Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.8 HIGH
CVE-2026-23856 — Dell iDRAC Service Module (iSM) Improper Access Control Vulnerability

Dell iDRAC Service Module (iSM) for Windows, versions prior to 6.0.3.1, and Dell iDRAC Service Module (iSM) for Linux, versions prior to 5.4.1.1, contain an Improper Access Control vulnerability. A l…

| Authorization
Feb 12, 2026 Feb 12, 2026
Feb 12, 2026
Feb 12, 2026
8.8 HIGH
CVE-2026-0969 — Arbitrary code execution in React server-side rendering of untrusted MDX content

The serialize function used to compile MDX in next-mdx-remote is vulnerable to arbitrary code execution due to insufficient sanitization of MDX content. This vulnerability, CVE-2026-0969, is fixed in…

go-getter | Injection
Feb 12, 2026 Feb 12, 2026
Feb 12, 2026
Feb 12, 2026
9.8 CRITICAL
CVE-2026-1729 — AdForest <= 6.0.12 - Authentication Bypass

The AdForest theme for WordPress is vulnerable to authentication bypass in all versions up to, and including, 6.0.12. This is due to the plugin not properly verifying a user's identity prior to authe…

adforest | Remote | Authentication
Feb 12, 2026 Feb 12, 2026
Feb 12, 2026
Feb 12, 2026
9.3 CRITICAL
CVE-2026-26215 — manga-image-translator Shared API Unsafe Deserialization RCE

manga-image-translator version beta-0.3 and prior in shared API mode contains an unsafe deserialization vulnerability that can lead to unauthenticated remote code execution. The FastAPI endpoints /si…

Remote | Injection
Feb 11, 2026 Feb 12, 2026
Feb 11, 2026
Feb 12, 2026
7.8 HIGH
CVE-2026-20700 — Apple Multiple Buffer Overflow Vulnerability - [Actively Exploited]

A memory corruption issue was addressed with improved state management. This issue is fixed in watchOS 26.3, tvOS 26.3, macOS Tahoe 26.3, visionOS 26.3, iOS 26.3 and iPadOS 26.3. An attacker with mem…

macos iphone_os tvos watchos ipados visionos | CISA KEV | Memory Corruption
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
5.3 MEDIUM
CVE-2026-20682 — Apple Notes Note Deletion Logic Flaw

A logic issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An attacker may be able to discover a user’s deleted notes.

iphone_os ipados | Remote | Information Disclosure
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
3.3 LOW
CVE-2026-20681 — Apple macOS Contact Data Disclosure

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Tahoe 26.3. An app may be able to access information about a user's contacts.

macos | Information Disclosure
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
6.5 MEDIUM
CVE-2026-20680 — Apple macOS and iOS Sensitive Data Access Vulnerability

The issue was addressed with additional restrictions on the observability of app states. This issue is fixed in macOS Tahoe 26.3, macOS Sonoma 14.8.4, macOS Sequoia 15.7.4, iOS 18.7.5 and iPadOS 18.7…

macos iphone_os ipados | Information Disclosure
Feb 11, 2026 Feb 18, 2026
Feb 11, 2026
Feb 18, 2026
5.5 MEDIUM
CVE-2026-20678 — Apple iOS/ iPadOS Authorization Bypass

An authorization issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An app may be able to access sensitive user data.

iphone_os ipados | Authorization
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
9.0 CRITICAL
CVE-2026-20677 — Apple macOS and iOS Symbolic Link Sandbox Bypass Vulnerability

A race condition was addressed with improved handling of symbolic links. This issue is fixed in macOS Tahoe 26.3, macOS Sonoma 14.8.4, iOS 18.7.5 and iPadOS 18.7.5, visionOS 26.3, iOS 26.3 and iPadOS…

macos iphone_os ipados visionos | Remote | Race Condition
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
5.3 MEDIUM
CVE-2026-20676 — Apple Safari Safari Cross-Site Tracking Vulnerability

