The NVD is the U.S. government repository of standards based vulnerability management data represented using the Security Content Automation Protocol (SCAP). This data enables automation of vulnerability management, security measurement, and compliance. The NVD includes databases of security checklist references, security-related software flaws, product names, and impact metrics.
For information on how to cite the NVD, including the database's Digital Object Identifier (DOI), please consult NIST's Public Data Repository.
Legal Disclaimer:
Here is where you can read the NVD legal disclaimer.
-
CVE-2026-48311 - Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Published: July 14, 2026; 5:16:58 PM -0400 -
CVE-2026-48343 - Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Published: July 14, 2026; 5:17:00 PM -0400 -
CVE-2026-48342 - Bridge is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Published: July 14, 2026; 5:17:00 PM -0400 -
CVE-2026-48341 - Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Published: July 14, 2026; 5:17:00 PM -0400 -
CVE-2026-48339 - Bridge is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Published: July 14, 2026; 5:16:59 PM -0400 -
CVE-2026-48340 - Bridge is affected by an Untrusted Pointer Dereference vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Published: July 14, 2026; 5:16:59 PM -0400 -
CVE-2026-58644 - Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
Published: July 14, 2026; 1:17:14 PM -0400 -
CVE-2026-39808 - A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.8 may allow attacker to execute unauthorized code or commands via <insert attack vector here>
Published: April 14, 2026; 12:16:44 PM -0400 -
CVE-2026-25089 - A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox 4.2 all versions, FortiSandbox Cloud 5.0.4 thro... read CVE-2026-25089
Published: June 09, 2026; 12:16:39 PM -0400 -
CVE-2026-48287 - CAI Content Credentials is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue... read CVE-2026-48287
Published: July 14, 2026; 6:17:00 PM -0400 -
CVE-2026-48357 - CAI Content Credentials is affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust system resources, resulting in an application denia... read CVE-2026-48357
Published: July 14, 2026; 6:17:02 PM -0400 -
CVE-2026-48354 - CAI Content Credentials is affected by an Integer Overflow or Wraparound vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service con... read CVE-2026-48354
Published: July 14, 2026; 6:17:02 PM -0400 -
CVE-2026-48353 - CAI Content Credentials is affected by an Improper Input Validation vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access sco... read CVE-2026-48353
Published: July 14, 2026; 6:17:02 PM -0400 -
CVE-2026-48352 - CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service conditio... read CVE-2026-48352
Published: July 14, 2026; 6:17:02 PM -0400 -
CVE-2026-48351 - CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service conditio... read CVE-2026-48351
Published: July 14, 2026; 6:17:02 PM -0400 -
CVE-2026-48312 - CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access. Exploit... read CVE-2026-48312
Published: July 14, 2026; 6:17:01 PM -0400 -
CVE-2026-48302 - CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service conditio... read CVE-2026-48302
Published: July 14, 2026; 6:17:01 PM -0400 -
CVE-2026-48298 - CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-ser... read CVE-2026-48298
Published: July 14, 2026; 6:17:01 PM -0400 -
CVE-2026-48296 - CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-ser... read CVE-2026-48296
Published: July 14, 2026; 6:17:01 PM -0400 -
CVE-2026-48295 - CAI Content Credentials is affected by an Insufficiently Protected Credentials vulnerability that could result in disclosure of sensitive information. An attacker could leverage this vulnerability to gain unauthorized read access. Exploitation of ... read CVE-2026-48295
Published: July 14, 2026; 6:17:00 PM -0400