Emergent Threat6
CVE-2026-55040:Rapid7 Analysis: Microsoft SharePoint JWT Token Authentication Bypass (CVE-2026-55040)
CVE-2026-63077:Rapid7 Analysis: Unauthenticated Remote Code Execution in JetBrains TeamCity (CVE-2026-63077)
CVE-2026-66066:KindaRails2Shell: CVE-2026-66066, Critical Arbitrary File Read and Possible Remote Code Execution in Ruby on Rails
| Title | EitW | Modules |
|---|
| Title | EitW | Modules | ||||
|---|---|---|---|---|---|---|
| CVE-2026-3198: Improper Access Control | 6.5 Medium | N/A | 0% | Jun 2, 2026 | ||
| CVE-2026-31985: Lack of Administrator Control over Security | 8.1 High | 8.3 High | 0% | Jul 9, 2026 | ||
| CVE-2026-31984: Allocation of Resources Without Limits or Throttling | 7.5 High | 8.7 High | 0% | Jul 9, 2026 | ||
| CVE-2026-31983: Missing Authentication for Critical Function | 5.3 Medium | 6.9 Medium | 0% | Jul 9, 2026 | ||
| CVE-2026-31982: URL Redirection to Untrusted Site | 7.1 High | 5.3 Medium | 0% | Jul 9, 2026 | ||
| CVE-2026-31981: Improper Neutralization of Input During Web Page Generation | 4.8 Medium | 4.8 Medium | 0% | Jul 9, 2026 | ||
| CVE-2026-31986: Use of Hard-coded Cryptographic Key | 9.1 Critical | N/A | 0% | May 19, 2026 | ||
| CVE-2026-31987: Insertion of Sensitive Information into Log File | 7.5 High | N/A | 1% | Apr 16, 2026 | ||
| CVE-2026-31989: Server-Side Request Forgery (SSRF) | 7.4 High | 5.3 Medium | 0% | Mar 19, 2026 | ||
| CVE-2026-31988: Off-by-one Error | 5.3 Medium | 6.9 Medium | 0% | Mar 11, 2026 |