VulnSea

Daily digest

Wednesday 4 March 2026

A heavy day: 26 new CVEs, well above the recent average of about 13. Of those, 3 critical and 6 high. 4 arrived with exploitation evidence or public exploit code already attached. cisco was the most-affected vendor with 16.

26
New CVEs
3
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 12 that matter most of the 26 published.

CVE-2026-20079Critical· 10.0CISA KEVPoC
6mo ago

A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access …

A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access …

▾ Hadalcisco · secure_firewall_management_centerEPSS 88%via NVD
CVE-2025-66024Critical· 9.0PoC
6mo ago

The XWiki blog application allows users of the XWiki platform to create and manage blog posts

The XWiki blog application allows users of the XWiki platform to create and manage blog posts. Versions starting with 9.15 and prior to 9.15.7 are vulnerable to Stored Cross-Site Scripting (XSS) via the Blog Post Title. The vulnerability…

▾ Abyssalxwiki · blog_applicationEPSS 0.36%via NVD
CVE-2026-0847High· 8.6PoC
6mo ago

Path Traversal in nltk/nltk

A vulnerability in NLTK versions up to and including 3.9.2 allows arbitrary file read via path traversal in multiple CorpusReader classes, including WordListCorpusReader, TaggedCorpusReader, and BracketParseCorpusReader. These classes fa…

▾ Midnightnltk · nltk/nltkEPSS 0.90%via CVEORG
CVE-2026-23231High· 7.8PoC
6mo ago

netfilter: nf_tables: fix use-after-free in nf_tables_addchain()

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix use-after-free in nf_tables_addchain() nf_tables_addchain() publishes the chain to table->chains via list_add_tail_rcu() (in nft_chain_add())…

▾ MidnightLinux · LinuxEPSS 0.79%via CVEORG
CVE-2026-27446Critical· 9.8
6mo ago

Missing Authentication for Critical Function (CWE-306) vulnerability in Apache Artemis, Apache ActiveMQ Artemis

Missing Authentication for Critical Function (CWE-306) vulnerability in Apache Artemis, Apache ActiveMQ Artemis. An unauthenticated remote attacker can use the Core protocol to force a target broker to establish an outbound Core federati…

▾ Midnightapache · artemisEPSS 1.1%via NVD
CVE-2026-28681High· 8.1
6mo ago

IRRd: web UI host header injection allows password reset poisoning via attacker-controlled email links

IRRd: web UI host header injection allows password reset poisoning via attacker-controlled email links

▾ Twilightirrd · irrdEPSS 0.55%via OSV
CVE-2026-20002High· 8.1
6mo ago

A vulnerability in the web-based management interface of Cisco Secure FMC Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability is due to inadequate validatio…

A vulnerability in the web-based management interface of Cisco Secure FMC Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. This vulnerability is due to inadequate validatio…

▾ Twilightcisco · secure_firewall_management_centerEPSS 0.35%via NVD
CVE-2026-29065High
6mo ago

changedetection.io has Zip Slip vulnerability in the backup restore functionality

changedetection.io has Zip Slip vulnerability in the backup restore functionality

▾ Twilightchangedetection-io · changedetection-ioEPSS 0.56%via OSV
CVE-2026-29039High
6mo ago

changedetection.io vulnerable to XPath - Arbitrary File Read via unparsed-text()

changedetection.io vulnerable to XPath - Arbitrary File Read via unparsed-text()

▾ Twilightchangedetection-io · changedetection-ioEPSS 0.51%via OSV
CVE-2025-12801Medium· 6.5
6mo ago

A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time

A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time. In particular, it allows th…

▾ SunlitEPSS 0.46%via NVD
CVE-2026-29038Medium· 6.1
6mo ago

changedetection.io has Reflected XSS in its RSS Tag Error Response

changedetection.io has Reflected XSS in its RSS Tag Error Response

▾ Sunlitchangedetection-io · changedetection-ioEPSS 0.34%via OSV
CVE-2026-20044Medium· 6.0
6mo ago

A vulnerability in the lockdown mechanism of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, local attacker to perform arbitrary commands as root. This vulnerability is due to insufficient restrict…

A vulnerability in the lockdown mechanism of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, local attacker to perform arbitrary commands as root. This vulnerability is due to insufficient restrict…

▾ Sunlitcisco · secure_firewall_management_centerEPSS 0.14%via NVD

Most-affected vendors

By CVEs published in the period.