NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-76711 A vulnerability exists in an Analytics and Location Engine (ALE) component where the impacted process improperly processes incoming socket connections... 2026-09-22 7.5 NETWORK HIGH NVD
CVE-2026-76710 A vulnerability exists in the Analytics and Location Engine (ALE) management interface that may allow for the disclosure of sensitive information. An ... 2026-09-22 7.5 NETWORK HIGH NVD
CVE-2026-76709 A vulnerability exists in the internal administrative component of Analytics and Location Engine (ALE). Successful exploitation of this vulnerability ... 2026-09-22 9.8 NETWORK CRITICAL NVD
CVE-2026-76708 A vulnerability exists in the Analytics and Location Engine (ALE) where the application and underlying operating system use default, hard-coded creden... 2026-09-22 9.8 NETWORK CRITICAL NVD
CVE-2026-75432 An issue in yaml-cpp 0.9.0 allows a remote attacker to obtain sensitive information via the src/scanner.cpp, Scanner::PopIndent(), and Scanner::PushIn... 2026-09-22 N/A None None NVD
CVE-2026-65829 MPXJ is an open source library to read and write project plans from a variety of file formats and databases. From 7.3.0 until 16.5.0, reading a suitab... 2026-09-22 5.3 NETWORK MEDIUM NVD
CVE-2026-63628 mppx is a TypeScript interface for machine payments protocol. Prior to 0.8.2, the fee-payer cosigning path in src/tempo/internal/fee-payer.ts copied a... 2026-09-22 6.9 NETWORK MEDIUM NVD
CVE-2026-63627 mppx is a TypeScript interface for machine payments protocol. Prior to 0.8.2, FeePayerPolicy in src/tempo/internal/fee-payer.ts used decodeFunctionDat... 2026-09-22 6.9 NETWORK MEDIUM NVD
CVE-2026-62985 request-filtering-agent is an http(s).Agent implementation that blocks requests to Private/Reserved IP addresses. Prior to 3.2.1, RequestFilteringHttp... 2026-09-22 7.5 NETWORK HIGH NVD
CVE-2026-61570 MPXJ is an open source library to read and write project plans from a variety of file formats and databases. From 5.5.5 until 16.4.1, MerlinReader cre... 2026-09-22 7.5 NETWORK HIGH NVD
CVE-2026-59991 psd-tools is a Python package for working with Adobe Photoshop PSD files. Prior to 1.17.4, PSDImage.composite() and PSDImage.numpy() allocated output ... 2026-09-22 7.5 NETWORK HIGH NVD
CVE-2026-58268 SIPGO is a library for writing SIP services in the GO language. Prior to 1.4.1, ParserStream.parseSingle in sip/parser_stream.go allocates a SIP body ... 2026-09-22 7.5 NETWORK HIGH NVD
CVE-2026-28325 SolarWinds Observability Self-Hosted was found to be affected by an unauthenticated remote code execution vulnerability stemming from deserialization ... 2026-09-22 8.8 ADJACENT_NETWORK HIGH NVD
CVE-2026-28324 SolarWinds Observability Self-Hosted was found to be affected by an unauthenticated remote code execution vulnerability due to the insufficient integr... 2026-09-22 9.8 NETWORK CRITICAL NVD
CVE-2026-94462 Spree is an open source e-commerce solution built with Ruby on Rails. From 5.4.0 until 5.4.4 and 5.5.4, PATCH /api/v3/store/carts/:id/associate in Spr... 2026-09-22 7.1 NETWORK HIGH NVD