| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-80428 💣 | ILIAS PHP Object Injection via Shibboleth Logout | ILIAS-eLearning e.V. | ILIAS | Critical | 9.8 | 2026-08-26 15:44:56 | Deep Dive |
| CVE-2026-54569 | SENAITE.CORE: Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') and Missing Authorization in senaite.core | senaite | senaite.core | Critical | 9.8 | 2026-08-26 15:28:20 | Deep Dive |
| CVE-2026-75062 | Eval Injection in google/langfun via default lf.query protocol | langfun | Critical | 9.2 | 2026-08-26 14:50:51 | Deep Dive | |
| CVE-2026-80589 | block: stop the timeout timer when releasing a never added disk | Linux | Linux | Critical | 9.8 | 2026-08-26 14:37:43 | Deep Dive |
| CVE-2026-80587 | mptcp: avoid combining some incoming suboptions | Linux | Linux | Critical | 9.8 | 2026-08-26 14:37:42 | Deep Dive |
| CVE-2026-80585 | mptcp: fastopen: only mark MPTFO subflows with SYN data | Linux | Linux | Critical | 9.4 | 2026-08-26 14:37:41 | Deep Dive |
| CVE-2026-80586 | mptcp: options: reset DSS fields in case of unexpected size | Linux | Linux | Critical | 9.8 | 2026-08-26 14:37:41 | Deep Dive |
| CVE-2026-80561 | libceph: fix multiple unsafe decodes in decode_locker() | Linux | Linux | Critical | 9.8 | 2026-08-26 14:37:27 | Deep Dive |
| CVE-2026-80558 | libceph: Avoid using invalid osd indices from primary_temp | Linux | Linux | Critical | 9.8 | 2026-08-26 14:37:25 | Deep Dive |
| CVE-2026-80557 | libceph: fix OOB read in decode_watchers() via missing bounds check | Linux | Linux | Critical | 9.8 | 2026-08-26 14:37:24 | Deep Dive |
| CVE-2026-80554 | s390/vfio_ccw: Limit the number of channel program segments | Linux | Linux | Critical | 9.3 | 2026-08-26 14:37:22 | Deep Dive |
| CVE-2026-80551 | s390/vfio_ccw: Ensure first IDAW remains constant | Linux | Linux | Critical | 9.3 | 2026-08-26 14:37:21 | Deep Dive |
| CVE-2026-80528 | ceph: avoid fs reclaim while using current->journal_info | Linux | Linux | Critical | 9.8 | 2026-08-26 14:37:07 | Deep Dive |
| CVE-2026-80519 | ovpn: finish crypto callback cleanup before peer release | Linux | Linux | Critical | 9.8 | 2026-08-26 14:37:01 | Deep Dive |
| CVE-2026-74752 | sctp: validate cookie AUTH state before use | Linux | Linux | Critical | 9.8 | 2026-08-26 14:37:00 | Deep Dive |
| CVE-2026-74751 | riscv: lib: Fix ZBB strnlen reading past count boundary | Linux | Linux | Critical | 9.4 | 2026-08-26 14:36:59 | Deep Dive |
| CVE-2026-74746 | netfilter: flowtable: publish GC-visible tuple last | Linux | Linux | Critical | 9.8 | 2026-08-26 14:36:56 | Deep Dive |
| CVE-2026-74744 | ipvlan: inherit needed_headroom and needed_tailroom from phy_dev | Linux | Linux | Critical | 9.8 | 2026-08-26 14:36:55 | Deep Dive |
| CVE-2026-74743 | macvlan: inherit needed_headroom and needed_tailroom from lowerdev | Linux | Linux | Critical | 9.8 | 2026-08-26 14:36:54 | Deep Dive |
| CVE-2026-74737 | net: ethernet: ti: am65-cpsw-nuss: Fix port_id extraction from SRC TAG | Linux | Linux | Critical | 9.8 | 2026-08-26 14:36:51 | Deep Dive |