|
High
|
11 Mar 2026 |
11 Mar 2026 |
CPAI-2026-1540
|
Microsoft CVE-2026-24294
|
CVE-2026-24294
|
Microsoft Windows SMB Server Privilege Escalation (CVE-2026-24294)
|
|
High
|
11 Mar 2026 |
11 Mar 2026 |
CPAI-2025-13068
|
|
CVE-2025-53949
|
Fortinet FortiSandbox Command Injection (CVE-2025-53949)
|
|
Critical
|
11 Mar 2026 |
11 Mar 2026 |
CPAI-2025-13047
|
|
CVE-2025-15256 CVE-2025-15257
|
Edimax BR-6208AC Command Injection (CVE-2025-15256; CVE-2025-15257)
|
|
Critical
|
11 Mar 2026 |
11 Mar 2026 |
CPAI-2026-1537
|
|
CVE-2026-25939
|
Frangoteam FUXA Authentication Bypass (CVE-2026-25939)
|
|
High
|
10 Mar 2026 |
10 Mar 2026 |
CPAI-2026-1434
|
Microsoft CVE-2026-24291
|
CVE-2026-24291
|
Microsoft Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege (CVE-2026-24291)
|
|
High
|
10 Mar 2026 |
10 Mar 2026 |
CPAI-2026-1427
|
Microsoft CVE-2026-26132
|
CVE-2026-26132
|
Microsoft Windows Kernel Elevation of Privilege (CVE-2026-26132)
|
|
High
|
10 Mar 2026 |
10 Mar 2026 |
CPAI-2026-1028
|
Microsoft CVE-2026-25187
|
CVE-2026-25187
|
Microsoft Winlogon Elevation of Privilege (CVE-2026-25187)
|
|
High
|
10 Mar 2026 |
10 Mar 2026 |
CPAI-2026-1019
|
Microsoft CVE-2026-23668
|
CVE-2026-23668
|
Microsoft Windows Graphics Component Elevation of Privilege (CVE-2026-23668)
|
|
High
|
10 Mar 2026 |
10 Mar 2026 |
CPAI-2026-1018
|
Microsoft CVE-2026-24289
|
CVE-2026-24289
|
Microsoft Windows Kernel Elevation of Privilege (CVE-2026-24289)
|
|
High
|
10 Mar 2026 |
10 Mar 2026 |
CPAI-2026-1502
|
|
CVE-2026-21962
|
Oracle Servers Directory Traversal (CVE-2026-21962)
|
|
Critical
|
10 Mar 2026 |
10 Mar 2026 |
CPAI-2025-13015
|
|
CVE-2025-34267
|
Flowise Remote Code Execution (CVE-2025-34267)
|
|
High
|
15 Feb 2026 |
10 Mar 2026 |
CPAI-2026-1446
|
|
CVE-2026-1603
|
Ivanti Endpoint Manager Authentication Bypass (CVE-2026-1603)
|
|
Medium
|
15 Feb 2026 |
10 Mar 2026 |
CPAI-2025-13013
|
|
CVE-2025-34173 CVE-2025-34176
|
pfSense Community Edition Directory Traversal (CVE-2025-34173; CVE-2025-34176)
|
|
Critical
|
25 Jan 2026 |
9 Mar 2026 |
CPAI-2026-1332
|
|
CVE-2025-14139 CVE-2025-14140 CVE-2025-14141 CVE-2025-15459 CVE-2025-15460 CVE-2025-15461 CVE-2025-15462 CVE-2026-1137 CVE-2026-1139 CVE-2026-1140 CVE-2026-2067 CVE-2026-2068 CVE-2026-2070 CVE-2026-2071
|
UTT 520W Buffer Overflow (CVE-2025-14139; CVE-2025-14140; CVE-2025-14141; CVE-2025-15459; CVE-2025-15460; CVE-2025-15461; CVE-2025-15462; CVE-2026-1137; CVE-2026-1139; CVE-2026-1140; CVE-2026-2067; CVE-2026-2068; CVE-2026-2070; CVE-2026-2071)
|
|
High
|
8 Mar 2026 |
8 Mar 2026 |
CPAI-2026-1329
|
|
CVE-2026-22200
|
Enhancesoft osTicket Arbitrary File Read (CVE-2026-22200)
|
|
High
|
8 Mar 2026 |
8 Mar 2026 |
CPAI-2026-1325
|
|
CVE-2026-1560
|
WordPress Custom Block Builder Lazy Blocks Plugin Remote Code Execution (CVE-2026-1560)
|
|
Critical
|
8 Mar 2026 |
8 Mar 2026 |
CPAI-2020-4670
|
|
CVE-2020-8012
|
Broadcom CA Unified Infrastructure Management Buffer Overflow (CVE-2020-8012)
|
|
Critical
|
5 Mar 2026 |
5 Mar 2026 |
CPAI-2026-1291
|
|
CVE-2026-20127
|
Cisco Catalyst SD-WAN Authentication Bypass (CVE-2026-20127)
|
|
Critical
|
5 Mar 2026 |
5 Mar 2026 |
CPAI-2026-1265
|
|
CVE-2026-21902
|
Juniper Networks Junos OS Evolved Remote Code Execution (CVE-2026-21902)
|
|
Critical
|
5 Mar 2026 |
5 Mar 2026 |
CPAI-2025-12853
|
|
CVE-2025-52436
|
Fortinet FortiSandbox Cross-Site Scripting (CVE-2025-52436)
|
|
Critical
|
5 Mar 2026 |
5 Mar 2026 |
CPAI-2021-2976
|
|
CVE-2021-3122
|
NCR Command Center Agent Remote Code Execution (CVE-2021-3122)
|
|
Critical
|
4 Mar 2026 |
4 Mar 2026 |
CPAI-2026-1200
|
|
CVE-2026-21902
|
Juniper Networks Junos OS Evolved Remote Code Execution (CVE-2026-21902)
|
|
Critical
|
3 Mar 2026 |
3 Mar 2026 |
CPAI-2020-4668
|
|
CVE-2020-7388
|
