NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-62370 KubeEdge is an open source system for extending native containerized application orchestration capabilities to hosts at Edge. From 1.0.0 until 1.21.2,... 2026-09-21 6.5 NETWORK MEDIUM NVD
CVE-2026-61674 Fluent Bit is a fast and lightweight logs, metrics, and traces processor for Linux, BSD, macOS, and Windows. From 0.11.0 until 5.0.8, plugins/out_forw... 2026-09-21 9.2 NETWORK CRITICAL NVD
CVE-2026-17051 The Intel SEDI IPM (inter-processor mailbox) driver in drivers/ipm/ipm_sedi.c handles an inbound message interrupt in ipm_event_dispose(). It read the... 2026-09-21 6.0 LOCAL MEDIUM NVD
CVE-2026-17050 The experimental USB host stack allocates a per-device configuration-descriptor buffer, udev->cfg_desc, from the dedicated usb_device_heap in usbh_dev... 2026-09-21 5.7 PHYSICAL MEDIUM NVD
CVE-2026-55563 Feast is the open source feature store for AI and machine learning. Prior to 0.65.0, .github/workflows/pr_integration_tests.yml uses pull_request_targ... 2026-09-21 8.9 NETWORK HIGH NVD
CVE-2026-53940 Conda is a system-level binary package and environment manager that runs on major operating systems and platforms. Prior to 26.5.2, parse_entry_point_... 2026-09-21 8.8 NETWORK HIGH NVD
CVE-2026-94301 The fix for CVE-2026-47065/ZDRES-232 ("resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy"), released on 2026... 2026-09-21 9.8 NETWORK CRITICAL NVD
CVE-2026-94184 A stack-based buffer overflow flaw was found in fetchmail when built with NTLM support. A malicious or compromised mail server advertising NTLM authen... 2026-09-21 8.1 NETWORK HIGH NVD
CVE-2026-86473 Apache Airflow: the Core API logout endpoint revokes only a session token presented as the _token cookie. When a client logs out presenting its creden... 2026-09-21 9.1 NETWORK CRITICAL NVD
CVE-2026-82355 When a request to the Airflow core API carries both a session cookie and an explicit `Authorization: Bearer` token, Airflow resolves the caller from t... 2026-09-21 4.2 NETWORK MEDIUM NVD
CVE-2026-80110 A flaw was found in pki-core. The v2 REST ACL filter selects a tie-breaking permission for colliding literal and wildcard ACL keys using lexicographic... 2026-09-21 8.1 NETWORK HIGH NVD
CVE-2026-75939 A flaw was found in openshift/oc-mirror. The tool incorrectly verifies PGP (Pretty Good Privacy) release image signatures by checking for signature er... 2026-09-21 7.4 NETWORK HIGH NVD
CVE-2026-75158 Apache Airflow's `/assets/events` API returned asset events for every Dag in the deployment, with no filter restricting them to the Dags the caller is... 2026-09-21 4.3 NETWORK MEDIUM NVD
CVE-2026-71543 OpenBao is an open source identity-based secrets management system. Prior to 2.6.0, templated ACL, PKI, and SSH policies could substitute attacker-con... 2026-09-21 7.5 NETWORK HIGH NVD
CVE-2026-68919 GoCD is a continuous deliver server. From 13.3.0 until 26.1.0, GoCD does not correctly encode and escape malicious material modification comments that... 2026-09-21 7.0 NETWORK HIGH NVD