Vulnerabilities
Summary — last 7 days
New vulnerabilities2,712▼ 359 vs. last week
Critical / high1,261▼ 231 vs. last week
New active exploitation (KEV)8→ no change vs. last week
Unscored (no CVSS)213▼ 109 vs. last week
9 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Deferred | High (7.8) | 0.34% | — | AeonAI | 8/20/2026 | 9/1/2026 | Aeon load_time_series_segmentation_benchmark Code Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of aeon. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a… | |
| Deferred | High (7.8) | 0.34% | — | AeonAI | 8/20/2026 | 9/1/2026 | Aeon load_human_activity_segmentation_datasets Code Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of aeon. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a… | |
| Deferred | High (7.8) | 0.55% | — | AeonAI | 8/20/2026 | 9/1/2026 | Aeon load_rehab_pile_dataset Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Aeon. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a… | |
| Modified | High (7.8) | 0.23% | — | Tadirantele Aeonix | 7/30/2023 | 6/17/2026 | Tadiran Telecom Composit - CWE-1236: Improper Neutralization of Formula Elements in a CSV File | |
| Modified | High (7.5) | 0.69% | — | Tadirantele Aeonix | 7/30/2023 | 6/17/2026 | Tadiran Telecom Aeonix - CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') | |
| Modified | Medium (5.3) | 0.45% | — | Tadirantele Aeonix | 7/30/2023 | 6/17/2026 | Tadiran Telecom Aeonix - CWE-204: Observable Response Discrepancy | |
| Modified | Medium (5.9) | 0.90% | — | Aeon Waon | 4/21/2017 | 6/17/2026 | WAON "Service Application" for Android 1.4.1 and earlier does not verify SSL certificates. | |
| Modified | Medium (4.3) | 1.9% | — | Atlas Systems Aeon | 11/19/2014 | 6/17/2026 | Multiple cross-site scripting (XSS) vulnerabilities in Atlas Systems Aeon 3.5 and 3.6 allow remote attackers to inject arbitrary web script or HTML via the (1) Action or (2) Form parameter to aeon.dll. | |
| Modified | High (7.2) | 1.1% | 💥 Exploit | Aeon | 5/2/2005 | 6/16/2026 | Buffer overflow in the getConfig function in Aeon 0.2a and earlier allows local users to gain privileges via a long HOME environment variable. |