| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-57471 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in KUNBUS RevPiPyLoad | KUNBUS | RevPiPyLoad | Medium | 6.8 | 2026-08-14 15:04:16 | Deep Dive |
| CVE-2026-57469 | Cross-Site Request Forgery (CSRF) in KUNBUS PiCtory | KUNBUS | PiCtory | Medium | 5.1 | 2026-08-14 15:03:32 | Deep Dive |
| CVE-2026-13198 | Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in KUNBUS piControl | KUNBUS | piControl | Medium | 5.9 | 2026-08-14 15:02:42 | Deep Dive |
| CVE-2026-13002 | Dnsmasq: infinite loop dos in dnssec nsec/nsec3 type bitmap parsing | Red Hat | Red Hat Enterprise Linux 10 | Medium | 4.4 | 2026-08-14 15:02:26 | Deep Dive |
| CVE-2026-13197 | Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in KUNBUS piControl | KUNBUS | piControl | High | 7.3 | 2026-08-14 15:01:39 | Deep Dive |
| CVE-2026-13196 | Out-of-bounds Write in KUNBUS piControl | KUNBUS | piControl | High | 7.3 | 2026-08-14 15:00:48 | Deep Dive |
| CVE-2026-19834 | Webkul Bagisto Admin Customer Impersonation Feature login-as-customer authorization | Webkul | Bagisto | Medium | 4.7 | 2026-08-14 15:00:08 | Deep Dive |
| CVE-2026-19879 | Io.undertow/undertow: undertow: http response header integrity issue due to character truncation | Red Hat | Red Hat build of Apache Camel for Spring Boot 4 | Medium | 5.3 | 2026-08-14 14:51:36 | Deep Dive |
| CVE-2026-58224 | Samba: ctdb fails to do integrity checking of received packets | Red Hat | Red Hat Enterprise Linux 10 | Medium | 6.5 | 2026-08-14 14:38:51 | Deep Dive |
| CVE-2026-69101🧪 | Datavane TIS v5.0.0 XXE Injection via doEditWorkflow Endpoint | datavane | tis | High | 7.7 | 2026-08-14 14:33:17 | Deep Dive |
| CVE-2026-19880 | Incomplete protection against CVE-2025-11226 | QOS.CH Sarl | Logback-classic | Medium | 6.3 | 2026-08-14 14:31:02 | Deep Dive |
| CVE-2026-1621 | Register Bypass in Universal Sotware's E-Municipality | Universal Software Inc. | E-Municipality | Medium | 5.3 | 2026-08-14 14:08:37 | Deep Dive |
| CVE-2026-19871🧪 | Use of hard-coded credentials in Prospero Flow CRM employee onboarding | Roskus | Prospero Flow CRM | Critical | 9.3 | 2026-08-14 14:00:56 | Deep Dive |
| CVE-2026-53472 | Migration-planner: credentialurl validator accepts javascript: urls | - | - | Medium | 6.3 | 2026-08-14 14:00:33 | Deep Dive |
| CVE-2026-19830 | TRENDnet TEW-816DRM bftpd bftpd.conf allocation of resources | TRENDnet | TEW-816DRM | Medium | 5.3 | 2026-08-14 14:00:12 | Deep Dive |
| CVE-2026-73633 | Apache Struts: Unbounded read of a JSON request body | Apache Software Foundation | Apache Struts | - | - | 2026-08-14 13:48:45 | Deep Dive |
| CVE-2026-19768 | ReDOS漏洞影响Devolutions PowerShell Universal 2026.2.3 | Devolutions | PowerShell Universal | - | - | 2026-08-14 13:48:04 | Deep Dive |
| CVE-2026-19829 | 648540858 wvp-GB28181-pro Log File Download Endpoint LogController.java path traversal | 648540858 | wvp-GB28181-pro | Medium | 4.3 | 2026-08-14 13:45:09 | Deep Dive |
| CVE-2026-19828 | 648540858 wvp-GB28181-pro Snapshot Endpoint PlayController.java path traversal | 648540858 | wvp-GB28181-pro | Medium | 6.3 | 2026-08-14 13:30:10 | Deep Dive |
| CVE-2026-19827 | alldatacenter alldata logDetailCat Endpoint JobLogController.java FileInputStream path traversal | alldatacenter | alldata | Medium | 5.3 | 2026-08-14 13:15:09 | Deep Dive |