Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.5 HIGH
CVE-2026-34474 — ZTE ZXHN H298A/H108N Sensitive Data Exposure Vulnerability

Sensitive data exposure leading to admin/WLAN credential leak in ZTE ZXHN H298A 1.1 and H108N 2.6. A crafted request to the router web interface can expose sensitive device and account information. I…

Remote | Information Disclosure
May 06, 2026 May 26, 2026
May 06, 2026
May 26, 2026
7.5 HIGH
CVE-2026-34473 — ZTE Router Unauthenticated DoS

Unauthenticated DoS in ZTE H8102E, H168N, H167A, H199A, H288A, H198A, H267A, H267N, H268A, H388X, H196A, H369A, H268N, H208N, H367N, H181A, and H196Q. A denial-of-service condition can be triggered a…

Remote | Denial of Service
May 06, 2026 May 26, 2026
May 06, 2026
May 26, 2026
9.8 CRITICAL
CVE-2026-0300 — Palo Alto Networks PAN-OS Out-of-bounds Write Vulnerability - [Actively Exploited]

A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to execute arbitrary code w…

pan-os ruggedcom_ape1808_firmware ruggedcom_ape1808 pa-5410 pa-5420 pa-5430 +45 more | CISA KEV Remote | Memory Corruption
May 06, 2026 May 12, 2026
May 06, 2026
May 12, 2026
7.2 HIGH
CVE-2025-31974 — HCL BigFix Service Management (SM) is susceptible to a Root File System Not Mounted as Re…

HCL BigFix Service Management (SM) is susceptible to a Root File System Not Mounted as Read-Only. An improperly configured root file system may allow unintended modifications to critical system comp…

bigfix_service_management | Remote | Misconfiguration
May 06, 2026 May 11, 2026
May 06, 2026
May 11, 2026
5.3 MEDIUM
CVE-2025-31960 — HCL BigFix Service Management (SM) is vulnerable to information exposure due to improper …

HCL BigFix Service Management (SM) is vulnerable to information exposure due to improper error handling within its reporting module. It was observed that supplying an invalid or out-of-range value to…

bigfix_service_management | Remote | Information Disclosure
May 06, 2026 May 07, 2026
May 06, 2026
May 07, 2026
8.3 HIGH
CVE-2024-30151 — HCL BigFix Service Management (SM) is susceptible to Broken Access Control Vulnerability

HCL BigFix Service Management (SX) is affected by a Broken Access Control vulnerability leading to privilege escalation. This could allow unauthorized users to gain elevated privileges, bypassing in…

bigfix_service_management | Remote | Authorization
May 06, 2026 May 07, 2026
May 06, 2026
May 07, 2026
8.7 HIGH
CVE-2026-33079 — Mistune ReDoS in LINK_TITLE_RE allows denial of service with crafted Markdown titles

In versions 3.0.0a1 through 3.2.0 of Mistune, there is a ReDoS (Regular Expression Denial of Service) vulnerability in `LINK_TITLE_RE` that allows an attacker who can supply Markdown for parsing to c…

mistune | Remote | Denial of Service
May 06, 2026 May 07, 2026
May 06, 2026
May 07, 2026
9.0 CRITICAL
CVE-2026-29090 — Rucio SQL injection in postgres_meta DID search path compromises PostgreSQL metadata data…

### Summary A SQL injection vulnerability exists in Rucio versions 1.30.0 and later before 35.8.5, 38.5.5, 39.4.2, and 40.1.1, in `FilterEngine.create_postgres_query()`. This allows any authenticate…

rucio | Remote | Injection
May 06, 2026 May 11, 2026
May 06, 2026
May 11, 2026
Showing 20 of 7368 Results