Vulnerabilities
Summary — last 7 days
New vulnerabilities2,772▲ 13 vs. last week
Critical / high1,288▼ 242 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)230▲ 212 vs. last week
403,689 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Analyzed | Low (3.1) | 0.22% | — | Vllm | 10/5/2026 | 10/7/2026 | vLLM is an inference and serving engine for large language models. Prior to 0.30.0, Harmony tool continuations submitted through "POST /v1/responses" requests rebuild the next-turn engine input without preserving the cache_salt value, placing the continuation prefix in the global unsalted cache namespace even when the… | |
| Deferred | Medium (5.5) | 0.26% | — | Anisha Online Appointment Booking SystemAI | 10/5/2026 | 10/6/2026 | A vulnerability was identified in girishsaraf Online-Appointment-Booking-System up to f427b4757128ca253d33d0cc4e87bbb9c999a4d5. This issue affects the function mysqli_query of the file locateus.php of the component Doctor Search Endpoint. The manipulation of the argument doctorname leads to sql injection. Remote… | |
| Deferred | Medium (5.5) | 0.33% | — | Anisha Online Appointment Booking SystemAI | 10/5/2026 | 10/6/2026 | A vulnerability was determined in girishsaraf Online-Appointment-Booking-System up to f427b4757128ca253d33d0cc4e87bbb9c999a4d5. This vulnerability affects unknown code of the file get_town.php of the component AJAX Endpoint. Executing a manipulation of the argument countryid/townid/cid/didval/cidval can lead to sql… | |
| Awaiting Analysis | High (8.2) | 0.36% | — | The-guild Graphql-toolsAI | 10/5/2026 | 10/6/2026 | GraphQL Tools provides utilities for building, stitching, and mocking GraphQL schemas. Prior to 12.0.1, the GraphQL Tools utils package's mergeDeep function follows inherited properties while recursively merging source objects and does not exclude __proto__, constructor, or prototype keys. An unauthenticated GraphQL… | |
| Awaiting Analysis | Medium (6.9) | 0.15% | — | Moby BuildkitAI | 10/5/2026 | 10/6/2026 | A malicious frontend can submit an LLB definition that causes buildkitd to panic and terminate, interrupting all builds running on that daemon. | |
| Awaiting Analysis | Medium (5.8) | 0.10% | — | — | 10/5/2026 | 10/6/2026 | When proxy networking with CA injection is enabled, a build can modify its CA bundle before cleanup. This may cause cleanup to block, operate outside the build rootfs, or fail without failing the build. | |
| Awaiting Analysis | Critical (9.3) | 0.24% | — | Opensis ClassicAI | 10/5/2026 | 10/6/2026 | openSIS Classic 9.3 allows an authenticated user with the built-in teacher role can select an arbitrary staff record through staff_id and cause the School Information update path to reset that selected account's password. | |
| Awaiting Analysis | Critical (9.3) | 1.8% | 💥 Exploit | Atlassian Bitbucket Data CenterAIAtlassian Confluence Data CenterAIAtlassian Jira Service Management Data CenterAIAtlassian Jira Software Data CenterAI+4 | 10/5/2026 | 10/7/2026 | This is a vulnerability in Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software Data Center, Bamboo Data Center. Crowd Data Center, Crucible and Fisheye. This Arbitrary File Access vulnerability allows an unauthenticated attacker to access specific files within the web… | |
| Undergoing Analysis | Medium (6.9) | 0.37% | — | DoclingAI | 10/5/2026 | 10/6/2026 | Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.107.0 until 2.120.3, docling/backend/opendocument_backend.py uses the xlink:href attribute value of a draw:image element as a filesystem path when the referenced part is not found in… | |
| Analyzed | High (7.5) | 0.30% | — | Docling | 10/5/2026 | 10/7/2026 | Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.82.0 until 2.118.1, HTMLBackendOptions(render_page=True) permits file URLs because HTMLDocumentBackend._get_browser_request_block_reason does not enforce the enable_local_fetch setting… | |
| Modified | Medium (6.5) | 0.27% | — | Docling | 10/5/2026 | 10/8/2026 | Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.0.0 until 2.131.0, the HTML, JATS, OpenDocument spreadsheet, and BoxNote backends, including docling/backend/html_backend.py, docling/backend/jats_backend.py, and… | |
| Analyzed | Medium (4.3) | 0.22% | — | Docling | 10/5/2026 | 10/7/2026 | Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.16.0 until 2.131.0, the InputFormat.JSON_DOCLING backend in docling/backend/json/docling_json_backend.py validates serialized DoclingDocument input without rejecting picture image… | |
