| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-78169 🧪 | UTT HiPER 1250GW HTTP Request aspRemoteApConfTempSend strcpy stack-based overflow | UTT | HiPER 1250GW | Critical | 9.9 | 2026-08-24 01:45:12 | Deep Dive |
| CVE-2026-78168 🧪 | EFM ipTIME T24000M Session Validation httpcon_check_session_url improper authentication | EFM | ipTIME T24000M | Critical | 9.8 | 2026-08-24 01:30:11 | Deep Dive |
| CVE-2026-78167 🧪 | EFM ipTIME T16000M Session Validation httpcon_check_session_url improper authentication | EFM | ipTIME T16000M | Critical | 10.0 | 2026-08-24 01:15:12 | Deep Dive |
| CVE-2026-78208 🧪 | exceljs through 4.4.0 Path Traversal via Unvalidated addImage filename | exceljs | exceljs | High | 7.5 | 2026-08-24 00:30:48 | Deep Dive |
| CVE-2026-78209 🧪 | exceljs through 4.4.0 CSV Formula Injection via Unescaped Cell Values | exceljs | exceljs | High | 8.2 | 2026-08-24 00:30:48 | Deep Dive |
| CVE-2026-78207 🧪 | exceljs through 4.4.0 Prototype Pollution via deepMerge Reached From Note Serialization | exceljs | exceljs | Critical | 9.4 | 2026-08-24 00:30:47 | Deep Dive |
| CVE-2026-78206 🧪 | exceljs through 4.4.0 Uncontrolled Resource Consumption via Unbounded xlsx Decompression | exceljs | exceljs | High | 7.5 | 2026-08-24 00:30:46 | Deep Dive |
| CVE-2026-78203 🧪 | Ghostwriter before 7.1.2 Cross-Client Report Template Disclosure via Unauthorized Template Swap | GhostManager | Ghostwriter | High | 7.1 | 2026-08-24 00:30:44 | Deep Dive |
| CVE-2026-78157 🧪 | Open5GS Rx AA-Request pcrf-rx-path.c pcrf_rx_aar_cb out-of-bounds | - | Open5GS | High | 7.4 | 2026-08-24 00:00:13 | Deep Dive |
| CVE-2026-78156 🧪 | Open5GS S6a Authentication-Information-Request hss-s6a-path.c hss_ogs_diam_s6a_air_cb heap-based overflow | - | Open5GS | High | 7.4 | 2026-08-23 23:45:10 | Deep Dive |
| CVE-2026-78147 🧪 | ggml-org llama.cpp ggml-RPC Server ggml-rpc.cpp deserialize_tensor deserialization | ggml-org | llama.cpp | High | 7.3 | 2026-08-23 23:00:13 | Deep Dive |
| CVE-2026-9769 🧪 | justhtml before 1.10.0 Denial of Service via deeply nested HTML | EmilStenstrom | justhtml | High | 7.5 | 2026-08-23 13:34:16 | Deep Dive |
| CVE-2026-8445 🧪 | justhtml before 1.12.0 Sanitizer Bypass via Markdown | EmilStenstrom | justhtml | Critical | 9.8 | 2026-08-23 13:34:14 | Deep Dive |
| CVE-2026-7808 🧪 | justhtml before 1.16.0 Multiple Security Issues via Sanitization | EmilStenstrom | justhtml | Critical | 9.8 | 2026-08-23 13:34:13 | Deep Dive |
| CVE-2026-5388 🧪 | justhtml before 1.15.0 Multiple Security Issues | EmilStenstrom | justhtml | Critical | 9.8 | 2026-08-23 13:34:09 | Deep Dive |
| CVE-2026-4671 🧪 | justhtml before 1.18.0 Denial of Service via CSS Selector | EmilStenstrom | justhtml | High | 7.5 | 2026-08-23 13:34:08 | Deep Dive |
| CVE-2026-77115 🧪 | Brave Popup Builder < 0.8.6 - Unauthenticated Reflected XSS via UTM Parameters | Unknown | Brave | - | - | 2026-08-23 06:00:18 | Deep Dive |
| CVE-2026-78062 🧪 | vas3k TaxHacker JWT Secret config.ts envSchema.parse hard-coded credentials | vas3k | TaxHacker | High | 7.3 | 2026-08-23 04:15:11 | Deep Dive |
| CVE-2026-78056 🧪 | sambitraj Student-Management-System Dashboard sql injection | sambitraj | Student-Management-System | Medium | 6.3 | 2026-08-23 02:30:10 | Deep Dive |
| CVE-2026-78136 🧪 | CHIRP 代码注入漏洞 | chirpmyradio | CHIRP | High | 7.8 | 2026-08-23 00:48:57 | Deep Dive |