Security Risk Severity

Critical Security Risks — Page 2

Published vulnerability pages grouped by critical severity. Use this page to review risks that need similar prioritization.

288 published critical risks

Critical severity

Showing 37–72 of 288 published risks.

Clear
critical

CVE-2026-35198 heyform vulnerability

HeyForm is an open-source form builder. Prior to version 3.0.0-rc.7, a stored cross-site scripting (XSS) vulnerability in the form builder allows a low-privileged team member to inject malicious JavaScript that executes when a team owner views the form, leading to complete account takeover through privilege escalation. Version 3.0.0-rc.7 contains a patch for the issue.

CVE-2026-35198xssprivilege-escalation

Updated Jul 21, 2026

critical

CVE-2026-46412 BeProduct @beproduct/nestjs-auth vulnerability

@beproduct/nestjs-auth is a NestJS authentication module for BeProduct IDS (Identity Server) with OpenID Connect support. Between 2026-05-11 20:19 UTC and 22:56 UTC, an attacker used a compromised npm publish token to publish 18 malicious versions of `@beproduct/nestjs-auth` (0.1.2 through 0.1.19). The postinstall payload attempted to harvest npm tokens (from `~/.npmrc`); GitHub personal access tokens, OAuth tokens (`gho_*`), and Actions OIDC tokens; AWS credentials (from environment variables and `~/.aws/credentials`); HashiCorp Vault tokens; and other secrets present in environment variables. Version `0.1.20` is a clean republish from the original `0.1.1` source tree. Anyone who installed any version in the range `>=0.1.2 <=0.1.19` should remove the package and clean the npm cache; install the clean version; rotate every credential present in the install environment, including all npm publish tokens, all GitHub PATs and OAuth tokens, AWS access keys, HashiCorp Vault tokens, and any other secret that was in env vars or config files at install time; scan affected hosts for indicators of compromise and, if any are found, treat the host as compromised and reimage; and check committed repository history for unexpected additions in `.claude/` or `.vscode/` directories. The worm is known to commit `setup.mjs` + hook configs to PR branches via automated agent runtimes.

CVE-2026-46412npm

Updated Jul 21, 2026

critical

CVE-2026-46428 lettre vulnerability

lettre is a a mailer library for Rust. Starting in version 0.10.1 and prior to version 0.11.22, an inverted-boolean bug in lettre's `boring-tls` integration silently disables TLS hostname verification for callers using the default (strict) configuration. An on-path attacker presenting any chain-valid certificate for any domain can intercept SMTP submission, including PLAIN/LOGIN credentials and message contents, against any lettre user built with the `boring-tls` feature. Other TLS backends (`native-tls`, `rustls`) are unaffected. Version 0.11.22 patches the issue.

CVE-2026-46428cryptography

Updated Jul 21, 2026

critical

CVE-2026-51027 leefish FileThingie vulnerability

An issue in FileThingie v.2.5.7 allows a remote attacker to obtain sensitive information via the ft2.php component.

CVE-2026-51027phpinformation-disclosure

Updated Jul 21, 2026

critical

CVE-2026-35048 Piwigo vulnerability

The Piwigo installer in versions 16.3.0 and earlier accepts POST parameters for database configuration and writes them directly into a PHP configuration file without proper sanitization. On PHP 8+, the `addslashes()` protection is bypassed because it checks for `get_magic_quotes_gpc()`, a function removed in PHP 8.0. This allows raw user input to be interpolated directly into PHP source code. An unauthenticated attacker can inject arbitrary PHP code through POST parameters (prefix, dbpasswd, dbhost, dbname, or dbuser), which gets written to `local/config/database.inc.php` and executed on every page load.

CVE-2026-35048phpinput-validation

Updated Jul 21, 2026

critical

CVE-2026-41252 xrdp vulnerability

xrdp is an open source RDP server. Versions 0.10.6 and prior contain a missing bounds check in xrdp, which allows a heap-based buffer overflow when operating in vnc-any mode. The issue occurs during the handling of RFB protocol color map messages from a VNC server, where incoming color indices are not properly validated. A malicious VNC server can exploit this flaw by sending crafted messages with out-of-range values, leading to an out-of-bounds write on the heap. This memory corruption can result in a denial of service (DoS) or potentially allow remote code execution (RCE) prior to authentication. This issue has been fixed in version 0.10.6.1.

