| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-55394 | Unencrypted 802.11 Network in Teledyne FLIR Robots running Aware2 | Teledyne FLIR | Aware2 | Medium | 5.3 | 2026-10-01 19:59:28 | Deep Dive |
| CVE-2026-55393 | Local File Inclusion in Teledyne FLIR Robots running Aware2 | Teledyne FLIR | Aware2 | Critical | 10.0 | 2026-10-01 19:59:20 | Deep Dive |
| CVE-2026-14984 | Cleartext HTTP for Control Traffic in Teledyne FLIR Robots running Aware2 | Teledyne FLIR | Aware2 | Critical | 9.4 | 2026-10-01 19:59:09 | Deep Dive |
| CVE-2026-14983 | Missing Authentication in Teledyne FLIR Robots running Aware2 | Teledyne FLIR | Aware2 | High | 7.1 | 2026-10-01 19:59:00 | Deep Dive |
| CVE-2026-53964 | Document Merge Service vulnerable to RCE via SSTI (xlsx tempaltes) | adfinis | document-merge-service | High | 7.2 | 2026-10-01 19:55:08 | Deep Dive |
| CVE-2026-55252 | OpenRun: Redirect URL validation bypass using //host paths leads to Open Redirect | openrundev | openrun | Medium | 5.1 | 2026-10-01 19:52:31 | Deep Dive |
| CVE-2026-55251 | NetBox Device Type Library: Arbitrary Code Execution on CI Runner Through Malicious requirements.txt, .pre-commit-hooks-config.yaml, and .gitmodules Files | netbox-community | devicetype-library | Medium | 6.5 | 2026-10-01 19:49:33 | Deep Dive |
| CVE-2026-103484 | pgvector buffer overflow in IVFFlat index build | - | pgvector | High | 8.8 | 2026-10-01 19:49:04 | Deep Dive |
| CVE-2026-102628 | Cadmos LTI exposure of sensitive information via debug mode | Eummena | Cadmos LTI | Critical | 9.3 | 2026-10-01 19:44:41 | Deep Dive |
| CVE-2026-100251 | Wormhole.app SSRF | Wormhole App | Wormhole | Medium | 6.5 | 2026-10-01 19:44:16 | Deep Dive |
| CVE-2026-93832 | 摩托罗拉系统应用权限导出漏洞 | Motorola | Setup App | Medium | 4.4 | 2026-10-01 19:44:12 | Deep Dive |
| CVE-2026-102671 | Joyland AI WebView accepts invalid SSL certificates | Joyland | Joyland.ai | Medium | 5.3 | 2026-10-01 19:43:45 | Deep Dive |
| CVE-2026-102670 | Joyland AI enables HTTP | Joyland | Joyland.ai | Medium | 4.3 | 2026-10-01 19:43:27 | Deep Dive |
| CVE-2026-102669 | Joyland AI hostname checking disabled | Joyland | Joyland.ai | Medium | 5.3 | 2026-10-01 19:43:07 | Deep Dive |
| CVE-2026-54049 | Sakai Conversations has a Stored XSS Issue | sakaiproject | sakai | High | 8.7 | 2026-10-01 19:42:50 | Deep Dive |
| CVE-2026-102668 | Joyland AI accepts TLS certificates without validation | Joyland | Joyland.ai | Medium | 5.3 | 2026-10-01 19:42:46 | Deep Dive |
| CVE-2026-102667 | Joyland AI WebView command injection | Joyland | Joyland.ai | High | 8.3 | 2026-10-01 19:42:24 | Deep Dive |
| CVE-2026-82358 | RT-Labs AB C-Open CANopen SDO Server Write Protection Bypass | RT-Labs AB | C-Open | Medium | 6.5 | 2026-10-01 19:42:17 | Deep Dive |
| CVE-2026-102666 | Joyland AI hard-coded credentials for push notifications | Joyland | Joyland.ai | Medium | 6.5 | 2026-10-01 19:41:55 | Deep Dive |
| CVE-2026-82357 | RT-Labs AB C-Open CANopen NULL pointer dereference | RT-Labs AB | C-Open | Medium | 6.5 | 2026-10-01 19:41:48 | Deep Dive |