Vulnerabilities
Summary — last 7 days
New vulnerabilities2,819▼ 255 vs. last week
Critical / high1,321▼ 176 vs. last week
New active exploitation (KEV)8→ no change vs. last week
Unscored (no CVSS)207▼ 114 vs. last week
7 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Deferred | High (8.4) | 0.15% | — | Asus GPU Tweak IIIAIAsus GPU Tweak IIAIAsus AI Suite 3AIAsus VgadllAI | 8/11/2026 | 9/17/2026 | Untrusted Pointer Dereference in ASUS GPU Tweak III, GPUTweakII, AI Suite3, and VGAdll: An IOCTL vulnerability allows a local attacker to write a specific value to an arbitrary memory address, potentially leading to privilege escalation. Refer to the ' Security Update for ASUS GPU Tweak III, GPU Tweak II, AI Suite 3,… | |
| Deferred | High (7.3) | 0.13% | — | Asus AI Suite 3AI | 7/3/2026 | 7/17/2026 | ** UNSUPPORTED WHEN ASSIGNED ** Improper Validation of Specified Quantity in Input in the ASUS AI Suite 3 driver allows a local user to bypass security validation and access restricted memory blocks via crafted IOCTL requests, leading to privilege escalation. Refer to the 'End-of-Life Notice and Driver Update for… | |
| Deferred | High (8.5) | 0.14% | — | Asus AI Suite 3AI | 7/3/2026 | 7/17/2026 | ** UNSUPPORTED WHEN ASSIGNED ** Improper Validation of Specified Quantity in Input in the ASUS AI Suite 3 driver allows a local user to access unintended memory regions via crafted IOCTL requests, leading to privilege escalation. Refer to the 'End-of-Life Notice and Driver Update for Legacy ASUS Drivers ' section on… | |
| Deferred | Critical (9.3) | 0.73% | — | Guardianwall MailsuiteAIGuardianwall Mail Security CloudAI | 5/13/2026 | 6/17/2026 | Stack-based buffer overflow vulnerability exists in GUARDIANWALL MailSuite and GUARDIANWALL Mail Security Cloud (SaaS version). If a remote attacker sends a specially crafted request to the product's web service, arbitrary code may be executed when the product is configured to run pop3wallpasswd with grdnwww user… | |
| Deferred | Medium (6.7) | 0.15% | — | Asus AI Suite 3AI | 8/1/2025 | 6/17/2026 | A null pointer dereference vulnerability exists in the IOMap64.sys driver of ASUS AI Suite 3. The vulnerability can be triggered by a specially crafted input, which may lead to a system crash (BSOD). Refer to the ' Security Update for for AI Suite 3 ' section on the ASUS Security Advisory for more information. | |
| Analyzed | High (8.8) | 0.70% | — | Asus AI Suite | 5/22/2024 | 6/17/2026 | An issue in the component AslO3_64.sys of ASUSTeK Computer Inc AISuite3 v3.03.36 3.03.36 allows attackers to escalate privileges and execute arbitrary code via sending crafted IOCTL requests. | |
| Modified | Medium (4.3) | 1.3% | 💥 Exploit | Afterlogic Mailsuite PRO | 8/12/2012 | 6/16/2026 | Multiple cross-site scripting (XSS) vulnerabilities in AfterLogic MailSuite Pro 6.3 allow remote attackers to inject arbitrary web script or HTML via an e-mail message body with a crafted SRC attribute of (1) an IFRAME element or (2) a SCRIPT element. |