Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2026-20801

Cleartext Transmission of Sensitive Information (CWE-319) in a component used in the Gallagher Hanwha VMS and Gallagher NxWitness VMS integrations allows unprivileged users with local network access to view live video streams. This issue affects all versions of Gallagher NxWitness VMS integration prior to 9.10.017 and Gallagher Hanwha VMS integration prior to 9.10.025.

PUBLISHED
Vendor
Gallagher
Product
NxWitness VMS and Hanwha VMS Integrations
Provider severity
MEDIUM
Conflicts
0

CVE-2026-20800

Gitea's notification API does not re-validate repository access permissions when returning notification details. After a user's access to a private repository is revoked, they may still view issue and pull request titles through previously received notifications.

PUBLISHED
Vendor
Gitea
Product
Gitea Open Source Git Server
Provider severity
MEDIUM
Conflicts
0

CVE-2026-2080

A vulnerability has been found in UTT HiPER 810 1.7.4-141218. This issue affects the function setSysAdm of the file /goform/formUser. The manipulation of the argument passwd1 leads to command injection. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
UTT
Product
HiPER 810
Provider severity
HIGH
Conflicts
2

CVE-2026-20797

A stack based buffer overflow exists in an API route of XWEB Pro version 1.12.1 and prior, enabling unauthenticated attackers to cause stack corruption and a termination of the program.

PUBLISHED
Vendor
Copeland, Copeland, Copeland
Product
Copeland XWEB 300D PRO, Copeland XWEB 500B PRO, Copeland XWEB 500D PRO
Provider severity
MEDIUM
Conflicts
2

CVE-2026-20796

Mattermost versions 10.11.x <= 10.11.9 fail to properly validate channel membership at the time of data retrieval which allows a deactivated user to learn team names they should not have access to via a race condition in the /common_teams API endpoint.. Mattermost Advisory ID: MMSA-2025-00549

PUBLISHED
Vendor
Mattermost
Product
Mattermost
Provider severity
LOW
Conflicts
0

CVE-2026-20794

Buffer overflow for the Intel(R) Data Center Graphics Driver for VMware ESXi software before version 2.0.2 within Ring 1: Device Drivers may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable local code execution. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the c

PUBLISHED
Vendor
n/a
Product
Intel(R) Data Center Graphics Driver for VMware ESXi software
Provider severity
CRITICAL
Conflicts
1

CVE-2026-20793

Unchecked return value for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentia

PUBLISHED
Vendor
n/a
Product
Intel(R) QAT software drivers for Windows
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20792

The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests. This absence of rate limiting may allow an attacker to conduct denial-of-service attacks by suppressing or misrouting legitimate charger telemetry, or conduct brute-force attacks to gain unauthorized access.

PUBLISHED
Vendor
Chargemap
Product
chargemap.com
Provider severity
HIGH
Conflicts
1

CVE-2026-20791

Charging station authentication identifiers are publicly accessible via web-based mapping platforms.

PUBLISHED
Vendor
Chargemap
Product
chargemap.com
Provider severity
MEDIUM
Conflicts
1

CVE-2026-2079

A flaw has been found in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. This vulnerability affects the function addMenu/updateMenu/deleteMenu of the file dataset\repos\warehouse\src\main\java\com\yeqifu\sys\controller\MenuController.java of the component Menu Management. Executing a manipulation can lead to improper authorization. The attack may be launched remotely. The exploit has been published and may be used. This product operates on a rolling release basis, ensuring conti

PUBLISHED
Vendor
yeqifu
Product
warehouse
Provider severity
MEDIUM
Conflicts
2

CVE-2026-20782

Buffer overflow for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (l

PUBLISHED
Vendor
n/a
Product
Intel(R) QAT software drivers for Windows
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20781

WebSocket endpoints lack proper authentication mechanisms, enabling attackers to perform unauthorized station impersonation and manipulate data sent to the backend. An unauthenticated attacker can connect to the OCPP WebSocket endpoint using a known or discovered charging station identifier, then issue or receive OCPP commands as a legitimate charger. Given that no authentication is required, this can lead to privilege escalation, unauthorized control of charging infrastructure, and corru

