| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-20945 | Microsoft SharePoint Server Spoofing Vulnerability | Microsoft | Microsoft SharePoint Enterprise Server 2016 | Medium | 4.6 | 2026-04-14 16:56:55 | Deep Dive |
| CVE-2026-40395 | Varnish Enterprise 安全漏洞 | varnish-software | Varnish Enterprise | Medium | 4.0 | 2026-04-12 19:21:09 | Deep Dive |
| CVE-2026-1584 | Gnutls: gnutls: remote denial of service via crafted clienthello with invalid psk binder | Red Hat | Red Hat Enterprise Linux 10 | High | 7.5 | 2026-04-09 18:00:21 | Deep Dive |
| CVE-2026-4878 | Libcap: libcap: privilege escalation via toctou race condition in cap_set_file() | Red Hat | Red Hat Hardened Images | Medium | 6.7 | 2026-04-09 14:49:03 | Deep Dive |
| CVE-2026-23696 | Windmill < 1.603.3 File Ownership Handling SQLi RCE | Windmill Labs | Windmill CE (Community Edition) | Critical | 9.9 | 2026-04-07 16:50:53 | Deep Dive |
| CVE-2026-22683 | Windmill < 1.615.0 Operator Role Missing Authorization Checks RCE | Windmill Labs | Windmill CE (Community Edition) | High | 8.8 | 2026-04-07 16:50:30 | Deep Dive |
| CVE-2025-14821 | Libssh: libssh: insecure default configuration leads to local man-in-the-middle attacks on windows | Red Hat | Red Hat Hardened Images | High | 7.8 | 2026-04-07 16:34:11 | Deep Dive |
| CVE-2026-4631 | Cockpit: cockpit: unauthenticated remote code execution due to ssh command-line argument injection | Red Hat | Red Hat Enterprise Linux 10 | Critical | 9.8 | 2026-04-07 16:30:28 | Deep Dive |
| CVE-2026-5745 | Libarchive: a null pointer dereference vulnerability exists in the acl parser of libarchive | Red Hat | Red Hat Enterprise Linux 10 | Medium | 5.5 | 2026-04-07 14:57:32 | Deep Dive |
| CVE-2026-23818 | Open Redirect Vulnerability in HPE Aruba Networking Private 5G Core On-Prem | Hewlett Packard Enterprise (HPE) | Private 5G Core | High | 8.8 | 2026-04-07 12:18:12 | Deep Dive |
| CVE-2026-5704 | Tar: tar: hidden file injection via crafted archives | Red Hat | Red Hat Enterprise Linux 10 | Medium | 5.0 | 2026-04-06 15:17:28 | Deep Dive |
| CVE-2026-5673 | Libtheora: libtheora: denial of service or information disclosure via malformed avi file processing | Red Hat | Red Hat Enterprise Linux 10 | Medium | 5.6 | 2026-04-06 09:22:36 | Deep Dive |
| CVE-2026-3184 | Util-linux: util-linux: access control bypass due to improper hostname canonicalization | Red Hat | Red Hat Hardened Images | Low | 3.7 | 2026-04-03 18:43:46 | Deep Dive |
| CVE-2026-2625 | Rust-rpm-sequoia: rust-rpm-sequoia: denial of service via crafted rpm file during signature verification | Red Hat | Red Hat Enterprise Linux 10 | Medium | 4.0 | 2026-04-03 18:38:10 | Deep Dive |
| CVE-2026-20090 | Cisco Integrated Management Controller Cross-Site Scripting Vulnerability | Cisco | Cisco Enterprise NFV Infrastructure Software | Medium | 4.8 | 2026-04-01 16:34:58 | Deep Dive |
| CVE-2026-20089 | Cisco Integrated Management Controller Cross-Site Scripting Vulnerability | Cisco | Cisco Enterprise NFV Infrastructure Software | Medium | 4.8 | 2026-04-01 16:34:49 | Deep Dive |
| CVE-2026-20087 | Cisco Integrated Management Controller Cross-Site Scripting Vulnerability | Cisco | Cisco Enterprise NFV Infrastructure Software | Medium | 4.8 | 2026-04-01 16:34:41 | Deep Dive |
| CVE-2026-20088 | Cisco Integrated Management Controller Cross-Site Scripting Vulnerability | Cisco | Cisco Enterprise NFV Infrastructure Software | Medium | 4.8 | 2026-04-01 16:34:41 | Deep Dive |
| CVE-2026-20096 | Cisco Integrated Management Controller Command Injection Vulnerability | Cisco | Cisco Enterprise NFV Infrastructure Software | Medium | 6.5 | 2026-04-01 16:29:04 | Deep Dive |
| CVE-2026-20095 | Cisco Integrated Management Controller Command Injection Vulnerability | Cisco | Cisco Enterprise NFV Infrastructure Software | Medium | 6.5 | 2026-04-01 16:28:48 | Deep Dive |