This issue was addressed through improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, Safari 26.3, macOS Tahoe 26.3, visionOS 26.3. A website may be able to track users through…

macos iphone_os safari ipados visionos | Remote | Misconfiguration
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
5.5 MEDIUM
CVE-2026-20675 — Apple Image Processing Vulnerability - Information Disclosure

The issue was addressed with improved bounds checks. This issue is fixed in watchOS 26.3, tvOS 26.3, macOS Tahoe 26.3, macOS Sonoma 14.8.4, macOS Sequoia 15.7.4, iOS 18.7.5 and iPadOS 18.7.5, visionO…

macos iphone_os tvos watchos ipados visionos | Information Disclosure
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
4.6 MEDIUM
CVE-2026-20674 — Apple iOS/PadOS Sensitive Data Disclosure

A privacy issue was addressed by removing sensitive data. This issue is fixed in iOS 26.3 and iPadOS 26.3. An attacker with physical access to a locked device may be able to view sensitive user infor…

iphone_os ipados | Information Disclosure
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
5.3 MEDIUM
CVE-2026-20673 — Apple Mail Preview Remote Content Loading Logic Flaw

A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.4, iOS 18.7.5 and iPadOS 18.7.5, macOS Tahoe 26.3, macOS Sonoma 14.8.4. Turning off "Load remote content in…

macos iphone_os ipados | Remote | Authorization
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
3.1 LOW
CVE-2026-20671 — Apple Network Traffic Interception Vulnerability

A logic issue was addressed with improved checks. This issue is fixed in watchOS 26.3, tvOS 26.3, macOS Tahoe 26.3, macOS Sonoma 14.8.4, macOS Sequoia 15.7.4, iOS 18.7.5 and iPadOS 18.7.5, visionOS 2…

macos iphone_os tvos watchos ipados visionos | Remote | Misconfiguration
Feb 11, 2026 Feb 17, 2026
Feb 11, 2026
Feb 17, 2026
5.5 MEDIUM
CVE-2026-20669 — Apple macOS Directory Path Parsing Vulnerability

A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Tahoe 26.3. An app may be able to access sensitive user data.

macos | Path Traversal
Feb 11, 2026 Feb 12, 2026
Feb 11, 2026
Feb 12, 2026
8.8 HIGH
CVE-2026-20667 — Apple iOS/WatchOS Sandbox Escape Vulnerability

A logic issue was addressed with improved checks. This issue is fixed in watchOS 26.3, macOS Tahoe 26.3, macOS Sonoma 14.8.4, macOS Sequoia 15.7.4, iOS 26.3 and iPadOS 26.3. An app may be able to bre…

macos iphone_os watchos ipados | Authorization
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
5.5 MEDIUM
CVE-2026-20666 — Apple macOS Tahoe Authorization Bypass

An authorization issue was addressed with improved state management. This issue is fixed in macOS Tahoe 26.3. An app may be able to access sensitive user data.

macos | Authorization
Feb 11, 2026 Feb 12, 2026
Feb 11, 2026
Feb 12, 2026
3.3 LOW
CVE-2026-20663 — Apple iOS/ iPadOS Information Disclosure Vulnerability

The issue was resolved by sanitizing logging. This issue is fixed in iOS 26.3 and iPadOS 26.3, iOS 18.7.5 and iPadOS 18.7.5. An app may be able to enumerate a user's installed apps.

iphone_os ipados | Information Disclosure
Feb 11, 2026 Feb 12, 2026
Feb 11, 2026
Feb 12, 2026
4.6 MEDIUM
CVE-2026-20662 — Apple macOS Lock Screen Information Disclosure Vulnerability

An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.4, macOS Tahoe 26.3. An attacker with physical access to a locked device may be able to …

macos | Authorization
Feb 11, 2026 Feb 13, 2026
Feb 11, 2026
Feb 13, 2026
Showing 20 of 5071 Results