CVE Feed

    Dashboard / CVE

    8.2
    High

    CVE-2026-27826

    Last Modified: 16 Apr 2026

    MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to version 0.17.0, an unauthenticated attacker who can reach the mcp-atlassian HTTP endpoint can force the server process to make outbound HTTP requests to an arbitrary attacker-controlled URL by supplying two custom HTTP headers without an `Authorization` header. No authentication is required. The vulnerability exists in the HTTP middleware and dependency injection layer — not in any MCP tool handler - making it invisible to tool-level code analysis. In cloud deployments, this could enable theft of IAM role credentials via the instance metadata endpoint (`169[.]254[.]169[.]254`). In any HTTP deployment it enables internal network reconnaissance and injection of attacker-controlled content into LLM tool results. Version 0.17.0 fixes the issue.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-27274

    Last Modified: 16 Apr 2026

    Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-27277

    Last Modified: 16 Apr 2026

    Substance3D - Stager versions 3.1.7 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-27273

    Last Modified: 16 Apr 2026

    Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-27275

    Last Modified: 16 Apr 2026

    Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-27276

    Last Modified: 16 Apr 2026

    Substance3D - Stager versions 3.1.7 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-27279

    Last Modified: 16 Apr 2026

    Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 10 Mar 2026
    9.8
    Critical

    CVE-2026-28292

    Last Modified: 15 Apr 2026

    `simple-git`, an interface for running git commands in any node.js application, has an issue in versions 3.15.0 through 3.32.2 that allows an attacker to bypass two prior CVE fixes (CVE-2022-25860 and CVE-2022-25912) and achieve full remote code execution on the host machine. Version 3.23.0 contains an updated fix for the vulnerability.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-27269

    Last Modified: 16 Apr 2026

    Premiere Pro versions 25.5 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 10 Mar 2026
    5.5
    Medium

    CVE-2026-27281

    Last Modified: 17 Apr 2026

    DNG SDK versions 1.7.1 2471 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to cause the application to crash or become unresponsive. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-27280

    Last Modified: 16 Apr 2026

    DNG SDK versions 1.7.1 2471 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 10 Mar 2026
    5.5
    Medium

    CVE-2026-30980

    Last Modified: 16 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack overflow in CIccBasicStructFactory::CreateStruct() causing uncontrolled recursion/stack exhaustion and crash. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    6.1
    Medium

    CVE-2026-31797

    Last Modified: 16 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap out-of-bounds read in CTiffImg::ReadLine() when iccApplyProfiles processes a crafted TIFF image, causing memory disclosure or crash. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-31796

    Last Modified: 17 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-based buffer overflow in icCurvesFromXml() causing heap memory corruption or crash. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-31795

    Last Modified: 16 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack buffer overflow write in CIccXform3DLut::Apply() corrupting stack memory or crash. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    5.5
    Medium

    CVE-2026-31794

    Last Modified: 16 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a segmentation fault from invalid/wild pointer read in CIccCLUT::Interp3d() causing a denial of service. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    5.5
    Medium

    CVE-2026-31793

    Last Modified: 16 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a segmentation fault due to invalid/wild pointer read in CIccCalculatorFunc::ApplySequence() causing denial of service. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-31792

    Last Modified: 16 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a null pointer dereference in CIccTagXmlStruct::ParseTag() causing a segmentation fault or denial of service. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-30987

    Last Modified: 17 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack buffer overflow in CIccTagNum<>::GetValues() causing stack memory corruption or crash. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    5.5
    Medium

    CVE-2026-30986

    Last Modified: 16 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-based buffer overflow write in CIccMatrixMath::SetRange() causing memory corruption or crash. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-30985

    Last Modified: 17 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-based buffer overflow write in CIccMatrixMath::SetRange() causing memory corruption or crash. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    6.1
    Medium

    CVE-2026-30984

    Last Modified: 16 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap out-of-bounds read in CIccCalculatorFunc::ApplySequence() causing an application crash. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-30983

    Last Modified: 17 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a stack buffer overflow in icFixXml() (strcpy) causing stack memory corruption or crash. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    6.1
    Medium

    CVE-2026-30982

    Last Modified: 16 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap out-of-bounds read in CIccPcsXform::pushXYZConvert() causing crash and potentially leaking memory contents. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    6.1
    Medium