CVE-2026-41252remote-code-executiondenial-of-servicememory-corruption

Updated Jul 21, 2026

critical

CVE-2026-54051 Network-AI vulnerability

Network-AI is a TypeScript/Node.js multi-agent orchestrator. Prior to version 5.9.1, the agent sandbox gates shell commands behind an allowlist (`SandboxPolicy.isCommandAllowed`), which THREAT_MODEL.md calls the main control against a compromised agent (Adversary 3.2). The allowlist glob-matches the whole command string, but `ShellExecutor` runs that string through `/bin/sh -c`. So any wildcard allow such as `git *`, `npm *` or `node *` also matches `git status; <anything>`, and a scoped command becomes arbitrary execution. The issue is fixed in v5.9.1. `ShellExecutor` now executes via `spawn(file, args, { shell: false })` using a quote-aware parsed argv, so no shell is invoked. `SandboxPolicy.isCommandAllowed` and the new `SandboxPolicy.tokenizeCommand` reject any unquoted shell metacharacter (`; & | $ ` ` ` ( ) < > { }` newline) or unterminated quote before the allowlist glob match; quoted metacharacters are preserved as literal argument data. Users should upgrade to `network-ai@5.9.1` or later. As defense in depth, avoid broad wildcard allowlist entries such as `node *` / `npm *` which are direct code execution by design.

CVE-2026-54051node-jsnpmremote-code-execution

Updated Jul 21, 2026

critical

CVE-2026-39878 chamilo-lms vulnerability

Chamilo LMS versions 1.11.38 and earlier contain a stored cross-site scripting vulnerability in the user registration form that allows any unauthenticated attacker to execute arbitrary JavaScript in an administrator's browser session, leading to full platform admin account takeover. This has been patched in 1.11.40.

CVE-2026-39878browserxss

Updated Jul 21, 2026

critical

CVE-2026-60032 JMedia extension for Joomla vulnerability

The Joomla extension JMedia is vulnerable to an authenticated arbitrary file upload, leading to RCE. Executable uploads/writes possible (incl. polyglot filenames); chmod didn't strip execute bits.

CVE-2026-60032joomlaremote-code-executionfile-uploadfile-write

Updated Jul 21, 2026

critical

CVE-2026-61424 DJ-Classifieds extension for Joomla vulnerability

The Joomla extension DJ-Classifieds is vulnerable to an unauthenticated file upload, leading to full RCE.

CVE-2026-61424joomlaremote-code-executionfile-upload

Updated Jul 21, 2026

critical

CVE-2026-60034 JMedia extension for Joomla vulnerability

The Joomla extension JMedia is vulnerable to a stored XSS vulnerability. Unsanitised SVG uploads served without nosniff, leading to stored/reflected XSS.

CVE-2026-60034joomlaxss

Updated Jul 21, 2026

critical

CVE-2026-61425 Gridbox extension for Joomla vulnerability

The Joomla extension Gridbox is vulnerable an authenticated bypass, potentially leading to full admin access.

CVE-2026-61425joomlaauthentication-bypass

Updated Jul 21, 2026

critical

CVE-2026-61900 jDownloads extension for Joomla vulnerability

The Joomla extension JDownloads is vulnerable to an unauthenticated file upload, leading to full RCE.

CVE-2026-61900joomlaremote-code-executionfile-upload

Updated Jul 21, 2026

critical

CVE-2026-16337 dotCMS vulnerability

Improper authorization in the ToolGroupResource and RoleAjax REST/DWR endpoints in dotCMS dotCMS 21.02 through 26.06.22-03 on all platforms allows a low-privileged authenticated backend user to self-assign the administrative layout and self-grant the CMS Administrator role, then achieve remote code execution via a crafted OSGi bundle upload whose BundleActivator executes arbitrary shell commands.

CVE-2026-16337remote-code-executionprivilege-escalation

Updated Jul 21, 2026

critical

CVE-2026-44231 rt vulnerability

RT is an open source, enterprise-grade issue and ticket tracking system. Versions prior to 5.0.10, 6.0.0 and above, prior to 6.0.3 contain an information disclosure and privilege escalation vulnerability in the REST 2.0 API. A privileged (non-administrative) user can obtain authentication credentials belonging to other users — including users with administrative privileges — and use those credentials to read data as those users via RT's feed endpoints. The same request that exposes the credentials also rotates them, invalidating previously-distributed feed URLs across the instance. This issue has been fixed in versions 5.0.10 and 6.0.3.

CVE-2026-44231api-securityauthorization-bypassinformation-disclosureprivilege-escalation

Updated Jul 21, 2026

critical

CVE-2026-63766 GPT-SoVITS vulnerability

GPT-SoVITS through 20250606v2pro contains an OS command injection vulnerability in webui.py where ASR, slice, denoise, and uvr5 functions interpolate unsanitized Gradio textbox values directly into shell commands executed with shell=True. Attackers can inject shell metacharacters through path parameters to execute arbitrary OS commands as the server process user without authentication.

