<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:intruder="https://cvemon.intruder.io/rss">
    <channel>
        <title><![CDATA[cvemon | CVE Trends]]></title>
        <description><![CDATA[Get the latest rankings and info for CVEs currently trending on social media]]></description>
        <link>https://cvemon.intruder.io</link>
        <image>
            <url>https://cvemon.intruder.io/og.png</url>
            <title>cvemon | CVE Trends</title>
            <link>https://cvemon.intruder.io</link>
        </image>
        <generator>RSS for Node</generator>
        <lastBuildDate>Tue, 21 Jul 2026 08:16:31 GMT</lastBuildDate>
        <atom:link href="https://cvemon.intruder.io/rss/cvetrends/latest" rel="self" type="application/rss+xml"/>
        <pubDate>Tue, 21 Jul 2026 07:17:01 GMT</pubDate>
        <item>
            <title><![CDATA[CVE-2026-63030]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 37 - WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion issue which, combined with the author__not_in WP_Query SQL Injection (CVE-2026-60137), could allow an attacker to perform SQL Injection and achieve Remote Code Execution.]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-63030</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-63030</guid>
            <pubDate>Tue, 21 Jul 2026 07:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>1</intruder:rank>
            <intruder:hypeScore>37</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-63030</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-60137]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 37 - WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter of WP_Query, which could allow SQL Injection when a plugin or theme passes untrusted input to the parameter.]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-60137</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-60137</guid>
            <pubDate>Tue, 21 Jul 2026 07:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>2</intruder:rank>
            <intruder:hypeScore>37</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-60137</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-42980]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 11 - Integer underflow (wrap or wraparound) in Windows NT OS Kernel allows an authorized attacker to elevate privileges locally.]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-42980</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-42980</guid>
            <pubDate>Tue, 21 Jul 2026 07:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>3</intruder:rank>
            <intruder:hypeScore>11</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-42980</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-43499]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 9 - In the Linux kernel, the following vulnerability has been resolved:

rtmutex: Use waiter::task instead of current in remove_waiter()

remove_waiter() is used by the slowlock paths, but it is also used for
proxy-lock rollback in rt_mutex_start_proxy_lock() when invoked ...]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-43499</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-43499</guid>
            <pubDate>Tue, 21 Jul 2026 07:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>4</intruder:rank>
            <intruder:hypeScore>9</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-43499</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-15409]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 6 - A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make requests to unintended location.]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-15409</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-15409</guid>
            <pubDate>Tue, 21 Jul 2026 07:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>5</intruder:rank>
            <intruder:hypeScore>6</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-15409</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-15410]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 6 - Post-authentication improper control of generation of code ('Code Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute ...]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-15410</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-15410</guid>
            <pubDate>Tue, 21 Jul 2026 07:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>6</intruder:rank>
            <intruder:hypeScore>6</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-15410</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-56164]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 6 - Missing authentication for critical function in Microsoft Office SharePoint allows an unauthorized attacker to elevate privileges over a network.]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-56164</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-56164</guid>
            <pubDate>Tue, 21 Jul 2026 07:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>7</intruder:rank>
            <intruder:hypeScore>6</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-56164</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-45659]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 5 - Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-45659</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-45659</guid>
            <pubDate>Tue, 21 Jul 2026 07:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>8</intruder:rank>
            <intruder:hypeScore>5</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-45659</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-42533]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 1 - A vulnerability exists in NGINX Plus and NGINX Open Source when a map directive uses regex matching and a string expression references the map's regex capture variables before referencing the map output variable. Alternatively, the same result could be achieved by using a ...]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-42533</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-42533</guid>
            <pubDate>Tue, 21 Jul 2026 07:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>9</intruder:rank>
            <intruder:hypeScore>1</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-42533</intruder:cveUrl>
        </item>
        <item>
            <title><![CDATA[CVE-2026-14266]]></title>
            <description><![CDATA[Currently trending CVE - Hype Score: 1]]></description>
            <link>https://cvemon.intruder.io/cves/CVE-2026-14266</link>
            <guid isPermaLink="true">https://cvemon.intruder.io/cves/CVE-2026-14266</guid>
            <pubDate>Tue, 21 Jul 2026 07:17:01 GMT</pubDate>
            <enclosure url="https://cvemon.intruder.io/og.png" length="0" type="image/png"/>
            <intruder:rank>10</intruder:rank>
            <intruder:hypeScore>1</intruder:hypeScore>
            <intruder:cveUrl>https://cvemon.intruder.io/cves/CVE-2026-14266</intruder:cveUrl>
        </item>
    </channel>
</rss>