VulnSea

Daily digest

Tuesday 26 May 2026

25 new CVEs this day, in line with the recent average. Severity skewed high: 4 critical and 14 high, 72% of the total. One arrived with exploitation evidence or public exploit code already attached. hermes-agent was the most-affected vendor with 4.

25
New CVEs
4
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 12 that matter most of the 25 published.

CVE-2026-48710Medium· 6.5CISA KEVPoC
4mo ago

Starlette is a lightweight ASGI framework/toolkit

Starlette is a lightweight ASGI framework/toolkit. Prior to version 1.0.1, the HTTP `Host` request header was not validated before being used to reconstruct `request.url`. Because the routing algorithm relies on the raw HTTP path while `…

▾ Midnightstarlette · starletteEPSS 7.1%via NVD
CVE-2026-7374Critical· 9.9
4mo ago

A flaw was found in KubeVirt's virt-handler component

A flaw was found in KubeVirt's virt-handler component. This vulnerability allows an authenticated OpenShift user with edit permissions in a single namespace to exploit improper symlink validation when connecting to virtual machine consol…

▾ MidnightRed Hat · kubevirtEPSS 0.83%via NVD
CVE-2026-8376Critical· 9.8⚖ disputed
4mo ago

Perl versions before 5.40.5-RC1, from 5.41.0 before 5.42.3-RC1, from 5.43.0 before 5.43.11 have a heap buffer overflow when compiling regular expressions with a repeated fixed string on 32-bit builds. Perl_study_chunk in regcomp_study.c…

Perl versions before 5.40.5-RC1, from 5.41.0 before 5.42.3-RC1, from 5.43.0 before 5.43.11 have a heap buffer overflow when compiling regular expressions with a repeated fixed string on 32-bit builds. Perl_study_chunk in regcomp_study.c…

▾ Midnightperl · perlEPSS 0.48%via NVD
CVE-2026-48687Critical· 9.8
4mo ago

FastNetMon Community Edition through 1.2.9 contains an OS command injection vulnerability in the Juniper router integration plugin

FastNetMon Community Edition through 1.2.9 contains an OS command injection vulnerability in the Juniper router integration plugin. The _log() function in src/juniper_plugin/fastnetmon_juniper.php (lines 117-118) constructs shell command…

▾ Midnightpavel-odintsov · fastnetmonEPSS 2.7%via NVD
CVE-2026-2651Critical· 9.0
4mo ago

MLflow allows unauthorized access to multipart upload endpoints when the `--serve-artifacts` mode is enabled

MLflow allows unauthorized access to multipart upload endpoints when the `--serve-artifacts` mode is enabled

▾ Midnightmlflow · mlflowEPSS 0.54%via OSV
CVE-2026-40033High· 8.8
4mo ago

FreeRDP before 3.26.0 contains a heap-buffer-overflow vulnerability in gdi_CacheToSurface that allows remote attackers to write out-of-bounds heap memory

FreeRDP before 3.26.0 contains a heap-buffer-overflow vulnerability in gdi_CacheToSurface that allows remote attackers to write out-of-bounds heap memory. The vulnerability occurs because rectangle validation clamps coordinates to UINT16…

▾ Twilightfreerdp · freerdpEPSS 1.1%via NVD
CVE-2026-44832High· 8.8
4mo ago

Snipe-IT is an IT asset/license management system

Snipe-IT is an IT asset/license management system. Prior to 8.4.1, aAn authenticated user with only users.edit permission can escalate their own privileges to admin by sending a PATCH request to /api/v1/users/{id} with permissions[admin]…

▾ Twilightsnipeitapp · snipe-itEPSS 0.44%via NVD
CVE-2026-3515High· 8.5
4mo ago

Prefect has an Argument Injection issue

Prefect has an Argument Injection issue

▾ Twilightprefect · prefectEPSS 0.48%via OSV
CVE-2026-5260High· 8.2
4mo ago

A flaw was found in libgnutls

A flaw was found in libgnutls. A remote attacker, by sending an extremely short premaster secret during an RSA key exchange to a server using an RSA key backed by a PKCS#11 token, could trigger a short heap overread. This memory corrupti…

▾ TwilightRed Hat · gnutlsEPSS 0.95%via NVD
CVE-2026-48695High· 8.1
4mo ago

FastNetMon Community Edition through 1.2.9 contains an OS command injection vulnerability in the MikroTik router integration plugin

FastNetMon Community Edition through 1.2.9 contains an OS command injection vulnerability in the MikroTik router integration plugin. The _log() function in src/mikrotik_plugin/fastnetmon_mikrotik.php (lines 107-108) constructs shell comm…

▾ Twilightpavel-odintsov · fastnetmonEPSS 1.7%via NVD
CVE-2026-42013High· 8.2
4mo ago

A flaw was found in gnutls

A flaw was found in gnutls. When validating certificates, an oversized Subject Alternative Name (SAN) could cause the validation process to incorrectly fall back to checking the Common Name (CN) field. This could allow a remote attacker …

▾ TwilightEPSS 0.56%via NVD
CVE-2026-48864High· 7.8
4mo ago

A flaw was found in libsolv

A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within `.solv` files due to insufficient input validation. An attacker can provide a specially crafted `.solv` …

▾ Twilightopensuse · libsolvEPSS 0.26%via NVD

Most-affected vendors

By CVEs published in the period.