Total
398551 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-4879 | 1 Gitlab | 1 Gitlab | 2026-08-19 | N/A | 4.3 MEDIUM |
| GitLab has remediated an issue in GitLab EE affecting all versions from 16.0 before 19.0.6, 19.1 before 19.1.4, and 19.2 before 19.2.2 that under certain conditions could have allowed an authenticated user with developer-role permissions to view external status check configuration restricted to higher-privileged roles due to missing authorization on a merge request API endpoint. | |||||
| CVE-2026-6821 | 1 Gitlab | 1 Gitlab | 2026-08-19 | N/A | 4.3 MEDIUM |
| GitLab has remediated an issue in GitLab EE affecting all versions from 12.0 before 19.0.6, 19.1 before 19.1.4, and 19.2 before 19.2.2 that under certain conditions could have allowed an authenticated user to bypass IP-based access restrictions and read limited merge request information from a private project due to missing authorization checks in a merge requests API endpoint. | |||||
| CVE-2026-17075 | 1 Ibm | 1 I | 2026-08-19 | N/A | 6.5 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to obtain sensitive information and perform unauthorized operations due to improper validation of authentication tokens. | |||||
| CVE-2026-17077 | 1 Ibm | 1 I | 2026-08-19 | N/A | 5.3 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to the use of an uninitialized variable. | |||||
| CVE-2026-17078 | 1 Ibm | 1 I | 2026-08-19 | N/A | 5.3 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to resource exhaustion. | |||||
| CVE-2026-17088 | 1 Ibm | 1 I | 2026-08-19 | N/A | 4.3 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to a path traversal vulnerability. | |||||
| CVE-2026-17099 | 1 Ibm | 1 I | 2026-08-19 | N/A | 7.3 HIGH |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to obtain sensitive information due to improper authentication. | |||||
| CVE-2026-17101 | 1 Ibm | 1 I | 2026-08-19 | N/A | 8.3 HIGH |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code or obtain sensitive information due to improper authentication. | |||||
| CVE-2026-17212 | 1 Ibm | 1 I | 2026-08-19 | N/A | 5.3 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to an out-of-bounds read. | |||||
| CVE-2026-17216 | 1 Ibm | 1 I | 2026-08-19 | N/A | 5.3 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to an integer error when processing DRDA large-object headers. | |||||
| CVE-2026-17226 | 1 Ibm | 1 I | 2026-08-19 | N/A | 5.4 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information or cause a denial of service due to an out-of-bounds read. | |||||
| CVE-2026-17272 | 1 Ibm | 1 I | 2026-08-19 | N/A | 8.2 HIGH |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to a buffer overflow. | |||||
| CVE-2026-17438 | 1 Ibm | 1 I | 2026-08-19 | N/A | 4.4 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to obtain sensitive information or modify data due to improper privilege management. | |||||
| CVE-2026-74964 | 1 Mozilla | 2 Firefox, Thunderbird | 2026-08-19 | N/A | 9.8 CRITICAL |
| Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |||||
| CVE-2026-74962 | 1 Mozilla | 2 Firefox, Thunderbird | 2026-08-19 | N/A | 8.1 HIGH |
| Site isolation issue in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |||||
| CVE-2026-18249 | 1 Ibm | 1 I | 2026-08-19 | N/A | 8.4 HIGH |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to gain elevated privileges due to improper validation of pointers read from Java-controlled addresses. | |||||
| CVE-2026-18193 | 1 Ibm | 1 I | 2026-08-19 | N/A | 8.9 HIGH |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to bypass security restrictions due to improper validation of user-controlled addresses. | |||||
| CVE-2026-17476 | 1 Ibm | 1 I | 2026-08-19 | N/A | 4.8 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to an improper buffer write. | |||||
| CVE-2026-18101 | 1 Ibm | 1 I | 2026-08-19 | N/A | 8.8 HIGH |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to gain elevated privileges due to improper management of thread authority swaps. | |||||
| CVE-2026-18086 | 1 Ibm | 1 I | 2026-08-19 | N/A | 4.5 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to execute arbitrary code or cause a denial of service due to improper bounds checking. | |||||
