Trending CVE

CVEs that are currently receiving attention.
8.1

CVE-2026-18577

Warning Media report
  • EPSS 1.48%
  • Published 02.08.2026 22:06:18
  • Last modified 04.08.2026 14:27:12

An incomplete patch for CVE-2026-18556 allows for authentication bypass and account takeover in N-central Versions through 2026.3.1

9.5

CVE-2026-66066

Media report
  • EPSS 1.7%
  • Published 30.07.2026 18:32:11
  • Last modified 04.08.2026 05:16:40

Action Pack is a framework for handling and responding to web requests. In versions prior to 7.2.3.2, 8.0.5.1 and 8.1.3.1, Active Storage does not disable libvips operations marked unsafe for untrusted content, allowing a crafted upload to invoke suc...