NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-88350 An integer overflow vulnerability exists in MPack 1.1.1 in mpack_node_cstr_alloc() and mpack_node_utf8_cstr_alloc(). 2026-09-22 N/A None None NVD
CVE-2026-88344 An out-of-bounds read vulnerability exists in the schema lexer of flatcc 4c3b999e. When an exact-length FlatBuffers schema buffer ends with a digit, t... 2026-09-22 7.5 NETWORK HIGH NVD
CVE-2026-88341 A reachable assertion vulnerability exists in YARA 4.5.8 when loading crafted .yrc compiled rule files. An attacker can provide a malicious file with ... 2026-09-22 5.5 LOCAL MEDIUM NVD
CVE-2026-88340 An invalid pointer release vulnerability exists in YARA 4.5.8 during deserialization of compiled .yrc rule files. The vulnerability is caused by insuf... 2026-09-22 7.6 NETWORK HIGH NVD
CVE-2026-87121 lwIP TCP/IP Stack MQTT is vulnerable to an out-of-bounds write, which may allow an attacker to gain full code execution on the device. 2026-09-22 9.8 NETWORK CRITICAL NVD
CVE-2026-83805 Nautobot is a Network Source of Truth and Network Automation Platform. From 3.0.0 until 3.1.8, the generic ApprovalWorkflowStageResponse create endpoi... 2026-09-22 6.4 NETWORK MEDIUM NVD
CVE-2026-83801 Nautobot is a Network Source of Truth and Network Automation Platform. Prior to 2.4.37 and 3.1.8, a user with extras.add_relationship or extras.change... 2026-09-22 5.4 NETWORK MEDIUM NVD
CVE-2026-79767 Gardener implements the automated management and operation of Kubernetes clusters as a service. Prior to 1.142.6, 1.143.3, 1.144.2, and 1.145.0, the c... 2026-09-22 5.5 NETWORK MEDIUM NVD
CVE-2026-77322 SIPGO is a library for writing SIP services in the GO language. Prior to 1.4.3, WSConnection.Read in sip/transport_ws.go creates a wsutil.Reader witho... 2026-09-22 7.5 NETWORK HIGH NVD
CVE-2026-76717 A vulnerability exists in the Analytics and Location Engine (ALE) API that may allow for the disclosure of sensitive information. An unauthenticated r... 2026-09-22 5.3 NETWORK MEDIUM NVD
CVE-2026-76716 Multiple vulnerabilities exist in the Analytics and Location Engine (ALE) that may allow for unauthorized access or denial of service. An unauthentica... 2026-09-22 5.3 NETWORK MEDIUM NVD
CVE-2026-76715 A vulnerability in an administrative component of Analytics and Location Engine (ALE) is vulnerable to a man-in-the-middle (MitM) attack. Successful e... 2026-09-22 7.1 ADJACENT_NETWORK HIGH NVD
CVE-2026-76714 Vulnerabilities in the Analytics and Location Engine web interface allows remote authenticated users to run arbitrary commands on the underlying host.... 2026-09-22 7.2 NETWORK HIGH NVD
CVE-2026-76713 A vulnerability exists in the maintenance restore functionality of Analytics and Location Engine (ALE). Successful exploitation of this vulnerability ... 2026-09-22 7.2 NETWORK HIGH NVD
CVE-2026-76712 A vulnerability exists in the Analytics and Location Engine (ALE) that may allow for unauthorized access, information disclosure, or denial of service... 2026-09-22 7.3 NETWORK HIGH NVD