Emergent Threat6
CVE-2026-55040:Rapid7 Analysis: Microsoft SharePoint JWT Token Authentication Bypass (CVE-2026-55040)
CVE-2026-63077:Rapid7 Analysis: Unauthenticated Remote Code Execution in JetBrains TeamCity (CVE-2026-63077)
CVE-2026-66066:KindaRails2Shell: CVE-2026-66066, Critical Arbitrary File Read and Possible Remote Code Execution in Ruby on Rails
| Title | EitW | Modules |
|---|
| Title | EitW | Modules | ||||
|---|---|---|---|---|---|---|
| CVE-2026-2614: Improper Limitation of a Pathname to a Restricted Directory | 7.5 High | N/A | 1% | May 11, 2026 | ||
| CVE-2026-26145: Improper Access Control | 4.8 Medium | N/A | 0% | Jul 2, 2026 | ||
| CVE-2026-26142: Deserialization of Untrusted Data | 9.8 Critical | N/A | 2% | Jun 9, 2026 | ||
| CVE-2026-26147: Improper Input Validation | 7.7 High | N/A | 1% | May 22, 2026 | ||
| CVE-2026-26143: Improper Input Validation | 7.8 High | N/A | 1% | Apr 14, 2026 | ||
| CVE-2026-26149: Improper Neutralization of Escape, Meta, or Control Sequences | 9.0 Critical | N/A | 1% | Apr 14, 2026 | ||
| CVE-2026-26144: Improper Neutralization of Input During Web Page Generation | 7.5 High | N/A | 1% | Mar 10, 2026 | ||
| CVE-2026-26141: Improper Authentication | 7.8 High | N/A | 0% | Mar 10, 2026 | ||
| CVE-2026-26148: External Initialization of Trusted Variables or Data Stores | 8.1 High | N/A | 0% | Mar 10, 2026 |