CVE Prioritization
Triage CVEs by EPSS, CISA KEV, PoC availability, attack complexity, and in-feed incidents.
50
Total CVEs
16
Critical
0
KEV / Exploited
0
PoC Exists
0
Zero Day
0
Patch Available
| CVE ID | Published | Severity | EPSS Score | Complexity | Status | PoC | Patch | Due Date | Feed Hits | Description | |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the wps.cgi interface th | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | CTI-Transmute contains a stored cross-site scripting vulnerability caused by insufficient neutralization of Vue template | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a buffer overflow vu | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a buffer overflow vu | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a command injection | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a command injection | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj | Details | |
| 08 Aug 2026 | CRITICAL 9.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj | Details | |
| 08 Aug 2026 | HIGH 7.7 |
0.0%
|
LOW |
—
|
— | — | — | 0 | Flowise through 3.1.4 contains a server-side request forgery vulnerability in the SSRF guard implemented in httpSecurity | Details | |
| 08 Aug 2026 | HIGH 7.8 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A heap-based buffer overflow vulnerability exists in the GIMP DDS (DirectDraw Surface) file parser. When a crafted DDS f | Details | |
| 08 Aug 2026 | MEDIUM 5.3 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A vulnerability has been found in astralisone rive-mcp-server-core up to db1d0cc4cd52589116360428b7504fd0ca748b3e. This | Details | |
| 08 Aug 2026 | MEDIUM 5.3 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A flaw has been found in abrinsmead mindpilot-mcp 0.5.0. Affected by this issue is some unknown functionality of the com | Details | |
| 08 Aug 2026 | MEDIUM 5.3 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A vulnerability was detected in aaronsb memory-graph up to 5cfd2382778837b9f6399080956eee670d00452c. Affected by this vu | Details | |
| 08 Aug 2026 | MEDIUM 5.3 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A security vulnerability has been detected in MauricioMilano coder-api up to 1.1.0. Affected is the function createProje | Details | |
| 08 Aug 2026 | MEDIUM 5.3 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A weakness has been identified in andreahaku llm_memory_mcp up to f11dc8bcff3ff8cf943a2945f99ff3b0bdc8a6d0. This impacts | Details | |
| 08 Aug 2026 | MEDIUM 5.3 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A security flaw has been discovered in adolfosalasgomez3011 slidev-builder-mcp 2.1.0. This affects the function generate | Details | |
| 08 Aug 2026 | MEDIUM 5.3 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A vulnerability was identified in MIMICLab mcp-pdf-vision 1.1.0. The impacted element is the function load_pdf of the fi | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | In the Linux kernel, the following vulnerability has been resolved: libceph: fix two unsafe bare decodes in decode_lock | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Put vmcs12 pages if nested VM-Enter fail | Details | |
| 08 Aug 2026 | MEDIUM 5.3 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A security flaw has been discovered in Hulupeep mcp-ui-probe up to 0.2.0. Affected is the function get_journey/delete_jo | Details | |
| 08 Aug 2026 | MEDIUM 6.3 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A vulnerability was identified in abdullah1854 MCPGateway up to 549f494a9e363f40530149de324b8097de424230. This impacts t | Details | |
| 08 Aug 2026 | MEDIUM 5.5 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A vulnerability was determined in Kirachon context-engine up to 1.9.0. This affects the function execGitCommand of the f | Details | |
| 08 Aug 2026 | HIGH 7.3 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A vulnerability was found in INQUIRELAB mcp-bridge-api up to b30a82aa1d1d1139e0de846c41c8aadee6e06114. The impacted elem | Details | |
| 08 Aug 2026 | MEDIUM 5.3 |
0.0%
|
LOW |
—
|
— | — | — | 0 | A vulnerability has been found in MZ Automation libiec61850 up to 1.6.1. The affected element is the function MmsMapping | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The AI Engine WordPress plugin before 3.6.6 does not confine a caller-supplied file path before reading it and forwardi | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The AI Engine WordPress plugin before 3.6.4 does not verify ownership of a guest's uploaded chatbot files before deleti | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The Solace Extra WordPress plugin before 1.6.1 does not perform capability checks in several of its AJAX actions and exp | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The Download Monitor WordPress plugin before 5.2.6 does not perform authorization checks on one of its download-logging | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The WP Directory Kit WordPress plugin before 1.5.5 does not perform authorization or nonce checks on one of its authenti | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The WP Directory Kit WordPress plugin before 1.5.5 does not perform authorization or nonce checks on one of its authenti | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The WP Directory Kit WordPress plugin before 1.5.5 does not perform authorization or nonce checks on one of its authenti | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The WP Directory Kit WordPress plugin before 1.5.5 does not sanitize and escape a parameter before using it in a SQL sta | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The Admin Safety Guard — Login Security, Limit Logins, 2FA & Brute Force Protection WordPress plugin before 1.4.0 does n | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.11 does not verify that | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The WP Statistics WordPress plugin before 14.16.10 does not perform a capability check on a set of dashboard analytics | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The YMC Filter WordPress plugin before 3.12.9 does not sanitize SVG files uploaded through one of its icon upload featur | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The YMC Filter WordPress plugin before 3.12.8 does not sanitize and escape a layout builder setting before outputting it | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The Link Library WordPress plugin before 7.9.4 does not sanitise and escape a parameter before reflecting it back in a r | Details | |
| 08 Aug 2026 | — |
0.0%
|
— |
—
|
— | — | — | 0 | The Appointment Hour Booking WordPress plugin before 1.5.88 does not validate a client-supplied booking price against t | Details | |
| 08 Aug 2026 | — |
0.2%
|
— |
—
|
— | — | — | 0 | The Newsletters WordPress plugin before 4.16 does not strictly compare its API authentication key, allowing unauthentica | Details |