SOC status:Duty analyst on shift

UK Cyber Defence

Tools / CVE Explorer

Which vulnerabilities actually matter?

Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.

395,631 CVEs1,716 in CISA KEV17,391 with EPSS ≥ 10%25,049 with a public exploitUpdated 20 September 2026

39,241 results · page 21 of 785

CVESummaryPriorityPublished
CVE-2026-83548SonicWall SMA1000 Appliances Server-Side Request Forgery VulnerabilityKEVCRITICAL 10.0EPSS 4.67%1 September 2026
CVE-2026-75604In packages/next/src/shared/lib/router/utils/escape-path-delimiters.ts and packages/next/src/server/lib/incremental-cache/file-system-cache.ts, a remote request can supply encoded Windows path separators that traverse outside the intended cache root and…CRITICAL 9.0EPSS 2.46%1 September 2026
CVE-2023-54391Proxmox Virtual Environment (VE) 7.0 through 8.0 contains an authentication bypass vulnerability in libpve-access-control before 8.0.4 that allows unauthenticated attackers to authenticate as any existing enabled user without a configured second factor…CRITICAL 9.3EPSS 1.75%1 September 2026
CVE-2026-73778A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative access.CRITICAL 9.8EPSS 0.28%1 September 2026
CVE-2026-73749Multiple vulnerabilities exist in a daemon of AOS-CX that may allow for improper processing of malformed input.CRITICAL 9.8EPSS 0.49%1 September 2026
CVE-2026-76658A vulnerability has been identified in the SSH daemon of HPE Networking Fabric Composer that could allow an unauthenticated remote attacker to gain administrative access to vulnerable AFC hosts.CRITICAL 10.0EPSS 0.43%1 September 2026
CVE-2026-76657Vulnerabilities have been identified in the API of HPE Networking Fabric Composer that could potentially allow an unauthenticated remote attacker to circumvent existing authentication controls.CRITICAL 10.0EPSS 0.43%1 September 2026
CVE-2026-73701An unauthenticated remote code execution vulnerability exists in the underlying operating system of HPE Networking Fabric Composer and could be exploited if certain preconditions outside of the attacker's control are met.CRITICAL 9.0EPSS 0.52%1 September 2026
CVE-2026-73700A vulnerability in the web-based management interface of HPE Networking Fabric Composer could allow an authenticated low privilege operator user to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface.CRITICAL 9.0EPSS 0.31%1 September 2026
CVE-2026-19766An authentication bypass vulnerability exists in the underlying operating system of HPE Networking Fabric Composer.CRITICAL 9.6EPSS 0.25%1 September 2026
CVE-2026-52111An issue in fast-note-sync-service <=2.13.7 allows a remote attacker to escalate privileges via the admin configuration endpoint exposes authTokenKeyCRITICAL 9.8EPSS 0.34%1 September 2026
CVE-2026-19593If the workspace contains a repository with preserved attacker-controlled .git/config, the attr.tree setting and a configured clean or process filter can cause Git to run an attacker-controlled program.CRITICAL 9.8EPSS 0.29%1 September 2026
CVE-2026-51934Buffer Overflow vulnerability in Shenzhen Jixiang Tengda Technology Co., Ltd.CRITICAL 9.8EPSS 0.64%1 September 2026
CVE-2026-79687Dell PowerStore SDNAS contains a Missing Authentication for Critical Function vulnerability.CRITICAL 9.0EPSS 0.27%1 September 2026
CVE-2026-51770Incorrect access control in the sendToMasterQosConfig function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to forward attacker-controlled QoS settings to the master via sending a crafted MQTT message to the cs_broker component..CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-51769Incorrect access control in the remoteCloudUpdateCheck function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to restart the cloud update check workflow via sending a crafted MQTT message to the cs_broker component.CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-51767Incorrect access control in the recvClearPairCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to reset pairing state and reboot the device via sending a crafted MQTT message to the cs_broker component.CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-18931Use of Hard-coded Credentials vulnerability in TMT Machine Industry and Trade Ltd.CRITICAL 9.1EPSS 0.23%1 September 2026
CVE-2026-78012An issue in the NetStaX EtherNet/IP Stack prior to v5.6.1 could allow a large Class 3 explicit-message request to exceed the application-side receive buffer without generating an error or warning.CRITICAL 9.3EPSS 0.47%1 September 2026
CVE-2026-9621A denial-of-service security issue exists within RSLinx® Classic.CRITICAL 9.2EPSS 0.31%1 September 2026
CVE-2026-51765Incorrect access control in the recvIndirectMeshInfo function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to insert or replace mesh neighbor records via sending a crafted MQTT message to the cs_broker component.CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-51764Incorrect access control in the recvSlaveCloudCheckStatus function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to overwrite cloud-result tracking files via sending a crafted MQTT message to the cs_broker component.CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-51763Incorrect access control in the freeStaClient function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to forcibly disconnect wireless clients via sending a crafted MQTT message to the cs_broker component.CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-51762Incorrect