| | CVE-2026-76368 | Splunk | low | 2.7 | 0.2%
| | In Splunk SOAR versions below 8.6.0, a user who holds a role that contains the playbooks:view permis… | Aug 19, 2026 | Aug 21, 2026 |
| | CVE-2026-76369 | Splunk | low | 2.7 | 0.3%
| | In Splunk SOAR versions below 8.6.0, a user who holds the OnPrem Broker role could write files outsi… | Aug 19, 2026 | Aug 21, 2026 |
| | CVE-2026-76370 | Splunk | medium | 4.3 | 0.2%
| | In Splunk SOAR versions below 8.6.0, an authenticated user with restricted tenant access could use t… | Aug 19, 2026 | Aug 21, 2026 |
| | CVE-2026-76387 | Splunk | high | 8.1 | 0.3%
| | In Splunk Enterprise Security versions below 8.6.1, a user who holds a Splunk Enterprise Security ro… | Aug 19, 2026 | Aug 25, 2026 |
| | CVE-2026-76388 | Splunk | high | 8.1 | 0.2%
| | In Splunk Enterprise Security versions below 8.6.1, a user who holds the ess_analyst Splunk Enterpri… | Aug 19, 2026 | Aug 25, 2026 |
| | CVE-2026-76389 | Cisco | high | 8.8 | 0.3%
| | In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, a user that holds a … | Aug 19, 2026 | Aug 21, 2026 |
| | CVE-2026-76390 | Cisco | medium | 5.3 | 0.3%
| | In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, an unauthenticated u… | Aug 19, 2026 | Aug 21, 2026 |
| | CVE-2026-76391 | Splunk | high | 8.3 | 0.3%
| | In Splunk AI Toolkit versions below 6.0.0, a user who does not hold the "admin" or "power" Splunk ro… | Aug 19, 2026 | Aug 26, 2026 |
| | CVE-2026-76392 | Splunk | medium | 5.4 | 0.2%
| | In Splunk AI Toolkit versions below 6.0.0, a user who does not hold the "admin" or "power" Splunk ro… | Aug 19, 2026 | Aug 26, 2026 |
| | CVE-2026-76393 | Splunk | medium | 5.9 | 0.1%
| | In Splunk AI Toolkit versions below 6.0.0, a user who can upload models could overwrite a model bein… | Aug 19, 2026 | Aug 26, 2026 |
| | CVE-2026-76394 | Splunk | high | 8.3 | 0.3%
| | In Splunk AI Toolkit versions below 6.0.0, a low-privileged user who does not hold the "admin" or "p… | Aug 19, 2026 | Aug 26, 2026 |
| | CVE-2026-76395 | Splunk | high | 8.8 | 0.5%
| | In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk role could execute ar… | Aug 19, 2026 | Aug 26, 2026 |
| | CVE-2026-76396 | Splunk | high | 7.5 | 0.2%
| | In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the schedule_search capabil… | Aug 19, 2026 | Aug 21, 2026 |
| | CVE-2026-76397 | Splunk | high | 8.1 | 0.3%
| | In Splunk AI Toolkit versions below 6.0.0, a user who holds the "power" Splunk role could access and… | Aug 19, 2026 | Aug 21, 2026 |
| | CVE-2026-76398 | Splunk | medium | 4.3 | 0.2%
| | In Splunk AI Toolkit versions below 6.0.1, a user who does not hold the "admin" or "power" Splunk ro… | Aug 19, 2026 | Aug 24, 2026 |
| | CVE-2026-76399 | Splunk | high | 8.1 | 0.2%
| | In Splunk AI Toolkit versions below 6.0.1, a user who holds the "power" Splunk role could modify app… | Aug 19, 2026 | Aug 26, 2026 |
| | CVE-2026-76400 | Splunk | medium | 5.9 | 0.3%
| | In Splunk Connect for Kafka versions below 2.2.7, an unauthenticated user who can reach the Kafka Co… | Aug 19, 2026 | Aug 24, 2026 |
| | CVE-2026-76401 | Splunk | medium | 5.9 | 0.3%
| | In Splunk Connect for Kafka versions below 2.2.7, an unauthenticated user who can reach the Kafka Co… | Aug 19, 2026 | Aug 24, 2026 |
| | CVE-2026-76402 | Splunk | high | 8.2 | 0.3%
| | In Splunk Connect for Kafka versions below 2.2.7, an unauthenticated user who can reach the Kafka Co… | Aug 19, 2026 | Aug 24, 2026 |
| | CVE-2026-76403 | Splunk | high | 7.4 | 0.2%
| | In Splunk Connect for Kafka versions below 2.2.7, an unauthenticated user positioned in the network … | Aug 19, 2026 | Aug 24, 2026 |
| | CVE-2026-76404 | Splunk | critical | 9.1 | 0.6%
| | In Splunk MCP Server app versions below 1.2.1, a user who holds the "admin" Splunk role could execut… | Aug 19, 2026 | Aug 24, 2026 |
| | CVE-2026-76405 | Splunk | medium | 4.3 | 0.1%
| | In Splunk On-Call (VictorOps) app versions below 1.0.43 on Splunkbase, a user who does not hold the … | Aug 19, 2026 | Aug 24, 2026 |
| | CVE-2026-64783 | Red Hat | high | 8.8 | 0.4%
| | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari … | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-64757 | Red Hat | high | 8.8 | 0.5%
| | A memory corruption issue was addressed with improved state management. This issue is fixed in Safar… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-64730 | Red Hat | medium | 4.3 | 0.5%
| | The issue was addressed with improved UI. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-64787 | Red Hat | high | 8.8 | 0.3%
