Vulnerabilities

Summary — last 7 days

New vulnerabilities2,782▼ 316 vs. last week
Critical / high1,289▼ 234 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)214▼ 107 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedHigh (7.5)0.73%—Oasis-open Oasis Digital Signature Services8/24/20206/17/2026
In OASIS Digital Signature Services (DSS) 1.0, an attacker can control the validation outcome (i.e., trigger either a valid or invalid outcome for a valid or invalid signature) via a crafted XML signature, when the InlineXML option is used. This defeats the expectation of non-repudiation.
Orbitaley — Vulnerabilities