Known Vulnerabilities for Numbers by Apple
Listed below are 4 of the newest known vulnerabilities associated with "Numbers" by "Apple".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-65050 json | Ninja Forms WordPress plugin version 3.14.8 and prior contains a missing authorization vulnerability in the render callback o... | Not Provided | 2026-07-21 | 2026-07-21 |
| CVE-2026-63958 json | In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: validate connector number in ucsi_conn... | Not Provided | 2026-07-19 | 2026-07-20 |
| CVE-2026-63818 json | In the Linux kernel, the following vulnerability has been resolved: f2fs: validate orphan inode entry count f2fs_recover_or... | Not Provided | 2026-07-19 | 2026-07-20 |
| CVE-2026-61454 json | The Grav Admin2 plugin (getgrav/grav-plugin-admin2) before 2.0.4 embeds a global JavaScript variable window.__GRAV_CONFIG__ i... | Not Provided | 2026-07-11 | 2026-07-13 |
| CVE-2026-59871 json | node-tar is a tar archive manipulation library for Node.js. Prior to 7.5.18, node-tar coerces all-digit PAX path and linkpath... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-58465 json | Eclipse Wakaama before snapshot/2026-05-26 contains an unbounded memory allocation vulnerability in the CoAP Block1 handler w... | Not Provided | 2026-07-02 | 2026-07-14 |
| CVE-2026-57495 json | AgenticMail gives AI agents real email addresses and phone numbers. In @agenticmail/claudecode prior to version 0.2.39, @agen... | Not Provided | 2026-07-20 | 2026-07-22 |
| CVE-2026-57494 json | AgenticMail gives AI agents real email addresses and phone numbers. In @agenticmail/api prior to version 0.9.64, a low-privil... | Not Provided | 2026-07-20 | 2026-07-21 |
| CVE-2026-54466 json | websocket-driver is a WebSocket protocol handler with pluggable I/O. Prior to 0.7.5, the frame format in draft versions of th... | Not Provided | 2026-07-17 | 2026-07-20 |
| CVE-2026-53875 json | picklescan before 1.0.3 contains a scanning bypass vulnerability in the scan_pytorch function that allows attackers to embed ... | Not Provided | 2026-06-17 | 2026-06-17 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apple | Numbers | 3.5 |