    CVE-2026-30981

    Last Modified: 16 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-buffer-overflow read in CIccXmlArrayType<>::DumpArray() causing out-of-bounds read and/or crash. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-30979

    Last Modified: 16 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-based buffer overflow in CIccCalculatorFunc::InitSelectOp() triggered with local user interaction causing memory corruption/crash. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    5.3
    Medium

    CVE-2026-3306

    Last Modified: 16 Apr 2026

    An improper authorization vulnerability was identified in GitHub Enterprise Server that allowed a user with read access to a repository and write access to a project to modify issue and pull request metadata through the project. When adding an item to a project that already existed, column value updates were applied without verifying the actor's repository write permissions. This vulnerability was reported via the GitHub Bug Bounty program and has been fixed in GitHub Enterprise Server versions 3.14.24, 3.15.19, 3.16.15, 3.17.12, 3.18.6 and 3.19.3.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-30978

    Last Modified: 16 Apr 2026

    iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap-use-after-free in CIccCmm::AddXform() causing invalid vptr dereference and crash. This vulnerability is fixed in 2.3.1.5.

    Published: 10 Mar 2026
    2
    Low

    CVE-2026-30977

    Last Modified: 16 Apr 2026

    RenderBlocking is a MediaWiki extension that allows interface administrators to specify render-blocking CSS and JavaScript. Prior to 0.1.1, there is Stored XSS in renderblocking-css with Inline Assets mode. $wgRenderBlockingInlineAssets = true and editsitecss user rights are required. This vulnerability is fixed in 0.1.1.

    Published: 10 Mar 2026
    8.7
    High

    CVE-2026-3854

    Last Modified: 18 Apr 2026

    An improper neutralization of special elements vulnerability was identified in GitHub Enterprise Server that allowed an attacker with push access to a repository to achieve remote code execution on the instance. During a git push operation, user-supplied push option values were not properly sanitized before being included in internal service headers. Because the internal header format used a delimiter character that could also appear in user input, an attacker could inject additional metadata fields through crafted push option values. This vulnerability was reported via the GitHub Bug Bounty program and has been fixed in GitHub Enterprise Server versions 3.14.25, 3.15.20, 3.16.16, 3.17.13, 3.18.7 and 3.19.4.

    Published: 10 Mar 2026
    4.6
    Medium

    CVE-2026-30974

    Last Modified: 16 Apr 2026

    Copyparty is a portable file server. Prior to v1.20.11., the nohtml config option, intended to prevent execution of JavaScript in user-uploaded HTML files, did not apply to SVG images. A user with write-permission could upload an SVG containing embedded JavaScript, which would execute in the context of whichever user opens it. This has been fixed in v1.20.11.

    Published: 10 Mar 2026
    6.5
    Medium

    CVE-2026-30973

    Last Modified: 7 May 2026

    Appium is an automation framework that provides WebDriver-based automation possibilities for a wide range platforms. Prior to 7.0.6, @appium/support contains a ZIP extraction implementation (extractAllTo() via ZipExtractor.extract()) with a path traversal (Zip Slip) check that is non-functional. The check at line 88 of packages/support/lib/zip.js creates an Error object but never throws it, allowing malicious ZIP entries with ../ path components to write files outside the intended destination directory. This affects all JS-based extractions (the default code path), not only those using the fileNamesEncoding option. This vulnerability is fixed in 7.0.6.

    Published: 10 Mar 2026
    8.8
    High

    CVE-2026-30970

    Last Modified: 16 Apr 2026

    Coral Server is open collaboration infrastructure that enables communication, coordination, trust and payments for The Internet of Agents. Prior to 1.1.0, Coral Server allowed the creation of agent sessions through the /api/v1/sessions endpoint without strong authentication. This endpoint performs resource-intensive initialization operations including container spawning and memory context creation. An attacker capable of accessing the endpoint could create sessions or consume system resources without proper authorization. This vulnerability is fixed in 1.1.0.

    Published: 10 Mar 2026
    7.6
    High

    CVE-2026-30969

    Last Modified: 16 Apr 2026

    Coral Server is open collaboration infrastructure that enables communication, coordination, trust and payments for The Internet of Agents. Prior to 1.1.0, Coral Server did not enforce strong authentication between agents and the server within an active session. This could allow an attacker who obtained or predicted a session identifier to impersonate an agent or join an existing session. This vulnerability is fixed in 1.1.0.

