1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Overview
InstallPricingEnterpriseAffiliatesDocsOpen App
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 10, 2026, 12:25 AM 16,365 active 1,443 known exploited

Catalog summary

16,365

Active CVEs

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Aug 10, 2026, 12:25 AM 16,365 active 1,443 known exploited

Catalog summary

16,365

Active CVEs

8,461

Critical + high

1,443

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 4,251–4,300 of 16,365 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-51926High
    CISA ADP Vulnrichment
    CVSS 7.5
    n/a/n/ageneric
    PublishedJul 9, 2026First seen at HOL Jul 10, 2026Updated Jul 10, 2026View HOL analysis
  2. CVE-2026-15135High
    code-projects Online Food Order System edit_food_items.php sql injection
    CVSS 7.3
    code-projects/Online Food Order Systemgeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026View HOL analysis
  3. CVE-2026-15134High
    CodeAstro Simple Online Leave Management System index.php sql injection
    CVSS 7.3
    CodeAstro/Simple Online Leave Management Systemgeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026View HOL analysis
  4. CVE-2026-15131Medium
    CISA ADP Vulnrichment
    CVSS 4.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  5. CVE-2026-15107High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  6. CVE-2026-15130Medium
    CISA ADP Vulnrichment
    CVSS 4.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  7. CVE-2026-15128Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  8. CVE-2026-15127Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  9. CVE-2026-15126High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  10. CVE-2026-15125High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  11. CVE-2026-15124Medium
    CISA ADP Vulnrichment
    CVSS 4.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  12. CVE-2026-15123High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  13. CVE-2026-15122High
    CISA ADP Vulnrichment
    CVSS 8.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  14. CVE-2026-15121High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  15. CVE-2026-15120High
    CISA ADP Vulnrichment
    CVSS 8.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  16. CVE-2026-15119High
    CISA ADP Vulnrichment
    CVSS 8.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  17. CVE-2026-15118High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  18. CVE-2026-15117High
    CISA ADP Vulnrichment
    CVSS 7.5
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  19. CVE-2026-15116High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  20. CVE-2026-15115Low
    CISA ADP Vulnrichment
    CVSS 3.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  21. CVE-2026-15114High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  22. CVE-2026-15113Critical
    CISA ADP Vulnrichment
    CVSS 9.6
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  23. CVE-2026-15111High
    CISA ADP Vulnrichment
    CVSS 7.5
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  24. CVE-2026-15110High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  25. CVE-2026-15109Medium
    CISA ADP Vulnrichment
    CVSS 6.5
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  26. CVE-2026-15108Medium
    CISA ADP Vulnrichment
    CVSS 4.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  27. CVE-2026-15133High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  28. CVE-2026-15132High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  29. CVE-2026-15129High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  30. CVE-2026-15112High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  31. CVE-2026-59723High
    Cline: Cross-Origin WebSocket Hijacking in Cline Hub Dashboard (`/browser` endpoint)
    CVSS 8.8
    cline/clinegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026View HOL analysis
  32. CVE-2026-54499High
    Stanza: Remote Code Execution via Unsafe Pickle Deserialization in Model Loaders
    CVSS 7.5
    stanfordnlp/stanza, stanzageneric · pip
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 13, 2026 Fix availableView HOL analysis
  33. CVE-2026-54782Critical
    CoreWCF: Authentication bypass in CoreWCF SAML 1.1 / 2.0 token signature validation
    CVSS 10.0
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  34. CVE-2026-54781High
    CoreWCF: SAML SubjectConfirmation methods and holder-of-key proof keys are not enforced
    CVSS 7.4
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  35. CVE-2026-54784High
    CoreWCF: SPNEGO SecurityContextToken proof key wrapped without confidentiality
    CVSS 7.4
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  36. CVE-2026-54774High
    CoreWCF: SamlSerializer skips SignatureValue verification when SAML signing token is not an X.509 certificate
    CVSS 7.4
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  37. CVE-2026-54783High
    CoreWCF: XML Signature Wrapping in WS-Security endorsing/supporting signature verification allows replay of captured signed messages
    CVSS 7.4
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  38. CVE-2026-15105Medium
    davenardella snap7 ReadVar Request s7_server.cpp PerformFunctionRead out-of-bounds write
    CVSS 6.3
    davenardella/snap7generic
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Aug 1, 2026View HOL analysis
  39. CVE-2026-54780Low
    CoreWCF: WS-Security Reference DigestMethod Algorithm-Suite Bypass
    CVSS 3.7
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  40. CVE-2026-54775Medium
    CoreWCF: Kafka consume pump halts permanently on a Kafka tombstone (null-value record), causing persistent endpoint denial of service.
    CVSS 6.5
    CoreWCF.Kafka, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  41. CVE-2026-54778Medium
    CoreWCF: UnixDomainSocket Non-Reentrant POSIX Identity Resolution
    CVSS 6.2
    CoreWCF.UnixDomainSocket, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  42. CVE-2026-54773Medium
    CoreWCF: WS-Security signature substitution via document-wide Signature lookup
    CVSS 5.9
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  43. CVE-2026-54779Medium
    CoreWCF: SAML token replay protection is inoperative
    CVSS 5.9
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  44. CVE-2026-54772High
    CoreWCF: Pre-authentication infinite-loop CPU exhaustion in CoreWCF net.tcp / net.pipe / net.uds framing handshake
    CVSS 7.5
    CoreWCF.NetFramingBase, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  45. CVE-2026-54776Medium
    CoreWCF: Unix Domain Socket PosixIdentity transport accepts connections that skip the security upgrade
    CVSS 4.4
    CoreWCF.UnixDomainSocket, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  46. CVE-2026-54777Medium
    CoreWCF NetNamedPipe transport accepts attach to a pre-existing named pipe instance
    CVSS 6.5
    CoreWCF.NetNamedPipe, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  47. CVE-2026-15168Low
    Use of Uninitialized Variable in Wireshark
    CVSS 2.5
    Wireshark Foundation/Wiresharkgeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  48. CVE-2026-5922Medium
    Poly Voice – Potential Unauthorized Modification of WebUI using XSS Attack
    CVSS 5.9
    HP Inc./Poly CCX, HP Inc./Poly Edge E +1generic
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  49. CVE-2026-55877Medium
    Symfony UX: XSS in symfony/ux-icons via unsanitized SVG content in local files and Iconify on-demand responses
    CVSS 6.1
    symfony/ux, symfony/ux-iconscomposer · generic
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  50. CVE-2026-55878High
    Symfony: Path Traversal in symfony/ux-toolkit Allows Arbitrary File Write and Read via Crafted Recipe Manifest
    CVSS 7.8
    symfony/ux, symfony/ux-toolkitcomposer · generic
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
Page 86 of 328
Previous8485868788Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard

