[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Aug 11 20:13:20 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
96ac874b by security tracker role at 2026-08-11T19:13:13+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,44 +1,1674 @@
-CVE-2026-20707
+CVE-2026-9214 (Insufficient input validation vulnerability in the NETGEAR R7000 model ...)
+	TODO: check
+CVE-2026-73228 (Django REST framework is a toolkit for building Web APIs. Prior to 3.1 ...)
+	TODO: check
+CVE-2026-73227 (electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VN ...)
+	TODO: check
+CVE-2026-73226 (electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VN ...)
+	TODO: check
+CVE-2026-73225 (electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VN ...)
+	TODO: check
+CVE-2026-73224 (electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VN ...)
+	TODO: check
+CVE-2026-73223 (electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VN ...)
+	TODO: check
+CVE-2026-73222 (Claude Code Templates is a CLI tool for configuring and monitoring Cla ...)
+	TODO: check
+CVE-2026-73221 (CVAT is an open source interactive video and image annotation tool for ...)
+	TODO: check
+CVE-2026-73219 (CVAT is an open source interactive video and image annotation tool for ...)
+	TODO: check
+CVE-2026-73218 (Cursor is a code editor built for programming with AI. Prior to 3.0.0, ...)
+	TODO: check
+CVE-2026-73217 (Cursor is a code editor built for programming with AI. Prior to 3.1.2, ...)
+	TODO: check
+CVE-2026-73216 (Coturn is a free open source implementation of TURN and STUN Server. P ...)
+	TODO: check
+CVE-2026-73215 (Coturn is a free open source implementation of TURN and STUN Server. P ...)
+	TODO: check
+CVE-2026-73214 (Coturn is a free open source implementation of TURN and STUN Server. P ...)
+	TODO: check
+CVE-2026-73213 (Coturn is a free open source implementation of TURN and STUN Server. P ...)
+	TODO: check
+CVE-2026-73212 (Coturn is a free open source implementation of TURN and STUN Server. P ...)
+	TODO: check
+CVE-2026-73211 (PeerTube is an ActivityPub-federated video streaming platform. Prior t ...)
+	TODO: check
+CVE-2026-73210 (A Server-Side Request Forgery (SSRF) vulnerability existed in Lookyloo ...)
+	TODO: check
+CVE-2026-73162 (Affected versions of MISP cti-transmute expose several state-changing  ...)
+	TODO: check
+CVE-2026-73161 (Affected versions of cti-transmute improperly handle conversion-table  ...)
+	TODO: check
+CVE-2026-73160 (Affected versions of cti-transmute contain an SSRF vulnerability in th ...)
+	TODO: check
+CVE-2026-73159 (Affected versions of cti-transmute allow a tag's icon value to be stor ...)
+	TODO: check
+CVE-2026-73158 (Affected versions of cti-transmute insufficiently validate saved graph ...)
+	TODO: check
+CVE-2026-73157 (Affected versions of cti-transmute render data obtained from a remote  ...)
+	TODO: check
+CVE-2026-73156 (Affected versions of cti-transmute fail to HTML-escape attacker-contro ...)
+	TODO: check
+CVE-2026-73155 (Affected versions of cti-transmute allow authenticated users to add or ...)
+	TODO: check
+CVE-2026-73140 (Affected versions of cti-transmute fail to apply comment-level access- ...)
+	TODO: check
+CVE-2026-73090 (PeerTube is an ActivityPub-federated video streaming platform. Prior t ...)
+	TODO: check
+CVE-2026-73089 (Browserslist is a configuration tool for sharing target browsers and N ...)
+	TODO: check
+CVE-2026-73088 (Browserslist is a configuration tool for sharing target browsers and N ...)
+	TODO: check
+CVE-2026-73087 (Dozzle is a realtime log viewer for docker containers. From 10.5.2 unt ...)
+	TODO: check
+CVE-2026-73086 (nanoid is a secure, URL-friendly, unique string ID generator for JavaS ...)
+	TODO: check
+CVE-2026-73085 (Audiobookshelf is a self-hosted audiobook and podcast server. Prior to ...)
+	TODO: check
+CVE-2026-73084 (Activepieces is an open source AI workflow automation platform. Prior  ...)
+	TODO: check
+CVE-2026-73083 (Activepieces is an open source AI workflow automation platform. Prior  ...)
+	TODO: check
+CVE-2026-73082 (Activepieces is an open source AI workflow automation platform. Prior  ...)
+	TODO: check
+CVE-2026-73081 (Activepieces is an open source AI workflow automation platform. Prior  ...)
+	TODO: check
+CVE-2026-73080 (SeaweedFS is a distributed storage system. Prior to 4.24, VolumeServer ...)
+	TODO: check
+CVE-2026-73079 (Sub2API is an AI API gateway platform designed to distribute and manag ...)
+	TODO: check
+CVE-2026-73078 (Vim is an open source, command line text editor. Prior to 9.2.0840, ru ...)
+	TODO: check
+CVE-2026-73077 (Vim is an open source, command line text editor. Prior to 9.2.0839, th ...)
+	TODO: check
+CVE-2026-73076 (Vim is an open source, command line text editor. Prior to 9.2.0847, ru ...)
+	TODO: check
+CVE-2026-73075 (Vim is an open source, command line text editor. From 9.2.0469 until 9 ...)
+	TODO: check
+CVE-2026-73074 (Vim is an open source, command line text editor. Prior to 9.2.0841, pr ...)
+	TODO: check
+CVE-2026-73072 (Vim is an open source, command line text editor. Prior to 9.2.0846, se ...)
+	TODO: check
+CVE-2026-73071 (Vim is an open source, command line text editor. From 9.2.0511 until 9 ...)
+	TODO: check
+CVE-2026-73070 (Vim is an open source, command line text editor. Prior to 9.2.0842, th ...)
+	TODO: check
+CVE-2026-73069 (Twenty is an open-source CRM (customer relationship management) platfo ...)
+	TODO: check
+CVE-2026-73068 (ToolJet is the open-source foundation am AI-native platform for buildi ...)
+	TODO: check
+CVE-2026-73067 (Tesseract is an open source OCR engine. Prior to 5.5.3, a crafted .tra ...)
+	TODO: check
+CVE-2026-73066 (Tesseract is an open source OCR engine. Prior to 5.5.3, a crafted .tra ...)
+	TODO: check
+CVE-2026-72971 (Improper link resolution before file access ('link following') in Wind ...)
+	TODO: check
+CVE-2026-72925 (SWC is a TypeScript / JavaScript compiler written in Rust. Prior to @s ...)
+	TODO: check
+CVE-2026-72922 (AutoGPT is a workflow automation platform for creating, deploying, and ...)
+	TODO: check
+CVE-2026-72921 (SeaweedFS is a distributed storage system. Prior to 4.24, the weed/ser ...)
+	TODO: check
+CVE-2026-72920 (SeaweedFS is a distributed storage system. Prior to 4.24, the filer re ...)
+	TODO: check
+CVE-2026-72785 (Craft CMS 5.0.0-RC1 through 5.10.5 contains an incorrect authorization ...)
+	TODO: check
+CVE-2026-72784 (Craft CMS versions >= 5.0.0-RC1 before 5.10.6 and >= 4.0.0-RC1 before  ...)
+	TODO: check
+CVE-2026-72783 (Craft CMS versions >= 5.0.0-RC1 before 5.10.6 and >= 4.0.0-RC1 before  ...)
+	TODO: check
+CVE-2026-72782 (Craft CMS versions >= 5.0.0-RC1 before 5.10.6 and >= 4.0.0-RC1 before  ...)
+	TODO: check
+CVE-2026-72781 (Craft CMS versions >= 5.0.0-RC1 before 5.10.7 and >= 4.0.0-RC1 before  ...)
+	TODO: check
+CVE-2026-72780 (Craft CMS before 5.10.5 fails to persist updated credential counters a ...)
+	TODO: check
+CVE-2026-72779 (Craft CMS 5.0.0-RC1 before 5.10.6 and 4.0.0-RC1 before 4.18.2 contain  ...)
+	TODO: check
+CVE-2026-72778 (Craft CMS versions from 4.0.0-RC1 before 4.18.2 and from 5.0.0-RC1 bef ...)
+	TODO: check
+CVE-2026-72775 (n8n before 1.123.67, 2.31.5, and 2.32.1 contains a SQL injection vulne ...)
+	TODO: check
+CVE-2026-72774 (n8n before 1.123.67, 2.31.5, and 2.32.1 contains a credential authoriz ...)
+	TODO: check
+CVE-2026-72773 (n8n before 2.31.5 and 2.32.x before 2.32.1 contain a path-confinement  ...)
+	TODO: check
+CVE-2026-72772 (n8n before 2.32.1 (and before 2.31.5) is vulnerable to account takeove ...)
+	TODO: check
+CVE-2026-72771 (n8n versions before 2.32.1 fail to enforce the Allowed HTTP Request Do ...)
+	TODO: check
+CVE-2026-72770 (n8n versions before 1.123.67 contain a path traversal vulnerability in ...)
+	TODO: check
+CVE-2026-72769 (n8n before 1.123.67, 2.31.5, and 2.32.1 contains a prototype pollution ...)
+	TODO: check
+CVE-2026-72768 (n8n versions before 2.32.1 contain a server-side request forgery prote ...)
+	TODO: check
+CVE-2026-72767 (n8n before 1.123.67, 2.x before 2.31.5, and 2.32.x before 2.32.1 conta ...)
+	TODO: check
+CVE-2026-72766 (n8n before 1.123.67, 2.x before 2.31.5, and 2.32.x before 2.32.1 conta ...)
+	TODO: check
+CVE-2026-72765 (n8n before 2.31.5 and before 2.32.1 contain a sandbox escape vulnerabi ...)
+	TODO: check
+CVE-2026-72764 (n8n's JavaScript task runner shared a single module cache across all u ...)
+	TODO: check
+CVE-2026-72763 (n8n before 1.123.67, 2.31.5, and 2.32.1 validates credential-access on ...)
+	TODO: check
+CVE-2026-72762 (n8n versions before 1.123.67, 2.31.5, and 2.32.1 contain an arbitrary  ...)
+	TODO: check
+CVE-2026-72750 (n8n before 1.123.67, 2.31.5, and 2.32.1 contains a SQL injection vulne ...)
+	TODO: check
+CVE-2026-72749 (n8n before 1.123.67, 2.31.5, and 2.32.1 contains a prototype pollution ...)
+	TODO: check
+CVE-2026-72748 (AVideo contains an unauthenticated arbitrary file write vulnerability  ...)
+	TODO: check
+CVE-2026-72747 (AVideo fails to sanitize the phone field during user registration, all ...)
+	TODO: check
+CVE-2026-72746 (FreeRDP before 3.30.0 contains a server-side authentication bypass in  ...)
+	TODO: check
+CVE-2026-72745 (FreeRDP before 3.30.0 contains an out-of-bounds vulnerability in kerbe ...)
+	TODO: check
+CVE-2026-72744 (Nuxt versions >= 4.4.7 and < 4.5.1, and >= 3.21.7 and < 3.21.10, conta ...)
+	TODO: check
+CVE-2026-72742 (DSPy 3.3.0b1 contains a file exfiltration vulnerability in the Image a ...)
+	TODO: check
+CVE-2026-72713 (XAgent contains a path traversal vulnerability in the workspace file e ...)
+	TODO: check
+CVE-2026-72712 (Nmap versions up to and including 7.99 contains a denial of service vu ...)
+	TODO: check
+CVE-2026-72694 (A flaw was found in MRTG. When the MRTG daemon is started as a root us ...)
+	TODO: check
+CVE-2026-72693 (`openvt -u` is intended to identify the owner of the current VT and th ...)
+	TODO: check
+CVE-2026-72610 (A stored SQL injection vulnerability in Koha through 24.11.17, 25.05.1 ...)
+	TODO: check
+CVE-2026-72609 (An SQL injection vulnerability in Koha through 24.11.17, 25.05.12, 25. ...)
+	TODO: check
+CVE-2026-72608 (A stored SQL injection vulnerability in Koha through 24.11.17, 25.05.1 ...)
+	TODO: check
+CVE-2026-72607 (A stored SQL injection vulnerability in Koha through 24.11.17, 25.05.1 ...)
+	TODO: check
+CVE-2026-72606 (A server-side request forgery vulnerability in Pinry through 2.1.13 al ...)
+	TODO: check
+CVE-2026-72605 (A missing authentication vulnerability in Swing Music 3.0.0 allows una ...)
+	TODO: check
+CVE-2026-72604 (A path traversal vulnerability in Intelliants Subrion CMS through 4.2. ...)
+	TODO: check
+CVE-2026-72603 (An OS command injection vulnerability in wg-easy 15.3.0 allows users w ...)
+	TODO: check
+CVE-2026-72602 (A path traversal vulnerability in AsyncFuncAI deepwiki-open through co ...)
+	TODO: check
+CVE-2026-72601 (A broken access control vulnerability in CSZ CMS 1.3.2 allows unauthen ...)
