ID Entitlement Management โ€” Unauthenticated SSRF (CVSS 10.0)

CRITICAL โœ“ Patch Available

A server-side request forgery vulnerability in Microsoft Entra ID Entitlement Management allows an unauthenticated, network-accessible attacker to cause Microsoft's cloud identity governance service to issue arbitrary requests on behalf of the attacker. Entitlement Management controls access request workflows, approval policies, and periodic access reviews for Azure resources, SharePoint sites, and Entra-connected applications across enterprise tenants. Microsoft applied a server-side fix; no customer patch or configuration change is required. The exposure window between discovery and fix is not publicly disclosed.

Microsoft Entra ID (all tenants using Entitlement Management) Azure Active Directory Entitlement Management (cloud service)
10.0
CVSS

CVE-2026-46595

Golang golang.org/x/crypto SSH Authentication Bypass โ€” Unauthenticated Access to SSH-Enabled Services (CVSS 10.0)

CRITICAL โœ“ Patch Available

An authentication bypass vulnerability in golang.org/x/crypto (the extended cryptography library for Go) allows an unauthenticated remote attacker to bypass SSH public key authentication when the SSH server implementation uses the affected library's `ssh.ServerConfig.NoClientAuth` configuration path combined with certain callback patterns. The vulnerability re-opens an authentication bypass class previously addressed in CVE-2024-45337, which was patched in late 2024 โ€” new code patterns reintroduce the flaw. Part of a mass advisory disclosing 9 CVEs in golang.org/x/crypto packages published 22 May 2026. Affected: all Go-based SSH servers and clients using golang.org/x/crypto/ssh before the patched version.

golang.org/x/crypto/ssh โ€” all versions prior to patched release (2026-05-22) All Go-based applications embedding SSH server functionality via golang.org/x/crypto Go-based DevOps tooling: Terraform, Packer, custom CI/CD runners using Go SSH +1 more
10.0
CVSS

CVE-2026-4681

PTC Windchill and FlexPLM โ€” Unauthenticated Remote Code Execution via Insecure Deserialization

CRITICAL โœ“ Patch Available

A critical remote code execution vulnerability in PTC Windchill (product lifecycle management) and PTC FlexPLM (retail PLM) arises from insecure deserialisation of trusted data in the application server. An unauthenticated attacker with network access can send a malicious serialised object and achieve arbitrary code execution. No patch was available at time of initial disclosure; the severity prompted German federal police (BKA) and state police (LKA) to physically dispatch officers to affected companies on the weekend of 27 March 2026. PTC provided a temporary web server rule workaround while developing a permanent fix.

PTC Windchill โ€” most supported versions and all critical patch sets (CPS) PTC FlexPLM โ€” most supported versions
10.0
CVSS

CVE-2026-7411

Eclipse BaSyx โ€” Unauthenticated Arbitrary File Upload and Remote Code Execution (CVSS 10.0)

CRITICAL โœ“ Patch Available

A maximum-severity path traversal and arbitrary file upload vulnerability in Eclipse BaSyx โ€” industrial automation software used in Industry 4.0 programmes โ€” allows an unauthenticated remote attacker to upload any file to the server and achieve code execution. BaSyx sits at the IT/OT boundary in smart factory deployments, making exploitation capable of reaching operational technology systems protected by network segmentation. A companion vulnerability (CVE-2026-7412) allows blind SSRF to probe and communicate with factory network equipment from the internet.

Eclipse BaSyx Java Server SDK prior to v2.0.0-milestone-10 Eclipse BaSyx AAS Server component (all versions prior to milestone-10)
9.9
CVSS

CVE-2026-10523

Ivanti Sentry Authentication Bypass in Management API

CRITICAL โœ“ Patch Available

Authentication bypass in the Ivanti Sentry web management API allows an unauthenticated remote attacker to access administrative endpoints without valid credentials. The vulnerability chains with CVE-2026-10520 (CVSS 10.0 pre-authentication RCE via the SuperAdmin API) to enable complete unauthenticated takeover of the Sentry MDM gateway. Organisations that deployed Sentry 9.18.2 โ€” the patch for CVE-2026-10520 โ€” remain exposed to this separate code path; Sentry 9.19.0 is required to address both CVEs. Rapid7 identified CVE-2026-10523 during analysis of the original advisory and coordinated disclosure with Ivanti.

Ivanti Sentry 9.18.x and earlier
9.9
CVSS

CVE-2026-20147

Cisco Identity Services Engine โ€” Full Admin to Root OS Command Injection

CRITICAL โœ“ Patch Available

An authenticated attacker in possession of full ISE administrative credentials can send crafted HTTP requests to execute arbitrary OS commands with root privileges on the ISE appliance. While the exploitation bar is higher than CVE-2026-20180 (requires full admin rather than read-only admin), the vulnerability represents an unauthorised escalation from the ISE management plane to full OS-level control. Affects the same ISE version range as CVE-2026-20180 and CVE-2026-20186.

Cisco Identity Services Engine (ISE) prior to 3.2 Cisco Identity Services Engine (ISE) 3.2, 3.3, 3.4, 3.5 (unpatched)
9.9
CVSS

CVE-2026-20180

Cisco Identity Services Engine โ€” Read-Only Admin to Root OS Command Injection

CRITICAL โœ“ Patch Available

Insufficient validation of user-supplied input in Cisco ISE's web interface allows an authenticated attacker with read-only administrator credentials to send crafted HTTP requests and execute arbitrary OS commands with root privileges. Successful exploitation grants full operating system access. In single-node ISE deployments, exploitation may also cause a denial-of-service condition. Affects all ISE branches from 3.2 through 3.5 and versions prior to 3.2.

Cisco Identity Services Engine (ISE) prior to 3.2 Cisco Identity Services Engine (ISE) 3.2, 3.3, 3.4, 3.5 (unpatched)
9.9
CVSS

CVE-2026-20186

Cisco Identity Services Engine โ€” Read-Only Admin to Root via Path Traversal and Command Injection

CRITICAL โœ“ Patch Available

A related but distinct variant of CVE-2026-20180 in Cisco ISE. Insufficient input validation allows an authenticated attacker with read-only administrator credentials to send crafted HTTP requests that execute arbitrary OS commands as root. Shares the same affected version range and exploitation prerequisites as CVE-2026-20180, and should be patched simultaneously.

Cisco Identity Services Engine (ISE) prior to 3.2 Cisco Identity Services Engine (ISE) 3.2, 3.3, 3.4, 3.5 (unpatched)

Note: CVE data is curated manually from NVD, vendor advisories, and security research. CVSS scores reflect NVD base scores at time of entry. Always verify with official vendor advisories before actioning.