Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
5.5 MEDIUM
CVE-2026-47923 — Acrobat Reader | Out-of-bounds Read (CWE-125)

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this v…

acrobat_reader | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-47921 — Acrobat Reader | Use After Free (CWE-416)

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…

acrobat_reader | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-47920 — Acrobat Reader | Use After Free (CWE-416)

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…

acrobat_reader | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-47919 — Acrobat Reader | Use After Free (CWE-416)

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…

acrobat_reader | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-47918 — Acrobat Reader | Use After Free (CWE-416)

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…

acrobat_reader | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-47917 — Acrobat Reader | Use After Free (CWE-416)

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…

acrobat_reader | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-47916 — Acrobat Reader | Use After Free (CWE-416)

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…

acrobat_reader | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-47915 — Acrobat Reader | Use After Free (CWE-416)

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…

acrobat_reader | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-47914 — Acrobat Reader | Use After Free (CWE-416)

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…

acrobat_reader | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-47913 — Acrobat Reader | Use After Free (CWE-416)

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…

acrobat_reader | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-47912 — Acrobat Reader | Use After Free (CWE-416)

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…

acrobat_reader | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-47911 — Acrobat Reader | Out-of-bounds Write (CWE-787)

Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. E…

acrobat_reader | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
6.1 MEDIUM
CVE-2026-34416 — OSCAL-GUI Reflected XSS via project parameter in oscal.php

OSCAL-GUI contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to execute arbitrary JavaScript in a victim's browser by injecting malicious input through the …

Remote | Cross-Site Scripting
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
5.4 MEDIUM
CVE-2026-25557 — Evoluted PHP Directory Listing Script 4.0.5 Reflected XSS via dir parameter

Evoluted PHP Directory Listing Script through 4.0.5 contains a reflected cross-site scripting vulnerability in index.php where the dir parameter value is reflected without HTML encoding inside the HT…

Remote | Cross-Site Scripting
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.5 HIGH
CVE-2026-11799 — UXSS in Focus for iOS / Klar Webkit navigation

UXSS in Focus for iOS / Klar Webkit navigation. This vulnerability was fixed in Focus for iOS 151.3.1 and Klar for iOS 151.3.1.

firefox_focus | Remote | Cross-Site Scripting
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
8.7 HIGH
CVE-2025-71319 — image-size 2.0.2 Denial of Service via Infinite Loop in JXL/HEIF Parser

image-size through 2.0.2 contains a denial of service vulnerability that allows remote attackers to permanently block the Node.js event loop by supplying a specially crafted image buffer with a zero-…

Remote | Denial of Service
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
8.7 HIGH
CVE-2026-6445 — FlashArray Purity Information Disclosure

A flaw exists in FlashArray Purity where insufficient filtering of certain data paths could expose sensitive information to an authenticated user with low privileges.

Remote | Information Disclosure
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
8.6 HIGH
CVE-2026-6444 — FlashArray Purity Privilege Escalation

A flaw exists in the FlashArray Purity management interface where an authenticated low-privileged user may, under specific conditions, access functionality beyond their assigned privileges.

Remote | Authorization
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-48306 — Substance3D - Sampler | Out-of-bounds Write (CWE-787)

Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of…

substance_3d_sampler | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
7.8 HIGH
CVE-2026-48305 — Substance3D - Sampler | Out-of-bounds Write (CWE-787)

Substance3D - Sampler versions 6.0.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of…

substance_3d_sampler | Memory Corruption
Jun 09, 2026 Jun 10, 2026
Jun 09, 2026
Jun 10, 2026
Showing 20 of 7429 Results