PUBLISHED
Vendor
CloudCharge
Product
cloudcharge.se
Provider severity
CRITICAL
Conflicts
1

CVE-2026-2078

A vulnerability was detected in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. This affects the function addPermission/updatePermission/deletePermission of the file dataset\repos\warehouse\src\main\java\com\yeqifu\sys\controller\PermissionController.java of the component Permission Management. Performing a manipulation results in improper authorization. The attack may be initiated remotely. The exploit is now public and may be used. This product uses a rolling release model to

PUBLISHED
Vendor
yeqifu
Product
warehouse
Provider severity
MEDIUM
Conflicts
2

CVE-2026-20779

Gitea versions from 1.5.0 before 1.26.3 have a TOTP single-use enforcement defect that allows a valid TOTP code to be accepted more than once across web two-factor authentication flows and the Basic Auth X-Gitea-OTP path.

PUBLISHED
Vendor
Gitea
Product
Gitea Open Source Git Server
Provider severity
HIGH
Conflicts
0

CVE-2026-20777

A heap-based buffer overflow vulnerability exists in the Nicolet WFT parsing functionality of The Biosig Project libbiosig 3.9.2 and Master Branch (db9a9a63). A specially crafted .wft file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

PUBLISHED
Vendor
The Biosig Project
Product
libbiosig
Provider severity
HIGH
Conflicts
0

CVE-2026-20772

Uncontrolled search path for some Intel(R) Connectivity Performance Suite software installers before version 50.25.1121.193 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires active user interaction. The potent

PUBLISHED
Vendor
n/a
Product
Intel(R) Connectivity Performance Suite software installers
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20771

Null pointer dereference for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confident

PUBLISHED
Vendor
n/a
Product
Intel(R) QAT software drivers for Windows
Provider severity
MEDIUM
Conflicts
1

CVE-2026-2077

A security vulnerability has been detected in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. Affected by this issue is the function addRole/updateRole/deleteRole of the file dataset\repos\warehouse\src\main\java\com\yeqifu\sys\controller\RoleController.java of the component Role Management Handler. Such manipulation leads to improper authorization. The attack can be launched remotely. The exploit has been disclosed publicly and may be used. This product does not use versioning.

PUBLISHED
Vendor
yeqifu
Product
warehouse
Provider severity
MEDIUM
Conflicts
2

CVE-2026-20767

Improper input validation for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact

PUBLISHED
Vendor
n/a
Product
Intel(R) QAT software drivers for Windows
Provider severity
HIGH
Conflicts
1

CVE-2026-20766

An out-of-bounds memory access vulnerability exists in specific firmware versions of Milesight AIOT cameras.

PUBLISHED
Vendor
Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight, Milesight
Product
TS4466-X4RWE, MS-Cxx63-PD, MS-CQxx72-xxxG1, MS-Cxx71-xxxPE, MS-Cxx62-xxxPE, MS-Nxxxx-xxC, MS-Cxx66-xxxG1, TS2866-X4TGPC, MS-Cxx65-PE, MS-Cxx41-xxxPE, SP111, MS-Cxx52-xxxPE, MS-C2966-X12RLVPC, TS2867-X5TPC, TS4466-RFIVPG1, MS-Nxxxx-xxT, MS-Nxxxx-xxE, MS-C5321-FPE, MS-CQxx68-xxxG1, TS4466-X4RPE, PMC8266-FGPE, MS-Cxx64-xPD, MS-C2966-RFLWPC, MS-CQxx31-xxxG1, TS8266-X4VPE, MS-Cxx72-xxxPE, TS4441-X36RE, PMC8266-FPE, MS-Cxx66-xxxPE, SC211, TS5366-X12VPE, TS8266-X4WE, MS-Cxx72-FIPKG1, TS2961-X12TPC, MS-Nxxxx-xxG, MS-C8477-HPG1, TS8266-X4RIPG1, MS-Cxx66-xxxGPE, MS-C2966-X12RLPC, MS-Cxx61-xxxPE, TS4441-X36RPE, MS-C2964-RFLPC, MS-Nxxxx-NxE, TS8266-X4RIVPG1, MS-Cxx76-PE, TS2866-X4TPC, MS-Cxx74-PA, MS-Cxx66-xxxxGOPC, TS2841-X36TPC/W, MS-Cxx72-RFIPKG1, TS4466-X4RIWG1, MS-C2972-RFLPC, TS5366-X12RIPG1, MS-Cxx75-xxPD, PM3322-E, TS2966-X12TPE, TS2866-X4TVPC, MS-Cxx72-xxxG1, TS2841-X36TPC, MS-Cxx83-xPD, MS-Nxxxx-xxH, MS-Cxx62-xxxG1, MS-Cxx66-FIPKG1, TS5510-GH, MS-C8477-PC, TS4466-X4RVPE, TS4466-X4RIPG1, TS4466-X4RIVPG1, MS-C5361-X12LPC, MS-Cxx67-xxxPE, TS5510-GVH, TS2966-X12TVPE, TS8266-X4PE, TS8266-RFIVPG1, TS8266-FPC/P, TS5366-X12PE, MS-Cxx66-RFIPKG1, MS-Cxx73-xPD, TS5511-GVH, TS8266-X4RIWG1, MS-C5366-X12LPC, MS-C5366-X12LVPC
Provider severity
HIGH
Conflicts
2

