U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

NVD Dashboard

CVEs Received and Processed

CVEs Received and Processed

Please Wait

CVE Status Count

Please Wait

CVSS Score Spread

Please Wait

CVSS V3 Score Distribution

Severity Number of Vulns

CVSS V2 Score Distribution

Severity Number of Vulns


For information on how to the cite the NVD, including the database's Digital Object Identifier (DOI), please consult NIST's Public Data Repository.

Last 20 Scored Vulnerability IDs & Summaries CVSS Severity
  • CVE-2026-15265 - A path traversal vulnerability in Tenable Agent 11.2.0 and 11.1.3 and lower allows a privileged attacker to write arbitrary files outside the intended plugin directory, potentially leading to remote code execution.
    Published: July 14, 2026; 11:16:57 AM -0400

  • CVE-2026-19449 - IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 has a vulnerability in cmdnim that may allow an unprivileged local user to executes the payload as root.
    Published: August 20, 2026; 6:17:18 PM -0400

  • CVE-2026-17028 - IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in partition firmware during network boot. An unauthenticated attacker with access to the same... read CVE-2026-17028
    Published: August 19, 2026; 4:17:11 PM -0400

  • CVE-2026-17091 - IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the PowerVM hypervisor call interface. An attacker with root access to a guest partition ca... read CVE-2026-17091
    Published: August 19, 2026; 4:17:12 PM -0400

  • CVE-2026-17097 - IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the PowerVM hypervisor call interface. An attacker with root access to a guest partition ca... read CVE-2026-17097
    Published: August 19, 2026; 4:17:12 PM -0400

    V3.1: 6.7 MEDIUM

  • CVE-2026-17414 - IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 Power Systems Firmware is affected by a vulnerability in partition firmware during network boot. An unauthenticated attacker ... read CVE-2026-17414
    Published: August 19, 2026; 4:17:12 PM -0400

    V3.1: 8.8 HIGH

  • CVE-2026-18821 - IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 Power Systems Firmware is affected by a vulnerability in partition firmware during network boot. An unauthenticated attacker ... read CVE-2026-18821
    Published: August 19, 2026; 4:17:13 PM -0400

    V3.1: 8.8 HIGH

  • CVE-2026-18871 - IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vulnerability in host firmware configuration parsing. An attacker with authenticated service-level access to the service processor can ... read CVE-2026-18871
    Published: August 19, 2026; 4:17:13 PM -0400

  • CVE-2026-4936 - IBM PowerVM Hypervisor Platform KeyStore (PKS) and virtual TPM FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H2 use persistent storage key seeds that result in an AES key with reduced strength. An attacker wi... read CVE-2026-4936
    Published: August 19, 2026; 5:16:55 PM -0400

    V3.1: 6.2 MEDIUM

  • CVE-2026-4937 - IBM PowerVM Hypervisor FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H2 could allow a local attacker with administrative privileges to decrypt encrypted data due to certain hypervisor calls utilizing less ent... read CVE-2026-4937
    Published: August 19, 2026; 5:16:55 PM -0400

    V3.1: 6.0 MEDIUM

  • CVE-2026-15961 - IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 IBM PowerVM could allow a local attacker to obtain sensitive information or cause a denial of service due to improper control of format strings.
    Published: August 19, 2026; 11:16:56 AM -0400

    V3.1: 6.0 MEDIUM

  • CVE-2026-17093 - IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through FW950.H2, OP940.00 through OP940.a1 (Power9), and OP940.00 - OP940.81 (Power HMC) is affected by a vulnerability in host firmware conf... read CVE-2026-17093
    Published: August 19, 2026; 3:17:11 PM -0400

  • CVE-2026-17100 - Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through FW950.H2, OP940.00 through OP940.a1, and OP940.00 - OP940.81 is affected by a vulnerability in the service processor mailbox interface. An... read CVE-2026-17100
    Published: August 19, 2026; 3:17:11 PM -0400

  • CVE-2026-17429 - IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through FW950.H2, OP940.00 through OP940.a1 (Power9), and OP940.00 - OP940.81 (Power HMC) is affected by a vulnerability in the interface betw... read CVE-2026-17429
    Published: August 19, 2026; 3:17:11 PM -0400

  • CVE-2026-17494 - IBM Power Systems Firmware FW1120.00, and FW1110.00 through FW1110.30 is affected by a vulnerability in the interface between the BMC and the host system. An attacker with service access to the BMC can send a specially crafted command, allowing ar... read CVE-2026-17494
    Published: August 19, 2026; 3:17:11 PM -0400

  • CVE-2026-18681 - IBM Server Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the FSP firmware update process. An attacker with authenticated administrator-level access to ... read CVE-2026-18681
    Published: August 19, 2026; 3:17:12 PM -0400

  • CVE-2026-57031 - An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS on MX Series allows adjacent subscribers to bypass configured firewall filters. On MX Series devices with MPC... read CVE-2026-57031
    Published: July 09, 2026; 6:17:08 PM -0400

  • CVE-2026-18848 - IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the ASMI web interface. An attacker who can lure a logged-in ASMI administrator to visi... read CVE-2026-18848
    Published: August 19, 2026; 3:17:12 PM -0400

  • CVE-2026-19321 - Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vulnerability in the host firmware. An attacker with service access to the service processor can supply a carefully crafted command tha... read CVE-2026-19321
    Published: August 19, 2026; 3:17:12 PM -0400

  • CVE-2026-16661 - IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the service processor mailbox interface. An attacker with authenticated service-level acces... read CVE-2026-16661
    Published: August 19, 2026; 4:17:01 PM -0400