| Analyzed | Medium (4.3) | 0.23% | — | Docling | 10/5/2026 | 10/7/2026 | Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.45.0 until 2.131.0, METS-GBS format detection in docling/datamodel/document.py and the backend in docling/backend/mets_gbs_backend.py call tarfile.TarFile.getmembers() before enforcing… | |
| Analyzed | Medium (5.3) | 0.22% | — | Docling | 10/5/2026 | 10/7/2026 | Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.83.0 until 2.131.0, the KServeV2OcrModel class defined in docling/models/stages/ocr/kserve_v2_ocr_model.py sends page images to its configured endpoint without checking the… | |
| Analyzed | High (7.8) | 0.12% | — | Docling | 10/5/2026 | 10/7/2026 | Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.27.0 until 2.131.0, Docling plugin factories in docling/models/factories/base_factory.py call load_setuptools_entrypoints() before applying the allow_external_plugins setting, so every… | |
| Analyzed | High (8.8) | 0.34% | — | Docling | 10/5/2026 | 10/7/2026 | Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.94.0 until 2.132.0, callers that opt into LatexBackendOptions(tikz_engine="tectonic") invoke docling/backend/latex/engines/tectonic.py to compile an untrusted TikZ body and document… | |
| Analyzed | Medium (5.8) | 0.19% | — | Docling | 10/5/2026 | 10/8/2026 | Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.91.0 until 2.132.0, validate_url_safety in docling/backend/utils/image_resource_loader.py validates a hostname with a single IPv4 lookup and then allows the HTTP client to resolve and… | |
| Analyzed | Medium (5.3) | 0.23% | — | Docling | 10/5/2026 | 10/7/2026 | Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.95.0 until 2.132.0, the HTML image resource loader in docling/backend/utils/image_resource_loader.py forwards headers configured through the HTMLBackendOptions.headers setting to every… | |
| Deferred | Medium (5.5) | 0.26% | — | Anisha Online Appointment Booking SystemAI | 10/5/2026 | 10/8/2026 | A vulnerability was found in girishsaraf Online-Appointment-Booking-System up to f427b4757128ca253d33d0cc4e87bbb9c999a4d5. This affects the function mysqli_query of the file Admin/mlogin.php of the component Login Handler. Performing a manipulation of the argument uname/pass results in sql injection. The attack may be… | |
| Awaiting Analysis | Low (2.3) | 0.15% | — | Mongodb Controllers FOR KubernetesAI | 10/5/2026 | 10/6/2026 | In MongoDB Controllers for Kubernetes, insufficient validation of Ops Manager backup configuration may allow a user who can modify an OpsManager custom resource to cause unintended administrative changes in Ops Manager. This affects deployments using Enterprise Ops Manager backup reconciliation. | |
| Awaiting Analysis | Medium (6.9) | 0.29% | — | Docker BuildxAI | 10/5/2026 | 10/6/2026 | Docker Buildx Bake does not request the expected fs.read approval for certain filesystem inputs. An untrusted Bake definition can expose a readable file through a pathless secret whose ID is interpreted as a client-side pathname, or consume a local OCI image layout outside the project after entitlement validation… | |
| Awaiting Analysis | Medium (5.4) | 0.13% | — | AMD Versal Adaptive SOCAI | 10/5/2026 | 10/6/2026 | In AMD Versal™ Adaptive SoC devices, insufficient boundary checks in USB boot mode—when enabled through board modifications—could allow crafted images to trigger a buffer overflow and overwrite an active function pointer, which may result in arbitrary code execution during boot process. This condition could lead to… | |
| Awaiting Analysis | High (7.5) | 0.13% | — | AMD Zynq Ultrascale Plus MpsocAIAMD RfsocAI | 10/5/2026 | 10/6/2026 | Insufficient boundary validation in the USB boot mode implementation of AMD Zynq™ UltraScale+ MPSoC and RFSoC devices could allow unbounded Device Firmware Upgrade (DFU) download requests to overflow the DDR receive buffer into FSBL memory, potentially resulting in unauthorized code execution during the boot process.… | |
| Awaiting Analysis | Medium (6) | 0.25% | — | — | 10/5/2026 | 10/6/2026 | A build step for a Git source, crafted in a specific way, can bypass some policy validation rules. A malicious build definition can make the repository look like it is coming from a different remote URL than it really is when Git clone is happening. If policy is doing more stricter validation, for example based on… | |
| Awaiting Analysis | Medium (6.8) | 0.14% | — | HP ThinproAI | 10/5/2026 | 10/6/2026 | Previous versions of HP ThinPro (prior to HP ThinPro 8.1 SP10) could potentially contain security vulnerabilities. HP has released HP ThinPro 8.1 SP10, which includes updates to mitigate potential vulnerabilities. Previous versions of HP ThinPro (prior to HP ThinPro 9 SP3) could potentially contain security… |