NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-71850 Hono is a Web application framework that provides support for any JavaScript runtime. From 3.8.0 to 4.12.33, memo() from hono/jsx retains the result o... 2026-08-07 4.8 NETWORK MEDIUM NVD
CVE-2026-71849 Hono is a Web application framework that provides support for any JavaScript runtime. From 4.7.0 to 4.12.33, the Proxy Helper proxy() function in hono... 2026-08-07 3.7 NETWORK LOW NVD
CVE-2026-71848 Hono is a Web application framework that provides support for any JavaScript runtime. From 4.12.0 to 4.12.33, the languageDetector middleware is vulne... 2026-08-07 5.3 NETWORK MEDIUM NVD
CVE-2026-71847 Ruby JSON is a JSON implementation for Ruby. From 2.20.0 until 2.21.2, Ruby's JSON native C extension clears the consumed JSON::ResumableParser input ... 2026-08-07 8.7 NETWORK HIGH NVD
CVE-2026-70561 TestLink 1.9.20 and prior contains an insecure direct object reference vulnerability that allows any authenticated user, including low-privilege guest... 2026-08-07 6.5 NETWORK MEDIUM NVD
CVE-2026-69127 Kirby is an open-source content management system. Prior to 4.9.5 and from 5.0.0 through 5.5.1, the REST API error handler can return unsanitized PHP ... 2026-08-07 6.9 NETWORK MEDIUM NVD
CVE-2026-66000 Frappe is a full-stack web application framework. Prior to 16.23.0 and 15.112.0, Document Follow notification generation does not re-evaluate the reci... 2026-08-07 2.3 NETWORK LOW NVD
CVE-2026-48098 NexTor IP Changer is a command-line tool that leverages the Tor network to periodically rotate a user's IP address. Versions prior to 2.0.0 execute pr... 2026-08-07 7.3 LOCAL HIGH NVD
CVE-2026-48097 NexTor IP Changer is a command-line tool that leverages the Tor network to periodically rotate a user's IP address. Versions prior to 2.0.0 have a com... 2026-08-07 7.8 LOCAL HIGH NVD
CVE-2026-17435 File::Rotate::Simple versions before 0.4.0 for Perl create the target of dangling symlinks when rotating files. When the file to be rotated is a symb... 2026-08-07 2.5 LOCAL LOW NVD
CVE-2026-11430 Grav CMS's scheduler-webhook plugin contains an authentication bypass in the webhook token check. When the webhook feature is enabled but no webhookTo... 2026-08-07 7.3 NETWORK HIGH NVD
CVE-2025-71413 Malformed or out-of-sequence frames at the Aviation Very High Frequency Link Control X.25 layers cause repeated resets which may result in increased w... 2026-08-07 5.3 NETWORK MEDIUM NVD
CVE-2025-71412 Injection of false emergency or status messages over CPDLC may lead to misallocation of resources, operational confusion, and improper response action... 2026-08-07 7.1 NETWORK HIGH NVD
CVE-2025-71411 Broadcast control frames can disconnect multiple aircraft simultaneously leading to delayed clearances and air traffic controller overload. This type ... 2026-08-07 5.3 NETWORK MEDIUM NVD
CVE-2025-71410 Unnumbered Disconnect (U DISC) and malformed Aviation Very High Frequency Link Control frames can terminate sessions and lead to a loss of CPDLC funct... 2026-08-07 5.3 NETWORK MEDIUM NVD