Sage X3 AdxAdmin Remote Code Execution (CVE-2020-7388)
|
|
High
|
3 Mar 2026 |
3 Mar 2026 |
CPAI-2025-12769
|
|
CVE-2025-61622
|
Apache Fory Remote Code Execution (CVE-2025-61622)
|
|
High
|
19 Feb 2026 |
3 Mar 2026 |
CPAI-2026-1119
|
|
CVE-2026-23744
|
MCPJam Inspector Remote Code Execution (CVE-2026-23744)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2026-1011
|
|
CVE-2026-3065
|
HummerRisk Command Injection (CVE-2026-3065)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2026-1010
|
|
CVE-2026-3064
|
HummerRisk Command Injection (CVE-2026-3064)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2026-1009
|
|
CVE-2026-3051
|
DataLinkDC Dinky Directory Traversal (CVE-2026-3051)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2026-1008
|
|
CVE-2026-2846
|
UTT HiPER 520 Command Injection (CVE-2026-2846)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2026-1007
|
|
CVE-2026-3066
|
HummerRisk Command Injection (CVE-2026-3066)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2026-1006
|
|
CVE-2026-2847
|
UTT HiPER 520 Command Injection (CVE-2026-2847)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2025-12560
|
|
CVE-2025-14654
|
Tenda AC20 Stack Overflow (CVE-2025-14654)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2025-12559
|
|
CVE-2025-15252
|
Tenda M3 Stack Overflow (CVE-2025-15252)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2025-12549
|
|
CVE-2025-15218
|
Tenda AC10U Buffer Overflow (CVE-2025-15218)
|
|
Critical
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2025-12531
|
|
CVE-2025-6934
|
WordPress Opal Estate Pro Plugin Privilege Escalation (CVE-2025-6934)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2025-12525
|
|
CVE-2025-15234
|
Tenda M3 Heap Overflow (CVE-2025-15234)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2025-12521
|
|
CVE-2025-35028
|
HexStrike AI MCP Server Command Injection (CVE-2025-35028)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2018-3293
|
|
CVE-2018-11803
|
Apache Subversion Memory Corruption (CVE-2018-11803)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2025-12720
|
|
CVE-2025-68926
|
RustFS Authentication Bypass (CVE-2025-68926)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2025-12715
|
|
CVE-2025-9713
|
Ivanti Endpoint Manager Directory Traversal (CVE-2025-9713)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2026-1072
|
|
CVE-2026-25512
|
Group-Office Command Injection (CVE-2026-25512)
|
|
High
|
2 Mar 2026 |
2 Mar 2026 |
CPAI-2025-12722
|
|
CVE-2025-10242
|
Ivanti Endpoint Manager Mobile Command Injection (CVE-2025-10242)
|
|
Critical
|
29 Jan 2026 |
2 Mar 2026 |
CPAI-2025-12709
|
|
CVE-2025-40536 CVE-2025-40552 CVE-2025-40554
|
SolarWinds Web Help Desk Authentication Bypass (CVE-2025-40536; CVE-2025-40552; CVE-2025-40554)
|
|
Critical
|
29 Jan 2026 |
26 Feb 2026 |
CPAI-2025-12677
|
|
CVE-2025-40536 CVE-2025-40552 CVE-2025-40554
|
SolarWinds Web Help Desk Authentication Bypass (CVE-2025-40536; CVE-2025-40552; CVE-2025-40554)
|
|
High
|
25 Feb 2026 |
25 Feb 2026 |
CPAI-2025-12582
|
|
CVE-2025-65093
|
LibreNMS SQL Injection (CVE-2025-65093)
|
|
High
|
24 Feb 2026 |
24 Feb 2026 |
CPAI-2025-12449
|
|
CVE-2025-53144
|
Microsoft Windows Type Confusion (CVE-2025-53144)
|
|
High
|
24 Feb 2026 |
24 Feb 2026 |
CPAI-2025-12453
|
|
CVE-2025-63932
|
D-Link DIR-868L Command Injection (CVE-2025-63932)
|
|
High
|
23 Feb 2026 |
23 Feb 2026 |
CPAI-2025-12332
|
|
CVE-2025-49712
|
Microsoft SharePoint Server Insecure Deserialization (CVE-2025-49712)
|
|
Critical
|
22 Feb 2026 |
22 Feb 2026 |
CPAI-2026-0972
|
|
CVE-2026-2441
|
Google Chrome Use After Free (CVE-2026-2441)
|
|
High
|
22 Feb 2026 |
22 Feb 2026 |
CPAI-2025-12360
|
|
CVE-2025-13065
|
WordPress Starter Templates Plugin Arbitrary File Upload (CVE-2025-13065)
|