🔒 Security Intelligence Dashboard

Updated: 2026-07-22 (UTC)
NVD CVEs (today)
7
CISA KEV (added)
0
GH Advisories
20
JVN Items
0
News Articles
20
NVD CVEs — 本日公開 (7 件)
CVE-2026-16488 5.0 MEDIUM
A vulnerability was determined in QUSETIONS MiniCode-Python 0.1.0. This vulnerability affects the function subprocess.Popen of the file minicode/config.py of the component Project File Handler. Executing a manipulation can lead to os command injection. The attack may be launched remotely. A high com
CVE-2026-16489 5.3 MEDIUM
A vulnerability was identified in jsforce up to 3.10.16. This issue affects the function _execCommand in the library lib/registry/sfdx.js of the component SFDX Connection Registry. The manipulation leads to os command injection. The attack can only be performed from a local environment. The exploit
CVE-2026-63262 4.3 MEDIUM
Missing Authorization (CWE-862) in Kibana can lead to unauthorized cross-space information disclosure via user-supplied input that circumvents space-level access control.
CVE-2026-63263 6.5 MEDIUM
Uncontrolled Resource Consumption (CWE-400) in Elasticsearch can lead to denial of service via Exponential Data Expansion (CAPEC-197). An authenticated user may submit a specially crafted query to the ES|QL engine that causes exponential CPU consumption during query evaluation. Because the resource
CVE-2026-16490 6.3 MEDIUM
A security flaw has been discovered in itsourcecode Hospital Management System 1.0. Impacted is an unknown function of the file /prescription.php. The manipulation of the argument editid results in sql injection. The attack can be executed remotely. The exploit has been released to the public and ma
CVE-2026-16492 5.5 MEDIUM
A weakness has been identified in umijs umi up to 4.6.63. The affected element is the function git.getFileCreateInfo of the file packages/utils/src/getFileGitIno.ts of the component GIT File Helper. This manipulation causes os command injection. The exploit has been made available to the public and
CVE-2026-56844
A vulnerability in the Veeam Updater component of the Veeam Software Appliance that could allow a local user to elevate their privileges and gain root-level access to the underlying operating system.
CISA Known Exploited Vulnerabilities — 本日追加 (0 件 / 累計 1651 件)

本日の新規追加なし

GitHub Security Advisories — 本日公開 (20 件)
GHSA-72f6-c934-4fg9 HIGH
A vulnerability in the Veeam Updater component of the Veeam Software Appliance that could allow a...
GHSA-p58h-q4wh-jxrq LOW
A security flaw has been discovered in itsourcecode Hospital Management System 1.0. Impacted is...
GHSA-g3hq-vgww-mrhj LOW
A weakness has been identified in umijs umi up to 4.6.63. The affected element is the function...
GHSA-6mqg-64h7-88w3 LOW
A vulnerability was determined in QUSETIONS MiniCode-Python 0.1.0. This vulnerability affects the...
GHSA-95j6-2ch4-858w MEDIUM
Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive...
GHSA-vv4j-vm47-33w3 MEDIUM
Authorization Bypass Through User-Controlled Key (CWE-639) in Kibana can lead to information...
GHSA-mq6c-w86q-vpp3 MEDIUM
Incomplete List of Disallowed Inputs (CWE-184) in Kibana can allow an authenticated attacker with...
GHSA-j8w5-8rj6-wpwf LOW
A signed integer overflow vulnerability was found in libarchive's ZIP writer. In the...
GHSA-qhc4-cxq6-mg2g LOW
A vulnerability was identified in jsforce up to 3.10.16. This issue affects the function...
GHSA-jmgx-g6r2-c5f2 UNKNOWN
Inappropriate implementation in WebAudio in Google Chrome prior to 150.0.7871.182 allowed a...
JVN / JPCERT·CC — 最新情報

本日の新着なし

Security News