+	TODO: check
+CVE-2026-72600 (A broken access control vulnerability in Idurar IDURAR ERP CRM 4.1.0 a ...)
+	TODO: check
+CVE-2026-72599 (An SQL injection vulnerability in e107 2.4.0 allows unauthenticated re ...)
+	TODO: check
+CVE-2026-72598 (A server-side request forgery vulnerability in Apioo Fusio 8.8.3 allow ...)
+	TODO: check
+CVE-2026-72597 (A server-side request forgery vulnerability in Friendica through the 2 ...)
+	TODO: check
+CVE-2026-72596 (A broken access control vulnerability in Ghost Foundation Ghost 5.x al ...)
+	TODO: check
+CVE-2026-72595 (A broken access control vulnerability in BadChoice Handesk as of 2026- ...)
+	TODO: check
+CVE-2026-72563 (A broken access control vulnerability in BadChoice Handesk as of 2026- ...)
+	TODO: check
+CVE-2026-72562 (An SQL injection vulnerability in Pimcore admin-ui-classic-bundle thro ...)
+	TODO: check
+CVE-2026-72561 (A broken access control vulnerability in Peppermint Lab Peppermint thr ...)
+	TODO: check
+CVE-2026-72560 (A server-side request forgery vulnerability in HumanSignal Label Studi ...)
+	TODO: check
+CVE-2026-72559 (A stored cross-site scripting vulnerability in HortusFox 5.9 allows au ...)
+	TODO: check
+CVE-2026-72558 (An SQL injection vulnerability in CiviCRM through 6.18.alpha1 allows a ...)
+	TODO: check
+CVE-2026-72557 (An unrestricted file upload vulnerability in Cockpit CMS 2.6.0 allows  ...)
+	TODO: check
+CVE-2026-72556 (A remote code execution vulnerability in ZoneMinder 1.39.17 allows any ...)
+	TODO: check
+CVE-2026-72555 (A broken access control vulnerability in Peppermint Lab Peppermint thr ...)
+	TODO: check
+CVE-2026-72554 (A broken access control vulnerability in Ladybird Web Solution Faveo H ...)
+	TODO: check
+CVE-2026-72553 (A stored cross-site scripting vulnerability in ElkArte Forum 2.0 Beta  ...)
+	TODO: check
+CVE-2026-72552 (A server-side request forgery vulnerability in Dub as of 2026-07-10 al ...)
+	TODO: check
+CVE-2026-72551 (A remote code execution vulnerability in Apioo Fusio 8.8.3 allows auth ...)
+	TODO: check
+CVE-2026-72550 (An SQL injection vulnerability in Friendica through the 2026.08-dev br ...)
+	TODO: check
+CVE-2026-72549 (An information disclosure vulnerability in OpenSignLabs OpenSign throu ...)
+	TODO: check
+CVE-2026-72548 (An information disclosure vulnerability in OpenSignLabs OpenSign throu ...)
+	TODO: check
+CVE-2026-72547 (An insecure direct object reference vulnerability in Attendize through ...)
+	TODO: check
+CVE-2026-72546 (An insecure direct object reference vulnerability in Attendize through ...)
+	TODO: check
+CVE-2026-72545 (An insecure direct object reference vulnerability in OpenSignLabs Open ...)
+	TODO: check
+CVE-2026-72544 (An integrity verification vulnerability in OpenSignLabs OpenSign throu ...)
+	TODO: check
+CVE-2026-72543 (An insecure direct object reference vulnerability in OpenSignLabs Open ...)
+	TODO: check
+CVE-2026-72542 (A missing authorization vulnerability in Windmill Labs Windmill throug ...)
+	TODO: check
+CVE-2026-72541 (A missing authorization vulnerability in Windmill Labs Windmill throug ...)
+	TODO: check
+CVE-2026-72540 (An insecure direct object reference vulnerability in PhotoPrism throug ...)
+	TODO: check
+CVE-2026-72539 (An information disclosure vulnerability in Windmill Labs Windmill thro ...)
+	TODO: check
+CVE-2026-72538 (An argument injection vulnerability in PrefectHQ Prefect through 3.8.2 ...)
+	TODO: check
+CVE-2026-72537 (A privilege escalation vulnerability in Authentik Security authentik t ...)
+	TODO: check
+CVE-2026-72536 (A missing authentication vulnerability in Chaskiq through commit 46dfd ...)
+	TODO: check
+CVE-2026-72535 (A missing authentication vulnerability in Chaskiq through commit 46dfd ...)
+	TODO: check
+CVE-2026-72534 (A privilege escalation vulnerability in Authentik Security authentik t ...)
+	TODO: check
+CVE-2026-72533 (An authentication bypass vulnerability in Portainer CE through 2.44.0  ...)
+	TODO: check
+CVE-2026-71398 (Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization ...)
+	TODO: check
+CVE-2026-71390 (CAI Content Credentials is affected by an Improper Input Validation vu ...)
+	TODO: check
+CVE-2026-71389 (CAI Content Credentials is affected by an Integer Underflow (Wrap or W ...)
+	TODO: check
+CVE-2026-71387 (ColdFusion is affected by an Incorrect Authorization vulnerability tha ...)
+	TODO: check
+CVE-2026-71386 (is affected by a Cross-site Scripting (XSS) vulnerability that could r ...)
+	TODO: check
+CVE-2026-71384 (is affected by an Incorrect Authorization vulnerability that could res ...)
+	TODO: check
+CVE-2026-71383 (is affected by an Incorrect Authorization vulnerability that could res ...)
+	TODO: check
+CVE-2026-71362 (Adobe Commerce is affected by an Incorrect Authorization vulnerability ...)
+	TODO: check
+CVE-2026-71331 (Integer overflow or wraparound in Microsoft Azure Attestation service  ...)
+	TODO: check
+CVE-2026-71218 (A flaw was found in iperf3. A remote unauthenticated attacker can expl ...)
+	TODO: check
+CVE-2026-71217 (A flaw was found in iperf3. A remote attacker can exploit this vulnera ...)
+	TODO: check
+CVE-2026-70355 (Improper neutralization of input during web page generation ('cross-si ...)
+	TODO: check
+CVE-2026-70354 (Out-of-bounds write in .NET allows an unauthorized attacker to execute ...)
+	TODO: check
+CVE-2026-70348 (Improper link resolution before file access ('link following') in Wind ...)
+	TODO: check
+CVE-2026-70347 (Heap-based buffer overflow in Windows Installer allows an authorized a ...)
+	TODO: check
+CVE-2026-70346 (Stack-based buffer overflow in Windows Installer allows an authorized  ...)
+	TODO: check
+CVE-2026-70345 (Heap-based buffer overflow in Windows Installer allows an authorized a ...)
+	TODO: check
+CVE-2026-70344 (Stack-based buffer overflow in Windows Installer allows an authorized  ...)
+	TODO: check
+CVE-2026-70340 (Missing authorization in Azure CycleCloud allows an authorized attacke ...)
+	TODO: check
+CVE-2026-70338 (Improper control of generation of code ('code injection') in Microsoft ...)
+	TODO: check
+CVE-2026-70337 (Relative path traversal in Microsoft PowerShell Core allows an unautho ...)
+	TODO: check
+CVE-2026-70336 (Improper control of generation of code ('code injection') in Visual St ...)
+	TODO: check
+CVE-2026-70335 (Improper neutralization of special elements used in an os command ('os ...)
+	TODO: check
+CVE-2026-70330 (Heap-based buffer overflow in Windows DNS allows an authorized attacke ...)
+	TODO: check
+CVE-2026-70329 (Integer overflow or wraparound in Microsoft Office Outlook allows an u ...)
+	TODO: check
+CVE-2026-70328 (Out-of-bounds read in Microsoft Office Excel allows an unauthorized at ...)
+	TODO: check
+CVE-2026-70327 (Out-of-bounds read in Microsoft Office Excel allows an unauthorized at ...)
+	TODO: check
+CVE-2026-70326 (Server-side request forgery (ssrf) in Microsoft Office SharePoint allo ...)
+	TODO: check
+CVE-2026-70325 (Improper input validation in Microsoft Office PowerPoint allows an una ...)
+	TODO: check
+CVE-2026-70324 (Server-side request forgery (ssrf) in Microsoft Office SharePoint allo ...)
+	TODO: check
+CVE-2026-70323 (Improper input validation in Microsoft Office allows an unauthorized a ...)
+	TODO: check
+CVE-2026-70322 (Improper input validation in Microsoft Office PowerPoint allows an una ...)
+	TODO: check
+CVE-2026-70321 (Deserialization of untrusted data in Microsoft Office SharePoint allow ...)
+	TODO: check
+CVE-2026-70320 (Improper input validation in Microsoft Office PowerPoint allows an una ...)
+	TODO: check
+CVE-2026-70319 (Improper input validation in Microsoft Office Word allows an unauthori ...)
+	TODO: check
+CVE-2026-70318 (Improper input validation in Microsoft Office Excel allows an unauthor ...)
+	TODO: check
+CVE-2026-70317 (Use of uninitialized resource in Microsoft Office allows an unauthoriz ...)
+	TODO: check
+CVE-2026-70316 (Improper input validation in Microsoft Office PowerPoint allows an una ...)
+	TODO: check
+CVE-2026-70315 (Out-of-bounds read in Microsoft Office allows an unauthorized attacker ...)
+	TODO: check
+CVE-2026-70314 (Improper input validation in Microsoft Office allows an unauthorized a ...)
+	TODO: check
+CVE-2026-70313 (Improper input validation in Microsoft Office PowerPoint allows an una ...)
+	TODO: check
+CVE-2026-70312 (Improper input validation in Microsoft Office PowerPoint allows an una ...)
+	TODO: check
+CVE-2026-70311 (Use after free in Microsoft Office Word allows an unauthorized attacke ...)
+	TODO: check
+CVE-2026-70310 (Out-of-bounds read in Microsoft Office Word allows an unauthorized att ...)
+	TODO: check
+CVE-2026-70307 (Use after free in Windows Ancillary Function Driver for WinSock allows ...)
+	TODO: check
+CVE-2026-70306 (Improper neutralization of input during web page generation ('cross-si ...)
+	TODO: check
+CVE-2026-70304 (Heap-based buffer overflow in Windows DNS allows an authorized attacke ...)
+	TODO: check
+CVE-2026-70130 (Heap-based buffer overflow in Microsoft Office allows an unauthorized  ...)
+	TODO: check
+CVE-2026-6727 (A timing side-channel vulnerability exists in the RSA OAEP decryption  ...)
+	TODO: check
+CVE-2026-6726 (An information leakage vulnerability was reported in the TCG TPM 2.0 r ...)
+	TODO: check
+CVE-2026-69320 (Improper neutralization of special elements used in an os command ('os ...)
+	TODO: check
+CVE-2026-69306 (Not failing securely ('failing open') in Visual Studio Code allows an  ...)
+	TODO: check
+CVE-2026-69278 (Incorrect authorization in Visual Studio Code allows an unauthorized a ...)
+	TODO: check
+CVE-2026-69223 (Apache Allura's webhooks are vulnerable toServer-Side Request Forgery  ...)
+	TODO: check
+CVE-2026-69119 (Taubyte Tau v1.1.10 contains a missing authorization vulnerability in  ...)
+	TODO: check
+CVE-2026-69117 (NetBox 4.5.8 contains an ORM injection vulnerability that allows authe ...)
+	TODO: check
+CVE-2026-69115 (OpenIM Server v3.8.3 contains a missing authorization vulnerability th ...)
+	TODO: check
+CVE-2026-69113 (Cap v0.3.1 contains a broken access control vulnerability in the POST  ...)
+	TODO: check
+CVE-2026-69109 (A vulnerability has been identified in Siemens License Server (SLS) (A ...)
+	TODO: check
+CVE-2026-69108 (A vulnerability has been identified in Siemens License Server (SLS) (A ...)
+	TODO: check
+CVE-2026-69102 (MaxKey contains an unauthorized access vulnerability due to a hard-cod ...)
+	TODO: check
+CVE-2026-68821 (Improper privilege management in Windows Package Manager allows an aut ...)
+	TODO: check
+CVE-2026-68820 (Use after free in Windows Ancillary Function Driver for WinSock allows ...)
+	TODO: check
+CVE-2026-68819 (Buffer over-read in Windows Network File System allows an unauthorized ...)
+	TODO: check
+CVE-2026-68817 (Stack-based buffer overflow in Microsoft Office Excel allows an unauth ...)
+	TODO: check
+CVE-2026-68816 (Stack-based buffer overflow in Microsoft Office Excel allows an unauth ...)
+	TODO: check
+CVE-2026-68815 (Heap-based buffer overflow in Microsoft Office Excel allows an unautho ...)
+	TODO: check
+CVE-2026-68814 (Out-of-bounds read in Microsoft Office Excel allows an unauthorized at ...)
+	TODO: check
+CVE-2026-68813 (Out-of-bounds read in Microsoft Office Excel allows an unauthorized at ...)
