| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-66583 | WordPress Forminator plugin <= 1.57.0 - PHP Object Injection vulnerability | WPMU DEV | Forminator | Critical | 9.8 | 2026-08-20 12:06:58 | Deep Dive |
| CVE-2025-15689 | WordPress Capella theme <= 2.5.5 - Privilege Escalation vulnerability | ThemeGoods | Capella | Critical | 9.8 | 2026-08-20 12:06:55 | Deep Dive |
| CVE-2025-15688 | WordPress Capella theme <= 2.5.5 - SQL Injection vulnerability | ThemeGoods | Capella | Critical | 9.3 | 2026-08-20 12:06:54 | Deep Dive |
| CVE-2026-11861 | Freeipa: idm: ipa: freeipa: obtaining tgs with impersonating cname through trust relationships | Red Hat | Red Hat Enterprise Linux 10 | Critical | 9.6 | 2026-08-20 10:39:08 | Deep Dive |
| CVE-2026-14950 | Frauscher Sensortechnik: FDS102 for FAdC/FAdCi R2 is vulnerable to Insufficient Session Expiration due to flawed session expiration logic | Frauscher Sensortechnik | FDS 102 | Critical | 9.8 | 2026-08-20 08:19:26 | Deep Dive |
| CVE-2026-76590 🧪 | TRENDnet TEW-755AP ssi wan.cgi stack-based overflow | TRENDnet | TEW-755AP | Critical | 9.9 | 2026-08-19 21:45:08 | Deep Dive |
| CVE-2026-76850 🧪 | LMDeploy Remote Code Execution via Unsafe Pickle Deserialization in the Disaggregated Serving Peer Connector | InternLM | lmdeploy | Critical | 9.8 | 2026-08-19 21:41:28 | Deep Dive |
| CVE-2026-76404 | Remote Code Execution (RCE) through Deserialization of Untrusted Data in Splunk MCP Server app | Splunk | Splunk MCP Server app | Critical | 9.1 | 2026-08-19 21:35:17 | Deep Dive |
| CVE-2026-76312 | Improper Access Control through Embedded Reports in Splunk Enterprise | Splunk | Splunk Enterprise | Critical | 9.4 | 2026-08-19 21:34:22 | Deep Dive |
| CVE-2026-76311 | Improper Access Control in Embedded Report Dispatch Archives in Splunk Enterprise | Splunk | Splunk Enterprise | Critical | 9.4 | 2026-08-19 21:34:21 | Deep Dive |
| CVE-2026-76310 | Improper Access Control through Embedded Report REST API Requests in Splunk Enterprise | Splunk | Splunk Enterprise | Critical | 9.4 | 2026-08-19 21:34:21 | Deep Dive |
| CVE-2026-76589 🧪 | TRENDnet TEW-755AP mycli FUN_401000 stack-based overflow | TRENDnet | TEW-755AP | Critical | 9.9 | 2026-08-19 21:30:09 | Deep Dive |
| CVE-2026-75595 🧪 | Netty: SNI Routing Bypass via Fragmented TLS ClientHello Causing Fallback to Default SslContext | netty | netty | Critical | 9.1 | 2026-08-19 21:00:28 | Deep Dive |
| CVE-2026-76584 🧪 | TRENDnet TV-IP751WIC alphapd set_time.cgi stack-based overflow | TRENDnet | TV-IP751WIC | Critical | 9.9 | 2026-08-19 21:00:10 | Deep Dive |
| CVE-2026-53545 🧪 | Termix: Remote Code Execution via Tunnel Disconnect pkill Command Injection | Termix-SSH | Termix | Critical | 9.8 | 2026-08-19 20:36:52 | Deep Dive |
| CVE-2026-53546 🧪 | Termix: Missing authorization in SSH host credential resolution exposes stored credentials | Termix-SSH | Termix | Critical | 9.6 | 2026-08-19 20:36:19 | Deep Dive |
| CVE-2026-53548 🧪 | Termix: IDOR — Authenticated user can fetch SSH passwords for hosts owned by other users | Termix-SSH | Termix | Critical | 9.6 | 2026-08-19 20:35:36 | Deep Dive |
| CVE-2026-16919 | Vulnerabilities in IBM AIX and PowerVM VIOS | IBM | AIX | Critical | 9.8 | 2026-08-19 19:57:23 | Deep Dive |
| CVE-2026-16917 | Vulnerabilities in IBM AIX and PowerVM VIOS | IBM | AIX | Critical | 9.8 | 2026-08-19 19:56:57 | Deep Dive |
| CVE-2026-16913 | Vulnerabilities in IBM AIX and PowerVM VIOS | IBM | AIX | Critical | 9.8 | 2026-08-19 19:56:00 | Deep Dive |