CVE-2026-63766remote-code-execution

Updated Jul 21, 2026

critical

CVE-2026-63767 ktransformers vulnerability

ktransformers through 0.6.3, fixed in commit def0f93, contains an unauthenticated pickle deserialization vulnerability that allows remote attackers to execute arbitrary commands by sending crafted pickle payloads to the SchedulerServer ZMQ ROUTER socket bound to all interfaces. Attackers can exploit malicious __reduce__ methods embedded in crafted pickle payloads to execute arbitrary shell commands as the server process.

CVE-2026-63767network-securityunsafe-deserialization

Updated Jul 21, 2026

critical

CVE-2026-13380 Clinic vulnerability

VSee Clinic 7.1.26 and VSee Clinic API 1.3.0 exposes cleartext SFTP credentials in the HTTP responses of three unauthenticated endpoints. The credentials are present in these responses only when SFTP connections have been configured within the application. No authentication is required to retrieve these credentials. An unauthenticated remote attacker who observes any of these HTTP responses on an instance where SFTP is configured can obtain the credentials and use them to access the associated SFTP server.

CVE-2026-13380network-securityapi-security

Updated Jul 21, 2026

critical

CVE-2026-53595 freescout vulnerability

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the public endpoint `POST /user-setup/{hash}/{invite_sent_at}` (`OpenController@userSetupSave`) selects the target account solely by its `invite_hash` column, then overwrites that account's email and password and logs in as it. No authentication, cookie, or prior session is required. After a user activates, FreeScout sets `invite_hash` to the empty string. On MySQL and MariaDB, `VARCHAR` equality ignores trailing spaces, so a single URL-encoded space (`%20`) matches the stored empty string and selects the lowest-id activated user. The expiry guard decrypts `invite_sent_at` with the target's password hash, but `Helper::decrypt` returns its raw input unchanged when decryption fails. A plaintext numeric value such as `9999999999` therefore passes the time-to-live check without any secret. The result is that an anonymous attacker sets the email and password of the lowest-id activated FreeScout account (a support agent, or an administrator if one was added by invitation) and authenticates as that account. Version 1.8.224 contains a fix.

CVE-2026-53595phpinput-validationauthentication-bypass

Updated Jul 21, 2026

critical

CVE-2026-64625 AVideo vulnerability

AVideo before 29.0 contains an incomplete fix for CVE-2026-45578 where execAsync() re-wraps escaped commands in double-quoted sh -c, allowing command substitution via $() and backticks. Attackers can inject arbitrary OS commands through the Live plugin on_publish.php endpoint despite escapeshellarg() protection.

CVE-2026-64625phpremote-code-execution

Updated Jul 21, 2026

criticalEPSS 0.010

CVE-2026-57092 windows 10 1607 vulnerability

Use after free in Windows VMSwitch allows an authorized attacker to elevate privileges over a network.

CVE-2026-57092windowsmemory-corruption

Updated Jul 19, 2026

criticalEPSS 0.004

CVE-2026-48259 experience manager vulnerability

Adobe Experience Manager is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could leverage this vulnerability to issue unauthorized server-side requests, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue does not require user interaction. Scope is changed.

CVE-2026-48259remote-code-executionssrf

Updated Jul 19, 2026

criticalEPSS 0.005

CVE-2026-48359 experience manager vulnerability

Adobe Experience Manager is affected by an Improper Restriction of XML External Entity Reference ('XXE') vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could exploit this vulnerability to read sensitive files, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue does not require user interaction. Scope is changed.

CVE-2026-48359remote-code-executioninput-validation

Updated Jul 19, 2026

criticalEPSS 0.002

CVE-2026-49445 cilium vulnerability

Cilium is a networking, observability, and security solution. Prior to 1.17.14, 1.18.8, and 1.19.2, when Cilium L7 functionality is enabled, the embedded or standalone Envoy instance creates a world-accessible admin.sock on cluster nodes, allowing a local attacker to access Envoy admin endpoints, expose TLS secrets, disrupt cluster traffic, or terminate Envoy. This issue is fixed in versions 1.17.14, 1.18.8, and 1.19.2.

CVE-2026-49445privilege-escalationcryptography

Updated Jul 19, 2026

criticalEPSS 0.004

CVE-2026-54052 n8n-mcp vulnerability

n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. Prior to 2.56.1, in HTTP mode with multi-tenancy enabled through ENABLE_MULTI_TENANT=true, n8n-mcp's local workflow version history backups were not isolated per tenant, allowing an authenticated tenant to read workflow version snapshots belonging to other tenants and delete or destroy other tenants' stored backups, including full node definitions, credential references, and authorization headers. This issue is fixed in version 2.56.1.

