|
High
|
17 May 2026 |
17 May 2026 |
CPAI-2026-4864
|
|
CVE-2026-44338
|
PraisonAI Authentication Bypass (CVE-2026-44338)
|
|
Critical
|
14 May 2026 |
17 May 2026 |
CPAI-2026-4860
|
|
CVE-2026-42945
|
Nginx Heap Overflow (CVE-2026-42945)
|
|
Medium
|
17 May 2026 |
17 May 2026 |
CPAI-2026-4665
|
|
CVE-2026-20945
|
Microsoft SharePoint Server Cross-Site Scripting (CVE-2026-20945)
|
|
High
|
17 May 2026 |
17 May 2026 |
CPAI-2026-4648
|
|
CVE-2026-20186
|
Cisco Identity Services Engine Command Injection (CVE-2026-20186)
|
|
High
|
17 May 2026 |
17 May 2026 |
CPAI-2026-4584
|
|
CVE-2026-40688
|
Fortinet FortiWeb Out Of Bounds Write (CVE-2026-40688)
|
|
High
|
17 May 2026 |
17 May 2026 |
CPAI-2026-4574
|
|
CVE-2026-3288
|
Kubernetes ingress-nginx Code Injection (CVE-2026-3288)
|
|
Critical
|
17 May 2026 |
17 May 2026 |
CPAI-2026-4512
|
|
CVE-2026-41176
|
Rclone Authentication Bypass (CVE-2026-41176)
|
|
Critical
|
17 May 2026 |
17 May 2026 |
CPAI-2026-4390
|
|
CVE-2026-41276
|
FlowiseAI Flowise Authentication Bypass (CVE-2026-41276)
|
|
Critical
|
6 May 2026 |
17 May 2026 |
CPAI-2026-4075
|
|
CVE-2026-20963
|
Microsoft SharePoint Server Insecure Deserialization (CVE-2026-20963)
|
|
Critical
|
14 May 2026 |
14 May 2026 |
CPAI-2026-4736
|
|
CVE-2026-42945
|
Nginx Heap Overflow (CVE-2026-42945)
|
|
Critical
|
30 Apr 2026 |
14 May 2026 |
CPAI-2026-4723
|
|
CVE-2026-42208
|
LiteLLM SQL Injection (CVE-2026-42208)
|
|
High
|
14 May 2026 |
14 May 2026 |
CPAI-2026-4651
|
|
CVE-2026-27966
|
Langflow Remote Code Execution (CVE-2026-27966)
|
|
High
|
14 May 2026 |
14 May 2026 |
CPAI-2026-4667
|
|
CVE-2026-42248 CVE-2026-42249
|
Ollama Remote Code Execution (CVE-2026-42248; CVE-2026-42249)
|
|
High
|
14 May 2026 |
14 May 2026 |
CPAI-2026-4657
|
|
CVE-2026-27022
|
LangChain LangGraph SQL Injection (CVE-2026-27022)
|
|
High
|
14 May 2026 |
14 May 2026 |
CPAI-2026-4191
|
|
CVE-2026-35029
|
LiteLLM Remote Code Execution (CVE-2026-35029)
|
|
High
|
14 May 2026 |
14 May 2026 |
CPAI-2026-4175
|
|
CVE-2026-7857
|
D-Link DI-8100 Buffer Overflow (CVE-2026-7857)
|
|
Critical
|
14 May 2026 |
14 May 2026 |
CPAI-2026-4174
|
|
CVE-2026-7853
|
D-Link DI-8100 Buffer Overflow (CVE-2026-7853)
|
|
High
|
14 May 2026 |
14 May 2026 |
CPAI-2026-4173
|
|
CVE-2026-7856
|
D-Link DI-8100 Buffer Overflow (CVE-2026-7856)
|
|
High
|
14 May 2026 |
14 May 2026 |
CPAI-2026-4172
|
|
CVE-2026-7854
|
D-Link DI-8100 Buffer Overflow (CVE-2026-7854)
|
|
High
|
14 May 2026 |
14 May 2026 |
CPAI-2026-4171
|
|
CVE-2026-7851
|
D-Link DI-8100 Stack Overflow (CVE-2026-7851)
|
|
High
|
14 May 2026 |
14 May 2026 |
CPAI-2026-4544
|
|
CVE-2026-5351 CVE-2026-5352 CVE-2026-5353 CVE-2026-5354 CVE-2026-5355
|
TRENDnet TEW-657BRM Command Injection (CVE-2026-5351; CVE-2026-5352; CVE-2026-5353; CVE-2026-5354; CVE-2026-5355)
|
|
Medium
|
15 Mar 2026 |
14 May 2026 |
CPAI-2025-13177
|
|
CVE-2025-54353
|
Fortinet FortiSandbox Cross-Site Scripting (CVE-2025-54353)
|
|
High
|
15 Feb 2026 |
14 May 2026 |
CPAI-2026-1695
|
|
CVE-2026-1603
|
Ivanti Endpoint Manager Authentication Bypass (CVE-2026-1603)
|
|
Critical
|
13 May 2026 |
13 May 2026 |
CPAI-2008-0799
|
|
CVE-2008-1083
|
Microsoft Windows Heap Overflow (CVE-2008-1083)
|
|
High
|
13 May 2026 |
13 May 2026 |
CPAI-2026-4536
|
|
CVE-2026-31829
|
Flowise Server-Side Request Forgery (CVE-2026-31829)
|
|
Critical
|
13 May 2026 |
13 May 2026 |
CPAI-2026-4534
|
|
CVE-2026-30821
|
Flowise Arbitrary File Upload (CVE-2026-30821)
|
|
High
|
13 May 2026 |
13 May 2026 |
CPAI-2025-16082
|
|
CVE-2025-7656
|
