VulnSea

Daily digest

Thursday 20 August 2026

207 new CVEs this day, in line with the recent average. Of those, 21 critical and 61 high. 10 arrived with exploitation evidence or public exploit code already attached. Microsoft was the most-affected vendor with 21.

207
New CVEs
21
Critical
0
KEV additions
18
Records changed

New this day, ranked by depth score

The 12 that matter most of the 207 published.

CVE-2026-77647Critical· 9.8⚠ ExploitedPoC
1mo ago

SPIP before 4.4.20 allows unauthenticated remote attackers to execute arbitrary code, as exploited in the wild in August 2026

SPIP before 4.4.20 allows unauthenticated remote attackers to execute arbitrary code, as exploited in the wild in August 2026. This is related to incorrect identification of <?php blocks, and var_export's mishandling of certain cases suc…

AbyssalEPSS 2.6%via NVD
CVE-2026-18294High· 7.80day
1mo ago

OriginLab Origin Viewer OGW File Parsing Memory Corruption Remote Code Execution Vulnerability

OriginLab Origin Viewer OGW File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab Origin Viewer. User interaction i…

AbyssalEPSS 0.23%via NVD
CVE-2026-18293High· 7.80day
1mo ago

OriginLab Origin Viewer OPJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

OriginLab Origin Viewer OPJ File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of OriginLab Origin Viewer. User interaction…

AbyssalEPSS 0.20%via NVD
CVE-2026-69836Critical· 10.0PoC
1mo ago

Microsoft Entra ID Remote Code Execution Vulnerability

Deserialization of untrusted data in Microsoft Entra ID allows an unauthorized attacker to execute code over a network.

AbyssalMicrosoft · Microsoft EntraEPSS 1.6%via CVEORG
CVE-2026-15686High· 7.20day
1mo ago

Adminer multi_query Incorrect Check of Function Return Value Remote Code Execution Vulnerability

Adminer multi_query Incorrect Check of Function Return Value Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Adminer. Authentication is required to ex…

AbyssalEPSS 0.72%via NVD
CVE-2026-63382Critical· 9.2PoC
1mo ago

Libevent is an event notification library

Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, the libevent evhttp parser in http.c inconsistently handles duplicate Transfer-Encoding headers, comma-separated Transfer-Encoding values, and bare line feeds in…

Abyssallibevent · libeventEPSS 0.59%via NVD
CVE-2026-73040High· 8.8PoC
1mo ago

Dockge validates a stack name only on the write path

Dockge validates a stack name only on the write path. In backend/stack.ts the allow-list check in validate(), which requires the name to match ^[a-z0-9_-]+$, is reached from save() alone, while the path getter returns path.join(this.serv…

Midnightlouislam · dockgeEPSS 0.82%via NVD
CVE-2026-63383High· 8.7PoC
1mo ago

Libevent is an event notification library

Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent can read beyond a contiguous evbuffer region in event_tagging.c when decode_tag_internal requests at most five bytes from evbuffer_pullup but iterates u…

Midnightlibevent · libeventEPSS 0.38%via NVD
CVE-2026-69851Critical· 9.9
1mo ago

Microsoft Entra ID Elevation of Privilege Vulnerability

Server-side request forgery (ssrf) in Azure Active Directory allows an authorized attacker to elevate privileges over a network.

MidnightMicrosoft · Microsoft EntraEPSS 0.43%via CVEORG
CVE-2026-69555Critical· 10.0
1mo ago

Azure Arc Elevation of Privilege Vulnerability

Incorrect authorization in Azure Arc allows an unauthorized attacker to elevate privileges over a network.

MidnightMicrosoft · Azure ARCEPSS 0.44%via CVEORG
CVE-2026-68789Critical· 9.9
1mo ago

Azure SQL Database Elevation of Privilege Vulnerability

Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.

MidnightMicrosoft · Azure SQL DatabaseEPSS 0.53%via CVEORG
CVE-2026-68782Critical· 9.9
1mo ago

Azure SQL Database Elevation of Privilege Vulnerability

Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.

MidnightMicrosoft · Azure SQL DatabaseEPSS 0.54%via CVEORG

Most-changed records

Existing CVEs whose severity, score, KEV or exploitation status moved.

  • CVE-2026-64849mlflow: MLflow: Unauthenticated full-read SSRF in webhook delivery: _validate_webhook_url bypassed via unvalidated HTTP redirects (and DNS …75
  • CVE-2026-20896Gitea Docker image versions up to and including 1.26.2 use REVERSE_PROXY_TRUSTED_PROXIES=* by default, allowing any source IP to impersonate a user when reverse-proxy authentication headers such as X-WEBAUTH-USER are enabled.66
  • CVE-2020-1102A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package61
  • CVE-2020-0901A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory55
  • CVE-2020-1023A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package49
  • CVE-2020-1024A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package49
  • CVE-2020-1069A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls49
  • CVE-2020-1117A remote code execution vulnerability exists in the way that the Color Management Module (ICM32.dll) handles objects in memory49

Most-affected vendors

By CVEs published in the period.