Total
400203 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-21366 | 1 Qualcomm | 66 Lemans Au Lgit, Lemans Au Lgit Firmware, Lemansau and 63 more | 2026-08-06 | N/A | 7.8 HIGH |
| Memory corruption while processing a packet with a size close to the maximum allowed value. | |||||
| CVE-2026-24076 | 1 Qualcomm | 104 Aqt1000, Aqt1000 Firmware, Cologne and 101 more | 2026-08-06 | N/A | 6.7 MEDIUM |
| Memory Corruption when processing registry values with incorrect types using a direct query method. | |||||
| CVE-2026-24077 | 1 Qualcomm | 288 Aqt1000, Aqt1000 Firmware, Ar8035 and 285 more | 2026-08-06 | N/A | 6.5 MEDIUM |
| Information Disclosure when processing wireless network channel switch information with improperly formatted length fields. | |||||
| CVE-2026-24078 | 1 Qualcomm | 294 5g Fixed Wireless Access Platform, 5g Fixed Wireless Access Platform Firmware, Ar8035 and 291 more | 2026-08-06 | N/A | 6.5 MEDIUM |
| Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling. | |||||
| CVE-2026-24079 | 1 Qualcomm | 286 Ar8035, Ar8035 Firmware, Csra6620 and 283 more | 2026-08-06 | N/A | 8.1 HIGH |
| Cryptographic Issue while processing registration requests with malformed or missing authentication parameters. | |||||
| CVE-2026-24080 | 1 Qualcomm | 72 Cologne, Cologne Firmware, Fastconnect 6700 and 69 more | 2026-08-06 | N/A | 7.8 HIGH |
| Memory Corruption when handling malformed request parameters in the fingerprint TA. | |||||
| CVE-2026-24083 | 1 Qualcomm | 6 Qam8295p, Qam8295p Firmware, Qca6696 and 3 more | 2026-08-06 | N/A | 7.8 HIGH |
| Memory Corruption while processing IOCTL device driver requests with invalid arguments. | |||||
| CVE-2026-59173 | 1 Apache | 1 Traffic Server | 2026-08-06 | N/A | 7.5 HIGH |
| Uncontrolled Resource Consumption vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.0.0 through 9.1.13, from 10.0.0 through 10.1.2. Users are recommended to upgrade to version 9.1.14 or 10.1.3, which fixes the issue. | |||||
| CVE-2026-48782 | 1 Pydantic | 1 Pydantic Ai | 2026-08-06 | N/A | 6.8 MEDIUM |
| Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. In versions 1.56.0 through 1.101.0, 2.0.0b1, and 2.0.0b2, the cloud-metadata blocklist could be bypassed by encoding the metadata IP in an IPv6 transition form that the previous fix, CVE-2026-46678, did not decode, exposing cloud IAM short-term credentials. The previous remediation decoded only IPv4-mapped IPv6, 6to4, and the NAT64 well-known prefix, so the metadata guarantee did not hold for the remaining transition forms: IPv4-compatible IPv6 (::a.b.c.d), the NAT64 RFC 8215 local-use prefix (64:ff9b:1::/48), operator-chosen NAT64 prefixes, and ISATAP. The IPv6 wrapper is then delivered to the underlying IPv4 metadata endpoint. This occurs when an application using Pydantic AI opts a URL into force_download='allow-local' (which disables the default block on private/internal IPs) and runs on a network that actually routes the affected IPv6 transition forms: NAT64-configured networks (IPv6-only or dual-stack-with-NAT64 deployments, including some Kubernetes setups) for the NAT64 variants, or networks with an ISATAP tunnel for ISATAP. A standard dual-stack cloud VM or container does not route these forms and is not affected in practice. The IPv4-compatible and Teredo variants are deprecated and addressed as defense-in-depth. This is an incomplete fix of GHSA-cqp8-fcvh-x7r3 / CVE-2026-46678 (itself a follow-up to CVE-2026-25580). This issue has been fixed in version 2.0.0b3. | |||||
| CVE-2026-9726 | 1 Alternativecommerce | 1 Alternativecommerce | 2026-08-06 | N/A | 9.8 CRITICAL |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Drupal AlternativeCommerce (Basket) allows Object Injection. This issue affects Drupal AlternativeCommerce (Basket) versions: from 0.0.0 to 2.1.17. | |||||
| CVE-2026-15427 | 1 Tp-link | 2 Archer Vx1800v, Archer Vx1800v Firmware | 2026-08-06 | N/A | 8.1 HIGH |
| An OS command injection vulnerability exists in the TR-069 / CWMP management interface of Archer VX1800v v1 due to insufficient input validation and sanitization of parameters, allowing crafted input to be executed as system-level commands. Exploitation requires specific conditions such as TR-069 being enabled and ability to influence ACS-delivered commands, compromise or control an ACS server. Successful exploitation may allow arbitrary command execution with root privileges, resulting in complete compromise of the device. | |||||
| CVE-2026-15428 | 1 Tp-link | 2 Archer Vx1800v, Archer Vx1800v Firmware | 2026-08-06 | N/A | 8.8 HIGH |
| An OS command injection vulnerability exists in Archer VX800v v1 due to insufficient input sanitization of the domain name parameter. An adjacent attacker who can access the relevant HTTP interface can modify the parameter to inject shell metacharacters, resulting in arbitrary code execution with root privileges. Successful exploitation may allow remote code execution and complete compromise of the device. | |||||