+	TODO: check
+CVE-2026-68812 (Heap-based buffer overflow in Microsoft Office Excel allows an unautho ...)
+	TODO: check
+CVE-2026-68811 (Access of resource using incompatible type ('type confusion') in Micro ...)
+	TODO: check
+CVE-2026-68810 (Untrusted pointer dereference in Microsoft Office Excel allows an unau ...)
+	TODO: check
+CVE-2026-68809 (Incomplete cleanup in Microsoft Office PowerPoint allows an unauthoriz ...)
+	TODO: check
+CVE-2026-68808 (Out-of-bounds read in Microsoft Office Excel allows an unauthorized at ...)
+	TODO: check
+CVE-2026-68807 (Heap-based buffer overflow in Microsoft Office Excel allows an unautho ...)
+	TODO: check
+CVE-2026-68806 (Out-of-bounds write in Microsoft Office Excel allows an unauthorized a ...)
+	TODO: check
+CVE-2026-68805 (Heap-based buffer overflow in Microsoft Office Excel allows an unautho ...)
+	TODO: check
+CVE-2026-68804 (Numeric truncation error in Microsoft Office Excel allows an unauthori ...)
+	TODO: check
+CVE-2026-68803 (Access of resource using incompatible type ('type confusion') in Micro ...)
+	TODO: check
+CVE-2026-68802 (Out-of-bounds read in Microsoft Office Excel allows an unauthorized at ...)
+	TODO: check
+CVE-2026-68801 (Heap-based buffer overflow in Microsoft Office Excel allows an unautho ...)
+	TODO: check
+CVE-2026-68800 (Heap-based buffer overflow in Microsoft Office Excel allows an unautho ...)
+	TODO: check
+CVE-2026-68799 (Use of uninitialized resource in Microsoft Office Excel allows an unau ...)
+	TODO: check
+CVE-2026-68798 (Heap-based buffer overflow in Microsoft Office Excel allows an unautho ...)
+	TODO: check
+CVE-2026-68797 (Out-of-bounds read in Microsoft Office Excel allows an unauthorized at ...)
+	TODO: check
+CVE-2026-68796 (Heap-based buffer overflow in Microsoft Office Excel allows an unautho ...)
+	TODO: check
+CVE-2026-68795 (Stack-based buffer overflow in Microsoft Office Excel allows an unauth ...)
+	TODO: check
+CVE-2026-68794 (Heap-based buffer overflow in Microsoft Office Excel allows an unautho ...)
+	TODO: check
+CVE-2026-68793 (Out-of-bounds read in Microsoft Office Excel allows an unauthorized at ...)
+	TODO: check
+CVE-2026-68792 (Improper neutralization of special elements used in a command ('comman ...)
+	TODO: check
+CVE-2026-67180 (Google Turbinia allows arbitrary command execution via worker tasks. A ...)
+	TODO: check
+CVE-2026-67179 (Genkit does not properly validate host request headers. Any host on th ...)
+	TODO: check
+CVE-2026-66810 (Heap-based buffer overflow in Microsoft Office Word allows an unauthor ...)
+	TODO: check
+CVE-2026-66809 (Out-of-bounds read in Microsoft Office allows an unauthorized attacker ...)
+	TODO: check
+CVE-2026-66807 (Stack-based buffer overflow in Microsoft Office allows an unauthorized ...)
+	TODO: check
+CVE-2026-66806 (Off-by-one error in Microsoft Office Word allows an unauthorized attac ...)
+	TODO: check
+CVE-2026-66805 (Deserialization of untrusted data in Microsoft Office SharePoint allow ...)
+	TODO: check
+CVE-2026-66804 (Improper access control in Windows Cross Device Service allows an auth ...)
+	TODO: check
+CVE-2026-66802 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-66799 (Heap-based buffer overflow in Windows Key Guard allows an authorized a ...)
+	TODO: check
+CVE-2026-66301 (Exposure of sensitive information to an unauthorized actor in Microsof ...)
+	TODO: check
+CVE-2026-65815 (Deserialization of untrusted data in Microsoft Dynamics 365 (on-premis ...)
+	TODO: check
+CVE-2026-65814 (Heap-based buffer overflow in Windows Storage Port Driver allows an au ...)
+	TODO: check
+CVE-2026-65813 (Server-side request forgery (ssrf) in Microsoft Exchange Server allows ...)
+	TODO: check
+CVE-2026-65811 (Improper input validation in Power BI allows an authorized attacker to ...)
+	TODO: check
+CVE-2026-65810 (Relative path traversal in .NET Framework allows an unauthorized attac ...)
+	TODO: check
+CVE-2026-65807 (Access of resource using incompatible type ('type confusion') in Micro ...)
+	TODO: check
+CVE-2026-65806 (Missing authorization in Azure CycleCloud allows an authorized attacke ...)
+	TODO: check
+CVE-2026-65799 (Integer overflow or wraparound in Windows DNS allows an authorized att ...)
+	TODO: check
+CVE-2026-65798 (Numeric truncation error in Windows DNS allows an authorized attacker  ...)
+	TODO: check
+CVE-2026-65797 (Numeric truncation error in Windows DNS allows an authorized attacker  ...)
+	TODO: check
+CVE-2026-65796 (Heap-based buffer overflow in Windows iSCSI Target Service allows an u ...)
+	TODO: check
+CVE-2026-65795 (No cwe for this issue in Windows DNS allows an authorized attacker to  ...)
+	TODO: check
+CVE-2026-65794 (Buffer over-read in Windows SMB Client allows an unauthorized attacker ...)
+	TODO: check
+CVE-2026-65791 (Heap-based buffer overflow in Windows iSCSI Target Service allows an u ...)
+	TODO: check
+CVE-2026-65790 (Heap-based buffer overflow in Windows Message Queuing allows an author ...)
+	TODO: check
+CVE-2026-65789 (Use after free in Windows DNS allows an unauthorized attacker to execu ...)
+	TODO: check
+CVE-2026-65788 (Use after free in Desktop Window Manager allows an authorized attacker ...)
+	TODO: check
+CVE-2026-65787 (Heap-based buffer overflow in Desktop Window Manager allows an authori ...)
+	TODO: check
+CVE-2026-65786 (Heap-based buffer overflow in Desktop Window Manager allows an authori ...)
+	TODO: check
+CVE-2026-65785 (Uncontrolled resource consumption in Windows DHCP Client allows an una ...)
+	TODO: check
+CVE-2026-65784 (Out-of-bounds read in Windows NTFS allows an authorized attacker to di ...)
+	TODO: check
+CVE-2026-65783 (Use after free in Windows Autopilot allows an authorized attacker to e ...)
+	TODO: check
+CVE-2026-65782 (Use after free in Windows Autopilot allows an authorized attacker to e ...)
+	TODO: check
+CVE-2026-65781 (Use after free in Windows Autopilot allows an authorized attacker to e ...)
+	TODO: check
+CVE-2026-65780 (Double free in Windows Autopilot allows an authorized attacker to elev ...)
+	TODO: check
+CVE-2026-65779 (Use after free in Windows Autopilot allows an authorized attacker to e ...)
+	TODO: check
+CVE-2026-65778 (Use after free in Windows Autopilot allows an authorized attacker to e ...)
+	TODO: check
+CVE-2026-65777 (Inadequate encryption strength in Windows Active Directory allows an a ...)
+	TODO: check
+CVE-2026-65776 (Use after free in Windows Win32K allows an authorized attacker to elev ...)
+	TODO: check
+CVE-2026-65775 (Use after free in Windows Win32K allows an authorized attacker to elev ...)
+	TODO: check
+CVE-2026-65774 (Heap-based buffer overflow in Windows Installer allows an authorized a ...)
+	TODO: check
+CVE-2026-65773 (Improper access control in Windows Kernel allows an authorized attacke ...)
+	TODO: check
+CVE-2026-65769 (Exposure of sensitive information to an unauthorized actor in Microsof ...)
+	TODO: check
+CVE-2026-65768 (Improper limitation of a pathname to a restricted directory ('path tra ...)
+	TODO: check
+CVE-2026-65767 (Improper neutralization of input during web page generation ('cross-si ...)
+	TODO: check
+CVE-2026-65681 (Null pointer dereference in Windows iSCSI Target Service allows an una ...)
+	TODO: check
+CVE-2026-65680 (Improper link resolution before file access ('link following') in Micr ...)
+	TODO: check
+CVE-2026-65679 (Heap-based buffer overflow in Windows iSCSI Target Service allows an u ...)
+	TODO: check
+CVE-2026-65678 (Use after free in Windows Win32K allows an authorized attacker to elev ...)
+	TODO: check
+CVE-2026-65675 (No cwe for this issue in Visual Studio Code CoPilot Chat Extension all ...)
+	TODO: check
+CVE-2026-65673 (CVET-EOP)
+	TODO: check
+CVE-2026-65672 (Heap-based buffer overflow in Windows Remote Access API allows an auth ...)
+	TODO: check
+CVE-2026-65671 (Heap-based buffer overflow in Windows Remote Access API allows an auth ...)
+	TODO: check
+CVE-2026-65665 (Deserialization of untrusted data in Microsoft Office SharePoint allow ...)
+	TODO: check
+CVE-2026-65664 (Heap-based buffer overflow in Microsoft Office allows an unauthorized  ...)
+	TODO: check
+CVE-2026-65663 (Deserialization of untrusted data in Microsoft Office SharePoint allow ...)
+	TODO: check
+CVE-2026-65662 (Out-of-bounds read in Windows GDI allows an authorized attacker to dis ...)
+	TODO: check
+CVE-2026-65661 (Heap-based buffer overflow in Microsoft Office allows an unauthorized  ...)
+	TODO: check
+CVE-2026-65660 (Improper control of generation of code ('code injection') in Microsoft ...)
+	TODO: check
+CVE-2026-65658 (Deserialization of untrusted data in Microsoft Office SharePoint allow ...)
+	TODO: check
+CVE-2026-65657 (Use after free in Microsoft Office allows an unauthorized attacker to  ...)
+	TODO: check
+CVE-2026-65656 (Improper neutralization of special elements used in a command ('comman ...)
+	TODO: check
+CVE-2026-64922 (Improper neutralization of input during web page generation ('cross-si ...)
+	TODO: check
+CVE-2026-64921 (Missing authentication for critical function in Microsoft Office Share ...)
+	TODO: check
+CVE-2026-64920 (Heap-based buffer overflow in Microsoft Office Access allows an unauth ...)
+	TODO: check
+CVE-2026-64919 (Stack-based buffer overflow in Microsoft Office Access allows an unaut ...)
+	TODO: check
+CVE-2026-64917 (Out-of-bounds read in Microsoft Office Word allows an unauthorized att ...)
+	TODO: check
+CVE-2026-64916 (Improper neutralization of input during web page generation ('cross-si ...)
+	TODO: check
+CVE-2026-64915 (Heap-based buffer overflow in Microsoft Office Word allows an unauthor ...)
+	TODO: check
+CVE-2026-64914 (Heap-based buffer overflow in Microsoft Office Access allows an unauth ...)
+	TODO: check
+CVE-2026-64912 (Stack-based buffer overflow in Microsoft Office Access allows an unaut ...)
+	TODO: check
+CVE-2026-64911 (Integer overflow or wraparound in Microsoft Office allows an unauthori ...)
+	TODO: check
+CVE-2026-64910 (Untrusted pointer dereference in Microsoft Office allows an unauthoriz ...)
+	TODO: check
+CVE-2026-64909 (Integer underflow (wrap or wraparound) in Microsoft Office allows an u ...)
+	TODO: check
+CVE-2026-64908 (Heap-based buffer overflow in Microsoft Office Access allows an unauth ...)
+	TODO: check
+CVE-2026-64907 (Stack-based buffer overflow in Microsoft Office Word allows an unautho ...)
+	TODO: check
+CVE-2026-64906 (Heap-based buffer overflow in Microsoft Office Access allows an unauth ...)
+	TODO: check
+CVE-2026-64905 (Buffer over-read in Microsoft Office Word allows an unauthorized attac ...)
+	TODO: check
+CVE-2026-64904 (Access of resource using incompatible type ('type confusion') in Micro ...)
+	TODO: check
+CVE-2026-64903 (Integer overflow or wraparound in Microsoft Office allows an unauthori ...)
+	TODO: check
+CVE-2026-64902 (Improper neutralization of input during web page generation ('cross-si ...)
+	TODO: check
+CVE-2026-64901 (Deserialization of untrusted data in Microsoft Office SharePoint allow ...)
+	TODO: check
+CVE-2026-64900 (Improper neutralization of input during web page generation ('cross-si ...)
+	TODO: check
+CVE-2026-64899 (Out-of-bounds read in Microsoft Office allows an unauthorized attacker ...)
+	TODO: check
+CVE-2026-64898 (Heap-based buffer overflow in Microsoft Office allows an unauthorized  ...)
+	TODO: check
+CVE-2026-64897 (Improper neutralization of input during web page generation ('cross-si ...)
