Aggregating NVD, CVE, and multi-source threat feeds, this list provides deep analysis of high-risk threats such as RCE. By integrating CVSS and EPSS models, the system dynamically tracks Exp (Exploit) resources and PoC availability to accurately assess Exploitability. Combined with official Patches and remediation strategies, it helps prioritize Vulnerability Management workflows, significantly shortening response cycles and securing your critical assets.
Assigner (CNA / source):[email protected] Remove this filter
| CVE | Description | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|
| CVE-2026-61378 | A divide-by-zero vulnerability in the Productivity Suite allows a local attacker to cause a division by zero leading to a system crash. | 6.8 | 0.11% | 2026-07-16 | 2026-07-17 |
| CVE-2026-60073 | An out-of-bounds read in the Productivity Suite allows a physical attacker to control the length of data sent to a USB device. This can lead to a system crash or disclosure of kernel memory. | 5.2 | 0.17% | 2026-07-16 | 2026-07-17 |
| CVE-2026-57896 | An out-of-bounds read vulnerability in the Productivity Suite allows a local attacker to trigger kernel memory corruption by sending a crafted IOCTL request. This could lead to limited information disclosure or disruption of the affected product. | 6.9 | 0.11% | 2026-07-16 | 2026-07-17 |
| CVE-2026-11889 | SALTO ProAccess Space software using the tenancy feature / logical partition is vulnerable to a privilege escalation attack that could allow an authorized attacker to access any space managed by the affected product. | 7.1 | 0.19% | 2026-07-16 | 2026-07-17 |
| CVE-2026-61389 | An out-of-bounds write vulnerability in the Productivity Suite allows a local attacker to trigger kernel memory corruption via a crafted IOCTL request, potentially resulting in privilege escalation or system instability. | 7.3 | 0.11% | 2026-07-16 | 2026-07-17 |
| CVE-2026-60140 | An out-of-bounds read vulnerability in the Productivity Suite allows a local attacker to trigger kernel memory corruption by sending a crafted IOCTL request. This can lead to exposing sensitive information or causing the affected product to become unstable or unavailable. | 6.9 | 0.11% | 2026-07-16 | 2026-07-17 |
| CVE-2026-60063 | An out-of-bounds write vulnerability in the Productivity Suite allows a local attacker to trigger kernel memory corruption via a crafted IOCTL request, potentially resulting in privilege escalation or system instability. | 7.3 | 0.11% | 2026-07-16 | 2026-07-17 |
| CVE-2026-15352 | A vulnerability exists in the Health & Safety (HS) application of NASA's Core Flight System (cFS). The flaw allows the application to crash via segmentation fault when processing a routine Housekeeping Telemetry request, leading to denial of service. | 8.2 | 0.36% | 2026-07-16 | 2026-07-17 |
| CVE-2026-44383 | Multiple connections to the backend using the same charging station ID are allowed, which could allow an attacker to deploy multiple instances of malicious OCPP clients to overwhelm the backend. | 8.7 | 0.56% | 2026-07-10 | 2026-07-13 |
| CVE-2026-42952 | Previously, there was no throttling on repeated authentication attempts to the charging station backend, which could allow an attacker to execute a denial-of-service attack. | 8.7 | 0.38% | 2026-07-10 | 2026-07-14 |
| CVE-2026-20744 | The charging station websocket endpoint accepts connections without proper authentication, which could lead to privilege escalation. | 9.3 | 0.52% | 2026-07-10 | 2026-07-14 |
| CVE-2026-14480 | OpenPLC Runtime v3 contains an authenticated arbitrary file write vulnerability in the legacy web UI program‑upload workflow. The application stores an attacker‑supplied filename (prog_file) directly into the Programs.File database field and later uses this value as the destination path for an uploaded file without validating or restricting the path. Because Python os.path.join() honors attacker‑controlled absolute paths, an authenticated user can write arbitrary files anywhere writable b | 8.7 | 0.62% | 2026-07-10 | 2026-07-13 |
| CVE-2026-38059 | The iDirect iQ200 exposes the /api/identity and /api/ REST API endpoints without authentication. An unauthenticated attacker with network access can retrieve sensitive device information including the serial number, Device ID (DID), Terminal Private Key identifier (TPK), MAC address, and exact firmware version. The DID and TPK are used for satellite network authentication in the iDirect platform, potentially enabling terminal impersonation and network reconnaissance. | 8.7 | 0.59% | 2026-07-10 | 2026-07-10 |
| CVE-2026-38057 | The iDirect iQ200 does not validate CSRF tokens on state-changing API endpoints after authentication. The /api/reboot endpoint accepts POST requests authenticated solely by a session cookie that lacks the SameSite attribute. A remote attacker can host a malicious web page that, when visited by an authenticated administrator, automatically submits a cross-site POST request causing an immediate device reboot and satellite link loss. Repeated attacks can sustain a denial-of-service condition. | 7.0 | 0.31% | 2026-07-10 | 2026-07-10 |
| CVE-2026-49033 | The application contains a stack-based buffer overflow vulnerability that can be exploited by an attacker to execute arbitrary code. | 8.4 | 0.13% | 2026-07-07 | 2026-07-09 |
| CVE-2026-42958 | The application contains a use-after-free vulnerability that can be exploited to cause memory corruption while parsing specially crafted files. This could allow an attacker to execute arbitrary code in the context of the current process. | 8.4 | 0.13% | 2026-07-07 | 2026-07-09 |
| CVE-2026-42953 | The application contains an out-of-bounds write vulnerability that can be exploited by an attacker to cause the program to write data past the end of an allocated memory buffer. This can lead to arbitrary code execution. | 8.4 | 0.14% | 2026-07-07 | 2026-07-09 |
| CVE-2026-55726 | The Azure Blob Storage container used for Gardyn device logs is publicly listable without authentication. A malicious user would be able to access any device log file available in the blob storage container. | 6.9 | 0.36% | 2026-07-02 | 2026-07-06 |
| CVE-2026-54477 | The admin panel lacks standard security headers, enabling clickjacking and cross-site scripting attacks. | 5.1 | 0.24% | 2026-07-02 | 2026-07-06 |
| CVE-2026-13768 | Gardyn devices expose a privileged iothubowner key. Access to this key will allow a malicious user to invoke an IoTHub Registry Manager function which returns connection information for all Gardyn Home Kit and Studio devices. Access to this key also allows a malicious user to execute arbitrary commands on a specific connected device and may allow the malicious user to pivot to other devices on the user's network. | 9.5 | 0.56% | 2026-07-02 | 2026-07-06 |