CVE-2026-20764

An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker to achieve remote code execution on the system by providing malicious input via the device hostname configuration which is later processed during system setup, resulting in remote code execution.

PUBLISHED
Vendor
Copeland, Copeland, Copeland
Product
Copeland XWEB 500B PRO, Copeland XWEB 300D PRO, Copeland XWEB 500D PRO
Provider severity
HIGH
Conflicts
1

CVE-2026-20761

A vulnerability exists in EnOcean SmartServer IoT version 4.60.009 and prior, which would allow remote attackers, in the LON IP-852 management messages, to send specially crafted IP-852 messages resulting in arbitrary OS command execution on the device.

PUBLISHED
Vendor
EnOcean Edge Inc
Product
SmartServer IoT
Provider severity
HIGH
Conflicts
0

CVE-2026-2076

A weakness has been identified in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. Affected by this vulnerability is the function addUser/updateUser/deleteUser of the file dataset\repos\warehouse\src\main\java\com\yeqifu\sys\controller\UserController.java of the component User Management Endpoint. This manipulation causes improper authorization. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks. Continious delive

PUBLISHED
Vendor
yeqifu
Product
warehouse
Provider severity
MEDIUM
Conflicts
2

CVE-2026-20759

OS Command Injection vulnerability exists in multiple Network Cameras TRIFORA 3 series provided by TOA Corporation, which may allow a logged-in user with the low("monitoring user") or higher privilege to execute an arbitrary OS command.

PUBLISHED
Vendor
TOA Corporation
Product
Multiple Network Cameras TRIFORA 3 series
Provider severity
HIGH
Conflicts
1

CVE-2026-20757

Improper Locking vulnerability (CWE-667) in Gallagher Morpho integration allows a privileged operator to cause a limited denial-of-service in the Command Centre Server. This issue affects Command Centre Server: 9.40 prior to vEL9.40.1976(MR1), 9.30 prior to vEL9.30.3382 (MR4), 9.20 prior to vEL9.20.3783 (MR6), 9.10 prior to vEL9.10.4647 (MR9), all versions of 9.00 and prior.

PUBLISHED
Vendor
Gallagher
Product
Command Centre Server
Provider severity
LOW
Conflicts
0

CVE-2026-20754

Improper conditions check in some firmware for some Intel(R) NPU Drivers within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (

PUBLISHED
Vendor
n/a
Product
Intel(R) NPU Drivers
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20753

Integer overflow in the UEFI firmware for the Slim Bootloader may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable local code execution. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (high) and availability (high) of the vulnerab

PUBLISHED
Vendor
n/a
Product
Slim Bootloader may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable local code execution. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (high) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (high), integrity (high) and availability (high) impacts.
Provider severity
HIGH
Conflicts
1

