| CVE ID | Title | Severity | References | ||||
|---|---|---|---|---|---|---|---|
| Improper authentication in Azure Key Vault allows an unauthorized attacker to elevate privileges over a network. | CRITICAL | 10.0v3.1 | 100 | 0.7% | — | 2026. 07. 24. |
| CVE-2026-58275 | Missing authorization in Azure DNS allows an unauthorized attacker to elevate privileges over a network. | CRITICAL | 10.0v3.1 | 100 | 0.7% | — | 2026. 07. 24. |
| CVE-2026-56191 | Improper authentication in Microsoft Exchange Online allows an unauthorized attacker to perform tampering over a network. | CRITICAL | 10.0v3.1 | 100 | 0.7% | — | 2026. 07. 24. |
| CVE-2026-42933 | Pronetiqs IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which could allow an attacker to use an active proxy, which would bypass OT segmentation. | CRITICAL | 10.0v4.0 | 100 | 0.3% | — | 2026. 07. 23. |
| CVE-2025-71389 | Cal.com (calcom/cal.diy) before 5.9.9 is vulnerable to unauthenticated remote code execution because it bundles a version of Next.js whose React Server Components (RSC) request handling deserializes attacker-controlled input. A remote attacker can send a crafted RSC request to the server and cause arbitrary code to be executed during server-side processing, without authentication or user interaction. The flaw derives from the upstream Next.js vulnerability CVE-2025-55182 and is resolved in 5.9.9 | CRITICAL | 10.0v4.0 | 100 | 0.9% | — | 2026. 07. 23. |
| CVE-2026-6516 | Zohocorp ManageEngine ADAudit Plus versions before 8606 are affected by Unauthenticated Remote code execution due to the vulnerable agent API. | CRITICAL | 10.0v3.1 | 100 | 4.7% | — | 2026. 07. 23. |
| CVE-2026-47668 | DbGate is cross-platform database manager. In versions 7.1.8 and prior, DbGate's JSON script runner (`POST /runners/start`) allows remote code execution via code injection in the `functionName` parameter of JSON script `assign` commands. The `functionName` value is interpolated directly into dynamically generated JavaScript source code via string concatenation. The generated code is then executed in a forked Node.js child process. Version 7.1.9 contains a patch. | CRITICAL | 10.0v3.1 | 100 | 4.3% | — | 2026. 07. 23. |
| CVE-2026-64813 | In JetBrains IntelliJ IDEA before 2026.2 unauthorized settings modification was possible in a Remote Development session | CRITICAL | 10.0v3.1 | 100 | 0.4% | — | 2026. 07. 23. |
| CVE-2026-64812 | In JetBrains IntelliJ IDEA before 2026.2 unauthorized input injection was possible in a Remote Development session | CRITICAL | 10.0v3.1 | 100 | 0.4% | — | 2026. 07. 23. |
| CVE-2026-59555 | Unauthenticated Arbitrary File Deletion in Participants Database <= 2.7.8.3 versions. | CRITICAL | 10.0v3.1 | 100 | 0.4% | — | 2026. 07. 23. |
| CVE-2026-60366 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Platform Security for Java. While the vulnerability is in Oracle Platform Security for Java, attacks may significantly impact additional products (scope change). Successful attacks | CRITICAL | 10.0v3.1 | 100 | 0.3% | — | 2026. 07. 22. |
| CVE-2026-62144 | An authentication bypass vulnerability in Check Point Security Management and Multi-Domain Security Management allows an unauthenticated remote attacker to execute administrative commands on the Management Server. Successful exploitation may also allow command execution on managed Security Gateways. Exploitation requires network access to the Management Server without firewall protection or a configuration that does not restrict Trusted Clients. | CRITICAL | 9.1v3.1 | 100 | 20.6% | — | 2026. 07. 22. |
| CVE-2026-16232 | An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successful exploitation allows the attacker to modify security policies and security configurations. Remote exploitation requires internet access to the Management Server IP address and a configuration that does not restrict Trusted Clients. Check Point is aware that this | CRITICAL | 9.1v3.1 | 100 | 12.7% | KEV | 2026. 07. 22. |
| CVE-2026-8985 | Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection in the /test endpoint exposed on TCP port 9002. An unauthenticated attacker can supply crafted input in the url parameter to execute arbitrary operating system commands. | CRITICAL | 10.0v4.0 | 100 | 4.2% | — | 2026. 07. 21. |
| CVE-2026-8984 | Autel Maxi Charger Single firmware through V1.03.51 allows unauthenticated remote code execution via the service listening on TCP port 9002. A crafted request to the /test endpoint can cause the device to download, extract, and execute attacker-controlled files with root privileges. | CRITICAL | 10.0v4.0 | 100 | 0.5% | — | 2026. 07. 21. |
| CVE-2026-60644 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. While the vulnerability is in Oracle WebCenter Content, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can resul | CRITICAL | 10.0v3.1 | 100 | 0.4% | — | 2026. 07. 21. |
| CVE-2026-60389 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Service Delivery Platform. While the vulnerability is in Service Delivery Platform, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result | CRITICAL | 10.0v3.1 | 100 | 0.5% | — | 2026. 07. 21. |
| CVE-2026-60379 | Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via SOAP to compromise Service Delivery Platform. While the vulnerability is in Service Delivery Platform, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result | CRITICAL | 10.0v3.1 | 100 | 0.5% | — | 2026. 07. 21. |
| CVE-2026-60365 | Vulnerability in the Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: WebLogic Server Proxy Plug-In for Third-Party Web Servers). The supported version that is affected is 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Weblogic Server Proxy Plug-in. While the vulnerability is in Oracle Weblogic Server Proxy Plug-in, attacks may significantly impact additional products (scope cha | CRITICAL | 10.0v3.1 | 100 | 0.4% | — | 2026. 07. 21. |
| CVE-2026-60360 | Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middleware (component: OUD Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via LDAP to compromise Oracle Unified Directory. While the vulnerability is in Oracle Unified Directory, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover | CRITICAL | 10.0v3.1 | 100 | 0.5% | — | 2026. 07. 21. |