| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-12554 | HP Easy Start for macOS - Security Update | HP Inc | HP Easy Start for macOS | High | 8.5 | 2026-08-24 15:58:29 | Deep Dive |
| CVE-2026-13212 | Zephyr virtio driver calls an arbitrary function pointer from an out-of-range used-ring descriptor id | zephyrproject | zephyr | High | 8.8 | 2026-08-24 15:43:38 | Deep Dive |
| CVE-2026-13343 | Uninitialised stack memory disclosure in the MIDI 2.0 UMP Stream responder | zephyrproject | zephyr | Medium | 5.3 | 2026-08-24 15:43:37 | Deep Dive |
| CVE-2026-71366 | Awx: notification backends allow ssrf and credential leakage | Red Hat | Red Hat Ansible Automation Platform 2 | High | 7.7 | 2026-08-24 15:42:45 | Deep Dive |
| CVE-2026-76071 🧪 | Netis NC63 V3.0.0.3327 Stack Buffer Overflow via destHost Parameter | Netis Systems | NC63 | Critical | 9.8 | 2026-08-24 15:42:33 | Deep Dive |
| CVE-2026-76070 🧪 | Netis NC63 V3.0.0.3327 Stack Buffer Overflow via Login Password Parameter | Netis Systems | NC63 | Critical | 9.8 | 2026-08-24 15:41:17 | Deep Dive |
| CVE-2025-68825 | HCL Hive is affected by incorrect default permissions | HCLSoftware | HCL Hive | High | 7.5 | 2026-08-24 15:37:01 | Deep Dive |
| CVE-2026-78416 🧪 | Authenticated RCE via `condition.config` JSON cleanse bypass | craftcms | cms | High | 8.7 | 2026-08-24 15:36:08 | Deep Dive |
| CVE-2026-67204 | BookStack < 26.05.4 Broken Access Control via Image Gallery API | BookStackApp | BookStack | Medium | 5.4 | 2026-08-24 15:33:14 | Deep Dive |
| CVE-2026-71364 | Awx: project archive extraction allows path traversal file writes | Red Hat | Red Hat Ansible Automation Platform 2 | High | 7.2 | 2026-08-24 15:21:54 | Deep Dive |
| CVE-2026-21752 | HCL Hive is affected by a use of vulnerable third-party components | HCLSoftware | HCL Hive | High | 7.5 | 2026-08-24 15:21:01 | Deep Dive |
| CVE-2026-19874 | Konami's Metal Gear Online 3 contains a heap-based buffer overflow | Konami | Metal Gear Online 3 | - | - | 2026-08-24 15:02:51 | Deep Dive |
| CVE-2026-65053 | Horde IMP before 7.2.0 Stored Cross-Site Scripting via AppleDouble Viewer Part Name | horde | imp | Medium | 6.1 | 2026-08-24 14:53:43 | Deep Dive |
| CVE-2026-78414 | Cross-site scripting in Nx Witness VMS Web Administration allows session token exfiltration via a rogue peer site name | Network Optix | Nx Witness VMS | High | 8.0 | 2026-08-24 14:51:09 | Deep Dive |
| CVE-2026-9728 | TOCTOU race in mbox_send syscall verifier allows userspace to leak kernel memory | zephyrproject | zephyr | Medium | 6.4 | 2026-08-24 14:28:46 | Deep Dive |
| CVE-2026-76055 | Black Duck blackduck-c-cpp<3.0.7系统命令注入漏洞 | Black Duck | blackduck-c-cpp | High | 7.5 | 2026-08-24 14:17:24 | Deep Dive |
| CVE-2026-39914 | TIM Flow < 26.0.6 Unauthorized SQL Query Execution via Dashboard Export Endpoint | TIM Solutions | TIM Flow | Medium | 6.5 | 2026-08-24 14:16:37 | Deep Dive |
| CVE-2026-76054 | Black Duck blackduck-c-cpp 1.0.17-3.0.6 敏感信息泄露漏洞 | Black Duck | blackduck-c-cpp | High | 7.1 | 2026-08-24 14:16:36 | Deep Dive |
| CVE-2026-21755 | HCL Hive is affected by a missing rate limit | HCLSoftware | HCL Hive | Medium | 5.3 | 2026-08-24 14:16:03 | Deep Dive |
| CVE-2026-39915 | TIM Flow < 26.0.6 CRLF Injection via rt Parameter | TIM Solutions | TIM Flow | High | 8.1 | 2026-08-24 14:14:37 | Deep Dive |