| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-72064 | net: mana: Sync page pool RX frags for CPU | Linux | Linux | Critical | 9.8 | 2026-08-15 05:52:18 | Deep Dive |
| CVE-2026-72046 | gve: fix header buffer corruption with header-split and HW-GRO | Linux | Linux | Critical | 9.8 | 2026-08-15 05:52:05 | Deep Dive |
| CVE-2026-72041 | espintcp: use sk_msg_free_partial to fix partial send | Linux | Linux | Critical | 9.8 | 2026-08-15 05:52:01 | Deep Dive |
| CVE-2026-72033 | orangefs: keep the readdir entry size 64-bit in fill_from_part() | Linux | Linux | Critical | 9.8 | 2026-08-15 05:51:55 | Deep Dive |
| CVE-2026-72020 | ipvs: reset full ip_vs_seq structs in ip_vs_conn_new | Linux | Linux | Critical | 9.8 | 2026-08-15 05:51:47 | Deep Dive |
| CVE-2026-72014 | drbd: reject data replies with an out-of-range payload size | Linux | Linux | Critical | 9.8 | 2026-08-15 05:51:43 | Deep Dive |
| CVE-2026-68477 | ipvs: fix more places with wrong ipv6 transport offsets | Linux | Linux | Critical | 9.8 | 2026-08-15 05:51:33 | Deep Dive |
| CVE-2026-68476 | ipvs: reload ip header after head reallocation | Linux | Linux | Critical | 9.8 | 2026-08-15 05:51:32 | Deep Dive |
| CVE-2026-68457 | ksmbd: use opener credentials for FSCTL mutations | Linux | Linux | Critical | 9.1 | 2026-08-15 05:51:18 | Deep Dive |
| CVE-2026-15341 | User Session Synchronizer <= 1.4.0 - Unauthenticated Authentication Bypass to Account Takeover via 'ussync-key', 'ussync-token', and 'ussync-ref' Parameters | rafasashi | User Session Synchronizer | Critical | 9.8 | 2026-08-15 02:26:18 | Deep Dive |
| CVE-2026-15303 | 6Storage Rentals <= 2.27.0 - Unauthenticated Account Takeover via 'email' Parameter | sixstorage | 6Storage Rentals | Critical | 9.8 | 2026-08-15 02:26:17 | Deep Dive |
| CVE-2026-14484 | RapiSafe <= 1.0.4 - Unauthenticated Arbitrary File Deletion via 'rsmfcf7_session' and 'file_name' Parameters | pietror91 | RapiSafe – Secure Multi File Upload for Contact Form 7 | Critical | 9.1 | 2026-08-15 02:26:15 | Deep Dive |
| CVE-2026-67365 | Joomla Extension - icagenda.com - Unauthenticated SQL injection in iCagenda < 4.0.0-4.0.11 | icagenda.com | iCagenda extension for Joomla | Critical | 9.2 | 2026-08-14 20:02:35 | Deep Dive |
| CVE-2026-17186 | IBM Db2 Mirror for i is affected by multiple vulnerabilities | IBM | Db2 Mirror for i | Critical | 9.9 | 2026-08-14 19:22:47 | Deep Dive |
| CVE-2026-17184 | IBM Db2 Mirror for i is affected by multiple vulnerabilities | IBM | Db2 Mirror for i | Critical | 9.8 | 2026-08-14 19:22:29 | Deep Dive |
| CVE-2026-17182 | IBM Db2 Mirror for i is affected by multiple vulnerabilities | IBM | Db2 Mirror for i | Critical | 9.8 | 2026-08-14 19:22:03 | Deep Dive |
| CVE-2026-17181 | IBM Db2 Mirror for i is affected by multiple vulnerabilities | IBM | Db2 Mirror for i | Critical | 9.3 | 2026-08-14 19:21:31 | Deep Dive |
| CVE-2026-50027 | mcp-memory-service: Missing Authentication on Document API Endpoints Allows Unauthenticated Memory Read/Write/Delete | doobidoo | mcp-memory-service | Critical | 9.8 | 2026-08-14 18:52:47 | Deep Dive |
| CVE-2026-73678 🧪 | MindsDB Minds Platform v26.1.0 Unauthenticated RCE via scratchpad exec() | MindsDB | Minds Platform | Critical | 10.0 | 2026-08-14 18:49:36 | Deep Dive |
| CVE-2026-49457 🧪 | QUIC has Broken TLS verification | benoitc | erlang_quic | Critical | 9.1 | 2026-08-14 18:27:21 | Deep Dive |