Total
398710 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-64607 | 1 Apache | 1 Httpclient | 2026-08-13 | N/A | 5.3 MEDIUM |
| HttpClient based on the classic i/o model fails to correctly release the underlying connection back to the connection manager if it encounters an invalid or unsupported `Content-Encoding` header value in the response message. Please note this defect does not affect HttpClient based on the async i/o model. This issue affects Apache HttpComponents Client: from 5.0-alpha1 through 5.6.2. | |||||
| CVE-2026-62798 | 1 Microsoft | 5 Windows 11 23h2, Windows 11 24h2, Windows 11 25h2 and 2 more | 2026-08-13 | N/A | 5.5 MEDIUM |
| Untrusted pointer dereference in Windows Win32K allows an authorized attacker to disclose information locally. | |||||
| CVE-2026-65776 | 1 Microsoft | 4 Windows 11 24h2, Windows 11 25h2, Windows 11 26h1 and 1 more | 2026-08-13 | N/A | 7.0 HIGH |
| Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-65785 | 1 Microsoft | 4 Windows 11 24h2, Windows 11 25h2, Windows 11 26h1 and 1 more | 2026-08-13 | N/A | 6.5 MEDIUM |
| Uncontrolled resource consumption in Windows DHCP Client allows an unauthorized attacker to deny service over an adjacent network. | |||||
| CVE-2026-47299 | 1 Microsoft | 1 Azure Monitor Agent | 2026-08-13 | N/A | 7.2 HIGH |
| Improper neutralization of special elements used in a command ('command injection') in Azure Monitor Agent allows an authorized attacker to elevate privileges over a network. | |||||
| CVE-2026-62736 | 1 Microsoft | 5 Windows 11 23h2, Windows 11 24h2, Windows 11 25h2 and 2 more | 2026-08-13 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-62737 | 1 Microsoft | 4 Windows 11 24h2, Windows 11 25h2, Windows 11 26h1 and 1 more | 2026-08-13 | N/A | 7.8 HIGH |
| Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-16860 | 1 Ibm | 1 I | 2026-08-13 | N/A | 9.9 CRITICAL |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code due to an uncontrolled search path element. | |||||
| CVE-2026-16863 | 1 Ibm | 1 I | 2026-08-13 | N/A | 7.7 HIGH |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to an out-of-bounds read. | |||||
| CVE-2026-16904 | 1 Ibm | 1 I | 2026-08-13 | N/A | 8.1 HIGH |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary commands due to improper privilege management during monitor owner reassignment. | |||||
| CVE-2026-16906 | 1 Ibm | 1 I | 2026-08-13 | N/A | 8.8 HIGH |
| IBM i 7.6, and 7.5 could allow a remote authenticated attacker to execute arbitrary commands with elevated privileges due to improper neutralization of special elements used in an OS command. | |||||
| CVE-2026-16931 | 1 Ibm | 1 I | 2026-08-13 | N/A | 7.5 HIGH |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to improper handling of zero-length TCP options. | |||||
| CVE-2026-16956 | 1 Ibm | 1 Db2 Mirror For I | 2026-08-13 | N/A | 9.8 CRITICAL |
| IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command. | |||||
| CVE-2026-17109 | 1 Ibm | 1 I | 2026-08-13 | N/A | 4.3 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to add unexpected parameters to a command due to parameter injection. | |||||
| CVE-2026-17218 | 1 Ibm | 1 I | 2026-08-13 | N/A | 9.8 CRITICAL |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to an out-of-bounds write. | |||||
| CVE-2026-17222 | 1 Ibm | 1 I | 2026-08-13 | N/A | 4.3 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to modify data in certain SQL tables due to improper neutralization of special elements used in an SQL command. | |||||
| CVE-2026-17248 | 1 Ibm | 1 I | 2026-08-13 | N/A | 7.1 HIGH |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to improper neutralization of special elements in an OS command. | |||||
| CVE-2026-17268 | 1 Ibm | 1 I | 2026-08-13 | N/A | 6.8 MEDIUM |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to improper validation of a session token. | |||||
| CVE-2026-17276 | 1 Ibm | 1 I | 2026-08-13 | N/A | 9.6 CRITICAL |
| IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to escalate privileges due to improper authorization in the handling of high-authority threads. | |||||
| CVE-2026-18713 | 1 Ibm | 1 I | 2026-08-13 | N/A | 8.8 HIGH |
| IBM i 7.6, 7.5, 7.4, and 7.3 s vulnerable to privilege escalation via Navigator for i. An authenticated user could elevate privileges to a root user to execute commands. | |||||
