Vulnerabilities
Summary — last 7 days
New vulnerabilities2,721▲ 17 vs. last week
Critical / high1,459▲ 351 vs. last week
New active exploitation (KEV)7▼ 3 vs. last week
Unscored (no CVSS)72▼ 458 vs. last week
4 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Awaiting Analysis | Medium (5.3) | 0.40% | — | Aruba CppmAI | 9/9/2026 | 9/10/2026 | A vulnerability in the web-based management interface of CPPM guest account management services could allow an unauthenticated remote attacker to manipulate account settings. Successful exploitation could allow an attacker to extend network access beyond policy limits, leading to unauthorized prolonged use of network… | |
| Awaiting Analysis | High (7.2) | 0.84% | — | Aruba CppmAI | 9/9/2026 | 9/11/2026 | A vulnerability in the CPPM web interface could allow an authenticated remote attacker to access directory information on a vulnerable system. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system. | |
| Awaiting Analysis | High (7.5) | 0.57% | — | Arista CppmAI | 9/9/2026 | 9/10/2026 | A vulnerability in the web-based management interface of CPPM could allow an unauthenticated remote attacker to conduct a Denial-of-Service (DoS) attack. Successful exploitation could allow an attacker to cause instability and degrade performance of the vulnerable CPPM server. | |
| Awaiting Analysis | High (7.2) | 1.1% | — | Aruba CppmAI | 9/9/2026 | 9/11/2026 | A vulnerability in the web-based management interface of vulnerable CPPM systems could allow an authenticated remote attacker to achieve remote code execution. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system. |