| 341085 | GitLab 18.3 < 19.1.7 / 19.2 < 19.2.5 / 19.3 < 19.3.1 (CVE-2026-4398) | medium |
| 340724 | GitLab 12.8 < 19.1.7 / 19.2 < 19.2.5 / 19.3 < 19.3.1 (CVE-2026-77801) | medium |
| 340723 | GitLab 11.3 < 19.1.7 / 19.2 < 19.2.5 / 19.3 < 19.3.1 (CVE-2026-3035) | medium |
| 340688 | GitLab 13.1 < 19.1.7 / 19.2 < 19.2.5 / 19.3 < 19.3.1 (CVE-2026-7487) | low |
| 340157 | GitLab 18.9 < 19.1.7 / 19.2 < 19.2.5 / 19.3 < 19.3.1 (CVE-2026-18252) | high |
| 340156 | GitLab 19.1 < 19.1.7 / 19.2 < 19.2.5 / 19.3 < 19.3.1 (CVE-2026-15387) | medium |
| 339647 | Dotnetnuke < 10.3.3 Unauthorized likes on private journal posts (GHSA-r4c4-vmqp-vxf2) | high |
| 339646 | Dotnetnuke < 10.3.3 User registration approval authorization bypass (GHSA-fpr5-67pq-3hf5) | high |
| 339645 | Dotnetnuke < 10.3.3 Authorization bypass in image processor (GHSA-g8w5-h3rm-g8rj) | high |
| 339644 | Dotnetnuke < 10.3.3 Portal administrator remote code execution (GHSA-hxc3-xv8x-w2g3) | high |
| 339554 | Dotnetnuke < 10.3.3 Optional JavaScript restrictions for HTML module content (GHSA-mjq6-87j6-5f4g) | high |
| 339513 | Dotnetnuke < 10.3.3 Unauthorized comments on private journal posts (GHSA-86mr-4mmw-j9g2) | high |
| 339498 | Dotnetnuke < 10.3.3 Content approval workflow bypass (GHSA-56m6-r25g-78x6) | high |
| 339497 | Dotnetnuke < 10.3.3 Permission precedence flaw in module permissions (GHSA-hqgc-qj63-mx24) | high |
| 339491 | Dotnetnuke < 10.3.3 Server-Side request forgery in journal module (GHSA-hmwm-c2hx-wmxh) | high |
| 339489 | Dotnetnuke < 13.3.3 Stored XSS potentially leading to host privilege escalation (GHSA-38xj-rgg3-5cjj) | high |
| 339488 | Dotnetnuke < 10.3.3 GroupEdit postback tampering lets one group owner update another group (GHSA-4q79-2m2q-gw8w) | high |
| 339476 | Dotnetnuke < 10.3.3 Unauthorized file metadata disclosure in restricted folders (GHSA-74j7-h73j-qmc9) | high |
| 339039 | GitLab 18.8 < 19.0.6 / 19.1 < 19.1.4 / 19.2 < 19.2.2 (CVE-2026-10053) | high |
| 338746 | Oracle Primavera P6 Enterprise Project Portfolio Management (August 2026 CSPU) | medium |
| 338744 | Kibana 8.x < 8.19.17 / 9.0.x < 9.3.6 / 9.4.x < 9.4.3 Vulnerability (ESA-2026-94) | high |
| 338743 | Kibana 8.x < 8.19.20 / 9.x < 9.4.5 Multiple Vulnerabilities (ESA-2026-92 / ESA-2026-98 / ESA-2026-100 / ESA-2026-104 / ESA-2026-105 / ESA-2026-106 / ESA-2026-110) | high |
| 338742 | Kibana 8.x < 8.19.20 / 9.0.x < 9.3.8 / 9.4.x < 9.4.5 Denial of Service (ESA-2026-101) | medium |
| 338741 | Kibana 8.x < 8.19.20 / 9.x < 9.4.5 Multiple Vulnerabilities (ESA-2026-87 / ESA-2026-88) | high |
| 338740 | Kibana 8.19.x < 8.19.20 / 9.x < 9.4.5 Cross-Site Request Forgery (ESA-2026-99) | high |