| ✓ Fix | A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari … | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-64728 | Red Hat | medium | 6.5 | 0.4%
| | A permissions issue was addressed with improved validation. This issue is fixed in Safari 26.6, iOS … | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-64719 | Red Hat | high | 8.8 | 0.4%
| | An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Sa… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-64713 | Red Hat | medium | 6.5 | 0.5%
| | This issue was addressed with improved checks. This issue is fixed in Safari 26.6, iOS 26.6 and iPad… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-43804 | Red Hat | medium | 6.5 | 0.4%
| | This issue was addressed through improved state management. This issue is fixed in Safari 26.6, iOS … | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-28984 | Red Hat | high | 8.8 | 0.2%
| ✓ Fix | The issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.10 and iPadOS… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-76956 | Red Hat | medium | 5.9 | 0.3%
| ✓ Fix | In libexpat 2.8.2 and 2.8.3 before 2.8.4, misinterpretation of getentropy's return code leads to ins… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-76957 | Red Hat | medium | 4.9 | 0.1%
| ✓ Fix | libexpat before 2.8.4 lacks handler call depth tracking with custom encoding callbacks. Thus, a use-… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-11861 | Red Hat | medium | 9.6 | 0.2%
| | A flaw was found in FreeIPA. When a trust relationship is configured between FreeIPA and Active Dire… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-73196 | Red Hat | medium | 4.3 | 0.2%
| | A flaw was found in FreeIPA. A low-privilege authenticated user can exploit this vulnerability by su… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-73197 | Red Hat | high | 7.5 | 0.3%
| | A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by se… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-73198 | Red Hat | high | 7.5 | 0.3%
| | A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit a vulnerability in the `… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-73199 | Red Hat | medium | 6.5 | 0.3%
| | A flaw was found in the `ipa-enrollment` SLAPI plugin. A remote authenticated client can exploit a n… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-13097 | Red Hat | high | 8.7 | 0.3%
| | A privilege escalation flaw was found in FreeIPA. The uniqueness constraint enforced on Kerberos pri… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-77176 | Red Hat | high | 8.1 | 0.4%
| | A flaw was found in Kata Containers. In configurations utilizing genpolicy for Confidential Containe… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-61897 | Red Hat | high | 7.8 | 0.1%
| | An Ubuntu-specific patch to AccountsService before 23.13.9-8ubuntu7 only partially drops privileges … | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-61898 | Red Hat | high | 7.8 | 0.1%
| | The Ubuntu-specific language helper scripts (save-to-pam-env, update-langlist) shipped with accounts… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-49825 | Red Hat | high | 8.2 | 0.2%
| | lxml is a library for processing XML and HTML in the Python language. Prior to 6.1.1, link attribute… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-71492 | Red Hat | medium | 6.5 | 0.3%
| | Banks generates meaningful LLM prompts using a simple template language. Prior to version 2.4.5, Dir… | Aug 20, 2026 | Aug 20, 2026 |
| | CVE-2026-63015 | Apache | medium | 4.3 | 0.4%
| | Uncontrolled Resource Consumption vulnerability in Apache InLong. Non-template responsible persons c… | Aug 20, 2026 | Aug 26, 2026 |
| | CVE-2026-63016 | Apache | medium | 5.3 | 0.4%
| | Uncontrolled Resource Consumption vulnerability in Apache InLong. Users could affect operational con… | Aug 20, 2026 | Aug 26, 2026 |
| | CVE-2026-63037 | Apache | critical | 9.8 | 0.5%
| | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i… | Aug 20, 2026 | Aug 26, 2026 |
| | CVE-2026-63038 | Apache | critical | 9.8 | 0.6%
| | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i… | Aug 20, 2026 | Aug 26, 2026 |
| | CVE-2026-63039 | Apache | critical | 9.8 | 0.6%
| | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i… | Aug 20, 2026 | Aug 27, 2026 |
| | CVE-2026-63040 | Apache | high | 8.1 | 0.5%
| | Files or Directories Accessible to External Parties vulnerability in Apache InLong. StreamSource per… | Aug 20, 2026 | Aug 27, 2026 |