Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
57048
Total
4535
Critical
16933
High
16775
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-82994 | CRITICAL | 9.8 | Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.1.4.0 and … | Sep 15, 2026 |
| CVE-2026-82993 | HIGH | 8.5 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Business Interlink). Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows low … | Sep 15, 2026 |
| CVE-2026-82992 | HIGH | 7.8 | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Installation). Supported versions that are affected are 17.0-26.7. Easily exploitable vulnerability allows low … | Sep 15, 2026 |
| CVE-2026-81925 | UNKNOWN | — | Concrete CMS before 9.5.3 improperly neutralized a user-supplied custom date format when rendering conversation messages, resulting in reflected cross-site scripting. An attacker could execute arbitrary … | Sep 15, 2026 |
| CVE-2026-76821 | UNKNOWN | — | OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260706.0, the JSON ingestion mapper's extractWithRegexp formula function compiled … | Sep 15, 2026 |
| CVE-2026-76820 | HIGH | 7.7 | OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Prior to 7.260701.0, the synchronizerFetch GraphQL query called fetchRemoteStreams after checking … | Sep 15, 2026 |
| CVE-2026-76796 | MEDIUM | 4.0 | The LoadImageAsPngBase64 endpoint of the Newell Brands DYMO Connect Desktop local web service accepts a file path parameter without adequate validation, allowing a crafted path … | Sep 15, 2026 |
| CVE-2026-76707 | MEDIUM | 4.3 | A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to view some system memory contents. Successful exploitation could allow an … | Sep 15, 2026 |
| CVE-2026-76706 | MEDIUM | 5.3 | A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote attacker to obtain sensitive information. Successful exploitation could … | Sep 15, 2026 |
| CVE-2026-76705 | MEDIUM | 5.5 | A buffer overflow vulnerability exists in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker with Admin … | Sep 15, 2026 |
| CVE-2026-76704 | MEDIUM | 5.5 | A vulnerability in the web-based management interface of the EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to execute arbitrary script code in a … | Sep 15, 2026 |
| CVE-2026-76703 | MEDIUM | 5.5 | A buffer overflow vulnerability exists in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways that could allow an authenticated attacker with administrative access … | Sep 15, 2026 |
| CVE-2026-76702 | MEDIUM | 5.8 | A vulnerability in the operating system of HPE Networking EdgeConnect SD-WAN Gateways could allow an authenticated local attacker to cause a denial-of-service. Successful exploitation could … | Sep 15, 2026 |
| CVE-2026-76701 | MEDIUM | 5.9 | A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to access sensitive information. Successful exploitation could … | Sep 15, 2026 |
| CVE-2026-76700 | MEDIUM | 5.9 | Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to cause a denial-of-service. Successful exploitation could allow an attacker to interrupt … | Sep 15, 2026 |
| CVE-2026-76699 | MEDIUM | 6.4 | A buffer overflow vulnerability exists in a system service within the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated … | Sep 15, 2026 |
| CVE-2026-76698 | MEDIUM | 6.5 | A command injection vulnerability exists in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways. An authenticated remote attacker with limited access privileges could … | Sep 15, 2026 |
| CVE-2026-76697 | MEDIUM | 6.5 | A vulnerability in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways could allow a remote attacker authenticated with low privileges to access sensitive … | Sep 15, 2026 |
| CVE-2026-76696 | MEDIUM | 6.5 | A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to conduct a denial of service attack. Successful exploitation could allow … | Sep 15, 2026 |
| CVE-2026-76695 | MEDIUM | 6.5 | Buffer overflow vulnerabilities exist in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated remote attacker to send specially … | Sep 15, 2026 |
| CVE-2026-76694 | MEDIUM | 6.6 | A privilege escalation vulnerability exists in the command line interface of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker with … | Sep 15, 2026 |
| CVE-2026-76693 | HIGH | 7.0 | A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to cause a denial-of-service against certain services running on impacted Gateways. | Sep 15, 2026 |
| CVE-2026-76692 | HIGH | 7.1 | A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to obtain limited information from memory and disrupt the normal operation … | Sep 15, 2026 |
| CVE-2026-76691 | HIGH | 7.2 | Buffer overflow vulnerabilities exist in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker to execute arbitrary … | Sep 15, 2026 |
| CVE-2026-76690 | HIGH | 7.2 | A vulnerability exists in a component of the HPE Networking EdgeConnect SD-WAN Gateways that may allow for arbitrary command execution. An authenticated remote attacker could … | Sep 15, 2026 |