🔥 Trending CVEs - Last 90 Days

4,487 critical and high-severity vulnerabilities discovered in the last 90 days. Stay ahead of emerging threats with real-time CVE tracking and instant security alerts.

Last 7 Days Last 30 Days Last 90 Days
11,140
Total CVEs Published
991
Critical Severity
3,496
High Severity
⚠️
Critical Alert
991 critical vulnerabilities published in the last 90 days. Immediate action recommended.
Get Alerts

Critical & High-Risk CVEs

CVE-2026-20615 7.8

A path validation vulnerability in Apple operating systems allows malicious applications to gain root privileges through improper path handling. This ...

📅 28 days ago • Feb 11, 2026
CVE-2026-20610 7.8

A macOS vulnerability allows malicious applications to gain root privileges through improper symlink handling. This affects macOS systems before versi...

📅 28 days ago • Feb 11, 2026
CVE-2026-20614 7.8

This CVE describes a path handling vulnerability in macOS that allows an application to gain root privileges through improper validation. It affects m...

📅 28 days ago • Feb 11, 2026
CVE-2025-70083 7.8

A stack buffer overflow vulnerability in OpenSatKit 2.2.1 allows remote attackers to execute arbitrary code by sending specially crafted telecommands ...

📅 28 days ago • Feb 11, 2026
CVE-2023-20548 7.8

A race condition vulnerability in AMD Secure Processor (ASP) allows attackers to corrupt memory by exploiting timing differences between checking and ...

📅 28 days ago • Feb 11, 2026
CVE-2023-31324 7.8

This CVE describes a Time-of-check time-of-use (TOCTOU) race condition vulnerability in AMD Secure Processor (ASP) that could allow attackers to modif...

📅 28 days ago • Feb 11, 2026
CVE-2019-25306 7.8

CVE-2019-25306 is an unquoted service path vulnerability in BlackMoon FTP Server that allows local attackers to execute arbitrary code with LocalSyste...

📅 28 days ago • Feb 11, 2026
CVE-2019-25308 7.8

CVE-2019-25308 is an unquoted service path vulnerability in Mikogo's Windows service that allows attackers with local access to execute arbitrary code...

📅 28 days ago • Feb 11, 2026
CVE-2019-25310 7.8

ActiveFax Server 6.92 Build 0316 has an unquoted service path vulnerability in its ActiveFaxServiceNT service. This allows local attackers with write ...

📅 28 days ago • Feb 11, 2026
CVE-2026-21349 7.8

Lightroom Desktop versions 15.1 and earlier contain an out-of-bounds write vulnerability that could allow attackers to execute arbitrary code when use...

📅 29 days ago • Feb 10, 2026
CVE-2026-21352 7.8

CVE-2026-21352 is an out-of-bounds write vulnerability in Adobe DNG SDK versions 1.7.1 2410 and earlier that could allow arbitrary code execution when...

📅 29 days ago • Feb 10, 2026
CVE-2026-21345 7.8

CVE-2026-21345 is an out-of-bounds read vulnerability in Substance3D Stager that could allow arbitrary code execution when a user opens a malicious fi...

📅 29 days ago • Feb 10, 2026
CVE-2026-21346 7.8

CVE-2026-21346 is an out-of-bounds write vulnerability in Adobe Bridge that could allow arbitrary code execution when a user opens a malicious file. T...

📅 29 days ago • Feb 10, 2026
CVE-2026-21347 7.8

Adobe Bridge versions 15.1.3, 16.0.1 and earlier contain an integer overflow vulnerability that could allow arbitrary code execution when a user opens...

📅 29 days ago • Feb 10, 2026
CVE-2026-21343 7.8

Substance3D Stager versions 3.1.6 and earlier contain an out-of-bounds read vulnerability when parsing malicious files. An attacker could exploit this...

📅 29 days ago • Feb 10, 2026
CVE-2026-21341 7.8

CVE-2026-21341 is an out-of-bounds write vulnerability in Substance3D Stager that could allow arbitrary code execution when a user opens a malicious f...

