CVE-2026-66316
— Microsoft Edge (Chromium-based) Spoofing Vulnerability
None
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-66315
— Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
None
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-66314
— Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
None
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-66313
— Microsoft Edge (Chromium-based) Tampering Vulnerability
None
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-66312
— Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
None
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-66310
— Microsoft Edge for Android Information Disclosure Vulnerability
None
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-66321
— Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
None
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-66318
— Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
None
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-69249
— python-cryptography: Duplicate self-signed intermediates can cause exponential path-build…
python-cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 49.0.0, when resolving invalid certificate chains that include duplicate copies…
Remote
|
Denial of Service
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-69248
— python-cryptography verifier accepts wildcard DNS names allowing escape from permittedSub…
cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 49.0.0, if an intermediate constrained CA permits the DNS name foo.example.com, and th…
Remote
|
Cryptography
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-69247
— cryptography: PKCS#7 EnvelopedData decryption exposes a Bleichenbacher oracle through dis…
cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 44.0.0 until 50.0.0, pkcs7_decrypt_der, pkcs7_decrypt_pem, and pkcs7_decrypt_smime reporte…
Remote
|
Cryptography
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-67977
— F' framework FileDownlink Integer Overflow Denial of Service
An integer overflow in the Svc::FileDownlink::SendPartial component of fprime framework v4.2.2 allows attackers to cause a Denial of Service (DoS) via a crafted input.
|
Denial of Service
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Incorrect access control in NASA cFS v7.0.1 allows attackers to arbitrarily remove low-index subscriptions and add new streams via sending TO_LAB add/remove subscription commands.
|
Authorization
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-67974
— NASA cFS Software Bus Network Denial of Service Vulnerability
A parser boundary flaw in the Software Bus Network (SBN) application's peer subscription message handling in NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via sending a crafted …
|
Denial of Service
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
An issue in the CFDP receive path of NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via replaying final CFDP PDUs.
|
Denial of Service
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Incorrect access control in the DS_SetDestPathCmd() component of NASA cFS v7.0.1 allows attackers to access sensitive components via a path traversal.
|
Path Traversal
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-67969
— NASA cFS Health and Safety Component Denial of Service Vulnerability
An issue in the HS_MonitorApplications() component of NASA cFS v7.0.1 allows attackers to force the processor to reset via supplying a crafted HS.AppMon_Tbl entry.
|
Denial of Service
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-67617
— Microweber CMS 2.0.20 Stored XSS via tag_names Parameter
Microweber CMS through 2.0.20 contains a stored cross-site scripting vulnerability in the content tagging system that allows admin-authenticated attackers to inject arbitrary JavaScript by submitting…
Remote
|
Cross-Site Scripting
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-67616
— Camaleon CMS 2.9.2 Missing Authorization via /admin/post_type drafts endpoint
Camaleon CMS through 2.9.2, fixed in commit 88ab703, contains a missing authorization vulnerability on the drafts endpoint that allows any authenticated low-privileged user to create draft posts by b…
Remote
|
Authorization
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
CVE-2026-48115
— Misskey: Improper Authorization in the Announcements API
Misskey is an open source, federated social media platform. All Misskey servers running versions 2024.5.0 and later, but prior to 2026.5.4, contain a vulnerability in the Server Announcements API whe…
Remote
|
Authorization
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026
Aug 03, 2026