Miggo Predictive Vulnerability Database
Comprehensive vulnerability intelligence for security teams to gain clarity into CVEs to prioritize and respond with precision.
Concerned about an active attack path? Talk to our security experts and see Miggo in action
Contact UsTop 10 CVEs
New vulnerabilities last 30 days
CVE-2026-26007: cryptography Subgroup Attack Due to Missing Subgroup Validation for SECT Curves
cryptography SECT curve subgroup attack via small-order public keys leaks ECDH private key bits and permits ECDSA signature forgery in key parsing functions.
Analysis:
Available
8.2
high
2/10/2026
CVE-2026-21218: Microsoft Security Advisory CVE-2026-21218 | .NET Security Feature Bypass Vulnerability
Microsoft .NET's System.Security.Cryptography.Cose security bypass uses malicious payloads to circumvent cryptographic validation for unauthorized data access.
Analysis:
Available
7.5
high
2/10/2026
CVE-2026-25577: Emmett has an Unhandled CookieError Exception Causing Denial of Service
Emmett-Core DoS from an unhandled CookieError in the http.wrappers.Request component when parsing malformed Cookie headers causes repeated HTTP 500 errors.
Analysis:
Available
7.5
high
2/10/2026
CVE-2026-23901: Apache Shiro Affected by an Observable Timing Discrepancy Vulnerability
Apache Shiro authentication side-channel attack via timing discrepancy in code paths permits user enumeration through brute-force login request analysis.
Analysis:
Available
1
low
2/10/2026