| 316827 | Joomla 3.0.x < 5.4.6 / 6.0.x < 6.1.1 Joomla 6.1.1 & 5.4.6 Security & Bugfix Release (5954-joomla-6-1-1-5-4-6-security-bugfix-release) | medium |
| 316798 | Atlassian Confluence 8.9.0 < 9.2.20 / 9.3.1 < 10.2.11 (CONFSERVER-103708) | high |
| 316797 | Atlassian Confluence 8.9.0 < 9.2.20 / 9.3.1 < 10.2.11 (CONFSERVER-103707) | high |
| 316796 | Atlassian Confluence 10.1.1 < 10.2.11 (CONFSERVER-103713) | high |
| 316795 | Atlassian Confluence 9.1.0 < 9.2.20 / 9.3.1 < 10.2.11 (CONFSERVER-103647) | high |
| 316794 | Atlassian Confluence 9.1.0 < 9.2.20 / 9.3.1 < 10.2.11 (CONFSERVER-103709) | critical |
| 316492 | Mattermost Server 10.11.x <= 10.11.13 / 11.4.x <= 11.4.3 / 11.5.x <= 11.5.1 Multiple Vulnerabilities (MMSA-2026-00573 / MMSA-2026-00576 / MMSA-2026-00591 / MMSA-2026-00605 / MMSA-2026-00607 / MMSA-2026-00608 / MMSA-2026-00614 / MMSA-2026-00627) | medium |
| 316491 | Mattermost Server 11.4.x <= 11.4.3 / 11.5.x <= 11.5.1 Origin Validation Error (MMSA-2026-00636) | medium |
| 316490 | Mattermost Server 11.5.x < 11.5.2 Missing Authorization (MMSA-2026-00645) | medium |
| 316489 | Mattermost Server 10.11.x <= 10.11.13 / 11.5.x <= 11.5.1 Multiple Vulnerabilities (MMSA-2026-00570 / MMSA-2026-00575 / MMSA-2026-00582 / MMSA-2026-00622) | medium |
| 316488 | D-Link DCS-2530L < 1.07 and DCS-2670L < 2.03 Multiple Vulnerabilities | high |
| 315939 | Drupal 10.x < 10.4.10 / 10.5.x < 10.5.10 / 10.6.x < 10.6.9 / 11.1.x < 11.1.10 / 11.2.x < 11.2.12 / 11.3.x < 11.3.10 Drupal Vulnerability (SA-CORE-2026-004) | medium |
| 315752 | Splunk Universal Forwarder 9.4.0 < 9.4.11 (SVD-2026-0506) | high |
| 315751 | Splunk Enterprise 9.3.0 < 9.3.12, 9.4.0 < 9.4.11, 10.0.0 < 10.0.5, 10.2.0 < 10.2.2 (SVD-2026-0504) | medium |
| 315750 | Splunk Enterprise 10.0.0 < 10.0.5, 10.2.0 < 10.2.2 (SVD-2026-0503) | medium |
| 315749 | Splunk Enterprise 9.3.0 < 9.3.12, 9.4.0 < 9.4.11, 10.0.0 < 10.0.6, 10.2 < 10.2.3 (SVD-2026-0505) | high |
| 315230 | Ivanti Virtual Traffic Manager (vTM) < 22.9R4 OS Command Injection (CVE-2026-8051) | high |
| 315205 | MantisBT 2.26.1 < 2.28.2 Private Issue Monitoring Authorization Bypass (GHSA-ggw7-9675-6v4v) | medium |
| 315203 | MantisBT 2.23.0 < 2.28.2 Private Bugnote Attachment Content Leak (GHSA-pw5x-2mf9-3xc8) | high |
| 314677 | Adobe Connect <= 2025.9.15 Multiple Vulnerabilities (APSB26-50) | critical |
| 314553 | GitLab 11.10 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-6063) | medium |
| 314552 | GitLab 18.8 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-7471) | low |
| 314551 | GitLab 11.10 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-4527) | medium |
| 314550 | GitLab 16.0 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-1322) | high |
| 314549 | GitLab 8.3 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-8280) | medium |
| 314548 | GitLab 9.0 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-1659) | high |
| 314547 | GitLab 18.9.1 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-4524) | medium |
| 314546 | GitLab 18.7 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-7377) | medium |
| 314545 | GitLab 15.7 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-6883) | medium |
| 314544 | GitLab 16.10 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-2900) | low |
| 314543 | GitLab 17.10 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-1338) | medium |
| 314542 | GitLab 18.3 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-3607) | medium |
| 314541 | GitLab 18.11 < 18.11.3 (CVE-2026-6335) | medium |
| 314540 | GitLab 16.4 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-7481) | medium |
| 314539 | GitLab 15.1 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-8144) | medium |
| 314538 | GitLab 16.7 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-3074) | medium |
| 314537 | GitLab 18.7 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-6073) | medium |
| 314536 | GitLab 11.9 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-1184) | high |
| 314535 | GitLab 13.7 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-3160) | medium |
| 314534 | GitLab 17.6 < 18.9.7 / 18.10 < 18.10.6 / 18.11 < 18.11.3 (CVE-2026-3073) | medium |
| 313115 | PHP 8.4.x < 8.4.21 Multiple Vulnerabilities | critical |
| 313114 | PHP 8.3.x < 8.3.31 Multiple Vulnerabilities | critical |
| 313113 | PHP 8.2.x < 8.2.31 Multiple Vulnerabilities | critical |
| 313112 | PHP 8.5.x < 8.5.6 Multiple Vulnerabilities | critical |
| 311439 | GitHub Enterprise 3.x < 3.14.25 / 3.15.x < 3.15.20 / 3.16.x < 3.16.16 / 3.17.x < 3.17.13 / 3.18.x < 3.18.7 / 3.19.x < 3.19.4 RCE (CVE-2026-3854) | high |
| 311429 | Atlassian Bamboo 9.6.x < 9.6.25 / 10.x < 10.2.18 / 11.x < 12.1.6 Multiple Vulnerabilities | critical |
| 311428 | Dell iDRAC10 < 1.30.10.50 Insufficiently Protected Credentials (DSA-2026-187) | high |
| 311265 | Apache ActiveMQ < 5.19.6 / 6.x < 6.2.5 Multiple Vulnerabilities | high |
| 310885 | Jenkins plugins Multiple Vulnerabilities (2026-04-29) | critical |
| 310143 | Splunk Enterprise 9.1.x < 9.1.8 / 9.2.x < 9.2.5 / 9.3.x < 9.3.3 / 9.4.x < 9.4.1 Multiple Vulnerabilities (SVD-2025-0308) | high |