+	TODO: check
+CVE-2026-64629 (A vulnerability has been identified in Parasolid V38.0 (All versions < ...)
+	TODO: check
+CVE-2026-63533 (Heap-based buffer overflow in Microsoft Office allows an unauthorized  ...)
+	TODO: check
+CVE-2026-63532 (Integer overflow or wraparound in Microsoft Office allows an unauthori ...)
+	TODO: check
+CVE-2026-63531 (Out-of-bounds read in Microsoft Office Word allows an unauthorized att ...)
+	TODO: check
+CVE-2026-63530 (Out-of-bounds read in Microsoft Office Word allows an unauthorized att ...)
+	TODO: check
+CVE-2026-63529 (Out-of-bounds read in Microsoft Office allows an unauthorized attacker ...)
+	TODO: check
+CVE-2026-63528 (Out-of-bounds read in Microsoft Office Word allows an unauthorized att ...)
+	TODO: check
+CVE-2026-63527 (Stack-based buffer overflow in Microsoft Office Word allows an unautho ...)
+	TODO: check
+CVE-2026-63526 (Stack-based buffer overflow in Microsoft Office allows an unauthorized ...)
+	TODO: check
+CVE-2026-63525 (Numeric truncation error in Microsoft Office Word allows an unauthoriz ...)
+	TODO: check
+CVE-2026-63524 (Out-of-bounds read in Microsoft Office allows an unauthorized attacker ...)
+	TODO: check
+CVE-2026-63522 (Incorrect permission assignment for critical resource in Azure SQL Dat ...)
+	TODO: check
+CVE-2026-63521 (Out-of-bounds read in Microsoft Office Word allows an unauthorized att ...)
+	TODO: check
+CVE-2026-63520 (Improper input validation in Microsoft Office SharePoint allows an una ...)
+	TODO: check
+CVE-2026-63519 (Heap-based buffer overflow in Microsoft Office allows an unauthorized  ...)
+	TODO: check
+CVE-2026-63518 (Heap-based buffer overflow in Microsoft Office Word allows an unauthor ...)
+	TODO: check
+CVE-2026-63517 (Out-of-bounds read in Microsoft Office allows an unauthorized attacker ...)
+	TODO: check
+CVE-2026-63516 (Deserialization of untrusted data in Microsoft Office SharePoint allow ...)
+	TODO: check
+CVE-2026-63515 (Out-of-bounds read in Microsoft Office allows an unauthorized attacker ...)
+	TODO: check
+CVE-2026-63514 (Deserialization of untrusted data in Microsoft Office SharePoint allow ...)
+	TODO: check
+CVE-2026-63513 (Heap-based buffer overflow in Microsoft Office allows an unauthorized  ...)
+	TODO: check
+CVE-2026-63512 (Incorrect authorization in Microsoft Office SharePoint allows an autho ...)
+	TODO: check
+CVE-2026-62917 (Improper input validation in Microsoft Office SharePoint allows an aut ...)
+	TODO: check
+CVE-2026-62915 (Missing authorization in Microsoft Exchange Server allows an authorize ...)
+	TODO: check
+CVE-2026-62914 (Improper neutralization of input during web page generation ('cross-si ...)
+	TODO: check
+CVE-2026-62913 (Heap-based buffer overflow in Microsoft Exchange Server allows an auth ...)
+	TODO: check
+CVE-2026-62912 (Deserialization of untrusted data in Microsoft Exchange Server allows  ...)
+	TODO: check
+CVE-2026-62911 (Authentication bypass by capture-replay in Microsoft Exchange Server a ...)
+	TODO: check
+CVE-2026-62910 (Improper control of resource identifiers ('resource injection') in Mic ...)
+	TODO: check
+CVE-2026-62909 (Uncaught exception in .NET allows an authorized attacker to elevate pr ...)
+	TODO: check
+CVE-2026-62908 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-62902 (Inclusion of functionality from untrusted control sphere in .NET allow ...)
+	TODO: check
+CVE-2026-62901 (Unchecked input for loop condition in .NET allows an unauthorized atta ...)
+	TODO: check
+CVE-2026-62900 (Improper removal of sensitive information before storage or transfer i ...)
+	TODO: check
+CVE-2026-62899 (Inconsistent interpretation of http requests ('http request/response s ...)
+	TODO: check
+CVE-2026-62898 (Use after free in Microsoft QUIC allows an unauthorized attacker to di ...)
+	TODO: check
+CVE-2026-62897 (Integer overflow or wraparound in .NET Framework allows an unauthorize ...)
+	TODO: check
+CVE-2026-62894 (Heap-based buffer overflow in Windows DWM Core Library allows an autho ...)
+	TODO: check
+CVE-2026-62893 (Use after free in Windows Deployment Services allows an unauthorized a ...)
+	TODO: check
+CVE-2026-62892 (Use after free in Capability Access Management Service (camsvc) allows ...)
+	TODO: check
+CVE-2026-62890 (Heap-based buffer overflow in Windows GDI+ allows an authorized attack ...)
+	TODO: check
+CVE-2026-62889 (Double free in Windows Secure Socket Tunneling Protocol (SSTP) allows  ...)
+	TODO: check
+CVE-2026-62888 (Use after free in Windows DWM Core Library allows an authorized attack ...)
+	TODO: check
+CVE-2026-62887 (Out-of-bounds read in Windows NTFS allows an authorized attacker to di ...)
+	TODO: check
+CVE-2026-62886 (Integer overflow or wraparound in .NET allows an unauthorized attacker ...)
+	TODO: check
+CVE-2026-62885 (Heap-based buffer overflow in Windows Win32K allows an authorized atta ...)
+	TODO: check
+CVE-2026-62883 (Numeric truncation error in Windows DNS allows an authorized attacker  ...)
+	TODO: check
+CVE-2026-62882 (Insufficiently protected credentials in Microsoft Office Outlook allow ...)
+	TODO: check
+CVE-2026-62881 (Numeric truncation error in Windows DNS allows an authorized attacker  ...)
+	TODO: check
+CVE-2026-62880 (Out-of-bounds read in Windows NTFS allows an authorized attacker to el ...)
+	TODO: check
+CVE-2026-62878 (Stack-based buffer overflow in Windows DNS allows an unauthorized atta ...)
+	TODO: check
+CVE-2026-62877 (Stack-based buffer overflow in Windows Win32K allows an authorized att ...)
+	TODO: check
+CVE-2026-62876 (Out-of-bounds read in Windows Win32K allows an authorized attacker to  ...)
+	TODO: check
+CVE-2026-62872 (Incorrect authorization in .NET Framework allows an authorized attacke ...)
+	TODO: check
+CVE-2026-62871 (Out-of-bounds write in .NET allows an unauthorized attacker to execute ...)
+	TODO: check
+CVE-2026-62869 (Insufficient verification of data authenticity in Azure Entra ID allow ...)
+	TODO: check
+CVE-2026-62842 (Out-of-bounds read in Microsoft Office allows an unauthorized attacker ...)
+	TODO: check
+CVE-2026-62839 (Insufficiently protected credentials in Microsoft Office SharePoint al ...)
+	TODO: check
+CVE-2026-62837 (Relative path traversal in Microsoft Office SharePoint allows an autho ...)
+	TODO: check
+CVE-2026-62832 (Improper link resolution before file access ('link following') in Wind ...)
+	TODO: check
+CVE-2026-62829 (Improper neutralization of input during web page generation ('cross-si ...)
+	TODO: check
+CVE-2026-62827 (Improper authentication in Microsoft Office SharePoint allows an autho ...)
+	TODO: check
+CVE-2026-62824 (Stack-based buffer overflow in Remote Desktop Client allows an unautho ...)
+	TODO: check
+CVE-2026-62823 (Heap-based buffer overflow in Windows DHCP Server allows an unauthoriz ...)
+	TODO: check
+CVE-2026-62822 (Integer overflow or wraparound in Windows GDI+ allows an unauthorized  ...)
+	TODO: check
+CVE-2026-62820 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-62819 (Remote Code Execution in Windows Routing and Remote Access Service (RR ...)
+	TODO: check
+CVE-2026-62818 (Use after free in Active Directory Certificate Services (AD CS) allows ...)
+	TODO: check
+CVE-2026-62817 (Out-of-bounds write in Windows DNS allows an unauthorized attacker to  ...)
+	TODO: check
+CVE-2026-62816 (Heap-based buffer overflow in Reliable Multicast Transport Driver (RMC ...)
+	TODO: check
+CVE-2026-62815 (Use after free in Microsoft QUIC allows an unauthorized attacker to ex ...)
+	TODO: check
+CVE-2026-62814 (Integer underflow (wrap or wraparound) in Windows DHCP Server allows a ...)
+	TODO: check
+CVE-2026-62812 (Improper link resolution before file access ('link following') in Wind ...)
+	TODO: check
+CVE-2026-62811 (Heap-based buffer overflow in Windows HTTP.sys allows an authorized at ...)
+	TODO: check
+CVE-2026-62807 (Improper link resolution before file access ('link following') in Wind ...)
+	TODO: check
+CVE-2026-62803 (Improper link resolution before file access ('link following') in Wind ...)
+	TODO: check
+CVE-2026-62800 (Heap-based buffer overflow in Windows SMB Server allows an authorized  ...)
+	TODO: check
+CVE-2026-62799 (Heap-based buffer overflow in Windows SMB Client allows an authorized  ...)
+	TODO: check
+CVE-2026-62798 (Untrusted pointer dereference in Windows Win32K allows an authorized a ...)
+	TODO: check
+CVE-2026-62797 (Heap-based buffer overflow in Windows NTFS allows an authorized attack ...)
+	TODO: check
+CVE-2026-62796 (Out-of-bounds read in Windows NTFS allows an authorized attacker to di ...)
+	TODO: check
+CVE-2026-62795 (Use after free in Windows LDAP - Lightweight Directory Access Protocol ...)
+	TODO: check
+CVE-2026-62793 (Buffer over-read in Windows NTFS allows an authorized attacker to disc ...)
+	TODO: check
+CVE-2026-62792 (Stack-based buffer overflow in Windows TCP/IP allows an unauthorized a ...)
+	TODO: check
+CVE-2026-62790 (Heap-based buffer overflow in Windows SMB Server allows an authorized  ...)
+	TODO: check
+CVE-2026-62788 (Use after free in Windows Kernel allows an authorized attacker to elev ...)
+	TODO: check
+CVE-2026-62787 (Use after free in Windows DNS allows an authorized attacker to execute ...)
+	TODO: check
+CVE-2026-62786 (Out-of-bounds read in Windows Win32K allows an authorized attacker to  ...)
+	TODO: check
+CVE-2026-62785 (Heap-based buffer overflow in Windows LDAP - Lightweight Directory Acc ...)
+	TODO: check
+CVE-2026-62784 (Heap-based buffer overflow in Microsoft Local Security Authority Serve ...)
+	TODO: check
+CVE-2026-62783 (Heap-based buffer overflow in Windows Remote Access Connection Manager ...)
+	TODO: check
+CVE-2026-62782 (Out-of-bounds read in Windows SMB Client allows an unauthorized attack ...)
+	TODO: check
+CVE-2026-62781 (Heap-based buffer overflow in RPC Runtime allows an unauthorized attac ...)
+	TODO: check
+CVE-2026-62780 (Use after free in Windows Kernel allows an authorized attacker to elev ...)
+	TODO: check
+CVE-2026-62779 (Use after free in Windows Schannel allows an authorized attacker to el ...)
+	TODO: check
+CVE-2026-62778 (Use after free in Windows DNS allows an unauthorized attacker to eleva ...)
+	TODO: check
+CVE-2026-62777 (Missing authentication for critical function in Windows License Manage ...)
+	TODO: check
+CVE-2026-62776 (Improper link resolution before file access ('link following') in Wind ...)
+	TODO: check
+CVE-2026-62775 (Incorrect authorization in Windows Container Isolation FS Filter Drive ...)
+	TODO: check
+CVE-2026-62774 (Use after free in Windows Graphics Kernel allows an authorized attacke ...)
+	TODO: check
+CVE-2026-62773 (Use after free in Windows Kerberos allows an authorized attacker to el ...)
+	TODO: check
+CVE-2026-62772 (Heap-based buffer overflow in Windows Container Isolation FS Filter Dr ...)
+	TODO: check
+CVE-2026-62771 (Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver a ...)
+	TODO: check
+CVE-2026-62770 (Heap-based buffer overflow in Windows Shell allows an authorized attac ...)
+	TODO: check
+CVE-2026-62769 (Numeric truncation error in Windows DNS allows an authorized attacker  ...)
+	TODO: check
+CVE-2026-62768 (Stack-based buffer overflow in Windows Installer allows an authorized  ...)
+	TODO: check
+CVE-2026-62766 (Double free in Windows Kerberos allows an authorized attacker to eleva ...)
+	TODO: check
+CVE-2026-62761 (Improper link resolution before file access ('link following') in Wind ...)
+	TODO: check
+CVE-2026-62758 (Heap-based buffer overflow in Windows Remote Access Connection Manager ...)
