02 Telemetry
FEED: ACQUIRING
03 Severity mix
WINDOW: T-30D
04 Latest published
FEED: ACQUIRING
01 Search consoleIDX: 382,181
The CVE corpus, on scope in milliseconds.
382,181 records · updated every 15 minutes
02 Telemetry
FEED: LIVETotal CVEs382,181
New today270
Known-exploited (KEV)1,674
Sync lag24 MIN
03 Severity mix
WINDOW: T-30D
CRITICAL 15%HIGH 45%MEDIUM 37%LOW 3%
04 Latest published
LAST 15 / 15-MIN SYNCCVE IDCVSSSeverityKEVSummaryVendor / ProductPublished
CVE-2026-755542.3Low—2.3LowExplicit organization scopes survive token refresh after membership endshexpm hexpm34 MIN AGO CVE-2026-755428.3High—8.3HighOAuth token exchange grants repository scopes for organizations the principal cannot accesshexpm hexpm35 MIN AGO CVE-2026-775678.1High—8.1HighFilament: App-based MFA can be bypassed when recovery codes are enabledfilamentphp filament39 MIN AGO CVE-2026-727146.8Medium—6.8MediumRocq Prover through 9.2.0 Universe Checking State Desynchronised After Module Closerocq-prover rocq41 MIN AGO CVE-2026-727116.8Medium—6.8MediumLean 4 before 4.32.2 Kernel Accepts Opaque Declaration With an Unbound Free Variableleanprover lean441 MIN AGO CVE-2026-727056.8Medium—6.8MediumRocq Prover before 9.2.0 Guard Checker Accepts Fixpoint Passed as a Higher-Order Argumentrocq-prover rocq41 MIN AGO CVE-2026-727046.8Medium—6.8MediumRocq Prover through 9.2.0 Guard Checker Trusts Corrupted Recursive Tree After Transportrocq-prover rocq41 MIN AGO CVE-2026-727036.8Medium—6.8MediumRocq Prover 8.20 before 9.2.0 Guard Checker Accepts Non-Terminating Fixpoint via Unchecked Cross-Callsrocq-prover rocq41 MIN AGO CVE-2020-372686.8Medium—6.8MediumCoq and Rocq Prover Print Assumptions Omits Unsafe Universe Checking Inlined Through Parameter Inlinerocq-prover rocq41 MIN AGO CVE-2026-755096.5Medium—6.5Mediumjoserfc claim-validation bypass via array-typed single-string claims (iss/sub/jti)authlib joserfc41 MIN AGO CVE-2026-760987.5High—7.5HighMistune has Denial of Service — RecursionError via Excessive Emphasis Markers in Markdownlepture mistune44 MIN AGO CVE-2026-768163.5Low—3.5LowNetty: MQTT Topic Name and Client ID Validation Bypassnetty netty56 MIN AGO CVE-2026-784304.8Medium—4.8Mediumsworddut mcp-ffmpeg-helper Tool handlers.ts handleToolCall os command injectionsworddut mcp-ffmpeg-helper1 HR AGO CVE-2026-785559.4Critical—9.4CriticalRansomLook API Key Disclosure Through /admin/apikeys HTML Sourceransomlook ransomlook1 HR AGO CVE-2026-785537.0High—7.0HighInsecure Flask Secret-Key File Permissions Allow Local Administrator Session Forgery in RansomLookransomlook ransomlook1 HR AGO 05 Recently added to KEV
SRC: CISAKEVCVE-2026-59310vmware cloud foundation vmware telco cloud infrastructure vmware telco cloud platform vmware vcenter vmware vsphere foundationAdded 2026-08-18