CVE IDSeverityCVSSDescriptionDate
CVE-2026-78603MEDIUM4.3Missing Authorization (CWE-862) in Kibana can lead to information disclosure via Exploiting Incorrectly Config…2026-09-01
CVE-2026-78605MEDIUM5.9Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') (CWE-444) in Elasticsearch can lead to…2026-09-01
CVE-2026-78606MEDIUM4.2Incorrect Authorization (CWE-863) in Kibana can lead to unauthorized disclosure, modification, and deletion of…2026-09-01
CVE-2026-78607MEDIUM5.4Missing Authorization (CWE-862) in the Elasticsearch custom inference service can lead to information disclosu…2026-09-01
CVE-2026-78608MEDIUM6.5Missing Authorization (CWE-862) in Kibana can lead to information disclosure via Privilege Abuse (CAPEC-122). …2026-09-01
CVE-2026-84307LOW3.7Filament is a collection of full-stack components for accelerated Laravel development. From 4.0.0 until 4.12.5…2026-09-01
CVE-2026-84308MEDIUM6.3phpseclib is a PHP secure communications library. Prior to 3.0.57 and 4.0.1, pure-PHP X25519 scalar multiplica…2026-09-01
CVE-2026-84309NAN/Apypdf is a free and open-source pure-python PDF library. Prior to 6.16.0, an attacker can craft a PDF whose cy…2026-09-01
CVE-2026-63435MEDIUM5.3Mail is an internet library for Ruby designed to handle email generation, parsing, and sending. Prior to 2.9.1…2026-09-01
CVE-2026-71981HIGH8.8Cypht before 2.12.2 contains a PHP object injection vulnerability that allows authenticated attackers to execu…2026-09-01
CVE-2026-73524MEDIUM6.1Cypht before 2.12.2 contains a cross-site scripting vulnerability in the contacts module that allows remote at…2026-09-01
CVE-2026-73749CRITICAL9.8Multiple vulnerabilities exist in a daemon of AOS-CX that may allow for improper processing of malformed input…2026-09-01
CVE-2026-73750HIGH8.8Vulnerabilities exist in the authentication module that may improperly process malformed or truncated input. A…2026-09-01
CVE-2026-73751HIGH8.8An authenticated user with low-privileged access could submit crafted input through the web-based management i…2026-09-01
CVE-2026-73752HIGH8.8An unauthenticated arbitrary file write vulnerability exists in an API endpoint of AOS-CX. Successful exploita…2026-09-01
CVE-2026-73753HIGH8.8Exploitation through affected command-line operations could allow an authenticated low-privileged user to exec…2026-09-01
CVE-2026-73754MEDIUM5.3Denial-of-service vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation could…2026-09-01
CVE-2026-73755MEDIUM5.7A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow…2026-09-01
CVE-2026-73756MEDIUM5.9A vulnerability in an API endpoint of AOS-CX could allow a remote unauthenticated attacker to obtain sensitive…2026-09-01
CVE-2026-73757MEDIUM6.4A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker t…2026-09-01
CVE-2026-73758MEDIUM6.5A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow…2026-09-01
CVE-2026-73759MEDIUM6.5Vulnerabilities in AOS-CX could allow an unauthenticated remote malicious actor to trigger a denial-of-service…2026-09-01
CVE-2026-73760MEDIUM6.5An authenticated Path Traversal vulnerability exists in AOS-CX. Successful exploitation of this vulnerability …2026-09-01
CVE-2026-73761MEDIUM6.5An out-of-bounds read vulnerability exists in the underlying operating system of AOS-CX that could lead to una…2026-09-01
CVE-2026-73762MEDIUM6.6A vulnerability has been identified in the API endpoint of AOS-CX that could allow a remote actor to circumven…2026-09-01
CVE-2026-73763HIGH7.1A vulnerability exists in a management component that could allow an unauthenticated adjacent attacker to exec…2026-09-01
CVE-2026-73764HIGH7.1Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow a…2026-09-01
CVE-2026-73765HIGH7.2Authenticated path traversal vulnerabilities exist in API endpoints of AOS-CX. Successful exploitation of thes…2026-09-01
CVE-2026-73766HIGH7.2Command injection vulnerabilities in the API endpoint of AOS-CX could allow an authenticated remote attacker w…2026-09-01
CVE-2026-73767HIGH7.2Authenticated command injection vulnerabilities exist in the command line interface of AOS-CX. Successful expl…2026-09-01
CVE-2026-73768HIGH7.3A vulnerability exists in the command line interface of AOS-CX that may allow for improper processing of malfo…2026-09-01
CVE-2026-73770HIGH7.3An authenticated arbitrary file write vulnerability exists in AOS-CX. Successful exploitation could allow an a…2026-09-01
CVE-2026-73771HIGH7.5An authentication vulnerability exists in the AOS-CX management interface and API that may allow improper auth…2026-09-01
CVE-2026-73772MEDIUM6.5Buffer overflow vulnerabilities exist in an underlying service of AOS-CX that could lead to an unauthenticated…2026-09-01
CVE-2026-73773HIGH7.5An unauthenticated Denial-of-Service (DoS) vulnerability exists in the API endpoint of AOS-CX. Successful expl…2026-09-01
CVE-2026-73774HIGH7.6A buffer overflow vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthe…2026-09-01
CVE-2026-73775HIGH7.7Vulnerabilities in the API endpoint of AOS-CX could allow a remote attacker authenticated with low privileges …2026-09-01
CVE-2026-73776HIGH7.9A signature verification bypass vulnerability exists in the command line interface of AOS-CX. Successful explo…2026-09-01
CVE-2026-73777HIGH8.1Vulnerabilities have been identified in the API endpoint of AOS-CX switches that could potentially allow an un…2026-09-01
CVE-2026-73778HIGH8.1A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative acce…2026-09-01
CVE-2026-73779HIGH8.2Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow a…2026-09-01
CVE-2026-73780HIGH8.3A vulnerability in the web-based management interface of AOS-CX switches exposes some sessions to a lack of Cr…2026-09-01
CVE-2026-73781HIGH8.4A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker t…2026-09-01
CVE-2026-73782HIGH8.8A format string vulnerability exists in the command line interface of AOS-CX that could lead to unauthenticate…2026-09-01
CVE-2026-73783MEDIUM4.9Stack overflow vulnerabilities exist in an API endpoint of AOS-CX. Successful exploitation could allow an auth…2026-09-01
CVE-2026-84287MEDIUM4.3A flaw has been found in NousResearch hermes-agent 0.18.0. Affected by this issue is some unknown functionalit…2026-09-01
CVE-2026-84310NAN/Apypdf is a free and open-source pure-python PDF library. Prior to 6.16.1, an attacker can craft a PDF that cau…2026-09-01
CVE-2026-84311NAN/Apypdf is a free and open-source pure-python PDF library. Prior to 6.16.1, an attacker can craft a PDF that cau…2026-09-01
CVE-2026-84361NAN/AComposer is a dependency Manager for the PHP language. From 1.0 until 2.2.30 and 2.10.3, a malicious dependenc…2026-09-01
CVE-2026-84363MEDIUM5.9Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.13.5, Hono's …2026-09-01
13 / 7715