| CVE-2026-15429 | 1 Tp-link | 2 Archer Vx1800v, Archer Vx1800v Firmware | 2026-08-06 | N/A | 8.8 HIGH |
| A privilege escalation vulnerability exists in the HTTP authentication component in Archer VX1800v v1. Improper handling of user-controlled input may allow newline characters to be injected into internally constructed configuration data. An authenticated user with sufficient privileges may be able to modify account settings and gain elevated administrative privileges. | |||||
| CVE-2026-5040 | 1 Tp-link | 2 Deco M5, Deco M5 Firmware | 2026-08-06 | N/A | 6.7 MEDIUM |
| TP-Link Deco M5 v1 uses a weak password hashing mechanism to store user credentials. An attacker who obtains the password hash through system compromise or privileged access could perform brute-force or dictionary attacks. Successful exploitation may result in disclosure of authentication credentials, enabling unauthorized access to device management functions, depending on the privileges associated with the recovered password. The primary security impact is loss of confidentiality. | |||||
| CVE-2026-47429 | 1 Vitest.dev | 1 Vitest | 2026-08-06 | N/A | 9.8 CRITICAL |
| Vitest is a testing framework powered by Vite. Prior to 3.2.5 and 4.1.0, the Vitest UI/API server on Windows used isFileServingAllowed incorrectly for /__vitest_attachment__, allowing \\?\\..\\ path traversal to read files outside the project; exposed API write and rerun features such as saveTestFile and rerun could also allow arbitrary script execution. This issue is fixed in versions 3.2.5 and 4.1.0. | |||||
| CVE-2026-48125 | 1 Ua-parser-js Project | 1 Ua-parser-js | 2026-08-06 | N/A | 5.3 MEDIUM |
| UAParser.js is a JavaScript library to detect browsers, operating systems, CPUs, and devices from user-agent data. From 2.0.1 until 2.0.10, a regular expression denial-of-service vulnerability exists when using the Client Hints API. By sending a crafted Sec-CH-UA-Model header to an application that calls UAParser(headers).withClientHints(), an attacker can cause excessive CPU time due to catastrophic backtracking in the device regex because Client Hints values are copied without the UA_MAX_LENGTH limit used for User-Agent values. This issue is fixed in version 2.0.10. | |||||
| CVE-2026-48801 | 1 Markdown-it | 1 Linkify-it | 2026-08-06 | N/A | 7.5 HIGH |
| linkify-it is a links recognition library with full Unicode support. Prior to 5.0.1, LinkifyIt.prototype.match, the package's primary public API, has O(N²) algorithmic complexity for inputs containing many fuzzy links or emails because the JavaScript-level scan loop re-slices input and re-runs unanchored regex searches on progressively shorter tails. Any service that synchronously renders untrusted Markdown with linkify:true on a request hot path can inherit a worker-process denial of service triggerable by a tens-of-KB request body. This issue is fixed in version 5.0.1. | |||||
| CVE-2026-13230 | 1 Tp-link | 4 Kasa Ec70, Kasa Ec70 Firmware, Kasa Ec71 and 1 more | 2026-08-06 | N/A | 6.5 MEDIUM |
| An information disclosure vulnerability was identified in TP-Link Kasa EC70 v4 and EC71 v4 in the local discovery mechanism, which exposes sensitive geolocation information without requiring authentication. This issue allows an attacker on the same local network to retrieve geolocation-related data through crafted responses. The vulnerability impacts confidentiality only, with no evidence of integrity of availability impact. | |||||
| CVE-2026-9770 | 1 Tp-link | 4 Kasa Ec70, Kasa Ec70 Firmware, Kasa Ec71 and 1 more | 2026-08-06 | N/A | 5.3 MEDIUM |
| Kasa EC71 v4 and EC70 v4 firmware contains a static cryptographic private key stored in a read-only filesystem that is shared across devices. An attacker with access to the firmware image can extract the embedded key. Successful exploitation may allow an unauthenticated attacker on the same network to use this key in the web management service, compromising the confidentiality of encrypted communications. This may enable passive decryption of traffic or active man-in-the-middle (MITM) attacks | |||||
| CVE-2026-59762 | 1 F5 | 3 Big-ip Next Cloud-native Network Functions, Big-ip Next For Kubernetes, Big-ip Next Service Proxy For Kubernetes | 2026-08-06 | N/A | 7.5 HIGH |
| When an HTTP/2 profile is configured on a virtual server, undisclosed requests can cause an increase in memory resource utilization. Impact: System performance can degrade until the TMM process is either forced to restart or is manually restarted. This vulnerability allows a remote, unauthenticated attacker to cause a degradation of service that can lead to a denial-of-service (DoS) on the BIG-IP system. There is no control plane exposure; this is a data plane issue only. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. | |||||
