[vulnfeed] 3 critical CVEs — 2026-08-24 04:00 UTC
vulnfeed
Critical alert — 2026-08-24 05:08 UTC
3 new critical CVEs
in the last 5 hours — 3 CVSS ≥ 9.0
New vulnerabilities
CVE-2026-78207CRITICAL
exceljs-hardened before 5.0.0 contains a prototype pollution vulnerability in the deepMerge helper that fails
exceljs-hardened before 5.0.0 contains a prototype pollution vulnerability in the deepMerge helper that fails to reject __proto__, constructor, or prototype keys when merging note objects. Attackers c
CVSS 9.3
CVE-2026-78167CRITICAL
A weakness has been identified in EFM ipTIME T16000M 14.20.2. The impacted element is the function httpcon_che
A weakness has been identified in EFM ipTIME T16000M 14.20.2. The impacted element is the function httpcon_check_session_url of the component Session Validation Handler. This manipulation causes impro
CVSS 9.3
CVE-2026-78211CRITICAL
4MOSAn GCB Doctor developed by 4MOSAn Security Technology has a OS Command Injection vulnerability. Unauthenti
4MOSAn GCB Doctor developed by 4MOSAn Security Technology has a OS Command Injection vulnerability. Unauthenticated remote attackers can inject malicious commands through an unremoved ADOdb test page
CVSS 9.3
vulnfeed critical alerts — vulnfeed.it.
Unsubscribe
Don't miss what's next. Subscribe to Vulnfeed: