Posts of last 24 hours
Currently trending CVE - Hype Score: 6 - As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered ...
https://cvemon.intruder.io/cves/CVE-2026-20317
Currently trending CVE - Hype Score: 8 - In Splunk MCP Server app versions below 1.2.1, a user who holds the "admin" Splunk role could execute arbitrary commands on the underlying operating system. The vulnerability is possible because of missing input validation in the app's credential management component, which ...
https://cvemon.intruder.io/cves/CVE-2026-76404
Currently trending CVE - Hype Score: 6 - As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Workload engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered ...
https://cvemon.intruder.io/cves/CVE-2026-20315
Currently trending CVE - Hype Score: 11 - Ray is an AI compute engine. Prior to version 2.52.0, developers working with Ray as a development tool can be exploited via a critical RCE vulnerability exploitable via Firefox and Safari. This vulnerability is due to an insufficient guard against browser-based attacks, as the ...
https://cvemon.intruder.io/cves/CVE-2025-62593
Currently trending CVE - Hype Score: 23 - Use after free in WebGL in Google Chrome on Android prior to 148.0.7778.216 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
https://cvemon.intruder.io/cves/CVE-2026-9876
Currently trending CVE - Hype Score: 33 - An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.
https://cvemon.intruder.io/cves/CVE-2026-65400
Currently trending CVE - Hype Score: 35 - Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network.
https://cvemon.intruder.io/cves/CVE-2026-33824
Currently trending CVE - Hype Score: 33 - VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to vCenter may exploit this issue to execute arbitrary code.
https://cvemon.intruder.io/cves/CVE-2026-59310
Currently trending CVE - Hype Score: 33 - Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network.
https://cvemon.intruder.io/cves/CVE-2026-55040
Currently trending CVE - Hype Score: 23 - Memory corruption while rendering graphics using Adreno GPU drivers in Chrome.
https://cvemon.intruder.io/cves/CVE-2025-27038