| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-1258 | Mail Mint <= 1.19.2 - Authenticated (Administrator+) SQL Injection via Multiple API Endpoints | getwpfunnels | Mail Mint – Email Marketing, Newsletter, Email Automation & WooCommerce Emails | Medium | 4.9 | 2026-02-14 08:26:48 | Deep Dive |
| CVE-2026-0598 | Ansible-lightspeed: broken object level authorization leading to cross-user ai conversation context injection in ansible lightspeed api | Red Hat | Red Hat Ansible Automation Platform 2 | Medium | 4.2 | 2026-02-06 05:47:57 | Deep Dive |
| CVE-2026-1301 | Out-of-bounds Write in o6 Automation GmbH Open62541 | o6 Automation GmbH | Open62541 | - | - | 2026-02-05 19:09:37 | Deep Dive |
| CVE-2025-5329 | SQLi in Martcode Software's Delta Course Automation | Martcode Software Inc. | Delta Course Automation | Critical | 9.8 | 2026-02-04 13:29:45 | Deep Dive |
| CVE-2025-36094 | Multiple security vulnerabilities are addressed with IBM Cloud Pak for Business Automation iFixes for January 2026. | IBM | Cloud Pak for Business Automation | Medium | 5.4 | 2026-02-03 22:06:10 | Deep Dive |
| CVE-2026-1447 | Mail Mint <= 1.19.2 - Cross-Site Request Forgery to Stored Cross-Site Scripting | getwpfunnels | Mail Mint – Email Marketing, Newsletter, Email Automation & WooCommerce Emails | Medium | 5.4 | 2026-02-03 06:38:06 | Deep Dive |
| CVE-2025-36436 | Multiple security vulnerabilities are addressed with IBM Cloud Pak for Business Automation iFixes for January 2026. | IBM | Cloud Pak for Business Automation | Medium | 6.4 | 2026-02-02 21:51:04 | Deep Dive |
| CVE-2025-13096 | XML eXternal Entity injection (XXE) vulnerability affect IBM Business Automation Workflow - | IBM | Business Automation Workflow containers | High | 7.1 | 2026-02-02 20:56:48 | Deep Dive |
| CVE-2024-4027 | Undertow: outofmemoryerror in httpservletrequestimpl.getparameternames() can cause remote dos attacks | Red Hat | OpenShift Serverless | High | 7.5 | 2026-01-30 14:25:54 | Deep Dive |
| CVE-2026-0936 | Insertion of Sensitive Information into Logfile | B&R Industrial Automation GmbH | Process Visualization Interface (PVI) | Medium | 5.0 | 2026-01-29 15:30:49 | Deep Dive |
| CVE-2025-41728 | Beckhoff: Information leak via Beckhoff Device Manager | Beckhoff Automation | Beckhoff.Device.Manager.XAR | Medium | 5.3 | 2026-01-27 11:37:56 | Deep Dive |
| CVE-2025-41727 | Beckhoff: Performing privileged operations and gaining administrator access | Beckhoff Automation | Beckhoff.Device.Manager.XAR | High | 7.8 | 2026-01-27 11:36:55 | Deep Dive |
| CVE-2025-41726 | Beckhoff: Arbitrary code execution within privileged processes | Beckhoff Automation | Beckhoff.Device.Manager.XAR | High | 8.8 | 2026-01-27 11:35:37 | Deep Dive |
| CVE-2026-0603 | Org.hibernate/hibernate-core: hibernate: information disclosure and data deletion via second-order sql injection | - | - | High | 8.3 | 2026-01-23 06:31:39 | Deep Dive |
| CVE-2025-15522 | Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin <= 6.10.0.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode | uncannyowl | Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin | Medium | 6.4 | 2026-01-23 04:34:58 | Deep Dive |
| CVE-2025-36058 | Multiple security vulnerabilities are addressed in IBM Business Automation Workflow Containers fixes December 2025 | IBM | Business Automation Workflow containers | Medium | 5.5 | 2026-01-20 15:09:07 | Deep Dive |
| CVE-2025-36059 | Multiple security vulnerabilities are addressed in IBM Business Automation Workflow Containers fixes December 2025 | IBM | Business Automation Workflow containers | Medium | 4.7 | 2026-01-20 15:07:46 | Deep Dive |
| CVE-2025-9283 | ArmorStart® LT - Multiple Denial-of-Service Vulnerabilities | Rockwell Automation | ArmorStart® LT | - | - | 2026-01-20 13:59:57 | Deep Dive |
| CVE-2025-9282 | ArmorStart® LT - Multiple Denial-of-Service Vulnerabilities | Rockwell Automation | ArmorStart® LT | - | - | 2026-01-20 13:59:15 | Deep Dive |
| CVE-2025-9281 | ArmorStart® LT - Multiple Denial-of-Service Vulnerabilities | Rockwell Automation | ArmorStart® LT | - | - | 2026-01-20 13:58:24 | Deep Dive |