📅 29 days ago • Feb 10, 2026
CVE-2026-21533 7.8

This vulnerability allows an authorized attacker with valid Remote Desktop credentials to elevate privileges on a Windows system. It affects Windows s...

📅 29 days ago • Feb 10, 2026
CVE-2026-21514 7.8

This vulnerability in Microsoft Office Word allows attackers to bypass local security features by manipulating untrusted inputs. It affects users runn...

📅 29 days ago • Feb 10, 2026
CVE-2026-21357 7.8

This CVE describes a heap-based buffer overflow vulnerability in Adobe InDesign that could allow an attacker to execute arbitrary code with the privil...

📅 29 days ago • Feb 10, 2026
CVE-2026-21351 7.8

Adobe After Effects versions 25.6 and earlier contain a use-after-free vulnerability that could allow attackers to execute arbitrary code on a victim'...

📅 29 days ago • Feb 10, 2026
CVE-2026-21335 7.8

Substance3D Designer versions 15.1.0 and earlier contain an out-of-bounds write vulnerability that allows arbitrary code execution when a user opens a...

📅 29 days ago • Feb 10, 2026
CVE-2026-21324 7.8

CVE-2026-21324 is an out-of-bounds read vulnerability in Adobe After Effects that could allow an attacker to execute arbitrary code in the context of ...

📅 29 days ago • Feb 10, 2026
CVE-2026-21325 7.8

CVE-2026-21325 is an out-of-bounds read vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious f...

📅 29 days ago • Feb 10, 2026
CVE-2026-21326 7.8

Adobe After Effects versions 25.6 and earlier contain a use-after-free vulnerability that could allow attackers to execute arbitrary code on a victim'...

📅 29 days ago • Feb 10, 2026
CVE-2026-21328 7.8

Adobe After Effects versions 25.6 and earlier contain an out-of-bounds write vulnerability that could allow attackers to execute arbitrary code on a v...

📅 29 days ago • Feb 10, 2026
CVE-2026-21329 7.8

CVE-2026-21329 is a use-after-free vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious file. ...

📅 29 days ago • Feb 10, 2026
CVE-2026-21330 7.8

Adobe After Effects versions 25.6 and earlier contain a type confusion vulnerability that could allow arbitrary code execution when a user opens a mal...

📅 29 days ago • Feb 10, 2026
CVE-2026-21318 7.8

CVE-2026-21318 is an out-of-bounds write vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious ...

📅 29 days ago • Feb 10, 2026
CVE-2026-21320 7.8

Adobe After Effects versions 25.6 and earlier contain a use-after-free vulnerability that could allow an attacker to execute arbitrary code on a victi...

📅 29 days ago • Feb 10, 2026
CVE-2026-21322 7.8

CVE-2026-21322 is an out-of-bounds read vulnerability in Adobe After Effects that could allow arbitrary code execution when a user opens a malicious f...

📅 29 days ago • Feb 10, 2026
CVE-2026-21323 7.8

Adobe After Effects versions 25.6 and earlier contain a use-after-free vulnerability that could allow attackers to execute arbitrary code on a victim'...

📅 29 days ago • Feb 10, 2026
CVE-2026-21312 7.8

Adobe Audition versions 25.3 and earlier contain an out-of-bounds write vulnerability that could allow attackers to execute arbitrary code when a user...

📅 29 days ago • Feb 10, 2026
CVE-2026-21259 7.8

A heap-based buffer overflow vulnerability in Microsoft Office Excel allows local attackers to execute arbitrary code with elevated privileges. This a...

📅 29 days ago • Feb 10, 2026
CVE-2026-21250 7.8

CVE-2026-21250 is a local privilege escalation vulnerability in Windows HTTP.sys driver where an authorized attacker can exploit untrusted pointer der...

📅 29 days ago • Feb 10, 2026
CVE-2026-21246 7.8

A heap-based buffer overflow vulnerability in Microsoft Graphics Component allows authenticated attackers to execute arbitrary code with elevated priv...

📅 29 days ago • Feb 10, 2026
CVE-2026-21245 7.8

A heap-based buffer overflow vulnerability in the Windows Kernel allows authenticated attackers to execute arbitrary code with elevated privileges. Th...

