| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-104479 | Shopclass before 6.2.0 Stored XSS via Listing Description Field | mindstellar | shopclass | Medium | 5.4 | 2026-10-02 23:28:49 | Deep Dive |
| CVE-2026-104478 | Formwork before 2.3.13 Path Traversal via BackupController Download and Delete | getformwork | formwork | High | 7.1 | 2026-10-02 23:28:48 | Deep Dive |
| CVE-2026-104477 | Showdown through 2.1.0 XSS via unescaped quote in href and src attributes | showdownjs | showdown | Medium | 6.1 | 2026-10-02 23:28:47 | Deep Dive |
| CVE-2026-104476 | Backdrop CMS before 1.35.1 Information Disclosure via Configuration Export Archive | backdrop | backdrop | Medium | 5.9 | 2026-10-02 23:28:47 | Deep Dive |
| CVE-2026-104475 | IDURAR ERP CRM through 4.1.1 Stored XSS via SVG Upload | idurar | idurar-erp-crm | Medium | 5.4 | 2026-10-02 23:28:46 | Deep Dive |
| CVE-2026-104474 | OpenLiteSpeed before 1.9.3 Local Privilege Escalation via lsup.sh Auto-Update | litespeedtech | openlitespeed | Medium | 6.7 | 2026-10-02 23:28:45 | Deep Dive |
| CVE-2026-104433 | Mooncake before 0.3.12 Out-of-Bounds Read via P2P Handshake readString | kvcache-ai | Mooncake | High | 7.5 | 2026-10-02 23:28:45 | Deep Dive |
| CVE-2026-105051 | Denuvo Anti-Tamper 2026-03-04 前版本存在绕过Hypervisor检测漏洞 | Irdeto | Denuvo Anti-Tamper | Low | 1.9 | 2026-10-02 22:59:57 | Deep Dive |
| CVE-2026-105050 | PeaZip <11.3.0 OS命令注入漏洞 | PeaZip | PeaZip | High | 7.1 | 2026-10-02 22:37:55 | Deep Dive |
| CVE-2026-105049 | Zilliz Attu<3.0.0 Playground未授权访问漏洞 | Zilliz | Attu | Medium | 5.8 | 2026-10-02 22:14:36 | Deep Dive |
| CVE-2026-84411 | MikroTik RouterOS Integer Underflow | MikroTik | RouterOS | Critical | 9.8 | 2026-10-02 22:09:48 | Deep Dive |
| CVE-2026-105048 | Zilliz Attu<3.0.0 Playground功能存在SSRF漏洞 | Zilliz | Attu | Medium | 4.0 | 2026-10-02 22:08:32 | Deep Dive |
| CVE-2026-94591 | Armatura LLC Armatura One Use of Hard-coded Cryptographic Key | Armatura LLC | Armatura One | High | 8.4 | 2026-10-02 21:54:43 | Deep Dive |
| CVE-2026-94592 | Armatura LLC Armatura One Use of Hard-coded Credentials | Armatura LLC | Armatura One | High | 8.4 | 2026-10-02 21:52:54 | Deep Dive |
| CVE-2026-105046 | Kentico Xperience 13 管理 API 对象级授权绕过 | Kentico | Xperience | Medium | 4.3 | 2026-10-02 21:51:35 | Deep Dive |
| CVE-2026-94593 | Armatura LLC Armatura One Insertion of Sensitive Information into Log File | Armatura LLC | Armatura One | High | 7.8 | 2026-10-02 21:51:01 | Deep Dive |
| CVE-2026-94594 | Armatura LLC Armatura One Insertion of Sensitive Information into Log File | Armatura LLC | Armatura One | Medium | 4.0 | 2026-10-02 21:48:15 | Deep Dive |
| CVE-2026-95102 | Monta monta.app Missing Authentication for Critical Function | Monta | monta.app | Critical | 9.4 | 2026-10-02 21:34:37 | Deep Dive |
| CVE-2026-105043 | MathWorks Simulink R2026b前版本远程代码执行漏洞 | MathWorks | Simulink | Low | 3.6 | 2026-10-02 21:34:15 | Deep Dive |
| CVE-2026-97363 | Monta monta.app Improper Restriction of Excessive Authentication Attempts | Monta | monta.app | High | 7.5 | 2026-10-02 21:32:31 | Deep Dive |