access control in the meshInfoKick function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to kick or clean stale mesh information/state and trigger regeneration of mesh metadata via sending a crafted MQTT message to the…CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-51760Incorrect access control in the informSyncUpgfw function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to mass-trigger firmware update activity across mesh slaves via sending a crafted MQTT message to the cs_broker component.CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-51757Incorrect access control in the meshSlaveUpdate function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to start a firmware download or flash workflow on the slave device via sending a crafted MQTT message to the cs_broker…CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-51754Incorrect access control in the updateSlaveIpList function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to overwrite the slave IP inventory state via sending a crafted MQTT message to the cs_broker component.CRITICAL 9.8EPSS 0.43%1 September 2026
CVE-2026-51751Incorrect access control in the delSlaveDevice function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to remove a specified slave device from local mesh management data and reboot the system via sending a crafted MQTT message to…CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-51750Incorrect access control in the updatePriChannel function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to rescan and switch the primary mesh channel via sending a crafted MQTT message to the cs_broker component.CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-18808Improper Control of Generation of Code ('Code Injection') vulnerability in Klemsan Electrical Electronics Inc.CRITICAL 9.8EPSS 0.39%1 September 2026
CVE-2026-18210Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in TRtek Technological Products Computer Software Hardware Industry and Trade Limited Company Products's Store allows SQL Injection.CRITICAL 9.8EPSS 0.36%1 September 2026
CVE-2026-84149This vulnerability exists in the ERP system due to exposure of repository information through a publicly accessible .git directory.CRITICAL 9.2EPSS 0.32%1 September 2026
CVE-2026-84148This vulnerability exists in the ERP system due to improper authentication and authorization controls in the API endpoint.CRITICAL 9.2EPSS 0.39%1 September 2026
CVE-2026-84147This vulnerability exists in the ERP system due to improper authentication controls and inadequate file type validation at the API endpoint.CRITICAL 10.0EPSS 0.55%1 September 2026
CVE-2026-84143Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited.CRITICAL 9.8EPSS 0.38%1 September 2026
CVE-2026-84142Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited.CRITICAL 9.8EPSS 0.30%1 September 2026
CVE-2026-84141Integer overflow in the Graphics: ImageLib component.CRITICAL 9.8EPSS 0.34%1 September 2026
CVE-2026-84140This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.CRITICAL 9.8EPSS 0.18%1 September 2026
CVE-2026-84135This vulnerability was fixed in Firefox 155.CRITICAL 9.8EPSS 0.25%1 September 2026
CVE-2026-84134This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.CRITICAL 9.8EPSS 0.31%1 September 2026
CVE-2026-84133This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.CRITICAL 9.8EPSS 0.18%1 September 2026
CVE-2026-84129This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2.CRITICAL 9.8EPSS 0.18%1 September 2026
CVE-2026-84121Sandbox escape due to use-after-free in the DOM: Security component.CRITICAL 9.6EPSS 0.32%1 September 2026
CVE-2026-84119Sandbox escape due to use-after-free in the DOM: Navigation component.CRITICAL 9.6EPSS 0.32%1 September 2026
CVE-2026-51747Incorrect access control in the keepAlive function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to emit indirect mesh heartbeat information toward the master via sending a crafted MQTT message to the cs_broker component.CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-51744Incorrect access control in the recv_mesh_info_sync function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to force mesh configuration synchronization from an attacker-controlled host via sending a crafted MQTT message to the…CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-51743Incorrect access control in the guest_wifi_sync function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to disable guest virtual AP interfaces via sending a crafted MQTT message to the cs_broker component.CRITICAL 9.1EPSS 0.36%1 September 2026
CVE-2026-51741Incorrect access control in the clearDiagnosisLog function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to erase diagnosis logs via sending a crafted POST request to /cgi-bin/cstecgi.cgi.CRITICAL 9.8EPSS 0.44%1 September 2026
CVE-2026-18765Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Teracity Software Technologies Inc.CRITICAL 9.8EPSS 0.26%1 September 2026
CVE-2026-84200When a policy in enforce mode is combined with two PolicyExceptions, the less restrictive exception takes precedence, allowing an attacker to bypass the policy by crafting a resource name that matches the second exception's name pattern (e.g.,…CRITICAL 9.4EPSS 0.18%1 September 2026

How to read this

CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.

Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.