Skip to main content

Daily materialized evidence profile

CWE CWE-266

This factual profile is rebuilt from stored cvebuzz evidence each day. It is a timestamped snapshot, not an immutable publication.

Refreshed UTC

Stored evidence summary

Sample size
1,049
CVEs with mentions
729
Total mentions
2,978
CVEs with KEV
1
CVEs with PoC
110

Attack vector counts

Network
842
Adjacent network
32
Local
170
Physical
5

Top snapshot Buzz entries

Up to five denormalized entries captured by the same daily profile refresh.

CVE-2026-48172

Published May 21, 2026

LiteSpeed User-End cPanel Plugin before 2.4.5 allows privilege escalation (possibly to root), as exploited in the wild in May 2026. Detection is best done via a command line of gr…

CVSS 10.0 · Critical
evidence mentions
7
Buzz score
65.8
KEV listed

CVE-2025-10263

Published Jun 9, 2026

Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Cortex-X1 & X1C, Cortex-A710, Corte…

CVSS 9.1 · Critical
evidence mentions
24
Buzz score
50.0

CVE-2026-6750

Published Apr 21, 2026

Privilege escalation in the Graphics: WebRender component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 14…

CVSS 8.8 · High
evidence mentions
36
Buzz score
44.5

CVE-2026-12289

Published Jun 16, 2026

Privilege escalation in the Graphics: WebRender component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 14…

CVSS 8.8 · High
evidence mentions
30
Buzz score
44.5

CVE-2026-12294

Published Jun 16, 2026

Sandbox escape in the DOM: Workers component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12.

CVSS 9.6 · Critical
evidence mentions
30
Buzz score
44.5