CVE-2021-23758 — Ajax.NET Professional Ajax.NET Professional: Insecure Deserialization | CVSS 8.1 HIGH

HIGH

CVSS 8.1 HIGH  ·  EPSS 89%  ·  Ajax.NET Professional Ajax.NET Professional

Read more

CVE-2026-21962 — Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in | CVSS 10.0 CRITICAL

CRITICAL

CVSS 10.0 CRITICAL  ·  EPSS 43%  ·  Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in

Read more

CVE-2026-73570 — Synacor Zimbra Collaboration Suite (ZCS): OS Command Injection | CVSS 8.9 HIGH

HIGH

CVSS 8.9 HIGH  ·  EPSS 1%  ·  Synacor Zimbra Collaboration Suite (ZCS)

Read more

CVE-2026-69836 — Microsoft Entra ID : Insecure Deserialization | CVSS 10.0 CRITICAL

CRITICAL

CVSS 10.0 CRITICAL  ·  EPSS 1%  ·  Microsoft Entra ID

Read more

CVE-2026-72529 — TrueConf Server: Missing Authentication | CVSS 9.3 CRITICAL

CRITICAL

CVSS 9.3 CRITICAL  ·  EPSS 0%  ·  TrueConf Server

Read more

CVE-2026-72530 — TrueConf Server: Code Injection | CVSS 9.5 CRITICAL

CRITICAL

CVSS 9.5 CRITICAL  ·  EPSS 0%  ·  TrueConf Server

Read more

CVE-2026-64849 — MLflow MLflow | CVSS 9.3 CRITICAL

CRITICAL

CVSS 9.3 CRITICAL  ·  EPSS 1%  ·  MLflow MLflow

Read more

CVE-2026-65400 — Apple macOS: Improper Authentication | CVSS 9.8 CRITICAL

CRITICAL

CVSS 9.8 CRITICAL  ·  EPSS 0%  ·  Apple macOS

Read more

CVE-2026-55040 — Microsoft SharePoint | CVSS 9.1 CRITICAL

CRITICAL

CVSS 9.1 CRITICAL  ·  EPSS 4%  ·  Microsoft SharePoint

Read more

CVE-2026-59310 — Broadcom VMware vCenter: Path Traversal | CVSS 9.8 CRITICAL

CRITICAL

CVSS 9.8 CRITICAL  ·  EPSS 1%  ·  Broadcom VMware vCenter

Read more