CVE-2026-54052authorization-bypassidor

Updated Jul 19, 2026

criticalEPSS 0.089

WordPress Core 6.9 - 7.0.1 - Remote Code Execution via REST API Batch Request Route Confusion

WordPress Core is vulnerable to Remote Code Execution in all versions 6.9 to 7.0.1 via the REST API batch request endpoint (/wp-json/batch/v1). This is due to a route/validation desynchronization that allows a validated sub-request to be dispatched to an unintended callback, bypassing the allow_batch restriction, with attacker-controlled parameters and the target route's input sanitization bypassed, which can be chained with SQL Injection. This may make it possible for attackers to execute code on the server.

CVE-2026-63030wordpressapi-securityremote-code-executionsql-injection

Updated Jul 19, 2026

criticalEPSS 0.004

Bricksforge <= 3.1.8.6 - Unauthenticated Privilege Escalation via Pro Forms fieldIds Parameter

The Bricksforge plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.1.8.6. This is due to improper validation of the fieldIds parameter in the Pro Forms registration action, which allows attacker-supplied field IDs to be added to the trusted form-field whitelist. This makes it possible for unauthenticated attackers to register a new administrator account by submitting a crafted request to a publicly accessible Bricksforge Pro Forms registration form. Successful exploitation requires that the site has a public Bricksforge Pro Forms element configured with the User Registration action.

CVE-2026-14956wordpressprivilege-escalation

Updated Jul 19, 2026

criticalEPSS 0.009

CVE-2026-44632 yamcs vulnerability

Yamcs is a mission control framework. Prior to 5.12.7, a server-side code injection vulnerability existed in the Yamcs algorithm evaluation engine org.yamcs.algorithms.JavaExprAlgorithmExecutionFactory, which dynamically compiled and evaluated user-controlled algorithm text through the Janino compiler without enforcing a secure sandbox, so an authenticated user with the ChangeMissionDatabase privilege could override an existing algorithm's text via the mission database REST API and inject Java code (for example using java.lang.Runtime) to achieve remote code execution on the underlying host operating system. This issue is fixed in versions 5.12.7 and 5.13.0, which disable algorithm editing by default.

CVE-2026-44632javaapi-securityremote-code-execution

Updated Jul 18, 2026

criticalCISA KEVEPSS 0.361

Fortinet FortiSandbox OS Command Injection Vulnerability

Fortinet FortiSandbox, FortiSandbox Cloud, and FortiSandbox PaaS contain an OS command injection vulnerability that allows an unauthenticated attacker to execute unauthorized commands via specifically crafted HTTP requests.

CVE-2026-25089remote-code-execution

Updated Jul 18, 2026

criticalCISA KEVEPSS 0.842

Fortinet FortiSandbox OS Command Injection Vulnerability

Fortinet FortiSandbox contains an OS command injection vulnerability that could allow an unauthenticated attacker to execute unauthorized code or commands via crafted HTTP requests.

CVE-2026-39808remote-code-execution

Updated Jul 18, 2026

criticalEPSS 0.007

CVE-2026-42990 windows 10 1607 vulnerability

Heap-based buffer overflow in SQL Server ODBC driver allows an unauthorized attacker to execute code over a network.

CVE-2026-42990windowsmemory-corruption

Updated Jul 17, 2026

criticalEPSS 0.008

CVE-2026-48561 365 copilot vulnerability

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to execute code over a network.

CVE-2026-48561microsoftremote-code-execution

Updated Jul 17, 2026

criticalEPSS 0.022

CVE-2026-49798 windows 10 1607 vulnerability

Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.

CVE-2026-49798linuxwindowsmemory-corruption

Updated Jul 17, 2026

criticalEPSS 0.004

CVE-2026-48334 illustrator vulnerability

Illustrator is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

CVE-2026-48334remote-code-executioninput-validation

Updated Jul 17, 2026

criticalEPSS 0.003

CVE-2026-56400 open webui vulnerability

open-webui before 0.3.14 contains a cross-origin resource sharing misconfiguration allowing arbitrary origins with allow_origins=* and authenticated requests to the /api/v1/functions endpoint. Attackers can execute arbitrary code on the openwebui instance by crafting malicious cross-site requests from attacker-controlled websites when an admin user visits them.

CVE-2026-56400api-securityweb-applicationremote-code-execution

Updated Jul 17, 2026

criticalEPSS 0.007

CVE-2026-55040 in Microsoft SharePoint Server

Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network.

CVE-2026-55040microsoftweb-applicationauthentication-bypassauthorization-bypass

Updated Jul 16, 2026