CVE-2026-20751

Out-of-bounds read for the Intel(R) Data Center Graphics Driver for VMware ESXi software before version 2.0.2 within Ring 1: Device Drivers may allow a denial of service. System software adversary with a privileged user combined with a low complexity attack may enable data exposure. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidential

PUBLISHED
Vendor
n/a
Product
Intel(R) Data Center Graphics Driver for VMware ESXi software
Provider severity
HIGH
Conflicts
1

CVE-2026-20750

An access control flaw has been discovered in Gitea. Gitea does not properly validate project ownership in organization project operations. A user with project write access in one organization may be able to modify projects belonging to a different organization.

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Gitea, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, Gitea Open Source Git Server, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines
Provider severity
CRITICAL
Conflicts
2

CVE-2026-2075

A security flaw has been discovered in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. Affected is the function saveRolePermission of the file dataset\repos\warehouse\src\main\java\com\yeqifu\sys\controller\RoleController.java of the component Role-Permission Binding Handler. The manipulation results in improper access controls. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks. This product takes the approach o

PUBLISHED
Vendor
yeqifu
Product
warehouse
Provider severity
MEDIUM
Conflicts
2

CVE-2026-20748

The WebSocket backend uses charging station identifiers to uniquely associate sessions but allows multiple endpoints to connect using the same session identifier. This implementation results in predictable session identifiers and enables session hijacking or shadowing, where the most recent connection displaces the legitimate charging station and receives backend commands intended for that station. This vulnerability may allow unauthorized users to authenticate as other users or enable a malicio

PUBLISHED
Vendor
Everon
Product
api.everon.io
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-20746

Virtual attribute handling in Ping Identity PingDirectory in affected versions allows only authorized users to exhaust java memory heap when recent login history is enabled and copying virtual attributes that reference ds-privilege-name values.

PUBLISHED
Vendor
Ping Identity
Product
PingDirectory
Provider severity
MEDIUM
Conflicts
0

CVE-2026-20744

The charging station websocket endpoint accepts connections without proper authentication, which could lead to privilege escalation.

PUBLISHED
Vendor
Hydro-Québec
Product
Le Circuit Electrique charging station backend
Provider severity
CRITICAL
Conflicts
1

CVE-2026-20742

An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker to achieve remote code execution on the system by injecting malicious input into requests sent to the templates route.

PUBLISHED
Vendor
Copeland, Copeland, Copeland
Product
Copeland XWEB 300D PRO, Copeland XWEB 500D PRO, Copeland XWEB 500B PRO
Provider severity
HIGH
Conflicts
1

CVE-2026-2074

A vulnerability was identified in O2OA up to 9.0.0. This impacts an unknown function of the file /x_program_center/jaxrs/mpweixin/check of the component HTTP POST Request Handler. The manipulation leads to xml external entity reference. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
n/a
Product
O2OA
Provider severity
MEDIUM
Conflicts
2

CVE-2026-20738

Untrusted pointer dereference for some Intel(R) QuickAssist Adapter 8960 software before version 1.13 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may i

PUBLISHED
Vendor
n/a
Product
Intel(R) QuickAssist Adapter 8960 software
Provider severity
HIGH
Conflicts
1

CVE-2026-20736

Gitea does not properly verify repository context when deleting attachments. A user who previously uploaded an attachment to a repository may be able to delete it after losing access to that repository by making the request through a different repository they can access.

PUBLISHED
Vendor
Red Hat, Red Hat, Gitea, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
OpenShift Pipelines, OpenShift Pipelines, Gitea Open Source Git Server, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines, OpenShift Pipelines
Provider severity
HIGH
Conflicts
2

CVE-2026-20733

Charging station authentication identifiers are publicly accessible via web-based mapping platforms.

