| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-20307 | Cisco Identity Services Engine Remote Code Execution Vulnerability | Cisco | Cisco Identity Services Engine Software | Critical | 9.9 | 2026-09-16 16:55:55 | Deep Dive |
| CVE-2026-20305 | Cisco Identity Services Engine Command Injection Vulnerability | Cisco | Cisco Identity Services Engine Software | Critical | 9.1 | 2026-09-16 16:55:18 | Deep Dive |
| CVE-2026-20306 | Cisco Identity Services Engine Command Injection Vulnerability | Cisco | Cisco Identity Services Engine Software | Critical | 9.1 | 2026-09-16 16:55:11 | Deep Dive |
| CVE-2026-92398 | Ruijie RG-EW3000GX user_list_note admin os command injection | Ruijie | RG-EW3000GX | Critical | 9.1 | 2026-09-16 16:00:09 | Deep Dive |
| CVE-2026-92397 | Ruijie RG-EW3000GX configChange unifyframe-sgi.elf cc_set os command injection | Ruijie | RG-EW3000GX | Critical | 9.1 | 2026-09-16 15:45:16 | Deep Dive |
| CVE-2025-59953 | LMdeploy has Remote Code Execution by Pickle Deserialization via zmq_rpc.call_and_response() in InterLM/lmdeploy | InternLM | lmdeploy | Critical | 9.8 | 2026-09-16 15:36:02 | Deep Dive |
| CVE-2026-70416 | Dell ObjectScale 4.4.0前 不可信数据反序列化远程代码执行 | Dell | ObjectScale | Critical | 10.0 | 2026-09-16 15:19:47 | Deep Dive |
| CVE-2026-77411 | RabbitMQ amqp091-go: Protocol Desynchronization and Frame Injection via Integer Overflow in readLongstr | rabbitmq | amqp091-go | Critical | 9.5 | 2026-09-16 14:45:49 | Deep Dive |
| CVE-2026-77405 | RabbitMQ amqp091-go: Missing Explicit TLS Minimum Version Configuration In URI Parser | rabbitmq | amqp091-go | Critical | 9.4 | 2026-09-16 14:42:09 | Deep Dive |
| CVE-2026-92395 | @fastify/proxy-addr vulnerable to IP spoofing via IPv4-mapped IPv6 trust subnet | @fastify/proxy-addr | @fastify/proxy-addr | Critical | 9.1 | 2026-09-16 14:35:05 | Deep Dive |
| CVE-2026-77408 | RabbitMQ amqp091-go: Silent Data Truncation and State Corruption via Shortstr Integer Overflow | rabbitmq | amqp091-go | Critical | 9.1 | 2026-09-16 14:30:04 | Deep Dive |
| CVE-2026-91843 | Stack overflow in login process to the Security Management and Log Servers | checkpoint | Quantum Security Management | Critical | 9.8 | 2026-09-16 13:03:41 | Deep Dive |
| CVE-2026-73172 | Advantech EKI-1242EIMS V1.06.01 命令注入漏洞 | Advantech | EKI-1242IEIMS | Critical | 9.3 | 2026-09-16 12:57:44 | Deep Dive |
| CVE-2026-58147 | Authorized remote code execution via password change functionality in T-Mobile 5G Box IDU routers | WNC | T-Mobile 5G Box IDU | Critical | 9.3 | 2026-09-16 11:21:17 | Deep Dive |
| CVE-2026-58146 | Unauthorized remote code execution in T-Mobile 5G Box IDU routers | WNC | T-Mobile 5G Box IDU | Critical | 9.4 | 2026-09-16 11:21:16 | Deep Dive |
| CVE-2026-40855 | Command Injection in T-Mobile 5G Box IDU router via ping functionality | WNC | T-Mobile 5G Box IDU | Critical | 9.3 | 2026-09-16 11:21:12 | Deep Dive |
| CVE-2026-90049 | net: skbuff: don't skb_tx_error() the source skb in skb_zerocopy() | Linux | Linux | Critical | 9.3 | 2026-09-16 10:33:45 | Deep Dive |
| CVE-2026-90048 | fs/ntfs3: fix slab-out-of-bounds write in ni_create_attr_list() | Linux | Linux | Critical | 9.8 | 2026-09-16 10:33:45 | Deep Dive |
| CVE-2026-90042 | ceph: properly decrypt filenames in vmalloc() buffers | Linux | Linux | Critical | 9.8 | 2026-09-16 10:33:40 | Deep Dive |
| CVE-2026-90037 | NFSD: Prevent client use-after-free during close_lru reaping | Linux | Linux | Critical | 9.8 | 2026-09-16 10:33:37 | Deep Dive |