VulnSea

Daily digest

Tuesday 16 June 2026

A heavy day: 160 new CVEs, well above the recent average of about 88. Of those, 12 critical and 59 high. 10 arrived with exploitation evidence or public exploit code already attached. openclaw was the most-affected vendor with 27.

160
New CVEs
12
Critical
0
KEV additions
0
Records changed

New this day, ranked by depth score

The 12 that matter most of the 160 published.

CVE-2026-7273High· 8.8CISA KEVPoC
3mo ago

A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow a LAN-based, unauthenticated attacker to exploit the flaw and potentially execute OS commands via …

A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow a LAN-based, unauthenticated attacker to exploit the flaw and potentially execute OS commands via …

▾ Abyssalzyxel · gs1900-8_firmwareEPSS 2.5%via NVD
CVE-2026-53753Critical· 9.8PoC
3mo ago

Crawl4AI: AST Sandbox Escape via gi_frame.f_back Chain - Pre-Auth RCE in Docker API

Crawl4AI: AST Sandbox Escape via gi_frame.f_back Chain - Pre-Auth RCE in Docker API

▾ Abyssalcrawl4ai · crawl4aiEPSS 2.9%via GHSA
CVE-2026-49468Critical· 9.8PoC
3mo ago

LiteLLM: Authentication Bypass via Host Header Injection

LiteLLM: Authentication Bypass via Host Header Injection

▾ Abyssallitellm · litellmEPSS 0.82%via OSV
CVE-2026-48519Critical· 9.6PoC
3mo ago

Langflow: Unauthenticated RCE in Shareable Playgrounds

Langflow: Unauthenticated RCE in Shareable Playgrounds

▾ Abyssallangflow · langflowEPSS 0.78%via GHSA
CVE-2026-12295Critical· 9.6PoC
3mo ago

Sandbox escape in the DOM: Navigation component

Sandbox escape in the DOM: Navigation component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12.

▾ Abyssalmozilla · firefoxEPSS 0.39%via NVD
CVE-2026-54157Critical· 9.0PoC
3mo ago

LobeHub: Unauthenticated SSRF in `/webapi/proxy`

LobeHub: Unauthenticated SSRF in `/webapi/proxy`

▾ Abyssallobehub · @lobehub/lobehubEPSS 1.8%via GHSA
CVE-2026-53755High· 8.6PoC
3mo ago

Crawl4AI: SSRF via proxy settings in the Docker server bypasses the crawl-URL SSRF check

Crawl4AI: SSRF via proxy settings in the Docker server bypasses the crawl-URL SSRF check

▾ Midnightcrawl4ai · crawl4aiEPSS 1.6%via GHSA
CVE-2026-28699High· 8.1PoC
3mo ago

Gitea: OAuth2 access token scope enforcement bypass via HTTP Basic authentication

Gitea: OAuth2 access token scope enforcement bypass via HTTP Basic authentication

▾ Midnightgitea · code.gitea.io/giteaEPSS 0.55%via GHSA
CVE-2026-54310Medium· 9.9
3mo ago

n8n: SQL Injection in Postgres v1/TimesclaeDB Nodes

n8n: SQL Injection in Postgres v1/TimesclaeDB Nodes

▾ Sunlitn8n · n8nEPSS 0.55%via GHSA
CVE-2026-54309High· 10.0
3mo ago

n8n: MCP Browser HTTP Transport Exposes Unauthenticated Browser-Control Sessions

n8n: MCP Browser HTTP Transport Exposes Unauthenticated Browser-Control Sessions

▾ Twilightn8n · n8nEPSS 0.55%via GHSA
CVE-2026-54305High· 9.9
3mo ago

n8n: Cross-Tenant Credential Takeover via Dynamic Credentials EE Endpoints

n8n: Cross-Tenant Credential Takeover via Dynamic Credentials EE Endpoints

▾ Twilightn8n · n8nEPSS 0.37%via GHSA
CVE-2026-50656High· 7.8PoC
3mo ago

Microsoft Defender Elevation of Privilege Vulnerability

Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "RoguePlanet ".

▾ MidnightMicrosoft · Microsoft Malware Protection EngineEPSS 0.37%via CVEORG

Most-affected vendors

By CVEs published in the period.