PUBLISHED
Vendor
CloudCharge
Product
cloudcharge.se
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20732

A vulnerability exists in an undisclosed BIG-IP Configuration utility page that may allow an attacker to spoof error messages.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

PUBLISHED
Vendor
F5
Product
BIG-IP
Provider severity
LOW
Conflicts
1

CVE-2026-20730

A vulnerability exists in BIG-IP Edge Client and browser VPN clients on Windows that may allow attackers to gain access to sensitive information.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

PUBLISHED
Vendor
F5
Product
BIG-IP Edge Client
Provider severity
LOW
Conflicts
1

CVE-2026-2073

A vulnerability was determined in itsourcecode School Management System 1.0. This affects an unknown function of the file /ramonsys/user/index.php. Executing a manipulation of the argument ID can lead to sql injection. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.

PUBLISHED
Vendor
itsourcecode
Product
School Management System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-20726

An out-of-bounds read vulnerability exists in the EMF functionality of Canva Affinity. By using a specially crafted EMF file, an attacker could exploit this vulnerability to perform an out-of-bounds read, potentially leading to the disclosure of sensitive information.

PUBLISHED
Vendor
Canva
Product
Affinity
Provider severity
MEDIUM
Conflicts
0

CVE-2026-2072

Cross-Site Scripting vulnerability in Hitachi Infrastructure Analytics Advisor (Analytics probe component), Hitachi Ops Center Analyzer.This issue affects Hitachi Infrastructure Analytics Advisor:; Hitachi Ops Center Analyzer: from 10.0.0-00 before 11.0.5-00.

PUBLISHED
Vendor
Hitachi, Hitachi
Product
Hitachi Infrastructure Analytics Advisor, Hitachi Ops Center Analyzer
Provider severity
HIGH
Conflicts
1

CVE-2026-20719

Mattermost versions 11.4.x <= 11.4.0, 11.3.x <= 11.3.1, 11.2.x <= 11.2.3, 10.11.x <= 10.11.11 fail to prevent rendering of external SVGs on link embeds which allows unauthenticated users to crash the Mattermost webapp and desktop app via creating an issue or PR on GitHub.. Mattermost Advisory ID: MMSA-2026-00595

PUBLISHED
Vendor
Mattermost
Product
Mattermost
Provider severity
MEDIUM
Conflicts
0

CVE-2026-20718

Incorrect default permissions for some Intel(R) NPU Driver software installers before version 32.0.100.4511 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires active user interaction. The potential vulnerabilit

PUBLISHED
Vendor
n/a
Product
Intel(R) NPU Driver software installers
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20717

Improper input validation for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confiden

PUBLISHED
Vendor
n/a
Product
Intel(R) QAT software drivers for Windows
Provider severity
MEDIUM
Conflicts
1

CVE-2026-20714

Out-of-bounds write for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a escalation of privilege. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the co

PUBLISHED
Vendor
n/a
Product
Intel(R) QAT software drivers for Windows
Provider severity
HIGH
Conflicts
1

CVE-2026-20711

Cross-site scripting vulnerability exists in E-mail function of Cybozu Garoon 5.0.0 to 6.0.3, which may allow an attacker to reset arbitrary users’ passwords.

PUBLISHED
Vendor
Cybozu, Inc.
Product
Cybozu Garoon
Provider severity
MEDIUM
Conflicts
1

CVE-2026-2071

A vulnerability was found in UTT 进取 520W 1.7.7-180627. The impacted element is the function strcpy of the file /goform/formP2PLimitConfig. Performing a manipulation of the argument except results in buffer overflow. The attack is possible to be carried out remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
UTT
Product
进取 520W
Provider severity
HIGH
Conflicts
2

CVE-2026-20709

Use of Default Cryptographic Key in the hardware for some Intel(R) Pentium(R) Processor Silver Series, Intel(R) Celeron(R) Processor J Series, Intel(R) Celeron(R) Processor N Series may allow an escalation of privilege. Hardware reverse engineer adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via physical access when attack requirements are present with special internal knowledge and requires no user in

PUBLISHED
Vendor
n/a
Product
Intel(R) Pentium(R) Processor Silver Series, Intel(R) Celeron(R) Processor J Series, Intel(R) Celeron(R) Processor N Series may allow an escalation of privilege. Hardware reverse engineer adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via physical access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (high), integrity (high) and availability (none) impacts.
Provider severity
MEDIUM
Conflicts
2