CVE Watch

20793
CVEs this week
8117
Rule alerts
2763
Critical
3
Days tracked

Last 14 days

05-05
1
05-06
20335
05-07
457

Recent alerts (top 25 across the week)

DayCVESeverityCVSSVendorsSummaryRules
2026-05-07CVE-2026-37541CRITICAL10.0Buffer overflow vulnerability in Open Vehicle Monitoring System 3 (OVMS3) 3.3.005. In canformat_gvret.cpp, the length field in GVRET binary…Critical anywhere
2026-05-07CVE-2026-40281CRITICAL10.0Gotenberg is a Docker-powered stateless API for PDF files. In versions 8.30.1 and earlier, the metadata write endpoint validates metadata…Critical anywhere
2026-05-06CVE-2001-1594CRITICAL10.0gehealthcareGE Healthcare eNTEGRA P&R has a password of (1) entegra for the entegra user, (2) passme for the super user of the Polestar/Polestar-i…Critical anywhere
2026-05-06CVE-2002-2445CRITICAL10.0gehealthcareGE Healthcare Millennium MG, NC, and MyoSIGHT has a default password of (1) root.genie for the root user, (2) "service." for the service…Critical anywhere
2026-05-06CVE-2002-2446CRITICAL10.0gehealthcareGE Healthcare Millennium MG, NC, and MyoSIGHT has a password of insite.genieacq for the insite account that cannot be changed without…Critical anywhere
2026-05-06CVE-2003-1603CRITICAL10.0gehealthcareGE Healthcare Discovery VH has a default password of (1) interfile for the ftpclient user of the Interfile server or (2) "2" for the LOCAL…Critical anywhere
2026-05-06CVE-2004-2777CRITICAL10.0gehealthcareGE Healthcare Centricity Image Vault 3.x has a password of (1) gemnet for the administrator account, (2) webadmin for the webadmin…Critical anywhere
2026-05-06CVE-2006-7253CRITICAL10.0gehealthcareGE Healthcare Infinia II has a default password of (1) infinia for the infinia user, (2) #bigguy1 for the acqservice user, (3) dont4get2…Critical anywhere
2026-05-06CVE-2007-6757CRITICAL10.0gehealthcareGE Healthcare Centricity DMS 4.2, 4.1, and 4.0 has a password of Muse!Admin for the Museadmin user, which has unspecified impact and attack…Critical anywhere
2026-05-06CVE-2009-5143CRITICAL10.0gehealthcareGE Healthcare Discovery 530C has a password of #bigguy1 for the (1) acqservice user and (2) wsservice user of the Xeleris System, which has…Critical anywhere
2026-05-06CVE-2010-5306CRITICAL10.0gehealthcareGE Healthcare Optima CT680, CT540, CT640, and CT520 has a default password of #bigguy for the root user, which has unspecified impact and…Critical anywhere
2026-05-06CVE-2010-5307CRITICAL10.0gehealthcareThe HIPAA configuration interface in GE Healthcare Optima MR360 has a password of (1) operator for the root account, (2) adw2.0 for the…Critical anywhere
2026-05-06CVE-2010-5308CRITICAL10.0gehealthcareGE Healthcare Optima MR360 does not require authentication for the HIPAA emergency login procedure, which allows physically proximate users…Critical anywhere
2026-05-06CVE-2010-5309CRITICAL10.0gehealthcareGE Healthcare CADStream Server has a default password of confirma for the admin user, which has unspecified impact and attack vectors.Critical anywhere
2026-05-06CVE-2010-5310CRITICAL10.0gehealthcareThe Acquisition Workstation for the GE Healthcare Revolution XQ/i has a password of adw3.1 for the sdc user, which has unspecified impact…Critical anywhere
2026-05-06CVE-2010-5323CRITICAL10.0novellDirectory traversal vulnerability in UploadServlet in the Remote Management component in Novell ZENworks Configuration Management (ZCM) 10…Critical anywhere
2026-05-06CVE-2010-5324CRITICAL10.0novellDirectory traversal vulnerability in UploadServlet in the Remote Management component in Novell ZENworks Configuration Management (ZCM) 10…Critical anywhere
2026-05-06CVE-2011-5322CRITICAL10.0gehealthcareGE Healthcare Centricity Analytics Server 1.1 has a default password of (1) V0yag3r for the SQL Server sa user, (2) G3car3s for the analyst…Critical anywhere
2026-05-06CVE-2011-5323CRITICAL10.0gehealthcareGE Healthcare Centricity PACS-IW 3.7.3.7, 3.7.3.8, and possibly other versions has a password of A11enda1e for the sa SQL server user,…Critical anywhere
2026-05-06CVE-2011-5324CRITICAL10.0gehealthcareThe TeraRecon server, as used in GE Healthcare Centricity PACS-IW 3.7.3.7, 3.7.3.8, and possibly other versions, has a password of (1)…Critical anywhere
2026-05-06CVE-2012-1166CRITICAL10.0canonicalThe default keybindings for wwm in LTSP Display Manager (ldm) 2.2.x before 2.2.7 allow remote attackers to execute arbitrary commands via…Critical anywhere, RCE / code injection class
2026-05-06CVE-2012-4886CRITICAL10.0kingsoftStack-based buffer overflow in wpsio.dll in Kingsoft WPS Office 2012 possibly 8.1.0.3238 allows remote attackers to execute arbitrary code…Critical anywhere
2026-05-06CVE-2012-5106CRITICAL10.0freefloatStack-based buffer overflow in FreeFloat FTP Server 1.0 allows remote authenticated users to execute arbitrary code via a long string in a…Critical anywhere
2026-05-06CVE-2012-5390CRITICAL10.0condor_projectThe standard universe shadow (condor_shadow.std) component in Condor 7.7.3 through 7.7.6, 7.8.0 before 7.8.5, and 7.9.0 does no properly…Critical anywhere
2026-05-06CVE-2012-6429CRITICAL10.0samsungBuffer overflow in the PrepareSync method in the SyncService.dll ActiveX control in Samsung Kies before 2.5.1.12123_2_7 allows remote…Critical anywhere

Top vendors (last 7 days)

VendorCount
microsoft2654
apple2490
oracle1809
google1761
linux1370
adobe1174
cisco1125
ibm1099
debian995
canonical906

Daily reports

DateTotalNewModifiedAlertsTop severity
2026-05-0745721823989CRITICAL
2026-05-0620335201821538027CRITICAL
2026-05-051101CRITICAL