| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-18144 | IBM i is Affected By Multiple Vulnerabilities in Navigator for i | IBM | i | Medium | 4.3 | 2026-08-12 16:52:27 | Deep Dive |
| CVE-2026-18098 | IBM i is Affected By XML injection flaw in Navigator for i | IBM | i | High | 8.1 | 2026-08-12 16:50:04 | Deep Dive |
| CVE-2026-18683 | IBM i is Affected By privilege escalation in Navigator for i | IBM | i | High | 8.8 | 2026-08-12 16:49:08 | Deep Dive |
| CVE-2026-48554🧪 | Nagios Core / XI Authenticated RCE via Unfiltered NOTIFICATION-Family Macro Substitution | Nagios Enterprises, LLC. | Nagios Core | High | 7.5 | 2026-08-12 16:48:28 | Deep Dive |
| CVE-2026-48553🧪 | Nagios Core / XI Authenticated RCE via Custom-Variable Macro Injection | Nagios Enterprises, LLC. | Nagios Core | High | 7.5 | 2026-08-12 16:46:36 | Deep Dive |
| CVE-2026-73237 | Apache Allura: XSS in markdown pipeline | Apache Software Foundation | Apache Allura | - | - | 2026-08-12 16:42:27 | Deep Dive |
| CVE-2026-73238 | Apache Allura: XSS in code display | Apache Software Foundation | Apache Allura | - | - | 2026-08-12 16:41:59 | Deep Dive |
| CVE-2026-73239 | Apache Allura: Missing permission checks IDOR | Apache Software Foundation | Apache Allura | - | - | 2026-08-12 16:41:41 | Deep Dive |
| CVE-2026-73240 | Apache Allura: Git command injection | Apache Software Foundation | Apache Allura | - | - | 2026-08-12 16:41:19 | Deep Dive |
| CVE-2026-48552 | Nagios Core / XI DOM-based XSS via jsonquery.js | Nagios Enterprises, LLC. | Nagios Core | Medium | 5.4 | 2026-08-12 16:34:34 | Deep Dive |
| CVE-2026-48551🧪 | Nagios Core / XI CSRF Protection Bypass via Double-Submit Cookie | Nagios Enterprises, LLC. | Nagios Core | High | 7.4 | 2026-08-12 16:32:17 | Deep Dive |
| CVE-2026-73297 | Microsoft UFO: IPv6 transition address bypass of SSRF guard in URL validation | microsoft | UFO | Medium | 6.9 | 2026-08-12 16:31:35 | Deep Dive |
| CVE-2026-48550 | Nagios Core / XI cmd.cgi Reflected XSS via NagFormId Parameter | Nagios Enterprises, LLC. | Nagios Core | Medium | 6.1 | 2026-08-12 16:30:02 | Deep Dive |
| CVE-2026-73296🧪 | Microsoft UFO: Unauthenticated Mobile MCP access allows remote Android device control and screen disclosure | microsoft | UFO | Critical | 9.4 | 2026-08-12 16:29:03 | Deep Dive |
| CVE-2026-18499 | IBM WebSphere Application Server Liberty is affected by a privilege escalation | IBM | WebSphere Application Server - Liberty | High | 8.1 | 2026-08-12 16:25:07 | Deep Dive |
| CVE-2026-73295 | Material for MkDocs: DOM XSS in search suggestions via query parameter | squidfunk | mkdocs-material | Medium | 5.4 | 2026-08-12 16:15:22 | Deep Dive |
| CVE-2026-73294🧪 | Semaphore U: OS Command Injection | semaphoreui | semaphore | Critical | 9.9 | 2026-08-12 15:55:01 | Deep Dive |
| CVE-2026-69107 | Potential unauthorized artifact access in JFrog Artifactory | jfrog | artifactory | Medium | 5.9 | 2026-08-12 15:51:48 | Deep Dive |
| CVE-2026-19548 | Binutils: binutils: multiple use-after-free in add_archive_element via lto plugin processing | Red Hat | Red Hat Enterprise Linux 10 | Medium | 5.5 | 2026-08-12 15:51:39 | Deep Dive |
| CVE-2026-73293🧪 | Semaphore UI: Manager-to-owner privilege escalation via custom-role slug collision | semaphoreui | semaphore | High | 8.8 | 2026-08-12 15:45:22 | Deep Dive |