Trending CVE

CVEs that are currently receiving attention.
9.2

CVE-2026-42055

Media report
  • EPSS 0.64%
  • Published 17.06.2026 14:04:32
  • Last modified 17.06.2026 14:04:32

NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_proxy_v2_module and ngx_http_grpc_module modules. This vulnerability exists when the proxy_http_version to 2 or grpc_pass directives are used to proxy HTTP/2 traffic, the ignore_in...

9.2

CVE-2026-42530

Media report
  • EPSS 0.76%
  • Published 17.06.2026 14:04:32
  • Last modified 17.06.2026 14:04:32

NGINX Open Source has a vulnerability in the ngx_http_v3_module module. When NGINX Open Source is configured to use the HTTP/3 QUIC module, a remote unauthenticated attacker along with conditions beyond their control can use a specially crafted HTTP/...

7.8

CVE-2026-50656 (RoguePlanet)

Media report
  • EPSS 0.34%
  • Published 16.06.2026 18:01:33
  • Last modified 16.06.2026 20:42:25

Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "RoguePlanet ". We are working to provide a high quality security update that addresses this vulnerabil...

10

CVE-2026-48907

Warning Media report
  • EPSS 0.11%
  • Published 05.06.2026 07:31:30
  • Last modified 16.06.2026 20:16:46

A vulnerability in the JCE editor extension for Joomla allows the creation of new editor profiles for unauthenticated users, ultimately resulting in PHP code upload and execution.