Vulnerabilities
Summary — last 7 days
New vulnerabilities2,619▼ 461 vs. last week
Critical / high1,277▼ 72 vs. last week
New active exploitation (KEV)5▼ 3 vs. last week
Unscored (no CVSS)235▼ 274 vs. last week
1 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Analyzed | High (7.5) | 0.25% | — | Junkurihara Httpsig-hyper | 2/19/2026 | 6/17/2026 | httpsig-hyper is a hyper extension for http message signatures. An issue was discovered in `httpsig-hyper` prior to version 0.0.23 where Digest header verification could incorrectly succeed due to misuse of Rust's `matches!` macro. Specifically, the comparison `if matches!(digest, _expected_digest)` treated… |