CVE Severity Distribution (Last 30 Days)
Found 5 CVEs in the last 30 days.
CVE-2026-1281
CRITICAL
CVSS: 9.8
EPSS: 98.5%
VulnCheck KEV
Weaponized
Metasploit
CWE-94
T1059
A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution.
Published: 2026-01-29
CVE-2026-12816
UNKNOWN
EPSS: 0.1%
In Bouncy Castle for Java before 1.85, IESEngine stream-mode MAC forgery via length-dependent KDF split. This issue also affects Bouncy Castle for Java LTS before 2.73.12.
Published: 2026-08-03
CVE-2026-12817
UNKNOWN
EPSS: 0.1%
In Bouncy Castle for Java before 1.85, OpenPGP AEAD decryption skips final tag on chunk-aligned data. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips 1.0.13 (1.0.X series), 2.0.13 (2.0.X series) and 2.1.13 (2.1.X series).
Published: 2026-08-03
CVE-2026-12818
UNKNOWN
EPSS: 0.4%
Delta Electronics DVP12SE PLCs are susceptible to a resource allocation vulnerability without limits or throttling (CWE-770) within their Modbus TCP service.
Published: 2026-06-30
CVE-2026-12819
UNKNOWN
EPSS: 0.5%
Delta Electronics DVP12SE PLC exposes a Modbus TCP service over a specified port without authentication or access control, permitting unauthenticated interaction with security-sensitive PLC functions.
Published: 2026-06-30