VulnSea

Daily digest

Monday 11 May 2026

A heavy day: 84 new CVEs, well above the recent average of about 37. Of those, 2 critical and 35 high. 8 arrived with exploitation evidence or public exploit code already attached. apple was the most-affected vendor with 14.

84
New CVEs
2
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 12 that matter most of the 84 published.

CVE-2026-40217High· 8.8PoC
4mo ago

LiteLLM has a sandbox escape in custom-code guardrail

LiteLLM has a sandbox escape in custom-code guardrail

▾ Midnightlitellm · litellmEPSS 3.4%via OSV
CVE-2026-28995High· 8.8PoC
4mo ago

A logic issue was addressed with improved restrictions

A logic issue was addressed with improved restrictions. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. A…

▾ Midnightapple · ipadosEPSS 0.15%via NVD
CVE-2026-7813Critical· 9.9
4mo ago

pgAdmin 4 server mode has an authorization vulnerability affecting Server Groups, Servers, Shared Servers, Background Processes, and Debu…

pgAdmin 4 server mode has an authorization vulnerability affecting Server Groups, Servers, Shared Servers, Background Processes, and Debugger modules

▾ Midnightpgadmin4 · pgadmin4EPSS 0.65%via OSV
CVE-2026-44477Critical· 9.9
4mo ago

CloudNativePG's metrics exporter allows privilege escalation to PostgreSQL superuser and OS RCE

CloudNativePG's metrics exporter allows privilege escalation to PostgreSQL superuser and OS RCE

▾ Midnightcloudnative-pg · github.com/cloudnative-pg/cloudnative-pgEPSS 0.52%via OSV
CVE-2026-3609High· 7.8PoC
4mo ago

Wellbia's XIGNCODE3 xhunter1.sys kernel driver, version 10.0.10011.16384 through 2023.12.7.78, privilege escalation vulnerability provides access to the IRP_MJ_WRITE command interface, which allows any user process to request a PROCESS_A…

Wellbia's XIGNCODE3 xhunter1.sys kernel driver, version 10.0.10011.16384 through 2023.12.7.78, privilege escalation vulnerability provides access to the IRP_MJ_WRITE command interface, which allows any user process to request a PROCESS_A…

▾ Midnightwellbia · xigncode3EPSS 0.16%via NVD
CVE-2026-2614High· 7.5PoC
4mo ago

A vulnerability in the `_create_model_version()` handler of `mlflow/server/handlers.py` in mlflow/mlflow versions 3.9.0 and earlier allows an unauthenticated remote attacker to read arbitrary files from the server's filesystem

A vulnerability in the `_create_model_version()` handler of `mlflow/server/handlers.py` in mlflow/mlflow versions 3.9.0 and earlier allows an unauthenticated remote attacker to read arbitrary files from the server's filesystem. The issue…

▾ Midnightlfprojects · mlflowEPSS 3.2%via NVD
CVE-2026-28990High· 7.5PoC
4mo ago

The issue was addressed with improved memory handling

The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. …

▾ Midnightapple · ipadosEPSS 0.52%via NVD
CVE-2026-44338High· 7.3PoC
4mo ago

PraisonAI ships and generates a legacy API server with authentication disabled by default, allowing unauthenticated workflow execution

PraisonAI ships and generates a legacy API server with authentication disabled by default, allowing unauthenticated workflow execution

▾ Midnightpraisonai · praisonaiEPSS 0.82%via OSV
CVE-2026-8260High· 8.8
4mo ago

A vulnerability was found in D-Link DCS-935L up to 1.10.01

A vulnerability was found in D-Link DCS-935L up to 1.10.01. The impacted element is the function SetDeviceSettings of the file /web/cgi-bin/hnap/hnap_service of the component HNAP Service. The manipulation of the argument AdminPassword r…

▾ Twilightdlink · dcs-935l_firmwareEPSS 1.2%via NVD
CVE-2026-7816High· 8.8
4mo ago

pgAdmin 4: OS command injection vulnerability in Import/Export query export

pgAdmin 4: OS command injection vulnerability in Import/Export query export

▾ Twilightpgadmin4 · pgadmin4EPSS 2.2%via OSV
CVE-2026-7815High· 8.8
4mo ago

SQL injection vulnerability in pgAdmin 4 Maintenance Tool

SQL injection vulnerability in pgAdmin 4 Maintenance Tool

▾ Twilightpgadmin4 · pgadmin4EPSS 0.64%via OSV
CVE-2026-28947High· 8.8
4mo ago

A use-after-free issue was addressed with improved memory management

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, tvOS 26.5, visionOS 26.5, watchOS 26.5. Processing mali…

▾ Twilightapple · ipadosEPSS 0.49%via NVD

Most-affected vendors

By CVEs published in the period.