| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-12999 | CVE-2025-12999 | Eclipse Foundation | Eclipse Open VSX | Critical | 9.1 | 2026-09-21 08:59:00 | Deep Dive |
| CVE-2026-94101 | Netcore NBR200V2 routerd vlan_load_form_uci buffer overflow | Netcore | NBR200V2 | Critical | 9.9 | 2026-09-21 00:45:12 | Deep Dive |
| CVE-2026-94100 | Netcore NBR200V2 WAN VLAN Reconfiguration routerd wan_config_set_vlan buffer overflow | Netcore | NBR200V2 | Critical | 9.9 | 2026-09-21 00:30:16 | Deep Dive |
| CVE-2026-94099 | Netcore NBR200V2 Backup Restore restore.cgi command injection | Netcore | NBR200V2 | Critical | 9.9 | 2026-09-21 00:15:06 | Deep Dive |
| CVE-2026-94098 | Netcore NBR200V2 Firmware Upgrade CGI Endpoint upgrade command injection | Netcore | NBR200V2 | Critical | 9.1 | 2026-09-21 00:00:10 | Deep Dive |
| CVE-2026-94097 | Netcore NBR200V2 CGI Diagnostic Endpoint network_tools command injection | Netcore | NBR200V2 | Critical | 10.0 | 2026-09-20 23:45:11 | Deep Dive |
| CVE-2026-94096 | Netcore NBR200V2 LAN IP Configuration network_tools command injection | Netcore | NBR200V2 | Critical | 9.9 | 2026-09-20 23:30:13 | Deep Dive |
| CVE-2026-94095 | Netcore NBR200V2 Traceroute Diagnostic Feature network_tools command injection | Netcore | NBR200V2 | Critical | 9.9 | 2026-09-20 23:15:14 | Deep Dive |
| CVE-2026-94089 | D-Link DIR-868L Authentication webfa_authentication.cgi strcpy stack-based overflow | D-Link | DIR-868L | Critical | 10.0 | 2026-09-20 20:45:10 | Deep Dive |
| CVE-2026-88857 | Joomla Extension - OrdaSoft.com - Authenticated, Privileged Remote Code Execution in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 | OrdaSoft.com | OrdaSoft Joomla Gallery free extension for Joomla | Critical | 9.4 | 2026-09-20 17:54:21 | Deep Dive |
| CVE-2026-88854 | Joomla Extension - OrdaSoft.com - Unauthenticated SQL Injection in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 | OrdaSoft.com | OrdaSoft Joomla Gallery free extension for Joomla | Critical | 9.3 | 2026-09-20 17:53:03 | Deep Dive |
| CVE-2026-88856 | Joomla Extension - OrdaSoft.com - Authenticated, Privileged Remote Code Execution in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 | OrdaSoft.com | OrdaSoft Joomla Gallery free extension for Joomla | Critical | 9.4 | 2026-09-20 17:50:04 | Deep Dive |
| CVE-2026-90817 | REDCap 13.3.0+ 未授权远程代码执行漏洞 | Vanderbilt University | REDCap | Critical | 9.8 | 2026-09-20 12:05:33 | Deep Dive |
| CVE-2026-94003 | Comfast CF-N1-S Web Management mbox-config get_css_path_from_uri stack-based overflow | Comfast | CF-N1-S | Critical | 10.0 | 2026-09-20 11:30:08 | Deep Dive |
| CVE-2026-94084 | Suricata 8.0.7前Http2ThreadMultiBuf释放后使用漏洞 | OISF | Suricata | Critical | 9.4 | 2026-09-20 01:20:21 | Deep Dive |
| CVE-2026-94083 | Suricata 8.0.7之前DoH2类型混淆导致DoS | OISF | Suricata | Critical | 9.4 | 2026-09-20 01:18:06 | Deep Dive |
| CVE-2026-93958 | D-Link R95 DHMAPI ssi system os command injection | D-Link | R95 | Critical | 9.1 | 2026-09-20 01:15:12 | Deep Dive |
| CVE-2026-93985 | OpenPanel js-runtime JavaScript Template Sandbox Escape RCE | Openpanel-dev | openpanel | Critical | 9.9 | 2026-09-19 11:53:37 | Deep Dive |
| CVE-2026-93742 | Totolink A3002MU formWsc command injection | Totolink | A3002MU | Critical | 9.9 | 2026-09-19 08:30:21 | Deep Dive |
| CVE-2026-93741 | Totolink A3002MU formWlWds buffer overflow | Totolink | A3002MU | Critical | 10.0 | 2026-09-19 05:45:13 | Deep Dive |