Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
9.3 CRITICAL
CVE-2026-62835 — Azure Portal Information Disclosure Vulnerability

Improper authorization in Azure Portal allows an unauthorized attacker to disclose information over a network.

Jul 24, 2026 Jul 25, 2026
Jul 24, 2026
Jul 25, 2026
5.4 MEDIUM
CVE-2026-57531 — Milkdown < 7.21.3 DOM XSS via innerHTML Assignment

Milkdown before 7.21.3 contains a DOM cross-site scripting vulnerability in the @milkdown/plugin-emoji package that allows unauthenticated attackers to execute arbitrary JavaScript in the host applic…

Remote | Cross-Site Scripting
Jul 24, 2026 Jul 25, 2026
Jul 24, 2026
Jul 25, 2026
5.4 MEDIUM
CVE-2026-57530 — Milkdown < 7.21.3 Stored XSS via javascript: URL in link href

Milkdown before 7.21.3 contains a stored cross-site scripting vulnerability in the @milkdown/preset-commonmark and @milkdown/components packages that allows attackers with document write access to ex…

Remote | Cross-Site Scripting
Jul 24, 2026 Jul 24, 2026
Jul 24, 2026
Jul 24, 2026
8.1 HIGH
CVE-2026-54342 — TLS Certificate Verification Disabled on CXF Transport Clients in epa4all

In epa4all, prior to version 2026-05-20, an attacker on the network path between epa4all and any backend (ePA Aktensystem, Konnektor, IDP, TSS) can present a self-signed TLS certificate and intercept…

| Misconfiguration
Jul 24, 2026 Jul 24, 2026
Jul 24, 2026
Jul 24, 2026
6.3 MEDIUM
CVE-2026-48037 — Hulumi: AccountFoundation reuse paths silently downgrade GuardDuty / Security Hub posture

Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, AccountFoundation reuse paths silently downgrade GuardDu…

Remote | Misconfiguration
Jul 24, 2026 Jul 24, 2026
Jul 24, 2026
Jul 24, 2026
8.4 HIGH
CVE-2026-48036 — Hulumi: Drift classifier fails open on adapter errors and over-promotes Mixed verdicts

Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, consumers running drift detection in CI / cron could see…

Remote | Misconfiguration
Jul 24, 2026 Jul 25, 2026
Jul 24, 2026
Jul 25, 2026
7.1 HIGH
CVE-2026-48035 — Hulumi: AccountFoundation audit-delivery S3 bucket could be silently weakened

Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, consumers using AccountFoundation could ship an AWS acco…

Remote | Misconfiguration
Jul 24, 2026 Jul 24, 2026
Jul 24, 2026
Jul 24, 2026
8.5 HIGH
CVE-2026-48034 — HULUMI-H5 bypass via decoy sibling resources targeting a different bucket

Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, there is a bypass via decoy sibling resources targeting …

Remote | Misconfiguration
Jul 24, 2026 Jul 24, 2026
Jul 24, 2026
Jul 24, 2026
8.4 HIGH
CVE-2026-48033 — Hulumi: Policy packs bypassed by a forged Pulumi-URN logical name

Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, policy packs can be bypassed by a forged Pulumi-URN logi…

Remote | Authorization
Jul 24, 2026 Jul 24, 2026
Jul 24, 2026
Jul 24, 2026
8.3 HIGH
CVE-2026-48032 — Hulumi: IAM-role policy checks bypassed when the role trusts multiple OIDC providers

Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, IAM-role policy checks can be bypassed when the role tru…

Remote | Authorization
Jul 24, 2026 Jul 24, 2026
Jul 24, 2026
Jul 24, 2026
9.1 CRITICAL
CVE-2026-48021 — epa4all Security Incident: Implement keystore based on Telematik TSL, implement hostname …

In epa4all, prior to version 2026-05-20, an attacker who can intercept the TLS connection between epa4all and the ePA backend can complete the VAU handshake with attacker-controlled keys and obtain t…

Remote | Cryptography
Jul 24, 2026 Jul 25, 2026
Jul 24, 2026
Jul 25, 2026
8.5 HIGH
CVE-2026-17107 — Cluster-proxy: cluster-proxy: impersonation header injection in service-proxy grants clus…

