NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-18457 Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Buffers. This issue affects Connext Professional... 2026-09-22 8.3 NETWORK HIGH NVD
CVE-2026-11389 Out-of-bounds Read, Function Call With Incorrect Number of Arguments, Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in R... 2026-09-22 6.8 LOCAL MEDIUM NVD
CVE-2026-11388 Double Free vulnerability in RTI Connext Professional (Core Libraries) allows File Manipulation. This issue affects Connext Professional: from 7.4.0 b... 2026-09-22 6.9 LOCAL MEDIUM NVD
CVE-2026-95818 A stack-based buffer overflow in the dynamic loader (ld.so) of the GNU C Library (glibc) versions 2.14 through 2.44 allows a local attacker to crash o... 2026-09-22 3.6 LOCAL LOW NVD
CVE-2026-94456 Postiz generates security-sensitive credentials using `Math.random()` instead of a cryptographically secure source. The same helper is used for OAuth ... 2026-09-22 9.1 NETWORK CRITICAL NVD
CVE-2026-94455 An HTTP endpoint intended for provisioning enterprise and reseller organisations is reachable without any session. The authentication middleware is bo... 2026-09-22 7.1 NETWORK HIGH NVD
CVE-2026-87902 An unauthenticated attacker can make `get_page_template()` page-template resolution include a chosen readable local `.php` file outside the active the... 2026-09-22 8.1 NETWORK HIGH NVD
CVE-2026-83803 Sentry is an error tracking and performance monitoring tool. From 23.11.0 until 26.7.0, Sentry instances with the relocation feature enabled unsafely ... 2026-09-22 7.7 NETWORK HIGH NVD
CVE-2026-83603 Netdata is an open source observability tool. Prior to 2.10.4, the setuid-root ndsudo helper command fail2ban-client-status-socket in src/collectors/u... 2026-09-22 8.4 LOCAL HIGH NVD
CVE-2026-83602 Netdata is an open source observability tool. From 2.0.0 until 2.11.0, Netdata registers /api/v3/settings in src/web/api/v3/web_api_v3.c with HTTP_ACL... 2026-09-22 6.5 NETWORK MEDIUM NVD
CVE-2026-83601 Netdata is an open source observability tool. Prior to 2.10.4, an authenticated child agent can send an oversized DIMENSION SLOT value that str2ull_en... 2026-09-22 6.5 NETWORK MEDIUM NVD
CVE-2026-83600 Netdata is an open source observability tool. Prior to 2.10.4, an authenticated child agent can send an oversized CHART SLOT value that str2ull_encode... 2026-09-22 6.5 NETWORK MEDIUM NVD
CVE-2026-83599 Netdata is an open source observability tool. Prior to 2.11.0, Netdata's unauthenticated WebSocket server negotiates permessage-deflate before authent... 2026-09-22 7.5 NETWORK HIGH NVD
CVE-2026-83598 Netdata is an open source observability tool. From rom 2.0.0 until 2.10.4, during Netdata Windows Agent MSI repair, powershell.exe runs as SYSTEM with... 2026-09-22 7.8 LOCAL HIGH NVD
CVE-2026-76805 Nuclei is a vulnerability scanner built on a simple YAML-based DSL. From 3.0.0 until 3.10.0, the DAST/fuzz payload path in pkg/fuzz/parts.go can evalu... 2026-09-22 5.3 NETWORK MEDIUM NVD