Google Chrome Integer Overflow (CVE-2025-7656)
|
|
Critical
|
12 May 2026 |
12 May 2026 |
CPAI-2026-4502
|
Microsoft CVE-2026-41103
|
CVE-2026-41103
|
Microsoft SSO Plugin Elevation of Privilege (CVE-2026-41103)
|
|
Critical
|
12 May 2026 |
12 May 2026 |
CPAI-2026-4499
|
Microsoft CVE-2026-41089
|
CVE-2026-41089
|
Microsoft Windows Netlogon Remote Code Execution (CVE-2026-41089)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2026-4498
|
Microsoft CVE-2026-40364
|
CVE-2026-40364
|
Microsoft Word Remote Code Execution (CVE-2026-40364)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2026-4485
|
Adobe APSB26-49
|
CVE-2026-34648
|
Adobe Commerce Stack Overflow (APSB26-49: CVE-2026-34648)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2026-4385
|
Microsoft CVE-2026-35416
|
CVE-2026-35416
|
Microsoft Windows Ancillary Function Driver for WinSock Elevation of Privilege (CVE-2026-35416)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2026-4384
|
Microsoft CVE-2026-40398
|
CVE-2026-40398
|
Microsoft Windows Remote Desktop Services Elevation of Privilege (CVE-2026-40398)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2026-4486
|
Adobe APSB26-49
|
CVE-2026-34650
|
Adobe Commerce Stack Overflow (APSB26-49: CVE-2026-34650)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2026-4487
|
Adobe APSB26-49
|
CVE-2026-34649
|
Adobe Commerce Stack Overflow (APSB26-49: CVE-2026-34649)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2026-3705
|
Microsoft CVE-2026-33837
|
CVE-2026-33837
|
Microsoft Windows TCP/IP Local Elevation of Privilege (CVE-2026-33837)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2026-3703
|
Microsoft CVE-2026-33840
|
CVE-2026-33840
|
Microsoft Win32k Elevation of Privilege (CVE-2026-33840)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2026-3704
|
Microsoft CVE-2026-40369
|
CVE-2026-40369
|
Microsoft Windows Kernel Elevation of Privilege (CVE-2026-40369)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2026-3702
|
Microsoft CVE-2026-33835
|
CVE-2026-33835
|
Microsoft Windows Cloud Files Mini Filter Driver Elevation of Privilege (CVE-2026-33835)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2025-16030
|
|
CVE-2025-61687
|
Flowise Arbitrary File Upload (CVE-2025-61687)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2025-16028
|
|
CVE-2025-14766
|
Google Chrome Out of Bounds Write (CVE-2025-14766)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2026-4463
|
|
CVE-2026-29014
|
MetInfo CMS Remote Code Execution (CVE-2026-29014)
|
|
High
|
12 May 2026 |
12 May 2026 |
CPAI-2025-16032
|
|
CVE-2025-58320
|
Delta Electronics DIALink Directory Traversal (CVE-2025-58320)
|
|
Medium
|
12 May 2026 |
12 May 2026 |
CPAI-2025-16020
|
|
CVE-2025-22037
|
Linux Kernel Denial of Service (CVE-2025-22037)
|
|
High
|
7 May 2026 |
12 May 2026 |
CPAI-2026-4375
|
|
CVE-2026-7567
|
WordPress Temporary Login Plugin Authentication Bypass (CVE-2026-7567)
|
|
High
|
5 Apr 2026 |
12 May 2026 |
CPAI-2026-4400
|
|
CVE-2026-20841
|
Microsoft Windows Notepad Command Injection (CVE-2026-20841)
|
|
High
|
11 May 2026 |
11 May 2026 |
CPAI-2026-4368
|
|
|
IKE Unsigned Underflow
|
|
High
|
11 May 2026 |
11 May 2026 |
CPAI-2025-16017
|
|
CVE-2025-13878
|
ISC BIND Denial of Service (CVE-2025-13878)
|
|
Critical
|
23 Mar 2026 |
11 May 2026 |
CPAI-2026-2170
|
|
CVE-2026-33017
|
Langflow Remote Code Execution (CVE-2026-33017)
|
|
High
|
24 Mar 2026 |
11 May 2026 |
CPAI-2026-3336
|
|
CVE-2026-21643
|
Fortinet FortiClientEMS SQL Injection (CVE-2026-21643)
|