Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
57048
Total
4535
Critical
16933
High
16775
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-76689 | HIGH | 7.2 | A vulnerability exists in the configuration processing logic of the affected component where malformed input is improperly processed. An authenticated remote attacker with administrative privileges … | Sep 15, 2026 |
| CVE-2026-76688 | HIGH | 7.5 | Vulnerabilities have been identified in the web-based management interface of EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication … | Sep 15, 2026 |
| CVE-2026-76687 | HIGH | 7.5 | A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Orchestrator could allow a low-privilege authenticated remote attacker to escalate privileges. Successful exploitation of … | Sep 15, 2026 |
| CVE-2026-76686 | HIGH | 7.5 | A vulnerability exists in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an unauthenticated remote attacker to conduct a … | Sep 15, 2026 |
| CVE-2026-76685 | HIGH | 8.1 | A vulnerability exists in the proxy packet processing logic of the affected component where it improperly processes malformed or truncated input. An unauthenticated remote attacker … | Sep 15, 2026 |
| CVE-2026-76684 | HIGH | 8.1 | Vulnerabilities have been identified in the API of HPE Networking EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication … | Sep 15, 2026 |
| CVE-2026-76683 | HIGH | 8.1 | Buffer overflow vulnerabilities exist in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated remote attacker to run arbitrary commands … | Sep 15, 2026 |
| CVE-2026-76682 | HIGH | 8.2 | A vulnerability in the network security monitoring component of intrusion detection systems could allow an unauthenticated remote attacker to exploit a limited buffer overflow. Successful … | Sep 15, 2026 |
| CVE-2026-76681 | HIGH | 8.5 | A vulnerability in the API of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker with low privileges to access sensitive information beyond what is … | Sep 15, 2026 |
| CVE-2026-76680 | HIGH | 8.5 | Vulnerabilities in the API of EdgeConnect SD-WAN Orchestrator could allow a remote attacker authenticated with low privileges to conduct server-side request forgery (SSRF) attacks. A … | Sep 15, 2026 |
| CVE-2026-76679 | HIGH | 8.6 | Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to conduct denial-of-service attacks. Successful exploitation could allow an attacker to crash … | Sep 15, 2026 |
| CVE-2026-76678 | HIGH | 8.8 | A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways could allow a low-privilege authenticated remote attacker to escalate privileges. Successful exploitation of … | Sep 15, 2026 |
| CVE-2026-76677 | HIGH | 8.8 | A privilege escalation vulnerability exists in the API of EdgeConnect SD-WAN Gateways. Successful exploitation could allow a remote low-privileged authenticated user to achieve administrative privilege … | Sep 15, 2026 |
| CVE-2026-76676 | HIGH | 8.8 | Buffer overflow vulnerabilities exist in the underlying operating system of EdgeConnect SD-WAN Gateways that could allow an unauthenticated adjacent attacker to execute arbitrary code if … | Sep 15, 2026 |
| CVE-2026-76675 | CRITICAL | 9.1 | A command injection vulnerability exists in the command line interface of EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker with high privileges … | Sep 15, 2026 |
| CVE-2026-76674 | CRITICAL | 9.8 | Buffer overflow vulnerabilities exist in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated remote attacker to execute arbitrary … | Sep 15, 2026 |
| CVE-2026-76673 | CRITICAL | 9.8 | Vulnerabilities have been identified in the API of EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. Successful … | Sep 15, 2026 |
| CVE-2026-76672 | CRITICAL | 9.9 | A vulnerability exists in the SD-WAN Orchestrator that may lead to the exposure of sensitive configuration information. An authenticated remote attacker with read-only privileges could … | Sep 15, 2026 |
| CVE-2026-76670 | CRITICAL | 9.9 | Privilege escalation vulnerabilities exist in the API of HPE Networking EdgeConnect SD-WAN Orchestrator. Successful exploitation could allow a remote low-privileged authenticated user to escalate their … | Sep 15, 2026 |
| CVE-2026-76669 | CRITICAL | 9.9 | Privilege escalation vulnerabilities exist in the API of HPE Networking EdgeConnect SD-WAN Orchestrator. Successful exploitation could allow a remote low-privileged authenticated user to escalate their … | Sep 15, 2026 |
| CVE-2026-73966 | HIGH | 7.2 | Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.7. Easily exploitable vulnerability allows … | Sep 15, 2026 |
| CVE-2026-73965 | MEDIUM | 6.8 | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Cloud Gateway). Supported versions that are affected are 17.0-26.7. Difficult to exploit vulnerability … | Sep 15, 2026 |
| CVE-2026-73963 | CRITICAL | 9.8 | Vulnerability in the Oracle WebCenter Portal product of Oracle Fusion Middleware (component: Portlet Services). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable … | Sep 15, 2026 |
| CVE-2026-73962 | CRITICAL | 9.6 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable … | Sep 15, 2026 |
| CVE-2026-73961 | CRITICAL | 9.8 | Vulnerability in the Oracle JDeveloper product of Oracle Fusion Middleware (component: ADF Faces). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability … | Sep 15, 2026 |