Vulnerabilities
Summary — last 7 days
New vulnerabilities2,604▼ 298 vs. last week
Critical / high1,343▲ 83 vs. last week
New active exploitation (KEV)6▼ 5 vs. last week
Unscored (no CVSS)64▼ 463 vs. last week
3 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Deferred | High (7.5) | 0.91% | — | Talpa HibrowserAI | 8/5/2026 | 9/9/2026 | Path Traversal in Download File Feature in com.talpa.hibrowser 2.23.1.1 on Android allows arbitrary file write via directory traversal sequences in the filename. | |
| Modified | Critical (9.8) | 0.76% | — | Indibrowser Indi Browser | 12/27/2023 | 6/17/2026 | An issue in Indi Browser (aka kvbrowser) v.12.11.23 allows an attacker to bypass intended access restrictions via interaction with the com.example.gurry.kvbrowswer.webview component. | |
| Modified | Medium (6.8) | 2.3% | — | Net4visions Ibrowser | 11/26/2012 | 6/16/2026 | Directory traversal vulnerability in ibrowser.php in the CMScout 2.09 IBrowser TinyMCE Plugin 1.4.1, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the lang parameter. NOTE: some of these details are obtained from third party information. |