NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-19197 A user with organization administrator permissions can delete dashboard snapshots belonging to other organizations on the same Grafana instance, and c... 2026-08-26 6.3 NETWORK MEDIUM NVD
CVE-2026-18916 Any remote client can crash a NSD serve child, by throttling the TCP receive window after a TCP query. By continuously crashing the serve childs, the ... 2026-08-26 6.9 NETWORK MEDIUM NVD
CVE-2026-18664 When ranges are used for access control (i.e. of the form 1.2.3.4-1.2.3.25), because NSD wrongly compares the IP address with the range on little endi... 2026-08-26 8.2 NETWORK HIGH NVD
CVE-2026-78237 Insufficient input validation in ABR allows a low-privileged user to inject malicious entries into the sudoers file, resulting in persistent root acce... 2026-08-26 7.8 LOCAL HIGH NVD
CVE-2026-78236 An insecure PIN derivation mechanism in ABR allows a low-privileged user to escalate privileges to administrator by communicating over Cross-Process C... 2026-08-26 8.8 LOCAL HIGH NVD
CVE-2026-58108 The personal access token removal query selects from PersonalAccessTokenDB but filters on columns of Session, with no join between them. SQLAlchemy re... 2026-08-26 1.2 NETWORK LOW NVD
CVE-2026-79654 A flaw was found in Katello where the Content View History API does not properly enforce authorization when accessing a Content View specified by the ... 2026-08-26 4.3 NETWORK MEDIUM NVD
CVE-2026-58097 mp_SetEnddisc() copied a user-supplied PSN endpoint value without length validation, allowing a buffer overflow via the ppp(8) command interface. A l... 2026-08-26 7.8 LOCAL HIGH NVD
CVE-2026-58096 LcpDecodeConfig() did not validate the length of received endpoint discriminator options against the minimum required by RFC 1717. Undersized options... 2026-08-26 8.8 NETWORK HIGH NVD
CVE-2026-58095 mp_Enddisc() used incorrect length calculations when formatting endpoint discriminator addresses for display, allowing a received endpoint option to o... 2026-08-26 8.8 NETWORK HIGH NVD
CVE-2026-58094 The FIOSSHMLPGCNF ioctl(2) operation configures the page size for a largepage shared memory object. This is intended to be used immediately after cre... 2026-08-26 7.8 LOCAL HIGH NVD
CVE-2026-58093 The TIOCSCTTY ioctl handler drops the tty lock in order to acquire the process tree lock. After reacquiring the tty lock, the handler did not revalid... 2026-08-26 7.0 LOCAL HIGH NVD
CVE-2026-15203 Improper access control in debug and engineering interfaces in Danfoss iC7-Automation SP, iC7-Marine, and iC7-Hybrid GR3 allows attackers to gain read... 2026-08-26 9.3 NETWORK CRITICAL NVD
CVE-2026-9805 SMM IHISI command handler, FMTSWriteUseIntelLib, for FMTS command 0x32, read and write data without checking buffer size and could cause buffer overfl... 2026-08-26 2.7 PHYSICAL LOW NVD
CVE-2026-80214 LibreNMS’s Virtualization Discovery module is vulnerable to command line injection. An authenticated admin user can execute arbitrary code on the host... 2026-08-26 8.6 NETWORK HIGH NVD