A flaw was found in the cluster-proxy service-proxy component used in Red Hat Advanced Cluster Management for Kubernetes (RHACM) and multicluster-engine (MCE). The service-proxy appends impersonation…

multicluster_engine_for_kubernetes | Remote | Authorization
Jul 24, 2026 Jul 24, 2026
Jul 24, 2026
Jul 24, 2026
7.7 HIGH
CVE-2026-66035 — libssh2 Heap Buffer Overflow via ETM Cipher Negotiation

libssh2 through 1.11.1, fixed in commit 42e33d8, contains a pre-authentication heap buffer overflow vulnerability that allows a malicious SSH server to corrupt heap metadata in any connecting client …

libssh2 | Remote | Memory Corruption
Jul 24, 2026 Jul 25, 2026
Jul 24, 2026
Jul 25, 2026
7.7 HIGH
CVE-2026-66034 — libssh2 Heap Out-of-Bounds Read via publickey subsystem

libssh2 through 1.11.1, fixed in commit a13bb6c, contains a missing bounds check vulnerability that allows a malicious SSH server to trigger an arbitrary-length heap out-of-bounds read and a free of …

libssh2 | Remote | Memory Corruption
Jul 24, 2026 Jul 25, 2026
Jul 24, 2026
Jul 25, 2026
8.7 HIGH
CVE-2026-66033 — libssh2 Integer Underflow DoS via AES-GCM Cipher Negotiation

libssh2 through 1.11.1, fixed in commit a2ed82d, contains a pre-authentication integer underflow vulnerability in the ssh2_cipher_crypt() function in src/openssl.c that allows a malicious SSH server …

libssh2 | Remote | Memory Corruption
Jul 24, 2026 Jul 24, 2026
Jul 24, 2026
Jul 24, 2026
8.8 HIGH
CVE-2026-66032 — libssh2 Double-Free Heap Corruption via sftp_open()

libssh2 through 1.11.1, fixed in commit 5e47761, contains a double-free vulnerability in the sftp_open() function in src/sftp.c that allows a malicious SSH server to corrupt the heap of any authentic…

libssh2 | Remote | Memory Corruption
Jul 24, 2026 Jul 25, 2026
Jul 24, 2026
Jul 25, 2026
8.6 HIGH
CVE-2026-65711 — sysPass 3.2.11 Authenticated OS Command Injection via Backup Path

sysPass through version 3.2.11 contains an OS command injection vulnerability that allows authenticated administrators to execute arbitrary commands as the web server process user by setting a malici…

syspass | Remote | Injection
Jul 24, 2026 Jul 25, 2026
Jul 24, 2026
Jul 25, 2026
7.1 HIGH
CVE-2026-65710 — sysPass 3.2.11 Missing Authorization via PublicLinkController Account Decryption

sysPass through version 3.2.11 contains a missing authorization vulnerability that allows authenticated users with the PUBLICLINK_CREATE profile flag to trigger unauthorized decryption and persistent…

syspass | Remote | Authorization
Jul 24, 2026 Jul 24, 2026
Jul 24, 2026
Jul 24, 2026
8.7 HIGH
CVE-2026-65709 — sysPass 3.2.11 Missing Object-Level Authorization via JSON-RPC API

sysPass through version 3.2.11 contains a missing object-level authorization vulnerability in the JSON-RPC API that allows API token holders to enumerate account metadata, overwrite passwords, and de…

syspass | Remote | Authorization
Jul 24, 2026 Jul 24, 2026
Jul 24, 2026
Jul 24, 2026
8.6 HIGH
CVE-2026-65708 — sysPass 3.2.11 Insecure Direct Object Reference via AccountFileController

sysPass through version 3.2.11 contains an insecure direct object reference vulnerability that allows any authenticated attacker to access account file attachments belonging to accounts they do not h…

syspass | Remote | Authorization
Jul 24, 2026 Jul 24, 2026
Jul 24, 2026
Jul 24, 2026
Showing 20 of 9412 Results