Junglewise

Monthly report

Most vulnerable technologies in June 2026

Final report, published . It does not change.

In June 2026, Junglewise Threat Intelligence recorded 8,427 new vulnerabilities: 706 critical, 2,357 high and 29 exploited in the wild. The most vulnerable technology was Google Chrome, with 947 vulnerabilities (2 critical, 1 exploited in the wild), followed by Linux Kernel (397) and Openclaw (128).

New vulnerabilities
8,427
Critical
706
Exploited in the wild
29
Technologies affected
3,934

Ranking

Technologies ranked by exploited, critical and high severity vulnerabilities
#TechnologyVulnsCriticalHighExploitedMax CVSSMost severe
1Google Chrome
Google
947218110
2Linux Kernel
Linux
3972128.2
3Openclaw
Openclaw
12825009.8
4Pip Picklescan
Pip
531634010
5Microsoft Windows
Microsoft
5644209.8
6Oracle WebCenter Content
Oracle
29151309.9
7Capgo
Capgo
5912909.1
8Npm Flowise
Npm
38919010
9N8n
N8n
32813010
10Adobe ColdFusion
Adobe
1787110
11Oracle JD Edwards EnterpriseOne Tools
Oracle
1413109.8
12IBM Langflow
IBM
1495010
13Oracle Enterprise Manager Base Platform
Oracle
149509.9
14Google Android
Google
6004010
15Oracle WebLogic Server
Oracle
1467110
16Gogs
Gogs
25313010
17Gogs.io/Gogs
Go
24313010
18Fission
Fission
185909.9
19Go Github.com/Fission/Fission
Go
185909.9
20Oracle WebCenter Enterprise Capture
Oracle
10100010
21Oracle WebCenter Portal
Oracle
10100010
22Adobe Acrobat Reader
Adobe
2401707.8
23IBM WebSphere Application Server
IBM
175809.3
24Oracle WebCenter Sites
Oracle
1183010
25Pip Crawl4ai
Pip
1558010

Most affected vendors

  1. 1.Google1,091 vulnerabilities, 8 critical, 2 exploited
  2. 2.Oracle230 vulnerabilities, 121 critical, 2 exploited
  3. 3.Npm263 vulnerabilities, 34 critical, 0 exploited
  4. 4.Pip235 vulnerabilities, 37 critical, 0 exploited
  5. 5.Microsoft220 vulnerabilities, 16 critical, 2 exploited
  6. 6.Go204 vulnerabilities, 32 critical, 0 exploited
  7. 7.Linux398 vulnerabilities, 2 critical, 2 exploited
  8. 8.Adobe86 vulnerabilities, 12 critical, 1 exploited
  9. 9.Openclaw129 vulnerabilities, 2 critical, 0 exploited
  10. 10.ThemeREX61 vulnerabilities, 6 critical, 0 exploited

Most severe vulnerabilities

How this is built

Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.

Technologies are ranked by a score: 10 points for each vulnerability exploited in the wild, 5 for each critical, 2 for each high and 1 for every vulnerability. A vulnerability counts once for every technology it affects, so one advisory can appear under several products.

The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.

Use this data

The same data is at https://junglewise.ai/threats/monthly/2026-06.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.

Cite as: Junglewise Threat Intelligence, "Most vulnerable technologies in June 2026", https://junglewise.ai/threats/monthly/2026-06, 26 September 2026.