    Published: 10 Mar 2026
    8.6
    High

    CVE-2026-30968

    Last Modified: 16 Apr 2026

    Coral Server is open collaboration infrastructure that enables communication, coordination, trust and payments for The Internet of Agents. Prior to 1.1.0, the SSE endpoint (/sse/v1/...) in Coral Server did not strongly validate that a connecting agent was a legitimate participant in the session. This could theoretically allow unauthorized message injection or observation. This vulnerability is fixed in 1.1.0.

    Published: 10 Mar 2026
    7.2
    High

    CVE-2026-2273

    Last Modified: 17 Apr 2026

    CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exist that could cause execution of untrusted commands on the engineering workstation which could result in a limited compromise of the workstation and a potential loss of Confidentiality, Integrity and Availability of the subsequent system when an authenticated user opens a malicious project file.

    Published: 10 Mar 2026
    5.4
    Medium

    CVE-2026-30964

    Last Modified: 7 May 2026

    web-auth/webauthn-lib is an open source set of PHP libraries and a Symfony bundle to allow developers to integrate that authentication mechanism into their web applications. Prior to 5.2.4, when allowed_origins is configured, CheckAllowedOrigins reduces URL-like values to their host component and accepts on host match alone. This makes exact origin policies impossible to express: scheme and port differences are silently ignored. This vulnerability is fixed in 5.2.4.

    Published: 10 Mar 2026
    9.4
    Critical

    CVE-2026-30960

    Last Modified: 16 Apr 2026

    rssn is a scientific computing library for Rust, combining a high-performance symbolic computation engine with numerical methods support and physics simulations functionalities. The vulnerability exists in the JIT (Just-In-Time) compilation engine, which is fully exposed via the CFFI (Foreign Function Interface). Due to Improper Input Validation and External Control of Code Generation, an attacker can supply malicious parameters or instruction sequences through the CFFI layer. Since the library often operates with elevated privileges or within high-performance computing contexts, this allows for Arbitrary Code Execution (ACE) at the privilege level of the host process.

    Published: 10 Mar 2026
    7
    High

    CVE-2026-1286

    Last Modified: 17 Apr 2026

    CWE-502: Deserialization of untrusted data vulnerability exists that could lead to loss of confidentiality, integrity and potential remote code execution on workstation when an admin authenticated user opens a malicious project file.

    Published: 10 Mar 2026
    5.3
    Medium

    CVE-2026-30959

    Last Modified: 16 Apr 2026

    OneUptime is a solution for monitoring and managing online services. The resend-verification-code endpoint allows any authenticated user to trigger a verification code resend for any UserWhatsApp record by ID. Ownership is not validated (unlike the verify endpoint). This affects the UserWhatsAppAPI.ts endpoint and the UserWhatsAppService.ts service.

    Published: 10 Mar 2026
    5.1
    Medium

    CVE-2025-13902

    Last Modified: 11 Mar 2026

    CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could cause condition where authenticated attackers can have a victim’s browser run arbitrary JavaScript when the victim hovers over a maliciously crafted element on a web server containing the injected payload.

    Published: 10 Mar 2026
    7.5
    High

    CVE-2026-26144

    Last Modified: 14 Apr 2026

    Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-26141

    Last Modified: 14 Apr 2026

    Improper authentication in Azure Arc allows an authorized attacker to elevate privileges locally.

    Published: 10 Mar 2026
    7.5
    High

    CVE-2026-26130

    Last Modified: 21 Apr 2026

    Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.

    Published: 10 Mar 2026
    8.8
    High

    CVE-2026-26118

    Last Modified: 14 Apr 2026

    Server-side request forgery (ssrf) in Azure MCP Server allows an authorized attacker to elevate privileges over a network.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-26117

    Last Modified: 14 Apr 2026

    Authentication bypass using an alternate path or channel in Azure Windows Virtual Machine Agent allows an authorized attacker to elevate privileges locally.

    Published: 10 Mar 2026
    8.4
    High

    CVE-2026-26110

    Last Modified: 22 May 2026

    Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

    Published: 10 Mar 2026
    8.4
    High

    CVE-2026-26109

    Last Modified: 14 Apr 2026

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-26108

    Last Modified: 14 Apr 2026

    Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

    Published: 10 Mar 2026
    7.8
    High

    CVE-2026-26107

    Last Modified: 14 Apr 2026

    Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

    Published: 10 Mar 2026