+	TODO: check
+CVE-2026-62757 (Improper verification of cryptographic signature in Windows Schannel a ...)
+	TODO: check
+CVE-2026-62755 (Stack-based buffer overflow in Windows DHCP Client allows an authorize ...)
+	TODO: check
+CVE-2026-62754 (Heap-based buffer overflow in Windows Kerberos allows an authorized at ...)
+	TODO: check
+CVE-2026-62753 (Heap-based buffer overflow in Windows HTTP.sys allows an authorized at ...)
+	TODO: check
+CVE-2026-62752 (Heap-based buffer overflow in Windows Kerberos allows an authorized at ...)
+	TODO: check
+CVE-2026-62751 (Integer overflow or wraparound in Windows Projected File System allows ...)
+	TODO: check
+CVE-2026-62750 (Partial string comparison in Windows HTTP Protocol Stack allows an una ...)
+	TODO: check
+CVE-2026-62749 (Use after free in Windows Kernel allows an authorized attacker to elev ...)
+	TODO: check
+CVE-2026-62748 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-62747 (Heap-based buffer overflow in Windows Device Association Service allow ...)
+	TODO: check
+CVE-2026-62746 (Buffer over-read in Windows Win32K allows an authorized attacker to di ...)
+	TODO: check
+CVE-2026-62745 (Integer underflow (wrap or wraparound) in Windows DHCP Server allows a ...)
+	TODO: check
+CVE-2026-62743 (Out-of-bounds read in Windows Win32K allows an authorized attacker to  ...)
+	TODO: check
+CVE-2026-62742 (Integer underflow (wrap or wraparound) in Windows DHCP Server allows a ...)
+	TODO: check
+CVE-2026-62741 (Integer underflow (wrap or wraparound) in Windows HTTP.sys allows an a ...)
+	TODO: check
+CVE-2026-62740 (Use of uninitialized resource in Windows Imaging Component allows an a ...)
+	TODO: check
+CVE-2026-62739 (Heap-based buffer overflow in Windows HTTP.sys allows an authorized at ...)
+	TODO: check
+CVE-2026-62738 (Out-of-bounds read in Windows Management Instrumentation allows an aut ...)
+	TODO: check
+CVE-2026-62737 (Untrusted pointer dereference in Windows Kernel allows an authorized a ...)
+	TODO: check
+CVE-2026-62736 (Heap-based buffer overflow in Windows DHCP Client allows an authorized ...)
+	TODO: check
+CVE-2026-62735 (Heap-based buffer overflow in Windows HTTP.sys allows an authorized at ...)
+	TODO: check
+CVE-2026-62734 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-62733 (Out-of-bounds read in Windows Win32K allows an authorized attacker to  ...)
+	TODO: check
+CVE-2026-62732 (Heap-based buffer overflow in Windows Telephony Service allows an auth ...)
+	TODO: check
+CVE-2026-62730 (Buffer over-read in Windows Wired AutoConfig Service allows an authori ...)
+	TODO: check
+CVE-2026-62729 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-62728 (Time-of-check time-of-use (toctou) race condition in Windows Common Lo ...)
+	TODO: check
+CVE-2026-62726 (Use after free in Windows Telephony Service allows an authorized attac ...)
+	TODO: check
+CVE-2026-62725 (Use after free in Windows Telephony Service allows an authorized attac ...)
+	TODO: check
+CVE-2026-62724 (Use after free in Windows Telephony Service allows an authorized attac ...)
+	TODO: check
+CVE-2026-62723 (Use after free in Windows Telephony Service allows an authorized attac ...)
+	TODO: check
+CVE-2026-62722 (Heap-based buffer overflow in Windows Bind Filter Driver allows an aut ...)
+	TODO: check
+CVE-2026-62721 (Insufficient granularity of access control in User-Mode Power Service  ...)
+	TODO: check
+CVE-2026-62720 (Integer underflow (wrap or wraparound) in Windows DHCP Server allows a ...)
+	TODO: check
+CVE-2026-62719 (Heap-based buffer overflow in Windows Message Queuing allows an author ...)
+	TODO: check
+CVE-2026-62718 (Integer underflow (wrap or wraparound) in Windows DHCP Server allows a ...)
+	TODO: check
+CVE-2026-62717 (Heap-based buffer overflow in Windows Message Queuing allows an author ...)
+	TODO: check
+CVE-2026-62716 (Integer underflow (wrap or wraparound) in Windows DHCP Server allows a ...)
+	TODO: check
+CVE-2026-62715 (Integer underflow (wrap or wraparound) in Windows DHCP Server allows a ...)
+	TODO: check
+CVE-2026-62714 (Integer underflow (wrap or wraparound) in Windows DHCP Server allows a ...)
+	TODO: check
+CVE-2026-62713 (Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver a ...)
+	TODO: check
+CVE-2026-62712 (Heap-based buffer overflow in Windows Win32K allows an authorized atta ...)
+	TODO: check
+CVE-2026-62711 (Use after free in Windows Win32K allows an authorized attacker to elev ...)
+	TODO: check
+CVE-2026-62710 (Heap-based buffer overflow in Windows Device Association Service allow ...)
+	TODO: check
+CVE-2026-62709 (Use of uninitialized resource in Windows GDI+ allows an authorized att ...)
+	TODO: check
+CVE-2026-62708 (Use after free in Windows Kernel allows an unauthorized attacker to el ...)
+	TODO: check
+CVE-2026-62707 (Use after free in Windows Modern Device Management (MDM) allows an aut ...)
+	TODO: check
+CVE-2026-62705 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-62703 (Out-of-bounds read in Windows DWM Core Library allows an authorized at ...)
+	TODO: check
+CVE-2026-62702 (Null pointer dereference in Windows Graphics Kernel allows an unauthor ...)
+	TODO: check
+CVE-2026-62701 (Use after free in Windows Telephony Service allows an authorized attac ...)
+	TODO: check
+CVE-2026-62700 (Heap-based buffer overflow in Windows NTFS allows an authorized attack ...)
+	TODO: check
+CVE-2026-62699 (Heap-based buffer overflow in Windows Universal Disk Format File Syste ...)
+	TODO: check
+CVE-2026-62698 (Numeric truncation error in Microsoft Digest Authentication allows an  ...)
+	TODO: check
+CVE-2026-62696 (Integer underflow (wrap or wraparound) in Windows Program Compatibilit ...)
+	TODO: check
+CVE-2026-62695 (Heap-based buffer overflow in Windows Storage allows an authorized att ...)
+	TODO: check
+CVE-2026-62693 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-62692 (Heap-based buffer overflow in Windows Remote Desktop Services allows a ...)
+	TODO: check
+CVE-2026-62690 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-62688 (Heap-based buffer overflow in Windows MIDI Service Module allows an au ...)
+	TODO: check
+CVE-2026-61939 (Use after free in Winlogon allows an authorized attacker to elevate pr ...)
+	TODO: check
+CVE-2026-61938 (Use after free in Windows Installer allows an authorized attacker to e ...)
+	TODO: check
+CVE-2026-61937 (Integer overflow or wraparound in Windows HTTP.sys allows an authorize ...)
+	TODO: check
+CVE-2026-61936 (Missing authorization in Windows Defender Firewall Service allows an a ...)
+	TODO: check
+CVE-2026-61934 (Use after free in Windows Bind Filter Driver allows an authorized atta ...)
+	TODO: check
+CVE-2026-61933 (Out-of-bounds read in Windows DWM Core Library allows an authorized at ...)
+	TODO: check
+CVE-2026-61932 (Access of resource using incompatible type ('type confusion') in Windo ...)
+	TODO: check
+CVE-2026-61930 (Heap-based buffer overflow in Windows Kernel allows an authorized atta ...)
+	TODO: check
+CVE-2026-61929 (Use after free in Windows Kernel allows an authorized attacker to elev ...)
+	TODO: check
+CVE-2026-61928 (Cleartext storage of sensitive information in Windows Hello allows an  ...)
+	TODO: check
+CVE-2026-61927 (Use after free in Windows Bind Filter Driver allows an authorized atta ...)
+	TODO: check
+CVE-2026-61926 (Heap-based buffer overflow in Windows USB Driver allows an authorized  ...)
+	TODO: check
+CVE-2026-61925 (Incorrect authorization in Windows Installer allows an authorized atta ...)
+	TODO: check
+CVE-2026-61924 (Out-of-bounds read in Remote Desktop Client allows an unauthorized att ...)
+	TODO: check
+CVE-2026-61923 (Heap-based buffer overflow in Windows Display Enhancement Service allo ...)
+	TODO: check
+CVE-2026-61921 (Out-of-bounds read in Remote Desktop Client allows an unauthorized att ...)
+	TODO: check
+CVE-2026-61920 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-61918 (Out-of-bounds read in Remote Desktop Client allows an unauthorized att ...)
+	TODO: check
+CVE-2026-61368 (Heap-based buffer overflow in Windows Hyper-V allows an authorized att ...)
+	TODO: check
+CVE-2026-61367 (Missing authentication for critical function in Windows Remote Desktop ...)
+	TODO: check
+CVE-2026-61366 (Double free in Windows Network Connection Broker allows an authorized  ...)
+	TODO: check
+CVE-2026-61365 (Missing authentication for critical function in Windows Remote Desktop ...)
+	TODO: check
+CVE-2026-61364 (Missing authentication for critical function in Windows Remote Desktop ...)
+	TODO: check
+CVE-2026-61363 (Heap-based buffer overflow in Remote Desktop Client allows an unauthor ...)
+	TODO: check
+CVE-2026-61361 (Use after free in Windows DHCP Client allows an authorized attacker to ...)
+	TODO: check
+CVE-2026-61360 (Untrusted pointer dereference in Windows GDI allows an authorized atta ...)
+	TODO: check
+CVE-2026-61359 (Heap-based buffer overflow in Windows Storage allows an authorized att ...)
+	TODO: check
+CVE-2026-61358 (Improper link resolution before file access ('link following') in Wind ...)
+	TODO: check
+CVE-2026-61357 (Use after free in Application Information Services allows an authorize ...)
+	TODO: check
+CVE-2026-61356 (Missing authentication for critical function in Windows Remote Desktop ...)
+	TODO: check
+CVE-2026-61355 (Heap-based buffer overflow in Windows Sensor Data Service allows an au ...)
+	TODO: check
+CVE-2026-61353 (Heap-based buffer overflow in Windows Telephony Service allows an auth ...)
+	TODO: check
+CVE-2026-61352 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-61350 (Buffer over-read in Windows NTFS allows an unauthorized attacker to di ...)
+	TODO: check
+CVE-2026-61349 (Use after free in Windows Work Folder Service allows an authorized att ...)
+	TODO: check
+CVE-2026-61348 (Use after free in Windows Ancillary Function Driver for WinSock allows ...)
+	TODO: check
+CVE-2026-61347 (Buffer over-read in Windows Event Logging Service allows an authorized ...)
+	TODO: check
+CVE-2026-61346 (Use after free in Windows Graphics Kernel allows an authorized attacke ...)
+	TODO: check
+CVE-2026-61345 (Null pointer dereference in Microsoft Remote Registry Service allows a ...)
+	TODO: check
+CVE-2026-59701 (A vulnerability has been identified in Simcenter Femap (All versions < ...)
+	TODO: check
+CVE-2026-59700 (A vulnerability has been identified in Simcenter Femap (All versions < ...)
+	TODO: check
+CVE-2026-59693 (A vulnerability has been identified in Desigo DXR2 (All versions < V01 ...)
+	TODO: check
+CVE-2026-59138 (Null pointer dereference in Microsoft Remote Registry Service allows a ...)
+	TODO: check
+CVE-2026-59137 (Use of uninitialized resource in Windows Event Logging Service allows  ...)
+	TODO: check
+CVE-2026-59136 (Use of uninitialized resource in Microsoft COM for Windows allows an a ...)
+	TODO: check
+CVE-2026-59135 (Weak authentication in Microsoft Windows Search Component allows an au ...)
+	TODO: check
+CVE-2026-59134 (Heap-based buffer overflow in Remote Desktop Client allows an unauthor ...)
+	TODO: check
+CVE-2026-59133 (Execution with unnecessary privileges in Microsoft High Performance Co ...)
+	TODO: check
+CVE-2026-59132 (Null pointer dereference in Windows TCP/IP allows an unauthorized atta ...)
+	TODO: check
+CVE-2026-59131 (No cwe for this issue in AMD Zen allows an authorized attacker to disc ...)
+	TODO: check
+CVE-2026-59130 (No cwe for this issue in AMD Zen allows an authorized attacker to disc ...)
+	TODO: check
+CVE-2026-59128 (Out-of-bounds read in Windows Encrypting File System (EFS) allows an a ...)
+	TODO: check
+CVE-2026-59127 (Integer overflow or wraparound in Windows Installer allows an authoriz ...)
+	TODO: check
+CVE-2026-59126 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-59125 (Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an au ...)
+	TODO: check
+CVE-2026-59124 (Deserialization of untrusted data in Microsoft High Performance Comput ...)
