| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-59230 | Apache Camel: Camel-Mail: the MimeMultipart data format copied MIME headers onto the Camel message without a header filter strategy when unmarshalling with headersInline enabled | Apache Software Foundation | Apache Camel | - | - | 2026-08-24 16:09:44 | Deep Dive |
| CVE-2026-77914 | rConfig < 8.2.13 Core Path Traversal via Export Download Endpoint | rconfig | rconfig | Medium | 6.5 | 2026-08-24 16:07:58 | Deep Dive |
| CVE-2026-18349 | SAMA5D44 Fault Injection Vulnerability | Microchip | SAMA5D4 | High | 7.3 | 2026-08-24 16:07:46 | Deep Dive |
| CVE-2026-12556 | HP Easy Start for macOS - Security Update | HP Inc | HP Easy Start for macOS | High | 7.7 | 2026-08-24 16:01:58 | Deep Dive |
| CVE-2026-12555 | HP Easy Start for macOS - Security Update | HP Inc | HP Easy Start for macOS | High | 7.7 | 2026-08-24 16:00:23 | Deep Dive |
| CVE-2026-12554 | HP Easy Start for macOS - Security Update | HP Inc | HP Easy Start for macOS | High | 8.5 | 2026-08-24 15:58:29 | Deep Dive |
| CVE-2026-13212 | Zephyr virtio driver calls an arbitrary function pointer from an out-of-range used-ring descriptor id | zephyrproject | zephyr | High | 8.8 | 2026-08-24 15:43:38 | Deep Dive |
| CVE-2026-13343 | Uninitialised stack memory disclosure in the MIDI 2.0 UMP Stream responder | zephyrproject | zephyr | Medium | 5.3 | 2026-08-24 15:43:37 | Deep Dive |
| CVE-2026-71366 | Awx: notification backends allow ssrf and credential leakage | Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | High | 7.7 | 2026-08-24 15:42:45 | Deep Dive |
| CVE-2026-76071 🧪 | Netis NC63 V3.0.0.3327 Stack Buffer Overflow via destHost Parameter | Netis Systems | NC63 | Critical | 9.8 | 2026-08-24 15:42:33 | Deep Dive |
| CVE-2026-76070 🧪 | Netis NC63 V3.0.0.3327 Stack Buffer Overflow via Login Password Parameter | Netis Systems | NC63 | Critical | 9.8 | 2026-08-24 15:41:17 | Deep Dive |
| CVE-2025-68825 | HCL Hive is affected by incorrect default permissions | HCLSoftware | HCL Hive | High | 7.5 | 2026-08-24 15:37:01 | Deep Dive |
| CVE-2026-78416 🧪 | Authenticated RCE via `condition.config` JSON cleanse bypass | craftcms | cms | High | 8.7 | 2026-08-24 15:36:08 | Deep Dive |
| CVE-2026-67204 | BookStack < 26.05.4 Broken Access Control via Image Gallery API | BookStackApp | BookStack | Medium | 5.4 | 2026-08-24 15:33:14 | Deep Dive |
| CVE-2026-71364 | Awx: project archive extraction allows path traversal file writes | Red Hat | Red Hat Ansible Automation Platform 2.5 for RHEL 8 | High | 7.2 | 2026-08-24 15:21:54 | Deep Dive |
| CVE-2026-21752 | HCL Hive is affected by a use of vulnerable third-party components | HCLSoftware | HCL Hive | High | 7.5 | 2026-08-24 15:21:01 | Deep Dive |
| CVE-2026-19874 | Konami's Metal Gear Online 3 contains a heap-based buffer overflow | Konami | Metal Gear Online 3 | - | - | 2026-08-24 15:02:51 | Deep Dive |
| CVE-2026-65053 | Horde IMP before 7.2.0 Stored Cross-Site Scripting via AppleDouble Viewer Part Name | horde | imp | Medium | 6.1 | 2026-08-24 14:53:43 | Deep Dive |
| CVE-2026-78414 | Cross-site scripting in Nx Witness VMS Web Administration allows session token exfiltration via a rogue peer site name | Network Optix | Nx Witness VMS | High | 8.0 | 2026-08-24 14:51:09 | Deep Dive |
| CVE-2026-9728 | TOCTOU race in mbox_send syscall verifier allows userspace to leak kernel memory | zephyrproject | zephyr | Medium | 6.4 | 2026-08-24 14:28:46 | Deep Dive |