| 338739 | Kibana 9.3.x < 9.3.8 / 9.4.x < 9.4.4 Denial of Service (ESA-2026-91) | medium |
| 338738 | Kibana 8.12.x < 8.19.19 / 9.0.x < 9.3.8 / 9.4.x < 9.4.4 Multiple Vulnerabilities (ESA-2026-102 / ESA-2026-108) | medium |
| 338737 | Kibana 9.4.x < 9.4.4 Privilege Escalation (ESA-2026-83) | medium |
| 338736 | Kibana 9.1.x < 9.4.5 Multiple Vulnerabilities (ESA-2026-97 / ESA-2026-89) | high |
| 338735 | Kibana 9.4.x < 9.4.5 / 9.5.x < 9.5.1 Incorrect Authorization (ESA-2026-124) | high |
| 338734 | Kibana 9.1.x < 9.4.5 / 9.5.x < 9.5.1 Privilege Escalation (ESA-2026-128) | medium |
| 338733 | Kibana 8.x < 8.19.20 / 9.0.x < 9.3.5 / 9.4.x < 9.4.2 Denial of Service (ESA-2026-136) | medium |
| 338732 | Kibana 8.9.x < 8.19.19 / 9.x < 9.4.5 Missing Authorization (ESA-2026-86) | high |
| 338731 | Kibana 8.19.x < 8.19.20 / 9.x < 9.4.5 / 9.5.x < 9.5.1 Multiple Vulnerabilities (ESA-2026-126 / ESA-2026-127 / ESA-2026-129) | high |
| 338730 | Kibana 8.9.x < 8.19.20 / 9.x < 9.4.5 Missing Authorization (ESA-2026-95) | medium |
| 338729 | Kibana 8.5.x < 8.19.20 / 9.x < 9.4.5 Missing Authorization (ESA-2026-96) | high |
| 338728 | Kibana 9.2.x < 9.4.5 Incorrect Authorization (ESA-2026-82) | medium |
| 338727 | Kibana 8.x < 8.19.20 / 9.x < 9.4.4 Incorrect Authorization (ESA-2026-90) | medium |
| 338331 | Mattermost Server 10.11.x < 10.11.22 / 11.7.x < 11.7.7 Multiple Vulnerabilities (MMSA-2026-00672, MMSA-2026-00675, MMSA-2026-00704) | medium |
| 338330 | Mattermost Server 11.7.x < 11.7.7 / 11.8.x < 11.8.4 Incorrect Authorization (MMSA-2026-00718) | medium |
| 338329 | Mattermost Server 10.11.x < 10.11.22 / 11.7.x < 11.7.7 / 11.8.x < 11.8.4 Multiple Vulnerabilities (MMSA-2026-00685, MMSA-2026-00686, MMSA-2026-00687, MMSA-2026-00691) | high |
| 338328 | NetScaler ADC and NetScaler Gateway Multiple Vulnerabilities (CTX696939) | critical |
| 338190 | Splunk Enterprise 9.4.0 < 9.4.14, 10.0.0 < 10.0.9, 10.2.0 < 10.2.6, 10.4.0 < 10.4.2 (SVD-2026-0801) | high |
| 338189 | Splunk Universal Forwarder 9.4.0 < 9.4.14, 10.0.0 < 10.0.9, 10.2.0 < 10.2.6, 10.4.0 < 10.4.2 (SVD-2026-0803) | critical |
| 337679 | Joomla 1.0.x < 5.4.8 / 6.0.x < 6.1.3 Joomla 6.1.3 & 5.4.8 Security & Bugfix Release (joomla-6-1-3-5-4-8-security-bugfix-release) | high |
| 337125 | GitLab 18.2 < 18.11.11 / 19.0 < 19.0.8 / 19.1 < 19.1.6 / 19.2 < 19.2.4 (CVE-2026-19478) | critical |
| 337124 | GitLab 18.2 < 18.11.11 / 19.0 < 19.0.8 / 19.1 < 19.1.6 / 19.2 < 19.2.4 (CVE-2026-19650) | high |
| 334982 | GitLab 19.1 < 19.1.4 / 19.2 < 19.2.2 (CVE-2026-19228) | high |
| 334981 | GitLab 12.0 < 19.0.6 / 19.1 < 19.1.4 / 19.2 < 19.2.2 (CVE-2026-6821) | medium |
| 334980 | GitLab 19.1 < 19.1.4 / 19.2 < 19.2.2 (CVE-2026-16494) | high |