Vulnerabilities
Summary — last 7 days
New vulnerabilities3,043▲ 582 vs. last week
Critical / high1,452▲ 283 vs. last week
New active exploitation (KEV)5▼ 5 vs. last week
Unscored (no CVSS)393▲ 186 vs. last week
8 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Awaiting Analysis | High (8.9) | 0.43% | — | HP WEB JetadminAI | 8/17/2026 | 8/31/2026 | HP has identified a potential vulnerability in HP Web Jetadmin (WJA) that may allow an unauthenticated actor to read from or write to arbitrary files through a DLL hijacking mechanism. | |
| Modified | High (7.5) | 3.5% | — | HP WEB Jetadmin | 1/23/2018 | 6/17/2026 | A potential security vulnerability has been identified with HP Web Jetadmin before 10.4 SR2. This vulnerability could potentially be exploited to create a denial of service. | |
| Modified | Medium (4.3) | 1.6% | — | HP WEB Jetadmin | 6/13/2012 | 6/16/2026 | Multiple cross-site scripting (XSS) vulnerabilities in HP Web Jetadmin 8.x allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |
| Modified | Medium (4.3) | 0.28% | — | HP WEB Jetadmin | 3/1/2011 | 6/16/2026 | Unspecified vulnerability in HP Web Jetadmin 10.2 Service Release 3 and 4 allows local users to bypass intended access restrictions via unknown vectors. | |
| Modified | High (9) | 1.8% | — | HP WEB Jetadmin | 1/14/2010 | 6/16/2026 | Multiple unspecified vulnerabilities in HP Web Jetadmin 10.2, when a remote SQL server is used, allow remote attackers to obtain access to data or cause a denial of service, possibly by leveraging authentication and encryption weaknesses on the SQL server. | |
| Modified | Medium (5) | 1.2% | — | HP WEB JetadminAI | 12/31/2004 | 6/16/2026 | HP Web Jetadmin 7.5.2546 allows remote attackers to cause a denial of service (crash) via a malformed request, possibly due to a stricmp() error from an invalid use of the "$" character. | |
| Modified | Low (2.1) | 87% | — | HP WEB Jetadmin | 3/24/2004 | 6/16/2026 | Directory traversal vulnerability in setinfo.hts in HP Web Jetadmin 7.5.2546 allows remote authenticated attackers to read arbitrary files via a .. (dot dot) in the setinclude parameter. | |
| Modified | Medium (5) | 30% | — | HP WEB Jetadmin | 3/24/2004 | 6/16/2026 | devices_update_printer_fw_upload.hts in HP Web JetAdmin 7.5.2546, when no password is set, allows remote attackers to upload arbitrary files to the printer directory. |