| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-26975 | Music Assistant Server Path Traversal in Playlist Update API Allows Remote Code Execution | music-assistant | server | High | 8.8 | 2026-02-20 00:49:03 | Deep Dive |
| CVE-2025-9208 | Stored-XSS vulnerability discovered in OpenText WSM Management Server. | OpenText™ | Web Site Management Server | - | - | 2026-02-19 22:37:19 | Deep Dive |
| CVE-2025-13671 | Cross Site request forgery vulnerability discovered in OpenText WSM Management Server. | OpenText™ | Web Site Management Server | - | - | 2026-02-19 22:36:49 | Deep Dive |
| CVE-2025-13672 | Reflected Cross-Site Scripting discovered in OpenText WSM Management Server. | OpenText™ | Web Site Management Server | - | - | 2026-02-19 22:36:33 | Deep Dive |
| CVE-2026-2274 | Arbitrary File Read and SSRF in Google AppSheet | AppSheet | AppSheet Web (Main Server) | - | - | 2026-02-19 15:21:38 | Deep Dive |
| CVE-2025-12107 | Potential authenticated Server-Side Template Injection (SSTI) vulnerability. | WSO2 | WSO2 Identity Server | High | 8.4 | 2026-02-19 10:04:48 | Deep Dive |
| CVE-2025-15581 | Orthanc 安全漏洞 | orthanc-server | orthanc | - | - | 2026-02-18 22:59:55 | Deep Dive |
| CVE-2019-25352 | Genivia Crystal Live HTTP Server 6.01 - 'Crystal Live HTTP Server' Path Traversal | Genivia Inc. | Crystal Live HTTP Server | High | 7.5 | 2026-02-18 21:54:58 | Deep Dive |
| CVE-2026-27182 | Saturn Remote Mouse Server UDP Command Injection RCE | saturnremote | Saturn Remote Mouse Server | High | 8.4 | 2026-02-18 20:59:12 | Deep Dive |
| CVE-2026-1999 | Incorrect Authorization vulnerability was identified in GitHub Enterprise Server that allowed unauthorized merging of pull requests | GitHub | Enterprise Server | 中危 | - | 2026-02-18 20:44:51 | Deep Dive |
| CVE-2026-1355 | Missing Authorization Check in GitHub Enterprise Server Allows Unauthorized Uploads to Repository Migration Exports | GitHub | Enterprise Server | 中危 | - | 2026-02-18 20:42:07 | Deep Dive |
| CVE-2026-0573 | Improper Handling of HTTP Redirects vulnerability was identified in GitHub Enterprise Server that allowed leaking of authorization token and enabled remote code execution | GitHub | Enterprise Server | 超危 | - | 2026-02-18 20:37:40 | Deep Dive |
| CVE-2025-14340 | Admin Account Takeover via malicious URL payload | Payara Platform | Payara Server | - | - | 2026-02-18 13:39:11 | Deep Dive |
| CVE-2025-13333 | IBM WebSphere Application Server could provide weaker than expected security | IBM | WebSphere Application Server | Medium | 4.4 | 2026-02-17 22:45:11 | Deep Dive |
| CVE-2025-14289 | IBM webMethods Integration Server is vulnerable to HTML injection | IBM | webMethods Integration Server | Medium | 5.4 | 2026-02-17 20:13:23 | Deep Dive |
| CVE-2026-22762 | Dell Avamar Server和Dell Avamar Virtual Edition 路径遍历漏洞 | Dell | Avamar Server | Medium | 6.5 | 2026-02-17 19:53:45 | Deep Dive |
| CVE-2025-36597 | Dell Avamar 路径遍历漏洞 | Dell | Avamar Server | Medium | 4.7 | 2026-02-17 19:05:25 | Deep Dive |
| CVE-2026-26369 | JUNG eNet SMART HOME server 2.2.1/2.3.1 Privilege Escalation via setUserGroup | JUNG | eNet SMART HOME server | Critical | 9.8 | 2026-02-15 15:29:56 | Deep Dive |
| CVE-2026-26368 | JUNG eNet SMART HOME server 2.2.1/2.3.1 Account Takeover via resetUserPassword | JUNG | eNet SMART HOME server | High | 8.8 | 2026-02-15 15:29:55 | Deep Dive |
| CVE-2026-26367 | JUNG eNet SMART HOME server 2.2.1/2.3.1 Arbitrary User Deletion via deleteUserAccount | JUNG | eNet SMART HOME server | High | 8.1 | 2026-02-15 15:29:55 | Deep Dive |