CVE Watcher
Sitemap Privacy Security.txt Open CVE Console

Linux · Services · Exploit-aware triage

Quiet security intelligence for noisy vulnerability data.

Track CVEs across Linux distributions and infrastructure services such as NGINX, Apache HTTPD, MySQL, MariaDB, OpenSSL, OpenSSH, PHP, PostgreSQL and Docker. Results are enriched with CVSS, EPSS and CISA KEV context.

New CVE scanner

Latest signal

Refresh
CVE-2026-28164 CRITICAL CVE LIST V5 2026-08-20 Cross-Site Request Forgery (CSRF) vulnerability in HashThemes Easy Elementor Addons allows Cross Site Request Forgery. This issue affects Easy Ele... CVE-2026-74011 HIGH CVE LIST V5 2026-08-20 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in revmakx InfiniteWP Client allows Blind SQL In... CVE-2026-28163 MEDIUM CVE LIST V5 2026-08-20 Missing Authorization vulnerability in myCred New User Approve allows Exploiting Incorrectly Configured Access Control Security Levels. This issue... CVE-2026-18482 LOW CVE LIST V5 2026-08-20 Neo.mjs contains a command injection vulnerability within the FileSystemService.mjs component of the ai/mcp/server/file-system MCP server, where th... CVE-2025-10263 CRITICAL CVE LIST V5 2026-06-09 Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Cor... CVE-2025-48431 HIGH CVE LIST V5 2026-04-28 Mismatched Memory Management Routines vulnerability in Apache Thrift c_glib language bindings. This issue affects Apache Thrift: before 0.23.0. U... CVE-2025-61726 HIGH CVE LIST V5 2026-01-28 The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query parameters in URLs is genera... CVE-2025-13465 MEDIUM CVE LIST V5 2026-01-21 Lodash versions 4.0.0 through 4.17.22 are vulnerable to prototype pollution in the _.unset and _.omit functions. An attacker can pass crafted paths... CVE-2025-69223 HIGH CVE LIST V5 2026-01-05 AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Versions 3.13.2 and below allow a zip bomb to be used to execute a... CVE-2024-21626 HIGH CVE LIST V5 2024-01-31 runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. In runc 1.1.11 and earlier, due to an internal...

Hover a radar dot for a short CVE summary. Click the dot to open the local share page.

CriticalKEV, CVSS ≥ 9 or very high EPSS
HighCVSS ≥ 7 or elevated EPSS
MediumCVSS ≥ 4
LowTrack and review

Coverage

Linux distributions

Ubuntu, Debian, Alpine, Arch Linux, Fedora, CentOS, Red Hat Enterprise Linux, Rocky Linux, AlmaLinux, Oracle Linux, SUSE / openSUSE, Amazon Linux

Targets

Infrastructure services

NGINX, Apache HTTPD, MySQL / mysqld, MariaDB, OpenSSH, OpenSSL, PHP, PostgreSQL, Docker, Redis, Bind DNS, DirectAdmin