8,461

Critical + high

1,443

Known exploited

12

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 4,251–4,300 of 16,365 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-51926High
    CISA ADP Vulnrichment
    CVSS 7.5
    n/a/n/ageneric
    PublishedJul 9, 2026First seen at HOL Jul 10, 2026Updated Jul 10, 2026View HOL analysis
  2. CVE-2026-15135High
    code-projects Online Food Order System edit_food_items.php sql injection
    CVSS 7.3
    code-projects/Online Food Order Systemgeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026View HOL analysis
  3. CVE-2026-15134High
    CodeAstro Simple Online Leave Management System index.php sql injection
    CVSS 7.3
    CodeAstro/Simple Online Leave Management Systemgeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026View HOL analysis
  4. CVE-2026-15131Medium
    CISA ADP Vulnrichment
    CVSS 4.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  5. CVE-2026-15107High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  6. CVE-2026-15130Medium
    CISA ADP Vulnrichment
    CVSS 4.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  7. CVE-2026-15128Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  8. CVE-2026-15127Medium
    CISA ADP Vulnrichment
    CVSS 6.1
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  9. CVE-2026-15126High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  10. CVE-2026-15125High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  11. CVE-2026-15124Medium
    CISA ADP Vulnrichment
    CVSS 4.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  12. CVE-2026-15123High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  13. CVE-2026-15122High
    CISA ADP Vulnrichment
    CVSS 8.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  14. CVE-2026-15121High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  15. CVE-2026-15120High
    CISA ADP Vulnrichment
    CVSS 8.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  16. CVE-2026-15119High
    CISA ADP Vulnrichment
    CVSS 8.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  17. CVE-2026-15118High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  18. CVE-2026-15117High
    CISA ADP Vulnrichment
    CVSS 7.5
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  19. CVE-2026-15116High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  20. CVE-2026-15115Low
    CISA ADP Vulnrichment
    CVSS 3.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  21. CVE-2026-15114High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  22. CVE-2026-15113Critical
    CISA ADP Vulnrichment
    CVSS 9.6
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  23. CVE-2026-15111High
    CISA ADP Vulnrichment
    CVSS 7.5
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  24. CVE-2026-15110High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  25. CVE-2026-15109Medium
    CISA ADP Vulnrichment
    CVSS 6.5
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  26. CVE-2026-15108Medium
    CISA ADP Vulnrichment
    CVSS 4.3
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  27. CVE-2026-15133High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  28. CVE-2026-15132High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  29. CVE-2026-15129High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  30. CVE-2026-15112High
    CISA ADP Vulnrichment
    CVSS 8.8
    Google/Chromegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  31. CVE-2026-59723High
    Cline: Cross-Origin WebSocket Hijacking in Cline Hub Dashboard (`/browser` endpoint)
    CVSS 8.8
    cline/clinegeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 10, 2026View HOL analysis
  32. CVE-2026-54499High
    Stanza: Remote Code Execution via Unsafe Pickle Deserialization in Model Loaders
    CVSS 7.5
    stanfordnlp/stanza, stanzageneric · pip
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 13, 2026 Fix availableView HOL analysis
  33. CVE-2026-54782Critical
