Vulnfeed

Archives
Log in
Subscribe
August 24, 2026

[vulnfeed] 3 critical CVEs — 2026-08-24 04:00 UTC

vulnfeed Critical alert — 2026-08-24 05:08 UTC
3 new critical CVEs in the last 5 hours — 3 CVSS ≥ 9.0
New vulnerabilities
CVE-2026-78207CRITICAL
exceljs-hardened before 5.0.0 contains a prototype pollution vulnerability in the deepMerge helper that fails
exceljs-hardened before 5.0.0 contains a prototype pollution vulnerability in the deepMerge helper that fails to reject __proto__, constructor, or prototype keys when merging note objects. Attackers c
CVSS 9.3
CVE-2026-78167CRITICAL
A weakness has been identified in EFM ipTIME T16000M 14.20.2. The impacted element is the function httpcon_che
A weakness has been identified in EFM ipTIME T16000M 14.20.2. The impacted element is the function httpcon_check_session_url of the component Session Validation Handler. This manipulation causes impro
CVSS 9.3
CVE-2026-78211CRITICAL
4MOSAn GCB Doctor developed by 4MOSAn Security Technology has a OS Command Injection vulnerability. Unauthenti
4MOSAn GCB Doctor developed by 4MOSAn Security Technology has a OS Command Injection vulnerability. Unauthenticated remote attackers can inject malicious commands through an unremoved ADOdb test page
CVSS 9.3

Live feed →  ·  Notification settings

vulnfeed critical alerts — vulnfeed.it. Unsubscribe

Don't miss what's next. Subscribe to Vulnfeed:
← Newer [vulnfeed] 2 critical CVEs — 2026-08-24 08:00 UTC Older → [vulnfeed] 1 critical CVE — 2026-08-24 00:00 UTC
Powered by Buttondown, the easiest way to start and grow your newsletter.