| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-40638 | Dell PowerScale InsightIQ 安全漏洞 | Dell | PowerScale InsightIQ | Medium | 6.7 | 2026-05-12 13:31:12 | Deep Dive |
| CVE-2026-42006 | Open-Xchange OX Dovecot Pro 资源管理错误漏洞 | Open-Xchange GmbH | OX Dovecot Pro | Medium | 4.3 | 2026-05-12 13:28:47 | Deep Dive |
| CVE-2026-40020 | Open-Xchange OX Dovecot Pro 访问控制错误漏洞 | Open-Xchange GmbH | OX Dovecot Pro | Low | 3.1 | 2026-05-12 13:28:46 | Deep Dive |
| CVE-2026-40016 | Open-Xchange OX Dovecot Pro 资源管理错误漏洞 | Open-Xchange GmbH | OX Dovecot Pro | Medium | 5.3 | 2026-05-12 13:28:46 | Deep Dive |
| CVE-2026-33603 | Open-Xchange OX Dovecot Pro 安全漏洞 | Open-Xchange GmbH | OX Dovecot Pro | Medium | 6.8 | 2026-05-12 13:28:45 | Deep Dive |
| CVE-2026-27851 | Open-Xchange OX Dovecot Pro 安全漏洞 | Open-Xchange GmbH | OX Dovecot Pro | High | 7.4 | 2026-05-12 13:28:44 | Deep Dive |
| CVE-2026-35071 | Dell PowerScale InsightIQ 操作系统命令注入漏洞 | Dell | PowerScale InsightIQ | High | 8.2 | 2026-05-12 13:25:47 | Deep Dive |
| CVE-2026-45091 | sealed-env: TOTP secret embedded in unseal token payload (enterprise mode) | davidalmeidac | sealed-env | Critical | 9.1 | 2026-05-12 13:20:22 | Deep Dive |
| CVE-2026-8391 | Other issue in the JavaScript Engine component | Mozilla | Firefox | - | - | 2026-05-12 12:36:16 | Deep Dive |
| CVE-2026-8390 | Use-after-free in the JavaScript: WebAssembly component | Mozilla | Firefox | - | - | 2026-05-12 12:36:14 | Deep Dive |
| CVE-2026-8389 | JIT miscompilation in the JavaScript Engine: JIT component | Mozilla | Firefox | - | - | 2026-05-12 12:36:13 | Deep Dive |
| CVE-2026-8388 | Incorrect boundary conditions in the JavaScript Engine: JIT component | Mozilla | Firefox | - | - | 2026-05-12 12:36:11 | Deep Dive |
| CVE-2025-12659 | Heap-based buffer overflow in Siemens Simcenter Femap | Siemens | Simcenter Femap | - | - | 2026-05-12 12:30:05 | Deep Dive |
| CVE-2026-6865 | Improper Limitation of a Pathname to a Restricted Directory Vulnerability on Multiple Products | Schneider Electric | EasyLogic T150 (formerly Saitel DR) Remote Terminal Unit & Controller | - | - | 2026-05-12 12:29:52 | Deep Dive |
| CVE-2026-4827 | Insufficient Entropy vulnerability on Multiple Products | Schneider Electric | Easergy MiCOM C264 | - | - | 2026-05-12 12:24:23 | Deep Dive |
| CVE-2026-42742 | WordPress Views for WPForms plugin <= 3.4.6 - SQL Injection vulnerability | Aman | Views for WPForms | High | 8.5 | 2026-05-12 11:02:10 | Deep Dive |
| CVE-2026-42741 | WordPress Ninja Forms Views – Display & Edit Ninja Forms Submissions on your site frontend plugin <= 3.3.2 - SQL Injection vulnerability | Aman | Ninja Forms Views – Display & Edit Ninja Forms Submissions on your site frontend | High | 8.5 | 2026-05-12 11:02:10 | Deep Dive |
| CVE-2026-45213 | WordPress BEAR plugin <= 1.1.7.1 - SQL Injection vulnerability | RealMag777 | BEAR | High | 7.6 | 2026-05-12 11:02:10 | Deep Dive |
| CVE-2026-45210 | WordPress Broadstreet Ads plugin <= 1.52.2 - Broken Access Control vulnerability | Broadstreet | Broadstreet Ads | Medium | 5.4 | 2026-05-12 11:02:10 | Deep Dive |
| CVE-2026-45212 | WordPress Asset CleanUp: Page Speed Booster plugin <= 1.4.0.3 - Broken Access Control vulnerability | Gabe Livan | Asset CleanUp: Page Speed Booster | Medium | 5.3 | 2026-05-12 11:02:10 | Deep Dive |