Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
395,631 CVEs1,716 in CISA KEV17,391 with EPSS ≥ 10%25,049 with a public exploitUpdated 20 September 2026
39,241 results · page 21 of 785
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2026-83548 | SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability | KEVCRITICAL 10.0EPSS 4.67% | 1 September 2026 |
| CVE-2026-75604 | In packages/next/src/shared/lib/router/utils/escape-path-delimiters.ts and packages/next/src/server/lib/incremental-cache/file-system-cache.ts, a remote request can supply encoded Windows path separators that traverse outside the intended cache root and… | CRITICAL 9.0EPSS 2.46% | 1 September 2026 |
| CVE-2023-54391 | Proxmox Virtual Environment (VE) 7.0 through 8.0 contains an authentication bypass vulnerability in libpve-access-control before 8.0.4 that allows unauthenticated attackers to authenticate as any existing enabled user without a configured second factor… | CRITICAL 9.3EPSS 1.75% | 1 September 2026 |
| CVE-2026-73778 | A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative access. | CRITICAL 9.8EPSS 0.28% | 1 September 2026 |
| CVE-2026-73749 | Multiple vulnerabilities exist in a daemon of AOS-CX that may allow for improper processing of malformed input. | CRITICAL 9.8EPSS 0.49% | 1 September 2026 |
| CVE-2026-76658 | A vulnerability has been identified in the SSH daemon of HPE Networking Fabric Composer that could allow an unauthenticated remote attacker to gain administrative access to vulnerable AFC hosts. | CRITICAL 10.0EPSS 0.43% | 1 September 2026 |
| CVE-2026-76657 | Vulnerabilities have been identified in the API of HPE Networking Fabric Composer that could potentially allow an unauthenticated remote attacker to circumvent existing authentication controls. | CRITICAL 10.0EPSS 0.43% | 1 September 2026 |
| CVE-2026-73701 | An unauthenticated remote code execution vulnerability exists in the underlying operating system of HPE Networking Fabric Composer and could be exploited if certain preconditions outside of the attacker's control are met. | CRITICAL 9.0EPSS 0.52% | 1 September 2026 |
| CVE-2026-73700 | A vulnerability in the web-based management interface of HPE Networking Fabric Composer could allow an authenticated low privilege operator user to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. | CRITICAL 9.0EPSS 0.31% | 1 September 2026 |
| CVE-2026-19766 | An authentication bypass vulnerability exists in the underlying operating system of HPE Networking Fabric Composer. | CRITICAL 9.6EPSS 0.25% | 1 September 2026 |
| CVE-2026-52111 | An issue in fast-note-sync-service <=2.13.7 allows a remote attacker to escalate privileges via the admin configuration endpoint exposes authTokenKey | CRITICAL 9.8EPSS 0.34% | 1 September 2026 |
| CVE-2026-19593 | If the workspace contains a repository with preserved attacker-controlled .git/config, the attr.tree setting and a configured clean or process filter can cause Git to run an attacker-controlled program. | CRITICAL 9.8EPSS 0.29% | 1 September 2026 |
| CVE-2026-51934 | Buffer Overflow vulnerability in Shenzhen Jixiang Tengda Technology Co., Ltd. | CRITICAL 9.8EPSS 0.64% | 1 September 2026 |
| CVE-2026-79687 | Dell PowerStore SDNAS contains a Missing Authentication for Critical Function vulnerability. | CRITICAL 9.0EPSS 0.27% | 1 September 2026 |
| CVE-2026-51770 | Incorrect access control in the sendToMasterQosConfig function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to forward attacker-controlled QoS settings to the master via sending a crafted MQTT message to the cs_broker component.. | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-51769 | Incorrect access control in the remoteCloudUpdateCheck function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to restart the cloud update check workflow via sending a crafted MQTT message to the cs_broker component. | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-51767 | Incorrect access control in the recvClearPairCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to reset pairing state and reboot the device via sending a crafted MQTT message to the cs_broker component. | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-18931 | Use of Hard-coded Credentials vulnerability in TMT Machine Industry and Trade Ltd. | CRITICAL 9.1EPSS 0.23% | 1 September 2026 |
| CVE-2026-78012 | An issue in the NetStaX EtherNet/IP Stack prior to v5.6.1 could allow a large Class 3 explicit-message request to exceed the application-side receive buffer without generating an error or warning. | CRITICAL 9.3EPSS 0.47% | 1 September 2026 |
| CVE-2026-9621 | A denial-of-service security issue exists within RSLinx® Classic. | CRITICAL 9.2EPSS 0.31% | 1 September 2026 |
| CVE-2026-51765 | Incorrect access control in the recvIndirectMeshInfo function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to insert or replace mesh neighbor records via sending a crafted MQTT message to the cs_broker component. | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-51764 | Incorrect access control in the recvSlaveCloudCheckStatus function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to overwrite cloud-result tracking files via sending a crafted MQTT message to the cs_broker component. | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-51763 | Incorrect access control in the freeStaClient function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to forcibly disconnect wireless clients via sending a crafted MQTT message to the cs_broker component. | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-51762 | Incorrect access control in the meshInfoKick function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to kick or clean stale mesh information/state and trigger regeneration of mesh metadata via sending a crafted