VulnSea

Daily digest

Wednesday 20 May 2026

A heavy day: 76 new CVEs, well above the recent average of about 37. Of those, 3 critical and 28 high. 8 arrived with exploitation evidence or public exploit code already attached. CISA added one CVE to the Known Exploited Vulnerabilities catalog. Mesalvo was the most-affected vendor with 4.

76
New CVEs
3
Critical
1
KEV additions
0
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this day, ranked by depth score

The 12 that matter most of the 76 published.

CVE-2026-20223Critical· 10.0PoC
4mo ago

A vulnerability in the access validation of internal REST APIs of Cisco Secure Workload could allow an unauthenticated, remote attacker to access site resources with the privileges of the Site Admin role. This vulnerability …

A vulnerability in the access validation of internal REST APIs of Cisco Secure Workload could allow an unauthenticated, remote attacker to access site resources with the privileges of the Site Admin role. This vulnerability …

▾ Abyssalcisco · secure_workloadEPSS 0.83%via NVD
CVE-2026-9141Critical· 9.8PoC
4mo ago

Taiko AG1000-01A Rev 7.3/8 Authentication Bypass via Web Interface

Taiko AG1000-01A SMS Alert Gateway Rev 7.3 and Rev 8 contains an authentication bypass vulnerability in the embedded web configuration interface that allows unauthenticated attackers to access internal application pages without any sessi…

▾ AbyssalTaiko Network Communications Pte Ltd. · AG1000-01A SMS Alert GatewayEPSS 0.71%via CVEORG
CVE-2026-45584High· 8.1PoC
4mo ago

Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network.

Heap-based buffer overflow in Microsoft Defender allows an unauthorized attacker to execute code over a network.

▾ Midnightmicrosoft · malware_protection_engineEPSS 0.71%via NVD
CVE-2026-8631Critical· 9.8
4mo ago

A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software

A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This potential vulnerability may allow escalation of privileges and/or arbitrary code execution via an integer overflow in the hpcups p…

▾ Midnighthp · linux_imaging_and_printingEPSS 1.1%via NVD
CVE-2026-39047High· 7.5PoC
4mo ago

Buffer Overflow vulnerability in EPSON L14150 FL27PB allows a remote attacker to execute arbitrary code via the RAW Printing Service (JetDirect) on TCP port 9100

Buffer Overflow vulnerability in EPSON L14150 FL27PB allows a remote attacker to execute arbitrary code via the RAW Printing Service (JetDirect) on TCP port 9100

▾ MidnightEPSS 0.83%via NVD
CVE-2026-24425High· 8.8
4mo ago

Twig versions 2.16.x and 3.9.0 through 3.25.x contain a sandbox bypass vulnerability when using a SourcePolicyInterface that allows attackers with template rendering capabilities to pass arbitrary PHP callables to sort, filter, map, and …

Twig versions 2.16.x and 3.9.0 through 3.25.x contain a sandbox bypass vulnerability when using a SourcePolicyInterface that allows attackers with template rendering capabilities to pass arbitrary PHP callables to sort, filter, map, and …

▾ Twilightsymfony · twigEPSS 0.76%via NVD
CVE-2026-24217High· 8.8
4mo ago

NVIDIA BioNeMo Core for Linux contains a vulnerability where a user could cause a path traversal by loading a malicious file

NVIDIA BioNeMo Core for Linux contains a vulnerability where a user could cause a path traversal by loading a malicious file. A successful exploit of this vulnerability might lead to code execution, denial of service, information disclos…

▾ Twilightnvidia · bionemo_frameworkEPSS 0.76%via NVD
CVE-2026-44926High· 8.8
4mo ago

InfoScale CmdServer before 7.4.2 mishandles access control.

InfoScale CmdServer before 7.4.2 mishandles access control.

▾ TwilightEPSS 0.44%via NVD
CVE-2026-44925High· 8.8
4mo ago

Cross-Site Request Forgery (CSRF) vulnerability in InfoScale v.9.1.3 Operations Manager (VIOM) allows an attacker to force the user with an active session into clicking a malicious HTML link, which triggers unintended modifications on VI…

Cross-Site Request Forgery (CSRF) vulnerability in InfoScale v.9.1.3 Operations Manager (VIOM) allows an attacker to force the user with an active session into clicking a malicious HTML link, which triggers unintended modifications on VI…

▾ Twilightveritas · infoscale_operations_managerEPSS 0.22%via NVD
CVE-2026-45498Medium· 4.0CISA KEV0dayPoC
4mo ago

Microsoft Defender Denial of Service Vulnerability

Microsoft Defender Denial of Service Vulnerability

▾ Midnightmicrosoft · defender_antimalware_platformEPSS 1.3%via NVD
CVE-2026-39310High· 8.6
4mo ago

Trilium Notes is a cross-platform, hierarchical note taking application focused on building large personal knowledge bases

Trilium Notes is a cross-platform, hierarchical note taking application focused on building large personal knowledge bases. In versions 0.102.1 and prior, the Clipper API in Trilium Desktop (v0.101.3) allows full authentication bypass wh…

▾ TwilightEPSS 0.50%via NVD
CVE-2026-30691Medium· 6.1PoC
4mo ago

Cross-Site Scripting (XSS) vulnerability in @cyntler/react-doc-viewer v1.17.1 allows remote attackers to execute arbitrary JavaScript via a crafted .txt file

Cross-Site Scripting (XSS) vulnerability in @cyntler/react-doc-viewer v1.17.1 allows remote attackers to execute arbitrary JavaScript via a crafted .txt file. The TXTRenderer component fails to sanitize file content and explicitly casts …

▾ TwilightEPSS 0.31%via NVD

Most-affected vendors

By CVEs published in the period.