TopVuln

High-risk vulnerability digests

Nuclear-Level Vulnerability Candidates

Union of nuclear-level candidates across digest days 2026-04-01 – 2026-04-30 (calendar month 2026-04): published in the last 30 days (evaluated per day) with CVSS > 9.0, known in-the-wild exploitation, and EPSS score > 0.5.

Marimo Remote Code Execution Vulnerability

CVE: CVE-2026-39987

CVSS: 9.3

EPSS score: 0.7961

EPSS percentile: 99.1th percentile

WebPros cPanel & WHM and WP2 (WordPress Squared) Missing Authentication for Critical Function Vulnerability

CVE: CVE-2026-41940

CVSS: 9.3

EPSS score: 0.6701

EPSS percentile: 98.6th percentile