Latest High-Impact Threats

Updated every 2 hours from CISA KEV and NVD feeds.

CVSS 7.5

CVE-2026-10056

Network Optix Nx Witness VMS - REST API

CVSS 8.3

CVE-2026-9994

Google Chrome - Core

CVSS 8.8

CVE-2026-9984

Google Chrome - UI

CVSS 8.3

CVE-2026-9966

Google Chrome - Renderer Process

CVSS 8.3

CVE-2026-9949

Google Chrome - Core

CVSS 8.8

CVE-2026-9945

Google Chrome - Media

CVSS 8.3

CVE-2026-9937

Google Chrome - UI

CVSS 8.3

CVE-2026-9932

Google Chrome - ANGLE

CVSS 8.8

CVE-2026-9928

Google Chrome - ANGLE

CVSS 8.3

CVE-2026-9924

Google Chrome - ANGLE

CVSS 8.3

CVE-2026-9905

Google Chrome - Accessibility

CVSS 8.3

CVE-2026-9890

Google Chrome - XR

CVSS 8.3

CVE-2026-10000

Google Chrome - Renderer Process

CVSS 7.5

CVE-2026-10044

ai-goofish-monitor - API Service

CVSS 8.8

CVE-2026-8915

Samsung Open Source - Escargot

CVSS 8.8

CVE-2026-46414

Microsoft UFO - WebSocket Control Plane

CVSS 8.1

CVE-2026-46402

Microsoft UFO - Open-Source Framework

CVSS 7.8

CVE-2026-45322

Microsoft UFO - Shell Action Replay

CVSS 8.4

CVE-2026-45108

Himmelblau - Device Authorization Grant (DAG) flow

CVSS 8.8

CVE-2026-44988

LibVNCClient - Tight encoding decoder

CVSS 7.3

CVE-2026-9605

GNU libredwg - Dwgbmp Utility

CVSS 7.8

CVE-2026-24193

NVIDIA Display Driver - Graphics Rendering Engine

CVSS 7.8

CVE-2026-24191

NVIDIA Display Driver for Windows - Display Driver

CVSS 7.8

CVE-2026-24190

NVIDIA Display Driver - Kernel Mode Layer

CVSS 9

CVE-2026-45721

Algernon - Web Server

CVSS 7.3

CVE-2026-9521

bitsery - bitsery library

CVSS 7.3

CVE-2026-9474

StudentManagementSystem - studentdel.php

CVSS 7.3

CVE-2026-9470

StudentManagementSystem - student_trans.php

CVSS 7.3

CVE-2026-9469

StudentManagementSystem - success.php

CVSS 7.3

CVE-2026-9367

NousResearch hermes-agent - terminal_tool

CVSS 8.8

CVE-2026-45659

Microsoft Office SharePoint

CVSS 10

CVE-2026-42901

Microsoft Entra ID

CVSS 10

CVE-2026-41104

Microsoft Planetary Computer Pro - Deserialization Component

CVSS 9.3

CVE-2026-41090

Microsoft Copilot

CVSS 9.1

CVE-2026-33843

Microsoft Azure Active Directory B2C

CVSS 10

CVE-2026-23652

Microsoft Power Pages

CVSS 8.8

CVE-2026-8992

Ivanti Secure Access Client

CVSS 7.5

CVE-2026-8671

Avantra - Logging Service

CVSS 9.6

CVE-2026-8670

Avantra - Session Management

CVSS 8.4

CVE-2026-2740

ManageEngine - ADSelfService Plus

CVSS 8.8

CVE-2026-9118

Google Chrome - XR

CVSS 8.8

CVE-2026-9112

Google Chrome - GPU

CVSS 8.8

CVE-2026-45495

Microsoft Edge - Chromium-based Browser

CVSS 9.8

CVE-2026-8398

Actively Exploited

DAEMON Tools Lite - DTHelper.exe, DiscSoftBusServiceLite.exe, DTShellHlp.exe

CVSS 7.5

CVE-2026-24899

Fleet - Windows MDM Enrollment

CVSS 7.8

CVE-2024-47091

Checkmk - mk_mysql agent plugin

CVSS 9.8

CVE-2026-44277

FortiAuthenticator - Authentication Service

CVSS 7.8

CVE-2026-42831

Microsoft Office

CVSS 8.4

CVE-2026-40363

Microsoft Office

CVSS 8.3

CVE-2026-35438

Windows - Windows Admin Center