CVE
Info.com
  • Browse CVEs
  • Trends
  • Email Alerts
  • About

📊 CVE Trends & Statistics

Discover trending vulnerabilities and security insights

Last 7 Days Last 30 Days Last 90 Days Last Year
6,294
Total CVEs
588
Critical
2,268
High
2,447
Medium
296
Low
6.9
Avg CVSS Score

Severity Distribution

588
Critical
9%
Click to view
2,268
High
36%
Click to view
2,447
Medium
39%
Click to view
296
Low
5%
Click to view

Daily CVE Trends

254
Mar 24
620
Mar 25
293
Mar 26
221
Mar 27
56
Mar 28
55
Mar 29
158
Mar 30
248
Mar 31
269
Apr 01
227
Apr 02
251
Apr 03
77
Apr 04
112
Apr 05
218
Apr 06
262
Apr 07
500
Apr 08
263
Apr 09
223
Apr 10
39
Apr 11
54
Apr 12
229
Apr 13
424
Apr 14
198
Apr 15
135
Apr 16
137
Apr 17
52
Apr 18
22
Apr 19
166
Apr 20
345
Apr 21
32
Apr 22

Top Affected Vendors

Linux
Click to view all CVEs
240
Google
Click to view all CVEs
120
🔥 6
OpenClaw
Click to view all CVEs
119
🔥 10
Npm
Click to view all CVEs
119
🔥 13
Go
Click to view all CVEs
114
🔥 14
Apple
Click to view all CVEs
101
🔥 3
Pip
Click to view all CVEs
94
🔥 19
Microsoft
Click to view all CVEs
71
🔥 6
WWBN
Click to view all CVEs
62
🔥 4
Apache Software Foundation
Click to view all CVEs
57
🔥 5

Top Affected Products

Linux
Linux
Click to view all CVEs
240
OpenClaw
OpenClaw
Click to view all CVEs
119
🔥 10
chrome
Google
Click to view all CVEs
118
🔥 6
AVideo
WWBN
Click to view all CVEs
62
🔥 4
macOS
Apple
Click to view all CVEs
55
🔥 1
firefox
Mozilla
Click to view all CVEs
49
🔥 23
CRM
ChurchCRM
Click to view all CVEs
43
🔥 4
Endian Firewall
Endian
Click to view all CVEs
34
chamilo-lms
Chamilo
Click to view all CVEs
31
🔥 3
windows_10_1607
Microsoft
Click to view all CVEs
31
🔥 1

🔥 Recently Published CVEs

CVE-2026-22754 HIGH - 7.5

Vulnerability in Spring Spring Security. If an application uses <sec:intercept-url servlet-path="/servlet-path" pattern="/endpoint/**"/> to define the servlet path for computing a path matcher, then...

Vendor: Spring Product: Spring Security Published: Apr 22, 2026
CVE-2026-22753 HIGH - 7.5

Vulnerability in Spring Spring Security. If an application is using securityMatchers(String) and a PathPatternRequestMatcher.Builder bean to prepend a servlet path, matching requests to that filte...

Vendor: Spring Product: Spring Security Published: Apr 22, 2026
CVE-2026-22748 MEDIUM - 5.3

Vulnerability in Spring Spring Security. When an application configures JWT decoding with NimbusJwtDecoder  or NimbusReactiveJwtDecoder, it must configure an OAuth2TokenValidator<Jwt> separately,...

Vendor: Spring Product: Spring Security Published: Apr 22, 2026
CVE-2026-22747 MEDIUM - 6.8

Vulnerability in Spring Spring Security. SubjectX500PrincipalExtractor does not correctly handle certain malformed X.509 certificate CN values, which can lead to reading the wrong value for the us...

Vendor: Spring Product: Spring Security Published: Apr 22, 2026
CVE-2026-22746 LOW - 3.7

Vulnerability in Spring Spring Security. If an application is using the UserDetails#isEnabled, #isAccountNonExpired, or #isAccountNonLocked user attributes, to enable, expire, or lock users, then�...

Vendor: Spring Product: Spring Security Published: Apr 22, 2026
CVE-2026-40451 MEDIUM - 6.1

DeepL Chrome browser extension versions from v1.22.0 to v.1.23.0 contain a cross-site scripting vulnerability, which allows an attacker to execute arbitrary script in a user's browser, and inject mali...

Vendor: DeepL Product: Chrome browser extension Published: Apr 22, 2026
CVE-2026-6835 MEDIUM - 6.1

The a+HCM developed by aEnrich has an Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload arbitrary files to any path, including HTML documents, which may result i...

Published: Apr 22, 2026
CVE-2026-6834 MEDIUM - 6.5

The a+HRD developed by aEnrich has a Missing Authorization vulnerability, allowing authenticated remote attackers to arbitrarily read database contents through a specific API method....

Published: Apr 22, 2026
CVE-2026-6833 MEDIUM - 6.5

The a+HRD developed by aEnrich has a SQL Injection vulnerability, allowing authenticated remote attackers to inject arbitrary SQL commands to read database contents....

Published: Apr 22, 2026
CVE-2026-6416 LOW - 2.7

Tanium addressed an uncontrolled resource consumption vulnerability in Interact....

Published: Apr 22, 2026
Browse CVEs Trends Email Alerts About

© 2026 CVEInfo.com - Aggregating CVE Information from Multiple Sources

Data sources: NVD, MITRE, GitHub Security Advisories