| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-83549 KEV 💣 | SonicWALL SMA1000 命令注入漏洞 EPSS 0.11 | SonicWall | SMA1000 | 高危 | - | 2026-09-01 21:28:51 | Deep Dive |
| CVE-2026-83548 KEV 🧪 💣 | SonicWALL SMA1000 服务端请求伪造漏洞 | SonicWall | SMA1000 | 超危 | - | 2026-09-01 21:25:45 | Deep Dive |
| CVE-2026-82329 KEV 📌 💣 | Potential authentication bypass leading to administrative access in Artifactory EPSS 0.14 | jfrog | artifactory | Critical | 9.8 | 2026-08-28 18:27:44 | Deep Dive |
| CVE-2026-82078 KEV 💣 | PaperCut MF/NG: Unsafe Dynamic Class Loading in Database Connector EPSS 0.61 | PaperCut | PaperCut MF/NG | Critical | 9.4 | 2026-08-28 11:45:25 | Deep Dive |
| CVE-2026-81578 KEV 📌 💣 | PaperCut MF/NG: Authentication Bypass EPSS 0.85 | PaperCut | PaperCut MF/NG | High | 8.8 | 2026-08-28 11:39:45 | Deep Dive |
| CVE-2026-60004 KEV 🧪 💣 | Gitea 代码注入漏洞 EPSS 0.24 | Gitea | Gitea | Critical | 9.8 | 2026-08-26 19:45:00 | Deep Dive |
| CVE-2026-69836 KEV | Microsoft Entra ID Remote Code Execution Vulnerability | Microsoft | Microsoft Entra | Critical | 10.0 | 2026-08-20 21:43:13 | Deep Dive |
| CVE-2026-72530 KEV | TrueConf server 代码注入漏洞 | TrueConf | TrueConf Server | Critical | 9.0 | 2026-08-19 16:56:53 | Deep Dive |
| CVE-2026-72529 KEV | TrueConf server 授权问题漏洞 | TrueConf | TrueConf Server | Critical | 9.8 | 2026-08-19 16:55:15 | Deep Dive |
| CVE-2026-19490 KEV | NetScaler ADC and NetScaler Gateway Security Bulletin for CVE-2026-19490 EPSS 0.23 | NetScaler | ADC | Critical | 9.3 | 2026-08-19 12:54:40 | Deep Dive |
| CVE-2026-64849 KEV 📌 💣 | MLflow: Unauthenticated full-read SSRF in webhook delivery: _validate_webhook_url bypassed via unvalidated HTTP redirects (and DNS rebinding) | mlflow | mlflow | Critical | 9.3 | 2026-08-17 21:16:11 | Deep Dive |
| CVE-2026-73570 KEV 🧪 | Zimbra Collaboration 命令注入漏洞 EPSS 0.12 | Zimbra | Collaboration | High | 8.9 | 2026-08-13 15:19:42 | Deep Dive |
| CVE-2026-42018 KEV 📌 💣 | Anonymous user token generation exposure in JFrog Artifactory | jfrog | artifactory | High | 7.5 | 2026-08-12 17:43:21 | Deep Dive |
| CVE-2026-66384 KEV | Authenticated users may write data outside the intended Docker cache path | jfrog | artifactory | Medium | 5.3 | 2026-08-12 15:14:05 | Deep Dive |
| CVE-2026-71362 KEV 📌 💣 | Adobe Commerce | Incorrect Authorization (CWE-863) EPSS 0.88 | Adobe | Adobe Commerce | Critical | 9.1 | 2026-08-11 17:52:48 | Deep Dive |
| CVE-2026-20349 KEV | Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Denial of Service Vulnerability | Cisco | Cisco Secure Firewall Adaptive Security Appliance (ASA) Software | High | 8.6 | 2026-08-11 17:06:03 | Deep Dive |
| CVE-2026-68820 KEV | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability | Microsoft | Windows 10 Version 1607 | High | 7.0 | 2026-08-11 17:05:16 | Deep Dive |
| CVE-2026-65660 KEV | Microsoft SharePoint Server Remote Code Execution Vulnerability | Microsoft | Microsoft SharePoint Enterprise Server 2016 | High | 8.8 | 2026-08-11 17:04:56 | Deep Dive |
| CVE-2026-72898 KEV 🧪 💣 | Metabase SQL injection via password reset endpoint EPSS 0.19 | Metabase | Metabase | Critical | 10.0 | 2026-08-10 17:55:55 | Deep Dive |
| CVE-2026-65400 KEV | Apple macOS 安全漏洞 | Apple | macOS | 超危 | - | 2026-08-06 18:17:18 | Deep Dive |