VulnSea

Daily digest

Saturday 15 August 2026

A quiet day: only 93 new CVEs against a recent average of about 193. Severity skewed high: 22 critical and 32 high, 58% of the total. 3 arrived with exploitation evidence or public exploit code already attached. Linux was the most-affected vendor with 25.

93
New CVEs
22
Critical
0
KEV additions
1
Records changed

New this day, ranked by depth score

The 12 that matter most of the 93 published.

CVE-2026-15826Critical· 9.8PoC
1mo ago

The User Profile Builder plugin for WordPress is vulnerable to Authentication Bypass via Type Confusion in versions up to, and including, 3.16.4

The User Profile Builder plugin for WordPress is vulnerable to Authentication Bypass via Type Confusion in versions up to, and including, 3.16.4. This is due to the wppb_log_in_user() function calling absint() on the return value of wp_i…

AbyssalEPSS 3.9%via NVD
CVE-2026-19598Critical· 9.8PoC
1mo ago

The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Privilege Escalation via Authorization Bypass in all versions up to, and including, 3.3.9

The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Privilege Escalation via Authorization Bypass in all versions up to, and including, 3.3.9. The vulnerability exists because the pods_admin AJAX router funne…

AbyssalEPSS 2.8%via NVD
CVE-2026-19900High· 8.1PoC
1mo ago

A vulnerability was identified in LB-LINK X-PRO 1.0.22-20231206

A vulnerability was identified in LB-LINK X-PRO 1.0.22-20231206. The impacted element is an unknown function of the file /etc/shadow. The manipulation leads to hard-coded credentials. It is possible to initiate the attack remotely. A hig…

MidnightEPSS 2.2%via NVD
CVE-2026-74474Critical· 9.8
1mo ago

vxlan: use pskb_network_may_pull() for transmit path header pulls

In the Linux kernel, the following vulnerability has been resolved: vxlan: use pskb_network_may_pull() for transmit path header pulls In vxlan_xmit(), arp_reduce(), and vxlan_mdb_entry_skb_get(), pskb_may_pull() was being called to ver…

MidnightLinux · LinuxEPSS 0.49%via CVEORG
CVE-2026-74269Critical· 9.8
1mo ago

In the Linux kernel, the following vulnerability has been resolved: bnxt: fix head underflow on XDP head-grow The xdp.py test test_xdp_native_adjst_head_grow_data crashes when run on a bnxt machine (and also crashes in NIPA). It seems…

In the Linux kernel, the following vulnerability has been resolved: bnxt: fix head underflow on XDP head-grow The xdp.py test test_xdp_native_adjst_head_grow_data crashes when run on a bnxt machine (and also crashes in NIPA). It seems…

MidnightLinux · LinuxEPSS 0.38%via NVD
CVE-2026-74268Critical· 9.8
1mo ago

tcp: clear sock_ops cb flags before force-closing a child socket

In the Linux kernel, the following vulnerability has been resolved: tcp: clear sock_ops cb flags before force-closing a child socket A child socket inherits the listener's bpf_sock_ops_cb_flags via sk_clone_lock(). If its setup fails i…

MidnightLinux · LinuxEPSS 0.69%via CVEORG
CVE-2026-73046Critical· 9.8
1mo ago

SiYuan before v3.7.4 improperly restricts excessive authentication attempts in the CheckAuth() middleware

SiYuan before v3.7.4 improperly restricts excessive authentication attempts in the CheckAuth() middleware. The HTTP Basic Authentication branch, which guards nearly the entire /api/* surface, accepts the workspace access code (Conf.Acces…

MidnightEPSS 0.43%via NVD
CVE-2026-72494Critical· 9.8
1mo ago

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Replace waitqueue and flag with completion The driver previously used a waitqueue along with an explicit request_done flag, but without proper barriers aro…

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Replace waitqueue and flag with completion The driver previously used a waitqueue along with an explicit request_done flag, but without proper barriers aro…

MidnightLinux · LinuxEPSS 0.41%via NVD
CVE-2026-72355Critical· 9.8
1mo ago

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix barriering when walking subrequest list Fix the barriering used when walking the subrequest list in retry as there's a possibility of seeing a subreq that's…

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix barriering when walking subrequest list Fix the barriering used when walking the subrequest list in retry as there's a possibility of seeing a subreq that's…

MidnightLinux · LinuxEPSS 0.55%via NVD
CVE-2026-72069Critical· 9.8
1mo ago

In the Linux kernel, the following vulnerability has been resolved: locking/rt: Fix the incorrect RCU protection in rt_spin_unlock() rt_spin_unlock() releases the RCU protection before unlocking the lock

In the Linux kernel, the following vulnerability has been resolved: locking/rt: Fix the incorrect RCU protection in rt_spin_unlock() rt_spin_unlock() releases the RCU protection before unlocking the lock. That opens the door for the fo…

MidnightEPSS 0.73%via NVD
CVE-2026-72065Critical· 9.8
1mo ago

In the Linux kernel, the following vulnerability has been resolved: net: mana: Validate the packet length reported by the NIC Validate the packet length reported in the RX CQE before passing it to skb processing

In the Linux kernel, the following vulnerability has been resolved: net: mana: Validate the packet length reported by the NIC Validate the packet length reported in the RX CQE before passing it to skb processing. The CQE is supplied by…

MidnightEPSS 0.73%via NVD
CVE-2026-72041Critical· 9.8
1mo ago

In the Linux kernel, the following vulnerability has been resolved: espintcp: use sk_msg_free_partial to fix partial send sk_msg_free_partial() ensures consistency of the skmsg at every iteration, without having to manually handle unch…

In the Linux kernel, the following vulnerability has been resolved: espintcp: use sk_msg_free_partial to fix partial send sk_msg_free_partial() ensures consistency of the skmsg at every iteration, without having to manually handle unch…

MidnightEPSS 0.69%via NVD

Most-changed records

Existing CVEs whose severity, score, KEV or exploitation status moved.

  • CVE-2026-58644Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.91

Most-affected vendors

By CVEs published in the period.