| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-27302 | Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863) | Adobe | Adobe Campaign Classic | Critical | 10.0 | 2026-08-11 17:46:46 | Deep Dive |
| CVE-2026-73211 🧪 | PeerTube: Unauthenticated remote SQL injection in ActorFollowModel.updateScore() | Chocobozzz | PeerTube | Critical | 9.8 | 2026-08-11 17:22:00 | Deep Dive |
| CVE-2026-73090 🧪 | PeerTube: Cross-origin remote video takeover via Update activity | Chocobozzz | PeerTube | Critical | 9.3 | 2026-08-11 17:19:30 | Deep Dive |
| CVE-2026-47705 | TypeBot vulnerable to CSV injection in result export | baptisteArno | typebot.io | Critical | 9.6 | 2026-08-11 17:16:12 | Deep Dive |
| CVE-2026-50516 | Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability | Microsoft | Azure Kubernetes Service | Critical | 9.4 | 2026-08-11 17:07:21 | Deep Dive |
| CVE-2026-70306 | Microsoft Office SharePoint Spoofing Vulnerability | Microsoft | Microsoft SharePoint Enterprise Server 2016 | Critical | 9.3 | 2026-08-11 17:07:12 | Deep Dive |
| CVE-2026-65791 | Windows iSCSI Target Service Remote Code Execution Vulnerability | Microsoft | Windows 10 Version 1607 | Critical | 9.8 | 2026-08-11 17:06:56 | Deep Dive |
| CVE-2026-62893 | Windows Deployment Services TFTP Server Remote Code Execution Vulnerability | Microsoft | Windows Server 2012 | Critical | 9.8 | 2026-08-11 17:04:38 | Deep Dive |
| CVE-2026-62878 | Windows DNS Server Remote Code Execution Vulnerability | Microsoft | Windows Server 2012 | Critical | 9.8 | 2026-08-11 17:04:36 | Deep Dive |
| CVE-2026-62815 | Microsoft QUIC Remote Code Execution Vulnerability | Microsoft | Windows 11 version 23H2 | Critical | 9.8 | 2026-08-11 17:04:31 | Deep Dive |
| CVE-2026-59124 | Microsoft High Performance Computing (HPC) Pack Remote Code Execution Vulnerability | Microsoft | Microsoft HPC Pack 2019 | Critical | 9.8 | 2026-08-11 17:03:42 | Deep Dive |
| CVE-2026-12571 | Authentication Bypass Leading to Account Takeover | zohocorp | manageengine_ddi_central | Critical | 9.8 | 2026-08-11 16:52:14 | Deep Dive |
| CVE-2026-48362 | ColdFusion | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78) | Adobe | ColdFusion 2025 | Critical | 10.0 | 2026-08-11 16:30:59 | Deep Dive |
| CVE-2026-71384 | ColdFusion | Incorrect Authorization (CWE-863) | Adobe | ColdFusion 2025 | Critical | 9.6 | 2026-08-11 16:30:57 | Deep Dive |
| CVE-2026-73080 🧪 | SeaweedFS: Unauthenticated SSRF with response read-back via VolumeServer.FetchAndWriteNeedle | seaweedfs | seaweedfs | Critical | 9.3 | 2026-08-11 15:57:11 | Deep Dive |
| CVE-2025-31114 🧪 | Fooocus webui vulnerable to Remote Code Execution | lllyasviel | Fooocus | Critical | 9.3 | 2026-08-11 15:37:34 | Deep Dive |
| CVE-2026-73069 | Twenty: SQL Injection in the `searchVector` Field Settings Allows Arbitrary PostgreSQL Execution | twentyhq | twenty | Critical | 9.1 | 2026-08-11 15:18:56 | Deep Dive |
| CVE-2026-72920 🧪 | SeaweedFS: Unauthenticated filer IAM gRPC service grants S3 administrative control | seaweedfs | seaweedfs | Critical | 9.8 | 2026-08-11 14:23:22 | Deep Dive |
| CVE-2026-17061 | Deserialization of Untrusted Data Vulnerability in SIMULIA Execution Engine from Release 2023 through Release 2026 | Dassault Systèmes | SIMULIA Execution Engine | Critical | 10.0 | 2026-08-11 14:21:23 | Deep Dive |
| CVE-2026-47702 | TypeBot API tokens stored in plaintext | baptisteArno | typebot.io | Critical | 9.1 | 2026-08-11 14:03:22 | Deep Dive |