Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

57048
Total
4535
Critical
16933
High
16775
Medium
CVE ID Severity Score Description Published
CVE-2026-82994 CRITICAL 9.8 Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.1.4.0 and … Sep 15, 2026
CVE-2026-82993 HIGH 8.5 Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Business Interlink). Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows low … Sep 15, 2026
CVE-2026-82992 HIGH 7.8 Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Installation). Supported versions that are affected are 17.0-26.7. Easily exploitable vulnerability allows low … Sep 15, 2026
CVE-2026-81925 UNKNOWN — Concrete CMS before 9.5.3 improperly neutralized a user-supplied custom date format when rendering conversation messages, resulting in reflected cross-site scripting. An attacker could execute arbitrary … Sep 15, 2026
CVE-2026-76821 UNKNOWN — OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260706.0, the JSON ingestion mapper's extractWithRegexp formula function compiled … Sep 15, 2026
CVE-2026-76820 HIGH 7.7 OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260701.0, the synchronizerFetch GraphQL query called fetchRemoteStreams after checking … Sep 15, 2026
CVE-2026-76796 MEDIUM 4.0 The LoadImageAsPngBase64 endpoint of the Newell Brands DYMO Connect Desktop local web service accepts a file path parameter without adequate validation, allowing a crafted path … Sep 15, 2026
CVE-2026-76707 MEDIUM 4.3 A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to view some system memory contents. Successful exploitation could allow an … Sep 15, 2026
CVE-2026-76706 MEDIUM 5.3 A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote attacker to obtain sensitive information. Successful exploitation could … Sep 15, 2026
CVE-2026-76705 MEDIUM 5.5 A buffer overflow vulnerability exists in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker with Admin … Sep 15, 2026
CVE-2026-76704 MEDIUM 5.5 A vulnerability in the web-based management interface of the EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to execute arbitrary script code in a … Sep 15, 2026
CVE-2026-76703 MEDIUM 5.5 A buffer overflow vulnerability exists in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways that could allow an authenticated attacker with administrative access … Sep 15, 2026
CVE-2026-76702 MEDIUM 5.8 A vulnerability in the operating system of HPE Networking EdgeConnect SD-WAN Gateways could allow an authenticated local attacker to cause a denial-of-service. Successful exploitation could … Sep 15, 2026
CVE-2026-76701 MEDIUM 5.9 A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to access sensitive information. Successful exploitation could … Sep 15, 2026
CVE-2026-76700 MEDIUM 5.9 Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to cause a denial-of-service. Successful exploitation could allow an attacker to interrupt … Sep 15, 2026
CVE-2026-76699 MEDIUM 6.4 A buffer overflow vulnerability exists in a system service within the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated … Sep 15, 2026
CVE-2026-76698 MEDIUM 6.5 A command injection vulnerability exists in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways. An authenticated remote attacker with limited access privileges could … Sep 15, 2026
CVE-2026-76697 MEDIUM 6.5 A vulnerability in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways could allow a remote attacker authenticated with low privileges to access sensitive … Sep 15, 2026
CVE-2026-76696 MEDIUM 6.5 A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to conduct a denial of service attack. Successful exploitation could allow … Sep 15, 2026
CVE-2026-76695 MEDIUM 6.5 Buffer overflow vulnerabilities exist in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated remote attacker to send specially … Sep 15, 2026
CVE-2026-76694 MEDIUM 6.6 A privilege escalation vulnerability exists in the command line interface of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker with … Sep 15, 2026
CVE-2026-76693 HIGH 7.0 A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to cause a denial-of-service against certain services running on impacted Gateways. Sep 15, 2026
CVE-2026-76692 HIGH 7.1 A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to obtain limited information from memory and disrupt the normal operation … Sep 15, 2026
CVE-2026-76691 HIGH 7.2 Buffer overflow vulnerabilities exist in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker to execute arbitrary … Sep 15, 2026
CVE-2026-76690 HIGH 7.2 A vulnerability exists in a component of the HPE Networking EdgeConnect SD-WAN Gateways that may allow for arbitrary command execution. An authenticated remote attacker could … Sep 15, 2026