Powered by data from 22+ sources — NVD, cve.org, EPSS, CISA KEV, OSV, GHSA, MITRE ATT&CK, and more.

About & licensesSource status
cvekit
CockpitCVEsATT&CKActorsSources
----‑--‑-- · --:--:-- UTCLIVE
Clear1,674 matching
CVEs · 1,674page 1 / 34
CVE-2026-73570HIGH8.9EPSS 61%Analyzed

A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp package is installed and SNMP notifications are enabled. Due to improper sanitization of untrusted input during SNMP notification processing, an unauthenticated attacker can send specially crafted SMTP requests that may result in execution of arbitrary operating system commands as the Zimbra user.

CVE-2021-43226HIGH7.8EPSS 87%Analyzed

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2026-68820HIGH7.0EPSS 26%Analyzed

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

CVE-2026-31431HIGH7.8EPSS 100%Analyzed

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in algif_aead since the source and destination come from different mappings. Get rid of all the complexity added for in-place operation and just copy the AD directly.

CVE-2026-72530CRITICAL9.0EPSS 59%Analyzed

A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and earlier could use a specially crafted script to break out of the isolated environment and execute arbitrary code on the host system.

CVE-2026-72529CRITICAL9.8EPSS 53%Analyzed

A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and earlier could execute an arbitrary script by calling an undocumented function.

CVE-2026-64849CRITICAL9.3EPSS 95%Analyzed

MLflow is an open source AI engineering platform for agents, large language models, and machine learning models. Prior to 3.15.0, the unauthenticated POST /api/2.0/mlflow/webhooks/{id}/test endpoint calls _validate_webhook_url() in mlflow/utils/validation.py only for the original URL while mlflow/webhooks/delivery.py follows redirects and re-resolves the hostname without pinning the validated address, allowing attackers to reach internal or cloud metadata services and receive response_status and response_body. This issue is fixed in version 3.15.0.

CVE-2026-55040CRITICAL9.1EPSS 92%Analyzed

Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network.

CVE-2026-58644CRITICAL9.8EPSS 99%Analyzed

Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

CVE-2026-50522CRITICAL9.8EPSS 100%Analyzed

Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

CVE-2026-56164CRITICAL9.8EPSS 98%Analyzed

Missing authentication for critical function in Microsoft Office SharePoint allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-56155HIGH7.8EPSS 82%Analyzed

Insufficient granularity of access control in Active Directory Federation Services (AD FS) allows an authorized attacker to elevate privileges locally.

CVE-2022-2586HIGH7.8EPSS 95%Analyzed

It was discovered that a nft object or expression could reference a nft set on a different nft table, leading to a use-after-free once that table was deleted.

CVE-2021-26858HIGH7.8EPSS 100%Analyzed

Microsoft Exchange Server Remote Code Execution Vulnerability

CVE-2021-42321HIGH8.8EPSS 100%Analyzed

Microsoft Exchange Server Remote Code Execution Vulnerability

CVE-2021-42292HIGH7.8EPSS 99%Analyzed

Microsoft Excel Security Feature Bypass Vulnerability

CVE-2021-42287HIGH7.5EPSS 100%Analyzed

Active Directory Domain Services Elevation of Privilege Vulnerability

CVE-2021-42278HIGH7.5EPSS 99%Analyzed

Active Directory Domain Services Elevation of Privilege Vulnerability

CVE-2021-41379MEDIUM5.5EPSS 97%Analyzed

Windows Installer Elevation of Privilege Vulnerability

CVE-2021-27085HIGH8.8EPSS 92%Analyzed

Internet Explorer Remote Code Execution Vulnerability

CVE-2021-27065HIGH7.8EPSS 100%Analyzed

Microsoft Exchange Server Remote Code Execution Vulnerability

CVE-2021-27059HIGH7.6EPSS 93%Analyzed

Microsoft Office Remote Code Execution Vulnerability

CVE-2021-26857HIGH7.8EPSS 100%Analyzed

Microsoft Exchange Server Remote Code Execution Vulnerability

CVE-2021-26855CRITICAL9.1EPSS 100%Analyzed

Microsoft Exchange Server Remote Code Execution Vulnerability

CVE-2021-26411HIGH8.8EPSS 100%Analyzed

Internet Explorer Memory Corruption Vulnerability

CVE-2020-1054HIGH7.8EPSS 99%Analyzed

An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted application that could exploit the vulnerability and take control of an affected system. The update addresses this vulnerability by correcting how the Windows kernel-mode driver handles objects in memory.

CVE-2023-23376HIGH7.8EPSS 96%Analyzed

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2023-21823HIGH7.8EPSS 92%Analyzed

Windows Graphics Component Remote Code Execution Vulnerability

CVE-2023-21715HIGH7.3EPSS 96%Analyzed

Microsoft Publisher Security Feature Bypass Vulnerability

CVE-2023-21529HIGH8.8EPSS 99%Analyzed

Microsoft Exchange Server Remote Code Execution Vulnerability

CVE-2024-43572HIGH7.8EPSS 99%Analyzed

Microsoft Management Console Remote Code Execution Vulnerability

CVE-2024-43468CRITICAL9.8EPSS 99%Analyzed

Microsoft Configuration Manager Remote Code Execution Vulnerability

CVE-2024-43573HIGH8.1EPSS 99%Analyzed

Windows MSHTML Platform Spoofing Vulnerability

CVE-2026-21525MEDIUM6.2EPSS 92%Analyzed

Null pointer dereference in Windows Remote Access Connection Manager allows an unauthorized attacker to deny service locally.

