NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-7867 A flaw was found in udisks2. A local attacker with an active console session can exploit insufficient authorization checking on the 'as-user' option i... 2026-08-06 7.8 LOCAL HIGH NVD
CVE-2026-7406 A maliciously crafted BMP file, when parsed through certain Autodesk products, can force a Untrusted Pointer Dereference vulnerability. A malicious ac... 2026-08-06 7.8 LOCAL HIGH NVD
CVE-2026-7405 A maliciously crafted TIF file, when parsed through certain Autodesk products during image import, can cause an Out-of-Bounds Read in the image handli... 2026-08-06 5.5 LOCAL MEDIUM NVD
CVE-2026-71555 PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. From 2.1.0 until 4.14.1, PILOS does not send a Cross-Origin-Ope... 2026-08-06 4.1 NETWORK MEDIUM NVD
CVE-2026-71554 h2 is a pure-Python implementation of a HTTP/2 protocol stack. Versions up to and including 4.4.0 accept request header blocks containing more than on... 2026-08-06 5.3 NETWORK MEDIUM NVD
CVE-2026-71498 node-re2 provides RE2 regular expression bindings for Node.js. Prior to version 1.26.1, passing a Buffer whose final bytes form a truncated (incomplet... 2026-08-06 5.1 LOCAL MEDIUM NVD
CVE-2026-71497 jsoup is a Java library for working with real-world HTML. From 1.14.3 until 1.23.1, jsoup's HTML parser could incorrectly handle a malformed tag name ... 2026-08-06 4.7 NETWORK MEDIUM NVD
CVE-2026-71488 league/commonmark is a PHP library for parsing and rendering CommonMark Markdown. From 0.6.0 until 2.9.0, specially crafted Markdown lines can cause t... 2026-08-06 7.5 NETWORK HIGH NVD
CVE-2026-71478 league/commonmark is a PHP library for parsing and rendering CommonMark Markdown. From 1.5.0 until 2.9.0, the AttributesExtension's href and src unsaf... 2026-08-06 6.1 NETWORK MEDIUM NVD
CVE-2026-71476 Nx is a monorepo solution for TypeScript and polyglot codebases. From version 20.8.0 until 22.7.7 and 23.0.2, the Nx self-hosted HTTP remote cache ext... 2026-08-06 8.7 NETWORK HIGH NVD
CVE-2026-71447 AIL Project contains a stored cross-site scripting vulnerability in the translation controls displayed for chat messages and forum posts. The affecte... 2026-08-06 6.9 NETWORK MEDIUM NVD
CVE-2026-71446 AIL Framework contains a stored cross-site scripting vulnerability in the crawler domain view. Crawled URLs were embedded directly into the JavaScript... 2026-08-06 6.9 NETWORK MEDIUM NVD
CVE-2026-71445 AIL Framework contained a reflected cross-site scripting vulnerability in the /tag/add_tags endpoint. When an error occurred while processing a tag op... 2026-08-06 8.2 NETWORK HIGH NVD
CVE-2026-71439 Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. From version 11.6.0 until 11.16.1, Mermaid Rad... 2026-08-06 5.3 NETWORK MEDIUM NVD
CVE-2026-71438 Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. Prior to 10.9.8 and 11.16.1, Mermaid's configu... 2026-08-06 2.4 LOCAL LOW NVD