| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-33694 | Junction File Manipulation | Tenable, Inc. | Tenable Nessus, Tenable Nessus Agent | - | - | 2026-04-23 18:09:42 | Deep Dive |
| CVE-2026-6482 | Local Privilege Escalation via OpenSSL configuration file in Insight Agent | Rapid7 | Insight Agent | - | - | 2026-04-17 05:19:20 | Deep Dive |
| CVE-2026-20161 | Cisco ThousandEyes Enterprise Agent Arbitrary File Overwrite Vulnerability | Cisco | Cisco ThousandEyes Enterprise Agent | Medium | 5.5 | 2026-04-15 16:03:44 | Deep Dive |
| CVE-2026-4810 | Remote Code Execution in Google Agent Development Kit (ADK) | Google Cloud | Agent Development Kit (ADK) | 超危 | - | 2026-04-13 08:35:57 | Deep Dive |
| CVE-2026-0232 | Cortex XDR Agent: Local Administrator can disable the agent on Windows | Palo Alto Networks | Cortex XDR Agent | 中危 | - | 2026-04-13 07:22:48 | Deep Dive |
| CVE-2026-4482 | Insight Agent Private Key Information Disclosure via Inherited File Permissions | Rapid7 | Insight Agent | 中危 | - | 2026-04-10 04:22:39 | Deep Dive |
| CVE-2026-4837 | Eval Injection in Rapid7 Insight Agent | Rapid7 | Insight Agent | Medium | 6.6 | 2026-04-08 15:59:03 | Deep Dive |
| CVE-2026-28264 | Dell PowerProtect Agent Service 安全漏洞 | Dell | PowerProtect Agent | Low | 3.3 | 2026-04-08 11:24:25 | Deep Dive |
| CVE-2026-35022 | Anthropic Claude Code & Agent SDK OS Command Injection via Authentication Helper | Anthropic | Claude Code | Critical | 9.8 | 2026-04-06 18:59:30 | Deep Dive |
| CVE-2026-35021 | Anthropic Claude Code & Agent SDK OS Command Injection via promptEditor.ts | Anthropic | Claude Code | High | 7.8 | 2026-04-06 18:59:07 | Deep Dive |
| CVE-2026-35020 | Anthropic Claude Code & Agent SDK OS Command Injection via TERMINAL Environment Variable | Anthropic | Claude Code | High | 8.4 | 2026-04-06 18:58:41 | Deep Dive |
| CVE-2026-5607 | imprvhub mcp-browser-agent URL Parameter handlers.ts CallToolRequestSchema server-side request forgery | imprvhub | mcp-browser-agent | Medium | 6.3 | 2026-04-06 00:15:14 | Deep Dive |
| CVE-2026-32173 | Azure SRE Agent Information Disclosure Vulnerability | Microsoft | Azure SRE Agent Gateway - SignalR Hub | High | 8.6 | 2026-04-02 23:27:00 | Deep Dive |
| CVE-2026-35099 | Lakeside SysTrack Agent 安全漏洞 | Lakeside Software | SysTrack Agent | High | 7.4 | 2026-04-01 15:39:51 | Deep Dive |
| CVE-2026-2123 | Privilege escalation vulnerability in Operations Agent | OpenText | Operations Agent | 高危 | - | 2026-03-31 17:18:43 | Deep Dive |
| CVE-2025-15612 | Wazuh Provisioning Scripts / Build Infrastructure Improper Certificate Validation leading to MITM and RCE | Wazuh | Wazuh Provisioning Scripts (Agent Build Environment) | Medium | 4.8 | 2026-03-27 18:16:11 | Deep Dive |
| CVE-2025-15616 | Wazuh Agent and Manager OS Command Injection and Untrusted Search Path | Wazuh | wazuh-agent | Medium | 6.7 | 2026-03-27 16:38:21 | Deep Dive |
| CVE-2026-4308 | frdel/agent0ai agent-zero document_query.py handle_pdf_document server-side request forgery | frdel | agent-zero | Medium | 6.3 | 2026-03-17 04:02:08 | Deep Dive |
| CVE-2026-4307 | frdel/agent0ai agent-zero files.py get_abs_path path traversal | frdel | agent-zero | Medium | 4.3 | 2026-03-17 03:32:08 | Deep Dive |
| CVE-2026-0230 | Cortex XDR Agent: Local Administrator can disable the agent on macOS | Palo Alto Networks | Cortex XDR Agent | - | - | 2026-03-11 18:02:14 | Deep Dive |