VULNERABILITY INTELLIGENCE

CVE index

Use CVSS, EPSS, CISA KEV, affected-version data, and source evidence as separate signals for prioritization.

NVD data is used under its public data terms. This service is not endorsed or certified by NVD.
18,030 CVE recordsPage 198 of 1202 · EPSS data 2026.08.08
ReviewHigh
CVE-2026-44878

Hewlett Packard Enterprise (HPE) EdgeConnect SD-WAN Gateway (ECOS)

A vulnerability in the web-based management interface of an ECOS device could allow a highly privileged, authenticated remote attacker to access the device's filesystem. Successful exploitation of this vulnerability could allow an attacker to access sensitive files and tamper with or delete system data.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-30633

the affected product

Directory traversal vulnerability in knowns-dev/knowns 0.11.4 via crafted path value to the get_doc and update_doc tools.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-30631

the affected product

An issue was discovered in bytebot-ai in commit 3d37894ce07ef8d8b40adc7fd309ad96c2a71313 (2025-09-11) allowing attackers to execute arbitrary code via crafted path to `computer_write_file`.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-16317

AWS s2n-tls

Missing validation of the outer content_type byte on TLS 1.3 encrypted records in s2n-tls allows an active man-in-the-middle to silently discard individual application data records without either endpoint detecting the modification. RFC 8446 Section 5.2 requires that the outer content_type of all encrypted TLS 1.3 records must be application_data (0x17). The s2n-tls AEAD implementation hardcodes this value in the additional authenticated data rather than using the actual wire byte, so the outer content_type is not covered by the authentication tag. This enables selective suppression of appl...

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-64880

Tenable, Inc. Security Center

Unsanitized user-supplied input in report filtering parameters is concatenated directly into SQL queries without proper escaping or parameterized queries, enabling blind SQL injection and unauthorized database read access.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-64879

Tenable, Inc. Security Center

A filename supplied during file upload is not properly sanitized before being used in system command execution, allowing an attacker to inject shell metacharacters and achieve command injection via the audit file upload functionality.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-64878

Tenable, Inc. Security Center

Unvalidated input in asset filter parameters allows shell metacharacters to escape command argument handling, resulting in remote code execution as a low-privileged OS user via the Analysis REST endpoint.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-59147

EGOR Data::DisjointSet::Shared

Data::DisjointSet::Shared versions before 0.02 for Perl allow out-of-bounds reads and writes via an unvalidated parent index in dsu_find. The attach-time validator dsu_validate_header checks the header scalars and region layout against the file size, but does not validate the array contents it then trusts. dsu_find walks and path-compresses parent[x] with x a raw file-stored index never bounded against the node count, so both the read and the compression write-back land out of bounds. A local peer that can write the backing file can leave the header valid while poisoning the parent array, s...

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-59146

EGOR Data::SpatialHash::Shared

Data::SpatialHash::Shared versions before 0.02 for Perl allow out-of-bounds reads and writes via unvalidated bucket, link and free-list indices in sph_walk_cell and sph_alloc_slot. The attach-time validator sph_validate_header checks the header scalars and region layout against the file size, but does not validate the array contents it then trusts. sph_walk_cell reads entries[buckets[b]] and follows each entry's next link raw, and sph_alloc_slot writes through a file-stored free_head index, none bounded against the entry count (max_entries). A local peer that can write the backing file can...

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-59145

EGOR Data::Intern::Shared

Data::Intern::Shared versions before 0.02 for Perl allow an out-of-bounds read via unvalidated slot, reverse and arena indices in si_idx_find. The attach-time validator si_validate_header is thorough about the header and layout (magic, version, section offsets, total_size, count and arena_used) but does not validate the three arrays it then trusts. Every lookup in si_idx_find walks a triple indirection read straight from the mmap'd segment, arena[reverse[slots[i].id]], with no bound on slots[i].id against count, on the reverse[id] arena offset against arena_used, or on the arena record's le...

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-59144

EGOR Data::RingBuffer::Shared

Data::RingBuffer::Shared versions before 0.04 for Perl allow a stack buffer overflow via an unvalidated elem_size in ring_read_seq. The attach-time validator ring_validate_header checks the capacity-overflow and total_size consistency of the header but never caps elem_size against the destination size. ring_read_seq does memcpy(out, ring_slot(h, seq), elem_size) with elem_size read raw from the mmap'd segment, copying into a fixed 8-byte destination scalar. An elem_size larger than 8 bytes writes past the destination. A local peer that can write the backing file can leave the header valid w...

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-50759

the affected product

An issue in exo-explore exo 1.0.69 allows a remote attacker to escalate privileges via the GET /state and DELETE /instance/{instance_id} endpoints with no authentication.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-50758

the affected product

Cross Site Scripting vulnerability in DayuanJiang next-ai-draw-io 0.4.13 allows a remote attacker to execute arbitrary code via the mcp parameter

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-50757

the affected product

Directory Traversal vulnerability in DayuanJiang next-ai-draw-io 0.4.13 allowsa remote attacker to execute arbitrary code via the nex-ai-draw-io/mcp-server

The CVSS severity warrants an early asset and exposure review.