CVE
Info.com
  • Browse CVEs
  • Trends
  • Email Alerts
  • About

📊 CVE Trends & Statistics

Discover trending vulnerabilities and security insights

Last 7 Days Last 30 Days Last 90 Days Last Year
895
Total CVEs
75
Critical
297
High
346
Medium
46
Low
6.8
Avg CVSS Score

Severity Distribution

75
Critical
8%
Click to view
297
High
33%
Click to view
346
Medium
39%
Click to view
46
Low
5%
Click to view

Daily CVE Trends

198
Apr 15
135
Apr 16
137
Apr 17
52
Apr 18
22
Apr 19
166
Apr 20
162
Apr 21

Top Affected Vendors

Google
Click to view all CVEs
31
🔥 1
Dell
Click to view all CVEs
30
Freescout-help-desk
Click to view all CVEs
20
🔥 2
OpenClaw
Click to view all CVEs
15
🔥 1
Cisco
Click to view all CVEs
15
🔥 4
Apache Software Foundation
Click to view all CVEs
13
🔥 2
Anviz
Click to view all CVEs
12
🔥 1
Adobe
Click to view all CVEs
12
Go
Click to view all CVEs
12
🔥 1
Silex technology, Inc.
Click to view all CVEs
11
🔥 1

Top Affected Products

chrome
Google
Click to view all CVEs
31
🔥 1
PowerProtect Data Domain
Dell
Click to view all CVEs
23
freescout
Freescout-help-desk
Click to view all CVEs
20
🔥 2
OpenClaw
OpenClaw
Click to view all CVEs
15
🔥 1
SD-330AC, AMC Manager
Silex technology, Inc.
Click to view all CVEs
11
🔥 1
Adobe Framemaker
Adobe
Click to view all CVEs
11
weblate
WeblateOrg
Click to view all CVEs
10
Apache Airflow
Apache Software Foundation
Click to view all CVEs
9
🔥 1
dataease
Dataease
Click to view all CVEs
9
🔥 2
firebird
FirebirdSQL
Click to view all CVEs
9
🔥 1

🔥 Recently Published CVEs

CVE-2026-41194 MEDIUM - 5.4

FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.215, the mailbox OAuth disconnect action is implemented as `GET /mailbox/oauth-disconnect/{id}/{in_out}/{provider}`. ...

Vendor: freescout-help-desk Product: freescout Published: Apr 21, 2026
CVE-2026-41193 CRITICAL - 9.1

FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.215, FreeScout's module installation feature extracts ZIP archives without validating file paths, allowing an authent...

Vendor: freescout-help-desk Product: freescout Published: Apr 21, 2026
CVE-2026-41192 HIGH - 7.1

FreeScout is a free self-hosted help desk and shared mailbox. Prior to version 1.8.215, the reply and draft flows trust client-supplied encrypted attachment IDs. Any IDs present in `attachments_all[]`...

Vendor: freescout-help-desk Product: freescout Published: Apr 21, 2026
CVE-2026-40608 MEDIUM - 6.2

Next AI Draw.io is a next.js web application that integrates AI capabilities with draw.io diagrams. Prior to 0.4.15, the embedded HTTP sidecar contains three POST handlers (/api/state, /api/restore, a...

Vendor: DayuanJiang Product: next-ai-draw-io Published: Apr 21, 2026
CVE-2026-40606 MEDIUM - 4.8

mitmproxy is a interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers and mitmweb is a web-based interface for mitmproxy. In mitmproxy 12.2.1 and below, the bu...

Vendor: mitmproxy Product: mitmproxy Published: Apr 21, 2026
CVE-2026-40604

ClearanceKit intercepts file-system access events on macOS and enforces per-process access policies. Prior to 5.0.6, the opfilter Endpoint Security system extension (bundle ID uk.craigbass.clearanceki...

Vendor: craigjbass Product: clearancekit Published: Apr 21, 2026
CVE-2026-40599

ClearanceKit intercepts file-system access events on macOS and enforces per-process access policies. Prior to 5.0.5, ClearanceKit incorrectly treats a process with an empty Team ID and a non-empty Sig...

Vendor: craigjbass Product: clearancekit Published: Apr 21, 2026
CVE-2026-40588 HIGH - 8.1

blueprintUE is a tool to help Unreal Engine developers. Prior to 4.2.0, the password change form at /profile/{slug}/edit/ does not include a current_password field and does not verify the user's exist...

Vendor: blueprintue Product: blueprintue-self-hosted-edition Published: Apr 21, 2026
CVE-2026-40587 MEDIUM - 6.5

blueprintUE is a tool to help Unreal Engine developers. Prior to 4.2.0, when a user changes their password via the profile edit page, or when a password reset is completed via the reset link, neither ...

Vendor: blueprintue Product: blueprintue-self-hosted-edition Published: Apr 21, 2026
CVE-2026-6743 LOW - 3.5

A vulnerability has been found in WebSystems WebTOTUM 2026. This impacts an unknown function of the component Calendar. The manipulation leads to cross site scripting. The attack may be initiated remo...

Published: Apr 21, 2026
Browse CVEs Trends Email Alerts About

© 2026 CVEInfo.com - Aggregating CVE Information from Multiple Sources

Data sources: NVD, MITRE, GitHub Security Advisories