VulnSea

Daily digest

Friday 8 May 2026

A busier-than-usual day with 49 new CVEs (recent average about 32). Of those, 4 critical and 20 high. 6 arrived with exploitation evidence or public exploit code already attached. CISA added one CVE to the Known Exploited Vulnerabilities catalog. open-webui was the most-affected vendor with 19.

49
New CVEs
4
Critical
1
KEV additions
0
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this day, ranked by depth score

The 12 that matter most of the 49 published.

CVE-2026-42208Critical· 9.8CISA KEV0dayPoC
4mo ago

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. From version 1.81.16 to before version 1.83.7, a database query used during proxy API key checks mixed the caller-supplied key value into the query tex…

▾ Hadallitellm · litellmEPSS 5.8%via NVD
CVE-2026-42271High· 8.8CISA KEVPoC
4mo ago

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. From version 1.74.2 to before version 1.83.7, two endpoints used to preview an MCP server before saving it — POST /mcp-rest/test/connection and POST /m…

▾ Abyssallitellm · litellmEPSS 13%via NVD
CVE-2026-38360Critical· 9.8PoC
4mo ago

dash-uploader has a directory traversal vulnerability

dash-uploader has a directory traversal vulnerability

▾ Abyssaldash-uploader · dash-uploaderEPSS 6.1%via OSV
CVE-2026-43284High· 8.8PoC
4mo ago

In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can attach pages from a pipe directly to an skb

In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can attach pages from a pipe directly to an skb. TCP marks such skbs with SKBFL_SHARED_FRAG afte…

▾ Midnightlinux · linux_kernelEPSS 2.5%via NVD
CVE-2026-8069High· 7.8PoC
4mo ago

PredatorSense version 3.00.3136 to 3.00.3196 contain Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Named Pipe that uses a custom protocol to invoke internal functions

PredatorSense version 3.00.3136 to 3.00.3196 contain Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Named Pipe that uses a custom protocol to invoke internal functions. However, this Named Pipe is misconfigu…

▾ Midnightacer · nitrosenseEPSS 0.17%via NVD
CVE-2026-44327Critical· 10.0
4mo ago

free5GC's NEF nnef-oam route group is unauthenticated; no-token requests reach the OAM handler

free5GC's NEF nnef-oam route group is unauthenticated; no-token requests reach the OAM handler

▾ Midnightfree5gc · github.com/free5gc/nefEPSS 0.53%via OSV
CVE-2026-43414Critical· 9.8
4mo ago

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Completely fix fcport double free In qla24xx_els_dcmd_iocb() sp->free is set to qla2x00_els_dcmd_sp_free(). When an error happens, this function is call…

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Completely fix fcport double free In qla24xx_els_dcmd_iocb() sp->free is set to qla2x00_els_dcmd_sp_free(). When an error happens, this function is call…

▾ Midnightlinux · linux_kernelEPSS 0.55%via NVD
CVE-2026-42264High· 7.4PoC
4mo ago

Axios is a promise based HTTP client for the browser and Node.js

Axios is a promise based HTTP client for the browser and Node.js. From version 1.0.0 to before version 1.15.2, fFive config properties (auth, baseURL, socketPath, beforeRedirect, and insecureHTTPParser) in the HTTP adapter are read via d…

▾ Midnightaxios · axiosEPSS 0.97%via NVD
CVE-2026-44552High· 8.7
4mo ago

Open WebUI: Redis Cache Keys tool_servers and terminal_servers Missing Instance Prefix Enable Cross-Instance Cache Poisoning

Open WebUI: Redis Cache Keys tool_servers and terminal_servers Missing Instance Prefix Enable Cross-Instance Cache Poisoning

▾ Twilightopen-webui · open-webuiEPSS 0.42%via OSV
CVE-2026-43391High· 8.8
4mo ago

In the Linux kernel, the following vulnerability has been resolved: nsfs: tighten permission checks for handle opening Even privileged services should not necessarily be able to see other privileged service's namespaces so they can't l…

In the Linux kernel, the following vulnerability has been resolved: nsfs: tighten permission checks for handle opening Even privileged services should not necessarily be able to see other privileged service's namespaces so they can't l…

▾ Twilightlinux · linux_kernelEPSS 0.17%via NVD
CVE-2026-44843High· 8.2
4mo ago

LangChain vulnerable to unsafe deserialization of attacker-controlled objects through overly broad `load()` allowlists

LangChain vulnerable to unsafe deserialization of attacker-controlled objects through overly broad `load()` allowlists

▾ Twilightlangchain-core · langchain-coreEPSS 0.38%via OSV
CVE-2026-44554High· 8.1
4mo ago

Open WebUI has Knowledge Base Destruction and RAG Poisoning via Unauthorized Collection Overwrite

Open WebUI has Knowledge Base Destruction and RAG Poisoning via Unauthorized Collection Overwrite

▾ Twilightopen-webui · open-webuiEPSS 0.43%via OSV

Most-affected vendors

By CVEs published in the period.