| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-71163 | Oracle Access Manager 安全漏洞 | Oracle Corporation | Oracle Access Manager | Critical | 9.9 | 2026-09-15 20:02:38 | Deep Dive |
| CVE-2026-73940 | Oracle Access Manager 授权问题漏洞 | Oracle Corporation | Oracle Access Manager | Critical | 9.8 | 2026-09-15 20:02:38 | Deep Dive |
| CVE-2026-71133 | Oracle Access Manager 授权问题漏洞 | Oracle Corporation | Oracle Access Manager | Critical | 10.0 | 2026-09-15 20:02:37 | Deep Dive |
| CVE-2026-70756 | Oracle WebLogic Server 授权问题漏洞 | Oracle Corporation | Oracle WebLogic Server | Critical | 9.8 | 2026-09-15 20:02:36 | Deep Dive |
| CVE-2026-70757 | Oracle WebLogic Server 授权问题漏洞 | Oracle Corporation | Oracle WebLogic Server | Critical | 9.8 | 2026-09-15 20:02:36 | Deep Dive |
| CVE-2026-70913 | Oracle Identity Manager 授权问题漏洞 | Oracle Corporation | Oracle Identity Manager | Critical | 9.8 | 2026-09-15 20:02:36 | Deep Dive |
| CVE-2026-70748 | Oracle WebLogic Server 授权问题漏洞 | Oracle Corporation | Oracle WebLogic Server | Critical | 9.8 | 2026-09-15 20:02:35 | Deep Dive |
| CVE-2026-76675 | Authenticated Command Injection Vulnerability Leads to Privilege Escalation in EdgeConnect SD-WAN Gateways | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | Critical | 9.1 | 2026-09-15 19:23:36 | Deep Dive |
| CVE-2026-76674 | Unauthenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution in HPE Networking EdgeConnect SD-WAN Gateways | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | Critical | 9.8 | 2026-09-15 19:23:36 | Deep Dive |
| CVE-2026-76673 | Authentication Bypass Vulnerabilities in API of EdgeConnect SD-WAN Orchestrator | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | Critical | 9.8 | 2026-09-15 19:23:35 | Deep Dive |
| CVE-2026-76672 | Authenticated Sensitive Information Disclosure in HPE Networking EdgeConnect SD-WAN Orchestrator | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | Critical | 9.9 | 2026-09-15 19:23:34 | Deep Dive |
| CVE-2026-76670 | Authorization Bypass Leading to Privilege Escalation in EdgeConnect SD-WAN Orchestrator | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | Critical | 9.9 | 2026-09-15 19:23:33 | Deep Dive |
| CVE-2026-76669 | Authorization Bypass Leading to Privilege Escalation in EdgeConnect SD-WAN Orchestrator | Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | Critical | 9.9 | 2026-09-15 19:23:32 | Deep Dive |
| CVE-2026-69204 | Http4s: Ember accepts Transfer-Encoding combined with Content-Length (CL.TE request smuggling) | http4s | http4s | Critical | 9.2 | 2026-09-15 18:43:15 | Deep Dive |
| CVE-2026-61667 | DIRAC: RCE in FileCatalog DatasetManager via SQL injection + eval | DIRACGrid | DIRAC | Critical | 9.9 | 2026-09-15 17:26:16 | Deep Dive |
| CVE-2026-53459 | Bambuddy's authentication fails open on database errors, allowing unauthenticated access to all endpoints | maziggy | bambuddy | Critical | 9.3 | 2026-09-15 17:25:27 | Deep Dive |
| CVE-2026-45579 | DIRAC: RCE in RequestManager due to eval on untrusted input | DIRACGrid | DIRAC | Critical | 9.9 | 2026-09-15 17:23:35 | Deep Dive |
| CVE-2026-12351 | IBM MQ is vulnerable to unauthenticated remote code execution via JNDI injection | IBM | MQ | Critical | 9.8 | 2026-09-15 17:14:32 | Deep Dive |
| CVE-2026-53710 | MCP Context Forge: RestrictedPython sandbox bypass via getattr builtin in python_sandbox_server | IBM | mcp-context-forge | Critical | 10.0 | 2026-09-15 16:47:41 | Deep Dive |
| CVE-2026-46488 | motionEye: Authentication possible via password hash | motioneye-project | motioneye | Critical | 9.1 | 2026-09-15 16:45:21 | Deep Dive |