| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-86134 | Fireware OS Pre-Authentication NULL Pointer Dereference Allows Remote Denial of Service | WatchGuard | Fireware OS | High | 8.7 | 2026-09-30 03:37:57 | Deep Dive |
| CVE-2026-102910 | SourceCodester Online Reviewer Management System exam-delete.php sql injection | SourceCodester | Online Reviewer Management System | High | 7.3 | 2026-09-30 03:30:07 | Deep Dive |
| CVE-2026-103110 | Pexip Infinity 40.0前远程代码执行漏洞 | Pexip | Infinity | Critical | 9.8 | 2026-09-30 03:03:07 | Deep Dive |
| CVE-2026-102909 | SourceCodester Online Reviewer Management System btn_functions.php sql injection | SourceCodester | Online Reviewer Management System | High | 7.3 | 2026-09-30 03:00:10 | Deep Dive |
| CVE-2026-103109 | Pexip Infinity 40.0前媒体输入验证致拒绝服务 | Pexip | Infinity | High | 7.7 | 2026-09-30 02:59:53 | Deep Dive |
| CVE-2026-103108 | Pexip Infinity 40.0前媒体输入验证致拒绝服务 | Pexip | Infinity | High | 7.5 | 2026-09-30 02:49:53 | Deep Dive |
| CVE-2026-103106 | Pexip Infinity 40.0前版本本地权限提升至root漏洞 | Pexip | Infinity | High | 7.8 | 2026-09-30 02:45:39 | Deep Dive |
| CVE-2026-102908 | SourceCodester Online Reviewer Management System questions-view.php sql injection | SourceCodester | Online Reviewer Management System | High | 7.3 | 2026-09-30 02:45:12 | Deep Dive |
| CVE-2026-103105 | Pexip Infinity 40.0前版本本地API访问控制不当 | Pexip | Infinity | High | 8.8 | 2026-09-30 02:39:23 | Deep Dive |
| CVE-2026-103104 | Pexip Infinity 40.0前输入验证不当致拒绝服务 | Pexip | Infinity | High | 7.5 | 2026-09-30 02:35:07 | Deep Dive |
| CVE-2026-102906 | 0xshariq github-mcp-server Git Remove MCP Tool github.ts child_process.exec os command injection | 0xshariq | github-mcp-server | Medium | 6.3 | 2026-09-30 02:30:09 | Deep Dive |
| CVE-2026-103102 | Pexip Infinity 41.0前输入验证致拒绝服务 | Pexip | Infinity | High | 8.6 | 2026-09-30 02:29:04 | Deep Dive |
| CVE-2026-96649 | Frontend Post Submission Manager Lite <= 1.3.4 - Unauthenticated Stored DOM-Based Cross-Site Scripting via post_content Parameter (data-label DOM Sink) | wpshuffle | Frontend Post Submission Manager Lite – Guest Post and Frontend Submission Forms | High | 7.2 | 2026-09-30 02:27:19 | Deep Dive |
| CVE-2026-103101 | Pexip Infinity 41.0前输入验证致服务不可用 | Pexip | Infinity | High | 8.6 | 2026-09-30 02:24:29 | Deep Dive |
| CVE-2026-103100 | Pexip Infinity 40.1前输入验证不当致拒绝服务 | Pexip | Infinity | High | 7.5 | 2026-09-30 02:17:33 | Deep Dive |
| CVE-2026-102874 | HKUDS AnyTool Execute Endpoint main.py subprocess.run os command injection | HKUDS | AnyTool | High | 7.3 | 2026-09-30 02:15:11 | Deep Dive |
| CVE-2026-103099 | Pexip Infinity 41.1前输入验证不当致拒绝服务 | Pexip | Infinity | High | 7.5 | 2026-09-30 02:14:57 | Deep Dive |
| CVE-2026-86556 | An information disclosure vulnerability in ZTE U30 Air product | ZTE | U30 Air | Medium | 5.3 | 2026-09-30 02:14:19 | Deep Dive |
| CVE-2026-102847 | gedelumbung HospitalManagement Guest Book buku_tamu.php kirim cross site scripting | gedelumbung | HospitalManagement | Medium | 4.3 | 2026-09-30 02:00:14 | Deep Dive |
| CVE-2026-81310 | Linux图像扫描驱动存在链接跟随漏洞 | PFU Limited | Image Scanner Driver for Linux (fi Series) | Medium | 6.6 | 2026-09-30 01:51:54 | Deep Dive |