MQTT message to the… | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-51760 | Incorrect access control in the informSyncUpgfw function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to mass-trigger firmware update activity across mesh slaves via sending a crafted MQTT message to the cs_broker component. | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-51757 | Incorrect access control in the meshSlaveUpdate function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to start a firmware download or flash workflow on the slave device via sending a crafted MQTT message to the cs_broker… | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-51754 | Incorrect access control in the updateSlaveIpList function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to overwrite the slave IP inventory state via sending a crafted MQTT message to the cs_broker component. | CRITICAL 9.8EPSS 0.43% | 1 September 2026 |
| CVE-2026-51751 | Incorrect access control in the delSlaveDevice function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to remove a specified slave device from local mesh management data and reboot the system via sending a crafted MQTT message to… | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-51750 | Incorrect access control in the updatePriChannel function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to rescan and switch the primary mesh channel via sending a crafted MQTT message to the cs_broker component. | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-18808 | Improper Control of Generation of Code ('Code Injection') vulnerability in Klemsan Electrical Electronics Inc. | CRITICAL 9.8EPSS 0.39% | 1 September 2026 |
| CVE-2026-18210 | Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in TRtek Technological Products Computer Software Hardware Industry and Trade Limited Company Products's Store allows SQL Injection. | CRITICAL 9.8EPSS 0.36% | 1 September 2026 |
| CVE-2026-84149 | This vulnerability exists in the ERP system due to exposure of repository information through a publicly accessible .git directory. | CRITICAL 9.2EPSS 0.32% | 1 September 2026 |
| CVE-2026-84148 | This vulnerability exists in the ERP system due to improper authentication and authorization controls in the API endpoint. | CRITICAL 9.2EPSS 0.39% | 1 September 2026 |
| CVE-2026-84147 | This vulnerability exists in the ERP system due to improper authentication controls and inadequate file type validation at the API endpoint. | CRITICAL 10.0EPSS 0.55% | 1 September 2026 |
| CVE-2026-84143 | Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. | CRITICAL 9.8EPSS 0.38% | 1 September 2026 |
| CVE-2026-84142 | Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. | CRITICAL 9.8EPSS 0.30% | 1 September 2026 |
| CVE-2026-84141 | Integer overflow in the Graphics: ImageLib component. | CRITICAL 9.8EPSS 0.34% | 1 September 2026 |
| CVE-2026-84140 | This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2. | CRITICAL 9.8EPSS 0.18% | 1 September 2026 |
| CVE-2026-84135 | This vulnerability was fixed in Firefox 155. | CRITICAL 9.8EPSS 0.25% | 1 September 2026 |
| CVE-2026-84134 | This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2. | CRITICAL 9.8EPSS 0.31% | 1 September 2026 |
| CVE-2026-84133 | This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2. | CRITICAL 9.8EPSS 0.18% | 1 September 2026 |
| CVE-2026-84129 | This vulnerability was fixed in Firefox 155, Firefox ESR 153.2, Thunderbird 155, and Thunderbird 153.2. | CRITICAL 9.8EPSS 0.18% | 1 September 2026 |
| CVE-2026-84121 | Sandbox escape due to use-after-free in the DOM: Security component. | CRITICAL 9.6EPSS 0.32% | 1 September 2026 |
| CVE-2026-84119 | Sandbox escape due to use-after-free in the DOM: Navigation component. | CRITICAL 9.6EPSS 0.32% | 1 September 2026 |
| CVE-2026-51747 | Incorrect access control in the keepAlive function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to emit indirect mesh heartbeat information toward the master via sending a crafted MQTT message to the cs_broker component. | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-51744 | Incorrect access control in the recv_mesh_info_sync function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to force mesh configuration synchronization from an attacker-controlled host via sending a crafted MQTT message to the… | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-51743 | Incorrect access control in the guest_wifi_sync function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to disable guest virtual AP interfaces via sending a crafted MQTT message to the cs_broker component. | CRITICAL 9.1EPSS 0.36% | 1 September 2026 |
| CVE-2026-51741 | Incorrect access control in the clearDiagnosisLog function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to erase diagnosis logs via sending a crafted POST request to /cgi-bin/cstecgi.cgi. | CRITICAL 9.8EPSS 0.44% | 1 September 2026 |
| CVE-2026-18765 | Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Teracity Software Technologies Inc. | CRITICAL 9.8EPSS 0.26% | 1 September 2026 |
| CVE-2026-84200 | When a policy in enforce mode is combined with two PolicyExceptions, the less restrictive exception takes precedence, allowing an attacker to bypass the policy by crafting a resource name that matches the second exception's name pattern (e.g.,… | CRITICAL 9.4EPSS 0.18% | 1 September 2026 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. EXPLOIT means a working exploit is published in Exploit-DB, so the technical barrier is gone. Patch KEV entries first, then anything with a public exploit or an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS, the CISA KEV catalogue and the Exploit-DB repository. Every record can be downloaded as JSON from its page. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.