| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-57910 | WatchGuard Agent improper authentication allows unauthenticated remote code execution | WatchGuard | WatchGuard Agent | Critical | 9.3 | 2026-08-25 11:47:49 | Deep Dive |
| CVE-2026-57909 | WatchGuard Agent path traversal allows unauthenticated remote code execution | WatchGuard | WatchGuard Agent | Critical | 9.4 | 2026-08-25 11:47:03 | Deep Dive |
| CVE-2026-79673 | Ech0 before 4.4.3 Scope Bypass via profile:read Token | lin-snow | Ech0 | Medium | 6.5 | 2026-08-25 11:33:34 | Deep Dive |
| CVE-2026-79672 | Ech0 before 4.4.3 Authentication Bypass via Comment Panel | lin-snow | Ech0 | Medium | 5.5 | 2026-08-25 11:33:33 | Deep Dive |
| CVE-2026-79671 | Ech0 before 4.4.3 SSRF via DNS Resolution Bypass | lin-snow | Ech0 | Medium | 5.5 | 2026-08-25 11:33:32 | Deep Dive |
| CVE-2026-79670 | Ech0 before 4.4.3 Stored XSS via SVG Upload | lin-snow | Ech0 | Medium | 4.8 | 2026-08-25 11:33:31 | Deep Dive |
| CVE-2026-79669 | Ech0 before 4.4.3 Missing Authorization on System Logs | lin-snow | Ech0 | Medium | 4.3 | 2026-08-25 11:33:31 | Deep Dive |
| CVE-2026-79668 | Ech0 before 4.7.3 Unauthenticated Like Endpoint Metric Inflation | lin-snow | Ech0 | Medium | 5.3 | 2026-08-25 11:33:30 | Deep Dive |
| CVE-2026-79667 🧪 | Ech0 before 4.4.3 Authentication Bypass via Scope Enforcement | lin-snow | Ech0 | High | 7.6 | 2026-08-25 11:33:29 | Deep Dive |
| CVE-2026-79666 | Ech0 before 4.4.3 Missing Authorization via dashboard log endpoints | lin-snow | Ech0 | Medium | 6.5 | 2026-08-25 11:33:29 | Deep Dive |
| CVE-2026-79665 🧪 | Ech0 before 4.5.1 Authorization Bypass via Session Tokens | lin-snow | Ech0 | High | 8.8 | 2026-08-25 11:33:28 | Deep Dive |
| CVE-2026-79664 🧪 | Ech0 before 4.7.3 Access Token Revocation Bypass | lin-snow | Ech0 | High | 7.4 | 2026-08-25 11:33:27 | Deep Dive |
| CVE-2026-79663 | Ech0 before 4.7.3 Stored XSS via RSS feed tag names | lin-snow | Ech0 | Medium | 4.8 | 2026-08-25 11:33:27 | Deep Dive |
| CVE-2026-79662 🧪 | Ech0 before 4.7.3 OAuth Redirect URI Validation Bypass | lin-snow | Ech0 | High | 8.0 | 2026-08-25 11:33:26 | Deep Dive |
| CVE-2026-79660 | Ech0 before 4.7.3 Email Disclosure via Public API | lin-snow | Ech0 | Medium | 5.3 | 2026-08-25 11:33:25 | Deep Dive |
| CVE-2026-79661 | Ech0 before 4.7.3 Unauthenticated fav_count Modification | lin-snow | Ech0 | Medium | 6.5 | 2026-08-25 11:33:25 | Deep Dive |
| CVE-2026-79659 🧪 | Ech0 before 4.7.3 Server-Side Request Forgery via fetchPeerConnectInfo | lin-snow | Ech0 | High | 7.7 | 2026-08-25 11:33:24 | Deep Dive |
| CVE-2026-79658 🧪 | Ech0 before 5.0.1 Denial of Service via Accept-Language | lin-snow | Ech0 | High | 7.5 | 2026-08-25 11:33:23 | Deep Dive |
| CVE-2026-79657 🧪 | NLTK before 3.10.3 Remote Code Execution via Unsafe Pickle Deserialization | nltk | nltk | Critical | 9.8 | 2026-08-25 11:33:23 | Deep Dive |
| CVE-2026-78684 | vLLM before 0.27.0 Denial of Service via DeepStream Backend | vllm-project | vllm | Medium | 5.3 | 2026-08-25 11:33:22 | Deep Dive |