| CVE-2026-76133 | CRITICAL | 9.8 | The affected Ebyte
product
uses a deprecated hashing algorithm in an authentication-related
operation. Und… | 2026-08-31 |
| CVE-2026-77966 | HIGH | 8.8 | The affected Ebyte
product does not provide separation between limited and administrative
management functi… | 2026-08-31 |
| CVE-2026-77975 | MEDIUM | 6.5 | The affected Ebyte
product exports administrative credentials and other
sensitive configuration information… | 2026-08-31 |
| CVE-2026-82802 | MEDIUM | 5.3 | A flaw has been found in NASA earthdata-search 1.0.0. Affected by this issue is the function OpenSearchGranule… | 2026-08-31 |
| CVE-2026-82803 | MEDIUM | 5.3 | A vulnerability has been found in armink struct2json 1.0. This affects the function S2J_STRUCT_GET_string_ELEM… | 2026-08-31 |
| CVE-2026-82805 | MEDIUM | 4.3 | A vulnerability was found in Typora up to 1.13.8/1.14.6. This vulnerability affects unknown code of the compon… | 2026-08-31 |
| CVE-2026-82807 | HIGH | 8.8 | A vulnerability was determined in ieungSoft Ultra RAMDisk Pro 1.82. This issue affects some unknown processing… | 2026-08-31 |
| CVE-2026-82823 | NA | N/A | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-82814. Reason: This candi… | 2026-08-31 |
| CVE-2026-83492 | NA | N/A | Improper input validation vulnerability in Extend Themes Kubio AI Website Builder.
This issue affects Kubio A… | 2026-08-31 |
| CVE-2026-14366 | MEDIUM | 6.4 | The Silicon Labs SiWx917 WiFi driver's transmit callback siwx91x_send() in drivers/wifi/siwx91x/siwx91x_wifi.c… | 2026-08-31 |
| CVE-2026-17615 | HIGH | 7.5 | A flaw was found in RESTEasy's SourceProvider. This vulnerability allows an unauthenticated attacker to perfor… | 2026-08-31 |
| CVE-2026-51720 | CRITICAL | 9.1 | Incorrect access control in the delIpPortFilterRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unau… | 2026-08-31 |
| CVE-2026-51721 | CRITICAL | 9.1 | Incorrect access control in the setPairCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticate… | 2026-08-31 |
| CVE-2026-51722 | CRITICAL | 9.1 | Incorrect access control in the setWiFiRepeaterCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauth… | 2026-08-31 |
| CVE-2026-51723 | NA | N/A | Incorrect access control in the UploadCustomModule function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauth… | 2026-08-31 |
| CVE-2026-51724 | CRITICAL | 9.8 | Incorrect access control in the delSmartQosCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenti… | 2026-08-31 |
| CVE-2026-82808 | HIGH | 7.3 | A vulnerability was identified in Inbox Foundry ActiveInbox Extension up to 7.10.24 on Chrome. Impacted is an … | 2026-08-31 |
| CVE-2026-82809 | MEDIUM | 4.3 | A security flaw has been discovered in vidIQ Vision for YouTube Extension 3.199.0 on Chrome. The affected elem… | 2026-08-31 |
| CVE-2026-82810 | LOW | 3.3 | A weakness has been identified in extension.vn 2FA Authenticator Extension 1.0.0.2 on Chrome. The impacted ele… | 2026-08-31 |
| CVE-2026-19953 | MEDIUM | 6.5 | URI versions before 5.36 for Perl encode non-NFC host names to non-standard punycode labels via missing normal… | 2026-08-31 |
| CVE-2026-51725 | CRITICAL | 9.1 | Incorrect access control in the NTPSyncWithHost function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthent… | 2026-08-31 |
| CVE-2026-51726 | CRITICAL | 9.1 | Incorrect access control in the delParentalRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthen… | 2026-08-31 |
| CVE-2026-51727 | MEDIUM | 5.3 | Incorrect access control in the SystemSettings function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenti… | 2026-08-31 |
| CVE-2026-51728 | NA | N/A | Incorrect access control in the UploadFirmwareFile function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauth… | 2026-08-31 |
