| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-5430 KEV | Authentication Bypass via JWT Algorithm Mismatch in Multiple WSO2 Products Allows Account Takeover | WSO2 | WSO2 Universal Gateway | Critical | 10.0 | 2026-08-06 07:33:28 | Deep Dive |
| CVE-2026-18577 KEV 📌 💣 | Incomplete patch leads to administrative account takeover EPSS 0.15 | N-able | N-central | High | 8.2 | 2026-08-02 22:06:18 | Deep Dive |
| CVE-2026-18556 KEV | Unauthenticated administrative account takeover | N-able | N-central | High | 8.2 | 2026-08-01 19:59:31 | Deep Dive |
| CVE-2026-59310 KEV 🧪 | vCenter directory-traversal vulnerability | VMware | Cloud Foundation | Critical | 9.8 | 2026-07-30 12:19:25 | Deep Dive |
| CVE-2026-20316 KEV | Cisco Secure Firewall Management Center Software Static Credential Vulnerability EPSS 0.35 | Cisco | Cisco Secure Firewall Management Center (FMC) | Medium | 5.3 | 2026-07-29 16:22:09 | Deep Dive |
| CVE-2026-42016 KEV | Incorrect authorization validation of user token in JFrog Artifactory allows Privilege Escalation | jfrog | artifactory | High | 8.1 | 2026-07-27 19:20:56 | Deep Dive |
| CVE-2026-63077 KEV 📌 💣 | JetBrains TeamCity 反序列化注入漏洞 EPSS 0.90 | JetBrains | TeamCity | Critical | 9.8 | 2026-07-27 16:44:32 | Deep Dive |
| CVE-2026-16812 KEV | VeloCloud Orchestrator OS Command Injection | Arista Networks | VeloCloud Orchestrator On-Prem | Critical | 10.0 | 2026-07-27 16:11:01 | Deep Dive |
| CVE-2026-16232 KEV 📌 💣 | Authentication Bypass in the SmartConsole Login Process Using an Application Token EPSS 0.78 | checkpoint | Quantum Security Management | Critical | 9.3 | 2026-07-22 13:53:10 | Deep Dive |
| CVE-2026-63030 KEV 🧪 💣 | WordPress < 7.0.2 - REST API batch-route confusion and SQL injection issue leading to Remote Code Execution EPSS 0.10 | WordPress | WordPress | Critical | 9.8 | 2026-07-17 19:14:13 | Deep Dive |
| CVE-2026-60137 KEV 💣 | WordPress < 7.0.2 - Facilitated SQL Injection via author__not_in in WP_Query | WordPress | WordPress | Medium | 5.9 | 2026-07-17 19:14:12 | Deep Dive |
| CVE-2026-9198 KEV 📌 💣 | Unauthenticated Remote Code Execution via Auto-Login Bypass and Code Validation EPSS 0.29 | IBM | Langflow OSS | Critical | 9.8 | 2026-07-17 17:36:11 | Deep Dive |
| CVE-2026-9586 KEV 📌 💣 | Unauthenticated SQL Injection Leading to Remote Code Execution in Switchvox SMB EPSS 0.19 | Sangoma | Switchvox SMB Edition | Critical | 9.3 | 2026-07-17 15:57:43 | Deep Dive |
| CVE-2021-27137 KEV 📌 | DD-WRT 缓冲区错误漏洞 | DD-WRT | DD-WRT | High | 8.1 | 2026-07-16 00:00:00 | Deep Dive |
| CVE-2026-15410 KEV | SonicWall SMA1000 代码注入漏洞 EPSS 0.12 | SonicWall | SMA1000 | 高危 | - | 2026-07-14 19:43:03 | Deep Dive |
| CVE-2026-15409 KEV 📌 💣 | SonicWall SMA1000 服务端请求伪造漏洞 | SonicWall | SMA1000 | 超危 | - | 2026-07-14 19:39:35 | Deep Dive |
| CVE-2026-55040 KEV 📌 | Microsoft SharePoint Server Security Feature Bypass Vulnerability EPSS 0.18 | Microsoft | Microsoft SharePoint Enterprise Server 2016 | Critical | 9.1 | 2026-07-14 17:09:01 | Deep Dive |
| CVE-2026-58644 KEV 🧪 💣 | Microsoft SharePoint Remote Code Execution Vulnerability EPSS 0.16 | Microsoft | Microsoft SharePoint Enterprise Server 2016 | Critical | 9.8 | 2026-07-14 17:05:37 | Deep Dive |
| CVE-2026-50522 KEV | Microsoft SharePoint Remote Code Execution Vulnerability | Microsoft | Microsoft SharePoint Enterprise Server 2016 | Critical | 9.8 | 2026-07-14 17:05:28 | Deep Dive |
| CVE-2026-56155 KEV | Active Directory Federation Services Elevation of Privilege Vulnerability | Microsoft | Windows 10 Version 1607 | High | 7.8 | 2026-07-14 17:05:12 | Deep Dive |