| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-14917 | IBM WebSphere Application Server Liberty could provide weaker than expected security | IBM | WebSphere Application Server - Liberty | Medium | 6.7 | 2026-03-25 20:13:55 | Deep Dive |
| CVE-2025-14915 | IBM WebSphere Application Server Liberty is affected by a privilege escalation vulnerability | IBM | WebSphere Application Server - Liberty | Medium | 6.5 | 2026-03-25 20:12:27 | Deep Dive |
| CVE-2026-1561 | IBM WebSphere Application Server Liberty Server-Side Request Forgery | IBM | WebSphere Application Server Liberty | Medium | 5.4 | 2026-03-25 20:10:10 | Deep Dive |
| CVE-2026-3260 | Undertow: undertow: denial of service due to premature multipart/form-data parsing in get requests | Red Hat | Red Hat build of Apache Camel for Spring Boot 4 | Medium | 5.9 | 2026-03-24 04:11:16 | Deep Dive |
| CVE-2026-4628 | Keycloak: org.keycloak.authorization: keycloak: unauthorized resource modification due to improper access control | Red Hat | Red Hat Build of Keycloak | Medium | 4.3 | 2026-03-23 08:09:22 | Deep Dive |
| CVE-2026-22558 | Ubiquiti UniFi Network Application 安全漏洞 | Ubiquiti Inc | UniFi Network Application | High | 7.7 | 2026-03-19 14:24:52 | Deep Dive |
| CVE-2026-22557 | Ubiquiti UniFi Network Application 安全漏洞 | Ubiquiti Inc | UniFi Network Application | Critical | 10.0 | 2026-03-19 14:24:52 | Deep Dive |
| CVE-2026-4366 | Keycloak-services: blind server-side request forgery (ssrf) via http redirect handling in keycloak | Red Hat | Red Hat Build of Keycloak | Medium | 5.8 | 2026-03-18 04:03:00 | Deep Dive |
| CVE-2026-3024 | Stored Cross-Site Scripting (XSS) vulnerability in the Wakyma application web | Wakyma | Wakyma application web | - | - | 2026-03-16 10:13:37 | Deep Dive |
| CVE-2026-3023 | Non-relational SQL injection vulnerability (NoSQLi) in the Wakyma application web | Wakyma | Wakyma application web | - | - | 2026-03-16 10:12:53 | Deep Dive |
| CVE-2026-3022 | Non-relational SQL injection vulnerability (NoSQLi) in the Wakyma application web | Wakyma | Wakyma application web | - | - | 2026-03-16 10:11:30 | Deep Dive |
| CVE-2026-3021 | Non-relational SQL injection vulnerability (NoSQLi) in the Wakyma application web | Wakyma | Wakyma application web | - | - | 2026-03-16 10:11:12 | Deep Dive |
| CVE-2026-3020 | Identity based authorization bypass vulnerability (IDOR) in the Wakyma application web | Wakyma | Wakyma application web | - | - | 2026-03-16 10:09:55 | Deep Dive |
| CVE-2026-3429 | Org.keycloak.services.resources.account: improper access control leading to mfa deletion and account takeover in keycloak account rest api | Red Hat | Red Hat build of Keycloak 26.4 | Medium | 4.2 | 2026-03-11 16:17:24 | Deep Dive |
| CVE-2026-27688 | Missing Authorization check in SAP NetWeaver Application Server for ABAP | SAP_SE | SAP NetWeaver Application Server for ABAP | Medium | 5.0 | 2026-03-10 00:18:56 | Deep Dive |
| CVE-2026-24316 | Server-Side Request Forgery (SSRF) in SAP NetWeaver Application Server for ABAP | SAP_SE | SAP NetWeaver Application Server for ABAP | Medium | 6.4 | 2026-03-10 00:17:51 | Deep Dive |
| CVE-2026-24310 | Missing Authorization check in SAP NetWeaver Application Server for ABAP | SAP_SE | SAP NetWeaver Application Server for ABAP | Low | 3.5 | 2026-03-10 00:17:21 | Deep Dive |
| CVE-2026-24309 | Missing Authorization check in SAP NetWeaver Application Server for ABAP | SAP_SE | SAP NetWeaver Application Server for ABAP | Medium | 6.4 | 2026-03-10 00:17:13 | Deep Dive |
| CVE-2026-3009 | Org.keycloak/keycloak-services: improper enforcement of disabled identity provider in identitybrokerservice (authentication bypass) | Red Hat | Red Hat build of Keycloak 26.4 | High | 8.1 | 2026-03-05 18:27:43 | Deep Dive |
| CVE-2025-66024 | XWiki Blog Application home page vulnerable to Stored XSS via Post Title | xwiki-contrib | application-blog-ui | - | - | 2026-03-04 21:47:11 | Deep Dive |