Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

26401
Total
1955
Critical
7975
High
8228
Medium
CVE ID Severity Score Description Published
CVE-2026-2586 CRITICAL 9.1 An authenticated Remote Code Execution (RCE) vulnerability was identified in GlassFish's Administration Console. A user with access to the panel can send crafted requests that … May 19, 2026
CVE-2025-70950 HIGH 7.3 An issue in gohttp commit 34ea51 allows attackers to execute a directory traversal via supplying a crafted request. May 19, 2026
CVE-2025-51427 HIGH 7.3 An issue was discovered in ModelScope 1.25.0 allowing attackers to execute arbitrary code via crafted module listed in the configuration file (dey_mini.yaml) under the key … May 19, 2026
CVE-2026-8975 CRITICAL 9.8 Memory safety bugs present in Thunderbird 140.10 and Thunderbird 150. Some of these bugs showed evidence of memory corruption and we presume that with enough … May 19, 2026
CVE-2026-8974 CRITICAL 9.8 Memory safety bugs present in Thunderbird 140.10 and Thunderbird 150. Some of these bugs showed evidence of memory corruption and we presume that with enough … May 19, 2026
CVE-2026-8973 CRITICAL 9.8 Memory safety bugs present in Thunderbird 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of … May 19, 2026
CVE-2026-8972 MEDIUM 6.5 Privilege escalation in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. May 19, 2026
CVE-2026-8971 MEDIUM 6.5 Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. May 19, 2026
CVE-2026-8970 HIGH 7.3 Privilege escalation in the Security component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. May 19, 2026
CVE-2026-8969 HIGH 8.1 Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. May 19, 2026
CVE-2026-8968 HIGH 7.5 Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird … May 19, 2026
CVE-2026-8967 UNKNOWN Information disclosure in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. May 19, 2026
CVE-2026-8966 UNKNOWN Information disclosure in the IP Protection component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. May 19, 2026
CVE-2026-8965 UNKNOWN Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. May 19, 2026
CVE-2026-8964 HIGH 7.5 Spoofing issue in the Popup Blocker component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. May 19, 2026
CVE-2026-8963 HIGH 7.5 Spoofing issue in the Web Speech component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. May 19, 2026
CVE-2026-8962 UNKNOWN Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. May 19, 2026
CVE-2026-8961 UNKNOWN Spoofing issue in the Form Autofill component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. May 19, 2026
CVE-2026-8960 HIGH 7.5 Spoofing issue in WebExtensions. This vulnerability was fixed in Firefox 151 and Thunderbird 151. May 19, 2026
CVE-2026-8959 CRITICAL 9.6 Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and … May 19, 2026
CVE-2026-8958 HIGH 8.6 Information disclosure, sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. May 19, 2026
CVE-2026-8957 MEDIUM 6.5 Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. May 19, 2026
CVE-2026-8956 CRITICAL 9.8 Integer overflow in the Networking: JAR component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. May 19, 2026
CVE-2026-8955 MEDIUM 6.5 Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. May 19, 2026
CVE-2026-8954 HIGH 7.5 Incorrect boundary conditions, integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. May 19, 2026