CVE-2026-21514HIGH7.8EPSS 72%Analyzed

Reliance on untrusted inputs in a security decision in Microsoft Office Word allows an unauthorized attacker to bypass a security feature locally.

CVE-2026-21510HIGH8.8EPSS 98%Analyzed

Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.

CVE-2026-21513HIGH8.8EPSS 97%Analyzed

Protection mechanism failure in MSHTML Framework allows an unauthorized attacker to bypass a security feature over a network.

CVE-2026-21533HIGH7.8EPSS 89%Analyzed

Improper privilege management in Windows Remote Desktop allows an authorized attacker to elevate privileges locally.

CVE-2026-21519HIGH7.8EPSS 83%Analyzed

Access of resource using incompatible type ('type confusion') in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

CVE-2022-26486CRITICAL9.6EPSS 82%Analyzed

An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for Android < 97.3.0, Thunderbird < 91.6.2, and Focus < 97.3.0.

CVE-2022-26485HIGH8.8EPSS 96%Analyzed

Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for Android < 97.3.0, Thunderbird < 91.6.2, and Focus < 97.3.0.

CVE-2026-65400CRITICAL9.8EPSS 52%Analyzed

An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.

CVE-2026-59310CRITICAL9.8EPSS 83%Analyzed

VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to vCenter may exploit this issue to execute arbitrary code.

CVE-2026-33824CRITICAL9.8EPSS 100%Analyzed

Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network.

CVE-2025-62593HIGH8.8EPSS 60%Analyzed

Ray is an AI compute engine. Prior to version 2.52.0, developers working with Ray as a development tool can be exploited via a critical RCE vulnerability exploitable via Firefox and Safari. This vulnerability is due to an insufficient guard against browser-based attacks, as the current defense uses the User-Agent header starting with the string "Mozilla" as a defense mechanism. This defense is insufficient as the fetch specification allows the User-Agent header to be modified. Combined with a DNS rebinding attack against the browser, and this vulnerability is exploitable against a developer running Ray who inadvertently visits a malicious website, or is served a malicious advertisement (malvertising). This issue has been patched in version 2.52.0.

CVE-2026-9198CRITICAL9.8EPSS 97%Analyzed

IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to chain /api/v1/auto_login (mints SUPERUSER tokens to any network caller) with /api/v1/validate/code (executes user code via exec()) to achieve full RCE on default Langflow deployments

CVE-2026-34197HIGH8.8EPSS 100%Analyzed

Improper Input Validation, Improper Control of Generation of Code ('Code Injection') vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ. Apache ActiveMQ Classic exposes the Jolokia JMX-HTTP bridge at /api/jolokia/ on the web console. The default Jolokia access policy permits exec operations on all ActiveMQ MBeans (org.apache.activemq:*), including BrokerService.addNetworkConnector(String) and BrokerService.addConnector(String). An authenticated attacker can invoke these operations with a crafted discovery URI that triggers the VM transport's brokerConfig parameter to load a remote Spring XML application context using ResourceXmlApplicationContext. Because Spring's ResourceXmlApplicationContext instantiates all singleton beans before the BrokerService validates the configuration, arbitrary code execution occurs on the broker's JVM through bean factory methods such as Runtime.exec(). This issue affects Apache ActiveMQ Broker: before 5.19.4, from 6.0.0 before 6.2.3; Apache ActiveMQ All: before 5.19.4, from 6.0.0 before 6.2.3; Apache ActiveMQ: before 5.19.4, from 6.0.0 before 6.2.3. Users are recommended to upgrade to version 5.19.4 or 6.2.3, which fixes the issue

CVE-2022-21882HIGH7.8EPSS 99%Analyzed

Win32k Elevation of Privilege Vulnerability

CVE-2021-4034HIGH7.8EPSS 100%Analyzed

A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn't handle the calling parameters count correctly and ends trying to execute environment variables as commands. An attacker can leverage this by crafting environment variables in such a way it'll induce pkexec to execute arbitrary code. When successfully executed the attack can cause a local privilege escalation given unprivileged users administrative rights on the target machine.

CVE-2020-29574CRITICAL9.8EPSS 91%Analyzed

An SQL injection vulnerability in the WebAdmin of Cyberoam OS through 2020-12-04 allows unauthenticated attackers to execute arbitrary SQL statements remotely.

1,674 CVEs
1 / 34

CVE-2022-26486

CRITICAL9.6KEVAnalyzed
CNA: mozillaPublished: 2022-12-22Modified: 13 days ago
Open full
Description

An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for Android < 97.3.0, Thunderbird < 91.6.2, and Focus < 97.3.0.

via cve_org

CVSS v3.1
9.6
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
AVNACLPRNUIRSCCHIHAH
CVSS across sources4
VersionTypeSourceBaseExpImp
3.1Primarycve.org9.6——
3.1Primarycve.org9.6——
3.1PrimaryNVD9.62.86.0
3.1SecondaryNVD9.62.86.0
Modification timeline
  • CISA KEVabout 18 hours ago83 obs
  • EPSSabout 19 hours ago82 obs
  • NVD13 days ago4 obs
  • cve.org3 months ago2 obs
Timeline
  1. 2022-03-07
    Added to CISA KEV catalog
  2. 2022-12-22
    CVE published
  3. 2026-06-15
    First observed by epss
  4. 2026-06-15
    First observed by cisa_kev
  5. 2026-06-15
    First observed by cve_org
  6. 2026-06-15
    First observed by nvd
  7. 2026-08-19
    Last metadata update