| CVE-2026-51729 | CRITICAL | 9.1 | Incorrect access control in the delDevice function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated… | 2026-08-31 |
| CVE-2026-51730 | CRITICAL | 9.1 | Incorrect access control in the delWiFiAclRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthent… | 2026-08-31 |
| CVE-2026-79743 | NA | N/A | MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into se… | 2026-08-31 |
| CVE-2026-79744 | HIGH | 8.8 | MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into se… | 2026-08-31 |
| CVE-2026-79745 | HIGH | 7.1 | MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into se… | 2026-08-31 |
| CVE-2026-79746 | HIGH | 8.1 | MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into se… | 2026-08-31 |
| CVE-2026-79747 | HIGH | 7.1 | MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into se… | 2026-08-31 |
| CVE-2026-79748 | CRITICAL | 9.9 | MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into se… | 2026-08-31 |
| CVE-2026-79749 | NA | N/A | MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into se… | 2026-08-31 |
| CVE-2026-79750 | HIGH | 7.7 | MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into se… | 2026-08-31 |
| CVE-2026-82811 | MEDIUM | 5.4 | A security vulnerability has been detected in Toggl OÜ Toggl Track Extension 4.11.16. This affects an unknown … | 2026-08-31 |
| CVE-2026-82813 | MEDIUM | 5.4 | A vulnerability was detected in BEN Group TubeBuddy for YouTube Extension up to 5.8.4 on Chrome. This impacts … | 2026-08-31 |
| CVE-2026-82815 | HIGH | 7.3 | A flaw has been found in MegaEase EaseProbe up to 2.3.0. Affected is the function realIP of the file web/serve… | 2026-08-31 |
| CVE-2026-82816 | MEDIUM | 6.3 | A vulnerability has been found in dibo-software diboot 3.8.0. Affected by this vulnerability is an unknown fun… | 2026-08-31 |
| CVE-2026-82817 | MEDIUM | 6.3 | A vulnerability was found in dibo-software diboot 3.8.0. Affected by this issue is some unknown functionality … | 2026-08-31 |
| CVE-2023-20511 | MEDIUM | 6.4 | Release of an invalid pointer in the AMD kernel mode driver (KMD) could allow a privileged attacker to create … | 2026-08-31 |
| CVE-2023-31308 | LOW | 3.3 | A malicious virtual function can invoke the certain command handlers in the SMU, causing a denial of service d… | 2026-08-31 |
| CVE-2026-14367 | LOW | 3.1 | The I3C IBI subsystem in drivers/i3c/i3c_ibi_workq.c hands out statically-allocated work nodes through a free-… | 2026-08-31 |
| CVE-2026-14368 | MEDIUM | 5.4 | The LwM2M JSON content formatter's get_string() in subsys/net/lib/lwm2m/lwm2m_rw_json.c copies a parsed JSON s… | 2026-08-31 |
| CVE-2026-14696 | MEDIUM | 6.5 | When Ethernet bridging is enabled (CONFIG_NET_ETHERNET_BRIDGE), eth_bridge_input_process() in subsys/net/l2/et… | 2026-08-31 |
| CVE-2026-53507 | NA | N/A | oasdiff-action is a GitHub Action that detects breaking changes in OpenAPI specs and post a review on every pu… | 2026-08-31 |
| CVE-2026-53508 | NA | N/A | oasdiff is a command-line and Go package that compares and detects breaking changes in OpenAPI specs. From ver… | 2026-08-31 |
| CVE-2026-53552 | CRITICAL | 9.6 | Goploy is an open-source automation deployment system. In versions 1.17.5 and prior, Project.AddFile, Project.… | 2026-08-31 |
| CVE-2026-53553 | HIGH | 7.7 | Goploy is an open-source automation deployment system. Prior to version 1.18.0, a severe path traversal vulner… | 2026-08-31 |
| CVE-2026-72001 | HIGH | 8.1 | Pangolin before 1.22.0 contains an authentication bypass vulnerability that allows unauthenticated attackers t… | 2026-08-31 |
| CVE-2026-82818 | MEDIUM | 6.3 | A vulnerability was determined in dibo-software diboot 3.8.0. This affects an unknown part of the file /api/ia… | 2026-08-31 |