+	TODO: check
+CVE-2026-59122 (Concurrent execution using shared resource with improper synchronizati ...)
+	TODO: check
+CVE-2026-59119 (Incorrect default permissions in Microsoft PowerShell allows an author ...)
+	TODO: check
+CVE-2026-59113 (Missing authorization in Visual Studio Code allows an unauthorized att ...)
+	TODO: check
+CVE-2026-59086 (A vulnerability has been identified in Simcenter Nastran (All versions ...)
+	TODO: check
+CVE-2026-58651 (Heap-based buffer overflow in Microsoft Office Word allows an unauthor ...)
+	TODO: check
+CVE-2026-58650 (Authorization bypass through user-controlled key in Visual Studio Code ...)
+	TODO: check
+CVE-2026-58641 (Integer overflow or wraparound in .NET allows an unauthorized attacker ...)
+	TODO: check
+CVE-2026-58639 (Server-side request forgery (ssrf) in Microsoft Office SharePoint allo ...)
+	TODO: check
+CVE-2026-58612 (Server-side request forgery (ssrf) in Microsoft PowerShell Core allows ...)
+	TODO: check
+CVE-2026-58231 (SAP Commerce Cloud allows an unauthenticated attacker to abuse a defau ...)
+	TODO: check
+CVE-2026-58115 (A vulnerability has been identified in SIMATIC IoT2050 Advanced (6ES76 ...)
+	TODO: check
+CVE-2026-57263 (A vulnerability has been identified in LOGO! Soft Comfort (All version ...)
+	TODO: check
+CVE-2026-57262 (A vulnerability has been identified in LOGO! Soft Comfort (All version ...)
+	TODO: check
+CVE-2026-57105 (Improper neutralization of input during web page generation ('cross-si ...)
+	TODO: check
+CVE-2026-57104 (Improper neutralization of input during web page generation ('cross-si ...)
+	TODO: check
+CVE-2026-56721 (CamaleonCMS version 2.9.2 and earlier contains a privilege escalation  ...)
+	TODO: check
+CVE-2026-56720 (CamaleonCMS version 2.9.2 and earlier contains a missing authorization ...)
+	TODO: check
+CVE-2026-56179 (Origin validation error in Windows Network Address Translation (NAT) a ...)
+	TODO: check
+CVE-2026-56174 (Untrusted search path in Windows Narrator Braille allows an authorized ...)
+	TODO: check
+CVE-2026-54984 (Heap-based buffer overflow in Windows Imaging Component allows an unau ...)
+	TODO: check
+CVE-2026-54981 (Inclusion of functionality from untrusted control sphere in Visual Stu ...)
+	TODO: check
+CVE-2026-54123 (Exposure of sensitive information to an unauthorized actor in Microsof ...)
+	TODO: check
+CVE-2026-54113 (Allocation of resources without limits or throttling in Windows Kernel ...)
+	TODO: check
+CVE-2026-53416 (Path traversal in Zoom VDI Client and Plugins may allow an authenticat ...)
+	TODO: check
+CVE-2026-53415 (Use after Free in the annotator function of Zoom Clients may allow a m ...)
+	TODO: check
+CVE-2026-53414 (Missing bounds check in the annotator function of Zoom Clients allows  ...)
+	TODO: check
+CVE-2026-53413 (Missing bounds check in the annotator function of Zoom Clients allows  ...)
+	TODO: check
+CVE-2026-51584 (An issue in usememos v0.27.1 allows a remote attacker to achieve accou ...)
+	TODO: check
+CVE-2026-51583 (An issue in usememos through v0.30.0 allows a remote authenticated att ...)
+	TODO: check
+CVE-2026-50516 (Missing authentication for critical function in Microsoft Azure Kubern ...)
+	TODO: check
+CVE-2026-50472 (Heap-based buffer overflow in Windows LUAFV allows an authorized attac ...)
+	TODO: check
+CVE-2026-50237 (A Server-Side Request Forgery and supply chain flaw was found in the O ...)
+	TODO: check
+CVE-2026-50236 (An authenticated SSRF flaw was found in the OpenShift Console Dev Cons ...)
+	TODO: check
+CVE-2026-50064 (A vulnerability has been identified in Solid Edge SE2025 (All versions ...)
+	TODO: check
+CVE-2026-50063 (A vulnerability has been identified in Solid Edge SE2025 (All versions ...)
+	TODO: check
+CVE-2026-50062 (A vulnerability has been identified in Solid Edge SE2025 (All versions ...)
+	TODO: check
+CVE-2026-50061 (A vulnerability has been identified in Solid Edge SE2025 (All versions ...)
+	TODO: check
+CVE-2026-50060 (A vulnerability has been identified in Solid Edge SE2025 (All versions ...)
+	TODO: check
+CVE-2026-50059 (A vulnerability has been identified in Solid Edge SE2025 (All versions ...)
+	TODO: check
+CVE-2026-50058 (A vulnerability has been identified in Solid Edge SE2025 (All versions ...)
+	TODO: check
+CVE-2026-49179 (Improper neutralization of special elements used in a command ('comman ...)
+	TODO: check
+CVE-2026-48809 (python-engineio is a Python implementation of the Engine.IO realtime c ...)
+	TODO: check
+CVE-2026-48802 (python-engineio is a Python implementation of the Engine.IO realtime c ...)
+	TODO: check
+CVE-2026-48790 (Turso CLI is the command line interface (CLI) to the open-source datab ...)
+	TODO: check
+CVE-2026-48771 (ishankportfolio is a portfolio website. Prior to version 1.0.1, contac ...)
+	TODO: check
+CVE-2026-48767 (TypeBot is a chatbot builder tool. Versions prior to 3.17.0 allow a lo ...)
+	TODO: check
+CVE-2026-48766 (TypeBot is a chatbot builder tool. Versions prior to 3.17.0 allow a lo ...)
+	TODO: check
+CVE-2026-48495 (TypeBot is a chatbot builder tool. Prior to version 3.17.0, the Google ...)
+	TODO: check
+CVE-2026-48494 (TypeBot is a chatbot builder tool. In version 3.16.1, an authenticated ...)
+	TODO: check
+CVE-2026-48483 (TypeBot is a chatbot builder tool. Prior to version 3.17.0, Typebot's  ...)
+	TODO: check
+CVE-2026-48447 (Lightroom Classic is affected by an Incorrect Authorization vulnerabil ...)
+	TODO: check
+CVE-2026-48446 (CAI Content Credentials is affected by an Improper Limitation of a Pat ...)
+	TODO: check
+CVE-2026-48445 (CAI Content Credentials is affected by an Integer Overflow or Wraparou ...)
+	TODO: check
+CVE-2026-48444 (CAI Content Credentials is affected by an Integer Overflow or Wraparou ...)
+	TODO: check
+CVE-2026-48443 (CAI Content Credentials is affected by an Uncontrolled Resource Consum ...)
+	TODO: check
+CVE-2026-48442 (CAI Content Credentials is affected by an Improper Limitation of a Pat ...)
+	TODO: check
+CVE-2026-48441 (Lightroom Classic is affected by an Improper Limitation of a Pathname  ...)
+	TODO: check
+CVE-2026-48440 (ColdFusion is affected by a Heap-based Buffer Overflow vulnerability t ...)
+	TODO: check
+CVE-2026-48439 (CAI Content Credentials is affected by an Uncontrolled Resource Consum ...)
+	TODO: check
+CVE-2026-48438 (CAI Content Credentials is affected by a NULL Pointer Dereference vuln ...)
+	TODO: check
+CVE-2026-48437 (CAI Content Credentials is affected by an Improper Certificate Validat ...)
+	TODO: check
+CVE-2026-48436 (CAI Content Credentials is affected by an Improper Input Validation vu ...)
+	TODO: check
+CVE-2026-48435 (CAI Content Credentials is affected by an Integer Underflow (Wrap or W ...)
+	TODO: check
+CVE-2026-48434 (CAI Content Credentials is affected by an Uncontrolled Resource Consum ...)
+	TODO: check
+CVE-2026-48416 (Adobe Commerce is affected by an Incorrect Authorization vulnerability ...)
+	TODO: check
+CVE-2026-48415 (Adobe Commerce is affected by an Incorrect Authorization vulnerability ...)
+	TODO: check
+CVE-2026-48414 (Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vuln ...)
+	TODO: check
+CVE-2026-48413 (Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vuln ...)
+	TODO: check
+CVE-2026-48412 (Adobe Commerce is affected by an Incorrect Authorization vulnerability ...)
+	TODO: check
+CVE-2026-48411 (Adobe Commerce is affected by an Incorrect Authorization vulnerability ...)
+	TODO: check
+CVE-2026-48410 (Lightroom Classic is affected by an out-of-bounds write vulnerability  ...)
+	TODO: check
+CVE-2026-48409 (Lightroom Classic is affected by an out-of-bounds write vulnerability  ...)
+	TODO: check
+CVE-2026-48408 (Lightroom Classic is affected by an out-of-bounds write vulnerability  ...)
+	TODO: check
+CVE-2026-48407 (Lightroom Classic is affected by an out-of-bounds write vulnerability  ...)
+	TODO: check
+CVE-2026-48406 (Lightroom Classic is affected by an out-of-bounds write vulnerability  ...)
+	TODO: check
+CVE-2026-48405 (Lightroom Classic is affected by an out-of-bounds write vulnerability  ...)
+	TODO: check
+CVE-2026-48404 (Lightroom Classic is affected by an out-of-bounds write vulnerability  ...)
+	TODO: check
+CVE-2026-48397 (Lightroom Classic is affected by a Deserialization of Untrusted Data v ...)
+	TODO: check
+CVE-2026-48387 (CAI Content Credentials is affected by an Integer Overflow or Wraparou ...)
+	TODO: check
+CVE-2026-48386 (ColdFusion is affected by a Use of a Broken or Risky Cryptographic Alg ...)
+	TODO: check
+CVE-2026-48385 (ColdFusion is affected by an Improper Neutralization of Special Elemen ...)
+	TODO: check
+CVE-2026-48384 (ColdFusion is affected by an Improper Input Validation vulnerability t ...)
+	TODO: check
+CVE-2026-48381 (Adobe Campaign Classic (ACC) is affected by an Improper Neutralization ...)
+	TODO: check
+CVE-2026-48376 (is affected by an Improper Encoding or Escaping of Output vulnerabilit ...)
+	TODO: check
+CVE-2026-48375 (ColdFusion is affected by an Incorrect Authorization vulnerability tha ...)
+	TODO: check
+CVE-2026-48362 (ColdFusion is affected by an Improper Neutralization of Special Elemen ...)
+	TODO: check
+CVE-2026-48056 (Streambert is a cross-platform Electron Desktop App to stream and down ...)
+	TODO: check
+CVE-2026-48046 (Streambert is a cross-platform Electron Desktop App to stream and down ...)
+	TODO: check
+CVE-2026-47940 (Lightroom Classic is affected by an Integer Overflow or Wraparound vul ...)
+	TODO: check
+CVE-2026-47922 (CAI Content Credentials is affected by a Server-Side Request Forgery ( ...)
+	TODO: check
+CVE-2026-47705 (TypeBot is a chatbot builder tool. Version 3.16.1 has a CSV injection  ...)
+	TODO: check
+CVE-2026-47704 (TypeBot is a chatbot builder tool. Prior to version 3.17.0, an authent ...)
+	TODO: check
+CVE-2026-47702 (TypeBot is a chatbot builder tool. In version 3.16.1, API tokens (bear ...)
+	TODO: check
+CVE-2026-47299 (Improper neutralization of special elements used in a command ('comman ...)
+	TODO: check
+CVE-2026-47285 (Improper neutralization of special elements used in a command ('comman ...)
+	TODO: check
+CVE-2026-46670 (YesWiki is a wiki system written in PHP. Prior to version 4.6.4,  an u ...)
+	TODO: check
+CVE-2026-43606 (Observable Timing Discrepancy in the AMD Vitis Libraries ECDSA secp256 ...)
+	TODO: check
+CVE-2026-42976 (Missing authentication for critical function in Windows RPC API allows ...)
+	TODO: check
+CVE-2026-42142 (TypeBot is a chatbot builder tool. Prior to version 3.17.0, the `handl ...)
+	TODO: check
+CVE-2026-40375 (Missing authorization in Dynamics Business Central allows an authorize ...)
+	TODO: check
+CVE-2026-39452 (Protection mechanism failure for some Intel(R) Transfer Learning Tool  ...)
+	TODO: check
+CVE-2026-35502 (Deserialization of untrusted data for some Intel(R) Extension for PyTo ...)
+	TODO: check
+CVE-2026-34635 (is affected by a Use of Hard-coded Cryptographic Key vulnerability tha ...)
+	TODO: check
+CVE-2026-34175 (Uncontrolled search path for some Hardware-Aware-Automated-MachineLear ...)
+	TODO: check
+CVE-2026-33922 (A path traversal vulnerability was discovered in the Offline archives  ...)
