| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-7031 | Tenda F456 SafeMacFilter fromSafeMacFilter buffer overflow | Tenda | F456 | High | 8.8 | 2026-04-26 09:45:12 | Deep Dive |
| CVE-2026-7030 | Tenda F456 RouteStatic fromRouteStatic buffer overflow | Tenda | F456 | High | 8.8 | 2026-04-26 09:15:13 | Deep Dive |
| CVE-2026-7029 | Tenda F456 addressNat fromaddressNat buffer overflow | Tenda | F456 | High | 8.8 | 2026-04-26 09:00:20 | Deep Dive |
| CVE-2026-7028 | CodeAstro Online Job Portal All Jobs delete-jobs.php sql injection | CodeAstro | Online Job Portal | Medium | 4.7 | 2026-04-26 08:45:11 | Deep Dive |
| CVE-2026-7027 | D-Link DSL-2740R Wireless Setup Section cross site scripting | D-Link | DSL-2740R | Low | 2.4 | 2026-04-26 08:15:14 | Deep Dive |
| CVE-2026-7026 | D-Link DGS-3420 System Information Settings cross site scripting | D-Link | DGS-3420 | Medium | 4.5 | 2026-04-26 07:15:13 | Deep Dive |
| CVE-2026-7025 | Typecho Ping Back Service Endpoint Service.php sendPingHandle server-side request forgery | - | Typecho | High | 7.3 | 2026-04-26 07:00:17 | Deep Dive |
| CVE-2026-7024 | rawchen sims deleteFileServlet Endpoint DeleteFileServlet.java path traversal | rawchen | sims | Medium | 5.4 | 2026-04-26 06:45:11 | Deep Dive |
| CVE-2026-7023 | ByteDance coze-studio databaseTool database_impl.go ExecuteSQL sql injection | ByteDance | coze-studio | Medium | 6.3 | 2026-04-26 06:30:15 | Deep Dive |
| CVE-2026-7022 | SmythOS sre HTTP Header AgentRuntime.class.ts AgentRuntime improper authentication | SmythOS | sre | High | 7.3 | 2026-04-26 05:45:12 | Deep Dive |
| CVE-2026-7021 | SmythOS sre Connector Service utils.ts information disclosure | SmythOS | sre | Low | 3.5 | 2026-04-26 05:30:15 | Deep Dive |
| CVE-2026-7020 | Ollama Tensor Model Transfer transfer.go digestToPath path traversal | - | Ollama | Medium | 5.6 | 2026-04-26 04:45:11 | Deep Dive |
| CVE-2026-7019 | Tenda F456 P2pListFilter fromP2pListFilter buffer overflow | Tenda | F456 | High | 8.8 | 2026-04-26 04:30:18 | Deep Dive |
| CVE-2026-7018 | Datavane Datavines JWT Token TokenManager.java hard-coded key | Datavane | Datavines | Medium | 5.6 | 2026-04-26 03:30:21 | Deep Dive |
| CVE-2026-7016 | MaxSite CMS ushki Plugin cross site scripting | MaxSite | CMS | Low | 2.4 | 2026-04-26 03:15:16 | Deep Dive |
| CVE-2026-42255 | Technitium DNS Server <15.0 DNS放大漏洞 | Technitium | DnsServer | High | 7.2 | 2026-04-26 02:48:45 | Deep Dive |
| CVE-2026-7015 | MaxSite CMS Guestbook Plugin cross site scripting | MaxSite | CMS | Low | 2.4 | 2026-04-26 02:45:13 | Deep Dive |
| CVE-2026-42254 | Hickory DNS 0.1-0.25.2 域外缓存投毒漏洞 | Hickory Project | Hickory DNS | Medium | 4.0 | 2026-04-26 02:38:41 | Deep Dive |
| CVE-2026-7014 | MaxSite CMS down_count Plugin cross site scripting | MaxSite | CMS | Low | 2.4 | 2026-04-26 02:30:21 | Deep Dive |
| CVE-2026-7013 | MaxSite CMS mail_send Plugin cross site scripting | MaxSite | CMS | Low | 2.4 | 2026-04-26 02:00:20 | Deep Dive |