VulnSea

Daily digest

Monday 2 March 2026

A heavy day: 15 new CVEs, well above the recent average of about 9. Severity skewed high: 1 critical and 8 high, 60% of the total. 4 arrived with exploitation evidence or public exploit code already attached. google was the most-affected vendor with 7.

15
New CVEs
1
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 12 that matter most of the 15 published.

CVE-2026-0013High· 8.4PoC
7mo ago

In setupLayout of PickActivity.java, there is a possible way to start any activity as a DocumentsUI app due to a confused deputy

In setupLayout of PickActivity.java, there is a possible way to start any activity as a DocumentsUI app due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User inter…

▾ Midnightgoogle · androidEPSS 0.16%via NVD
CVE-2026-0010High· 8.4PoC
7mo ago

In onTransact of IDrmManagerService.cpp, there is a possible out of bounds write due to a missing bounds check

In onTransact of IDrmManagerService.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not need…

▾ Midnightgoogle · androidEPSS 0.12%via NVD
CVE-2026-23600Critical· 9.8
7mo ago

A remote authentication bypass vulnerability  exists in HPE AutoPass License Server (APLS).

A remote authentication bypass vulnerability  exists in HPE AutoPass License Server (APLS).

▾ Midnighthpe · autopass_license_serverEPSS 0.98%via NVD
CVE-2026-2256Medium· 6.5PoC
7mo ago

MS-Agent vulnerable to Command Injection

MS-Agent vulnerable to Command Injection

▾ Twilightms-agent · ms-agentEPSS 1.6%via OSV
CVE-2026-0014Medium· 6.2PoC
7mo ago

In isPackageNullOrSystem of AppOpsService.java, there is a possible persistent denial of service due to improper input validation

In isPackageNullOrSystem of AppOpsService.java, there is a possible persistent denial of service due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interactio…

▾ Twilightgoogle · androidEPSS 0.12%via NVD
CVE-2026-0011High· 8.4
7mo ago

In enableSystemPackageLPw of Settings.java, there is a possible way to prevent location access from working due to a logic error in the code

In enableSystemPackageLPw of Settings.java, there is a possible way to prevent location access from working due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed…

▾ Twilightgoogle · androidEPSS 0.14%via NVD
CVE-2026-0008High· 8.4
7mo ago

In multiple functions of FaceEnroll.kt, there is a possible privilege escalation due to a confused deputy

In multiple functions of FaceEnroll.kt, there is a possible privilege escalation due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed fo…

▾ Twilightgoogle · androidEPSS 0.13%via NVD
CVE-2026-0017High· 7.7
7mo ago

In onChange of BiometricService.java, there is a possible way to enable fingerprint unlock due to a logic error in the code

In onChange of BiometricService.java, there is a possible way to enable fingerprint unlock due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interactio…

▾ Twilightgoogle · androidEPSS 0.10%via NVD
CVE-2026-28795High
7mo ago

OpenChatBI has a Path Traversal Vulnerability in save_report Tool

OpenChatBI has a Path Traversal Vulnerability in save_report Tool

▾ Twilightopenchatbi · openchatbiEPSS 0.68%via OSV
CVE-2026-28438High
7mo ago

CocoIndex Doris target connector didn't verify table name when constructing ALTER TABLE statements

CocoIndex Doris target connector didn't verify table name when constructing ALTER TABLE statements

▾ Twilightcocoindex · cocoindexEPSS 0.50%via OSV
CVE-2026-27932High· 7.5
7mo ago

joserfc's PBES2 p2c Unbounded Iteration Count enables Denial of Service (DoS)

joserfc's PBES2 p2c Unbounded Iteration Count enables Denial of Service (DoS)

▾ Twilightjoserfc · joserfcEPSS 0.33%via OSV
CVE-2026-28350Medium· 6.1
7mo ago

lxml-html-clean has <base> tag injection through default Cleaner configuration

lxml-html-clean has <base> tag injection through default Cleaner configuration

▾ Sunlitlxml-html-clean · lxml-html-cleanEPSS 0.27%via OSV

Most-affected vendors

By CVEs published in the period.