+	TODO: check
+CVE-2026-33921 (The Windows installer deployed Npcap leaving its access restriction op ...)
+	TODO: check
+CVE-2026-32791 (Untrusted search path for some Intel(R) Performance Counter Monitor (I ...)
+	TODO: check
+CVE-2026-32788 (Uncontrolled search path for some Approximate Bayesian Inference Frame ...)
+	TODO: check
+CVE-2026-32677 (Path traversal for some gaudi-container-runtime before version 1.24.0  ...)
+	TODO: check
+CVE-2026-28757 (Protection mechanism failure for some Intel(R) Workload Services Frame ...)
+	TODO: check
+CVE-2026-28729 (Integer overflow in the UEFI firmware for the Intel(R) Slim Bootloader ...)
+	TODO: check
+CVE-2026-28707 (Protection mechanism failure for some LLM-on-Ray before version 1.0 wi ...)
+	TODO: check
+CVE-2026-28700 (Uncontrolled search path for some EquiTriton before version f5ddbb5 wi ...)
+	TODO: check
+CVE-2026-27765 (Improper input validation for some vLLM Hardware Plugin for Intel(R) G ...)
+	TODO: check
+CVE-2026-27302 (Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization ...)
+	TODO: check
+CVE-2026-25652 (is affected by an Incorrect Authorization vulnerability that could res ...)
+	TODO: check
+CVE-2026-25194 (Out-of-bounds write in the firmware for the Intel(R) Slim Bootloader m ...)
+	TODO: check
+CVE-2026-24911 (Stack-based buffer overflow for some Intel(R) PROSet/Wireless WiFi Sof ...)
+	TODO: check
+CVE-2026-24693 (Protection mechanism failure for some Intel(R) oneCCL Bindings for PyT ...)
+	TODO: check
+CVE-2026-24099 (Use after free for some Intel(R) PROSet/Wireless WiFi Software for Win ...)
+	TODO: check
+CVE-2026-22887 (Improper buffer restrictions for some Intel(R) PROSet/Wireless WiFi So ...)
+	TODO: check
+CVE-2026-21400 (Protection mechanism failure for some Intel(R) AI Reference Models bef ...)
+	TODO: check
+CVE-2026-21399 (Heap-based buffer overflow for the Intel(R) Open Volume Kernel Library ...)
+	TODO: check
+CVE-2026-21387 (Protection mechanism failure for some Intel(R) LLM Library for PyTorch ...)
+	TODO: check
+CVE-2026-21279 (is affected by an Improper Input Validation vulnerability that could r ...)
+	TODO: check
+CVE-2026-21273 (is affected by an Improper Input Validation vulnerability that could r ...)
+	TODO: check
+CVE-2026-21269 (is affected by a stored Cross-Site Scripting (XSS) vulnerability that  ...)
+	TODO: check
+CVE-2026-20913 (Improper input validation for some Intel(R) Neural Compressor software ...)
+	TODO: check
+CVE-2026-20908 (Time-of-check time-of-use race condition for the Intel(R) NPU Driver f ...)
+	TODO: check
+CVE-2026-20906 (Protection mechanism failure for some Intel(R) Neural Compressor softw ...)
+	TODO: check
+CVE-2026-20903 (Protection mechanism failure for some Intel(R) AI Containers before ve ...)
+	TODO: check
+CVE-2026-20898 (Improper access control in the firmware for some in Alias Checking Tru ...)
+	TODO: check
+CVE-2026-20891 (Improper authentication for some Intel(R) PROSet/Wireless WiFi Softwar ...)
+	TODO: check
+CVE-2026-20890 (Improper privilege management for some Intel(R) PROSet/Wireless WiFi S ...)
+	TODO: check
+CVE-2026-20886 (Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software fo ...)
+	TODO: check
+CVE-2026-20885 (Improper authentication in the Intel(R) TDX module for some Intel(R) p ...)
+	TODO: check
+CVE-2026-20878 (Null pointer dereference for some Intel(R) PROSet/Wireless WiFi Softwa ...)
+	TODO: check
+CVE-2026-20799 (Untrusted search path for some Battery Life Diagnostic Tool software b ...)
+	TODO: check
+CVE-2026-20795 (Improper buffer restrictions for some Intel(R) PROSet/Wireless WiFi So ...)
+	TODO: check
+CVE-2026-20789 (Improper access control for some Intel(R) PROSet/Wireless WiFi Softwar ...)
+	TODO: check
+CVE-2026-20787 (Null pointer dereference for some Intel(R) PROSet/Wireless WiFi Softwa ...)
+	TODO: check
+CVE-2026-20786 (Out-of-bounds read for the Intel(R) NPU Driver for all versions within ...)
+	TODO: check
+CVE-2026-20783 (Improper conditions check in the firmware for the Intel(R) NPU Driver  ...)
+	TODO: check
+CVE-2026-20780 (Uncontrolled resource consumption for some Intel(R) PROSet/Wireless Wi ...)
+	TODO: check
+CVE-2026-20778 (Out-of-bounds read for some Intel(R) PROSet/Wireless WiFi Software for ...)
+	TODO: check
+CVE-2026-20776 (Improper conditions check for some Intel(R) PROSet/Wireless WiFi Softw ...)
+	TODO: check
+CVE-2026-20775 (Uncaught exception for some Intel(R) TDX modules within Ring 0: Trust  ...)
+	TODO: check
+CVE-2026-20770 (Protection mechanism failure for some Cluster Management Toolkit for K ...)
+	TODO: check
+CVE-2026-20769 (Improper conditions check for the Intel(R) NPU Driver for all versions ...)
+	TODO: check
+CVE-2026-20765 (Incorrect comparison for some Intel(R) TDX Guest software before versi ...)
+	TODO: check
+CVE-2026-20763 (Incorrect calculation for some Intel(R) TDX Guest software before vers ...)
+	TODO: check
+CVE-2026-20755 (Protection mechanism failure for some LLM Scaler software within Ring  ...)
+	TODO: check
+CVE-2026-20752 (Improper authentication for some Intel(R) PROSet/Wireless WiFi Softwar ...)
+	TODO: check
+CVE-2026-20749 (Out-of-bounds read for some Intel(R) PROSet/Wireless WiFi Software wit ...)
+	TODO: check
+CVE-2026-20747 (Improper conditions check for some Intel(R) PROSet/Wireless WiFi Softw ...)
+	TODO: check
+CVE-2026-20745 (Out-of-bounds write for some Intel(R) PROSet/Wireless WiFi Software fo ...)
+	TODO: check
+CVE-2026-20741 (Improper access control for some Intel(R) PROSet/Wireless WiFi Softwar ...)
+	TODO: check
+CVE-2026-20739 (Improper conditions check for some Intel(R) PROSet/Wireless WiFi Softw ...)
+	TODO: check
+CVE-2026-20737 (Exposure of sensitive information to an unauthorized actor for some In ...)
+	TODO: check
+CVE-2026-20734 (Improper initialization in some firmware for some Intel(R) Active Mana ...)
+	TODO: check
+CVE-2026-20731 (Improper buffer restrictions for the Intel(R) NPU Driver for all versi ...)
+	TODO: check
+CVE-2026-20728 (Protection mechanism failure for some Intel Extension for TensorFlow s ...)
+	TODO: check
+CVE-2026-20727 (Null pointer dereference for some Intel(R) PROSet/Wireless WiFi Softwa ...)
+	TODO: check
+CVE-2026-20715 (Improper input validation in some firmware for some Intel(R) Active Ma ...)
+	TODO: check
+CVE-2026-20712 (Incomplete cleanup in some UEFI firmware for some Intel(R) reference p ...)
+	TODO: check
+CVE-2026-20708 (Insertion of sensitive information into log file in the subsystem for  ...)
+	TODO: check
+CVE-2026-20705 (Insecure storage of sensitive information in the Intel(R) TDX module f ...)
+	TODO: check
+CVE-2026-20702 (Protection mechanism failure for some Intel(R) Data Center Attestation ...)
+	TODO: check
+CVE-2026-20349 (A vulnerability in the Remote Access SSL VPN service for Cisco Secure  ...)
+	TODO: check
+CVE-2026-19546 (A flaw was found in DBI. This is a fix for a partial fix for CVE-2026- ...)
+	TODO: check
+CVE-2026-19539 (Authorization Bypass Through User-Controlled Key in the ticket managem ...)
+	TODO: check
+CVE-2026-19519 (A flaw was found in claircore's RPM package scanner. Crafted RPM heade ...)
+	TODO: check
+CVE-2026-19434 (Cross-site Scripting in the finding renderer in maalfer Pentestify bef ...)
+	TODO: check
+CVE-2026-19418 (The referrer enforcement introduced with TYPO3-CORE-SA-2020-006 (CVE-2 ...)
+	TODO: check
+CVE-2026-19078 (A flaw was found in the oauth-server component. This open redirect vul ...)
+	TODO: check
+CVE-2026-18972 (An authenticated attacker can spoof another GUI user's identity by sen ...)
+	TODO: check
+CVE-2026-18860 (Velociraptor allows multi-tenant deployments named "Orgs".  By default ...)
+	TODO: check
+CVE-2026-18712 (An issue in MongoDB Server's Queryable Encryption maintenance operatio ...)
+	TODO: check
+CVE-2026-18711 (An issue in MongoDB Server's query execution engine could allow an aut ...)
+	TODO: check
+CVE-2026-18709 (An issue in MongoDB Server could allow an authenticated user with dire ...)
+	TODO: check
+CVE-2026-18708 (An issue in MongoDB Server's JavaScript scripting engine could allow a ...)
+	TODO: check
+CVE-2026-18707 (An issue in MongoDB Server could allow an authenticated user, includin ...)
+	TODO: check
+CVE-2026-18706 (An issue in MongoDB Server's $graphLookup aggregation stage could allo ...)
+	TODO: check
+CVE-2026-18705 (An issue in MongoDB Server's Atlas Vector Search feature could allow a ...)
+	TODO: check
+CVE-2026-18704 (An issue in MongoDB Server's aggregation framework could allow an auth ...)
+	TODO: check
+CVE-2026-18703 (An issue in MongoDB Server could allow a party with a valid client cer ...)
+	TODO: check
+CVE-2026-18702 (An issue in MongoDB Server could allow an authenticated user with limi ...)
+	TODO: check
+CVE-2026-18701 (An issue in MongoDB Server's query subsystem could allow an authentica ...)
+	TODO: check
+CVE-2026-18700 (An issue in MongoDB Server's geospatial validation could allow an auth ...)
+	TODO: check
+CVE-2026-18699 (An issue in MongoDB Server's query planner could allow an authenticate ...)
+	TODO: check
+CVE-2026-18698 (An issue in MongoDB Server could allow an authenticated user with a li ...)
+	TODO: check
+CVE-2026-18697 (An issue in MongoDB Server's aggregation framework could allow an unau ...)
+	TODO: check
+CVE-2026-18696 (An issue in MongoDB Server's applyOps command could allow an authentic ...)
+	TODO: check
+CVE-2026-18695 (An issue in MongoDB Server's handling of certain query predicates agai ...)
+	TODO: check
+CVE-2026-18694 (An issue in MongoDB Server's geospatial query processing could allow a ...)
+	TODO: check
+CVE-2026-18693 (An issue in MongoDB Server's handling of timeseries collections could  ...)
+	TODO: check
+CVE-2026-18692 (An issue in MongoDB Server's handling of timeseries bucket lifecycle c ...)
+	TODO: check
+CVE-2026-18691 (An issue in MongoDB Server's intra-cluster connection setup could allo ...)
+	TODO: check
+CVE-2026-18690 (An issue in MongoDB Server could allow an authenticated user with a li ...)
+	TODO: check
+CVE-2026-18688 (An issue in MongoDB Server's aggregation framework could allow an auth ...)
+	TODO: check
+CVE-2026-18687 (MongoDB Server's handling of a Queryable Encryption maintenance operat ...)
+	TODO: check
+CVE-2026-18640 (The NewNotebook API does not sufficiently sanitize its parameters allo ...)
+	TODO: check
+CVE-2026-18639 (When Velociraptor is configured to use an OIDC IdP for authentication, ...)
+	TODO: check
+CVE-2026-18638 (Any authenticated Velociraptor user \u2014 including one holding only  ...)
+	TODO: check
+CVE-2026-18636 (The Velociraptor gRPC API has a VFSGetBuffer endpoint which allows rea ...)
+	TODO: check
+CVE-2026-18635 (Velociraptor's VQL has a query() plugin which allows running a VQL que ...)
+	TODO: check
+CVE-2026-18247 (A Cross Site Scripting (XSS) vulnerability in the Web Portals of AtHoc ...)
+	TODO: check
+CVE-2026-18129 (Cleartext transmission of sensitive information in the Core of Ivanti  ...)
+	TODO: check
+CVE-2026-18127 (External control of a filename in the Core of Ivanti Endpoint Manager  ...)
+	TODO: check
+CVE-2026-18125 (An out-of-boundsread intheAgent ofIvanti Endpoint Managerbeforeversion ...)
