| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-46670 🧪 💣 | YesWiki: Unauthenticated SQL Injection | YesWiki | yeswiki | Critical | 9.8 | 2026-08-11 13:58:33 | Deep Dive |
| CVE-2026-48056 🧪 | Streambert Vulnerable to Arbitrary Binary Execution via Downloader IPC Handler | truelockmc | streambert | Critical | 10.0 | 2026-08-11 13:52:45 | Deep Dive |
| CVE-2026-48046 🧪 | Streambert Vulnerable to Remote Code Execution (RCE) via Unvalidated Auto-Updater IPC Handler | truelockmc | streambert | Critical | 9.3 | 2026-08-11 13:08:46 | Deep Dive |
| CVE-2026-18972 | Velociraptor authenticated identity-spoofing vulnerability | Rapid7 | Velociraptor | Critical | 9.6 | 2026-08-11 12:30:53 | Deep Dive |
| CVE-2026-58115 | Siemens SIMATIC IoT2050 Advanced 授权问题漏洞 | Siemens | SIMATIC IoT2050 Advanced | Critical | 10.0 | 2026-08-11 12:20:24 | Deep Dive |
| CVE-2026-72748 | AVideo Unauthenticated Arbitrary File Write via aVideoEncoderChunk.json.php | WWBN | AVideo | Critical | 9.1 | 2026-08-11 12:17:02 | Deep Dive |
| CVE-2026-72603 🧪 | wg-easy wg-easy - OS Command Injection | wg-easy | wg-easy | Critical | 9.9 | 2026-08-11 11:15:12 | Deep Dive |
| CVE-2026-72599 | e107 e107 - SQL Injection | e107 | e107 | Critical | 9.8 | 2026-08-11 11:14:15 | Deep Dive |
| CVE-2026-72550 🧪 | Friendica Friendica - SQL Injection | Friendica | Friendica | Critical | 9.8 | 2026-08-11 11:10:22 | Deep Dive |
| CVE-2026-13737 | Command Restriction Bypass | Commvault | Commvault Cloud | Critical | 9.2 | 2026-08-11 11:01:39 | Deep Dive |
| CVE-2026-13738 | Improper Authorization Validation | Commvault | Commvault Cloud | Critical | 9.2 | 2026-08-11 11:01:39 | Deep Dive |
| CVE-2026-58231 | Improper Authorization in SAP Commerce Cloud (Data Hub Adapter) | SAP_SE | SAP Commerce Cloud (Data Hub Adapter) | Critical | 10.0 | 2026-08-11 10:21:29 | Deep Dive |
| CVE-2026-10579 | Picketlink-federation: auth bypass in picketlink saml unsolicited-response | Red Hat | Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7 | Critical | 9.8 | 2026-08-11 08:49:35 | Deep Dive |
| CVE-2026-13716 | Path Traversal: '.../...//' in Crafty Controller | Arcadia Technology, LLC | Crafty Controller | Critical | 9.1 | 2026-08-11 06:05:12 | Deep Dive |
| CVE-2026-19516 | CVE-2026-19516 CVE Record | Grafana | Grafana MCP Server | Critical | 9.1 | 2026-08-11 05:28:31 | Deep Dive |
| CVE-2026-19425 | Win Men Intermational|Travel Agency Management System - SQL Injection | Win Men Intermational | Travel Agency Management System | Critical | 9.8 | 2026-08-11 04:17:16 | Deep Dive |
| CVE-2026-44758 | Code Injection vulnerability in Manufacturing Integration and Intelligence | SAP_SE | SAP Manufacturing Integration and Intelligence | Critical | 9.1 | 2026-08-11 00:11:19 | Deep Dive |
| CVE-2026-34265 | Memory Corruption vulnerability in Application Server ABAP for SAP NetWeaver and ABAP Platform | SAP_SE | SAP NetWeaver and ABAP Platform | Critical | 9.8 | 2026-08-11 00:10:53 | Deep Dive |
| CVE-2026-48161 🧪 | react18-use was vulnerable to malicious code execution via compromised commits | dai-shi | react18-use | Critical | 9.3 | 2026-08-10 22:27:35 | Deep Dive |
| CVE-2026-48160 🧪 | react-tracked was vulnerable to malicious code execution via compromised commits | dai-shi | react-tracked | Critical | 9.3 | 2026-08-10 21:08:55 | Deep Dive |