📅 29 days ago • Feb 10, 2026
CVE-2026-21239 7.8

A heap-based buffer overflow vulnerability in the Windows Kernel allows authenticated attackers to execute arbitrary code with elevated privileges. Th...

📅 29 days ago • Feb 10, 2026
CVE-2026-21232 7.8

CVE-2026-21232 is an untrusted pointer dereference vulnerability in Windows HTTP.sys that allows an authenticated attacker to escalate privileges loca...

📅 29 days ago • Feb 10, 2026
CVE-2026-0651 7.8

This vulnerability allows attackers on the same local network to probe the TP-Link Tapo C260 v1 camera's filesystem to determine if specific files exi...

📅 29 days ago • Feb 10, 2026
CVE-2026-23720 7.8

An out-of-bounds read vulnerability in Simcenter Femap and Simcenter Nastran allows attackers to execute arbitrary code by tricking users into opening...

📅 29 days ago • Feb 10, 2026
CVE-2026-25655 7.8

A vulnerability in SINEC NMS allows low-privileged users to modify configuration files, enabling DLL hijacking attacks. This could lead to arbitrary c...

📅 29 days ago • Feb 10, 2026
CVE-2026-25656 7.8

A low-privileged user can modify configuration files in SINEC NMS User Management Component, allowing malicious DLL loading. This leads to arbitrary c...

📅 29 days ago • Feb 10, 2026
CVE-2026-22923 7.8

A data validation vulnerability in NX software versions before V2512 allows local attackers to manipulate internal data during PDF export, potentially...

📅 29 days ago • Feb 10, 2026
CVE-2026-23715 7.8

An out-of-bounds write vulnerability in Simcenter Femap and Simcenter Nastran allows attackers to execute arbitrary code by tricking users into openin...

📅 29 days ago • Feb 10, 2026
CVE-2026-23716 7.8

An out-of-bounds read vulnerability in Simcenter Femap and Simcenter Nastran allows attackers to execute arbitrary code by tricking users into opening...

📅 29 days ago • Feb 10, 2026
CVE-2026-23717 7.8

An out-of-bounds read vulnerability in Simcenter Femap and Simcenter Nastran allows attackers to execute arbitrary code by tricking users into opening...

📅 29 days ago • Feb 10, 2026
CVE-2026-23718 7.8

An out-of-bounds read vulnerability in Simcenter Femap and Simcenter Nastran allows attackers to execute arbitrary code by tricking users into opening...

📅 29 days ago • Feb 10, 2026
CVE-2026-23719 7.8

A heap-based buffer overflow vulnerability in Simcenter Femap and Simcenter Nastran allows attackers to execute arbitrary code by tricking users into ...

📅 29 days ago • Feb 10, 2026
CVE-2025-11547 7.8

CVE-2025-11547 is a privilege escalation vulnerability in AXIS Camera Station Pro that allows authenticated non-admin users to gain administrative pri...

📅 30 days ago • Feb 10, 2026
CVE-2025-15310 7.8

CVE-2025-15310 is a local privilege escalation vulnerability in Tanium Patch Endpoint Tools that allows authenticated local users to gain elevated pri...

📅 30 days ago • Feb 10, 2026

Why Track Trending CVEs?

Stay ahead of emerging threats: Newly discovered vulnerabilities pose the highest risk as attackers race to exploit them before patches are deployed. Trending CVEs represent the most critical security issues requiring immediate attention from security teams worldwide.

Prioritize remediation efforts: With thousands of CVEs published annually, security teams need to focus on the most recent and severe threats first. Our trending CVE dashboard highlights critical and high-severity vulnerabilities from the past 7, 30, or 90 days, helping you prioritize patching efforts.

🚀 Automated Trending CVE Monitoring

  • Scan your servers to detect packages affected by trending CVEs
  • Receive instant email alerts when critical vulnerabilities are discovered
  • Dashboard shows CVE age, severity, CVSS scores, and affected systems
  • Filter by time period (7/30/90 days) to focus on recent threats
Start Monitoring Trending CVEs Free