+	TODO: check
+CVE-2026-17535 (Velociraptor's NTFS parsing library mishandles several out of bound an ...)
+	TODO: check
+CVE-2026-17061 (A Deserialization of Untrusted Data vulnerability affecting SIMULIA Ex ...)
+	TODO: check
+CVE-2026-15567 (A flaw was found in Wildfly. A remote unauthenticated attacker can tri ...)
+	TODO: check
+CVE-2026-15565 (A flaw was found in Undertow. A remote attacker can cause Out of Memor ...)
+	TODO: check
+CVE-2026-15563 (A flaw was found in EAP's IIOP. The listener's NameService would accep ...)
+	TODO: check
+CVE-2026-15562 (A flaw was found in EAP's jboss-remoting. A remote unauthenticated att ...)
+	TODO: check
+CVE-2026-15561 (A flaw was found in EAP's undertow http/1.1 chunked-transfer decoder.  ...)
+	TODO: check
+CVE-2026-15560 (when EAP runs with -secmgr, the openjdk-orb's JDKBridge honours attack ...)
+	TODO: check
+CVE-2026-15556 (A flaw was found in Picketlink's SP signature validation; a SAML respo ...)
+	TODO: check
+CVE-2026-15555 (A flaw was found in JBoss marshalling. The Infinispan session replicat ...)
+	TODO: check
+CVE-2026-15554 (the Undertow AJP listener honours forged ssl_cert and is_ssl AJP attri ...)
+	TODO: check
+CVE-2026-15426 (The AcyMailing \u2013 An Ultimate Newsletter Plugin and Marketing Auto ...)
+	TODO: check
+CVE-2026-14180 (A flaw was found in the ChunkReader component of the Undertow HTTP ser ...)
+	TODO: check
+CVE-2026-13739 (A legacy endpoint in Command Center contained an unauthenticated serve ...)
+	TODO: check
+CVE-2026-13738 (CommServe contained an authorization bypass vulnerability affecting a  ...)
+	TODO: check
+CVE-2026-13737 (CommServe contained an allowlist bypass vulnerability affecting comman ...)
+	TODO: check
+CVE-2026-12571 (An authentication bypass in ManageEngine DDI Central's password-reset  ...)
+	TODO: check
+CVE-2026-11814 (A command injection vulnerability in the listed NETGEAR models allows  ...)
+	TODO: check
+CVE-2026-11739 (A command injection vulnerability in certain affected NETGEAR Nighthaw ...)
+	TODO: check
+CVE-2026-11738 (Insufficient input validation vulnerability in thelisted NETGEAR model ...)
+	TODO: check
+CVE-2026-11737 (Insufficient input validation vulnerability in thelisted  NETGEAR mode ...)
+	TODO: check
+CVE-2026-11736 (A stack-based buffer overflow vulnerability affects certain NETGEAR mo ...)
+	TODO: check
+CVE-2026-11735 (A stack-based buffer overflow vulnerability affects the listed NETGEAR ...)
+	TODO: check
+CVE-2026-11734 (A buffer overflow vulnerability in the listed NETGEAR models allows an ...)
+	TODO: check
+CVE-2026-11733 (A buffer overflow vulnerability in the listed NETGEAR models allows a  ...)
+	TODO: check
+CVE-2026-10579 (A flaw was found in Picketlink Federation SAML; the unsolcited respons ...)
+	TODO: check
+CVE-2026-0465 (A Use\u2011After\u2011Free (UAF) vulnerability in the AMD Ryzen\u2122  ...)
+	TODO: check
+CVE-2025-8087 (A DLL hijacking vulnerability in AMD Power Design Manager could allow  ...)
+	TODO: check
+CVE-2025-61970 (Weak permissions in the Vitis\u2122 Unified installation path on local ...)
+	TODO: check
+CVE-2025-54512 (A DLL hijacking vulnerability within the AMD Ryzen Master installation ...)
+	TODO: check
+CVE-2025-48506 (Uncontrolled search paths in Vitis\u2122 Unified installation path on  ...)
+	TODO: check
+CVE-2025-48505 (Weak permissions in the Vitis\u2122 Unified installation path on local ...)
+	TODO: check
+CVE-2025-35987 (Omission of security-relevant information for some Intel(R) Software G ...)
+	TODO: check
+CVE-2025-31356 (Insufficient verification of data authenticity for some Intel(R) Trust ...)
+	TODO: check
+CVE-2025-31114 (Fooocus is an image generating software. In versions 2.5.5 and prior,  ...)
+	TODO: check
+CVE-2025-0046 (Incorrect directory permissions could allow a local user to escalate t ...)
+	TODO: check
+CVE-2025-0041 (Uncontrolled search paths in the Vitis\u2122 Embedded Single File Down ...)
+	TODO: check
+CVE-2023-54374
+	REJECTED
+CVE-2023-54373
+	REJECTED
+CVE-2023-54372
+	REJECTED
+CVE-2023-54371
+	REJECTED
+CVE-2023-54370
+	REJECTED
+CVE-2023-54369
+	REJECTED
+CVE-2023-54368
+	REJECTED
+CVE-2023-54367
+	REJECTED
+CVE-2022-50997 (Weaver (Fanwei) E-cology 8.0 and 9.0 contains a SQL injection vulnerab ...)
+	TODO: check
+CVE-2022-50974
+	REJECTED
+CVE-2021-47995
+	REJECTED
+CVE-2021-47994
+	REJECTED
+CVE-2021-47993
+	REJECTED
+CVE-2021-47992
+	REJECTED
+CVE-2021-47991
+	REJECTED
+CVE-2021-47990
+	REJECTED
+CVE-2021-47989
+	REJECTED
+CVE-2021-47988
+	REJECTED
+CVE-2020-37265
+	REJECTED
+CVE-2020-37264
+	REJECTED
+CVE-2020-37263
+	REJECTED
+CVE-2020-37262
+	REJECTED
+CVE-2020-37261
+	REJECTED
+CVE-2020-37260
+	REJECTED
+CVE-2020-37259
+	REJECTED
+CVE-2020-37258
+	REJECTED
+CVE-2020-37257
+	REJECTED
+CVE-2016-20097 (Weaver (Fanwei) E-cology 8.0 contains a SQL injection vulnerability in ...)
+	TODO: check
+CVE-2026-20707 (Hardware logic contains race conditions for some 3rd Gen Intel(R) Xeon ...)
 	- intel-microcode <unfixed> (bug #1144158)
 	[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose first in unstable, then likely point release)
 	NOTE: https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
 	NOTE: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01443.html
-CVE-2026-20901
+CVE-2026-20901 (Improper input validation for some Intel(R) Xeon(R) processors within  ...)
 	- intel-microcode <unfixed> (bug #1144158)
 	[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose first in unstable, then likely point release)
 	NOTE: https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
 	NOTE: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01442.html
-CVE-2026-20713
+CVE-2026-20713 (Always-incorrect control flow implementation in some firmware for some ...)
 	- intel-microcode <unfixed> (bug #1144158)
 	[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose first in unstable, then likely point release)
 	NOTE: https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
 	NOTE: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01442.html
-CVE-2026-20760
+CVE-2026-20760 (Improper handling of overlap between protected memory ranges in some m ...)
 	- intel-microcode <unfixed> (bug #1144158)
 	[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose first in unstable, then likely point release)
 	NOTE: https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
 	NOTE: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01441.html
-CVE-2026-20716
+CVE-2026-20716 (Improper access control for some Intel(R) Processors within Ring 3: Us ...)
 	- intel-microcode <unfixed> (bug #1144158)
 	[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose first in unstable, then likely point release)
 	NOTE: https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
 	NOTE: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01435.html
-CVE-2025-35973
+CVE-2025-35973 (Improper handling of values for some Intel(R) Processors within Ring 0 ...)
 	- intel-microcode <unfixed> (bug #1144158)
 	[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose first in unstable, then likely point release)
 	NOTE: https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
 	NOTE: https://www.cve.org/CVERecord?id=CVE-2025-35973
-CVE-2026-20917
+CVE-2026-20917 (Exposure of sensitive information caused by incorrect data forwarding  ...)
 	- intel-microcode <unfixed> (bug #1144158)
 	[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose first in unstable, then likely point release)
 	NOTE: https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
 	NOTE: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01423.html
-CVE-2025-31938
+CVE-2025-31938 (Insufficient granularity of access control in some subsystem for some  ...)
 	- intel-microcode <unfixed> (bug #1144158)
 	[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose first in unstable, then likely point release)
 	NOTE: https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
 	NOTE: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01404.html
-CVE-2025-31936
+CVE-2025-31936 (Improper handling of overlap between protected memory ranges for some  ...)
 	- intel-microcode <unfixed> (bug #1144158)
 	[trixie] - intel-microcode <postponed> (As usual fixed top-down, expose first in unstable, then likely point release)
 	NOTE: https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/releases/tag/microcode-20260811
@@ -902,7 +2532,7 @@ CVE-2026-21058 (Improper input validation in Samsung Contacts prior to SMR Aug-2
 	NOT-FOR-US: Samsung Mobile
 CVE-2026-19433 (Authorization Bypass Through User-Controlled Key in the contact manage ...)
 	TODO: check
-CVE-2026-19429 (Jenkins FilePath.untarFrom() in all versions, including those with the ...)
+CVE-2026-19429 (Jenkins FilePath.untarFrom() does not validate symlink targets in extr ...)
 	TODO: check
 CVE-2026-19404 (A flaw was found in 389 Directory Server. The CleanAllRUV and Abort Cl ...)
 	TODO: check
@@ -3183,7 +4813,7 @@ CVE-2026-11425 (Domoticz versions prior to 2026.3 contains a stored cross-site s
 	- domoticz <itp> (bug #899058)
 CVE-2025-4438
 	REJECTED
-CVE-2026-66808
+CVE-2026-66808 (Deserialization of untrusted data in Microsoft Office SharePoint allow ...)
 	NOT-FOR-US: hypershift-addon-operator
 CVE-2026-9169 (DLL Search Order Hijacking in LUCID Vision Labs Arena SDK 1.0.80.49 on ...)
 	NOT-FOR-US: LUCID Vision Labs Arena SDK
@@ -3715,7 +5345,7 @@ CVE-2026-5855 (Contiki-NG's LwM2M TLV parser lwm2m_tlv_read() in os/services/lwm
 	NOT-FOR-US: Contiki-NG
 CVE-2026-5336 (The DataPress (Dataverse Integration) WordPress plugin before 2.91 doe ...)
 	NOT-FOR-US: WordPress plugin
-CVE-2026-59118 (Improper authorization in Microsoft Power Apps allows an unauthorized  ...)
+CVE-2026-59118 (Improper authorization in Copilot Cowork allows an unauthorized attack ...)
 	NOT-FOR-US: Microsoft
 CVE-2026-59115 ('.../...//' in Microsoft Entra Provisioning Service (SyncFabric) allow ...)
 	NOT-FOR-US: Microsoft
@@ -24077,7 +25707,7 @@ CVE-2026-15007 (A denial of service vulnerability was identified in GitHub Enter
 	NOT-FOR-US: Github Enterprise Server
 CVE-2026-14871 (osTicket versions v1.18.3 and v1.17.7 contain a Broken Object Level Au ...)
 	NOT-FOR-US: osTicket
-CVE-2026-13410 (Dancer::Plugin::Auth::Google versions through 0.07 for Perl have TLS v ...)
+CVE-2026-13410 (Dancer::Plugin::Auth::Google versions before 0.08 for Perl have TLS ve ...)
 	NOT-FOR-US: Dancer::Plugin::Auth::Google Perl module
 CVE-2026-13082 (GD::SecurityImage versions through 1.75 for Perl use rand to generate  ...)
 	- libgd-securityimage-perl <unfixed> (bug #1142330)
@@ -83145,9 +84775,9 @@ CVE-2026-41476 (Deskflow is a keyboard and mouse sharing app.  Prior to 1.26.0.1
 	NOTE: https://github.com/deskflow/deskflow/security/advisories/GHSA-3jp5-g964-cgmh
 CVE-2026-41475 (BACnet Stack is a BACnet open source protocol stack C library for embe ...)
 	NOT-FOR-US: BACnet Stack
-CVE-2026-41473 (CyberPanel versions prior to2.4.4 contain an authentication bypass vul ...)
+CVE-2026-41473 (CyberPanel versions prior to2.4.5 contain an authentication bypass vul ...)
 	NOT-FOR-US: CyberPanel
-CVE-2026-41472 (CyberPanel versions prior to2.4.4 contain a stored cross-site scriptin ...)
+CVE-2026-41472 (CyberPanel versions prior to2.4.5 contain a stored cross-site scriptin ...)
 	NOT-FOR-US: CyberPanel
 CVE-2026-41433 (OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based ...)
 	NOT-FOR-US: OpenTelemetry



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/96ac874bd143894a67127a77dee5a94081ea17fa

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/96ac874bd143894a67127a77dee5a94081ea17fa
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260811/095927c8/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list