Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
9.3 CRITICAL
CVE-2026-41090 — Microsoft Copilot Tampering Vulnerability

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to perform tampering over a network.

May 22, 2026 May 27, 2026
May 22, 2026
May 27, 2026
10.0 CRITICAL
CVE-2026-40412 — Azure Orbital Spatio Remote Code Execution Vulnerability

Unrestricted upload of file with dangerous type in Azure Orbital Spatio allows an unauthorized attacker to execute code over a network.

May 22, 2026 May 27, 2026
May 22, 2026
May 27, 2026
9.9 CRITICAL
CVE-2026-40411 — Azure Virtual Network Gateway Remote Code Execution Vulnerability

Improper input validation in Azure Virtual Network Gateway allows an authorized attacker to execute code over a network.

May 22, 2026 May 27, 2026
May 22, 2026
May 27, 2026
8.8 HIGH
CVE-2026-35430 — Azure Privileged Identity Management (PIM) Elevation of Privilege Vulnerability

Authorization bypass through user-controlled key in Azure Privileged Identity Management (PIM) allows an authorized attacker to elevate privileges over a network.

May 22, 2026 May 27, 2026
May 22, 2026
May 27, 2026
9.8 CRITICAL
CVE-2026-33843 — Microsoft Azure Active Directory B2C Elevation of Privilege Vulnerability

Authentication bypass using an alternate path or channel in Microsoft Azure Active Directory B2C allows an unauthorized attacker to elevate privileges over a network.

May 22, 2026 May 27, 2026
May 22, 2026
May 27, 2026
7.7 HIGH
CVE-2026-26147 — Azure Stack HCI Information Disclosure Vulnerability

Improper input validation in Azure Compute Gallery allows an authorized attacker to disclose information over a network.

May 22, 2026 May 27, 2026
May 22, 2026
May 27, 2026
7.5 HIGH
CVE-2026-23663 — Microsoft Global Secure Access (GSA) Information Disclosure Vulnerability

Improper privilege management in Azure Entra ID allows an unauthorized attacker to elevate privileges over a network.

May 22, 2026 May 27, 2026
May 22, 2026
May 27, 2026
10.0 CRITICAL
CVE-2026-23652 — Microsoft Power Pages Remote Code Execution Vulnerability

Improper neutralization of special elements used in a command ('command injection') in Microsoft Power Pages allows an unauthorized attacker to execute code over a network.

May 22, 2026 May 27, 2026
May 22, 2026
May 27, 2026
8.7 HIGH
CVE-2026-41147 — NukeViet CMS: Stored Cross-Site Scripting (XSS) via insufficient server-side input saniti…

NukeViet CMS is a multi Content Management System. Versions 4.5.07 and prior contain a Stored Cross-Site Scripting (XSS) vulnerability caused by insufficient server-side input sanitization in the Req…

nukeviet | Remote | Cross-Site Scripting
May 22, 2026 May 26, 2026
May 22, 2026
May 26, 2026
8.1 HIGH
CVE-2026-41076 — RT: LDAP authentication bypass via empty password

RT is an open source, enterprise-grade issue and ticket tracking system. Versions 5.0.9 and prior in addition to 6.0.0 through 6.0.2 contain an authentication bypass vulnerability in RT installations…

request_tracker | Remote | Authentication
May 22, 2026 May 26, 2026
May 22, 2026
May 26, 2026
8.8 HIGH
CVE-2026-41075 — RT: SQL injection via entry_aggregator parameter in JSON search

RT is an open source, enterprise-grade issue and ticket tracking system. Versions 5.0.0 through 5.0.9 and 6.0.0 through 6.0.2 contain an SQL injection vulnerability. An authenticated user can craft i…

request_tracker | Remote | Injection
May 22, 2026 May 26, 2026
May 22, 2026
May 26, 2026
7.1 HIGH
CVE-2026-41074 — RT has broken CSRF protection for authenticated users

RT is an open source, enterprise-grade issue and ticket tracking system. Versions 6.0.0 through 6.0.2 contain a Cross-Site Request Forgery (CSRF) vulnerability. An attacker who can induce a logged-in…

request_tracker | Remote | Cross-Site Request Forgery
May 22, 2026 May 26, 2026
May 22, 2026
May 26, 2026
4.6 MEDIUM
CVE-2026-41073 — RT: Spreadsheet downloads vulnerable to CSV/formula injection in Microsoft Excel and simi…

RT is an open source, enterprise-grade issue and ticket tracking system. Versions prior to 5.0.10 and 6.0.0 through 6.0.2 contain a spreadsheet (CSV/formula) injection vulnerability. User-controlled …

request_tracker | Remote | Injection
May 22, 2026 May 26, 2026
May 22, 2026
May 26, 2026
8.1 HIGH
CVE-2026-41071 — libheif: Heap buffer over-read in SampleAuxInfoReader via crafted HEIF sequence file with…

libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and prior, a crafted HEIF sequence file where the saiz box declares more samples than actually exist in the track's chun…

libheif | Remote | Memory Corruption
May 22, 2026 May 27, 2026
May 22, 2026
May 27, 2026
6.5 MEDIUM
CVE-2026-41069 — libheif allows Out-of-bounds vector access leading to invalid dereference (DoS)

libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and prior, a malformed HEIF sequence file can trigger an out-of-bounds read in core sequence parsing logic, causing DoS.…

libheif | Remote | Memory Corruption
May 22, 2026 May 27, 2026
May 22, 2026
May 27, 2026
5.4 MEDIUM
CVE-2026-40864 — JupyterHub: Cross-origin form POSTs bypass XSRF

JupyterHub is software that allows users to create a multi-user server for Jupyter notebooks. In versions 4.1.0 through 5.4.4, XSRF protection (updated in 4.1.0) inappropriately treated requests with…

jupyterhub | Remote | Cross-Site Request Forgery
May 22, 2026 Jun 01, 2026
May 22, 2026
Jun 01, 2026
8.8 HIGH
CVE-2026-3294 — Authentication Logic Vulnerability on Multiple TP-Link Range Extenders

An authentication logic vulnerability in multiple TP-Link range extenders allows an unauthenticated attacker on an adjacent network to manipulate a login parameter and reset the administrator passwor…

May 22, 2026 Jun 01, 2026
May 22, 2026
Jun 01, 2026
8.8 HIGH
CVE-2026-5843 — Docker Model Runner container-to-host code execution via MLX-LM model_file importlib load…

The MLX inference backend in Docker Model Runner on macOS uses the MLX-LM library, which unconditionally imports and executes arbitrary Python files from model directories via the model_file configur…

macos desktop docker_desktop | Misconfiguration
May 22, 2026 Jun 01, 2026
May 22, 2026
Jun 01, 2026
8.8 HIGH
CVE-2026-5817 — Docker Model Runner container-to-host code execution via unsandboxed trust_remote_code in…

The vllm-metal inference backend in Docker Model Runner on macOS unconditionally sets trust_remote_code=True when loading model tokenizers, and runs without sandboxing. This causes transformers.AutoT…

macos desktop docker_desktop | Misconfiguration
May 22, 2026 Jun 01, 2026
May 22, 2026
Jun 01, 2026
5.5 MEDIUM
CVE-2026-40610 — BentoML has Information Disclosure in `bentoml build` via symlink traversal in the build …

BentoML is a Python library for building online serving systems optimized for AI apps and model inference. In versions 1.4.38 and prior, the build packaging workflow follows attacker-controlled symli…

bentoml | Path Traversal
May 22, 2026 May 29, 2026
May 22, 2026
May 29, 2026
Showing 20 of 6835 Results