    CoreWCF: Authentication bypass in CoreWCF SAML 1.1 / 2.0 token signature validation
    CVSS 10.0
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  34. CVE-2026-54781High
    CoreWCF: SAML SubjectConfirmation methods and holder-of-key proof keys are not enforced
    CVSS 7.4
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  35. CVE-2026-54784High
    CoreWCF: SPNEGO SecurityContextToken proof key wrapped without confidentiality
    CVSS 7.4
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  36. CVE-2026-54774High
    CoreWCF: SamlSerializer skips SignatureValue verification when SAML signing token is not an X.509 certificate
    CVSS 7.4
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  37. CVE-2026-54783High
    CoreWCF: XML Signature Wrapping in WS-Security endorsing/supporting signature verification allows replay of captured signed messages
    CVSS 7.4
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  38. CVE-2026-15105Medium
    davenardella snap7 ReadVar Request s7_server.cpp PerformFunctionRead out-of-bounds write
    CVSS 6.3
    davenardella/snap7generic
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Aug 1, 2026View HOL analysis
  39. CVE-2026-54780Low
    CoreWCF: WS-Security Reference DigestMethod Algorithm-Suite Bypass
    CVSS 3.7
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  40. CVE-2026-54775Medium
    CoreWCF: Kafka consume pump halts permanently on a Kafka tombstone (null-value record), causing persistent endpoint denial of service.
    CVSS 6.5
    CoreWCF.Kafka, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  41. CVE-2026-54778Medium
    CoreWCF: UnixDomainSocket Non-Reentrant POSIX Identity Resolution
    CVSS 6.2
    CoreWCF.UnixDomainSocket, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  42. CVE-2026-54773Medium
    CoreWCF: WS-Security signature substitution via document-wide Signature lookup
    CVSS 5.9
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  43. CVE-2026-54779Medium
    CoreWCF: SAML token replay protection is inoperative
    CVSS 5.9
    CoreWCF.Primitives, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  44. CVE-2026-54772High
    CoreWCF: Pre-authentication infinite-loop CPU exhaustion in CoreWCF net.tcp / net.pipe / net.uds framing handshake
    CVSS 7.5
    CoreWCF.NetFramingBase, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  45. CVE-2026-54776Medium
    CoreWCF: Unix Domain Socket PosixIdentity transport accepts connections that skip the security upgrade
    CVSS 4.4
    CoreWCF.UnixDomainSocket, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  46. CVE-2026-54777Medium
    CoreWCF NetNamedPipe transport accepts attach to a pre-existing named pipe instance
    CVSS 6.5
    CoreWCF.NetNamedPipe, CoreWCF/CoreWCFgeneric · nuget
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  47. CVE-2026-15168Low
    Use of Uninitialized Variable in Wireshark
    CVSS 2.5
    Wireshark Foundation/Wiresharkgeneric
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  48. CVE-2026-5922Medium
    Poly Voice – Potential Unauthorized Modification of WebUI using XSS Attack
    CVSS 5.9
    HP Inc./Poly CCX, HP Inc./Poly Edge E +1generic
    PublishedJul 8, 2026First seen at HOL Jul 9, 2026Updated Jul 9, 2026 Fix availableView HOL analysis
  49. CVE-2026-55877Medium
    Symfony UX: XSS in symfony/ux-icons via unsanitized SVG content in local files and Iconify on-demand responses
    CVSS 6.1
    symfony/ux, symfony/ux-iconscomposer · generic
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
  50. CVE-2026-55878High
    Symfony: Path Traversal in symfony/ux-toolkit Allows Arbitrary File Write and Read via Crafted Recipe Manifest
    CVSS 7.8
    symfony/ux, symfony/ux-toolkitcomposer · generic
    PublishedJul 8, 2026First seen at HOL Jun 19, 2026Updated Jul 10, 2026 Fix availableView HOL analysis
Page 86 of 328
Previous8485868788Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard