Vulnerabilities

Summary — last 7 days

New vulnerabilities2,833▲ 195 vs. last week
Critical / high1,316▼ 117 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)237▲ 223 vs. last week
–

30 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedHigh (8.8)2.0%—Netgear Cbk40 FirmwareNetgear Cbk43 FirmwareNetgear Cbr40 FirmwareNetgear Ex6200 Firmware+352/12/20216/17/2026
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR Orbi 2.5.1.16 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the UA_Parser utility. A crafted Host Name option in a DHCP request can trigger…
ModifiedCritical (9.4)1.6%—Netgear Ac2100 FirmwareNetgear Ac2400 FirmwareNetgear Ac2600 FirmwareNetgear Cbk40 Firmware+12312/30/20206/17/2026
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects AC2100 before 1.2.0.72, AC2400 before 1.2.0.72, AC2600 before 1.2.0.72, CBK40 before 2.5.0.10, CBR40 before 2.5.0.10, D6000 before 1.0.0.80, D6220 before 1.0.0.60, D6400 before 1.0.0.94, D7000v2 before 1.0.0.62, D7800…
ModifiedCritical (9.8)1.2%—Netgear Ac2100 FirmwareNetgear Ac2400 FirmwareNetgear Ac2600 FirmwareNetgear Cbk40 Firmware+7312/30/20206/17/2026
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects AC2100 before 1.2.0.72, AC2400 before 1.2.0.72, AC2600 before 1.2.0.72, CBK40 before 2.5.0.10, CBR40 before 2.5.0.10, D7800 before 1.0.1.58, EAX20 before 1.0.0.36, EAX80 before 1.0.1.62, EX7500 before 1.0.0.68, MK62…
ModifiedMedium (6.8)0.40%—Samsung Galaxy S10 FirmwareSamsung Note 10 Firmware10/17/20196/17/2026
Samsung Galaxy S10 and Note10 devices allow unlock operations via unregistered fingerprints in certain situations involving a third-party screen protector.
ModifiedMedium (5.5)0.39%—Samsung S9+ FirmwareSamsung S10 FirmwareSamsung Xcover 4 Firmware5/14/20196/17/2026
Samsung S9+, S10, and XCover 4 P(9.0) devices can become temporarily inoperable because of an unprotected intent in the ContainerAgent application. For example, the victim becomes stuck in a launcher with their Secure Folder locked. NOTE: the researcher mentions "the Samsung Security Team considered this issue as…